SpyHolesList Version:19.1 Build:16.50.2024.924-64b 17.10.2024 12:31:44 Geo: FR-French WinDir=C:\WINDOWS Startup=C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Common Startup=C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ Windows 10 Home (10.0.26100) Internet Explorer 9.11.26100.0 DBS Version: 2.2511 [CHROME:Default:C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\] [Google Chrome Settings] :HKLM backup.homepage="" [Google Chrome Settings] :HKLM backup.session.urls_to_restore_on_startup="" [Google Chrome Settings] :HKLM session.startup_urls="" [Google Chrome Settings] :HKLM default_search_provider_data.favicon_url="" [Google Chrome Settings] :HKLM default_search_provider_data.keyword="" [Google Chrome Settings] :HKLM default_search_provider_data.short_name="" [Google Chrome Settings] :HKLM default_search_provider_data.url="" [Google Chrome Settings] :HKLM default_search_provider_data.suggestions_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.alternate_urls="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.favicon_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.keyword="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.short_name="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.suggest_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.new_tab_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.instant_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.image_url="" [Google Chrome Settings] :HKLM homepage="" [Google Chrome Settings] :HKLM session.urls_to_restore_on_startup="" [Chrome Protected Settings] search_web_data.url={google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:language}{google:prefetchSource}{google:searchClient}{google:sourceId}{google:contextualSearchVersion}ie={inputEncoding} [Chrome Protected Settings] search_web_data.created_by_policy=0 [Chrome Protected Settings] search_web_data.suggest_url={google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:omniboxFocusType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:clientCacheTimeToLive}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} [Chrome Protected Settings] session.startup_urls=["https:\/\/www.virtualregatta.com\/fr\/offshore-jeu\/","chrome-extension:\/\/amknkhejaogpekncjekiaolgldbejjan\/dashboard.html?2","chrome:\/\/newtab\/","https:\/\/web.whatsapp.com\/","https:\/\/forums.commentcamarche.net\/forum\/affich-25789872-les-liens-s-ouvrent-dans-un-nouvel-onglet#4","chrome:\/\/newtab\/","http:\/\/zezo.org\/nysf\/chart.pl?sid=c0bab6822af297395b4056d628d36baf&o=244&wind=0&clon=-30.388671875&clat=3.490234375&scale=512","http:\/\/zezo.org\/figaro\/chart.pl?lat=49.9946600147&lon=-6.8269839705&o=244&twa=-123.2662&userid=5bda0aee517022fc09d3d849&type=me","https:\/\/chrome.google.com\/webstore\/detail\/just-black\/aghfnjkcakhmadgdomlmlhhaocbkloab?hl=fr","https:\/\/www.google.fr\/?t=636874899788356789","chrome:\/\/extensions\/","https:\/\/www.oxtorrent.nz\/torrents\/films"] [Chrome Protected Settings] default_search_provider_data.template_url_data.alternate_urls=["{google:baseURL}#q={searchTerms}","{google:baseURL}search#q={searchTerms}","{google:baseURL}webhp#q={searchTerms}","{google:baseURL}s#q={searchTerms}","{google:baseURL}s?q={searchTerms}"] [Chrome Protected Settings] default_search_provider_data.template_url_data.favicon_url=https://www.google.com/favicon.ico [Chrome Protected Settings] default_search_provider_data.template_url_data.image_url={google:baseSearchByImageURL}upload [Chrome Protected Settings] default_search_provider_data.template_url_data.suggestions_url={google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:omniboxFocusType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:clientCacheTimeToLive}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} [Chrome Protected Settings] default_search_provider_data.template_url_data.url={google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:language}{google:prefetchSource}{google:searchClient}{google:sourceId}{google:contextualSearchVersion}ie={inputEncoding} [Chrome Protected Settings] default_search_provider_data.template_url_data.keyword=google.com [Chrome Protected Settings] default_search_provider_data.template_url_data.short_name=Google [Chrome Protected Settings] homepage=https://www.orange.fr/portail [Google Chrome Addons] dcgkemofanbgjhnbmjjfomcgdkmobhgi=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcgkemofanbgjhnbmjjfomcgdkmobhgi ### Route zezo.org: Extract route for MonoRaces update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] cfhdojbkjhnklbpkdaibdccddilifddb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb ### Adblock Plus - bloqueur de publicités gratuit: Supprimez les publicités sur YouTube et partout où vous naviguez. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] pccckmaobkjjboncdfnnofkonhgpceea=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pccckmaobkjjboncdfnnofkonhgpceea ### Hover Zoom+: Zoomez les images/vidéos sur tous vos sites favoris (Facebook, Amazon..). Il suffit de passer la souris sur l'image pour l'agrandir. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ahfgeienlihckogmohjhadlkjgocpleb=C:\Program Files\Google\Chrome\Application\120.0.6099.225\resources\web_store ### Web Store: Découvrez des applications, des jeux, des extensions et des thèmes exceptionnels pour Google Chrome. [Google Chrome Addons] hkgfoiooedgoejojocmhlaklaeopbecg=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgfoiooedgoejojocmhlaklaeopbecg ### Picture-in-Picture Extension (by Google): Watch video using Picture-in-Picture update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] aapbdbdomjkkjkaonfhkkikfgjllcleb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb ### Google Traduction: Affichez facilement les traductions lorsque vous naviguez sur le Web. Par l'équipe Google Traduction. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ailoabdmgclmfmhdagmlohpjlbpffblp=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ailoabdmgclmfmhdagmlohpjlbpffblp ### Extension Surfshark VPN: Naviguez librement sur le Web, en toute confidentialité et sécurité avec l’extension pour Chrome. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] haebnnbpedcbhciplfhjjkbafijpncjl=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\haebnnbpedcbhciplfhjjkbafijpncjl ### TinEye Reverse Image Search: This is the official TinEye Chrome extension. Find out where an image came from, how it's used, or find higher resolution versions. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mhjfbmdgcfjbbpaeojofohoefgiehjai=C:\Program Files\Google\Chrome\Application\120.0.6099.225\resources\pdf ### Chrome PDF Viewer: [Google Chrome Addons] amknkhejaogpekncjekiaolgldbejjan=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\amknkhejaogpekncjekiaolgldbejjan ### VR Dashboard: Monitor boat position & call virtual sailor weather router update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] neajdppkdcdipfabeoofebfddakdcjhd=C:\Program Files\Google\Chrome\Application\120.0.6099.225\resources\network_speech_synthesis ### Google Network Speech: Component extension providing speech via the Google network text-to-speech service. [Google Chrome Addons] nkeimhogjdpnpccoofpliimaahmaaome=C:\Program Files\Google\Chrome\Application\120.0.6099.225\resources\hangout_services ### Google Hangouts: [Google Chrome Addons] jghecgabfgfdldnmbfkhmffcabddioke=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\jghecgabfgfdldnmbfkhmffcabddioke ### Volume Master - contrôleur de volume: Augmentation du volume jusqu'à 600% update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ghbmnnjooekpmoecnnnilnnbdlolhkhi=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi ### Google Docs hors connexion: Modifiez, créez et consultez des documents, feuilles de calcul et présentations, sans accès à Internet. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] kaoholkoedbpjiangnchpfchhmageifp=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\kaoholkoedbpjiangnchpfchhmageifp ### Notifier for WhatsApp Web: Unofficial enhacement for WhatsApp™ Web notifications. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] olnconaknblgbkfgknkfmmfhhbebkekd=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\olnconaknblgbkfgknkfmmfhhbebkekd ### Extension Alerte Pluie: Cette extension météo vous avertit de l'arrivée imminente des précipitations. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] pnlccmojcmeohlpggmfnbbiapkmbliob=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob ### Gestionnaire de mots de passe RoboForm: RoboForm vous facilite la vie en se souvenant des mots de passe et en se connectant automatiquement aux sites Web update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] gmehookibnphigonphocphhcepbijeen=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmehookibnphigonphocphhcepbijeen ### Image dans l'image - lecteur vidéo flottant: Regardez des vidéos tout en surfant sur le Web avec le mode Image dans l'image. Lecteur vidéo flottant pour le Web! update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] nmmhkkegccagdldgiimedpiccmgmieda=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ### Paiements via le Chrome Web Store: Paiements via le Chrome Web Store update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ochhcgamjcnhpaekcckimgofnedofplf=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ochhcgamjcnhpaekcckimgofnedofplf ### Zoomer pour remplir - vidéo ultrawide: Zoom vidéo, changer le rapport d'aspect de n'importe quelle vidéo, supprimer les barres noires sur Netflix, Amazon Prime, YouTube, HBO Max. Rapport d'aspect vidéo ultrawide. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ddkjiahejlhfcafbddmgiahcphecmpfh=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddkjiahejlhfcafbddmgiahcphecmpfh ### uBlock Origin Lite: Un bloqueur de contenu sans permission requise. Bloque les publicités, pisteurs, mineurs et plus dès l'installation. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mafbdhjdkjnoafhfelkjpchpaepjknad=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\mafbdhjdkjnoafhfelkjpchpaepjknad ### Morpheon Dark: A minimalistic dark theme without any distractions update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] dambgipgbnhmnkdolkljibpcbocimnpd=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\dambgipgbnhmnkdolkljibpcbocimnpd ### H.265 / HEVC player: Playback video files containing H.265 / HEVC media. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mpbjkejclgfgadiemmefgebjfooflfhl=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl ### Buster: Captcha Solver for Humans: Save time by asking Buster to solve CAPTCHAs for you. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] aegnopegbbhjeeiganiajffnalhlkkjb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb ### Torrent Scanner: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] bgnkhhnnamicmpeenaelnjfhikgbkllg=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg ### AdGuard AdBlocker: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] eecephmcakdnmbnblpednlhemnmdicnf=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\eecephmcakdnmbnblpednlhemnmdicnf ### Images+: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] efaidnbmnnnibpcajpcglclefindmkaj=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ehndikigeekodlnbohjndjjiikphickb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehndikigeekodlnbohjndjjiikphickb ### Open in PDF Viewer: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ghgabhipcejejjmhhchfonmamedcbeod=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgabhipcejejjmhhchfonmamedcbeod ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] hfmdbddgjlicmflejkkoafbkdgnfggbg=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfmdbddgjlicmflejkkoafbkdgnfggbg ### Route zezo.org: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] jgjaeacdkonaoafenlfkkkmbaopkbilf=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgjaeacdkonaoafenlfkkkmbaopkbilf ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] lmbopdiikkamfphhgcckcjhojnokgfeo=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmbopdiikkamfphhgcckcjhojnokgfeo ### Antidote connector: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mhccpoafgdgbhnjfhkcmgknndkeenfhe=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhccpoafgdgbhnjfhkcmgknndkeenfhe ### Fake news debunker by InVID & WeVerify: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mhgineegmgpjljjpmocmnlaonmegjkdg=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhgineegmgpjljjpmocmnlaonmegjkdg ### VR Dashboard I.T.Y.C.: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ncjedehfkpnliaafimjhdjjeggmfmlgf=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncjedehfkpnliaafimjhdjjeggmfmlgf ### Copilot sidebar for Chrome: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] obhijjefkkokfaiffkcemldacdabpeei=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\obhijjefkkokfaiffkcemldacdabpeei ### AIO Search: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] oldceeleldhonbafppcapldpdifcinji=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\oldceeleldhonbafppcapldpdifcinji ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Notifications] 0=https://www.facebook.com:443,* ### https://www.facebook.com/ [CHROME:Profile 1:C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\] [Google Chrome Settings] :HKLM backup.homepage="" [Google Chrome Settings] :HKLM backup.session.urls_to_restore_on_startup="" [Google Chrome Settings] :HKLM session.startup_urls="" [Google Chrome Settings] :HKLM default_search_provider_data.favicon_url="" [Google Chrome Settings] :HKLM default_search_provider_data.keyword="" [Google Chrome Settings] :HKLM default_search_provider_data.short_name="" [Google Chrome Settings] :HKLM default_search_provider_data.url="" [Google Chrome Settings] :HKLM default_search_provider_data.suggestions_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.alternate_urls="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.favicon_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.keyword="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.short_name="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.suggest_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.new_tab_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.instant_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.image_url="" [Google Chrome Settings] :HKLM homepage="" [Google Chrome Settings] :HKLM session.urls_to_restore_on_startup="" [Chrome Protected Settings] session.startup_urls=["https:\/\/www.virtualregatta.com\/fr\/offshore-jeu\/","chrome-extension:\/\/amknkhejaogpekncjekiaolgldbejjan\/dashboard.html?2","chrome:\/\/newtab\/","https:\/\/web.whatsapp.com\/","https:\/\/forums.commentcamarche.net\/forum\/affich-25789872-les-liens-s-ouvrent-dans-un-nouvel-onglet#4","chrome:\/\/newtab\/","http:\/\/zezo.org\/nysf\/chart.pl?sid=c0bab6822af297395b4056d628d36baf&o=244&wind=0&clon=-30.388671875&clat=3.490234375&scale=512","http:\/\/zezo.org\/figaro\/chart.pl?lat=49.9946600147&lon=-6.8269839705&o=244&twa=-123.2662&userid=5bda0aee517022fc09d3d849&type=me","https:\/\/chrome.google.com\/webstore\/detail\/just-black\/aghfnjkcakhmadgdomlmlhhaocbkloab?hl=fr","https:\/\/www.google.fr\/?t=636874899788356789","chrome:\/\/extensions\/","https:\/\/www.oxtorrent.nz\/torrents\/films"] [Chrome Protected Settings] default_search_provider_data.template_url_data.alternate_urls=["{google:baseURL}#q={searchTerms}","{google:baseURL}search#q={searchTerms}","{google:baseURL}webhp#q={searchTerms}","{google:baseURL}s#q={searchTerms}","{google:baseURL}s?q={searchTerms}"] [Chrome Protected Settings] default_search_provider_data.template_url_data.favicon_url=https://www.google.com/images/branding/product/ico/googleg_alldp.ico [Chrome Protected Settings] default_search_provider_data.template_url_data.image_url={google:baseSearchByImageURL}upload [Chrome Protected Settings] default_search_provider_data.template_url_data.suggestions_url={google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:omniboxFocusType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:clientCacheTimeToLive}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} [Chrome Protected Settings] default_search_provider_data.template_url_data.url={google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:language}{google:prefetchSource}{google:searchClient}{google:sourceId}{google:contextualSearchVersion}ie={inputEncoding} [Chrome Protected Settings] default_search_provider_data.template_url_data.keyword=google.com [Chrome Protected Settings] default_search_provider_data.template_url_data.short_name=Google [Chrome Protected Settings] homepage=https://www.orange.fr/portail [Google Chrome Addons] dcgkemofanbgjhnbmjjfomcgdkmobhgi=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dcgkemofanbgjhnbmjjfomcgdkmobhgi ### Route zezo.org: Extract route for MonoRaces update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] gabfmnliflodkdafenbcpjdlppllnemd=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gabfmnliflodkdafenbcpjdlppllnemd ### Enregistrer l'image sous JPG/PNG/WebP: Enregistrez l'image au format PNG, JPG ou WebP par le menu contextuel sur l'image. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] cfhdojbkjhnklbpkdaibdccddilifddb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb ### Adblock Plus - bloqueur de publicités gratuit: Bloquez les publicités YouTube™, les pop-ups et protégez-vous des logiciels malveillants ! update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] hfmdbddgjlicmflejkkoafbkdgnfggbg=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\hfmdbddgjlicmflejkkoafbkdgnfggbg ### Route zezo.org: Extract route for MultiRaces update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ahfgeienlihckogmohjhadlkjgocpleb=C:\Program Files\Google\Chrome\Application\122.0.6261.129\resources\web_store ### Web Store: Découvrez des applications, des jeux, des extensions et des thèmes exceptionnels pour Google Chrome. [Google Chrome Addons] cjpalhdlnbpafiamejdnhcphjbkeiagm=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm ### uBlock Origin: Un bloqueur de nuisances efficace, qui ménagera votre processeur et votre mémoire vive. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] dighjoofcdkhjloaeakagmfnbiehebbb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dighjoofcdkhjloaeakagmfnbiehebbb ### Discord Bot Client: This extension allows you to use https://discordbotclient.jtmaveryk.repl.co update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] aapbdbdomjkkjkaonfhkkikfgjllcleb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb ### Google Traduction: Affichez facilement les traductions lorsque vous naviguez sur le Web. Par l'équipe Google Traduction. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ailoabdmgclmfmhdagmlohpjlbpffblp=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ailoabdmgclmfmhdagmlohpjlbpffblp ### Extension Surfshark VPN: Profitez d’un accès illimité à Internet tout en protégeant vos activités en ligne et vos informations personnelles ! update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mhjfbmdgcfjbbpaeojofohoefgiehjai=C:\Program Files\Google\Chrome\Application\122.0.6261.129\resources\pdf ### Chrome PDF Viewer: [Google Chrome Addons] amknkhejaogpekncjekiaolgldbejjan=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\amknkhejaogpekncjekiaolgldbejjan ### VR Dashboard: Monitor boat position & call virtual sailor weather router update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] neajdppkdcdipfabeoofebfddakdcjhd=C:\Program Files\Google\Chrome\Application\122.0.6261.129\resources\network_speech_synthesis ### Google Network Speech: Component extension providing speech via the Google network text-to-speech service. [Google Chrome Addons] nkeimhogjdpnpccoofpliimaahmaaome=C:\Program Files\Google\Chrome\Application\122.0.6261.129\resources\hangout_services ### Google Hangouts: [Google Chrome Addons] lmbopdiikkamfphhgcckcjhojnokgfeo=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmbopdiikkamfphhgcckcjhojnokgfeo ### Connecteur Antidote: Accéder aux ouvrages d’Antidote directement depuis votre navigateur. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ghbmnnjooekpmoecnnnilnnbdlolhkhi=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi ### Google Docs hors connexion: Modifiez, créez et consultez des documents, feuilles de calcul et présentations, sans accès à Internet. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] kaoholkoedbpjiangnchpfchhmageifp=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kaoholkoedbpjiangnchpfchhmageifp ### Notifier for WhatsApp Web: Unofficial enhacement for WhatsApp™ Web notifications. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] lmjnegcaeklhafolokijcfjliaokphfk=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjnegcaeklhafolokijcfjliaokphfk ### Video DownloadHelper: Télécharger des vidéos depuis le Web update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] pnlccmojcmeohlpggmfnbbiapkmbliob=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob ### Gestionnaire de mots de passe RoboForm: RoboForm vous facilite la vie en se souvenant des mots de passe et en se connectant automatiquement aux sites Web update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] flliilndjeohchalpbbcdekjklbdgfkk=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\flliilndjeohchalpbbcdekjklbdgfkk ### Protection Web Avira: Une navigation privée et sécurisée update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] nmmhkkegccagdldgiimedpiccmgmieda=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ### Paiements via le Chrome Web Store: Paiements via le Chrome Web Store update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mafbdhjdkjnoafhfelkjpchpaepjknad=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mafbdhjdkjnoafhfelkjpchpaepjknad ### Morpheon Dark: A minimalistic dark theme without any distractions update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] dambgipgbnhmnkdolkljibpcbocimnpd=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dambgipgbnhmnkdolkljibpcbocimnpd ### H.265 / HEVC player: Playback video files containing H.265 / HEVC media. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] aegnopegbbhjeeiganiajffnalhlkkjb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb ### Torrent Scanner: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] caljgklbbfbcjjanaijlacgncafpegll=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\caljgklbbfbcjjanaijlacgncafpegll ### Avira Password Manager: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] efaidnbmnnnibpcajpcglclefindmkaj=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ehndikigeekodlnbohjndjjiikphickb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ehndikigeekodlnbohjndjjiikphickb ### Open in PDF Viewer: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ejfmffkmeigkphomnpabpdabfddeadcb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ejfmffkmeigkphomnpabpdabfddeadcb ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ghgabhipcejejjmhhchfonmamedcbeod=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghgabhipcejejjmhhchfonmamedcbeod ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] jgjaeacdkonaoafenlfkkkmbaopkbilf=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jgjaeacdkonaoafenlfkkkmbaopkbilf ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] obhijjefkkokfaiffkcemldacdabpeei=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\obhijjefkkokfaiffkcemldacdabpeei ### AIO Search: Disabled update_url: https://clients2.google.com/service/update2/crx [EDGE CHROMIUM:Default:C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\] [Google Chrome Settings] :HKLM backup.homepage="" [Google Chrome Settings] :HKLM backup.session.urls_to_restore_on_startup="" [Google Chrome Settings] :HKLM session.startup_urls="" [Google Chrome Settings] :HKLM default_search_provider_data.favicon_url="" [Google Chrome Settings] :HKLM default_search_provider_data.keyword="" [Google Chrome Settings] :HKLM default_search_provider_data.short_name="" [Google Chrome Settings] :HKLM default_search_provider_data.url="" [Google Chrome Settings] :HKLM default_search_provider_data.suggestions_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.alternate_urls="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.favicon_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.keyword="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.short_name="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.suggest_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.new_tab_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.instant_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.image_url="" [Google Chrome Settings] :HKLM homepage="" [Google Chrome Settings] :HKLM session.urls_to_restore_on_startup="" [Chrome Protected Settings] session.startup_urls=["https:\/\/actu.orange.fr\/"] [Chrome Protected Settings] homepage=https://actu.orange.fr/ [Google Chrome Addons] dcgkemofanbgjhnbmjjfomcgdkmobhgi=C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dcgkemofanbgjhnbmjjfomcgdkmobhgi ### Route zezo.org: Extract route for MonoRaces update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ihmafllikibpmigkcoadcmckbfhibefp=C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\resources\edge_feedback ### Edge Feedback: User feedback extension [Google Chrome Addons] hfmdbddgjlicmflejkkoafbkdgnfggbg=C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hfmdbddgjlicmflejkkoafbkdgnfggbg ### Route zezo.org: Extract route for MultiRaces update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ahfgeienlihckogmohjhadlkjgocpleb=C:\Program Files (x86)\Microsoft\Edge\Application\120.0.2210.91\resources\web_store ### Web Store: Découvrir les extensions pour Microsoft Edge. [Google Chrome Addons] ncbjelpjchkpbikbpkcchkhkblodoama=C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\resources\webrtc_internals ### WebRTC Internals Extension: [Google Chrome Addons] ljfpcifpgbbchoddpjefaipoiigpdmag=C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ljfpcifpgbbchoddpjefaipoiigpdmag ### Gestionnaire de mots de passe RoboForm: RoboForm vous facilite la vie en se souvenant des mots de passe et en se connectant automatiquement aux sites Web update_url: https://edge.microsoft.com/extensionwebstorebase/v1/crx [Google Chrome Addons] kmendfapggjehodndflmmgagdbamhnfd=C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\resources\cryptotoken ### CryptoTokenExtension: CryptoToken Component Extension [Google Chrome Addons] iglcjdemknebjbklcgkfaebgojjphkec=C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\resources\microsoft_web_store ### Microsoft Store: Découvrir les extensions pour Microsoft Edge. [Google Chrome Addons] jmjflgjpcpepeafmmgdpfkogkghcpiha=C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha ### Edge relevant text changes: Edge relevant text changes on select websites to improve user experience and precisely surfaces the action they want to take. update_url: https://edge.microsoft.com/extensionwebstorebase/v1/crx [Google Chrome Addons] epdpgaljfdjmcemiaplofbiholoaepem=C:\Program Files (x86)\Microsoft\Edge\Application\121.0.2277.83\resources\edge_suppress_consent_prompt ### Suppress Consent Prompt: Suppress consent prompt for quick authentication [Google Chrome Addons] mhjfbmdgcfjbbpaeojofohoefgiehjai=C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\resources\edge_pdf ### Microsoft Edge PDF Viewer: [Google Chrome Addons] fikbjbembnmfhppjfnmfkahdhfohhjmg=C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\resources\media_internals_services ### Media Internals Services Extension: [Google Chrome Addons] amknkhejaogpekncjekiaolgldbejjan=C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\amknkhejaogpekncjekiaolgldbejjan ### VR Dashboard: Monitor boat position & call virtual sailor weather router update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] jdiccldimpdaibmpdkjnbmckianbfold=C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\resources\microsoft_voices ### Microsoft Voices: Provides access to Microsoft's online text-to-speech voices [Google Chrome Addons] dgiklkfkllikcanfonkcabmbdfmgleag=C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\resources\edge_clipboard ### Microsoft Clipboard Extension: This extension grants Microsoft web sites permission to read and write from the clipboard. [Google Chrome Addons] nkeimhogjdpnpccoofpliimaahmaaome=C:\Program Files (x86)\Microsoft\Edge\Application\128.0.2739.42\resources\hangout_services ### WebRTC Extension: [Google Chrome Addons] ghbmnnjooekpmoecnnnilnnbdlolhkhi=C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] lmbopdiikkamfphhgcckcjhojnokgfeo=C:\Users\Utilisateur\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lmbopdiikkamfphhgcckcjhojnokgfeo ### Antidote connector: Disabled update_url: https://clients2.google.com/service/update2/crx [Pre-installed Extensions] :HKLM emgfgdclgfeldebanedpihppahgngnle=https://edge.microsoft.com/extensionwebstorebase/v1/crx ### update_url: https://edge.microsoft.com/extensionwebstorebase/v1/crx [Internet Explorer] [Default Home Page] :HKLM Default_Page_URL=http://go.microsoft.com/fwlink/p/?LinkId=255141 [Current Home Page] :HKCU Start Page=http://go.microsoft.com/fwlink/p/?LinkId=255141 [Current Home Page] :HKCU HOMEOldSP="" [Current Home Page] :HKCU Default_Page_URL="" [Current Home Page] :HKLM Start Page=http://go.microsoft.com/fwlink/p/?LinkId=255141 [Current Home Page] :HKLM HOMEOldSP="" [All Users Search] :HKLM Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896 [All Users Search] :HKLM Search Page=http://go.microsoft.com/fwlink/?LinkId=54896 [Current Home Page(x64)] :HKLM Start Page=http://go.microsoft.com/fwlink/p/?LinkId=255141 [Current Home Page(x64)] :HKLM HOMEOldSP="" [All Users Search(x64)] :HKLM Default_Search_URL=http://go.microsoft.com/fwlink/?LinkId=54896 [All Users Search(x64)] :HKLM Search Page=http://go.microsoft.com/fwlink/?LinkId=54896 [Current Users Search] :HKCU Default_Search_URL="" [Current Users Search] :HKCU Search Page=http://go.microsoft.com/fwlink/?LinkId=54896 [Current Users Search] :HKCU Search Bar="" [IE Local Blank Page] :HKCU Local Page=%11%\blank.htm [IE Local Blank Page] :HKLM Local Page=C:\Windows\SysWOW64\blank.htm [Browser Helper Objects] {1FD49718-1D00-4B19-AF5F-070AF6D5D54C}=C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\129.0.2792.89\BHO\IE_TO_EDGE_BHO.DLL ### IEToEdge BHO Microsoft Corporation IEToEdge BHO 129.0.2792.89 ->IE_TO_EDGE_BHO_DLL !$*C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.89\BHO\ie_to_edge_bho.dll [Browser Helper Objects] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESX86\MICROSOFT OFFICE\OFFICE16\OCHELPER.DLL ### Skype for Business Microsoft Corporation Microsoft Office 16.0.18025.20030 !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [Browser Helper Objects] {449D0D6E-2412-4E61-B68F-1CB625CD9E52}=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICEXPLORER32.DLL ### Adds classic Windows Explorer features IvoSoft Classic Shell 4, 3, 1, 0 ->CLASSICEXPLORER.DLL !$*C:\Program Files\Classic Shell\ClassicExplorer32.dll [Browser Helper Objects] {724d43a9-0d85-11d4-9908-00400523e39a}=C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\9.6.2.2\ROBOFORM.DLL ### RoboForm Main Module Siber Systems Inc. RoboForm 9.6.2.2 !$*C:\Program Files (x86)\Siber Systems\AI RoboForm\9.6.2.2\roboform.dll [Browser Helper Objects] {AF949550-9094-4807-95EC-D1C317803333}=C:\PROGRAM FILES\LOGITECH\SETPOINTP\32-BIT\SETPOINTSMOOTH.DLL ### Logitech SetPoint Logitech, Inc. Logitech SetPoint 6.90.66 !$*C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [Browser Helper Objects] {EA801577-E6AD-4BD5-8F71-4BE0154331A4}=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICIEDLL_32.DLL ### Customizations for the title bar and status bar of IE IvoSoft Classic Shell 4, 3, 1, 0 ->CLASSICIEDLL.DLL !$*C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [Browser Helper Objects(x64)] {1FD49718-1D00-4B19-AF5F-070AF6D5D54C}=C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\129.0.2792.89\BHO\IE_TO_EDGE_BHO_64.DLL ### IEToEdge BHO Microsoft Corporation IEToEdge BHO 129.0.2792.89 ->IE_TO_EDGE_BHO_64_DLL !$*C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.89\BHO\ie_to_edge_bho_64.dll [Browser Helper Objects(x64)] {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\OCHELPER.DLL ### Skype for Business Microsoft Corporation Microsoft Office 16.0.18025.20030 !$*C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [Browser Helper Objects(x64)] {449D0D6E-2412-4E61-B68F-1CB625CD9E52}=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICEXPLORER64.DLL ### Adds classic Windows Explorer features IvoSoft Classic Shell 4, 3, 1, 0 ->CLASSICEXPLORER.DLL !$*C:\Program Files\Classic Shell\ClassicExplorer64.dll [Browser Helper Objects(x64)] {724d43a9-0d85-11d4-9908-00400523e39a}=C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\9.6.2.2\ROBOFORM-X64.DLL ### RoboForm Main Module Siber Systems Inc. RoboForm 9.6.2.2 ->ROBOFORM =>ROBOFORM.DLL !$*C:\Program Files (x86)\Siber Systems\AI RoboForm\9.6.2.2\RoboForm-x64.dll [Browser Helper Objects(x64)] {AF949550-9094-4807-95EC-D1C317803333}=C:\PROGRAM FILES\LOGITECH\SETPOINTP\SETPOINTSMOOTH.DLL ### Logitech SetPoint Logitech, Inc. Logitech SetPoint 6.90.66 !$*C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [Browser Helper Objects(x64)] {EA801577-E6AD-4BD5-8F71-4BE0154331A4}=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICIEDLL_64.DLL ### Customizations for the title bar and status bar of IE IvoSoft Classic Shell 4, 3, 1, 0 ->CLASSICIEDLL.DLL !$*C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [Auto Search URL] :HKCU provider="" [Auto Search URL] :HKCU "Default Value"="" [Search Assistant] :HKCU SearchAssistant="" [Search Assistant] :HKLM SearchAssistant="" [Search Assistant] :HKCU CustomizeSearch="" [Search Assistant] :HKLM CustomizeSearch="" [Search Provider for All Users] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC ### Bing [Search Provider for All Users] DefaultScope={0633EE93-D776-472f-A0FF-E1416B8B2E3A} [Search Provider for All Users(x64)] {0633EE93-D776-472f-A0FF-E1416B8B2E3A}=http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC ### Bing [Search Provider for All Users(x64)] DefaultScope={0633EE93-D776-472f-A0FF-E1416B8B2E3A} [CustomizeSearch] :HKLM CustomizeSearch="" [URLSearchHook] :HKCU {CFBFAE00-17A6-11D0-99CB-00C04FD64497}="" [Search URL Template] :HKLM 1="" [Search URL Template] :HKLM 2="" [Search URL Template] :HKLM 3="" [Search URL Template] :HKLM 4="" [Default Prefix] :HKLM "Default Value"=http:// [URL Default Prefixes] :HKLM ftp=ftp:// [URL Default Prefixes] :HKLM home=http:// [URL Default Prefixes] :HKLM mosaic=http:// [URL Default Prefixes] :HKLM www=http:// [AboutURLs] :HKLM blank=res://mshtml.dll/blank.htm [AboutURLs] :HKLM DesktopItemNavigationFailure=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM Home=270 [AboutURLs] :HKLM InPrivate=res://ieframe.dll/inprivate.htm [AboutURLs] :HKLM NavigationCanceled=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM NavigationFailure=res://ieframe.dll/navcancl.htm [AboutURLs] :HKLM NoAdd-ons=res://ieframe.dll/noaddon.htm [AboutURLs] :HKLM NoAdd-onsInfo=res://ieframe.dll/noaddoninfo.htm [AboutURLs] :HKLM PostNotCached=res://ieframe.dll/repost.htm [AboutURLs] :HKLM SecurityRisk=res://ieframe.dll/securityatrisk.htm [User Style Sheet] :HKCU User Stylesheet="" [User Style Sheet] :HKCU Use My Stylesheet=0 [Execute unsigned ActiveX in My Computer Zone] :HKCU 1201=0 [Execute unsigned ActiveX in My Computer Zone] :HKLM 1201=1 [Execute unsigned ActiveX in Local Intranet Zone] :HKCU 1201=0 [Execute unsigned ActiveX in Local Intranet Zone] :HKLM 1201=3 [Execute unsigned ActiveX in Internet Zone] :HKCU 1201=3 [Execute unsigned ActiveX in Internet Zone] :HKLM 1201=3 [Links Toolbar] :HKCU LinksFolderName="" [Toolbars] :HKLM {724d43a0-0d85-11d4-9908-00400523e39a}=C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\9.6.2.2\ROBOFORM.DLL ### RoboForm Main Module Siber Systems Inc. RoboForm 9.6.2.2 !$*C:\Program Files (x86)\Siber Systems\AI RoboForm\9.6.2.2\roboform.dll [Toolbars] :HKLM {d2bf470e-ed1c-487f-a666-2bd8835eb6ce}=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Toolbars] :HKLM {d2bf470e-ed1c-487f-a777-2bd8835eb6ce}=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Toolbars] :HKLM {d2bf470e-ed1c-487f-a333-2bd8835eb6ce}=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Toolbars] :HKLM {d2bf470e-ed1c-487f-a300-2bd8835eb6ce}=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Toolbars] :HKLM {553891B7-A0D5-4526-BE18-D3CE461D6310}=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICEXPLORER32.DLL ### Adds classic Windows Explorer features IvoSoft Classic Shell 4, 3, 1, 0 ->CLASSICEXPLORER.DLL !$*C:\Program Files\Classic Shell\ClassicExplorer32.dll [Toolbars(x64)] :HKLM {724d43a0-0d85-11d4-9908-00400523e39a}=C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\9.6.2.2\ROBOFORM-X64.DLL ### RoboForm Main Module Siber Systems Inc. RoboForm 9.6.2.2 ->ROBOFORM =>ROBOFORM.DLL !$*C:\Program Files (x86)\Siber Systems\AI RoboForm\9.6.2.2\RoboForm-x64.dll [Toolbars(x64)] :HKLM {d2bf470e-ed1c-487f-a666-2bd8835eb6ce}=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Toolbars(x64)] :HKLM {d2bf470e-ed1c-487f-a777-2bd8835eb6ce}=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Toolbars(x64)] :HKLM {d2bf470e-ed1c-487f-a333-2bd8835eb6ce}=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Toolbars(x64)] :HKLM {d2bf470e-ed1c-487f-a300-2bd8835eb6ce}=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Toolbars(x64)] :HKLM {553891B7-A0D5-4526-BE18-D3CE461D6310}=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICEXPLORER64.DLL ### Adds classic Windows Explorer features IvoSoft Classic Shell 4, 3, 1, 0 ->CLASSICEXPLORER.DLL !$*C:\Program Files\Classic Shell\ClassicExplorer64.dll [IE Extensions - All Users] :HKLM {31D09BA0-12F5-4CCE-BE8A-2923E76605DA}=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESX86\MICROSOFT OFFICE\OFFICE16\OCHELPER.DLL ### Skype for Business Microsoft Corporation Microsoft Office 16.0.18025.20030 !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [IE Extensions - All Users] :HKLM {320AF880-6646-11D3-ABEE-C5DBF3571F46}=C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\9.6.2.2\ROBOFORM.DLL ### RoboForm Main Module Siber Systems Inc. RoboForm 9.6.2.2 !$*C:\Program Files (x86)\Siber Systems\AI RoboForm\9.6.2.2\roboform.dll [IE Extensions - All Users] :HKLM {320AF880-6646-11D3-ABEE-C5DBF3571F49}=C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\9.6.2.2\ROBOFORM.DLL ### RoboForm Main Module Siber Systems Inc. RoboForm 9.6.2.2 !$*C:\Program Files (x86)\Siber Systems\AI RoboForm\9.6.2.2\roboform.dll [IE Extensions - All Users] :HKLM {56753E59-AF1D-4FBA-9E15-31557124ADA2}=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICIE_32.EXE ### Classic IE IvoSoft Classic Shell 4, 3, 1, 0 ->CLASSICIE =>CLASSICIE.EXE !$*C:\Program Files\Classic Shell\ClassicIE_32.exe [IE Extensions - All Users] :HKLM {724d43aa-0d85-11d4-9908-00400523e39a}=C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\9.6.2.2\ROBOFORM.DLL ### RoboForm Main Module Siber Systems Inc. RoboForm 9.6.2.2 !$*C:\Program Files (x86)\Siber Systems\AI RoboForm\9.6.2.2\roboform.dll [Context menu items] :HKCU Afficher la barre d'outils RoboForm=file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComShowToolbar.html ### File is missing. file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComShowToolbar.html !$*file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComShowToolbar.html [Context menu items] :HKCU E&xport to Microsoft Excel=res://C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE/3000 ### File is missing. res://C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE/3000 Activated when right clicked on: Default !$*res://C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE/3000 [Context menu items] :HKCU Enregistrer les formulaires=file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComSavePass.html ### File is missing. file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComSavePass.html !$*file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComSavePass.html [Context menu items] :HKCU Personnaliser le menu=file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComCustomizeIEMenu.html ### File is missing. file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComCustomizeIEMenu.html !$*file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComCustomizeIEMenu.html [Context menu items] :HKCU Remplir les formulaires=file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComFillForms.html ### File is missing. file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComFillForms.html !$*file://C:/Program Files (x86)/Siber Systems/AI RoboForm/9.6.2.2/RoboFormComFillForms.html [AutoConfigURL] :HKCU AutoConfigURL="" [Protocols Filter] :HKLM application/octet-stream={1E66F26B-79EE-11D2-8710-00C04F79ED0D} [Protocols Filter] :HKLM application/x-complus={1E66F26B-79EE-11D2-8710-00C04F79ED0D} [Protocols Filter] :HKLM application/x-msdownload={1E66F26B-79EE-11D2-8710-00C04F79ED0D} [Protocols Filter] :HKLM text/xml=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESCOMMONX86\MICROSOFT SHARED\OFFICE16\MSOXMLMF.DLL ### Microsoft Office XML MIME Filter Microsoft Corporation Microsoft Office 16.0.17425.20008 !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL [Protocols Handler] :HKLM about [Protocols Handler] :HKLM cdl={3dd53d40-7b8b-11D0-b013-00aa0059ce02} [Protocols Handler] :HKLM dvd={3dd53d40-7b8b-11D0-b013-00aa0059ce02} [Protocols Handler] :HKLM file={79eac9e7-baf9-11ce-8c82-00aa004ba90b} [Protocols Handler] :HKLM ftp={79eac9e3-baf9-11ce-8c82-00aa004ba90b} [Protocols Handler] :HKLM http={79eac9e2-baf9-11ce-8c82-00aa004ba90b} [Protocols Handler] :HKLM https={79eac9e5-baf9-11ce-8c82-00aa004ba90b} [Protocols Handler] :HKLM its={79eac9e5-baf9-11ce-8c82-00aa004ba90b} [Protocols Handler] :HKLM javascript={3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} [Protocols Handler] :HKLM local={79eac9e7-baf9-11ce-8c82-00aa004ba90b} [Protocols Handler] :HKLM mailto={3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} [Protocols Handler] :HKLM mhtml={3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} [Protocols Handler] :HKLM mk={79eac9e6-baf9-11ce-8c82-00aa004ba90b} [Protocols Handler] :HKLM ms-its={79eac9e6-baf9-11ce-8c82-00aa004ba90b} [Protocols Handler] :HKLM mso-minsb-roaming.16=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESX86\MICROSOFT OFFICE\OFFICE16\MSOSB.DLL ### Microsoft Office component Microsoft Corporation Microsoft Office 16.0.18025.20030 !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [Protocols Handler] :HKLM mso-minsb.16=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESX86\MICROSOFT OFFICE\OFFICE16\MSOSB.DLL ### Microsoft Office component Microsoft Corporation Microsoft Office 16.0.18025.20030 !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [Protocols Handler] :HKLM osf-roaming.16=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESX86\MICROSOFT OFFICE\OFFICE16\MSOSB.DLL ### Microsoft Office component Microsoft Corporation Microsoft Office 16.0.18025.20030 !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [Protocols Handler] :HKLM osf.16=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESX86\MICROSOFT OFFICE\OFFICE16\MSOSB.DLL ### Microsoft Office component Microsoft Corporation Microsoft Office 16.0.18025.20030 !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [Protocols Handler] :HKLM res={3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} [Protocols Handler] :HKLM tbauth={3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} [Protocols Handler] :HKLM tv={3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} [Protocols Handler] :HKLM vbscript={3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} [Protocols Handler] :HKLM windows.tbauth={3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} [Proxy] :HKCU ProxyServer="" [Proxy] :HKCU ProxyEnable=0 [Network Settings] [Name Server] {0b8b9f48-0b42-4482-9fda-b2579ab23ebd}=192.168.1.1 ### DHCPNameServer:192.168.1.1 [Name Server] {3e4a1ef7-e312-40e8-9e3a-43f25c4025f5}=192.168.1.1 ### DHCPNameServer:192.168.1.1 DhcpDefaultGateway:192.168.1.1 DhcpServer:192.168.1.1 [Hosts File Path] :HKLM DataBasePath=%SystemRoot%\System32\drivers\etc [Disabled Remote Desktop] :HKLM fDenyTSConnections=1 [Allow Remote Assistantance] :HKLM fAllowToGetHelp=1 [Hosts File Contents] :HKLM 127.0.0.1 liveupdate.acronis.com [Hosts File Contents] :HKLM 127.0.0.1 activation.acronis.com [Hosts File Contents] :HKLM 127.0.0.1 web-api-tih.acronis.com [Hosts File Contents] :HKLM 127.0.0.1 download.acronis.com [Hosts File Contents] :HKLM 127.0.0.1 orders.acronis.com [Hosts File Contents] :HKLM 127.0.0.1 ns1.acronis.com [Hosts File Contents] :HKLM 127.0.0.1 ns2.acronis.com [Hosts File Contents] :HKLM 127.0.0.1 ns3.acronis.com [Hosts File Contents] :HKLM 127.0.0.1 account.acronis.com [Hosts File Contents] :HKLM 127.0.0.1 gateway.acronis.com [Hosts File Contents] :HKLM 127.0.0.1 license.piriform.com [Hosts File Contents] :HKLM 127.0.0.1 www.license.piriform.com [Hosts File Contents] :HKLM 127.0.0.1 speccy.piriform.com [Hosts File Contents] :HKLM 127.0.0.1 www.speccy.piriform.com [Hosts File Contents] :HKLM 127.0.0.1 recuva.piriform.com [Hosts File Contents] :HKLM 127.0.0.1 www.recuva.piriform.com [Hosts File Contents] :HKLM 127.0.0.1 defraggler.piriform.com [Hosts File Contents] :HKLM 127.0.0.1 www.defraggler.piriform.com [Hosts File Contents] :HKLM 127.0.0.1 ccleaner.piriform.com [Hosts File Contents] :HKLM 127.0.0.1 www.ccleaner.piriform.com [Hosts File Contents] :HKLM 127.0.0.1 license-api.ccleaner.com [Hosts File Contents] :HKLM 0.0.0.0 web-api-tie.acronis.com [Hosts File Contents] :HKLM 0.0.0.0 web-api-vmp.acronis.com [Hosts File Contents] :HKLM 0.0.0.0 cloud-rs-ru2.acronis.com [Hosts File Contents] :HKLM 0.0.0.0 cloud-fes-ru2.acronis.com [Hosts File Contents] :HKLM 0.0.0.0 rpc.acronis.com [Browsers] [Installed Browsers] Firefox-308046B0AF4A39CB=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE [Installed Browsers] Google Chrome=C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google LLC Google Chrome 129.0.6668.101 ->CHROME_EXE !$*C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\CHROME.EXE [Installed Browsers] IEXPLORE.EXE=C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE ### Internet Explorer Microsoft Corporation Internet Explorer 11.00.26100.1 !$*C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE [Installed Browsers] Microsoft Edge=C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\MSEDGE.EXE ### Default Browser Microsoft Edge Microsoft Corporation Microsoft Edge 129.0.2792.89 ->MSEDGE_EXE !$*C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\MSEDGE.EXE [FireFox Components and Extensions] adguardadblocker@adguard.com=C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\hr78n8nn.default-release\extensions\adguardadblocker@adguard.com.xpi ### =>Active:1 Sign:2?^:AdGuard AdBlocker: Unmatched adblock extension against advertising and pop-ups. Blocks ads on Facebook, YouTube and all other websites. [FireFox Components and Extensions] antidote_uni11_firefox@druide.com=C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\hr78n8nn.default-release\extensions\antidote_uni11_firefox@druide.com.xpi ### =>Active:1 Sign:2?^:Connecteur Antidote: Accéder aux ouvrages d’Antidote directement depuis votre navigateur. [FireFox Components and Extensions] rf-firefox@siber.com=C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\hr78n8nn.default-release\extensions\rf-firefox@siber.com.xpi ### =>Active:1 Sign:2?^:RoboForm Password Manager: RoboForm Password Manager makes your life easier by remembering passwords and logging you into websites automatically [FireFox Components and Extensions] uBlock0@raymondhill.net=C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\hr78n8nn.default-release\extensions\uBlock0@raymondhill.net.xpi ### =>Active:1 Sign:2?^:uBlock Origin: Finally, an efficient blocker. Easy on CPU and memory. [FireFox Components and Extensions] {732216ec-0dab-43bb-ac85-4b5e1977599d}=C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\hr78n8nn.default-release\extensions\{732216ec-0dab-43bb-ac85-4b5e1977599d}.xpi ### =>Active:1 Sign:2?^:Surfshark VPN Extension: Browse the web freely with secure, private internet access for the Firefox browser extension. [FireFox Components and Extensions] {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}=C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\hr78n8nn.default-release\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi ### =>Active:1 Sign:2?^:Adblock Plus - free ad blocker: Remove ads on YouTube and everywhere else you browse. [FireFox Components and Extensions] {d470e2a3-6538-4b76-938e-252ce9d8c058}=C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\hr78n8nn.default-release\extensions\{d470e2a3-6538-4b76-938e-252ce9d8c058}.xpi ### =>Active:1 Sign:2?^:Autumn Twining [FireFox Components and Extensions] {e58d3966-3d76-4cd9-8552-1582fbc800c1}=C:\Users\Utilisateur\AppData\Roaming\Mozilla\Firefox\Profiles\hr78n8nn.default-release\extensions\{e58d3966-3d76-4cd9-8552-1582fbc800c1}.xpi ### =>Active:1 Sign:2?^:Buster: Captcha Solver for Humans: Save time by asking Buster to solve CAPTCHAs for you. [FireFox Components and Extensions] LogiSmoothFirefoxExt=C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt\ ### =>Active:0 Sign:0?^: Files bg.js content.js content_lores.js htmlhelpers.js logitech_setpoint.xpi [FireFox Browser Features] formautofill@mozilla.org=C:\PROGRAM FILES\MOZILLA FIREFOX\browser\features\formautofill@mozilla.org.xpi ### =>Active:1 Sign:0?^:Form Autofill [FireFox Browser Features] pictureinpicture@mozilla.org=C:\PROGRAM FILES\MOZILLA FIREFOX\browser\features\pictureinpicture@mozilla.org.xpi ### =>Active:1 Sign:0?^:Picture-In-Picture: Fixes for web compatibility with Picture-in-Picture [FireFox Browser Features] screenshots@mozilla.org=C:\PROGRAM FILES\MOZILLA FIREFOX\browser\features\screenshots@mozilla.org.xpi ### =>Active:0 Sign:0?^:Firefox Screenshots: Take clips and screenshots from the Web and save them temporarily or permanently. [FireFox Browser Features] webcompat-reporter@mozilla.org=C:\PROGRAM FILES\MOZILLA FIREFOX\browser\features\webcompat-reporter@mozilla.org.xpi ### =>Active:0 Sign:0?^:WebCompat Reporter: Report site compatibility issues on webcompat.com [FireFox Browser Features] webcompat@mozilla.org=C:\PROGRAM FILES\MOZILLA FIREFOX\browser\features\webcompat@mozilla.org.xpi ### =>Active:1 Sign:0?^:Web Compatibility Interventions: Urgent post-release fixes for web compatibility. [FireFox Settings] :HKLM browser.startup.homepage=https://www.google.com/ [FireFox Settings] :HKLM browser.startup.homepage_override_url="" [FireFox Settings] :HKLM browser.search.selectedEngine="" [FireFox Settings] :HKLM browser.search.selectedEngine,S="" [FireFox Settings] :HKLM browser.search.defaultEnginename="" [FireFox Settings] :HKLM browser.search.defaultEnginename,S="" [FireFox Settings] :HKLM browser.search.order.1="" [FireFox Settings] :HKLM browser.search.order.1,S="" [FireFox Settings] :HKLM browser.search.defaulturl="" [FireFox Settings] :HKLM browser.newtab.url="" [FireFox Settings] :HKLM keyword.URL="" [FireFox Settings] :HKLM network.proxy.autoconfig_url="" [FireFox Settings] :HKLM network.proxy.type="" [FireFox Settings] :HKLM network.proxy.http="" [FireFox Settings] :HKLM network.proxy.http_port="" [FireFox Settings] :HKLM browser.search.searchengine.hp="" [FireFox Settings] :HKLM browser.search.searchengine.sp="" [FireFox Settings] :HKLM browser.search.searchengine.url="" [FireFox Settings] :HKLM browser.search.selectedEngine="" [Firefox Search Engine (search-metadata)] :HKLM [global].searchdefault="" [Firefox Search Engine (search-metadata)] :HKLM [global].current="" [Firefox SearchDefault (mozlz4)] :HKLM metaData.searchDefault="" [Firefox SearchDefault (mozlz4)] :HKLM metaData.current="" [Google Chrome Settings] :HKLM backup.homepage="" [Google Chrome Settings] :HKLM backup.session.urls_to_restore_on_startup="" [Google Chrome Settings] :HKLM session.startup_urls="" [Google Chrome Settings] :HKLM default_search_provider_data.favicon_url="" [Google Chrome Settings] :HKLM default_search_provider_data.keyword="" [Google Chrome Settings] :HKLM default_search_provider_data.short_name="" [Google Chrome Settings] :HKLM default_search_provider_data.url="" [Google Chrome Settings] :HKLM default_search_provider_data.suggestions_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.alternate_urls="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.favicon_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.keyword="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.short_name="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.suggest_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.new_tab_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.instant_url="" [Google Chrome Settings] :HKLM default_search_provider_data.template_url_data.image_url="" [Google Chrome Settings] :HKLM homepage="" [Google Chrome Settings] :HKLM session.urls_to_restore_on_startup="" [Chrome Protected Settings] search_web_data.url={google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:language}{google:prefetchSource}{google:searchClient}{google:sourceId}{google:contextualSearchVersion}ie={inputEncoding} [Chrome Protected Settings] search_web_data.created_by_policy=0 [Chrome Protected Settings] search_web_data.suggest_url={google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:omniboxFocusType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:clientCacheTimeToLive}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} [Chrome Protected Settings] session.startup_urls=["https:\/\/www.virtualregatta.com\/fr\/offshore-jeu\/","chrome-extension:\/\/amknkhejaogpekncjekiaolgldbejjan\/dashboard.html?2","chrome:\/\/newtab\/","https:\/\/web.whatsapp.com\/","https:\/\/forums.commentcamarche.net\/forum\/affich-25789872-les-liens-s-ouvrent-dans-un-nouvel-onglet#4","chrome:\/\/newtab\/","http:\/\/zezo.org\/nysf\/chart.pl?sid=c0bab6822af297395b4056d628d36baf&o=244&wind=0&clon=-30.388671875&clat=3.490234375&scale=512","http:\/\/zezo.org\/figaro\/chart.pl?lat=49.9946600147&lon=-6.8269839705&o=244&twa=-123.2662&userid=5bda0aee517022fc09d3d849&type=me","https:\/\/chrome.google.com\/webstore\/detail\/just-black\/aghfnjkcakhmadgdomlmlhhaocbkloab?hl=fr","https:\/\/www.google.fr\/?t=636874899788356789","chrome:\/\/extensions\/","https:\/\/www.oxtorrent.nz\/torrents\/films"] [Chrome Protected Settings] default_search_provider_data.template_url_data.alternate_urls=["{google:baseURL}#q={searchTerms}","{google:baseURL}search#q={searchTerms}","{google:baseURL}webhp#q={searchTerms}","{google:baseURL}s#q={searchTerms}","{google:baseURL}s?q={searchTerms}"] [Chrome Protected Settings] default_search_provider_data.template_url_data.favicon_url=https://www.google.com/favicon.ico [Chrome Protected Settings] default_search_provider_data.template_url_data.image_url={google:baseSearchByImageURL}upload [Chrome Protected Settings] default_search_provider_data.template_url_data.suggestions_url={google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:omniboxFocusType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:clientCacheTimeToLive}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} [Chrome Protected Settings] default_search_provider_data.template_url_data.url={google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:language}{google:prefetchSource}{google:searchClient}{google:sourceId}{google:contextualSearchVersion}ie={inputEncoding} [Chrome Protected Settings] default_search_provider_data.template_url_data.keyword=google.com [Chrome Protected Settings] default_search_provider_data.template_url_data.short_name=Google [Chrome Protected Settings] homepage=https://www.orange.fr/portail [Google Chrome Addons] dcgkemofanbgjhnbmjjfomcgdkmobhgi=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcgkemofanbgjhnbmjjfomcgdkmobhgi ### Route zezo.org: Extract route for MonoRaces update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] cfhdojbkjhnklbpkdaibdccddilifddb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb ### Adblock Plus - bloqueur de publicités gratuit: Supprimez les publicités sur YouTube et partout où vous naviguez. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] pccckmaobkjjboncdfnnofkonhgpceea=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pccckmaobkjjboncdfnnofkonhgpceea ### Hover Zoom+: Zoomez les images/vidéos sur tous vos sites favoris (Facebook, Amazon..). Il suffit de passer la souris sur l'image pour l'agrandir. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ahfgeienlihckogmohjhadlkjgocpleb=C:\Program Files\Google\Chrome\Application\120.0.6099.225\resources\web_store ### Web Store: Découvrez des applications, des jeux, des extensions et des thèmes exceptionnels pour Google Chrome. [Google Chrome Addons] hkgfoiooedgoejojocmhlaklaeopbecg=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgfoiooedgoejojocmhlaklaeopbecg ### Picture-in-Picture Extension (by Google): Watch video using Picture-in-Picture update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] aapbdbdomjkkjkaonfhkkikfgjllcleb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb ### Google Traduction: Affichez facilement les traductions lorsque vous naviguez sur le Web. Par l'équipe Google Traduction. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ailoabdmgclmfmhdagmlohpjlbpffblp=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ailoabdmgclmfmhdagmlohpjlbpffblp ### Extension Surfshark VPN: Naviguez librement sur le Web, en toute confidentialité et sécurité avec l’extension pour Chrome. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] haebnnbpedcbhciplfhjjkbafijpncjl=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\haebnnbpedcbhciplfhjjkbafijpncjl ### TinEye Reverse Image Search: This is the official TinEye Chrome extension. Find out where an image came from, how it's used, or find higher resolution versions. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mhjfbmdgcfjbbpaeojofohoefgiehjai=C:\Program Files\Google\Chrome\Application\120.0.6099.225\resources\pdf ### Chrome PDF Viewer: [Google Chrome Addons] amknkhejaogpekncjekiaolgldbejjan=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\amknkhejaogpekncjekiaolgldbejjan ### VR Dashboard: Monitor boat position & call virtual sailor weather router update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] neajdppkdcdipfabeoofebfddakdcjhd=C:\Program Files\Google\Chrome\Application\120.0.6099.225\resources\network_speech_synthesis ### Google Network Speech: Component extension providing speech via the Google network text-to-speech service. [Google Chrome Addons] nkeimhogjdpnpccoofpliimaahmaaome=C:\Program Files\Google\Chrome\Application\120.0.6099.225\resources\hangout_services ### Google Hangouts: [Google Chrome Addons] jghecgabfgfdldnmbfkhmffcabddioke=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\jghecgabfgfdldnmbfkhmffcabddioke ### Volume Master - contrôleur de volume: Augmentation du volume jusqu'à 600% update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ghbmnnjooekpmoecnnnilnnbdlolhkhi=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi ### Google Docs hors connexion: Modifiez, créez et consultez des documents, feuilles de calcul et présentations, sans accès à Internet. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] kaoholkoedbpjiangnchpfchhmageifp=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\kaoholkoedbpjiangnchpfchhmageifp ### Notifier for WhatsApp Web: Unofficial enhacement for WhatsApp™ Web notifications. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] olnconaknblgbkfgknkfmmfhhbebkekd=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\olnconaknblgbkfgknkfmmfhhbebkekd ### Extension Alerte Pluie: Cette extension météo vous avertit de l'arrivée imminente des précipitations. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] pnlccmojcmeohlpggmfnbbiapkmbliob=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\pnlccmojcmeohlpggmfnbbiapkmbliob ### Gestionnaire de mots de passe RoboForm: RoboForm vous facilite la vie en se souvenant des mots de passe et en se connectant automatiquement aux sites Web update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] gmehookibnphigonphocphhcepbijeen=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmehookibnphigonphocphhcepbijeen ### Image dans l'image - lecteur vidéo flottant: Regardez des vidéos tout en surfant sur le Web avec le mode Image dans l'image. Lecteur vidéo flottant pour le Web! update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] nmmhkkegccagdldgiimedpiccmgmieda=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda ### Paiements via le Chrome Web Store: Paiements via le Chrome Web Store update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ochhcgamjcnhpaekcckimgofnedofplf=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ochhcgamjcnhpaekcckimgofnedofplf ### Zoomer pour remplir - vidéo ultrawide: Zoom vidéo, changer le rapport d'aspect de n'importe quelle vidéo, supprimer les barres noires sur Netflix, Amazon Prime, YouTube, HBO Max. Rapport d'aspect vidéo ultrawide. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ddkjiahejlhfcafbddmgiahcphecmpfh=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ddkjiahejlhfcafbddmgiahcphecmpfh ### uBlock Origin Lite: Un bloqueur de contenu sans permission requise. Bloque les publicités, pisteurs, mineurs et plus dès l'installation. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mafbdhjdkjnoafhfelkjpchpaepjknad=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\mafbdhjdkjnoafhfelkjpchpaepjknad ### Morpheon Dark: A minimalistic dark theme without any distractions update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] dambgipgbnhmnkdolkljibpcbocimnpd=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\dambgipgbnhmnkdolkljibpcbocimnpd ### H.265 / HEVC player: Playback video files containing H.265 / HEVC media. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mpbjkejclgfgadiemmefgebjfooflfhl=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl ### Buster: Captcha Solver for Humans: Save time by asking Buster to solve CAPTCHAs for you. update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] aegnopegbbhjeeiganiajffnalhlkkjb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb ### Torrent Scanner: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] bgnkhhnnamicmpeenaelnjfhikgbkllg=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg ### AdGuard AdBlocker: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] eecephmcakdnmbnblpednlhemnmdicnf=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\eecephmcakdnmbnblpednlhemnmdicnf ### Images+: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] efaidnbmnnnibpcajpcglclefindmkaj=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ehndikigeekodlnbohjndjjiikphickb=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehndikigeekodlnbohjndjjiikphickb ### Open in PDF Viewer: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ghgabhipcejejjmhhchfonmamedcbeod=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgabhipcejejjmhhchfonmamedcbeod ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] hfmdbddgjlicmflejkkoafbkdgnfggbg=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfmdbddgjlicmflejkkoafbkdgnfggbg ### Route zezo.org: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] jgjaeacdkonaoafenlfkkkmbaopkbilf=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgjaeacdkonaoafenlfkkkmbaopkbilf ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] lmbopdiikkamfphhgcckcjhojnokgfeo=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmbopdiikkamfphhgcckcjhojnokgfeo ### Antidote connector: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mhccpoafgdgbhnjfhkcmgknndkeenfhe=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhccpoafgdgbhnjfhkcmgknndkeenfhe ### Fake news debunker by InVID & WeVerify: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] mhgineegmgpjljjpmocmnlaonmegjkdg=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhgineegmgpjljjpmocmnlaonmegjkdg ### VR Dashboard I.T.Y.C.: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] ncjedehfkpnliaafimjhdjjeggmfmlgf=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncjedehfkpnliaafimjhdjjeggmfmlgf ### Copilot sidebar for Chrome: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] obhijjefkkokfaiffkcemldacdabpeei=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\obhijjefkkokfaiffkcemldacdabpeei ### AIO Search: Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Addons] oldceeleldhonbafppcapldpdifcinji=C:\Users\Utilisateur\AppData\Local\Google\Chrome\User Data\Default\Extensions\oldceeleldhonbafppcapldpdifcinji ### : Disabled update_url: https://clients2.google.com/service/update2/crx [Google Chrome Notifications] 0=https://www.facebook.com:443,* ### https://www.facebook.com/ [Pre-installed Extensions] :HKLM caljgklbbfbcjjanaijlacgncafpegll=https://clients2.google.com/service/update2/crx ### update_url: https://clients2.google.com/service/update2/crx [Pre-installed Extensions] :HKLM efaidnbmnnnibpcajpcglclefindmkaj=https://clients2.google.com/service/update2/crx ### update_url: https://clients2.google.com/service/update2/crx [Network Settings] [Domain Name] :HKLM Domain="" [WinSock2 Components] napinsp.dll=C:\WINDOWS\SYSWOW64\NAPINSP.DLL ### Fournisseur Shim d’affectation de noms de messagerie Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\SYSWOW64\napinsp.dll [WinSock2 Components] mswsock.dll=C:\WINDOWS\SYSWOW64\MSWSOCK.DLL ### Fournisseur de service Sockets 2.0 de Microsoft Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\SYSWOW64\mswsock.dll [WinSock2 Components] winrnr.dll=C:\WINDOWS\SYSWOW64\WINRNR.DLL ### LDAP RnR Provider DLL Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\SYSWOW64\winrnr.dll [WinSock2 Components] nlansp_c.dll=C:\WINDOWS\SYSWOW64\NLANSP_C.DLL ### NLA Namespace Service Provider DLL Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 ->NLA NAMESPACE SERVICE PROVIDER DLL !$*%SystemRoot%\SYSWOW64\nlansp_c.dll [WinSock2 Components] wshbth.dll=C:\WINDOWS\SYSWOW64\WSHBTH.DLL ### Windows Sockets Helper DLL Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\SYSWOW64\wshbth.dll [WinSock2 Components (x64)] napinsp.dll=C:\WINDOWS\SYSNATIVE\NAPINSP.DLL ### Fournisseur Shim d’affectation de noms de messagerie Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*%SystemRoot%\SYSNATIVE\napinsp.dll [WinSock2 Components (x64)] mswsock.dll=C:\WINDOWS\SYSNATIVE\MSWSOCK.DLL ### Fournisseur de service Sockets 2.0 de Microsoft Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*%SystemRoot%\SYSNATIVE\mswsock.dll [WinSock2 Components (x64)] winrnr.dll=C:\WINDOWS\SYSNATIVE\WINRNR.DLL ### LDAP RnR Provider DLL Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\SYSNATIVE\winrnr.dll [WinSock2 Components (x64)] nlansp_c.dll=C:\WINDOWS\SYSNATIVE\NLANSP_C.DLL ### NLA Namespace Service Provider DLL Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 ->NLA NAMESPACE SERVICE PROVIDER DLL !$*%SystemRoot%\SYSNATIVE\nlansp_c.dll [WinSock2 Components (x64)] wshbth.dll=C:\WINDOWS\SYSNATIVE\WSHBTH.DLL ### Windows Sockets Helper DLL Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\SYSNATIVE\wshbth.dll [Windows Shell] [Display Scrap's Extensions] :HKLM NeverShowExt="" [ScreenSaver] :HKCU SCRNSAVE.EXE=C:\WINDOWS\SYSWOW64\CITIES.SCR ### Cities of Earth 3D Screensaver Screenomania.com Cities of Earth Free 3D Screensaver 2.1.0.0 !$*C:\Windows\SysWOW64\Cities.scr [System.ini] shell=explorer.exe ### Explorateur Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*explorer.exe [User Shell] :HKCU shell="" [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Amazon Backup.lnk=C:\USERS\UTILISATEUR\APPDATA\LOCAL\AMAZON DRIVE\AMAZONPHOTOS.EXE ### Amazon Photos Amazon.com Inc. Amazon Photos 0.0.0.0 !$*C:\Users\Utilisateur\AppData\Local\Amazon Drive\AmazonPhotos.exe!$*C:\Users\UTILIS~1\Desktop\AMAZON~1.LNK ?--source-desktop --show-status-window [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Antidote 11.lnk=C:\PROGRAM FILES\DRUIDE\ANTIDOTE 11\APPLICATION\BIN64\ANTIDOTE.EXE ### Antidote Druide informatique inc. Antidote 11 11, 1, 867, 0 !$*C:\Program Files\Druide\Antidote 11\Application\Bin64\Antidote.exe!$*C:\Users\UTILIS~1\Desktop\ANTIDO~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Autoruns.lnk=D:\MURA.BERNARD\AUTORUNS V 13.94 (CONFIGURATION )\AUTORUNS.EXE ### Autostart program viewer Sysinternals - www.sysinternals.com Sysinternals autoruns 13.94 ->SYSINTERNALS AUTORUNS !$*D:\mura.bernard\Autoruns V 13.94 (configuration )\Autoruns.exe!$*C:\Users\UTILIS~1\Desktop\Autoruns.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\BitTorrent Web.lnk=C:\USERS\UTILISATEUR\APPDATA\ROAMING\BITTORRENT WEB\BTWEB.EXE ### BitTorrent Web BitTorrent Limited BitTorrent Web 1.4.0.5825 !$*C:\Users\Utilisateur\AppData\Roaming\BitTorrent Web\btweb.exe!$*C:\Users\UTILIS~1\Desktop\BITTOR~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Blitzortung - Foudre en direct.lnk=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe!$*C:\Users\UTILIS~1\Desktop\BLITZO~1.LNK ?https://www.blitzortung.org/fr/live_lightning_maps.php [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Budget Facile 3.lnk=C:\PROGRAM FILES (X86)\ANUMAN INTERACTIVE\BUDGET FACILE 3\BUDGET_FACILE.EXE ### !$*C:\Program Files (x86)\Anuman Interactive\Budget Facile 3\Budget_facile.exe!$*C:\Users\UTILIS~1\Desktop\BUDGET~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Cleanmgr+.lnk=D:\MURA.BERNARD\CLEANMGRPLUS\CLEANMGR+.EXE ### Cleanmgr+ Builtbybel Cleanmgr+ 1.50.1300 !$*D:\mura.bernard\cleanmgrplus\Cleanmgr+.exe!$*C:\Users\UTILIS~1\Desktop\CLEANM~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\cmd.lnk=C:\WINDOWS\SYSTEM32\CMD.EXE ### Interpréteur de commandes Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\Windows\System32\cmd.exe!$*C:\Users\UTILIS~1\Desktop\cmd.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Command Center.lnk=C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\CC_LOADINGPAGE.EXE ### CC_LoadingPage MSI CommandCenter 3.0.1.02 !$*C:\Program Files (x86)\MSI\Command Center\CC_LoadingPage.exe!$*C:\Users\UTILIS~1\Desktop\COMMAN~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Earth Vents.lnk=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe!$*C:\Users\UTILIS~1\Desktop\EARTHV~1.LNK ?https://earth.nullschool.net/fr/ [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Epson ScanSmart.lnk=C:\PROGRAM FILES (X86)\EPSON SOFTWARE\EPSON SCANSMART\SCANSMART.EXE ### Epson ScanSmart Seiko Epson Corporation Epson ScanSmart 3.7.10.0 !$*C:\Program Files (x86)\Epson Software\Epson ScanSmart\ScanSmart.exe!$*C:\Users\UTILIS~1\Desktop\EPSONS~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Excel.lnk=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\EXCEL.EXE ### Microsoft Excel Microsoft Corporation Microsoft Office 16.0.18025.20140 !$*C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE!$*C:\Users\UTILIS~1\Desktop\Excel.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Explorer Ruban.lnk=C:\WINDOWS\SYSTEM32\WINDOWSPOWERSHELL\V1.0\POWERSHELL.EXE ### Windows PowerShell Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe!$*C:\Users\UTILIS~1\Desktop\EXPLOR~1.LNK ?-nop -ep bypass -c "& {"Start-Process \"Control\"; $wshell = New-Object -ComObject wscript.shell; $null = $wshell.AppActivate(\"Panneau de configuration\"); Start-Sleep 0.75; $wshell.SendKeys("'""^"lCe PC~"'")}" [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Filmotech.lnk=C:\PROGRAM FILES\FILMOTECH\FILMOTECH.EXE ### Filmotech v 3.10.0 - © 2004-2022 Pascal PLUCHON 3.10.0 !$*C:\Program Files\Filmotech\Filmotech.exe!$*C:\Users\UTILIS~1\Desktop\FILMOT~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Format Factory.lnk=C:\PROGRAM FILES (X86)\FORMATFACTORY\FORMATFACTORY.EXE ### FormatFactory Free Time Co., Ltd. Format Factory 5.17.0.0 ->FORMAT FACTORY !$*C:\Program Files (x86)\FormatFactory\FormatFactory.exe!$*C:\Users\UTILIS~1\Desktop\FORMAT~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Fortnite.lnk=C:\PROGRAM FILES\EPIC GAMES\FORTNITE\FORTNITEGAME\BINARIES\WIN64\FORTNITECLIENT-WIN64-SHIPPING_EAC_EOS.EXE ### Easy Anti-Cheat Bootstrapper (EOS) Epic Games, Inc. Easy Anti-Cheat Bootstrapper (EOS) 1.8.0 ->EASY ANTI-CHEAT BOOTSTRAPPER (EOS) !$*C:\Program Files\Epic Games\Fortnite\FortniteGame\Binaries\Win64\FortniteClient-Win64-Shipping_EAC_EOS.exe!$*C:\Users\UTILIS~1\Desktop\Fortnite.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\FurMark.lnk=C:\PROGRAM FILES (X86)\GEEKS3D\BENCHMARKS\FURMARK\FURMARK.EXE ### FurMark JeGX/Geeks3D (geeks3d.com) FurMark 1.38.1.0 !$*C:\Program Files (x86)\Geeks3D\Benchmarks\FurMark\FurMark.exe!$*C:\Users\UTILIS~1\Desktop\FurMark.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Google Chrome.lnk=C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google LLC Google Chrome 129.0.6668.101 ->CHROME_EXE !$*C:\Program Files\Google\Chrome\Application\chrome.exe!$*C:\Users\UTILIS~1\Desktop\GOOGLE~1.LNK ?--silent-debugger-extension-api [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\HiBit ununstaller V 3.1.90 - Raccourci.lnk=D:\MURA.BERNARD\HIBIT UNUNSTALLER V 3.1.90.EXE ### HiBit Uninstaller HiBitSoftware HiBit Uninstaller 3.2.30.0 ->HIBITUNINSTALLER !$*D:\mura.bernard\HiBit ununstaller V 3.1.90.exe!$*C:\Users\UTILIS~1\Desktop\HIBITU~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Info Climat.lnk=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe!$*C:\Users\UTILIS~1\Desktop\INFOCL~1.LNK ?https://www.infoclimat.fr/observations-meteo/temps-reel/akhiok/.html [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Lecteur multimédia Windows.lnk=C:\Program Files (x86)\WINDOWS MEDIA PLAYER\WMPLAYER.EXE ### Lecteur multimédia Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 12.0.26100.1 !$*%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe!$*C:\Users\UTILIS~1\Desktop\LECTEU~2.LNK ?/prefetch:1 [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Ligne de commande.lnk=C:\WINDOWS\SYSTEM32\CMD.EXE ### Interpréteur de commandes Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\cmd.exe!$*C:\Users\UTILIS~1\Desktop\LIGNED~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Meteociel - Températures.lnk=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe!$*C:\Users\UTILIS~1\Desktop\METEOC~3.LNK ?https://www.meteociel.fr/observations-meteo/temperatures.php [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Meteociel.fr - Infra Rouge.lnk=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe!$*C:\Users\UTILIS~1\Desktop\METEOC~4.LNK ?https://www.meteociel.fr/observations-meteo/satellite.php [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Meteociel.fr - Précipitations.lnk=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe!$*C:\Users\UTILIS~1\Desktop\METEOC~1.LNK ?https://www.meteociel.fr/observations-meteo/radar.php [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Meteociel.fr - Satellite.lnk=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe!$*C:\Users\UTILIS~1\Desktop\METEOC~2.LNK ?https://www.meteociel.fr/observations-meteo/satellite.php [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Movavi Converter.lnk=D:\MURA.BERNARD\MOVAVI VIDEO SUITE V20.2.0 - ITA (20 FEBBRAIO 2020) BY GRISU\[PORTABLE] MOVAVI VIDEO SUITE V20.2.0 - ITA (20 FEBBRAIO 2020) BY GRISU\CONVERTVIDEOANDAUDIOPORTABLE.EXE ### Movavi Convert Video and Audio Portable Launcher https://joosengportableapp.blogspot.com Movavi Convert Video and Audio Portable 2018.11.15.0 ->MOVAVI CONVERT VIDEO AND AUDIO PORTABLE !$*D:\mura.bernard\Movavi Video Suite v20.2.0 - Ita (20 Febbraio 2020) by GRISU\[PORTABLE] Movavi Video Suite v20.2.0 - Ita (20 Febbraio 2020) by GRISU\ConvertVideoAndAudioPortable.exe!$*C:\Users\UTILIS~1\Desktop\MOVAVI~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Movavi Video Converter 20 Premium.lnk=C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\CONVERTER.EXE ### Movavi Video Converter 20.1.2 Premium Movavi Movavi Video Converter 20 Premium 20.1.2.0 ->MOVAVI VIDEO CONVERTER PREMIUM !$*C:\Users\Utilisateur\AppData\Roaming\Movavi Video Converter 20 Premium\converter.exe!$*C:\Users\UTILIS~1\Desktop\MOVAVI~2.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\MSI Afterburner.lnk=C:\PROGRAM FILES (X86)\MSI AFTERBURNER\MSIAFTERBURNER.EXE ### MSIAfterburner MSIAfterburner 4, 6, 5, 16370 !$*C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe!$*C:\Users\UTILIS~1\Desktop\MSIAFT~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Navigateur Opera.lnk=C:\USERS\UTILISATEUR\APPDATA\LOCAL\PROGRAMS\OPERA\OPERA.EXE ### Opera Internet Browser Opera Software Opera Internet Browser 113.0.5230.142 !$*C:\Users\Utilisateur\AppData\Local\Programs\Opera\opera.exe!$*C:\Users\UTILIS~1\Desktop\NAVIGA~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Nero StartSmart.lnk=C:\PROGRAM FILES (X86)\NERO\NERO 9\NERO STARTSMART\NEROSTARTSMART.EXE ### Nero StartSmart 9 Application Nero AG Nero StartSmart 9.0.9.100 !$*C:\Program Files (x86)\Nero\Nero 9\Nero StartSmart\NeroStartSmart.exe!$*C:\Users\UTILIS~1\Desktop\NEROST~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\NeroExpress.lnk=C:\PROGRAM FILES (X86)\NERO\NERO 9\NERO EXPRESS\NEROEXPRESS.EXE ### Nero Express Nero AG Nero Express 9, 0, 9, 100 ->NERO EXPRESS =>NERO.EXE !$*C:\Program Files (x86)\Nero\Nero 9\Nero Express\NeroExpress.exe!$*C:\Users\UTILIS~1\Desktop\NEROEX~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Paramètres de Classic Explorer.lnk=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICEXPLORERSETTINGS.EXE ### Classic Explorer Settings IvoSoft Classic Shell 4, 3, 1, 0 !$*C:\Program Files\Classic Shell\ClassicExplorerSettings.exe!$*C:\Users\UTILIS~1\Desktop\PARAMT~4.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Paramètres de Classic IE.lnk=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICIE_32.EXE ### Classic IE IvoSoft Classic Shell 4, 3, 1, 0 ->CLASSICIE =>CLASSICIE.EXE !$*C:\Program Files\Classic Shell\ClassicIE_32.exe!$*C:\Users\UTILIS~1\Desktop\PA81EC~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Paramètres de Classic Start Menu.lnk=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICSTARTMENU.EXE ### Classic Start Menu IvoSoft Classic Shell 4, 3, 1, 0 !$*C:\Program Files\Classic Shell\ClassicStartMenu.exe!$*C:\Users\UTILIS~1\Desktop\PARAMT~2.LNK ?-settings [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\RAIDXpert2.lnk=C:\PROGRAM FILES (X86)\RAIDXPERT2\RAIDXPERT2.EXE ### RAIDXpert2.exe Advanced Micro Devices, Inc. RAIDXpert2 9.3.0.296 !$*C:\Program Files (x86)\RAIDXpert2\RAIDXpert2.exe!$*C:\Users\UTILIS~1\Desktop\RAIDXP~2.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Reanimator.lnk=C:\PROGRAM FILES (X86)\GREATIS\REANIMATOR\REANIMATOR.EXE ### RegRun Start Control Greatis Software RegRun Security Suite 16.50 ->REGRUN2.EXE !$*C:\Program Files (x86)\Greatis\Reanimator\reanimator.exe!$*C:\Users\UTILIS~1\Desktop\REANIM~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\services.lnk=C:\WINDOWS\SYSTEM32\SERVICES.MSC ### !$*%windir%\system32\services.msc!$*C:\Users\UTILIS~1\Desktop\services.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\SpeedFan.lnk=C:\PROGRAM FILES (X86)\SPEEDFAN\SPEEDFAN.EXE ### 4.52.0.0 !$*C:\Program Files (x86)\SpeedFan\speedfan.exe!$*C:\Users\UTILIS~1\Desktop\SpeedFan.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Task Manager.lnk=C:\WINDOWS\SYSTEM32\TASKMGR.EXE ### Gestionnaire des tâches Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1710 ->TASK MANAGER !$*%windir%\system32\taskmgr.exe!$*C:\Users\UTILIS~1\Desktop\TASKMA~1.LNK ?/7 [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\TweakPower.lnk=C:\USERS\UTILISATEUR\APPDATA\ROAMING\ZHP\QUARANTINE\ZHPCLEANER\TWEAKPOWER\TWEAKPOWER.EXE ### TweakPower - Tweak your system Kurt Zimmermann Kurt Zimmermann 2.0.3.9 !$*C:\Users\Utilisateur\AppData\Roaming\ZHP\Quarantine\ZHPCleaner\TweakPower\TweakPower.exe!$*C:\Users\UTILIS~1\Desktop\TWEAKP~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Ubisoft Connect.lnk=C:\PROGRAM FILES (X86)\UBISOFT\UBISOFT GAME LAUNCHER\UBISOFTCONNECT.EXE ### Ubisoft Connect Ubisoft Ubisoft Connect 2.0.0 ->UBISOFT CONNECT !$*C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftConnect.exe!$*C:\Users\UTILIS~1\Desktop\UBISOF~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Ultimate Windows Tweaker 5.1.exe - Raccourci.lnk=D:\MURA.BERNARD\UWT 5.1\ULTIMATE WINDOWS TWEAKER 5.1.EXE ### Ultimate Windows Tweaker 5.1 The Windows Club Ultimate Windows Tweaker 5.1.0.0 !$*D:\mura.bernard\UWT 5.1\Ultimate Windows Tweaker 5.1.exe!$*C:\Users\UTILIS~1\Desktop\ULTIMA~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Veille Windows.lnk=C:\WINDOWS\SYSTEM32\RUNDLL32.EXE ### Processus hôte Windows (Rundll32) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->RUNDLL !$*C:\Windows\System32\rundll32.exe!$*C:\Users\UTILIS~1\Desktop\VEILLE~1.LNK ?powrprof.dll,SetSuspendState [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\WinMemoryCleaner.lnk=D:\MURA.BERNARD\WINMEMORYCLEANER.EXE ### Windows Memory Cleaner Igor Mundstein WinMemoryCleaner 2.8.0.0 !$*D:\mura.bernard\WinMemoryCleaner.exe!$*C:\Users\UTILIS~1\Desktop\WINMEM~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\Desktop\Word.lnk=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\WINWORD.EXE ### Microsoft Word Microsoft Corporation Microsoft Office 16.0.18025.20140 !$*C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE!$*C:\Users\UTILIS~1\Desktop\Word.lnk [User Shortcuts] :HKLM C:\Users\Public\Desktop\Acronis True Image.lnk=C:\PROGRAM FILES (X86)\ACRONIS\TRUEIMAGEHOME\TRUEIMAGELAUNCHER.EXE ### !$*C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageLauncher.exe!$*C:\Users\Public\Desktop\ACRONI~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\AOMEI Backupper.lnk=C:\PROGRAM FILES (X86)\AOMEI\AOMEI BACKUPPER\ABLAUNCHER.EXE ### ABLaucher Application AOMEI International Network Limited AOMEI Backupper 1, 0, 0, 1 ->ABLAUCHER =>ABLAUCHE.EXE !$*C:\Program Files (x86)\AOMEI\AOMEI Backupper\ABLauncher.exe!$*C:\Users\Public\Desktop\AOMEIB~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\AOMEI Partition Assistant 9.6.1.lnk=C:\PROGRAM FILES (X86)\AOMEI PARTITION ASSISTANT\PARTASSIST.EXE ### AOMEI Partition Assistant AOMEI Technology Co., Ltd. AOMEI Partition Assistant 9.6.1 ->PA.EXE !$*C:\Program Files (x86)\AOMEI Partition Assistant\PartAssist.exe!$*C:\Users\Public\Desktop\AOMEIP~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Audacity.lnk=C:\PROGRAM FILES\AUDACITY\AUDACITY.EXE ### Audacity® Cross-Platform Sound Editor Audacity Team Audacity 3,4,2,0 !$*C:\Program Files\Audacity\Audacity.exe!$*C:\Users\Public\Desktop\Audacity.lnk [User Shortcuts] :HKLM C:\Users\Public\Desktop\CCleaner.lnk=C:\PROGRAM FILES\CCLEANER\CCLEANER64.EXE ### CCleaner Piriform Software Ltd CCleaner 6.28.0.11297 ->CCLEANER =>CCLEANER.EXE !$*C:\Program Files\CCleaner\CCleaner64.exe!$*C:\Users\Public\Desktop\CCleaner.lnk [User Shortcuts] :HKLM C:\Users\Public\Desktop\CDBurnerXP.lnk=C:\PROGRAM FILES\CDBURNERXP\CDBXPP.EXE ### CDBurnerXP Canneverbe Limited CDBurnerXP 4.5.8.7128 !$*C:\Program Files\CDBurnerXP\cdbxpp.exe!$*C:\Users\Public\Desktop\CDBURN~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\CPUID CPU-Z MSI.lnk=C:\PROGRAM FILES\CPUID\CPU-Z MSI\CPUZ.EXE ### CPU-Z Application CPUID CPU-Z Application 2, 0, 6, 1 !$*C:\Program Files\CPUID\CPU-Z MSI\cpuz.exe!$*C:\Users\Public\Desktop\CPUIDC~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\DesignPro 5.lnk=C:\PROGRAM FILES (X86)\AVERY DENNISON\DESIGNPRO 5\LABELER.EXE ### DesignPro® Application Avery Dennison Corporation DesignPro® 5.5 5.5.0708.0 ->DESIGNPRO® !$*C:\Program Files (x86)\Avery Dennison\DesignPro 5\labeler.exe!$*C:\Users\Public\Desktop\DESIGN~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\DivX Player.lnk=C:\PROGRAM FILES (X86)\DIVX\DIVX PLAYER\DIVX PLAYER.EXE ### DivX Player DivX, LLC DivX Player 11, 10, 1, 0 ->ADAMANT =>DIVX PLAYER !$*C:\Program Files (x86)\DivX\DivX Player\DivX Player.exe!$*C:\Users\Public\Desktop\DIVXPL~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\eMule.lnk=C:\PROGRAM FILES (X86)\EMULE\EMULE.EXE ### eMule http://www.emule-project.net eMule 0.50.0 Unicode !$*C:\Program Files (x86)\eMule\emule.exe!$*C:\Users\Public\Desktop\eMule.lnk [User Shortcuts] :HKLM C:\Users\Public\Desktop\Epic Games Launcher.lnk=C:\PROGRAM FILES (X86)\EPIC GAMES\LAUNCHER\PORTAL\BINARIES\WIN32\EPICGAMESLAUNCHER.EXE ### UnrealEngineLauncherProxy Epic Games, Inc. Unreal Engine 1.11.0-36938137+++Portal+Release-Live ->UNREALENGINE =>UNREALENGINELAUNCHERPROXY-WIN32-SHIPPING.EXE !$*C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe!$*C:\Users\Public\Desktop\EPICGA~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Firefox.lnk=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe!$*C:\Users\Public\Desktop\Firefox.lnk [User Shortcuts] :HKLM C:\Users\Public\Desktop\Icaros.lnk=C:\PROGRAM FILES\ICAROS\ICAROSCONFIG.EXE ### IcarosConfig Tabibito Technology IcarosConfig 3.3.0.0 !$*C:\Program Files\Icaros\IcarosConfig.exe!$*C:\Users\Public\Desktop\Icaros.lnk [User Shortcuts] :HKLM C:\Users\Public\Desktop\MasterPlus.lnk=C:\PROGRAM FILES (X86)\COOLERMASTER\MASTERPLUS\MASTERPLUSAPP.EXE ### Cooler Master MasterPlus 0.0.0.0 !$*C:\Program Files (x86)\CoolerMaster\MasterPlus\MasterPlusApp.exe!$*C:\Users\Public\Desktop\MASTER~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Microsoft Edge.lnk=C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\MSEDGE.EXE ### Microsoft Edge Microsoft Corporation Microsoft Edge 129.0.2792.89 ->MSEDGE_EXE !$*C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe!$*C:\Users\Public\Desktop\MICROS~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\MSI APP Manager.lnk=C:\PROGRAM FILES (X86)\MSI\APP MANAGER\APPMANAGER.EXE ### APP Manager Micro-Star INT'L CO., LTD. APP Manager 1.0.0.32 !$*C:\Program Files (x86)\MSI\APP Manager\AppManager.exe!$*C:\Users\Public\Desktop\MSIAPP~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Q-Dir 11.47.lnk=C:\PROGRAM FILES\Q-DIR\Q-DIR.EXE ### Q-Dir Nenad Hrg (SoftwareOK.com) Q-Dir SoftwareOK.com 11,4,7,0 !$*C:\Program Files\Q-Dir\Q-Dir.exe!$*C:\Users\Public\Desktop\Q-DIR1~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk=C:\PROGRAM FILES\VS REVO GROUP\REVO UNINSTALLER PRO\REVOUNINPRO.EXE ### Revo Uninstaller Pro VS Revo Group Revo Uninstaller Pro 5.2.1.0 !$*C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe!$*C:\Users\Public\Desktop\REVOUN~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Steam.lnk=C:\PROGRAM FILES (X86)\STEAM\STEAM.EXE ### Steam Valve Corporation Steam 01.00.00.02 ->STEAM (BUILDBOT_STEAM-RELCLIENT-W32.BUILD.VALVE.ORG_STEAM_REL_CLIENT_WIN32@STEAM-RELCLIENT-W32) !$*C:\Program Files (x86)\Steam\steam.exe!$*C:\Users\Public\Desktop\Steam.lnk [User Shortcuts] :HKLM C:\Users\Public\Desktop\Surfshark.lnk=C:\PROGRAM FILES\SURFSHARK\SURFSHARK.EXE ### Surfshark Surfshark Surfshark 5.10.1.999 ->SURFSHARK.DLL !$*C:\Program Files\Surfshark\Surfshark.exe!$*C:\Users\Public\Desktop\SURFSH~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\TechPowerUp GPU-Z.lnk=C:\PROGRAM FILES (X86)\GPU-Z\GPU-Z.EXE ### GPU-Z - Video card Information Utility TechPowerUp (www.techpowerup.com) GPU-Z - Video card Information Utility 2.55.0.0 !$*C:\Program Files (x86)\GPU-Z\GPU-Z.exe!$*C:\Users\Public\Desktop\TECHPO~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Thunderbird.lnk=C:\PROGRAM FILES\MOZILLA THUNDERBIRD\THUNDERBIRD.EXE ### Thunderbird Mozilla Corporation Thunderbird 128.3.1 !$*C:\Program Files\Mozilla Thunderbird\thunderbird.exe!$*C:\Users\Public\Desktop\THUNDE~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\VLC media player.lnk=C:\PROGRAM FILES\VIDEOLAN\VLC\VLC.EXE ### VLC media player VideoLAN VLC media player 3,0,20,0 !$*C:\Program Files\VideoLAN\VLC\vlc.exe!$*C:\Users\Public\Desktop\VLCMED~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Winaero Tweaker.lnk=C:\PROGRAM FILES\WINAERO TWEAKER\WINAEROTWEAKER.EXE ### WinaeroTweaker https://winaero.com Winaero Tweaker 1.62.1.0 !$*C:\Program Files\Winaero Tweaker\WinaeroTweaker.exe!$*C:\Users\Public\Desktop\WINAER~1.LNK [User Shortcuts] :HKLM C:\Users\Public\Desktop\Éphémérides.lnk=C:\PROGRAM FILES (X86)\FMRID\FMRID.EXE ### Ephémérides Fabio Chelly fmrid 4.01 !$*C:\Program Files (x86)\FMRID\fmrid.exe!$*C:\Users\Public\Desktop\PHMRID~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\FurMark.lnk=C:\PROGRAM FILES (X86)\GEEKS3D\BENCHMARKS\FURMARK\FURMARK.EXE ### FurMark JeGX/Geeks3D (geeks3d.com) FurMark 1.38.1.0 !$*C:\Program Files (x86)\Geeks3D\Benchmarks\FurMark\FurMark.exe!$*C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\FurMark.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Inpaint.lnk=C:\PROGRAM FILES (X86)\INPAINT\INPAINT.EXE ### !$*C:\Program Files (x86)\Inpaint\Inpaint.exe!$*C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\Inpaint.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Microsoft Edge.lnk=C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\MSEDGE.EXE ### Microsoft Edge Microsoft Corporation Microsoft Edge 129.0.2792.89 ->MSEDGE_EXE !$*C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe!$*C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\MICROS~1.LNK [User Shortcuts] :HKLM C:\Users\Utilisateur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Q-Dir.lnk=C:\PROGRAM FILES\Q-DIR\Q-DIR.EXE ### Q-Dir Nenad Hrg (SoftwareOK.com) Q-Dir SoftwareOK.com 11,4,7,0 !$*C:\Program Files\Q-Dir\Q-Dir.exe!$*C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\Q-Dir.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d356105fac5527ef\Steam.lnk=C:\PROGRAM FILES (X86)\STEAM\STEAM.EXE ### Steam Valve Corporation Steam 01.00.00.02 ->STEAM (BUILDBOT_STEAM-RELCLIENT-W32.BUILD.VALVE.ORG_STEAM_REL_CLIENT_WIN32@STEAM-RELCLIENT-W32) !$*C:\Program Files (x86)\Steam\steam.exe!$*C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\USERPI~1\IMPLIC~1\D35610~1\Steam.lnk [User Shortcuts] :HKLM C:\Users\Utilisateur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Windows Menu.lnk=C:\Program Files (x86)\Stardock\Start11\Start11.exe ### File is missing. !$*C:\Program Files (x86)\Stardock\Start11\Start11.exe!$*C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\USERPI~1\STARTM~1\WINDOW~1.LNK ?Metro [User Shortcuts] :HKLM C:\Users\Utilisateur\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Thunderbird.lnk=C:\PROGRAM FILES\MOZILLA THUNDERBIRD\THUNDERBIRD.EXE ### Thunderbird Mozilla Corporation Thunderbird 128.3.1 !$*C:\Program Files\Mozilla Thunderbird\thunderbird.exe!$*C:\Users\UTILIS~1\AppData\Roaming\MICROS~1\INTERN~1\QUICKL~1\USERPI~1\TaskBar\THUNDE~1.LNK [User Shortcuts] :HKLM C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epson Software\Epson Software Updater.lnk=C:\PROGRAM FILES (X86)\EPSON SOFTWARE\DOWNLOAD NAVIGATOR\EPSDNAVI.EXE ### Epson Software Updater Seiko Epson Corporation EPSDNAVI.EXE 4.6.7.0 !$*C:\Program Files (x86)\Epson Software\Download Navigator\EPSDNAVI.EXE!$*C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\EPSONS~1\EPSONS~2.LNK ?/ST [User Shortcuts] :HKLM C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe!$*C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Firefox.lnk [User Shortcuts] :HKLM C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk=C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google LLC Google Chrome 129.0.6668.101 ->CHROME_EXE !$*C:\Program Files\Google\Chrome\Application\chrome.exe!$*C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\GOOGLE~1.LNK [Main File Extensions] :HKLM .exe="" [Main File Extensions] :HKLM .com="" [Main File Extensions] :HKLM .pif="" [Main File Extensions] :HKLM .bat="" [Main File Extensions] :HKLM .cmd="" [Main File Extensions] :HKLM .scr="" [Main File Extensions] :HKLM .txt=C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.WINDOWSNOTEPAD_11.2408.12.0_X64__8WEKYB3D8BBWE\NOTEPAD\NOTEPAD.EXE ### !$*C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2408.12.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe [Main File Extensions] :HKLM .reg="" [Main File Extensions] :HKLM .inf="" [Main File Extensions] :HKLM .ini=C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.WINDOWSNOTEPAD_11.2408.12.0_X64__8WEKYB3D8BBWE\NOTEPAD\NOTEPAD.EXE ### !$*C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2408.12.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe [Main File Extensions] :HKLM .js="" [Main File Extensions] :HKLM .vbs="" [Main File Extensions] :HKLM .vbe="" [Main File Extensions] :HKLM .msc="" [Main File Extensions] :HKLM .jpg="" [Main File Extensions] :HKLM .jpeg="" [Main File Extensions] :HKLM .gif="" [Main File Extensions] :HKLM .png="" [Shell Execute Hooks] :HKLM {D2BF470E-ED1C-487F-AAAA-2BD8835EB6CE}=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Shell Execute Hooks(x64)] :HKLM {D2BF470E-ED1C-487F-AAAA-2BD8835EB6CE}=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [UserInit Value] UserInit="" [UserInit Value(x64)] UserInit=C:\Windows\system32\userinit.exe, ### Application d’ouverture de session Userinit Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\Windows\system32\userinit.exe [Shell Services DelayLoad] :HKLM WebCheck={E6FB5E20-DE35-11CF-9C87-00AA005127ED} [System Shell Policies] :HKCU shell=explorer.exe ### Explorateur Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*explorer.exe [System Shell Policies] :HKLM shell=explorer.exe ### Explorateur Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*explorer.exe [System Shell Policies] :HKCU run="" [System Shell Policies] :HKLM run="" [Prevents Display in Control Panel from running.] :HKCU NoDispCpl=0 [Disable Registry Tools] :HKCU DisableRegistryTools =0 [Autorun.inf] :HKLM D:\desktop.ini=D:\desktop.ini [Users] :HKLM Administrateur=Administrator (Disabled) [Users] :HKLM DefaultAccount=Guest (Disabled) [Users] :HKLM Invité=Guest (Disabled) ### Invit|C3|A9 [Users] :HKLM Utilisateur=Administrator [Users] :HKLM WDAGUtilityAccount=Guest (Disabled) [Print Monitors] :HKLM Appmon=C:\WINDOWS\SYSTEM32\APPMON.DLL ### App Printer Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*AppMon.dll [Print Monitors] :HKLM EPSON ET-3850 Series 64MonitorBE=C:\WINDOWS\SYSTEM32\E_YLMBYHE.DLL ### EPSON Bi-directional Monitor AMD64 Seiko Epson Corporation EPSON Bi-directional Printer 4,14,00, 0 ->EBPMONB =>EBPMONB.DLL !$*E_YLMBYHE.DLL [Print Monitors] :HKLM EPSON Universal Print Driver 64MonitorBE=C:\WINDOWS\SYSTEM32\E_2LM0DE.DLL ### EPSON Bi-directional Monitor AMD64 Seiko Epson Corporation EPSON Bi-directional Printer 5,02,03,00 ->EBPMONB =>EBPMONB.DLL !$*E_2LM0DE.DLL [Print Monitors] :HKLM EpsonNet Print Port=C:\WINDOWS\SYSTEM32\ENPPMON.DLL ### EpsonNet Print Component SEIKO EPSON CORPORATION EpsonNet Print 3.1.4.1 !$*enppmon.dll [Print Monitors] :HKLM Local Port=C:\WINDOWS\SYSTEM32\LOCALSPL.DLL ### DLL de spouleur local Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*localspl.dll [Print Monitors] :HKLM Standard TCP/IP Port=C:\WINDOWS\SYSTEM32\TCPMON.DLL ### DLL moniteur de port standard TCP/IP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*tcpmon.dll [Print Monitors] :HKLM USB Monitor=C:\WINDOWS\SYSTEM32\USBMON.DLL ### DLL du moniteur de port d’impression dynamique standard Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->DYNAMON.DLL =>DYNAMON.DLL.MUI !$*usbmon.dll [Print Monitors] :HKLM Virtual Port Monitor=C:\WINDOWS\SYSTEM32\VIRTUALMON.DLL ### Virtual Printer Monitor Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*VirtualMon.dll [Print Monitors] :HKLM WSD Port=C:\WINDOWS\SYSTEM32\APMON.DLL ### Moniteur de port adaptatif Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*APMon.dll [Shell Icon Overlay Handlers] :HKLM OneDrive1=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\I386\FILESYNCSHELL.DLL ### Microsoft OneDrive Shell Extension Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 ->CLIENT APPLICATION !$*C:\Program Files\Microsoft OneDrive\24.186.0915.0004\i386\FileSyncShell.dll [Shell Icon Overlay Handlers] :HKLM OneDrive2=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\I386\FILESYNCSHELL.DLL ### Microsoft OneDrive Shell Extension Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 ->CLIENT APPLICATION !$*C:\Program Files\Microsoft OneDrive\24.186.0915.0004\i386\FileSyncShell.dll [Shell Icon Overlay Handlers] :HKLM OneDrive3=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\I386\FILESYNCSHELL.DLL ### Microsoft OneDrive Shell Extension Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 ->CLIENT APPLICATION !$*C:\Program Files\Microsoft OneDrive\24.186.0915.0004\i386\FileSyncShell.dll [Shell Icon Overlay Handlers] :HKLM OneDrive4=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\I386\FILESYNCSHELL.DLL ### Microsoft OneDrive Shell Extension Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 ->CLIENT APPLICATION !$*C:\Program Files\Microsoft OneDrive\24.186.0915.0004\i386\FileSyncShell.dll [Shell Icon Overlay Handlers] :HKLM OneDrive5=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\I386\FILESYNCSHELL.DLL ### Microsoft OneDrive Shell Extension Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 ->CLIENT APPLICATION !$*C:\Program Files\Microsoft OneDrive\24.186.0915.0004\i386\FileSyncShell.dll [Shell Icon Overlay Handlers] :HKLM OneDrive6=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\I386\FILESYNCSHELL.DLL ### Microsoft OneDrive Shell Extension Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 ->CLIENT APPLICATION !$*C:\Program Files\Microsoft OneDrive\24.186.0915.0004\i386\FileSyncShell.dll [Shell Icon Overlay Handlers] :HKLM OneDrive7=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\I386\FILESYNCSHELL.DLL ### Microsoft OneDrive Shell Extension Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 ->CLIENT APPLICATION !$*C:\Program Files\Microsoft OneDrive\24.186.0915.0004\i386\FileSyncShell.dll [Context Menu Handlers] :HKLM FileSyncEx=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\I386\FILESYNCSHELL.DLL ### Microsoft OneDrive Shell Extension Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 ->CLIENT APPLICATION !$*C:\Program Files\Microsoft OneDrive\24.186.0915.0004\i386\FileSyncShell.dll [Context Menu Handlers] :HKLM 7-Zip=C:\PROGRAM FILES (X86)\7-ZIP\7-ZIP.DLL ### 7-Zip Shell Extension Igor Pavlov 7-Zip 22.01 !$*C:\Program Files (x86)\7-Zip\7-zip.dll [Context Menu Handlers] :HKLM Cover Designer=C:\PROGRAM FILES (X86)\NERO\NERO 9\NERO COVERDESIGNER\COVEREDEXTENSION.DLL ### Cover Designer Nero AG Cover Designer 4.0.5.100 ->COVERED !$*C:\Program Files (x86)\Nero\Nero 9\Nero CoverDesigner\CoverEdExtension.dll [Context Menu Handlers] :HKLM DivXShellExtensionItem=C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\DIVXSHELLEXTENSION.DLL ### DivX Binary File DivX, LLC DivXShellExtensionHelper 1, 0, 0, 40 =>DIVXSHELLEXTENSIONHELPER.DLL !$*C:\Program Files (x86)\Common Files\DivX Shared\DivXShellExtension.dll [Context Menu Handlers] :HKLM DivXShellExtensionItem64=C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\DIVXSHELLEXTENSION.DLL ### DivX Binary File DivX, LLC DivXShellExtensionHelper 1, 0, 0, 40 =>DIVXSHELLEXTENSIONHELPER.DLL !$*C:\Program Files (x86)\Common Files\DivX Shared\DivXShellExtension.dll [Context Menu Handlers] :HKLM FileConverterExtension={af9b72b5-f4e4-44b0-a3d9-b55b748efe90} [Context Menu Handlers] :HKLM FormatFactoryShell={A3888923-CFD3-4A6B-89BF-08E6B95716E8} [Context Menu Handlers] :HKLM Glary Utilities=C:\PROGRAM FILES (X86)\GLARY UTILITIES\CONTEXTHANDLER.DLL ### Context Menu Handler Glarysoft Ltd Glary Utilities 6.0.0.1 !$*C:\Program Files (x86)\Glary Utilities\ContextHandler.dll [Context Menu Handlers] :HKLM Open With={09799AFB-AD67-11d1-ABCD-00C04FC30936} [Context Menu Handlers] :HKLM Open With EncryptionMenu={A470F8CF-A1E8-4f65-8335-227475AA5C46} [Context Menu Handlers] :HKLM Sharing={f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} [Context Menu Handlers] :HKLM SystemSpeedupFilesMenu=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Context Menu Handlers] :HKLM WorkFolders=C:\WINDOWS\SysWOW64\MSCOREE.DLL ### Microsoft .NET Runtime Execution Engine Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*mscoree.dll [Context Menu Handlers] :HKLM {90AA3A4E-1CBA-4233-B8BB-535773D48449}={90AA3A4E-1CBA-4233-B8BB-535773D48449} [Context Menu Handlers] :HKLM {a2a9545d-a0c2-42b4-9708-a0b2badd77c8}={a2a9545d-a0c2-42b4-9708-a0b2badd77c8} [Context Menu Handlers] :HKLM {C539A15A-3AF9-4c92-B771-50CB78F5C751}=C:\PROGRAM FILES (X86)\ACRONIS\TRUEIMAGEHOME\TISHELL_25_6_35860.DLL ### !