There are all freeware tools required and or a trial or licience key i believe so
Facebook Account locked comprises what to do?
Collapse
X
-
-
Originally posted by MalnutritionRight now, please run rogue killer and Zhp diag, post the logs of each and we will go from there. Good to hear things are better, we are almost there just have to double check with the requested tools. ???Comment
-
Free to use. Run the scans post the logs and I’ll sort your machine out, like you say things are getting better already.Comment
-
Program : RogueKiller Anti-Malware
Version : 15.6.2.0
x64 : Yes
Program Date : Oct 10 2022
Location : C:\Program Files\RogueKiller\RogueKiller64.exe
Premium : No
Company : Adlice Software
Website : https://www.adlice.com/
Contact : Support Form | Contact • Adlice Software
Website : Free Virus Cleaner | RogueKiller AntiMalware • Adlice Software
Operating System : Windows 10 (10.0.18363) 64-bit
64-bit OS : Yes
Startup : 0
WindowsPE : No
User : Administrator
User is Admin : Yes
Date : 2022/11/07 22:53:00
Type : Scan
Aborted : No
Scan Mode : Standard
Duration : 12489
Found items : 12
Total scanned : 127011
Signatures Version : 20221107_130612
Truesight Driver : Yes
Updates Count : 8
************************* Warnings *************************
(58:4716) C:\Windows\System32, LONG_FOLDER_SCAN
[+] path : C:\Windows\System32
[+] message : LONG_FOLDER_SCAN
[+] int1 : 58
[+] int2 : 4716
(19:29) C:\Users\Ollie, LONG_FOLDER_SCAN
[+] path : C:\Users\Ollie
[+] message : LONG_FOLDER_SCAN
[+] int1 : 19
[+] int2 : 29
************************* Updates *************************
BlueStacks App Player (64-bit), version 4.280.0.1022
[+] Available Version : 5.9.300.1014
[+] Size : 1.99 GB
[+] Wow6432 : No
[+] Portable : No
GIMP 2.8.10 (64-bit), version 2.8.10
[+] Available Version : 2.10.32
[+] Size : 261 MB
[+] Wow6432 : No
[+] Portable : No
[+] update_location : C:\Program Files\GIMP 2\
Recuva (64-bit), version 1.53.0.1087
[+] Available Version : 1.53.0.2083
[+] Size : 10.4 MB
[+] Wow6432 : No
[+] Portable : No
[+] update_location : C:\Program Files\Recuva
Spotify (32-bit), version 1.0.5.186.ga9c24d6a
[+] Available Version : 1.1.84.716.gc5f8b819
[+] Size : 88.5 MB
[+] Wow6432 : Yes
[+] Portable : No
[+] update_location : C:\Program Files (x86)\Spotify
TeamViewer (32-bit), version 15.0.8397
[+] Available Version : 15.35.5
[+] Size : 109 MB
[+] Wow6432 : Yes
[+] Portable : No
[+] update_location : C:\Program Files (x86)\TeamViewer
OpenOffice 4.1.10 (32-bit), version 4.110.9807
[+] Available Version : 4.113
[+] Size : 345 MB
[+] Wow6432 : Yes
[+] Portable : No
[+] update_location : C:\Program Files (x86)\OpenOffice 4\
Zoom (64-bit), version 5.12.2 (9281)
[+] Available Version : 5.12.3
[+] Size : 9.76 MB
[+] Wow6432 : No
[+] Portable : No
[+] update_location : C:\Users\Administrator\AppData\Roaming\Zoom\bin
Telegram Desktop (64-bit), version 4.2.4
[+] Available Version : 4.3
[+] Size : 123 MB
[+] Wow6432 : No
[+] Portable : No
[+] update_location : C:\Users\Administrator\AppData\Roaming\Telegram Desktop\
************************* Processes *************************
************************* Modules *************************
************************* Services *************************
************************* Scheduled Tasks *************************
[PUP.Iolo (Potentially Malicious)] (iolo technologies, LLC) \iolo System Checkup – “C:\Program Files (x86)\Phoenix360\SCU\SCU.exe” [/toast] → Found