$*C:\Program Files (x86)\Acronis\TrueImageHome\tishell_25_6_35860.dll [Context Menu Handlers] :HKLM {D0AD9FD8-6544-459B-9142-7689861140E9}={D0AD9FD8-6544-459B-9142-7689861140E9} [App Paths] :HKLM 7zFM.exe=C:\Program Files (x86)\7-Zip\7zFM.exe ### 7zFM.exe 7-Zip File Manager Igor Pavlov 7-Zip 22.01 [App Paths] :HKLM Acrobat.exe=C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe ### Acrobat.exe Adobe Acrobat Adobe Systems Incorporated Adobe Acrobat 24.3.20180.0 [App Paths] :HKLM AcrobatInfo.exe=C:\Program Files\Adobe\Acrobat DC\Acrobat\AcrobatInfo.exe ### AcrobatInfo.exe Adobe Acrobat Adobe Systems Incorporated Adobe Acrobat 24.3.20180.0 [App Paths] :HKLM budget_facile.exe=C:\Program Files (x86)\Anuman Interactive\Budget Facile 3\budget_facile.exe ### budget_facile.exe [App Paths] :HKLM ccleaner.exe=C:\Program Files\CCleaner\CCleaner64.exe ### ccleaner.exe CCleaner Piriform Software Ltd CCleaner 6.28.0.11297 ->CCLEANER =>CCLEANER.EXE [App Paths] :HKLM chrome.exe=C:\Program Files\Google\Chrome\Application\chrome.exe ### chrome.exe Google Chrome Google LLC Google Chrome 129.0.6668.101 ->CHROME_EXE [App Paths] :HKLM cmmgr32.exe ### cmmgr32.exe [App Paths] :HKLM dfshim.dll ### dfshim.dll [App Paths] :HKLM DJCUHost.exe=C:\Program Files\Common Files\LogiShrd\Unifying\DJCUHost.exe ### DJCUHost.exe Unifying Software (UNICODE) Logitech, Inc. Unifying Software 2.50.25 [App Paths] :HKLM es2launcher.exe=C:\Program Files\epson\Epson Scan 2\Core\es2launcher.exe ### es2launcher.exe Epson Scan 2 Launcher Seiko Epson Corporation Epson Scan 2 6.5.31.32221 [App Paths] :HKLM es2utility.exe=C:\Program Files\epson\Epson Scan 2\Core\es2utility.exe ### es2utility.exe Epson Scan 2 Utility Seiko Epson Corporation Epson Scan 2 6.5.31.32221 [App Paths] :HKLM excel.exe=C:\Program Files\Microsoft Office\Root\Office16\EXCEL.EXE ### excel.exe Microsoft Excel Microsoft Corporation Microsoft Office 16.0.18025.20140 [App Paths] :HKLM firefox.exe=C:\Program Files\Mozilla Firefox\firefox.exe ### firefox.exe Firefox Mozilla Corporation Firefox 131.0.2 [App Paths] :HKLM FormatFactory.exe=C:\Program Files (x86)\FormatFactory\FormatFactory.exe ### FormatFactory.exe FormatFactory Free Time Co., Ltd. Format Factory 5.17.0.0 ->FORMAT FACTORY [App Paths] :HKLM fsquirt.exe ### fsquirt.exe [App Paths] :HKLM IcoSauve.exe=C:\Program Files (x86)\IcoSauve\IcoSauve.exe ### IcoSauve.exe Sauvegarde et restauration du bureau Pierre TORRIS IcoSauve 4.2.0.0 [App Paths] :HKLM IEDIAG.EXE=C:\Program Files\Internet Explorer\IEDIAGCMD.EXE ### IEDIAG.EXE Diagnostics utility for Internet Explorer Microsoft Corporation Internet Explorer 11.00.26100.1591 [App Paths] :HKLM IEDIAGCMD.EXE=C:\Program Files\Internet Explorer\IEDIAGCMD.EXE ### IEDIAGCMD.EXE Diagnostics utility for Internet Explorer Microsoft Corporation Internet Explorer 11.00.26100.1591 [App Paths] :HKLM IEXPLORE.EXE=C:\Program Files\Internet Explorer\IEXPLORE.EXE ### IEXPLORE.EXE Internet Explorer Microsoft Corporation Internet Explorer 11.00.26100.1 [App Paths] :HKLM install.exe ### install.exe [App Paths] :HKLM Integrator.exe=C:\Program Files (x86)\Glary Utilities\Integrator.exe ### Integrator.exe Glary Utilities 6 Glarysoft Ltd Glary Utilities 6, 0, 0, 0 [App Paths] :HKLM LBTWIZ.EXE=C:\Program Files\Logitech\SetPointP\LBTWiz.exe ### LBTWIZ.EXE Logitech Blutooth Wizard Host Process Logitech, Inc. Logitech SetPoint 6.00.48 ->LBTWIZGI =>LBTWIZGI.EXE [App Paths] :HKLM LogiLDA.dll=C:\Windows\system32\ ### LogiLDA.dll [App Paths] :HKLM Lync.exe=C:\Program Files\Microsoft Office\Root\Office16\Lync.exe ### Lync.exe Skype for Business Microsoft Corporation Microsoft Office 16.0.18025.20140 [App Paths] :HKLM MediaInfo.exe=C:\Program Files\MediaInfo\MediaInfo.exe ### MediaInfo.exe MediaInfo MediaArea.net MediaInfo 24.06.0.0 [App Paths] :HKLM Movavi Video Converter 16 ### Movavi Video Converter 16 [App Paths] :HKLM mplayer2.exe=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe ### mplayer2.exe [App Paths] :HKLM MSACCESS.EXE=C:\Program Files\Microsoft Office\Root\Office16\MSACCESS.EXE ### MSACCESS.EXE Microsoft Access Microsoft Corporation Microsoft Office 16.0.18025.20140 [App Paths] :HKLM msedge.exe=C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ### msedge.exe Microsoft Edge Microsoft Corporation Microsoft Edge 129.0.2792.89 ->MSEDGE_EXE [App Paths] :HKLM msoadfsb.exe=C:\Program Files\Microsoft Office\Root\Office16\msoadfsb.exe ### msoadfsb.exe Microsoft Office component Microsoft Corporation Microsoft Office 16.0.18025.20140 [App Paths] :HKLM msoasb.exe=C:\Program Files\Microsoft Office\Root\Office16\msoasb.exe ### msoasb.exe Microsoft Office Trusted Web Host Microsoft Corporation Microsoft Office 16.0.18025.20030 [App Paths] :HKLM MsoHtmEd.exe ### MsoHtmEd.exe [App Paths] :HKLM msoxmled.exe=C:\Program Files\Microsoft Office\Root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLED.EXE ### msoxmled.exe Office XML Handler Microsoft Corporation Microsoft Office 16.0.17425.20008 [App Paths] :HKLM MSPUB.EXE=C:\Program Files\Microsoft Office\Root\Office16\MSPUB.EXE ### MSPUB.EXE Microsoft Publisher Microsoft Corporation Microsoft Office 16.0.18025.20140 [App Paths] :HKLM NeroBurnRights.exe=C:\Program Files (x86)\Nero\Nero 9\Nero BurnRights\NeroBurnRights.exe ### NeroBurnRights.exe Nero BurnRights Nero AG Nero BurnRights 3, 0, 1, 250 ->NERO BURNRIGHTS [App Paths] :HKLM OneDriveFileLauncher.exe ### OneDriveFileLauncher.exe [App Paths] :HKLM OUTLOOK.EXE=C:\Program Files\Microsoft Office\Root\Office16\OUTLOOK.EXE ### OUTLOOK.EXE Microsoft Outlook Microsoft Corporation Microsoft Outlook 16.0.18025.20140 [App Paths] :HKLM powerpnt.exe=C:\Program Files\Microsoft Office\Root\Office16\POWERPNT.EXE ### powerpnt.exe Microsoft PowerPoint Microsoft Corporation Microsoft Office 16.0.18025.20140 [App Paths] :HKLM PowerShell.exe=%SystemRoot%\system32\WindowsPowerShell\v1.0\PowerShell.exe ### PowerShell.exe [App Paths] :HKLM rcadm.exe=C:\Program Files (x86)\RAIDXpert2\rcadm.exe ### rcadm.exe RAIDXpert2 rcadm Advanced Micro Devices, Inc. RAIDXpert2 9.3.0-00296 [App Paths] :HKLM RevoUninPro.exe=C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RevoUninPro.exe ### RevoUninPro.exe Revo Uninstaller Pro VS Revo Group Revo Uninstaller Pro 5.2.1.0 [App Paths] :HKLM sdxhelper.exe=C:\Program Files\Microsoft Office\Root\Office16\SDXHelper.exe ### sdxhelper.exe Microsoft Office SDX Helper Microsoft Corporation Microsoft Office 16.0.18025.20140 [App Paths] :HKLM setup.exe ### setup.exe [App Paths] :HKLM ShowTime.exe=C:\Program Files (x86)\Nero\Nero 9\Nero ShowTime\ShowTime.exe ### ShowTime.exe Nero ShowTime Nero AG Nero ShowTime 5.0.13.100 ->NERO SHOWTIME [App Paths] :HKLM SKYPESERVER.EXE=C:\Program Files\Microsoft Office\Root\Office16\SkypeSrv\SKYPESERVER.EXE ### SKYPESERVER.EXE DocumentChat COM SkypeServer Microsoft Corporation Microsoft Office 16.0.18025.20030 [App Paths] :HKLM table30.exe ### table30.exe [App Paths] :HKLM thunderbird.exe=C:\Program Files\Mozilla Thunderbird\thunderbird.exe ### thunderbird.exe Thunderbird Mozilla Corporation Thunderbird 128.3.1 [App Paths] :HKLM vlc.exe=C:\Program Files\VideoLAN\VLC\vlc.exe ### vlc.exe VLC media player VideoLAN VLC media player 3,0,20,0 [App Paths] :HKLM vstoee.dll ### vstoee.dll [App Paths] :HKLM wab.exe=%ProgramFiles%\Windows Mail\wab.exe ### wab.exe [App Paths] :HKLM wabmig.exe=%ProgramFiles%\Windows Mail\wabmig.exe ### wabmig.exe [App Paths] :HKLM WinRAR.exe=C:\Program Files\WinRAR\WinRAR.exe ### WinRAR.exe WinRAR archiver Alexander Roshal WinRAR 6.24.0 [App Paths] :HKLM Winword.exe=C:\Program Files\Microsoft Office\Root\Office16\WINWORD.EXE ### Winword.exe Microsoft Word Microsoft Corporation Microsoft Office 16.0.18025.20140 [App Paths] :HKLM wmplayer.exe=%ProgramFiles(x86)%\Windows Media Player\wmplayer.exe ### wmplayer.exe [Kernel Auto Boot] [ActiveSetup] >{22d6f312-b0f6-11d0-94ab-0080c74c7e95}=C:\WINDOWS\SYSTEM32\UNREGMP2.EXE ### Utilitaire d’installation du Lecteur multimédia Windows (ancienne génération) de Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 12.0.26100.1 !$*%SystemRoot%\system32\unregmp2.exe /ShowWMP [Auto Services] :HKLM aakore ### Service: Acronis Agent Core Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\ACRONIS\TRUEIMAGEHOME\AGENT\AAKORE.EXE * Enables Acronis Agent Core Service. Acronis Agent Core Acronis International GmbH Acronis Platform 1.8.1-266 !$*"C:\PROGRAM FILES (X86)\ACRONIS\TRUEIMAGEHOME\AGENT\AAKORE.EXE" RUN [Auto Services] :HKLM AarSvc ### Service: Agent Activation Runtime Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Runtime for activating conversational agent applications Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K AARSVCGROUP -P [Auto Services] :HKLM AarSvc_fea20 ### Service: Agent Activation Runtime_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Runtime for activating conversational agent applications Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K AARSVCGROUP -P [Auto Services] :HKLM AcrSch2Svc ### Service: Acronis Scheduler2 Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\SCHEDULE2\SCHEDUL2.EXE * Fournit la planification pour les tâches des composants Acronis. Acronis Scheduler Service Acronis International GmbH Acronis Tools 8,0,1,11438 !$*"C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\SCHEDULE2\SCHEDUL2.EXE" [Auto Services] :HKLM AdobeARMservice ### Service: Adobe Acrobat Update Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ARM\1.0\ARMSVC.EXE * Adobe Acrobat Updater keeps your Adobe software up to date. Acrobat Update Service Adobe Inc. Acrobat Update Service 1.824.460.1091 !$*"C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ARM\1.0\ARMSVC.EXE" [Auto Services] :HKLM afcdpsrv ### Service: Acronis Nonstop Backup Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\CDP\AFCDPSRV.EXE * Fournit une protection sans arrêt pour les fichiers et les partitions de l'ordinateur. !$*"C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\CDP\AFCDPSRV.EXE" [Auto Services] :HKLM ALG ### Service: Service de la passerelle de la couche Application Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\ALG.EXE * Fournit la prise en charge de plug-ins de protocole tiers pour le partage de connexion Internet Service de la passerelle de la couche Application Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\ALG.EXE [Auto Services] :HKLM APC Data Service ### Service: APC Data Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\DATASERV.EXE * PowerChute Personal Edition service for managing data operations. PowerChute Data Service Schneider Electric PowerChute Personal Edition 3.1.0 !$*C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\DATASERV.EXE [Auto Services] :HKLM APC UPS Service ### Service: APC UPS Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\MAINSERV.EXE * PowerChute Personal Edition service for managing battery backup power events. Battery Backup Management Service Schneider Electric PowerChute Personal Edition 3.1.0 ->POWERCHUTE !$*C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\MAINSERV.EXE [Auto Services] :HKLM AppIDSvc ### Service: Identité de l’application Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Détermine et vérifie l’identité d’une application. La désactivation de ce service empêchera l’application d’AppLocker. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM Appinfo ### Service: Informations d’application Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet d’exécuter les applications interactives avec des droits d’administration supplémentaires. Si ce service est arrêté, les utilisateurs ne pourront pas lancer les applications avec les droits d’administration supplémentaires nécessaires pour effectuer les tâches utilisateur souhaitées. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM AppReadiness ### Service: Préparation des applications Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Prépare les applications pour la première connexion d’un utilisateur sur cet ordinateur et lors de l’ajout de nouvelles applications. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K APPREADINESS -P [Auto Services] :HKLM AppXSvc ### Service: Service de déploiement AppX (AppXSVC) Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Assure la prise en charge de l’infrastructure pour le déploiement d’applications du Store. Ce service démarre à la demande. S’il est désactivé, les applications du Store ne sont pas déployées sur le système et peuvent ne pas fonctionner correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K WSAPPX -P [Auto Services] :HKLM ApxSvc ### Service: Service proxy de périphérique audio virtuel Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère les périphériques audio virtuels pour les programmes Windows. Si ce service est arrêté, les périphériques audio virtuels ne fonctionneront pas correctement. Si ce service est désactivé, les services qui en dépendent explicitement ne pourront pas démarrer Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM AudioEndpointBuilder ### Service: Générateur de points de terminaison du service Audio Windows Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère les périphériques audio pour le service Audio Windows. Si ce service est arrêté, les périphériques et les effets audio ne fonctionnent pas correctement. Si ce service est désactivé, tous les services qui en dépendent explicitement ne peuvent pas démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM Audiosrv ### Service: Audio Windows Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère les périphériques audio pour les programmes compatibles Windows. Si ce service est arrêté, les périphériques et les effets audio ne fonctionneront pas correctement. S’il est désactivé, les services qui en dépendent explicitement ne démarreront pas Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM autotimesvc ### Service: Heure cellulaire Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service définit l'heure en fonction des messages NITZ à partir d'un réseau mobile. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K AUTOTIMESVC [Auto Services] :HKLM AviraFallbackUpdater ### Service: Avira Fallback Updater Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\AVIRA\FALLBACK UPDATER\AVIRA.SPOTLIGHT.FALLBACKUPDATER.EXE * Avira Fallback Updater Avira Security Avira Operations GmbH Avira Security 1.0.49.727 ->AVIRA.EXE !$*"C:\PROGRAM FILES (X86)\AVIRA\FALLBACK UPDATER\AVIRA.SPOTLIGHT.FALLBACKUPDATER.EXE" FALLBACKUPDATER=TRUE [Auto Services] :HKLM AviraOptimizerHost ### Service: Avira Optimizer Host Status: Start Type: disabled Actual File: C:\PROGRAM FILES (X86)\AVIRA\OPTIMIZER HOST\AVIRA.OPTIMIZERHOST.EXE * Hosts multiple Avira optimization services within one Windows service. Avira Optimizer Host Avira Operations GmbH Avira Optimizer Host 1.3.0.63 ->AVIRA OPTIMIZER HOST !$*"C:\PROGRAM FILES (X86)\AVIRA\OPTIMIZER HOST\AVIRA.OPTIMIZERHOST.EXE" [Auto Services] :HKLM AviraPhantomVPN ### Service: Avira Phantom VPN Status: Start Type: disabled Actual File: C:\PROGRAM FILES (X86)\AVIRA\VPN\AVIRA.VPNSERVICE.EXE * AviraPhantomVPN VpnService Avira Operations GmbH & Co. KG Avira Phantom VPN 2.44.1.19908 !$*"C:\PROGRAM FILES (X86)\AVIRA\VPN\AVIRA.VPNSERVICE.EXE" [Auto Services] :HKLM AviraSecurity ### Service: Avira Security Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SERVICE.EXE * Avira Security Avira Security Avira Operations GmbH Avira Security 1.1.104.1294 ->AVIRA SECURITY =>SERVICE.EXE !$*"C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SERVICE.EXE" [Auto Services] :HKLM AviraSecurityUpdater ### Service: Avira Security Updater Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.COMMON.UPDATER.EXE * Avira Security Updater Avira Security Avira Operations GmbH Avira Security 1.1.104.1294 ->AVIRA SECURITY =>COMMON.UPDATER.EXE !$*"C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.COMMON.UPDATER.EXE" [Auto Services] :HKLM AxInstSV ### Service: Programme d’installation ActiveX (AxInstSV) Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Valide le contrôle de compte d’utilisateur pour l’installation des contrôles ActiveX depuis Internet et permet de gérer leur installation d’après les paramètres de la stratégie de groupe. Ce service est démarré sur demande et, s’il est désactivé, l’installation des contrôles ActiveX se comporte conformément aux paramètres par défaut du navigateur. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K AXINSTSVGROUP [Auto Services] :HKLM Backupper Service ### Service: AOMEI Backupper Scheduler Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\AOMEI\AOMEI BACKUPPER\7.3.3\ABSERVICE.EXE * AOMEI Backupper schedule task service. AOMEI Backupper Schedule task service AOMEI International Network Limited AOMEI Backupper 6, 6, 0, 0 ->BACKUPPER SERVICE =>ABSERVIC.EXE !$*"C:\PROGRAM FILES (X86)\AOMEI\AOMEI BACKUPPER\7.3.3\ABSERVICE.EXE" [Auto Services] :HKLM BcastDVRUserService ### Service: Service utilisateur de diffusion et GameDVR Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service utilisateur est utilisé pour les enregistrements de jeu et les diffusions en direct Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K BCASTDVRUSERSERVICE [Auto Services] :HKLM BcastDVRUserService_fea20 ### Service: Service utilisateur de diffusion et GameDVR_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service utilisateur est utilisé pour les enregistrements de jeu et les diffusions en direct Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K BCASTDVRUSERSERVICE [Auto Services] :HKLM BDESVC ### Service: Service de chiffrement de lecteur BitLocker Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * BDESVC héberge le service de chiffrement de lecteur BitLocker. Le chiffrement de lecteur BitLocker fournit un démarrage sécurisé pour le système d’exploitation, ainsi qu’un chiffrement total du volume pour le système d’exploitation, les volumes fixes ou les volumes amovibles. Ce service permet à BitLocker d’inviter les utilisateurs à effectuer diverses actions liées aux volumes montés, et déverrouille les volumes automatiquement sans intervention de l’utilisateur. En outre, il stocke les informations de récupération dans Active Directory, s’il est disponible, et, si nécessaire, garantit que les certificats de récupération les plus récents sont utilisés. L’arrêt ou la désactivation du service empêche les utilisateurs de tirer parti de cette fonctionnalité. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM BEService ### Service: BattlEye Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\BATTLEYE\BESERVICE.EXE * !$*"C:\PROGRAM FILES (X86)\COMMON FILES\BATTLEYE\BESERVICE.EXE" [Auto Services] :HKLM BFE ### Service: Moteur de filtrage de base Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le moteur de filtrage de base est un service qui gère les stratégies de pare-feu et de sécurité IP (IPsec), et qui implémente le filtrage en mode utilisateur. L’arrêt ou la désactivation du service Moteur de filtrage de base diminue significativement la sécurité du système et aboutit également à un fonctionnement imprévisible des applications de gestion et de pare-feu IPsec. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENONETWORKFIREWALL -P [Auto Services] :HKLM BITS ### Service: Service de transfert intelligent en arrière-plan Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Transfère des fichiers en arrière-plan en utilisant la bande passante réseau inactive. Si le service est désactivé, toutes les applications dépendant du service de transfert intelligent d’arrière-plan, telles que Windows Update ou MSN Explorer, ne pourront plus télécharger des programmes ni d’autres informations. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM BluetoothUserService ### Service: Service de support des utilisateurs du Bluetooth Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service des utilisateurs du Bluetooth prend en charge le bon fonctionnement de fonctionnalités Bluetooth pertinentes pour chaque session utilisateur. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K BTHAPPGROUP -P [Auto Services] :HKLM BluetoothUserService_fea20 ### Service: Service de support des utilisateurs du Bluetooth_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service des utilisateurs du Bluetooth prend en charge le bon fonctionnement de fonctionnalités Bluetooth pertinentes pour chaque session utilisateur. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K BTHAPPGROUP -P [Auto Services] :HKLM Bonjour Service ### Service: Service Bonjour Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES\BONJOUR\MDNSRESPONDER.EXE * Permet aux périphériques matériels et aux services logiciels de se configurer automatiquement sur le réseau et de se rendre publics. Bonjour Service Apple Inc. Bonjour 3,0,0,10 !$*"C:\PROGRAM FILES\BONJOUR\MDNSRESPONDER.EXE" [Auto Services] :HKLM BrokerInfrastructure ### Service: Service d’infrastructure des tâches en arrière-plan Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service d’infrastructure Windows qui contrôle les tâches en arrière-plan qui peuvent s’exécuter sur le système. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P [Auto Services] :HKLM BTAGService ### Service: Service de passerelle audio Bluetooth Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service prenant en charge le rôle de passerelle audio du profil mains libres Bluetooth. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED [Auto Services] :HKLM BthAvctpSvc ### Service: Service AVCTP Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ceci est le service de protocole de transport de contrôle audio vidéo Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM bthserv ### Service: Service de prise en charge Bluetooth Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service Bluetooth prend en charge la découverte et l’association d’appareils Bluetooth distants. L’arrêt ou la désactivation de ce service peut entraîner un dysfonctionnement des appareils Bluetooth déjà installés et peut empêcher la découverte et l’association de nouveaux appareils. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM camsvc ### Service: Service Gestionnaire d’accès aux fonctionnalités Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit des fonctionnalités pour la gestion de l’accès des applications UWP aux fonctionnalités de l’application, ainsi que pour la vérification de l’accès d'une application aux fonctionnalités de l’application spécifique Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K OSPRIVACY -P [Auto Services] :HKLM CaptureService ### Service: CaptureService Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Active la fonctionnalité de capture d'écran facultative pour les applications qui appellent l'API Windows.Graphics.Capture. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM CaptureService_fea20 ### Service: CaptureService_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Active la fonctionnalité de capture d'écran facultative pour les applications qui appellent l'API Windows.Graphics.Capture. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM cbdhsvc ### Service: Service utilisateur du Presse-papiers Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service utilisateur est utilisé pour les scénarios du Presse-papiers Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K CLIPBOARDSVCGROUP -P [Auto Services] :HKLM cbdhsvc_fea20 ### Service: Service utilisateur du Presse-papiers_fea20 Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service utilisateur est utilisé pour les scénarios du Presse-papiers Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K CLIPBOARDSVCGROUP -P [Auto Services] :HKLM CCleanerPerformanceOptimizerService ### Service: CCleaner Performance Optimizer Service Status: Start Type: disabled Actual File: C:\PROGRAM FILES\CCLEANER\CCLEANERPERFORMANCEOPTIMIZERSERVICE.EXE * This service is needed for the safe running of the Performance Optimizer feature of CCleaner CCleaner Performance Optimizer Service Piriform Software Ltd CCleanerPerformanceOptimizerService.exe 6.28.0.11297 !$*"C:\PROGRAM FILES\CCLEANER\CCLEANERPERFORMANCEOPTIMIZERSERVICE.EXE" [Auto Services] :HKLM cdfs ### Driver: CD/DVD File System Reader Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS * ISO9660/Joliet File System Reader for CD/DVDs. (Core) (All pieces) CD-ROM File System Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS [Auto Services] :HKLM CDPSvc ### Service: Service de plateforme des appareils connectés Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service est utilisé pour les scénarios plateforme d’appareils connectés Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM CDPUserSvc ### Service: Service pour utilisateur de plateforme d’appareils connectés Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service utilisateur entre dans le cadre de scénarios de plateforme d’appareils connectés Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM CDPUserSvc_fea20 ### Service: Service pour utilisateur de plateforme d’appareils connectés_fea20 Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service utilisateur entre dans le cadre de scénarios de plateforme d’appareils connectés Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM CertPropSvc ### Service: Propagation du certificat Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Copie des certificats utilisateur et des certificats racines à partir de cartes à puce dans le magasin de certificats de l’utilisateur actuel, détecte quand une carte à puce est insérée dans un lecteur de cartes à puce, et, si nécessaire, installe le minipilote Plug and Play de cartes à puce. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS [Auto Services] :HKLM ClickToRunSvc ### Service: Microsoft Office Click-to-Run Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\CLICKTORUN\OFFICECLICKTORUN.EXE * ?Gère la coordination des ressources, la diffusion en continu en arrière-plan et l’intégration système des produits Microsoft 365 et Office, ainsi que leurs mises à jour associées. Ce service est nécessaire pour s’exécuter pendant l’utilisation d’un Microsoft 365 et d’un programme Office, lors de l’installation initiale de la diffusion en continu et de toutes les mises à jour suivantes.? Microsoft Office Click-to-Run (SxS) Microsoft Corporation Microsoft 365 and Office 16.0.18025.20140 !$*"C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\CLICKTORUN\OFFICECLICKTORUN.EXE" /SERVICE [Auto Services] :HKLM ClipSVC ### Service: Service de licences de client (ClipSVC) Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet la prise en charge de l'infrastructure de Microsoft Store. Ce service démarre à la demande. S'il est désactivé, les applications achetées via le Microsoft Store ne se comportent pas correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K WSAPPX -P [Auto Services] :HKLM CloudBackupRestoreSvc ### Service: Service de restauration et de sauvegarde dans le cloud Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Surveille le système pour détecter des modifications apportées aux états de l’application et des paramètres, et effectue des opérations de sauvegarde et de restauration dans le cloud si nécessaire. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM CloudBackupRestoreSvc_fea20 ### Service: Service de restauration et de sauvegarde dans le cloud_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Surveille le système pour détecter des modifications apportées aux états de l’application et des paramètres, et effectue des opérations de sauvegarde et de restauration dans le cloud si nécessaire. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM cnghwassist ### Driver: CNG Hardware Assist algorithm provider Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\DRIVERS\CNGHWASSIST.SYS * CNG Hardware Assist algorithm provider CNG Hardware Assist algorithm provider Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\SYSTEM32\DRIVERS\CNGHWASSIST.SYS [Auto Services] :HKLM COMSysApp ### Service: Application système COM+ Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\DLLHOST.EXE * Gère la configuration et le suivi des composants de base COM+ (Component Object Model). Si le service est arrêté, la plupart des composants de base COM+ ne fonctionneront pas correctement. Si ce service est désactivé, les services qui en dépendent de manière explicite ne pourront pas démarrer. COM Surrogate Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*%SYSTEMROOT%\SYSTEM32\DLLHOST.EXE /PROCESSID:{02D4B3F1-FD88-11D1-960D-00805FC79235} [Auto Services] :HKLM ConsentUxUserSvc ### Service: Service utilisateur ConsentUX Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet au système de demander l’autorisation de l’utilisateur pour autoriser les applications à accéder à des ressources sensibles et à des informations telles que l’emplacement de l’appareil Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW [Auto Services] :HKLM ConsentUxUserSvc_fea20 ### Service: Service utilisateur ConsentUX_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet au système de demander l’autorisation de l’utilisateur pour autoriser les applications à accéder à des ressources sensibles et à des informations telles que l’emplacement de l’appareil Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW [Auto Services] :HKLM CoreMessagingRegistrar ### Service: CoreMessaging Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Manages communication between system components. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENONETWORK -P [Auto Services] :HKLM CredentialEnrollmentManagerUserSvc ### Service: CredentialEnrollmentManagerUserSvc Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\CREDENTIALENROLLMENTMANAGER.EXE * Gestionnaire d’inscription des informations d’identification Gestionnaire d’inscription des informations d’identification Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 ->CREDENTIAL ENROLLMENT MANAGER !$*%SYSTEMROOT%\SYSTEM32\CREDENTIALENROLLMENTMANAGER.EXE [Auto Services] :HKLM CredentialEnrollmentManagerUserSvc_fea20 ### Service: CredentialEnrollmentManagerUserSvc_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\CREDENTIALENROLLMENTMANAGER.EXE * Gestionnaire d’inscription des informations d’identification Gestionnaire d’inscription des informations d’identification Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 ->CREDENTIAL ENROLLMENT MANAGER !$*C:\WINDOWS\SYSTEM32\CREDENTIALENROLLMENTMANAGER.EXE [Auto Services] :HKLM CryptSvc ### Service: Services de chiffrement Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit trois services de gestion : le service de base de données de catalogues, qui confirme les signatures des fichiers Windows et autorise l’installation de nouveaux programmes, le service de racine protégée, qui ajoute et supprime les certificats d’autorité de certification racines approuvés sur cet ordinateur, et le service de mise à jour de certificats racines automatique, qui extrait les certificats racines à partir de Windows Update et autorise les scénarios tels que SSL. Si ce service est arrêté, les services de gestion ne fonctionneront pas correctement. Si ce service est désactivé, les services en dépendant explicitement ne démarreront pas. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P [Auto Services] :HKLM dcsvc ### Service: Service de configuration (DC) déclaré Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Traiter les documents de configuration déclarés reçus de GPM et d’autres canaux et effectuer des configurations sur l’appareil Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM defragsvc ### Service: Optimiser les lecteurs Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet à l’ordinateur de fonctionner plus efficacement en optimisant les fichiers sur les lecteurs de stockage. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DEFRAGSVC [Auto Services] :HKLM DeviceAssociationBrokerSvc ### Service: DeviceAssociationBroker Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Enables apps to pair devices Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW -P [Auto Services] :HKLM DeviceAssociationBrokerSvc_fea20 ### Service: DeviceAssociationBroker_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Enables apps to pair devices Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW -P [Auto Services] :HKLM DeviceAssociationService ### Service: Service d’association de périphérique Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet de coupler des périphériques câblés ou sans fil au système. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM DeviceInstall ### Service: Service d’installation de périphérique Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet à l’ordinateur de reconnaître et d’adapter les modifications matérielles avec peu ou pas du tout d’intervention de l’utilisateur. Arrêter ou désactiver ce service provoque une instabilité du système. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P [Auto Services] :HKLM DevicePickerUserSvc ### Service: DevicePicker Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service utilisateur permet de gérer l'IU Miracast, DLNA et DIAL Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW [Auto Services] :HKLM DevicePickerUserSvc_fea20 ### Service: DevicePicker_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service utilisateur permet de gérer l'IU Miracast, DLNA et DIAL Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW [Auto Services] :HKLM DevicesFlowUserSvc ### Service: Flux d’appareils Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet à ConnectUX et aux Paramètres du PC de se connecter et d'effectuer le couplage avec affichages Wi-Fi et les appareils Bluetooth. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW [Auto Services] :HKLM DevicesFlowUserSvc_fea20 ### Service: Flux d’appareils_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet à ConnectUX et aux Paramètres du PC de se connecter et d'effectuer le couplage avec affichages Wi-Fi et les appareils Bluetooth. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K DEVICESFLOW [Auto Services] :HKLM DevQueryBroker ### Service: Service Broker de découverte en arrière-plan DevQuery Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet aux applications de découvrir les périphériques avec une tâche en arrière-plan Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM Dhcp ### Service: Client DHCP Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Inscrit et met à jour les adresses IP et les enregistrements DNS pour cet ordinateur. Si ce service est arrêté, cet ordinateur ne recevra pas d’adresses IP et de mises à jour DNS dynamiques. Si ce service est désactivé, tous les services qui en dépendent explicitement ne pourront pas démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM diagsvc ### Service: Diagnostic Execution Service Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Executes diagnostic actions for troubleshooting support Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DIAGNOSTICS [Auto Services] :HKLM DiagTrack ### Service: Expériences des utilisateurs connectés et télémétrie Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service Expériences des utilisateurs connectés et télémétrie offre des fonctionnalités qui prennent en charge les expériences des utilisateurs connectés et in-app. En outre, ce service gère la collecte et la transmission des informations de diagnostic et d'utilisation en fonction des événements (afin d'améliorer l'expérience et la qualité de la plateforme Windows) lorsque les paramètres des options de confidentialité des diagnostics et de l'utilisation sont activés sous Commentaires et diagnostics. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UTCSVC -P [Auto Services] :HKLM DispBrokerDesktopSvc ### Service: Service de stratégie d'affichage Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère la connexion et la configuration des affichages locaux et distants Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM DisplayEnhancementService ### Service: Service d'amélioration de l'affichage Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service permettant de gérer l'amélioration de l'affichage, tel que le contrôle de la luminosité. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM DmEnrollmentSvc ### Service: Service d'inscription de la gestion des périphériques Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Assure les activités d'inscription de périphériques de la gestion des périphériques. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM dmwappushservice ### Service: Service de routage de messages Push du protocole WAP (Wireless Application Protocol) de gestion des appareils Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Achemine les messages Push du protocole WAP (Wireless Application Protocol) reçus par l'appareil et synchronise les sessions de gestion des appareils Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM Dnscache ### Service: Client DNS Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service client DNS (dnscache) envoie des requêtes DNS (Domain Name System), met en cache les résultats de la requête et inscrit le nom complet de l’ordinateur sur le réseau. Ce service ne peut pas être arrêté. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P [Auto Services] :HKLM DoSvc ### Service: Optimisation de livraison Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Effectue des tâches d'optimisation de distribution de contenu Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P [Auto Services] :HKLM dot3svc ### Service: Configuration automatique de réseau câblé Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service Wired AutoConfig (DOT3SVC) est responsable de l’exécution de l’authentification IEEE 802.1X sur les interfaces Ethernet. Si votre déploiement de réseau câblé actuel applique l’authentification 802.1X, le service DOT3SVC doit être configuré de façon à s’exécuter pour l’établissement de la connectivité de Couche 2 et/ou fournir l’accès aux ressources réseau. Les réseaux câblés qui n’appliquent pas l’authentification 802.1X ne sont pas concernés par le service DOT3SVC. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM DsmSvc ### Service: Gestionnaire d’installation de périphérique Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Active la détection, le téléchargement et l’installation du logiciel associé au périphérique. Si ce service est désactivé, les périphériques risquent d’être configurés avec un logiciel obsolète et de ne pas fonctionner correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM DsSvc ### Service: Service de partage des données Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit l'intermédiation des données entre les applications. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM DusmSvc ### Service: Consommation des données Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Consommation des données du réseau, limite de données, limiter les données d’arrière-plan, connexions réseau limitées. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P -S DUSMSVC [Auto Services] :HKLM EapHost ### Service: Protocole EAP (Extensible Authentication Protocol) Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service EAP (Extensible Authentication Protocol) permet d’authentifier le réseau dans des scénarios tels que des réseaux câblés et sans fil 802.1x, des réseaux privés virtuels et NAP (Network Access Protection). Ce service fournit également des API qui sont utilisées par les clients d’accès à distance, notamment les clients sans fil et VPN, lors de l’authentification. Si vous désactivez ce service, cet ordinateur ne pourra pas accéder aux réseaux qui nécessitent l’authentification EAP. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM EasyAntiCheat ### Service: EasyAntiCheat Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\EASYANTICHEAT\EASYANTICHEAT.EXE * Provides integrated security and services for online multiplayer games. EasyAntiCheat Service Epic Games, Inc EasyAntiCheat 6, 0, 0, 0 !$*"C:\PROGRAM FILES (X86)\EASYANTICHEAT\EASYANTICHEAT.EXE" [Auto Services] :HKLM EasyAntiCheat_EOS ### Service: Easy Anti-Cheat (Epic Online Services) Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\EASYANTICHEAT_EOS\EASYANTICHEAT_EOS.EXE * Provides security for online multiplayer games. Easy Anti-Cheat Service (EOS) Epic Games, Inc. Easy Anti-Cheat Service (EOS) 1.3.7 ->EASY ANTI-CHEAT SERVICE (EOS) !$*"C:\PROGRAM FILES (X86)\EASYANTICHEAT_EOS\EASYANTICHEAT_EOS.EXE" [Auto Services] :HKLM edgeupdate ### Service: Microsoft Edge Update Service (edgeupdate) Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE * Maintient votre logiciel Microsoft à jour. Si ce service est désactivé ou arrêté, votre logiciel Microsoft n'est pas mis à jour, ce qui signifie que les potentielles failles de sécurité peuvent ne pas être corrigées et que certaines fonctionnalités risquent de ne pas être opérationnelles. Ce service se désinstalle de lui-même si aucun logiciel Microsoft ne l'utilise. Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.155.85 ->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*"C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE" /SVC [Auto Services] :HKLM edgeupdatem ### Service: Microsoft Edge Update Service (edgeupdatem) Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE * Maintient votre logiciel Microsoft à jour. Si ce service est désactivé ou arrêté, votre logiciel Microsoft n'est pas mis à jour, ce qui signifie que les potentielles failles de sécurité peuvent ne pas être corrigées et que certaines fonctionnalités risquent de ne pas être opérationnelles. Ce service se désinstalle de lui-même si aucun logiciel Microsoft ne l'utilise. Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.155.85 ->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*"C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE" /MEDSVC [Auto Services] :HKLM EFS ### Service: Système de fichiers EFS (Encrypting File System) Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\LSASS.EXE * Fournit la technologie de chiffrement des fichiers de base utilisée pour stocker les fichiers chiffrés sur les volumes NTFS. Si ce service est arrêté ou désactivé, les applications n’auront pas accès aux fichiers chiffrés. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SYSTEMROOT%\SYSTEM32\LSASS.EXE [Auto Services] :HKLM embeddedmode ### Service: Mode incorporé Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service Mode incorporé active les scénarios associés aux applications d’arrière-plan. La désactivation de ce service empêche l’activation de ces applications. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM EndpointProtectionService ### Service: Endpoint Protection Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES\AVIRA\ENDPOINT PROTECTION SDK\ENDPOINTPROTECTION.EXE * Endpoint Protection primary service Endpoint Protection Servic Avira Operations Gmb Avira Product Famil 1.0.2410.411 ->ENDPOINTPROTECTION.EX !$*"C:\PROGRAM FILES\AVIRA\ENDPOINT PROTECTION SDK\ENDPOINTPROTECTION.EXE" START ENDPOINTPROTECTIONSERVICE [Auto Services] :HKLM EndpointProtectionService2 ### Service: Endpoint Protection Secondary Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES\AVIRA\ENDPOINT PROTECTION SDK\ENDPOINTPROTECTION.EXE * Endpoint Protection secondary service used for interruption free updates Endpoint Protection Servic Avira Operations Gmb Avira Product Famil 1.0.2410.411 ->ENDPOINTPROTECTION.EX !$*"C:\PROGRAM FILES\AVIRA\ENDPOINT PROTECTION SDK\ENDPOINTPROTECTION.EXE" START ENDPOINTPROTECTIONSERVICE2 [Auto Services] :HKLM EntAppSvc ### Service: Service de gestion des applications d'entreprise Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet la gestion des applications d'entreprise. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K APPMODEL -P [Auto Services] :HKLM EpicOnlineServices ### Service: Epic Online Services Status: Start Type: disabled Actual File: C:\PROGRAM FILES (X86)\EPIC GAMES\EPIC ONLINE SERVICES\SERVICE\EPICONLINESERVICESHOST.EXE * Runs background processes for applications using Epic Games services Epic Online Services Host Epic Games, Inc. Epic Online Services 1.0.0 ->WINSW.EXE !$*"C:\PROGRAM FILES (X86)\EPIC GAMES\EPIC ONLINE SERVICES\SERVICE\EPICONLINESERVICESHOST.EXE" [Auto Services] :HKLM EpsonScanSvc ### Service: Epson Scanner Service Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\ESCSVC64.EXE * Epson Scanner Service (64bit) Seiko Epson Corporation EPSON Scanner Driver 1.3.0.0 !$*C:\WINDOWS\SYSTEM32\ESCSVC64.EXE [Auto Services] :HKLM EPSON_PM_RPCV4_11 ### Service: EPSON V3 Service4(11) Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES\COMMON FILES\EPSON\EPW!3 SSRP\E_S11RPB.EXE * EPSON Status Monitor 3 Seiko Epson Corporation EPSON Status Monitor 3 11.00 !$*"C:\PROGRAM FILES\COMMON FILES\EPSON\EPW!3 SSRP\E_S11RPB.EXE" [Auto Services] :HKLM EventLog ### Service: Journal d’événements Windows Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service gère les événements et les journaux d’événements. Il prend en charge l’enregistrement des événements, les requêtes sur les événements, l’abonnement aux événements, l’archivage des journaux d’événements et la gestion des métadonnées d’événements. Il peut afficher des événements en XML et en format de texte brut. L’arrêt de ce service peut compromettre la sécurité et la fiabilité du système. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM EventSystem ### Service: Système d’événement COM+ Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Prend en charge le service de notification d’événements système (SENS, System Event Notification Service), qui fournit une distribution automatique d’événements aux composants COM (Component Object Model) abonnés. Si le service est arrêté, SENS sera fermé et ne pourra fournir des informations d’ouverture et de fermeture de session. Si ce service est désactivé, le démarrage de tout service qui en dépend explicitement échouera. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM fdPHost ### Service: Hôte du fournisseur de découverte de fonctions Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service FDPHOST héberge les fournisseurs de découverte de réseau de découverte de fonction (FD). Ces fournisseurs de découverte de fonction fournissent des services de découverte de réseau pour les protocoles SSDP (Simple Services Discovery Protocol) et WS-D (Web Services - Discovery). L’arrêt ou la désactivation du service FDPHOST désactivera la découverte de réseau pour ces protocoles lors de l’utilisation de la découverte de fonction. Lorsque ce service n’est pas disponible, les services réseau qui utilisent la découverte de fonction et qui dépendent de ces protocoles de découverte ne pourront pas trouver des périphériques ou des ressources réseau. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM FDResPub ### Service: Publication des ressources de découverte de fonctions Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Publie cet ordinateur et les ressources qui y sont attachées, de façon à ce que leur découverte soit possible sur le réseau. Si ce service est arrêté, les ressources réseau ne sont plus publiées et ne seront donc pas découvertes par les autres ordinateurs du réseau. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION -P [Auto Services] :HKLM fhsvc ### Service: Service d’historique des fichiers Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Protège les fichiers utilisateurs des pertes accidentelles en les copiant dans un emplacement de sauvegarde. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM FileSyncHelper ### Service: FileSyncHelper Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\FILESYNCHELPER.EXE * Helper service for OneDrive Microsoft OneDriveFileSyncHelper Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 ->MICROSOFT ONEDRIVE !$*"C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\FILESYNCHELPER.EXE" [Auto Services] :HKLM FontCache ### Service: Service de cache de police Windows Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Optimise les performances des applications en mettant en cache les données des polices communément utilisées. Les applications démarrent ce service s’il n’est pas déjà en fonctionnement. Il peut être désactivé ; il en résulte cependant une dégradation des performances des applications. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM FontCache3.0.0.0 ### Service: Cache de police de Windows Presentation Foundation 3.0.0.0 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WPF\PRESENTATIONFONTCACHE.EXE * Optimise les performances des applications Windows Presentation Foundation (WPF) en mettant en cache les données de police fréquemment utilisées. Les applications WPF démarrent ce service s'il n'est pas déjà en cours d'exécution. Ce dernier peut être désactivé ; toutefois, cela entraîne une dégradation des performances des applications WPF. PresentationFontCache.exe Microsoft Corporation Microsoft® .NET Framework 3.0.6920.9151 !$*%SYSTEMROOT%\MICROSOFT.NET\FRAMEWORK64\V3.0\WPF\PRESENTATIONFONTCACHE.EXE [Auto Services] :HKLM FrameServer ### Service: Serveur de trame de la Caméra Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permettre à plusieurs clients d’accéder aux trames vidéo des appareils photo. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K CAMERA [Auto Services] :HKLM FrameServerMonitor ### Service: Moniteur de serveur de trame Caméra Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Surveille l’intégrité et l’état du service serveur de trames de caméra Windows. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K CAMERAMONITOR [Auto Services] :HKLM FvSvc ### Service: NVIDIA FrameView SDK service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES\NVIDIA CORPORATION\FRAMEVIEWSDK\NVFVSDKSVC_X64.EXE * NVIDIA FrameView SDK service NVIDIA FrameView 1.3.8513.0 !$*"C:\PROGRAM FILES\NVIDIA CORPORATION\FRAMEVIEWSDK\NVFVSDKSVC_X64.EXE" -SERVICE [Auto Services] :HKLM GameInputSvc ### Service: GameInput Service Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\GAMEINPUTSVC.EXE * Enables keyboards, mice, gamepads, and other input devices to be used with the GameInput API. GameInput Host Service Microsoft Corporation Microsoft GameInput 0.2309.26100.1882 ->GAMEINPUTHOSTSERVICE !$*%SYSTEMROOT%\SYSTEM32\GAMEINPUTSVC.EXE [Auto Services] :HKLM GamingApp_Service ### Service: GamingApp_Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGAPP_SERVICE.EXE * GamingApp_Service GamingApp_Service Micro-Star Int'l Co., Ltd. GamingApp_Service 6.2.0.78 !$*"C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGAPP_SERVICE.EXE" [Auto Services] :HKLM GamingHotkey_Service ### Service: MSI Gaming Hotkey Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGHOTKEY_SERVICE.EXE * MSI Gaming Hotkey Service Gaming Hotkey Service Micro-Star INT'L CO., LTD. Gaming Hotkey Service 1.0.0.10 !$*"C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGHOTKEY_SERVICE.EXE" [Auto Services] :HKLM GamingServices ### Service: Gaming Services Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.GAMINGSERVICES_24.93.16001.0_X64__8WEKYB3D8BBWE\GAMINGSERVICES.EXE * Gaming Services GamingServices Microsoft Corporation Microsoft Gaming Install Services 10.0.26100.1512 !$*"C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.GAMINGSERVICES_24.93.16001.0_X64__8WEKYB3D8BBWE\GAMINGSERVICES.EXE" [Auto Services] :HKLM GamingServicesNet ### Service: Gaming Services Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.GAMINGSERVICES_24.93.16001.0_X64__8WEKYB3D8BBWE\GAMINGSERVICESNET.EXE * Gaming Services GamingServices Microsoft Corporation Microsoft Gaming Install Services 10.0.26100.1512 ->GAMINGSERVICES.EXE !$*"C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.GAMINGSERVICES_24.93.16001.0_X64__8WEKYB3D8BBWE\GAMINGSERVICESNET.EXE" [Auto Services] :HKLM GoogleChromeElevationService ### Service: Google Chrome Elevation Service (GoogleChromeElevationService) Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\129.0.6668.101\ELEVATION_SERVICE.EXE * Google Chrome Google LLC Google Chrome 129.0.6668.101 ->ELEVATION_SERVICE_EXE !$*"C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\129.0.6668.101\ELEVATION_SERVICE.EXE" [Auto Services] :HKLM GoogleUpdaterInternalService131.0.6776.0 ### Service: Service interne de mise à jour Google (GoogleUpdaterInternalService131.0.6776.0) Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\GOOGLE\GOOGLEUPDATER\131.0.6776.0\UPDATER.EXE * Ce service maintient à jour votre logiciel Google, ce qui n'est pas le cas s'il est désactivé ou interrompu. Toute faille de sécurité susceptible d'apparaître ne pourra alors pas être corrigée, et il est possible que certaines options ne fonctionneront pas. Ce service se désinstalle automatiquement quand aucun logiciel Google ne l'utilise. Google Updater Google LLC Google Updater 131.0.6776.0 ->GOOGLE UPDATER (X86) !$*"C:\PROGRAM FILES (X86)\GOOGLE\GOOGLEUPDATER\131.0.6776.0\UPDATER.EXE" --SYSTEM --WINDOWS-SERVICE --SERVICE=UPDATE-INTERNAL [Auto Services] :HKLM GoogleUpdaterService131.0.6776.0 ### Service: Service de mise à jour Google (GoogleUpdaterService131.0.6776.0) Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\GOOGLE\GOOGLEUPDATER\131.0.6776.0\UPDATER.EXE * Ce service maintient à jour votre logiciel Google, ce qui n'est pas le cas s'il est désactivé ou interrompu. Toute faille de sécurité susceptible d'apparaître ne pourra alors pas être corrigée, et il est possible que certaines options ne fonctionneront pas. Ce service se désinstalle automatiquement quand aucun logiciel Google ne l'utilise. Google Updater Google LLC Google Updater 131.0.6776.0 ->GOOGLE UPDATER (X86) !$*"C:\PROGRAM FILES (X86)\GOOGLE\GOOGLEUPDATER\131.0.6776.0\UPDATER.EXE" --SYSTEM --WINDOWS-SERVICE --SERVICE=UPDATE [Auto Services] :HKLM GraphicsPerfSvc ### Service: GraphicsPerfSvc Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Graphics performance monitor service Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K GRAPHICSPERFSVCGROUP [Auto Services] :HKLM GUBootService ### Service: GUBootService Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\GLARYSOFT\STARTUPMANAGER\1.0\GUBOOTSERVICE.EXE * Glarysoft Startup Manager Servers Glary Startup Manager Boot Service Glarysoft Ltd 6.0.0.1 !$*"C:\PROGRAM FILES (X86)\COMMON FILES\GLARYSOFT\STARTUPMANAGER\1.0\GUBOOTSERVICE.EXE" [Auto Services] :HKLM GUMemfilesService ### Service: GUMemfilesService Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\GLARY UTILITIES\X64\MEMFILESSERVICE.EXE * MemfilesService Glarysoft Ltd Glary Utilities 6.0.0.1 !$*"C:\PROGRAM FILES (X86)\GLARY UTILITIES\X64\MEMFILESSERVICE.EXE" -SVC [Auto Services] :HKLM gupdate ### Service: Service Google Update (gupdate) Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE * Permet de maintenir votre logiciel Google à jour. Si ce service est désactivé ou interrompu, votre logiciel Google ne sera plus mis à jour. Toute faille de sécurité susceptible d'apparaître ne pourrait alors pas être réparée et certaines fonctionnalités pourraient être endommagées. Ce service se désinstalle automatiquement lorsque aucun logiciel Google ne l'utilise. Google Updater Google LLC Google Updater 131.0.6776.0 ->GOOGLE UPDATER (X86) =>UPDATER.EXE !$*"C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE" /SVC [Auto Services] :HKLM gupdatem ### Service: Service Google Update (gupdatem) Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE * Permet de maintenir votre logiciel Google à jour. Si ce service est désactivé ou interrompu, votre logiciel Google ne sera plus mis à jour. Toute faille de sécurité susceptible d'apparaître ne pourrait alors pas être réparée et certaines fonctionnalités pourraient être endommagées. Ce service se désinstalle automatiquement lorsque aucun logiciel Google ne l'utilise. Google Updater Google LLC Google Updater 131.0.6776.0 ->GOOGLE UPDATER (X86) =>UPDATER.EXE !$*"C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE" /MEDSVC [Auto Services] :HKLM GUPMService ### Service: GUPMService Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\GLARY UTILITIES\GUPMSERVICE.EXE * Glarysoft Startup Manager Servers Glary Utilities Process Manager Service Glarysoft Ltd Glary Utilities 1, 0, 0, 1 !$*"C:\PROGRAM FILES (X86)\GLARY UTILITIES\GUPMSERVICE.EXE" [Auto Services] :HKLM hidserv ### Service: Service du périphérique d’interface utilisateur Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Active et maintient l’utilisation des boutons actifs sur le clavier, les contrôles à distance et d’autres périphériques multimédias. Nous vous recommandons de veiller à ce que ce service soit constamment en cours d’exécution. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM hvcrash ### Driver: Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\DRIVERS\HVCRASH.SYS * Hyper-V Crashdump Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\SYSTEM32\DRIVERS\HVCRASH.SYS [Auto Services] :HKLM HvHost ### Service: Service d'hôte HV Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Propose une interface pour l’hyperviseur Hyper-V afin de fournir des compteurs de performance par partition au système d’exploitation hôte. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM icssvc ### Service: Service Point d'accès sans fil mobile Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet de partager une connexion de données cellulaires avec un autre appareil. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM IKEEXT ### Service: Modules de génération de clés IKE et AuthIP Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service IKEEXT héberge les modules de génération de clés IKE (Internet Key Exchange) et AuthIP (Authenticated Internet Protocol). Ces modules de génération de clés sont utilisés pour l’authentification et l’échange de clés dans la sécurité IP (IPsec). L’arrêt ou la désactivation du service IKEEXT entraînera la désactivation de l’échange de clés IKE et AuthIP avec des ordinateurs homologues. IPsec est généralement configuré pour utiliser IKE ou AuthIP ; par conséquent, l’arrêt ou la désactivation du service IKEEXT risque de conduire à la défaillance d’IPsec et de compromettre la sécurité du système. Il est fortement recommandé d’activer l’exécution du service IKEEXT. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM InstallService ### Service: Installation du service Microsoft Store Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Offre une prise en charge de l'infrastructure pour le Microsoft Store. Ce service est lancé à la demande, et les installations ne fonctionneront pas correctement, s'il est désactivé. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM InventorySvc ### Service: Service d’Appraisal inventaire et compatibilité Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service effectue l’inventaire système d’arrière-plan, la vérification de la compatibilité et la maintenance utilisées par de nombreux composants système. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K INVSVCGROUP -P [Auto Services] :HKLM iphlpsvc ### Service: Assistance IP Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit une connectivité de tunnel à l’aide des technologies de transition IPv6 (6to4, ISATAP, Proxy de port et Teredo) et IP-HTTPS. Si ce service est arrêté, l’ordinateur ne disposera pas des avantages de la connectivité améliorée offerts par ces technologies. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM IpxlatCfgSvc ### Service: Service de configuration de conversion IP Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Configure et permet la conversion de v4 en v6 et vice versa Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM KeyIso ### Service: Isolation de clé CNG Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\LSASS.EXE * Le service d’isolation de clé CNG est hébergé dans le processus LSA. Le service fournit une isolation de processus de clé aux clés privés et aux opérations de chiffrement associées, conformément aux critères communs. Le service stocke et utilise des clés à long terme dans le cadre d’un processus sécurisé répondant aux exigences des critères communs. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SYSTEMROOT%\SYSTEM32\LSASS.EXE [Auto Services] :HKLM KtmRm ### Service: Service KtmRm pour Distributed Transaction Coordinator Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Coordonne les transactions entre Distributed Transaction Coordinator (MSDTC) et le gestionnaire de transactions du noyau (KTN). S’il n’est pas requis, il est recommandé que ce service reste arrêté. S’est requis, MSDTC et KTM démarrent ce service automatiquement. Si ce service est désactivé, toute transaction MSDTC interagissant avec un gestionnaire de transactions du noyau échoue et tout service qui en dépend de façon explicite ne parvient pas à démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICEANDNOIMPERSONATION -P [Auto Services] :HKLM LanmanServer ### Service: Serveur Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Prend en charge le partage de fichiers, d’impression et des canaux nommés via le réseau pour cet ordinateur. Si ce service est arrêté, ces fonctions ne seront pas disponibles. Si ce service est désactivé, les services qui en dépendent ne pourront pas démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM LanmanWorkstation ### Service: Station de travail Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Crée et maintient des connexions de réseau client à des serveurs distants à l’aide du protocole SMB. Si ce service est arrêté, ces connexions ne seront pas disponibles. Si ce service est désactivé, les services qui en dépendent explicitement ne pourront pas démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P [Auto Services] :HKLM LBTServ ### Service: Logitech Bluetooth Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES\COMMON FILES\LOGISHRD\BLUETOOTH\LBTSERV.EXE * Logitech Bluetooth Service Logitech, Inc. Logitech SetPoint 6.00.48 !$*"C:\PROGRAM FILES\COMMON FILES\LOGISHRD\BLUETOOTH\LBTSERV.EXE" [Auto Services] :HKLM lfsvc ### Service: Service de géolocalisation Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service surveille l'emplacement actuel du système et gère les limites géographiques (un emplacement géographique accompagné d'événements associés). Si vous désactivez ce service, les applications ne pourront pas utiliser ni recevoir de notification pour la géolocalisation ou des limites géographiques. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM LicenseManager ### Service: Serveur Gestionnaire de licences Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Offre une prise en charge de l'infrastructure pour le Microsoft Store. Ce service est lancé à la demande, et le contenu acquis via le Microsoft Store ne fonctionnera pas correctement, s'il est désactivé. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM lltdsvc ### Service: Mappage de découverte de topologie de la couche de liaison Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Crée un mappage réseau, consistant en informations sur la topologie des ordinateurs et des périphériques (connectivité) et en métadonnées décrivant chaque ordinateur et chaque périphérique. Si ce service est désactivé, le mappage réseau ne fonctionne pas correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM lmhosts ### Service: Assistance NetBIOS sur TCP/IP Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Prend en charge le service NetBIOS sur TCP/IP (NetBT) et la résolution de noms NetBIOS pour les clients présents sur le réseau, ce qui permet aux utilisateurs de partager des fichiers, d’imprimer et d’ouvrir des sessions sur le réseau. Si ce service est arrêté, ces fonctions risquent de ne pas être disponibles. Si ce service est désactivé, les services qui en dépendent explicitement ne pourront pas démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM LocalKdc ### Service: Centre local de distribution de clés Kerberos Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\LSASS.EXE * Ce service permet aux utilisateurs de se connecter à l’ordinateur local à l’aide du protocole d’authentification Kerberos. Si ce service est arrêté, les utilisateurs ne pourront pas se connecter à l’ordinateur local. Si ce service est désactivé, les services qui en dépendent explicitement ne pourront pas démarrer. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SYSTEMROOT%\SYSTEM32\LSASS.EXE [Auto Services] :HKLM LSM ### Service: Gestionnaire de session locale Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service Windows de base gérant les sessions locales utilisateur. L’arrêt ou la désactivation de ce service risque d’entraîner l’instabilité du système. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P [Auto Services] :HKLM luminati_net_updater_win_formatfactory_pcfreetime_com ### Service: Brightdata Service (win_formatfactory.pcfreetime.com) Status: Start Type: loaded automatically by Server Manager Actual File: C:/PROGRAM FILES (X86)/FORMATFACTORY/NET_UPDATER64.EXE * Brightdata Service BrightData service allows free use of certain features in an app you installed BrightData Ltd. Bright SDK 1.429.308 ->NET_UPDATER.EXE !$*"C:/PROGRAM FILES (X86)/FORMATFACTORY/NET_UPDATER64.EXE" --UPDATER WIN_FORMATFACTORY.PCFREETIME.COM [Auto Services] :HKLM LxpSvc ### Service: Service d'expérience linguistique Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit une prise en charge de l'infrastructure permettant de déployer et de configurer des ressources Windows localisées. Ce service est démarré à la demande et, s'il est désactivé, des langues Windows supplémentaires ne sont pas déployées sur le système et Windows risque de ne pas fonctionner correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS [Auto Services] :HKLM MapsBroker ### Service: Gestionnaire des cartes téléchargées Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service Windows pour l’accès des applications aux cartes téléchargées. Ce service est démarré à la demande par l’application, qui accède aux cartes téléchargées. La désactivation de ce service empêche les applications d’accéder aux cartes. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P [Auto Services] :HKLM McpManagementService ### Service: McpManagementService Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service de gestion Impression universelle Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K MCPMANAGEMENTSERVICEGROUP [Auto Services] :HKLM MDCoreSvc ### Service: Microsoft Defender Service de base Status: Start Type: loaded manually on demand Actual File: C:\ProgramData\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.24080.9-0\MPDEFENDERCORESERVICE.EXE * Surveille la disponibilité, l’intégrité et les performances de divers composants de sécurité Antimalware Core Service Microsoft Corporation Microsoft® Windows® Operating System 4.18.24080.9 !$*"%PROGRAMDATA%\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.24080.9-0\MPDEFENDERCORESERVICE.EXE" [Auto Services] :HKLM MessagingService ### Service: MessagingService Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service prenant en charge les envois de SMS et les fonctionnalités associées. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM MessagingService_fea20 ### Service: MessagingService_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service prenant en charge les envois de SMS et les fonctionnalités associées. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM MicrosoftEdgeElevationService ### Service: Microsoft Edge Elevation Service (MicrosoftEdgeElevationService) Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\129.0.2792.89\ELEVATION_SERVICE.EXE * Tient Microsoft Edge à jour. Si ce service est désactivé, l’application ne sera pas tenue à jour. Microsoft Edge Microsoft Corporation Microsoft Edge 129.0.2792.89 ->ELEVATION_SERVICE_EXE !$*"C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\129.0.2792.89\ELEVATION_SERVICE.EXE" [Auto Services] :HKLM mmsminisrv ### Service: Acronis Managed Machine Service Mini Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\INFRASTRUCTURE\MMS_MINI.EXE * Enables data of true image on the machine. Managed Machine Service Mini Acronis International GmbH Acronis Tools 12,0,1,3036 !$*"C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\INFRASTRUCTURE\MMS_MINI.EXE" [Auto Services] :HKLM mobile_backup_server ### Service: Acronis Mobile Backup Server Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\MOBILEBACKUPSERVER\MOBILE_BACKUP_SERVER.EXE * Effectue une sauvegarde des appareils mobiles localement sur un ordinateur. domain_http_server Acronis International GmbH Acronis Tools 1,0,1,1819 ->DOMAIN_HTTP_SERVER =>DOMAIN_HTTP_SERVER.EXE !$*"C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\MOBILEBACKUPSERVER\MOBILE_BACKUP_SERVER.EXE" "--CONFIG-PATH=C:\PROGRAMDATA\ACRONIS\MOBILEBACKUPSERVER\CONF\WRM.CONF" [Auto Services] :HKLM mobile_backup_status_server ### Service: Acronis Mobile Backup Status Server Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\ACRONIS\TRUEIMAGEHOME\MOBILE_BACKUP_STATUS_SERVER.EXE * Collecte des statistiques et affiche les statuts des sauvegardes d'appareils mobiles stockés sur un ordinateur local. !$*"C:\PROGRAM FILES (X86)\ACRONIS\TRUEIMAGEHOME\MOBILE_BACKUP_STATUS_SERVER.EXE" [Auto Services] :HKLM MozillaMaintenance ### Service: Mozilla Maintenance Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE SERVICE\MAINTENANCESERVICE.EXE * Le service de maintenance de Mozilla s’assure que vous avez la dernière version la plus sûre de Mozilla Firefox sur votre ordinateur. Garder Firefox à jour est très important pour votre sécurité en ligne et Mozilla vous recommande vivement de laisser ce service activé. Mozilla Foundation Firefox 131.0.2 !$*"C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE SERVICE\MAINTENANCESERVICE.EXE" [Auto Services] :HKLM MPService ### Service: CoolerMaster MasterPlus Technology Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\COOLERMASTER\MASTERPLUS\MPSERVICE.EXE * CoolerMaster Service !$*"C:\PROGRAM FILES (X86)\COOLERMASTER\MASTERPLUS\MPSERVICE.EXE" [Auto Services] :HKLM mpssvc ### Service: Pare-feu Windows Defender Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le Pare-feu Windows Defender vous aide à protéger votre ordinateur en empêchant les utilisateurs non autorisés d'accéder à votre ordinateur via Internet ou un réseau. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENONETWORKFIREWALL -P [Auto Services] :HKLM MSDTC ### Service: Coordinateur de transactions distribuées Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\MSDTC.EXE * Coordonne les transactions qui comportent plusieurs gestionnaires de ressources, tels que des bases de données, des files d’attente de messages net des systèmes de fichiers. Si ce service est arrêté, ces transactions échoueront. S’il est désactivé, le démarrage de tout service qui en dépend explicitement échouera. Service Microsoft Distributed Transaction Coordinator Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\MSDTC.EXE [Auto Services] :HKLM MSIClock_CC ### Service: MSI Command Center Clock Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\CLOCKGEN\MSICLOCKSERVICE_X64.EXE * MSI Command Center Clock Service MSI MSIClockService.exe 3.0.0.51 ->MSICLOCK_CC =>MSI CLOCK SERVICE !$*"C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\CLOCKGEN\MSICLOCKSERVICE_X64.EXE" [Auto Services] :HKLM MSICOMM_CC ### Service: MSI Command Center Comm Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\MSICOMMSERVICE.EXE * MSI Command Center Comm Service MSI MSICommService.exe 3.0.0.99 ->MSICOMM_CC =>MSI COMM SERVICE !$*"C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\MSICOMMSERVICE.EXE" [Auto Services] :HKLM MSICPU_CC ### Service: MSI Command Center CPU Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\CPU\MSICPUSERVICE_X64.EXE * MSI Command Center CPU Service MSI MSICPUService.exe 3.0.0.49 ->MSICPU_CC =>MSI CPU SERVICE !$*"C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\CPU\MSICPUSERVICE_X64.EXE" [Auto Services] :HKLM MSICTL_CC ### Service: MSI Command Center Control Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\MSICONTROLSERVICE.EXE * MSI Command Center Control Service MSI MSIControlService.exe 3.0.0.82 ->MSICTL_CC =>MSI CONTROL SERVICE !$*"C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\MSICONTROLSERVICE.EXE" [Auto Services] :HKLM MSIDDR_CC ### Service: MSI Command Center DDR Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\DDR\MSIDDRSERVICE.EXE * MSI Command Center DDR Service MSI MSIDDRService.exe 3.0.0.99 ->MSIDDR_CC =>MSI DDR SERVICE !$*"C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\DDR\MSIDDRSERVICE.EXE" [Auto Services] :HKLM MSiSCSI ### Service: Service Initiateur iSCSI de Microsoft Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère les sessions iSCSI (Internet SCSI) à partir de cet ordinateur sur les périphériques cible iSCSI distants. Si ce service est arrêté, l’ordinateur ne pourra plus ouvrir de session sur les cibles iSCSI ni y accéder. S’il est désactivé, tous les services qui dépendent explicitement de lui ne pourront plus démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM msiserver ### Service: Windows Installer Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\MSIEXEC.EXE * Ajoute, modifie et supprime des applications fournies en tant que package Windows Installer (*.msi, *.msp, *.appx). Si ce service est désactivé, les services qui en dépendent explicitement ne démarreront pas. Installateur Windows® Microsoft Corporation Windows Installer - Unicode 5.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\MSIEXEC.EXE /V [Auto Services] :HKLM MSISMB_CC ### Service: MSI Command Center SMBus Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\SMBUS\MSISMBSERVICE.EXE * MSI Command Center SMBus Service MSI MSISMBService.exe 3.0.0.63 ->MSISMB_CC =>MSI SMB SERVICE !$*"C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\SMBUS\MSISMBSERVICE.EXE" [Auto Services] :HKLM MSISuperIO_CC ### Service: MSI Command Center SuperIO Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\SUPERIO\MSISUPERIOSERVICE.EXE * MSI Command Center SuperIO Service MSI MSISuperIOService.exe 3.0.0.99 ->MSISUPERIO_CC =>MSI SUPERIO SERVICE !$*"C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\SUPERIO\MSISUPERIOSERVICE.EXE" [Auto Services] :HKLM MSI_ActiveX_Service ### Service: MSI_ActiveX_Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\MSI OC KIT\ACTIVEX_SERVICE\MSI_ACTIVEX_SERVICE.EXE * MSI_ActiveX_Service Micro-Star INT'L CO., LTD. MSI_ActiveX_Service 1.0.1.35 !$*"C:\PROGRAM FILES (X86)\MSI\MSI OC KIT\ACTIVEX_SERVICE\MSI_ACTIVEX_SERVICE.EXE" [Auto Services] :HKLM MSI_AppManager_Service ### Service: MSI AppManager Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\APP MANAGER\APPMANAGER_SERVICE.EXE * MSI AppManager Service MSI App Manager Service MSI MSI App Manager Service 1.0.0.6 !$*"C:\PROGRAM FILES (X86)\MSI\APP MANAGER\APPMANAGER_SERVICE.EXE" [Auto Services] :HKLM MSI_Case_Service ### Service: MSI_Case_Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\MSI CENTER\CASE\MSI_CASE_SERVICE.EXE * MSI_Case_Service MSI_Case_Service Micro-Star INT'L CO., LTD. MSI_Case_Service 1.0.0.21 !$*"C:\PROGRAM FILES (X86)\MSI\MSI CENTER\CASE\MSI_CASE_SERVICE.EXE" [Auto Services] :HKLM MSI_Center_Service ### Service: MSI Center Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\MSI CENTER\MSI_CENTRAL_SERVICE.EXE * MSI Center Service MSI Center Service Micro-Star Int'l Co., Ltd. MSI Center Service 3.2024.0711.01 ->MSI CENTRAL SERVICE.EXE !$*"C:\PROGRAM FILES (X86)\MSI\MSI CENTER\MSI_CENTRAL_SERVICE.EXE" [Auto Services] :HKLM MSI_FastBoot ### Service: MSI Fast Boot Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\FAST BOOT\FASTBOOTSERVICE.EXE * MSI Fast Boot Service FastBootService MSI FastBoot Service 1.0.0.7 !$*"C:\PROGRAM FILES (X86)\MSI\FAST BOOT\FASTBOOTSERVICE.EXE" [Auto Services] :HKLM MSI_LiveUpdate_Service ### Service: MSI Live Update Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\LIVE UPDATE\MSI_LIVEUPDATE_SERVICE.EXE * MSI Live Update Service MSI Live Update Service Micro-Star INT'L CO., LTD. MSI Live Update Service 1.0.0.74 !$*"C:\PROGRAM FILES (X86)\MSI\LIVE UPDATE\MSI_LIVEUPDATE_SERVICE.EXE" [Auto Services] :HKLM MSI_SuperCharger ### Service: MSI Super Charger Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\SUPER CHARGER\CHARGESERVICE.EXE * MSI Super Charger Service Super Charger Service MSI Super Charger Service 1.3.0.29 !$*"C:\PROGRAM FILES (X86)\MSI\SUPER CHARGER\CHARGESERVICE.EXE" [Auto Services] :HKLM MysticLight2_Service ### Service: MysticLight2_Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\MSI\MYSTICLIGHT\MYSTICLIGHT2_SERVICE.EXE * MysticLight2_Service MysticLight2_Service Micro-Star Int'l Co., Ltd. MysticLight2_Service 3.0.0.40 !$*"C:\PROGRAM FILES (X86)\MSI\MYSTICLIGHT\MYSTICLIGHT2_SERVICE.EXE" [Auto Services] :HKLM NahimicService ### Service: @oem58.inf,%SERVICE_FRIENDLY_NAME%;Nahimic service Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\System32\NAHIMICSERVICE.EXE * @oem58.inf,%SERVICE_DESCRIPTION%;Nahimic service Nahimic NahimicService 2.8.2.0 =>NAHIMIC SERVICE !$*%SYSTEMROOT%\SYSTEM32\NAHIMICSERVICE.EXE [Auto Services] :HKLM NaturalAuthentication ### Service: Authentification naturelle Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service d’agrégation de signaux qui évalue les signaux en fonction de l’heure, de la géolocalisation du réseau, des facteurs bluetooth et cdf. Les fonctionnalités prises en charge sont les stratégies Déverrouillage d’appareil, Verrouillage dynamique et Dynamo MDM. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM NcaSvc ### Service: Assistant Connectivité réseau Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit la notification du statut DirectAccess aux composants de l’interface utilisateur Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM NcbService ### Service: Service Broker pour les connexions réseau Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Connexions du service Broker qui permettent aux applications empaquetées du Microsoft Store de recevoir des notifications d’Internet. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM NcdAutoSetup ### Service: Configuration automatique des périphériques connectés au réseau Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service Configuration automatique des périphériques connectés au réseau supervise et installe les périphériques qualifiés qui se connectent à un réseau qualifié. L’arrêt ou la désactivation de ce service empêchent Windows de découvrir et installer automatiquement des périphériques connectés au réseau qualifié. Les utilisateurs peuvent quand même ajouter manuellement des périphériques connectés au réseau à un ordinateur via l’interface utilisateur. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENONETWORK -P [Auto Services] :HKLM Nero BackItUp Scheduler 4.0 ### Service: Nero BackItUp Scheduler 4.0 Status: Start Type: disabled Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\NERO\NERO BACKITUP 4\NBSERVICE.EXE * Nero BackItUp Scheduler 4.0 is responsible to control all jobs created using Nero BackItUp. These jobs can create backups of selected files/folders/partitions or complete hard disk to hard disk, network drive, disc or FTP. Nero BackItUp Nero AG Nero BackItUp 4.0.1.102 ->NERO BACKITUP !$*C:\PROGRAM FILES (X86)\COMMON FILES\NERO\NERO BACKITUP 4\NBSERVICE.EXE [Auto Services] :HKLM Netlogon ### Service: NetLogon Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\LSASS.EXE * Maintient un canal sécurisé entre cet ordinateur et le contrôleur de domaine pour authentifier les utilisateurs et les services. Si ce service est arrêté, l’ordinateur peut ne pas authentifier les utilisateurs et les services et le contrôleur de domaine ne peut pas inscrire les enregistrements DNS. Si ce service est désactivé, tout service qui en dépend explicitement ne pourra pas démarrer. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SYSTEMROOT%\SYSTEM32\LSASS.EXE [Auto Services] :HKLM Netman ### Service: Connexions réseau Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Prend en charge les objets dans le dossier Connexions réseau et accès à distance, dans lequel vous pouvez afficher à la fois les connexions du réseau local et les connexions à distance. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM netprofm ### Service: Service Liste des réseaux Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Identifie les réseaux auxquels l’ordinateur s’est connecté, collecte et stocke les propriétés de ces réseaux, et signale aux applications toute modification des propriétés. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETPROFM -P [Auto Services] :HKLM NetSetupSvc ### Service: Service Configuration du réseau Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service Configuration du réseau gère l'installation des pilotes réseau et autorise la configuration de paramètres réseau de bas niveau. Si ce service est interrompu, il se peut que les installations de pilote en cours soient annulées. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM NetTcpPortSharing ### Service: Service de partage de ports Net.Tcp Status: Start Type: disabled Actual File: C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SMSVCHOST.EXE * Fournit la possibilité de partager des ports TCP sur le protocole net.tcp. SMSvcHost.exe Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*%SYSTEMROOT%\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SMSVCHOST.EXE [Auto Services] :HKLM NgcCtnrSvc ### Service: Conteneur Microsoft Passport Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère les clés d'identité d'utilisateur local servant à authentifier l'utilisateur auprès des fournisseurs d'identité, ainsi que les cartes à puce virtuelles du module de plateforme sécurisée (TPM). Si ce service est désactivé, les clés d'identité d'utilisateur local et les cartes à puce virtuelles TPM ne seront pas accessibles. Nous vous recommandons de ne pas reconfigurer ce service. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM NgcSvc ### Service: Microsoft Passport Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Assure l'isolation des processus pour les clés de chiffrement servant à l'authentification auprès des fournisseurs d'identité associés à un utilisateur. Si ce service est désactivé, les fonctions d'utilisation et de gestion de ces clés, telles que l'ouverture de session et l'authentification unique pour les applications et les sites web, ne seront pas disponibles. Ce service démarre et s'arrête automatiquement. Il est recommandé de ne pas le reconfigurer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM NlaSvc ### Service: Connaissance des emplacements réseau Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Collecte et stocke les informations de configuration du réseau, puis notifie les programmes en cas de modification de ces informations. Si ce service est arrêté, les informations de configuration risquent de ne pas être disponibles. Si ce service est désactivé, les services qui en dépendent explicitement ne pourront pas démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETPROFM -P [Auto Services] :HKLM NPSMSvc ### Service: Lecture en cours du service du Responsable de la session Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service héberge le Responsable de la session de lecture en cours utilisé pour les scénarios multimédias Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM NPSMSvc_fea20 ### Service: Lecture en cours du service du Responsable de la session_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service héberge le Responsable de la session de lecture en cours utilisé pour les scénarios multimédias Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM nsi ### Service: Service Interface du magasin réseau Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service fournit des notifications réseau (ajout/suppression d’interface, etc.) aux clients en mode utilisateur. L’arrêt de ce service entraîne la perte de la connectivité réseau. Si ce service est désactivé, les autres services qui en dépendent explicitement ne pourront pas démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM NvContainerLocalSystem ### Service: NVIDIA LocalSystem Container Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE * Container service for NVIDIA root features NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 33454032 !$*"C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE" -S NVCONTAINERLOCALSYSTEM -A -F "C:\PROGRAMDATA\NVIDIA\NVCONTAINERLOCALSYSTEM.LOG" -L 3 -D "C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\PLUGINS\LOCALSYSTEM" -R -P 30000 -ST "C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINERTELEMETRYAPI.DLL" -ERT [Auto Services] :HKLM NVDisplay.ContainerLocalSystem ### Service: NVIDIA Display Container LS Status: Start Type: loaded automatically by Server Manager Actual File: .exe * Container service for NVIDIA root features NVIDIA Display Container LS!$*C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NV_DISPSI.INF_AMD64_681B5907A11E1C87\DISPLAY.NVCONTAINER\NVDISPLAY.CONTAINER.EXE -S NVDISPLAY.CONTAINERLOCALSYSTEM -F %PROGRAMDATA%\NVIDIA\NVDISPLAY.CONTAINERLOCALSYSTEM.LOG -L 3 -D C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NV_DISPSI.INF_AMD64_681B5907A11E1C87\DISPLAY.NVCONTAINER\PLUGINS\LOCALSYSTEM -R -P 30000 -CFG NVDISPLAY.CONTAINERLOCALSYSTEM\LOCALSYSTEM /ERT [Auto Services] :HKLM OneDrive Updater Service ### Service: OneDrive Updater Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\ONEDRIVEUPDATERSERVICE.EXE * Keeps your OneDrive up to date. Updater Service Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 !$*"C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\ONEDRIVEUPDATERSERVICE.EXE" [Auto Services] :HKLM OneSyncSvc ### Service: Hôte de synchronisation Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service synchronise la messagerie, les contacts, le calendrier et diverses autres données utilisateur. La messagerie et d'autres applications dépendantes de cette fonctionnalité ne fonctionnent pas correctement lorsque ce service n'est pas exécuté. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM OneSyncSvc_fea20 ### Service: Hôte de synchronisation_fea20 Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service synchronise la messagerie, les contacts, le calendrier et diverses autres données utilisateur. La messagerie et d'autres applications dépendantes de cette fonctionnalité ne fonctionnent pas correctement lorsque ce service n'est pas exécuté. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM OptionsPlusUpdaterService ### Service: Logi Options+ Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES\LOGIOPTIONSPLUS\LOGIOPTIONSPLUS_UPDATER.EXE * Logi Options+ Updater Logitech, Inc. Logi Options+ Updater 1.60.496306 ->LOGI OPTIONS+ !$*"C:\PROGRAM FILES\LOGIOPTIONSPLUS\LOGIOPTIONSPLUS_UPDATER.EXE" --RUN-AS-SERVICE [Auto Services] :HKLM P9RdrService ### Service: P9RdrService Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Active le déclencheur en démarrant les serveurs de fichiers plan9. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K P9RDRSERVICE -P [Auto Services] :HKLM P9RdrService_fea20 ### Service: P9RdrService_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Active le déclencheur en démarrant les serveurs de fichiers plan9. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K P9RDRSERVICE -P [Auto Services] :HKLM PcaSvc ### Service: Service de l’Assistant Compatibilité des programmes Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service fournit une prise en charge de l’Assistant Compatibilité des programmes. Cet Assistant surveille les programmes installés et exécutés par l’utilisateur et détecte les problèmes de compatibilité connus. Si ce service est arrêté, cet Assistant ne fonctionnera pas correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM PenService ### Service: PenService Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service de gestion du stylet Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K PENSERVICE [Auto Services] :HKLM PenService_fea20 ### Service: PenService_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service de gestion du stylet Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K PENSERVICE [Auto Services] :HKLM perceptionsimulation ### Service: Service de simulation de perception Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\PERCEPTIONSIMULATION\PERCEPTIONSIMULATIONSERVICE.EXE * Permet la simulation de perception spatiale, la gestion de la caméra virtuelle et la simulation d'entrée spatiale. Service de simulation de perception Windows Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\PERCEPTIONSIMULATION\PERCEPTIONSIMULATIONSERVICE.EXE [Auto Services] :HKLM PerfHost ### Service: Hôte de DLL de compteur de performance Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSWOW64\PERFHOST.EXE * Permet aux utilisateurs à distances et aux processus 64 bits d’interroger les compteurs de performances fournis par des DLL 32 bits. Si ce service est arrêté, seuls les utilisateurs locaux et les processus 32 bits peuvent interroger les compteurs fournis par des DLL 32 bits. Hôte de DLL de compteur de performance Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*%SYSTEMROOT%\SYSWOW64\PERFHOST.EXE [Auto Services] :HKLM PhoneSvc ### Service: Service téléphonique Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère l'état de téléphonie de l'appareil Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM PimIndexMaintenanceSvc ### Service: Données de contacts Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Indexe les données de contacts pour une recherche des contacts plus rapide. Si vous arrêtez ou désactivez ce service, des contacts risquent de manquer dans vos résultats de recherche. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM PimIndexMaintenanceSvc_fea20 ### Service: Données de contacts_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Indexe les données de contacts pour une recherche des contacts plus rapide. Si vous arrêtez ou désactivez ce service, des contacts risquent de manquer dans vos résultats de recherche. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM pla ### Service: Journaux & alertes de performance Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service des journaux et des alertes de performance collecte des données de performance sur des ordinateurs locaux ou distants, en se basant sur des paramètres de planification préconfigurés, puis écrit ces données dans un journal ou déclenche une alerte. Si ce service est arrêté, les informations de performance ne seront plus collectées. Si ce service est désactivé, tous les services qui en dépendent explicitement ne pourront plus démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENONETWORK -P [Auto Services] :HKLM PlugPlay ### Service: Plug-and-Play Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet à l’ordinateur de reconnaître et d’adapter les modifications matérielles avec peu ou pas du tout d’intervention de l’utilisateur. Arrêter ou désactiver ce service provoque une instabilité du système. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P [Auto Services] :HKLM PolicyAgent ### Service: Agent de stratégie IPsec Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * La sécurité du protocole Internet (IPSec) prend en charge l’authentification de l’homologue réseau, l’authentification de l’origine des données, l’intégrité des données, la confidentialité des données (chiffrement) et la protection de la relecture. Ce service met en œuvre des stratégies IPSec créées via le composant logiciel enfichable Stratégies de sécurité IP ou l’outil de ligne de commande « netsh ipsec ». Si vous arrêtez ce service, vous pourrez rencontrer des problèmes de connectivité réseau si votre stratégie nécessite des connexions IPSec. En outre, la gestion à distance du Pare-feu Windows Defender n’est pas disponible lorsque ce service est arrêté. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM Power ### Service: Alimentation Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère la stratégie d’alimentation et la remise de notification de stratégie d’alimentation. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P [Auto Services] :HKLM PrintDeviceConfigurationService ### Service: Service de configuration du périphérique d’impression Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service de configuration du périphérique d’impression gère l’installation des imprimantes IPP et UP. Si ce service est arrêté, toutes les installations d’imprimantes en cours peuvent être annulées. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM PrintNotify ### Service: Extensions et notifications d’imprimante Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service ouvre les boîtes de dialogue d’impression personnalisée et gère les notifications d’une imprimante ou d’un serveur d’impression distant. Si vous désactivez ce service, vous ne pourrez plus voir les extensions ou notifications relatives aux imprimantes. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K PRINT [Auto Services] :HKLM PrintScanBrokerService ### Service: @%SystemRoot%\system32\PrintScanBrokerervice.dll,-100 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Assure la prise en charge des opérations privilégiées sécurisées requises par le spouleur faiblement privilégié. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM PrintWorkflowUserSvc ### Service: PrintWorkflow Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Assure la prise en charge des applications Flux de travail d’impression. Si vous désactivez ce service, vous risquez de ne pas pouvoir imprimer correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K PRINTWORKFLOW [Auto Services] :HKLM PrintWorkflowUserSvc_fea20 ### Service: PrintWorkflow_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Assure la prise en charge des applications Flux de travail d’impression. Si vous désactivez ce service, vous risquez de ne pas pouvoir imprimer correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K PRINTWORKFLOW [Auto Services] :HKLM ProfSvc ### Service: Service de profil utilisateur Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service est responsable du chargement et du déchargement des profils utilisateur. Si ce service est arrêté ou désactivé, les utilisateurs ne pourront plus se connecter ou se déconnecter, les applications pourront avoir des problèmes pour obtenir les données des utilisateurs, et les composants inscrits pour recevoir les notifications d’événements de profils ne les recevront pas. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K USERPROFILESERVICE -P [Auto Services] :HKLM PushToInstall ### Service: Service PushToInstall de Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Offre une prise en charge de l'infrastructure pour le Microsoft Store. Ce service est démarré automatiquement, et les installations distantes ne fonctionneront pas correctement, s'il est désactivé. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM QWAVE ### Service: Expérience audio-vidéo haute qualité Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * qWave (Quality Windows Audio Video Experience) est une plateforme réseau destinée aux applications de flux AV (Audio Video) sur des réseaux domestiques IP. qWave améliore les performances et la fiabilité des flux AV en assurant la qualité de service (QoS) sur le réseau des applications AV. Cette plateforme fournit des mécanismes concernant le contrôle d’admission, l’analyse et la mise en œuvre des principes de protection des informations personnelles à l’exécution, la rétroaction des applications et la définition des priorités du trafic. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%WINDIR%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION -P [Auto Services] :HKLM RasAuto ### Service: Gestionnaire des connexions automatiques d’accès à distance Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Crée une connexion vers un réseau distant à chaque fois qu’un programme référence un nom ou une adresse DNS ou NetBIOS distant. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM RasMan ### Service: Gestionnaire des connexions d’accès à distance Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère les connexions d’accès à distance et les connexions de réseau privé virtuel (VPN) entre cet ordinateur et Internet ou d’autres réseaux distants. Si ce service est désactivé, les services qui en dépendent explicitement ne pourront pas démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS [Auto Services] :HKLM refsdedupsvc ### Service: Service de déduplication ReFS Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\REFSDEDUPSVC.EXE * Service de déduplication et de compression des données ReFS pour suivre les modifications apportées aux fichiers et exécuter des tâches d’optimisation planifiées ExE du service de déduplication Windows ReFS Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 ->WINDOWS REFS DEDUP SERVICE EXE !$*%SYSTEMROOT%\SYSTEM32\REFSDEDUPSVC.EXE [Auto Services] :HKLM RemoteAccess ### Service: Routage et accès distant Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Offre aux entreprises des services de routage dans les environnements de réseau local ou étendu. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS [Auto Services] :HKLM RemoteRegistry ### Service: Registre à distance Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet aux utilisateurs à distance de modifier les paramètres du Registre sur cet ordinateur. Si ce service est arrêté, le Registre ne pourra être modifié que par les utilisateurs de cet ordinateur. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM RetailDemo ### Service: Service de démo du magasin Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service de démo du magasin contrôle l'activité du périphérique pendant que celui-ci est en mode démo. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K RDXGROUP [Auto Services] :HKLM RmSvc ### Service: Service de gestion radio Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service de gestion radio et de mode Avion Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED [Auto Services] :HKLM RpcEptMapper ### Service: Mappeur de point de terminaison RPC Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Résout les identificateurs des interfaces RPC en points de terminaison de transport. Si ce service est arrêté ou désactivé, les programmes utilisant des services d’appel de procédure distante (RPC) ne fonctionneront pas correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K RPCSS -P [Auto Services] :HKLM RpcLocator ### Service: Localisateur d’appels de procédure distante (RPC) Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\LOCATOR.EXE * Dans Windows 2003 et les versions antérieures de Windows, le service Localisateur d’appels de procédure distante (RPC) gère la base de données du service de nom RPC. Dans Windows Vista et les versions ultérieures de Windows, ce service ne fournit aucune fonctionnalité et est présent à des fins de compatibilité applicative. Localisateur d’appels de procédure distante Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\LOCATOR.EXE [Auto Services] :HKLM RtkAudioUniversalService ### Service: Realtek Audio Universal Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\System32\DRIVERSTORE\FILEREPOSITORY\REALTEKSERVICE.INF_AMD64_1803724721D1A34C\RTKAUDUSERVICE64.EXE * Realtek Audio Universal Service Realtek HD Audio Universal Service Realtek Semiconductor Realtek HD Audio Universal Service 1.1.619.1 ->RTKAUDUSERVICE.EXE !$*%SYSTEMROOT%\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\REALTEKSERVICE.INF_AMD64_1803724721D1A34C\RTKAUDUSERVICE64.EXE [Auto Services] :HKLM SCardSvr ### Service: Carte à puce Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère l’accès aux cartes à puce lues par cet ordinateur. Si ce service est arrêté, cet ordinateur ne pourra plus lire de cartes à puces. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION [Auto Services] :HKLM ScDeviceEnum ### Service: Service d’énumération de périphériques de carte à puce Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Crée des nœuds de périphériques logiciels pour tous les lecteurs de cartes à puce accessibles à une session donnée. Si ce service est désactivé, les API WinRT ne peuvent pas énumérer les lecteurs de cartes à puce. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED [Auto Services] :HKLM Schedule ### Service: Planificateur de tâches Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet à un utilisateur de configurer et de planifier des tâches automatisées sur cet ordinateur. Le service héberge également plusieurs tâches critiques du système Windows. Si ce service est arrêté ou désactivé, ces tâches ne seront pas exécutées à l’heure prévue. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM SCPolicySvc ### Service: Stratégie de retrait de la carte à puce Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Autorise le système à être configuré pour verrouiller le Bureau de l’utilisateur au moment du retrait de la carte à puce. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS [Auto Services] :HKLM SDRSVC ### Service: Sauvegarde Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Sauvegarde Windows et fonctionnalités de restauration. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K SDRSVC [Auto Services] :HKLM seclogon ### Service: Ouverture de session secondaire Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet le démarrage des processus sous d’autres informations d’identification. Si ce service est arrêté, ce type d’ouverture de session sera indisponible. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%WINDIR%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM SEMgrSvc ### Service: Gestionnaires des paiements et des éléments sécurisés NFC Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère les paiements et les éléments sécurisés basés sur la communication en champ proche (NFC). Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM SENS ### Service: Service de notification d’événements système Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Analyse les événements système et notifie leur existence aux abonnés du système d’événements COM+. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM SensorDataService ### Service: Service Données de capteur Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\SENSORDATASERVICE.EXE * Fournit les données d'une variété de capteurs Service Données de capteur Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SENSORDATASERVICE.EXE [Auto Services] :HKLM SensorService ### Service: Service de capteur Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service pour les capteurs permettant de gérer différentes fonctionnalités. Gère l'orientation de périphérique simple et l'historique des capteurs. Charge le capteur d'orientation de périphérique simple rapportant les changements d'orientation du périphérique. Si le service est interrompu ou désactivé, le capteur d'orientation de périphérique simple ne sera pas chargé et la rotation automatique n'aura pas lieu. La collecte d'historiques des capteurs sera également interrompue. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM SensrSvc ### Service: Service de surveillance des capteurs Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Surveille plusieurs capteurs pour exposer les données et s’adapter aux divers états utilisateur et du système. Si le service est arrêté ou désactivé, la brillance de l’affichage ne s’adaptera pas aux conditions d’éclairage. L’arrêt de ce service peut également affecter d’autres fonctionnalités du système. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION -P [Auto Services] :HKLM SessionEnv ### Service: Configuration des services Bureau à distance Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service Configuration des services Bureau à distance (RDCS) est responsable de toutes les activités de maintenance de session et de configuration du Bureau à distance et des services Bureau à distance nécessitant un contexte SYSTEM. Il faut y inclure les dossiers temporaires par session, ainsi que les thèmes et certificats des services Bureau à distance. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM SgrmAgent ### Driver: System Guard Runtime Monitor Agent Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\DRIVERS\SGRMAGENT.SYS * System Guard Runtime Monitor Agent Driver System Guard Runtime Monitor Agent Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\SYSTEM32\DRIVERS\SGRMAGENT.SYS [Auto Services] :HKLM SgrmBroker ### Service: Service Broker du moniteur d'exécution System Guard Status: Start Type: disabled Actual File: C:\WINDOWS\System32\SGRM\SGRMBROKER.EXE * Surveille et garantit l'intégrité de la plateforme Windows. Service Broker du moniteur d´exécution System Guard Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SGRM\SGRMBROKER.EXE [Auto Services] :HKLM SharedAccess ### Service: Partage de connexion Internet (ICS) Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Assure la traduction d’adresses de réseau, l’adressage, les services de résolution de noms et/ou les services de prévention d’intrusion pour un réseau de petite entreprise ou un réseau domestique. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM ShellHWDetection ### Service: Détection matériel noyau Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit des notifications à des événements matériel de lecture automatique. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM shpamsvc ### Service: Shared PC Account Manager Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Manages profiles and accounts on a SharedPC configured device Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM smphost ### Service: SMP de l’Espace de stockages Microsoft Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service hôte du fournisseur de gestion de l’Espace de stockages Microsoft. Si ce service est arrêté ou désactivé, l’Espace de stockages ne peut pas être géré. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K SMPHOST [Auto Services] :HKLM SmsRouter ### Service: Service Routeur SMS Microsoft Windows. Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Achemine les messages vers les clients appropriés sur la base de règles. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM SNMPTrap ### Service: Interruption SNMP Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\SNMPTRAP.EXE * Reçoit les messages d’interception générés par les agents SNMP (Simple Network Management Protocol) locaux ou distants et transmet les messages aux programmes de gestion SNMP s’exécutant sur cet ordinateur. Si ce service est arrêté, les programmes à base SNMP sur cet ordinateur ne recevront pas les messages d’interception SNMP. Si ce service est désactivé, tous les services qui en dépendent explicitement ne pourront pas démarrer. Interruption SNMP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SNMPTRAP.EXE [Auto Services] :HKLM Spooler ### Service: Spouleur d’impression Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\System32\SPOOLSV.EXE * Ce service met en spoule les travaux d’impression et gère l’interaction avec l’imprimante. Si vous arrêtez ce service, vous ne pourrez plus imprimer ni voir vos imprimantes. Application sous-système spouleur Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SPOOLSV.EXE [Auto Services] :HKLM sppsvc ### Service: Protection logicielle Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\System32\SPPSVC.EXE * Permet le téléchargement, l’installation et l’application de licences numériques pour Windows et des applications Windows. Si le service est désactivé, le système d’exploitation et les applications sous licence peuvent s’exécuter dans un mode de notification. Et il est instamment recommandé de ne pas désactiver le service de protection logicielle. Service de la plateforme de protection logicielle Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SPPSVC.EXE [Auto Services] :HKLM SSDPSRV ### Service: Découverte SSDP Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Découvre les périphériques et services en réseau qui utilisent le protocole de découverte SSDP, tels que les périphériques UPnP. Annonce également les périphériques et services SSDP exécutés sur l’ordinateur local. Si ce service est arrêté, les périphériques SSDP ne seront pas découverts. S’il est désactivé, tous les services qui dépendent explicitement de lui ne démarreront pas. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION -P [Auto Services] :HKLM ssh-agent ### Service: OpenSSH Authentication Agent Status: Start Type: disabled Actual File: C:\WINDOWS\System32\OPENSSH\SSH-AGENT.EXE * Agent to hold private keys used for public key authentication. OpenSSH for Windows OpenSSH_9.5p1 for Windows !$*%SYSTEMROOT%\SYSTEM32\OPENSSH\SSH-AGENT.EXE [Auto Services] :HKLM SstpSvc ### Service: Service SSTP (Secure Socket Tunneling Protocol) Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Prend en charge la connexion par le protocole SSTP (Secure Socket Tunneling Protocol) à des ordinateurs distants via un réseau VPN. Si ce service est désactivé, les utilisateurs ne peuvent pas utiliser le protocole SSTP pour accéder à des serveurs distants. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM StateRepository ### Service: Service State Repository (StateRepository) Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit la prise en charge d'infrastructure nécessaire au modèle d'application. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K APPMODEL -P [Auto Services] :HKLM Steam Client Service ### Service: Steam Client Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\STEAM\STEAMSERVICE.EXE * Steam Client Service monitors and updates Steam content Steam Client Service Valve Corporation Steam Client Service 01.00.00.01 ->STEAM CLIENT SERVICE (BUILDBOT_STEAM-RELCLIENT-W32.BUILD.VALVE.ORG_STEAM_REL_CLIENT_WIN32@STEAM-RELCLIENT-W32) !$*"C:\PROGRAM FILES (X86)\COMMON FILES\STEAM\STEAMSERVICE.EXE" /RUNASSERVICE [Auto Services] :HKLM StiSvc ### Service: Acquisition d’image Windows (WIA) Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit des services d’acquisition d’images pour les scanneurs et les appareils photo. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K IMGSVC [Auto Services] :HKLM StorSvc ### Service: Service de stockage Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit des services d'activation pour les paramètres de stockage et l'extension de stockage externe Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM Surfshark Service ### Service: Surfshark Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES\SURFSHARK\SURFSHARK.SERVICE.EXE * This service is essential for the app to function, as it allows to enable VPN connection and makes sure all the necessary configurations are up to date. Surfshark.Service Surfshark.Service Surfshark.Service 5.10.1.999 ->SURFSHARK.SERVICE.DLL !$*"C:\PROGRAM FILES\SURFSHARK\SURFSHARK.SERVICE.EXE" -DISPLAYNAME "SURFSHARK SERVICE" -SERVICENAME "SURFSHARK SERVICE" [Auto Services] :HKLM svsvc ### Service: Vérificateur de points Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Vérifie les endommagements potentiels du système de fichiers. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM swprv ### Service: Fournisseur de cliché instantané de logiciel Microsoft Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère les copies logicielles de clichés instantanés de volumes créés par le service de cliché instantané de volumes. Si ce service est arrêté, les copies logicielles de clichés instantanés ne peuvent pas être gérées. Si le service est désactivé, les services qui en dépendent ne pourront pas démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K SWPRV [Auto Services] :HKLM syncagentsrv ### Service: Acronis Sync Agent Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\SYNCAGENT\SYNCAGENTSRV.EXE * Acronis Sync Agent Service !$*"C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\SYNCAGENT\SYNCAGENTSRV.EXE" [Auto Services] :HKLM SysMain ### Service: SysMain Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère et améliore les performances du système dans le temps. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM SystemEventsBroker ### Service: Service Broker des événements système Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Coordonne l’exécution de travail en arrière-plan pour l’application WinRT. Si ce service est arrêté ou désactivé, le travail en arrière-plan risque de ne pas être déclenché. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P [Auto Services] :HKLM TapiSrv ### Service: Téléphonie Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Prend en charge l’interface TAPI (Telephony API) pour les programmes qui contrôlent les périphériques de téléphonie sur l’ordinateur local et, via le réseau local (LAN), sur les serveurs qui exécutent également le service. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P [Auto Services] :HKLM TermService ### Service: Services Bureau à distance Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Autorise les utilisateurs à se connecter de manière interactive à un ordinateur distant. Le Bureau à distance et le serveur hôte de session Bureau à distance dépendent de ce service. Pour empêcher l’utilisation à distance de cet ordinateur, désactivez les cases à cocher situées sous l’onglet Utilisation à distance des Propriétés système via l’élément Système du Panneau de configuration. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE [Auto Services] :HKLM TextInputManagementService ### Service: Service de gestion des entrées de texte Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Activer l’entrée de texte, les sentiments et émotions, le clavier tactile, l’écriture manuscrite et les éditeurs de méthode d’entrées instantanées. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM Themes ### Service: Thèmes Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit un système de gestion de thème de l’expérience utilisateur. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM Tib Mounter Service ### Service: Tib Mounter Service Status: Start Type: loaded manually on demand Actual File: C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\TIBMOUNTER64\TIB_MOUNTER_SERVICE.EXE * Acronis TIB Mounter Service Acronis International GmbH Acronis TIB Mounter 6.1.0.10023 !$*"C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\TIBMOUNTER64\TIB_MOUNTER_SERVICE.EXE" [Auto Services] :HKLM TieringEngineService ### Service: Gestion des niveaux de stockage Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\TIERINGENGINESERVICE.EXE * Optimise le placement des données dans les niveaux de stockage de tous les espaces de stockage à plusieurs niveaux sur le système. Gestion des niveaux de stockage Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\TIERINGENGINESERVICE.EXE [Auto Services] :HKLM TimeBrokerSvc ### Service: Service Broker pour les événements horaires Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Coordonne l’exécution de travail en arrière-plan pour l’application WinRT. Si ce service est arrêté ou désactivé, le travail en arrière-plan risque de ne pas être déclenché. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM TokenBroker ### Service: Gestionnaire de comptes web Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service est utilisé par le Gestionnaire de comptes web pour fournir une authentification unique aux applications et aux services. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM TroubleshootingSvc ### Service: Service de résolution des problèmes recommandé Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet l'atténuation automatique pour des problèmes connus en appliquant la résolution des problèmes recommandée. S'il est arrêté, votre appareil n'obtiendra pas la résolution des problèmes recommandée pour les problèmes de votre appareil. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM tzautoupdate ### Service: Programme de mise à jour automatique du fuseau horaire Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Définit automatiquement le fuseau horaire système. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM udfs ### Driver: udfs Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS * Reads/Writes UDF 1.02,1.5,2.0x,2.5 disc formats, usually found on C/DVD discs. (Core) (All pieces) UDF File System Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS [Auto Services] :HKLM UdkUserSvc ### Service: Service utilisateur du kit de développement sans station d’accueil Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service de composants d'environnement Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UDKSVCGROUP [Auto Services] :HKLM UdkUserSvc_fea20 ### Service: Service utilisateur du kit de développement sans station d’accueil_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Service de composants d'environnement Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UDKSVCGROUP [Auto Services] :HKLM UmRdpService ### Service: Redirecteur de port du mode utilisateur des services Bureau à distance Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet la redirection des imprimantes/unités/ports pour les connexions RDP Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM UnistoreSvc ### Service: Stockage des données utilisateur Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère le stockage des données utilisateur structurées, notamment les coordonnées, les calendriers, les messages et d’autres éléments de contenu. Si vous arrêtez ou désactivez ce service, les applications qui utilisent ces données risquent de ne pas fonctionner correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM UnistoreSvc_fea20 ### Service: Stockage des données utilisateur_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère le stockage des données utilisateur structurées, notamment les coordonnées, les calendriers, les messages et d’autres éléments de contenu. Si vous arrêtez ou désactivez ce service, les applications qui utilisent ces données risquent de ne pas fonctionner correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM upnphost ### Service: Hôte de périphérique UPnP Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Autorise l’hébergement des périphériques UPnP sur cet ordinateur. Si ce service est arrêté, tous les périphériques UPnP hébergés cesseront de fonctionner et aucun autre périphérique hébergé ne pourra être ajouté. Si ce service est désactivé, tous les services qui dépendent explicitement de lui ne démarreront pas. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION -P [Auto Services] :HKLM UserDataSvc ### Service: Accès aux données utilisateur Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit l’accès des applications aux données utilisateur structurées, notamment aux coordonnées, calendriers, messages et autres éléments de contenu. Si vous arrêtez ou désactivez ce service, les applications qui utilisent ces données risquent de ne pas fonctionner correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM UserDataSvc_fea20 ### Service: Accès aux données utilisateur_fea20 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit l’accès des applications aux données utilisateur structurées, notamment aux coordonnées, calendriers, messages et autres éléments de contenu. Si vous arrêtez ou désactivez ce service, les applications qui utilisent ces données risquent de ne pas fonctionner correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM UserManager ### Service: Gestionnaire des utilisateurs Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le Gestionnaire des utilisateurs fournit les composants d'exécution requis pour une interaction multi-utilisateur. Si ce service est arrêté, certaines applications risquent de ne pas fonctionner correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM UsoSvc ### Service: Service Orchestrator pour les mises à jour Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère les mises à jour Windows. Si cette fonctionnalité est arrêtée, vos appareils ne pourront pas télécharger ni installer les dernières mises à jour. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM VaultSvc ### Service: Gestionnaire d’informations d’identification Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\LSASS.EXE * Offre un service de stockage et de récupération sécurisé des informations d’identification pour les utilisateurs, les applications et les packages de services de sécurité. Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SYSTEMROOT%\SYSTEM32\LSASS.EXE [Auto Services] :HKLM vds ### Service: Disque virtuel Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\VDS.EXE * Fournit des services de gestion des disques, des volumes, des systèmes de fichiers et des groupes de stockage. Service de disque virtuel Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\VDS.EXE [Auto Services] :HKLM vmicguestinterface ### Service: Interface de services d’invité Hyper-V Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit une interface à l’hôte Hyper-V afin qu’il puisse interagir avec des services spécifiques s’exécutant sur l’ordinateur virtuel. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM vmicheartbeat ### Service: Service Pulsation Microsoft Hyper-V Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Surveille l‘état de cet ordinateur virtuel en émettant une pulsation à intervalles réguliers. Ce service vous permet d’identifier les ordinateurs virtuels en cours d’exécution qui ne répondent plus. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K ICSERVICE -P [Auto Services] :HKLM vmickvpexchange ### Service: Service Échange de données Microsoft Hyper-V Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Propose un mécanisme d’échange de données entre l’ordinateur virtuel et le système d’exploitation exécuté sur l’ordinateur physique. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM vmicrdv ### Service: Service de virtualisation Bureau à distance Hyper-V Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit une plateforme pour la communication entre l’ordinateur virtuel et le système d’exploitation exécuté sur l’ordinateur physique. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K ICSERVICE -P [Auto Services] :HKLM vmicshutdown ### Service: Service Arrêt de l’invité Microsoft Hyper-V Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Propose un mécanisme permettant d’arrêter le système d’exploitation de cet ordinateur virtuel à partir des interfaces de gestion de l’ordinateur physique. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM vmictimesync ### Service: Service Synchronisation date/heure Microsoft Hyper-V Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Synchronise l’heure système de cet ordinateur virtuel avec l’heure système de l’ordinateur physique. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM vmicvmsession ### Service: Service Hyper-V PowerShell Direct Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit un mécanisme de gestion des ordinateurs virtuels avec PowerShell via une session d'ordinateur virtuel sans réseau virtuel. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM vmicvss ### Service: Requête du service VSS Hyper-V Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Coordonne les communications nécessaires à l’utilisation du service VSS afin de sauvegarder les applications et les données de cet ordinateur virtuel à partir du système d’exploitation de l’ordinateur physique. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM VSS ### Service: Cliché instantané des volumes Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\VSSVC.EXE * Gère et implémente les clichés instantanés de volumes pour les sauvegardes et autres utilisations. Si ce service est arrêté, les clichés instantanés ne seront pas disponibles pour la sauvegarde et la sauvegarde échouera. Si ce service est désactivé, les services en dépendant explicitement ne démarreront pas. Service de cliché instantané de volumes Microsoft® Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\VSSVC.EXE [Auto Services] :HKLM W32Time ### Service: Temps Windows Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Conserve la synchronisation de la date et de l’heure sur tous les clients et serveurs sur le réseau. Si ce service est arrêté, la synchronisation de la date et de l’heure sera indisponible. Si ce service est désactivé, tout service en dépendant explicitement ne démarrera pas. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE [Auto Services] :HKLM WaaSMedicSvc ### Service: @WaaSMedicSvcImpl.dll,-100 Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * @WaaSMedicSvcImpl.dll,-101 Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K WUSVCS -P [Auto Services] :HKLM WalletService ### Service: WalletService Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Objets d'hôtes utilisés par les clients du portefeuille Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K APPMODEL -P [Auto Services] :HKLM Wallpaper Engine Service ### Service: Wallpaper Engine Service Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSWOW64\WALLPAPERSERVICE32.EXE * !$*"C:\WINDOWS\SYSWOW64\WALLPAPERSERVICE32.EXE" -P "C:\PROGRAM FILES (X86)\STEAM\STEAMAPPS\COMMON\WALLPAPER_ENGINE\WALLPAPER32.EXE" [Auto Services] :HKLM WarpJITSvc ### Service: Warp JIT Service Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Enables JIT compilation support in d3d10warp.dll for processes in which code generation is disabled. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED [Auto Services] :HKLM wbengine ### Service: Service de moteur de sauvegarde en mode bloc Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\WBENGINE.EXE * Le service WBENGINE est utilisé par la sauvegarde Windows pour effectuer les opérations de sauvegarde et de récupération. Si ce service est arrêté par un utilisateur, l’opération de sauvegarde ou de récupération en cours risque d’échouer. La désactivation de ce service peut désactiver les opérations de sauvegarde et de récupération effectuées à l’aide de la sauvegarde Windows sur cet ordinateur. Exécutable du service de moteur de sauvegarde en mode bloc Microsoft® Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*"%SYSTEMROOT%\SYSTEM32\WBENGINE.EXE" [Auto Services] :HKLM WbioSrvc ### Service: Service de biométrie Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service de biométrie Windows permet aux applications clientes de capturer, comparer, manipuler et stocker des données biométriques sans avoir directement accès au matériel ou aux échantillons. Le service est hébergé dans un processus SVCHOST privilégié. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K WBIOSVCGROUP [Auto Services] :HKLM Wcmsvc ### Service: Gestionnaire des connexions Windows Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Prends des décisions automatiques de connexion et de déconnexion en fonction des options de connectivité réseau actuellement disponibles pour le PC et permet la gestion de la connectivité réseau sur la base des paramètres de stratégie de groupe. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P -S WCMSVC [Auto Services] :HKLM wcncsvc ### Service: Windows Connect Now - Registre de configuration Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * WCNCSVC héberge la configuration de connexion immédiate Windows, qui est l'implémentation Microsoft du protocole WPS (Wireless Protected Setup). On l'utilise pour configurer des paramètres de réseau local sans fil pour un point d'accès ou un périphérique sans fil. Le service est démarré par programme en cas de besoin. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICEANDNOIMPERSONATION -P [Auto Services] :HKLM WdNisSvc ### Service: Service d’inspection réseau de l’antivirus Microsoft Defender Status: Start Type: loaded manually on demand Actual File: C:\ProgramData\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.24080.9-0\NISSRV.EXE * Empêche les tentatives d’intrusion ciblant les vulnérabilités connues et nouvellement découvertes des protocoles réseau Microsoft Network Realtime Inspection Service Microsoft Corporation Microsoft® Windows® Operating System 4.18.24080.9 !$*"%PROGRAMDATA%\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.24080.9-0\NISSRV.EXE" [Auto Services] :HKLM WebClient ### Service: WebClient Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Permet à un programme fonctionnant sous Windows de créer, modifier et accéder à des fichiers Internet. Si ce service est arrêté, ces fonctions ne sont pas disponibles. Si ce service est désactivé, tous les services qui en dépendent explicitement ne peuvent plus démarrer. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM webthreatdefsvc ### Service: Service Web Threat Defense Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service de point de terminaison Web Threat Defense vous aide à protéger votre ordinateur en identifiant les entités non autorisées tentant d’accéder aux informations d’identification de l’utilisateur Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K WEBTHREATDEFENSE -P [Auto Services] :HKLM webthreatdefusersvc ### Service: Service d’utilisateur Web Threat Defense Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service d’utilisateur Web Threat Defense vous aide à protéger l’ordinateur en avertissant l’utilisateur lorsque des entités non autorisées tentent d’accéder à leurs informations d’identification Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM webthreatdefusersvc_fea20 ### Service: Service d’utilisateur Web Threat Defense_fea20 Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service d’utilisateur Web Threat Defense vous aide à protéger l’ordinateur en avertissant l’utilisateur lorsque des entités non autorisées tentent d’accéder à leurs informations d’identification Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM Wecsvc ### Service: Collecteur d’événements de Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service gère des abonnements persistants à des événements de sources distantes prenant en charge le protocole Gestion de services Web. Cela inclut les journaux d’événements de Windows Vista, les sources d’événements matériels et IPMI. Le service stocke les événements transférés dans un journal d’événements local. Si ce service est arrêté ou désactivé, des abonnements aux événements ne peuvent pas être créés et les événements transférés ne peuvent pas être acceptés. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P [Auto Services] :HKLM WEPHOSTSVC ### Service: Service hôte du fournisseur de chiffrement Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service hôte du fournisseur de chiffrement Windows négocie les fonctionnalités liées au chiffrement avec les fournisseurs de chiffrement tiers pour les processus qui ont besoin d’évaluer et d’appliquer des stratégies EAS. L’arrêt de cette activité compromettra les vérifications de conformité EAS qui ont été établies par les comptes de messagerie connectés. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K WEPHOSTSVCGROUP [Auto Services] :HKLM wercplsupport ### Service: Prise en charge du Panneau de configuration Rapports de problèmes Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service prend en charge l’affichage, l’envoi et la suppression de rapports de problèmes au niveau du système pour l’application Rapports de problèmes du Panneau de configuration. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM WerSvc ### Service: Service de rapport d’erreurs Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Autorise le signalement des erreurs lorsque des programmes cessent de fonctionner ou de répondre, ainsi que la fourniture de solutions existantes. Autorise également la génération de journaux pour les services de diagnostic et de réparation. Si ce service est arrêté, le signalement des erreurs risque de ne pas fonctionner correctement ; par ailleurs, les résultats des services de diagnostic et de réparation risquent de ne pas s’afficher. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K WERSVCGROUP [Auto Services] :HKLM WFDSConMgrSvc ### Service: Service Wi-Fi Direct Service de gestionnaire de connexions Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Gère les connexions aux services sans fil, y compris l’affichage sans fil et la station d’accueil. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM WiaRpc ### Service: Événements d’acquisition d’images fixes Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Lance les applications associées aux événements d’acquisition d’images fixes. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM WinDefend ### Service: Service antivirus Microsoft Defender Status: Start Type: loaded manually on demand Actual File: C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.24080.9-0\MSMPENG.EXE * Protège les utilisateurs contre les logiciels malveillants et les autres logiciels potentiellement indésirables Antimalware Service Executable Microsoft Corporation Microsoft® Windows® Operating System 4.18.24080.9 !$*"C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.24080.9-0\MSMPENG.EXE" [Auto Services] :HKLM WinHttpAutoProxySvc ### Service: Service de découverte automatique de Proxy Web pour les services HTTP Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * WinHTTP implémente la pile HTTP du client et fournit aux développeurs une API Win32 et un composant d’automatisation COM pour l’envoi des demandes HTTP et la réception des réponses. En outre, WinHTTP prend en charge la découverte automatique d’une configuration de proxy via son implémentation du protocole WPAD (Web Proxy Auto-Discovery). Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM Winmgmt ### Service: Infrastructure de gestion Windows Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit une interface commune et un modèle objet pour accéder aux informations de gestion du système d’exploitation, des périphériques, des applications et des services. Si ce service est arrêté, la plupart des logiciels sur base Windows ne fonctionneront pas correctement. Si ce service est désactivé, tout service qui en dépend explicitement ne démarrera pas. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM WinRM ### Service: Gestion à distance de Windows (Gestion WSM) Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service Gestion à distance de Windows implémente le protocole Gestion des services Web pour la gestion à distance. La Gestion des services Web est un protocole standard utilisé pour la gestion à distance de logiciels et de matériels. Le service Gestion à distance de Windows traite les demandes Gestion des services Web. Il doit être configuré à l’aide de l’outil winrm.cmd ou via la stratégie de groupe. Ce service donne accès aux données WMI et permet le recueil d’événements. Le recueil d’événements et l’abonnement exigent que ce service s'exécute. Les messages du service Gestion à distance de Windows utilisent HTTP et HTTPS. Le service Gestion à distance de Windows ne dépend pas d’IIS mais partage un port avec IIS sur la même machine. Le service Gestion à distance de Windows réserve le préfixe d’URL /wsman. Pour éviter les conflits avec IIS, vérifiez que les sites Web hébergés sur IIS n’utilisent pas le préfixe d’URL /wsman. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETWORKSERVICE -P [Auto Services] :HKLM wisvc ### Service: Service Windows Insider Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Offre la prise en charge de l'infrastructure pour le programme Windows Insider. Ce service doit rester actif pour que le programme Windows Insider fonctionne. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM WlanSvc ### Service: Service de configuration automatique WLAN Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Le service WLANSVC fournit la logique nécessaire pour configurer, découvrir, se connecter et se déconnecter d’un réseau local sans fil (WLAN) tel que défini par les normes IEEE 802.11. Il contient également la logique permettant de convertir votre ordinateur en un point d’accès logiciel de sorte que d’autres périphériques ou ordinateurs puissent se connecter à votre ordinateur sans fil à l’aide d’une carte WLAN prenant en charge cette fonctionnalité. L’arrêt ou la désactivation du service WLANSVC rendront toutes les cartes WLAN sur votre ordinateur inaccessibles à partir de l’interface utilisateur de mise en réseau Windows. Il est vivement recommandé d’exécuter le service WLANSVC si votre ordinateur possède une carte WLAN. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM wlidsvc ### Service: Assistant Connexion avec un compte Microsoft Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Autorise la connexion des utilisateurs par le biais des services d’identité de compte Microsoft. Si ce service est arrêté, les utilisateurs ne pourront pas ouvrir une session sur l’ordinateur avec leur compte Microsoft. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM wlpasvc ### Service: Service de l’Assistant de profil local Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service fournit la gestion du profil pour les modules d’identité d’abonné Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P [Auto Services] :HKLM WManSvc ### Service: Service de gestion de Windows Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Effectue la gestion, notamment les activités d'approvisionnement et d'inscription Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM wmiApSrv ### Service: Carte de performance WMI Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\System32\WBEM\WMIAPSRV.EXE * Fournit des informations concernant la bibliothèque de performance à partir des fournisseurs HiPerf WMI (Windows Management Instrumentation) à des clients sur le réseau. Ce service s’exécute uniquement quand l’assistant de performance des données est activé. Adaptateur inverse de performance WMI Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\WBEM\WMIAPSRV.EXE [Auto Services] :HKLM WMPNetworkSvc ### Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 Status: Start Type: loaded automatically by Server Manager Actual File: C:\Program Files\WINDOWS MEDIA PLAYER\WMPNETWK.EXE * Partage les bibliothèques du Lecteur multimédia Windows avec des lecteurs réseau et des appareils multimédias qui utilisent le Plug-and-Play universel Service de partage réseau du Lecteur multimédia Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 12.0.26100.1 ->WINDOWS MEDIA PLAYER NETWORK SHARING SERVICE !$*"%PROGRAMFILES%\WINDOWS MEDIA PLAYER\WMPNETWK.EXE" [Auto Services] :HKLM workfolderssvc ### Service: Dossiers de travail Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service synchronise des fichiers avec le serveur Dossiers de travail, vous permettant ainsi d’utiliser ces fichiers sur tous les PC et appareils sur lesquels vous avez configuré la fonctionnalité Dossiers de travail. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P [Auto Services] :HKLM WpcMonSvc ### Service: Contrôle parental Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Applique le contrôle parental aux comptes enfant dans Windows. Si ce service est arrêté ou désactivé, le contrôle parental peut ne pas être appliqué. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE [Auto Services] :HKLM WPDBusEnum ### Service: Service Énumérateur d’appareil mobile Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Met en place une stratégie de groupe pour les dispositifs de stockage de masse amovibles. Permet à des applications telles que le Lecteur multimédia Windows et l’Assistant Importation d’images de transférer et de synchroniser du contenu à l’aide de dispositifs de stockage de masse amovibles. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED [Auto Services] :HKLM WpnService ### Service: Service du système de notifications Push Windows Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service s’exécute dans la session 0 et héberge la plateforme de notification et le fournisseur de connexion qui gère la connexion entre l’appareil et le serveur WNS. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM WpnUserService ### Service: Service utilisateur de notifications Push Windows Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service héberge la plateforme de notification Windows qui fournit la prise en charge des notifications locales et Push. Les notifications prises en charge sont tile, toast et raw. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM WpnUserService_fea20 ### Service: Service utilisateur de notifications Push Windows_fea20 Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service héberge la plateforme de notification Windows qui fournit la prise en charge des notifications locales et Push. Les notifications prises en charge sont tile, toast et raw. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K UNISTACKSVCGROUP [Auto Services] :HKLM ws2ifsl ### Driver: Pilote IFS Winsock Status: Start Type: disabled Actual File: C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS * Pilote IFS Winsock Couche IFS Winsock2 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS [Auto Services] :HKLM WSearch ### Service: Windows Search Status: Start Type: loaded automatically by Server Manager Actual File: C:\WINDOWS\SYSTEM32\SEARCHINDEXER.EXE * Fournit des fonctionnalités d’indexation de contenu, de mise en cache des propriétés, de résultats de recherche pour les fichiers, les messages électroniques et autres contenus. Indexeur Microsoft Windows Search Microsoft Corporation Windows® Search 7.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SEARCHINDEXER.EXE /EMBEDDING [Auto Services] :HKLM wuauserv ### Service: Windows Update Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Active la détection, le téléchargement et l’installation des mises à jour de Windows et d’autres programmes. Si ce service est désactivé, les utilisateurs de cet ordinateur ne pourront pas utiliser Windows Update ou sa fonctionnalité de mise à jour automatique, et les programmes ne pourront pas utiliser l’API de l’Agent de mise à jour automatique Windows Update (WUA). Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM WwanSvc ### Service: Service de configuration automatique WWAN Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service gère les connexions et adaptateurs de module intégré/carte de données à haut débit mobile (GSM & CDMA) en configurant automatiquement les réseaux. Il est vivement recommandé de laisser ce service s’exécuter afin d’améliorer l’expérience des utilisateurs de haut débit mobile. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P [Auto Services] :HKLM XblAuthManager ### Service: Gestionnaire d'authentification Xbox Live Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Fournit des services d'authentification et d'autorisation pour interagir avec Xbox Live. Si ce service est arrêté, certaines applications peuvent ne pas fonctionner correctement. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM XblGameSave ### Service: Jeu sauvegardé sur Xbox Live Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service synchronise les données enregistrées pour les jeux dont la sauvegarde sur Xbox Live est activée. Si ce service est arrêté, les données enregistrées des jeux ne seront téléchargées ni vers, ni depuis Xbox Live. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM XboxGipSvc ### Service: Xbox Accessory Management Service Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * This service manages connected Xbox Accessories. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM XboxNetApiSvc ### Service: Service de mise en réseau Xbox Live Status: Start Type: loaded manually on demand Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE * Ce service prend en charge l'interface de programmation d'application Windows.Networking.XboxLive. Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SYSTEMROOT%\SYSTEM32\SVCHOST.EXE -K NETSVCS -P [Auto Services] :HKLM DCOMLAUNCH ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K DCOMLAUNCH -P Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!! [Auto Services] :HKLM DPS ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENONETWORK -P Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!! [Auto Services] :HKLM GPSVC ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K GPSVCGROUP Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!! [Auto Services] :HKLM RPCSS ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K RPCSS -P Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!! [Auto Services] :HKLM SAMSS ### Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\SYSTEM32\LSASS.EXE Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\LSASS.EXE WMI!!! [Auto Services] :HKLM SECURITYHEALTHSERVICE ### Windows Security Health Service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->WINDOWS SECURITY HEALTH SERVICE !$*C:\WINDOWS\SYSTEM32\SECURITYHEALTHSERVICE.EXE Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\SECURITYHEALTHSERVICE.EXE WMI!!! [Auto Services] :HKLM TRKWKS ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!! [Auto Services] :HKLM TRUSTEDINSTALLER ### Programme d’installation pour les modules Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SERVICING\TRUSTEDINSTALLER.EXE Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SERVICING\TRUSTEDINSTALLER.EXE WMI!!! [Auto Services] :HKLM WDISERVICEHOST ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICE -P Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!! [Auto Services] :HKLM WDISYSTEMHOST ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSYSTEMNETWORKRESTRICTED -P Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!! [Auto Services] :HKLM WSCSVC ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SYSTEM32\SVCHOST.EXE -K LOCALSERVICENETWORKRESTRICTED -P Service registry key doesn't exist or hidden. Actual File: C:\WINDOWS\SYSTEM32\SVCHOST.EXE WMI!!! [Svchost DLLs] :HKLM lanmanserver=C:\WINDOWS\System32\SRVSVC.DLL ### DLL du service Serveur Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\srvsvc.dll [Svchost DLLs] :HKLM iphlpsvc=C:\WINDOWS\System32\IPHLPSVC.DLL ### Service offrant une connectivité IPv6 sur un réseau IPv4. Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\iphlpsvc.dll [Svchost DLLs] :HKLM msiscsi=C:\WINDOWS\System32\ISCSIEXE.DLL ### Service de découverte iSCSI Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 =>ISCSIEXE.EXE.MUI !$*%systemroot%\system32\iscsiexe.dll [Svchost DLLs] :HKLM schedule=C:\WINDOWS\System32\SCHEDSVC.DLL ### Service du Planificateur de tâches Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->SCHEDULE !$*%systemroot%\system32\schedsvc.dll [Svchost DLLs] :HKLM winmgmt=C:\WINDOWS\System32\WBEM\WMISVC.DLL ### WMI Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wbem\WMIsvc.dll [Svchost DLLs] :HKLM SessionEnv=C:\WINDOWS\System32\SESSENV.DLL ### Service Configuration des services Bureau à distance Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\sessenv.dll [Svchost DLLs] :HKLM FastUserSwitchingCompatibility [Svchost DLLs] :HKLM Ias [Svchost DLLs] :HKLM Irmon [Svchost DLLs] :HKLM Nla [Svchost DLLs] :HKLM Ntmssvc [Svchost DLLs] :HKLM NWCWorkstation [Svchost DLLs] :HKLM Nwsapagent [Svchost DLLs] :HKLM Rasauto=C:\WINDOWS\System32\RASAUTO.DLL ### Gestionnaire de numérotation automatique d’accès distant Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\rasauto.dll [Svchost DLLs] :HKLM Rasman=C:\WINDOWS\System32\RASMANS.DLL ### Gestionnaire des connexions d’accès à distance Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\rasmans.dll [Svchost DLLs] :HKLM Remoteaccess=C:\WINDOWS\System32\MPRDIM.DLL ### Gestionnaire d’interface dynamique Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\mprdim.dll [Svchost DLLs] :HKLM SENS=C:\WINDOWS\System32\SENS.DLL ### Service de notification d’événements système (SENS) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\sens.dll [Svchost DLLs] :HKLM Sharedaccess=C:\WINDOWS\System32\IPNATHLP.DLL ### Composants de l’application d’assistance à Microsoft NAT Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ipnathlp.dll [Svchost DLLs] :HKLM SRService [Svchost DLLs] :HKLM Tapisrv=C:\WINDOWS\System32\TAPISRV.DLL ### Serveur de téléphonie Microsoft® Windows(TM) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->TELEPHONY SERVICE =>TAPISRV.EXE.MUI !$*%SystemRoot%\System32\tapisrv.dll [Svchost DLLs] :HKLM Wmi [Svchost DLLs] :HKLM WmdmPmSp [Svchost DLLs] :HKLM wuauserv=C:\WINDOWS\System32\WUAUENG.DLL ### Agent de mise à jour automatique Windows Update Microsoft Corporation Système d’exploitation Microsoft® Windows® 1309.2409.26012.0 !$*%systemroot%\system32\wuaueng.dll [Svchost DLLs] :HKLM BITS=C:\WINDOWS\System32\QMGR.DLL ### Service de transfert intelligent en arrière-plan Microsoft Corporation Système d’exploitation Microsoft® Windows® 7.8.26100.2294 !$*%SystemRoot%\System32\qmgr.dll [Svchost DLLs] :HKLM ShellHWDetection=C:\WINDOWS\System32\SHSVCS.DLL ### Dll des services Windows Shell Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\shsvcs.dll [Svchost DLLs] :HKLM LogonHours [Svchost DLLs] :HKLM PCAudit [Svchost DLLs] :HKLM helpsvc [Svchost DLLs] :HKLM uploadmgr [Svchost DLLs] :HKLM CertPropSvc=C:\WINDOWS\System32\CERTPROP.DLL ### Service de propagation de certificats de cartes à puce Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\certprop.dll [Svchost DLLs] :HKLM SCPolicySvc=C:\WINDOWS\System32\CERTPROP.DLL ### Service de propagation de certificats de cartes à puce Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\certprop.dll [Svchost DLLs] :HKLM UserManager=C:\WINDOWS\System32\USERMGR.DLL ### UserMgr Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\usermgr.dll [Svchost DLLs] :HKLM TokenBroker=C:\WINDOWS\System32\TOKENBROKER.DLL ### Broker à jetons Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 ->TOKEN BROKER !$*%SystemRoot%\System32\TokenBroker.dll [Svchost DLLs] :HKLM WiaRpc=C:\WINDOWS\System32\WIARPC.DLL ### DLL de client RPC d’acquisition d’image Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wiarpc.dll [Svchost DLLs] :HKLM dot3svc=C:\WINDOWS\System32\DOT3SVC.DLL ### Service de configuration automatique de réseau câblé Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\dot3svc.dll [Svchost DLLs] :HKLM NcbService=C:\WINDOWS\System32\NCBSERVICE.DLL ### Service Broker pour les connexions réseau Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ncbservice.dll [Svchost DLLs] :HKLM Netman=C:\WINDOWS\System32\NETMAN.DLL ### Gestionnaire de connexions réseau Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\netman.dll [Svchost DLLs] :HKLM DeviceAssociationService=C:\WINDOWS\System32\DAS.DLL ### Service d’association de périphérique Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\das.dll [Svchost DLLs] :HKLM ScDeviceEnum=C:\WINDOWS\System32\SCDEVICEENUM.DLL ### Service d’énumération de périphériques de carte à puce Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ScDeviceEnum.dll [Svchost DLLs] :HKLM wlansvc=C:\WINDOWS\System32\WLANSVC.DLL ### DLL du service de configuration automatique WLAN de Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wlansvc.dll [Svchost DLLs] :HKLM WPDBusEnum=C:\WINDOWS\System32\WPDBUSENUM.DLL ### Énumérateur d’appareil mobile Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wpdbusenum.dll [Svchost DLLs] :HKLM WinHttpAutoProxySvc=C:\WINDOWS\System32\WINHTTP.DLL ### Services HTTP Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\winhttp.dll [Svchost DLLs] :HKLM WebClient=C:\WINDOWS\System32\WEBCLNT.DLL ### Fichier DLL du service DAV pour le Web Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->DAVSVC.DLL =>DAVSVC.DLL.MUI !$*%SystemRoot%\System32\webclnt.dll [Svchost DLLs] :HKLM StiSvc=C:\WINDOWS\System32\WIASERVC.DLL ### Service de périphériques d’images fixes Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wiaservc.dll [Svchost DLLs] :HKLM PLA=C:\WINDOWS\System32\PLA.DLL ### Journaux & alertes de performance Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\pla.dll [Svchost DLLs] :HKLM smphost=C:\WINDOWS\System32\SMPHOST.DLL ### Storage Management Provider (SMP) host service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2294 !$*%Systemroot%\System32\smphost.dll [Svchost DLLs] :HKLM RpcSs=C:\WINDOWS\System32\RPCSS.DLL ### Distributed COM Services Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\system32\rpcss.dll [Svchost DLLs] :HKLM wscsvc=C:\WINDOWS\System32\WSCSVC.DLL ### Service Centre de sécurité de Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wscsvc.dll [Svchost DLLs] :HKLM LmHosts=C:\WINDOWS\System32\LMHSVC.DLL ### DLL des services de transport NetBIOS sur TCP/IP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\lmhsvc.dll [Svchost DLLs] :HKLM DHCP=C:\WINDOWS\System32\DHCPCORE.DLL ### Service client DHCP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\dhcpcore.dll [Svchost DLLs] :HKLM camsvc=C:\WINDOWS\System32\CAPABILITYACCESSMANAGER.DLL ### Service Gestionnaire d’accès aux fonctionnalités Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->CAPABILITY ACCESS MANAGER SERVICE !$*%SystemRoot%\system32\CapabilityAccessManager.dll [Svchost DLLs] :HKLM StateRepository=C:\WINDOWS\System32\WINDOWS.STATEREPOSITORY.DLL ### Serveur d'API Windows StateRepository Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 ->WINDOWS STATEREPOSITORY API SERVER !$*%SystemRoot%\system32\windows.staterepository.dll [Svchost DLLs] :HKLM SSDPSRV=C:\WINDOWS\System32\SSDPSRV.DLL ### DLL du service SSDP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ssdpsrv.dll [Svchost DLLs] :HKLM upnphost=C:\WINDOWS\System32\UPNPHOST.DLL ### Hôte de périphérique UPnP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->UNPNHOST.DLL =>UNPNHOST.DLL.MUI !$*%SystemRoot%\System32\upnphost.dll [Svchost DLLs] :HKLM SCardSvr=C:\WINDOWS\System32\SCARDSVR.DLL ### Serveur de gestion de ressources des cartes à puce Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->SCARDSVR.EXE =>SCARDSVR.EXE.MUI !$*%SystemRoot%\System32\SCardSvr.dll [Svchost DLLs] :HKLM QWAVE=C:\WINDOWS\SYSTEM32\QWAVE.DLL ### Windows NT Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->QWAVEDLL !$*%windir%\system32\qwave.dll [Svchost DLLs] :HKLM wcncsvc=C:\WINDOWS\System32\WCNCSVC.DLL ### Windows Connect Now - Service de registre de configuration Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wcncsvc.dll [Svchost DLLs] :HKLM DcomLaunch=C:\WINDOWS\System32\RPCSS.DLL ### Distributed COM Services Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\system32\rpcss.dll [Svchost DLLs] :HKLM DeviceInstall=C:\WINDOWS\System32\UMPNPMGR.DLL ### Service mode utilisateur de Plug-and-Play Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\umpnpmgr.dll [Svchost DLLs] :HKLM PrintWorkflowUserSvc=C:\WINDOWS\System32\PRINTWORKFLOWSERVICE.DLL ### Workflow d’impression Microsoft Windows service interne Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->WINDOWS.GRAPHICS.INTERNAL.PRINTING.WORKFLOWSERVICE =>WINDOWS.GRAPHICS.INTERNAL.PRINTING.WORKFLOWSERVICE.DLL.MUI !$*%SystemRoot%\System32\PrintWorkflowService.dll [Svchost DLLs] :HKLM netprofm=C:\WINDOWS\System32\NETPROFMSVC.DLL ### DLL du service de profil réseau Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->NETWORK PROFILE SERVICE DLL !$*%SystemRoot%\System32\netprofmsvc.dll [Svchost DLLs] :HKLM nlasvc=C:\WINDOWS\System32\NETPROFMSVC.DLL ### DLL du service de profil réseau Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->NETWORK PROFILE SERVICE DLL !$*%SystemRoot%\System32\netprofmsvc.dll [Svchost DLLs] :HKLM AarSvc=C:\WINDOWS\System32\AARSVC.DLL ### Agent Activation Runtime Service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\System32\AarSvc.dll [Svchost DLLs] :HKLM DeviceAssociationBrokerSvc=C:\WINDOWS\System32\DEVICEACCESS.DLL ### Device Broker And Policy COM Server Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\System32\deviceaccess.dll [Svchost DLLs] :HKLM CryptSvc=C:\WINDOWS\System32\CRYPTSVC.DLL ### Services de chiffrement Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\cryptsvc.dll [Svchost DLLs] :HKLM WinRM=C:\WINDOWS\System32\WSMSVC.DLL ### Service WSMan Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\WsmSvc.dll [Svchost DLLs] :HKLM WECSVC=C:\WINDOWS\System32\WECSVC.DLL ### Service Collecteur d’événements Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wecsvc.dll [Svchost DLLs] :HKLM TermService=C:\WINDOWS\System32\TERMSRV.DLL ### Gestionnaire des connexions distantes du serveur hôte de session Bureau à distance Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\termsrv.dll [Svchost DLLs] :HKLM DNSCache=C:\WINDOWS\System32\DNSRSLVR.DLL ### Service de résolution du cache DNS Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\dnsrslvr.dll [Svchost DLLs] :HKLM gpsvc=C:\WINDOWS\System32\GPSVC.DLL ### Client de stratégie de groupe Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\gpsvc.dll [Svchost DLLs] :HKLM AppIDSvc=C:\WINDOWS\System32\APPIDSVC.DLL ### Service d’identité de l’application Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\appidsvc.dll [Svchost DLLs] :HKLM Appinfo=C:\WINDOWS\System32\APPINFO.DLL ### Service Informations d’application Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\appinfo.dll [Svchost DLLs] :HKLM AppReadiness=C:\WINDOWS\System32\APPREADINESS.DLL ### AppReadiness Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\AppReadiness.dll [Svchost DLLs] :HKLM ApxSvc=C:\WINDOWS\System32\APXSVC.DLL ### Service proxy de périphérique audio virtuel Windows Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ApxSvc.dll [Svchost DLLs] :HKLM AudioEndpointBuilder=C:\WINDOWS\System32\AUDIOENDPOINTBUILDER.DLL ### Générateur de points de terminaison du service Audio Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->AUDIOEPB.DLL =>AUDIOEPB.DLL.MUI !$*%SystemRoot%\System32\AudioEndpointBuilder.dll [Svchost DLLs] :HKLM Audiosrv=C:\WINDOWS\System32\AUDIOSRV.DLL ### Service Audio Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\Audiosrv.dll [Svchost DLLs] :HKLM autotimesvc=C:\WINDOWS\System32\AUTOTIMESVC.DLL ### Service AutoTime Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->AUTOTIME SERVICE !$*%SystemRoot%\System32\autotimesvc.dll [Svchost DLLs] :HKLM AxInstSV=C:\WINDOWS\System32\AXINSTSV.DLL ### Service de l’installateur ActiveX Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\AxInstSV.dll [Svchost DLLs] :HKLM BcastDVRUserService=C:\WINDOWS\System32\BCASTDVRUSERSERVICE.DLL ### Service utilisateur DVR de diffusion Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 ->BROADCAST DVR USER SERVICE =>BCASTDVRUSERSVC.DLL.MUI !$*%SystemRoot%\System32\BcastDVRUserService.dll [Svchost DLLs] :HKLM BDESVC=C:\WINDOWS\System32\BDESVC.DLL ### Service BDE Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\bdesvc.dll [Svchost DLLs] :HKLM BFE=C:\WINDOWS\System32\BFE.DLL ### Moteur de filtrage de base Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\bfe.dll [Svchost DLLs] :HKLM BluetoothUserService=C:\WINDOWS\System32\MICROSOFT.BLUETOOTH.USERSERVICE.DLL ### Service de support des utilisateurs du Bluetooth Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\Microsoft.Bluetooth.UserService.dll [Svchost DLLs] :HKLM BrokerInfrastructure=C:\WINDOWS\System32\PSMSRV.DLL ### Process State Manager (PSM) Service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*%SystemRoot%\System32\psmsrv.dll [Svchost DLLs] :HKLM BTAGService=C:\WINDOWS\System32\BTAGSERVICE.DLL ### Service de passerelle audio Bluetooth Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 ->BLUETOOTH AUDIO GATEWAY SERVICE !$*%SystemRoot%\System32\BTAGService.dll [Svchost DLLs] :HKLM BthAvctpSvc=C:\WINDOWS\System32\BTHAVCTPSVC.DLL ### DLL du service Bluetooth AVRCP Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 ->BLUETOOTH AVCTP SERVICE DLL !$*%SystemRoot%\System32\BthAvctpSvc.dll [Svchost DLLs] :HKLM bthserv=C:\WINDOWS\System32\BTHSERV.DLL ### Service de prise en charge Bluetooth Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1710 !$*%SystemRoot%\system32\bthserv.dll [Svchost DLLs] :HKLM CaptureService=C:\WINDOWS\System32\CAPTURESERVICE.DLL ### Service utilisateur de Capture Microsoft Windows Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\CaptureService.dll [Svchost DLLs] :HKLM cbdhsvc=C:\WINDOWS\System32\CBDHSVC.DLL ### Historique du Presse-papiers Microsoft (R) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\cbdhsvc.dll [Svchost DLLs] :HKLM CDPSvc=C:\WINDOWS\System32\CDPSVC.DLL ### Service CDP Microsoft (R) Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\CDPSvc.dll [Svchost DLLs] :HKLM CDPUserSvc=C:\WINDOWS\System32\CDPUSERSVC.DLL ### Composants utilisateur Microsoft (R) CDP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\CDPUserSvc.dll [Svchost DLLs] :HKLM ClipSVC=C:\WINDOWS\System32\CLIPSVC.DLL ### Service de licences de client Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ClipSVC.dll [Svchost DLLs] :HKLM CloudBackupRestoreSvc=C:\WINDOWS\System32\CLOUDRESTORELAUNCHER.DLL ### Tâche CloudRestoreLauncher Microsoft Corporation Système d exploitation Microsoft ® Windows ® 10.0.26100.2294 !$*%SystemRoot%\System32\CloudRestoreLauncher.dll [Svchost DLLs] :HKLM ConsentUxUserSvc=C:\WINDOWS\System32\CONSENTUXCLIENT.DLL ### Implémentation de l'API UX de consentement côté client Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ConsentUxClient.dll [Svchost DLLs] :HKLM CoreMessagingRegistrar=C:\WINDOWS\System32\COREMESSAGING.DLL ### Microsoft CoreMessaging Dll Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\system32\coremessaging.dll [Svchost DLLs] :HKLM dcsvc=C:\WINDOWS\System32\DCSVC.DLL ### dcsvc Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 =>DVSVC.DLL.MUI !$*%SystemRoot%\system32\dcsvc.dll [Svchost DLLs] :HKLM defragsvc=C:\WINDOWS\System32\DEFRAGSVC.DLL ### Microsoft\Optimiseur de lecteur Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%Systemroot%\System32\defragsvc.dll [Svchost DLLs] :HKLM DevicePickerUserSvc=C:\WINDOWS\System32\WINDOWS.DEVICES.PICKER.DLL ### Sélecteur d’appareil Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\Windows.Devices.Picker.dll [Svchost DLLs] :HKLM DevicesFlowUserSvc=C:\WINDOWS\System32\DEVICESFLOWBROKER.DLL ### Répartiteur des flux d’appareils Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->DEVICESFLOW BROKER !$*%SystemRoot%\System32\DevicesFlowBroker.dll [Svchost DLLs] :HKLM DevQueryBroker=C:\WINDOWS\System32\DEVQUERYBROKER.DLL ### Service Broker de découverte en arrière-plan DevQuery Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\DevQueryBroker.dll [Svchost DLLs] :HKLM diagsvc=C:\WINDOWS\System32\DIAGSVC.DLL ### Microsoft Windows operating system Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 ->DIAGNOSTIC EXECUTION SERVICE DLL !$*%systemroot%\system32\DiagSvc.dll [Svchost DLLs] :HKLM DiagTrack=C:\WINDOWS\System32\DIAGTRACK.DLL ### Suivi des diagnostics Microsoft Windows Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\diagtrack.dll [Svchost DLLs] :HKLM DispBrokerDesktopSvc=C:\WINDOWS\System32\DISPBROKER.DESKTOP.DLL ### Courtier d'affichage du bureau Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\DispBroker.Desktop.dll [Svchost DLLs] :HKLM DisplayEnhancementService=C:\WINDOWS\System32\MICROSOFT.GRAPHICS.DISPLAY.DISPLAYENHANCEMENTSERVICE.DLL ### DLL Microsoft.Graphics.Display.DisplayEnhancementService Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll [Svchost DLLs] :HKLM DmEnrollmentSvc=C:\WINDOWS\System32\WINDOWS.INTERNAL.MANAGEMENT.DLL ### DLL Windows Management Service Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\Windows.Internal.Management.dll [Svchost DLLs] :HKLM dmwappushservice=C:\WINDOWS\System32\DMWAPPUSHSVC.DLL ### dmwappushsvc Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\dmwappushsvc.dll [Svchost DLLs] :HKLM DPS=C:\WINDOWS\System32\DPS.DLL ### Service de stratégie de diagnostic WDI Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\dps.dll [Svchost DLLs] :HKLM DsmSvc=C:\WINDOWS\System32\DEVICESETUPMANAGER.DLL ### Gestionnaire d’installation de périphérique Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\DeviceSetupManager.dll [Svchost DLLs] :HKLM DsSvc=C:\WINDOWS\System32\DSSVC.DLL ### Service NT de partage des données Service DLL Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 ->DATA SHARING SERVICE NT SERVICE DLL !$*%SystemRoot%\System32\DsSvc.dll [Svchost DLLs] :HKLM DusmSvc=C:\WINDOWS\System32\DUSMSVC.DLL ### Service Consommation des données Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\dusmsvc.dll [Svchost DLLs] :HKLM EapHost=C:\WINDOWS\System32\EAPSVC.DLL ### Service EAPHost Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\eapsvc.dll [Svchost DLLs] :HKLM EFS=C:\WINDOWS\System32\EFSSVC.DLL ### Service EFS Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\efssvc.dll [Svchost DLLs] :HKLM embeddedmode=C:\WINDOWS\System32\EMBEDDEDMODESVC.DLL ### Service d'enregistrement de débogage Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 ->DEBUG REGISTER SERVICE =>EMBEDDEDMODESVC.EXE.MUI !$*%SystemRoot%\System32\embeddedmodesvc.dll [Svchost DLLs] :HKLM EventLog=C:\WINDOWS\System32\WEVTSVC.DLL ### Service journal des événements Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wevtsvc.dll [Svchost DLLs] :HKLM EventSystem=C:\WINDOWS\System32\ES.DLL ### COM+ Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%systemroot%\system32\es.dll [Svchost DLLs] :HKLM fdPHost=C:\WINDOWS\System32\FDPHOST.DLL ### Service hôte du fournisseur de découverte de réseau Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\fdPHost.dll [Svchost DLLs] :HKLM FDResPub=C:\WINDOWS\System32\FDRESPUB.DLL ### Service de publication des ressources de découverte de fonctions Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\fdrespub.dll [Svchost DLLs] :HKLM fhsvc=C:\WINDOWS\System32\FHSVC.DLL ### Service d’historique des fichiers Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\fhsvc.dll [Svchost DLLs] :HKLM FontCache=C:\WINDOWS\System32\FNTCACHE.DLL ### Service de cache de police Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->FONTCACHESERVICE !$*%SystemRoot%\system32\FntCache.dll [Svchost DLLs] :HKLM GraphicsPerfSvc=C:\WINDOWS\System32\GRAPHICSPERFSVC.DLL ### GraphicsPerfSvc Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\System32\GraphicsPerfSvc.dll [Svchost DLLs] :HKLM hidserv=C:\WINDOWS\System32\HIDSERV.DLL ### Service du périphérique d’interface utilisateur Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\hidserv.dll [Svchost DLLs] :HKLM HvHost=C:\WINDOWS\System32\HVHOSTSVC.DLL ### Service d'hôte hyperviseur Microsoft Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\hvhostsvc.dll [Svchost DLLs] :HKLM icssvc=C:\WINDOWS\System32\TETHERINGSERVICE.DLL ### Service Connexion Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\tetheringservice.dll [Svchost DLLs] :HKLM IKEEXT=C:\WINDOWS\System32\IKEEXT.DLL ### Extension IKE Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ikeext.dll [Svchost DLLs] :HKLM InstallService=C:\WINDOWS\System32\INSTALLSERVICE.DLL ### InstallService Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\InstallService.dll [Svchost DLLs] :HKLM InventorySvc=C:\WINDOWS\System32\INVENTORYSVC.DLL ### Service d’inventaire et compatibilité Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\inventorysvc.dll [Svchost DLLs] :HKLM IpxlatCfgSvc=C:\WINDOWS\System32\IPXLATCFG.DLL ### Service de configuration de conversion IP Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\IpxlatCfg.dll [Svchost DLLs] :HKLM KeyIso=C:\WINDOWS\System32\KEYISO.DLL ### Service d’isolation de clé CNG Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\keyiso.dll [Svchost DLLs] :HKLM KtmRm=C:\WINDOWS\System32\MSDTCKRM.DLL ### Microsoft Distributed Transaction Coordinator OLE Transactions KTM Resource Manager DLL Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*%systemroot%\system32\msdtckrm.dll [Svchost DLLs] :HKLM LanmanWorkstation=C:\WINDOWS\System32\WKSSVC.DLL ### DLL du service Station de travail Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wkssvc.dll [Svchost DLLs] :HKLM lfsvc=C:\WINDOWS\System32\LFSVC.DLL ### Service de géolocalisation Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 ->GEOLOCATION SERVICE !$*%SystemRoot%\System32\lfsvc.dll [Svchost DLLs] :HKLM LicenseManager=C:\WINDOWS\System32\LICENSEMANAGERSVC.DLL ### LicenseManagerSvc Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\LicenseManagerSvc.dll [Svchost DLLs] :HKLM lltdsvc=C:\WINDOWS\System32\LLTDSVC.DLL ### Link-Layer Topology Mapper Service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*%SystemRoot%\System32\lltdsvc.dll [Svchost DLLs] :HKLM LocalKdc=C:\WINDOWS\System32\LOCALKDCSVC.DLL ### Service local KDC Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\localkdcsvc.dll [Svchost DLLs] :HKLM LSM=C:\WINDOWS\System32\LSM.DLL ### Service du gestionnaire de session locale Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\lsm.dll [Svchost DLLs] :HKLM LxpSvc=C:\WINDOWS\System32\LANGUAGEOVERLAYSERVER.DLL ### Fournit une prise en charge de l'infrastructure permettant de déployer et de configurer des ressources Windows localisées. Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\LanguageOverlayServer.dll [Svchost DLLs] :HKLM MapsBroker=C:\WINDOWS\System32\MOSHOST.DLL ### Gestionnaire des cartes téléchargées Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\moshost.dll [Svchost DLLs] :HKLM McpManagementService=C:\WINDOWS\System32\MCPMANAGEMENTSERVICE.DLL ### Service de gestion Impression universelle Microsoft Corporation Système d exploitation Microsoft ® Windows ® 10.0.26100.2294 !$*%SystemRoot%\System32\McpManagementService.dll [Svchost DLLs] :HKLM MessagingService=C:\WINDOWS\System32\MESSAGINGSERVICE.DLL ### Service de messagerie Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\MessagingService.dll [Svchost DLLs] :HKLM mpssvc=C:\WINDOWS\System32\MPSSVC.DLL ### Service de protection Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\mpssvc.dll [Svchost DLLs] :HKLM NaturalAuthentication=C:\WINDOWS\System32\NATURALAUTH.DLL ### Service d’authentification naturelle Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\NaturalAuth.dll [Svchost DLLs] :HKLM NcaSvc=C:\WINDOWS\System32\NCASVC.DLL ### Service Assistant Connectivité réseau Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ncasvc.dll [Svchost DLLs] :HKLM NcdAutoSetup=C:\WINDOWS\System32\NCDAUTOSETUP.DLL ### DLL du service Configuration automatique des périphériques connectés au réseau Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\NcdAutoSetup.dll [Svchost DLLs] :HKLM Netlogon=C:\WINDOWS\System32\NETLOGON.DLL ### DLL des services Net Logon Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\netlogon.dll [Svchost DLLs] :HKLM NetSetupSvc=C:\WINDOWS\System32\NETSETUPSVC.DLL ### Service Configuration du réseau Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\NetSetupSvc.dll [Svchost DLLs] :HKLM NgcCtnrSvc=C:\WINDOWS\System32\NGCCTNRSVC.DLL ### Service de conteneur Microsoft Passport Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\NgcCtnrSvc.dll [Svchost DLLs] :HKLM NgcSvc=C:\WINDOWS\System32\NGCSVC.DLL ### Service Microsoft Passport Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\ngcsvc.dll [Svchost DLLs] :HKLM NPSMSvc=C:\WINDOWS\System32\NPSM.DLL ### NPSM Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 ->NSPM !$*%SystemRoot%\System32\npsm.dll [Svchost DLLs] :HKLM nsi=C:\WINDOWS\System32\NSISVC.DLL ### Serveur RPC de l’interface du magasin réseau Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\nsisvc.dll [Svchost DLLs] :HKLM OneSyncSvc=C:\WINDOWS\System32\APHOSTSERVICE.DLL ### Accounts Host Service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\System32\APHostService.dll [Svchost DLLs] :HKLM PcaSvc=C:\WINDOWS\System32\PCASVC.DLL ### Service de l’Assistant Compatibilité des programmes Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\pcasvc.dll [Svchost DLLs] :HKLM PenService=C:\WINDOWS\System32\PENSERVICE.DLL ### Service de gestion du stylet Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->PEN SERVICE !$*%SystemRoot%\System32\PenService.dll [Svchost DLLs] :HKLM PhoneSvc=C:\WINDOWS\System32\PHONESERVICE.DLL ### The service used to manage phone calls and other telephony related functionality Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\System32\PhoneService.dll [Svchost DLLs] :HKLM PimIndexMaintenanceSvc=C:\WINDOWS\System32\PIMINDEXMAINTENANCE.DLL ### Service en charge de l'indexation des contacts et autres tâches connexes de données utilisateur Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\PimIndexMaintenance.dll [Svchost DLLs] :HKLM PlugPlay=C:\WINDOWS\System32\UMPNPMGR.DLL ### Service mode utilisateur de Plug-and-Play Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\umpnpmgr.dll [Svchost DLLs] :HKLM PolicyAgent=C:\WINDOWS\System32\IPSECSVC.DLL ### DLL du serveur SPD IPsec Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ipsecsvc.dll [Svchost DLLs] :HKLM Power=C:\WINDOWS\System32\UMPO.DLL ### Service d’alimentation en mode utilisateur Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\umpo.dll [Svchost DLLs] :HKLM PrintDeviceConfigurationService=C:\WINDOWS\System32\PRINTDEVICECONFIGURATIONSERVICE.DLL ### PrintDeviceConfigurationService dll Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\PrintDeviceConfigurationService.dll [Svchost DLLs] :HKLM PrintNotify=C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\PRINTCONFIG.DLL ### Interface utilisateur PrintConfig Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2033 !$*C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll [Svchost DLLs] :HKLM PrintScanBrokerService=C:\WINDOWS\System32\PRINTSCANBROKERSERVICE.DLL ### Service Broker Microsoft Windows PrintScan interne Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\PrintScanBrokerService.dll [Svchost DLLs] :HKLM ProfSvc=C:\WINDOWS\System32\PROFSVC.DLL ### ProfSvc Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\profsvc.dll [Svchost DLLs] :HKLM PushToInstall=C:\WINDOWS\System32\PUSHTOINSTALL.DLL ### PushToInstall Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\PushToInstall.dll [Svchost DLLs] :HKLM RemoteRegistry=C:\WINDOWS\System32\REGSVC.DLL ### Service d’accès à distance au Registre Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\regsvc.dll [Svchost DLLs] :HKLM RetailDemo=C:\WINDOWS\System32\RDXSERVICE.DLL ### RDXService Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\RDXService.dll [Svchost DLLs] :HKLM RmSvc=C:\WINDOWS\System32\RMAPI.DLL ### Radio Manager API Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\RMapi.dll [Svchost DLLs] :HKLM RpcEptMapper=C:\WINDOWS\System32\RPCEPMAP.DLL ### Mappeur de point de terminaison RPC Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\RpcEpMap.dll [Svchost DLLs] :HKLM SDRSVC=C:\WINDOWS\System32\SDRSVC.DLL ### Service de sauvegarde Microsoft® Windows Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%Systemroot%\System32\SDRSVC.dll [Svchost DLLs] :HKLM seclogon=C:\WINDOWS\SYSTEM32\SECLOGON.DLL ### DLL de service d’ouverture de session secondaire Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->SECLOGON.EXE =>SECLOGON.EXE.MUI !$*%windir%\system32\seclogon.dll [Svchost DLLs] :HKLM SEMgrSvc=C:\WINDOWS\System32\SEMGRSVC.DLL ### DLL du service de gestion des éléments sécurisés NFC Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\SEMgrSvc.dll [Svchost DLLs] :HKLM SensorService=C:\WINDOWS\System32\SENSORSERVICE.DLL ### Service de capteur Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\SensorService.dll [Svchost DLLs] :HKLM SensrSvc=C:\WINDOWS\System32\SENSRSVC.DLL ### Service de surveillance des capteurs Microsoft Windows Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 ->MICROSOFT WINDOWS SENSOR MONITORING SERVICE !$*%SystemRoot%\system32\sensrsvc.dll [Svchost DLLs] :HKLM shpamsvc=C:\WINDOWS\System32\WINDOWS.SHAREDPC.ACCOUNTMANAGER.DLL ### SharedPC.AccountManager Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->SHAREDPC.ACCOUNTMANAGER =>SHAREDPC.ACCOUNTMANAGER.DLL !$*%systemroot%\system32\Windows.SharedPC.AccountManager.dll [Svchost DLLs] :HKLM SmsRouter=C:\WINDOWS\System32\SMSROUTERSVC.DLL ### Service Routeur SMS Windows Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\SmsRouterSvc.dll [Svchost DLLs] :HKLM SstpSvc=C:\WINDOWS\System32\SSTPSVC.DLL ### Permet d’utiliser le protocole SSTP (Secure Socket Tunneling Protocol) pour se connecter à des ordinateurs distants (via un réseau VPN). Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\sstpsvc.dll [Svchost DLLs] :HKLM StorSvc=C:\WINDOWS\System32\STORSVC.DLL ### Services de stockage Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\storsvc.dll [Svchost DLLs] :HKLM svsvc=C:\WINDOWS\System32\SVSVC.DLL ### Microsoft\Vérificateur de points Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\svsvc.dll [Svchost DLLs] :HKLM swprv=C:\WINDOWS\System32\SWPRV.DLL ### Fournisseur logiciel du service Microsoft® de cliché instantané des volumes Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%Systemroot%\System32\swprv.dll [Svchost DLLs] :HKLM SysMain=C:\WINDOWS\System32\SYSMAIN.DLL ### Hôte de Service SysMain Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\sysmain.dll [Svchost DLLs] :HKLM SystemEventsBroker=C:\WINDOWS\System32\SYSTEMEVENTSBROKERSERVER.DLL ### Service Broker pour les événements système Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\SystemEventsBrokerServer.dll [Svchost DLLs] :HKLM TextInputManagementService=C:\WINDOWS\System32\TABSVC.DLL ### Service de gestion des entrées de texte Microsoft Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\TabSvc.dll [Svchost DLLs] :HKLM Themes=C:\WINDOWS\System32\THEMESERVICE.DLL ### DLL du service des thèmes Windows Shell Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\themeservice.dll [Svchost DLLs] :HKLM TimeBrokerSvc=C:\WINDOWS\System32\TIMEBROKERSERVER.DLL ### Service Broker pour les événements horaires Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\TimeBrokerServer.dll [Svchost DLLs] :HKLM TrkWks=C:\WINDOWS\System32\TRKWKS.DLL ### Client de suivi de lien distribué Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\trkwks.dll [Svchost DLLs] :HKLM TroubleshootingSvc=C:\WINDOWS\System32\MITIGATIONCLIENT.DLL ### MitigationClient Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\MitigationClient.dll [Svchost DLLs] :HKLM tzautoupdate=C:\WINDOWS\System32\TZAUTOUPDATE.DLL ### Programme de mise à jour automatique du fuseau horaire Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\tzautoupdate.dll [Svchost DLLs] :HKLM UdkUserSvc=C:\WINDOWS\System32\WINDOWSUDKSERVICES.SHELLCOMMON.DLL ### DLL Shellcommon des services du kit de développement sans station d’accueil Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->WINDOWS UNDOCKED DEV KIT SERVICES SHELLCOMMON DLL !$*%SystemRoot%\System32\windowsudkservices.shellcommon.dll [Svchost DLLs] :HKLM UmRdpService=C:\WINDOWS\System32\UMRDP.DLL ### Service Redirecteur de périphériques des services Bureau à distance Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\umrdp.dll [Svchost DLLs] :HKLM UnistoreSvc=C:\WINDOWS\System32\UNISTORE.DLL ### Magasin unifié Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\unistore.dll [Svchost DLLs] :HKLM UserDataSvc=C:\WINDOWS\System32\USERDATASERVICE.DLL ### Point de terminaison des API tierces permettant la lecture/écriture des données utilisateur Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\userdataservice.dll [Svchost DLLs] :HKLM UsoSvc=C:\WINDOWS\System32\USOSVC.DLL ### Mettre à jour la session du service Orchestrator Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 ->UPDATE SESSION ORCHESTRATOR SERVICE !$*%systemroot%\system32\usosvc.dll [Svchost DLLs] :HKLM VaultSvc=C:\WINDOWS\SYSTEM32\VAULTSVC.DLL ### Service de gestion des informations d’identification Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\Windows\System32\vaultsvc.dll [Svchost DLLs] :HKLM vmicguestinterface=C:\WINDOWS\System32\ICSVC.DLL ### Service de composants d'intégration d'ordinateur virtuel Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\icsvc.dll [Svchost DLLs] :HKLM vmicheartbeat=C:\WINDOWS\System32\ICSVC.DLL ### Service de composants d'intégration d'ordinateur virtuel Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\icsvc.dll [Svchost DLLs] :HKLM vmickvpexchange=C:\WINDOWS\System32\ICSVC.DLL ### Service de composants d'intégration d'ordinateur virtuel Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\icsvc.dll [Svchost DLLs] :HKLM vmicrdv=C:\WINDOWS\System32\ICSVCEXT.DLL ### Service de composants d’intégration d’ordinateur virtuel Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\icsvcext.dll [Svchost DLLs] :HKLM vmicshutdown=C:\WINDOWS\System32\ICSVC.DLL ### Service de composants d'intégration d'ordinateur virtuel Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\icsvc.dll [Svchost DLLs] :HKLM vmictimesync=C:\WINDOWS\System32\ICSVC.DLL ### Service de composants d'intégration d'ordinateur virtuel Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\icsvc.dll [Svchost DLLs] :HKLM vmicvmsession=C:\WINDOWS\System32\ICSVC.DLL ### Service de composants d'intégration d'ordinateur virtuel Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\icsvc.dll [Svchost DLLs] :HKLM vmicvss=C:\WINDOWS\System32\ICSVCVSS.DLL ### Service d’instantané de volume de composants d’intégration de machine virtuelle Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\icsvcvss.dll [Svchost DLLs] :HKLM W32Time=C:\WINDOWS\System32\W32TIME.DLL ### Service de temps Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\w32time.dll [Svchost DLLs] :HKLM WaaSMedicSvc=C:\WINDOWS\System32\WAASMEDICSVC.DLL ### Enables remediation and protection of Windows Update components. Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\System32\WaaSMedicSvc.dll [Svchost DLLs] :HKLM WalletService=C:\WINDOWS\System32\WALLETSERVICE.DLL ### Service Portefeuille Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 ->WALLET SERVICE !$*%SystemRoot%\system32\WalletService.dll [Svchost DLLs] :HKLM WarpJITSvc=C:\WINDOWS\System32\WINDOWS.WARP.JITSERVICE.DLL ### D3D10Warp JIT Service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\System32\Windows.WARP.JITService.dll [Svchost DLLs] :HKLM WbioSrvc=C:\WINDOWS\System32\WBIOSRVC.DLL ### Service de biométrie Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wbiosrvc.dll [Svchost DLLs] :HKLM Wcmsvc=C:\WINDOWS\System32\WCMSVC.DLL ### DLL du service de gestion des connexions Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wcmsvc.dll [Svchost DLLs] :HKLM WdiServiceHost=C:\WINDOWS\System32\WDI.DLL ### Infrastructure de diagnostics Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wdi.dll [Svchost DLLs] :HKLM WdiSystemHost=C:\WINDOWS\System32\WDI.DLL ### Infrastructure de diagnostics Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wdi.dll [Svchost DLLs] :HKLM webthreatdefsvc=C:\WINDOWS\System32\WEBTHREATDEFSVC.DLL ### Service Web Threat Defense Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\webthreatdefsvc.dll [Svchost DLLs] :HKLM webthreatdefusersvc=C:\WINDOWS\System32\WEBTHREATDEFUSERSVC.DLL ### Service d’utilisateur Web Threat Defense Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\webthreatdefusersvc.dll [Svchost DLLs] :HKLM WEPHOSTSVC=C:\WINDOWS\System32\WEPHOSTSVC.DLL ### Service hôte WEP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\wephostsvc.dll [Svchost DLLs] :HKLM wercplsupport=C:\WINDOWS\System32\WERCPLSUPPORT.DLL ### Rapports de problèmes Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->ERC !$*%SystemRoot%\System32\wercplsupport.dll [Svchost DLLs] :HKLM WerSvc=C:\WINDOWS\System32\WERSVC.DLL ### Service de rapport d’erreurs Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\WerSvc.dll [Svchost DLLs] :HKLM WFDSConMgrSvc=C:\WINDOWS\System32\WFDSCONMGRSVC.DLL ### Service Wi-Fi Direct Service de gestionnaire de connexions Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wfdsconmgrsvc.dll [Svchost DLLs] :HKLM wisvc=C:\WINDOWS\System32\FLIGHTSETTINGS.DLL ### Paramètres de vol Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\flightsettings.dll [Svchost DLLs] :HKLM wlidsvc=C:\WINDOWS\System32\WLIDSVC.DLL ### Service de compte Microsoft® Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wlidsvc.dll [Svchost DLLs] :HKLM wlpasvc=C:\WINDOWS\System32\LPASVC.DLL ### Service de l’Assistant de profil local Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\lpasvc.dll [Svchost DLLs] :HKLM WManSvc=C:\WINDOWS\System32\WINDOWS.MANAGEMENT.SERVICE.DLL ### DLL du Service de gestion de Windows Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\Windows.Management.Service.dll [Svchost DLLs] :HKLM workfolderssvc=C:\WINDOWS\System32\WORKFOLDERSSVC.DLL ### Service Dossiers de travail Microsoft (C) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*%systemroot%\system32\workfolderssvc.dll [Svchost DLLs] :HKLM WpcMonSvc=C:\WINDOWS\System32\WPCDESKTOPMONSVC.DLL ### WpcMonSvc.dll Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->WPCMONSVC.DLL !$*%SystemRoot%\System32\WpcDesktopMonSvc.dll [Svchost DLLs] :HKLM WpnUserService=C:\WINDOWS\System32\WPNUSERSERVICE.DLL ### Service utilisateur de notifications Push Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\WpnUserService.dll [Svchost DLLs] :HKLM WwanSvc=C:\WINDOWS\System32\WWANSVC.DLL ### Service de configuration automatique WWAN Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wwansvc.dll [Svchost DLLs] :HKLM XblAuthManager=C:\WINDOWS\System32\XBLAUTHMANAGER.DLL ### Xbox Live Auth Manager Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*%SystemRoot%\System32\XblAuthManager.dll [Svchost DLLs] :HKLM XblGameSave=C:\WINDOWS\System32\XBLGAMESAVE.DLL ### Xbox Live Game Save Service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 ->XBOX LIVE GAME SAVE SERVICE !$*%SystemRoot%\System32\XblGameSave.dll [Svchost DLLs] :HKLM XboxGipSvc=C:\WINDOWS\System32\XBOXGIPSVC.DLL ### Xbox Gip Management Service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 ->XBOX GIP MANAGEMENT SERVICE !$*%SystemRoot%\System32\XboxGipSvc.dll [Svchost DLLs] :HKLM XboxNetApiSvc=C:\WINDOWS\System32\XBOXNETAPISVC.DLL ### Xbox Live Networking Service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 ->XBOX LIVE NETWORKING SERVICE !$*%SystemRoot%\system32\XboxNetApiSvc.dll [Bootexecute] :HKLM BootExecute=autocheck autochk * Partizan [Winlogon System] :HKLM system="" [Winlogon System] :HKLM taskman="" [Winlogon System] :HKLM UIHost="" [Winlogon Autostart] :HKLM VmApplet="" [Winlogon Autostart] :HKLM AppSetup="" [Environment - Path] :HKLM Path=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\AOMEI\AOMEI Backupper\7.3.3;C:\Program Files\dotnet\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Common Files\DivX Shared\DesktopService;C:\Program Files (x86)\Common Files\Acronis\SnapAPI\;C:\Program Files (x86)\Common Files\Acronis\VirtualFile\;C:\Program Files (x86)\Common Files\Acronis\VirtualFile64\ [List of Injected DLLs] :HKLM AppInit_DLLs="" [List of Injected DLLs(x64)] :HKLM AppInit_DLLs="" [LSA Notification Packages] :HKLM scecli=C:\WINDOWS\SysWOW64\SCECLI.DLL ### scecli Moteur du client de l’Éditeur de configuration de sécurité Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*scecli.dll [Print Providers] :HKLM Internet Print Provider=C:\WINDOWS\SYSTEM32\INETPP.DLL ### Display Name: HTTP Print Services * DLL du service d’impression Internet Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*inetpp.dll [Print Providers] :HKLM LanMan Print Services=C:\WINDOWS\SYSTEM32\WIN32SPL.DLL ### Display Name: LanMan Print Services * Fournisseur d’impression de rendu côté client Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*win32spl.dll [Eventlog Application DLL] :HKLM Acronis Backup and Recovery=C:\WINDOWS\System32\EVENTCREATE.EXE ### Event Create - crée un événement personnalisé dans un journal des événements Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 =>EVCREATE.EXE.MUI !$*%SystemRoot%\System32\EventCreate.exe [Eventlog Application DLL] :HKLM APC Data Service=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM APC UPS Service=C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\\RES.DLL ### PowerChute resources DLL Schneider Electric PowerChute Personal Edition 3.1.0 ->POWERCHUTE !$*C:\Program Files (x86)\APC\PowerChute Personal Edition\\Res.dll [Eventlog Application DLL] :HKLM Application Error=C:\WINDOWS\System32\WER.DLL ### DLL du rapport d’erreurs Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wer.dll [Eventlog Application DLL] :HKLM Application Hang=C:\WINDOWS\System32\WERSVC.DLL ### Service de rapport d’erreurs Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wersvc.dll [Eventlog Application DLL] :HKLM Application-Addon-Event-Provider=C:\WINDOWS\System32\IEFRAME.DLL ### Navigateur Internet Microsoft Corporation Internet Explorer 11.00.26100.2294 !$*%SystemRoot%\system32\ieframe.dll [Eventlog Application DLL] :HKLM ASP.NET 2.0.50727.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V2.0.50727\FR\ASPNET_RC.DLL ### aspnet_rc.dll Microsoft Corporation Microsoft® .NET Framework 2.0.50727.9157 !$*C:\WINDOWS\Microsoft.NET\Framework64\v2.0.50727\fr\aspnet_rc.dll [Eventlog Application DLL] :HKLM Avira Phantom VPN=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM AviraFallbackUpdater=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM AviraSecurity=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM Bonjour Service=C:\PROGRAM FILES\BONJOUR\MDNSRESPONDER.EXE ### Bonjour Service Apple Inc. Bonjour 3,0,0,10 !$*C:\Program Files\Bonjour\mDNSResponder.exe [Eventlog Application DLL] :HKLM CardSpace 4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM CardSpace 4.0.0.0=C:\Windows\System32\icardres.dll ### File is missing. !$*C:\Windows\System32\icardres.dll [Eventlog Application DLL] :HKLM Chkdsk=C:\WINDOWS\System32\ULIB.DLL ### DLL de gestion des utilitaires de fichiers Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ulib.dll [Eventlog Application DLL] :HKLM Chrome=C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\129.0.6668.101\EVENTLOG_PROVIDER.DLL ### Google Chrome Google LLC Google Chrome 129.0.6668.101 ->EVENTLOG_PROVIDER_DLL !$*C:\Program Files\Google\Chrome\Application\129.0.6668.101\eventlog_provider.dll [Eventlog Application DLL] :HKLM COM+ SOAP Services=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM DCAgent=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM Desktop Window Manager=C:\WINDOWS\System32\DWM.EXE ### Gestionnaire de fenêtres du Bureau Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\dwm.exe [Eventlog Application DLL] :HKLM DiskQuota=C:\WINDOWS\System32\DSKQUOTA.DLL ### DLL Windows Shell de prise en charge de quota de disque Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\dskquota.dll [Eventlog Application DLL] :HKLM Dwminit=C:\WINDOWS\System32\DWMINIT.DLL ### DWMInit Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\dwminit.dll [Eventlog Application DLL] :HKLM Edge=C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\129.0.2792.89\EVENTLOG_PROVIDER.DLL ### Microsoft Edge Microsoft Corporation Microsoft Edge 129.0.2792.89 ->EVENTLOG_PROVIDER_DLL !$*C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.89\eventlog_provider.dll [Eventlog Application DLL] :HKLM edgeupdate=C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\1.3.195.25\MSEDGEUPDATE.DLL ### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.195.25 ->MICROSOFT EDGE UPDATE !$*C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.195.25\msedgeupdate.dll [Eventlog Application DLL] :HKLM edgeupdatem=C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\1.3.195.25\MSEDGEUPDATE.DLL ### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.195.25 ->MICROSOFT EDGE UPDATE !$*C:\Program Files (x86)\Microsoft\EdgeUpdate\1.3.195.25\msedgeupdate.dll [Eventlog Application DLL] :HKLM EpicOnlineServices=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM Error Instrument=C:\WINDOWS\System32\USER32.DLL ### DLL client de l’API uilisateur de Windows multi-utilisateurs Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\user32.dll [Eventlog Application DLL] :HKLM ESENT=C:\WINDOWS\System32\ESENT.DLL ### Moteur de stockage extensible (ESE) pour Microsoft(R) Windows(R) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\esent.dll [Eventlog Application DLL] :HKLM Folder Redirection=C:\WINDOWS\System32\FDEPLOY.DLL ### Extension Stratégie de groupe de redirection de dossier Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\fdeploy.dll [Eventlog Application DLL] :HKLM GamingApp_Service=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM LBTServ="c:\program files\common files\logishrd\bluetooth\LBTServMsg.dll ### File is missing. !$*"c:\program files\common files\logishrd\bluetooth\LBTServMsg.dll [Eventlog Application DLL] :HKLM LightKeeperService=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM Lync=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\1036\UCCAPIRES.DLL ### Skype Entreprise Microsoft Corporation Microsoft Office 16.0.16626.20076 !$*C:\Program Files\Microsoft Office\root\Office16\1036\UCCAPIRES.DLL [Eventlog Application DLL] :HKLM LyncPlatform=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\1036\LYNCDESKTOPRESOURCES.DLL ### Skype for Business Microsoft Corporation Microsoft Office 16.0.16626.20076 !$*C:\Program Files\Microsoft Office\root\Office16\1036\LYNCDESKTOPRESOURCES.DLL [Eventlog Application DLL] :HKLM Microsoft Office 16=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESCOMMONX64\MICROSOFT SHARED\OFFICE16\MSORES.DLL ### Microsoft Office component Microsoft Corporation Microsoft Office 16.0.18025.20090 !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\MSORES.DLL [Eventlog Application DLL] :HKLM Microsoft Office 16=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESCOMMONX64\MICROSOFT SHARED\DW\DW20.EXE ### Microsoft Office component Microsoft Corporation Microsoft Office 16.0.17425.20008 !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\DW\DW20.EXE [Eventlog Application DLL] :HKLM Microsoft-Windows-ApplicationExperienceInfrastructure=C:\WINDOWS\System32\APPHELP.DLL ### Fichier DLL du client de compatibilité des applications Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\apphelp.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-AppModel-Runtime=C:\WINDOWS\System32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL ### Microsoft-Windows-Système-Ressources des événements Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\Microsoft-Windows-System-Events.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-AppModel-State=C:\WINDOWS\System32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL ### Microsoft-Windows-Système-Ressources des événements Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\Microsoft-Windows-System-Events.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Audio=C:\WINDOWS\System32\AUDIOSES.DLL ### Session audio Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->AUDIOSESSION !$*%SystemRoot%\System32\audioses.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Audit-CVE=C:\WINDOWS\System32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL ### Microsoft-Windows-Système-Ressources des événements Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\Microsoft-Windows-System-Events.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-AxInstallService=C:\WINDOWS\System32\AXINSTSV.DLL ### Service de l’installateur ActiveX Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\AxInstSv.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Backup=C:\WINDOWS\SYSTEM32\BLBEVENTS.DLL ### Blb Publisher Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\BlbEvents.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-CAPI2=C:\WINDOWS\System32\CRYPT32.DLL ### Crypto API32 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\crypt32.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-CertificateServicesClient=C:\WINDOWS\System32\DIMSJOB.DLL ### DLL des travaux du service de gestion d’identité numérique (DIMS) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\dimsjob.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-CertificateServicesClient-AutoEnrollment=C:\WINDOWS\System32\PAUTOENR.DLL ### DLL Inscription automatique Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->AUTO ENROLLMENT DLL !$*%SystemRoot%\system32\pautoenr.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-CertificateServicesClient-CertEnroll=C:\WINDOWS\System32\CERTENROLL.DLL ### Client d’inscription des services de certificats de Microsoft® Active Directory Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\certenroll.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-CertificateServicesClient-CredentialRoaming=C:\WINDOWS\System32\DIMSROAM.DLL ### DLL du fournisseur du service de gestion d’identité numérique (DIMS) de clés communes Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\dimsroam.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-CertificationAuthorityClient-CertCli=C:\WINDOWS\System32\CERTCLI.DLL ### Client Microsoft® Active Directory Certificate Services Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\certcli.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-COMRuntime=C:\WINDOWS\System32\COMBASE.DLL ### Microsoft COM pour Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\combase.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-DeliveryOptimization=C:\WINDOWS\System32\DOSVC.DLL ### Optimisation de livraison Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\dosvc.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-DirectShow-Core=C:\WINDOWS\System32\QUARTZ.DLL ### Module d’exécution DirectShow. Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\quartz.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-DirectShow-KernelSupport=C:\WINDOWS\System32\KSPROXY.AX ### WDM Streaming ActiveMovie Proxy Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*%SystemRoot%\System32\ksproxy.ax [Eventlog Application DLL] :HKLM Microsoft-Windows-EapHost=C:\WINDOWS\System32\EAPSVC.DLL ### Service EAPHost Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\eapsvc.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-EFS=C:\WINDOWS\System32\EFSCORE.DLL ### Bibliothèque principale EFS Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\efscore.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-EventCollector=C:\WINDOWS\System32\WECSVC.DLL ### Service Collecteur d’événements Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wecsvc.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Folder Redirection=C:\WINDOWS\System32\FDEPLOY.DLL ### Extension Stratégie de groupe de redirection de dossier Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\fdeploy.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Immersive-Shell=C:\WINDOWS\System32\TWINUI.APPCORE.DLL ### TWINUI.APPCORE Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\twinui.appcore.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-PDH=C:\WINDOWS\System32\PDH.DLL ### DLL d’application d’assistance Windows pour les données de performance Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\pdh.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-PerfDisk=C:\WINDOWS\System32\PERFDISK.DLL ### DLL d’objets Performance de disque Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\perfdisk.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Perflib=C:\WINDOWS\System32\PRFLBMSG.DLL ### Messages d’événements Perflib Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\prflbmsg.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-PerfNet=C:\WINDOWS\System32\PERFNET.DLL ### DLL d’objets Performance de service réseau Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\perfnet.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-PerfOS=C:\WINDOWS\System32\PERFOS.DLL ### DLL d’objets Performances système Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\perfos.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-PerfProc=C:\WINDOWS\System32\PERFPROC.DLL ### DLL d’objets Performances de processus système Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\perfproc.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-ProcessExitMonitor=C:\WINDOWS\System32\WERFAULT.EXE ### Rapports de problèmes Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\werfault.exe [Eventlog Application DLL] :HKLM Microsoft-Windows-RemoteApp and Desktop Connections=C:\WINDOWS\System32\TSWORKSPACE.DLL ### Composant Connexion RemoteApp et Bureau à distance Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\TSWorkspace.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-RemoteAssistance=C:\WINDOWS\System32\MSRA.EXE ### Assistance à distance Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\system32\msra.exe [Eventlog Application DLL] :HKLM Microsoft-Windows-RestartManager=C:\WINDOWS\System32\RSTRTMGR.DLL ### Gestionnaire de démarrage Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\RstrtMgr.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-RPC-Events=C:\WINDOWS\System32\RPCRT4.DLL ### Runtime d’appel de procédure distante Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\rpcrt4.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Search=C:\WINDOWS\System32\TQUERY.DLL ### Microsoft Tripoli Query Microsoft Corporation Windows® Search 7.0.26100.2294 !$*%SystemRoot%\system32\tquery.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Security-EnterpriseData-FileRevocationManager=C:\WINDOWS\System32\EFSWRT.DLL ### Storage Protection Windows Runtime DLL Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\system32\efswrt.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Security-SPP=C:\WINDOWS\SYSTEM32\SPPSVC.EXE ### Service de la plateforme de protection logicielle Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\sppsvc.exe [Eventlog Application DLL] :HKLM Microsoft-Windows-SoftwareRestrictionPolicies=C:\WINDOWS\System32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL ### Microsoft-Windows-Système-Ressources des événements Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\Microsoft-Windows-System-Events.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Spell-Checking=C:\WINDOWS\System32\MSSPELLCHECKINGFACILITY.DLL ### Fonctions de vérification de l’orthographe Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\System32\MsSpellCheckingFacility.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-SpellChecker=C:\WINDOWS\System32\MSSPELLCHECKINGFACILITY.DLL ### Fonctions de vérification de l’orthographe Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\System32\MsSpellCheckingFacility.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Spellchecking-Host=C:\WINDOWS\System32\MSSPELLCHECKINGHOST.EXE ### Microsoft Spell Checking Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*%systemroot%\System32\MsSpellCheckingHost.exe [Eventlog Application DLL] :HKLM Microsoft-Windows-System-Restore=C:\WINDOWS\SYSTEM32\SREVENTS.DLL ### SrEvents Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*%windir%\system32\SrEvents.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-TerminalServices-ClientActiveXCore=C:\WINDOWS\System32\MSTSCAX.DLL ### Client ActiveX des services Bureau à distance Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\mstscax.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-User Profiles General=C:\WINDOWS\System32\USERENV.DLL ### Userenv Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\userenv.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-User Profiles Service=C:\WINDOWS\System32\PROFSVC.DLL ### ProfSvc Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\profsvc.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-User-Loader=C:\WINDOWS\System32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL ### Microsoft-Windows-Système-Ressources des événements Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\Microsoft-Windows-System-Events.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-Video-For-Windows=C:\WINDOWS\System32\MCIAVI32.DLL ### Pilote MCI Video for Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\mciavi32.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-WindowsSystemAssessmentTool=C:\WINDOWS\System32\WINSAT.EXE ### Outil d’évaluation du système Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\WINSAT.EXE [Eventlog Application DLL] :HKLM Microsoft-Windows-Winsrv=C:\WINDOWS\System32\WINSRV.DLL ### DLL serveur de Windows multi-utilisateurs Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\winsrv.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-WMI=C:\WINDOWS\System32\WBEM\WINMGMTR.DLL ### WMI Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wbem\WinMgmtR.dll [Eventlog Application DLL] :HKLM Microsoft-Windows-XWizards=C:\WINDOWS\SYSTEM32\XWIZARDS.DLL ### Module Gestionnaire d’Assistants extensible Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\xwizards.dll [Eventlog Application DLL] :HKLM Microsoft.Transactions.Bridge 3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 3.0.4506.9151 !$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM Microsoft.Transactions.Bridge 4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM MSI_ActiveX_Service=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM MSI_Case_Service=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM MSSOAP=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESCOMMONX64\MICROSOFT SHARED\OFFICE16\MSSOAP30.DLL ### Microsoft Office Soap SDK Microsoft Corporation Microsoft Office 16.0.17425.20008 ->MSOSOAP30 =>MSOSOAP30.DLL !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\MSSOAP30.DLL [Eventlog Application DLL] :HKLM MysticLight2_Service=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM NeroBackItUpBackgroundService2021=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM NeroBackItUpBackgroundService2022=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM NVIDIA OpenGL Driver=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NV_DISPSI.INF_AMD64_681B5907A11E1C87\NVOGLV32.DLL ### NVIDIA Compatible OpenGL ICD NVIDIA Corporation NVIDIA Compatible OpenGL ICD 32.0.15.6109 !$*C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispsi.inf_amd64_681b5907a11e1c87\nvoglv32.dll [Eventlog Application DLL] :HKLM Outlook=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\1036\MAPIR.DLL ### ExOlk Intl Pluggable UI Microsoft Corporation Microsoft Outlook 16.0.17425.20008 !$*C:\Program Files\Microsoft Office\root\Office16\1036\MAPIR.DLL [Eventlog Application DLL] :HKLM Profsvc=C:\WINDOWS\System32\PROFSVC.DLL ### ProfSvc Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\profsvc.dll [Eventlog Application DLL] :HKLM SceCli=C:\WINDOWS\System32\SCECLI.DLL ### Moteur du client de l’Éditeur de configuration de sécurité Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\scecli.dll [Eventlog Application DLL] :HKLM SceSrv=C:\WINDOWS\System32\SCESRV.DLL ### Moteur de l’Éditeur de configuration de sécurité Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\scesrv.dll [Eventlog Application DLL] :HKLM SecurityCenter=C:\WINDOWS\System32\WSCSVC.DLL ### Service Centre de sécurité de Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wscsvc.dll [Eventlog Application DLL] :HKLM Service1=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM ServiceModel Audit 3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 3.0.4506.9151 !$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM ServiceModel Audit 4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM SideBySide=C:\WINDOWS\System32\SXS.DLL ### Fusion 2.5 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\sxs.dll [Eventlog Application DLL] :HKLM Software Protection Platform Service=C:\WINDOWS\System32\SPPSVC.EXE ### Service de la plateforme de protection logicielle Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\sppsvc.exe [Eventlog Application DLL] :HKLM SpeechRuntime=C:\WINDOWS\SYSTEM32\SPEECH_ONECORE\COMMON\SAPI_ONECORE.DLL ### Speech API Microsoft Corporation Microsoft® Speech Recognizer 11.1 5.3.26100.1882 ->SAPI.DLL !$*C:\Windows\System32\Speech_OneCore\Common\sapi_onecore.dll [Eventlog Application DLL] :HKLM Steam Client Service=C:\PROGRAM FILES (X86)\STEAM\BIN\STEAMSERVICE.EXE ### Steam Client Service Valve Corporation Steam Client Service 01.00.00.01 ->STEAM CLIENT SERVICE (BUILDBOT_STEAM-RELCLIENT-W32.BUILD.VALVE.ORG_STEAM_REL_CLIENT_WIN32@STEAM-RELCLIENT-W32) !$*C:\Program Files (x86)\Steam\bin\steamservice.exe [Eventlog Application DLL] :HKLM Surfshark Service=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM System.IdentityModel 3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 3.0.4506.9151 !$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM System.IdentityModel 4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM System.IO.Log 3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 3.0.4506.9151 !$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM System.IO.Log 4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM System.Runtime.Serialization 3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 3.0.4506.9151 !$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM System.Runtime.Serialization 4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM System.ServiceModel 3.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 3.0.4506.9151 !$*C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM System.ServiceModel 4.0.0.0=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL ### Descriptions des événements associés à ServiceModel Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ServiceModelEvents.dll [Eventlog Application DLL] :HKLM usbperf=C:\WINDOWS\System32\USBPERF.DLL ### DLL des objets de performance USB Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\usbperf.dll [Eventlog Application DLL] :HKLM Userenv=C:\WINDOWS\System32\USERENV.DLL ### Userenv Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\userenv.dll [Eventlog Application DLL] :HKLM VBRuntime=C:\WINDOWS\SYSWOW64\MSVBVM60.DLL ### Visual Basic Virtual Machine Microsoft Corporation Visual Basic 6.00.9848 !$*C:\Windows\SysWOW64\msvbvm60.dll [Eventlog Application DLL] :HKLM VSSetup=c:\cacec8c5581626bd7cdb60\DW\DW20.exe ### File is missing. !$*c:\cacec8c5581626bd7cdb60\DW\DW20.exe [Eventlog Application DLL] :HKLM VSTO 4.0=C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\VSTO\10.0\VSTOMESSAGEPROVIDER.DLL ### Visual Studio Tools for Office Message Provider Microsoft Corporation Microsoft® Visual Studio® 2010 10.0.60910.0 !$*c:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\VSTOMessageProvider.dll [Eventlog Application DLL] :HKLM Windows Error Reporting=C:\WINDOWS\System32\WER.DLL ### DLL du rapport d’erreurs Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\system32\wer.dll [Eventlog Application DLL] :HKLM Windows Memory Cleaner=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM Wininit=C:\WINDOWS\System32\WININIT.EXE ### Application de démarrage de Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wininit.exe [Eventlog Application DLL] :HKLM Winlogon=C:\WINDOWS\System32\WINLOGON.EXE ### Application d’ouverture de session Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\winlogon.exe [Eventlog Application DLL] :HKLM Wlclntfy=C:\WINDOWS\System32\WINLOGON.EXE ### Application d’ouverture de session Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\winlogon.exe [Eventlog Application DLL] :HKLM WMI.NET Provider Extension=C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL ### EventLogMessages.dll Microsoft Corporation Microsoft® .NET Framework 4.8.9032.0 !$*C:\Windows\Microsoft.NET\Framework64\v4.0.30319\EventLogMessages.dll [Eventlog Application DLL] :HKLM Wow64 Emulation Layer=C:\WINDOWS\System32\NTVDM64.DLL ### Émulation 16 bits sur NT64 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\ntvdm64.dll [Eventlog Application DLL] :HKLM WSH=C:\WINDOWS\System32\WSHEXT.DLL ### Microsoft ® Shell Extension for Windows Script Host Microsoft Corporation Microsoft ® Windows Script Host 5.812.10240.16384 !$*%SystemRoot%\System32\wshext.dll [Drivers] :HKLM 1394ohci=C:\WINDOWS\SYSTEM32\DRIVERS\1394OHCI.SYS ### 1394 OpenHCI Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\1394ohci.sys [Drivers] :HKLM 3ware=C:\WINDOWS\SYSTEM32\DRIVERS\3WARE.SYS ### LSI 3ware SCSI Storport Driver LSI LSI 3ware RAID Controller WindowsBlue !$*C:\WINDOWS\System32\drivers\3ware.sys [Drivers] :HKLM ACPI=C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS ### Pilote ACPI pour NT Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\ACPI.sys [Drivers] :HKLM AcpiDev=C:\WINDOWS\SYSTEM32\DRIVERS\ACPIDEV.SYS ### ACPI Devices Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\AcpiDev.sys [Drivers] :HKLM acpiex=C:\WINDOWS\SYSTEM32\DRIVERS\ACPIEX.SYS ### ACPIEx Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\Drivers\acpiex.sys [Drivers] :HKLM acpipagr=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\ACPIPAGR.INF_AMD64_D1093347A27FF89C\ACPIPAGR.SYS ### ACPI Processor Aggregator Device Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\acpipagr.inf_amd64_d1093347a27ff89c\acpipagr.sys [Drivers] :HKLM AcpiPmi=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\ACPIPMI.INF_AMD64_3CED06EB61DCC792\ACPIPMI.SYS ### ACPI Power Metering Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\acpipmi.inf_amd64_3ced06eb61dcc792\acpipmi.sys [Drivers] :HKLM acpitime=C:\WINDOWS\SYSTEM32\DRIVERS\ACPITIME.SYS ### ACPI Wake Alarm Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\acpitime.sys [Drivers] :HKLM Acx01000=C:\WINDOWS\SYSTEM32\DRIVERS\ACX01000.SYS ### Audio KMDF Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\Acx01000.sys [Drivers] :HKLM ADP80XX=C:\WINDOWS\SYSTEM32\DRIVERS\ADP80XX.SYS ### PMC-Sierra Storport Driver For SPC8x6G SAS/SATA controller PMC-Sierra PMC-Sierra HBA Controller 1.3.0.10769 !$*C:\WINDOWS\System32\drivers\ADP80XX.SYS [Drivers] :HKLM AFD=C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS ### Pilote de fonction connexe pour WinSock Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*\SystemRoot\system32\drivers\afd.sys [Drivers] :HKLM afunix=C:\WINDOWS\SYSTEM32\DRIVERS\AFUNIX.SYS ### AF_UNIX socket provider Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\system32\drivers\afunix.sys [Drivers] :HKLM ahcache=C:\WINDOWS\SYSTEM32\DRIVERS\AHCACHE.SYS ### Application Compatibility Cache Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\DRIVERS\ahcache.sys [Drivers] :HKLM ambakdrv=C:\WINDOWS\SYSTEM32\AMBAKDRV.SYS ### !$*C:\WINDOWS\system32\ambakdrv.sys [Drivers] :HKLM amdgpio2=C:\WINDOWS\SYSTEM32\DRIVERS\AMDGPIO2.SYS ### AMD GPIO Controller Driver Advanced Micro Devices, Inc AMD GPIO Controller Driver 2.2.0.133 !$*\SystemRoot\System32\drivers\amdgpio2.sys [Drivers] :HKLM amdgpio3=C:\WINDOWS\SYSTEM32\DRIVERS\AMDGPIO3.SYS ### AMD GPIO Driver Advanced Micro Devices, Inc AMD GPIO Controller Driver 3.0.0.0000 !$*\SystemRoot\System32\drivers\amdgpio3.sys [Drivers] :HKLM amdi2c=C:\WINDOWS\SYSTEM32\DRIVERS\AMDI2C.SYS ### AMD I2C Controller Driver Advanced Micro Devices, Inc AMD I2C Controller Driver 1.2.0.99 !$*\SystemRoot\System32\drivers\amdi2c.sys [Drivers] :HKLM AmdK8=C:\WINDOWS\SYSTEM32\DRIVERS\AMDK8.SYS ### Processor Device Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\amdk8.sys [Drivers] :HKLM AMDPCIDev=C:\WINDOWS\SYSTEM32\DRIVERS\AMDPCIDEV.SYS ### AMD PCI Device driver Advanced Micro Devices AMD PCI Device driver 1.0.0.90 !$*\SystemRoot\System32\drivers\AMDPCIDev.sys [Drivers] :HKLM AmdPPM=C:\WINDOWS\SYSTEM32\DRIVERS\AMDPPM.SYS ### Processor Device Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\amdppm.sys [Drivers] :HKLM amdpsp=C:\WINDOWS\SYSTEM32\DRIVERS\AMDPSP.SYS ### amdpsp sys Advanced Micro Devices, Inc. Advanced Micro Devices, Inc. amdpsp sys 5.24.0.0 !$*C:\WINDOWS\System32\drivers\amdpsp.sys [Drivers] :HKLM AMDRyzenMasterDriverV26=C:\PROGRAM FILES\AMD\RYZENMASTERSDK\BIN\AMDRYZENMASTERDRIVER.SYS ### AMD Ryzen Master Service Driver Advanced Micro Devices AMD Ryzen Master Service Driver 2.6.0.0 !$*\??\C:\Program Files\AMD\RyzenMasterSDK\bin\AMDRyzenMasterDriver.sys [Drivers] :HKLM amdsata=C:\WINDOWS\SYSTEM32\DRIVERS\AMDSATA.SYS ### AHCI 1.3 Device Driver Advanced Micro Devices AHCI 1.3 Device Driver 1.1.3.277 !$*C:\WINDOWS\System32\drivers\amdsata.sys [Drivers] :HKLM amdsbs=C:\WINDOWS\SYSTEM32\DRIVERS\AMDSBS.SYS ### AMD Technology AHCI Compatible Controller Driver for Windows - AMD64 platform AMD Technologies Inc. AMD Technology AHCI Compatible Controller 3.7.1540.43 !$*C:\WINDOWS\System32\drivers\amdsbs.sys [Drivers] :HKLM amdwps=C:\WINDOWS\SYSTEM32\DRIVERS\AMDWPS.SYS ### AMD Workload Profiling Scheduling Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\amdwps.sys [Drivers] :HKLM amdxata=C:\WINDOWS\SYSTEM32\DRIVERS\AMDXATA.SYS ### Storage Filter Driver Advanced Micro Devices Storage Filter Driver 1.1.3.277 !$*C:\WINDOWS\System32\drivers\amdxata.sys [Drivers] :HKLM ammntdrv=C:\WINDOWS\SYSTEM32\AMMNTDRV.SYS ### !$*\??\C:\Windows\system32\ammntdrv.sys [Drivers] :HKLM ampa=C:\WINDOWS\SYSTEM32\AMPA.SYS ### !$*\??\C:\Windows\system32\ampa.sys [Drivers] :HKLM amwrtdrv=C:\WINDOWS\SYSTEM32\AMWRTDRV.SYS ### !$*\??\C:\Windows\system32\amwrtdrv.sys [Drivers] :HKLM AppID=C:\WINDOWS\SYSTEM32\DRIVERS\APPID.SYS ### AppID Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\appid.sys [Drivers] :HKLM AppleSSD=C:\WINDOWS\SYSTEM32\DRIVERS\APPLESSD.SYS ### Apple Solid State Drive Device Apple Inc. Boot Camp 6.1.0.0 !$*C:\WINDOWS\System32\drivers\AppleSSD.sys [Drivers] :HKLM applockerfltr=C:\WINDOWS\SYSTEM32\DRIVERS\APPLOCKERFLTR.SYS ### Applocker Filter Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\applockerfltr.sys [Drivers] :HKLM arcsas=C:\WINDOWS\SYSTEM32\DRIVERS\ARCSAS.SYS ### Adaptec SAS RAID WS03 Driver PMC-Sierra, Inc. Adaptec RAID Controller 7.5.0.32048 ->ARCSAS.SYS.B32048.MCB !$*C:\WINDOWS\System32\drivers\arcsas.sys [Drivers] :HKLM asmthub3=C:\WINDOWS\SYSTEM32\DRIVERS\ASMTHUB3.SYS ### ASMedia USB3 Hub Driver ASMedia Technology Inc ASMedia USB 3.1 Host Drivers V1.16.33 !$*\SystemRoot\System32\drivers\asmthub3.sys [Drivers] :HKLM asmtxhci=C:\WINDOWS\SYSTEM32\DRIVERS\ASMTXHCI.SYS ### ASMedia xHCI Host Controller Driver ASMedia Technology Inc ASMedia USB 3.1 Host Drivers V1.16.33 !$*\SystemRoot\System32\drivers\asmtxhci.sys [Drivers] :HKLM AsyncMac=C:\WINDOWS\SYSTEM32\DRIVERS\ASYNCMAC.SYS ### MS Remote Access serial network driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\asyncmac.sys [Drivers] :HKLM atapi=C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS ### ATAPI IDE Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\atapi.sys [Drivers] :HKLM b06bdrv=C:\WINDOWS\SYSTEM32\DRIVERS\BXVBDA.SYS ### QLogic Gigabit Ethernet VBD QLogic Corporation QLogic Gigabit Ethernet 7.12.31.105 !$*C:\WINDOWS\System32\drivers\bxvbda.sys [Drivers] :HKLM bam=C:\WINDOWS\SYSTEM32\DRIVERS\BAM.SYS ### BAM Kernel Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\bam.sys [Drivers] :HKLM BasicDisplay=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\BASICDISPLAY.INF_AMD64_A0AFD1C1603BC477\BASICDISPLAY.SYS ### Microsoft Basic Display Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_a0afd1c1603bc477\BasicDisplay.sys [Drivers] :HKLM BasicRender=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\BASICRENDER.INF_AMD64_5A35C75DB01C44C7\BASICRENDER.SYS ### Microsoft Basic Render Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\basicrender.inf_amd64_5a35c75db01c44c7\BasicRender.sys [Drivers] :HKLM bcmfn2=C:\WINDOWS\SYSTEM32\DRIVERS\BCMFN2.SYS ### BCM Function 2 Device Driver Windows (R) Win 7 DDK provider Windows (R) Win 7 DDK driver 6.3.9600.17336 !$*\SystemRoot\System32\drivers\bcmfn2.sys [Drivers] :HKLM BdNet=C:\WINDOWS\SYSTEM32\DRIVERS\BDNET.SYS ### Avira Network Filter Avira Operations GmbH Avira Product Family 2.6.0.51 !$*C:\WINDOWS\system32\DRIVERS\BdNet.sys [Drivers] :HKLM BdSentry=C:\WINDOWS\SYSTEM32\DRIVERS\BDSENTRY.SYS ### Avira Sentry Driver Avira Operations GmbH Avira Product Family 3.0.0.59 !$*C:\WINDOWS\system32\DRIVERS\BdSentry.sys [Drivers] :HKLM bfs=C:\WINDOWS\SYSTEM32\DRIVERS\BFS.SYS ### Pilote de filtre Bfs Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*\SystemRoot\system32\drivers\bfs.sys [Drivers] :HKLM bindflt=C:\WINDOWS\SYSTEM32\DRIVERS\BINDFLT.SYS ### Windows Bind Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\system32\drivers\bindflt.sys [Drivers] :HKLM bowser=C:\WINDOWS\SYSTEM32\DRIVERS\BOWSER.SYS ### NT Lan Manager Datagram Receiver Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->BROWSER.SYS !$*C:\WINDOWS\system32\DRIVERS\bowser.sys [Drivers] :HKLM BthA2dp=C:\WINDOWS\SYSTEM32\DRIVERS\BTHA2DP.SYS ### Bluetooth A2DP Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\BthA2dp.sys [Drivers] :HKLM BthEnum=C:\WINDOWS\SYSTEM32\DRIVERS\BTHENUM.SYS ### Extension de bus Bluetooth Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\BthEnum.sys [Drivers] :HKLM BthHFEnum=C:\WINDOWS\SYSTEM32\DRIVERS\BTHHFENUM.SYS ### Bluetooth Hands-Free Audio and Call Control HID Enumerator Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\bthhfenum.sys [Drivers] :HKLM BthLEEnum=C:\WINDOWS\SYSTEM32\DRIVERS\MICROSOFT.BLUETOOTH.LEGACY.LEENUMERATOR.SYS ### Legacy Bluetooth LE Bus Enumerator Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [Drivers] :HKLM BthMini=C:\WINDOWS\SYSTEM32\DRIVERS\BTHMINI.SYS ### Bluetooth Transport Extensibility Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\BTHMINI.sys [Drivers] :HKLM BTHMODEM=C:\WINDOWS\SYSTEM32\DRIVERS\BTHMODEM.SYS ### Bluetooth Communications Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\drivers\bthmodem.sys [Drivers] :HKLM BthPan=C:\WINDOWS\SYSTEM32\DRIVERS\BTHPAN.SYS ### Bluetooth Personal Area Networking Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\bthpan.sys [Drivers] :HKLM BTHPORT=C:\WINDOWS\SYSTEM32\DRIVERS\BTHPORT.SYS ### Pilote de bus Bluetooth Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\BTHport.sys [Drivers] :HKLM BTHUSB=C:\WINDOWS\SYSTEM32\DRIVERS\BTHUSB.SYS ### Pilote de Miniport Bluetooth Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\BTHUSB.sys [Drivers] :HKLM bttflt=C:\WINDOWS\SYSTEM32\DRIVERS\BTTFLT.SYS ### VHD BTT Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\bttflt.sys [Drivers] :HKLM buttonconverter=C:\WINDOWS\SYSTEM32\DRIVERS\BUTTONCONVERTER.SYS ### Button Converter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 ->BTNCONV.SYS !$*\SystemRoot\System32\drivers\buttonconverter.sys [Drivers] :HKLM CAD=C:\WINDOWS\SYSTEM32\DRIVERS\CAD.SYS ### Charge Arbiration Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\drivers\CAD.sys [Drivers] :HKLM CDD=C:\WINDOWS\SYSTEM32\CDD.DLL ### Pilote d'affichage canonique Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*\SystemRoot\System32\cdd.dll [Drivers] :HKLM cdfs=C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS ### CD-ROM File System Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\DRIVERS\cdfs.sys [Drivers] :HKLM cdrom=C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS ### SCSI CD-ROM Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\drivers\cdrom.sys [Drivers] :HKLM cht4iscsi=C:\WINDOWS\SYSTEM32\DRIVERS\CHT4SX64.SYS ### Chelsio iSCSI VMiniport Driver Chelsio Communications Chelsio Communications iSCSI Controller 10.0.10011.16384 ->CHT4ISCSI.SYS !$*C:\WINDOWS\System32\drivers\cht4sx64.sys [Drivers] :HKLM cht4vbd=C:\WINDOWS\SYSTEM32\DRIVERS\CHT4VX64.SYS ### Virtual Bus Driver for Chelsio ® T5/T6 Chipset Chelsio Communications Chelsio Communications Unified Network I/O Controller 10.0.10011.16384 ->CHT4VBD.SYS !$*\SystemRoot\System32\drivers\cht4vx64.sys [Drivers] :HKLM circlass=C:\WINDOWS\SYSTEM32\DRIVERS\CIRCLASS.SYS ### Consumer IR Class Driver for eHome Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\circlass.sys [Drivers] :HKLM CldFlt=C:\WINDOWS\SYSTEM32\DRIVERS\CLDFLT.SYS ### Cloud Files Mini Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*C:\WINDOWS\system32\drivers\cldflt.sys [Drivers] :HKLM CLFS=C:\WINDOWS\SYSTEM32\DRIVERS\CLFS.SYS ### Common Log File System Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*C:\WINDOWS\System32\drivers\CLFS.sys [Drivers] :HKLM CmBatt=C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS ### Control Method Battery Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\CmBatt.sys [Drivers] :HKLM CNG=C:\WINDOWS\SYSTEM32\DRIVERS\CNG.SYS ### Kernel Cryptography, Next Generation Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*C:\WINDOWS\System32\Drivers\cng.sys [Drivers] :HKLM cnghwassist=C:\WINDOWS\SYSTEM32\DRIVERS\CNGHWASSIST.SYS ### CNG Hardware Assist algorithm provider Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\DRIVERS\cnghwassist.sys [Drivers] :HKLM CompositeBus=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\COMPOSITEBUS.INF_AMD64_8CF6FA9D3AFDFA25\COMPOSITEBUS.SYS ### Multi-Transport Composite Bus Enumerator Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\compositebus.inf_amd64_8cf6fa9d3afdfa25\CompositeBus.sys [Drivers] :HKLM condrv=C:\WINDOWS\SYSTEM32\DRIVERS\CONDRV.SYS ### Console Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\condrv.sys [Drivers] :HKLM dam=C:\WINDOWS\SYSTEM32\DRIVERS\DAM.SYS ### DAM Kernel Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\dam.sys [Drivers] :HKLM dc1-controller=C:\WINDOWS\SYSTEM32\DRIVERS\DC1-CONTROLLER.SYS ### KMDF driver for DC1 Controller Microsoft Corp. DC1 Controller KMDF driver 1.0.0.1 ->DC1CONTROLLER.SYS !$*\SystemRoot\System32\drivers\dc1-controller.sys [Drivers] :HKLM ddmdrv=C:\WINDOWS\SYSTEM32\DDMDRV.SYS ### !$*\??\C:\Windows\system32\ddmdrv.sys [Drivers] :HKLM devmap=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\DEVMAP.INF_AMD64_1993197F4612E967\DEVMAP.SYS ### Device Mapper Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\devmap.inf_amd64_1993197f4612e967\devmap.sys [Drivers] :HKLM Dfsc=C:\WINDOWS\SYSTEM32\DRIVERS\DFSC.SYS ### DFS Namespace Client Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->DFSCLIENT.SYS !$*C:\WINDOWS\System32\Drivers\dfsc.sys [Drivers] :HKLM disk=C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS ### PnP Disk Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\disk.sys [Drivers] :HKLM DisplayMux=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\DISPLAYMUX.INF_AMD64_DA65A70F0C3CE0F3\DISPLAYMUX.SYS ### Display Mux Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\displaymux.inf_amd64_da65a70f0c3ce0f3\DisplayMux.sys [Drivers] :HKLM dmvsc=C:\WINDOWS\SYSTEM32\DRIVERS\DMVSC.SYS ### Mémoire dynamique Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\dmvsc.sys [Drivers] :HKLM drmkaud=C:\WINDOWS\SYSTEM32\DRIVERS\DRMKAUD.SYS ### Microsoft Trusted Audio Drivers Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\drmkaud.sys [Drivers] :HKLM DXGKrnl=C:\WINDOWS\SYSTEM32\DRIVERS\DXGKRNL.SYS ### DirectX Graphics Kernel Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\dxgkrnl.sys [Drivers] :HKLM ebdrv=C:\WINDOWS\SYSTEM32\DRIVERS\EVBDA.SYS ### QLogic 10 GigE VBD Marvell Semiconductor Inc. QLogic 10 GigE 7.13.171.102 ->EVBDA.SYS" FW VER:7.13.11.0 FW COMPILE:1 !$*C:\WINDOWS\System32\drivers\evbda.sys [Drivers] :HKLM ebdrv0=C:\WINDOWS\SYSTEM32\DRIVERS\EVBD0A.SYS ### QLogic 10 GigE VBD QLogic Corporation QLogic 10 GigE 7.13.65.105 ->EVBDA.SYS" FW VER:7.13.1.0 FW COMPILE:1 =>EVBDA.SYS !$*C:\WINDOWS\System32\drivers\evbd0a.sys [Drivers] :HKLM EhStorClass=C:\WINDOWS\SYSTEM32\DRIVERS\EHSTORCLASS.SYS ### Enhanced Storage Class driver for IEEE 1667 or TCG OPAL devices Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\EhStorClass.sys [Drivers] :HKLM EhStorTcgDrv=C:\WINDOWS\SYSTEM32\DRIVERS\EHSTORTCGDRV.SYS ### Microsoft driver for storage devices supporting IEEE 1667 and TCG protocols Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [Drivers] :HKLM ErrDev=C:\WINDOWS\SYSTEM32\DRIVERS\ERRDEV.SYS ### Error Device Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\errdev.sys [Drivers] :HKLM ExecutionContext=C:\WINDOWS\SYSTEM32\DRIVERS\EXECUTIONCONTEXT.SYS ### CPU Scheduler for High Performance I/O Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\Drivers\ExecutionContext.sys [Drivers] :HKLM fdc=C:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS ### Floppy Disk Controller Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\fdc.sys [Drivers] :HKLM FileCrypt=C:\WINDOWS\SYSTEM32\DRIVERS\FILECRYPT.SYS ### Windows sandboxing and encryption filter Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\filecrypt.sys [Drivers] :HKLM FileInfo=C:\WINDOWS\SYSTEM32\DRIVERS\FILEINFO.SYS ### FileInfo Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\fileinfo.sys [Drivers] :HKLM Filetrace=C:\WINDOWS\SYSTEM32\DRIVERS\FILETRACE.SYS ### File Trace Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\filetrace.sys [Drivers] :HKLM file_tracker=C:\WINDOWS\SYSTEM32\DRIVERS\FILE_TRACKER.SYS ### File tracker minifilter driver Acronis International GmbH File tracker minifilter driver 2.0.0.10037 !$*C:\WINDOWS\system32\DRIVERS\file_tracker.sys [Drivers] :HKLM flpydisk=C:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS ### Floppy Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 ->FLOPPY.SYS !$*\SystemRoot\System32\drivers\flpydisk.sys [Drivers] :HKLM FltMgr=C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS ### Gestionnaire de filtres de système de fichiers Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\fltmgr.sys [Drivers] :HKLM fltsrv=C:\WINDOWS\SYSTEM32\DRIVERS\FLTSRV.SYS ### Acronis Storage Filter Management Driver Acronis International GmbH Acronis Storage Filter Management 1.3.0.3380 !$*C:\WINDOWS\system32\DRIVERS\fltsrv.sys [Drivers] :HKLM FsDepends=C:\WINDOWS\SYSTEM32\DRIVERS\FSDEPENDS.SYS ### File System Dependency Manager Mini Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\FsDepends.sys [Drivers] :HKLM fvevol=C:\WINDOWS\SYSTEM32\DRIVERS\FVEVOL.SYS ### BitLocker Drive Encryption Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2294 !$*C:\WINDOWS\System32\DRIVERS\fvevol.sys [Drivers] :HKLM gameflt=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\GAMEFLT.INF_AMD64_25B1FE3637126834\GAMEFLT.SYS ### Gaming Filter Microsoft Corporation Microsoft Gaming Install Filter Driver 10.0.25398.3442 !$*\SystemRoot\System32\DriverStore\FileRepository\gameflt.inf_amd64_25b1fe3637126834\gameflt.sys [Drivers] :HKLM gencounter=C:\WINDOWS\SYSTEM32\DRIVERS\VMGENCOUNTER.SYS ### Virtual Machine Generation Counter Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\vmgencounter.sys [Drivers] :HKLM genericusbfn=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\GENERICUSBFN.INF_AMD64_7C70B7FB8F0E88FF\GENERICUSBFN.SYS ### Generic USB Function Class Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_7c70b7fb8f0e88ff\genericusbfn.sys [Drivers] :HKLM GenPass=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\GENPASS.INF_AMD64_0C82D80C9252C9BD\GENPASS.SYS ### Generic pass-through driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 ->UMPASS.SYS =>FUMPASS.SYS !$*C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_0c82d80c9252c9bd\genpass.sys [Drivers] :HKLM GPIOClx0101=C:\WINDOWS\SYSTEM32\DRIVERS\MSGPIOCLX.SYS ### GPIO Class Extension Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\Drivers\msgpioclx.sys [Drivers] :HKLM gpsvc=C:\WINDOWS\SYSTEM32\DRIVERS\MSGPIOCLX.SYS ### GPIO Class Extension Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\Drivers\msgpioclx.sys [Drivers] :HKLM GUBootStartup=C:\WINDOWS\SYSTEM32\DRIVERS\GUBOOTSTARTUP.SYS ### The driver for the Startup Manager tool Glarysoft Ltd Glary Utilities 1.2 ->BOOTSTARTUP.SYS =>BOOTSTARTUP !$*\??\C:\Windows\System32\drivers\GUBootStartup.sys [Drivers] :HKLM HdAudAddService=C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDIO.SYS ### High Definition Audio Function Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\HdAudio.sys [Drivers] :HKLM HDAudBus=C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS ### High Definition Audio Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\HDAudBus.sys [Drivers] :HKLM HidBatt=C:\WINDOWS\SYSTEM32\DRIVERS\HIDBATT.SYS ### Hid Battery Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\drivers\HidBatt.sys [Drivers] :HKLM HidBth=C:\WINDOWS\SYSTEM32\DRIVERS\HIDBTH.SYS ### Pilote de miniport Bluetooth pour les périphériques HID Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\hidbth.sys [Drivers] :HKLM hidi2c=C:\WINDOWS\SYSTEM32\DRIVERS\HIDI2C.SYS ### I2C HID Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\hidi2c.sys [Drivers] :HKLM hidinterrupt=C:\WINDOWS\SYSTEM32\DRIVERS\HIDINTERRUPT.SYS ### HID Button over Interrupt Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\hidinterrupt.sys [Drivers] :HKLM HidIr=C:\WINDOWS\SYSTEM32\DRIVERS\HIDIR.SYS ### Infrared Miniport Driver for Input Devices Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\hidir.sys [Drivers] :HKLM hidspi=C:\WINDOWS\SYSTEM32\DRIVERS\HIDSPI.SYS ### SPI HID Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\hidspi.sys [Drivers] :HKLM HidSpiCx=C:\WINDOWS\SYSTEM32\DRIVERS\HIDSPICX.SYS ### HidSpi KMDF Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\HidSpiCx.sys [Drivers] :HKLM HidUsb=C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS ### USB Miniport Driver for Input Devices Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\hidusb.sys [Drivers] :HKLM HpSAMD=C:\WINDOWS\SYSTEM32\DRIVERS\HPSAMD.SYS ### Smart Array SAS/SATA Controller Media Driver Hewlett-Packard Company Smart Array SAS/SATA Controller Media Driver 8.0.4.0 Build 1 Media Driver (x86-64) !$*C:\WINDOWS\System32\drivers\HpSAMD.sys [Drivers] :HKLM Hsp=C:\WINDOWS\SYSTEM32\DRIVERS\HSP.SYS ### HSP Device Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\Hsp.sys [Drivers] :HKLM HTTP=C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS ### HTTP Pile du protocole Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\HTTP.sys [Drivers] :HKLM hvcrash=C:\WINDOWS\SYSTEM32\DRIVERS\HVCRASH.SYS ### Hyper-V Crashdump Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\hvcrash.sys [Drivers] :HKLM hvservice=C:\WINDOWS\SYSTEM32\DRIVERS\HVSERVICE.SYS ### Hypervisor Boot Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\drivers\hvservice.sys [Drivers] :HKLM HwNClx0101=C:\WINDOWS\SYSTEM32\DRIVERS\MSHWNCLX.SYS ### Hardware Notification Class Extension Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\Drivers\mshwnclx.sys [Drivers] :HKLM hwpolicy=C:\WINDOWS\SYSTEM32\DRIVERS\HWPOLICY.SYS ### Hardware Policy Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\hwpolicy.sys [Drivers] :HKLM hyperkbd=C:\WINDOWS\SYSTEM32\DRIVERS\HYPERKBD.SYS ### Microsoft VMBus Synthetic Keyboard Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\hyperkbd.sys [Drivers] :HKLM HyperVideo=C:\WINDOWS\SYSTEM32\DRIVERS\HYPERVIDEO.SYS ### Microsoft VMBus Video Device Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\HyperVideo.sys [Drivers] :HKLM I3CHost=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\I3CHOST.INF_AMD64_71FB35D9EBCBE45B\I3CHOST.SYS ### I3C HostController Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\DriverStore\FileRepository\i3chost.inf_amd64_71fb35d9ebcbe45b\I3CHost.sys [Drivers] :HKLM i8042prt=C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS ### Pilote de port i8042 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\i8042prt.sys [Drivers] :HKLM iagpio=C:\WINDOWS\SYSTEM32\DRIVERS\IAGPIO.SYS ### Intel(R) Serial IO GPIO Controller Driver Intel(R) Corporation Intel(R) Serial IO GPIO Controller Driver 1.1.1.0 !$*\SystemRoot\System32\drivers\iagpio.sys [Drivers] :HKLM iai2c=C:\WINDOWS\SYSTEM32\DRIVERS\IAI2C.SYS ### Intel(R) Serial IO I2C Driver Intel(R) Corporation Intel(R) Serial IO I2C Driver 1.1.1.0 !$*\SystemRoot\System32\drivers\iai2c.sys [Drivers] :HKLM iaLPSS2i_GPIO2=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2.SYS ### Intel(R) Serial IO GPIO Driver v2 Intel Corporation Intel(R) Serial IO Driver 30.100.1816.3 !$*\SystemRoot\System32\drivers\iaLPSS2i_GPIO2.sys [Drivers] :HKLM iaLPSS2i_GPIO2_BXT_P=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2_BXT_P.SYS ### Intel(R) Serial IO GPIO Driver v2 Intel Corporation Intel(R) Serial IO Driver 30.100.1816.1 !$*\SystemRoot\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Drivers] :HKLM iaLPSS2i_GPIO2_CNL=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2_CNL.SYS ### Intel(R) Serial IO GPIO Driver v2 Intel Corporation Intel(R) Serial IO Driver 30.100.1816.3 !$*\SystemRoot\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Drivers] :HKLM iaLPSS2i_GPIO2_GLK=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2_GLK.SYS ### Intel(R) Serial IO GPIO Driver v2 Intel Corporation Intel(R) Serial IO Driver 30.100.1820.1 !$*\SystemRoot\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Drivers] :HKLM iaLPSS2i_I2C=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C.SYS ### Intel(R) Serial IO I2C Driver v2 Intel Corporation Intel(R) Serial IO Driver 30.100.1816.3 !$*\SystemRoot\System32\drivers\iaLPSS2i_I2C.sys [Drivers] :HKLM iaLPSS2i_I2C_BXT_P=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C_BXT_P.SYS ### Intel(R) Serial IO I2C Driver v2 Intel Corporation Intel(R) Serial IO Driver 30.100.1816.1 !$*\SystemRoot\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Drivers] :HKLM iaLPSS2i_I2C_CNL=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C_CNL.SYS ### Intel(R) Serial IO I2C Driver v2 Intel Corporation Intel(R) Serial IO Driver 30.100.1929.1 !$*\SystemRoot\System32\drivers\iaLPSS2i_I2C_CNL.sys [Drivers] :HKLM iaLPSS2i_I2C_GLK=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C_GLK.SYS ### Intel(R) Serial IO I2C Driver v2 Intel Corporation Intel(R) Serial IO Driver 30.100.1820.1 !$*\SystemRoot\System32\drivers\iaLPSS2i_I2C_GLK.sys [Drivers] :HKLM iaLPSSi_GPIO=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSSI_GPIO.SYS ### Intel(R) Serial IO GPIO Controller Driver Intel Corporation Intel(R) Serial IO Driver 1.1.250.0 !$*\SystemRoot\System32\drivers\iaLPSSi_GPIO.sys [Drivers] :HKLM iaLPSSi_I2C=C:\WINDOWS\SYSTEM32\DRIVERS\IALPSSI_I2C.SYS ### Intel(R) Serial IO I2C Controller Driver Intel Corporation Intel(R) Serial IO Driver 1.1.253.0 !$*\SystemRoot\System32\drivers\iaLPSSi_I2C.sys [Drivers] :HKLM iaStorAVC=C:\WINDOWS\SYSTEM32\DRIVERS\IASTORAVC.SYS ### Intel(R) Rapid Storage Technology driver (inbox) - x64 Intel Corporation Intel(R) Rapid Storage Technology driver (inbox) 15.44.0.1015 !$*C:\WINDOWS\System32\drivers\iaStorAVC.sys [Drivers] :HKLM iaStorV=C:\WINDOWS\SYSTEM32\DRIVERS\IASTORV.SYS ### Intel Matrix Storage Manager driver - x64 Intel Corporation Intel Matrix Storage Manager driver 8.6.2.1019 ->IASTOR.SYS !$*C:\WINDOWS\System32\drivers\iaStorV.sys [Drivers] :HKLM ibbus=C:\WINDOWS\SYSTEM32\DRIVERS\IBBUS.SYS ### InfiniBand Fabric Bus Driver Mellanox OpenFabrics Windows 10.0.10011.16384 !$*\SystemRoot\System32\drivers\ibbus.sys [Drivers] :HKLM IndirectKmd=C:\WINDOWS\SYSTEM32\DRIVERS\INDIRECTKMD.SYS ### Indirect displays kernel-mode filter driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2294 !$*\SystemRoot\System32\drivers\IndirectKmd.sys [Drivers] :HKLM IntcAzAudAddService=C:\WINDOWS\SYSTEM32\DRIVERS\RTKVHD64.SYS ### Realtek(r) High Definition Audio Function Driver Realtek Semiconductor Corp. Realtek(r) High Definition Audio Function Driver 6.0.9635.1 ->RTKVHD64.SYS 9635 !$*\SystemRoot\system32\drivers\RTKVHD64.sys [Drivers] :HKLM intelide=C:\WINDOWS\SYSTEM32\DRIVERS\INTELIDE.SYS ### Intel PCI IDE Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\intelide.sys [Drivers] :HKLM intelpep=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPEP.SYS ### Intel Power Engine Plugin Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\intelpep.sys [Drivers] :HKLM intelpmax=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPMAX.SYS ### Intel Power Limit Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\intelpmax.sys [Drivers] :HKLM IntelPMT=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPMT.SYS ### Intel Platform Monitoring Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\IntelPMT.sys [Drivers] :HKLM intelppm=C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS ### Processor Device Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\intelppm.sys [Drivers] :HKLM iorate=C:\WINDOWS\SYSTEM32\DRIVERS\IORATE.SYS ### Filtre de contrôle de taux d’E/S Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\iorate.sys [Drivers] :HKLM IpFilterDriver=C:\WINDOWS\SYSTEM32\DRIVERS\IPFLTDRV.SYS ### IP FILTER DRIVER Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys [Drivers] :HKLM IPMIDRV=C:\WINDOWS\SYSTEM32\DRIVERS\IPMIDRV.SYS ### PILOT IPMI WMI Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\IPMIDrv.sys [Drivers] :HKLM IPNAT=C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS ### IP Network Address Translator Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\ipnat.sys [Drivers] :HKLM IPT=C:\WINDOWS\SYSTEM32\DRIVERS\IPT.SYS ### IPT Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\ipt.sys [Drivers] :HKLM isapnp=C:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS ### Pilote de bus PNP ISA Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\isapnp.sys [Drivers] :HKLM iScsiPrt=C:\WINDOWS\SYSTEM32\DRIVERS\MSISCSI.SYS ### Microsoft iSCSI Initiator Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 ->ISCSI VERSION : MIN - 0, MAX - 0 !$*\SystemRoot\System32\drivers\msiscsi.sys [Drivers] :HKLM ItSas35i=C:\WINDOWS\SYSTEM32\DRIVERS\ITSAS35I.SYS ### Avago SAS Gen3.5 Driver (StorPort) Avago Technologies Windows (R) Win 7 DDK driver 10.0.10011.16384 ->ITSAS35I-2.61.29.80 (WINDOWS 10 X64) !$*C:\WINDOWS\System32\drivers\ItSas35i.sys [Drivers] :HKLM kbdclass=C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS ### Pilote de la classe Clavier Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\kbdclass.sys [Drivers] :HKLM kbdhid=C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS ### Pilote de filtre clavier HID Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\kbdhid.sys [Drivers] :HKLM kdnic=C:\WINDOWS\SYSTEM32\DRIVERS\KDNIC.SYS ### Microsoft Kernel Debugger Network Miniport Microsoft Corporation Microsoft Kernel Debugger Network Adapter 6.02.01.0000 !$*\SystemRoot\System32\drivers\kdnic.sys [Drivers] :HKLM kdnic_legacy=C:\WINDOWS\SYSTEM32\DRIVERS\KDNIC_LEGACY.SYS ### Microsoft Kernel Debugger Network Miniport Microsoft Corporation Microsoft Kernel Debugger Network Adapter (NDIS 6.20 Miniport) 6.01.00.0000 !$*\SystemRoot\System32\drivers\kdnic_legacy.sys [Drivers] :HKLM KSecDD=C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS ### Kernel Security Support Provider Interface Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\Drivers\ksecdd.sys [Drivers] :HKLM KSecPkg=C:\WINDOWS\SYSTEM32\DRIVERS\KSECPKG.SYS ### Kernel Security Support Provider Interface Packages Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*C:\WINDOWS\System32\Drivers\ksecpkg.sys [Drivers] :HKLM ksthunk=C:\WINDOWS\SYSTEM32\DRIVERS\KSTHUNK.SYS ### Kernel Streaming WOW Thunk Service Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\system32\drivers\ksthunk.sys [Drivers] :HKLM LEqdUsb=C:\WINDOWS\SYSTEM32\DRIVERS\LEQDUSB.SYS ### Logitech Equad USB Driver. Logitech, Inc. Logitech SetPoint(TM) 6.00.45.0 !$*\SystemRoot\system32\DRIVERS\LEqdUsb.Sys [Drivers] :HKLM LHidEqd=C:\WINDOWS\SYSTEM32\DRIVERS\LHIDEQD.SYS ### Logitech HID Filter Driver. Logitech, Inc. Logitech SetPoint(TM) 6.00.45.0 !$*\SystemRoot\system32\DRIVERS\LHidEqd.Sys [Drivers] :HKLM LHidFilt=C:\WINDOWS\SYSTEM32\DRIVERS\LHIDFILT.SYS ### Logitech HID Filter Driver. Logitech, Inc. Logitech SetPoint(TM) 6.00.45.0 !$*\SystemRoot\system32\DRIVERS\LHidFilt.Sys [Drivers] :HKLM lltdio=C:\WINDOWS\SYSTEM32\DRIVERS\LLTDIO.SYS ### Link-Layer Topology Mapper I/O Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\lltdio.sys [Drivers] :HKLM LMouFilt=C:\WINDOWS\SYSTEM32\DRIVERS\LMOUFILT.SYS ### Logitech Mouse Filter Driver. Logitech, Inc. Logitech SetPoint(TM) 6.00.45.0 !$*\SystemRoot\system32\DRIVERS\LMouFilt.Sys [Drivers] :HKLM logi_joy_vir_hid=C:\WINDOWS\SYSTEM32\DRIVERS\LOGI_JOY_VIR_HID.SYS ### Logitech G Drivers Logitech Logitech G Drivers 2022.3.0.2 ->LOGITECH G DRIVERS !$*\SystemRoot\system32\drivers\logi_joy_vir_hid.sys [Drivers] :HKLM LSI_SAS=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS.SYS ### LSI Fusion-MPT SAS Driver (StorPort) LSI Corporation LSI Fusion-MPT SAS Driver (StorPort) 1.34.03.83 ->LSI_SAS-1.34.03.83 (NT4) !$*C:\WINDOWS\System32\drivers\lsi_sas.sys [Drivers] :HKLM LSI_SAS2i=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS2I.SYS ### LSI SAS Gen2 Driver (StorPort) LSI Corporation Windows (R) Win 7 DDK driver 10.0.10011.16384 ->LSI_SAS2I-2.00.79.82 (NT4) !$*C:\WINDOWS\System32\drivers\lsi_sas2i.sys [Drivers] :HKLM LSI_SAS3i=C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS3I.SYS ### Avago SAS Gen3 Driver (StorPort) Avago Technologies Windows (R) Win 7 DDK driver 10.0.10011.16384 ->LSI_SAS3I-2.51.27.80 (NT4) !$*C:\WINDOWS\System32\drivers\lsi_sas3i.sys [Drivers] :HKLM luafv=C:\WINDOWS\SYSTEM32\DRIVERS\LUAFV.SYS ### Pilote de filtre de virtualisation de fichier LUA Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*\SystemRoot\system32\drivers\luafv.sys [Drivers] :HKLM mausbhost=C:\WINDOWS\SYSTEM32\DRIVERS\MAUSBHOST.SYS ### MA-USB Host Controller Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\mausbhost.sys [Drivers] :HKLM mausbip=C:\WINDOWS\SYSTEM32\DRIVERS\MAUSBIP.SYS ### MA-USB IP Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 =>MAUSHIP.SYS !$*\SystemRoot\System32\drivers\mausbip.sys [Drivers] :HKLM MbbCx=C:\WINDOWS\SYSTEM32\DRIVERS\MBBCX.SYS ### Windows Mobile Broadband Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*C:\WINDOWS\system32\drivers\MbbCx.sys [Drivers] :HKLM megasas2i=C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS2I.SYS ### MEGASAS2i RAID Controller Driver for Windows Avago Technologies MEGASAS2i RAID Controller Driver for Windows 6.714.22.00 ->MEGASAS2.SYS !$*C:\WINDOWS\System32\drivers\MegaSas2i.sys [Drivers] :HKLM megasas35i=C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS35I.SYS ### MEGASAS RAID Controller Driver for Windows Broadcom Inc MEGASAS RAID Controller Driver for Windows 7.717.02.00 ->MEGASAS35.SYS !$*C:\WINDOWS\System32\drivers\megasas35i.sys [Drivers] :HKLM megasr=C:\WINDOWS\SYSTEM32\DRIVERS\MEGASR.SYS ### LSI MegaRAID Software RAID Driver LSI Corporation, Inc. MegaRAID Software RAID 15.02.2013.0129 !$*C:\WINDOWS\System32\drivers\megasr.sys [Drivers] :HKLM Microsoft_Bluetooth_AvrcpTransport=C:\WINDOWS\SYSTEM32\DRIVERS\MICROSOFT.BLUETOOTH.AVRCPTRANSPORT.SYS ### Pilote de transport Microsoft Bluetooth Avrcp Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [Drivers] :HKLM mlx4_bus=C:\WINDOWS\SYSTEM32\DRIVERS\MLX4_BUS.SYS ### MLX4 Bus Driver Mellanox OpenFabrics Windows 10.0.10011.16384 !$*\SystemRoot\System32\drivers\mlx4_bus.sys [Drivers] :HKLM MMCSS=C:\WINDOWS\SYSTEM32\DRIVERS\MMCSS.SYS ### MMCSS Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\system32\drivers\mmcss.sys [Drivers] :HKLM Modem=C:\WINDOWS\SYSTEM32\DRIVERS\MODEM.SYS ### Pilote de périphérique modem Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\modem.sys [Drivers] :HKLM monitor=C:\WINDOWS\SYSTEM32\DRIVERS\MONITOR.SYS ### Monitor Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\monitor.sys [Drivers] :HKLM mouclass=C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS ### Pilote de la classe Souris Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\mouclass.sys [Drivers] :HKLM mouhid=C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS ### Pilote de filtre souris HID Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\mouhid.sys [Drivers] :HKLM mountmgr=C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS ### Gestionnaire des points de montage Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\mountmgr.sys [Drivers] :HKLM mpi3drvi=C:\WINDOWS\SYSTEM32\DRIVERS\MPI3DRVI.SYS ### Broadcom MPI 3.0 Driver (StorPort) Broadcom Limited Windows (R) Win 7 DDK driver 10.0.10011.16384 ->BRCM_SAS4I-3.00.71.90 (WINDOWS 10 X64) !$*C:\WINDOWS\System32\drivers\mpi3drvi.sys [Drivers] :HKLM mpsdrv=C:\WINDOWS\SYSTEM32\DRIVERS\MPSDRV.SYS ### Microsoft Protection Service Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\mpsdrv.sys [Drivers] :HKLM MRxDAV=C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS ### Windows NT WebDav Minirdr Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\system32\drivers\mrxdav.sys [Drivers] :HKLM mrxsmb=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS ### Minirdr SMB Windows NT Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2033 !$*C:\WINDOWS\system32\DRIVERS\mrxsmb.sys [Drivers] :HKLM mrxsmb20=C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB20.SYS ### Longhorn SMB 2.0 Redirector Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys [Drivers] :HKLM MsBridge=C:\WINDOWS\SYSTEM32\DRIVERS\BRIDGE.SYS ### MAC Bridge Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\bridge.sys [Drivers] :HKLM msgpiowin32=C:\WINDOWS\SYSTEM32\DRIVERS\MSGPIOWIN32.SYS ### GPIO Button Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\msgpiowin32.sys [Drivers] :HKLM mshidkmdf=C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDKMDF.SYS ### Pass-through HID to KMDF Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\mshidkmdf.sys [Drivers] :HKLM mshidumdf=C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDUMDF.SYS ### Pilote direct pour interface HID-UMDF Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*\SystemRoot\System32\drivers\mshidumdf.sys [Drivers] :HKLM MSIO=C:\WINDOWS\SYSTEM32\DRIVERS\MSIO64.SYS ### MICSYS IO driver MICSYS Technology Co., LTd MsIo64 Driver Version 1.3 1.3 x64 !$*\??\C:\Windows\system32\drivers\MsIo64.sys [Drivers] :HKLM msisadrv=C:\WINDOWS\SYSTEM32\DRIVERS\MSISADRV.SYS ### ISA Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\msisadrv.sys [Drivers] :HKLM MSKSSRV=C:\WINDOWS\SYSTEM32\DRIVERS\MSKSSRV.SYS ### MS KS Server Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*\SystemRoot\System32\drivers\MSKSSRV.sys [Drivers] :HKLM MsLldp=C:\WINDOWS\SYSTEM32\DRIVERS\MSLLDP.SYS ### Pilote de protocole LLDP (Link Layer Discovery Protocol) Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\mslldp.sys [Drivers] :HKLM MSPCLOCK=C:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS ### MS Proxy Clock Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\drivers\MSPCLOCK.sys [Drivers] :HKLM MSPQM=C:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS ### MS Proxy Quality Manager Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\drivers\MSPQM.sys [Drivers] :HKLM MsQuic=C:\WINDOWS\SYSTEM32\DRIVERS\MSQUIC.SYS ### Microsoft® QUIC Library Microsoft Corporation Microsoft® QUIC 2.4.3.515734-official !$*C:\WINDOWS\system32\drivers\msquic.sys [Drivers] :HKLM MsQuicPrev=C:\WINDOWS\SYSTEM32\DRIVERS\MSQUICPREV.SYS ### Microsoft® QUIC Library Microsoft Corporation Microsoft® QUIC 2.3.5.465205-official ->MSQUIC =>MSQUIC.SYS !$*C:\WINDOWS\system32\drivers\msquicprev.sys [Drivers] :HKLM mssmbios=C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS ### System Management BIOS Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 ->SMBIOS.SYS !$*\SystemRoot\System32\drivers\mssmbios.sys [Drivers] :HKLM MSTEE=C:\WINDOWS\SYSTEM32\DRIVERS\MSTEE.SYS ### WDM Tee/Communication Transform Filter Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\MSTEE.sys [Drivers] :HKLM mt7612US=C:\WINDOWS\SYSTEM32\DRIVERS\MT7612US.SYS ### MT7612U Phoenix Driver MediaTek Inc. MediaTek Inc. MT7612 Wireless LAN Adapter Driver 1.0.24.0 ->MT7612US.DLL !$*\SystemRoot\System32\drivers\mt7612US.sys [Drivers] :HKLM MTConfig=C:\WINDOWS\SYSTEM32\DRIVERS\MTCONFIG.SYS ### Pilote HID multipoint Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\MTConfig.sys [Drivers] :HKLM Mup=C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS ### Pilote de fournisseur UNC multiples Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\Drivers\mup.sys [Drivers] :HKLM mvumis=C:\WINDOWS\SYSTEM32\DRIVERS\MVUMIS.SYS ### Marvell Flash Controller Driver Marvell Semiconductor, Inc. Marvell Flash Controller 1.0.5.1016 ->SPEEDYST.SYS !$*C:\WINDOWS\System32\drivers\mvumis.sys [Drivers] :HKLM Nahimic_Mirroring=C:\WINDOWS\SYSTEM32\DRIVERS\NAHIMIC_MIRRORING.SYS ### A-Volute Mirroring VAD driver Windows (R) Win 7 DDK provider Windows (R) Win 7 DDK driver 10.0.10011.16384 !$*\SystemRoot\System32\drivers\Nahimic_Mirroring.sys [Drivers] :HKLM NativeWifiP=C:\WINDOWS\SYSTEM32\DRIVERS\NWIFI.SYS ### Pilote de miniport WiFi natif Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\DRIVERS\nwifi.sys [Drivers] :HKLM ndfltr=C:\WINDOWS\SYSTEM32\DRIVERS\NDFLTR.SYS ### NetworkDirect Support Filter Driver Mellanox OpenFabrics Windows 10.0.10011.16384 !$*\SystemRoot\System32\drivers\ndfltr.sys [Drivers] :HKLM NDIS=C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS ### NDIS (Network Driver Interface Specification) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\ndis.sys [Drivers] :HKLM NdisCap=C:\WINDOWS\SYSTEM32\DRIVERS\NDISCAP.SYS ### Microsoft NDIS Packet Capture Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\ndiscap.sys [Drivers] :HKLM NdisImPlatform=C:\WINDOWS\SYSTEM32\DRIVERS\NDISIMPLATFORM.SYS ### Microsoft Network Adapter Multiplexor Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\NdisImPlatform.sys [Drivers] :HKLM NdisTapi=C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS ### NDIS 3.0 connection wrapper driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\DRIVERS\ndistapi.sys [Drivers] :HKLM Ndisuio=C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS ### Pilote d’E/S du mode utilisateur NDIS Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\ndisuio.sys [Drivers] :HKLM NdisVirtualBus=C:\WINDOWS\SYSTEM32\DRIVERS\NDISVIRTUALBUS.SYS ### Énumérateur de cartes réseau virtuelles Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*\SystemRoot\System32\drivers\NdisVirtualBus.sys [Drivers] :HKLM NdisWan=C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS ### MS PPP Framing Driver (Strong Encryption) Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\ndiswan.sys [Drivers] :HKLM ndiswanlegacy=C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS ### MS PPP Framing Driver (Strong Encryption) Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\DRIVERS\ndiswan.sys [Drivers] :HKLM NDKPerf=C:\WINDOWS\SYSTEM32\DRIVERS\NDKPERF.SYS ### !$*C:\WINDOWS\system32\drivers\NDKPerf.sys [Drivers] :HKLM NDKPing=C:\WINDOWS\SYSTEM32\DRIVERS\NDKPING.SYS ### RDMA Sample Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 ->RDMASAMPLE.SYS !$*C:\WINDOWS\system32\drivers\NDKPing.sys [Drivers] :HKLM ndproxy=C:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS ### NDIS Proxy Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\DRIVERS\NDProxy.sys [Drivers] :HKLM Ndu=C:\WINDOWS\SYSTEM32\DRIVERS\NDU.SYS ### Windows Network Data Usage Monitoring Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\Ndu.sys [Drivers] :HKLM NetAdapterCx=C:\WINDOWS\SYSTEM32\DRIVERS\NETADAPTERCX.SYS ### Network Adapter Class Extension for WDF Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\netadaptercx.sys [Drivers] :HKLM NetBIOS=C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS ### NetBIOS interface driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*C:\WINDOWS\system32\drivers\netbios.sys [Drivers] :HKLM NetBT=C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS ### MBT Transport driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\DRIVERS\netbt.sys [Drivers] :HKLM netprotection_network_filter=C:\WINDOWS\SYSTEM32\DRIVERS\NETPROTECTION_NETWORK_FILTER.SYS ### Avira NetProtectionSDK WFP Driver. Avira Operations GmbH Avira Product Family 1.0.2408.1076 !$*C:\WINDOWS\System32\drivers\netprotection_network_filter.sys [Drivers] :HKLM netprotection_network_filter2=C:\WINDOWS\SYSTEM32\DRIVERS\NETPROTECTION_NETWORK_FILTER2.SYS ### Avira NetProtectionSDK WFP Driver. Avira Operations GmbH Avira Product Family 1.0.2408.1076 ->NETPROTECTION_NETWORK_FILTER.SYS !$*C:\WINDOWS\System32\drivers\netprotection_network_filter2.sys [Drivers] :HKLM netvsc=C:\WINDOWS\SYSTEM32\DRIVERS\NETVSC.SYS ### Miniport NDIS virtuel Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\netvsc.sys [Drivers] :HKLM NetworkPrivacyPolicy=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NETWORKPRIVACYPOLICY.INF_AMD64_F3940973E0444EEC\NETWORKPRIVACYPOLICY.SYS ### !$*\SystemRoot\System32\DriverStore\FileRepository\networkprivacypolicy.inf_amd64_f3940973e0444eec\NetworkPrivacyPolicy.sys [Drivers] :HKLM npsvctrig=C:\WINDOWS\SYSTEM32\DRIVERS\NPSVCTRIG.SYS ### Named pipe service triggers Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\npsvctrig.sys [Drivers] :HKLM nsiproxy=C:\WINDOWS\SYSTEM32\DRIVERS\NSIPROXY.SYS ### NSI Proxy Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\nsiproxy.sys [Drivers] :HKLM NTIOLib_CC_COMM=C:\PROGRAM FILES (X86)\MSI\MSI CENTER\LIB\SYS\NTIOLIB_X64.SYS ### NTIOLib_CC_COMM MSI NTIOLib 3.0.0.11 ->NTIOLIB.SYS !$*\??\C:\Program Files (x86)\MSI\MSI Center\Lib\SYS\NTIOLib_X64.sys [Drivers] :HKLM NTIOLib_FastBoot=C:\PROGRAM FILES (X86)\MSI\FAST BOOT\NTIOLIB_X64.SYS ### NTIOLib_FastBoot Driver MSI NTIOLib 2.0.0.04 ->NTIOLIB.SYS !$*\??\C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [Drivers] :HKLM NTIOLib_MBAPI=C:\PROGRAM FILES (X86)\MSI\GAMING APP\LIB\NTIOLIB_X64.SYS ### NTIOLib_MBAPI Driver MSI NTIOLib 2.0.0.06 ->NTIOLIB.SYS !$*\??\C:\Program Files (x86)\MSI\Gaming APP\Lib\NTIOLib_X64.sys [Drivers] :HKLM nvdimm=C:\WINDOWS\SYSTEM32\DRIVERS\NVDIMM.SYS ### Pilote de périphérique NVDIMM Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\nvdimm.sys [Drivers] :HKLM NVHDA=C:\WINDOWS\SYSTEM32\DRIVERS\NVHDA64V.SYS ### NVIDIA HDMI Audio Driver NVIDIA Corporation NVIDIA HDMI Audio Driver 1.4.0.1 ->NVHDA.SYS !$*\SystemRoot\system32\drivers\nvhda64v.sys [Drivers] :HKLM nvlddmkm=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NV_DISPSI.INF_AMD64_681B5907A11E1C87\NVLDDMKM.SYS ### NVIDIA Windows Kernel Mode Driver, Version 561.09 NVIDIA Corporation NVIDIA Windows Kernel Mode Driver, Version 561.09 32.0.15.6109 ->NVLDDMKM.SYS, NV_LDDM:10011, NV_LDDM_DDK_BUILD:UNUSED !$*\SystemRoot\System32\DriverStore\FileRepository\nv_dispsi.inf_amd64_681b5907a11e1c87\nvlddmkm.sys [Drivers] :HKLM nvmedisk=C:\WINDOWS\SYSTEM32\DRIVERS\NVMEDISK.SYS ### Nvme Disk Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\nvmedisk.sys [Drivers] :HKLM NvModuleTracker=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVMODULETRACKER.INF_AMD64_EA6CEC41FC5B2A8B\NVMODULETRACKER.SYS ### Process and module monitoring driver NVIDIA Corporation Process and module monitoring driver 1.04.0.0 !$*\SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [Drivers] :HKLM nvraid=C:\WINDOWS\SYSTEM32\DRIVERS\NVRAID.SYS ### NVIDIA® nForce(TM) RAID Driver NVIDIA Corporation NVIDIA nForce(TM) RAID Driver 10.6.0.23 ->NVIDIA NFORCE(TM) RAID DRIVER !$*C:\WINDOWS\System32\drivers\nvraid.sys [Drivers] :HKLM nvstor=C:\WINDOWS\SYSTEM32\DRIVERS\NVSTOR.SYS ### NVIDIA® nForce(TM) Sata Performance Driver NVIDIA Corporation NVIDIA nForce(TM) SATA Driver 10.6.0.23 ->NVIDIA NFORCE(TM) SATA DRIVER !$*C:\WINDOWS\System32\drivers\nvstor.sys [Drivers] :HKLM nvvad_WaveExtensible=C:\WINDOWS\SYSTEM32\DRIVERS\NVVAD64V.SYS ### NVIDIA Virtual Audio Driver NVIDIA Corporation NVIDIA Virtual Audio Driver 4.65.0.3 ->NVVAD.SYS !$*\SystemRoot\system32\drivers\nvvad64v.sys [Drivers] :HKLM nvvhci=C:\WINDOWS\SYSTEM32\DRIVERS\NVVHCI.SYS ### Virtual USB Host Controller driver NVIDIA Corporation Virtual USB Host Controller driver 3.05.0.1 !$*\SystemRoot\System32\drivers\nvvhci.sys [Drivers] :HKLM ovpn-dco=C:\WINDOWS\SYSTEM32\DRIVERS\OVPN-DCO.SYS ### OpenVPN Data Channel Offload OpenVPN, Inc OpenVPN Data Channel Offload 1.2.1 ->OPENVPN DATA CHANNEL OFFLOAD !$*\SystemRoot\System32\drivers\ovpn-dco.sys [Drivers] :HKLM P9Rdr=C:\WINDOWS\SYSTEM32\DRIVERS\P9RDR.SYS ### Plan 9 redirector Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\p9rdr.sys [Drivers] :HKLM Parport=C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS ### Pilote de port parallèle Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\parport.sys [Drivers] :HKLM partmgr=C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS ### Partition driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\partmgr.sys [Drivers] :HKLM pci=C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS ### Énumérateur Plug-and-Play PCI pour NT Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\pci.sys [Drivers] :HKLM pciide=C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS ### Generic PCI IDE Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\pciide.sys [Drivers] :HKLM pcmcia=C:\WINDOWS\SYSTEM32\DRIVERS\PCMCIA.SYS ### Pilote de bus PCMCIA Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\pcmcia.sys [Drivers] :HKLM pcw=C:\WINDOWS\SYSTEM32\DRIVERS\PCW.SYS ### Performance Counters for Windows Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\pcw.sys [Drivers] :HKLM pdc=C:\WINDOWS\SYSTEM32\DRIVERS\PDC.SYS ### Power Dependency Coordinator Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\pdc.sys [Drivers] :HKLM PEAUTH=C:\WINDOWS\SYSTEM32\DRIVERS\PEAUTH.SYS ### Protected Environment Authentication and Authorization Export Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\peauth.sys [Drivers] :HKLM percsas2i=C:\WINDOWS\SYSTEM32\DRIVERS\PERCSAS2I.SYS ### MEGASAS RAID Controller Driver for Windows Avago Technologies MEGASAS RAID Controller Driver for Windows 6.805.03.00 !$*C:\WINDOWS\System32\drivers\percsas2i.sys [Drivers] :HKLM percsas3i=C:\WINDOWS\SYSTEM32\DRIVERS\PERCSAS3I.SYS ### MEGASAS RAID Controller Driver for Windows Avago Technologies MEGASAS RAID Controller Driver for Windows 6.604.06.00 ->PERCSAS3.SYS !$*C:\WINDOWS\System32\drivers\percsas3i.sys [Drivers] :HKLM PktMon=C:\WINDOWS\SYSTEM32\DRIVERS\PKTMON.SYS ### Pilote du moniteur de paquets Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\PktMon.sys [Drivers] :HKLM PktMonApi=C:\WINDOWS\SYSTEM32\DRIVERS\PKTMONAPI.SYS ### Packet Monitor API Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\PktMonApi.sys [Drivers] :HKLM PlutonHeci=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\PLUTON-HECI.INF_AMD64_9AAA7A8C15AC7E9A\PLUTON-HECI.SYS ### !$*\SystemRoot\System32\DriverStore\FileRepository\pluton-heci.inf_amd64_9aaa7a8c15ac7e9a\pluton-heci.sys [Drivers] :HKLM PlutonHsp2=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\PLUTONHSP2.INF_AMD64_0B3FDC25D1DC1C6E\PLUTONHSP2.SYS ### !$*\SystemRoot\System32\DriverStore\FileRepository\plutonhsp2.inf_amd64_0b3fdc25d1dc1c6e\PlutonHsp2.sys [Drivers] :HKLM pmem=C:\WINDOWS\SYSTEM32\DRIVERS\PMEM.SYS ### Pilote de mémoire persistante Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\pmem.sys [Drivers] :HKLM PNPMEM=C:\WINDOWS\SYSTEM32\DRIVERS\PNPMEM.SYS ### Pilote mémoire Plug and Play Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\pnpmem.sys [Drivers] :HKLM portcfg=C:\WINDOWS\SYSTEM32\DRIVERS\PORTCFG.SYS ### Port Device Class Configuration Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\portcfg.sys [Drivers] :HKLM PptpMiniport=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS ### Peer-to-Peer Tunneling Protocol Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\raspptp.sys [Drivers] :HKLM PRM=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\PRM.INF_AMD64_7C38475757A1F016\PRM.SYS ### Windows PRM Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\DriverStore\FileRepository\prm.inf_amd64_7c38475757a1f016\PRM.sys [Drivers] :HKLM Processor=C:\WINDOWS\SYSTEM32\DRIVERS\PROCESSR.SYS ### Processor Device Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\drivers\processr.sys [Drivers] :HKLM Psched=C:\WINDOWS\SYSTEM32\DRIVERS\PACER.SYS ### Planificateur de paquets QoS Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\pacer.sys [Drivers] :HKLM pvscsi=C:\WINDOWS\SYSTEM32\DRIVERS\PVSCSII.SYS ### VMware PVSCSI StorPort driver (64-bit) VMware, Inc. VMware PVSCSI StorPort driver (64-bit) 1.3.15.0 build-18052479 !$*C:\WINDOWS\System32\drivers\pvscsii.sys [Drivers] :HKLM QWAVEdrv=C:\WINDOWS\SYSTEM32\DRIVERS\QWAVEDRV.SYS ### Pilote du support de Microsoft Quality Windows Audio Video Experience (qWave) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*\SystemRoot\system32\drivers\qwavedrv.sys [Drivers] :HKLM Ramdisk=C:\WINDOWS\SYSTEM32\DRIVERS\RAMDISK.SYS ### RAM Disk Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\drivers\ramdisk.sys [Drivers] :HKLM RasAcd=C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS ### RAS Automatic Connection Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\DRIVERS\rasacd.sys [Drivers] :HKLM RasAgileVpn=C:\WINDOWS\SYSTEM32\DRIVERS\AGILEVPN.SYS ### Gestionnaire d'appels RAS Agile Vpn Miniport Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*\SystemRoot\System32\drivers\AgileVpn.sys [Drivers] :HKLM Rasl2tp=C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS ### RAS L2TP mini-port/call-manager driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\rasl2tp.sys [Drivers] :HKLM RasPppoe=C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS ### RAS PPPoE mini-port/call-manager driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\DRIVERS\raspppoe.sys [Drivers] :HKLM RasSstp=C:\WINDOWS\SYSTEM32\DRIVERS\RASSSTP.SYS ### RAS SSTP Miniport Call Manager Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\rassstp.sys [Drivers] :HKLM rcbottom=C:\WINDOWS\SYSTEM32\DRIVERS\RCBOTTOM.SYS ### AMD-RAID rcbottom Advanced Micro Devices, Inc. AMD-RAID rcbottom driver 9.3.0-00296 !$*C:\WINDOWS\System32\drivers\rcbottom.sys [Drivers] :HKLM rccfg=C:\WINDOWS\SYSTEM32\DRIVERS\RCCFG.SYS ### AMD-RAID Configuration driver Advanced Micro Devices, Inc. AMD-RAID Configuration driver 9.3.0-00296 !$*\SystemRoot\System32\drivers\rccfg.sys [Drivers] :HKLM rcraid=C:\WINDOWS\SYSTEM32\DRIVERS\RCRAID.SYS ### AMD-RAID StorPort Advanced Micro Devices, Inc. AMD-RAID Storport driver 9.3.0-00296 !$*C:\WINDOWS\System32\drivers\rcraid.sys [Drivers] :HKLM rdbss=C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS ### Pilote du sous-système de mise en mémoire tampon de lecteur redirigé Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\DRIVERS\rdbss.sys [Drivers] :HKLM rdpbus=C:\WINDOWS\SYSTEM32\DRIVERS\RDPBUS.SYS ### Microsoft RDP Bus Device driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\rdpbus.sys [Drivers] :HKLM RDPDR=C:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS ### Redirecteur de périphérique de Microsoft RDP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\rdpdr.sys [Drivers] :HKLM rdyboost=C:\WINDOWS\SYSTEM32\DRIVERS\RDYBOOST.SYS ### ReadyBoost Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\rdyboost.sys [Drivers] :HKLM Revoflt=C:\WINDOWS\SYSTEM32\DRIVERS\REVOFLT.SYS ### Revo Uninstaller Pro Minifilter VS Revo Group Revo Uninstaller Pro 1, 0, 0, 5 !$*C:\WINDOWS\system32\DRIVERS\revoflt.sys [Drivers] :HKLM RFCOMM=C:\WINDOWS\SYSTEM32\DRIVERS\RFCOMM.SYS ### Bluetooth RFCOMM Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\rfcomm.sys [Drivers] :HKLM rhproxy=C:\WINDOWS\SYSTEM32\DRIVERS\RHPROXY.SYS ### ResourceHub Proxy Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\rhproxy.sys [Drivers] :HKLM RoutePolicy=C:\WINDOWS\SYSTEM32\DRIVERS\ROUTEPOLICY.SYS ### Windows 5G ondemand connection route policy driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\RoutePolicy.sys [Drivers] :HKLM rspndr=C:\WINDOWS\SYSTEM32\DRIVERS\RSPNDR.SYS ### Link-Layer Topology Responder Driver for NDIS 6 Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\rspndr.sys [Drivers] :HKLM rt640x64=C:\WINDOWS\SYSTEM32\DRIVERS\RT640X64.SYS ### Realtek 8125/8126/8136/8168/8169 NDIS 6.40 64-bit Driver Realtek Realtek 8125/8126/8136/8168/8169 PCI/PCIe Adapters 10.068.0815.2023 !$*\SystemRoot\System32\drivers\rt640x64.sys [Drivers] :HKLM RtkBtFilter=C:\WINDOWS\SYSTEM32\DRIVERS\RTKBTFILTER.SYS ### Realtek Bluetooth Filter Driver Realtek Semiconductor Corporation Bluetooth Software 1.9.1051.3 !$*\SystemRoot\System32\drivers\RtkBtfilter.sys [Drivers] :HKLM rtp1=C:\WINDOWS\SYSTEM32\DRIVERS\RTP1.SYS ### Avira real-time protection filter drive Avira Operations Gmb Avira Product Famil 1.1.2409.471 ->RTP1.SY !$*C:\WINDOWS\system32\DRIVERS\rtp1.sys [Drivers] :HKLM rtp2=C:\WINDOWS\SYSTEM32\DRIVERS\RTP2.SYS ### Avira real-time protection filter drive Avira Operations Gmb Avira Product Famil 1.1.2409.471 ->RTP1.SY !$*C:\WINDOWS\system32\DRIVERS\rtp2.sys [Drivers] :HKLM rtp_config=C:\WINDOWS\SYSTEM32\DRIVERS\RTP1.SYS ### Avira real-time protection filter drive Avira Operations Gmb Avira Product Famil 1.1.2409.471 ->RTP1.SY !$*C:\WINDOWS\system32\DRIVERS\rtp1.sys [Drivers] :HKLM rtp_elam=C:\WINDOWS\SYSTEM32\DRIVERS\RTP_ELAM.SYS ### Avira Early Launch Anti-Malware Drive Avira Operations Gmb Avira Product Famil 1.1.2403.251 ->RTP_ELAM.SY !$*C:\WINDOWS\system32\DRIVERS\rtp_elam.sys [Drivers] :HKLM s3cap=C:\WINDOWS\SYSTEM32\DRIVERS\VMS3CAP.SYS ### Microsoft S3 Emulated Device Cap Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\vms3cap.sys [Drivers] :HKLM SamSs=C:\WINDOWS\SYSTEM32\DRIVERS\VMS3CAP.SYS ### Microsoft S3 Emulated Device Cap Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\vms3cap.sys [Drivers] :HKLM sbp2port=C:\WINDOWS\SYSTEM32\DRIVERS\SBP2PORT.SYS ### SBP-2 Protocol Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\sbp2port.sys [Drivers] :HKLM scfilter=C:\WINDOWS\SYSTEM32\DRIVERS\SCFILTER.SYS ### Pilote de filtre de lecteur de carte à puce Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\DRIVERS\scfilter.sys [Drivers] :HKLM scmbus=C:\WINDOWS\SYSTEM32\DRIVERS\SCMBUS.SYS ### Pilote de bus de mémoire de classe stockage Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\scmbus.sys [Drivers] :HKLM sdbus=C:\WINDOWS\SYSTEM32\DRIVERS\SDBUS.SYS ### Pilote du bus numérique sécurisé (SD) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\sdbus.sys [Drivers] :HKLM sdstor=C:\WINDOWS\SYSTEM32\DRIVERS\SDSTOR.SYS ### Pilote de classe de stockage SD Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\sdstor.sys [Drivers] :HKLM SerCx=C:\WINDOWS\SYSTEM32\DRIVERS\SERCX.SYS ### Serial Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\SerCx.sys [Drivers] :HKLM SerCx2=C:\WINDOWS\SYSTEM32\DRIVERS\SERCX2.SYS ### Serial Class Extension V2 Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\SerCx2.sys [Drivers] :HKLM Serenum=C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS ### Serial Port Enumerator Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\serenum.sys [Drivers] :HKLM Serial=C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS ### Pilote de périphérique série Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\serial.sys [Drivers] :HKLM sermouse=C:\WINDOWS\SYSTEM32\DRIVERS\SERMOUSE.SYS ### Pilote de filtre souris série Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\sermouse.sys [Drivers] :HKLM sfloppy=C:\WINDOWS\SYSTEM32\DRIVERS\SFLOPPY.SYS ### SCSI Floppy Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\drivers\sfloppy.sys [Drivers] :HKLM SgrmAgent=C:\WINDOWS\SYSTEM32\DRIVERS\SGRMAGENT.SYS ### System Guard Runtime Monitor Agent Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\SgrmAgent.sys [Drivers] :HKLM SiSRaid2=C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID2.SYS ### SiS RAID Stor Miniport Driver Silicon Integrated Systems Corp. Microsoft® Windows® Operating System 2.60.01 ->SISRAID2.SYS 2.60.01 !$*C:\WINDOWS\System32\drivers\SiSRaid2.sys [Drivers] :HKLM SiSRaid4=C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID4.SYS ### SiS AHCI Stor-Miniport Driver Silicon Integrated Systems Microsoft® Windows® Operating System 6.1.6918.0 !$*C:\WINDOWS\System32\drivers\sisraid4.sys [Drivers] :HKLM SmartSAMD=C:\WINDOWS\SYSTEM32\DRIVERS\SMARTSAMD.SYS ### Storport Miniport Driver for SmartRAID/SmartHBA Controllers Microsemi Corportation SmartRAID, SmartHBA PQI Storport Driver 1.50.1.0 !$*C:\WINDOWS\System32\drivers\SmartSAMD.sys [Drivers] :HKLM snapman=C:\WINDOWS\SYSTEM32\DRIVERS\SNAPMAN.SYS ### Acronis Snapshot API Acronis International GmbH Acronis Snapshot API 4.7.0.4036 !$*C:\WINDOWS\system32\DRIVERS\snapman.sys [Drivers] :HKLM spaceparser=C:\WINDOWS\SYSTEM32\DRIVERS\SPACEPARSER.SYS ### Storage Spaces Parser driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\spaceparser.sys [Drivers] :HKLM spaceport=C:\WINDOWS\SYSTEM32\DRIVERS\SPACEPORT.SYS ### Storage Spaces Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\spaceport.sys [Drivers] :HKLM SpbCx=C:\WINDOWS\SYSTEM32\DRIVERS\SPBCX.SYS ### SPB Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\SpbCx.sys [Drivers] :HKLM speedfan=C:\WINDOWS\SYSWOW64\SPEEDFAN.SYS ### SpeedFan x64 Driver Almico Software SpeedFan X2.03.11 ->SFDRVX64.SYS !$*\??\C:\Windows\SysWOW64\speedfan.sys [Drivers] :HKLM srv2=C:\WINDOWS\SYSTEM32\DRIVERS\SRV2.SYS ### Pilote de serveur SMB 2.0 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2033 !$*C:\WINDOWS\System32\DRIVERS\srv2.sys [Drivers] :HKLM srvnet=C:\WINDOWS\SYSTEM32\DRIVERS\SRVNET.SYS ### Server Network driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\DRIVERS\srvnet.sys [Drivers] :HKLM SteamStreamingMicrophone=C:\WINDOWS\SYSTEM32\DRIVERS\STEAMSTREAMINGMICROPHONE.SYS ### !$*\SystemRoot\system32\drivers\SteamStreamingMicrophone.sys [Drivers] :HKLM SteamStreamingSpeakers=C:\WINDOWS\SYSTEM32\DRIVERS\STEAMSTREAMINGSPEAKERS.SYS ### !$*\SystemRoot\system32\drivers\SteamStreamingSpeakers.sys [Drivers] :HKLM stexstor=C:\WINDOWS\SYSTEM32\DRIVERS\STEXSTOR.SYS ### Promise SuperTrak EX Series Driver for Windows x64 Promise Technology, Inc. Promise® SuperTrak EX Series 5.1.0000.10 !$*C:\WINDOWS\System32\drivers\stexstor.sys [Drivers] :HKLM storahci=C:\WINDOWS\SYSTEM32\DRIVERS\STORAHCI.SYS ### MS AHCI Storport Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\storahci.sys [Drivers] :HKLM storflt=C:\WINDOWS\SYSTEM32\DRIVERS\VMSTORFL.SYS ### Pilote de filtre de stockage virtuel Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\vmstorfl.sys [Drivers] :HKLM stornvme=C:\WINDOWS\SYSTEM32\DRIVERS\STORNVME.SYS ### Microsoft NVM Express Storport Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\stornvme.sys [Drivers] :HKLM storqosflt=C:\WINDOWS\SYSTEM32\DRIVERS\STORQOSFLT.SYS ### Filtre de qualité de service de stockage Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\storqosflt.sys [Drivers] :HKLM storufs=C:\WINDOWS\SYSTEM32\DRIVERS\STORUFS.SYS ### MS UFS Storport Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\storufs.sys [Drivers] :HKLM storvsc=C:\WINDOWS\SYSTEM32\DRIVERS\STORVSC.SYS ### Storage VSC Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\storvsc.sys [Drivers] :HKLM SurfsharkBypasser=C:\PROGRAM FILES\SURFSHARK\SPLITTUNNELING\X64\RESOURCES\X64\SURFSHARKBYPASSER.SYS ### Surfshark split tunneling module (#a1299693) Surfshark Surfshark !$*\??\C:\Program Files\Surfshark\SplitTunneling\x64\Resources\x64\SurfsharkBypasser.sys [Drivers] :HKLM swenum=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\SWENUM.INF_AMD64_7E69A3E94E38C7BA\SWENUM.SYS ### Plug and Play Software Device Enumerator Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*\SystemRoot\System32\DriverStore\FileRepository\swenum.inf_amd64_7e69a3e94e38c7ba\swenum.sys [Drivers] :HKLM Tcpip=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS ### Pilote TCP/IP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2033 !$*C:\WINDOWS\System32\drivers\tcpip.sys [Drivers] :HKLM Tcpip6=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS ### Pilote TCP/IP Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2033 !$*C:\WINDOWS\System32\drivers\tcpip.sys [Drivers] :HKLM tcpipreg=C:\WINDOWS\SYSTEM32\DRIVERS\TCPIPREG.SYS ### TCP/IP Registry Compatibility Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*C:\WINDOWS\System32\drivers\tcpipreg.sys [Drivers] :HKLM tdx=C:\WINDOWS\SYSTEM32\DRIVERS\TDX.SYS ### TDI Translation Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\system32\DRIVERS\tdx.sys [Drivers] :HKLM terminpt=C:\WINDOWS\SYSTEM32\DRIVERS\TERMINPT.SYS ### Terminal Server Input Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\terminpt.sys [Drivers] :HKLM tib=C:\WINDOWS\SYSTEM32\DRIVERS\TIB.SYS ### Acronis Backup Archive Explorer Acronis International GmbH Acronis TIB Explorer 1,0,1,10011 !$*\SystemRoot\system32\DRIVERS\tib.sys [Drivers] :HKLM tib_mounter=C:\WINDOWS\SYSTEM32\DRIVERS\TIB_MOUNTER.SYS ### Acronis TIB Mounter Driver Acronis International GmbH Acronis TIB Mounter 6.1.0.10023 !$*\SystemRoot\system32\DRIVERS\tib_mounter.sys [Drivers] :HKLM tnd=C:\WINDOWS\SYSTEM32\DRIVERS\TND.SYS ### Acronis Try&Decide Volume Filter Driver Acronis International GmbH Acronis Try&Decide 1.1.0.10011 !$*\SystemRoot\system32\DRIVERS\tnd.sys [Drivers] :HKLM TPM=C:\WINDOWS\SYSTEM32\DRIVERS\TPM.SYS ### Pilote de périphérique TPM Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\tpm.sys [Drivers] :HKLM TrkWks=C:\WINDOWS\SYSTEM32\DRIVERS\TPM.SYS ### Pilote de périphérique TPM Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\tpm.sys [Drivers] :HKLM TsUsbFlt=C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBFLT.SYS ### Pilote de filtre pour concentrateur USB du Bureau à distance Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\tsusbflt.sys [Drivers] :HKLM TsUsbGD=C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBGD.SYS ### Remote Desktop Generic USB Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\TsUsbGD.sys [Drivers] :HKLM tunnel=C:\WINDOWS\SYSTEM32\DRIVERS\TUNNEL.SYS ### Pilote d’interface de tunnel Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\tunnel.sys [Drivers] :HKLM UASPStor=C:\WINDOWS\SYSTEM32\DRIVERS\UASPSTOR.SYS ### Microsoft Uasp Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->UASP VERSION : MIN - 0, MAX - 0 =>UASP.SYS !$*\SystemRoot\System32\drivers\uaspstor.sys [Drivers] :HKLM UcmCx0101=C:\WINDOWS\SYSTEM32\DRIVERS\UCMCX.SYS ### USB Connector Manager KMDF Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\Drivers\UcmCx.sys [Drivers] :HKLM UcmCxUcsiNvppc=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVPPC.INF_AMD64_E474DAC8EA58E564\UCMCXUCSINVPPC.SYS ### NVIDIA PPC Function Driver. NVIDIA Corporation NVPPC 1.52.831.832 ->NVPPC !$*\SystemRoot\System32\DriverStore\FileRepository\nvppc.inf_amd64_e474dac8ea58e564\UcmCxUcsiNvppc.sys [Drivers] :HKLM UcmTcpciCx0101=C:\WINDOWS\SYSTEM32\DRIVERS\UCMTCPCICX.SYS ### UCM-TCPCI KMDF Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\Drivers\UcmTcpciCx.sys [Drivers] :HKLM UcmUcsiAcpiClient=C:\WINDOWS\SYSTEM32\DRIVERS\UCMUCSIACPICLIENT.SYS ### UCM-UCSI ACPI Client Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\UcmUcsiAcpiClient.sys [Drivers] :HKLM UcmUcsiCx0101=C:\WINDOWS\SYSTEM32\DRIVERS\UCMUCSICX.SYS ### UCM-UCSI KMDF Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\Drivers\UcmUcsiCx.sys [Drivers] :HKLM UCPD=C:\WINDOWS\SYSTEM32\DRIVERS\UCPD.SYS ### User Choice Protection Driver Microsoft Corporation Microsoft® Windows® Operating System 3.1.0.519704+16a380a2 !$*C:\WINDOWS\system32\drivers\UCPD.sys [Drivers] :HKLM Ucx01000=C:\WINDOWS\SYSTEM32\DRIVERS\UCX01000.SYS ### USB Controller Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\ucx01000.sys [Drivers] :HKLM UdeCx=C:\WINDOWS\SYSTEM32\DRIVERS\UDECX.SYS ### "udecx.DRIVER" Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 ->"UDECX.DRIVER" !$*C:\WINDOWS\system32\drivers\udecx.sys [Drivers] :HKLM udfs=C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS ### UDF File System Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\DRIVERS\udfs.sys [Drivers] :HKLM UEFI=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UEFI.INF_AMD64_980DDB5245BBF384\UEFI.SYS ### Pilote ACPI pour NT Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\DriverStore\FileRepository\uefi.inf_amd64_980ddb5245bbf384\UEFI.sys [Drivers] :HKLM Ufx01000=C:\WINDOWS\SYSTEM32\DRIVERS\UFX01000.SYS ### USB Function Driver Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\ufx01000.sys [Drivers] :HKLM UfxChipidea=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UFXCHIPIDEA.INF_AMD64_6E8BB2ED82835828\UFXCHIPIDEA.SYS ### UFX Chipidea Client Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\ufxchipidea.inf_amd64_6e8bb2ed82835828\UfxChipidea.sys [Drivers] :HKLM ufxsynopsys=C:\WINDOWS\SYSTEM32\DRIVERS\UFXSYNOPSYS.SYS ### UFX Synopsys Client Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\ufxsynopsys.sys [Drivers] :HKLM uiomap=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UIOMAP.INF_AMD64_11EFBD9B4C5F482E\UIOMAP.SYS ### Usermode IO Mapper Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\uiomap.inf_amd64_11efbd9b4c5f482e\uiomap.sys [Drivers] :HKLM umbus=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UMBUS.INF_AMD64_914DD46B4B013B1B\UMBUS.SYS ### User-Mode Bus Enumerator Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\umbus.inf_amd64_914dd46b4b013b1b\umbus.sys [Drivers] :HKLM UmPass=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UMPASS.INF_AMD64_06E016C9FFECBF73\UMPASS.SYS ### Generic pass-through driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 =>FUMPASS.SYS !$*\SystemRoot\System32\DriverStore\FileRepository\umpass.inf_amd64_06e016c9ffecbf73\umpass.sys [Drivers] :HKLM UnionFS=C:\WINDOWS\SYSTEM32\DRIVERS\UNIONFS.SYS ### Union Filesystem Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\system32\drivers\UnionFS.sys [Drivers] :HKLM UrsChipidea=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\URSCHIPIDEA.INF_AMD64_37FB14618BCE547B\URSCHIPIDEA.SYS ### USB Role-Switch Driver for Chipidea Core Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\urschipidea.inf_amd64_37fb14618bce547b\urschipidea.sys [Drivers] :HKLM UrsCx01000=C:\WINDOWS\SYSTEM32\DRIVERS\URSCX01000.SYS ### USB Role-Switch Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\urscx01000.sys [Drivers] :HKLM UrsSynopsys=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\URSSYNOPSYS.INF_AMD64_EF0BE23D0F063014\URSSYNOPSYS.SYS ### USB Role-Switch Driver for Synopsys Core Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\DriverStore\FileRepository\urssynopsys.inf_amd64_ef0be23d0f063014\urssynopsys.sys [Drivers] :HKLM Usb4DeviceRouter=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\USB4DEVICEROUTER.INF_AMD64_B6597A9DABC2B656\USB4DEVICEROUTER.SYS ### Pilote de routeur périphérique USB4(TM) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\DriverStore\FileRepository\usb4devicerouter.inf_amd64_b6597a9dabc2b656\Usb4DeviceRouter.sys [Drivers] :HKLM Usb4HostRouter=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\USB4HOSTROUTER.INF_AMD64_5AB9F0F733B5542D\USB4HOSTROUTER.SYS ### USB4(TM) Host Router Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\DriverStore\FileRepository\usb4hostrouter.inf_amd64_5ab9f0f733b5542d\Usb4HostRouter.sys [Drivers] :HKLM usbaudio=C:\WINDOWS\SYSTEM32\DRIVERS\USBAUDIO.SYS ### USB Audio Class Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\system32\drivers\usbaudio.sys [Drivers] :HKLM usbaudio2=C:\WINDOWS\SYSTEM32\DRIVERS\USBAUDIO2.SYS ### Microsoft USB Audio Class 2.0 Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\usbaudio2.sys [Drivers] :HKLM usbccgp=C:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS ### USB Common Class Generic Parent Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\usbccgp.sys [Drivers] :HKLM usbcir=C:\WINDOWS\SYSTEM32\DRIVERS\USBCIR.SYS ### USB Consumer IR Driver for eHome Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\usbcir.sys [Drivers] :HKLM usbehci=C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS ### EHCI eUSB Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\usbehci.sys [Drivers] :HKLM usbhub=C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS ### Pilote de concentrateur USB par défaut Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\usbhub.sys [Drivers] :HKLM USBHUB3=C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB3.SYS ### Pilote de concentrateur USB3 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\UsbHub3.sys [Drivers] :HKLM usbohci=C:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS ### OHCI USB Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\usbohci.sys [Drivers] :HKLM usbprint=C:\WINDOWS\SYSTEM32\DRIVERS\USBPRINT.SYS ### USB Printer driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\usbprint.sys [Drivers] :HKLM usbser=C:\WINDOWS\SYSTEM32\DRIVERS\USBSER.SYS ### USB Serial Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\usbser.sys [Drivers] :HKLM USBSTOR=C:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS ### Pilote de classe de stockage de masse USB Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\USBSTOR.SYS [Drivers] :HKLM usbuhci=C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS ### UHCI USB Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\usbuhci.sys [Drivers] :HKLM usbvideo=C:\WINDOWS\SYSTEM32\DRIVERS\USBVIDEO.SYS ### USB Video Class Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\Drivers\usbvideo.sys [Drivers] :HKLM USBXHCI=C:\WINDOWS\SYSTEM32\DRIVERS\USBXHCI.SYS ### Pilote XHCI USB Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\USBXHCI.SYS [Drivers] :HKLM vdrvroot=C:\WINDOWS\SYSTEM32\DRIVERS\VDRVROOT.SYS ### Virtual Drive Root Enumerator Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1591 !$*C:\WINDOWS\System32\drivers\vdrvroot.sys [Drivers] :HKLM VerifierExt=C:\WINDOWS\SYSTEM32\DRIVERS\VERIFIEREXT.SYS ### Extension du vérificateur de pilotes Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\VerifierExt.sys [Drivers] :HKLM vhdmp=C:\WINDOWS\SYSTEM32\DRIVERS\VHDMP.SYS ### VHD Miniport Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1591 !$*\SystemRoot\System32\drivers\vhdmp.sys [Drivers] :HKLM vhf=C:\WINDOWS\SYSTEM32\DRIVERS\VHF.SYS ### Virtual HID Framework (VHF) Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\vhf.sys [Drivers] :HKLM Vid=C:\WINDOWS\SYSTEM32\DRIVERS\VID.SYS ### Microsoft Hyper-V Virtualization Infrastructure Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\Vid.sys [Drivers] :HKLM VirtualRender=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\VRD.INF_AMD64_4DD0E6D66A75BB7E\VRD.SYS ### Microsoft Virtual Render Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\vrd.inf_amd64_4dd0e6d66a75bb7e\vrd.sys [Drivers] :HKLM virtual_file=C:\WINDOWS\SYSTEM32\DRIVERS\VIRTUAL_FILE.SYS ### Acronis Virtual File Acronis International GmbH Acronis Virtual File 2.0.0.10017 !$*C:\WINDOWS\system32\DRIVERS\virtual_file.sys [Drivers] :HKLM vmbus=C:\WINDOWS\SYSTEM32\DRIVERS\VMBUS.SYS ### Pilote enfant de bus VMBus sous Microsoft Hyper-V Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\vmbus.sys [Drivers] :HKLM VMBusHID=C:\WINDOWS\SYSTEM32\DRIVERS\VMBUSHID.SYS ### Microsoft VMBus HID Miniport Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\VMBusHID.sys [Drivers] :HKLM vmgid=C:\WINDOWS\SYSTEM32\DRIVERS\VMGID.SYS ### Virtual Machine Guest Infrastructure Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\vmgid.sys [Drivers] :HKLM volmgr=C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGR.SYS ### Volume Manager Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\volmgr.sys [Drivers] :HKLM volmgrx=C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGRX.SYS ### Pilote d’extension du gestionnaire de volumes Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\volmgrx.sys [Drivers] :HKLM volsnap=C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS ### Pilote de cliché instantané du volume Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\volsnap.sys [Drivers] :HKLM volume=C:\WINDOWS\SYSTEM32\DRIVERS\VOLUME.SYS ### Volume driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*C:\WINDOWS\System32\drivers\volume.sys [Drivers] :HKLM volume_tracker=C:\WINDOWS\SYSTEM32\DRIVERS\VOLUME_TRACKER.SYS ### Acronis Volume Tracker Driver Acronis International GmbH Acronis Volume Tracker 1.1.0.10015 !$*C:\WINDOWS\system32\DRIVERS\volume_tracker.sys [Drivers] :HKLM vpci=C:\WINDOWS\SYSTEM32\DRIVERS\VPCI.SYS ### Virtual PCI Bus Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\vpci.sys [Drivers] :HKLM vsmraid=C:\WINDOWS\SYSTEM32\DRIVERS\VSMRAID.SYS ### VIA RAID DRIVER FOR AMD-X86-64 VIA Technologies Inc.,Ltd VIA RAID driver 7.0.9600,6352 !$*C:\WINDOWS\System32\drivers\vsmraid.sys [Drivers] :HKLM VSTXRAID=C:\WINDOWS\SYSTEM32\DRIVERS\VSTXRAID.SYS ### VIA StorX RAID Controller Driver VIA Corporation VIA StorX RAID Controller Driver 8.0.9200.8110 !$*C:\WINDOWS\System32\drivers\vstxraid.sys [Drivers] :HKLM vwifibus=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NETVWIFIBUS.INF_AMD64_AB4E111FE8221178\VWIFIBUS.SYS ### Virtual Wireless Bus Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\netvwifibus.inf_amd64_ab4e111fe8221178\vwifibus.sys [Drivers] :HKLM vwififlt=C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIFLT.SYS ### Virtual WiFi Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\vwififlt.sys [Drivers] :HKLM WacomPen=C:\WINDOWS\SYSTEM32\DRIVERS\WACOMPEN.SYS ### Pilote de tablette Wacom à stylet série Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.1 !$*\SystemRoot\System32\drivers\wacompen.sys [Drivers] :HKLM wanarp=C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS ### MS Remote Access and Routing ARP Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\DRIVERS\wanarp.sys [Drivers] :HKLM wanarpv6=C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS ### MS Remote Access and Routing ARP Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\DRIVERS\wanarp.sys [Drivers] :HKLM wcifs=C:\WINDOWS\SYSTEM32\DRIVERS\WCIFS.SYS ### Windows Container Isolation FS Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\system32\drivers\wcifs.sys [Drivers] :HKLM WdBoot=C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDBOOT.SYS ### Microsoft antimalware boot driver Microsoft Corporation Microsoft® Windows® Operating System 4.18.24080.9 !$*\SystemRoot\system32\drivers\wd\WdBoot.sys [Drivers] :HKLM Wdf01000=C:\WINDOWS\SYSTEM32\DRIVERS\WDF01000.SYS ### Runtime de l’infrastructure de pilotes en mode noyau Microsoft Corporation Système d’exploitation Microsoft® Windows® 1.33.26100.2294 !$*C:\WINDOWS\system32\drivers\Wdf01000.sys [Drivers] :HKLM WdFilter=C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDFILTER.SYS ### Microsoft antimalware file system filter driver Microsoft Corporation Microsoft® Windows® Operating System 4.18.24080.9 !$*\SystemRoot\system32\drivers\wd\WdFilter.sys [Drivers] :HKLM WdiServiceHost=C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDFILTER.SYS ### Microsoft antimalware file system filter driver Microsoft Corporation Microsoft® Windows® Operating System 4.18.24080.9 !$*\SystemRoot\system32\drivers\wd\WdFilter.sys [Drivers] :HKLM WdiSystemHost=C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDFILTER.SYS ### Microsoft antimalware file system filter driver Microsoft Corporation Microsoft® Windows® Operating System 4.18.24080.9 !$*\SystemRoot\system32\drivers\wd\WdFilter.sys [Drivers] :HKLM wdiwifi=C:\WINDOWS\SYSTEM32\DRIVERS\WDIWIFI.SYS ### WDI Driver Framework Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\DRIVERS\wdiwifi.sys [Drivers] :HKLM WdmCompanionFilter=C:\WINDOWS\SYSTEM32\DRIVERS\WDMCOMPANIONFILTER.SYS ### WDM Companion Filter Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\WdmCompanionFilter.sys [Drivers] :HKLM WdNisDrv=C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDNISDRV.SYS ### Windows Defender Network Stream Filter Microsoft Corporation Microsoft® Windows® Operating System 4.18.24080.9 !$*C:\WINDOWS\system32\drivers\wd\WdNisDrv.sys [Drivers] :HKLM WFPLWFS=C:\WINDOWS\SYSTEM32\DRIVERS\WFPLWFS.SYS ### WFP NDIS 6.30 Lightweight Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2294 !$*C:\WINDOWS\System32\drivers\wfplwfs.sys [Drivers] :HKLM Wificx=C:\WINDOWS\SYSTEM32\DRIVERS\WIFICX.SYS ### Windows Wifi Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\drivers\WifiCx.sys [Drivers] :HKLM WIMMount=C:\WINDOWS\SYSTEM32\DRIVERS\WIMMOUNT.SYS ### Wim file system Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->WIMFLTR.SYS !$*C:\WINDOWS\system32\drivers\wimmount.sys [Drivers] :HKLM WinAccelCx0101=C:\WINDOWS\SYSTEM32\DRIVERS\WINACCELCX.SYS ### Microsoft Accelerator Class Extension Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\WinAccelCx.sys [Drivers] :HKLM WindowsTrustedRT=C:\WINDOWS\SYSTEM32\DRIVERS\WINDOWSTRUSTEDRT.SYS ### Windows Trusted Runtime Interface Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\system32\drivers\WindowsTrustedRT.sys [Drivers] :HKLM WindowsTrustedRTProxy=C:\WINDOWS\SYSTEM32\DRIVERS\WINDOWSTRUSTEDRTPROXY.SYS ### Windows Trusted Runtime Service Proxy Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [Drivers] :HKLM WinDriver6=C:\WINDOWS\SYSTEM32\DRIVERS\WINDRVR6.SYS ### WinDriver Device Driver 10.10 Jungo WinDriver Device Driver (x64) 10.10 !$*\SystemRoot\system32\drivers\windrvr6.sys [Drivers] :HKLM WinI3C=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\WINI3C.INF_AMD64_A7ED04BFCDB83650\WINI3C.SYS ### WinI3C Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\DriverStore\FileRepository\wini3c.inf_amd64_a7ed04bfcdb83650\WinI3C.sys [Drivers] :HKLM WinMad=C:\WINDOWS\SYSTEM32\DRIVERS\WINMAD.SYS ### Kernel WinMad Mellanox OpenFabrics Windows 10.0.10011.16384 !$*\SystemRoot\System32\drivers\winmad.sys [Drivers] :HKLM WinNat=C:\WINDOWS\SYSTEM32\DRIVERS\WINNAT.SYS ### Pilote NAT Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\winnat.sys [Drivers] :HKLM WinSetupMon=C:\WINDOWS\SYSTEM32\DRIVERS\WINSETUPMON.SYS ### WinSetupMon Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*C:\WINDOWS\system32\DRIVERS\WinSetupMon.sys [Drivers] :HKLM WINUSB=C:\WINDOWS\SYSTEM32\DRIVERS\WINUSB.SYS ### Windows WinUSB Class Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\WinUSB.SYS [Drivers] :HKLM WinVerbs=C:\WINDOWS\SYSTEM32\DRIVERS\WINVERBS.SYS ### Kernel WinVerbs Mellanox OpenFabrics Windows 10.0.10011.16384 !$*\SystemRoot\System32\drivers\winverbs.sys [Drivers] :HKLM WmiAcpi=C:\WINDOWS\SYSTEM32\DRIVERS\WMIACPI.SYS ### Windows Management Interface for ACPI Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\wmiacpi.sys [Drivers] :HKLM WpdUpFltr=C:\WINDOWS\SYSTEM32\DRIVERS\WPDUPFLTR.SYS ### Windows Portable Device Upper Class Filter Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*C:\WINDOWS\System32\drivers\WpdUpFltr.sys [Drivers] :HKLM ws2ifsl=C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS ### Couche IFS Winsock2 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*\SystemRoot\system32\drivers\ws2ifsl.sys [Drivers] :HKLM wscsvc=C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS ### Couche IFS Winsock2 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*\SystemRoot\system32\drivers\ws2ifsl.sys [Drivers] :HKLM WSDPrintDevice=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\WSDPRINT.INF_AMD64_1F9E32519098C0B6\WSDPRINT.SYS ### Web Services Print Device Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [Drivers] :HKLM WSDScan=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\STI.INF_AMD64_971C769B103DF369\WSDSCAN.SYS ### Web Service Based Scan Device Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\DriverStore\FileRepository\sti.inf_amd64_971c769b103df369\WSDScan.sys [Drivers] :HKLM wtd=C:\WINDOWS\SYSTEM32\DRIVERS\WTD.SYS ### WTD Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\System32\drivers\wtd.sys [Drivers] :HKLM WudfPf=C:\WINDOWS\SYSTEM32\DRIVERS\WUDFPF.SYS ### Windows Driver Foundation - User-mode Driver Framework Platform Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*C:\WINDOWS\system32\drivers\WudfPf.sys [Drivers] :HKLM WUDFRd=C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS ### Windows Driver Foundation - User-mode Driver Framework Reflector Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\WUDFRd.sys [Drivers] :HKLM WUDFWpdFs=C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS ### Windows Driver Foundation - User-mode Driver Framework Reflector Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\system32\DRIVERS\WUDFRd.sys [Drivers] :HKLM xboxgip=C:\WINDOWS\SYSTEM32\DRIVERS\XBOXGIP.SYS ### Game Input Protocol Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*\SystemRoot\System32\drivers\xboxgip.sys [Drivers] :HKLM xinputhid=C:\WINDOWS\SYSTEM32\DRIVERS\XINPUTHID.SYS ### XINPUT filter driver for HID Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*\SystemRoot\System32\drivers\xinputhid.sys [Drivers] :HKLM Xvdd=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\XVDD.INF_AMD64_A651BFF0BE9A1044\XVDD.SYS ### XVD Disk Driver Microsoft Corporation Microsoft Gaming Filesystem Driver 10.0.26100.1170 !$*\SystemRoot\System32\DriverStore\FileRepository\xvdd.inf_amd64_a651bff0be9a1044\xvdd.sys [Drivers] :HKLM ZTDNS=C:\WINDOWS\SYSTEM32\DRIVERS\ZTDNS.SYS ### ZTDNS Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\drivers\ztdns.sys [Codecs] :HKLM aux=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM midi=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM midimapper=C:\WINDOWS\SysWOW64\MIDIMAP.DLL ### Microsoft MIDI Mapper Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*midimap.dll [Codecs] :HKLM mixer=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM msacm.imaadpcm=C:\WINDOWS\SysWOW64\IMAADP32.ACM ### Codec IMA ADPCM pour MSACM Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->IMA ADPCM CODEC FOR MSACM !$*imaadp32.acm [Codecs] :HKLM msacm.msadpcm=C:\WINDOWS\SysWOW64\MSADP32.ACM ### Codec Microsoft ADPCM pour MSACM Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->MICROSOFT ADPCM CODEC FOR MSACM !$*msadp32.acm [Codecs] :HKLM msacm.msg711=C:\WINDOWS\SysWOW64\MSG711.ACM ### CODEC A-Law et u-Law pour MSACM Microsoft CCITT G.711 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->MICROSOFT CCITT G.711 (A-LAW AND U-LAW) CODEC FOR MSACM !$*msg711.acm [Codecs] :HKLM msacm.msgsm610=C:\WINDOWS\SysWOW64\MSGSM32.ACM ### Codec audio Microsoft GSM 6.10 pour MSACM Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->MICROSOFT GSM 6.10 AUDIO CODEC FOR MSACM !$*msgsm32.acm [Codecs] :HKLM vidc.cvid=C:\WINDOWS\SysWOW64\ICCVID.DLL ### Codec Cinepak® Radius Inc. Cinepak pour Windows 32 1.10.0.0 =>ICCVID.DRV.MUI !$*iccvid.dll [Codecs] :HKLM vidc.i420=C:\WINDOWS\SysWOW64\IYUV_32.DLL ### Codec vidéo YUV Intel Indeo(R) Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*iyuv_32.dll [Codecs] :HKLM vidc.iyuv=C:\WINDOWS\SysWOW64\IYUV_32.DLL ### Codec vidéo YUV Intel Indeo(R) Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*iyuv_32.dll [Codecs] :HKLM vidc.mrle=C:\WINDOWS\SysWOW64\MSRLE32.DLL ### Microsoft RLE Compressor Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*msrle32.dll [Codecs] :HKLM vidc.msvc=C:\WINDOWS\SysWOW64\MSVIDC32.DLL ### Compresseur Microsoft Vidéo 1 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*msvidc32.dll [Codecs] :HKLM vidc.uyvy=C:\WINDOWS\SysWOW64\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*msyuv.dll [Codecs] :HKLM vidc.yuy2=C:\WINDOWS\SysWOW64\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*msyuv.dll [Codecs] :HKLM vidc.yvu9=C:\WINDOWS\SysWOW64\TSBYUV.DLL ### Toshiba Video Codec Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*tsbyuv.dll [Codecs] :HKLM vidc.yvyu=C:\WINDOWS\SysWOW64\MSYUV.DLL ### Microsoft UYVY Video Decompressor Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*msyuv.dll [Codecs] :HKLM wave=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM wavemapper=C:\WINDOWS\SysWOW64\MSACM32.DRV ### Mappeur de sons Microsoft Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->MICROSOFT SOUND MAPPER =>MSACM32.ACM.MUI !$*msacm32.drv [Codecs] :HKLM msacm.l3acm=C:\WINDOWS\SYSWOW64\L3CODECA.ACM ### MPEG Layer-3 Audio Codec for MSACM Fraunhofer Institut Integrierte Schaltungen IIS Codec audio MPEG Layer-3 pour MSACM 1, 0, 0, 0 ->L3CODEC.ACM =>L3CODEC.ACM.MUI !$*C:\Windows\SysWOW64\l3codeca.acm [Codecs] :HKLM VIDC.RTV1=C:\WINDOWS\SysWOW64\RTVCVFW32.DLL ### !$*rtvcvfw32.dll [Codecs] :HKLM aux1=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM aux2=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM aux3=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM midi1=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM midi2=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM midi4=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM midi5=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM mixer1=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM mixer2=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM mixer3=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM mixer5=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM mixer7=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM mixer8=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM wave1=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM wave2=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM wave3=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM wave5=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM wave7=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM wave8=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM mixer4=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM wave4=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM midi3=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM mixer6=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [Codecs] :HKLM wave6=C:\WINDOWS\SysWOW64\WDMAUD.DRV ### Pilote du système audio Winmm Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*wdmaud.drv [DCOM Components] :HKLM {F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}="" [DCOM Components] :HKLM {5839FCA9-774D-42A1-ACDA-D6A79037F57F}="" [DCOM Components] :HKLM {42AEDC87-2188-41FD-B9A3-0C966FEABEC1}="" [DCOM User Components] :HKCU {F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}="" [DCOM User Components] :HKCU {FBEB8A05-BEEE-4442-804E-409D6C4515E9}="" [DCOM User Components] :HKCU {42AEDC87-2188-41FD-B9A3-0C966FEABEC1}="" [Auto Start Apps] [Registry Run] :HKCU "Default Value"="" [Registry Run] :HKLM Live Update=C:\PROGRAM FILES (X86)\MSI\LIVE UPDATE\LIVE UPDATE.EXE ### Live Update 6 Application Micro-Star INT'L CO., LTD. Live Update 6 Application 6.2.0.77 !$*C:\Program Files (x86)\MSI\Live Update\Live Update.exe /REMINDER [Registry Run] :HKLM Fast Boot=C:\PROGRAM FILES (X86)\MSI\FAST BOOT\STARTFASTBOOT.EXE ### 1.0.0.2 !$*C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe [Registry Run] :HKLM Display=C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\DATACOLLECTIONLAUNCHER.EXE ### Startup Notification Module Schneider Electric PowerChute Personal Edition 3.1.0 ->DISPLAY =>POWERCHUTE !$*C:\Program Files (x86)\APC\PowerChute Personal Edition\DataCollectionLauncher.exe [Registry Run] :HKLM APP Manager=C:\PROGRAM FILES (X86)\MSI\APP MANAGER\APPMANAGER.EXE ### APP Manager Micro-Star INT'L CO., LTD. APP Manager 1.0.0.32 !$*C:\Program Files (x86)\MSI\APP Manager\AppManager.exe /mini [Registry Run] :HKLM Command Center=C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\STARTCOMMANDCENTER.EXE ### MSI MSI Start Command Center 3.0.1.00 !$*C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe [Registry Run] :HKLM RoboForm=C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\ROBOTASKBARICON.EXE ### RoboForm TaskBar Icon Siber Systems RoboForm 9.6.2.2 !$*"C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe" [Registry Run] :HKLM "Default Value"="" [Registry Run(x64)] :HKLM SecurityHealth=C:\WINDOWS\SYSTEM32\SECURITYHEALTHSYSTRAY.EXE ### Windows Security notification icon Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\SecurityHealthSystray.exe [Registry Run(x64)] :HKLM RtkAudUService=C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\REALTEKSERVICE.INF_AMD64_1803724721D1A34C\RTKAUDUSERVICE64.EXE ### Realtek HD Audio Universal Service Realtek Semiconductor Realtek HD Audio Universal Service 1.1.619.1 ->RTKAUDUSERVICE.EXE !$*"C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1803724721d1a34c\RtkAudUService64.exe" -background [Registry Run(x64)] :HKLM Classic Start Menu=C:\PROGRAM FILES\CLASSIC SHELL\CLASSICSTARTMENU.EXE ### Classic Start Menu IvoSoft Classic Shell 4, 3, 1, 0 !$*"C:\Program Files\Classic Shell\ClassicStartMenu.exe" -autorun [Registry Run(x64)] :HKLM Acronis Scheduler2 Service=C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\SCHEDULE2\SCHEDHLP.EXE ### Acronis Scheduler Service Helper Acronis International GmbH Acronis Tools 8,0,1,11438 !$*C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [Registry Run(x64)] :HKLM EvtMgr6=C:\PROGRAM FILES\LOGITECH\SETPOINTP\SETPOINT.EXE ### Logitech SetPoint Event Manager (UNICODE) Logitech, Inc. Logitech SetPoint 6.90.66 !$*C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming [Registry Run(x64)] :HKLM Logitech Download Assistant=C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch ### File is missing. !$*C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch [Registry Run(x64)] :HKLM "Default Value"="" [Registry RunOnceEx] :HKLM @RegRunReport [Win.ini] :HKCU load="" [Win.ini] :HKCU run="" [Startup Folder] AutorunsDisabled=C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled ### File is missing. !$*C:\Users\Utilisateur\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [Startup Folder] Yahoo! Widgets.lnk=C:\PROGRAM FILES (X86)\YAHOO!\WIDGETS\YAHOOWIDGETS.EXE ### Yahoo! Widgets Yahoo! Inc. Yahoo! Widgets 4.5.1 ->YAHOO! WIDGETS =>YAHOOWIDGETENGINE.EXE !$*C:\Program Files (x86)\Yahoo!\Widgets\YahooWidgets.exe [Common Startup Folder] APC UPS Status.lnk=C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\DISPLAY.EXE ### Startup Notification Module Schneider Electric PowerChute Personal Edition 3.1.0 =>POWERCHUTE !$*C:\Program Files (x86)\APC\PowerChute Personal Edition\Display.exe [Scheduled Tasks] MSISW_Host=C:\WINDOWS\SYSWOW64\MUACHOST.EXE ### Windows Host Process MSI muachost 1.0.0.1 !$*C:\WINDOWS\SysWOW64\muachost.exe [Scheduled Tasks] EPSON ET-3850 Series Update {EE257D5E-636F-4970-8228-A4E56DE11235}=C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\E_YTSYHE.EXE ### E_DTSKSD.EXE Seiko Epson Corporation E_DTSKSD.EXE 1.3.1.0 ->E_DTSKSD.EXE !$*C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSYHE.EXE [Scheduled Tasks] EPSON ET-3850 Series Update {B42B311D-0A2D-44EA-A51A-4BFCD79C4EA6}=C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\E_YTSYHE.EXE ### E_DTSKSD.EXE Seiko Epson Corporation E_DTSKSD.EXE 1.3.1.0 ->E_DTSKSD.EXE !$*C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSYHE.EXE [Scheduled Tasks] EPSON ET-3850 Series Update {603C03CE-A780-474F-9AC9-BF908BC0362F}=C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\E_YTSYHE.EXE ### E_DTSKSD.EXE Seiko Epson Corporation E_DTSKSD.EXE 1.3.1.0 ->E_DTSKSD.EXE !$*C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSYHE.EXE [Scheduled Tasks] CCleanerCrashReporting=C:\PROGRAM FILES\CCLEANER\CCLEANERBUGREPORT.EXE ### CCleaner Bug Report Gen Digital Inc. CCleaner 1.0.0.1 !$*C:\Program Files\CCleaner\CCleanerBugReport.exe [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Adobe Acrobat Update Task=C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ARM\1.0\ADOBEARM.EXE ### Adobe Reader and Acrobat Manager Adobe Inc. Adobe Reader and Acrobat Manager 1.824.460.1091 !$*C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe Description: This task keeps your Adobe Reader and Acrobat appl Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Agent Activation Runtime\S-1-5-21-1293147834-1548857375-139538282-1000=C:\WINDOWS\SYSTEM32\AGENTACTIVATIONRUNTIMESTARTER.EXE ### AgentActivationRuntime Starter Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\Windows\System32\AgentActivationRuntimeStarter.exe Status: Disabled Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\AviraSystemSpeedupVerify=C:\PROGRAM FILES (X86)\AVIRA\SYSTEM SPEEDUP\SETUP\AVIRA_SPEEDUP_SETUP.EXE ### Avira System Speedup Setup Avira Operations GmbH Avira System Speedup 7.4 => !$*"C:\Program Files (x86)\Avira\System Speedup\setup\avira_speedup_setup.exe" Parameters: /VERIFY /VERYSILENT /NOSTART /NODOTNET /NORESTART [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Avira_FallbackUpdater=C:\WINDOWS\SYSTEM32\SC.EXE ### Outil de configuration du Gestionnaire de contrôle des services Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\sc.exe Parameters: start AviraFallbackUpdater Delayed=false [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Avira_Security_Maintenance=C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SERVICE.WORKER.EXE ### Avira Security Avira Operations GmbH Avira Security 1.1.104.1294 ->AVIRA SECURITY =>SERVICE.WORKER.EXE !$*C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe Parameters: FallbackTelemetry [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Avira_Security_Service_SCM_Watchdog=C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SERVICE.WORKER.EXE ### Avira Security Avira Operations GmbH Avira Security 1.1.104.1294 ->AVIRA SECURITY =>SERVICE.WORKER.EXE !$*C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe Parameters: HandleServiceControlManagerEvent 7000 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Avira_Security_Systray=C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SYSTRAY.APPLICATION.EXE ### Avira Security Avira Operations GmbH Avira Security 1.1.104.1294 ->AVIRA SECURITY !$*C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Avira_Security_Update=C:\WINDOWS\SYSTEM32\NET.EXE ### Net Command Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\net.exe Parameters: start AviraSecurityUpdater [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\CCleaner Update=C:\PROGRAM FILES\CCLEANER\CCUPDATE.EXE ### CCleaner CCleaner emergency updater Gen Digital Inc. CCleaner CCleaner 24.8.15.0 !$*C:\Program Files\CCleaner\CCUpdate.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\CCleanerCrashReporting=C:\PROGRAM FILES\CCLEANER\CCLEANERBUGREPORT.EXE ### CCleaner Bug Report Gen Digital Inc. CCleaner 1.0.0.1 !$*C:\Program Files\CCleaner\CCleanerBugReport.exe Parameters: --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "f999ea10-2c42-461c-a734-ea737c293cb2" --version "6.28.11297" --silent [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\CCleanerSkipUAC - Utilisateur=C:\PROGRAM FILES\CCLEANER\CCLEANER.EXE ### CCleaner Piriform Software Ltd CCleaner 6.28.0.11297 !$*"C:\Program Files\CCleaner\CCleaner.exe" Parameters: $(Arg0) [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\CreateExplorerShellUnelevatedTask=C:\WINDOWS\EXPLORER.EXE ### Explorateur Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\explorer.exe Parameters: /NoUACCheck [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\DivXUpdate=C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\DIVX UPDATE\DIVXUPDATE.EXE ### DivX Update DivX, LLC Launcher 10, 10, 1, 0 ->ADAMANT =>LAUNCHER.DLL !$*C:\Program Files (x86)\Common Files\DivX Shared\DivX Update\DivXUpdate.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem131.0.6776.0{1F5BEA26-ED5B-4832-BA52-7E79E9852F54}=C:\PROGRAM FILES (X86)\GOOGLE\GOOGLEUPDATER\131.0.6776.0\UPDATER.EXE ### Google Updater Google LLC Google Updater 131.0.6776.0 ->GOOGLE UPDATER (X86) !$*"C:\Program Files (x86)\Google\GoogleUpdater\131.0.6776.0\updater.exe" Description: GoogleUpdater Task System 131.0.6776.0 Parameters: --wake --system [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Office\Office Automatic Updates 2.0=C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\CLICKTORUN\OFFICEC2RCLIENT.EXE ### Microsoft Office Click-to-Run Client Microsoft Corporation Microsoft 365 and Office 16.0.18025.20140 !$*C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe Description: This task ensures that your Microsoft Office insta Parameters: /frequentupdate SCHEDULEDTASK displaylevel=False [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Office\Office ClickToRun Service Monitor=C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\CLICKTORUN\OFFICEC2RCLIENT.EXE ### Microsoft Office Click-to-Run Client Microsoft Corporation Microsoft 365 and Office 16.0.18025.20140 !$*C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe Description: This task monitors the state of your Microsoft Off Parameters: /WatchService [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Office\Office Feature Updates=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\SDXHELPER.EXE ### Microsoft Office SDX Helper Microsoft Corporation Microsoft Office 16.0.18025.20140 !$*C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe Description: This task ensures that your Microsoft Office insta Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Office\Office Feature Updates Logon=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\SDXHELPER.EXE ### Microsoft Office SDX Helper Microsoft Corporation Microsoft Office 16.0.18025.20140 !$*C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe Description: This task ensures that your Microsoft Office insta Parameters: /onlogon [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Office\Office Performance Monitor=C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESCOMMONX64\MICROSOFT SHARED\OFFICE16\OPERFMON.EXE ### Office Performance Monitor Microsoft Corporation Microsoft Office 16.0.18025.20030 !$*C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe Description: This task ensures that your Microsoft Office insta Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\AppID\PolicyConverter=C:\WINDOWS\SYSTEM32\APPIDPOLICYCONVERTER.EXE ### AppID Policy Converter Task Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*%windir%\system32\appidpolicyconverter.exe Status: Disabled Description: $(@%systemroot%\system32\appidsvc.dll,-302) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck=C:\WINDOWS\SYSTEM32\APPIDCERTSTORECHECK.EXE ### AppID Certificate Store Verification Task Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 !$*%windir%\system32\appidcertstorecheck.exe Status: Disabled Description: $(@%systemroot%\system32\appidsvc.dll,-202) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Application Experience\MareBackup=C:\WINDOWS\SYSTEM32\COMPATTELRUNNER.EXE ### Télémétrie de compatibilité Microsoft Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\compattelrunner.exe Description: $(@%SystemRoot%\system32\aemarebackup.dll,-702) Parameters: -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser=C:\WINDOWS\SYSTEM32\SC.EXE ### Outil de configuration du Gestionnaire de contrôle des services Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\sc.exe Description: $(@%SystemRoot%\system32\compattelrunner.exe,-503) Parameters: start InventorySvc [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser Exp=C:\WINDOWS\SYSTEM32\COMPATTELRUNNER.EXE ### Télémétrie de compatibilité Microsoft Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\compattelrunner.exe Description: $(@%SystemRoot%\system32\compattelrunner.exe,-503) Parameters: -m:appraiser.dll -f:DoScheduledTelemetryRun express [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Application Experience\PcaPatchDbTask=C:\WINDOWS\SYSTEM32\PCASVC.DLL ### Service de l’Assistant Compatibilité des programmes Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\rundll32.exe %windir%\system32\PcaSvc.dll,PcaPatchSdbTask Description: Updates compatibility database Parameters: %windir%\system32\PcaSvc.dll,PcaPatchSdbTask [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Application Experience\SdbinstMergeDbTask=C:\WINDOWS\SYSTEM32\SDBINST.EXE ### Programme d’installation de la base de données de compatibilité des applications Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\sdbinst.exe Description: $(@%SystemRoot%\system32\sdbinst.exe,-1062) Parameters: -mm [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Application Experience\StartupAppTask=C:\WINDOWS\SysWOW64\STARTUPSCAN.DLL ### DLL de tâche d’analyse de démarrage Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\rundll32.exe Startupscan.dll,SusRunTask Description: $(@%SystemRoot%\system32\Startupscan.dll,-702) Parameters: Startupscan.dll,SusRunTask [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\ApplicationData\appuriverifierdaily=C:\WINDOWS\SYSTEM32\APPHOSTREGISTRATIONVERIFIER.EXE ### Vérificateur de l’inscription des gestionnaires d’URI d’applications Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->APP URI HANDLERS REGISTRATION VERIFIER =>APPHOSTNAMEREGISTRATIONVERIFIER.EXE.MUI !$*%windir%\system32\AppHostRegistrationVerifier.exe Description: $(@%systemroot%\system32\AppHostRegistrationVerifi Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\ApplicationData\appuriverifierinstall=C:\WINDOWS\SYSTEM32\APPHOSTREGISTRATIONVERIFIER.EXE ### Vérificateur de l’inscription des gestionnaires d’URI d’applications Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->APP URI HANDLERS REGISTRATION VERIFIER =>APPHOSTNAMEREGISTRATIONVERIFIER.EXE.MUI !$*%windir%\system32\AppHostRegistrationVerifier.exe Description: $(@%systemroot%\system32\AppHostRegistrationVerifi Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\ApplicationData\CleanupTemporaryState=C:\WINDOWS\SysWOW64\WINDOWS.STORAGE.APPLICATIONDATA.DLL ### Windows Application Data API Server Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1 ->WINDOWS APPLICATION DATA API SERVER !$*%windir%\system32\rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Description: $(@%systemroot%\system32\Windows.Storage.Applicati Parameters: Windows.Storage.ApplicationData.dll,CleanupTemporaryState [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\ApplicationData\DsSvcCleanup=C:\WINDOWS\SYSTEM32\DSTOKENCLEAN.EXE ### Data Sharing Service Maintenance Driver Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->DATA SHARING SERVICE MAINTENANCE DRIVER !$*%windir%\system32\dstokenclean.exe Description: $(@%systemroot%\system32\dssvc.dll,-10006) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup=C:\WINDOWS\SYSTEM32\APPXDEPLOYMENTCLIENT.DLL ### DLL du client de déploiement d’AppX Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Status: Disabled Parameters: %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\AppxDeploymentClient\UCPD velocity=C:\WINDOWS\SYSTEM32\UCPDMGR.EXE ### User Choice Protection Manager Microsoft Corporation Microsoft® Windows® Operating System 3.1.0.519704+16a380a2 !$*%windir%\system32\UCPDMgr.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Autochk\Proxy=C:\WINDOWS\SYSTEM32\ACPROXY.DLL ### DLL de proxy Autochk Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\rundll32.exe /d acproxy.dll,PerformAutochkOperations Description: $(@%systemroot%\system32\acproxy.dll,-102) Parameters: /d acproxy.dll,PerformAutochkOperations [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Bluetooth\UninstallDeviceTask=C:\WINDOWS\SysWOW64\BTHUDTASK.EXE ### Tâche de désinstallation du périphérique Bluetooth Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*BthUdTask.exe Description: $(@%SystemRoot%\system32\BthUdTask.exe,-1001) Parameters: $(Arg0) [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\capabilityaccessmanager\maintenancetasks=C:\WINDOWS\SYSTEM32\CAPABILITYACCESSMANAGER.DLL ### Service Gestionnaire d’accès aux fonctionnalités Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->CAPABILITY ACCESS MANAGER SERVICE !$*%windir%\system32\rundll32.exe %windir%\system32\CapabilityAccessManager.dll,CapabilityAccessManagerDoStoreMaintenance Description: $(@%SystemRoot%\system32\CapabilityAccessManager.d Parameters: %windir%\system32\CapabilityAccessManager.dll,CapabilityAccessManagerDoStoreMaintenance [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Chkdsk\SyspartRepair=C:\WINDOWS\SYSTEM32\BCDBOOT.EXE ### Utilitaire Bcdboot Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\bcdboot.exe Parameters: %windir% /sysrepair [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Clip\License Validation=C:\WINDOWS\System32\CLIPUP.EXE ### Client License Platform migration tool Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 ->CLIENT LICENSE PLATFORM MIGRATION TOOL !$*%SystemRoot%\system32\ClipUp.exe Status: Disabled Description: $(@%SystemRoot%\system32\ClipUp.exe,-101) Parameters: -p -s -o [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Customer Experience Improvement Program\Consolidator=C:\WINDOWS\System32\WSQMCONS.EXE ### Consolidateur SQM Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\wsqmcons.exe Description: $(@%systemRoot%\system32\wsqmcons.exe,-107) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Defrag\ScheduledDefrag=C:\WINDOWS\SYSTEM32\DEFRAG.EXE ### Module de défragmenteur de disque Microsoft Corp. Optimiseur de lecteur Windows 10.0.26100.2294 !$*%windir%\system32\defrag.exe Description: $(@%systemroot%\system32\defragsvc.dll,-802) Parameters: -c -h -o -$ [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Device Information\Device=C:\WINDOWS\SYSTEM32\DEVICECENSUS.EXE ### Device Census Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\devicecensus.exe Parameters: SystemCxt [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Device Information\Device User=C:\WINDOWS\SYSTEM32\DEVICECENSUS.EXE ### Device Census Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\devicecensus.exe Parameters: UserCxt [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Diagnosis\UnexpectedCodepath=C:\WINDOWS\SYSTEM32\UCCONFIGTASK.EXE ### !$*%windir%\system32\UCConfigTask.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DirectX\DirectXDatabaseUpdater=C:\WINDOWS\SYSTEM32\DIRECTXDATABASEUPDATER.EXE ### DirectX Database Updater Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\directxdatabaseupdater.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DirectX\DXGIAdapterCache=C:\WINDOWS\SYSTEM32\DXGIADAPTERCACHE.EXE ### DXGI Adapter Cache Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\dxgiadaptercache.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DiskCleanup\SilentCleanup=C:\WINDOWS\SYSTEM32\CLEANMGR.EXE ### Gestionnaire de nettoyage de disque pour Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 =>CLEANMGR.DLL.MUI !$*%windir%\system32\cleanmgr.exe Description: $(@%systemroot%\system32\cleanmgr.exe,-1301) Parameters: /autocleanstoragesense /d %systemdrive% [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector=C:\WINDOWS\SYSTEM32\DFDTS.DLL ### Module de diagnostics des erreurs de disque Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\rundll32.exe dfdts.dll,DfdGetDefaultPolicyAndSMART Description: $(@%SystemRoot%\System32\DFDTS.dll,-119) Parameters: dfdts.dll,DfdGetDefaultPolicyAndSMART [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver=C:\WINDOWS\SYSTEM32\DFDWIZ.EXE ### Outil de résolution des défaillances disque Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\DFDWiz.exe Status: Disabled Description: $(@%SystemRoot%\System32\DFDTS.dll,-118) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DiskFootprint\Diagnostics=C:\WINDOWS\SYSTEM32\DISKSNAPSHOT.EXE ### DiskSnapshot.exe Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*%windir%\system32\disksnapshot.exe Parameters: -z [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\DUSM\dusmtask=C:\WINDOWS\System32\DUSMTASK.EXE ### DUSM Task Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\System32\dusmtask.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask=C:\WINDOWS\SYSTEM32\MDMAGENT.EXE ### MDMAgent Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\MDMAgent.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Feedback\Siuf\DmClient=C:\WINDOWS\SYSTEM32\DMCLIENT.EXE ### Microsoft Feedback SIUF Deployment Manager Client Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*%windir%\system32\dmclient.exe Description: $(@%systemRoot%\system32\dmclient.exe,-202) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload=C:\WINDOWS\SYSTEM32\DMCLIENT.EXE ### Microsoft Feedback SIUF Deployment Manager Client Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*%windir%\system32\dmclient.exe Description: $(@%systemRoot%\system32\dmclient.exe,-202) Parameters: utcwnf [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Kernel\La57Cleanup=C:\WINDOWS\SYSTEM32\LA57SETUP.EXE ### Installation de LA57 Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->LA57SETUP.DLL =>LA57SETUP.DLL.MUI !$*%windir%\system32\la57setup.exe Description: $(@%systemRoot%\system32\la57setup.exe,-202) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Location\Notifications=%windir%\System32\LocationNotificationWindows.exe ### File is missing. !$*%windir%\System32\LocationNotificationWindows.exe Description: $(@%systemRoot%\system32\LocationNotificationWindo Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Location\WindowsActionDialog=C:\WINDOWS\SYSTEM32\WINDOWSACTIONDIALOG.EXE ### Service Broker pour la boîte de dialogue Action Windows Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\System32\WindowsActionDialog.exe Description: $(@%systemRoot%\System32\WindowsActionDialog.exe,- Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Management\Provisioning\Cellular=C:\WINDOWS\SYSTEM32\PROVTOOL.EXE ### Provisioning package runtime processing tool Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\ProvTool.exe Parameters: /turn 7 /source CellStateChangeTask [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Management\Provisioning\Logon=C:\WINDOWS\SYSTEM32\PROVTOOL.EXE ### Provisioning package runtime processing tool Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\ProvTool.exe Parameters: /turn 5 /source LogonIdleTask [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup=C:\WINDOWS\SYSTEM32\MDMDIAGNOSTICSTOOL.EXE ### MdmDiagnosticsTool Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*%windir%\system32\MdmDiagnosticsTool.exe Status: Disabled Parameters: /clean [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Management\Provisioning\Retry=C:\WINDOWS\SYSTEM32\PROVTOOL.EXE ### Provisioning package runtime processing tool Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\ProvTool.exe Status: Disabled Parameters: /turn 5 /source ProvRetryTask [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Management\Provisioning\RunOnReboot=C:\WINDOWS\SYSTEM32\PROVTOOL.EXE ### Provisioning package runtime processing tool Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\ProvTool.exe Status: Disabled Parameters: /turn 5 /source ContinueSessionTask [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\MUI\LPRemove=C:\WINDOWS\SYSTEM32\LPREMOVE.EXE ### MUI Language pack cleanup Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\lpremove.exe Description: $(@%systemRoot%\System32\lpremove.exe,-101) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\NlaSvc\WiFiTask=C:\WINDOWS\System32\WIFITASK.EXE ### Tâche sans fil en arrière-plan Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\WiFiTask.exe Description: $(@%SystemRoot%\system32\wifitask.exe,-2) Parameters: nla [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\PI\SecureBootEncodeUEFI=C:\WINDOWS\SYSTEM32\SECUREBOOTENCODEUEFI.EXE ### Secure Boot UEFI Encoder Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%WINDIR%\system32\SecureBootEncodeUEFI.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers=C:\WINDOWS\System32\DRVINST.EXE ### Driver Installation Module Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%SystemRoot%\System32\drvinst.exe Description: $(@%SystemRoot%\System32\sppnp.dll,-2001) Parameters: 6 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Printing\EduPrintProv=C:\WINDOWS\SYSTEM32\EDUPRINTPROV.EXE ### Printer Provision Utility for EDU Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*%windir%\system32\eduprintprov.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\PushToInstall\LoginCheck=C:\WINDOWS\SYSTEM32\SC.EXE ### Outil de configuration du Gestionnaire de contrôle des services Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\sc.exe Parameters: start pushtoinstall login [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\PushToInstall\Registration=C:\WINDOWS\SYSTEM32\SC.EXE ### Outil de configuration du Gestionnaire de contrôle des services Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\sc.exe Parameters: start pushtoinstall registration [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask=C:\WINDOWS\SYSTEM32\RASERVER.EXE ### Serveur COM d’assistance à distance Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\RAServer.exe Description: $(@%systemroot%\system32\msra.exe,-688) Parameters: /offerraupdate [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Servicing\OOBEFodSetup=C:\WINDOWS\SYSTEM32\OOBEFODSETUP.EXE ### Perform OOBE FOD setup Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1150 !$*%windir%\system32\OOBEFodSetup.exe Status: Disabled Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Shell\FamilySafetyMonitor=C:\WINDOWS\SYSTEM32\WPCMON.EXE ### Moniteur du contrôle parental Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\System32\wpcmon.exe Description: $(@%SystemRoot%\System32\wpcmon.exe,-32015) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\SpacePort\SpaceAgentTask=C:\WINDOWS\SYSTEM32\SPACEAGENT.EXE ### Paramètres des espaces de stockage Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\SpaceAgent.exe Description: $(@%SystemRoot%\system32\SpaceAgent.exe,-3) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\SpacePort\SpaceManagerTask=C:\WINDOWS\SYSTEM32\SPACEMAN.EXE ### Storage Spaces Manager Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2294 !$*%windir%\system32\spaceman.exe Description: $(@%SystemRoot%\system32\spaceman.exe,-3) Parameters: /Work [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Speech\SpeechModelDownloadTask=C:\WINDOWS\SYSTEM32\SPEECH_ONECORE\COMMON\SPEECHMODELDOWNLOAD.EXE ### Speech Model Download Executable Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->SPEECH MODEL DOWNLOAD EXECUTABLE !$*%windir%\system32\speech_onecore\common\SpeechModelDownload.exe Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\StateRepository\MaintenanceTasks=C:\WINDOWS\SYSTEM32\WINDOWS.STATEREPOSITORYCLIENT.DLL ### Windows StateRepository Client API Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->WINDOWS STATEREPOSITORY CLIENT API !$*%windir%\system32\rundll32.exe %windir%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks Description: $(@%SystemRoot%\system32\Windows.StateRepositoryCl Parameters: %windir%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization=C:\WINDOWS\SYSTEM32\DEFRAG.EXE ### Module de défragmenteur de disque Microsoft Corp. Optimiseur de lecteur Windows 10.0.26100.2294 !$*%windir%\system32\defrag.exe Status: Disabled Description: $(@%systemroot%\system32\TieringEngineService.exe, Parameters: -c -h -g -# -m 8 -i 13500 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Subscription\EnableLicenseAcquisition=C:\WINDOWS\System32\CLIPRENEW.EXE ### Acquire License From Store Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->ACQUIRE LICENSE FROM STORE !$*%SystemRoot%\system32\ClipRenew.exe Description: $(@%SystemRoot%\system32\ClipRenew.exe,-101) Parameters: -e [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Subscription\LicenseAcquisition=C:\WINDOWS\System32\CLIPRENEW.EXE ### Acquire License From Store Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->ACQUIRE LICENSE FROM STORE !$*%SystemRoot%\system32\ClipRenew.exe Status: Disabled Description: $(@%SystemRoot%\system32\ClipRenew.exe,-102) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Sysmain\WsSwapAssessmentTask=C:\WINDOWS\SYSTEM32\SYSMAIN.DLL ### Hôte de Service SysMain Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Description: $(@%systemRoot%\System32\sysmain.dll,-3001) Parameters: sysmain.dll,PfSvWsSwapAssessmentTask [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\SystemRestore\SR=C:\WINDOWS\SYSTEM32\SRTASKS.EXE ### Tâches de fond de la protection du système Microsoft® Windows. Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\srtasks.exe Description: $(@%systemroot%\system32\srrstr.dll,-322) Parameters: ExecuteScheduledSPPCreation [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Time Synchronization\SynchronizeTime=C:\WINDOWS\SYSTEM32\SC.EXE ### Outil de configuration du Gestionnaire de contrôle des services Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\sc.exe Description: $(@%systemroot%\system32\w32time.dll,-201) Parameters: start w32time task_started [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Time Zone\SynchronizeTimeZone=C:\WINDOWS\SYSTEM32\TZSYNC.EXE ### TimeZone Sync Task Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\tzsync.exe Description: $(@%SystemRoot%\system32\tzsyncres.dll,-102) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UNP\RunUpdateNotificationMgr=C:\WINDOWS\SYSTEM32\UNP\UPDATENOTIFICATIONMGR.EXE ### Update Notification Pipeline Manager Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\System32\UNP\UpdateNotificationMgr.exe Status: Disabled Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Report policies=C:\WINDOWS\System32\USOCLIENT.EXE ### UsoClient Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*%systemroot%\system32\usoclient.exe Parameters: ReportPolicies [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work=C:\WINDOWS\System32\USOCLIENT.EXE ### UsoClient Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*%systemroot%\system32\usoclient.exe Status: Disabled Parameters: StartMaintenanceWork [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Schedule Scan=C:\WINDOWS\System32\USOCLIENT.EXE ### UsoClient Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*%systemroot%\system32\usoclient.exe Parameters: StartScan [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Schedule Scan Static Task=C:\WINDOWS\System32\USOCLIENT.EXE ### UsoClient Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*%systemroot%\system32\usoclient.exe Description: Cette tâche effectue une analyse Windows Update pl Parameters: StartScan [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work=C:\WINDOWS\System32\USOCLIENT.EXE ### UsoClient Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*%systemroot%\system32\usoclient.exe Status: Disabled Parameters: StartWork [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Schedule Work=C:\WINDOWS\System32\USOCLIENT.EXE ### UsoClient Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*%systemroot%\system32\usoclient.exe Status: Disabled Parameters: StartWork [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\Start Oobe Expedite Work=C:\WINDOWS\System32\USOCLIENT.EXE ### UsoClient Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*%systemroot%\system32\usoclient.exe Description: $(@%systemRoot%\system32\usosvc.dll,-105) Parameters: StartWork [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\StartOobeAppsScanAfterUpdate=C:\WINDOWS\System32\USOCLIENT.EXE ### UsoClient Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*%systemroot%\system32\usoclient.exe Description: $(@%systemRoot%\system32\usosvc.dll,-105) Parameters: StartOobeAppsScanAfterUpdate [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\StartOobeAppsScan_LicenseAccepted=C:\WINDOWS\System32\USOCLIENT.EXE ### UsoClient Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*%systemroot%\system32\usoclient.exe Description: $(@%systemRoot%\system32\usosvc.dll,-105) Parameters: StartOobeAppsScan [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker=%systemroot%\system32\MusNotification.exe ### File is missing. !$*%systemroot%\system32\MusNotification.exe Description: $(@%systemRoot%\system32\usosvc.dll,-106) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UpdateOrchestrator\UUS Failover Task=C:\WINDOWS\SYSTEM32\MLENGINESTUB.EXE ### Undocked MLEngine Stub Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.2033 !$*%windir%\System32\MLEngineStub.exe Parameters: HandleUusFailoverEvaluationSignalFromWnf [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\UPnP\UPnPHostConfig=C:\WINDOWS\SysWOW64\SC.EXE ### Outil de configuration du Gestionnaire de contrôle des services Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*sc.exe Description: $(@%systemroot%\system32\upnphost.dll,-216) Parameters: config upnphost start= auto [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\WCM\WiFiTask=C:\WINDOWS\System32\WIFITASK.EXE ### Tâche sans fil en arrière-plan Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\WiFiTask.exe Description: $(@%SystemRoot%\system32\wifitask.exe,-2) Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Windows Error Reporting\QueueReporting=C:\WINDOWS\SYSTEM32\WERMGR.EXE ### Windows Problem Reporting Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*%windir%\system32\wermgr.exe Description: $(@%SystemRoot%\system32\wer.dll,-294) Parameters: -upload [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange=C:\WINDOWS\SYSTEM32\BFE.DLL ### Moteur de filtrage de base Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%windir%\system32\rundll32.exe bfe.dll,BfeOnServiceStartTypeChange Description: $(@%SystemRoot%\system32\bfe.dll,-2002) Parameters: bfe.dll,BfeOnServiceStartTypeChange [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Windows Media Sharing\UpdateLibrary=C:\Program Files\WINDOWS MEDIA PLAYER\WMPNSCFG.EXE ### Application de configuration du service Partage réseau du Lecteur multimédia Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 12.0.26100.1 !$*"%ProgramFiles%\Windows Media Player\wmpnscfg.exe" Description: $(@%ProgramFiles%\Windows Media Player\wmpnscfg.ex Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\WindowsBackup\AutomaticBackup=C:\WINDOWS\System32\RUNDLL32.EXE ### Processus hôte Windows (Rundll32) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->RUNDLL !$*"%systemroot%\system32\rundll32.exe" Parameters: /d sdengin2.dll,ExecuteScheduledBackup [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\WindowsUpdate\Scheduled Start=C:\WINDOWS\System32\SC.EXE ### Outil de configuration du Gestionnaire de contrôle des services Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*%systemroot%\System32\sc.exe Description: $(@%SystemRoot%\System32\wuaueng.dll,-117) Parameters: start wuauserv [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Workplace Join\Automatic-Device-Join=C:\WINDOWS\System32\DSREGCMD.EXE ### Outil de ligne de commande DSREG Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\dsregcmd.exe Status: Disabled Description: $(@%SystemRoot%\system32\dsregcmd.exe,-101) Parameters: $(Arg0) $(Arg1) $(Arg2) [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\Workplace Join\Recovery-Check=C:\WINDOWS\System32\DSREGCMD.EXE ### Outil de ligne de commande DSREG Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\dsregcmd.exe Status: Disabled Description: $(@%SystemRoot%\system32\dsregcmd.exe,-102) Parameters: /checkrecovery [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\Windows\WwanSvc\NotificationTask=C:\WINDOWS\System32\WIFITASK.EXE ### Tâche sans fil en arrière-plan Microsoft Corporation Système d'exploitation Microsoft® Windows® 10.0.26100.2294 !$*%SystemRoot%\System32\WiFiTask.exe Description: $(@%SystemRoot%\system32\wifitask.exe,-2) Parameters: wwan [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Microsoft\XblGameSave\XblGameSaveTask=C:\WINDOWS\SYSTEM32\XBLGAMESAVETASK.EXE ### XblGameSave Standby Task Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 ->XBLGAMESAVE STANDBY TASK !$*%windir%\System32\XblGameSaveTask.exe Description: XblGameSave Standby Task Parameters: standby [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\MicrosoftEdgeUpdateTaskMachineCore=C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE ### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.155.85 ->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Description: Maintient votre logiciel Microsoft à jour. Si cett Parameters: /c [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\MicrosoftEdgeUpdateTaskMachineUA=C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE ### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.155.85 ->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Description: Maintient votre logiciel Microsoft à jour. Si cett Parameters: /ua /installsource scheduler [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Mozilla\Firefox Background Update 308046B0AF4A39CB=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe Description: La tâche de mise à jour en arrière-plan recherche Parameters: --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Mozilla\Firefox Background Update S-1-5-21-1293147834-1548857375-139538282-1000 308046B0AF4A39CB=C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE ### Firefox Mozilla Corporation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\firefox.exe Description: La tâche de mise à jour en arrière-plan recherche Parameters: --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB=C:\PROGRAM FILES\MOZILLA FIREFOX\DEFAULT-BROWSER-AGENT.EXE ### Mozilla Foundation Firefox 131.0.2 !$*C:\Program Files\Mozilla Firefox\default-browser-agent.exe Description: La tâche Agent de navigateur par défaut effectue u Parameters: do-task "308046B0AF4A39CB" [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\MSIGH_Host=C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGHOTKEY.EXE ### Gaming Hotkey Micro-Star INT'L CO., LTD. Gaming Hotkey 1.0.0.24 !$*C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe Description: MSI Gaming Hotkey Host Parameters: --normal [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\MSILEDKeeper_Host=C:\PROGRAM FILES (X86)\MSI\MYSTICLIGHT\LEDKEEPER.EXE ### LEDKeeper Micro-Star Int'l Co., Ltd. LEDKeeper 3.0.0.66 !$*C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe Description: MSI LED Keeper Host Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\MSISW_Host=C:\WINDOWS\SYSWOW64\MUACHOST.EXE ### Windows Host Process MSI muachost 1.0.0.1 !$*C:\Windows\SysWOW64\muachost.exe Description: MSI Software Host Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\MSI_Toast_Server=C:\PROGRAM FILES (X86)\MSI\MSI TOAST SERVER\MSITOASTSERVER.EXE ### MSIToastServer Micro-Star INT'L CO., LTD. MSIToastServer 1.0.0.10 !$*"C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe" Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE ### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 33454032 !$*C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe Description: Checks for NVIDIA driver updates before GeForce Ex Parameters: -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVIDIA GEFORCE EXPERIENCE\NVIDIA GEFORCE EXPERIENCE.EXE ### NVIDIA GeForce Experience NVIDIA Corporation NVIDIA GeForce Experience rel_03_28/9a1bfbe !$*"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe" Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVNODE\NVNODEJSLAUNCHER.EXE ### NVIDIA nodejs launcher NVIDIA Corporation NVIDIA GeForce Experience 3.28.0.417 ->NVIDIA NODEJS LAUNCHER !$*C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe Description: NVIDIA NvNode Launcher Parameters: --launcher=TaskScheduler [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\UPDATE CORE\NVPROFILEUPDATER64.EXE ### NVIDIA driver profile updater NVIDIA Corporation NVIDIA driver profile updater 39.5.0.0 ->NVIDIA DRIVER PROFILE UPDATER =>NVPROFILEUPDATER.EXE !$*C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe Description: NVIDIA Profile Updater Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\UPDATE CORE\NVPROFILEUPDATER64.EXE ### NVIDIA driver profile updater NVIDIA Corporation NVIDIA driver profile updater 39.5.0.0 ->NVIDIA DRIVER PROFILE UPDATER =>NVPROFILEUPDATER.EXE !$*C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe Description: NVIDIA Profile Updater Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE ### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and telemetry reporter 39.5.0.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe Description: NVIDIA crash reporter Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE ### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and telemetry reporter 39.5.0.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe Description: NVIDIA crash reporter Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE ### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and telemetry reporter 39.5.0.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe Description: NVIDIA crash reporter Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE ### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and telemetry reporter 39.5.0.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe Description: NVIDIA crash reporter Parameters: 0 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\OneDrive Per-Machine Standalone Update Task=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\ONEDRIVESTANDALONEUPDATER.EXE ### Standalone Updater Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 !$*C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\OneDrive Reporting Task-S-1-5-21-1293147834-1548857375-139538282-1000=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\ONEDRIVESTANDALONEUPDATER.EXE ### Standalone Updater Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 !$*C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe Parameters: /reporting [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Open URL by RoboForm=C:\Windows\system32\rundll32.exe url.dll,FileProtocolHandler "https://start.roboform.com#updated=1717916217" ### File is missing. !$*C:\Windows\system32\rundll32.exe url.dll,FileProtocolHandler "https://start.roboform.com#updated=1717916217" Parameters: url.dll,FileProtocolHandler "https://start.roboform.com#updated=1717916217" [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Opera scheduled Autoupdate 1710101943=C:\USERS\UTILISATEUR\APPDATA\LOCAL\PROGRAMS\OPERA\AUTOUPDATE\OPERA_AUTOUPDATE.EXE ### Opera auto-updater Opera Software Opera auto-updater 113.0.5230.142 ->OPERA !$*C:\Users\Utilisateur\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe Description: Mettre Opera à jour automatiquement. Parameters: --scheduledtask --bypasslauncher $(Arg0) [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Run RoboForm Process=C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google LLC Google Chrome 129.0.6668.101 ->CHROME_EXE !$*C:\Program Files\Google\Chrome\Application\chrome.exe Parameters: https://start.roboform.com#updated=1723925416 [Scheduled Tasks 2] C:\WINDOWS\SYSNATIVE\TASKS\Run RoboForm TaskBar Icon=C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\ROBOTASKBARICON.EXE ### RoboForm TaskBar Icon Siber Systems RoboForm 9.6.2.2 !$*C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe Parameters: /autoupdate=9.6.1.1 [Scheduled Tasks 2.0 Cached] :HKLM Adobe Acrobat Update Task=C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ARM\1.0\ADOBEARM.EXE ### Adobe Reader and Acrobat Manager Adobe Inc. Adobe Reader and Acrobat Manager 1.824.460.1091 !$*C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe This task keeps your Adobe Reader and Acrobat applications up to date with the latest enhancements and security fixes [Scheduled Tasks 2.0 Cached] :HKLM AviraSystemSpeedupVerify=C:\PROGRAM FILES (X86)\AVIRA\SYSTEM SPEEDUP\SETUP\AVIRA_SPEEDUP_SETUP.EXE ### Avira System Speedup Setup Avira Operations GmbH Avira System Speedup 7.4 => !$*"C:\Program Files (x86)\Avira\System Speedup\setup\avira_speedup_setup.exe" Parameters: /VERIFY /VERYSILENT /NOSTART /NODOTNET /NORESTART [Scheduled Tasks 2.0 Cached] :HKLM Avira_FallbackUpdater=C:\WINDOWS\SYSTEM32\SC.EXE ### Outil de configuration du Gestionnaire de contrôle des services Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\sc.exe Parameters: start AviraFallbackUpdater Delayed=false [Scheduled Tasks 2.0 Cached] :HKLM Avira_Security_Maintenance=C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SERVICE.WORKER.EXE ### Avira Security Avira Operations GmbH Avira Security 1.1.104.1294 ->AVIRA SECURITY =>SERVICE.WORKER.EXE !$*C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe Parameters: FallbackTelemetry [Scheduled Tasks 2.0 Cached] :HKLM Avira_Security_Service_SCM_Watchdog=C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SERVICE.WORKER.EXE ### Avira Security Avira Operations GmbH Avira Security 1.1.104.1294 ->AVIRA SECURITY =>SERVICE.WORKER.EXE !$*C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe Parameters: HandleServiceControlManagerEvent 7000 [Scheduled Tasks 2.0 Cached] :HKLM Avira_Security_Systray=C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SYSTRAY.APPLICATION.EXE ### Avira Security Avira Operations GmbH Avira Security 1.1.104.1294 ->AVIRA SECURITY !$*C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe [Scheduled Tasks 2.0 Cached] :HKLM Avira_Security_Update=C:\WINDOWS\SYSTEM32\NET.EXE ### Net Command Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\net.exe Parameters: start AviraSecurityUpdater [Scheduled Tasks 2.0 Cached] :HKLM CCleaner Update=C:\PROGRAM FILES\CCLEANER\CCUPDATE.EXE ### CCleaner CCleaner emergency updater Gen Digital Inc. CCleaner CCleaner 24.8.15.0 !$*C:\Program Files\CCleaner\CCUpdate.exe [Scheduled Tasks 2.0 Cached] :HKLM CCleanerCrashReporting=C:\PROGRAM FILES\CCLEANER\CCLEANERBUGREPORT.EXE ### CCleaner Bug Report Gen Digital Inc. CCleaner 1.0.0.1 !$*C:\Program Files\CCleaner\CCleanerBugReport.exe Parameters: --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "f999ea10-2c42-461c-a734-ea737c293cb2" --version "6.28.11297" --silent [Scheduled Tasks 2.0 Cached] :HKLM CCleanerSkipUAC - Utilisateur=C:\PROGRAM FILES\CCLEANER\CCLEANER.EXE ### CCleaner Piriform Software Ltd CCleaner 6.28.0.11297 !$*"C:\Program Files\CCleaner\CCleaner.exe" Parameters: $(Arg0) [Scheduled Tasks 2.0 Cached] :HKLM CreateExplorerShellUnelevatedTask=C:\WINDOWS\EXPLORER.EXE ### Explorateur Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\explorer.exe Parameters: /NoUACCheck [Scheduled Tasks 2.0 Cached] :HKLM DivXUpdate=C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\DIVX UPDATE\DIVXUPDATE.EXE ### DivX Update DivX, LLC Launcher 10, 10, 1, 0 ->ADAMANT =>LAUNCHER.DLL !$*C:\Program Files (x86)\Common Files\DivX Shared\DivX Update\DivXUpdate.exe [Scheduled Tasks 2.0 Cached] :HKLM EPSON ET-3850 Series Update {603C03CE-A780-474F-9AC9-BF908BC0362F}=C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\E_YTSYHE.EXE ### E_DTSKSD.EXE Seiko Epson Corporation E_DTSKSD.EXE 1.3.1.0 ->E_DTSKSD.EXE !$*C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSYHE.EXE Searches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.This task is uninstalled automatically when you uninstall the related printer driver. Parameters: /EXE:"{603C03CE-A780-474F-9AC9-BF908BC0362F}" /F:"Update" [Scheduled Tasks 2.0 Cached] :HKLM EPSON ET-3850 Series Update {B42B311D-0A2D-44EA-A51A-4BFCD79C4EA6}=C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\E_YTSYHE.EXE ### E_DTSKSD.EXE Seiko Epson Corporation E_DTSKSD.EXE 1.3.1.0 ->E_DTSKSD.EXE !$*C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSYHE.EXE Searches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.This task is uninstalled automatically when you uninstall the related printer driver. Parameters: /EXE:"{B42B311D-0A2D-44EA-A51A-4BFCD79C4EA6}" /F:"Update" [Scheduled Tasks 2.0 Cached] :HKLM EPSON ET-3850 Series Update {EE257D5E-636F-4970-8228-A4E56DE11235}=C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\E_YTSYHE.EXE ### E_DTSKSD.EXE Seiko Epson Corporation E_DTSKSD.EXE 1.3.1.0 ->E_DTSKSD.EXE !$*C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSYHE.EXE Searches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.This task is uninstalled automatically when you uninstall the related printer driver. Parameters: /EXE:"{EE257D5E-636F-4970-8228-A4E56DE11235}" /F:"Update" [Scheduled Tasks 2.0 Cached] :HKLM MicrosoftEdgeUpdateTaskMachineCore=C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE ### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.155.85 ->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Maintient votre logiciel Microsoft à jour. Si cette tâche est désactivée ou arrêtée, votre logiciel Microsoft n'est pas mis à jour, ce qui signifie que les potentielles failles de sécurité peuvent ne pas être corrigées et que certaines fonctionnalités risquent de ne pas être opérationnelles. Cette tâche se désinstalle d'elle-même si aucun logiciel Microsoft ne l'utilise. Parameters: /c [Scheduled Tasks 2.0 Cached] :HKLM MicrosoftEdgeUpdateTaskMachineUA=C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE ### Microsoft Edge Update Microsoft Corporation Microsoft Edge Update 1.3.155.85 ->MICROSOFT EDGE UPDATE =>MSEDGEUPDATE.DLL !$*C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Maintient votre logiciel Microsoft à jour. Si cette tâche est désactivée ou arrêtée, votre logiciel Microsoft n'est pas mis à jour, ce qui signifie que les potentielles failles de sécurité peuvent ne pas être corrigées et que certaines fonctionnalités risquent de ne pas être opérationnelles. Cette tâche se désinstalle d'elle-même si aucun logiciel Microsoft ne l'utilise. Parameters: /ua /installsource scheduler [Scheduled Tasks 2.0 Cached] :HKLM MSIGH_Host=C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGHOTKEY.EXE ### Gaming Hotkey Micro-Star INT'L CO., LTD. Gaming Hotkey 1.0.0.24 !$*C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe MSI Gaming Hotkey Host Parameters: --normal [Scheduled Tasks 2.0 Cached] :HKLM MSILEDKeeper_Host=C:\PROGRAM FILES (X86)\MSI\MYSTICLIGHT\LEDKEEPER.EXE ### LEDKeeper Micro-Star Int'l Co., Ltd. LEDKeeper 3.0.0.66 !$*C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe MSI LED Keeper Host [Scheduled Tasks 2.0 Cached] :HKLM MSISW_Host=C:\WINDOWS\SYSWOW64\MUACHOST.EXE ### Windows Host Process MSI muachost 1.0.0.1 !$*C:\Windows\SysWOW64\muachost.exe MSI Software Host [Scheduled Tasks 2.0 Cached] :HKLM MSI_Toast_Server=C:\PROGRAM FILES (X86)\MSI\MSI TOAST SERVER\MSITOASTSERVER.EXE ### MSIToastServer Micro-Star INT'L CO., LTD. MSIToastServer 1.0.0.10 !$*"C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe" [Scheduled Tasks 2.0 Cached] :HKLM NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE ### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 33454032 !$*C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe Checks for NVIDIA driver updates before GeForce Experience is first launched Parameters: -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log [Scheduled Tasks 2.0 Cached] :HKLM NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVIDIA GEFORCE EXPERIENCE\NVIDIA GEFORCE EXPERIENCE.EXE ### NVIDIA GeForce Experience NVIDIA Corporation NVIDIA GeForce Experience rel_03_28/9a1bfbe !$*"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe" [Scheduled Tasks 2.0 Cached] :HKLM NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVNODE\NVNODEJSLAUNCHER.EXE ### NVIDIA nodejs launcher NVIDIA Corporation NVIDIA GeForce Experience 3.28.0.417 ->NVIDIA NODEJS LAUNCHER !$*C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe NVIDIA NvNode Launcher Parameters: --launcher=TaskScheduler [Scheduled Tasks 2.0 Cached] :HKLM NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\UPDATE CORE\NVPROFILEUPDATER64.EXE ### NVIDIA driver profile updater NVIDIA Corporation NVIDIA driver profile updater 39.5.0.0 ->NVIDIA DRIVER PROFILE UPDATER =>NVPROFILEUPDATER.EXE !$*C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe NVIDIA Profile Updater [Scheduled Tasks 2.0 Cached] :HKLM NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\UPDATE CORE\NVPROFILEUPDATER64.EXE ### NVIDIA driver profile updater NVIDIA Corporation NVIDIA driver profile updater 39.5.0.0 ->NVIDIA DRIVER PROFILE UPDATER =>NVPROFILEUPDATER.EXE !$*C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe NVIDIA Profile Updater [Scheduled Tasks 2.0 Cached] :HKLM NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE ### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and telemetry reporter 39.5.0.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe NVIDIA crash reporter [Scheduled Tasks 2.0 Cached] :HKLM NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE ### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and telemetry reporter 39.5.0.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe NVIDIA crash reporter [Scheduled Tasks 2.0 Cached] :HKLM NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE ### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and telemetry reporter 39.5.0.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe NVIDIA crash reporter [Scheduled Tasks 2.0 Cached] :HKLM NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}=C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE ### NVIDIA crash and telemetry reporter NVIDIA Corporation NVIDIA crash and telemetry reporter 39.5.0.0 ->NVIDIA CRASH AND TELEMETRY REPORTER !$*C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe NVIDIA crash reporter [Scheduled Tasks 2.0 Cached] :HKLM OneDrive Per-Machine Standalone Update Task=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\ONEDRIVESTANDALONEUPDATER.EXE ### Standalone Updater Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 !$*C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [Scheduled Tasks 2.0 Cached] :HKLM OneDrive Reporting Task-S-1-5-21-1293147834-1548857375-139538282-1000=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\ONEDRIVESTANDALONEUPDATER.EXE ### Standalone Updater Microsoft Corporation Microsoft OneDrive 24.186.0915.0004 !$*C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe Parameters: /reporting [Scheduled Tasks 2.0 Cached] :HKLM Open URL by RoboForm=C:\Windows\system32\rundll32.exe url.dll,FileProtocolHandler "https://start.roboform.com#updated=1717916217" ### File is missing. !$*C:\Windows\system32\rundll32.exe url.dll,FileProtocolHandler "https://start.roboform.com#updated=1717916217" Parameters: url.dll,FileProtocolHandler "https://start.roboform.com#updated=1717916217" [Scheduled Tasks 2.0 Cached] :HKLM Opera scheduled Autoupdate 1710101943=C:\USERS\UTILISATEUR\APPDATA\LOCAL\PROGRAMS\OPERA\AUTOUPDATE\OPERA_AUTOUPDATE.EXE ### Opera auto-updater Opera Software Opera auto-updater 113.0.5230.142 ->OPERA !$*C:\Users\Utilisateur\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe Mettre Opera à jour automatiquement. Parameters: --scheduledtask --bypasslauncher $(Arg0) [Scheduled Tasks 2.0 Cached] :HKLM Run RoboForm Process=C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\CHROME.EXE ### Google Chrome Google LLC Google Chrome 129.0.6668.101 ->CHROME_EXE !$*C:\Program Files\Google\Chrome\Application\chrome.exe Parameters: https://start.roboform.com#updated=1723925416 [Scheduled Tasks 2.0 Cached] :HKLM Run RoboForm TaskBar Icon=C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\ROBOTASKBARICON.EXE ### RoboForm TaskBar Icon Siber Systems RoboForm 9.6.2.2 !$*C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe Parameters: /autoupdate=9.6.1.1 [Unwanted Software Files] :HKLM MNTEMP=C:\PROGRAMDATA\MNTEMP ### !$*C:\ProgramData\MNTEMP [Detected using Heuristic Algorithm] :HKLM COMMON FILES=C:\PROGRAM FILES (X86)\COMMON FILES\ ### "ACRONIS\" "ADOBE\" "BATTLEYE\" "DIVX SHARED\" "DVDVIDEOSOFT\" "GLARYSOFT\" "INSTALLSHIELD\" "LOGISHRD\" "MICROSOFT SHARED\" "NERO\" "STEAM\" [Detected using Heuristic Algorithm] :HKLM MICROSOFT SHARED=C:\PROGRAM FILES (X86)\COMMON FILES\MICROSOFT SHARED\ ### "DAO\" "FILTERS\" "INK\" "MSENV\" "MSINFO\" "VC\" "VGX\" "VSTA\" "VSTO\" "DAO: DAO360.DLL" "Filters: TIFFFILT.DLL" [Detected using Heuristic Algorithm] :HKLM STEAM=C:\PROGRAM FILES (X86)\COMMON FILES\STEAM\ ### "DRIVERS\" "DRIVERS.EXE" "SECURE_DESKTOP_CAPTURE.EXE" "SERVICE_DEFAULT_PUBLICPUBLICBETA_VERSIONS.VDF" "SERVICE_DEFAULT_PUBLIC_VERSIONS.VDF" "SERVICE_LOG.TXT" "SERVICE_MINIMUM_VERSIONS.VDF" "STEAMSERVICE.DLL" "STEAMSERVICE.EXE" "STEAMXBOXUTIL64.EXE" [Detected using Heuristic Algorithm] :HKLM SYSTEM=C:\PROGRAM FILES (X86)\COMMON FILES\SYSTEM\ ### "ADO\" "EN-US\" "FR-FR\" "MSADC\" "OLE DB\" "WAB32.DLL" "WAB32RES.DLL" "ado: ADOJAVAS.INC" "ADOVBS.INC" "MSADER15.DLL" "MSADO15.DLL" "en-US: WAB32RES.DLL.MUI" "fr-FR: WAB32RES.DLL.MUI" "msadc: ADCJAVAS.INC" "ADCVBS.INC" "MSADCE.DLL" "MSADCER.DLL" [Detected using Heuristic Algorithm] :HKLM EASYANTICHEAT_EOS=C:\PROGRAM FILES (X86)\EASYANTICHEAT_EOS\ ### "EASYANTICHEAT_EOS.EXE" "EASYANTICHEAT_EOS.SYS" [Detected using Heuristic Algorithm] :HKLM INTERNET EXPLORER=C:\PROGRAM FILES (X86)\INTERNET EXPLORER\ ### "EN-US\" "EXTEXPORT.EXE" "FR-FR\" "HMMAPI.DLL" "IE9PROPS.PROPDESC" "IEINSTAL.EXE" "IELOWUTIL.EXE" "IESHIMS.DLL" "IEXPLORE.EXE" "IMAGES\" "SIGNUP\" [Detected using Heuristic Algorithm] :HKLM MICROSOFT.NET=C:\PROGRAM FILES (X86)\MICROSOFT.NET\ ### "PRIMARY INTEROP ASSEMBLIES\" "REDISTLIST\" "Primary Interop Assemblies: ADODB.DLL" "MICROSOFT.MSHTML.DLL" "MICROSOFT.STDFORMAT.DLL" "MSDATASRC.DLL" "STDOLE.DLL" "RedistList: ASSEMBLYLIST_4_CLIENT.XML" "ASSEMBLYLIST_4_EXTENDED.XML" [Detected using Heuristic Algorithm] :HKLM MOZILLA MAINTENANCE SERVICE=C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE SERVICE\ ### "LOGS\" "MAINTENANCESERVICE.EXE" "MAINTENANCESERVICE_TMP.EXE" "UNINSTALL.EXE" "UPDATELOGS\" "UPDATER.INI" "logs: MAINTENANCESERVICE-INSTALL.LOG" "UpdateLogs: 308046B0AF4A39CB.ID" "308046B0AF4A39CB.LOG" "308046B0AF4A39CB.STATUS" "D78BF5DD33499EC2.ID" "D78 [Detected using Heuristic Algorithm] :HKLM MSBUILD=C:\PROGRAM FILES (X86)\MSBUILD\ ### "MICROSOFT\" "Microsoft\Windows Workflow Foundation\v3.0: WORKFLOW.TARGETS" "WORKFLOW.VISUALBASIC.TARGETS" "Microsoft\Windows Workflow Foundation\v3.5: WORKFLOW.TARGETS" "WORKFLOW.VISUALBASIC.TARGETS" [Detected using Heuristic Algorithm] :HKLM REFERENCE ASSEMBLIES=C:\PROGRAM FILES (X86)\REFERENCE ASSEMBLIES\ ### "MICROSOFT\" "Microsoft\Framework\v3.0: PRESENTATIONBUILDTASKS.DLL" "PRESENTATIONCORE.DLL" "PRESENTATIONFRAMEWORK.AERO.DLL" "PRESENTATIONFRAMEWORK.CLASSIC.DLL" "PRESENTATIONFRAMEWORK.DLL" "PRESENTATIONFRAMEWORK.LUNA.DLL" "PRESENTATIONFRAMEWORK.ROYALE.DLL" [Detected using Heuristic Algorithm] :HKLM STEAM=C:\PROGRAM FILES (X86)\STEAM\ ### ".CEF-DEV-TOOLS-SIZE.VDF" "AOM.DLL" "APPCACHE\" "AVIF-16.DLL" "BIN\" "CLIENTUI\" "CONFIG\" "CONTROLLER_BASE\" "CRASHHANDLER.DLL" "CRASHHANDLER.DLL.OLD" "CRASHHANDLER64.DLL" [Detected using Heuristic Algorithm] :HKLM UNINSTALL INFORMATION=C:\PROGRAM FILES (X86)\UNINSTALL INFORMATION\ [Detected using Heuristic Algorithm] :HKLM WINDOWS DEFENDER=C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\ ### "EN-US\" "EPPMANIFEST.DLL" "FR-FR\" "MPASDESC.DLL" "MPCLIENT.DLL" "MPCMDRUN.EXE" "MPDETOURS.DLL" "MPDETOURSCOPYACCELERATOR.DLL" "MPOAV.DLL" "MSMPLICS.DLL" [Detected using Heuristic Algorithm] :HKLM WINDOWS MAIL=C:\PROGRAM FILES (X86)\WINDOWS MAIL\ ### "WAB.EXE" "WABIMP.DLL" "WABMIG.EXE" [Detected using Heuristic Algorithm] :HKLM WINDOWS MEDIA PLAYER=C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\ ### "EN-US\" "FR-FR\" "ICONS\" "MEDIA RENDERER\" "MPVIS.DLL" "NETWORK SHARING\" "SETUP_WM.EXE" "SKINS\" "VISUALIZATIONS\" "WMLAUNCH.EXE" "WMPCONFIG.EXE" [Detected using Heuristic Algorithm] :HKLM WINDOWS PHOTO VIEWER=C:\PROGRAM FILES (X86)\WINDOWS PHOTO VIEWER\ ### "EN-US\" "FR-FR\" "IMAGINGDEVICES.EXE" "IMAGINGENGINE.DLL" "PHOTOACQ.DLL" "PHOTOBASE.DLL" "PHOTOVIEWER.DLL" "en-US: IMAGINGDEVICES.EXE.MUI" "PHOTOACQ.DLL.MUI" "PHOTOVIEWER.DLL.MUI" "fr-FR: IMAGINGDEVICES.EXE.MUI" "PHOTOACQ.DLL.MUI" "PHOTOVIEWER.DLL.MUI" [Detected using Heuristic Algorithm] :HKLM AVIRA=C:\PROGRAM FILES\AVIRA\ ### "ENDPOINT PROTECTION SDK\" "Endpoint Protection SDK: ACSSIGNED.EXE" "ACTBIT.RDF" "AUC_CACHE.BIN" "ENDPOINTPROTECTION.EXE" "ENDPOINTPROTECTION.JSON" "ENDPOINTPROTECTIONCLIENT.DLL" "EPP_INFO.JSON" "FIREWALL.DLL" "FIREWALL.RDF" "FIREWALL.TOOLS.EXE" [Detected using Heuristic Algorithm] :HKLM CCLEANER=C:\PROGRAM FILES\CCLEANER\ ### "BRANDING.DLL" "CCLEANER.DAT" "CCLEANER.EXE" "CCLEANER64.EXE" "CCLEANERBUGREPORT.EXE" "CCLEANERDU.DLL" "CCLEANERPERFORMANCEOPTIMIZER.DLL" "CCLEANERPERFORMANCEOPTIMIZERSERVICE.EXE" "CCLEANERREACTIVATOR.DLL" "CCLEANERREACTIVATOR.EXE" "CCUPDATE.EXE" [Detected using Heuristic Algorithm] :HKLM COMMON FILES=C:\PROGRAM FILES\COMMON FILES\ ### "ADOBE\" "DESIGNER\" "EPSON\" "LOGISHRD\" "MICROSOFT SHARED\" "OVPN-DCO\" "SYSTEM\" "Adobe\Acrobat\ActiveX: ACROPDF.DLL" "ACROPDF.FRA" "ACROPDF64.DLL" "ACROPDFIMPL.DLL" "Adobe\Acrobat\DC\Linguistics\LanguageNames2: DISPLAYLANGUAGENAMES.AR.TXT" "DISPLAYLANG [Detected using Heuristic Algorithm] :HKLM DESIGNER=C:\PROGRAM FILES\COMMON FILES\DESIGNER\ ### "MSADDNDR.OLB" [Detected using Heuristic Algorithm] :HKLM MICROSOFT SHARED=C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\ ### "CLICKTORUN\" "INK\" "MSINFO\" "OFFICE16\" "OFFICESOFTWAREPROTECTIONPLATFORM\" "VC\" "VGX\" "VSTO\" "ClickToRun: A640_EXP.CAB.CAT" "A640_EXP.HASH" "API-MS-WIN-CORE-FILE-L1-2-0.DLL" "API-MS-WIN-CORE-FILE-L2-1-0.DLL" "ink: INKDIV.DLL" "INKOBJ.DLL" "MICAUT. [Detected using Heuristic Algorithm] :HKLM SYSTEM=C:\PROGRAM FILES\COMMON FILES\SYSTEM\ ### "ADO\" "EN-US\" "FR-FR\" "MSADC\" "OLE DB\" "WAB32.DLL" "WAB32RES.DLL" "ado: ADOJAVAS.INC" "ADOVBS.INC" "MSADER15.DLL" "MSADO15.DLL" "en-US: WAB32RES.DLL.MUI" "fr-FR: WAB32RES.DLL.MUI" "msadc: ADCJAVAS.INC" "ADCVBS.INC" "MSADCE.DLL" "MSADCER.DLL" [Detected using Heuristic Algorithm] :HKLM CRYSTALDISKINFO=C:\PROGRAM FILES\CRYSTALDISKINFO\ ### "CDIRESOURCE\" "DISKINFO.INI" "DISKINFO32.EXE" "DISKINFO64.EXE" "LICENSE\" "SMART\" "UNINS000.DAT" "UNINS000.EXE" "UNINS000.MSG" "CdiResource: ALERTMAIL.EXE" "ALERTMAIL4.EXE" "ALERTMAIL48.EXE" "MAILKIT.DLL" "License: AMD_RC2T7.COPYRIGHT-EN.TXT" "AMD_RC2T [Detected using Heuristic Algorithm] :HKLM EXPLORERPATCHER=C:\PROGRAM FILES\EXPLORERPATCHER\ ### "EN-US\" "FR-FR\" "PRIS\" "STARTUI\" "StartUI\Assets\Fonts: BITMDL2.TTF" [Detected using Heuristic Algorithm] :HKLM INTERNET EXPLORER=C:\PROGRAM FILES\INTERNET EXPLORER\ ### "EN-US\" "EXTEXPORT.EXE" "FR-FR\" "HMMAPI.DLL" "IEDIAGCMD.EXE" "IEINSTAL.EXE" "IELOWUTIL.EXE" "IESHIMS.DLL" "IEXPLORE.EXE" "IMAGES\" "SIGNUP\" [Detected using Heuristic Algorithm] :HKLM MICROSOFT=C:\PROGRAM FILES\MICROSOFT\ ### "ONEDRIVE\" "OneDrive\ListSync\settings: NUCLEUSUPDATERINGCONFIG.JSON" [Detected using Heuristic Algorithm] :HKLM MICROSOFT OFFICE=C:\PROGRAM FILES\MICROSOFT OFFICE\ ### "APPXMANIFEST.XML" "FILESYSTEMMETADATA.XML" "OFFICE16\" "PACKAGEMANIFESTS\" "ROOT\" "THINAPPXMANIFEST.XML" "UPDATES\" "Office16: OSPP.HTM" "OSPP.VBS" "OSPPREARM.EXE" "SLERROR.XML" "PackageManifests: APPXMANIFEST.90160000-0015-0000-1000-0000000FF1CE.XML" [Detected using Heuristic Algorithm] :HKLM MICROSOFT ONEDRIVE=C:\PROGRAM FILES\MICROSOFT ONEDRIVE\ ### "24.186.0915.0004\" "FILESYNCHELPER\" "LOGOIMAGES\" "ONEDRIVE.EXE" "ONEDRIVE.VISUALELEMENTSMANIFEST.XML" "ONEDRIVESTANDALONEUPDATER.EXE" "RESOURCES.PRI" "SETUP\" "STANDALONEUPDATER\" "24.186.0915.0004: ADAL.DLL" "ALERTICON.PNG" "ALERTICONWHITE.PNG" "ANIMA [Detected using Heuristic Algorithm] :HKLM MOZILLA FIREFOX=C:\PROGRAM FILES\MOZILLA FIREFOX\ ### "ACCESSIBLEMARSHAL.DLL" "APPLICATION.INI" "BROWSER\" "CRASHREPORTER.EXE" "DEFAULT-BROWSER-AGENT.EXE" "DEFAULTS\" "DEPENDENTLIBS.LIST" "DISTRIBUTION\" "FIREFOX.EXE" "FIREFOX.EXE.SIG" "FIREFOX.VISUALELEMENTSMANIFEST.XML" [Detected using Heuristic Algorithm] :HKLM MOZILLA THUNDERBIRD=C:\PROGRAM FILES\MOZILLA THUNDERBIRD\ ### "ACCESSIBLEMARSHAL.DLL" "APPLICATION.INI" "CHROME\" "CRASHREPORTER-OVERRIDE.INI" "CRASHREPORTER.EXE" "DEFAULTS\" "DEPENDENTLIBS.LIST" "DISTRIBUTION\" "FONTS\" "FREEBL3.DLL" "GKCODECS.DLL" [Detected using Heuristic Algorithm] :HKLM MSBUILD=C:\PROGRAM FILES\MSBUILD\ ### "MICROSOFT\" "Microsoft\Windows Workflow Foundation\v3.0: WORKFLOW.TARGETS" "WORKFLOW.VISUALBASIC.TARGETS" "Microsoft\Windows Workflow Foundation\v3.5: WORKFLOW.TARGETS" "WORKFLOW.VISUALBASIC.TARGETS" [Detected using Heuristic Algorithm] :HKLM REFERENCE ASSEMBLIES=C:\PROGRAM FILES\REFERENCE ASSEMBLIES\ ### "MICROSOFT\" "Microsoft\Framework\v3.0: PRESENTATIONBUILDTASKS.DLL" "PRESENTATIONCORE.DLL" "PRESENTATIONFRAMEWORK.AERO.DLL" "PRESENTATIONFRAMEWORK.CLASSIC.DLL" "PRESENTATIONFRAMEWORK.DLL" "PRESENTATIONFRAMEWORK.LUNA.DLL" "PRESENTATIONFRAMEWORK.ROYALE.DLL" [Detected using Heuristic Algorithm] :HKLM WINDOWS DEFENDER=C:\PROGRAM FILES\WINDOWS DEFENDER\ ### "AMMONITORINGINSTALL.MOF" "AMMONITORINGPROVIDER.DLL" "AMSTATUSINSTALL.MOF" "CLIENTWMIINSTALL.MOF" "CONFIGSECURITYPOLICY.EXE" "DEFENDERCSP.DLL" "DLPUSERAGENT.EXE" "EN-US\" "ENDPOINTDLP.DLL" "EPPMANIFEST.DLL" "FEPUNREGISTER.MOF" [Detected using Heuristic Algorithm] :HKLM WINDOWS MAIL=C:\PROGRAM FILES\WINDOWS MAIL\ ### "WAB.EXE" "WABIMP.DLL" "WABMIG.EXE" [Detected using Heuristic Algorithm] :HKLM WINDOWS MEDIA PLAYER=C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\ ### "EN-US\" "FR-FR\" "ICONS\" "MEDIA RENDERER\" "MPVIS.DLL" "NETWORK SHARING\" "SETUP_WM.EXE" "SKINS\" "VISUALIZATIONS\" "WMLAUNCH.EXE" "WMPCONFIG.EXE" [Detected using Heuristic Algorithm] :HKLM WINDOWS NT=C:\PROGRAM FILES\WINDOWS NT\ ### "ACCESSOIRES\" "ACCESSORIES\" "TABLETEXTSERVICE\" "TableTextService: TABLETEXTSERVICE.DLL" "TABLETEXTSERVICEARRAY.TXT" "TABLETEXTSERVICEDAYI.TXT" "TABLETEXTSERVICETIGRINYA.TXT" [Detected using Heuristic Algorithm] :HKLM WINDOWS PHOTO VIEWER=C:\PROGRAM FILES\WINDOWS PHOTO VIEWER\ ### "EN-US\" "FR-FR\" "IMAGINGDEVICES.EXE" "IMAGINGENGINE.DLL" "PHOTOACQ.DLL" "PHOTOBASE.DLL" "PHOTOVIEWER.DLL" "en-US: IMAGINGDEVICES.EXE.MUI" "PHOTOACQ.DLL.MUI" "PHOTOVIEWER.DLL.MUI" "fr-FR: IMAGINGDEVICES.EXE.MUI" "PHOTOACQ.DLL.MUI" "PHOTOVIEWER.DLL.MUI" [Detected using Heuristic Algorithm] :HKLM WINDOWSAPPS=C:\PROGRAM FILES\WINDOWSAPPS\ ### "617231644CE58.SHOWKEYPLUS_1.1.18.0_NEUTRAL_SPLIT.SCALE-100_ARC7Y9YJ6C41T\" "617231644CE58.SHOWKEYPLUS_1.1.18.0_NEUTRAL_SPLIT.SCALE-125_ARC7Y9YJ6C41T\" "617231644CE58.SHOWKEYPLUS_1.1.18.0_NEUTRAL_SPLIT.SCALE-150_ARC7Y9YJ6C41T\" "617231644CE58.SHOWKEYPLUS_ [Detected using Heuristic Algorithm] :HKLM WINDOWSPOWERSHELL=C:\PROGRAM FILES\WINDOWSPOWERSHELL\ ### "CONFIGURATION\" "MODULES\" "SCRIPTS\" "Modules\Microsoft.PowerShell.Operation.Validation\1.0.1: MICROSOFT.POWERSHELL.OPERATION.VALIDATION.FORMAT.PS1XML" "MICROSOFT.POWERSHELL.OPERATION.VALIDATION.PSD1" "MICROSOFT.POWERSHELL.OPERATION.VALIDATION.PSM1" "OPE [Detected using Heuristic Algorithm] :HKLM ACRONIS=C:\PROGRAMDATA\ACRONIS\ ### "ACTIVITY\" "AGENT\" "BACKUPANDRECOVERY\" "CACERTIFICATES\" "DRIVERSETUP\" "HOME\" "MMS\" "MOBILEBACKUPSERVER\" "SCHEDULE2\" "SERVICEPROCESS\" "SNAPAPILOGS\" [Detected using Heuristic Algorithm] :HKLM AOMEIBR=C:\PROGRAMDATA\AOMEIBR\ ### "ABNOTIFYTOOLSTATE.INI" "AMRENVFLAG.INI" "BACKUPRECOVERY.INI" "BRFUNCTION.INI" "BRLOG.XML" "CB\" "COMN.INI" "COMPLETESETTINGS.INI" "CURTASKSTATE.INI" "DAYTIME.INI" "DISKBACKUP_TASK_NAME.TXT" [Detected using Heuristic Algorithm] :HKLM APPLICATION DATA=C:\PROGRAMDATA\APPLICATION DATA\ ### "A-VOLUTE\" "ACRONIS\" "ACRONIS MOBILE BACKUP DATA\" "ADOBE\" "AOMEI\" "AOMEIBR\" "AOMEIPA\" "APPLE\" "APPLICATION DATA\" "AVERY\" "AVIRA\" [Detected using Heuristic Algorithm] :HKLM AVIRA=C:\PROGRAMDATA\AVIRA\ ### "ENDPOINT PROTECTION SDK\" "OPTIMIZERHOST\" "SECURITY\" "SYSTEMSPEEDUP\" "TELEMETRY\" "VPN\" "Endpoint Protection SDK\common\amsi: AMSI.RDF.BAK" "AMSISERV.JSON" "Endpoint Protection SDK\common\bit: DATA" "Endpoint Protection SDK\common\firewall: CONFIG.J [Detected using Heuristic Algorithm] :HKLM DOCUMENTS=C:\PROGRAMDATA\DOCUMENTS\ ### "DESKTOP.INI" "LOGISHRD\" "MA MUSIQUE\" "MES IMAGES\" "MES VIDÉOS\" "REGRUNINFO\" "STARDOCK\" "Logishrd\SetPoint: PRODUCTIVITY" "Ma musique: DESKTOP.INI" "Mes images: DESKTOP.INI" "Mes vidéos: DESKTOP.INI" [Detected using Heuristic Algorithm] :HKLM MICROSOFT=C:\PROGRAMDATA\MICROSOFT\ ### "AZURESTACK\" "CLICKTORUN\" "CRYPTO\" "DEVICE STAGE\" "DEVICESYNC\" "DIAGNOSIS\" "DIAGNOSTICLOGCSP\" "DRM\" "EDGEUPDATE\" "EVENT VIEWER\" "HTML HELP\" [Detected using Heuristic Algorithm] :HKLM MICROSOFT ONEDRIVE=C:\PROGRAMDATA\MICROSOFT ONEDRIVE\ ### "SETUP\" "setup: REFCOUNT.INI" [Detected using Heuristic Algorithm] :HKLM MOZILLA-1DE4EEC8-1241-4177-A864-E594E8D1FB38=C:\PROGRAMDATA\MOZILLA-1DE4EEC8-1241-4177-A864-E594E8D1FB38\ ### "PROFILE_COUNT_308046B0AF4A39CB.JSON" "UNINSTALL_PING_308046B0AF4A39CB_8646157F-FBBA-467A-B52F-CF94ABEE84A0.JSON" "UNINSTALL_PING_D78BF5DD33499EC2_A9B02E89-3BB3-44BD-8BF5-E57329BF2827.JSON" "UPDATELOCK-302E232658A843A8" "UPDATELOCK-308046B0AF4A39CB" "UPDAT [Detected using Heuristic Algorithm] :HKLM NVIDIA=C:\PROGRAMDATA\NVIDIA\ ### "DISPLAYSESSIONCONTAINER1.LOG" "DISPLAYSESSIONCONTAINER1.LOG_BACKUP1" "DISPLAYSESSIONCONTAINER2.LOG" "DISPLAYSESSIONCONTAINER2.LOG_BACKUP1" "DISPLAYSESSIONCONTAINER3.LOG" "DISPLAYSESSIONCONTAINER3.LOG_BACKUP1" "DISPLAYSESSIONCONTAINER4.LOG" "DISPLAYSESSIO [Detected using Heuristic Algorithm] :HKLM PACKAGES=C:\PROGRAMDATA\PACKAGES\ ### "617231644CE58.SHOWKEYPLUS_ARC7Y9YJ6C41T\" "9426MICRO-STARINTERNATION.DRAGONCENTER_KZH8WXBDKXB8P\" "9426MICRO-STARINTERNATION.MSICENTER_KZH8WXBDKXB8P\" "CLIPCHAMP.CLIPCHAMP_YXZ26NHYZHSRT\" "DUCKDUCKGO.DESKTOPBROWSER_YA2FGKZ3NKS94\" "MICROSOFT.DESKTOPAPPIN [Detected using Heuristic Algorithm] :HKLM REGID.1991-06.COM.MICROSOFT=C:\PROGRAMDATA\REGID.1991-06.COM.MICROSOFT\ ### "REGID.1991-06.COM.MICROSOFT_WINDOWS-10-HOME.SWIDTAG" [Detected using Heuristic Algorithm] :HKLM SURFSHARK=C:\PROGRAMDATA\SURFSHARK\ ### "CONFIGS\" "OPENVPNLOG.LOG" "SERVICELOG.20241013.0.LOG" "SERVICELOG.LOG" "SETTINGS-LOG.DAT" "SETTINGS.DAT" "WIREGUARDSERVICELOG.LOG" [Detected using Heuristic Algorithm] :HKLM USOPRIVATE=C:\PROGRAMDATA\USOPRIVATE\ ### "UPDATESTORE\" "UpdateStore: STORE.BAK" "STORE.DB" [Detected using Heuristic Algorithm] :HKLM .FONTCONFIG=C:\USERS\UTILISATEUR\.FONTCONFIG\ ### "DD1FC1C4FA558A2B7330B3C9303ADD26-LE32D8.CACHE-3" "DD1FC1C4FA558A2B7330B3C9303ADD26-LE32D8.CACHE-7" "DD1FC1C4FA558A2B7330B3C9303ADD26-LE32D8.CACHE-7.NEW" "DD1FC1C4FA558A2B7330B3C9303ADD26-LE64.CACHE-7" "DD1FC1C4FA558A2B7330B3C9303ADD26-LE64.CACHE-7.NEW" [Detected using Heuristic Algorithm] :HKLM APPDATA=C:\USERS\UTILISATEUR\APPDATA\ ### "LOCAL\" "LOCALLOW\" "ROAMING\" "Local: ICONCACHE.DB" "RESMON.RESMONCFG" "Local\4kdownload.com\4K Video Downloader\4K Video Downloader: 2024Y-01M-26D_07-25-37T.10TO11.SQLITE.MIGRATION.BAK" "2024Y-01M-26D_07-25-37T.11TO12.SQLITE.MIGRATION.BAK" "Local\4kdow [Detected using Heuristic Algorithm] :HKLM APPLICATION DATA=C:\USERS\UTILISATEUR\APPDATA\LOCAL\APPLICATION DATA\ ### "4KDOWNLOAD.COM\" "ADOBE\" "AMAZON DRIVE\" "AMDSOFTWAREINSTALLER\" "APPLICATION DATA\" "AUDACITY\" "AVIRA\" "AVIRAWEBVIEW2CACHE\" "BACKUP\" "BATTLEYE\" "BITTORRENTHELPER\" [Detected using Heuristic Algorithm] :HKLM BITTORRENTHELPER=C:\USERS\UTILISATEUR\APPDATA\LOCAL\BITTORRENTHELPER\ ### "CRASHDUMPS\" "LEDGER.BT.CO.BTDB" "LEDGER.BT.CO.BTDB.KEY" "LEDGER.BT.CO.BTDB.PASSWD" "LEDGER.BT.CO.LOCK" "PORT" "WALLET.LOG" [Detected using Heuristic Algorithm] :HKLM CLASSICSHELL=C:\USERS\UTILISATEUR\APPDATA\LOCAL\CLASSICSHELL\ ### "DATACACHE.DB" [Detected using Heuristic Algorithm] :HKLM CRASHDUMPS=C:\USERS\UTILISATEUR\APPDATA\LOCAL\CRASHDUMPS\ ### "CITIES.SCR.13080.DMP" "CITIES.SCR.13768.DMP" "MSI_LED.EXE.12184.DMP" "MSI_LED.EXE.14004.DMP" "MSI_LED.EXE.18356.DMP" "MSI_LED.EXE.19032.DMP" "MSI_LED.EXE.3112.DMP" "MSI_LED.EXE.3260.DMP" "MSI_LED.EXE.5048.DMP" "MSI_LED.EXE.7784.DMP" [Detected using Heuristic Algorithm] :HKLM D3DSCACHE=C:\USERS\UTILISATEUR\APPDATA\LOCAL\D3DSCACHE\ ### "184C8CAE3C8761F2\" "1933C870BE838B51\" "19F4E3CFCDA13CAB\" "6E64ECD79F11AC4E\" "A3F6BEB3952DFA83\" "B2E2034B3794B22F\" "FAED29A94B1D16BF\" "184c8cae3c8761f2: F4EB2D6C-ED2B-4BDD-AD9D-F913287E6768.IDX" "F4EB2D6C-ED2B-4BDD-AD9D-F913287E6768.LOCK" "F4EB2D6C- [Detected using Heuristic Algorithm] :HKLM HISTORIQUE=C:\USERS\UTILISATEUR\APPDATA\LOCAL\HISTORIQUE\ ### "DESKTOP.INI" "HISTORY.IE5\" "LOW\" "History.IE5: CONTAINER.DAT" [Detected using Heuristic Algorithm] :HKLM MICROSOFT=C:\USERS\UTILISATEUR\APPDATA\LOCAL\MICROSOFT\ ### "APPCENTER\" "CLR_V4.0\" "CLR_V4.0_32\" "CREDENTIALS\" "DEVICE STAGE\" "EDGE\" "EDP\" "EVENT VIEWER\" "EXCEL\" "FEEDS\" "FEEDS CACHE\" [Detected using Heuristic Algorithm] :HKLM MOVAVI=C:\USERS\UTILISATEUR\APPDATA\LOCAL\MOVAVI\ ### "MOVAVI VIDEO CONVERTER 22 PREMIUM\" "MOVAVI VIDEO SUITE 22\" "SENTRY\" "SHAREDDATA\" "VIDEO CONVERTER\" "VIDEO CONVERTER PREMIUM\" "VIDEO CONVERTER PREMIUM.BACKUPBYPORTABLEAPPC\" "VIDEO EDITOR\" "VIDEO EDITOR PLUS\" "VIDEO SUITE\" "VIDEOCONVERTER24\" [Detected using Heuristic Algorithm] :HKLM NVIDIA=C:\USERS\UTILISATEUR\APPDATA\LOCAL\NVIDIA\ ### "ACCOUNTS" "GLCACHE\" "NVBACKEND\" "GLCache\4adb70372ed494ddd9f547e676e103a7\25bb1853bd34cd0d: 0ED1A4F1F1168F82.BIN" "0ED1A4F1F1168F82.TOC" "354977E6866B2432.BIN" "354977E6866B2432.TOC" "868D1DD0A761EE9D.BIN" "868D1DD0A761EE9D.TOC" "GLCache\f8445bb0e3fc79b [Detected using Heuristic Algorithm] :HKLM PACKAGES=C:\USERS\UTILISATEUR\APPDATA\LOCAL\PACKAGES\ ### "1527C705-839A-4832-9118-54D4BD6A0C89_CW5N1H2TXYEWY\" "617231644CE58.SHOWKEYPLUS_ARC7Y9YJ6C41T\" "9426MICRO-STARINTERNATION.DRAGONCENTER_KZH8WXBDKXB8P\" "9426MICRO-STARINTERNATION.MSICENTER_KZH8WXBDKXB8P\" "ACTIVESYNC\" "ADOBE.ACROBATREADERDC.PROTECTEDMOD [Detected using Heuristic Algorithm] :HKLM PLACEHOLDERTILELOGOFOLDER=C:\USERS\UTILISATEUR\APPDATA\LOCAL\PLACEHOLDERTILELOGOFOLDER\ ### "9MSSGKG348SP\" "9N3RK8ZV2ZR8\" "9N6G6F7L1B43\" "9NBLGGH4RV3P\" "9NBLGGH4SVJT\" "9NHMG4BJKMDG\" "9NPV76S164X5\" "9PKVZCPRX9NV\" [Detected using Heuristic Algorithm] :HKLM PROGRAMS=C:\USERS\UTILISATEUR\APPDATA\LOCAL\PROGRAMS\ ### "3D YOUTUBE DOWNLOADER (X64)\" "COMMON\" "OPERA\" "3D Youtube Downloader (x64): 3DYD64.EXE" "EULA.TXT" "HELP_MAP.XML" "LIBCURL_OPENSSL64.DLL" "Opera: INSTALLATION_STATUS.JSON" "INSTALLER_PREFS.JSON" "INSTALLER_PREFS.JSON.BACKUP" "LAUNCHER.VISUALELEMENTSM [Detected using Heuristic Algorithm] :HKLM ROBOFORM=C:\USERS\UTILISATEUR\APPDATA\LOCAL\ROBOFORM\ ### "PROFILES\" "_AUTO-UPDATE\" "Profiles\Default Profile: LICENSE.RFO" "MPPSS-1-5-21-1293147834-1548857375-139538282-1000.RFO" "ROBOFORMDATAHERE.TXT" "_APP-DATA-BACKUP.RFO" "_APP-DATA.RFO" "_SETTINGS.RFO" "_auto-update: ROBOFORM-SETUP.EXE" "ROBOFORM-SETUP.TM [Detected using Heuristic Algorithm] :HKLM TEMP=C:\USERS\UTILISATEUR\APPDATA\LOCAL\TEMP\ ### ".CR.1131\" ".OPERA\" ".SES" "0489059F-2F65-42F7-A8F9-E9E93FD73A64.TMP" "1166.TMP" "2F9095E4-2AD2-4D89-B70F-507BBC8B459B.TMP" "33BF07E6-DF6F-45F4-A7D9-F2726043386E.TMP" "3EB2B55B-3DE0-4D76-B252-2D3151039361.TMP" "489557F4-187C-449A-B108-2D9673A3DCF5.TMP" [Detected using Heuristic Algorithm] :HKLM TEMPORARY INTERNET FILES=C:\USERS\UTILISATEUR\APPDATA\LOCAL\TEMPORARY INTERNET FILES\ ### "CONTENT.IE5\" "CONTENT.MSO\" "CONTENT.WORD\" "IE\" "Content.IE5: CONTAINER.DAT" "Content.IE5\2QL36JK4: BIOSLISTSP[1].REC" "KILLSWITCH-CS-FW[1].TXT" "LU_LMU[1].XML" "Content.IE5\EBJOTPE4: $VALUE[1].JPG" "DEFLIST[1].REC" "DEFLIST[2].REC" "Content.IE5\O2R [Detected using Heuristic Algorithm] :HKLM UNHACKME=C:\USERS\UTILISATEUR\APPDATA\LOCAL\UNHACKME\ ### "FIXED.CSV" "LASTSCAN.INI" "MBR" "MBR.MIM" "REGRUN2.RR2" "RR2LOG.TXT" "VBR.MIM" "VBR.VBR" [Detected using Heuristic Algorithm] :HKLM ANYDESK=C:\USERS\UTILISATEUR\APPDATA\ROAMING\ANYDESK\ ### "AD.TRACE" "CONNECTION_TRACE.TXT" "SERVICE.CONF" "SYSTEM.CONF" "USER.CONF" [Detected using Heuristic Algorithm] :HKLM BITTORRENT WEB=C:\USERS\UTILISATEUR\APPDATA\ROAMING\BITTORRENT WEB\ ### ".SES_STATE" "AVCODEC-58.DLL" "AVFILTER-7.DLL" "AVFORMAT-58.DLL" "AVUTIL-56.DLL" "BTWEB.1.LOG" "BTWEB.2.LOG" "BTWEB.3.LOG" "BTWEB.EXE" "BTWEB.LOG" "CRASHDUMPS\" [Detected using Heuristic Algorithm] :HKLM CEFCACHE=C:\USERS\UTILISATEUR\APPDATA\ROAMING\CEFCACHE\ ### "000003.LOG" "BLOB_STORAGE\" "CODE CACHE\" "CURRENT" "GPUCACHE\" "LOCK" "LOG" "LOG.OLD" "MANIFEST-000001" "NETWORK PERSISTENT STATE" "SESSION STORAGE\" [Detected using Heuristic Algorithm] :HKLM EASYANTICHEAT=C:\USERS\UTILISATEUR\APPDATA\ROAMING\EASYANTICHEAT\ ### "235\" "GAMELAUNCHER.LOG" "PROD-FN\" "SERVICE.LOG" "235: EASYANTICHEAT_WOW64_X64.EAC" "EASYANTICHEAT_WOW64_X64.EAC.METADATA" "LOADER.LOG" "prod-fn\62a9473a2dca46b29ccf17577fcf42d7: ANTICHEATLAUNCHER.LOG" "EASYANTICHEAT_X64.EAC" "EASYANTICHEAT_X64.EAC.META [Detected using Heuristic Algorithm] :HKLM FILMOTECH_PREFS=C:\USERS\UTILISATEUR\APPDATA\ROAMING\FILMOTECH_PREFS\ ### "CACHE\" "FILMOTECH_DATABASES\" "FILMOTECH_FENETRES.XML" "FILMOTECH_JAQUETTES\" "FILMOTECH_MODELISTE.XML" "FILMOTECH_PREFERENCES.XML" "FILMOTECH_RECHERCHES\" "FILMOTECH_SCRIPTS\" "FILMOTECH_THEMES\" "TEMP\" [Detected using Heuristic Algorithm] :HKLM MICROSOFT=C:\USERS\UTILISATEUR\APPDATA\ROAMING\MICROSOFT\ ### "ADDINS\" "BIBLIOGRAPHY\" "CLR SECURITY CONFIG\" "CREDENTIALS\" "CRYPTO\" "DOCUMENT BUILDING BLOCKS\" "EXCEL\" "HTML HELP\" "IDENTITIES\" "INSTALLER\" "INTERNET EXPLORER\" [Detected using Heuristic Algorithm] :HKLM SURFSHARK=C:\USERS\UTILISATEUR\APPDATA\ROAMING\SURFSHARK\ ### "DATA.DAT" "DOUBLE_LOCATIONS.DAT" "GENERAL_LOCATIONS.DAT" "LOG.20240921.0.LOG" "LOG.20241005.0.LOG" "LOG.LOG" "OBFUSCATED_LOCATIONS.DAT" "PRIVATE_SETTINGS.DAT" "PROFILEOPTIMIZATION\" "SETTINGS.DAT" "STATIC_LOCATIONS.DAT" [Detected using Heuristic Algorithm] :HKLM APPLICATION DATA=C:\USERS\UTILISATEUR\APPLICATION DATA\ ### "3DYD SOFT\" "4KDOWNLOAD.COM\" "7ZIP\" "ACRONIS\" "ADOBE\" "AMAZON CLOUD DRIVE\" "AMD\" "ANYDESK\" "APOWERSOFT\" "AUDACITY\" "AVANQUEST\" [Detected using Heuristic Algorithm] :HKLM CONTACTS=C:\USERS\UTILISATEUR\CONTACTS\ ### "DESKTOP.INI" [Detected using Heuristic Algorithm] :HKLM COOKIES=C:\USERS\UTILISATEUR\COOKIES\ ### "CONTAINER.DAT" "DEPRECATED.COOKIE" "DNTEXCEPTION\" "ESE\" "LOW\" "PRIVACIE\" "ESE: CONTAINER.DAT" "Low\ESE: CONTAINER.DAT" [Detected using Heuristic Algorithm] :HKLM DESKTOP=C:\USERS\UTILISATEUR\DESKTOP\ ### "A REINSTALLER.LNK" "A-GOLDEN-PAST-VERSION-2.0.1.EXE" "AFFICHER LES CONNEXIONS RÉSEAU.LNK" "AMAZON BACKUP.LNK" "ANTIDOTE 11.LNK" "ARK SURVIVAL EVOLVED.URL" "AUTORISER UNE APPLICATION VIA LE PARE-FEU WINDOWS - RACCOURCI.LNK" "AUTORUNS.LNK" "BITTORRENT WEB. [Detected using Heuristic Algorithm] :HKLM DOCUMENTS=C:\USERS\UTILISATEUR\DOCUMENTS\ ### "ADD-IN EXPRESS\" "ADOBE\" "APOWERSOFT\" "BASSIN CARPES TRAITEMENTS\" "CHANGEMENT FILTRES BASSINS ET UVC.DOCX" "DEFAULT.RDP" "DESKTOP.INI" "DOC1.DOCX" "DOCUMENT STANDARD.LNK" "DOCUMENT1.ZDL" "DOWNLOADS\" [Detected using Heuristic Algorithm] :HKLM DOWNLOADS=C:\USERS\UTILISATEUR\DOWNLOADS\ ### "CERFA_16042-02.PDF" "CLAVIER LOGITECH G915.PDF" "DESKTOP.INI" "ECAM21117B-250751.PDF" "ECOTANK-ET-3850-DATASHEET.PDF" "EMILIE GAY PAROXÉTINE 20MG.PDF" "FA068369.PDF" "FICHE SAV WEB 23.PDF" "FR_KODAK_PIXPRO_BRIDGE_CAMERA_AZ528_SPECSHEET.PDF" "MAX ET CHARL [Detected using Heuristic Algorithm] :HKLM FAVORITES=C:\USERS\UTILISATEUR\FAVORITES\ ### "BING.URL" "DESKTOP.INI" "LINKS\" "Links: DESKTOP.INI" [Detected using Heuristic Algorithm] :HKLM LINKS=C:\USERS\UTILISATEUR\LINKS\ ### "DESKTOP.INI" "DESKTOP.LNK" "DOWNLOADS.LNK" [Detected using Heuristic Algorithm] :HKLM LOCAL SETTINGS=C:\USERS\UTILISATEUR\LOCAL SETTINGS\ ### "4KDOWNLOAD.COM\" "ADOBE\" "AMAZON DRIVE\" "AMDSOFTWAREINSTALLER\" "APPLICATION DATA\" "AUDACITY\" "AVIRA\" "AVIRAWEBVIEW2CACHE\" "BACKUP\" "BATTLEYE\" "BITTORRENTHELPER\" [Detected using Heuristic Algorithm] :HKLM MENU DÉMARRER=C:\USERS\UTILISATEUR\MENU DÉMARRER\ ### "DESKTOP.INI" "PROGRAMMES\" "PROGRAMS\" "Programmes: 4K VIDEO DOWNLOADER.LNK" "ADMINISTRATIVE TOOLS.LNK" "AMAZON PHOTOS.LNK" "BITTORRENT WEB.LNK" "DESKTOP.INI" "FILE EXPLORER.LNK" "Programs: 4K VIDEO DOWNLOADER.LNK" "ADMINISTRATIVE TOOLS.LNK" "AMAZON PHO [Detected using Heuristic Algorithm] :HKLM MES DOCUMENTS=C:\USERS\UTILISATEUR\MES DOCUMENTS\ ### "ADD-IN EXPRESS\" "ADOBE\" "APOWERSOFT\" "BASSIN CARPES TRAITEMENTS\" "CHANGEMENT FILTRES BASSINS ET UVC.DOCX" "DEFAULT.RDP" "DESKTOP.INI" "DOC1.DOCX" "DOCUMENT STANDARD.LNK" "DOCUMENT1.ZDL" "DOWNLOADS\" [Detected using Heuristic Algorithm] :HKLM MODÈLES=C:\USERS\UTILISATEUR\MODÈLES\ [Detected using Heuristic Algorithm] :HKLM MUSIC=C:\USERS\UTILISATEUR\MUSIC\ ### "BAGPIPES - FLOWER OF SCOTLAND - THE ROYAL SCOTS DRAGOON GUARDS - SCOTTISH NATIONAL ANTHEM.MP3" "DESKTOP.INI" "HYMNE NATIONAL - ECOSSE - FLOWER OF SCOTLAND (CORNEMUSE).MP3" "SCOTTISH NATIONAL ANTHEM - FLOWERS OF SCOTLAND.MP3" "VOUS AVEZ DE EMAILS.WAV" "WI [Detected using Heuristic Algorithm] :HKLM PICTURES=C:\USERS\UTILISATEUR\PICTURES\ ### "1.JPG" "1MAIS_SYREN_CPA2.JPG" "2024-04-10\" "204099-COLLONGES-LA-ROUGE-CORREZELA-MAISON-SIRENE-E-SIECLE-ELLE-DOIT-SON-NOM-ORNEMENT-DANS-PIERRE-UNE-SIRENE-TENANT-DANS-MAIN-PEIGNE-DANS-AUTRE-MIROIR-LA-TENTATION.JPG" "A-9-N7CW787F4X_CERTIFICAT.PDF" "AD.JPG" [Detected using Heuristic Algorithm] :HKLM RECENT=C:\USERS\UTILISATEUR\RECENT\ ### "AUTOMATICDESTINATIONS\" "CUSTOMDESTINATIONS\" "AutomaticDestinations: 5A2098E080CF7AC4.AUTOMATICDESTINATIONS-MS" "5F7B5F1E01B83767.AUTOMATICDESTINATIONS-MS" "F01B4D95CF55D32A.AUTOMATICDESTINATIONS-MS" "CustomDestinations: 2A2E0412B8AD04A2.CUSTOMDESTINAT [Detected using Heuristic Algorithm] :HKLM SAVED GAMES=C:\USERS\UTILISATEUR\SAVED GAMES\ ### "DESKTOP.INI" [Detected using Heuristic Algorithm] :HKLM SEARCHES=C:\USERS\UTILISATEUR\SEARCHES\ ### "DESKTOP.INI" "EVERYWHERE.SEARCH-MS" "INDEXED LOCATIONS.SEARCH-MS" "WINRT--{S-1-5-21-1293147834-1548857375-139538282-1000}-.SEARCHCONNECTOR-MS" [Detected using Heuristic Algorithm] :HKLM SENDTO=C:\USERS\UTILISATEUR\SENDTO\ ### "COMPRESSED (ZIPPED) FOLDER.ZFSENDTOTARGET" "DESKTOP (CREATE SHORTCUT).DESKLINK" "DESKTOP.INI" "DOCUMENTS.MYDOCS" "FORMAT FACTORY.LNK" "FORMAT PLAYER.LNK" "MAIL RECIPIENT.MAPIMAIL" "TRANSFERT DE FICHIERS BLUETOOTH.LNK" [Detected using Heuristic Algorithm] :HKLM VIDEOS=C:\USERS\UTILISATEUR\VIDEOS\ ### "ANYDESK\" "CAPTURES\" "DESKTOP.INI" "DIVX MOVIES\" "ENREGISTREMENT 2024-07-22 112920.MP4" "ENREGISTREMENT 2024-09-14 111040.MP4" "ENREGISTREMENT 2024-09-24 095843.MP4" "ENREGISTREMENTS D’ÉCRAN\" "HOVERBOARD LE 15 JANVIER 2024.MP4" "HOVERBOARD LE 15 JANVI [Detected using Heuristic Algorithm] :HKLM VOISINAGE D'IMPRESSION=C:\USERS\UTILISATEUR\VOISINAGE D'IMPRESSION\ [Detected using Heuristic Algorithm] :HKLM VOISINAGE RÉSEAU=C:\USERS\UTILISATEUR\VOISINAGE RÉSEAU\ [In memory] [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\LSASS.EXE ### Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\lsass.exe [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\WINLOGON.EXE ### Application d’ouverture de session Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*winlogon.exe [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\FONTDRVHOST.EXE ### Usermode Font Driver Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*"fontdrvhost.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\FONTDRVHOST.EXE ### Usermode Font Driver Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*"fontdrvhost.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k RPCSS -p [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s DsmSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s PrintDeviceConfigurationService [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netprofm -p -s netprofm [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -s WPDBusEnum [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\LOGONUI.EXE ### Windows Logon User Interface Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*"LogonUI.exe" /flags:0x2 /state0:0xa3a5a055 /state1:0x41c64e6d [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\DWM.EXE ### Gestionnaire de fenêtres du Bureau Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*"dwm.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k GPSvcGroup [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k NetworkService -p [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NV_DISPSI.INF_AMD64_681B5907A11E1C87\DISPLAY.NVCONTAINER\NVDISPLAY.CONTAINER.EXE ### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 33231171 ->NVCONTAINER =>NVCONTAINER.EXE !$*C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispsi.inf_amd64_681b5907a11e1c87\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispsi.inf_amd64_681b5907a11e1c87\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem /ert [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k UserProfileService -p -s ProfSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TextInputManagementService [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CTFMON.EXE ### Chargeur CTF Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*/QuitInfo:00000000000001E8;00000000000001F8; [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Wcmsvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s DusmSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SPOOLSV.EXE ### Application sous-système spouleur Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\spoolsv.exe [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NV_DISPSI.INF_AMD64_681B5907A11E1C87\DISPLAY.NVCONTAINER\NVDISPLAY.CONTAINER.EXE ### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 33231171 ->NVCONTAINER =>NVCONTAINER.EXE !$*"C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispsi.inf_amd64_681b5907a11e1c87\Display.NvContainer\NVDisplay.Container.exe" -f %ProgramData%\NVIDIA\DisplaySessionContainer%d.log -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispsi.inf_amd64_681b5907a11e1c87\Display.NvContainer\plugins\Session -r -l 3 -p 30000 -cfg NVDisplay.ContainerLocalSystem\Session /ert -c [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE ### WMI Provider Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\wbem\wmiprvse.exe [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE ### WMI Provider Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\wbem\wmiprvse.exe [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k NetworkService -p [Running Processes] :HKLM C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\SCHEDULE2\SCHEDUL2.EXE ### Acronis Scheduler Service Acronis International GmbH Acronis Tools 8,0,1,11438 !$*"C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k utcsvc -p [Running Processes] :HKLM C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ARM\1.0\ARMSVC.EXE ### Acrobat Update Service Adobe Inc. Acrobat Update Service 1.824.460.1091 !$*"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p -s fdPHost [Running Processes] :HKLM C:\PROGRAM FILES\COMMON FILES\EPSON\EPW!3 SSRP\E_S11RPB.EXE ### EPSON Status Monitor 3 Seiko Epson Corporation EPSON Status Monitor 3 11.00 !$*"C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S11RPB.EXE" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\MSI OC KIT\ACTIVEX_SERVICE\MSI_ACTIVEX_SERVICE.EXE ### MSI_ActiveX_Service Micro-Star INT'L CO., LTD. MSI_ActiveX_Service 1.0.1.35 !$*"C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\FAST BOOT\FASTBOOTSERVICE.EXE ### FastBootService MSI FastBoot Service 1.0.0.7 !$*"C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe" [Running Processes] :HKLM C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\CLICKTORUN\OFFICECLICKTORUN.EXE ### Microsoft Office Click-to-Run (SxS) Microsoft Corporation Microsoft 365 and Office 16.0.18025.20140 !$*"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service [Running Processes] :HKLM C:\PROGRAM FILES\BONJOUR\MDNSRESPONDER.EXE ### Bonjour Service Apple Inc. Bonjour 3,0,0,10 !$*"C:\Program Files\Bonjour\mDNSResponder.exe" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\FORMATFACTORY\NET_UPDATER64.EXE ### BrightData service allows free use of certain features in an app you installed BrightData Ltd. Bright SDK 1.429.308 ->NET_UPDATER.EXE !$*"C:/Program Files (x86)/FormatFactory/net_updater64.exe" --updater win_formatfactory.pcfreetime.com [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGHOTKEY_SERVICE.EXE ### Gaming Hotkey Service Micro-Star INT'L CO., LTD. Gaming Hotkey Service 1.0.0.10 !$*"C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\MSI CENTER\CASE\MSI_CASE_SERVICE.EXE ### MSI_Case_Service Micro-Star INT'L CO., LTD. MSI_Case_Service 1.0.0.21 !$*"C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\MSICONTROLSERVICE.EXE ### MSI MSIControlService.exe 3.0.0.82 ->MSICTL_CC =>MSI CONTROL SERVICE !$*"C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe" [Running Processes] :HKLM C:\PROGRAM FILES\SURFSHARK\SURFSHARK.SERVICE.EXE ### Surfshark.Service Surfshark.Service Surfshark.Service 5.10.1.999 ->SURFSHARK.SERVICE.DLL !$*"C:\Program Files\Surfshark\Surfshark.Service.exe" -displayname "Surfshark Service" -servicename "Surfshark Service" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\SUPER CHARGER\CHARGESERVICE.EXE ### Super Charger Service MSI Super Charger Service 1.3.0.29 !$*"C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe" [Running Processes] :HKLM C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE ### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 33454032 !$*"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -a -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -ert [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SEARCHINDEXER.EXE ### Indexeur Microsoft Windows Search Microsoft Corporation Windows® Search 7.0.26100.2294 !$*C:\WINDOWS\system32\SearchIndexer.exe /Embedding [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\REALTEKSERVICE.INF_AMD64_1803724721D1A34C\RTKAUDUSERVICE64.EXE ### Realtek HD Audio Universal Service Realtek Semiconductor Realtek HD Audio Universal Service 1.1.619.1 ->RTKAUDUSERVICE.EXE !$*C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1803724721d1a34c\RtkAudUService64.exe [Running Processes] :HKLM C:\WINDOWS\SYSWOW64\WALLPAPERSERVICE32.EXE ### !$*"C:\Windows\SysWOW64\wallpaperservice32.exe" -p "C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\NAHIMICSERVICE.EXE ### Nahimic NahimicService 2.8.2.0 =>NAHIMIC SERVICE !$*C:\WINDOWS\System32\NahimicService.exe [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\MSI CENTER\MSI_CENTRAL_SERVICE.EXE ### MSI Center Service Micro-Star Int'l Co., Ltd. MSI Center Service 3.2024.0711.01 ->MSI CENTRAL SERVICE.EXE !$*"C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\APP MANAGER\APPMANAGER_SERVICE.EXE ### MSI App Manager Service MSI MSI App Manager Service 1.0.0.6 !$*"C:\Program Files (x86)\MSI\APP Manager\AppManager_Service.exe" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\LIVE UPDATE\MSI_LIVEUPDATE_SERVICE.EXE ### MSI Live Update Service Micro-Star INT'L CO., LTD. MSI Live Update Service 1.0.0.74 !$*"C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s IKEEXT [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\DASHOST.EXE ### Device Association Framework Provider Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*dashost.exe {4b809d61-77f7-49d2-a5d8a632785ac0ae} [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s FDResPub [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s NcdAutoSetup [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\DASHOST.EXE ### Device Association Framework Provider Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*dashost.exe {42ba2760-3657-451e-962d79442c81e597} [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV [Running Processes] :HKLM C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPNETWK.EXE ### Service de partage réseau du Lecteur multimédia Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 12.0.26100.1 ->WINDOWS MEDIA PLAYER NETWORK SHARING SERVICE !$*"C:\Program Files\Windows Media Player\wmpnetwk.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNDLL32.EXE ### Processus hôte Windows (Rundll32) Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 ->RUNDLL !$*rundll32.exe "c:\program files\nvidia corporation\nvstreamsrv\rxdiag.dll" RxDiagSetRuntimeMessagePump [Running Processes] :HKLM C:\WINDOWS\SYSWOW64\WBEM\WMIPRVSE.EXE ### WMI Provider Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE ### WMI Provider Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\wbem\wmiprvse.exe [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s NetSetupSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k imgsvc [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\MSI CENTER\MSI.CENTRALSERVER.EXE ### MSI.CentralServer Micro-Star Int'l Co., Ltd. MSI.CentralServer 3.2024.0808.01 !$*"C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe" [Running Processes] :HKLM C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.GAMINGSERVICES_24.93.16001.0_X64__8WEKYB3D8BBWE\GAMINGSERVICESNET.EXE ### GamingServices Microsoft Corporation Microsoft Gaming Install Services 10.0.26100.1512 ->GAMINGSERVICES.EXE !$*"C:\Program Files\WindowsApps\Microsoft.GamingServices_24.93.16001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe" [Running Processes] :HKLM C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.GAMINGSERVICES_24.93.16001.0_X64__8WEKYB3D8BBWE\GAMINGSERVICES.EXE ### GamingServices Microsoft Corporation Microsoft Gaming Install Services 10.0.26100.1512 !$*"C:\Program Files\WindowsApps\Microsoft.GamingServices_24.93.16001.0_x64__8wekyb3d8bbwe\GamingServices.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE ### Hôte de la fenêtre de la console Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*\??\C:\WINDOWS\system32\conhost.exe 0x4 [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\AGGREGATORHOST.EXE ### Microsoft (R) Aggregator Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*AggregatorHost.exe [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s upnphost [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SEARCHPROTOCOLHOST.EXE ### Microsoft Windows Search Protocol Host Microsoft Corporation Windows® Search 7.0.26100.1882 !$*"C:\WINDOWS\System32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe1_ Global\UsGthrCtrlFltPipeMssGthrPipe1 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\MSI OC KIT\ACTIVEX_SERVICE\VIDEOCARDMONITORII.EXE ### VideoCardMonitor Micro-Star INT'L CO., LTD. VideoCardMonitor 1.0.1.06 !$*"C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\VideoCardMonitorII.exe" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\MSI OC KIT\ACTIVEX_SERVICE\EYEREST.EXE ### EyeRest Micro-Star INT'L CO., LTD. EyeRest 1.0.1.23 !$*"C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\EyeRest.exe" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\MSI OC KIT\ACTIVEX_SERVICE\TRIGGERMODEMONITOR.EXE ### TriggerModeMonitor Micro-Star INT'L CO., LTD. TriggerModeMonitor 1.0.1.24 !$*"C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s BITS [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SEARCHFILTERHOST.EXE ### Microsoft Windows Search Filter Host Microsoft Corporation Windows® Search 7.0.26100.1882 !$*"C:\WINDOWS\System32\SearchFilterHost.exe" 852 2944 3000 824 {7FC3863B-7471-4B10-84E3-A5C2E0330618} [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s DeviceInstall [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netsvcs -p [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s XblAuthManager [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\PRINTISOLATIONHOST.EXE ### PrintIsolationHost Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\PrintIsolationHost.exe -Embedding [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k WebThreatDefense -p -s webthreatdefsvc [Running Processes] :HKLM C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE ### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 33454032 !$*"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%dSPUser.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\SPUser" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c [Running Processes] :HKLM C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE ### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 33454032 !$*"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SIHOST.EXE ### Shell Infrastructure Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*sihost.exe [Running Processes] :HKLM C:\PROGRAM FILES (X86)\STEAM\STEAMAPPS\COMMON\WALLPAPER_ENGINE\WALLPAPER32.EXE ### Wallpaper Engine 2.5.0.28 !$*C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe -safe -silent -service [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s webthreatdefusersvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService [Running Processes] :HKLM C:\WINDOWS\SYSWOW64\MUACHOST.EXE ### Windows Host Process MSI muachost 1.0.0.1 !$*"C:\Windows\SysWOW64\muachost.exe" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SYSTRAY.APPLICATION.EXE ### Avira Security Avira Operations GmbH Avira Security 1.1.104.1294 ->AVIRA SECURITY !$*"C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe" [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGHOTKEY.EXE ### Gaming Hotkey Micro-Star INT'L CO., LTD. Gaming Hotkey 1.0.0.24 !$*"C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe" --normal [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\MSI TOAST SERVER\MSITOASTSERVER.EXE ### MSIToastServer Micro-Star INT'L CO., LTD. MSIToastServer 1.0.0.10 !$*"C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\TASKHOSTW.EXE ### Processus hôte pour Tâches Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E} [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k osprivacy -p -s camsvc [Running Processes] :HKLM C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVNODE\NVIDIA WEB HELPER.EXE ### NVIDIA Web Helper Service Node.js Node.js 11.13.0 ->NODE =>NODE.EXE !$*"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE ### Hôte de la fenêtre de la console Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*\??\C:\WINDOWS\system32\conhost.exe 0x4 [Running Processes] :HKLM C:\PROGRAM FILES\NVIDIA CORPORATION\SHADOWPLAY\NVSPHELPER64.EXE ### NVIDIA ShadowPlay Helper NVIDIA Corporation NVIDIA GeForce Experience 3.28.0.417 ->NVSPHELPER.EXE !$*"C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe" [Running Processes] :HKLM C:\PROGRAM FILES\NVIDIA CORPORATION\NVIDIA GEFORCE EXPERIENCE\NVIDIA SHARE.EXE ### NVIDIA Share NVIDIA Corporation NVIDIA Share rel_03_28/9a1bfbe !$*"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" [Running Processes] :HKLM C:\WINDOWS\EXPLORER.EXE ### Explorateur Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\Explorer.EXE [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SHELLHOST.EXE ### ShellHost Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*"C:\Windows\System32\ShellHost.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\RUNONCE.EXE ### Run Once Wrapper Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*runonce.exe /Explorer [Running Processes] :HKLM C:\WINDOWS\SYSWOW64\RUNONCE.EXE ### Run Once Wrapper Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\SysWOW64\runonce.exe /RunOnceEx6432 [Running Processes] :HKLM C:\PROGRAM FILES\NVIDIA CORPORATION\NVIDIA GEFORCE EXPERIENCE\NVIDIA SHARE.EXE ### NVIDIA Share NVIDIA Corporation NVIDIA Share rel_03_28/9a1bfbe !$*"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=gpu-process --field-trial-handle=2124,13009442434574389229,5256954173350378376,131072 --disable-features=VizDisplayCompositor --no-sandbox --log-file="C:\Users\Utilisateur\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --lang=en-US --gpu-preferences=KAAAAAAAAACACwAAAQAAAAAAAAAAAGAAAAAAAAEAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --log-file="C:\Users\Utilisateur\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --service-request-channel-token=1888463607231079892 --mojo-platform-channel-handle=2192 /prefetch:2 [Running Processes] :HKLM C:\PROGRA~2\GREATIS\REANIM~1\REANIM~1.EXE ### RegRun Start Control Greatis Software RegRun Security Suite 16.50 ->REGRUN2.EXE !$*"C:\PROGRA~2\Greatis\REANIM~1\REANIM~1.EXE" /sysrep [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\MSI CENTER\MSI.TERMINALSERVER.EXE ### MSI.TerminalServer Micro-Star Int'l Co., Ltd. MSI.TerminalServer 3.2024.0813.01 !$*"C:\Program Files (x86)\MSI\MSI Center\MSI.TerminalServer.exe" Launch [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\SVCHOST.EXE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost [Running Processes] :HKLM C:\PROGRAM FILES\NVIDIA CORPORATION\NVIDIA GEFORCE EXPERIENCE\NVIDIA SHARE.EXE ### NVIDIA Share NVIDIA Corporation NVIDIA Share rel_03_28/9a1bfbe !$*"C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe" --type=renderer --no-sandbox --autoplay-policy=no-user-gesture-required --log-file="C:\Users\Utilisateur\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --field-trial-handle=2124,13009442434574389229,5256954173350378376,131072 --disable-features=VizDisplayCompositor --service-pipe-token=1269171023002595676 --lang=en-US --log-file="C:\Users\Utilisateur\AppData\Local\NVIDIA Corporation\NVIDIA Share\debug.log" --device-scale-factor=1 --num-raster-threads=4 --enable-main-frame-before-activation --service-request-channel-token=1269171023002595676 --renderer-client-id=3 --mojo-platform-channel-handle=2712 /prefetch:1 [Running Processes] :HKLM C:\WINDOWS\SYSWOW64\WBEM\WMIPRVSE.EXE ### WMI Provider Host Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -secured -Embedding [Running Processes] :HKLM C:\PROGRAMDATA\BRIGHTDATA\D71AE678248C6F808FEF312E7563CA8A3655C744\BRIGHTDATA.EXE ### BrightData service allows free use of certain features in an app you installed BrightData Ltd. Bright SDK 1.429.308 !$*C:\ProgramData\BrightData\d71ae678248c6f808fef312e7563ca8a3655c744\brightdata.exe --appid win_formatfactory.pcfreetime.com [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE ### Hôte de la fenêtre de la console Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*\??\C:\WINDOWS\system32\conhost.exe 0x4 [Running Processes] :HKLM C:\PROGRAM FILES (X86)\MSI\MSI CENTER\ENGINE\CC_ENGINE_X64.EXE ### MSI CC_Engin.exe 3.0.0.74 ->CC_ENGIN !$*"C:\Program Files (x86)\MSI\MSI Center\Engine\CC_Engine_x64.exe" [Running Processes] :HKLM C:\WINDOWS\SYSTEM32\CONHOST.EXE ### Hôte de la fenêtre de la console Microsoft Corporation Système d exploitation Microsoft® Windows® 10.0.26100.2294 !$*\??\C:\WINDOWS\system32\conhost.exe 0x4 [Running Services] AcrSch2Svc ### Acronis Scheduler Service Acronis International GmbH Acronis Tools 8,0,1,11438 !$*"C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe" Service registry key doesn't exist or hidden. [Running Services] AdobeARMservice ### Acrobat Update Service Adobe Inc. Acrobat Update Service 1.824.460.1091 !$*"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe" Service registry key doesn't exist or hidden. [Running Services] Appinfo ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] AppXSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k wsappx -p Service registry key doesn't exist or hidden. [Running Services] AudioEndpointBuilder ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] Audiosrv ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] BFE ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p Service registry key doesn't exist or hidden. [Running Services] BITS ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] Bonjour Service ### Bonjour Service Apple Inc. Bonjour 3,0,0,10 !$*"C:\Program Files\Bonjour\mDNSResponder.exe" Service registry key doesn't exist or hidden. [Running Services] BrokerInfrastructure ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p Service registry key doesn't exist or hidden. [Running Services] camsvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k osprivacy -p Service registry key doesn't exist or hidden. [Running Services] CDPSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p Service registry key doesn't exist or hidden. [Running Services] ClickToRunSvc ### Microsoft Office Click-to-Run (SxS) Microsoft Corporation Microsoft 365 and Office 16.0.18025.20140 !$*"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service Service registry key doesn't exist or hidden. [Running Services] ClipSVC ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k wsappx -p Service registry key doesn't exist or hidden. [Running Services] CoreMessagingRegistrar ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p Service registry key doesn't exist or hidden. [Running Services] CryptSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k NetworkService -p Service registry key doesn't exist or hidden. [Running Services] DcomLaunch ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p Service registry key doesn't exist or hidden. [Running Services] DeviceAssociationService ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] DeviceInstall ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p Service registry key doesn't exist or hidden. [Running Services] Dhcp ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] DiagTrack ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k utcsvc -p Service registry key doesn't exist or hidden. [Running Services] DispBrokerDesktopSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p Service registry key doesn't exist or hidden. [Running Services] Dnscache ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k NetworkService -p Service registry key doesn't exist or hidden. [Running Services] DPS ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p Service registry key doesn't exist or hidden. [Running Services] DsmSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] DusmSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s DusmSvc Service registry key doesn't exist or hidden. [Running Services] EndpointProtectionService ### Endpoint Protection Servic Avira Operations Gmb Avira Product Famil 1.0.2410.411 ->ENDPOINTPROTECTION.EX !$*"C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe" start EndpointProtectionService Service registry key doesn't exist or hidden. [Running Services] EPSON_PM_RPCV4_11 ### EPSON Status Monitor 3 Seiko Epson Corporation EPSON Status Monitor 3 11.00 !$*"C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S11RPB.EXE" Service registry key doesn't exist or hidden. [Running Services] EventLog ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] EventSystem ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p Service registry key doesn't exist or hidden. [Running Services] fdPHost ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p Service registry key doesn't exist or hidden. [Running Services] FDResPub ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p Service registry key doesn't exist or hidden. [Running Services] FontCache ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p Service registry key doesn't exist or hidden. [Running Services] GamingHotkey_Service ### Gaming Hotkey Service Micro-Star INT'L CO., LTD. Gaming Hotkey Service 1.0.0.10 !$*"C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe" Service registry key doesn't exist or hidden. [Running Services] GamingServices ### GamingServices Microsoft Corporation Microsoft Gaming Install Services 10.0.26100.1512 !$*"C:\Program Files\WindowsApps\Microsoft.GamingServices_24.93.16001.0_x64__8wekyb3d8bbwe\GamingServices.exe" Service registry key doesn't exist or hidden. [Running Services] GamingServicesNet ### GamingServices Microsoft Corporation Microsoft Gaming Install Services 10.0.26100.1512 !$*"C:\Program Files\WindowsApps\Microsoft.GamingServices_24.93.16001.0_x64__8wekyb3d8bbwe\GamingServices.exe" Service registry key doesn't exist or hidden. [Running Services] gpsvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k GPSvcGroup Service registry key doesn't exist or hidden. [Running Services] hidserv ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] IKEEXT ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] InstallService ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] iphlpsvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k NetSvcs -p Service registry key doesn't exist or hidden. [Running Services] KeyIso ### Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\lsass.exe Service registry key doesn't exist or hidden. [Running Services] LanmanServer ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] LanmanWorkstation ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k NetworkService -p Service registry key doesn't exist or hidden. [Running Services] lmhosts ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] LSM ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p Service registry key doesn't exist or hidden. [Running Services] luminati_net_updater_win_formatfactory_pcfreetime_com ### BrightData service allows free use of certain features in an app you installed BrightData Ltd. Bright SDK 1.429.308 ->NET_UPDATER.EXE !$*"C:/Program Files (x86)/FormatFactory/net_updater64.exe" --updater win_formatfactory.pcfreetime.com Service registry key doesn't exist or hidden. [Running Services] mpssvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p Service registry key doesn't exist or hidden. [Running Services] MSICTL_CC ### MSI MSIControlService.exe 3.0.0.82 ->MSICTL_CC =>MSI CONTROL SERVICE !$*"C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe" Service registry key doesn't exist or hidden. [Running Services] MSI_ActiveX_Service ### MSI_ActiveX_Service Micro-Star INT'L CO., LTD. MSI_ActiveX_Service 1.0.1.35 !$*"C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe" Service registry key doesn't exist or hidden. [Running Services] MSI_AppManager_Service ### MSI App Manager Service MSI MSI App Manager Service 1.0.0.6 !$*"C:\Program Files (x86)\MSI\APP Manager\AppManager_Service.exe" Service registry key doesn't exist or hidden. [Running Services] MSI_Case_Service ### MSI_Case_Service Micro-Star INT'L CO., LTD. MSI_Case_Service 1.0.0.21 !$*"C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe" Service registry key doesn't exist or hidden. [Running Services] MSI_Center_Service ### MSI Center Service Micro-Star Int'l Co., Ltd. MSI Center Service 3.2024.0711.01 ->MSI CENTRAL SERVICE.EXE !$*"C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe" Service registry key doesn't exist or hidden. [Running Services] MSI_FastBoot ### FastBootService MSI FastBoot Service 1.0.0.7 !$*"C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe" Service registry key doesn't exist or hidden. [Running Services] MSI_LiveUpdate_Service ### MSI Live Update Service Micro-Star INT'L CO., LTD. MSI Live Update Service 1.0.0.74 !$*"C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe" Service registry key doesn't exist or hidden. [Running Services] MSI_SuperCharger ### Super Charger Service MSI Super Charger Service 1.3.0.29 !$*"C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe" Service registry key doesn't exist or hidden. [Running Services] NahimicService ### Nahimic NahimicService 2.8.2.0 =>NAHIMIC SERVICE !$*C:\WINDOWS\System32\NahimicService.exe Service registry key doesn't exist or hidden. [Running Services] NcbService ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] NcdAutoSetup ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p Service registry key doesn't exist or hidden. [Running Services] netprofm ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netprofm -p Service registry key doesn't exist or hidden. [Running Services] NetSetupSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] NgcSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] nsi ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalService -p Service registry key doesn't exist or hidden. [Running Services] NvContainerLocalSystem ### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 33454032 !$*"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -a -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -ert Service registry key doesn't exist or hidden. [Running Services] NVDisplay.ContainerLocalSystem ### NVIDIA Container NVIDIA Corporation NVIDIA Container gcomp_rel 33231171 ->NVCONTAINER =>NVCONTAINER.EXE !$*C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispsi.inf_amd64_681b5907a11e1c87\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispsi.inf_amd64_681b5907a11e1c87\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem /ert Service registry key doesn't exist or hidden. [Running Services] PcaSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] PlugPlay ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p Service registry key doesn't exist or hidden. [Running Services] PolicyAgent ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] Power ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p Service registry key doesn't exist or hidden. [Running Services] PrintDeviceConfigurationService ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] ProfSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k UserProfileService -p Service registry key doesn't exist or hidden. [Running Services] RmSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted Service registry key doesn't exist or hidden. [Running Services] RpcEptMapper ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k RPCSS -p Service registry key doesn't exist or hidden. [Running Services] RpcSs ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k rpcss -p Service registry key doesn't exist or hidden. [Running Services] RtkAudioUniversalService ### Realtek HD Audio Universal Service Realtek Semiconductor Realtek HD Audio Universal Service 1.1.619.1 ->RTKAUDUSERVICE.EXE !$*C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1803724721d1a34c\RtkAudUService64.exe Service registry key doesn't exist or hidden. [Running Services] SamSs ### Local Security Authority Process Microsoft Corporation Microsoft® Windows® Operating System 10.0.26100.1882 !$*C:\WINDOWS\system32\lsass.exe Service registry key doesn't exist or hidden. [Running Services] Schedule ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] SENS ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] ShellHWDetection ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] Spooler ### Application sous-système spouleur Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\spoolsv.exe Service registry key doesn't exist or hidden. [Running Services] SSDPSRV ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p Service registry key doesn't exist or hidden. [Running Services] StateRepository ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k appmodel -p Service registry key doesn't exist or hidden. [Running Services] StiSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k imgsvc Service registry key doesn't exist or hidden. [Running Services] StorSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] Surfshark Service ### Surfshark.Service Surfshark.Service Surfshark.Service 5.10.1.999 ->SURFSHARK.SERVICE.DLL !$*"C:\Program Files\Surfshark\Surfshark.Service.exe" -displayname "Surfshark Service" -servicename "Surfshark Service" Service registry key doesn't exist or hidden. [Running Services] SysMain ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] SystemEventsBroker ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p Service registry key doesn't exist or hidden. [Running Services] TextInputManagementService ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] Themes ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] TimeBrokerSvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] TokenBroker ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] TrkWks ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] upnphost ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p Service registry key doesn't exist or hidden. [Running Services] UserManager ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] Wallpaper Engine Service ### !$*"C:\Windows\SysWOW64\wallpaperservice32.exe" -p "C:\Program Files (x86)\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe" Service registry key doesn't exist or hidden. [Running Services] Wcmsvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Wcmsvc Service registry key doesn't exist or hidden. [Running Services] WdiSystemHost ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] webthreatdefsvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k WebThreatDefense -p Service registry key doesn't exist or hidden. [Running Services] WinHttpAutoProxySvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] Winmgmt ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] WMPNetworkSvc ### Service de partage réseau du Lecteur multimédia Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 12.0.26100.1 ->WINDOWS MEDIA PLAYER NETWORK SHARING SERVICE !$*"C:\Program Files\Windows Media Player\wmpnetwk.exe" Service registry key doesn't exist or hidden. [Running Services] WPDBusEnum ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted Service registry key doesn't exist or hidden. [Running Services] WpnService ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] wscsvc ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] WSearch ### Indexeur Microsoft Windows Search Microsoft Corporation Windows® Search 7.0.26100.2294 !$*C:\WINDOWS\system32\SearchIndexer.exe /Embedding Service registry key doesn't exist or hidden. [Running Services] XblAuthManager ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k netsvcs -p Service registry key doesn't exist or hidden. [Running Services] CDPUserSvc_fea20 ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup Service registry key doesn't exist or hidden. [Running Services] webthreatdefusersvc_fea20 ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p Service registry key doesn't exist or hidden. [Running Services] WpnUserService_fea20 ### Processus hôte pour les services Windows Microsoft Corporation Système d’exploitation Microsoft® Windows® 10.0.26100.2294 !$*C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup Service registry key doesn't exist or hidden. [Uninstall] [Applications] :HKLM {4F46CF54-47D2-41F4-B230-B0954C544420}}_is1="C:\Program Files (x86)\MSI\Live Update\unins001.exe" /SILENT ### MSI Live Update 6 - (16) 10-2024 [Applications] :HKLM OneDriveSetup.exe="C:\Program Files\Microsoft OneDrive\24.186.0915.0004\OneDriveSetup.exe" /uninstall /allusers ### Microsoft OneDrive - (16) 10-2024 [Applications] :HKLM Google Chrome="C:\Program Files\Google\Chrome\Application\129.0.6668.101\Installer\setup.exe" --uninstall --channel=stable --system-level --verbose-logging ### Google Chrome - (16) 10-2024 [Applications] :HKLM CrystalDiskInfo_is1="C:\Program Files\CrystalDiskInfo\unins000.exe" /SILENT ### CrystalDiskInfo 9.2.3 - (15) 10-2024 [Applications] :HKLM {68E1CCB4-4965-4713-BDEB-77F6D6C9BF9D}_is1="C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe" uninstallSdk ### Endpoint Protection SDK - (12) 10-2024 [Applications] :HKLM Avira Phantom VPN="C:\Program Files (x86)\Avira\VPN\uninstaller.exe" /S ### Avira Phantom VPN - (12) 10-2024 [Applications] :HKLM Avira System Speedup_is1="C:\Program Files (x86)\Avira\System Speedup\unins000.exe" /SILENT ### Avira System Speedup - (12) 10-2024 [Applications] :HKLM Avira Security_is1="C:\Program Files (x86)\Avira\Security\unins000.exe" /SILENT ### Avira Security - (12) 10-2024 [Applications] :HKLM AviraSecurityUninstaller="C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Bootstrapper.exe" Action=Uninstall ExecuteFromTemp=true ### Avira Security - (12) 10-2024 [Applications] :HKLM {90160000-007E-0000-1000-0000000FF1CE}=MsiExec.exe /I{90160000-007E-0000-1000-0000000FF1CE} ### Office 16 Click-to-Run Licensing Component - (12) 10-2024 [Applications] :HKLM {90160000-008C-040C-1000-0000000FF1CE}=MsiExec.exe /X{90160000-008C-040C-1000-0000000FF1CE} ### Office 16 Click-to-Run Localization Component - (12) 10-2024 [Applications] :HKLM {90160000-008C-0000-1000-0000000FF1CE}=MsiExec.exe /X{90160000-008C-0000-1000-0000000FF1CE} ### Office 16 Click-to-Run Extensibility Component - (12) 10-2024 [Applications] :HKLM ProPlus2019Retail - fr-fr="C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" scenario=install scenariosubtype=ARP sourcetype=None productstoremove=ProPlus2019Retail.16_fr-fr_x-none culture=fr-fr version.16=16.0 ### Microsoft Office Professionnel Plus 2019 - fr-fr - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver="C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage HDAudio.Driver ### NVIDIA Pilote audio HD : 1.4.0.1 - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC="C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage USBC ### NVIDIA USBC Driver 1.52.831.832 - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer ### NVIDIA Install Application - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver="C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.Driver ### NVIDIA Pilote graphique 561.09 - (12) 10-2024 [Applications] :HKLM EPSON ET-3850 Series=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YINSYHE.EXE /R /APD /P:"EPSON ET-3850 Series" ### EPSON ET-3850 Series Printer Uninstall - (12) 10-2024 [Applications] :HKCU 754c57a1d50d96d536282857d7cbb370="C:\Program Files\Google\Chrome\Application\chrome.exe" --profile-directory=Default --uninstall-app-id=kefjledonklijopmnomlcbpllchaibag ### Présentations - (12) 10-2024 [Applications] :HKCU 7f86f614a8ce20a82d7c58a5cc8d0178="C:\Program Files\Google\Chrome\Application\chrome.exe" --profile-directory=Default --uninstall-app-id=fmgjjmmmlfnkbppncabfkddbjimcfncm ### Gmail - (12) 10-2024 [Applications] :HKCU 5e09f2fe33d523f8c36c6c4e9ef4694e="C:\Program Files\Google\Chrome\Application\chrome.exe" --profile-directory=Default --uninstall-app-id=aghbiahbpaijignceidepookljebhfak ### Google Drive - (12) 10-2024 [Applications] :HKCU 03eb577d6e4d26bce7505f6e48011a3c="C:\Program Files\Google\Chrome\Application\chrome.exe" --profile-directory=Default --uninstall-app-id=fhihpiojkbmbpdjeoajapmgkhlnakfjf ### Feuilles de calcul - (12) 10-2024 [Applications] :HKCU 3D Youtube Downloader (x64)="C:\Users\Utilisateur\AppData\Local\Programs\3D Youtube Downloader (x64)\uninstall.exe" /S ### 3D Youtube Downloader (x64) - (12) 10-2024 [Applications] :HKCU 52d6437c2e7b926b98585a08a6b37597="C:\Program Files\Google\Chrome\Application\chrome.exe" --profile-directory=Default --uninstall-app-id=mpnpojknpmmopombnjdcgaaiekajbnjb ### Docs - (12) 10-2024 [Applications] :HKCU Amazon Photos="C:\Users\Utilisateur\AppData\Local\Amazon Drive\uninst.exe" ### Amazon Photos - (12) 10-2024 [Applications] :HKCU Opera 113.0.5230.142="C:\Users\Utilisateur\AppData\Local\Programs\Opera\opera.exe" /uninstall ### Opera Stable 113.0.5230.142 - (12) 10-2024 [Applications] :HKCU PhotoFiltre Studio X="C:\Program Files (x86)\PhotoFiltre Studio X\Uninst.exe" ### PhotoFiltre Studio X - (12) 10-2024 [Applications] :HKCU {86869d57-6f5e-4489-93cb-205febb44298}="C:\Program Files\vokoscreenNG\Uninstall.exe" ### vokoscreenNG - (12) 10-2024 [Applications] :HKCU Movavi Video Converter 20 Premium="C:\Users\Utilisateur\AppData\Roaming\Movavi Video Converter 20 Premium\uninst.exe" ### Movavi Video Converter 20 Premium - (12) 10-2024 [Applications] :HKCU BitTorrent="C:\Users\Utilisateur\AppData\Roaming\BitTorrent\BitTorrent.exe" /UNINSTALL ### BitTorrent - (12) 10-2024 [Applications] :HKCU btweb="C:\Users\Utilisateur\AppData\Roaming\BitTorrent Web\Uninstall.exe" /S ### BitTorrent Web - (12) 10-2024 [Applications] :HKCU fbc64da440fedbec01bf7b6c9ace0786="C:\Program Files\Google\Chrome\Application\chrome.exe" --profile-directory=Default --uninstall-app-id=agimnkijcaahngcdmfeangaknmldooml ### YouTube - (12) 10-2024 [Applications] :HKLM {B175520C-86A2-35A7-8619-86DC379688B9}=MsiExec.exe /X{B175520C-86A2-35A7-8619-86DC379688B9} ### Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (12) 10-2024 [Applications] :HKLM {B2C12C8D-65DC-40BD-B309-5ADB0C6C8D8F} ### Nero WaveEditor - (12) 10-2024 [Applications] :HKLM {b16df2a0-c74b-4842-a33c-e03a23c6972d}="C:\ProgramData\Package Cache\{b16df2a0-c74b-4842-a33c-e03a23c6972d}\windowsdesktop-runtime-7.0.20-win-x86.exe" /uninstall /quiet ### Microsoft Windows Desktop Runtime - 7.0.20 (x86) - (12) 10-2024 [Applications] :HKLM {AAE0E27D-C88A-49BA-8715-77ADCD4286A3}=MsiExec.exe /X{AAE0E27D-C88A-49BA-8715-77ADCD4286A3} ### AMD SBxxx SMBus Driver - (12) 10-2024 [Applications] :HKLM {AC76BA86-0804-1033-1959-018244601091}=MsiExec.exe /I{AC76BA86-0804-1033-1959-018244601091} ### Adobe Refresh Manager - (12) 10-2024 [Applications] :HKLM {B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}=MsiExec.exe /X{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9} ### Promontory_GPIO Driver - (12) 10-2024 [Applications] :HKLM {c86e18a7-6dfc-4178-aae6-75351909e4d4}="C:\ProgramData\Package Cache\{c86e18a7-6dfc-4178-aae6-75351909e4d4}\AspNetCoreSharedFrameworkBundle-x86.exe" /uninstall /quiet ### Microsoft ASP.NET Core 7.0.20 - Shared Framework (x86) - (12) 10-2024 [Applications] :HKLM {C99C89A3-119A-45E6-B26E-DD5643CAA0C5} ### Menu Templates - Starter Kit - (12) 10-2024 [Applications] :HKLM {BD95A8CD-1D9F-35AD-981A-3E7925026EBB}=MsiExec.exe /X{BD95A8CD-1D9F-35AD-981A-3E7925026EBB} ### Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (12) 10-2024 [Applications] :HKLM {B96C2601-52F5-4D5D-816A-63469EA311EF} ### "Nero SoundTrax Help - (12) 10-2024 [Applications] :HKLM {BCD82AB5-670D-4242-90FA-1F97103C16CD} ### Movie Templates - Starter Kit - (12) 10-2024 [Applications] :HKLM {A171D320-C42C-4F3B-A2D8-C6A09F6788CC}=MsiExec.exe /X{A171D320-C42C-4F3B-A2D8-C6A09F6788CC} ### AMD Ryzen Balanced Driver - (12) 10-2024 [Applications] :HKLM {A498D9EB-927B-459B-85D6-DD6EF8C2C564}=MsiExec.exe /I{A498D9EB-927B-459B-85D6-DD6EF8C2C564} ### erLT - (12) 10-2024 [Applications] :HKLM {9f93601b-15ea-4e69-8d7c-dfa0f29ae04e}="C:\ProgramData\Package Cache\{9f93601b-15ea-4e69-8d7c-dfa0f29ae04e}\AacSetup.exe" /uninstall /quiet ### ENE RGB HAL - (12) 10-2024 [Applications] :HKLM {9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}="C:\ProgramData\Package Cache\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}\vcredist_x86.exe" /uninstall /quiet ### Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 - (12) 10-2024 [Applications] :HKLM {9F3523F8-DAD7-AE52-6DA7-45CDDDF33726} ### Advertising Center - (12) 10-2024 [Applications] :HKLM {A73BEC3C-40A0-480E-87EF-EFCD33629088} ### NeroExpress - (12) 10-2024 [Applications] :HKLM {AAA12554-2589-11DC-92EF-E98356D81493} ### Nero InfoTool - (12) 10-2024 [Applications] :HKLM {AABBCC54-D8B1-11DC-92EF-E98356D81493} ### Nero DiscSpeed - (12) 10-2024 [Applications] :HKLM {A8F2089B-1F79-4BF6-B385-A2C2B0B9A74D} ### ImagXpress - (12) 10-2024 [Applications] :HKLM {A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1="C:\Program Files (x86)\AOMEI\AOMEI Backupper\7.3.3\unins000.exe" /SILENT ### AOMEI Backupper - (12) 10-2024 [Applications] :HKLM {A8399F58-234A-48C6-BA55-30C15738BF3C} ### Nero CoverDesigner - (12) 10-2024 [Applications] :HKLM {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}="C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe" /uninstall /quiet ### Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (12) 10-2024 [Applications] :HKLM {E86156E5-9859-440D-8876-26CED1349802} ### Nero WaveEditor Help - (12) 10-2024 [Applications] :HKLM {E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}=MsiExec.exe /X{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3} ### AMD GPIO2 Driver - (12) 10-2024 [Applications] :HKLM {e71cddfd-8f71-4905-aa60-1a6b9b7d1630}=MsiExec.exe /X{e71cddfd-8f71-4905-aa60-1a6b9b7d1630} ### AMD_Chipset_Drivers - (12) 10-2024 [Applications] :HKLM {E4C6B326-8218-4FC2-8B48-85A19DAB3AE4}=MsiExec.exe /X{E4C6B326-8218-4FC2-8B48-85A19DAB3AE4} ### EPSON Scan PDF Extensions - (12) 10-2024 [Applications] :HKLM {E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}=MsiExec.exe /X{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D} ### Asmedia USB Host Controller Driver - (12) 10-2024 [Applications] :HKLM {EA9FFE54-D8B1-11DC-92EF-E98356D81493} ### Nero BurnRights - (12) 10-2024 [Applications] :HKLM {f65db027-aff3-4070-886a-0d87064aabb1}="C:\ProgramData\Package Cache\{f65db027-aff3-4070-886a-0d87064aabb1}\vcredist_x86.exe" /uninstall /quiet ### Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (12) 10-2024 [Applications] :HKLM {FA9DE40E-CC77-4F23-8A8A-A846A604D69B} ### RAID Driver - (12) 10-2024 [Applications] :HKLM {F53F6769-AC46-49E3-ABE3-2C8AFD39D0DD} ### Nero Vision - (12) 10-2024 [Applications] :HKLM {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}=MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} ### Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (12) 10-2024 [Applications] :HKLM {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}="C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -runfromtemp -removeonly ### Realtek Audio Driver - (12) 10-2024 [Applications] :HKLM {E4A8DD87-A746-4443-BF25-CAF99CED6767} ### Nero Disc Copy Gadget - (12) 10-2024 [Applications] :HKLM {D21715FE-E342-4744-A499-76ECE655DE5C}=MsiExec.exe /X{D21715FE-E342-4744-A499-76ECE655DE5C} ### Microsoft Windows Desktop Runtime - 7.0.20 (x86) - (12) 10-2024 [Applications] :HKLM {D401961D-3A20-3AC7-943B-6139D5BD490A}=MsiExec.exe /X{D401961D-3A20-3AC7-943B-6139D5BD490A} ### Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 - (12) 10-2024 [Applications] :HKLM {D0CA3944-0FD5-40FF-97A1-FEDFFB5EE31F}=MsiExec.exe /X{D0CA3944-0FD5-40FF-97A1-FEDFFB5EE31F} ### 4K Video Downloader 4.3 - (12) 10-2024 [Applications] :HKLM {CD1826A5-CFCC-4C6E-9F9D-E181876162EA} ### Nero Rescue Agent - (12) 10-2024 [Applications] :HKLM {D0512FFD-6194-4D2E-967E-25B82A3322FF} ### ENE IO Driver - (12) 10-2024 [Applications] :HKLM {D503788D-85E5-4050-AF48-0E271A5CF42B}=MsiExec.exe /X{D503788D-85E5-4050-AF48-0E271A5CF42B} ### Acronis True Image - (12) 10-2024 [Applications] :HKLM {DE32F90E-1A29-4D74-BCF1-E7DDB25D713A}=MsiExec.exe /X{DE32F90E-1A29-4D74-BCF1-E7DDB25D713A} ### Epson Printer Connection Checker - (12) 10-2024 [Applications] :HKLM {E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1="C:\Program Files (x86)\MSI\Gaming APP\unins001.exe" /SILENT ### MSI Gaming APP - (12) 10-2024 [Applications] :HKLM {DDCCA038-DAB1-4D09-B85C-848020AA75D6}}_is1="C:\Program Files (x86)\MSI\Smart Tool\unins001.exe" /SILENT ### MSI Smart Tool - (12) 10-2024 [Applications] :HKLM {D7C206B6-1A63-4389-A8B1-8F607D0BFF1F} ### Nero StartSmart Help - (12) 10-2024 [Applications] :HKLM {D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}=MsiExec.exe /X{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C} ### Epson Connect Printer Setup - (12) 10-2024 [Applications] :HKLM {199ED1A6-7FCA-4EBF-A89C-5448056F6A4F}_is1="C:\Program Files (x86)\FMRID\unins000.exe" /SILENT ### FMRID version 4.01 - (12) 10-2024 [Applications] :HKLM {15289038-41BE-48F8-B8B9-0B1021D3089E}}_is1="C:\Program Files (x86)\MSI\MSI Center\unins000.exe" /SILENT ### MSI Center SDK - (12) 10-2024 [Applications] :HKLM {146dfb6e-5aed-4c9b-bbaf-7532ce9e3691}="C:\ProgramData\Package Cache\{146dfb6e-5aed-4c9b-bbaf-7532ce9e3691}\dotnet-runtime-7.0.20-win-x64.exe" /uninstall /quiet ### Microsoft .NET Runtime - 7.0.20 (x64) - (12) 10-2024 [Applications] :HKLM {1B040683-C390-4711-ABC7-DA8D85E470E7} ### NeroBurningROM - (12) 10-2024 [Applications] :HKLM {1A1B60BB-F156-4F6D-AD79-8A096B67E9AB}=MsiExec.exe /X{1A1B60BB-F156-4F6D-AD79-8A096B67E9AB} ### Epson ScanSmart - (12) 10-2024 [Applications] :HKLM {19bad26f-b090-4efd-9309-da522523a706}="C:\ProgramData\Package Cache\{19bad26f-b090-4efd-9309-da522523a706}\dotnet-runtime-7.0.20-win-x86.exe" /uninstall /quiet ### Microsoft .NET Runtime - 7.0.20 (x86) - (12) 10-2024 [Applications] :HKLM {12DE33D1-6FE8-42E1-B54B-6114806BBA40}=MsiExec.exe /I{12DE33D1-6FE8-42E1-B54B-6114806BBA40} ### Epson Photo+ - (12) 10-2024 [Applications] :HKLM {0F212E7A-65EB-4668-A8D7-749026A64F8E}_is1="C:\Program Files (x86)\MSI\Fast Boot\unins000.exe" /SILENT ### MSI Fast Boot - (12) 10-2024 [Applications] :HKLM {07FF7593-9DEA-40B5-9F87-F557E65BBF60} ### Nero Recode - (12) 10-2024 [Applications] :HKLM {0711500B-9912-4D60-9A49-C577B4503D42} ### Nero Recode Help - (12) 10-2024 [Applications] :HKLM {12345674-DE9A-677A-CCEE-666356D89777} ### Nero BurnRights - (12) 10-2024 [Applications] :HKLM {11A84FCA-C3C7-4AFD-A797-111DB8569DBC} ### Nero BurningROM - (12) 10-2024 [Applications] :HKLM {1122AAC4-AAAA-43BF-B2D4-3C8C12378952} ### Nero InfoTool - (12) 10-2024 [Applications] :HKLM {2F7F071D-83D0-4994-8237-7B0579452FD4}=MsiExec.exe /I{2F7F071D-83D0-4994-8237-7B0579452FD4} ### Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.38.32919 - (12) 10-2024 [Applications] :HKLM {2D3455A8-3B15-41A8-99F8-0D4215746463} ### Nero StartSmart - (12) 10-2024 [Applications] :HKLM {2C3A7142-9B45-4C95-993A-A767C2148583}_is1="C:\Program Files (x86)\CoolerMaster\MasterPlus\unins001.exe" /SILENT ### MasterPlus version 1.9.4 - (12) 10-2024 [Applications] :HKLM {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}="C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe" /uninstall /quiet ### Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (12) 10-2024 [Applications] :HKLM {3361D415-BA35-4143-B301-661991BA6219}=MsiExec.exe /I{3361D415-BA35-4143-B301-661991BA6219} ### MyEpson Portal - (12) 10-2024 [Applications] :HKLM {3097B151-1F61-4211-A4CC-D70127B226AE} ### SoundTrax - (12) 10-2024 [Applications] :HKLM {2AEDC172-479F-47AE-8A48-A0524D4AED5B}_is1="C:\Program Files (x86)\Inpaint\unins000.exe" /SILENT ### Inpaint 4.7 - (12) 10-2024 [Applications] :HKLM {2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1="C:\Program Files (x86)\MPC-HC\unins000.exe" /SILENT ### MPC-HC 1.9.13 - (12) 10-2024 [Applications] :HKLM {24819F88-1B0B-4808-9982-5DC9C4AC7FA6}=MsiExec.exe /X{24819F88-1B0B-4808-9982-5DC9C4AC7FA6} ### Balanced - (12) 10-2024 [Applications] :HKLM {2397CAD4-2263-4CD0-96BE-E43A980B9C9A}_is1="C:\Program Files (x86)\Geeks3D\Benchmarks\FurMark\unins000.exe" /SILENT ### Geeks3D FurMark 1.38.1.0 - (12) 10-2024 [Applications] :HKLM {2A78D817-E17E-4444-A69A-A8998334729B}=MsiExec.exe /X{2A78D817-E17E-4444-A69A-A8998334729B} ### TEC-IT QR-Code Studio 2.0 - (12) 10-2024 [Applications] :HKLM {2973f43d-6356-43eb-a0dd-09a70e9834ef}=MsiExec.exe /X{2973f43d-6356-43eb-a0dd-09a70e9834ef} ### AMD_RAID_Software - (12) 10-2024 [Applications] :HKLM {28BDB469-F7EA-3C09-B19E-C533A1D43BD4}=MsiExec.exe /X{28BDB469-F7EA-3C09-B19E-C533A1D43BD4} ### Microsoft ASP.NET Core 7.0.20 Shared Framework (x86) - (12) 10-2024 [Applications] :HKLM {050d4fc8-5d48-4b8f-8972-47c82c46020f}="C:\ProgramData\Package Cache\{050d4fc8-5d48-4b8f-8972-47c82c46020f}\vcredist_x64.exe" /uninstall /quiet ### Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (12) 10-2024 [Applications] :HKLM InstallShield_{3D51664C-293A-4621-926E-0436DE7553A6}=C:\PROGRA~2\COMMON~1\INSTAL~1\Driver\9\INTEL3~1\IDriver.exe /M{3D51664C-293A-4621-926E-0436DE7553A6} ### DesignPro 5 - (12) 10-2024 [Applications] :HKLM InstallShield Uninstall Information ### - (12) 10-2024 [Applications] :HKLM IcoSauve_is1="C:\Program Files (x86)\IcoSauve\unins000.exe" /SILENT ### IcoSauve - (12) 10-2024 [Applications] :HKLM Microsoft EdgeWebView="C:\Program Files (x86)\Microsoft\EdgeWebView\Application\129.0.2792.89\Installer\setup.exe" --uninstall --msedgewebview --system-level --verbose-logging ### Microsoft Edge WebView2 Runtime - (12) 10-2024 [Applications] :HKLM Microsoft Edge Update ### Microsoft Edge Update - (12) 10-2024 [Applications] :HKLM Microsoft Edge="C:\Program Files (x86)\Microsoft\Edge\Application\129.0.2792.89\Installer\setup.exe" --uninstall --msedge --channel=stable --system-level --verbose-logging ### Microsoft Edge - (12) 10-2024 [Applications] :HKLM Glary Utilities=C:\Program Files (x86)\Glary Utilities\uninst.exe ### Glary Utilities 6.13 - (12) 10-2024 [Applications] :HKLM Cities of Earth 3D Screensaver_is1="C:\Program Files (x86)\Cities of Earth\unins000.exe" /SILENT ### Cities of Earth 3D Screensaver v. 2.1 - (12) 10-2024 [Applications] :HKLM Budget Facile 3_is1="C:\Program Files (x86)\Anuman Interactive\Budget Facile 3\unins000.exe" ### Budget Facile 3 - (12) 10-2024 [Applications] :HKLM Avira Fallback Updater="C:\Program Files (x86)\Avira\Fallback Updater\Avira.Spotlight.FallbackUpdater.exe" Action=RemoveFallbackUpdater ### Avira Fallback Updater - (12) 10-2024 [Applications] :HKLM FormatFactory=C:\Program Files (x86)\FormatFactory\uninst.exe ### FormatFactory 5.17.0.0 - (12) 10-2024 [Applications] :HKLM Epson Scan 2=C:\Program Files (x86)\epson\Epson Scan 2\Setup\setup.exe /R ### Epson Scan 2 - (12) 10-2024 [Applications] :HKLM eMule="C:\Program Files (x86)\eMule\Uninstall.exe" ### eMule - (12) 10-2024 [Applications] :HKLM Zuma Deluxe RA=C:\PROGRA~2\ZUMADE~1\UNWISE.EXE C:\PROGRA~2\ZUMADE~1\INSTALL.LOG ### Zuma Deluxe RA - (12) 10-2024 [Applications] :HKLM YInstHelper=C:\Windows\system32\regsvr32 /u C:\PROGRA~2\Yahoo!\Common\YINSTH~1.DLL ### Yahoo! Install Manager - (12) 10-2024 [Applications] :HKLM Yahoo! Widget Engine=C:\PROGRA~2\Yahoo!\Widgets\UNINST~1.EXE ### Yahoo! Widgets - (12) 10-2024 [Applications] :HKLM {042d26ef-3dbe-4c25-95d3-4c1b11b235a7}="C:\ProgramData\Package Cache\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}\vcredist_x64.exe" /uninstall /quiet ### Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 - (12) 10-2024 [Applications] :HKLM {02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1="C:\Program Files (x86)\AOMEI Partition Assistant\unins000.exe" /SILENT ### AOMEI Partition Assistant 9.6.1 - (12) 10-2024 [Applications] :HKLM {00F47104-12BA-4E58-A7E6-F456C1BA338E}}_is1="C:\Program Files (x86)\MSI\APP Manager\unins000.exe" /SILENT ### MSI APP Manager - (12) 10-2024 [Applications] :HKLM Uplay Install 4932="C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe" uplay://uninstall/4932 ### Tom Clancy's The Division 2 - (12) 10-2024 [Applications] :HKLM SpeedFan="C:\Program Files (x86)\SpeedFan\uninstall.exe" ### SpeedFan (remove only) - (12) 10-2024 [Applications] :HKLM RTSS="C:\Program Files (x86)\RivaTuner Statistics Server\uninstall.exe" ### RivaTuner Statistics Server 7.3.4 - (12) 10-2024 [Applications] :HKLM MyEpson Portal=MsiExec.exe /I{3361D415-BA35-4143-B301-661991BA6219} ### MyEpson Portal - (12) 10-2024 [Applications] :HKLM Uplay="C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher/Uninstall.exe" /S ### Ubisoft Connect - (12) 10-2024 [Applications] :HKLM UnHackMe Update - Reanimator_is1="C:\Program Files (x86)\Greatis\Reanimator\unins000.exe" /SILENT ### RegRun Reanimator - (12) 10-2024 [Applications] :HKLM Steam=C:\Program Files (x86)\Steam\uninstall.exe ### Steam - (12) 10-2024 [Applications] :HKLM {68c77bab-8435-4d15-ae03-fd4f6e158317}="C:\ProgramData\Package Cache\{68c77bab-8435-4d15-ae03-fd4f6e158317}\VC_redist.x86.exe" /uninstall /quiet ### Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.38.32919 - (12) 10-2024 [Applications] :HKLM {6c2f4b5b-86d2-4aff-bf79-d1e73cc20ab3}="C:\ProgramData\Package Cache\{6c2f4b5b-86d2-4aff-bf79-d1e73cc20ab3}\AspNetCoreSharedFrameworkBundle-x64.exe" /uninstall /quiet ### Microsoft ASP.NET Core 7.0.20 - Shared Framework (x64) - (12) 10-2024 [Applications] :HKLM {710f4c1c-cc18-4c49-8cbf-51240c89a1a2}=MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2} ### Microsoft Visual C++ 2005 Redistributable - (12) 10-2024 [Applications] :HKLM {5CC5F080-5711-430D-89BB-C56433F68361}=MsiExec.exe /X{5CC5F080-5711-430D-89BB-C56433F68361} ### Epic Games Launcher - (12) 10-2024 [Applications] :HKLM {5F0295FE-3DAA-4C04-94A6-2AFC6D739D34}=MsiExec.exe /I{5F0295FE-3DAA-4C04-94A6-2AFC6D739D34} ### Microsoft Visual C++ 2022 X86 Additional Runtime - 14.38.32919 - (12) 10-2024 [Applications] :HKLM {65dbe905-7019-4554-91e9-c6e6c27e77a4}="C:\ProgramData\Package Cache\{65dbe905-7019-4554-91e9-c6e6c27e77a4}\dotnet-runtime-8.0.10-win-x64.exe" /uninstall /quiet ### Microsoft .NET Runtime - 8.0.10 (x64) - (12) 10-2024 [Applications] :HKLM {711E8536-AB71-4455-A6C4-357FDBBEBF91}=MsiExec.exe /X{711E8536-AB71-4455-A6C4-357FDBBEBF91} ### Epson Software Updater - (12) 10-2024 [Applications] :HKLM {78523651-D8B1-11DC-CCEE-741589645873} ### Nero DiscSpeed - (12) 10-2024 [Applications] :HKLM {7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1="C:\Program Files (x86)\MSI\Super Charger\unins000.exe" /SILENT ### MSI Super Charger - (12) 10-2024 [Applications] :HKLM {80EC3CEE-2940-42A1-A776-B5D810D39F1E}=MsiExec.exe /X{80EC3CEE-2940-42A1-A776-B5D810D39F1E} ### AMD PCI Driver - (12) 10-2024 [Applications] :HKLM {7299052b-02a4-4627-81f2-1818da5d550d}=MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d} ### Microsoft Visual C++ 2005 Redistributable - (12) 10-2024 [Applications] :HKLM {75321954-2589-11DC-DDCC-E98356D81493} ### Nero DriveSpeed - (12) 10-2024 [Applications] :HKLM {753973C4-B961-43BF-B2D4-3C8C92F7216E} ### Nero DriveSpeed - (12) 10-2024 [Applications] :HKLM {548F99E0-14CC-4D53-A7D6-4A62A5F2C748} ### Nero PhotoSnap - (12) 10-2024 [Applications] :HKLM {56BE5CC9-95E6-4128-ABEA-968414CA9C80} ### DolbyFiles - (12) 10-2024 [Applications] :HKLM {56C049BE-79E9-4502-BEA7-9754A3E60F9B}=MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B} ### neroxml - (12) 10-2024 [Applications] :HKLM {4E8C27C2-D727-4C00-A90E-C3F6376EEE70} ### Nero ControlCenter - (12) 10-2024 [Applications] :HKLM {4DAE978C-6175-400D-A508-2403109B89E9}=MsiExec.exe /X{4DAE978C-6175-400D-A508-2403109B89E9} ### Microsoft .NET Runtime - 7.0.20 (x86) - (12) 10-2024 [Applications] :HKLM {515143BB-7A11-4D85-B941-D520AAAA099C}_is1="C:\Program Files (x86)\MSI\MSI X Boost\unins000.exe" /SILENT ### MSI X Boost - (12) 10-2024 [Applications] :HKLM {57A956AB-4BCC-45C6-9B40-957E4E125568}=MsiExec.exe /X{57A956AB-4BCC-45C6-9B40-957E4E125568} ### Epic Online Services - (12) 10-2024 [Applications] :HKLM {5C2E8A0F-80E2-4C68-8CC0-D8D16E7196BF} ### Nero RescueAgent Help - (12) 10-2024 [Applications] :HKLM {5C42EAB8-54F9-423A-948C-1CBEF25F8DB4} ### Nero PhotoSnap Help - (12) 10-2024 [Applications] :HKLM {5C9BB0B3-E830-4814-BBA4-D93535E1C7B9} ### Nero Live - (12) 10-2024 [Applications] :HKLM {5A62A775-A29A-4CE1-BBC2-4A9CD0B211EF} ### Nero Live Help - (12) 10-2024 [Applications] :HKLM {5AE12194-3EAA-40DF-B2BF-FE1D6B78BBF4} ### Nero Vision - (12) 10-2024 [Applications] :HKLM {5B42B80B-A402-4711-B7E4-2E42B953ACAB}=MsiExec.exe /X{5B42B80B-A402-4711-B7E4-2E42B953ACAB} ### Microsoft .NET Host - 7.0.20 (x86) - (12) 10-2024 [Applications] :HKLM {8122DAB1-ED4D-3676-BB0A-CA368196543E}=MsiExec.exe /X{8122DAB1-ED4D-3676-BB0A-CA368196543E} ### Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 - (12) 10-2024 [Applications] :HKLM {9BE518E6-ECC6-35A9-88E4-87755C07200F}=MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F} ### Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (12) 10-2024 [Applications] :HKLM {9D0BB263-30C0-477F-A78D-D5E25FFAC64A}=MsiExec.exe /X{9D0BB263-30C0-477F-A78D-D5E25FFAC64A} ### Microsoft .NET Host FX Resolver - 7.0.20 (x86) - (12) 10-2024 [Applications] :HKLM {9D3D8C60-A5EF-4123-B2B9-172095903AB}=C:\Program Files (x86)\InstallShield Installation Information\{9D3D8C60-A5EF-4123-B2B9-172095903AB}\Install.exe -uninst ### TP-Link UB500 Bluetooth 5.3 Driver - (12) 10-2024 [Applications] :HKLM {988F14B8-79A8-475D-BAC7-83F96AD3D821}=MsiExec.exe /X{988F14B8-79A8-475D-BAC7-83F96AD3D821} ### AMD PSP Driver - (12) 10-2024 [Applications] :HKLM {98CA91B3-52E1-4C3F-96B5-87722EC3AEB7}=MsiExec.exe /X{98CA91B3-52E1-4C3F-96B5-87722EC3AEB7} ### RAIDXpert2 utility - (12) 10-2024 [Applications] :HKLM {9A875B56-A35C-46BA-A3AA-DF8D03EE9F2F} ### Nero ControlCenter - (12) 10-2024 [Applications] :HKLM {4D42353B-533F-4306-AD0B-7FEF292ADE04} ### Nero CoverDesigner Help - (12) 10-2024 [Applications] :HKLM {3D51664C-293A-4621-926E-0436DE7553A6} ### DesignPro 5 - (12) 10-2024 [Applications] :HKLM {3615C893-F844-4A5B-B949-8409EAB62271}=MsiExec.exe /X{3615C893-F844-4A5B-B949-8409EAB62271} ### EPSON Scan OCR Component - (12) 10-2024 [Applications] :HKLM {362ea044-f96f-45c7-b59f-0dbe5ca98ff4}="C:\ProgramData\Package Cache\{362ea044-f96f-45c7-b59f-0dbe5ca98ff4}\windowsdesktop-runtime-7.0.20-win-x64.exe" /uninstall /quiet ### Microsoft Windows Desktop Runtime - 7.0.20 (x64) - (12) 10-2024 [Applications] :HKLM {48763590-1913-470b-9293-a701d7def243}="C:\ProgramData\Package Cache\{48763590-1913-470b-9293-a701d7def243}\QRCode_Studio_2_0_2.exe" /uninstall /quiet ### TEC-IT QR-Code Studio 2.0 - (12) 10-2024 [Applications] :HKLM {43a03b9c-4770-409c-a999-587b60700b63}="C:\ProgramData\Package Cache\{43a03b9c-4770-409c-a999-587b60700b63}\LauncherPrereqSetup_x64.exe" /uninstall /quiet ### Launcher Prerequisites (x64) - (12) 10-2024 [Applications] :HKLM {3F30CC51-0788-487B-AA83-7214A239C0C0} ### Nero Disc Copy Gadget Help - (12) 10-2024 [Applications] :HKLM {961D53EA-40DC-4156-AD74-25684CE05F81} ### Nero Installer - (12) 10-2024 [Applications] :HKLM {85A2564E-9ED9-448A-91E4-B9211EE58A08}_is1="C:\Program Files (x86)\MSI\Command Center\unins000.exe" /SILENT ### MSI Command Center - (12) 10-2024 [Applications] :HKLM {8833FFB6-5B0C-4764-81AA-06DFEED9A476}="C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe" -runfromtemp -removeonly ### Realtek Ethernet Controller Driver - (12) 10-2024 [Applications] :HKLM {8B0F211E-5846-4FB2-B0B9-4EB31546FDF9}}_is1="C:\Program Files (x86)\GPU-Z\unins000.exe" /SILENT ### TechPowerUp GPU-Z - (12) 10-2024 [Applications] :HKLM {8471B071-541A-4E39-80B6-77DB629288BB}=MsiExec.exe /X{8471B071-541A-4E39-80B6-77DB629288BB} ### Epson Event Manager - (12) 10-2024 [Applications] :HKLM {84AD2AF7-10C8-0395-66F9-FFAEB4C5DBF1}=MsiExec.exe /X{84AD2AF7-10C8-0395-66F9-FFAEB4C5DBF1} ### OEM Application Profile - (12) 10-2024 [Applications] :HKLM {84CECC1B-21EF-41B1-9A91-3E724E5D99D3}=MsiExec.exe /I{84CECC1B-21EF-41B1-9A91-3E724E5D99D3} ### Epson Manuals - (12) 10-2024 [Applications] :HKLM {93874B70-6C5E-446A-AF4D-E5AC776A0386}}_is1="C:\Program Files (x86)\MSI\MysticLight\unins000.exe" /SILENT ### MSI MysticLight - (12) 10-2024 [Applications] :HKLM {943CC0C0-2253-4FE0-9493-DD386F7857FD} ### Nero Express - (12) 10-2024 [Applications] :HKLM {948FFAAE-C57F-447B-9B07-3721E950BFDC} ### Nero ShowTime - (12) 10-2024 [Applications] :HKLM {93154A3C-9BB7-49D7-A571-4EB6373FA602}=MsiExec.exe /X{93154A3C-9BB7-49D7-A571-4EB6373FA602} ### Assistant de téléchargement - (12) 10-2024 [Applications] :HKLM {8bdfe669-9705-4184-9368-db9ce581e0e7}="C:\ProgramData\Package Cache\{8bdfe669-9705-4184-9368-db9ce581e0e7}\VC_redist.x64.exe" /uninstall /quiet ### Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.36.32532 - (12) 10-2024 [Applications] :HKLM {8C654BD0-1949-43DE-84F2-EC2A1ABB0CB4} ### Nero ShowTime - (12) 10-2024 [Applications] :HKLM 7-Zip="C:\Program Files (x86)\7-Zip\Uninstall.exe" /S ### 7-Zip 22.01 - (12) 10-2024 [Applications] :HKLM Aomei Partition Assistant_is1=C:\Program Files (x86)\AOMEI Partition Assistant\unins000.exe ### - (12) 10-2024 [Applications] :HKLM APC="C:\Program Files (x86)\APC\PowerChute Personal Edition\uninstall.exe" ### PowerChute Personal Edition - (12) 10-2024 [Applications] :HKLM Afterburner="C:\Program Files (x86)\MSI Afterburner\uninstall.exe" ### MSI Afterburner 4.6.5 - (12) 10-2024 [Applications] :HKLM AI RoboForm="C:\Program Files (x86)\Siber Systems\AI RoboForm\rfwipeout.exe" ### RoboForm 9-6-2-2 (All Users) - (12) 10-2024 [Applications] :HKLM AIDA64 Extreme_is1="C:\Program Files (x86)\FinalWire\AIDA64 Extreme\unins000.exe" /SILENT ### AIDA64 Extreme v7.30 - (12) 10-2024 [Applications] :HKLM AIDA64 Engineer_is1="C:\Program Files (x86)\FinalWire\AIDA64 Engineer\unins000.exe" /SILENT ### AIDA64 Engineer v7.30 - (12) 10-2024 [Applications] :HKLM AMD_Chipset_IODrivers="C:\Program Files (x86)\AMD\Chipset_Software\QT_Dependencies\Setup.exe" /U {e71cddfd-8f71-4905-aa60-1a6b9b7d1630} ### AMD Chipset Software - (12) 10-2024 [Applications] :HKLM AOMEI Backupper=C:\Program Files (x86)\AOMEI\AOMEI Backupper\7.3.3\unins000.exe ### - (12) 10-2024 [Applications] :HKLM AMD_RAID_Software="C:\Program Files (x86)\AMD\RAID Software\Setup.exe" /U {2973f43d-6356-43eb-a0dd-09a70e9834ef} ### AMD RAID Software - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ContainerTelemetryApiHelper ### NVIDIA TelemetryApi helper for NvContainer - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.PhysX ### NVIDIA Logiciel système PhysX 9.23.1019 - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus ### NVIDIA Optimus Update 39.5.0.0 - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem ### NVIDIA LocalSystem Container - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ServiceUser ### NVIDIA NetworkService Container - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor ### NVIDIA NVAPI Monitor plugin for NvContainer - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus ### NVIDIA Message Bus for NvContainer - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GpxCommon.Oss ### NVIDIA GPX Common OSS binaries (POCO, OpenSSL, libprotobuf) - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv ### NVIDIA SHIELD Streaming - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage FrameViewSdk ### NVIDIA FrameView SDK 1.3.8513.32290073 - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience="C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.GFExperience ### NVIDIA GeForce Experience 3.28.0.417 - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer ### NVIDIA Container - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend ### NVIDIA Backend - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update ### Mises à jour NVIDIA 39.5.0.0 - (12) 10-2024 [Applications] :HKLM {CABCE573-0A86-42FA-A52A-C7EA61D5BE08}=MsiExec.exe /X{CABCE573-0A86-42FA-A52A-C7EA61D5BE08} ### Classic Shell - (12) 10-2024 [Applications] :HKLM {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}=MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} ### Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (12) 10-2024 [Applications] :HKLM {C6FD611E-7EFE-488C-A0E0-974C09EF6473}=MsiExec.exe /X{C6FD611E-7EFE-488C-A0E0-974C09EF6473} ### Microsoft Update Health Tools - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver ### NVIDIA Virtual Audio 4.65.0.3 - (12) 10-2024 [Applications] :HKLM {BD401329-F877-391C-9E5A-FEB423C5A196}=MsiExec.exe /X{BD401329-F877-391C-9E5A-FEB423C5A196} ### Microsoft ASP.NET Core 7.0.20 Shared Framework (x64) - (12) 10-2024 [Applications] :HKLM {EE5EB03B-D65C-4991-848E-2C6E024326DB}=MsiExec.exe /X{EE5EB03B-D65C-4991-848E-2C6E024326DB} ### Microsoft .NET Host - 7.0.20 (x64) - (12) 10-2024 [Applications] :HKLM {F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}=MsiExec.exe /X{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9} ### Epic Games Launcher Prerequisites (x64) - (12) 10-2024 [Applications] :HKLM {DBD50508-5F75-416B-995D-C42433A00944}=MsiExec.exe /X{DBD50508-5F75-416B-995D-C42433A00944} ### AMD Ryzen Master SDK - (12) 10-2024 [Applications] :HKLM {D2D69D30-0BAC-49BE-B82A-D7451DF5C763}=MsiExec.exe /I{D2D69D30-0BAC-49BE-B82A-D7451DF5C763} ### Surfshark - (12) 10-2024 [Applications] :HKLM {D5D19E2F-7189-42FE-8103-92CD1FA457C2}=MsiExec.exe /I{D5D19E2F-7189-42FE-8103-92CD1FA457C2} ### Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.36.32532 - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core ### NVIDIA Update Core - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User ### NVIDIA User Container - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog ### NVIDIA Watchdog Plugin for NvContainer - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session ### NVIDIA Session Container - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver ### NVIDIA NvModuleTracker - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs ### NVIDIA NodeJS - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC ### Nvidia Share - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay ### NVIDIA ShadowPlay 3.28.0.417 - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController ### NVIDIA SHIELD Wireless Controller Driver - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry ### NVIDIA Telemetry Client - (12) 10-2024 [Applications] :HKLM {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvVHCI ### NVIDIA Virtual Host Controller - (12) 10-2024 [Applications] :HKLM {850cdc16-85df-4052-b06e-4e3e9e83c5c6}="C:\Program Files\LogiOptionsPlus\logioptionsplus_updater.exe" --uninstall --full --shadow ### Logi Options+ - (12) 10-2024 [Applications] :HKLM {7E265513-8CDA-4631-B696-F40D983F3B07}_is1="C:\Program Files\CDBurnerXP\unins000.exe" /SILENT ### CDBurnerXP - (12) 10-2024 [Applications] :HKLM {8220EEFE-38CD-377E-8595-13398D740ACE}=MsiExec.exe /X{8220EEFE-38CD-377E-8595-13398D740ACE} ### Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (12) 10-2024 [Applications] :HKLM {AC76BA86-1036-1033-7760-BC15014EA700}=MsiExec.exe /I{AC76BA86-1036-1033-7760-BC15014EA700} ### Adobe Acrobat (64-bit) - (12) 10-2024 [Applications] :HKLM {B0FC828F-678C-4868-9B5B-99639758E6F3}=MsiExec.exe /X{B0FC828F-678C-4868-9B5B-99639758E6F3} ### Microsoft .NET Host FX Resolver - 7.0.20 (x64) - (12) 10-2024 [Applications] :HKLM {87316426-A33E-41E9-942B-968E928A9A47}=MsiExec.exe /I{87316426-A33E-41E9-942B-968E928A9A47} ### ENE RGB HAL - (12) 10-2024 [Applications] :HKLM {96ED1D58-440C-4345-8FEE-C4781366C67F}=MsiExec.exe /X{96ED1D58-440C-4345-8FEE-C4781366C67F} ### EpsonNet Print - (12) 10-2024 [Applications] :HKLM sp6=C:\Program Files\Common Files\LogiShrd\sp6_Uninstall\setup.exe ### Logitech SetPoint 6.90 - (12) 10-2024 [Applications] :HKLM Steam App 346110="C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/346110 ### ARK: Survival Evolved - (12) 10-2024 [Applications] :HKLM Q-Dir=C:\Program Files\Q-Dir\Q-Dir.exe -uninstall ### Q-Dir - (12) 10-2024 [Applications] :HKLM Mozilla Thunderbird 128.3.1 (x64 fr)="C:\Program Files\Mozilla Thunderbird\uninstall\helper.exe" ### Mozilla Thunderbird (x64 fr) - (12) 10-2024 [Applications] :HKLM MozillaMaintenanceService="C:\Program Files (x86)\Mozilla Maintenance Service\uninstall.exe" ### Mozilla Maintenance Service - (12) 10-2024 [Applications] :HKLM Steam App 431960="C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/431960 ### Wallpaper Engine - (12) 10-2024 [Applications] :HKLM VLC media player="C:\Program Files\VideoLAN\VLC\uninstall.exe" ### VLC media player - (12) 10-2024 [Applications] :HKLM Winaero Tweaker_is1="C:\Program Files\Winaero Tweaker\unins000.exe" /SILENT ### Winaero Tweaker - (12) 10-2024 [Applications] :HKLM Surfshark 5.7.1999 ### - (12) 10-2024 [Applications] :HKLM Steam App 871720="C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/871720 ### Ultimate Custom Night - (12) 10-2024 [Applications] :HKLM Surfshark 5.10.1.999=msiexec.exe /i {D2D69D30-0BAC-49BE-B82A-D7451DF5C763} AI_UNINSTALLER_CTP=1 ### Surfshark - (12) 10-2024 [Applications] :HKLM CCleaner="C:\Program Files\CCleaner\uninst.exe" ### CCleaner - (12) 10-2024 [Applications] :HKLM CPUID CPU-Z MSI_is1="C:\Program Files\CPUID\CPU-Z MSI\unins000.exe" /SILENT ### CPUID CPU-Z MSI 2.06 - (12) 10-2024 [Applications] :HKLM Audacity_is1="C:\Program Files\Audacity\unins000.exe" /SILENT ### Audacity 3.4.2 - (12) 10-2024 [Applications] :HKLM 7-Zip="C:\Program Files\7-Zip\Uninstall.exe" /S ### 7-Zip 23.01 (x64) - (12) 10-2024 [Applications] :HKLM AMD Catalyst Install Manager="C:\Program Files\AMD\CIM\BIN64\RadeonInstaller.exe" /EXPRESS_UNINSTALL /IGNORE_UPGRADE /ON_REBOOT_MESSAGE:NO ### AMD Software - (12) 10-2024 [Applications] :HKLM DivX Setup=C:\ProgramData\DivX\Setup\DivXSetup.exe /uninstall ### Configuration DivX - (12) 10-2024 [Applications] :HKLM MediaInfo=C:\Program Files\MediaInfo\uninst.exe ### MediaInfo 24.06 - (12) 10-2024 [Applications] :HKLM Mozilla Firefox 131.0.2 (x64 fr)="C:\Program Files\Mozilla Firefox\uninstall\helper.exe" ### Mozilla Firefox (x64 fr) - (12) 10-2024 [Applications] :HKLM LogiOptions=C:\Program Files\Logitech\LogiOptions\uninstaller.exe ### Logitech Options - (12) 10-2024 [Applications] :HKLM Filmotech_is1="C:\Program Files\Filmotech\unins000.exe" /SILENT ### Filmotech v3.10.0 - (12) 10-2024 [Applications] :HKLM Icaros_is1="C:\Program Files\Icaros\unins000.exe" /SILENT ### Icaros - (12) 10-2024 [Applications] :HKLM {2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1="C:\Program Files\MPC-HC\unins000.exe" /SILENT ### MPC-HC 2.1.4 (64-bit) - (12) 10-2024 [Applications] :HKLM {37B8F9C7-03FB-3253-8781-2517C99D7C00}=MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00} ### Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (12) 10-2024 [Applications] :HKLM {3A80EBC5-6B68-49B9-BEBD-E1A6C966B416}=MsiExec.exe /X{3A80EBC5-6B68-49B9-BEBD-E1A6C966B416} ### Microsoft .NET Host - 8.0.10 (x64) - (12) 10-2024 [Applications] :HKLM {2643823D-D15F-4046-8388-401756A5C923}=MsiExec.exe /X{2643823D-D15F-4046-8388-401756A5C923} ### Antidote 11 - English module - (12) 10-2024 [Applications] :HKLM {2643823D-D15F-4046-8388-401756A5C924}=MsiExec.exe /X{2643823D-D15F-4046-8388-401756A5C924} ### Antidote - Connectix 11 - (12) 10-2024 [Applications] :HKLM {27263813-8BDE-4CD2-84D3-02536743428A}_is1="C:\Program Files\Attribute Changer\unins000.exe" /SILENT ### Attribute Changer 8.70 - (12) 10-2024 [Applications] :HKLM {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1="C:\Program Files\VS Revo Group\Revo Uninstaller Pro\unins000.exe" /SILENT ### Revo Uninstaller Pro 5.2.1 - (12) 10-2024 [Applications] :HKLM {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}=MsiExec.exe /X{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} ### Bonjour - (12) 10-2024 [Applications] :HKLM {72C29BED-666F-4E5E-BC49-DF44C890742E}=MsiExec.exe /X{72C29BED-666F-4E5E-BC49-DF44C890742E} ### Microsoft Windows Desktop Runtime - 7.0.20 (x64) - (12) 10-2024 [Applications] :HKLM {43774DE9-8122-46C4-BD03-F59CA4410E82}=MsiExec.exe /X{43774DE9-8122-46C4-BD03-F59CA4410E82} ### File Converter (64 bit) - (12) 10-2024 [Applications] :HKLM {53CF6934-A98D-3D84-9146-FC4EDF3D5641}=MsiExec.exe /X{53CF6934-A98D-3D84-9146-FC4EDF3D5641} ### Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 - (12) 10-2024 [Applications] :HKLM {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}=MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} ### Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (12) 10-2024 [Applications] :HKLM {062CD1ED-0A3C-483C-A871-50173240C545}=MsiExec.exe /X{062CD1ED-0A3C-483C-A871-50173240C545} ### Microsoft .NET Host FX Resolver - 8.0.10 (x64) - (12) 10-2024 [Applications] :HKLM {13016E80-C7E5-4610-B149-FA8381CEE008}=MsiExec.exe /I{13016E80-C7E5-4610-B149-FA8381CEE008} ### QTTabBar ver 1043 - (12) 10-2024 [Applications] :HKLM {010792BA-551A-3AC0-A7EF-0FAB4156C382}=MsiExec.exe /X{010792BA-551A-3AC0-A7EF-0FAB4156C382} ### Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 - (12) 10-2024 [Applications] :HKLM WinRAR archiver=C:\Program Files\WinRAR\uninstall.exe ### WinRAR 6.24 (64-bit) - (12) 10-2024 [Applications] :HKLM {0025DD72-A959-45B5-A0A3-7EFEB15A8050}=MsiExec.exe /I{0025DD72-A959-45B5-A0A3-7EFEB15A8050} ### Microsoft Visual C++ 2022 X64 Additional Runtime - 14.36.32532 - (12) 10-2024 [Applications] :HKLM {15B7D0C2-F209-4C28-AF1C-FD8326F4D58A}=MsiExec.exe /X{15B7D0C2-F209-4C28-AF1C-FD8326F4D58A} ### Microsoft .NET Runtime - 8.0.10 (x64) - (12) 10-2024 [Applications] :HKLM {2643823D-D15F-4046-8388-401756A5C922}=MsiExec.exe /X{2643823D-D15F-4046-8388-401756A5C922} ### Antidote 11 - Module français - (12) 10-2024 [Applications] :HKLM {2643823D-D15F-4046-8388-401756A5C921}=MsiExec.exe /X{2643823D-D15F-4046-8388-401756A5C921} ### Antidote 11 - (12) 10-2024 [Applications] :HKLM {1D8E6291-B0D5-35EC-8441-6616F567A0F7}=MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7} ### Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (12) 10-2024 [Applications] :HKLM {221BB52A-B763-4C9D-AA62-4B0B6C9AAD62}=MsiExec.exe /X{221BB52A-B763-4C9D-AA62-4B0B6C9AAD62} ### Microsoft .NET Runtime - 7.0.20 (x64) - (12) 10-2024 [Applications] :HKLM mstsc-4b0a31aa-df6a-4307-9b47-d5cc50009643="C:\Windows\System32\mstsc.exe" /uninstall ### - (12) 10-2024 [Applications] :HKLM Connection Manager ### - (01) 04-2024 [Applications] :HKLM WIC ### - (01) 04-2024 [Applications] :HKLM WIC ### - (01) 04-2024 [Applications] :HKLM Connection Manager ### - (01) 04-2024 [FI20] FI2=-1,,,0,, FI2=-1,,,0,,"C:\PROGRAM FILES\COMMON FILES\LOGISHRD\BLUETOOTH\LBTSERVMSG.DLL FI2=11520504,619FD9C6C7BE66D639A83D11E9FAB06529ACFE559BE1C0FDB1510CAEE06C717E,86F9C97A7BC260B26E65782163A8BA19,1,"Bright Data Ltd",C:/PROGRAM FILES (X86)/FORMATFACTORY/NET_UPDATER64.EXE FI2=-1,,,0,,C:\CACEC8C5581626BD7CDB60\DW\DW20.EXE FI2=16038680,400D6CCA30DBC488877BA690D617568B1DA2DAA8D5F44DCAA8CE2886526E1AB7,4753A04D47782BC24D874EC10B21E845,1,"Greatis Software LLC",C:\PROGRA~2\GREATIS\REANIM~1\REANIM~1.EXE FI2=1236480,CA8AB5AEEF734F24A3C58BF10B3F0152C2EA1329B02D2730448693DF563B4C6A,A65E53C974A4E61728ECB632339A0978,2,,C:\PROGRAM FILES (X86)\7-ZIP\7Z.DLL FI2=337408,59CBFBA941D3AC0238219DAA11C93969489B40F1E8B38FABDB5805AC3DD72BFA,62D2156E3CA8387964F7AA13DD1CCD5B,2,,C:\PROGRAM FILES (X86)\7-ZIP\7Z.EXE FI2=216576,DD9DBE58CD2F798B432D9BA9BBFFE13D08BF9DC18C9B6A6ECF4BA71B238677E3,1FFEC2A95DB8F1FA25D3B275261728B4,2,,C:\PROGRAM FILES (X86)\7-ZIP\7Z.SFX FI2=196096,32DECD776FC0020D399ADCEA54FF1B338110514E598A2788B4D9D7EA82582445,E0EB40842CA3A05B93E8FCF19F0BCC16,2,,C:\PROGRAM FILES (X86)\7-ZIP\7ZCON.SFX FI2=588288,69392E292A0E7195E0C96BBBFE989949D044B63DBCE2E5324F1BB99AA2560E3F,BBB2667D9B2FD922E52883A63E8CD948,2,,C:\PROGRAM FILES (X86)\7-ZIP\7ZFM.EXE FI2=431104,B6E34A76D87CC95FDDEE2FBB41B22E11EEF6A4DF10A7ECBBA03942030EEEC07E,712214D53808934BDF7403C5AEEE6EEE,2,,C:\PROGRAM FILES (X86)\7-ZIP\7ZG.EXE FI2=62976,6C5DE0800EF7A46174CE4F6EB4703A4B69369E8652D43F9337FBA72EAFDF86B4,8D46B86E8A60AE61796C6A95B4ACBE5F,2,,C:\PROGRAM FILES (X86)\7-ZIP\7-ZIP.DLL FI2=15839648,48914CC8A08D15A22AEA8F143E281D994549AA4DDCAC2265194A686762537394,281048B00A5A0091DC21663B439D929C,1,"Acronis International GmbH",C:\PROGRAM FILES (X86)\ACRONIS\TRUEIMAGEHOME\AGENT\AAKORE.EXE FI2=2102096,E4BA24756756F62F550DA546F2D3EE4DD0B0C5174962EB5352EEBC62D6A2038C,7930F310AD3C5A37240BE182E411BEEC,2,,C:\PROGRAM FILES (X86)\ACRONIS\TRUEIMAGEHOME\MOBILE_BACKUP_STATUS_SERVER.EXE FI2=5623096,77E494B25DA0352415F30DF818D091D1AA78E1C8BCDEE988AA6EDEC265C4EEA7,76F9B12FF2C3DCCBC08883F79852388F,1,"Acronis International GmbH",C:\PROGRAM FILES (X86)\ACRONIS\TRUEIMAGEHOME\TISHELL_25_6_35860.DLL FI2=562080,AC461549C5FD7F94514A78D40B997D0E0FA6A28EA5513FFEC9B649152EC98A33,893BD7E4964F2B9B5BAC6655100B388E,1,"Acronis International GmbH",C:\PROGRAM FILES (X86)\ACRONIS\TRUEIMAGEHOME\TRUEIMAGELAUNCHER.EXE FI2=4798976,1E9C724E2516B74E41D8F92B909134F8204E65E81B3F27013364663C568453FA,3490A5800A3B953AFA698141D9C22C83,2,,C:\PROGRAM FILES (X86)\ANUMAN INTERACTIVE\BUDGET FACILE 3\BUDGET_FACILE.EXE FI2=1168320,F54A496570362F2C6C4422B1562DB55E14455FB0E5AC7D4CD2FD6A440C47AE8B,874FC1B51AF57548130664BB5D82DEF9,1,"AOMEI International Network Limited",C:\PROGRAM FILES (X86)\AOMEI PARTITION ASSISTANT\7Z.DLL FI2=314304,181CA84C0EC184AF045AEAACD471B919AB271DD8CF2249F873B8365500FE1490,1F9046137A0015D2C41B7B01AEC39F56,1,"AOMEI International Network Limited",C:\PROGRAM FILES (X86)\AOMEI PARTITION ASSISTANT\7Z.EXE FI2=95400,056F844CAB51F6A8CCA4E6F35725A6517EBC83FF70094EDC20188FDB89DA15A8,2B22508A41B8A3FF84B17D9EB7700006,1,"AOMEI International Network Limited",C:\PROGRAM FILES (X86)\AOMEI PARTITION ASSISTANT\AMBOOTER.EXE FI2=152464,EEF9B9A18A70A1B148E7F2158F6003E9312785051CC3E07FAEECE03B1C1546AF,94294C3D1C41E6207C7E5D0CD0F80B2F,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\AOMEI PARTITION ASSISTANT\BCDBOOT.EXE FI2=35840,A4B61626A1626FDABEC794E4F323484AA0644BAA1C905A5DCF785DC34564F008,0177746573EED407F8DCA8A9E441AA49,2,,C:\PROGRAM FILES (X86)\AOMEI PARTITION ASSISTANT\BOTVA2.DLL FI2=4096,68F42A7823ED7EE88A5C59020AC52D4BBCADF1036611E96E470D986C8FAA172D,F07E819BA2E46A897CFABF816D7557B2,2,,C:\PROGRAM FILES (X86)\AOMEI PARTITION ASSISTANT\CALLBACKCTRL.DLL FI2=53248,57EEAF723F3525BFD8045E965C36E5C0EFAEE0B54CDBC105C4EAA2A7C31A84A9,C88D361209CB79D0B7EB91A2E9008F0E,2,,C:\PROGRAM FILES (X86)\AOMEI PARTITION ASSISTANT\CHECKRUNNING.DLL FI2=11119664,D42EDE38EFA2129F0BF5DABD001336A70CC275B4EE198F2B6837BF5CA6C362BF,71CD8760FA405C03792DD2DDBB1004F7,1,"AOMEI International Network Limited",C:\PROGRAM FILES (X86)\AOMEI PARTITION ASSISTANT\PARTASSIST.EXE FI2=1102320,70150D80B7DEC9EE718255A3714F71984C14DA6E6820086179A697B00C1596A6,0981101B92EFF6A5274092DF19B3F549,1,"AOMEI International Network Limited",C:\PROGRAM FILES (X86)\AOMEI\AOMEI BACKUPPER\7.3.3\ABSERVICE.EXE FI2=497096,9ED1A6A6B678E770F4FECCF4BC96FBDB34CF312F960CF1CCBCADA2CB2C36A7B0,1F843B7164AE8DE94255A7CE02940246,1,"AOMEI International Network Limited",C:\PROGRAM FILES (X86)\AOMEI\AOMEI BACKUPPER\ABLAUNCHER.EXE FI2=2765824,4A0E5C6C97E1373B952D1BB79686F0BBEEEED0A765D7F17349E20CCF317696F5,F978BB219E4E934D816E8677F828E392,2,,C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\\RES.DLL FI2=480176,903C1DE7B8FCA5742D2AE43D209D539C4E365D6A6F602937E6BC6BBC13577790,6FDCBBED41D99B776EE333185C25FF4A,2,,C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\DATACOLLECTIONLAUNCHER.EXE FI2=14256,973D4DAA7A071C2DD3A71D116CED8348B70C848F9DD39A40507B0B9AEF6C2428,FE2DA6C73B124304AC8E59978F2016A0,2,,C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\DATASERV.EXE FI2=462256,EBCC2F5DED34BE20AD3008DC3B299981242BB8EA4FB002B7A15DC01299B599B0,75730A9B2899597AF473A23DB3012368,2,,C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\DISPLAY.EXE FI2=4261808,372110EA447F98DC82F5A2DD2192D4D947AD7543870E1ABBBE9F8E7585279A5D,2ACCCB05C9FD53B7ED0FEF34AFCC4F46,2,,C:\PROGRAM FILES (X86)\APC\POWERCHUTE PERSONAL EDITION\MAINSERV.EXE FI2=2881456,8C744B43A10D2EEC4360B8E862D14EBE9881CBA4AA1D253757DD2460D04E1416,4BB6A7960B91AF2C774FB06561BCE153,1,"Avery Dennison Corporation",C:\PROGRAM FILES (X86)\AVERY DENNISON\DESIGNPRO 5\LABELER.EXE FI2=6738360,DBA4515014A26C44FA8CF4C7F2502BFC29855879E5C890E037E24D09FC757CF8,3AD6F1D43ACFDB4533ADE2E597F09ECD,1,"Avira Operations GmbH",C:\PROGRAM FILES (X86)\AVIRA\FALLBACK UPDATER\AVIRA.SPOTLIGHT.FALLBACKUPDATER.EXE FI2=2977248,D5556808C9442CD9437A196DB97E3A410D20ACD8F34F5517003BFAFA8B36A563,D02B75F98234821C123A4AB14D8069D1,1,"Avira Operations GmbH",C:\PROGRAM FILES (X86)\AVIRA\OPTIMIZER HOST\AVIRA.OPTIMIZERHOST.EXE FI2=296656,BEC91FD5B0E6AEC34276CB2A5E8889E8CF3018F3739D980011D4EA9739FB99BA,BA93B3599511A7E31933DC50CBF5751C,1,"Avira Operations GmbH",C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.COMMON.UPDATER.EXE FI2=265936,8AE3D3BD3ABA92FC936241106792E231A2EADA203B40B1F4DA95587573185C51,74931C6B879C8ACD4E5898DB2D6906B0,1,"Avira Operations GmbH",C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SERVICE.EXE FI2=259944,2F13BEC8F6441C358BB3256FFFAB900986CE6CB8BBEAED05526E1FE504133CB4,3420A76C0CBEF27230D9DAD50556FEB9,1,"Avira Operations GmbH",C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SERVICE.WORKER.EXE FI2=1775464,1F971A6A45BA8265E4ED1F5EDD6DC68357F5E7803D4E1333F635ED4AC8B4BC75,AAC5C74D8FC35178B4829004CC57A301,1,"Avira Operations GmbH",C:\PROGRAM FILES (X86)\AVIRA\SECURITY\AVIRA.SPOTLIGHT.SYSTRAY.APPLICATION.EXE FI2=36817136,D8FA4241DE084E954DCE5C1075BCAD11805D0236F7AB87C03A50A042A4F8C5B8,74D479DF6171316A87F012D3266DCFA1,1,"Avira Operations GmbH",C:\PROGRAM FILES (X86)\AVIRA\SYSTEM SPEEDUP\SETUP\AVIRA_SPEEDUP_SETUP.EXE FI2=398816,973AF95CCDF978444581B20CCC46A0B43A8B3EC26315CDDC84AC2D4B6E4F0ABE,280FE99E511B08E66933CF0BD6264009,1,"Avira Operations GmbH",C:\PROGRAM FILES (X86)\AVIRA\VPN\AVIRA.VPNSERVICE.EXE FI2=121704,5D40FD92DA5CA59C1BADB58AD509DB6A6D613F18660A9A270A53ECA85D34C3A9,40947436A70E0034E41123DF5A0A7702,1,"Apple Inc.",C:\PROGRAM FILES (X86)\BONJOUR\MDNSNSP.DLL FI2=390504,10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC,DB5BEA73EDAF19AC68B2C0FAD0F92B1A,1,"Apple Inc.",C:\PROGRAM FILES (X86)\BONJOUR\MDNSRESPONDER.EXE FI2=668938,2FB291A49CAFFA342A6199274693B81B646D711C9C24C36460075FE9A252FCB3,B54853FA1B06B4A62447296B9A819BE6,2,,C:\PROGRAM FILES (X86)\CITIES OF EARTH\UNINS000.EXE FI2=6388072,81B18B3B03139FB985231D083FD915A7ABDEF89C6ABE95A0FF3AC5EFC512E02D,6005B99636F600157021FDB7EA75037A,1,"Acronis International GmbH",C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\CDP\AFCDPSRV.EXE FI2=4808088,807C37C5133FFAA104C58A2A67FC5A467506B2FB0B70B054F686A9ADBBD6A45C,5AC3A342F3E508BADB84137273DC1C56,1,"Acronis International GmbH",C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\INFRASTRUCTURE\MMS_MINI.EXE FI2=3004128,B1ACDE3916BBA376811F43CECC678A178FE003CE6AA908E54E7E4F844AB01587,2537BD60646B6374FBD0FF34F1220821,1,"Acronis International GmbH",C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\MOBILEBACKUPSERVER\MOBILE_BACKUP_SERVER.EXE FI2=827200,48711612C9156C894A6263A6B312D84A1D92B0D8B82410FC72EBBD84277A6011,6832382B513D6C8A3AC625483912754B,1,"Acronis International GmbH",C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\SCHEDULE2\SCHEDHLP.EXE FI2=1264400,AFC419BDA5A7AB91C854E5E8335CBE9F5A5064A3C33CCB04820D818966D2A023,A7465D142A130B5609E11CFC8BF0EDE8,1,"Acronis International GmbH",C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\SCHEDULE2\SCHEDUL2.EXE FI2=7394008,D9006A37EABC423F26EE28B6F7E3C7552D1DB576264D6F755C54C18AEE12BBDD,A5D941EF3391B48BF689A220646A07D2,1,"Acronis International GmbH",C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\SYNCAGENT\SYNCAGENTSRV.EXE FI2=5911456,E07997D0945AF56BDA557937DD7A1945B9C80B3F5C0DA17D631CDCD25356E63D,E4389A32363FAD9FA556F897ABE5BDE1,1,"Acronis International GmbH",C:\PROGRAM FILES (X86)\COMMON FILES\ACRONIS\TIBMOUNTER64\TIB_MOUNTER_SERVICE.EXE FI2=1563080,38F995B60DAB6E22043D53BB56B368D5DED859B47ADC8C06FB5127EEF13DFFDE,838F0B3C44BF9C8D4A71ED9430D36723,1,"Adobe Inc.",C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ARM\1.0\ADOBEARM.EXE FI2=172992,9CF5B0E8D3CD7139CB846F2D41296A4EE62F955AF3AE7CE5940EEE23B6CAAFF2,FEB93F8D415A4E435C050A13E52F17C3,1,"Adobe Inc.",C:\PROGRAM FILES (X86)\COMMON FILES\ADOBE\ARM\1.0\ARMSVC.EXE FI2=15689512,F1EFF2DF0FF288C79F5B866AAD0346CE0F55B85F603C89D3ED0332E7BB97BC2A,D77C341D8A5A57C0EE10CE79DE5F7455,1,"BattlEye Innovations e.K.",C:\PROGRAM FILES (X86)\COMMON FILES\BATTLEYE\BESERVICE.EXE FI2=15689512,F1EFF2DF0FF288C79F5B866AAD0346CE0F55B85F603C89D3ED0332E7BB97BC2A,D77C341D8A5A57C0EE10CE79DE5F7455,1,"BattlEye Innovations e.K.",C:\PROGRAM FILES (X86)\COMMON FILES\BATTLEYE\BESERVICE_FN.EXE FI2=68056,13458D555C444EFEE182C67B1530800E2DD929D8B280668E2A69EB5E97077CFF,B59EAC64265FC57DCA532F7A36DDE589,1,"DIVX LLC",C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\DIVX UPDATE\DIVXUPDATE.EXE FI2=82392,7129E3D3C551B48F9F8BCEC17177F6E859D428FAA557FE2E149899FEE7DC3A3F,EB898DE286970FE4C8F026926CDA7B9E,1,"DivX, LLC",C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\DIVXSHELLEXTENSION.DLL FI2=98264,CB29C7ECE74B89BD4EB3E07BF0737CF64A6262F1C08A30000EBB29EFA67715A2,85E0C43958F28A6A444A5818F4EE8636,1,"DivX, LLC",C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\DIVXSHELLEXTENSION64.DLL FI2=4483040,8742BCBF24EF328A72D2A27B693CC7071E38D3BB4B9B44DEC42AA3D2C8D61D92,A92A4D8E784D8F859217F828FE879047,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\VCREDIST_2008_X86.EXE FI2=10277328,F3B7A76D84D23F91957AA18456A14B4E90609E4CE8194C5653384ED38DADA6F3,02A945866CD1B13E2375C024F0E18301,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\VCREDIST_2010_X64.EXE FI2=8993744,99DCE3C841CC6028560830F7866C9CE2928C98CF3256892EF8E6CF755147B0D8,F45ADE105F9C4FE754976C820230A9E5,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\VCREDIST_2010_X86.EXE FI2=7200744,A4BBA7701E355AE29C403431F871A537897C363E215CAFE706615E270984F17C,49B1164F8E95EC6409EA83CDB352D8DA,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\VCREDIST_2013_X64.EXE FI2=6510136,53B605D1100AB0A88B867447BBF9274B5938125024BA01F5105A9E178A3DCDBD,38A1B890CE847167D16567CF7B7A5642,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\COMMON FILES\DIVX SHARED\VCREDIST_2013_X86.EXE FI2=103272,915205AB28FDD2E0B5677976425B68918EA141E4EA3DDFC3DAD8025D6390DA64,2E279FFCC1DE9027CEBC97511EC4E3FA,1,"Digital Wave Ltd",C:\PROGRAM FILES (X86)\COMMON FILES\DVDVIDEOSOFT\UNIHELP.DLL FI2=888216,A761565CFC3A58645E2C6E8576E269A8287B910114A57058E81A108244B547D8,AAE18CE44581CDEC57E389E7C17FB6F8,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\COMMON FILES\GLARYSOFT\STARTUPMANAGER\1.0\GUBOOTSERVICE.EXE FI2=935208,754B11B71C06BC597EC5685E20772B604326C421BBD234BCD90678FD57C07768,C7F5C284B6F46FCAF6910EA4E644700B,1,"Nero AG",C:\PROGRAM FILES (X86)\COMMON FILES\NERO\NERO BACKITUP 4\NBSERVICE.EXE FI2=7499768,AB5830DB258A4857ABCA8C999DDC8562AC1A1F1A1D27AF758BE1D11C08E9DCE3,EF801F4408581F653CFBEBC626497EFD,1,"Valve Corp.",C:\PROGRAM FILES (X86)\COMMON FILES\STEAM\DRIVERS.EXE FI2=3075936,DE47AC49550D0D6DF43101DE187912F6C292D6B1E28380EB5BFC1F84E0605B8A,FE95B2836DA57D33BD59463CB4272EE2,1,"Valve Corp.",C:\PROGRAM FILES (X86)\COMMON FILES\STEAM\SECURE_DESKTOP_CAPTURE.EXE FI2=3402080,73032A80096F192118B77788A20FD48BE7600B617E5C8EB3C9C80FDE7CFFF98B,98E95414989630D41F9FDF85450DA55C,1,"Valve Corp.",C:\PROGRAM FILES (X86)\COMMON FILES\STEAM\STEAMSERVICE.DLL FI2=2661728,53F79D61DF9D3F2AAB776593883FB1E7995D703CA28A72492E7F690C8C78AA61,E4337EB065F40E89FF534BB8995D9959,1,"Valve Corp.",C:\PROGRAM FILES (X86)\COMMON FILES\STEAM\STEAMSERVICE.EXE FI2=771936,D43F9C87A6B34BF48DBF805FE1AB707695034CF48BE7CC647CA4A6F4AF7F8D88,2056270E5185608C07B44B24E47689CD,1,"Valve Corp.",C:\PROGRAM FILES (X86)\COMMON FILES\STEAM\STEAMXBOXUTIL64.EXE FI2=781824,5B0827AEE3C0824E4282B80D15E76C7578BBA408279A2859984AC114E50CC490,5BFCF85B21A5B302A9381F6C25C14BDE,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\COMMON FILES\SYSTEM\WAB32.DLL FI2=964096,816241581802B9E2C93B5D069313DE61CDAADB835B1AD380DD8114E35F38AEF2,68CD46D791D337AB0AD04655743B5980,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\COMMON FILES\SYSTEM\WAB32RES.DLL FI2=22618624,16536C2EBBF1F7350A02544E77503FA38661F1BAD301421A8BFA19D1DB9A3DBD,6FF7468E17EAA17F1A55E056A4DA2F74,2,,C:\PROGRAM FILES (X86)\COOLERMASTER\MASTERPLUS\MASTERPLUSAPP.EXE FI2=206848,7F7FC4DDB74475485E33BA8F005D0A65C0527543FA0672B53FEC5996DFF29A3A,3F52A5B0BFCDC8FF7311F99AB18D2599,2,,C:\PROGRAM FILES (X86)\COOLERMASTER\MASTERPLUS\MPSERVICE.EXE FI2=1881048,84CBB51F96479F01E78CFDD8AD2DF9E6BE8E3B99E0D0282AEDB53D6EC013364C,0F968C8EAA9D1D7758589E7D54F24872,1,"DIVX LLC",C:\PROGRAM FILES (X86)\DIVX\DIVX PLAYER\DIVX PLAYER.EXE FI2=156336,580A62D5A871E1302B089DB93DE0E29C1A1D4C25250AABE631373DBF26FA7FA4,20E86E8CAED5F94B54D2A6BE8C687BD4,1,".NET",C:\PROGRAM FILES (X86)\DOTNET\DOTNET.EXE FI2=3263895,0FB4412FE4D446F0D7BF2D4AB67E2257F68168CEDFD8E8DCEC4DD611AD9B068E,CEDC84267C231ACB311B838D70434310,2,,C:\PROGRAM FILES (X86)\DVDVIDEOSOFT\UNINS000.EXE FI2=1136040,1B5FB27FD6484B13FD2E2E3F3C1C68C5F3D5B7DB0D72D8F79C69B28F7492AB89,FCEEAC257C6CBF099847AFE9BC11D59A,1,"EasyAntiCheat Oy",C:\PROGRAM FILES (X86)\EASYANTICHEAT\EASYANTICHEAT.EXE FI2=17132480,B9824ADC9A6D39DE820461008E0EEC0AD4CE3E2038C304725FCE1F5C26C906EE,2CDB9F69C44313F4FD5B7B0D8A70DD96,1,"EasyAntiCheat Oy",C:\PROGRAM FILES (X86)\EASYANTICHEAT\EASYANTICHEAT.SYS FI2=965872,0D82EAB8A401BAA51B2312D9383F854E853FAD5B81F95EC9A8F52D38789F5A80,6BDDBAA14AF418B56A99FC81256606D6,1,"EasyAntiCheat Oy",C:\PROGRAM FILES (X86)\EASYANTICHEAT_EOS\EASYANTICHEAT_EOS.EXE FI2=21027800,3D8DB04143545ED183DB5DE9574E7B2711319677E5F2F8EAD62B3606D85C926B,2B5F8A27CA2E35DC3D2E5F28403E4CE5,1,"EasyAntiCheat Oy",C:\PROGRAM FILES (X86)\EASYANTICHEAT_EOS\EASYANTICHEAT_EOS.SYS FI2=5758976,06CDF814387F627A4BD05A0C68211F715BFA952423E8E8A462E1F47C11A4D20E,F3F709C2D49DD6636F4EDE5C2CAE5448,2,,C:\PROGRAM FILES (X86)\EMULE\EMULE.EXE FI2=270336,DEC5F9BE2593E80A4F00E1290CE026EAB7327EA89A6CBB63EF1558DEE9FA5D04,9F18F88AD53B4E424A118B06EDAED811,2,,C:\PROGRAM FILES (X86)\EMULE\LINKCREATOR.EXE FI2=934352,DEF8D41B6E5AEFAFBDA635B82A46833866A6A06F1B7B8C46E72AFF0340060484,8833CC32C4B22F6A40042BC9F4415043,1,"Epic Games Inc.",C:\PROGRAM FILES (X86)\EPIC GAMES\EPIC ONLINE SERVICES\SERVICE\EPICONLINESERVICESHOST.EXE FI2=3056088,34D92F238A716CBC7D41587BCF91EBE8F0BF682E41E6A6DF9196390A06D6A7BF,BE7C586E88342FF6C32E9446BB25600F,1,"Epic Games Inc.",C:\PROGRAM FILES (X86)\EPIC GAMES\LAUNCHER\PORTAL\BINARIES\WIN32\EPICGAMESLAUNCHER.EXE FI2=2632944,B3A0EFDFA554FC80528E2324F1AA6D58725ADAE58F143D1FEC711E3587325C52,29CF9F511DC4F23C42ADE901534B833C,1,"SEIKO EPSON CORPORATION",C:\PROGRAM FILES (X86)\EPSON SOFTWARE\DOWNLOAD NAVIGATOR\EPSDNAVI.EXE FI2=1365264,A3E6CD32A8E02EF64E73E26C7B5E27D3E1D58AAD27233F9665A515E2A9DDDECC,F9F60341F5ABB6D28777B405BF9F05E1,1,"SEIKO EPSON CORPORATION",C:\PROGRAM FILES (X86)\EPSON SOFTWARE\EPSON SCANSMART\SCANSMART.EXE FI2=1092096,9868FC97145EA7ECA4829F006B98515127467A882573F0D9B575B65A93B18125,0A585720DC8B6FBCBFA8942BCB653F9B,2,,C:\PROGRAM FILES (X86)\FMRID\FMRID.EXE FI2=20520,27878021C6D48FB669F1822821B5934F5A2904740BEBB340B6849E7635490CB7,B5060343583E6BE3B3DE33CCD40398E0,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CORE-FILE-L1-2-0.DLL FI2=20520,C55EB043454AC2D460F86EA26F934ECB16BDB1D05294C168193A05090BF1C56C,2E8995E2320E313545C3DDB5C71DC232,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CORE-FILE-L2-1-0.DLL FI2=23080,646B28A20208BE68439D73EFA21BE59E12ED0A5FE9E63E5D3057CA7B84BC6641,54D2F426BC91ECF321908D133B069B20,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CORE-LOCALIZATION-L1-2-0.DLL FI2=21056,51A73FBFA2AFE5E45962031618EC347AAA0857B11F3CF273F4C218354BFE70CB,D1B3CC23127884D9EFF1940F5B98E7AA,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CORE-PROCESSTHREADS-L1-1-1.DLL FI2=21032,80FBAE0ACCEB55364437BDD862D454DB5ACAA797AD0367931AEF7677C7E84E7B,DAC3E271EF4A287821BECDA51AA12946,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CORE-SYNCH-L1-2-0.DLL FI2=21032,D7AB47157BFF1B2347E7AE945517B4FC256425939BA7B6288FF85A51931568A7,36165A5050672B7B0E04CB1F3D7B1B8F,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CORE-TIMEZONE-L1-1-0.DLL FI2=20520,598C5CFC2B5CE7F9C874C85E47F7571F6127590A52B46E0A8F576A603DFEFA94,4FC1D0FDB7B881793DED358F1880BC16,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CORE-UTIL-L1-1-0.DLL FI2=21544,762CA8DD14F8FF603D06811BA904C973A684022202476BCA45E9DC1345151AC4,75E626C3EBF160EBE75C59D3D6AC3739,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CRT-CONIO-L1-1-0.DLL FI2=24616,983F4D4C7B7330E7F5F091080C1E81905575EBCCD97E11DFF8A064979EC8D9B8,0485C463CD8D2AE1CBD42DF6F0591246,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CRT-CONVERT-L1-1-0.DLL FI2=21032,67BBB287B2E9057BF8B412AD2FAA266321AC28C6E6BA5F22169E2517A3EAD248,E48A1860000FD2BD61566E76093984F5,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CRT-ENVIRONMENT-L1-1-0.DLL FI2=22568,AB2158FE6B354FB429F57F374CA25105B44E97EDCBDC1B752650D895DADD6FD1,1193F810519FBC07BEB3FFBAD3247FC4,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\FORMATFACTORY\API-MS-WIN-CRT-FILESYSTEM-L1-1-0.DLL FI2=3594608,C924389A67DF0F2E1401DAF2436F3D6608A0D2ECEAFD5FC6F1CD382E434C8DA3,72B568C6263B3DB1AE15077B5382AD60,1,"Free Time Software Technology Co., Ltd.",C:\PROGRAM FILES (X86)\FORMATFACTORY\FORMATFACTORY.EXE FI2=11520504,619FD9C6C7BE66D639A83D11E9FAB06529ACFE559BE1C0FDB1510CAEE06C717E,86F9C97A7BC260B26E65782163A8BA19,1,"Bright Data Ltd",C:\PROGRAM FILES (X86)\FORMATFACTORY\NET_UPDATER64.EXE FI2=1900392,2D751C5A4587D21801AA6AF4B0DA594B871A8282200A9A91F2B9E819A66EEAE3,DF52CE40988BAFFC815FCBABD0518515,1,"Digital Wave Ltd",C:\PROGRAM FILES (X86)\FREECODECPACK\VSFILTER.DLL FI2=3082240,A628B1115C4FFB4A3230C0508063CCECC7C581023BA94AF52D04C1932866D80A,9927BCF495A9C851415C23C64E30CD7A,2,,C:\PROGRAM FILES (X86)\GEEKS3D\BENCHMARKS\FURMARK\FURMARK.EXE FI2=113560,5EC7F5BDA80542921B3A6212C4221A3E6A9A908520A55303A60AFD851C9C7B60,1B3B95CA65390FE8B8A81842438A0956,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\APPMETRICS.DLL FI2=161784,AB93DF816C284AC247B9087663BC449BEB26E6F64D9F8A6BE2EFECAFA7A9CEDC,64ECA1F64E4A988A6C5C93F3E5D66236,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\GLARY UTILITIES\ATL90.DLL FI2=513432,3CB8C7C12B6F77D16905D59806D8D27610604FB2A1D3291BA30908C2F6ABDAC3,86E05E4996601287354A33E3DA5E2A81,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\AUTOUPDATE.EXE FI2=83352,CCAF3D82199678A55E64275FC584EE42EFBDDB3472AE77B754B286AFEAB51EB1,99E3115AB9FEE40303A94C230A3F9B2C,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\BACKUP.DLL FI2=35224,7A323BDFF7B0C292E075E599AA33653DCE3ED9B1FC6AFC02266338B3359133EE,A2DA247DE54793E86301247DC8C403E0,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\BOOTTIME.DLL FI2=54168,19B0CB246353522990FE1D7FF4C4861C144ADE2B8A8873F7064ADB868CD2AB27,B9B62763B5D2C0EEC1A14F9D197201E1,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\BOTTDEFRAG.DLL FI2=524696,7702EE8B60956703B781A85BB88828FAB0634333D1E1D50E10F755F7D1C88FEC,79A88F6B704FA267DC8DA30B480EC16B,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\CHECKDISK.DLL FI2=232344,476F5765A614F4106F2FF24C947024639FB1962797F949677F31F9BA58C9D102,78D7A46481742638FD80084728D069BD,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\CHECKDISK.EXE FI2=83352,BB7EEFBF896B8D2AF3C482E6F00C2135249807FCEE8AA3FE766C2C5CE3F53A20,EDF2A87E4453BAD22B58F956A1BF2A57,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\CHECKDISKPROGRESS.EXE FI2=1158040,B6DB8BBBC3D26774ABA5D752CA97C08F432F221C95720F07FA5F4C225BFF8B2A,13131FE97DF4ABC08825E5DFE6A22219,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\CHECKUPDATE.DLL FI2=51608,6FDEC765E82BDA981A95336712C664B7DB9D36E9963EBA30025DDDCC545F4C1C,15D7AE2DFDBB411269F2AD199B3A8509,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\CHECKUPDATE.EXE FI2=146328,E39D1B1563EEF9B19A3144C4D995C8E30C96AF5D91FCBB9607AC975289E415BE,06B90F3EFBEA3172DD09FE5B4D7D8F5A,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\CONTEXTHANDLER.DLL FI2=76696,3888F584084DDDD535DE0E9E336FC79CD697801B9259404C2E8E5CDE4618BF6B,F9B739A0F99966568FBA2D505BD4B89D,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\GUPMSERVICE.EXE FI2=433560,A0FC04D6B824ACBF55B5A0C6E19EF7B81CCD5CB428803E670F7FB7E8CB5AA103,0C9DBF961CE8B19D8D0385B564078315,1,"Glarysoft Ltd",C:\PROGRAM FILES (X86)\GLARY UTILITIES\X64\MEMFILESSERVICE.EXE FI2=5507168,5DDE29F028E75EE72F50902D20C41B699EF8FC5C294F04A321DEAC6909FFE409,E2937E33C2554EECC37C804A7F99F8B7,1,"Google LLC",C:\PROGRAM FILES (X86)\GOOGLE\GOOGLEUPDATER\131.0.6776.0\UPDATER.EXE FI2=5507168,5DDE29F028E75EE72F50902D20C41B699EF8FC5C294F04A321DEAC6909FFE409,E2937E33C2554EECC37C804A7F99F8B7,1,"Google LLC",C:\PROGRAM FILES (X86)\GOOGLE\UPDATE\GOOGLEUPDATE.EXE FI2=9500376,0E486B1C618F74F41058C88C1CFA1A19D78831D743D90AE9396ACC6361CF0971,3E927DB990C90C6F5A7B036C49F66D7D,1,"TechPowerUp LLC",C:\PROGRAM FILES (X86)\GPU-Z\GPU-Z.EXE FI2=2555217,87AA93875C4D395DE8D67576DCD2B4DEF074D7EFC1754FA7AD08A6AB5F77E7FE,1D5AD2620A58FFAB62EB3168C652DA76,2,,C:\PROGRAM FILES (X86)\GPU-Z\UNINS000.EXE FI2=16038680,400D6CCA30DBC488877BA690D617568B1DA2DAA8D5F44DCAA8CE2886526E1AB7,4753A04D47782BC24D874EC10B21E845,1,"Greatis Software LLC",C:\PROGRAM FILES (X86)\GREATIS\REANIMATOR\REANIMATOR.EXE FI2=131072,61F56FF91873EA3A2D780D05CB808D9056617745A0A22D824434A43C497620E9,0550FBCEE76B6B8BD0045C898394E728,2,,C:\PROGRAM FILES (X86)\ICOSAUVE\ICOSAUVE.EXE FI2=113664,8816C89E73CED7076B520BDD99B2FD9A3A18EC9D23065C994EFB2F892178B2C3,835DFA6BB082E1389BF8E029874FE6B1,2,,C:\PROGRAM FILES (X86)\ICOSAUVE\RESETDESKTOP.EXE FI2=698897,335A947B890ADC5B7892D974442E449AA24076B50DA460962F737A106ACCAE75,88FD91B6308E38A58F9F27AA0CA74CC2,2,,C:\PROGRAM FILES (X86)\ICOSAUVE\UNINS000.EXE FI2=10525184,204063903A0E355F719F01EAF2CEF709622D65DE80BEBFB79A9AFE78CEFF9989,F9F5D5C50BB947C73316324A191D16C4,2,,C:\PROGRAM FILES (X86)\INPAINT\INPAINT.EXE FI2=718305,916AC51028E9BD3C2EA477AF037D7262933EAABE6787975B892C14A83415F044,70EAD36C112EF89E8B7EBEB85AE3300D,2,,C:\PROGRAM FILES (X86)\INPAINT\UNINS000.EXE FI2=48640,AB698439BEFD75AF4D23AA9CB5A3B97E0F24D2A563DDBCD0BDF9207ECFEBB903,1228AB8597C667A4F99455169EB24C53,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET EXPLORER\EXTEXPORT.EXE FI2=50688,D9EA1FF7374B50CDA5C7459523CF41C351C79BC6C34513F8A6DC34172359BE8A,EEEFB5EC3307313EBC4E53CBB7BB5BF7,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET EXPLORER\HMMAPI.DLL FI2=281088,44F89D82294A291F03EF36C4E648736CB7C91FBE212CEA4371BCDB03BCB3040E,67B0B0B959D10FCE5B3DEAA564C0CB7F,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET EXPLORER\IEINSTAL.EXE FI2=222208,C241BBF1B2C82DAEE5333184DDDA0CA2928D44909348AA335EE4EE665C7946E2,69C86C07D58CDDA064A8ACC506A2979A,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET EXPLORER\IELOWUTIL.EXE FI2=358400,14D504C93944F438A0F96E1CB3558DBC694F571D5679AC4DF6FED63433910309,947BBEA3FA9448C6CCDAF6F8A58D170D,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET EXPLORER\IESHIMS.DLL FI2=820152,42F5507841FA1C8043D82BE1969EF93E0A06D19C2D3EFB9BA7F556BD4793D35E,123F285272934929F1565F770D1B03CD,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\INTERNET EXPLORER\IEXPLORE.EXE FI2=485232,1B120189EA8D4573D4B302CE2BE9A55766314FF8CAB71B5114C260507A4660F3,5D0D12A3B1842287AD292BA237E92456,1,"Cockos Incorporated",C:\PROGRAM FILES (X86)\LICECAP\LICECAP.EXE FI2=51541,DF5377A7EB1E60B861BD4B3D702AF504FD93D665B14A29364C37781CCAF57409,736532CBEF39FEEA4A3ADD0FC9B5089D,2,,C:\PROGRAM FILES (X86)\LICECAP\UNINSTALL.EXE FI2=446504,92539DB2E52CFD97435266CEF6F606E56BD719D1E44F49C4926C97F39A0C225D,2A5CE0DBE9E3311F2979A56A35BBA38E,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\129.0.2792.89\BHO\IE_TO_EDGE_BHO.DLL FI2=569896,94B484F6A255A2CAB334FD8C68549189A30F49DDB699D2CDBAD4AB44F17A2F42,1C1406251465931B752957992B17B32B,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\129.0.2792.89\BHO\IE_TO_EDGE_BHO_64.DLL FI2=1727016,B1BD04D55181B44FB48F879F0E91C080B0A0D0A2AC9D3C2A9FAD413A3750C136,2403A612145EB712F11E9AA864EF9292,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\129.0.2792.89\ELEVATION_SERVICE.EXE FI2=16424,8328F7D6D9E6075E126335401604C444AC2F09348AE05C7C020A3C483A9C6E63,34496F7C175A06A4BD7905025FDB0A17,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\129.0.2792.89\EVENTLOG_PROVIDER.DLL FI2=3794984,FD300307D340216E8F8CE0EA52BF5E97121A39CA165F8133072B5D06319CD661,D02AF9255DFB84094417BB1E81016E48,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\MICROSOFT\EDGE\APPLICATION\MSEDGE.EXE FI2=2235848,09D9F52E86DDD5FB3391D7DD683C42A9FA9D03A2CEEE56B1273CCD42986B4851,8A816664389165F11A9E50FE42671657,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\1.3.195.25\MSEDGEUPDATE.DLL FI2=215992,54545F352215A9C0F370A01980AADCD5749A93589931662D89A974D7BD60F476,A4FC8EC5BC41C41918B0C1541E4E4BE6,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\MICROSOFT\EDGEUPDATE\MICROSOFTEDGEUPDATE.EXE FI2=278592,6AD08451D979B363D20407B15C411C73D0787F2DC706521BAE70CB6F6F2D850D,D2CFAC49E3245811064D1E1C925171E0,1,"Mozilla Corporation",C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE SERVICE\MAINTENANCESERVICE.EXE FI2=277568,C798D8E578E93F328D032AC16D292C32302BAAA91F6D7E175C807EEE5F32503B,BCB89A4A44EE67926BFCC4EB2750EE6B,1,"Mozilla Corporation",C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE SERVICE\MAINTENANCESERVICE_TMP.EXE FI2=103394,E4E6C6E20D8796D5060FE5D18F883FE3EC21E61FA3444A12E77E1FCBE3D91FAF,A742782C9180B3AC88EF27234C7B7790,2,,C:\PROGRAM FILES (X86)\MOZILLA MAINTENANCE SERVICE\UNINSTALL.EXE FI2=131127,D46BC2E80B516A0B2423D01EE04E79D7A8D5E0B440EF54D40C8E5DF3547EF1CF,F44F61CB7140E42C0E65450160B9A6F3,2,,C:\PROGRAM FILES (X86)\MP3GAIN\MP3GAIN.EXE FI2=630841,786E7A7DCCA24BF8B1C031BE6FA8ED046212534C3E6062A46DD96A1F8C658DFB,F3A35FD430520D2F5261C2FC9296BA80,2,,C:\PROGRAM FILES (X86)\MP3GAIN\MP3GAINGUI.EXE FI2=39789,97EA4012604AA9F5E5A413B07EC0B2F34739B614DC82539BCDF64F942882D6ED,DBEB00FA4AE51971298825EDC8E2AAFE,2,,C:\PROGRAM FILES (X86)\MP3GAIN\UNINST-MP3GAIN.EXE FI2=3550208,E3009E3738FAB1F7CD685567C5AA1EB0A408AC51D0CDA5DA788841174D7625B1,960AE99A15B1C8C9FBDDDE97606478F9,2,,C:\PROGRAM FILES (X86)\MPC-HC\D3DCOMPILER_47.DLL FI2=1998168,0B28546BE22C71834501F7D7185EDE5D79742457331C7EE09EFC14490DD64F5F,86E39E9161C3D930D93822F1563C280D,1,"Microsoft Corporation",C:\PROGRAM FILES (X86)\MPC-HC\D3DX9_43.DLL FI2=5366736,EBBF1C371702F3DC39CA23D619C47EDF97E66A95AEABE725284F1402D8F3E58A,737DD5867080E3F7DBE4D2108C45ED17,1,"MediaArea.net",C:\PROGRAM FILES (X86)\MPC-HC\MEDIAINFO.DLL FI2=7680512,65CE6A42E60A696DA96013172A519A9D22371283576841E29126451D39E3492F,27E5A605AA1E4233ACF94C4916EACCA0,2,,C:\PROGRAM FILES (X86)\MPC-HC\MPC-HC.EXE FI2=2515968,B4169AF1C73C08EB6237B85DD371B80267FBC406ED48DF8EADFC853F535038DB,FAD5082AB26E038F529B64264AE63D26,2,,C:\PROGRAM FILES (X86)\MPC-HC\MPCICONLIB.DLL FI2=205592,74343AA79D1244F460D5A1AF45D560F24EDD0E777684F554CD0AF5A029BD9E4A,094B31CC8AA6CD0B828781C369EDE1AF,1,"Logitech",C:\PROGRAM FILES (X86)\MSI AFTERBURNER\LOGITECHLCD.DLL FI2=804312,303F8FA6BEAF2F67C86E1D174E9E84DF83F0B37D04E60F55B04E7F21BE9453B1,7D366E36F73E00FBB6BDFFCE69D7F434,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI AFTERBURNER\MSIAFTERBURNER.EXE FI2=3705520,D3768F9CD99ADDA83D2675E0118F3B23207F7EFE616B719264674C7B64E72A18,6E6133955BA89AC67277E4A7713FDB86,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\APP MANAGER\APPMANAGER.EXE FI2=2055352,5B8AFFCDEFAFE9B78498608102D0392DCAB5DBA28AF12B31399B7A6AE1545C75,00A71746E2E830F1A0667C698EFE6BCC,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\APP MANAGER\APPMANAGER_SERVICE.EXE FI2=1414832,E38754E1103E8BA997DE58B3E692633FC451B6D2E70E10F0C67283A67B8D5B49,5421DFD8A711A607037C54793DF0A08D,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\CC_LOADINGPAGE.EXE FI2=2669240,72C712B83FCB7B26CC15EFA74A35E28AD0BEED00CC843BC9E205E18BBDE4D220,20D23BF83DDC12AC5927AF60D4905E9B,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\CLOCKGEN\MSICLOCKSERVICE_X64.EXE FI2=2725048,93A9B7C34CD473FFBF1874684D134A7C385E6D6BAB6583E4458CB09D528EBC5C,A49CEA96C99385F9799477F2AF40B543,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\CPU\MSICPUSERVICE_X64.EXE FI2=2507952,2958451029F903AD0DFA5E9F57838D9F4E92938C3C40F4AE5646BD440E45F66F,704FD0F9EDF952591860DEED4DF0EC49,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\DDR\MSIDDRSERVICE.EXE FI2=2343600,63F9998EF101249AC37556FC89B6B5336C04EE9C819AD290788373CAFCD6F800,D56BC71F650F7FF9321A5C63996083C2,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\MSICOMMSERVICE.EXE FI2=2255544,D7DE9895D948371545E47EEDAB07F4369560299015000C43AA6470230A91A6A8,4F52F1F1E28AC1B7636CD131F84A5706,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\MSICONTROLSERVICE.EXE FI2=2136248,E7D49A84026BFF8EBC787681C22AD5AA6ADD462E01EB168B836D4E0584C6AE86,7DEA6F7448989FECA81EACB2B812A703,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\SMBUS\MSISMBSERVICE.EXE FI2=835760,A1876F6F8BEA728E39268752DB96E6D631F69EB37F673D13A91E1036886E8D16,AF5CC681CC820E342A38FB13AC7AEB55,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\STARTCOMMANDCENTER.EXE FI2=2740912,207DE5ADB6E64CC037772B929AF678D1B188B7E93B7981B9EECD9042A4A67427,413C369FB83EA753DD1116CD135E8EDC,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\COMMAND CENTER\SUPERIO\MSISUPERIOSERVICE.EXE FI2=113336,E587752AB6EA64EFE5BCFDD74E6263B8C462FE8885230079216BCA426854BD93,A6D11D1E304AA3619919EB8E2620D040,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\FAST BOOT\FASTBOOTSERVICE.EXE FI2=14288,0CC81B7C459D350B7FB678AB5E7AB4C41A955E2D6CF9FCB24077D0D512BD0341,D2FBF05A20F0C6713BF33D2E04C25951,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\FAST BOOT\NTIOLIB_X64.SYS FI2=759120,0D3417C5191F52FA1A487B29219E60A76E85859C50D359FBD9085ABFB763D0BF,9B9A568B8714245D2D2916AD2B837797,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\FAST BOOT\STARTFASTBOOT.EXE FI2=46776,1657FC4584009A8E1AC1842CB6267F744FCD2074659B4502FBBB83D7BC4E85D7,7D244BBA91CBEAEE8DB13BFF54100D49,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGAPP_SERVICE.EXE FI2=3354296,3B738C8B36249713606A842F80327F39E138FD466A09E82C12DA594608E4A16E,3F103D144E007076AD595A77D20D106F,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGHOTKEY.EXE FI2=2027192,501A3D2024A91BE5A915B3C3BDBDA5AEDA326311E606308830D2FCBBEE1D81C1,F33D9B86960CEB0F675EC181E896BD1F,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\GAMING APP\GAMINGHOTKEY_SERVICE.EXE FI2=14288,79AE0C497B1E0CED52613165B6A2B55D4959EABC96603BAF70F6BEFC1C335409,A44E80654131D20AD2D6E1AE2EEA87A0,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\GAMING APP\LIB\NTIOLIB_X64.SYS FI2=26172432,9A3EEDDA51484263B0E66D5C5027D20DE81B56CDA1FC633C3A19446C85E84D0C,920C87296CFCB6F210EDB55F8F7E2923,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\LIVE UPDATE\LIVE UPDATE.EXE FI2=2210616,168DD7EEA8D16822BB2B917B5036A0EBE4BCE767EF96511CDEE7439F012D2495,8FE335071DB41BE99F06FDCA0E43772E,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\LIVE UPDATE\MSI_LIVEUPDATE_SERVICE.EXE FI2=74768,7A846ABCA5E340AC6045DE3530841E70E13E9F052221AA85D4F8C8FA7B125484,4ABA1A4D50001DBEFDCDE3876E01EF9A,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI CENTER\CASE\MSI_CASE_SERVICE.EXE FI2=9304592,A7DD7D6D0597E558B2216DE4639F8F9A6A4F2B74F9F61FD449D9A6E7E7DBDB63,353144BD73932367FEA3134148476AA3,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI CENTER\ENGINE\CC_ENGINE_X64.EXE FI2=32576,2A36D9A22DFF680CE46284EF718E647BD5A8FC5F095C2ACBBEC3A7F50926EB7F,01B9EB2FA396562A767E8A61F118D281,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI CENTER\LIB\SYS\NTIOLIB_X64.SYS FI2=190992,FB1E803EB56013FCDBF84A9D1150D75D58224F73685423B23E890A778B8013A8,B8B9C59647476BF5C1A4E49894F882C4,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI CENTER\MSI.CENTRALSERVER.EXE FI2=112144,4AF62EF1F1B634525C413FD1063B5AE1EE236523E5EB0B46E5AD5277AB1B7A80,86CF8EFE45F87A21481D0CC91A2DEA27,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI CENTER\MSI.TERMINALSERVER.EXE FI2=172048,BDE4697B04EA916518C3F3963870E494FD3C4FE696BE126259ACAEFD2824F3AE,3046C67730884BC72D7D54BAFA012A77,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI CENTER\MSI_CENTRAL_SERVICE.EXE FI2=48056,1454DF5617DA4DB5AAC321BF4F5410293392AE674A80C7B304343537587CE9BB,A745B6D34C06239E9A8DCB99F69A14CE,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI OC KIT\ACTIVEX_SERVICE\EYEREST.EXE FI2=86688,7670950261C211F45B921F4CACFF1124621CEA90E33430415E67A5CDA5B7BAE1,AD02522C43180506A84136F20BD24382,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI OC KIT\ACTIVEX_SERVICE\MSI_ACTIVEX_SERVICE.EXE FI2=26040,A37CB85D2CAC8636B8EB7CA92BCDCB96E538F5A5F134D801DF1CA4AD0A95ACA9,5F49098BEC8DD90C2A564D2B3E14125A,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI OC KIT\ACTIVEX_SERVICE\TRIGGERMODEMONITOR.EXE FI2=68536,06D1D511E3ACACBA940E466289CA0A333A7972D63FE4C6C39952F1E0B5A1DF60,2A0B4FAC2DDB0E03B88580F15B8F087F,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI OC KIT\ACTIVEX_SERVICE\VIDEOCARDMONITORII.EXE FI2=31904,1A3240F3AB24E87A52377423E96DD0435DF46176BBC1B38F1E1E449CD7B20D97,868EAAACC5C3E0C33434D5D3FFEDBD6D,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MSI TOAST SERVER\MSITOASTSERVER.EXE FI2=1068688,59891262F9AC4AD56C166BED105F0BE3859D82F966ABC4BFA1724A49D4A1E0CF,AC1615C609E31FA2253AECAF2FFA044C,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MYSTICLIGHT\LEDKEEPER.EXE FI2=34976,ED590CC6D101BD0FCD1CF0E076DF464BFF56BF8ADA580636886E7B0B2D40314C,E6391293ADCFFCC1098AA617A1F56D55,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\MYSTICLIGHT\MYSTICLIGHT2_SERVICE.EXE FI2=183472,D711AD924A1C41227E1DC6CB72CE53A3A63842C085EB5791C6A337F9BC50B792,9E96C9DB11A00EB7CB9582C1089B35A5,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\PROGRAM FILES (X86)\MSI\SUPER CHARGER\CHARGESERVICE.EXE FI2=2135336,CCD91EB7831553F8E576E382E96DCF2DB261725AF04FB74906E705BDA2E3E8C9,9773310152596C693B6AEC905B59AE82,1,"Nero AG",C:\PROGRAM FILES (X86)\NERO\NERO 9\NERO COVERDESIGNER\COVEREDEXTENSION.DLL FI2=42308904,7BA06CAC41B341822160B8176F83CCA454040BC9D17B9B7F428F92CFAD4AF99C,4CFF10889E527B49EF12122F894666F2,1,"Nero AG",C:\PROGRAM FILES (X86)\NERO\NERO 9\NERO EXPRESS\NEROEXPRESS.EXE FI2=19223848,7038F6E6C4FAE6DAC64911FE7C1779A6640265BE77C6E5AD4BF80ABB0012622D,549D6E58881C281251BECE284027FF33,1,"Nero AG",C:\PROGRAM FILES (X86)\NERO\NERO 9\NERO STARTSMART\NEROSTARTSMART.EXE FI2=4798155,178701F265190C083318E365642D642A836C97FA755180EDCAE9BF3EE22B86B4,3E133A456B8C4770A42E4F317D52FDFE,2,,C:\PROGRAM FILES (X86)\NERO\PATCH.EXE FI2=29446696,88217F87B155FB4D64519AF0CF44A04F9401FA15F592C5941F1895B3059FFDA9,B0E3F0B7C2C622B0C52C9BF68E03C74C,1,"NVIDIA Corporation",C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVNODE\NVIDIA WEB HELPER.EXE FI2=646696,DA77035B4C15C8FB0AC49CFF2D2ABCC19528F227F68B58CC42165AD7FF28B15D,956D7BB96607421B5553DDD5B53FA8D8,1,"NVIDIA Corporation",C:\PROGRAM FILES (X86)\NVIDIA CORPORATION\NVNODE\NVNODEJSLAUNCHER.EXE FI2=3476480,472A16BC2325E65365BF02E18141D2661C7E594106F856F604A6E11D4E0E7F01,CDD9725F06D5667EACD97BF453F4610A,2,,C:\PROGRAM FILES (X86)\PHOTOFILTRE STUDIO X\PFSTUDIOX.EXE FI2=5938176,FF9EAC7358E44121A060EBF053CEEAA04FD850EB8E23E473B92C3D1B91902ADC,EA396FE9670073C21E8BC737A7A8C198,2,,C:\PROGRAM FILES (X86)\RAIDXPERT2\QT5CORE.DLL FI2=6345216,AD384F6D1A6274D9960D49EDE5DFD706BD7BBC8477537013A40976711802BB27,26A7F5457F4D012896786CFF4118B298,2,,C:\PROGRAM FILES (X86)\RAIDXPERT2\QT5GUI.DLL FI2=331264,5EDC1E0F060D766D57A44A1CAE720DFBFF411EAC415CBC4A318D78E425026B7D,99DCDADE8511C42437B3D497C1AAF5C7,2,,C:\PROGRAM FILES (X86)\RAIDXPERT2\QT5SVG.DLL FI2=5515264,99041083BBB50DD9688540B88B38A2E09494BEDE82739E22E6216617F858291F,68A2C2C891BFB6B1F0A37B867F23A0E8,2,,C:\PROGRAM FILES (X86)\RAIDXPERT2\QT5WIDGETS.DLL FI2=199680,8F17795EE076AC440E582B5C4F083CFF722F3DE1F09059C042CF85905B4CE147,7ADAF0F822E5371B4A65110ADF1299DE,2,,C:\PROGRAM FILES (X86)\RAIDXPERT2\QT5XML.DLL FI2=4302336,E58A0095D7CDC8F1BC611AC6E0AC89052B79E5C65E04E5495B75E0E273E659A6,DB30374CFE0A246493476CE424E1CDEE,2,,C:\PROGRAM FILES (X86)\RAIDXPERT2\RAIDXPERT2.EXE FI2=69952,9B80670B1DF92DFFD2DCC32CAA63D13AF3A34075EE0165CF8B4F6D30E3125551,E9DB4F6624CE06E08DCB82950E21475D,1,"Alexey Nicolaychuk",C:\PROGRAM FILES (X86)\RIVATUNER STATISTICS SERVER\DESKTOPOVERLAYHOST.EXE FI2=70976,23FC77370C0AB5C9D99944F275695D45111C2D69D1C8493D3B2D149834F60130,CAB39D9FBFCE5232F4390FF3E588CB40,1,"Alexey Nicolaychuk",C:\PROGRAM FILES (X86)\RIVATUNER STATISTICS SERVER\ENCODERSERVER.EXE FI2=76096,6C6AB5107F6979F465F8B13172DE5C5FC029C636BA3B4A806B4F032482A4E317,41A8F3A413F0582E740BEE5DE0A0B084,1,"Alexey Nicolaychuk",C:\PROGRAM FILES (X86)\RIVATUNER STATISTICS SERVER\ENCODERSERVER64.EXE FI2=16196504,39AA5129F3E61473DE411A3E286A8AB2A410436923BBAA9320610DE30EE1DF5F,6980F97A2A92DCE04C5CCE88028BD160,1,"Intel(R",C:\PROGRAM FILES (X86)\RIVATUNER STATISTICS SERVER\LIBMFXSW32.DLL FI2=20533656,B5EAA1918FFBDCDFAF91A4895DAC20B6325A9F53D20F343B7E7F05FF95C9AABD,29BC29F7C4116ED33810A85C7DE74532,1,"Intel(R",C:\PROGRAM FILES (X86)\RIVATUNER STATISTICS SERVER\LIBMFXSW64.DLL FI2=32083024,B010C8BCEA3CB12646928D4D1DB98B775308794788CD60D2A0D50E16553C1DD6,D7B5BEF7EC6465C60A43285AFB4C7A3F,1,"Siber Systems",C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\9.6.2.2\ROBOFORM.DLL FI2=31853136,38BEE82901B91CBC2AEB400F8E3BE243EF33E791FC1CD97C7E55FE4C7DA6E369,0272EBD4CAD5EA86809D742103B5144A,1,"Siber Systems",C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\9.6.2.2\ROBOFORM-X64.DLL FI2=3575376,99CE4D141480494740DB8241CE312F4ABA15FC25478BC11321B4924C267988D9,FB6DC54BA321D22A9BC7409DBB4ABA9D,1,"Siber Systems",C:\PROGRAM FILES (X86)\SIBER SYSTEMS\AI ROBOFORM\ROBOTASKBARICON.EXE FI2=105984,5C9A6055049361F3F691F075FF70B547B7CD4A72ECAFF81F4390D1E03C389511,DC096997EDFBDF22B160D3EA272711CD,2,,C:\PROGRAM FILES (X86)\SPEEDFAN\SFEXTRA.DLL FI2=8166536,4E9F8F2C3528BEC9BA78985D8473BCB3BE50E28C4C27363333FDA80DE9649F94,2EC7B1B5E9FDDBA22B4F426170E4C834,1,"SOKNO S.R.L.",C:\PROGRAM FILES (X86)\SPEEDFAN\SPEEDFAN.EXE FI2=37852,37599A2E7504878E29DA2C7167548C1A434B0D6A5BE7BFC647911CD403CFBBB8,BE776E2BF6BE589A4CEF646722ED106E,2,,C:\PROGRAM FILES (X86)\SPEEDFAN\UNINSTALL.EXE FI2=-1,,,0,,C:\PROGRAM FILES (X86)\STARDOCK\START11\START11.EXE FI2=7470592,E78492DE0AB575ADD50B925BFD44216D224D09904A9B14C17087A92FDCBC15CD,D764264518E77CC546A5876C3BCEBAD4,2,,C:\PROGRAM FILES (X86)\STEAM\AOM.DLL FI2=231424,3D7BA6FEDFDFD6E751693D718A21438304690B754D1C5D13C847A829B2423B8B,A09C5FA842FA4456A0B53B46F1050225,2,,C:\PROGRAM FILES (X86)\STEAM\AVIF-16.DLL FI2=2661728,53F79D61DF9D3F2AAB776593883FB1E7995D703CA28A72492E7F690C8C78AA61,E4337EB065F40E89FF534BB8995D9959,1,"Valve Corp.",C:\PROGRAM FILES (X86)\STEAM\BIN\STEAMSERVICE.EXE FI2=355168,2E623D6B64512A2EFE23ABC568F9875F00615AF86043F6FB1D0924A7E1615B77,81F195D9163431EC5E2E2A0376C37E44,1,"Valve Corp.",C:\PROGRAM FILES (X86)\STEAM\CRASHHANDLER.DLL FI2=355168,1EDB8A20ABF885FC4B68CE80161AE5240C854BABFDB74E34D1C7906A672082E9,C56DE84D251EBE325826020CAFFD7787,1,"Valve Corp.",C:\PROGRAM FILES (X86)\STEAM\CRASHHANDLER.DLL.OLD FI2=474464,D2D3C98BCA454A3ACE12DE2DB23E2E6ACC9D2F33635FA66C974C4508D2998654,2A86AFF0673C80304F876335491E9840,1,"Valve Corp.",C:\PROGRAM FILES (X86)\STEAM\CRASHHANDLER64.DLL FI2=4411744,B41CB81EAABAFC792642A5D09A75F13D921E79ECB8FE1942BD9CE0512B2851A6,A79D4CCC1FA8565CF3F662424DB43182,1,"Valve Corp.",C:\PROGRAM FILES (X86)\STEAM\STEAM.EXE FI2=3580352,BC468018CF75DDBEF4765045D0EE089A544CD034026DFFF0829B44F8D819C4E6,6786FED26F9A0B2105C72CDD5A50FE06,1,"Skutta Software GmbH",C:\PROGRAM FILES (X86)\STEAM\STEAMAPPS\COMMON\WALLPAPER_ENGINE\WALLPAPER32.EXE FI2=520000,AA5A302A8714B82E492887A7A3F618DE83EBA983994D3E68399852893B4DEE8F,3BA0599317A6003C90A2E9F4E1E2D414,1,"Ubisoft Entertainment Sweden AB",C:\PROGRAM FILES (X86)\UBISOFT\UBISOFT GAME LAUNCHER\UBISOFTCONNECT.EXE FI2=1060160,B064ACF70CBA8829FADC8A2D9B129ED6447F61E41532AF986399C1D5C350BC8A,FF7E5397C942D1677C6382FA96ADAEF0,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\EPPMANIFEST.DLL FI2=202048,29F589401C1735EEB9918B3C957887CEEBC701BAD5151202DB282BDACFC95D94,DD929C36C1E7F8C46FF9183535D43227,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\MPASDESC.DLL FI2=1003392,BF414AE675B8D0BD9637205D71DF9716F014A4A81E59D6727F4747879A1B8CF4,3F38BCC75B16BA4B5DE93070BF0D435F,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\MPCLIENT.DLL FI2=1276328,EABF19B034122E25AB505139394D294053D4998C18BE5CF39CDCA6820DBD1C9C,791D63B74CEAE60EDB3C6AE89FD0FFB5,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\MPCMDRUN.EXE FI2=123776,5975730AE882DE995F614B8D33E5862FD7676081BBD925448C5F158F334EE4F7,6290BAAC031E30C018AE2E6ED17124D0,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\MPDETOURS.DLL FI2=65920,F5E81884B09D46F82DB4F85AB537F3E009D39B28CFA5E4D3CF2C6414F48DE71C,961C810370D90F2A2FF7A410FB528FCE,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\MPDETOURSCOPYACCELERATOR.DLL FI2=437136,A5D568E7F09772B3417537ACC9878035E0AF72F29CF9AF799BBA66BF2C30A67C,932E8FD7BC5314505A42BE12038D6E62,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\MPOAV.DLL FI2=13704,B13F8884F6903D9DE7EA4337DB576189B51C85B5978A4C7C6434181F8097B0AF,78227D03B9E6B5CD331154B3EFD8AABD,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS DEFENDER\MSMPLICS.DLL FI2=517120,5B9257430DAD12A5A10742FBCD2E6D6FE27265893F43CBE06D5ED7D0234779E0,B65154EA32F01462A7C41FD01DC133BA,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS MAIL\WAB.EXE FI2=44544,42A84CC85C124557349BD5190340ABE2F742E7E14F132034602BB964751A6A8E,9B5BD251ABD2E366D47853E3DD975910,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS MAIL\WABIMP.DLL FI2=67072,5B70D787503CFCE8B6B2D9FFEB49542C6DB4BEAC4639A8F820A1E8472F7C7DBB,AF07ED4B30CC1E3A658B2F85A306A965,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS MAIL\WABMIG.EXE FI2=169984,5782B227A5A39813B1874A709461F34894624396EDC03985B081397951C9AD76,DBEB55B6CE64FDE6FC9A377AB45472C8,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\MPVIS.DLL FI2=1833984,BD56CDF72E7A7F5961C94E0A06D9D5D05508FF28B09919E7A277A79DC9AB47E8,B6AA959CBE87535D1D46F2D2D175F864,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\SETUP_WM.EXE FI2=87040,A78CBED086746233B8FF45A2C37655E2D6E2E7E5411A4B4FD43E7012F1F01E61,3607935048DF9DDC1D022AE3FD3A36FE,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\WMLAUNCH.EXE FI2=102912,9D147C01528662444052FFB2BA8EC9646098B2BCCD20FEA31E0EB27BCAF0BD04,75E03E8F8D7393C397625B848B52C336,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\WMPCONFIG.EXE FI2=167936,2A63608A52BE31E17256A94565EC1378590147510F451E99A1C41507EE6549B9,21AE0AB4298CDC623680ECFDE354372A,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS MEDIA PLAYER\WMPLAYER.EXE FI2=100392,E87844846C483AD1915B829DC27DE62D4597BB018144785367DCE71D1777CB09,84C93FA9D4BDE9652AF396BE70D28C55,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS PHOTO VIEWER\IMAGINGDEVICES.EXE FI2=1994240,B08CABA780B6AA034AC2B82D34A4CBAC6DFA9D1AA00745DD5B6CD60FCF9EA4D5,FEB5ECEA048F20FA23471BF54E51D04A,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS PHOTO VIEWER\IMAGINGENGINE.DLL FI2=1680384,6D4B0661EAA871E9119245F5AB1A1F5CB0589FB32969013765D021158BD2F5DE,BD4B27E29AD9FEB78E9D1871961FB77F,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS PHOTO VIEWER\PHOTOACQ.DLL FI2=46592,1D641BCF7EA512DCCEF34473E8FB17A6928DD375F08EB667025B911128977C5C,79E59F287C8C1E0ECDF38F53019C3E19,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS PHOTO VIEWER\PHOTOBASE.DLL FI2=1583616,02307DE9F594EEF5A3208021F8C4DDC5B432D12C901DF5C2D8327F58089A2ABE,7109FE7E41BB09A7755376055FA76728,1,"Microsoft Windows",C:\PROGRAM FILES (X86)\WINDOWS PHOTO VIEWER\PHOTOVIEWER.DLL FI2=3746856,CEA610FE6E6C8EEBD5D092961C82B67D073EE68F5ED9B2D633F06E871D8593C2,147A5E5D9D76A3654ABB559CCFF6F34C,1,,C:\PROGRAM FILES (X86)\YAHOO!\WIDGETS\YAHOOWIDGETS.EXE FI2=102196,F2F2A653FD360751C71C9F89F74D4D9BB5356EB5471BF9E572794DD565DFB693,9D85C5A847EB0D67CD2DDF20D29C3EB6,2,,C:\PROGRAM FILES (X86)\ZUMA DELUXE\BASS.DLL FI2=1841664,77222E81CB7004E8C3E077AADA02B555A3D38FB05B50C64AFD36CA230A8FD5B9,4E35A902CA8ED1C3D4551B1A470C4655,2,,C:\PROGRAM FILES\7-ZIP\7Z.DLL FI2=557056,8CEBB25E240DB3B6986FCAED6BC0B900FA09DAD763A56FB71273529266C5C525,9A1DD1D96481D61934DCC2D568971D06,2,,C:\PROGRAM FILES\7-ZIP\7Z.EXE FI2=214528,8661E029CAC3FAE0819423AC442B0BAA109C863474B6BE15E4D83D3A7ECFCB13,FDE7CFC05A92C34840EB8519F58E6321,2,,C:\PROGRAM FILES\7-ZIP\7Z.SFX FI2=193024,885D232EB013CF2527795712C5D563AD0BDF7DF46126124F5F81411638FA7760,F9BE893236C2184FEB95094815EEB22E,2,,C:\PROGRAM FILES\7-ZIP\7ZCON.SFX FI2=952832,1EA0839C8DC95AD2C060AF7D042C40C0DAED58CE8E4524C0FBA12FD73E4AFB74,30AC0B832D75598FB3EC37B6F2A8C86A,2,,C:\PROGRAM FILES\7-ZIP\7ZFM.EXE FI2=700416,B9B179B305C5268AD428B6AE59DE10B4FE99CF0199BBC89B7017181905E97305,50F289DF0C19484E970849AAC4E6F977,2,,C:\PROGRAM FILES\7-ZIP\7ZG.EXE FI2=101376,F9B4944D3A5536A6F8B4D5DB17D903988A3518B22FBEE6E3F6019AAF44189B3D,956D826F03D88C0B5482002BB7A83412,2,,C:\PROGRAM FILES\7-ZIP\7-ZIP.DLL FI2=76800,26A5D3D7C632FA7F6F0F518E743F3FFD97B4B4B57F0F158CCDA0E8C70C9DA901,48A5ED45791C51252CFB11D63F72BEB4,2,,C:\PROGRAM FILES\7-ZIP\7-ZIP.DLL.TEMP FI2=66560,62EF98B00232F9D63A647E201ABFB354582D3FBC342EC63DF15B2A0CE514B5A6,CE9564F1A1BB9D09693629DCFAB40356,2,,C:\PROGRAM FILES\7-ZIP\7-ZIP32.DLL FI2=60576,0FD8B87D79828282A2B24C0680ECF6717C3BC284582AF552ECEA8D2E79C91B4B,A9EEE6B1C708789D0441D3D48C82F48F,1,"Advanced Micro Devices Inc.",C:\PROGRAM FILES\AMD\RYZENMASTERSDK\BIN\AMDRYZENMASTERDRIVER.SYS FI2=5864448,E7623CB393DB70B89D6C7C8CF31C5CD8E1C6E90C41B23803DC1D767ADE604F8C,F80A03CA4FDAA670367A36CDB8BDD53B,2,,C:\PROGRAM FILES\ATTRIBUTE CHANGER\ACMAIN.EXE FI2=159744,676ABFDFBF99C8AB92FBC74E13D9BC594F2308A36289AB96554DBBEE610BAE49,F4D051946C31A1DF4F5F85C2D7C0710E,2,,C:\PROGRAM FILES\ATTRIBUTE CHANGER\ACSHELL.DLL FI2=134144,FC7A9844448D2157B2939E4B8DA7C1332BEAC2BF088900BA36F60BD0D68969CD,1F7878F8DBB76F51442A4C96ED991E72,2,,C:\PROGRAM FILES\ATTRIBUTE CHANGER\ACSHELL32.DLL FI2=1229029,5E186F610E4C194A057A902B426DA5962A7B57B72B9BEE2F9450422109580DA3,640CF78EB8A9531AF15A668F1C8488E8,2,,C:\PROGRAM FILES\ATTRIBUTE CHANGER\UNINS000.EXE FI2=14188520,3A6149735BDA9300862E16241E48177AE695FA1FEB87E0DE4CE30F5B88A3C0A3,5E021C4DEB4F1481610C60ECEA0CCE07,1,"Musecy SM Ltd.",C:\PROGRAM FILES\AUDACITY\AUDACITY.EXE FI2=327576,DE1D1BF38090094B702833DDF3A68EE1F5D4AE20CA57F5392FABCF4C49C5B807,4B9A9AF9451D0F8C924276010F2C21FB,1,"Microsoft Windows Software Compatibility Publisher",C:\PROGRAM FILES\AUDACITY\CONCRT140.DLL FI2=495592,B2CFA5938D4F4CDCD7858B323DA1C418391CF84C68FC699655C9B6D14B54593C,86B619CD0E562E2458E284672378BBDB,1,"Musecy SM Ltd.",C:\PROGRAM FILES\AUDACITY\CRASHPAD_HANDLER.EXE FI2=1391592,0A655168D6BF8FF68D537E8B2D4DC9C154BE6D74357DA33E02F161C6FF269956,567D37BDF13006E0618FD5779055AC11,1,"Musecy SM Ltd.",C:\PROGRAM FILES\AUDACITY\CRASHREPORTER.EXE FI2=377320,7F4D2C3C3686F0761328B56F59610858F46EF7A6A6DCF80486BFBC412388EE0B,5D1511BA586BD373493DCBF2A1939806,1,"Musecy SM Ltd.",C:\PROGRAM FILES\AUDACITY\FLAC.DLL FI2=161256,E685DAEED5EFA0EC4B7719DFBCFD875FB6170B94368FDD62FB877D9BA7900A17,B399ABD492485413E599C3C0495F0F33,1,"Musecy SM Ltd.",C:\PROGRAM FILES\AUDACITY\FLAC++.DLL FI2=789480,8F29B4D286654F48F7B75DC79C16ABEFDC378C77B40D6452167E18296CABBFD3,AA6B8C4B204457529F9F2801A4770813,1,"Musecy SM Ltd.",C:\PROGRAM FILES\AUDACITY\JPEG8.DLL FI2=225256,F87FBB6FE4D4DB772CF349CD6813CB02C79443E466FB95E0AC64C10C22131601,6843305EE57A9AE387C1080CB161C8D3,1,"Musecy SM Ltd.",C:\PROGRAM FILES\AUDACITY\LIB-AUDIO-DEVICES.DLL FI2=70632,4FB3B687A4E6FAF7A995701AEAC70B67EA6413BD5ED4572240FF54466008852D,468E656AA86130EA184A3267610E8EF0,1,"Musecy SM Ltd.",C:\PROGRAM FILES\AUDACITY\LIB-AUDIO-GRAPH.DLL FI2=11849448,8586BCAE12BC21ABC75020D8E5C9CCE1EB623A2C83058D2B4141557EA88040BE,EFBEAA7210846F5DA8FF02CF6B7D5DBC,1,"Avira Operations GmbH",C:\PROGRAM FILES\AVIRA\ENDPOINT PROTECTION SDK\ENDPOINTPROTECTION.EXE FI2=132968,D0A918AD60221623BB0278EA94CD6938744617FDBB2054968AFAFC2940648F02,F9D908DE6B166DAC9B89BF62FA291CE8,1,"Apple Inc.",C:\PROGRAM FILES\BONJOUR\MDNSNSP.DLL FI2=462184,17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122,EBBCD5DFBB1DE70E8F4AF8FA59E401FD,1,"Apple Inc.",C:\PROGRAM FILES\BONJOUR\MDNSRESPONDER.EXE FI2=51624,3289901E88E38E1A9DEC202E7A731D1FADF16855349A394D046107AA40C93D84,E5F8138CC87BC199A98BB484DB9B4076,1,"Gen Digital Inc.",C:\PROGRAM FILES\CCLEANER\BRANDING.DLL FI2=39012144,40F456F9AD4351CA9D76FDB0B2F9F3B06231101217822EDB1B7FB6039276453C,D1E5AEAE8C3B189920DF9B4F3576796F,1,"Gen Digital Inc.",C:\PROGRAM FILES\CCLEANER\CCLEANER.EXE FI2=45125936,DC0137A61500A817B0E7D68AE235752F68302A86D01EDB6FEB412D45B18F735A,0571B2AF1165232E867D338F35728B1A,1,"Gen Digital Inc.",C:\PROGRAM FILES\CCLEANER\CCLEANER64.EXE FI2=5937456,F65FCDCB70BD3E1613A6EC23118B076333D74B0ED59897FA2034ED4052E2CA57,518067F5187FFD3338BB52DCB9BCC7D3,1,"Gen Digital Inc.",C:\PROGRAM FILES\CCLEANER\CCLEANERBUGREPORT.EXE FI2=13689648,7E2C5D0FD244A83DAEFF774AE5BABE288C3DB6F55A597FE5C1C55E71CF9E20B2,46F7A248CB7CF6BABDE780058A9CFCD4,1,"Gen Digital Inc.",C:\PROGRAM FILES\CCLEANER\CCLEANERDU.DLL FI2=13565232,E79605397C1A43537081B23B81E08D381617CE3ACA6528EED410F8B168DD7428,035AC84B435BAC28E1677E52B94D4841,1,"Gen Digital Inc.",C:\PROGRAM FILES\CCLEANER\CCLEANERPERFORMANCEOPTIMIZER.DLL FI2=1087792,1DBBA333FC688CBEB7C974AE072AA82DFD3A6AC9693704E062547A3EF74FFEF8,8D9591E641870478BB17EED3FA47627C,1,"Gen Digital Inc.",C:\PROGRAM FILES\CCLEANER\CCLEANERPERFORMANCEOPTIMIZERSERVICE.EXE FI2=2340656,8E4FDC237929CC482BEA5A2DFD9D64D3AA8CFF145B720CADF56E212384A75B96,27D7EC726CB89F75DE7622B0D5A378D1,1,"Gen Digital Inc.",C:\PROGRAM FILES\CCLEANER\CCLEANERREACTIVATOR.DLL FI2=193328,760F3CF5462ADDB682772975799C316D4B515EDF1B8DAAAF2DE08B98FD461133,02FB63BC3FE511B7CA23ABA523F5B930,1,"Gen Digital Inc.",C:\PROGRAM FILES\CCLEANER\CCLEANERREACTIVATOR.EXE FI2=829408,E531742A357907248DE84B99F68ED7E8EDD70E7CA918D21B24CC17EE4C128240,943A4F169E9A3303ED6DEFC1AC3690BD,1,"Gen Digital Inc.",C:\PROGRAM FILES\CCLEANER\CCUPDATE.EXE FI2=219136,06F459D714D7D7FA7006C9FD3EAB6324672D11C5B2574A506E29BE1B72CA004E,EDEF8ED9C343E17E2BCC7B520AB9A494,2,,C:\PROGRAM FILES\CDBURNERXP\BASS.DLL FI2=638976,5A610A3789ABB045B9C6757C4CEF38404834FC6370F756624D1B894679849BA7,5A8BA687CE7AE47B8CE2AB429D7D75ED,2,,C:\PROGRAM FILES\CDBURNERXP\BASS.NET.DLL FI2=9416,F57C2E18ACEE1A13BD9BC6A442A9AD7A10DEAE2C0709A653FA10CF342586CCA3,6B6344CD7EFC4916F58D177045674FC9,2,,C:\PROGRAM FILES\CDBURNERXP\BASS_ALAC.DLL FI2=81408,BCC5B1C553EC2A517343757ABA5FA88FE2989188D6617070003AAF0444540172,7E62313B7768FBF67A308172313E609D,2,,C:\PROGRAM FILES\CDBURNERXP\BASS_APE.DLL FI2=35328,3C8F539FB469750889B7516D2B86461512948D35751AE49EDF65E8B35FF4A0ED,6631ABB7411AD61329CB32C61976A387,2,,C:\PROGRAM FILES\CDBURNERXP\BASSCD.DLL FI2=48128,02542A713183BBD4C052A9386A214816ECF0382BEE868E346B1B6559A63AAE04,06D55BB2B8A45784E23128B994521DC0,2,,C:\PROGRAM FILES\CDBURNERXP\BASSFLAC.DLL FI2=33280,10AB5578587AAC4F17884EE731A7A1BE036CD5279790DA10FC39F93FDB69815B,11033385DC95A09288A960B2C7395B89,2,,C:\PROGRAM FILES\CDBURNERXP\BASSMIX.DLL FI2=103424,A3E24B9F88BB95F5E76775A9FC2C947E8869BA21F63396E809FCAD9C91F18432,DDE29DE0555F5A6FA353FEDA40598A96,2,,C:\PROGRAM FILES\CDBURNERXP\BASSOPUS.DLL FI2=34816,1A19626F435CBAD3834B57F6171420575861116FD899BADF1190A6AF2FB1D05C,EB2E1CBA9F72560350E41A7F7DDF2657,2,,C:\PROGRAM FILES\CDBURNERXP\BASSWMA.DLL FI2=59904,F2CF9AEE96231CAD7C1AAD1E0551FAB53D4EDC210F191647B97D11FD7BBAD33E,4FCDBB3424EE50646FE748D44417F461,2,,C:\PROGRAM FILES\CDBURNERXP\BASSWV.DLL FI2=1743992,35953582429C759F3F0ED31BCD07220F13416887D513DE790B04FA420FC6B317,24603158A035AC81BE8CCA81922BFF64,1,"Canneverbe Limited",C:\PROGRAM FILES\CDBURNERXP\CDBXPP.EXE FI2=760632,5CD5193B50CEBEFB65DDFA227E2806425B35327D6B545145C6E65A946ED43928,F239F9186BBF10EF438B0B0C5A71D9A9,2,,C:\PROGRAM FILES\CLASSIC SHELL\CLASSICEXPLORER32.DLL FI2=885560,363809B264B915BD640580F05195A61F308B351555667072239835EC51F4405C,A7BDF136014CC2BE258CCAC078F437EB,2,,C:\PROGRAM FILES\CLASSIC SHELL\CLASSICEXPLORER64.DLL FI2=98616,58B62BA62C53CCED2B8AC6AFAF730E04616F574D63A69E50732F13FA2FDC0F85,3DB84D449984C7E980C25DA3F265186D,2,,C:\PROGRAM FILES\CLASSIC SHELL\CLASSICEXPLORERSETTINGS.EXE FI2=104248,F37F3BD363D1695E0A151C3302FCFB8BE770EB107B066D05F10C4FB6C946318F,A1C24588503CD2C1690EF94BBF341829,2,,C:\PROGRAM FILES\CLASSIC SHELL\CLASSICIE_32.EXE FI2=103736,625BB2074498952E01A21C2D54B9B9A4C0841F743E038799B907126980A984BE,CCCA2C0E6653506652437868D1049817,2,,C:\PROGRAM FILES\CLASSIC SHELL\CLASSICIE_64.EXE FI2=507192,336F2689D81BC7C2B623C1E1FB67B6D32D4B615DCCE94DC9E37ED9E1BF59EAC7,D82C55EF5C9F4DEA2151907D45040B4A,2,,C:\PROGRAM FILES\CLASSIC SHELL\CLASSICIEDLL_32.DLL FI2=551736,20280766ADE26AEFC3C1F9FB69F9C7A9D8D85CEDEEBF6B8B156ADB49F1EE3C0B,CC19CD33A861F4768E2A747D71AD5F79,2,,C:\PROGRAM FILES\CLASSIC SHELL\CLASSICIEDLL_64.DLL FI2=402744,C3209FD73A748A066443CAF1A87D002451D67A33BA33B51BADFC181F25BD5603,4F0018CC8BA1F9FBA64A873FD526775E,2,,C:\PROGRAM FILES\CLASSIC SHELL\CLASSICSHELLUPDATE.EXE FI2=163640,A99ADF420EF6498E2E665703FCD1DC76BDBAA5A2E1F38D72F7229A9C3CD932E7,6776A3D1C644BFE33932189B00165CAF,2,,C:\PROGRAM FILES\CLASSIC SHELL\CLASSICSTARTMENU.EXE FI2=28288,3A17D7540AF4F75B90499063247369B39D28E2BEC6E1952F263747C93F32EF81,07B43C74E957146323439ABF129B27D3,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON FILES\DESIGNER\MSADDNDR.OLB FI2=171096,4A3EC37FBA5693853A70D25F19FCC33DFA424D02EA2686490201EB4FEC50110A,D8DB3DC2E416EAF9DECC772416F71B62,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON FILES\EPSON\EPW!3 SSRP\E_S11RPB.EXE FI2=656520,A82724361D48C77C55F46BA63E0A57CABB6F1041635A36A457C39F5AD10E039F,CA60584B1C0DA9895BEA80081E66DB7A,1,"Logitech Inc",C:\PROGRAM FILES\COMMON FILES\LOGISHRD\BLUETOOTH\LBTSERV.EXE FI2=28617448,077898E9DF17E08E972AB3BFFF2474B4D93CA13AE0C879B9E9DE12C33CEA54A0,5AB6DBE48851262A55D2D1C775249D2C,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\CLICKTORUN\OFFICEC2RCLIENT.EXE FI2=13861080,226387EAE483651E1859F1FF0442CF440E3102C0FA84FBF392FE3DA3A1587991,E89BD3DC1E67D932DCB4CE915F0FF155,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\CLICKTORUN\OFFICECLICKTORUN.EXE FI2=52120,F1166F637C52B385C23E6A013ADD93BE05DF199A47173D6406678B2D4239654A,F656D12D023313C4251D43B14866A34A,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON FILES\MICROSOFT SHARED\VSTO\10.0\VSTOMESSAGEPROVIDER.DLL FI2=925696,0C1D0648FEC5522D249B99C89D83A9448B9562FD3B0B96BC9A3D4B2BB28273C0,1F69891DC6F76EB7BBA8D02D80A765B5,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON FILES\SYSTEM\WAB32.DLL FI2=974848,10108515DBE170A19C3738F4264E3F6A1F9A53A3CE1D9AC952CCC266751D5946,9D1516D964670B41D7675287945784F3,1,"Microsoft Windows",C:\PROGRAM FILES\COMMON FILES\SYSTEM\WAB32RES.DLL FI2=6084688,D935950F834F17576D3824E15C85140AC9DAA1163F42CA42288E44778BA887CB,CA2DCDB084A94A001CA4E990D89FB494,1,"CPUID",C:\PROGRAM FILES\CPUID\CPU-Z MSI\CPUZ.EXE FI2=2643440,7E232324354FB547E6AB58AE9BF92DE7E94DCBE7FDCD84B52D0B6385AE37C1C7,5D14D19F1744C9DD8AE755866906B4E7,1,"Open Source Developer, Noriyuki Miyazaki",C:\PROGRAM FILES\CRYSTALDISKINFO\DISKINFO32.EXE FI2=2864624,A66E2523E65B90B8A6003947422E007714174D606981D0B1124E4BFB37D1418F,AEFE7A99EF3C9E40D8BE45609D9B8080,1,"Open Source Developer, Noriyuki Miyazaki",C:\PROGRAM FILES\CRYSTALDISKINFO\DISKINFO64.EXE FI2=3211248,6399B9738F165E571DC0648AB1023AFF6AD0ED9D2F54553F4606A17205A6B1F6,01693CDF408298C7DC9AAB9E698563AE,1,"Open Source Developer, Noriyuki Miyazaki",C:\PROGRAM FILES\CRYSTALDISKINFO\UNINS000.EXE FI2=146592,A81DDA25C2193CA72F6CDE2D8B1317A896FF0029387A15AE8E8C25B9D1886591,01E656B7C01A9D6554AF55B233FE7A6A,1,".NET",C:\PROGRAM FILES\DOTNET\DOTNET.EXE FI2=8680960,AB0BBF70457A409762F89EEE2952F48D6CD62C31D6DBE39B68D7813A733626D4,703C3E105FA25CF38012E3592CB02118,2,,C:\PROGRAM FILES\DRUIDE\ANTIDOTE 11\APPLICATION\BIN64\ANTIDOTE.EXE FI2=3967456,C29AF3C14926D10B95DEB84FFE5ADC9AC2C3A5096555F1E6289A85CBED77B581,D45DB79DD593B91B41ABCFEAEF8D9583,1,"EasyAntiCheat Oy",C:\PROGRAM FILES\EPIC GAMES\FORTNITE\FORTNITEGAME\BINARIES\WIN64\FORTNITECLIENT-WIN64-SHIPPING_EAC_EOS.EXE FI2=39979008,01FCA440167B751F911E507DD1648DB7FE4E62946CD761181C45E3F07AD7FE7B,E2B7661851DF4EBE4252E8ED1E09A360,2,,C:\PROGRAM FILES\FILE CONVERTER\FFMPEG.EXE FI2=1260688,16CFE7D3D5F1BA4F8033067FF81AD5C0559FA6E52F80086E4D326FD6A43CC836,75C111FEC0F2C43EF1B0E39972E51D8B,1,"Open Source Developer, Adrien Allard",C:\PROGRAM FILES\FILE CONVERTER\FILECONVERTER.EXE FI2=13312,C167F4D4A120E4D93213153A2BF6F0786B1FFADA3DF75A431E0099F8C64DD2A5,6F5CBAE2E7A6EC94DB518C2F29234A9E,2,,C:\PROGRAM FILES\FILE CONVERTER\FILECONVERTEREXTENSION.DLL FI2=16470016,BAA7F278F06F753184635EF6278132A0DBA9718412D83001EBD471993BDB3A8F,8FA9DCA49369EB377A7E3EC3706904FC,2,,C:\PROGRAM FILES\FILE CONVERTER\GSDLL32.DLL FI2=143360,F28A10711E878136A9408BB7CCF62A908C4DCFE4D84ACC1F1929F954AAE481B1,CA98080CB6706A2FE7D625CA372DA94C,2,,C:\PROGRAM FILES\FILE CONVERTER\GSWIN32C.EXE FI2=11276800,F7ABB8502DA982015D542944588A7AC23564E59E40D79838C55B57C88A4E15D7,C3836FA02B1C54DB5D6EA1370DD5F154,2,,C:\PROGRAM FILES\FILE CONVERTER\MAGICK.NET-Q16-ANYCPU.DLL FI2=28160,7763DA37FCA67BCE817F9A5EE01BBD2BAF82B1B1BE718E30E8CEFC16662D3232,4C885E6E7070FD8EC201EBEF9C32138B,2,,C:\PROGRAM FILES\FILE CONVERTER\MARKDOWN.XAML.DLL FI2=364544,D420E9846F1367DA334612FF9EDBC7EBB8A7E77A9DE3477A2D0285FF97D58471,FB15B4CE8D6D0C2CC3CAB076043CAFAF,2,,C:\PROGRAM FILES\FILMOTECH\CEFSUBPROC.EXE FI2=975360,08B9C2D135B7DA8730F5B7460F87F3431856AA6F142C4EFC3BA67BD924648A8D,5CA80AC02A6AF70678E9D5F224F064D2,2,,C:\PROGRAM FILES\FILMOTECH\CHROME_ELF.DLL FI2=4346120,4432BBD1A390874F3F0A503D45CC48D346ABC3A8C0213C289F4B615BF0EE84F3,222D020BD33C90170A8296ADC1B7036A,1,"Microsoft Corporation",C:\PROGRAM FILES\FILMOTECH\D3DCOMPILER_47.DLL FI2=18547200,153F4062776127DD7D31E7140D8B28D6F847D2CAA404790B69285E0919B39AE2,347FE6BDB71FBFA558313565FDFB7EE6,2,,C:\PROGRAM FILES\FILMOTECH\FILMOTECH.EXE FI2=1744992,2303207C9CEFF9EE93CBFCD0AF1BA14D92E393DB5824F7307F36D39290AE9CB2,E2656F50A127CCFC6A3FA332BEA1A55B,1,"Google LLC",C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\129.0.6668.101\ELEVATION_SERVICE.EXE FI2=16480,BE11195AB035E9659BC9E4FDFBDA309E737417315DC852280757CB8F9C42822F,86BCCCC8803E64E156B18667EDDB0D4E,1,"Google LLC",C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\129.0.6668.101\EVENTLOG_PROVIDER.DLL FI2=2764896,60EA1DC68535A32B1993FD41C61734BD74536FF95B5449504F741FCB3BBB3842,12C5248A52D365E94F3525E65D56CB35,1,"Google LLC",C:\PROGRAM FILES\GOOGLE\CHROME\APPLICATION\CHROME.EXE FI2=345600,6624B333212DF859FC9CE56FB1F9D9E861A502CD0A791344270B02A8B1D1A172,C1171ED8F53D6B625D325D9E8AD8EB54,2,,C:\PROGRAM FILES\ICAROS\ICAROSCONFIG.EXE FI2=391168,46B602AACFDDD22148019438C2A4376E3F681D69110023B485CAFE8F06DF5ACF,B24D1D3EB477B59A3347B136EF305B2F,2,,C:\PROGRAM FILES\ICAROS\ICAROSUICORE.DLL FI2=3506237,FFDE4441BC312316252730C2F7CEB7EEC8BB3A84D41E3E2ED3ABF96EF489F5E6,EE1A5B5532402B158B82CB684C96D238,2,,C:\PROGRAM FILES\ICAROS\UNINS000.EXE FI2=81920,7ECAAEFE16F9080829A37B8D2F56725B8A07FADB66E851C617AC723DECBC1AC8,B61A06703B0141997642D7324A93D79C,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET EXPLORER\EXTEXPORT.EXE FI2=73728,54978132610036C9DA5495A6FA99AEE15C50ADD8E341050B4F4CF0553051A468,1798F485ECE20C6D3909D880CDCE5AFA,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET EXPLORER\HMMAPI.DLL FI2=540672,126A794895C84CF0916685BE4C7AB91DF0240490E85B7BDEE93E5FFEAD388BF6,2F2A79177BC078A77D820FCE0767E672,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET EXPLORER\IEDIAGCMD.EXE FI2=331776,D265094E6A323EE9DB082152461974A054929CEBDAD1D873DFB0A6A85D14D3A6,4B42DF683AA7E137F4405210ECD8B6A5,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET EXPLORER\IEINSTAL.EXE FI2=245760,4E307BC9C49A98187E384A9309FBBF49E4FDE50B2B989CEDE11BB8EB2C8DEBDC,E228CCE3ABC7E2D8E179EE3B50FA3A0C,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET EXPLORER\IELOWUTIL.EXE FI2=434176,DBCA27F8535F5A3DA7217C675BFDA457225AC8D2860F351FCF80C9EA50EDB77C,86EF7026587EBC1C2E3D8F84A516A1DA,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET EXPLORER\IESHIMS.DLL FI2=845392,D0643C90DC52EAB58F45348B62882DFFECD278D2C0E0ECF8DC038B186F22F94E,CE571F7C79F5A53BF5D1C84D64704124,1,"Microsoft Windows",C:\PROGRAM FILES\INTERNET EXPLORER\IEXPLORE.EXE FI2=4917504,67DFA5D3B0E560B0EE82409D092791CB5390C7D60BECC76572D15D935D1C9CB0,B3024FC800E29983093C6D7064F363B3,1,"Microsoft Windows",C:\PROGRAM FILES\LOGIOPTIONSPLUS\D3DCOMPILER_47.DLL FI2=2892032,64ECA10BF33713F31ED6B3C58E17F318621812232E5244A144A1636D7E6F8AD1,9D2A56034D41549D178E47C7DDBDB6A8,1,"Logitech Inc",C:\PROGRAM FILES\LOGIOPTIONSPLUS\FFMPEG.DLL FI2=16361760,86731F3A4F935C0A9E04FAAA2E66BF9027B7F7B8F24C09401C07D3482E4B54A7,5DFC35446CCBA68E9431B6D6D9A6D0DB,1,"Logitech Inc",C:\PROGRAM FILES\LOGIOPTIONSPLUS\FIRMWAREUPDATETOOL.EXE FI2=14597480,CCB057B314B689FBF1EB97A92FA026AB8D965DBBD91147A3C56F515E6EC60A58,7DB3AFC61AC53A3485372AA75D48BE78,1,"Logitech Inc",C:\PROGRAM FILES\LOGIOPTIONSPLUS\FIRMWAREUPDATETOOL34.EXE FI2=491264,B4980A41D6F57B4ED9CE0DF760015076639C51720978E0D5FACECE0725C063F2,514B1BD1F0164174E564227D6F0344D1,1,"Logitech Inc",C:\PROGRAM FILES\LOGIOPTIONSPLUS\LIBEGL.DLL FI2=7503616,8EBE32668165B18AC08C4CC2207CCF2582C84848D63D46465A5A00BA1DEFDD52,58092AB06E4231409BFA25EF53B49614,1,"Logitech Inc",C:\PROGRAM FILES\LOGIOPTIONSPLUS\LIBGLESV2.DLL FI2=18168576,6622840F0BBE22581808F51EF523C8BEF4233A10093EDB9FF04F9DE2966A81A1,31C3388F982377BA29CC356F60BDE525,1,"Logitech Inc",C:\PROGRAM FILES\LOGIOPTIONSPLUS\LOGIOPTIONSPLUS_UPDATER.EXE FI2=368640,94AD10AB400EDE18FAD8660F5314BA130503C855FE10B2AB333BFC7532A4E501,CC4684DE5C46FA2619913150839EEC25,1,"Logitech Inc",C:\PROGRAM FILES\LOGITECH\SETPOINTP\32-BIT\SETPOINTSMOOTH.DLL FI2=3138560,ABD2DFA2CC1610280C21A96E8C9F19E437524BBA781A36E596B4157469A40E0C,96E2057052F399D6FA3F98769F62DF2C,1,"Logitech Inc",C:\PROGRAM FILES\LOGITECH\SETPOINTP\SETPOINT.EXE FI2=437760,278D219DDA0DEAEAA8A48993ECC74EDF5A6105AF82DBB2960BE56045DBE7BA1D,005B66457589DC32DB5000A6C4956917,1,"Logitech Inc",C:\PROGRAM FILES\LOGITECH\SETPOINTP\SETPOINTSMOOTH.DLL FI2=625664,530999DFDDCB85BF89117C9989354E5FD1EFE714B378D7AB05A618A59F1029BF,83E4B75D7022F34C1C8F4A18AEA49EE3,2,,C:\PROGRAM FILES\MEDIAINFO\LIBCURL.DLL FI2=7540088,C09118215E30F38301BC271B0AD41DDF9046565298D6557B7E15D175341A9578,B52B1E6464FE80B10596B081C9CE38E8,1,"MEDIAAREA.NET",C:\PROGRAM FILES\MEDIAINFO\MEDIAINFO.DLL FI2=6072704,F001537D50DA6B193454E44F63D7C2E28E693A17571C88AE56BBDF0E195BC84B,31091D49827F50B02A1F8AB32E426C9F,1,"MEDIAAREA.NET",C:\PROGRAM FILES\MEDIAINFO\MEDIAINFO.EXE FI2=6546304,7BBFD7083F26B9EB1844811443017490EA7EFEABB5AF5E612FBA9F67C2696BD5,253104FB03C2F2C98234391F0CA8C57E,1,"MEDIAAREA.NET",C:\PROGRAM FILES\MEDIAINFO\MEDIAINFO_I386.DLL FI2=155008,E9EDE8FD931DBE596ADE70F2D33D7157FA14122272BBC665EEC2E74D3E8111FB,00E313F847FE456DF654A4BA37E22D19,1,"MEDIAAREA.NET",C:\PROGRAM FILES\MEDIAINFO\MEDIAINFO_INFOTIP.DLL FI2=413112,AE978BDAC349B6F7C3D45921378D5825A1ADA39EB5F1A5FCD3614014A69E5B64,FDCFC5F0938AD65AA678280C150838D1,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\1036\LYNCDESKTOPRESOURCES.DLL FI2=2933680,53824F4160AB7151CF5348234334EF8CD61F89E2ADCC3A721F75233E8F1FB2EF,EF8E52E8AE124EA2DE9E4C40299A97C2,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\1036\MAPIR.DLL FI2=1300328,6BD60A5B072ED1855FA804D316B5AA8BC97E32C285A45800AC4AA2AF573BC044,FFE42B98AC4C693CE27FDAE889A740A9,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\1036\UCCAPIRES.DLL FI2=69703272,E2B4D426F7A94792C0088D5B210E3BF2D6FC3627ABDC5E5272C62B77858EBF03,4E22C3A2807CA84804DCC37337682A0A,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\EXCEL.EXE FI2=213104,BE5E26469CC5E368FADDC75A59F595A763B3EC11A0D675BD5969A214DA933DB7,E3B5CB23DE4E34C552B693BF8518FECD,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\OCHELPER.DLL FI2=312520,1FEE320A9BA89A43FDF300C770DDE1F577CF9E5AB062B4008519CFAE926445B9,223A2D2AFE4C5065324715531A18155A,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\SDXHELPER.EXE FI2=1638040,0783896C300C3D67AF68DF563EC70EBDA533A95544242EC1F877DDF631DF723A,6962F56D3322FCDFBFA4DB6B3C8E4B38,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\OFFICE16\WINWORD.EXE FI2=126504,F06712D02D91B6617F013749896764E122D2B381B7E0082A0DE049D52F4F1E4F,F0171416FD68C54A9B13B3075DA1C514,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESCOMMONX64\MICROSOFT SHARED\DW\DW20.EXE FI2=81061552,4B9BDB02FB65C01985A3420FEABE717EC122D5EE20837BE3B655AD07271C9CE6,7B70741348465742BE4A0B9919145CD3,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESCOMMONX64\MICROSOFT SHARED\OFFICE16\MSORES.DLL FI2=593552,AF0CE15D317E23BB0208117427199F98D6AD6A73F6D30F13419A81AFA6F2FB77,08D231C01A45B75BE12048FD3C953D66,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESCOMMONX64\MICROSOFT SHARED\OFFICE16\MSSOAP30.DLL FI2=187328,3010A6BBCA5F952A239CC23A9B7153694F9510B1170D59BA263D2C6EB6812003,81B539AD9AC970B92FB6DFDCC729A79D,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESCOMMONX64\MICROSOFT SHARED\OFFICE16\OPERFMON.EXE FI2=66000,8B4AB2C2C98CE08C08213919DA0A4EB3A8DD8EE736DB99216741E81093578CF3,C309F10FEB5A08FC4B078EEF195D948C,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESCOMMONX86\MICROSOFT SHARED\OFFICE16\MSOXMLMF.DLL FI2=235048,51ED474138AC5F22E12A1269B3C12C14FFD793231D22D62F50BD643E0417362B,3CB3AA41D1D7EA7CF6EFBB6F745B9327,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESX86\MICROSOFT OFFICE\OFFICE16\MSOSB.DLL FI2=169512,97E8E19C94FECE77B79FE84FB094B5AF09B3CA157952AC8FBA31E4452374325E,585BD79F44A722E8FA74946CAD0C1C39,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT OFFICE\ROOT\VFS\PROGRAMFILESX86\MICROSOFT OFFICE\OFFICE16\OCHELPER.DLL FI2=3525136,5ADF3DEE8A626B112288E4239B2DCF1B34210A54299CB3A2D5B62AF8916F7F54,4CABF00246BA122074D70BD22144EF6A,1,"Microsoft Corporation",C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\FILESYNCHELPER.EXE FI2=1641528,DB100748EE726020C4A56AE9739D6180CF2E91C3B3A4F2DFD1E4563DFB1F8F66,BE9CCF3BC7B4C7B1AECA5EE90F15D631,1,"Microsoft Corporation",C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\I386\FILESYNCSHELL.DLL FI2=3869200,DDE70E245EEC050A81A81E7CDB379ACD4E3306A3CE0E5024C3C7BBA310BB78CC,79EB892F389781D45208D6D541C0381C,1,"Microsoft Corporation",C:\PROGRAM FILES\MICROSOFT ONEDRIVE\24.186.0915.0004\ONEDRIVEUPDATERSERVICE.EXE FI2=4919312,F943E4FBDA72778375F72E6BCD8E1C0A63211A291955A60835EF3EBF72C2E4E2,D9B759F9D4F0C763AAAAD73718590240,1,"Microsoft Corporation",C:\PROGRAM FILES\MICROSOFT ONEDRIVE\ONEDRIVE.EXE FI2=4209176,98C2AB238E4D1C27384FB7DA99B1AE184AD82E1F3AAB44AE9D951E0440A32A15,20501AC7AA3DA7ED8E2418B5F25A4638,1,"Microsoft Corporation",C:\PROGRAM FILES\MICROSOFT ONEDRIVE\ONEDRIVESTANDALONEUPDATER.EXE FI2=349656,D8F6AF58851934BF0EF9C4989A6FF99FABC8CB5847A4756210F869E1C4E92864,CDE43394101F91F91781A7726CE18E2E,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT UPDATE HEALTH TOOLS\EXPEDITEUPDATER.EXE FI2=509408,BC23949DB1F6D382132CE182AB3D34775BA73D8F423AFB9790CCFB25665CB5D0,982EAD664D02893904AED4B19F466D5E,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT UPDATE HEALTH TOOLS\QUALITYUPDATEASSISTANT.DLL FI2=492912,EE5D10C9F99AD0EED081A2578C0DE1943B79FD09EFA526B243AC5456FA841A5C,1F851F0AF767EBB8CE51D9A6A80D5202,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT UPDATE HEALTH TOOLS\SEDPLUGINS.DLL FI2=402904,864D7F3B1B6E95061DE663B1E249FFD2CD97F8F5F87A2A20D29CBCCBB3E429DD,BF74011ED9E17E6B7B759D7CEB2D48D1,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT UPDATE HEALTH TOOLS\UHSSVC.EXE FI2=202216,EB1C77EC0BEB999DB7C3FD9F3B974B7BABA85739F5DEFF2FA9A70305FA3373A9,2E01F7636CC403199E1521905FFB9F70,1,"Microsoft Windows",C:\PROGRAM FILES\MICROSOFT UPDATE HEALTH TOOLS\UNIFIEDINSTALLER.DLL FI2=32320,2A1E0AEC42A6755F26A783A5B86B8478C94E4F74F726BCCB598B8CDE3D48050A,2061FE6D8F4303C2BBDD94B2FA40E839,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA FIREFOX\ACCESSIBLEMARSHAL.DLL FI2=2168384,4F357CF1071238AE06DC4F9434E3C39819570C4CD5D2599C73DBBCFE0C4583EF,E52082B01054DFC41EE714C4152BD03E,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA FIREFOX\CRASHREPORTER.EXE FI2=34368,82A2DDDA3F4A1A3CA697DA38043720447EC4B4462D7A9C3FEEBE07BDEEAC8E55,19AFB114F18622D98941E826EE73F2B4,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA FIREFOX\DEFAULT-BROWSER-AGENT.EXE FI2=672320,9725AFC685C8EE135701E140A83B94FE7D958360A1F546215F7EAFDFF5E53A83,571814A7939D001662BBA7760BD0B187,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE FI2=32320,781999421D4175F1216626FEB481F2A96546134EAA37176A47BA31AE73BC159C,FBB44566F49C7B583B7E3B052C0B4059,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA THUNDERBIRD\ACCESSIBLEMARSHAL.DLL FI2=1300032,215D63D0B6A470520DF6DB9EBC0E2CBFB4D8C2292BDD2DA28CFACEF6BD461899,698D8763B97CAF52F36F06970388F8DF,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA THUNDERBIRD\CRASHREPORTER.EXE FI2=847936,B42DF16DEB58C3A4CA98799FCD0D5D85B7DDE425271B4B8A18746D9B808881CC,08D6A125D9821464A34F7E18EFF25365,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA THUNDERBIRD\FREEBL3.DLL FI2=9403456,DFBCE56C6EA3A198F34CE30A990ADDE6E09EC9179DF6CC595B035D62593BEF26,E7710C4068955C41D095042CD0F132ED,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA THUNDERBIRD\GKCODECS.DLL FI2=463424,7800A017B520DC16D89908820F585B7296BD64FA018454D872FF69E451C71E09,03B7C305A402081F8A0AFB90D6189636,1,"Mozilla Corporation",C:\PROGRAM FILES\MOZILLA THUNDERBIRD\THUNDERBIRD.EXE FI2=4296704,FD3CC271308E1C1FD21821E0ECAF29498EDD46839A4A2712B2FAB7AA96B755E2,DFACE0E54E6F3FA1DC0092B6B16F390C,2,,C:\PROGRAM FILES\MPC-HC\D3DCOMPILER_47.DLL FI2=2401112,84B900DBD7FA978D6E0CAEE26FC54F2F61D92C9C75D10B35F00E3E82CD1D67B4,7160FC226391C0B50C85571FA1A546E5,1,"Microsoft Corporation",C:\PROGRAM FILES\MPC-HC\D3DX9_43.DLL FI2=7110584,FF4CC942A2BDAF3D32D26B8F69074FA880619FE3B67B6279C12DFF00E1B16185,F338ADD9DB1EA3691D27A0D0B7A02A12,1,"MEDIAAREA.NET",C:\PROGRAM FILES\MPC-HC\MEDIAINFO.DLL FI2=13305856,3AF9CEF2F6AD42677F8C85D23183B536BCEE6A550F239FFB472E39D3676AE5FB,54EAB99D7C5D19AAEA8070329DAF8C81,2,,C:\PROGRAM FILES\MPC-HC\MPC-HC64.EXE FI2=2526720,773BD1E10D9A1521A08607BEA45619096BB4352FC63FACB3CB734313C455E06D,2E8ABB3157E2127333B4F48770754B9D,2,,C:\PROGRAM FILES\MPC-HC\MPCICONLIB.DLL FI2=1081896,4D11A12825E6D448C83D8AAEDEEB4E23A3D1486716B203D93B74C73639E88246,C00E16DC054D442C06141AF9238B7045,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA CORPORATION\FRAMEVIEWSDK\NVFVSDKSVC_X64.EXE FI2=1673768,2CFE20980D45DB9B57CABEC854CE7E68017CC6C24251B5FAEB7FBEF9FC3CF5F2,938C38E03F4EA6D1815BD6EC0DD717E2,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA CORPORATION\NVBACKEND\NVTMREP.EXE FI2=1277480,2932764FA104282212BE2459F15C183348CD2A634E9ED64E13E79B2AA493C25B,8CA7315B3C93E20905F278E03F1DF518,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA CORPORATION\NVCONTAINER\NVCONTAINER.EXE FI2=3347496,AF99C9B788F40568F8EFAFD353DDBAC64E57E330BEBECE04755AA649E6B6C3A7,8F8FB1F075DD81BDFB5C5ED891D5AC66,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA CORPORATION\NVIDIA GEFORCE EXPERIENCE\NVIDIA GEFORCE EXPERIENCE.EXE FI2=3347496,B3A880436CFDB48270B6E8CCF3A9148307C728C3AD292526275C21C7E066288C,5A178FF3EAD8C2169A229ACC548DEB56,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA CORPORATION\NVIDIA GEFORCE EXPERIENCE\NVIDIA SHARE.EXE FI2=843304,372179218485EBD3F8BCB2707023CC2B132070FF3E521884A50C50F2D6A990AD,753488D92BC9208018B973D9126BA966,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA CORPORATION\SHADOWPLAY\NVSPHELPER64.EXE FI2=908328,72175F8E8F36B5AF60F80C04B6F2A645FD4B1B95228634DF1054FBE860AE0E7C,AA73170B80A83B6CBDF6D92F1DE91B5F,1,"NVIDIA Corporation",C:\PROGRAM FILES\NVIDIA CORPORATION\UPDATE CORE\NVPROFILEUPDATER64.EXE FI2=2375480,8821F3B4EF632B6B9261F15005CB063AEAB05AD54388BD37613FA41555D3DDBD,A6B77BB7FD7A271A8568FCD738A20E69,1,"Nenad Hrg",C:\PROGRAM FILES\Q-DIR\Q-DIR.EXE FI2=21168,646DE01C7CD522ED530B72F828820B7046BF406FDADDA4C062A998ECD1FF2A1D,E7FE790EEA98486949D426AC4722B25B,1,".NET",C:\PROGRAM FILES\SURFSHARK\ACCESSIBILITY.DLL FI2=264944,A96CDB651C862120489B30B40A716C3F20B772AC4BA8FC70AACCBB1A568005F2,3ABAA006E1842B5A3CBED2A41476CAE8,1,"Avira Operations GmbH & Co. KG",C:\PROGRAM FILES\SURFSHARK\AMSWSCCOMM.DLL FI2=377792,706F5EF75810995FD3A26E3FEAD6F5275611AFA406538158EFE8A27DD980138E,31AC47DC497887B9353E8302E3947C43,1,"Microsoft Corporation",C:\PROGRAM FILES\SURFSHARK\ASPNETCOREV2_INPROCESS.DLL FI2=230912,20696945AA6B4DE87BF0CC9BEC75EBF8447E9148C11522849F86FB0D92D5534A,40B3B404B4CBC42A107B18705367BF37,2,,C:\PROGRAM FILES\SURFSHARK\AUTOFAC.DLL FI2=14336,3A1396EE4D7868F28FC49EDCF3B0984B7396BA6F5FE102979DDF53DC1244C326,10AD65DCED873A4D7F1E85DF7692CB04,2,,C:\PROGRAM FILES\SURFSHARK\AUTOFAC.EXTENSIONS.DEPENDENCYINJECTION.DLL FI2=88576,DD4657DE48746D207E3B5CD0197D7C9FF8314A75FEFE0A5DECA9CA8F5F57BC1B,E8DBE1697E02CC03ACE76579CFF225C7,2,,C:\PROGRAM FILES\SURFSHARK\CALIBURN.MICRO.CORE.DLL FI2=18432,CE1209E1A08F40F4F88C7A31A9F7FD08CE41182E95563C2B77727D366B080BC2,24EC1BFB69CC48411BE0303AD895196D,2,,C:\PROGRAM FILES\SURFSHARK\CALIBURN.MICRO.PLATFORM.CORE.DLL FI2=95232,FC91F484204DF3992FC60FF2E5E09865654BC56B1979DCDFB17821ECC4D4CAFA,7AF3F5605168CED884BF5413531B484A,2,,C:\PROGRAM FILES\SURFSHARK\CALIBURN.MICRO.PLATFORM.DLL FI2=309376,BEC6E44033B93B94C9BF21571FC240DF7F70C5D8488AA2C4B2E1DE63877CE3CC,F2153BC5CB07191C90FB8E7EF67A9EB9,1,".NET",C:\PROGRAM FILES\SURFSHARK\CLRETWRC.DLL FI2=131024,53CDB6793CC074D0FD1AD8C61E8CD1CF31423B29EAD20E78555E4E7E5648D438,CF19CE6EBB431B8F6C5D3211659DCC14,1,"WDKTestCert simasbakus,133455488182636482",C:\PROGRAM FILES\SURFSHARK\SPLITTUNNELING\X64\RESOURCES\X64\SURFSHARKBYPASSER.SYS FI2=274120,8082B4C6B1018DF1EE6DDB53DC4499F0C3BEC4C4884AC1C110C3587E20FCDCD0,C769335EBD5D78E7C701139741CBE2F1,1,"Surfshark B.V.",C:\PROGRAM FILES\SURFSHARK\SURFSHARK.EXE FI2=166088,E2FCDE5D619C6DD03F4357A4E7FF87534E82551B9DA86E980D0D30ECCE45D360,19C81A0E4017BB9BF3267A338D60F920,1,"Surfshark B.V.",C:\PROGRAM FILES\SURFSHARK\SURFSHARK.SERVICE.EXE FI2=989312,6A72CC8649A63B017844C4C1F3885A250D1A982FFE5F1E58B6F1432FE9198E62,3740507A1DC4FF4CB5C6E52652C10C20,1,"VideoLAN",C:\PROGRAM FILES\VIDEOLAN\VLC\VLC.EXE FI2=4173928,E994847E01A6F1E4CBDC5A864616AC262F67EE4F14DB194984661A8D927AB7F4,B0AE3AA9DD1EBD60BDF51CB94834CD04,1,"Microsoft Windows",C:\PROGRAM FILES\VOKOSCREENNG\D3DCOMPILER_47.DLL FI2=31232,61B1B4130B8464C7D9C487F2AA2E6DBAE66358F72D3B390031E72661F60C1C0E,4F05256ADE90E1E6736E6B1753E8700E,2,,C:\PROGRAM FILES\VOKOSCREENNG\FFI-7.DLL FI2=1398784,0AEE3EC17A5875F84A3B3F95AEDB98BD881772FA25F1FBEEA7533AA9D482EE65,5B19AD634A7079E31EFC05AE28DB4AE1,2,,C:\PROGRAM FILES\VOKOSCREENNG\GLIB-2.0-0.DLL FI2=24064,AEE276A0732A75C0811436229AAD850717943CE350334F40A20AFC6C35868564,78A3DCB952BFA91819C82993D7F43DC8,2,,C:\PROGRAM FILES\VOKOSCREENNG\GMODULE-2.0-0.DLL FI2=332800,B8FFCBF3D7049912C47D31CD4CF23D91B1BE71AAF00C196F8264CE613D0C2A95,9DAA676A147BC3FF8C827C44CF4CC5C0,2,,C:\PROGRAM FILES\VOKOSCREENNG\GOBJECT-2.0-0.DLL FI2=517632,D2227FBB1EDE75760B9B78526BCAC7F5DACD1B3AF6868D3E3F3C1F120E156A4E,AF8F8CC536C923AF8D57F7BB5A8E23CD,2,,C:\PROGRAM FILES\VOKOSCREENNG\GSTAUDIO-1.0-0.DLL FI2=510464,2955F9689CB6818F8DCEDB2B792078B41A5465DF61251FB41F8D57D0E6579F56,7EB52FC9688DDF85ED0B25CE2722B332,2,,C:\PROGRAM FILES\VOKOSCREENNG\GSTBASE-1.0-0.DLL FI2=257024,478580A81863A44D5DDB03CD9AC26A5EBA8F83ABD9D19D9FF39B84E3171C7600,6057256FB1DC39FA388BB9D4339B8DF9,2,,C:\PROGRAM FILES\VOKOSCREENNG\GSTPBUTILS-1.0-0.DLL FI2=25284344,A134B98D2BE611E2D6CE535EF423B3C91CD6988DCD0B50B594E802C41E299796,2E1E9B5D27FDF8634C622F1DCF7A18E5,1,"VS Revo Group Ltd.",C:\PROGRAM FILES\VS REVO GROUP\REVO UNINSTALLER PRO\REVOUNINPRO.EXE FI2=80896,C652FF8527DC82702ADE1ECA0CC6CA209C7F4713C42FF5263BFB372CAE903133,C0A990BE061425710BBB4A0B72D9A9E2,2,,C:\PROGRAM FILES\WINAERO TWEAKER\ELEVATOR.EXE FI2=1264128,100AC04E146983684553D9FEDC8442E7B0C619A832A1CF414F2482334ED472C9,FB6E5BD898E6D6369F29A3FE0EDA0198,2,,C:\PROGRAM FILES\WINAERO TWEAKER\NO_TAB_EXPLORER.EXE FI2=3189419,4324059FEE8A21CA1C0A66D13F1842F7527EC77AA214CA91AA62DC8BB3EFF503,7863252134CDC9906FF7AF7CFDFAC99E,2,,C:\PROGRAM FILES\WINAERO TWEAKER\UNINS000.EXE FI2=438272,AA1E84244D46228F198CF3E1373658032C2F4D01C25DB1C4966FFB87EB9BDC8B,E3053E6CA40B44D5937A5B6CA1DE7FA1,2,,C:\PROGRAM FILES\WINAERO TWEAKER\WINAEROCONTROLS.DLL FI2=5376512,69ECFD7AD61617A769D230D6D6DB082D965C5550F92C4913CD60EF47D3158D38,BD58A64A60D76CC1CFA38FD1C27419F5,2,,C:\PROGRAM FILES\WINAERO TWEAKER\WINAEROTWEAKER.EXE FI2=337963,C789872A6141E19F9CB71ABB8260C8303A2AC48DFD86F36912A4649800A78D39,8E0AEC38406AFACFF9487529ADD32C74,2,,C:\PROGRAM FILES\WINAERO TWEAKER\WINAEROTWEAKERHELPER.EXE FI2=214448,47700D249EC7AE96714E97C21935D748D3CD0ACED98BDF977900575461B6E6BA,B3FDD65E78B63107E3B717974D3AF556,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS DEFENDER\AMMONITORINGPROVIDER.DLL FI2=292272,F68F352B40729EE214D6E29C5CF867909EB82C6CFD58F7374AB51F3CD7C367B5,E39FDCB777E4E28BE97FEB528FCFCFA5,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS DEFENDER\CONFIGSECURITYPOLICY.EXE FI2=456064,6AA3D1A9A9BEEAB1779C2029686D4C76E7ACF0CDC95829012B0FE9CDA5E40EAA,1D570A4B48A5FD668A0A7D27E0149A2D,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS DEFENDER\DEFENDERCSP.DLL FI2=257648,040A150BDC5CC06877E9157E1237EFD0B68FD64577F046150E608E17BD427713,9E57DB0ADCE32E14E4AE23A6C6E44A38,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS DEFENDER\DLPUSERAGENT.EXE FI2=1189248,662ABCF6FE87353B07DC09B6F0CD0CF4416E31F7E4C962BBADBE22F06880061F,52A3F10D6A5B4C909B76250F406D6A4F,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS DEFENDER\ENDPOINTDLP.DLL FI2=1070400,45B53A807B494E9B85ABD53945880307570F3F5F0D459624746D0BE0548B7FEA,5F4BAAC3A76D94D803117695F4CABDCD,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS DEFENDER\EPPMANIFEST.DLL FI2=548864,691A6C4B96C3EDB2217826AC0B5E90FB5CDB2DD61ABF2E14D4A2ED44453A15C5,E74C571B4D6150268B75792850933B6F,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MAIL\WAB.EXE FI2=73728,59B1A7C21317B2C73317D1354C7AD44E9CDDFEB28F5E05144741D0732BCE2F6A,1B5B22FCE9A5A5F66F97FB2793140592,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MAIL\WABIMP.DLL FI2=94208,74910FB9571B572073606E979048550618A23AC3DBBE261D2D7C820EC61D0689,2BF213A240AFE431303850A3FD63C789,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MAIL\WABMIG.EXE FI2=208896,E026F2337599ACB5127DE81A656445093183A5D99AA9158E869F09178CEF5130,994F229ABAD81DD2AA54A898EB4CF9EF,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\MPVIS.DLL FI2=1871872,D4776D44622A21E98A1D2D444D782019C8E1F63304B1FB9E64C787F441A29C9C,3CAAB49CBDC18750E04FB9247546C72C,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\SETUP_WM.EXE FI2=135168,D7878BCD6E203BE89A21443C0A3F64730860DA8E597406A19A6B92F022A2D0F1,A128C64A8CDF30D5400754AC484EC0EA,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMLAUNCH.EXE FI2=126976,669CAACEF0686171619E4FE0007C7F2F070C53BBA569F781E460BEC36A5DAE73,F0229E0EBF54DB0C2FDFE2AE661925F3,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPCONFIG.EXE FI2=917504,7FF3D19126752436310BD50026B75D30395090E6E55B8B4BF5DE45E12CF80ECF,17EC6A8A448F1A2528C245AA8D12F7CF,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPNETWK.EXE FI2=98304,7C357AD4A20ED83A2A34D1B7307DB2D7636CADCBE1384636E39F198708BE9407,7A1BEF884EFD7A1254EE0A3670BD00DC,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS MEDIA PLAYER\WMPNSCFG.EXE FI2=124456,6900C4CBDDBCF3368068FD0F954CA113822AE32930F003653E5949C0A6143A8F,BC40ED515D615624E7A47F956F9893E4,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PHOTO VIEWER\IMAGINGDEVICES.EXE FI2=2002944,C137DF049A416BF601D9026A2AC72FB908AF737F91FAB19D8FF3CCE7C38BD822,68738C03EE63C3F620DFA4937F3F7B3B,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PHOTO VIEWER\IMAGINGENGINE.DLL FI2=1847296,93D875D22FD6A1DB430AC90E83FAB8C46CB4E7A754632C9AFC4A762C70A3393D,AD4965B7CB507551F6EA8ACC17034FE2,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PHOTO VIEWER\PHOTOACQ.DLL FI2=69632,0A88A5F790EA35A71B8BB008AACFC3F2A7D79F795B0F198689418E27009E7341,405DDE99CD12C85CE6013F23E39470EB,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PHOTO VIEWER\PHOTOBASE.DLL FI2=1708032,578434098E1A141E9A52FA6526DD75DD074B149789CE007B3624B6053C017906,1C019BCA9DC727F6C60FBD5E542ADA9D,1,"Microsoft Windows",C:\PROGRAM FILES\WINDOWS PHOTO VIEWER\PHOTOVIEWER.DLL FI2=87480,35B45CA4B3C38862AF5BB8C61EF1560C813D950B57D88120B5EB72027A68647C,42D2856358D43968D2675E1062103095,1,"Microsoft Corporation",C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.GAMINGSERVICES_24.93.16001.0_X64__8WEKYB3D8BBWE\GAMINGSERVICES.EXE FI2=87480,35B45CA4B3C38862AF5BB8C61EF1560C813D950B57D88120B5EB72027A68647C,42D2856358D43968D2675E1062103095,1,"Microsoft Corporation",C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.GAMINGSERVICES_24.93.16001.0_X64__8WEKYB3D8BBWE\GAMINGSERVICESNET.EXE FI2=1664544,3FE1564880503705BFA66F51E4901DA52B840073DC873814A2B8AD67A7900A0D,1B772B15316F7C6AFB6738D8592C6B38,1,"Microsoft Corporation",C:\PROGRAM FILES\WINDOWSAPPS\MICROSOFT.WINDOWSNOTEPAD_11.2408.12.0_X64__8WEKYB3D8BBWE\NOTEPAD\NOTEPAD.EXE FI2=225432,F4953BEBEB4B71F3F83E4684C5349B0EE9263499DF3CC0B2BE830EF2C478D50A,85026CFBA1AFED081A84F70C3CF46815,1,"win.rar GmbH",C:\PROGRAM FILES\WINRAR\7ZXA.DLL FI2=334336,E3AC1431CF3564C2F6FB48960DDAA70AD78225EA7758AF2156DF08CBE723DB37,120508B3B012C40CF5E5ACBCC573C586,2,,C:\PROGRAM FILES\WINRAR\DEFAULT.SFX FI2=386048,7082E3133A693B6A9A196AD742F6A12A71C472AFBCC0922F1C6FCA29576D889A,C8C0D9BCC38B11AE30033724290F523D,2,,C:\PROGRAM FILES\WINRAR\DEFAULT64.SFX FI2=637080,A9CEC009503D067F241B5EDDAEA4E42C38EDCB0B57C1B46E946C5281B7F1EA21,F7C0C38BDF23992FC92CA8A55AFA28F2,1,"win.rar GmbH",C:\PROGRAM FILES\WINRAR\RAR.EXE FI2=673944,5F21FD414A3767DF77F31BE26352FC2FE63ADBFFC75EE48AE4ADE06DEEF07B50,D0F4632BE7031CC372FFDD2D9063FFB2,1,"win.rar GmbH",C:\PROGRAM FILES\WINRAR\RAREXT.DLL FI2=579224,53322BE2FDF24B09DE1070A2713855EA3D01BBC895C6D24A2991D1E2139CA585,8510BEA1DC5A2245A72DFE5ECD20CDA6,1,"win.rar GmbH",C:\PROGRAM FILES\WINRAR\RAREXT32.DLL FI2=183448,48B44BD3342A68ECBBD40A485930A22E02FDF157B2939EE346C2B123F6D5E99C,1E1CAC0725CF47E62EA96669EAC678FC,1,"win.rar GmbH",C:\PROGRAM FILES\WINRAR\RAREXTINSTALLER.EXE FI2=3341312,E7BC43667B3573755ABBACB09E1B47168BFF77B10387803B6F867D44645ED659,AD027044465902BC8A6E85056D3E2011,2,,C:\PROGRAMDATA\BRIGHTDATA\D71AE678248C6F808FEF312E7563CA8A3655C744\BRIGHTDATA.EXE FI2=10552,67AC5F88ADFAA39482DD65B49F7304FDD3EF39B014B22F338BFCE335AD378F84,114EDB14C6176BA375009590B447AE7F,2,,C:\PROGRAMDATA\CLASSICSHELL\UPDATE.VER FI2=1431160,C26BB7DE89D5CC31C99D2A6DF0E5EBE655E30BB424061A6D794B7ACAA12DE6DF,67C90418FFD5D7B023ED47CED0888E99,1,"Microsoft Windows Publisher",C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.24080.9-0\MPDEFENDERCORESERVICE.EXE FI2=133704,C8E29D02F38F3D868D5842866648A7553679BE5890EAAF7A371EBE9B8ABD62DA,CEFBD08B29649443D0BD2F03BDA3E046,1,"Microsoft Windows Publisher",C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.24080.9-0\MSMPENG.EXE FI2=3199656,1031A5A61B5A867432EC7E6E3B914B13A189A1013E3005A07F1AB7C7901E13C0,95E4974C8E1226746C0A1F99859FCAC5,1,"Microsoft Windows Publisher",C:\PROGRAMDATA\MICROSOFT\WINDOWS DEFENDER\PLATFORM\4.18.24080.9-0\NISSRV.EXE FI2=16,A2438256538EE97778D66B090CA4E6E33B0BBF2316B13B276C068D4991DCA9CD,68B105C2A7BF5BF91420BE59920CCF35,2,,C:\PROGRAMDATA\MNTEMP FI2=2779648,56D47E405A64F23B2B780521061181139B36CC95F8A1D86FA9A321ED6A55BFBC,4DF6995049D9873D05E32ECD6095674F,2,,C:\PROGRAMDATA\QUIZO\QTTABBAR.DLL FI2=23358976,F931DE94F0B15EC558679387E2FBC6CA858F97A399C8BF92DCD37209DBD3008C,999E60D3A9F068BCA6DCDEDFDBA04500,2,,C:\PROGRAMDATA\WINAEROTWEAKER\IMAGERES.STARTUP_SOUND_WINAERO_BACKUP.DLL.MUN FI2=90624,588C89FA46E07147761E222C2EAF3AE25299DF880A222CD16D56712AA79EDDF8,E9D4A10F563443E992094A9127427252,2,,C:\USERS\UTILISATEUR\APPDATA\LOCAL\AMAZON DRIVE\AMAZON.AUTH.MAP.DLL FI2=179320,BB11F3DBF581568463C78817C9743B32812D4CBA323E77158FEE66307E2FE358,0F411E68CCF60F44FD917BD53DA07669,1,"Amazon.com Services LLC",C:\USERS\UTILISATEUR\APPDATA\LOCAL\AMAZON DRIVE\AMAZON.IONDOTNET.DLL FI2=151552,38AFC566DC827B4B02B143D2A7B4543598C9A3C36409A51B0C62089911689A18,4FAB9DDD94F12824C4C5F0EEC558F151,2,,C:\USERS\UTILISATEUR\APPDATA\LOCAL\AMAZON DRIVE\AMAZON.MINERVA.DLL FI2=11031664,5F9700F96E6DC09D647D99AC22C02280C2835FF745016282C3731CC21325E648,8BCDB912C893B64D46414FF20C9844C7,1,"Amazon.com Services LLC",C:\USERS\UTILISATEUR\APPDATA\LOCAL\AMAZON DRIVE\AMAZONPHOTOS.EXE FI2=229888,EF44110310953E54A099840C4C1F9A42CCD014259A88EE435FFE1876EA955242,292C9ADC01A50CDC3BF84B19DB7E5310,2,,C:\USERS\UTILISATEUR\APPDATA\LOCAL\AMAZON DRIVE\AUTOFAC.DLL FI2=72704,F49EC56E6D8DD1029F990C08DBFC8CA7C5E8EDD353D8D7BA35FAE2C6ADCAA1C9,965D07F46CD56AE2A4F310921230C206,2,,C:\USERS\UTILISATEUR\APPDATA\LOCAL\AMAZON DRIVE\BEN.DEMYSTIFIER.DLL FI2=733696,B167FF37372B70EE6C3959183134CE5015A4865F3FCA5F00BE676FBEC7342F90,7EA4AA77BC97C387B7592272048BFF11,2,,C:\USERS\UTILISATEUR\APPDATA\LOCAL\AMAZON DRIVE\DYNAMICDATA.DLL FI2=5570464,706841383A89918A7C4139378E12A7860F8B432B7ED11F46B2A66D435D77BBD2,47850AB57010626D8693D28B99EF7573,1,"Opera Norway AS",C:\USERS\UTILISATEUR\APPDATA\LOCAL\PROGRAMS\OPERA\AUTOUPDATE\OPERA_AUTOUPDATE.EXE FI2=1386912,D821A30BA3F5444832E88FEBC920CFD4409C513920DD0072258E2AFEF426DBBB,00886BEAC3A9EF1E6E0A4416B5D36364,1,"Opera Norway AS",C:\USERS\UTILISATEUR\APPDATA\LOCAL\PROGRAMS\OPERA\OPERA.EXE FI2=1825280,B7E4AA23BCEB22E6082CED31198DC9884CFB62F6ACCBDA92186D6C178A40EB04,7ACA3842BBD02509409CE72E7A6EA0C6,2,,C:\USERS\UTILISATEUR\APPDATA\LOCAL\VORTXENGINE\UPDATE.EXE FI2=62976,589DFB6F38C6E636CD32D268AAAD0936BBB812927B283F65FB5E594EA2BE2AFB,CA7C01946958EC1D40DF672C801BFE47,2,,C:\USERS\UTILISATEUR\APPDATA\ROAMING\7ZIP\7-ZIP32.DLL FI2=1490944,8B527770E0580EE328F8C91AAE05016B174D15E13F28BEFFF5A6B6A6F4837084,9D7585D920144436FD23B5397AD20ABF,2,,C:\USERS\UTILISATEUR\APPDATA\ROAMING\BITTORRENT WEB\AVCODEC-58.DLL FI2=153600,AA89AF1BC9DDD990C0F51313F69864FA55E68C455B5027E7D88CF754CDC9F4AA,6CB3A6FE8D27893061DBE9711C6A857D,2,,C:\USERS\UTILISATEUR\APPDATA\ROAMING\BITTORRENT WEB\AVFILTER-7.DLL FI2=949248,4E8D418E6B1345C05E08A4B88E78A84A97C9A8179CA851BD87C93836C2409F31,C123211331C1F98B8A679ECBD5048997,2,,C:\USERS\UTILISATEUR\APPDATA\ROAMING\BITTORRENT WEB\AVFORMAT-58.DLL FI2=635392,47A1C21D501B81A93088AE081DA08E74D098AC82E0DBAE7A909F39AF5BD24815,E0CDB9BBFA7A22EF965D55161945176E,2,,C:\USERS\UTILISATEUR\APPDATA\ROAMING\BITTORRENT WEB\AVUTIL-56.DLL FI2=6474240,52061D4E500A42D6E635320D4EF57DFC31AEFD77865AF50A5C3C4A4D902DFDCA,E8759783834845CF663C0B1997F9959C,1,"BitTorrent Inc",C:\USERS\UTILISATEUR\APPDATA\ROAMING\BITTORRENT WEB\BTWEB.EXE FI2=2262536,1A51143756AEE99CF6A2F449E13108AD7371A55498DE083B078D9B2FB7273868,C1BDAF2533D90B27D474D4F1950050CB,1,"BitTorrent Inc",C:\USERS\UTILISATEUR\APPDATA\ROAMING\BITTORRENT\BITTORRENT.EXE FI2=5863752,A44C00F9EBEFDAA26C5F53B8091A1ADC71AD73BE51494C208CD7ECFC2BA00400,96B220A306B716A01D8C6D1FE6DE719A,1,"BitTorrent Inc",C:\USERS\UTILISATEUR\APPDATA\ROAMING\BITTORRENT\HELPER_WEB_UI.BTINSTALL FI2=19603965,117E97A1DCE516AB708E604FEBFBDCBF09E29232665724E92A359BA46FE49EAE,57C11CAA934A5E5D9598BC9B4DE7200C,2,,C:\USERS\UTILISATEUR\APPDATA\ROAMING\BITTORRENT\PATCH_BT_47029.EXE FI2=98824,B68F65A6DDBBED561416B079EB9A1DEDEF9B939B51476A4D15F43930B7D86803,729C832093A7149BF00EF59F51773CB0,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\ABOUTBOXDIALOG.DLL FI2=76808,AE30CBFE7643B78208874955E8ED1857F86C30E168BB1825215BE044EA75F576,DF7AE2239C10895E1510342D7C11A51B,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\ACCELERATIONTRACKER.DLL FI2=124424,4DE264F5CE467166799C5D49986555CA2CC138A66D7E6C6BC4EE2E82F5BABB7E,57F04E2C46159902C1FE274D9FF77B39,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\AMFMANAGER.DLL FI2=19208,9F3608C15C5DE2F577A2220CE124B530825717D778F1E3941E536A3AB691F733,E5912B05988259DAD0D6D04C8A17D19B,1,"Microsoft Corporation",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\API-MS-WIN-CORE-CONSOLE-L1-1-0.DLL FI2=18696,3B68D7AB0641DE6B3E81D209B7C0D3896E4FFA76617BBADD01EB54036CDD1B07,16789CC09A417D7DEB590FFFE4ED02DC,1,"Microsoft Corporation",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\API-MS-WIN-CORE-DATETIME-L1-1-0.DLL FI2=18696,55574F9E80D313048C245ACEFD21801D0D6C908A8A5049B4C46253EFAF420F89,9476AFFAAC53E6E34405C4001F141805,1,"Microsoft Corporation",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\API-MS-WIN-CORE-DEBUG-L1-1-0.DLL FI2=18696,B3715112A7CA4C6CC0EFEE044BD82444D3267A379E33A3EC118D87E75604204D,A5883C68D432F593812AB3B755B808DB,1,"Microsoft Corporation",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\API-MS-WIN-CORE-ERRORHANDLING-L1-1-0.DLL FI2=22280,56DE091EFE467FE23CC989C1EE21F3249A1BDB2178B51511E3BD514DF12C5CCB,241338AEF5E2C18C80FB1DB07AA8BCDF,1,"Microsoft Corporation",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\API-MS-WIN-CORE-FILE-L1-1-0.DLL FI2=18696,322D963D2A2AEFD784E99697C59D494853D69BED8EFD4B445F59292930A6B165,49C3FFD47257DBCB67A6BE9EE112BA7F,1,"Microsoft Corporation",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\API-MS-WIN-CORE-FILE-L1-2-0.DLL FI2=18696,1EA267A2E6284F17DD548C6F2285E19F7EDB15D6E737A55391140CE5CB95225E,BFFFA7117FD9B1622C66D949BAC3F1D7,1,"Microsoft Corporation",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\API-MS-WIN-CORE-FILE-L2-1-0.DLL FI2=18696,8EE2DE377A045C52BBB05087AE3C2F95576EDFB0C2767F40B13454F2D9F779DE,CCE27FF9B1E78B61955682788452F785,1,"Microsoft Corporation",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\API-MS-WIN-CORE-HANDLE-L1-1-0.DLL FI2=7078416,BF8A3D8818E9BF401951CCC36248E89BF63E6CD68DE174338CC4CC55E457E373,01ED7563DE6D7852A9A3F2CFD5EB8E3C,2,,C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO CONVERTER 20 PREMIUM\CONVERTER.EXE FI2=502000,D8792F36117ED4A9B093DB938D50954266C5E8B247EE0C69E29EEEFAEA8E673A,1DAAAB2326851D1374E5B20C74BE92E8,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\APPUTIL.DLL FI2=125680,800BA692BFAB6D816835F8A54E3B9CDD116CB9C532A417F46BDAA11D3EFB760D,4EF34A10CBDA6FA0051584B62A876099,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\BOOST_FILESYSTEM-MT-X64.DLL FI2=81648,6E051A7B66CB7CE10EE1E5137EFDF2C2520556B2E1069B335477E82A279C0644,8E99A13ED22FB3760DC682FAFE117546,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\BOOST_THREAD-MT-X64.DLL FI2=280304,D22DBCD1770CEDA4EC23B688260F6E86B5168C10AA0EAE3802B5CABD3EFE170D,A49D1AF3A63E09744059236D92B43841,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\FNDDATASTORE.DLL FI2=113904,D4CD6038135ADBF63ADF30D2A62BC48576D288E65F10209DE562B7AE857FD633,C3E62853186310A45FF6FA70E242CF2F,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\FNDEXCEPTION.DLL FI2=258800,45A5C6B900DA946FEC3D8975BFBC0240F251BC7663CC02DC54DF82E800046F7E,55C785D1EB314A7240B055C08DBB3868,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\FNDFILESYSTEM.DLL FI2=89328,B166EBB959FAB449B8F3F7F3A12769B419369BE6DE3A8D0467D1046DD5AB6056,A94CB56CFC33C2C79C3441079D633023,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\FNDHASH.DLL FI2=415984,23EDD00984DA636CB7378040AC0012463B560EEA551DE52232B909F0ED45BA6E,6BBE0EE92DC4DD138400C98DC7765295,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\FNDIO.DLL FI2=34032,890EB4EE53DDB825036278FA8661DBCCC4B87F87E2125916479BC21F9B91DB9C,63F0F75303520D3CB7DE989DF86BC824,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\FNDLOGGING.DLL FI2=171248,F97F4CBA8385159CC6D6FD5C56C0C4A34663E0B6B6992F6BCCEF49F04825E99C,2350F2B16E84B7971A05925281C8F3C9,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\FNDOS.DLL FI2=24304,7DA83F1D32A606F22B3EB3E4426534BCEBFBBF3751BA7183606D643644BDE5D2,D020C422EFD8182E1D30AD12A4ECF4C8,1,"Movavi Software Limited",C:\USERS\UTILISATEUR\APPDATA\ROAMING\MOVAVI VIDEO SUITE 22\FNDPOINTER.DLL FI2=79363,41F0D8422752C128B9BB8ECDEF2F9609C877262E89B7C61E0157BB9BBE2E2519,1FF083C4E1F4716C34FF0E6D0D9E0F5F,2,,C:\USERS\UTILISATEUR\APPDATA\ROAMING\UNLOCKERPORTABLE\UNLOCKERPORTABLE.EXE FI2=966584,F0979459A8F4083A722BA89D30CC2EB01D46CCAD148BBEDD983F491FE2B400AC,2EEBE7711A262224718B8F7D268CC5F8,1,"Cisco WebEx LLC",C:\USERS\UTILISATEUR\APPDATA\ROAMING\VOKOSCREENNG-OPENH264-4.2.0\OPENH264-6.DLL FI2=6660664,EA97B4D1BCBFA99D2E3F04DEFAB98FF45204245797067B7EC3BB68709E7B23BC,2763DA6D112F11FF936C2656D3D541AD,2,,C:\USERS\UTILISATEUR\APPDATA\ROAMING\ZHP\QUARANTINE\ZHPCLEANER\TWEAKPOWER\TWEAKPOWER.EXE FI2=3332992,EAE3063BB8AFCCD945DA9DFA589AAEE11A188124054DDF0056F76F226BE32DC7,4CFFB4751AEC21955F79C3D620A75F07,2,,C:\USERS\UTILISATEUR\APPDATA\ROAMING\ZHP\ZHPCLEANER.EXE FI2=277538342,2BE2C3D92828815E11191BADED62422534BD22F28E59CEA5E2E149CF4664AD49,A712D5C9713D0FFD4983388537920AEB,2,,C:\USERS\UTILISATEUR\DESKTOP\A-GOLDEN-PAST-VERSION-2.0.1.EXE FI2=2827752,4EEC6CD5D448C28F429EE1B1FBA3849836E0C6ECC95913DD114BC51386E87522,8479DBE06193148EBB71915209E8EC26,1,"Microsoft Windows",C:\WINDOWS\EXPLORER.EXE FI2=799136,6FB1422A8E93607D5D78908F4ACFDAE07399322ABCC644FC50A8BBDC6FAFB7FE,C0D2184261BA5A5E1961542FD6338159,1,"Microsoft Windows",C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V4.0.30319\EVENTLOGMESSAGES.DLL FI2=100784,28517D4E1AEA5240650FC0A7C4B876FF4C6FE3C82B7C917BA30DF3FCE3230561,F5E05C49818A5DD3C32886630C495222,1,"Microsoft Windows",C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V2.0.50727\FR\ASPNET_RC.DLL FI2=11152,7C500679BE0E3E090A92C47EA39C8A9257BA44FD6F1C827D1EE3056242B3638F,0A06D19C20F831ED32A449FE8BBE517E,1,"Microsoft Windows",C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WINDOWS COMMUNICATION FOUNDATION\SERVICEMODELEVENTS.DLL FI2=45992,8BC01BC94D3CD6591C416EE7C68714A90E1D8C9F3117E1B3058AF83E872296F9,CFBBD1F67AD242A460D3FF8C5752A816,1,"Microsoft Windows",C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V3.0\WPF\PRESENTATIONFONTCACHE.EXE FI2=799136,55D718C351864F5AFD6162F6DF1B9E9816F4CCF3EF4CC8BECECA1A25B97CA4DC,7E05C156D4FD5D4DA7134311A4361086,1,"Microsoft Windows",C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\EVENTLOGMESSAGES.DLL FI2=12696,CB8086EA4B5338E2098F3D4F3375E29C9DA40E05C8F3BA5C81BF48D408AB99B1,638152B88DF3ADE2A8E2D522E3A787CC,1,"Microsoft Windows",C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SERVICEMODELEVENTS.DLL FI2=132520,B129285AB5B2F271E2A331C800D2550AE9BEA0E0CD99E6D9A22554BE99C8D9A1,F49119C8115B5D14B0E786CD98DBECFD,1,"Microsoft Windows",C:\WINDOWS\MICROSOFT.NET\FRAMEWORK64\V4.0.30319\SMSVCHOST.EXE FI2=247200,701D13CA0A15D4C26520418CD6C9CBDC4F479751843CDB94597A6D5BF48C7FFE,BB07E09571013E061F55F3696EF61EA7,1,"Microsoft Windows",C:\WINDOWS\SERVICING\TRUSTEDINSTALLER.EXE FI2=12288,D5B3AB824CC6103CBF6CEC7FF7BF3ABA6FCD02236385981892CB1B1529CD44EB,C23C76D712D32987184236BCFB057A19,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\COMRES.DLL FI2=36864,08C99ACA001E06CB65AAAD7C28DB3EFB0D68B6D9BA0914F9513A74FFBB2173D5,4657E957307F2A635700B39BE4AFAD63,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\D3D8THK.DLL FI2=630784,FE36EFED00DC113E9BD78F5B1A2F991B4101E6BFE46FB773F4B61C8366E39B66,17AAD801EECE030820E3FD1C9B875E5D,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\DDRAW.DLL FI2=1187352,C7EA856352C53E4143094D457868E516338F8195DF9DD68FFE9B8D0A657A18AD,EC2E174BE6BC0A57843C1F8A6A4FE5E8,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\DNSAPI.DLL FI2=598016,7D01FD58ACA7842D8295786FF652F151328A04A0ECE7C13CC992999D77A7B25E,E89AA7FA5516BD05780764E3E6B68189,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\DSOUND.DLL FI2=476648,9DD6BAFF5DB0D15B6D0B92497767FB60C454596E16BD99F6C8795C76797552D4,E3109A37AB3B542FC4ABC9ACB94DB7ED,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\HNETCFG.DLL FI2=203824,676B997F913BEF15FEF33EDF7DC93CA45649552D2B11DF177A6AC5BECC72D788,C8A5B7AFC7A8A7FF3B20158494B90D35,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\IMM32.DLL FI2=212200,32F7B04EEFF4669C7A5C3CBD6E9D46E0973FAFC751AF82E5C9817FB4903591DE,4F98D0FD253666D0E39014E7605C7A19,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\IPHLPAPI.DLL FI2=50944,66F40F7B2E6B67169F66F7D81C765CB45CCBFF5EE760BE4CBBF83912A521C1DB,0F3CC54BA419C17AB70BE96824421DB8,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\KSUSER.DLL FI2=12288,A28E22E102EDCAAE45DC2485EE3E9E64F41343106946861A7B4E245AC34FC038,AE780260951006A047128151A7EE612C,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\LPK.DLL FI2=49152,9A20A393114C86616B35DD4C8F4E515C4B9AD1800BE928EC9BFACFC8BB878B73,D75979C87406FF4D877D2C501B978A7E,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\MIDIMAP.DLL FI2=32768,8F042F4C918D49661608A037C362FEFA625AC4A8862FB40A049B86609FED8B00,B024CFE00AD4DCF73DDA7DA9B2D6ED38,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\MSCTFIME.IME FI2=24039424,6306A87C72FF5DE595ABFD87860896F96B3F530A5A619697C24363365A2B26CD,E88AA9A41B73867630ED0A19E7279A62,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\MSHTML.DLL FI2=32768,6E04CA20B475D0424B8D8C8C84C8389315457E2EE2D3954F5E0EBD2018A4080C,50D90D6930B84401479EA4FD98E0FA04,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\MSIMG32.DLL FI2=435352,4B3E142F0C6C206420C0AE0332B45BA148BF8BAA836D4D8E88895BB241519C59,2850E14BD8B2F085EC1BC5908E6AD740,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\MSWSOCK.DLL FI2=108792,F5574418F2192EF615A45F39F1DBFF08735F5CE17AD8E6D43C527DDE19AA27FE,5AFB83C6B3AD780CEB24B89E7D68B106,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\NAPINSP.DLL FI2=139264,0225C7E6D9D62E79F00B982CD73724038D857A34F93740C6AAD5BD05EDE78328,0E4A979710460A45D94D945B801C8BD3,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\NLANSP_C.DLL FI2=45056,42836B27719B8756CC2EB7F45B21D41D10BC2A8526D58D68E5520BBAE169EF52,043972B4AD17FB8DF3AF5C6660FC1EFB,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\RASADHLP.DLL FI2=1073152,65859ACE2063CAC803206AFA9000439C58A88C51AFCE13CA7FE9E2997F599130,73E2D9512537D22B3CDF4B0F996C5A28,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\RASAPI32.DLL FI2=1413120,25A60B852BFC23DF369EF1A840EDEA45534DE27887571B7880F3F41ED71C1310,5E8588E949BE4ACDA4441CCC87A97FCC,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\RPCSS.DLL FI2=364544,69313A4FBD9257E78D4DE4640F27AD0FFBECBEF3D1385B530103D8321E8C5703,5799B5D22DBA2DBE5CD6ACC216A2353A,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\SCECLI.DLL FI2=894048,EB7E8AA00C7199005459972E40464ED04EDE6E26075C1A7B11FDED1084FDE79C,F262BA7A4F04124CFD06D6D8FE69CEAE,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\SERVICES.EXE FI2=5418424,44F8534BD933AF2C55C06D94C2E50173090B72CF531D3A92E770DEB7404C70A3,103D43C7ED32E4C64D407D895D516ED2,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\TASKMGR.EXE FI2=1865040,FC94955927125ED8C8CC6D7ECCDD91E1DA06FBAA3D33A4E28DD1A590C3133A8B,60C9BA328231A75B2437E479E88E0942,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\USER32.DLL FI2=700416,E99BA646E42B97646A8B4E2D2D14DDEFA3CE13D439A026FD43EEC3B39369066A,2D67C10263F99A1EDAB2A186A069FD91,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\UXTHEME.DLL FI2=921600,01463DB835C0AEA0072B530A2441E2B4C9F3C7B7B63EF0BF8CF3F10830D8AF9A,EF0BEA08543CFAE93F231EE2D19CB1AA,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\WINLOGON.EXE FI2=84120,0EAEC11B64BD6D7B40D43B97CF4C8D566CE6B77CA99E0EE13A6AED38374FBE75,927BCF5FFD56C33059B2130065EA7A29,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\WINRNR.DLL FI2=12288,A8E4F40BA86A5CECB7AD6956048105C925579A79CC079379A03382B6A17B0F77,7704AB5AF825CB8ECB9A13A8142B8181,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\WS2HELP.DLL FI2=90112,1106FB3D61F38A10D951E20228CCA0A55C6D7E62864EC293C6889E52900C274A,0FDCADEB68DCC3CE5310BD47FAF62E29,1,"Microsoft Windows",C:\WINDOWS\SYSNATIVE\WSHBTH.DLL FI2=-1,,,0,,C:\WINDOWS\SYSTEM32\ FI2=569344,0430E4D9D9C8B27F41DC0E78496A1DEA2ACBE11AF1DFF6E28872EE45812F75A1,AF0CC905FC2B22C77A95E42D82A101AE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\AARSVC.DLL FI2=40960,EABA99F4FC722276267F3E36B7CE6F906340CE2EC70ECD061A3E3B795AD8CA77,7F7C18625E9C30DDCD0E7D649868B7D0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\ACPROXY.DLL FI2=40960,BE21CC87CD36EF8B88D738CD227270C0355BA93E2E4EFF72E9FBF1D5C50DE348,8982B6600E59B30C4B00ACDD17395D30,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\AGENTACTIVATIONRUNTIMESTARTER.EXE FI2=315392,E5499CD95C9AC43508B513C5F774AFC209C027C7AD34DD64ADEF3309D181E3D4,3C19C36C9B474C2A6682842464543B69,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\AGGREGATORHOST.EXE FI2=188416,268D5226F97813B3280B67AD3037C2AADD32BEE89E319DF760D79F67E1F5388B,64174FBE0AEACA70CDB229DBEB00A6EC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\ALG.EXE FI2=51120,F47146DBCBA9CCA89425405CF8CF2894BD4FEE5B9E650BFA9BE1E19B6405188A,D03124A92936B3B1D38AC31D9B5582F8,1,"CHENGDU AOMEI Tech Co., Ltd.",C:\WINDOWS\SYSTEM32\AMBAKDRV.SYS FI2=172928,A097244538D6F4F374F8E843E52EFEFF6A7C5D32C302CA4C6AA1E3E932F0C586,86353F2508314F7F97426536DE068BA2,1,"AOMEI International Network Limited",C:\WINDOWS\SYSTEM32\AMMNTDRV.SYS FI2=38320,01D51DF682136CCE453BB1DA8964073E6BC7297CE4DAE7301C753BB618A69469,D0C50C113FE59C21AD59932E6B9C202F,1,"CHENGDU AOMEI Tech Co., Ltd.",C:\WINDOWS\SYSTEM32\AMPA.SYS FI2=32176,2790E94E4E875AE66F7FBFA46B1083782BDC6C3EFBEE6E14190D93DFF367BFF9,0A7219F65D857C051A293EB79C2DF073,1,"AOMEI International Network Limited",C:\WINDOWS\SYSTEM32\AMWRTDRV.SYS FI2=360448,03CA2A41FC4F2BEE2DE2B7307AE1704999AA4B05E8ABB3FC1DFB152D6386411E,D35931F6F97AB8E22F86D25626D8C147,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APHOSTSERVICE.DLL FI2=1703936,6BD50A2A8626572C4CD6FEB805929DD1A688EDC7EC99CF6D3241E0AB8C705C46,1D45694C6CDA0FA76205193D270AEC89,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APMON.DLL FI2=650216,0DF576C3F951B127A2892642D98C47CAC9AAC69AED13CF380E3BCDE0A722D2DC,9D8E0CF4700F5DF558D97C8F254B388A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APPHELP.DLL FI2=139264,B16C3B3D7393D6040E7D1576094DE62A4C3A2E7AB0767F9A70DF31AAF67A0AF1,0337677FC847BB26B725242C91E2928E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APPHOSTREGISTRATIONVERIFIER.EXE FI2=49152,7DA2C06BA81B56A3C49E92EF30CD7E6C70433F924B07EC5C8230EDFC1D761A58,2BBBE6D2EB8844FC6A7AEA6952285F06,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APPIDCERTSTORECHECK.EXE FI2=155648,5DAD2010443C439EC6BB334F7366B0C74514714E13298C11FE957472CC0079D6,D0F6DEEFC82C6F2300A1BD28804C1607,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APPIDPOLICYCONVERTER.EXE FI2=118784,9D3C225424F08329C8ABA985FC0134D1D65ABB0128DF141DFC85D3CDF859C929,3191E785F8816D1918B28D7AE13EE2EC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APPIDSVC.DLL FI2=372736,0B06CCBA431FAB61E957597912900346F860F3773B2ACCD7EDCE3C3387BB3376,202AAF925F6CE0CBE42220F8BEE9BB5D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APPINFO.DLL FI2=126976,689F73EF099F19ECC549688328ECBCFD398321BF70AAD4B2299E63B21E712E9D,A46FECC99B2B912FC37A84E258798B0D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APPMON.DLL FI2=794624,200922E61914B2E3FB086792E1C1A479A9F93ED7732298E22547A63242F8E6F7,EAC3E4C177507AC9C26874D1B7D8AE72,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APPREADINESS.DLL FI2=1472456,D46E05C9B4D76E79A814291A5E556B1626E3F66C320870888EBA69FDD63C3A18,130783BF80892055C01A83904A086B75,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APPXDEPLOYMENTCLIENT.DLL FI2=73728,3702E4B4DDA0C87C188F29E10B7801225B4085FC124D560A5333B27C485277D9,3B2CB9903E8E5F0EC4CDE3B22FC8BACA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\APXSVC.DLL FI2=610304,666B90CDA65DB28C3BEE894BE0E533F96C5BFC94F2C11DDFC95DE77C612EF8C1,67DCBBF4DC1231C9F8A963C7D93A9229,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\AUDIOENDPOINTBUILDER.DLL FI2=1815440,150FB8E9A5EEC3D4676D570F9BFAB0F2FD685DF5C8FD5E2F0CF7B0043605B278,91B64AC70EA0901852F579B83A2424B1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\AUDIOSES.DLL FI2=1978368,E17B06188E345B9C3AD9960D53F560D7DAA4EE948A7DBB419D66B8ECC10A4056,1C1A0449A550509A5FA5EDBFE5BF5478,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\AUDIOSRV.DLL FI2=139264,B5AAE943C06E1C3EF1F663A059A64D42D00669BC694D756D0FB4D214366F1AFF,07F6BBD49DF2392312B77FC68F298B51,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\AUTOTIMESVC.DLL FI2=172032,C830A5BCFC90588C032541068A39014B894F0BB64C0F668765BD5FD5CE2C69CE,C8BCAF9EF06BAFFCC3620F0CA4E400CE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\AXINSTSV.DLL FI2=1413120,792915D5707A77B4025A9D40DCEB7A4A7438272DCBF48B40B4047B0FA92A33B3,BE621B089E2A0D0796C09A7FEC8D006B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\BCASTDVRUSERSERVICE.DLL FI2=290816,F3ABACBD7BCE1BDAB9C2B4EF4319F081E961D47480D6FEBFCFF1DE30A428FDCB,9DECA5A5E6F166155FDC1AD61BE9ECAD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\BCDBOOT.EXE FI2=598016,C344951D83B060A2D53A3E8FD442F426A60355D877B5ED0D6ADBB6CD1E1BA1AF,7A2299A3AF6FE8FD6DC8E2C0E3127F64,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\BDESVC.DLL FI2=1011712,F017D571A885537B679C86C28936C2EC7924C1F47F123E508914E6483FD1E017,3ABE215E0D9F6E51C6C0E4612BD8B721,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\BFE.DLL FI2=86016,D69FCBE60109A123F1CDDDD7C93EF7E408593F9D8B33C460C80B7F5F6EF479F8,BC46600F5E64DBA324857567AF1FA6F5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\BLBEVENTS.DLL FI2=1110016,CB653F4D065AA1EA3F172A1BE8FE2DEB0CD712D1C07F11174ECCB75C0E5D7302,206BD380A45E84431AED28ACA4BA02CF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\BTAGSERVICE.DLL FI2=507904,469058EA227B818B06BD7641DA14F9F63F1AA1E5D3DF32B279505C513BF2365B,4E105E32D5920A1DD0A21948F1CB8498,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\BTHAVCTPSVC.DLL FI2=294912,1811C02A43081009C0C806C8E43BE7C4313E6A4E7681A6C328499FAF4C919F47,8CB5FB4D43B898F670146F25430D6D3E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\BTHSERV.DLL FI2=1384448,D131D0EF4C26BF3441D2AF8912FD59E57EF0BB588AE421E8948736B58E3F56BA,6BFA9D4B82EC1ACA9DEFD29787710039,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CAPABILITYACCESSMANAGER.DLL FI2=200704,172720552C670F40DBE4E6D3F9A62DA8F5EA3305805AF9EF0D5D992C63C8CAFF,81B1F66B8F9C125AAB26D6146CCBDCBC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CAPTURESERVICE.DLL FI2=892928,555A80486143B9DB49181B9AE0CE4FD7FB4F545D071F1B57293484C8099CD9A8,2D047467099D72C875A367EC5BED4A0E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CBDHSVC.DLL FI2=331776,2EC699BF87D979CB9BFB42D2B43D7C7842139230A0A06F52C2A6E644371B4D88,E0D33A5F7CA000D689FD58BD073DCE50,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CDD.DLL FI2=864256,8B3F9C1616E80D674796FED1DA9E1D1474EBFF3A30455073A2092797919812D2,13392872799B6280B0DD7089A4E3490B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CDPSVC.DLL FI2=724992,14E74ED03163E0E6B3B8BE43EFDE438BA5647DEA2C9DE1B6D17DC5270C709BE6,F3539E77222B00F1218AD04CA3266684,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CDPUSERSVC.DLL FI2=503808,0A2158C1BD460D6D20079F21EEF0E4EA7C954DBBFD4625F518F3AD592E014BB5,17CB756BC5E5BB155BD66728147AD527,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CERTCLI.DLL FI2=2875392,125097EFBFA0AD7C73895291ED03A2F8BBDD2F2F966167E6236F04C5A65FD03D,2EE9E211B4588681025DCA6F359FF393,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CERTENROLL.DLL FI2=233472,8700327B069B825C53226F420F2AA2AD3E268DB55D23E9F95865AED8B2FDA30D,480106FD681B95456F39A3C844120A52,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CERTPROP.DLL FI2=303104,32C66D05072B49F251E0A2DF0A1D9E0DCEBD52F00FCD55578AF056845C6864D0,DF162D2EABD1CD452A1E0A6AF28C4799,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CLEANMGR.EXE FI2=161224,531A023AFB0ACC42B43C375858936CC7E1F4E814DAEBF432E5DEAAC99FF46E21,F8EDF97C8D6048288E0E1D9A390A8574,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CLIPRENEW.EXE FI2=1001448,00076855B46301835D3ED06B51EC4B50DB51F890EF3C2E71961815494E20BF93,A8C10252A8CE3542497E5E33B398A289,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CLIPSVC.DLL FI2=1125408,E255EC1C0564DB032459616D271D2B2C4599E8E15148CB14456B7C793231761E,88BF676D02E79EC084F2A80C7686A4CD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CLIPUP.EXE FI2=1548288,1EA029B15C88B729E4D73F27D08AB76534CCF776EDA5351815B284D324DBEFA5,9298777B40ADF07C80F2BE715C819564,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CLOUDRESTORELAUNCHER.DLL FI2=339968,1C7D6C49C48C59E10C0600CF7A73A160776505EAF9EF2CE5798C9A05EC974CE0,EA83FD94BC6EF5EECC72939EEFB84920,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CMD.EXE FI2=3678960,4942FC72288F8C19EC56D994B2B164F6BC66A1054646A9166CF5C109F99103F2,DCA479D42D7CC8F8EC327B6821E8815B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\COMBASE.DLL FI2=181816,C83D34B6DECF6C6E2ADFBF507000741597176761F576FB46ADBA1FDE580BB2CE,623EE2062E145C38A7E7264CBE195731,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\COMPATTELRUNNER.EXE FI2=1024000,008DEDAC6C9458980A1207E219448BE6697E07ECC47602714DFB8BD2DE0C3C63,65E870D4DA8A366B8785064CAE24B88E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CONHOST.EXE FI2=282624,A8252884FDCF048733004B3CF0D74384562B4B2BD1FD366A42956613C565D1EF,32625F3DADC98C9890D886619DBF10F9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CONSENTUXCLIENT.DLL FI2=1216272,EF6D81FD29A74BFAE50C00214D3CEE9713078C2920968F584B6D1B9BD46D5DA3,AB891608929A4BF1ECF9BCF14F207D03,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\COREMESSAGING.DLL FI2=443592,B2282CE2339D6F448C800A5E14F169A1DF5E743011AEC6047A4BBCF8D92D4A5E,1467D74172AD912CDDC38B01FFB83E55,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CREDENTIALENROLLMENTMANAGER.EXE FI2=1530304,3FF4BC2CBB32A2AD8B4B7D90B29C93ED24D239271170BA6E0E5CC36CB72176F4,3542EC27141FC7B220B12B0FFA9A8FB6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CRYPT32.DLL FI2=155648,CF965D4D532E7A8452A672D206E28CF30DF6CAE2542C6A70EDCD626E8205BEE7,0B4571816B3EFCC09625BAD878FAA513,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CRYPTSVC.DLL FI2=69632,8C6B36E79DF5D2E7AD780668020F40B3FC1BF0B83A39CA1A5F4DDFBFD721A177,9BAFCE388056C4647A798B82DC85DFEB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\CTFMON.EXE FI2=729088,CC53786BC90D0D2D81CF8552ED8B7075D91CD9EA79F83759BB3BE0DC814AEA90,877A4042F22111427215F0EF2ADCBF53,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DAS.DLL FI2=180224,738BAC44484FDC5031275E13A568B94CEA2C9CE9996D345D6C251B7849BB2315,EF4B79E1A6C83CB923A0891F96667464,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DASHOST.EXE FI2=1122304,F99D125D51CD2110B9DBC62F45A5F0F0CF62673957F204EA3390884CC0C54BD2,64BFF8C66A9EF97923F1441AD6365D8E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DCSVC.DLL FI2=35760,7BE327777B40547625E9BF5B91B00B7AE0B5507DB85DE9741B995A4F6AFEFC12,DF6465F349C9CBDF3FCEB3F198E8FCB6,1,"CHENGDU AOMEI Tech Co., Ltd.",C:\WINDOWS\SYSTEM32\DDMDRV.SYS FI2=241664,92444CF8EA0D6C5B610606560194EB5CCE67CF3662D8A774F3DF2F082683595A,15C3C6BE189C71F6634DFB95E758AD5B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DEFRAG.EXE FI2=561152,DC4CBC3B90C446E7E3BD236695AD0C13233857E38641B0051DD87502AD5BE2EE,ADD7CE40C137F0E8DFBC7F629C1DE7D6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DEFRAGSVC.DLL FI2=286472,D13079A9789BDD595224060C0DFE091B35A178C2D4A38F6C3A54641724E0298F,BA527C385593A0F6C122A045A3A37E76,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DEVICEACCESS.DLL FI2=148912,DD77AC59623BE5212AA2770CFB7AAE9C270587697108EBD681F8A3FFB588ED1F,71E77FF811977B990E795B7BE8B84AF7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DEVICECENSUS.EXE FI2=417792,F958FDFDD29EBBFEA0C55B393DB9B15E21812480C60A99E185CD9DA30DFF92F7,283F0545D48BF6BB312FFF57D6DC62CD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DEVICESETUPMANAGER.DLL FI2=684032,69A5FFEB632C8930395AC3F8BE7683512A0FE7113BE11DF85C8F1DEF4CED026D,45DBAB12530C3178734881C29CDCFBBF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DEVICESFLOWBROKER.DLL FI2=57344,F8266E06EA4FB0EBBCBFB2693EB9DB0B20F92815C4D72312D1DC6E67C422E700,C95DC2275174ADCACE18CCA2EEE6120D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DEVQUERYBROKER.DLL FI2=77824,389D2736A967D51FE50EC033F23D7F14FF62B73D8A7C1B4FFFD8F7DB2F488A29,4CA70103FB64E7B407FB15327B28F474,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DFDTS.DLL FI2=77824,211C577F2902087AD252982E90AC0F00C6712BD536FC99328E3572AE76263805,5B264CEC1D25FC6DB61DD469EEFACD52,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DFDWIZ.EXE FI2=443808,27B03ACD04CECE14EAD53272B2C704C74AF64BEEDFC20656DFF4025D6F5A9D33,D594A46E5728DC3308CAFF1B2E8CED55,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DHCPCORE.DLL FI2=229376,1D89DF0804C98BC9D81A05809AB02B948CE7419CBF41DDE1841A5E2B95AF3CD4,4C2C428F8DBA66B38C1A89AC6C9AAC9D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DIAGSVC.DLL FI2=4743168,2D4983701EF3435E21F4B94D0B0B9B216E5E893E4202948DC119FABDF3A26A00,81CBDADA94B94B8761C2302599D312C0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DIAGTRACK.DLL FI2=69632,D9859AC75C26B7304E1D06BDF0BF0EE64CC27792CE3C9E7410CA308DD0A3A5AE,F0FCA4C84EEDDB04B40BAECD4066F564,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DIMSJOB.DLL FI2=102400,B3C3731C851DF02BE8068FD34C987C3F5EA5BC1103A5151492CEDE6FAF1EE199,8D715D547B887A47573B7FE3F556A280,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DIMSROAM.DLL FI2=176128,52B15FA4C2E63C36CCB6670F26D34AE7BFCEA1F32900D3C2C766B4A4CF98FAC9,6AEDB6E7957D7A84BCEFFE024E6A0C96,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DIRECTXDATABASEUPDATER.EXE FI2=98304,E3EFC11F128F6E10EAE8E15C9AA100201AA89631377B8C9E4DB1314DD46659F0,AB82D082274CB2C9F85FB96439229A15,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DISKSNAPSHOT.EXE FI2=897024,BDAE9D028BDEFFD86D3FCA91ABA75DD2CD56181D4C6CA147491E4078D47A8D8E,64CCF6E25245F494C831A80F8A532199,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DISPBROKER.DESKTOP.DLL FI2=50504,50C9C2EDEA6C51F1AAD2DD80A59F4EDB32637F51714F8472D216E5B9BDACDABF,7450570BA423A8E9864D498D3241FFD4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DLLHOST.EXE FI2=159744,DCDBC3ACD5159935E7ADAE47B8BA903370BA89AE7DEA51DD2EEF0C697C86DD39,08EE50B98793B135A10184D6F9C8826B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DMCLIENT.EXE FI2=143360,B4CADE561CA11FF709F34DA87190B97B10A1711FB51F662229ADAE342A73DF76,EF836534449CD734DA116D69AF24AEB0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DMWAPPUSHSVC.DLL FI2=662584,4E4AD48DEB703D5D653B67C56E9EA48B0E6B34845A23D0DFF703E9F6E7698A7E,A07567C8B6670EA5AC808273EFA6895C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DNSRSLVR.DLL FI2=98304,C3045111F9EA152BB30B939200DA2764BA179AEBD125D6B1262FEB6BA95AC131,DF673D7A50A966B776A3678F4FBAF60C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DOSVC.DLL FI2=405504,57E86551D92303146C1D6AC836FF1B57015FF805C3C1A62F53BAC196DA5E5CB4,8F48AF978E35CAFB9A2A88E08E17369E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DOT3SVC.DLL FI2=188416,E0DCE29088FFDB2F524E2F3CD1C9321E458B5A11C02DBFCD591D6FDF29E5195F,485B10689C4AAF373F148B32DCC1AE47,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DPS.DLL FI2=294912,9DF5D0EBDBCAF08E3F376AE993ACA8AEDEF266228D8F1DD41D6F79F294840B2F,5352B0E9134ECB4C304F097C9879DB4D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\1394OHCI.SYS FI2=108464,537C7BF0DCC56757DDB97D709FA65C1B3CBF9619563DF9A13FA8287B71D9E8B5,88A7916DB7D9B8FA202A03B1352A4959,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\3WARE.SYS FI2=873928,47EBC513B8F770FFDC418CBB48586BA7ED74CFCFEA577BBD205C18EB8CF276F7,EE60CC179989CA1619B33F9E99C62A75,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ACPI.SYS FI2=57344,3F4FF9B764F003292AD641432E4DF36882D71B3FB89D63EB9A6351DA861E8ACF,CA8B2FE0CC90AA3077C2A0ED8C9EB245,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ACPIDEV.SYS FI2=181552,0EA9B48CB8E99D98AEC52B1EE2F7A500DEC3DF60CE3F3E9BDA3777D7FF1A0F98,10980A5E0DC297097251577C2DEEF951,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ACPIEX.SYS FI2=57344,193EB944858C86C60D3CE1D834B003C0A3092BEB20B27E7398199BC46C02DD5B,94F5E3589A8060AB133FE551C8FFE805,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ACPITIME.SYS FI2=741376,C5FEDFA4C76A7157CFA75F345EA1CCDD4C1247FA547149D0206E50DE4178412B,7DFBC7EA4869801CD679053F4A212D57,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ACX01000.SYS FI2=1136544,9F3061731FC80C4E2D41BD379573ED12DAF396D84BAD1A5C89ED32B10FEBE929,B8B8DCE9D5F944E7DBF794F4F176762C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ADP80XX.SYS FI2=722336,89E42BBC2C4A843B1DBE208389BECDF5B78471D66636FA9E8BCCDDFC8627B10B,5C2E14F02BD971E89F12910D80DCFDA8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AFD.SYS FI2=81920,D82674D5E2531A2A64251F2F603C01AAC9D141B6D889F1F7DE484E0F104503EF,5EA9FB080B64BA433E8A8C3B66B3156B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AFUNIX.SYS FI2=147456,B57B4F12060B6A2F5B4F960509E067DA5F50B62399C28C539DB7BCDEDB28060F,E5EE877001648388B25667BC6224A167,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AGILEVPN.SYS FI2=368640,A262F3979BFEF5FE66F0FAE8BE9E5EC9FBE59C3B96D2B200FFEE9A920904DB8E,0D6E68EA4ED4AAAFCA90E22E8C7E5D35,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AHCACHE.SYS FI2=52344,40A7D14E108BAB6F099E6CA416B01EA0AB482214ECB2A7F246FE4D58616C2335,59255C61E55B6C519685258C0EC9A0B6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDGPIO2.SYS FI2=36928,98322E9D356BF005642201E2A672C3CB7F7FCF5409439ED5802829547FB7D324,1DA1DBDAD23E8FE18C1C727AD0B059F5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDGPIO3.SYS FI2=45568,387811D57DEF06C9736D9F0BAB0DFB0F83DBAB19E5489BF9A6DCDCBD682DD8FE,D0E26E590DE1424CCC4F77D1687049EF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDI2C.SYS FI2=263624,F0966535E67AD48007EFA7DE88903C9A370811DB17DA4BAE67F0B08C29BCC192,40673883AB5F5B58A4361C7375353C89,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDK8.SYS FI2=39008,5EA543048BDA6DC40223F0C3A58B6E26E75D1EB9F3970718EFDA7F8F2A2E5635,BD3D033853E569511FA928C0103ABCBB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDPCIDEV.SYS FI2=271800,6F27481E1884DD5884AE2078AB13E0DC9F5C380D8DB8FD7CA38B5EBA5846CD2B,6EF60CA168739B90F6B02D32A34B90F9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDPPM.SYS FI2=52120,BEF459785F6DD61492C439427BCF983B9125189A497CE368785015F8F498E5E1,028EF1A8F364D0A7CDEAAE1F57011968,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDPSP.SYS FI2=84400,25433299F63EB920A6A74B0C1D40A95C7D9BC647FF5CD71D4F1730283B660E86,4B7A08F908CABAA7A51E6FCAE7FC431A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDSATA.SYS FI2=260512,AFA0A9EACCC36CFC88AC41DCD0149AC6F9763D12C898397E831D80F202EF4402,C516B52D95F7581C2F6D15D83771C472,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDSBS.SYS FI2=67144,E84CCD1521E0F1DB5B0A6E67A50DC53B430D79112C973CC354ACD616F0824343,17ED35E43A9DB434FEC1BD00E5FC08A7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDWPS.SYS FI2=28064,EB4C463A91FC778B335C3A9F4A74539CE0378F59974B2B46D5350C6C8AFDDB69,583EBA3C83A55BB0623BFE245D28A91A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\AMDXATA.SYS FI2=251296,E7C24D6C13CEE8D31E411549EA2DD593AB984D7CDF0146D01133BC9E38708DD2,148A7EFF6E3A314E0B56E35C0DC4C9E1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\APPID.SYS FI2=113456,8097BBA0AB20B5ECCBD02DEF237A0B36E845EE8F50C684D72148A89BDBA34A7A,0F1CED9316FAFA4C05A90EE730CA70B6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\APPLESSD.SYS FI2=49152,8131649A27A4074985CEEF15044B30D36A310D2E0E14C70347C1950EFD7E4DE5,1EC961AA3B8B684EF11F4059F1B4F3B9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\APPLOCKERFLTR.SYS FI2=133024,9987D0687F24E842F0987193826749441C693D674F423358D44A1BA2473E515F,93D5D37FC04051FB12A0791AE3C42C41,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ARCSAS.SYS FI2=149760,B068F97AD7B47FD224946B98E0F067217A7D8BB8107160EB671F323CFFB3EF06,A750BB0FA32D1CC1E0FC740F09BBA3FD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ASMTHUB3.SYS FI2=451320,C650A4D93A79FB6F389D727E55CB0A8784600AFA8AE46E47998B4ED244B8F09A,3054586B131D04D2E8796806CA581361,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ASMTXHCI.SYS FI2=61440,6135CBEA049E8A2654D4E1D14B7BE1AFE461DF62E3F55190B2B3C05D777858DA,C6E9A81B6DE6A7AF927DD7E9BDD53ED4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ASYNCMAC.SYS FI2=66992,7EFA7C557E3078CAE1F44FF2ED17C4B9AE329F3D3BF7E2CA0CB0385BC603E0CE,E169E838AC1A41318D801A1EF6DED946,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ATAPI.SYS FI2=120224,4D4CB7F480D9DBD966AED7724F81E1F29284D021BF3E3C4C9D1931A60DC13D8B,9F72FD3466BAB19C313673D960248CD3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BAM.SYS FI2=9728,9AD12E18A042C5B8EFB19297BC2E7BD1FEF75A138FEFB64C6BF0261FD3E53AB1,739D089777D2B66DBE7201E5EA4BA2D7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BCMFN2.SYS FI2=176712,26A6EDD713537912788D8000D4D22A3938550543D5478B461CC14E5B196B8812,629BF387B9477523094C9BD38AACC8FD,1,"Microsoft Windows Hardware Compatibility Publisher",C:\WINDOWS\SYSTEM32\DRIVERS\BDNET.SYS FI2=233560,06CCFB5865FCAFDF71BE12691FCD37C5928A4008CA98ABE30E197A4234B94AD6,6EBD6AF9DB6AEF6AB77BDBA9273606A2,1,"Avira Operations GmbH",C:\WINDOWS\SYSTEM32\DRIVERS\BDSENTRY.SYS FI2=136608,693D5BDF9F75EEFB4DEF06B4BAA472AF7D615ED80938838AEE2FFAA7FA228ECA,67BAB37D2B25B165A7F7E9D5390FC7A0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BFS.SYS FI2=189872,EDC736E578D568B97C96ECB7CF9CDE80E0609C6A04EEB584A68E43456F8D0470,4B034307AD862BAC9D495D9258BFA855,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BINDFLT.SYS FI2=172032,3931D31822AA74CDE5A3E95CEC4EC4DF7C16444EA5262CF6FF77E305E5569EDA,A021BB418153A422381A73072A979DE6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BOWSER.SYS FI2=167936,26E0B2A00E0CBA8182515F4CCBFA53A8B58BB4C51C6FD9F5062875FDC4C6B71D,7F01425CE1AB79A3D97CAAAD2A9A3B22,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BRIDGE.SYS FI2=573440,54568649B5A6D0E203BE473840FB4589A623FA74C589B38830793179A2732A21,C010E2E1698B968B83CF0CD0E92FD8D7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BTHA2DP.SYS FI2=143360,5BACC5F3E86917EDA17CAAC3E04B264F0DFDE2F951EE728AC34A3A0590D7800D,7BE337EDF60F421739E5DAF39876656B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BTHENUM.SYS FI2=200704,195BD37180108566D608A40504E4051040E9E4950BF1BF4F455E2872DAD37F39,3768F218F73A4B340E2B6301D8046964,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BTHHFENUM.SYS FI2=86016,CF82FA4DE7B38BF5B2B779A8AA7DDD0E6D017B3D6C643361F1404CCA620532EF,036B27D4A03B3C8CCF115D09934A1E61,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BTHMINI.SYS FI2=106496,37F444B0AC6A9F15621F1682FBAC51E98DCFDDFDDB430CB2A7734013F3993C1C,76CCBFFB3564B062484FA834E1FCD05D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BTHMODEM.SYS FI2=159744,73B4C53051237D05F5348252A19C66217F45B76D8F0E1264A9C6F383FFFC998B,416B01A5C86B11D8291B38D83C16BCBC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BTHPAN.SYS FI2=2285568,B2C59002A0977A46E78CF0D561FC0AF070B05CBD3AD7C14365018BDA59E06619,8C391248CCDCB7CBDB03D2277EC15C32,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BTHPORT.SYS FI2=139264,6AA6A3E1E58B900D8E492F32DDA38673C8E56C6BB7D9503C01EEBD14E6A931A8,EC0071580FDBEDD79B0DC1B2E664E1E3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BTHUSB.SYS FI2=79176,0F65089C4A1B84B51D46CB758FE06AD3651EEECC72ED4A82DAD15BC419F60AD5,EBB4AC45D7A7040352CD206D0201B31C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BTTFLT.SYS FI2=90112,C1383FF8302CABB581E84DC874D2288B0E5745F703EEB1D2C088248348974B91,85D62E50FFF598C8B0647EAEDA68E91A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BUTTONCONVERTER.SYS FI2=534944,8FCA12E3ABA77F5A64A54431969EDC8B32E1A8F3F6FC06282120FE003B2BE1B9,56B18293198BA954762BC0688AB82571,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\BXVBDA.SYS FI2=99744,DD348A26A4237E9491AFE3E79C305FBEE03DA17AE8ACF92582D69F5570DDB1C5,68530A02CE9DD926A4C45D2F05A1DEA1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CAD.SYS FI2=131072,C6EE866166E1019C5D9560E2C34AA4203D0C40FCB8EAC50C5A31223C08A0C334,7343300029A25828E41B5E37279F62E7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CDFS.SYS FI2=221184,297578FE9855F4114A839FD9DEE664E4EB4350D44EE171259DC529ADC8E423DB,DE63B4BDC0D66886A148A3348DEB300E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CDROM.SYS FI2=320944,FFAA9ABF91808E2569206A5A5D5D3542B02860965D8F1EA5790307648CD1E4D3,ECB99F55AA110AC10B7D4795CB66464F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CHT4SX64.SYS FI2=1854880,9EC811C11EBF399A5C4FDDD07A9E63975F2145151306C8599F64DC35A0966EB0,A31DAAEF9BA7D22DBFB68B7E9B17CD40,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CHT4VX64.SYS FI2=90112,443F128CDD3D22C9A9F6201C432CFC6D4888C7F589B0EB32F022B71E8271DB9C,48A97EF9BC7E5C6A062A2E462B32BE8A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CIRCLASS.SYS FI2=585728,5B337934CF4B4674DFB96C2E3E723F467A1A59D56BF93DD68A9CF0EFEB5947DF,998446FF962C13C34C6D7187BCA422DB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CLDFLT.SYS FI2=546224,A6D25A67AC1D0A5B40F0B74CE25B647C5855AA85694E01DE2FC0FDB44FFD5DD5,51A76B2B49320774EC827A76929065B9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CLFS.SYS FI2=73728,F4FD1C91FFB37CE17BAFA8367F0ACAC6E3E0A93075F3F85ACEFCAEF0F3ACF6F1,8EB9661FF0C16B1EEB6DFC7C4E18A5C4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CMBATT.SYS FI2=873336,23B933B72EECF9FC151C79673518C2AF8F95510D3502D4575BDE505D9A26DFCA,BD92D4E34E5CAF515CB2A9029EC2ECFA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CNG.SYS FI2=75056,8D79879E02F6DC19F04743D78004E228D3EBF64A5CC3A57D0E0B624091BE5765,3E4D2BAEFC5BEFD32EA3923BCB96BFBF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CNGHWASSIST.SYS FI2=91440,3B424955065267757DD33A3B04836D7853A5345E67E8D11CEEDF6CCD064095B9,6F8988BC8542FA477966BCE94DDE8FED,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\CONDRV.SYS FI2=132552,AC2F7C1BE9D6CBEB8CB9468C69F1D5363912EC04F986BF5674C5E5A49B4183C0,E015684092EAB9A19AA6C84343F5E1AF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\DAM.SYS FI2=94208,40FBFE22628C2E5F2173F92AE9BBB59BF3884FFF54577404014EFA961D0B5F90,E7898352CB48384C06074BA45A5978BA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\DC1-CONTROLLER.SYS FI2=206280,73DE1512D3FFFD455A72249D5136D0248AD11EEF11AFE29A8AB676B3EA4C326D,0EF9F9DE0ADC47ADAC41C6FFDE40FF91,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\DFSC.SYS FI2=132400,47BA0D01CC95AF457791B134B844B93BB937BCB8080B2B88602B5836C202ED5E,0CF5E1B67C0BE9CCA72EFE375960C9B1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\DISK.SYS FI2=99744,CED6D36F42038801BA4A4555D067665AFEA4CDE9F6CC374B5BB5BBDA873A02B8,0362298F69EA1F473D0ADF87FDE8EF99,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\DMVSC.SYS FI2=51088,8015926E2D2FEA245B8327E1906FBF790437365A3164F2EFB1422E8496B7842D,DC0EC4831E4CC796675702F331CE8B47,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\DRMKAUD.SYS FI2=5137840,AD3875F816AB4B6DC2835FB6E9F9A1E25FE82A2E9F466EF8D1652AB07B9D4C59,20CDB48F9767F28C6E9CBA272E5C9474,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\DXGKRNL.SYS FI2=161200,F44442C42CF6B295E0CE8A9DFB22A8436D8379594C01C674A9D6E7DAD6C77958,04905AABF38B2A73D252F79BF5A72DC5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\EHSTORCLASS.SYS FI2=169376,E7EB1D936036812C2810ADBD71479DE61C4B1E870E7D01D0C4272E3010F168EA,9F216EC34F7416E3E075120B86C604A7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\EHSTORTCGDRV.SYS FI2=53248,42E3FA480F869C3E1D6BF2E78CB7665F19D5F399A8D359FFFA4B71805DAFEB9A,A96F659CB5EE6D897E16825BD255413F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ERRDEV.SYS FI2=3424160,53AF6CD54EAE4D4952BC1FA57225A6A376D27E61E7EEFD00ACAF6C1D9346BE0E,7F4B99B92E31D1B644503F85FEC13CB1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\EVBD0A.SYS FI2=3441568,60FE372E60F532099A242EF73C24C142CEB66CE7B1F7CA48B826A02D9DD513C9,12C40357B8103BF60F7485498C914CF3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\EVBDA.SYS FI2=128304,D53714F5EA26F0528BDB0A02CF9C400DDB921517F91D7A39BC3B703C2384A9EE,7904C86B30C7DD0788DDB9A5C295FF9F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\EXECUTIONCONTEXT.SYS FI2=69632,ACE9195D382EED208D1C64AE2452B8FA4D55329C5E23086D7A341C0ED19B8803,FF4D08D19AA23EAFFE1D594C382E5F2D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\FDC.SYS FI2=392840,FE41ACFFBEA2FDCF2C388A77FD6AD031D66AAB2E27271E7AB751B88C793F75D2,1D42528BF0F2ABF4D9C1196ED33A6F59,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\FILE_TRACKER.SYS FI2=94208,48F8408987ECCDCC97B3D32C14C17FCC9E4E13FFB8BE5E6C481B931BE7AD5B1C,84C92514800AC46B781D6564836B175A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\FILECRYPT.SYS FI2=128432,56B772AC11842C2D1BB5F13BBF24F84EA51AAD78DFF8CCC26FB64E4B2B73F85E,8201481732BEF132D8FAC12FAE9F4372,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\FILEINFO.SYS FI2=73728,9317E76F14A68BD68A768FC4A3886E4B77E15D1712A6242A107E8D0FA243DEFA,1CB49991103966908EA3A186E6980A86,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\FILETRACE.SYS FI2=65536,9F8DA48048EC2C5B502D919656A0706FAD363A2ADE37A7B9B95E21D5D4DCD74B,D2F6F76956C6FF2423F09BE62ED0613A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\FLPYDISK.SYS FI2=636344,1428D135813FE920647B02B923C7EB6B9A40D426CFDFD952039C6CF243DD82EA,EA67AED861192D203CD73C25F848C950,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\FLTMGR.SYS FI2=183944,133FC0E95F3D4D082DD9565272963E48537ECADB22BAD3D041478757EFB37F45,FB6B2814127FE702E3612C3A7ED62F1E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\FLTSRV.SYS FI2=103856,561E096A019E7193D987F98B9EA3CB4BFEC6D28DE6BE54A445B1FF53151D0A5A,F3B805A0E04BDB02673222232812590F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\FSDEPENDS.SYS FI2=931136,0C305489B1D4340F29B2CB4E0DF8CA54145EF94BF544CC95CD7E23B4FD9B1D0E,13B342BB1EE251110DDED47336BB64C3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\FVEVOL.SYS FI2=23568,0B69F0078F04B1CA90B70E6243BCE73001AF38A14DDB67D0DBDA82A47113F271,297E933658B9C2C584A37958AFA6DB12,1,"Microsoft Windows Hardware Compatibility Publisher",C:\WINDOWS\SYSTEM32\DRIVERS\GUBOOTSTARTUP.SYS FI2=200704,30D8B2428847243874EFFEF311D573AC9B1F0101714F5FEC30EE360621059987,2F344032BB21D271A5CA2A5621319846,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDBUS.SYS FI2=532480,CE7F86EB3D98750EA103543F426C5E00AE5EF6E4AA86AD80B43E1F08C32EA870,93E899C41CEE0750B25BAF406F1C1BF7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HDAUDIO.SYS FI2=75168,23FC4EAD8368F57CF40993491F3FE7E48D2866870EEFDCE923F78BA387830E45,AD72D2B31ADD72BB9A4EB4D2C051A09C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HIDBATT.SYS FI2=155648,497B1AC6244FC485162E43C4B6A41D9B3DB193BBDCAEBCD66452E443AE9003E8,3585DAAB0A5F24C72FB0CE3DBB877298,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HIDBTH.SYS FI2=118784,B9A930357CF1DB021ECA9AD416368DE913BBF62D875330164D58D733E8750235,720EF5349BB2F6CDD876E71E9C9C451F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HIDI2C.SYS FI2=91456,61C59A8CF497947A22B584762877A6CE4CF8C9A553AD404649501A5FF61995A5,3FCDF06BA64DF6F5D813AF1A3A318BC3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HIDINTERRUPT.SYS FI2=81920,967EDDA02EA047BF5F6689787FD7E74BFC16435EC5DD2C1C8E8F6C6EADD5DADE,438191E5FD42C86E9CC585F76AF9C1FB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HIDIR.SYS FI2=139264,01097B20FC3C5A13035D7C904D27C40A801C5C78EA6E22F29E59725E76485D97,BEDFE45D7B42B163A433E1B508E4D2AD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HIDSPI.SYS FI2=131072,EDA61EC75D8556BB776FFC4238CE42BA0BEBA1FBC290376649DA50A3E50173EA,B60FD3884F674F1D1855E97B1A5BD35B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HIDSPICX.SYS FI2=81920,A14DEEE3C60A0D79BCCDA92A209927315DC82D092B074A2394CED7184DAB0426,30DD832B70F74AF5B7C402EC2A337097,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HIDUSB.SYS FI2=65440,A1DE9A347D9964BD050CC644F213E09720106D7457482E04A965AE7B51A22554,144BD599D81BAA3421386E0D3EA1DA6B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HPSAMD.SYS FI2=124360,41A78CC571442CE282CF0E27DBCED92138CA0EDD3B50009B422BC64EE7A93EBA,08A61F1AA301855E7EA82AD08D74D46E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HSP.SYS FI2=1979832,3A709BE7A6E6D9E2153ED7E140971321B5B6C924233B11F29906A10834B52D58,91A8914C468ADE769C05A5633729B78B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HTTP.SYS FI2=75184,54C4E8180224B0313C118B45B1BBB5B9E4E13CBD5C263C2D79107980D28D3378,0EC09D55FB825E055519D1AC60CB6710,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HVCRASH.SYS FI2=99760,C18747A61226BF35538AD5232A75F7FD2052CBAC276EF0F32671F6E1BCA2EF78,848BDB1272BBDE88BB8095FC56561DA0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HVSERVICE.SYS FI2=79168,D22F9B1864A4D4A747C1BD08C457878D0FECC192B6771CCE3CE3463D9A437D5C,5227FB8FC903CBF922969B2A8322FB57,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HWPOLICY.SYS FI2=62784,1A5592CFBC576FD90569D219B5A1E21B9F6A062B54CD6A5974504C393D4549DB,632C854A37A6051AB5B861EBCD18DF1A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HYPERKBD.SYS FI2=79160,59513BD70E155ECF5FB02CFC40D6E747446B4FED57CA4AC3BC7C028B600DF1D4,F09B47ABA1EA13D737D77EA1FA5D85B9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\HYPERVIDEO.SYS FI2=155648,74459EFE2D403BDA7B60B0146EE53651F104BC9C67C1C9DB2E9D1B2B76C03CCF,9C6EDD48D79D5632C718B7AE925967DD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\I8042PRT.SYS FI2=36352,FAAA46F22944E043A90AE6E9F0F86AF187FC2819C563DA375B2A409347BB2C35,9E5AECAB5F05218D9AC923E7CEA1CE15,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IAGPIO.SYS FI2=91136,9296A14590DFD94A3C728CAF3CA91BA211F27974F9CFF8417CDDC00D1453315C,48EDB9B5DAB7D294951A520330F13715,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IAI2C.SYS FI2=79360,6FF5D13EF69E8FBCB4772C7B5C4D5770C78E0B29F9164FA1611EFDE91CE876BE,6C3EDE394C71D5A67A504F55E35B6F47,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2.SYS FI2=93184,2141DE558461B592D4111A0388D1AAC8062FA72CD1E2A2D2D68279A9633288E9,806D14CEAF25E5F2DFCBA8E7E33B86BB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2_BXT_P.SYS FI2=112128,E353D90D0B79A70F976FD5EA1CB7E25A97835E25116962EA035424715B2F43FE,87DDDAE1693484BD0A210C877BDA00C2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2_CNL.SYS FI2=96256,71FDC25244298D62A335769D6ED43394C33FBD8DB05AA54CA924A2977F37858F,8D3E3C431367E3BA632B4396CA662E1A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_GPIO2_GLK.SYS FI2=171520,3F1F9EC7571D0F82D3F5BBA298965491260708F05EBAAA2CC23483521A5FF079,149F1260537C4F68C3F67C363B62F3C5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C.SYS FI2=175104,BF354297A55713D9E2DD4044D42810C007733EE54D5A80D58B96DD279D92C716,3E641E905A6DBF29CBA1E72BBE349808,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C_BXT_P.SYS FI2=177152,F105EDD16E38F5C0044CC7139E4084A04B0AE3212171A1C7F6FE759F3F5F77FC,897478D8FACEAE8681F6F3502201EC68,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C_CNL.SYS FI2=177664,A92487129B81376471C842B9932FF3A7B3ABBBB89797978E3FDEAF71A6FD5E3F,2ED3B41C7CB4101ACB15D84D8AB5AA9D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IALPSS2I_I2C_GLK.SYS FI2=38128,F77696AE55B992154A3B35F7660BD73E0AB35A6ECEEC1931C0D35748CFA605C0,16A10CCEDCF5AC4CAAE43DC9FC40392F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IALPSSI_GPIO.SYS FI2=113152,8445E41BAB21964C7F014742795E462BDDC6C37A261990B3D6BF4E637A719547,EB82A11613326691508D9ED9A4FE29E7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IALPSSI_I2C.SYS FI2=885568,A46A34E6DC1573D29B87AD22B336C6A7358A657A416B1643C0D3DAD671D81692,76B3DFB22C302DBA9FA58C62D9668D04,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IASTORAVC.SYS FI2=413088,7E862C0367B382ADE309DEA6BEB95FD2EED15CAE8BDDA37658D66484C00F88BB,061FA45F59C7328C4749B0E5BAA9FC52,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IASTORV.SYS FI2=559920,4EB00E751F4517EDEFFEE1225EF5E188B352D062B67F4B7D8B885344FEBF141D,06FBFDC89D883B1D10783CC3F2144A3F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IBBUS.SYS FI2=86016,DD79927AC44F6096F7D7232A559C28C6053BE2D5C6D6D6358E3374F3ACA0B6AD,C86306CFFE83CD2B7A4B637C383D5C7B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\INDIRECTKMD.SYS FI2=58784,65040CE1B06A34E688A121166FBD09083D8360CD9D8E6839E2B1F6C935764D0C,C8FF3105DB0D9CE260ED249ECF182BD3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\INTELIDE.SYS FI2=607816,7E8EA43DF2A7AB4B61126389B1439FCC15E89ACF410BDC31A02F1B595A4A66BE,E23D53D8E5FD132BCA882DADA3121C3C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\INTELPEP.SYS FI2=65536,AF0C3C9AE1DB6F60C65C0A046F01C740BD47E10B73FBF0A3A05BB0AB8542362B,76DC389A4F660AE3688B1683A566F162,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\INTELPMAX.SYS FI2=87640,33A90AA7394B5F3F3FBC4F94CACF360D7EE1D9C12F6B65973125E5AE64BA9259,0BD7D111F596C5D9D256191F0C397290,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\INTELPMT.SYS FI2=300472,171052663A76C57C6C2ECCED5B831439C638FCBE79E28117BCF8AFB29F70642A,E98F1B7D0D7769A4E7A5A3F25A666705,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\INTELPPM.SYS FI2=95664,254CF4D65B4F67488F606EDF0BB8BEE553C85CB72D3F027FFF3647C4655C1D18,DB98196C7ED22AFD25F59EFBFAFF8296,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IORATE.SYS FI2=118784,D90C032A8FA0C8214C0D6BFA7D969A9AEB1853D033E902BEB24332E6F8C87195,67E572573C26E3CF9C3633D72DAB0C09,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IPFLTDRV.SYS FI2=165280,5EDB60DBC4BDD1395BBE12FB59B03A4767AE885A39B092D74880BBE2727D68CE,E421033269552EDB04B4CB717612715D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IPMIDRV.SYS FI2=253952,8CCC6C77EDF4CE65D725BBDE3FA0DE3BBD0D5B82218E73244E74537B11E7B535,DC3273B4F8162F30C9EF2043A399B0FE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IPNAT.SYS FI2=99744,2628245D7886268F79B80907D364A6139312CFBC9D013AD9BFBD94C76FB49F6B,DB1B2384D339013964BE5858BE7657F3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\IPT.SYS FI2=58672,F4DC0B159729D5404FEFB7784C6807DDE9B7C81B70CB21A2D34D31F321F17FCE,EB44EC3D73A0A19E02B4DC88D52406E1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ISAPNP.SYS FI2=187200,5E7ABCE438FF8A3E03F1C235685A95C9BC787B87854EFAF2C6EB5764B8269D4E,908162E81DF26A2E2EC79DD848F1875E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ITSAS35I.SYS FI2=95648,C3A037208BF21D29C09ADB1C16BB3B0210E5FA9351B1298778AFCBF71609E3F5,47967CFE21EEF5715711CBE1B7FF32DA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\KBDCLASS.SYS FI2=77824,C02E5FB9898C97E1B47D0FEA73E29C3D7B6831F9CC78211505BBBB5E1223F5D1,767D0B793D5885488DFD370F8D4D553C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\KBDHID.SYS FI2=79176,67CB8EDFA87D3E0FC92AFB67A092F2B43F428957153CA6DA65D4D150C269CD48,34634233F6C516E7B03D92725A1BAD4C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\KDNIC.SYS FI2=70976,76E0ECD9D0B6ACAB034A33C33A5F2FAE93BBAA55244719FB80BCF581281E0493,1D7C98174D6D8B581FA29C5FD0B5E63A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\KDNIC_LEGACY.SYS FI2=189856,9D6C0906814383A8DB5568E05981186637C711A82C79DFC05FFAC412832C5952,AEEF05D865FC96DC5AFE8C94737FF5F5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\KSECDD.SYS FI2=239024,0ED5CBDE7390B41E9F4137980BB9D8C9BCBD4D0D9BA74EAF97B4924E9F12A1EF,6E40D8B9286C1A9A86AA65674C4087E2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\KSECPKG.SYS FI2=73728,B29D8A1926C7FBD4313E5B78FB12879E8103766071096230C25B022DC46E8137,AD0D8F76D6CC30B116B1E9FB3A35D18F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\KSTHUNK.SYS FI2=68160,90FF5C974F91B23D9E814A92521EBD512354D52075DC0772BFA95A0F2300F58B,8ED79F41215DF3A1C757DAE08DF4C17A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\LEQDUSB.SYS FI2=25152,A0A2A4B022C3A0041FBC74DED4CBB70B6AE5E983726B41B18FE691F3A6E61146,7C4A17151072CC6BFF77E4125E926F29,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\LHIDEQD.SYS FI2=63552,F4CDD1CF885DC8F4953014110EFD966FEB7E0CF41D5B23B82F948A9BA07ED008,BC76F3D84ADF97DF840D85241ECA4245,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\LHIDFILT.SYS FI2=102400,2E0F519AFB49BF9E7C77E4FAA1E09831A6BD90B3263443AAEE69806164639040,2F0C009D707A3E0A1423A689DD88079C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\LLTDIO.SYS FI2=54336,D734CE9692A938B26FBC1773BD94EC15CD403A455A94FF4FAFC9D6C82CEA63B7,70D2A0F86CAF35F7F618FC6600495BB2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\LMOUFILT.SYS FI2=32080,85608A7AC8E1C05ECE199272D5E42B1E880F8FDAE386C18D813B4C3A835579E3,693856608E805ED6673B6654DEE92FB4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\LOGI_JOY_VIR_HID.SYS FI2=110000,2D3860A83B5E12C355A1F6F6DD7D61A41C0BA05950510D0655457B97584E4CC4,E04DFA2BB9B412C3EB12677010D5B07F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS.SYS FI2=125344,B0CFED90A269FC79767F2012C64BD256451FEAB1948FDE416DAFF95A85FF8A69,1B821D7262AF1D62E41F0AA70E0E1AAC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS2I.SYS FI2=138560,AA3F0407E20A2D7E90D412F4325FB0D7124F12EEC4215CD32A7DF9AA5322D135,73EAEC8FD74E2B73105DCDADBB14B151,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\LSI_SAS3I.SYS FI2=184320,F2ED75F835666EE1BF97F8392F4A98FE544602B632553F1F22BEC0B7BBD59A2E,6D58CECF6F2D07A0F8C12A68AE53ED88,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\LUAFV.SYS FI2=566592,63C00990F9530A82A76F4DF78834CADB68D5ACA057E07157CEC653264A891595,B293C458B6338B05393222E37C58FF74,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MAUSBHOST.SYS FI2=99744,1A8D40C5264F80B82F03CFF5F73C06055FB21B5D9BCA1D2C4532A57618907B66,B6FCFE59EE636435D453B8AEC20D1769,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MAUSBIP.SYS FI2=487424,90BF5F00A659C20BDFCD41AF123C92F4C046FD8163AFD22EE1FB89B9FFC6B31C,7E02A892E1DC62D00ABEF8DC7A0208AB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MBBCX.SYS FI2=81840,03713BDCD061CF24D8DC4D8B4CD250E28A5946C384E60644CB4328DC42B8F50D,4E5506093713F088C5734536D0AF9029,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS2I.SYS FI2=101168,EF1AA5EB345A92A1B657A4D010500BBD1EC731B8EC22A35472F5D2DA96138EC6,728BFB3B1007AEEA6B3F810247EE3D4B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MEGASAS35I.SYS FI2=576944,6CA30A0B91DD54EDD33C3EC41E6922D329ED38C4955E38C04745328961B31974,4F7F28859DB5065CAFFD79E89D923002,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MEGASR.SYS FI2=114688,D4C5E6B8D0ACCE3F00A2A65C20368EC806C03ADC7FEB668E36457193DDCCDE93,8D6671C3CA106CD42E66F4975B19ABCA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MICROSOFT.BLUETOOTH.AVRCPTRANSPORT.SYS FI2=151552,205DC81080C28F76785596C3FDC3C1C3F29F6DF95A3783A5446A94F245FCD1FC,A51FC4435DB848C2A5C15EBCFA066F37,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MICROSOFT.BLUETOOTH.LEGACY.LEENUMERATOR.SYS FI2=1132336,211BDC6BB0720EE7221D77F205BD828AB4172AC4F454877BEAF5E3D74419442C,1C652F46B0E067E856632651CC394863,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MLX4_BUS.SYS FI2=90112,D560005584CAF6D7EC17CE15C28BE527775F91C5D9DBDC1F2225287B711C8500,8861C46BACA685AEE423CDE8F42679D7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MMCSS.SYS FI2=81920,8C9D92C3FBA0E244648E222AB6D6A7D59B51F92C22D2F98D3E1F0BEE1D459EB0,7942A4F185A6A41597703F14CDD9FFA3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MODEM.SYS FI2=122880,951F70FC7412AF157E38E21D56FD16E2A5856CD3AE40012F9757F5AB3CC46C35,5B5626FBCFE26748918287860E350D0F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MONITOR.SYS FI2=95552,0CB695CDD5EDD557ED9E544E2DAD3FE9EC6684F81C1B7BBFF0A841BF1C495339,43594887F5305B590E53706364F8C77E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MOUCLASS.SYS FI2=69632,0675A2D2B5488AF06ED72F13F687290189A61111CA048C33122657B07FD74458,BE6E209F950102FFD2BEBA28870C6DA2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MOUHID.SYS FI2=136608,308D58336DB969FFD1D8309C7CBCCC8089B0E582BFBF3D9337F1622DEDE1339E,74A064C254A092C470685B567E154889,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MOUNTMGR.SYS FI2=90544,9ED1F6D7DE917CF5B387EB1856BF2EA6BE69CDC804ADB3CAB00B00647C25C163,2DED6A2BA517334CD69FB908AE3C8494,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MPI3DRVI.SYS FI2=114688,D640F00F5E152782906D443981F7577DBAA1960058E27B7683BA029182F5A220,B2A5127A97FF55134CADF6543F85836B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MPSDRV.SYS FI2=196608,6D22C357E2A2BF93D1B9EF34818CD861E6BFCDBEE21AA64182BB4C73BC3DCEC8,1293D0DC8AD2E08ADB2F667C70C14F8C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MRXDAV.SYS FI2=923080,CCE84DBC8A9108B59EDF964D287C36F41FF291D61A638EECA5D7CDD66992C13B,CBBF73ECD1D888706F2C71F98CA247D8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB.SYS FI2=390584,70DD99FF66358FE118D7B35CD0A32CACBB10A98DEEDC27659544424AD3E99F6E,64AD84F1DD1FDFA633C2A89CC6ED8CC6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MRXSMB20.SYS FI2=226736,56271E7F176C492A9B358A4F0B54EFD19CF972033CE98BCE38AFA8ABC8495C0E,A3F82E0665B1C430C77D77F852D5973A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSGPIOCLX.SYS FI2=95648,273B2B6C9B66F907F21561086240678E115BE27B6CD2B950624EFBDB5B9CFDA4,D9CB9FCE63DC1856ABA9FA6FD3E3683B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSGPIOWIN32.SYS FI2=49152,760E5E19767E01A1A37D40E7B90CFAAFEE6A0DC892391F199789EE5F9EF5E535,5144394802BB50BDC7FA99F219BE548E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDKMDF.SYS FI2=49152,4E310617A209A1E7A924674AE3DD2C0A6D06828C7DA3D2E6D82CD7070BC0D353,999CF2E58594309A32F3F838836749C2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSHIDUMDF.SYS FI2=61440,3A245262EBBD2C661395AB770A18FDC774EE34E31A1EF96CF391EA068AA2469B,2A02CAE188F75E567601C05F5068B6E2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSHWNCLX.SYS FI2=19672,A7261F13F11C3B845C27CFEEB1CDC6A9400090CEBD8E5ADBF8C506C1FD9811DE,8663AB852D5194D55F37DC68789C9F0B,1,"Microsoft Windows Hardware Compatibility Publisher",C:\WINDOWS\SYSTEM32\DRIVERS\MSIO64.SYS FI2=58672,DF2BF42C5CD3401FA0215AB3EEA91EFD07EDCE240F36E30FB14371F5C4B3AD80,C1DC07364B2F463CDFBF9BB1D18A046B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSISADRV.SYS FI2=329032,B9A7A40325BFDEA590078CF9CB32D3087284B3F57C280299B71FB7FF4FE17E1D,ABF4EF8564C814597D59FE276F55A8AB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSISCSI.SYS FI2=73728,21A592AA83AF90B87F50B55CC16382A2CFB16F56F0215B24328991EC82210E96,323F9CC670311D2FA5B44FBE3E214709,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSKSSRV.SYS FI2=106496,75A1237213B66D483A78F3C21C51415CDA38BF120038CC4AB4D80765402C4C22,8D22272EBEC9AEF6552BB6D43A671889,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSLLDP.SYS FI2=49152,BD1FE741AD4F17224F55EF0ECE4462AD7C052B39A71CB959C68B70706788D283,F1AEC85AC10C85C7B50A79FE8F3DCEDA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSPCLOCK.SYS FI2=49152,A52CB9915E9D022201E6D9C4A4D1B79BE63CA2CF4BAE681316F2DC817859A625,02098B9396B37BB490078BA9577F89B2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSPQM.SYS FI2=461632,790C114F3E1A111D276FC8CC197E3D8C2DA4AA4CCA53B80FBEBD4E689EF8E450,B2B84EFFCC419FB3E2FB638E38D83141,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSQUIC.SYS FI2=458032,4648267EE3D502FD32AE86C1126E97C47BA04C6B02DA9ACF7EB023D7D61B78AD,C9042BC569331093AF3502685315E391,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSQUICPREV.SYS FI2=79152,B158D81780504AB412C17BB9DB0C710F6AD9C7F2B75E7095C2FC2FC1847DC9A0,FBE7841DA9237BBF30FF6ABD65984DE7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSSMBIOS.SYS FI2=57344,9F935A7B343A98BABEBE3C0C5C215BC96A04E7453EB7DE3D16D52C341440BD68,9E6385923A01500F7789BC99BABAC9C4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MSTEE.SYS FI2=377864,2497D05048D4179F734092DA7A3D372B6F6E934E09E5C9DABDFA23C6DAD25E8A,03B10F7E7244E6A41922394C3116929D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MT7612US.SYS FI2=53248,C68818CE3ACF1B50A8B39690489A2F51D73BA61A397D22F7B907BCABDBFFAECB,23A450B095ABC1C1E9656C859AEE79EA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MTCONFIG.SYS FI2=177456,C840E3685941E28F6AAA903B1D408BC776FA56325562ED38F683E4B070039159,C94DDB190062A73059106C4EFD2BCE2A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MUP.SYS FI2=64928,55CA3903D53AEABE3297CB5A52598CAB2775D28F9821B94F124FEFA6302EE4B5,E683E3497D87C1382BFAE6FB65E4E7FC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\MVUMIS.SYS FI2=95896,3F58C1110538155F56A463BCEB6B66CCB0DBEDB1AD6BA2CCCAAA0CF2B8C9F659,5146D18EB73D2F920E383CEA5FBD37BD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NAHIMIC_MIRRORING.SYS FI2=147248,B712379CA3ECE73EFE1A9DD1BB94BC7CA0C4E3D68FCCA9A99888F67E11AF00E8,6F4DFC6D493E49FC0FEC69A01CB3577E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDFLTR.SYS FI2=1848632,EE311F45F97927A70C410F9CB8A8E71255D162BE422662B25EEFF614BF241992,63724499C94E933FB1B270E738E26FFC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDIS.SYS FI2=86016,582F818466D95D14A2397BE9DCCC0996307F6278A53715913B30738D7DE2596C,4E9672E8E6C2F2032A9936B0853C558F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDISCAP.SYS FI2=163840,A92580F55211CA841F917EA9B44E2B5D1620EAE4E44213AFFC2DDF7BF8B80D2B,34182EE1C12553C6ADF46CAC7DCDD8D7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDISIMPLATFORM.SYS FI2=65536,1C5DF57F2E7EEFBFE1A113D283A78718096360B296DBFABF757FC40273A9AFED,4C18318DDE70513B9408FA5235F17C16,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDISTAPI.SYS FI2=102400,066CC6D74FEBBB6D655A7623D9700DC42B040BFF7152B6B534F03B310FB8125F,07A0AE47102168318B6513C7D417DCD8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDISUIO.SYS FI2=57344,5620649D1A8F0F38F367E473BDBEB80A3A89A4A21326E2304CD0389D24C68511,D95300CBBC6FBA681305678D261FEC75,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDISVIRTUALBUS.SYS FI2=249856,5310466C1CB835534ADA32A7B909E30FF7DAC76000267ACE0EAF279001F6DB06,5D99785C2266B59B8235D9F749D4BFBA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDISWAN.SYS FI2=83360,49D9962A3E52F7DA104C9C06F9067C638AA1A5961DAA7BAD9DC80B4806C9171C,3F42FE65E726E27843BD0298A792BBE2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDKPERF.SYS FI2=107936,23E70FD342E45A986DDAE97712B5B33ADFD536E49A3F5B9E245A1F7C55EF341A,1DE2304B91F95EEB2C159B84D5649BD4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDKPING.SYS FI2=122880,0FDF33CD2F51A31810DF60EA5CD14D88BA3F411B3825E83FA18028B7AC510145,B6EBBB372C8EC3F79564A16C16CAEEFE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDPROXY.SYS FI2=180224,56D99F6427FD66F5869EB166D32CD14B32F5ECB0CB23443A32A67AFDD9523D20,726087EB6DC6C2E91873EFC96FDB703B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NDU.SYS FI2=378272,3366175F09AFE7D4A677F74D8BA810193B9C213650A024A06EB13C8C0D12A25E,9AE5D39BF067EB57B967B62003F1736B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NETADAPTERCX.SYS FI2=99632,29C10B2BD9C7272C7C71462F39252A75DE0159ECCFC58BDF1C407D8C226F0AFC,DCB8D72D796A8F7B4173F8C378EE39EF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NETBIOS.SYS FI2=348160,54B2E253154D7335B45821E2D254A078E7C55F23E221ACDAE9881F7BEDA028D7,CC1540DCE3518BDCD5E643564C4E2264,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NETBT.SYS FI2=116048,C51200EFBBBBF11EBDA798E4B0A3D60070924758549C9FF5F29710E0CD951ED6,93D96413D66F3184205DC210DD5274F3,1,"Avira Operations GmbH",C:\WINDOWS\SYSTEM32\DRIVERS\NETPROTECTION_NETWORK_FILTER.SYS FI2=116024,863583BDD081AD36C96A24EFDC20A52B0C89900D0EF1242C3CFBE18E8ECA7031,EE4BFF2EF11AA1895B378BDA5204D40C,1,"Avira Operations GmbH",C:\WINDOWS\SYSTEM32\DRIVERS\NETPROTECTION_NETWORK_FILTER2.SYS FI2=398664,9E8C36CBA7BDA3786A0F88CEEAFFC52E8D77B9B68C23E6499CFE724727AA18FA,D8373B8914616B1ECBE71745A78CE972,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NETVSC.SYS FI2=61440,DDE7961A0323D8450A3506AF210EE5AB8EACDE91D6F78F6D91D52C456FB9A3A3,4C5F1034AFEE0BE85299ACCFC51C6C48,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NPSVCTRIG.SYS FI2=77824,F64E2E430EB7E2753B323AE80B32790672FE58BC6DEBC806F86D8B47C91780A1,B0FC2E92EEA2C2C780A0570E91D17BAE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NSIPROXY.SYS FI2=210336,246E28B07C9FD9D9BD52E17CFBD1DB7042A59BF0FFD7956E091556E9A77E80D6,6567EC81532288E167EEDEE7B4B33C63,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NVDIMM.SYS FI2=121872,931026D6F11887B988B1AF7829B4FE52E2C31EF7BCF26EF46255853FF5660613,9E0CDAB3D531311CBED818130BBED27C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NVHDA64V.SYS FI2=103744,630BC47478DA1B6429CAA040813E5071B505609543446544254CCC5A93F5334A,0AA7B8895E173B187AA2C1E480FD98CE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NVMEDISK.SYS FI2=151472,DB769BF751D7B23FFCE8CC1BAABB335DA5DA15E06A845A049EB68C3791686FED,FB6829DFAE5EA01864C3CFE35452F7E3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NVRAID.SYS FI2=167344,6C52424748A9F88A3C0C33A1A4D9813107066FC7550B7C27BA3DD3D606DF4FCA,703506218836285FFCBE409517771B35,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NVSTOR.SYS FI2=59928,DE0D4DBE87CF90F5A18B7C3CBD07F5041B2106855C4826FA1BB1DF657276C807,7DFE8B7EF87AFDBD602F14FB2391C89F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NVVAD64V.SYS FI2=60240,9BF2401B21FF9B1CC3D8DE7E1B0C229E0912830E98AA6D3E6791EB0FC5763A9B,12F9914C9F057DFEF815F59A7A4C0CCB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NVVHCI.SYS FI2=839680,A2D8035216DA99318C9E2EC83D1E5D4524BCF5C18E45DA088F6E3E5082C5D3E9,EAACECBD1723E21FF9E1CCC551B57C57,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\NWIFI.SYS FI2=92664,2C2958DAC6F36922AE094705E058BF6470E1622B31318FB9FE0DB5457E383F45,6B0722F0B6ED86877D96DA4A57F3AA03,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\OVPN-DCO.SYS FI2=148896,95C66CE053990737CFB56812C6FA61554815202CBCF29680DBA98CBF05EEEB22,1986EB6682FE51EB72C05B2F8C2D939A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\P9RDR.SYS FI2=206152,C1E49F1DB3DAD79B6FC1BA50B619D02823D3330712EA40FBAEE34C4EF773097A,7112E4CBF74CAE7BB53C2211400D1A4C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PACER.SYS FI2=135168,46B916329C1E92F4D47A1EA9F5F2D92F72BDB624B0297DF2BADFEFBEB4B8C6DE,D7ABF96C1A3172188814E579026844C2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PARPORT.SYS FI2=218432,0BF77823A3BD423F91416E241E765731973B574266890CBA818A2DDF39B164EB,758492A018F43F81B0839087C3AE8DDA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PARTMGR.SYS FI2=591176,3FD67AA7ED9381C57CBCDCA5AD4AE43D517BD119FA4134CEDD996BAC24CCECE5,9797C2CC58E8FD832CB531919B87CD98,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PCI.SYS FI2=54704,BD87871BE6A7295C348091AA7BFD265854596778B8420C07DE25124545C21F66,8666435450A9CA7165ABD1B981D4955A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PCIIDE.SYS FI2=156992,505F1106FCB85C22FB2B68B8EBDC945A0C361EC12F8FBC4FF2C412D58BB785D9,D8A0E2B1330FFC122B9B72B0CB2A17C1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PCMCIA.SYS FI2=99632,EF9AE94A1A62AB3BBE01B926FCFC5D4D0FECB95E660310FA977E4470C0C45542,A6502E829F2DF91107F7FC6CB60AE91F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PCW.SYS FI2=214448,2DEBB5D628D9B9DBB21A971A09EDF18BDF3E3165B57C32012AB3F94513D9576A,105763B181004D0475D34B5A73588855,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PDC.SYS FI2=868352,D82CC605971FE815BA952FDBB3877E576D247DA10ED7EE2A952EC97A356884F4,3ACCAD30228A6850ED535DEEB8340137,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PEAUTH.SYS FI2=59824,7026717EBC767674C3B52E2465FD9298CE02F7560A096162E9B50D6782A8CF08,D7A3DE144AB532FCA3BF4FD98E5990DD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PERCSAS2I.SYS FI2=69552,32843E02F6F814336989698031EB8EC222DB8E299F8BDC4D34C1CBFFA4BABF48,523EF583D011DE89C972D3649E04F120,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PERCSAS3I.SYS FI2=218416,31D683A8DE0E3E82EDA1F7FB3F8A49B7D5562857ED60F5939FB593E501156659,12933605F43C90C3932EE01E4E31EBE4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PKTMON.SYS FI2=61440,17AD9C647518DB377F806099D2ACDAF1961D993D9DBF83017D568E2154B54067,E6C0B1AAFC193BF3C59EBA1CC41F84C3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PKTMONAPI.SYS FI2=185664,9C86945626EA1E32F9B749E1F374B0442DB8337FF6F9ED3482A71B311B4C5211,9526C26B31ED29C7F7ED9A8D5E84A9ED,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PMEM.SYS FI2=53248,74468BA2353CFF2C555723D032D3E2129A1675E071C22B3904146548A6D6C6F0,288E1C6340AA5D1E1DAE6051F8A09849,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PNPMEM.SYS FI2=61440,B11622606790B5CA52FA344D21EDD8EC303ABDA8F7F0D3AD82A932CABBFF3EFB,499AAA36D6274D81C1259E2B80B0CEE1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PORTCFG.SYS FI2=271800,1B1FCAC3325D176D512F264C55AD15598C5E30DD14A66AFE5192A055697A0BF4,FA28E0A0BBA8DFF9E429A84BDEDCC29B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PROCESSR.SYS FI2=45488,DB637123A22E12C848086D65BF57C4A5EE48C5C64A323004FA05E07BB4366F62,28AE1B1A00A318FC1316E3E9BB728A38,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\PVSCSII.SYS FI2=90112,838597752099CBFD4EE0D0128C53E0207FA0A381847AEC7F288E898BE9539718,AC54AFA5C96826206415AB6E1BFC9F58,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\QWAVEDRV.SYS FI2=75056,4DAAA55599FBC602DE4F193AEF2D92E6D4AA5D072EC70AE47825DF7EAA0B07EC,EC3C7F0388D92D1007D0CD6FE9C4EF7D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RAMDISK.SYS FI2=57344,CFFA968EAF89B08F6F3C5BFFACFBD1B3F22E7CAA5A9FAB0CB514F45CD0D4281C,EE3F17CD619E88F1DE51E7B8AD8ADCCD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RASACD.SYS FI2=147456,EEFFE0F14319FB6564A3BD9B803A8DC43751043A3756F1FB5E51648CFE18DEBB,9882A8E0B851913585E5FAC2BC443EFB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RASL2TP.SYS FI2=122880,4174DF6DB0196626DB7DFD7A66B960103A01A08DBAA5DE2FC6CC7B22C2DD41D7,A3B1689603F9C0D9B37C767ECCEC786E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RASPPPOE.SYS FI2=147456,9D52A550A98184BEAB3E759B60B00B8639BAD24444EB0F87FC9DBF8078166275,4526983FC81105E8BC184E5556D42274,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RASPPTP.SYS FI2=122880,95ED1E66EF3773EED79B3A23D7D7E188EA331FB7D7F5C059C4B786537567F9C7,58E82EBA168B2DFB7F9BE3C06D011F38,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RASSSTP.SYS FI2=90328,2F60183E12E7CD79AF4921B8FE150148509CEE8FE071131B604088F0C65E8CC1,936BC9A12B030CB3CC530D38DFDE602D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RCBOTTOM.SYS FI2=30936,48E81F46AF9EF595C6C4FA5CE5555FFB1B6841F5070E661205BB52F03BCC3120,49F0ABFC95D3CD323DE606D2077D7B3A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RCCFG.SYS FI2=548056,7EEAF235C1136522B1FAB9F05726292270B84AD00770A13F0D7BE6470E4E78EE,945B4812CB6626E2768184E3027A3997,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RCRAID.SYS FI2=566600,9553C27575E4BDD16D2623CDDC44F9B550A98272E91AFF9A5F44BC029701FA99,9162FC29B38FB6C0DA44B7DF431E5A10,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RDBSS.SYS FI2=57344,D75CFFC80F2B836C3C86014DA9B6D492D497AD6D40B7B889ED6D43BB07F6F34A,173DFCFBBB6679A33C74C38C5B8C2ADE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RDPBUS.SYS FI2=200704,31F3819E5DBFCB37D5254C4A10B6C3A20C5E93A7EDD3EFBAE3AB1E31A078DA5C,A847EE8D4FC6EF432451D934FA263841,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RDPDR.SYS FI2=312752,257E3AD5C56317E49F7F32665A886953CFA6FCBF2F1D772D4B9D4468DE6FF398,5B3D6A5A5350A6896100F65A7B353FC4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RDYBOOST.SYS FI2=38400,25667717BF4691957F07A6363585E2C7EAF22E5FD7229BF32C91EA59EF4A2EDD,EC8E58E6B58B4FCDE77431CDA3A24C0E,1,"Microsoft Windows Hardware Compatibility Publisher",C:\WINDOWS\SYSTEM32\DRIVERS\REVOFLT.SYS FI2=253952,3067A5C1B2E095DA624083A14171DB17D6E74D036638EAD5732F5F047A5CC5A2,FDD9900082D47462E094CAAACA0361AB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RFCOMM.SYS FI2=143360,816C553EC9382554D13162A9C30213AC54CE503858C5DBD84C8B1BE1C9E3C5D1,8AA16E0EA078831330A5549798B23D78,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RHPROXY.SYS FI2=118784,9BA2070D20781293E0CED84E19FA4FDF5A58516261F005BA062161939AB41B76,BE255B5AF96E8FF3EA8DA4F65526B6A8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ROUTEPOLICY.SYS FI2=114688,24917B025F2BC801C03DBDCC2AE0E7532C5DA380B14BE2D6107391A153933FB8,70C9CE1F761E37BC20A5B33F9FBBB634,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RSPNDR.SYS FI2=1296760,CD7B9A5F22FEFA9CE9154BB3AC7A61CDD7FCB8B817BCC93F1EF805894941BE58,71354115F8D749EC3EFE3352324800FE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RT640X64.SYS FI2=880424,162B9B195CF9A3AFD184796B468AA43E22F3AAEEC463141F230BDC3DB507BF0B,20E0D2777B072E7F6A638455D88D40BF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RTKBTFILTER.SYS FI2=6121416,6C2CCD27D81C2D803C0D043D727C7A5FD1251EDDB9AC31F2DCF1F12D3CF2B87B,797D95666BE947A3414A620498C51C94,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\RTKVHD64.SYS FI2=28768,DFC20D22B095AF9A30C88DC3AA9F6A83CB30E8E0F3B74FE3CEF86FCE4F0A970E,21D0233E31A7E4C6D59425E49591988E,1,"Microsoft Windows Early Launch Anti-malware Publisher",C:\WINDOWS\SYSTEM32\DRIVERS\RTP_ELAM.SYS FI2=431432,952BC130D022373F3EFBFB71EB7A243F360412AABFD9E11C50F55C256DF3D6A6,491F1E58F828FE42854B01A33FA86CE4,1,"Avira Operations GmbH",C:\WINDOWS\SYSTEM32\DRIVERS\RTP1.SYS FI2=431456,11B9BC340D1BC392BDE31D007EB22D3FEA5B4339BABE8BD664693F490D61762C,358A09AD2B23E601D69DD07E291534DC,1,"Avira Operations GmbH",C:\WINDOWS\SYSTEM32\DRIVERS\RTP2.SYS FI2=148912,7027E3FE0FB1F3BD5600927ECA4A6D0C763FF3695F14B59A757B668BB9D6E55B,B611E8E1919F41054E750CDA92AA2485,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SBP2PORT.SYS FI2=77824,992CC9FD743D38663C5282C33E3242662ED65A11A35FEDF328E60616025C5757,60464A7616C0441A6CDC263205A18744,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SCFILTER.SYS FI2=263624,E5A51C03CF1F17A29371241D276BD5EB8F63C38B9D105316CB4E7BADCA65E9A4,16B34D6522B89363DF66A1B18489F042,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SCMBUS.SYS FI2=345504,9AEA0719DDE04B0A91BCB66619054C7ECDF862A79B814257B28BC2AE76DAAF07,07896C70264AFE559CC47BF09D779B3E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SDBUS.SYS FI2=140704,556CA41287C40405D5CE3D53D587C87AEC72807C73F1DD878A9EE8B0DBE10943,1CC0D1B76A5C1A3F49EF4E918932B90D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SDSTOR.SYS FI2=120128,60FA91DCAB5AE2A092BA5C8ED5C8850C9F78D2B93BF3CF7413C1B9E5ECA20DEC,BA8C9CCE58AE4F3EDFDB799C77E186E1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SERCX.SYS FI2=218544,D2F7EBFE1144FD1A2F456E4BBC3A9B90B9D57F12F86FB2B535CABFD138E27DD7,52605A7B9A493D1F3D03E4D6463A362D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SERCX2.SYS FI2=65536,59D9888A42E20FAEFF78BC3312E0015148C5C21ABCB0799E1C93FE24B70210F8,43502CA9177F46021D73E45952CA6ACE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SERENUM.SYS FI2=122880,0CCE651E05C888A994C4370233E0F68ECE99821E652CF075EA389A1B8F62515F,FC96CAFDDA51408494B3F68A21B7F05E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SERIAL.SYS FI2=65536,15B5A47CFF67EF58DF5712D97BD9C32AA2575568F5C4243F760E39A51E7B0FB3,53630A1E4AE617A8A58BE6FC33125DDE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SERMOUSE.SYS FI2=57344,1A1DB0978D1A3F012CBE0EBF914106B38E1778B3F4919CAC550771F9F76EAEDA,D071380281391B34D4E264D787BC502E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SFLOPPY.SYS FI2=124232,30ADEBF4884F029A3320B4DE83FFCB7A3297DCAA9C4E692C8D3E49A4D222F4D8,A3C2B5155A526E733CE1ECB9C470B9B1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SGRMAGENT.SYS FI2=45984,B4A9423E6A418565BFCA7F1C41940A5CB899E08B77BA13FE0B5394AEE693002A,5C03E1754BD8D8C58CD7F737045BDC85,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID2.SYS FI2=82848,6EC82D50515963C7ED8A114FD3FF21A05B98FD0C7C84341DD8AC98AF379A3848,0569F4C563EC1ED47B215C4F2CC1CD7E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SISRAID4.SYS FI2=210848,0AACF89126C5CFA00D33FDAB2B79E6CF15E6E4DCB8EEA13A4AB4D062D1239F53,93CB910918921CA793DE0549ACA4AA2D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SMARTSAMD.SYS FI2=389248,22AC0ED89DFC933C5F6CDF57AE25A8960D034EC3F20991C1149FC2CDDBDBF5FE,757DFD0F971EC0C9DC329F46D46873EB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SNAPMAN.SYS FI2=81920,E0C5DFC0147142B6B480CB81A06DB236D0FC6F4C2677F721F1FB6BC3CF09C915,D5461DA3C52D01350C0EE2015432497E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SPACEPARSER.SYS FI2=1000880,EFAF15A37BD3EF4E93230F2F6733AE6EB4E2733B8D6BEA972EBB2839E0276228,1C40425D17B1320273E70E8558B84D9D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SPACEPORT.SYS FI2=124336,DC7C19D7086063E3565FA8AC28B7929095B803CF08510BB7046B05BB7A3AA3D2,E2387D1A934D2EE3327DE91ACECA3924,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SPBCX.SYS FI2=999424,DB1E3098B611CE8C955336D7CF78E3BBB2E72C6325B45D96BB78C61E5644B9A5,BAC07958BF6B7F66881F90B4D4FC8D78,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SRV2.SYS FI2=397312,E52DDEAB00870CE25819FFE3FA424AB94F9C4B1C3AE5F23AED96D1E143EF13D5,8837E7DFC6AA3A79642739D9A4EB4B14,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\SRVNET.SYS FI2=40736,0EC2DE32DA3AFBC63EA84E76D1F0322382C273B3162885C7254F3960802B3B5E,23F8A7C0D75AEA4440DB0A5F855DB1A1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\STEAMSTREAMINGMICROPHONE.SYS FI2=40736,EE1EE0D1346328DA18D70988F01BD961437E95BE5AB82059A28CBCC7D4B23239,F23381E193DBC8D47B4C113DD57360CC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\STEAMSTREAMINGSPEAKERS.SYS FI2=32176,341CD0F3BDAF580EBE35A2E3EBBDCF94E46B85901A2EFFCDCDBA3D3897A44937,124559DA391ADB8AB83EA769A82F483F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\STEXSTOR.SYS FI2=230704,85A2B2F901422FC28C617A7EC34C2D49462B03653A49D831F7AD3B13FABEEECE,01959414C90961E7ADCA1463652885C8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\STORAHCI.SYS FI2=316832,15B66259DCABEFDC266B5D35EB9E669B4E60F0CF26D9A65A530B0C429E2F3660,A87BF490DE8C7BC3DD62159E566F47F2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\STORNVME.SYS FI2=120264,2C19BCFB385041520D663FADCBA3F1D463BDE98A1323EB48E45BC9FAF6D339F6,BA16495F1B86E41973028355FEB9A4A5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\STORQOSFLT.SYS FI2=148920,6D1FA59D342D20253C8F65F25BA924DB4EF1A3C5D5ADF3B07DE3F2C24A648C22,76D06CCA6843DF3C9EA6D2A42E4C8537,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\STORUFS.SYS FI2=95664,D15402C57380AA643DF309AA97A1D39418145F28C0E100A1E74004ACCB3F1DA8,8844CD11ECA0ECB670ACE6CA447CA83F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\STORVSC.SYS FI2=3454392,7F0592EF38707FE5F17995766582522947A52B248923AEFD561F05E8D450C526,5197D346551E96FA67CB73299F4A46FE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TCPIP.SYS FI2=81920,D59766E899C410671D4AE93451DB383750E5C115094879E53859729D7AFB92CC,49711E385884F7E61F19A6861BEE1D9D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TCPIPREG.SYS FI2=185648,52011E6EA00A5B6E68A6C58CC640C5CC36B7A6D6766C3B252C7B759A923059FC,4D2AB025858B2157E0AB1B90BA68CB55,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TDX.SYS FI2=75184,CCF0698BB05D64ED135AA932E02D671256557A331FDBE3CF744F8A8FB5ABBC86,4F4EF63BEEC95C3FC68F7A07CC1D9A9B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TERMINPT.SYS FI2=887032,123D3522C796A52266600C08955E86689EFA1F609F3E2A2AD572B5F6FE5415D1,56CBBE70AB3B1AEE2A8CD010560D8B83,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TIB.SYS FI2=176248,203E9C6E1012133ACE1145228BF868075F06762E978AC90888BC4CF80024DB32,577AFD82E16D0297B6F214D4EAD57E3A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TIB_MOUNTER.SYS FI2=694920,2D5CAD45FF3D48D586FABB5A93D09AB6C97F4FD61B7AB9466D20BEB3F26ACCA4,B3BCEF49B410EF4FD04150025DAAB49F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TND.SYS FI2=366000,FF0AAFBBB932F9155E7BDC3A66EDB3B98A567B379022557456BBF7051F3E55D2,B74272C218E16869513462CBF345E736,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TPM.SYS FI2=98304,FF7ACDB2607C0971DFC445A425C9D000E9EBBD91FFF8383F382FD6B7A20AAC5E,819F80C7AF792EB58D372678B185B606,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBFLT.SYS FI2=69632,D68AFD120657641196752B615ED275F6A047D88B65295E98BA1AAD3EF31BBEB9,534B7B919A5A4E5BC403EBF211587E09,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TSUSBGD.SYS FI2=167936,872604A93E0E778208DA94E0C1BEE8D8EE97DF0E61BF09D6E2BC5D6CA848CC05,7876ABED95B9E2183C2E89B315EC69B7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\TUNNEL.SYS FI2=120224,AE48BFB662C49132B8AE9868B19ACD252EDD8A6CF3F937585DAA616DFD73ACFA,8979FA38D5254051862AB04AB8CAFEF7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UASPSTOR.SYS FI2=204800,98F6CB35ABD2183EDBEC69EA0A02B75AE3BAACB96F541C64A598C3C9524B6551,3C1BE98E1032F1EE1B551DF009484A96,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UCMCX.SYS FI2=217088,4C614826C7E76E3527AF3004EA9EAB8E6E0CF86C0859E992F092EDED4904E22B,354563A1DFE736161971B7645B5AA006,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UCMTCPCICX.SYS FI2=77824,4995A2E0D12734242BE4EE0CAB42A372A7B3BE37100C9D1949EC57A4F43B9BBA,B52D71BB859CA9DA9AC4672ED41A0D8E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UCMUCSIACPICLIENT.SYS FI2=200704,9E5502CBEFAB0A8803AA8C9C1DEA8EC8707A7C0C19EA10AAB7C5EE4142F772DA,AADBC770ACEBB1CEF212C46238DC6C20,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UCMUCSICX.SYS FI2=95552,DF35FC471381DD9F4B7CEE49EB7808537822E1ED8509485813CDB3EE00C2F5BC,0DF59C061CF657DFD2157A9320677E04,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UCPD.SYS FI2=304560,5238C5881B6E2E79B684ABE723E39F77DA355732AE89A788B91A80CEFECE5EA9,1DD912380A2CD77D3C95063EA3BD9DCF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UCX01000.SYS FI2=90112,3D3967C70E701B22BA1CFD853685BECBE61353311E64A1D91649F7B050E5065E,39BF38E2DE7779DFD1C42F90BB5479B7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UDECX.SYS FI2=401408,B2340A2F12F0E123DED3910EAC714882312CAC141652E6C410B0FD3831B54695,BC63C6E95BE9F685094E28CF3CF4B522,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UDFS.SYS FI2=361776,78ED801F832E1A3D6309665DB93C06434F89A24319311A9B632158BE4E16CEC3,0AAE81418457BBE6888380A9C19CCA47,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UFX01000.SYS FI2=198064,4B8938777B92F4F1B3199DEF96F03E710CC22D8A2720297F3F1B53A696D3347F,186850C50025B806B391D69E916EE770,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UFXSYNOPSYS.SYS FI2=497072,853D6F2F4DDABA2485CDED5C7BE494CFB9F53FE455A6D07DA6119A6962809FEB,77C0FC53F4C0648EA606DA67585B0727,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\UNIONFS.SYS FI2=111936,F7CB01210DF55CEE7F29A72576A6411693B6083E70DDB8D081FF5FD2A9697C3C,D24498010F9BECDCF0E9FBFE79A8B197,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\URSCX01000.SYS FI2=282624,EAEE1934072B02D6CDA7672D623205942FA64D2630C832338DD0A2A4B01A62BF,7B6716A44B48F605380ED9F99C73D5A6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBAUDIO.SYS FI2=401408,9748F72DB2A84BBB8249BA215CDE4B7F0E4453079FC42DE7220E53F585FCA24C,9E3A61C89CE20A91A98B01EBEB0D7BEC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBAUDIO2.SYS FI2=222624,BA028BA8C21BBFD956F00EE41C72ADA8A6CFFDBC52BB09EEFD893F3C55251FD0,85D0D2CB7EB019638A441FD03CC2D436,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBCCGP.SYS FI2=147456,BF667A635E51D3ACD2FFE78FFB33C1AAF62B60F58484B53647AE0A27BBC60A98,D1125E1021507F965F80F137BD7D101E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBCIR.SYS FI2=128432,A516A4C45C103BC27F17BDDC4A80A7A8C8E247CE7C0FD10B7C6B710C94B88A79,DF382F5558377BD8C8BDBB18DB91F13F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBEHCI.SYS FI2=570808,B3F29985C78A92144011FF2BDAFAB1BFF6A2E96F1837C7587FF597D56651F7EF,23E92A1945AFCA5B0E466516EB9DDCAD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB.SYS FI2=742840,C5A3AC0748198A73F6281E90666CF939148A09F9D48B1BABC5301C7C57BC7EBD,F52B4784A0C8E09182709FBED7ABAC8D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBHUB3.SYS FI2=69632,1DA998852662102D6B92644463B2054F5DA959E00076585D5F503481CE872D8A,BB6A6F66A5D3BBBCA24638E0508C62DA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBOHCI.SYS FI2=110592,564B7049FB77BC848DABE8FD1FA2F498452B412CE2A59D94DCE7E2A65A959D47,8F74110E1BF07589DCF8298D67296E4D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBPRINT.SYS FI2=126976,F386CA228B1D2C1A3AAE11B15CF0176D4D222C628C0CBB70707F9483EBFDE174,D903E13D1A2393644A0645BFB1BED5BB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBSER.SYS FI2=206240,E9AB904A5333A0F58DF0EC0A1A9006C1479687F71D7C8DD80318A90C829B0610,945D2F82DAEE21ECF6C0EEDBB06709F2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBSTOR.SYS FI2=73728,5E15B2792586F7A8A210674C7697F4091D056BC2E336F57123D3B2BC5D58371A,A2C3CFACDB39540D682F15F623031879,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBUHCI.SYS FI2=398792,00DC619C14980D6EBE0D0181183F2FE6AE643277DD43C503DFEF69E3C1F44CD5,961A66AACFD8B6A4850C5CDCB0582EE8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBVIDEO.SYS FI2=722336,9D9F50A81398454DEB951272672DE25C6F617FD5427D5C795A05950CD9DF3062,89645CFAA7B3C2615F9664F96005EBB5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\USBXHCI.SYS FI2=124216,0029FA9FE4F3055244D25646BF833705B937A7553430C50D055F643E993BDB6D,57FECA513E9EDADA8DC4A20EDAACF532,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VDRVROOT.SYS FI2=271672,76D945F4AFAAE19565C2D12C350E806769055FFF50CABFEFC8208FE875F4C2E3,144B4681A210A0F8EF0A09489DFB0DEB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VERIFIEREXT.SYS FI2=1062192,E3F03A99BEEE35307DF23FADAC70A804EA6A0FF3D4A2D4A06574891D7F72A15B,D8D453F06A90FFD4DB2B460F7EDA0A87,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VHDMP.SYS FI2=90112,AA0F7E8234F3057BA3861AF263C99CC83FB6DC7FF61520F0BF13B82D0FB13709,A49C2D8DCE3EC6097D254DA2983D3C54,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VHF.SYS FI2=906544,46CE0DBCC77F2DFD50AFE8275C7728025A8CA5AF7CB745D1E09494C7E973FB4B,C90E052192B3E7CBF1787057E43CD525,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VID.SYS FI2=334984,6E133DC8FE1FFDFCF5B1563D66D8A468A79BA4CD22E0DB1BD915DEB291262F1F,4C59BC4023D7E15ACD691BBD7D094CE7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VIRTUAL_FILE.SYS FI2=210336,EF369171D493724288619D21338F8DFD824C9C428728A5CFC44200FD7FBED4E4,87C914537D2DBB4B91FE02EBFE2B7287,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VMBUS.SYS FI2=71072,67380E2DC050C74B04F48238C11CF7A57E9DAB2C89CA9DF66117D57B69EAAF29,6B2E3A373F96551CCD74F0A17EF657C0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VMBUSHID.SYS FI2=58672,BFD17E40B498AA842D59FD38E0FF128416CC6CF0AF9CB2EB7637C5E265180258,920813EC80D2012D5A9EF94AC35A7FEC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VMGENCOUNTER.SYS FI2=58784,2066F124E18B277595CA72BC205CEFF7F42E4CC226B5DDAD29933FBA20DAFE7E,363E5508926E11BE3C631D4C9F95531C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VMGID.SYS FI2=58800,8F7A702E1E703ECACA3D95FD21202D5B09D43EB1AEEB9676CBA58127D36395D9,D3F76919459B3F5EF1F6CE0CF6949EF5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VMS3CAP.SYS FI2=87472,76E08A81AEAAB356BB3F1FC2215847F0F5B8DF2EA3ED0E530373AFFD7F7BD6B3,DE6EE0F738222559F40A9BCB46A600F4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VMSTORFL.SYS FI2=128416,41962AAEBF6F80371F8CCE336ECC4BD643ABC73B16339A31E671EBFB0679E4E7,2DF483B6B224D85A49E20494A5BF7CD7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGR.SYS FI2=419120,7C0D3F68AF9297C167D64C53A31F6DD3DFD01861CDD3FAFD6E545FF1BD3ECEAA,0F9414733106D559DF8D9C6AFE0DAEB1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VOLMGRX.SYS FI2=513456,B2D817C3183A7B443CC309CFCF78175275FDE48D0B99CFB73460B25DC88C89BA,2B6D4D84CE893D0234877B03FD80EC00,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VOLSNAP.SYS FI2=54576,1F2111F0A528ED598B727BFA8BE52B8F8CECF3FC0C3B4EF41761C3C97C599B29,75F32C4664308051E53B3F4D3F42C45E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VOLUME.SYS FI2=251016,3843E230B7C8C1490ED9D24544B800C2F619D9B08779572468CDFFD91924813E,110C775E6EB86B008B0F7825BDEBA837,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VOLUME_TRACKER.SYS FI2=157128,05354E6C009F527FA87A0B3A541E748CE3FEA793BF349DC82854F1896B25052E,33F2423DB3D43A5990DE7D3D4658C6C5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VPCI.SYS FI2=167840,2E0F359B2B2F2D73D8B576CD2ECFCA82A2CEA642FD7E0266F6175A6EC912CE0A,A79008604BCE2B6377BD5C5FD6DC6D18,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VSMRAID.SYS FI2=306608,A07DDD9D26605FDE1AFDF258094B08626A3BA80EC289FFCC81CA5E4885EC063B,03888DECD7C40006B9184269ABB0E52D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VSTXRAID.SYS FI2=122880,9BAEB2190DF83082590DEC0233D9621671B1C028E4A494E64F06BBB351737CE9,C0C08283409FB75A849625D4F920B6D8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\VWIFIFLT.SYS FI2=65536,55C5747ECD53113AF450AA0B5055A8D0962B6AB1FF8B5431630E60B27E025A36,AB15C28AD63C810459A84340F13EC77F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WACOMPEN.SYS FI2=126976,6807DB26F7A2FD9F6229E76A84E8C044EEEF4F13114AB08F9546F0798E4D8CE8,CA7813AD36B5EB750CDDFB4ABEBFCE32,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WANARP.SYS FI2=255392,E2524EEEA098015700FDFB482CB8D0D9CF0420B61C545096F1F9561E78A04C9B,7C6AC8AFD13C93748D1C43E2D7D75E93,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WCIFS.SYS FI2=22080,1544E9DA907CBC465322CB51FFF7EB94BCF89759EBFA5468F3BC63CE81A57F83,507099EAA2C4AC2F0FEDDFA259BD122A,1,"Microsoft Windows Early Launch Anti-malware Publisher",C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDBOOT.SYS FI2=602392,23B730252E42197BB9F6092E1BC8888E2C0F5E7396CB307E4DA26DB130149352,1655D647ACD34D605050851A82822A17,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDFILTER.SYS FI2=105864,DEE44D054FA752891560A63411CB92615965DCEB74D0D2DC8A41E7CEC67901E1,12695872CF475750082E89EAC8A10D6C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WD\WDNISDRV.SYS FI2=984504,C19776C8563D9851F328097E40AA15520AA253FC2AE1975FCD98D730A99C62DA,0D84DB8A68BB5ED8C93D31544552D468,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WDF01000.SYS FI2=1122304,31900EBC01D6D3023CD8CF9632DE912FE90A21EADC09645E6AA6C87C50FF9A2E,B12B996139696AA2C428AD06CB5B6616,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WDIWIFI.SYS FI2=62784,A36AEF99DBA964EDC0E8BDE23511FBE446298DFC6C4F04995EC167647449E9AF,72BA305C6187A2D466AE004A7C486CBE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WDMCOMPANIONFILTER.SYS FI2=239008,D42E59F45435E5FF42BF8B6CB7868B681A12B5411C24DE4DC5162C39C424F412,4786E13A8999C8C62E5FFBC223A65311,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WFPLWFS.SYS FI2=1015808,E74AF4B5AD489D81F6046C5EFC1D2793C96D36DAAE74183AAD62B0C19A85FE9C,8F5D789CB3284F8FFD20798BB102B317,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WIFICX.SYS FI2=75184,A45C0F4318C5909FF92B3F548D008F06CE91733FFD1C754E5C4AA54DF3F77BFF,0DB5542309F94F4178C296D4EFEBA1C6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WIMMOUNT.SYS FI2=144704,E2C6A6DC14BBC3D23940EFC6F8432D7C3CF1DD88825D2EE93CEEA7EF8A91C8E0,B9F116076D21E85025C58980E92FBDED,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WINACCELCX.SYS FI2=108008,C8E7DAA516FC2B8390F3BC0E70ACB85D6836C889D9717921BC4F5AAC9B81BDFF,17F9D0A4B659BBFA3762C37989DD9D97,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WINDOWSTRUSTEDRT.SYS FI2=58968,BA84EB9F3AB420FA2F5F04796774B67C8A1F3CD1D5958753C24FE19970597BF3,F3ED20C87F18AAAA85BD41873CA0344E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WINDOWSTRUSTEDRTPROXY.SYS FI2=254464,A88BF58108AAF149FF30B93E3C58785AB1F414FD883FE87211F95AD4A91861DE,4DE7D61CF51F4C8261D119CFBDB70243,1,,C:\WINDOWS\SYSTEM32\DRIVERS\WINDRVR6.SYS FI2=37184,4BE9617627ADB71A2E5321D77EE54B6BF0EC97C8003753E8B733219A6CB43114,9EE5C922B2FD3AEFBE1446D1A900B6B3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WINMAD.SYS FI2=311384,EE471028E6A417032E0B61479EA12E7B3D16F576E3FE978D6EB64B02109D22CF,869C0EE1629491C3CEEC1ED1BFB563E3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WINNAT.SYS FI2=169440,135319155313EE16527C31E86AE9E7EE824156456B562AD01EC8C649FEF2ECF6,074ADCF079B3501ABCFA4AEC7EE4C6BB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WINSETUPMON.SYS FI2=139264,11A59886AC977EC4890FF984A20CB1CBF092B4E6F11E719D7CFD92C658472FCB,330BE3F3C87C58E3B28EEFE803DB4583,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WINUSB.SYS FI2=74032,D9C3D761561DEE8DEED149352EFEBE9A71DA6AE32F0D6170D019D88F64344778,88F1C2CC615153875156E22BE33832F8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WINVERBS.SYS FI2=57344,3A8540DE14ED7F876DE425FA0379790F01526A1DF50C409A4E8BC3FC134F7177,91B44B9172C9F050C4908D35E65731FE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WMIACPI.SYS FI2=71088,45489DF939804FFE56E9A833CBED357402795D7D0CBD6DFCDA29645CD3DF4300,6A78750E8CB8B5F69B648FA7A9ACC3C1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WPDUPFLTR.SYS FI2=61440,8B89643C85EBFF8B09FF445E8424AE3FD9B888AD84BB7CE6B2A9E053FA3F1B28,C5378FAF96D0B888F5BA9107B0371B6A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WS2IFSL.SYS FI2=132552,6D40E41424CF5F606AA5D846A0B7B1E1217FC273FC33F80101B4ECB6D5F68F19,BFC0E9148E892606B898CD9F80A14673,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WTD.SYS FI2=169392,9F7C19ED09484FD0D0EF0B627C257B3096F782D39A65E068C034947C838D60F7,53377CEDB5DD0B13300AA599F4344807,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WUDFPF.SYS FI2=361904,8C71A7D1670AD2C44DDDAC94DA15C1205D10529F575AC7D39E753C368EC4C6E3,0FA3AE6BD140FF794FC020A574A31D5B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\WUDFRD.SYS FI2=405504,DF1F6269D3FC88C5A5BB22E1607BAC4AB5E604D809794AAD7EFF5F22F4A99855,8BC5AFA4F9B4FAC73726B701FD4AF9D8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\XBOXGIP.SYS FI2=86016,C627500FEE53D958FC7036D6BBCA6388CC1029755F5CA5DA517AC24C8B559D15,9D32BA5227A297BF13A4DFFF066FB7DC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\XINPUTHID.SYS FI2=107960,D5D73BDBAE8DF4493335625E28FAA1C76519D0047ABA321584CCF105305EF124,BFCCAAA1F029F05875809F29492E0DDC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERS\ZTDNS.SYS FI2=49152,96A4A7046116B2E729020F64326744A53415C75E7A0009D409B4E012EFAB0BE4,DC91B805B4CBE479E6CC015DA67CCEA3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\ACPIPAGR.INF_AMD64_D1093347A27FF89C\ACPIPAGR.SYS FI2=53248,16DAF02659C08B1F53A16EDEB93E751D5A2CD94E01210D15CAD2F76290055573,4A70A899A7D209B09E42B3C4A76DCEC7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\ACPIPMI.INF_AMD64_3CED06EB61DCC792\ACPIPMI.SYS FI2=106496,45FD93614C822D65A09CDF0C1C4E7ABB90E7189FA844216ADEA5A2966D7E6B9F,AA2306A979EAA8AAA7E54CD9D2CAE654,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\BASICDISPLAY.INF_AMD64_A0AFD1C1603BC477\BASICDISPLAY.SYS FI2=73728,55D621B885B4763CC2932570CB5770965D253F80CF49A145655E7434C3F9CC5E,8E8A70A82AE3C7EAAF3473594B2D8C17,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\BASICRENDER.INF_AMD64_5A35C75DB01C44C7\BASICRENDER.SYS FI2=81920,CD3DA415D3EB770AFF4A6FCFFC83627394C607674611449896250D6B8E1B4839,D56AA142EAAF0A6B0CE36DEB97A135D8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\COMPOSITEBUS.INF_AMD64_8CF6FA9D3AFDFA25\COMPOSITEBUS.SYS FI2=53248,D2CA184489215A4D1F2AA121993988771527881B99C04F93219BA035B1FF4F0B,84BC738C2DE254676D8EFB717DCC7B63,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\DEVMAP.INF_AMD64_1993197F4612E967\DEVMAP.SYS FI2=57344,FA7DCD09A43BAFE5308794E2EBBA1CD826864D89F23AAC253904DEC2C3E18F87,66807EFF74F9BA83226AAD0CC4B82429,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\DISPLAYMUX.INF_AMD64_DA65A70F0C3CE0F3\DISPLAYMUX.SYS FI2=167512,1657A5C6AE6674D8D7F0534D1B5D729F7253A78935DECF9CDB2F6C41098BC6EF,EC55FF59890DB29D01AEA48070A62266,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\GAMEFLT.INF_AMD64_25B1FE3637126834\GAMEFLT.SYS FI2=61440,B7E4631420C79F8E8E5E145FB9631538408B1E64F9ECDF5AC96BBA06811AE814,9EDBC95312D9ED093874B8218809B46A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\GENERICUSBFN.INF_AMD64_7C70B7FB8F0E88FF\GENERICUSBFN.SYS FI2=62776,6607B762CAD45A321B287163AEFDBEF62D17FD7980E5EA44B8C5E83F5217D4F5,7EF2264F9F1DE0A9FB8A19BC5CAB67D8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\GENPASS.INF_AMD64_0C82D80C9252C9BD\GENPASS.SYS FI2=296240,415D7FC4A28E2651B823ECD87E42DA506EA30D82AE3E4AC7A939D99A312A407B,15E1214D2712E150537AAA15DEDBA8E0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\I3CHOST.INF_AMD64_71FB35D9EBCBE45B\I3CHOST.SYS FI2=65536,5CB6E77B582990932082BCE8D7B4EDCBC856387B372F5576FFBE3AC68D7E5EC8,9ECF4B040A0929F194DB6EC0E2AD144D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NETVWIFIBUS.INF_AMD64_AB4E111FE8221178\VWIFIBUS.SYS FI2=102400,2443CA3BCA2CA717775AB1BD485556DEB91A1FEA747668B99559E7484A3C8C62,2FA4E21002B6FF69453976248C7D6A64,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NETWORKPRIVACYPOLICY.INF_AMD64_F3940973E0444EEC\NETWORKPRIVACYPOLICY.SYS FI2=1275528,3E4C8C6B7F235D522E8997269858777443A47547C76E36550E028E08A64567D3,BF927A83C76D74DDF8D0F30304B3DF2C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NV_DISPSI.INF_AMD64_681B5907A11E1C87\DISPLAY.NVCONTAINER\NVDISPLAY.CONTAINER.EXE FI2=71847568,F27723959AAA568D32181AD60E96BF9CD5636490AFCDD0B8171213E23F95CED9,32D7035D10F1FD3C0CA65E8FA79184CF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NV_DISPSI.INF_AMD64_681B5907A11E1C87\NVLDDMKM.SYS FI2=24571016,AD44E2A9132823DC21162EF6955596051F73EFC0D51E342BD049D4524D057152,2ACA75226986F3F01C5DCA5E526F0483,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NV_DISPSI.INF_AMD64_681B5907A11E1C87\NVOGLV32.DLL FI2=47240,777A90D2DF5F3A6040448D8A4DDFBB54A11B86E7B83CD03B25364792201DA77E,4E622D85193FC8A08074D11D7D9BC8CF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVMODULETRACKER.INF_AMD64_EA6CEC41FC5B2A8B\NVMODULETRACKER.SYS FI2=715296,01736D4B848B3614EA4F88985C7836E6403794A3D769DDCF9597F868F75B29FC,BADAB706325D4DC994F9934FC6BF3222,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\NVPPC.INF_AMD64_E474DAC8EA58E564\UCMCXUCSINVPPC.SYS FI2=58784,7852BD0F5504C025B2E23AF1DA54A1C929B1C0561A03E916D89142293EF2CAB6,C499F11B66B433289147EFCE268781ED,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\PLUTON-HECI.INF_AMD64_9AAA7A8C15AC7E9A\PLUTON-HECI.SYS FI2=58672,45E46CBAE5CC8465E934452C9143AA9C54692321E02F0059B294D96E1F6F5CEF,C23521545A5701C266FD3FCF3C99DE7A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\PLUTONHSP2.INF_AMD64_0B3FDC25D1DC1C6E\PLUTONHSP2.SYS FI2=71072,CEF2B58655B4C4E3947CCCE2F0357059819E20CA8945134A40459D2F7EC60650,B71F3AC4BACCE7F440971C8414CA446B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\PRM.INF_AMD64_7C38475757A1F016\PRM.SYS FI2=1945544,C94A569A29868E107B211BB0A38AF684473F2E83AAEB1CB56AC0DA0746021648,355AE0A30EEEFD977E4FC1672055EAD7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\REALTEKSERVICE.INF_AMD64_1803724721D1A34C\RTKAUDUSERVICE64.EXE FI2=61440,15C941F5229BA11D31ADB7D9EC77341B9C868A5E770444D81FEABE4757025E77,A68EC113EDFD559C3CD9FD1C2A031CE3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\STI.INF_AMD64_971C769B103DF369\WSDSCAN.SYS FI2=58784,5DF61388E7A4BE5522EB7A1073E15B9E0876FB803ACAEC7AA9110F23A3F3FA62,4D946DF9F05CE46D1528CBC220086B80,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\SWENUM.INF_AMD64_7E69A3E94E38C7BA\SWENUM.SYS FI2=79280,A05E8B92F6DC9DB14F65F649958BD968AA84336C7C1846EBB652901A44D1EE02,4CBCFED8D500A11FC2CF00201C150827,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UEFI.INF_AMD64_980DDB5245BBF384\UEFI.SYS FI2=140592,C4E58AE7833097F4AB1264A9888F3790D819BC5F29A2BAD268F8DEC8730BF070,93064B010CDBEE52A44F6D55514B65F9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UFXCHIPIDEA.INF_AMD64_6E8BB2ED82835828\UFXCHIPIDEA.SYS FI2=69632,1B7BF02EF4D0C85BE985C6DC1412C3435F9D826BEC698FF292C133FFF6ECE630,D18D58C178E8DFF03E9D755F84CC0F8B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UIOMAP.INF_AMD64_11EFBD9B4C5F482E\UIOMAP.SYS FI2=90112,EA211D5531BC397D1AE6E8692124FF8ABEFCDD8D8609DC14333155F108BD81DF,39D328E3394874C902D7A211F646CFDA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UMBUS.INF_AMD64_914DD46B4B013B1B\UMBUS.SYS FI2=53248,1484366BECA79E7FBE4ADC8E2A765787A6AEB7330B2D0E2FC2ACABACAA757C88,0CD198E2E4E0B5091EEB5800CAA801CD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\UMPASS.INF_AMD64_06E016C9FFECBF73\UMPASS.SYS FI2=70984,12F6A60D01B9C99B73BE45598F2CCCA605D879ECE849686B724062F3636C2100,958B45320397512675DAEF0EB27D8C13,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\URSCHIPIDEA.INF_AMD64_37FB14618BCE547B\URSCHIPIDEA.SYS FI2=66992,E41A3359DE99E673F16809BD00CC7697BB0E41C198A94DFB96D29B287B1F78E2,505F4CA3A039CB41A02A28785D35ED06,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\URSSYNOPSYS.INF_AMD64_EF0BE23D0F063014\URSSYNOPSYS.SYS FI2=976176,D6DD5E2DB73099ADFED55ADBC1903A25A5C37E02EA3990FDEC240D495A39B224,F42C1380B6898682F95E59127F474607,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\USB4DEVICEROUTER.INF_AMD64_B6597A9DABC2B656\USB4DEVICEROUTER.SYS FI2=668976,91F5F0B6F24002379A949606562D8FCBC6405DD0358D2AD238DF2F2E72FC9020,BC4C7555A54EFC5AC697341D774D4971,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\USB4HOSTROUTER.INF_AMD64_5AB9F0F733B5542D\USB4HOSTROUTER.SYS FI2=53248,DD09EC4EBC7CAB9175D4BFE30B2E96816EA3BBB89E3FF7351CAC9E4C36F222AC,196E6170D47B6F88C5C018E74C25841D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\VRD.INF_AMD64_4DD0E6D66A75BB7E\VRD.SYS FI2=75208,C73142C5F5D43575E92A4F187028A1E445BE2811E5FF82758FDA805E7592392A,2BDB14FC4FE664BCE7F41F1DB76823F9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\WINI3C.INF_AMD64_A7ED04BFCDB83650\WINI3C.SYS FI2=57344,92D9DE16E730782835A6F5BB575D2579F3C3BB184BCCAB0796723949AEF84C5D,0F7074B62BD209424D3003537BEE5620,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\WSDPRINT.INF_AMD64_1F9E32519098C0B6\WSDPRINT.SYS FI2=654856,DB05C7C2783FC3FB3C11C7A632654815A4FB776B4ED418564886BA71FC366CA1,F68D2082528E3E3FD1EBA0AD308856B3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRIVERSTORE\FILEREPOSITORY\XVDD.INF_AMD64_A651BFF0BE9A1044\XVDD.SYS FI2=421888,08CD9DE0A424B80C866CD25B72642DC81B2B5D19FB07CBA81C2A12E7D25BE5B8,EB226AC6822C88629C7BAB64E862296D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DRVINST.EXE FI2=147456,B2579DF2C7A1C7D2CC57A566D1DCF257B87CE778A818E46D96CE3B37F41368A0,6C1DEA30C07398959A3B9FF9327BE3C9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DSKQUOTA.DLL FI2=520192,DD298FB554E0C272039CF9936CB5E92D45D18C1A56A01094FA235D111934EED7,F75CC30ADCDAEC4228331E9631F96D6C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DSREGCMD.EXE FI2=200704,210390DE9C0FE140A1B6DBA759B096BC660C64D3F3E2C8CD1F25A4D535D7D9A3,0B6B48D5C32A448850A25B246BAA8325,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DSSVC.DLL FI2=40960,38E4DBBE77423773545DEF4FEDCAD64357EA1DB16B2F6617A4AAEDAE5DA3C947,45593B0677A76640FDE8DADAFD399DE8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DSTOKENCLEAN.EXE FI2=438272,538528DA2A40AE853790EDED8DC7AFD7DB09D3FEAEC4B2CB72603B514131B457,1FB0C7472A9E9CF87DA07153657E0265,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DUSMSVC.DLL FI2=77824,E9B266F56F827978BD9EF743DA24BDCB1D80CA50B7266E51F2D9CFD005C061D0,2F40573C78C9971A4B4FAC5BCF5723D7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DUSMTASK.EXE FI2=110592,F4351CA54628B830AFA5ACCBF6E24A9CB89F0912187C7E1651F6130E5D84E920,099D6E367E0DF2D740E16D2CC5D07B2B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DWM.EXE FI2=120224,12838296AD921EDD9DCC6CF472CBCE49CD2046A9C29B0A56023D0335840D2EB3,DD8ADC183B2A08172490C59D801587E7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DWMINIT.DLL FI2=131072,F10851B58839EC6248B6938095C03185908FAAC8E0676F47BCED3AA3E5871BC0,B4EC888CE76881ACF54CCD5385DA5761,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\DXGIADAPTERCACHE.EXE FI2=237568,B6F7805A533BEA2FA387B366B4F25D37A47E4D401839354AF12ACC90DB33258E,4A7B3D6557B0424E634703461FD031F5,2,,C:\WINDOWS\SYSTEM32\E_2LM0DE.DLL FI2=187392,D75F595082B3C7CB0FFE25492195F29C3F5A97982DF9ADF56763A1537E4B49BC,B263640A24AE011BE745A7864AB00E75,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\E_YLMBYHE.DLL FI2=122880,93878E9F5B30831010DA8DA7BA9EB71A4A2E0CD461FC837A2E6B43ABC0AA3E56,31A08BDFCD69DEC78ED52F28F5CD9D38,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\EAPSVC.DLL FI2=131072,3A1D41770BEAF90785CC868A2047392BDDCBB036CFC46C102EB10151255BD1C4,CA3973DEC8E5A46BA8DB06B8E8CE5C00,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\EDUPRINTPROV.EXE FI2=1246640,D2F44116625F3AAC164D733F0B4563BEC569B5E3B3EEBA381AC82C10B3E69A15,087D3049F5A579C6879FCEFDAF4357CE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\EFSCORE.DLL FI2=118784,470E9CD5D810AC7FD0B8D05C4EE67EA28FCC45C8A33C9F7F023B56FCE54873FF,E5A19D3DD0FFD38566F13F530AEE62B8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\EFSSVC.DLL FI2=778240,D49D87937962725A9C8BD5E7ADB6C2B5E698634CA7E5041A86D9F96193CB0910,4B72E2E52B122D09DFDFB05547089DBA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\EFSWRT.DLL FI2=180224,92D74D4130F5F008B265E7FAADAC2400D6CEFAF08C8A3B74B7C693EC760C8C6F,3D7EB57A59BE6E1F3B0B9B03DD28CFC4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\EMBEDDEDMODESVC.DLL FI2=500736,D919C39A348294D378A9F7D1F100A4AEF9B855F6FD4049ECD73DE817388FEE86,6C91E297472D30A786A254842293C792,2,,C:\WINDOWS\SYSTEM32\ENPPMON.DLL FI2=479232,2A75CB4D41F15EE0158B1494BEA07AB15A22547070A38F5B36D3F4181D0AEE97,1438E76BEF68A5544E05DE41259BE9AA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\ES.DLL FI2=206304,BF8254C1BCEAD68D8561635330A279C4DBA59F24E96C4A4AA1F3EDCF6403EB76,0350337887263A518AA03EDB5BA96A04,1,"SEIKO EPSON CORPORATION",C:\WINDOWS\SYSTEM32\ESCSVC64.EXE FI2=4313088,546B1F33BCAE529D6D27824B5DA03B38C63C62D094D7657278C7B8BA65613CDE,5D6A78E4B2F926E2001EA1CAB59F3925,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\ESENT.DLL FI2=69632,88FD611B68507AE5DCE8CE00C2C80105FD74A50CED80421EFC243FC455314A5D,89B05C6C0A1AFDAD2910DBF1DBE2FBA3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\EVENTCREATE.EXE FI2=184320,BFD489C9154BBEDF7A48F060307EA15944921D21C2F746442284C75932FA9528,AAA77AB66F159F830497C500855CE002,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\FDEPLOY.DLL FI2=45056,303F2466093D607D0F25D7B16BE4F30D16EC64097E354F302D4CB961B2F3A4EA,7E6F499768828955851BC6CE3E91846C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\FDPHOST.DLL FI2=61440,4E4D770895FF0F45604743FCEBE42277A938C9D95910997F4D3CD9C6D0541BD4,9E7DB0FE040708FD1FE71084E94EAC28,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\FDRESPUB.DLL FI2=143360,3C18A3AEA5C2466702F393BE78CB9AC885C21883C4EE596CCD74717118059629,990AC7D93497F81EDBF9D4AA71D1132C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\FHSVC.DLL FI2=1108752,D926F1F1AC43F7BAE64F2A6D78D12D5C765921F88654A07D279A4AEC256D444A,CADA756B0C832DDECD4C761C3938865C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\FLIGHTSETTINGS.DLL FI2=1413120,7E8FEB3D112DA204DF131326A4B52F50FD8008733169587B71F5AEAD246E1C6A,144972E5A1F5D9F4190574A1F81DACC9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\FNTCACHE.DLL FI2=832000,EA4F1725DEB0D581846759451F65BA807E633F2C7A47481EA35C63DD39D8D542,B03EE2D236AEF633F0E4D7F06D2BD16C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\FONTDRVHOST.EXE FI2=79400,C2F3E4A2A5DB230D0C164B1D3694AC95E3BF0B24164526E1AC73BF6809CAB24C,9008ECBD8232B9A30F53CFF747C97008,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\GAMEINPUTSVC.EXE FI2=1343488,BAE07C8E11EED57AEEB5457BF74C9EE911F90FEDD7CFE02C97F1B1BEA4774001,EDCEE48E929FD90603E4530FECBB94F1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\GPSVC.DLL FI2=282624,C26B4FE59DC17D6AEACFCF5085227EC03BBC5CE6F9387C58FF60ADBF1E6EF05D,B4BDE8D2624FE3468B34DA660DE541FE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\GRAPHICSPERFSVC.DLL FI2=77824,CAAA1A6B31BF7DF6C52CFE9DD0619840766242A37E98A640AF887C8161C33EC3,184A8AEB8AB26787CCB42A0F3387A70A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\HIDSERV.DLL FI2=148920,95901C625FD59EF205714A486A0E955478EA72D0807D43405EE5D238CE148DA7,94E221090DB53BC0D9A5F9EF452C50EB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\HVHOSTSVC.DLL FI2=-1,,,0,,C:\WINDOWS\SYSTEM32\ICARDRES.DLL FI2=320928,036550A14CF43BD2C6DCCD784740D4C50BBD6A3259ACEF21030A7AADC27D9089,04357656A16E3BDB1EF8945FB118F580,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\ICSVC.DLL FI2=143360,2EE6C6759D95A9DF55ABC6579811EAE5DA87427F0F6E67BE5BB964E0A9DB7402,587F2562D4CE0A172F6745C6A3F86973,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\ICSVCEXT.DLL FI2=337328,34F98F5FF55BF39A202FA82CB9119DA5723649C0426B605F7337313AFCC85AE6,E9D7EF6D153758A45E80624E1FCF0A96,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\ICSVCVSS.DLL FI2=7462912,5DEB9E47A39CB2A8FB4341237E03BDF79745CDE696239C0C94D674A5E4E84EAD,6F1CFD0A9A7C8BF3C1146D79C2DC7D83,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\IEFRAME.DLL FI2=1622016,351CE959B0F5F9FEF7694A3525B23D7636A5284949846D45715E6AFDC7542C0A,850CFBA27C54EE7FBE768C234BD91556,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\IKEEXT.DLL FI2=262144,260EC6388D61A3B772B818D5E5F7843D94B2C37370B58981106407DC51172A1C,47F722162D9832F45006DE557453212F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\INETPP.DLL FI2=2830336,5905F28039DD50CF8BC85CC436B8EE63784FDCD334D550484F7D8BB6C64B6AA7,864469802175B05DA5569640AF28C219,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\INSTALLSERVICE.DLL FI2=333216,FB5C657EB70656B6B140CF85FC26BC295BD365765159F5488EB1EA657E4DB01B,8D6966168C6B03F130FFFA28DBAB6A0A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\INVENTORYSVC.DLL FI2=872448,F8680D852F9870A8C4D1DE2A26FB9C77FD29D74568507AC29C519C881F12B7DA,41E82F2E42823B2A7BEECBFABDA390FD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\IPHLPSVC.DLL FI2=778280,BE7F75808BD4D0EF4B1E1C04BF9F5BA7F9D4E14EBD7698DFBBB71133693E580D,55925E3CE9BD9932F1AE293627E8DFE9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\IPNATHLP.DLL FI2=434176,8FB748C7FC1135B024DD78560C558FE3DF2F4390FA40CC9D921625EB8345FADD,6643A3417F263B2664EF383E07926715,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\IPSECSVC.DLL FI2=86016,6FF9EFC57E36DCC19F78E703EC005447D7FF2A7D036BF180CE3BE1F2499F77C2,012C4770263969C17178A86F04CF5183,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\IPXLATCFG.DLL FI2=188416,A30AAA4E232ADE188E9E588E924091B3FAD1C9510E91F37EBF5759F0B5BA25FD,BB394C8899842F3B8B5DE243A93A9101,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\ISCSIEXE.DLL FI2=122880,D4846AFEA940797C30AA160A6B09630F66A518FD79EBFE4E4D62637EA43D6CDC,9523097A2EEAF4C10CFBF38A437226D1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\KEYISO.DLL FI2=378288,DB6362E9DB660C3F3727AF30D63CC6333736FF1F90BF636E58DA4F03BD1525F5,364DBB3394EB0B57CC431E7ABED78D96,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\KSPROXY.AX FI2=40960,0DF42E045BCA512D9312E0CA7AC248B81E67824773476C6121E8F34E5AB5EE26,8D5E7F5E952DABD704F6F8D2C27B9C40,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LA57SETUP.EXE FI2=610304,175864E6260B449C7E40D4684536CE466B09CE8C53A1B54D81E767DAD1594258,AFEE3BCA3ED7DEC0F392011A35CFA9E7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LANGUAGEOVERLAYSERVER.DLL FI2=90112,BA873CAA6438997EE82E539ED876C9968B8EB866C2B8C763373F9479DD018A34,DF9D693001930B768ECD4DCB4153D39E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LFSVC.DLL FI2=143360,713EAF81F65947E56A331A275E56E0F6EE7F39926A5D4BE1EF279C17AEE54874,05DDE20B73D7C7D3C6B2CAB5D380E943,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LICENSEMANAGERSVC.DLL FI2=303104,0CA2EC81BF59FD36F848A8BCC71FA113910D4116FF5DC441D77760EC110E14F2,65087AF82D0A0F26450BB79A289D6ED8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LLTDSVC.DLL FI2=63448,77B72E2357C924E0C68663FB1B35D1642578C2D763034173A3A374CE996C7724,57CC12C5C3395D979C5CA8E436895C0D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LMHSVC.DLL FI2=794624,6E74C6988501315A78E52B258ED9D5383367FE71EB2CD8E43A72C530B673E9D2,CC150B7C119CBFF536E40C916258A882,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LOCALKDCSVC.DLL FI2=1634304,F873A5C9B7E762D99C82966279980F773AB797EBD8EF72C17B55006CC7D8E76D,57765E3A2AC3FC3BF944EE8B0226CE06,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LOCALSPL.DLL FI2=-1,,,0,,C:\WINDOWS\SYSTEM32\LOCATIONNOTIFICATIONWINDOWS.EXE FI2=32768,F3297D2FC9A54419D1953A083FE6692D77F4F7095625F07C83E33EDCE42106B0,0B8EDB0994CB6E05040B4325CAC7848F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LOCATOR.EXE FI2=45056,6BB2AD4961C39B25ACB94CC0D79236CCBADE0EB3A059AE0C346F884C131EC56E,596C1D615B3E03AD625086CA4686A520,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LOGONUI.EXE FI2=1548288,75EFCD5C3B90685F65BDE60D209E01C7B5CC5C976AFD3EE28D97F8A24E8BD8B9,6F56DB79FD3CABF98214397603CBDF7D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LPASVC.DLL FI2=106496,B49EFB8C10DD99D5875E8316D9D577E39A407AF408FF507A6E4466F01DC3244B,5A7D5D6F6DA6AE9605B95524678BB274,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LPREMOVE.EXE FI2=84168,13249566F8FE00E00D0A0EE85FB18AE109AD28017DF0A622B3872A37932CF958,5C800E1EE62A6DEE95FA7043D5964696,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LSASS.EXE FI2=884736,2BA6A32F58BC5006CF199D730E4534A7A31C133E4A3B707D522D53DE21DE1544,034240ECE53D69444E6E170740C68137,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\LSM.DLL FI2=126976,BCFC955BA996C4AD046DB927C0448DCA7D12ED57AA5A9A753B51AE406C313AC6,BB085C7525311D0BA47924500599FC07,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MCIAVI32.DLL FI2=303104,ADF906DFA5EFA52B17F77613027311FAC53193E146633F02367945E1B7C58999,D8A8029CC9FC64DFB7B3420D264C38F3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MCPMANAGEMENTSERVICE.DLL FI2=172032,87D5837531C19C45C9E140D5E83F3D41A6F19D9F1EB2115AE8D0AFFE45C71908,3B5C5B7F692606E7D30BE7156235F309,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MDMAGENT.EXE FI2=90112,7CB3D5DAE0990EB0A9C4B12196A27CC128A3A4F2374F1FD841702EFB77CF7774,B64BB9EBB4A9940625D2F5D22FC0F551,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MDMDIAGNOSTICSTOOL.EXE FI2=126976,7CC57123E8DC98FD46EE3EE20C37DA318B403971A3BD580E6A057E8D73D57B41,5267EF3E14386495109A6AE1423BF5D9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MESSAGINGSERVICE.DLL FI2=569344,016C189312D656529C76A0A0FD721A2450CB2A4BCE3755FE63D83D508F397EA2,98ACA30D659A395EF0F2E905C70C4AD0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MICROSOFT.BLUETOOTH.USERSERVICE.DLL FI2=1290240,5C4C0F9610359DD725497202CF5311ABA872E2DB17A8126D9AAEDCE372E5179E,207FDC5DEE1FAB111C46BF354357CC73,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MICROSOFT.GRAPHICS.DISPLAY.DISPLAYENHANCEMENTSERVICE.DLL FI2=624048,43256D4D4C0A36C39CBB334990DEC385A35EEB023811BAD99B385123D09C1806,1E8B651C5581FC59481B2659AB5A2CB7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MICROSOFT-WINDOWS-SYSTEM-EVENTS.DLL FI2=548864,F1A5DA55901BA8CA14B47135F2A80841718C3415D81910D4D9D59CD1B04A110A,08B4431C5C443C67E37A02BF27C98119,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MITIGATIONCLIENT.DLL FI2=86016,D3D920CC0EC366525BF501099173754C802D290C11A460B88B5551E8E7C4E09A,BED5528D5A1720A99A2F37B08D69BF6F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MLENGINESTUB.EXE FI2=122880,101BDA1A9F1F19BA8B87F6D39B40030391D2A74E981711830AE332A79E86D45A,8C912FEBD066131A0353E7E177FB513A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MOSHOST.DLL FI2=503808,FB5DF51D2F28D53829A48C791260A1842D68478B2742276E3A0A5A95D6166B69,5011037993487001B06E10F1EA6FFA8C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MPRDIM.DLL FI2=1392640,68C710A97247486E6719B7B1E710A3E95776E650241AAB2EB94D9572B28C6D52,39991A522EA5CCED696F2E1989ED8840,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MPSSVC.DLL FI2=172032,85E2EDD88D9628D3F1F051113B626539B1BC53D241390DEF69F65A4952E0E80F,A43087C7314E7AFE3DFB44372D972586,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MSDTC.EXE FI2=393216,33877E1158D3AD19AE24E4B4056D991FA2298878E47AFB1FFF4E2EDE20AA6CC8,C36CD5AFDD8155623B51F03E4AA9B21D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MSDTCKRM.DLL FI2=180224,5872FE75E96A1C653972421C5874E19EA6181A08BED623C269FD3576C2BB707E,FAA90DD7AF5633802F27756D367D3D44,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MSIEXEC.EXE FI2=614400,24851C0101593D68EB0785F1993E81FF60B80904D67AE05E56291B038EEF2175,E0C227D9DEB58A24947F9D1F656523B5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MSRA.EXE FI2=1335296,84EB5EF904D589C1161D3525EF71F2045D7113AD73B5E1ED3758DE8ECBBFD363,FADDCCAF783859F957C7FEEA958B87A0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MSSPELLCHECKINGFACILITY.DLL FI2=98304,F54848B3453D6A9B77D75E6C44731E09440AE16C92D4D5CE146228437ED246FF,4551738198AF42E75BF22290825EDCCD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MSSPELLCHECKINGHOST.EXE FI2=9199616,D4760C163353A6D9EBF9FCD1AD97A7AE6B684CAE530D8135617CA609B4A67406,0F5B268BA9EE401322D3C364AE91557A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\MSTSCAX.DLL FI2=-1,,,0,,C:\WINDOWS\SYSTEM32\MUSNOTIFICATION.EXE FI2=1910704,4B939891F1352D90D165539708F2A8191112F602E74BF1F3E3637F8DB072F326,9465ED53483C7B19213F42A9EB9AA442,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NAHIMICSERVICE.EXE FI2=425984,B9654B53189DF9A2DA89B73F8BB3F3C43B9235457E83F28411A8882870ED029B,5EBB0AAF8B42A099140B69A52C1C5D90,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NATURALAUTH.DLL FI2=192512,83EB00E66A284AFF1B7FB1AE6EBE78C137E1D7E3FF1EE3692B3B6841776CA09F,A7DE7B594F1B49CE19260F5F3CD5E78E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NCASVC.DLL FI2=339968,EB6F61521BF1B2295FA51B2EF0AAE0EE9F5E837D1A39AB491769A7AF8D6532EF,702808AD3218E814CE5FA371A99EDAC8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NCBSERVICE.DLL FI2=167936,D2EAE9A6A69C1D73C158D295E900634CD57D61CA9C3FC3C56F3F622AD3A99B22,D23F545553D100EDB8AEF970C4D70907,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NCDAUTOSETUP.DLL FI2=81920,63A96F43EB673FD465A4238E3A2BBFE5273B858D806A58375BA1520CE097CDF4,0E6C2EDA203E61C8AB3B5FAF6E3F49A7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NET.EXE FI2=1015808,A16A20AB80EBE2FA80E13A0B22A39C84F99D667BE6FA8EDA713EE909B50C32E7,AC8F5649EDF4CB8E8D5A286652850BF1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NETLOGON.DLL FI2=299008,E5FF9BEF0E1476AD2F4CADD9E499277AF7B24902171F3989600F8A47BEBDCFA5,73AD52052C7041A66BDBC327859AFAF3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NETMAN.DLL FI2=1953792,DAE0AC6159799F5FF9D5AB6B5D312262C6D15A56E1D7158BDF598AA760438D9D,72EDD74A886C3B0EC202384793267656,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NETPROFMSVC.DLL FI2=319488,AF26E79707236E6B0EC392898BE029258A505FAEE33EB6F6C1DA1DD477D00034,ED032AD7201436D8C846DE39D87665E4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NETSETUPSVC.DLL FI2=802816,674617639FF7F7941B95A33D91AACFC0B8D5FEFE24CE4F355D9F571A93BEF758,E84F24EA201AD4A550359D5A9D04554C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NGCCTNRSVC.DLL FI2=1216512,92D90AE1706E410476A10860ADC23BA377C488BEE4F11E249AFE21233D7EEB4C,1C5C9A1C71861F6AE41AC897C1FAFB5C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NGCSVC.DLL FI2=225280,E0ED5C84395D6B03D61D43E35A8B979C19A7839FB986972DB6249397DC700E74,74AC85FFA96DB8C09A4ECF174521DC2B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NPSM.DLL FI2=61440,A974FF83F34A02E5B1A5DC086FA1A6109823708A700F92F2A3095B7AA197EE43,B708B03874416E6F62BB4C44EC27641B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NSISVC.DLL FI2=40960,E54FB0961C1DD11B939012ED099E6C170251353D45A9D688258002E5AC583755,222BF38D73467AFEF7708BDAC4F166D9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\NTVDM64.DLL FI2=40960,47204E404567D0ADEA48FD2B7821DA40BD7456A0E945D709E62F227C4FB590C3,8A8C7CF464D28BA90891A232411ACA01,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\OOBEFODSETUP.EXE FI2=550912,F9EDA6A7336274FEFB1319822C1153A415B8DB95D0806426C5453765596F7748,B202279796F0B61EEB6EC5741154B81F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\OPENSSH\SSH-AGENT.EXE FI2=94208,BD523018B46D0BE37C47F6AA3162DA22487B0BF250A7D14D71F513FB6D19CCF9,A9226820B4D35EFA45445770E3587E8C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PAUTOENR.DLL FI2=1152440,2F4EB8C4822606433019B15E302EBE14A278214E5D72F55AA773AD6C859611B7,040D29B5C13278DE20E841D025B658D1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PCASVC.DLL FI2=352256,A1585E170A5C9FDF718304E95420C771978FFA4CEF62152771F369C866359FE5,92772B066A412A238A670EC381C4CB93,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PDH.DLL FI2=294912,0AB39F5C00C36FF16E7B7B884CAC089E3D79A3C3949ACD7A414C18BF1473C66D,EFB25ECBCF54A72AE48CF5AE76937FD8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PENSERVICE.DLL FI2=241664,6B972C51E7489E90537A4F5D2D794009A378990D7609100B2514FFD4EE43447D,9B47518119178B8AA381D8B51B84A71F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PERCEPTIONSIMULATION\PERCEPTIONSIMULATIONSERVICE.EXE FI2=69632,2E7F7DB06E91363253CC959A2430ED3D88B990510F75EAEE9D7FE55DFE62E731,7D7BCC95332B0ACD5DE1BA913948E4EA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PERFDISK.DLL FI2=73728,287F5A93AD2EDD94E8EE8B3AAD4733B4655BF9BAFE4D07682D16717A8F7626FB,B614724C3D1C825B73D4F165173E9D86,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PERFNET.DLL FI2=69632,72046A25A5BACCD4779FFAA55AEB9B93430FC09D4FF996450ECA9BDD465B02BB,A938FDBA5CC3887EA9DB4200B2ED43AD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PERFOS.DLL FI2=73728,C11A76AF12A49E4F0E3EF8B68583B02B972CFCDA5830394666003EAE3C1F27B9,B7DCD1164F5D95EC0DE590346BD6F25F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PERFPROC.DLL FI2=745472,B43C6BBB7BFC15D559F5F45969C8EDEF0214AA3BCE3F1ADFECF9A92083D7BC4E,A726F7C2261E679853D2697D06896589,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PHONESERVICE.DLL FI2=221184,6BBD6D911D65B666AEB32CE0AF656F047ED4CFFCB2117466FB193173578336E2,A68788DFF9282D0C886CCBFFB047D715,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PIMINDEXMAINTENANCE.DLL FI2=1638400,B318F65628CA736D275BE6FB181DDF70EEB38C54839E9476EBB4D302819D0D0C,834CB3BA1004E83182BA5328BABD37CF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PLA.DLL FI2=24576,2C459599D252C18B4F5FE8DAF13C59544D68823C0085F4857451FB890EF3D089,1B6ED988BB0C567A00465856EC31E6CC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PRFLBMSG.DLL FI2=192512,EE0A97EC38C7950B0DA0BB83E16649808E29533C62050F8E4F340D45C52C5F8B,47249F12ECDF3C20673D019914F72485,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PRINTDEVICECONFIGURATIONSERVICE.DLL FI2=159744,60228FF5B6A94D74C5B9D9095AFD338611E5E90AC61B4F2478177A86CDF5D6B6,7BEA1CF44C81E4B7CF336A93E342AC96,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PRINTISOLATIONHOST.EXE FI2=180224,034AF211EBB9A6D7FA00005F2D5B6F58FFC64A14B6FA1224B09487691FBA4AE4,B7BB488612FBCD547BD66E9A205F05C7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PRINTSCANBROKERSERVICE.DLL FI2=557056,F78082375624BFAA9FE534359AB93EDFD9D8F99A99445BDB22350CB8DB938D91,BBA3B54357048171C6CEEB7296EE552C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PRINTWORKFLOWSERVICE.DLL FI2=569344,A4AF803F0315CEF06AFC3C67C261FC696C5605BC82388265C46B5C9713D4F179,2746BDEE60CA3D780DBCFCEE0A3BF38A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PROFSVC.DLL FI2=114688,0A90FC42A25256AF467C73168D532C65C73289DBA51D9DB937DD24EDEC5EB440,4304A664BFBC12B3C6CDBBBB9B039C19,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PROVTOOL.EXE FI2=294912,F3B411A46E95E7581F64EF4E026CB3A3C34093CFA014B14EFCFDFED058FC65E5,69F161C52DBA734D5E89773D7B13A58F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PSMSRV.DLL FI2=442368,6A2B611F32A6659FBCCE19042149A9FD6080540D6586CE695AB07E48E4BC1004,CD5750BBC1802607F2047F142AD15A59,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\PUSHTOINSTALL.DLL FI2=1470464,D6860EBB35C1654014ADBE6ECFD6C95E6752D287E6B95A1209A4CF5FB547683B,6237A9D63CD33C62D71F315B6B329E74,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\QMGR.DLL FI2=1748992,E88EF6AC64C1D3C0904102BD20C0830411719FB84EA299D5A51FB06D35280DE9,3170F066F681C41554349D54BF1B0A6C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\QUARTZ.DLL FI2=323584,1565129B4752191206B416789463E91D1FE3D95095DA19C12A0BDDC829E4FB47,FDAD41FC8E54D8F7D715AC90D82D2DD6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\QWAVE.DLL FI2=139264,DDB0EAD86D19E7CE0D96A759FE49E2428B52CE1A6764E7576F6919745B2E209B,D8E7969445B73CC316F981F8ABA6AD55,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RASAUTO.DLL FI2=159744,15AFE13B8AFC7369A000FEE78ABE1429E27BB9B4038C5EC07F44F933ED67C9DF,90BF131FE2FD1E96C8622860AF4081B2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RASERVER.EXE FI2=1105920,CF920CE437F37AB6095CE0F75CE6D11FBE047F3FC49124838C2278682A940287,0DE9D1EE6F9ACC017F37D6089536F3C8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RASMANS.DLL FI2=802816,94B7320DFD9CCD0E1857F2727E62BDCF22034278AE3B93015ADD0010612ABF28,C35F8168E5CE13CAF11D720CB15DDCBD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RDXSERVICE.DLL FI2=2195456,88C9E3BBDCAF142186E6057BEDC76A89B5DAFAEDB6C53B2E1AE849CBCDCAF54A,510470083118637BDBEA46B7233DBFD5,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\REFSDEDUPSVC.EXE FI2=208896,F329CB327CEB51E2E00026A07CD840B166417E4185AD2F20507C18922B428E92,DB94D545B9A58052C526170D61C39A49,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\REGSVC.DLL FI2=229376,B119189D382B0CF38A9678C4E52A724370FA7E96E4BB8BD5E5D450103BE9F3DF,18BF07FF3775CECB6777B1A1D5F161C7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RMAPI.DLL FI2=110592,A4B7DA569A0F4BE9A38BF4DE5C368902F5C30CB4995AD2708AFCCF50EDF84F0A,661B315660299EA4EC6B3C6B4CD038B4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RPCEPMAP.DLL FI2=1154320,6CE9A729D5053902315F86616A6E459981B699FCEA64F28531B6D4E3DCEEFD68,CF5594B689ED451962D52A999BEDA80B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RPCRT4.DLL FI2=1413120,25A60B852BFC23DF369EF1A840EDEA45534DE27887571B7880F3F41ED71C1310,5E8588E949BE4ACDA4441CCC87A97FCC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RPCSS.DLL FI2=258048,DA880247E506884940255195557FD3900A07B2AF674C864697B6068B8F2B3B3E,06B260B30982FF0266CCE284B0EA8999,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RSTRTMGR.DLL FI2=90112,BE353C31D252A0AA3F1907B4CC2DF613D850085BA21E019B9B8694A8A700E660,0BBBE93386BEC6FBA823330A3756E52D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RUNDLL32.EXE FI2=118784,B92C5DCFE24BC987D7FE60F4DE7680EF6F186BC5C4E2D62AEDF90EDE54E57A46,195F07CD5ADDEABB6C07602CFED7BA77,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\RUNONCE.EXE FI2=102400,845607864FC7E60304D8C45AE42884B32710781DAA33DA9D01416C77D2E0BE1D,9C210CDD9F05530777868F4C8530C438,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SC.EXE FI2=339968,B39ED2083545DA36FEE4E904CB2460B4D86787F1A9ECA661DE9C437441033D33,2B0FD6ACEACB402553EB2C1CC27299AD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SCARDSVR.DLL FI2=204800,4455A059E8021F48BE6A4601B76DC0A77665E31FBB0474E7B39A1D285FE2B5AA,1C6243F84B18311E5049CF711EB83274,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SCDEVICEENUM.DLL FI2=364544,69313A4FBD9257E78D4DE4640F27AD0FFBECBEF3D1385B530103D8321E8C5703,5799B5D22DBA2DBE5CD6ACC216A2353A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SCECLI.DLL FI2=569344,C820616F45796DB24F6055BBD9406941246D47FB8367DC439813C7EB2788E616,E27F59CE462BCD2341F8394E39287F38,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SCESRV.DLL FI2=954368,97274AAF51AD61345665D2000F7BC1E94BCA33129344E364CC75EB3E53A75DA4,DBAF3F0FC310EA043608759A7CFA4101,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SCHEDSVC.DLL FI2=299008,A37D279547E30663088E694061A484F68907D90F6A22C69B5E72DD65C1757FED,30679D2E960D317A38F6F781FB328D9D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SDBINST.EXE FI2=212992,5747DE8FC5C12EF1F22F1A8183468166C460353DCF9409C3E9569626F8B32C5C,C869B6B110231F3985389EA85DD292CA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SDRSVC.DLL FI2=299008,860C250F05B74E2FDFE47D3C9646980EE2F24088E2F1A404A14C70DD33CD23F9,E36EC9A322F5A927007431ABBB95A402,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SEARCHFILTERHOST.EXE FI2=937984,4BCA18C16DA612E0C01230AAA60D8B269B12A4941B3CBA80694A3D686D8BBCC6,DE35986A38E413D0303586087A541FE3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SEARCHINDEXER.EXE FI2=475136,E61C75A5C2A5769C7285281D42C4BE09A2F4EF223256D049AC4967363E69BABC,453167EE874C0EF056BF4A86989C2832,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SEARCHPROTOCOLHOST.EXE FI2=57344,4C484C353F8550F7DA5B894A5243AE40AC94AF89FBFD808BFED270BED86BF636,C5A35A0F846AAC17EDC991333624662E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SECLOGON.DLL FI2=131072,1A02946F664605DBF851EF18B4D49CA499958BCE8C7D7B516D93E6DF9AA1F3C4,BF5DDEBBD7010E6FC6929F14123D66A3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SECUREBOOTENCODEUEFI.EXE FI2=146136,A0F27B6A96A802CAC92DB2D1F2E348F384D1C3E81C66AAE25A639C762CF2AB73,9A4B5B895C9036D7EEC7A95EBAC88C79,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SECURITYHEALTHSERVICE.EXE FI2=270336,7E1747256C74F48D153B7F95A53151CA6988BB210CFEC60EB05921F5DA94FC0E,04DB94F10266A28B3A7B6FD0D1C75969,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SECURITYHEALTHSYSTRAY.EXE FI2=1318912,E2B210BBA1E4DCB8E5AF489D72AC8D2B6399ED8B8A1659D7F28B3E2B8454576C,4C2C813BD5C13ABD3EBC5E25BD08DF6B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SEMGRSVC.DLL FI2=98304,C5D7DCBABA92F963E02C30AC52CC6E7C2E1E7C23562C1FE8D5B91451D6F388D1,0D8CD4EF5A3EC1A6D69A70A49467C196,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SENS.DLL FI2=1175552,6C9A9A92175F25B1496B588DFFA0C7FA597644B38A400C58DA673FA64090FCDF,42992FD3EDDEAD9752CE2B1BA1DDCF54,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SENSORDATASERVICE.EXE FI2=888832,79FE367D0507772B220CB424A6271266D7C48AABBBD6D25D1B199DCCC6E05074,F20117AB0928C04BC216E5C17573FB4E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SENSORSERVICE.DLL FI2=221184,3F450244129245DE38CC230149868905CBD9451F6A78221C389F52E92C61E851,1BA8EAFE6378E8348096FCC300C2D99B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SENSRSVC.DLL FI2=92746,EB34E1DE291616F983BE230FE759324ACA5466C79CC393D0B3E80DE80914CCEF,2D8D95469EC26AAA986AAD1CE424E631,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SERVICES.MSC FI2=589824,6C20B38A890D0E15060E337F8B2FB263B808B63CB8542ABC30993005936012BD,AC475252DC6E5FBB6392F3720682A51D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SESSENV.DLL FI2=418856,5A83854481A61BD9A1697C6DDB2134DF9E8DEE7582438202E768B6547616A13A,3EB0A2F64AF9D90DDD5317723EB2323C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SGRM\SGRMBROKER.EXE FI2=122880,5AED6E23C6A8160B9EAC8E927B7E7FCD963390324732E1F80D98E29EDA0D827C,43C93B4A795A5B5A8C3A2950E2DBBD8F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SHELLHOST.EXE FI2=278528,42FA0CF8CFFA58D333EA76196AB1F24B74D65496E7653A35278F2AF3AFAD6B97,E3B8C3C5490134FFC4A4DF138C640840,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SHSVCS.DLL FI2=139264,DE14D56A139FD4D02D4586728B7978B67C865013271916FA1E4DABA2918B1FBE,1CD5D3342251D0C39ADA51E3C0BB0BE2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SIHOST.EXE FI2=79280,A29659D4775411BC39A73ABB18826CBA71B5882A33CFEAE3C05D94A201B84842,4D6071A4A82297F95F056A271F96945C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SMPHOST.DLL FI2=679936,F69A964E4676175BE658F33DD8BC82A512B7FF24EF3E628B2AAE58143AE57D07,BDD94BC7A67190B10E837B8E3254DC76,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SMSROUTERSVC.DLL FI2=40960,56D55FC46F33D5A40386342CF83F50614F4209FD599263865D5DF0735627A337,E75D00726A9989EBF5591E3A5239CDC4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SNMPTRAP.EXE FI2=241664,4190BA55AF5808DC0D4ED11842019BFBD6587A81A5AE16B1A21BA1B94C1671CB,ECEB0950AB0C62E824576196AB9F111E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SPACEAGENT.EXE FI2=111944,968D9FC3F12B53174A642C00CC3535E06B86DA04217796DA9B7622C75999C8CC,C219098C8EF7A8584FCF470BF5BEFFE7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SPACEMAN.EXE FI2=4476928,56555D9FD0292D07884E5795AB0D292C3DDAE596CD6429E56AF0FA70DE67D309,2E522BFAC44199CDE210409B44C8D6D0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SPEECH_ONECORE\COMMON\SAPI_ONECORE.DLL FI2=217088,53DECBC066D87AECD2B8480B025C5A03E77FD6065F07FA4F52445311DD835063,085590C0750C247936BC13A6E6C32E24,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SPEECH_ONECORE\COMMON\SPEECHMODELDOWNLOAD.EXE FI2=680440,963684DA1CDBD58F4BE38407D131D314372713C56FFFEB0506EDD4763A5CFF69,9A227F1C28AD32B4617E099AD278D8CA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\E_YTSYHE.EXE FI2=4141056,137A4C9FCE747AB3C35218B1772549FAEBE022F59DD66A618FD50B5DD99190DF,786A8B965417E385E03F09AAC0064798,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\X64\3\PRINTCONFIG.DLL FI2=1044480,CE344EF461B6BFB368D042835D262FF37DF270AED7CC6DB69EE7CA837EE52FDF,9843525FE1A546FC25C7522E087B7013,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SPOOLSV.EXE FI2=4773936,227214D426F60A3F1A3D25C4F922CE4828A3733EC54538BDA5B9174EAA4ECEB7,A148F3DAA48DFA52EE852A31C1E91672,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SPPSVC.EXE FI2=12288,0BB850D1CA201B41F22BF9F4CD62D4B1E6EEE84523AC0D79FF5D1C5A5DE98D5D,8F28C951A00A6F9B016222CFFE383396,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SREVENTS.DLL FI2=81920,693105226758B0E608DB6679985F4CB96D2EEA050CDF1924D33838534E608639,22B918F72500D4091D6A6059CD8BC1ED,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SRTASKS.EXE FI2=430080,8EE8598A7667F93BC2AFD94015921C5AD08D85AD8B33C615E546ADC499B9DA4F,D92190E5D3E05EB068A3F6A33F6FD4A4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SRVSVC.DLL FI2=299008,7243264B348E0CC41BF2CC6BA5913C356153048B9145884542F2F5613718BDC6,8FCCE6F01DE02A5F99F2FCC9E388516B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SSDPSRV.DLL FI2=188416,7E87D399044CBFEEB8D9DFD1A77C566956C95A261592B1D9D997064D562E25D7,828890B4659DD43C38E0BD891B424C56,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SSTPSVC.DLL FI2=925696,8DA94427A41B2A4F9BA5A7F1915D14591EF876BE783F14E6DCB6D6929EE956B7,3E1ECBEF029E6791F403D3A46CA71048,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\STORSVC.DLL FI2=88152,324451797AC909A4DD40C7A2F7347EF91F6B7C786941AD5035F609C0FC15EDAA,0CD128F416A04C06D50EC56392C25D9F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SVCHOST.EXE FI2=40960,13EFE0696D3BF41C56E6B59C4CDBCB57F44FF4FDEFFAA96541A863236F69CED1,EBFBBF4AE503CF9BDED9EBA9E57BF0D0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SVSVC.DLL FI2=475136,3355BD729BDA137EFCB8DCD9C48E38EB157C267E631D24EAE7F51E9F891CDB17,D93C1440232095DE730E8AC97441A250,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SWPRV.DLL FI2=674888,EC61935D2AE5C7285D0C36C998C76DE6EE679E012E791070D0FE80E247A6D038,9D670E5AE5301D35AA44F3FFC34ECBE0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SXS.DLL FI2=1007616,82512C9303490C4D389A54C2212D86F8E8ABACAEEABAD41F44F0DB1FEF4ED269,33FFE0931AB61ADC04FBAF4DE134C317,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SYSMAIN.DLL FI2=266240,EA019A335C6E394AB8171CF206B2DE44CD6728E3FFEF6012FE2237BDCFA03897,CD58B5E9956C5972975DCA38B9B19D3A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\SYSTEMEVENTSBROKERSERVER.DLL FI2=241664,51B5F88B1210AB1CE0A0B813F327869EE32DFFAD1652F9F9877E8D72FA53D770,E9D2B4C065F2BB36795FD210722400EA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TABSVC.DLL FI2=368640,F4B2B37817AC41564CE2ACB1BC7173224480151E2A0213D8D069547E5D5C88BD,6E97267546A455796C72DB5A4B888EFA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TAPISRV.DLL FI2=117072,81B033630F0DF0AF3F6D93FB455B16A31CFEB58960BAE12B5292D91E17D82FCB,98C43C65E590A4834B16E43A8E17B09A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TASKHOSTW.EXE FI2=5418424,44F8534BD933AF2C55C06D94C2E50173090B72CF531D3A92E770DEB7404C70A3,103D43C7ED32E4C64D407D895D516ED2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TASKMGR.EXE FI2=323584,0E5F2AD5FB0C12C4671343BA716357E18D2384D1DD14CC33046E76F084F2D1EE,8836DD7C8451C18375DBFABA37F18DB6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TCPMON.DLL FI2=1212416,22FBA6D261A7446150A10626021C3CB72A3FB10AA87268DF70328FC79A2C046B,53F535C03221AAC5E3B541811E13068C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TERMSRV.DLL FI2=299008,C0336479CAA0471C73CBC622AC484EC69B56EB0977970991F70137A904CFBEB8,2892560B7D9BF1DABEB9E9FF8C94AB46,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TETHERINGSERVICE.DLL FI2=114688,679C09247D05BF19C3D03F4E897F5017B7E0021630E5C7B62DCB08935685ACFA,4DA7FDDCEAA2ED1355ADFFA8B077FD35,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\THEMESERVICE.DLL FI2=348160,35B450E5486F3E8DA94E650BA2817B33B1AD82B16D063D0F42D309413F49594E,53C818FDDEF8FF43AE8DF27E9DEDCB61,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TIERINGENGINESERVICE.EXE FI2=188416,88C5161E7E84BF7B29C72A812DF37FE324E682D08CDD3D05DA6A80D2BAB15194,2D11B48B04B707DA0917ACAC1FA15E93,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TIMEBROKERSERVER.DLL FI2=1654784,62AC9AF76DEA60894239D2C5DFD5D394FF6FAB1D0AD9E7521E26F03FD7E947FC,77787DACBF618B75EE7FBD1D424385A0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TOKENBROKER.DLL FI2=3186688,8920DE6D9B08A9E705D1D0FC32C4A560E1379B75D714C3CE275872425A336F63,DC8527AAB6A06B0FE69BD23F647CCFBE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TQUERY.DLL FI2=139264,027D86F8F95F3FB8B1D0FDB04204DE09FF71D4CB017186E920ACA9916BECF89E,FE6F99771C820D7DDE614503DB504DA9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TRKWKS.DLL FI2=1159168,920ED9AB9046C43D886BDEBBBE11CC818B8DA4520B2163D92B3D78C1EBFF81A0,A286A6AB17A5EADEDACF9EB092428753,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TSWORKSPACE.DLL FI2=741376,2CDDD20FE6BF97A51534E9838A7E9EAE2C36B8EFB0F3AC7A3125457F7953683C,842B5B9200269CEEC7029AB0548235EF,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TWINUI.APPCORE.DLL FI2=204800,A89105C759D5DBC4DE0AA2234514A06D8112922F753B513688E854D64162EBA1,91C5A9E755C156290020F4200F42528F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TZAUTOUPDATE.DLL FI2=188928,5808A0F664AC20B05EB8B59DCE04B8D707C0200DB2CACD990819E77EC7529E36,57CF4E58AD9ECA3A0D6B24D24F55595F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\TZSYNC.EXE FI2=77824,D271AC482D9CF590EA07FF50064DFDC53912A1D7A04A70ADE9D187C5E007122B,FAC09E43A086697B8624F2546A5F63AA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\UCCONFIGTASK.EXE FI2=179712,6A1F9CD1C927D01AABC25B9E97443DB6BAF323090E7C35DB74C648B5D79B52AF,C0247ADC4D092885462F442AF7467257,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\UCPDMGR.EXE FI2=197952,18A6EC63E5EA4ABBCD567C9D2E3EF3CA970A3581FB03C7F260D9CA324C6D9C89,D6FBDC7651D7369398E53B17F8DD4CB4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\ULIB.DLL FI2=196608,E11E6D7F1FF07E6E84A42CE8AF674A5A488B2C2BF1920CB285E9E6FB3F0FAB3B,8DB52D43811650A240870225F1D7AB7C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\UMPNPMGR.DLL FI2=229376,0D41998E7914A87979C9631D6503D520F948B7BF469961F6242CB145C4556B53,534764AF583DEA66F3A5711B04EE622A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\UMPO.DLL FI2=434176,13AECC76D1797D4A13490A01A1BFC95D2435908F49FE10FBB788227BB4332DF0,2E72027F32EB785EC19AD561C6DE7E0A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\UMRDP.DLL FI2=1191936,8262065A44F3B87B81AD27349DE350735D0D22CAD2B0352EF9AF523DC9D4543A,C8CEA90BC8E3A8ACB4D60D8AEA8774F1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\UNISTORE.DLL FI2=370096,1C05FD76FD300AD0480CD04E975CAF6C4A13A6D2677F5B56AFCD2C2CEE92C3AD,17367051816BCFA6C36644EEA7C1F378,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\UNP\UPDATENOTIFICATIONMGR.EXE FI2=262144,F431F1AF28EB728760CDF1FCC376D75ECC7BEDCF7DF3C1A56831715DE7ED5665,D59496E30D5DB2EF505FB4C437C57387,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\UNREGMP2.EXE FI2=540672,881170944C64C01C46E427CDE94F07FED55553E7BE4F02F3D27933500A620167,314AEE7D21B0C6E6BCD2F1D453C0D183,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\UPNPHOST.DLL FI2=1355776,791A815802284BC0428AD955C4ABA4798F09B983D24EF6D3B57228AC00B09FCB,2E25E85F9307C371FCE7C2CA63600610,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\USBMON.DLL FI2=36864,2F7911DC7DA208BC9152E8D274A03434EAA14C22B7B08E92A56FE6EBE6CF6DCF,C8C902858F183F5EB378DB291A363DE6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\USBPERF.DLL FI2=1865040,FC94955927125ED8C8CC6D7ECCDD91E1DA06FBAA3D33A4E28DD1A590C3133A8B,60C9BA328231A75B2437E479E88E0942,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\USER32.DLL FI2=1589248,84464B7E3CCE285ED9033B68F1DEB486EE265CB09E3C9DD6676ACA9BCB7E5999,1EBCF924B04CBD1B1EC04F197F3B8DCE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\USERDATASERVICE.DLL FI2=187416,481CEB3A966BE4724454DFCE9C991C0AF640731CCEBD5D11B5E37A0547F17148,72AA1A667FBCC38915D6D0BDC18A5C16,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\USERENV.DLL FI2=159744,826D15F6C397787E83A6C4FE465FC59733540B8EE8E75980A5F2221DC863858C,27FD6CD54247A6584CF95E20F5F90A1C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\USERINIT.EXE FI2=1454080,DA7F3413488C75E3E0DE24AD06319072384C215D1A6123A05171B8CE8E5FDCB2,668DDACAC41EEE311688745A8D460920,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\USERMGR.DLL FI2=86016,218CCEC2BCDD01D8EF2065C9DE49C077AF1891639B5F264CC3A17F0E131D4761,EF80BF9A119930AF16BC044C49C47729,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\USOCLIENT.EXE FI2=81920,A8AC7EE9B9B8532177175C6A9CF3AA85F9E4BACAF28D342118AB30EB601A4CA6,58A95979E897C5B24D5D907EF284A39F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\USOSVC.DLL FI2=425984,8B7AF5DD42656223DC49B5436E1C2B955625F015D64B8D740F10584D3305B8B4,41175C90679FE77B017D86F98F9823F7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\VAULTSVC.DLL FI2=749568,5F40E43BF1D64EF5A920815015D67F592AA3BF92BC3538EC2EF9DA9D4202C460,764C40976202ABBFA22836FEB880767E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\VDS.EXE FI2=225280,B22955C294FE3628BCF477C0A65C8812DD654A880C5D1B7D7D72DB804B83EAF9,439E87952BE98EDF726207D6E35A257B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\VIRTUALMON.DLL FI2=1474560,BA5B6D25D87A985FADBFC6C66C275E1042B87C1ABF8499FC50BE2B3A0E46355C,881F4AB0529C4FE026F2C2DB3852EDCE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\VSSVC.EXE FI2=733184,6585CC203F116C15BE6C7E29B7985E93BB7B2A2E82DE5343C282F2D832B03B65,0B5E49A9858AFD192EF7DC9B4E8084A3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\W32TIME.DLL FI2=94208,83813FE0245D9DF4CB775F71512BB975E410848E05A768EFDFA583A27E0FF5EC,32ADF3193D7288FB0AE1508F9C936A9F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WAASMEDICSVC.DLL FI2=450560,C498C30A86BFC1732B7FB7BC61C4225E0D17CE404528053A012A6ACC95D94D7B,6E26223A0964FAD6D30FD8A5B20D2BB8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WALLETSERVICE.DLL FI2=45056,E5F0A8412A62C464F44906D00F7092CECE78004890C8AACB5D09353DBA51F751,B85DC731B1647A4D4BFB04F8B0FBFFA7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WBEM\WINMGMTR.DLL FI2=204800,26FDD3D8CE8D355336EAB56BFBA1B78E2480E39B872E218F10E4A1F931712A59,1CEC894413A6395C998C28EFB04DE32D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WBEM\WMIAPSRV.EXE FI2=507904,E21C99605576FF7F6D3482F240615A11AB827D9610574D21C747A0A7D3D6A3C5,58BA766628C5209EC7C92747798C3079,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WBEM\WMIPRVSE.EXE FI2=237568,8E229A603A84DF5DE70CD0C6DC3BB3CD4544A427506946FF6C42B3E13317160A,17F9E11D8E5E126016872A70824152F6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WBEM\WMISVC.DLL FI2=1544192,EBFAB4B61E3A1A8277F482C6097A9E9F127C3D6CAD799FB41A5B3E792A60F7EF,4146329C6EC4EF8FFCEEF60AC176893E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WBENGINE.EXE FI2=950272,F109765777C9FBDDEEB3F3C5CBC95FB4235AE1CEAC7C65DF7CCF3752A2CDE6EA,62C7BC1828583AC07DA7696E421F80DC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WBIOSRVC.DLL FI2=1421312,50342655C1FE9EB8A2102E00BD5D38304F8443B0D51414A9E1975BD268D47211,443D3DF4598633B50E693E278BDB9FFC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WCMSVC.DLL FI2=483328,11E6370D178C895760E3859EDBF0442D193B12809769DEEDF99E92290F27D36E,ABA6D6B988E0BA4365F34B5116F7924D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WCNCSVC.DLL FI2=118784,E6C95A81DD11ECED6EC17B19AC05F68E8E168C5DC989D03458BFDAF123AD8CF7,524F71FD00E386950DE771137E37C797,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WDI.DLL FI2=253952,0F96529271222F63EEBD8E87C0B241D8EA9D9E6682B27964F70DE3710850DF20,3B9EE99159FE6F93AE074B06920B4C21,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WEBCLNT.DLL FI2=193968,72E9C81CEB979D0EDC8FBEE1EA39E770B5300A019C998807166E34820A08DF2F,C98831CD36B25A366D34D339AA33266C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WEBTHREATDEFSVC.DLL FI2=308680,2052DD0BD1CE157D7856A89C1F3495DAA4BAF2708F2825F8DBE912CE1962064C,53C1A600DC9F0625CF8753123C03612B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WEBTHREATDEFUSERSVC.DLL FI2=221184,3DEC6A062315EB2919A4CF49CB4FB014900A453CA6AD44BC841A75D08CE66F6F,84DE27A7257D834856881717D19A5A4A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WECSVC.DLL FI2=57344,CE0CF53E1F54431C8C61F65D6EA969B3413B27617F370287C76E86CD70F0BFBD,B3D4260461E220495AA792BE574D8CA1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WEPHOSTSVC.DLL FI2=972376,6DC1071ECBD46E82E54C07B17ED0CEB288DF0FB59EB9BB1ADDF454D60F5A4D6D,57B2C18783AA9ACC9D0A0A4C3242A7B9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WER.DLL FI2=135168,A666AF927DDB92820B51D6CA36748C2647DEC1D2CA903195DFC5242C93A90F68,6BBCAC6458DB245D88908FD417F7419B,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WERCPLSUPPORT.DLL FI2=628128,85342353EFDDCEBF021FDEE5DD3BCB0AE706168244547AE6A1BF30CB85F956E4,64FAF662B340F3BDA161CAC1E5DFAC0E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WERFAULT.EXE FI2=288176,794D6927A38D1E5A888B358D536581FB0D7381DA674ED677542342A12194F5FE,8A14CB549FC477E218179DAA78CE89C4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WERMGR.EXE FI2=323584,E06CCB1531750577CEDAA790947F17F06B98DB2032755340740653D0BCF41B33,BACEEF1FCA58FF0243BF4DFBC5F48090,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WERSVC.DLL FI2=1241088,F3878F4273F4DC2E336E5FA7C1956F4F2045E792EFF6981AD9BCC5BC37FA16A2,8C8F3A4AF85F9A200CDA0415061ACE15,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WEVTSVC.DLL FI2=647168,CD88D7C5B28ED55271679037DD802D4FEF187EB4AFBA5A32C4526966EDB2CA7F,4E06959CC4489F931098AD75171B4F28,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WFDSCONMGRSVC.DLL FI2=143360,ADBC2E07B124DC455691D4AE05C6DCDA5C5C8418F7348BDB72675E2F2C8EE202,5557817A93D4D9D60F5BB59958F49E42,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WIARPC.DLL FI2=798720,8E56C60EDAB01A5FE5053D014E05E6F1833029B4FB1CA30DFA83D17D63770173,CAE4C327BB7F9A8FF181408EAE7A306F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WIASERVC.DLL FI2=185776,C5EC3566FFB1741AB79CCA0C1F541BD7F58D4571CEFB0364A331488B3C2A4B8B,3316AB257E19029F8356E6D27184A14E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WIFITASK.EXE FI2=1519616,084B8A5C1A940860A856EE965F1942C8B24FB7E5F91299A813BD6C2401E1D752,6DB9BA32C54C66849DEBDEDC427D313F,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WIN32SPL.DLL FI2=430080,A60578E19F0482E598459D1A40ECBDA0AF44B37B13CA3C3974BBE1BE57B36B88,9370DCAB6B2A78E27E295B3011C78435,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINDOWS.DEVICES.PICKER.DLL FI2=1138688,F28ADCCFB0E5A56F2AF0B2DEB88630D33EC20B90CEC0D40FF5DADC30D58572E0,F117BEE4B8A6E04374611FEC5E44FB6A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINDOWS.INTERNAL.MANAGEMENT.DLL FI2=1409024,E14F74FB951D275C39E7E12774DD289968EA5E9E2DD262C8D087574135A9A33A,25BDBB85C948D0BE3ACC17B5192DD89D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINDOWS.MANAGEMENT.SERVICE.DLL FI2=270336,EC683A6A1761A70C67A5ACCED07C38620BB327D8A4D7CABE0FA3EDA1EC51EB14,1D32FB0DE457DDD9F8D5DEA317731C81,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINDOWS.SHAREDPC.ACCOUNTMANAGER.DLL FI2=5269672,667B5ECDDA02A5481D305030EF669DF6C2BA88C9EE89E13C952BE001443C883C,C0D63A4F1929F5A67146C8B58856DAD8,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINDOWS.STATEREPOSITORY.DLL FI2=294864,155D86E44FDD26DE7604A9089A3560C14546CFBFA6A1C7D183B8DF941423B869,E096596AA8FEEC6DECED37C2958F99AD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINDOWS.STATEREPOSITORYCLIENT.DLL FI2=90112,ED1EF20C4316BCC6873AB0DA9FFAB3819A39457749688730211EBD040865C2F4,EC35D18624A4AD2DB3CEAF5F65DB8438,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINDOWS.WARP.JITSERVICE.DLL FI2=81920,9A73B050E42DC1C95DDA73F93A0567611EE57B4D85C5E21FF5B85DAA60A5ED3D,2C63DD69DCDECB19AB58FBF7E6836F9C,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINDOWSACTIONDIALOG.EXE FI2=454656,D3B4B97C2BF97D70E5655FF4C4CA1D8CEF9DED51685CFD764247CFDA98EE68DF,909A2EEC5534F01DFF87B7D47E57BFF7,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINDOWSPOWERSHELL\V1.0\POWERSHELL.EXE FI2=131072,959CF1717A3B7116012D9974C971CE6F1D50CE64A871AC1A3D213EB04641E42E,179CB3242490FEE1BBEB9DF90F24E9EB,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINDOWSUDKSERVICES.SHELLCOMMON.DLL FI2=1216296,B818E447D255B5B37168CBBC9714EEAAEFB23587312B2F4915A16A201C94D88E,EEB1D330FF33A453C4F8E4CC295363DC,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINHTTP.DLL FI2=567584,0A7E348772CCDF371ABD19B7EFF9F46D10D4C5FCB3E8DE82D16161C3A9A6F094,97C1650A27721BA00D39DA7D8092276E,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WININIT.EXE FI2=921600,01463DB835C0AEA0072B530A2441E2B4C9F3C7B7B63EF0BF8CF3F10830D8AF9A,EF0BEA08543CFAE93F231EE2D19CB1AA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINLOGON.EXE FI2=2768896,EE58D8F752CC087BD85CDA4FEB5B9B336E6CB1C224ADFD77969AD2CAEB8BA8BC,6B6971A721CA05D78A82726EB27D62A3,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINSAT.EXE FI2=90112,C3658D92DC85913D484DC66116638D3F7ABA3DD57129F2BEC6C213E1B43AD647,1C8811A54082947483A77079CB903579,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WINSRV.DLL FI2=380928,1359860BD9D77E87BCDEB9D9D89B011BCD907E8AB79655E350AAAC2C7860B616,F78C2021AD48869B640F08288B572C62,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WKSSVC.DLL FI2=3072000,91EA39E0CEE510D2B9920C5CA87A0279B2545913DE8D89DD99B7496D336A8167,817F3F7DA60E3F737DA23D00E2F531AA,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WLANSVC.DLL FI2=2056192,049FA296F069A20CEDA9F0ADBC43D8DB522F95DD80A185740A3BD6B992DA412A,001B8D2D4AAC54964E77AD0B7E02CFA1,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WLIDSVC.DLL FI2=1885616,DA6A851148A5EF97552B4666760A5FAC4F6BA2493EF25573890361CB5FEF92DF,0653FB455F5283A499613637C5A75479,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WORKFOLDERSSVC.DLL FI2=1937408,BA8C53411F3ACFF8518D173F3217B0F52B0196FC739423CB1BCB39BF0590CFBF,DBD17E32A57FF4C426E721F08319698A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WPCDESKTOPMONSVC.DLL FI2=1224560,177DC2A33BDCB13A13F9FC4EE818873EE43D146788FFD49E758A290A2DF134E1,27E7D6C2299E16103B89A54A4F01FCD6,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WPCMON.EXE FI2=151552,9B6790A1BA6812E6424075824F51AAB620FE8A0BB151274D248B1FC969388AC3,FF9BEC1A052E965684AA47D762851F20,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WPDBUSENUM.DLL FI2=155648,5F54E2022B5FB32F8CD13324A0967B32321C2D9F0E3420836E482E6EA5CA14AB,B2A35B44620FD47230BD30F9E79BF251,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WPNUSERSERVICE.DLL FI2=385768,451462209C94A8997088626F5F4CCD67519D7A89C39F07BCA1E11A2C61C004D9,6E272FC8676D13F2BC5C8E6A9320C719,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WSCSVC.DLL FI2=110592,637D0C097D13B444F4C0434316C088CA1FDB074A5D4C631F89474B8C04F4E930,A235E352E8B3EB4E3FC821F1EEE45627,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WSHEXT.DLL FI2=2740224,7B4A4FDA2C9C5B3650AAD9372CFE8C307A57D81FC79B60A33BFCE810EC76EE4C,99C7365DC818DFE7E9B9B7F34BC29D3A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WSMSVC.DLL FI2=86016,76606F2540E958D1D4344A02EC9118D071CA3B62EDD8FC9FE0DC37EC15C70237,E9D0427623E1DB95EEF5E9B30A2FD4D0,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WSQMCONS.EXE FI2=173000,E85305AB7634CDE4B1AC4DE033C7592480E41855A040C5506004FC6FE9B44920,76BE98ACE1537AFFFD68D24EC8F0BEF4,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WUAUENG.DLL FI2=1540096,C19EFAC77C7BE9B3ECB520A0854FBE1874A3B2EA41C0CFA894968803EABA5C18,317E656455325D70A2445E0A4D385A0A,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\WWANSVC.DLL FI2=1024000,B8115AE8D4C5B8E83512CD50743A0212536CFB5AC5EA7A59D0E7F65CB3FF3599,897B874C388F5B6002329AB5482AF1FD,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\XBLAUTHMANAGER.DLL FI2=942080,7C93EF2A959A1406CB555F70C1137971863071BAD9590526D1BCD38F40AC7816,D394D2A1D999FDAC1140F35839888BF2,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\XBLGAMESAVE.DLL FI2=61440,462AF5DBFEFF38F0FA32FC4F488B3B9A26BBB95BC90D53C574574E7B75997F6F,9D8F48C04B7B0DA7278463226D33D25D,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\XBLGAMESAVETASK.EXE FI2=131072,7185F5345139BAF6C70996CC57307979C04832960432C197CE1B1910DF0A3ED1,8146094B7A1B888610D8E602467C7DAE,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\XBOXGIPSVC.DLL FI2=1236992,3F92407A1BC1779DC91C999A33C3D6B081A700205F7311634335D862BA30D23C,9050ECB11E515814D4075906992AF2F9,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\XBOXNETAPISVC.DLL FI2=458752,303A6BE0468B7B965D7EB6FD89E4C282AA3A2069EC00A3E7E13F7CEB9EEB502D,368B4253BEE22EF9DFA2F31803CAFD61,1,"Microsoft Windows",C:\WINDOWS\SYSTEM32\XWIZARDS.DLL FI2=38400,90A1BB859D966A3B0A12CDAC8F3AA9446EB44A21A5B61277A7A18EDBB6F75DD4,AC6118420F5478A3369800E6F3F405AC,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\BTHUDTASK.EXE FI2=2789376,0A809CF54ABB21722902C262FE1CAD4129EEA5C106C5B7113808768AB25EE46F,D8B087F6BB0D1F5492BD52AD030E48FD,2,,C:\WINDOWS\SYSWOW64\CITIES.SCR FI2=737280,65D8980C469E45D862C68AD046731FD85C19401D3436FD46C65C19DB1182DAD8,4B6A413F8FEF192C1AE31BEE937D31C9,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\D3D8.DLL FI2=867832,7C03DBF3A9FFF9778AD500EBAA70C75838C170D2D6C243F3B8E4920F7F8FA096,4EDEAE8C3A2AFF92F8F4C4344D933E69,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\DNSAPI.DLL FI2=90624,860962FD2834E854CE3302C8C6D88492FD5816A36138921047024BE0F570B6AE,B712ED7EB671559B5FF252DEA97DF9EC,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\ICCVID.DLL FI2=34720,F21057D9D141BD18DF4ED418A7F4DC1D0D4BD009BAA04C411F2A9BD16660E87E,887FE60F9679B41FF36D7E4AEBCE971B,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\IMAADP32.ACM FI2=51712,ECD0F0B3D1526E15A5CADD9369D4138E81024184607DF0184B236585C6B62831,CAED9F6B8A5C965D44567E158CDBD0F8,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\IYUV_32.DLL FI2=74752,5A87B3AC8AD5669DD61EA6531D3CBF25A76BDF2B28AA77DF77594C714DEC38BE,D9083BDCBB3B9B7193293D300609DA0E,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\L3CODECA.ACM FI2=21504,05E827E48BC32809600AF768EC2FB8580E7774DD94407A9C41D83DA4E7C1BC2E,53B357CD2796EE3C71E17BED36D4A255,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MIDIMAP.DLL FI2=28160,90888FD241ECFF6441976E9A25A58A070C7C0F5CE70192D80151410DF2538605,E0D6055D9963DCF99CF8C9F8A202219D,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MSACM32.DRV FI2=34048,4589BF230CD52299B5552D60D566B786C571757D83BF74A0DF9C7C9E877A5FD9,01FD2E9B507793AE49904C68DEF809C2,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MSADP32.ACM FI2=327168,776A50B5D092D5BA8F8B01BEE96A453838A33D6DF235AF515053FEB7C8F53671,2A53789C1A3A2EC4DAE745CBCD8FD752,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MSCOREE.DLL FI2=26400,9353014774EDC41120DA28634301B667C5CC57ADCEA3415C6C33747CFC6218D5,1EA847630DC4874066626704534685AE,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MSG711.ACM FI2=39376,5E4B8702041411939133390C8501B4BD9C1E0DD1B6060F6442F68DA108833988,5AB7FE2F22C77E8345F78FBA212C2118,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MSGSM32.ACM FI2=17408,F31C90E00C4E2973FE49A0AF91E10117A72DC32FED8F6763F52AF42F15E449F7,2B6994F92800EDF30EBFBA3CA4644C32,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MSRLE32.DLL FI2=1436032,898288BD3B21D0E7D5F406DF2E0B69A5BBFA4F241BAF29A2CDF8A3CF4D4619F2,25F62C02619174B35851B0E0455B3D94,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MSVBVM60.DLL FI2=37888,8FE67400837CFD564653B98027CCFC4F1A8B826DBD64A34E633E7FD4C6DBA26D,BC4145AB0C1461B6BD62E4ACD5D83C12,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MSVIDC32.DLL FI2=323888,35954AFA2EADD13FBC4183A1796A8AFC7E295DB9359ECA76353DD501C987CB51,FD999EB62A5E3218A7AF9449E115875F,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MSWSOCK.DLL FI2=26624,DF1BB6B7B0A3BFABED46E7DE4EA1BA853174791DE49C5425FE75B87643EF6018,6C5211140148A6D87CB1601343864D2C,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\MSYUV.DLL FI2=1692840,A8C2444A0AF793CD4F167232BA6CD0518975A787BFA4060AAB86DB4DCB52E0E0,B9966F800D2A3A1522B1825077785C40,1,"MICRO-STAR INTERNATIONAL CO., LTD.",C:\WINDOWS\SYSWOW64\MUACHOST.EXE FI2=69272,AF779385F5CCDAA3B3413CD8FF3F7774F0834D4F6F199025158797EBBA42F174,FB76AD3065230C3D3572BD31B0A360A0,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\NAPINSP.DLL FI2=85504,47AD61AC91401171DBBE487A5B0082A26BD851271EB5BE9A7A37AEEB22063BB9,979A98ACA73597A9C9FA05E66A81DD9F,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\NLANSP_C.DLL FI2=98304,CDA29A93AF35A772DD32BAC4EB4BA7E30668D99B0C52630D2A71E6A7F51C5131,C7811B047C1A2A9A51B08AB57A776CE9,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\OLEPRO32.DLL FI2=22016,0F724FA20FFDE67151E2BCF6C9E2BD9DAC55243EC5CD1904783DF8980AFA3C05,DBB5E48696EFAE7E195CD81716B9F588,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\PERFHOST.EXE FI2=247296,746F4CCFD2752BC9E741977772647E00E63C340C57599008D6E900A24E40AD50,03944ABAE856DC164BD167526E07E953,2,,C:\WINDOWS\SYSWOW64\RTVCVFW32.DLL FI2=75776,6F477DFA245CF46E72CA64DDFE60BB2AA3650D29DE11A14CDEE8DB9A59C690D6,4101FF9CA54C35022E5CE5AEBFF9A69B,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\RUNONCE.EXE FI2=66048,A45F5E58BFB275C763CC3F13165B4F05FCBA82AD889C4DB2235C21B2DF9C90FD,739A16A729CCF467B2EEAFEFCFAB9849,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\SC.EXE FI2=259072,6E01B934A33C5D70526B031191CDA68988EB4C004026048625DEEA3E4943EFE3,5992DA684D592D3939F3385DB0233B93,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\SCECLI.DLL FI2=28664,F4EE803EEFDB4EAEEDB3024C3516F1F9A202C77F4870D6B74356BBDE32B3B560,0FFE35F0B0CD5A324BBE22F02569AE3B,1,"SOKNO S.R.L.",C:\WINDOWS\SYSWOW64\SPEEDFAN.SYS FI2=22016,69B1ABDCAD6243EAE84FD05197B0CD2949AECB346010013C2805EE8707D843F8,535AE6FE855A7A7CBCF76B018B653F36,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\STARTUPSCAN.DLL FI2=16384,D45C2A86DAC2CEA3C0D2896DB2A0B08AF1F9605D7B2FB8EE4EBF86D312D35758,B8D08B8E9F243351895EAA635EE3264F,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\TSBYUV.DLL FI2=129472,F2C2A753854C3F7879AB5EB01DDEFF93435E94006358604CBEF9DB5FF6AE1C01,92BDC883BAC9DC43F6A67C9D0CD9551C,1,"Skutta Software GmbH",C:\WINDOWS\SYSWOW64\WALLPAPERSERVICE32.EXE FI2=424960,BDB53EAB89C17B86C5E7B69149205F671E6438A07060B7A8B2B900C1E54418C3,96332D9751B749BE304B0326EBB5FBFB,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\WBEM\WMIPRVSE.EXE FI2=223232,D8D44F7AB254F4CE8E7372BA4AC97EBF767C6B232F71271F81E1CF9E5578B4E3,15BD1F0DCAD1F5ABC4892C88A85D3B50,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\WDMAUD.DRV FI2=333256,26B46A08A22A9B81F7F46B81E2B6FA7EC7D0EB21EDE68F6ACF9C0526F03B8DBA,484DDCEE9A2C4643F6CFA4D54E0EB228,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\WINDOWS.STORAGE.APPLICATIONDATA.DLL FI2=46112,F00703AD28F5C87B5A51BE99605EDA709FB3700AD77EFEC7FDD990C4DBE8FCC6,505FB8E2DD3380B9A9E001B8CE8B63BF,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\WINRNR.DLL FI2=54784,43771DD05AD301FA93DC148189F1C675A08990723AF985B28D1B7DDD860E35FE,6E74F2E10B795F346213E481024C9C13,1,"Microsoft Windows",C:\WINDOWS\SYSWOW64\WSHBTH.DLL FI2=729648,2CE8C8669B6EC9DD12932195C9DA98935D5F7279AA5FF2D1A3080E1A262F807E,6BCCE801288CC6EBA34E968136D8B46E,1,"Microsoft Corporation",D:\MURA.BERNARD\AUTORUNS V 13.94 (CONFIGURATION )\AUTORUNS.EXE FI2=872448,48F684511A7114DFD9AECC16F8B04BDFED097C2F2DA9CAFD42BA2BE1413E520A,F01A0530B01837E4C769B2CDE80E7F50,2,,D:\MURA.BERNARD\CLEANMGRPLUS\CLEANMGR+.EXE FI2=11700224,4557E9BECB3014873005709E1D3BCEBDF340E07580C1AB2C603532E51BC45294,D42A7560797147EF8458990552DFAA43,2,,D:\MURA.BERNARD\HIBIT UNUNSTALLER V 3.1.90.EXE FI2=410315,6BEFD449C8ACFB1671BA1122A4F219B9F4BF970E970B3E3B078A9C208567A8E7,15C4EAF89D08F5479F03C226608B8D78,2,,D:\MURA.BERNARD\MOVAVI VIDEO SUITE V20.2.0 - ITA (20 FEBBRAIO 2020) BY GRISU\[PORTABLE] MOVAVI VIDEO SUITE V20.2.0 - ITA (20 FEBBRAIO 2020) BY GRISU\CONVERTVIDEOANDAUDIOPORTABLE.EXE FI2=694784,DCB60E763CC3DB3D95135FA080589ECDB1535FDEBC0F8C27541B0D03F97F166C,A3445AB3D4AA667A9C147ED5F87D1CAF,2,,D:\MURA.BERNARD\UWT 5.1\ULTIMATE WINDOWS TWEAKER 5.1.EXE FI2=254312,5CF342A7237A0013FEB61B26A768C103E32C820A5E399818EEADF34DB039971E,EBB6EAB585B6D62F4C3FF2AA3D30A9D0,2,,D:\MURA.BERNARD\WINMEMORYCLEANER.EXE === [MBR] [MD5=004BC502E8A0AB7DDDB5C2C67E1CDFEE] M8CO0LwAfI7Ajti+AHy/AAa5AAL886RQaBwGy/u5BAC9vgeAfgAAfAsPhQ4Bg8UQ4vHNGIhW AFXGRhEFxkYQALRBu6pVzRNdcg+B+1WqdQn3wQEAdAP+RhBmYIB+EAB0JmZoAAAAAGb/dgho AABoAHxoAQBoEAC0QopWAIv0zROfg8QQnusUuAECuwB8ilYAinYBik4Cim4DzRNmYXMc/k4R dQyAfgCAD4SKALKA64RVMuSKVgDNE13rnoE+/n1VqnVu/3YA6I0AdRf6sNHmZOiDALDf5mDo fACw/+Zk6HUA+7gAu80aZiPAdTtmgftUQ1BBdTKB+QIBcixmaAe7AABmaAACAABmaAgAAABm U2ZTZlVmaAAAAABmaAB8AABmYWgAAAfNGloy9uoAfAAAzRigtwfrCKC2B+sDoLUHMuQFAAeL 8Kw8AHQJuwcAtA7NEOvy9Ov9K8nkZOsAJALg+CQCw0ludmFsaWQgcGFydGl0aW9uIHRhYmxl AEVycm9yIGxvYWRpbmcgb3BlcmF0aW5nIHN5c3RlbQBNaXNzaW5nIG9wZXJhdGluZyBzeXN0 ZW0AAABje5o= === [PT] 0xee Unknown, 1, -1 === [VBR] AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA AAAAAAAAAAAAAAAAAAAAAAAA === [STAT]u\\UkVBTg-- ===