************************* Registry *************************
XX - Software
├── [PUP.Visicom (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\Software\pandasecuritytb – N/A → Found
├── [PUP.Visicom (Potentially Malicious)] (X86) HKEY_LOCAL_MACHINE\Software\pandasecuritytb – N/A → Found
└── [PUP.Iolo (Potentially Malicious)] (X86) HKEY_LOCAL_MACHINE\Software\Phoenix360 – N/A → Found
XX - System Policies
└── [PUM.Policies (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\Curr entVersion\Policies\System|ConsentPromptBehaviorAd min – 0 → Found
************************* Hosts File *************************
is_too_big : No
hosts_file_path : C:\Windows\System32\drivers\etc\hosts
************************* Filesystem *************************
[PUP.DriverTalent (Potentially Malicious)] (shortcut) Driver Talent.lnk – C:\Users\Public\Desktop\Driver Talent.lnk => C:\Program Files (x86)\OSTotoSoft\DriverTalent\DriverTalent.exe → Found
[PUP.Iolo (Potentially Malicious)] (shortcut) System Checkup.lnk – C:\Users\Public\Desktop\System Checkup.lnk => C:\PROGRA~2\PHOENI~1\SCU\SCU.exe → Found
[PUP.Iolo (Potentially Malicious)] (file) mfc45.dat – C:\Windows\SysWOW64\mfc45.dat → Found
[PUP.Iolo (Potentially Malicious)] (folder) Phoenix360 – C:\Users\Administrator\AppData\Local\Phoenix360 → Found
[PUP.Iolo (Potentially Malicious)] (folder) Phoenix360 – C:\ProgramData\Phoenix360 → Found
[Adw.Xunlei (Malicious)] (folder) Thunder Network – C:\ProgramData\Thunder Network → Found
[PUP.Iolo (Potentially Malicious)] (folder) Phoenix360 – C:\Program Files (x86)\Phoenix360 → Found
************************* Web Browsers *************************
************************* Antirootkit *************************
now i was just running ZHP Diag Scan closed off on itself? one Evil fileComment
-
Originally posted by Waves Raynethnow i was just running ZHP Diag Scan closed off on itself? one Evil fileComment
-
Are you familiar with Phoenix360, and Thunder Network? We will fix some items in rogue killer depending on your response.Comment
-
Originally posted by MalnutritionAre you familiar with Phoenix360, and Thunder Network? We will fix some items in rogue killer depending on your response.Comment
-
-
I feel that it’s ok to remove everything detected by rogue killer, then post the new log. Along with ZHP diag, or fresh FRST logs.Comment
-
Originally posted by MalnutritionSo you are ok with removing that?Comment
-
Go ahead and remove all items detected by rogue killer, then run it again and post the new log, along with ZHP diag and or new FRST logs please.Comment
-
Code:Program : RogueKiller Anti-Malware Version : 15.6.2.0 x64 : Yes Program Date : Oct 10 2022 Location : C:\Program Files\RogueKiller\RogueKiller64.exe Premium : No Company : Adlice Software Website : https://www.adlice.com/ Contact : Support Form | Contact • Adlice Software Website : Free Virus Cleaner | RogueKiller AntiMalware • Adlice Software Operating System : Windows 10 (10.0.18363) 64-bit 64-bit OS : Yes Startup : 0 WindowsPE : No User : Administrator User is Admin : Yes Date : 2022/11/08 19:32:19 Type : Removal Aborted : No Scan Mode : Standard Duration : 10353 Found items : 12 Total scanned : 126810 Signatures Version : 20221107_130612 Truesight Driver : Yes Updates Count : 0 ************************* Warnings ************************* (50:4716) C:\Windows\System32, LONG_FOLDER_SCAN [+] path : C:\Windows\System32 [+] message : LONG_FOLDER_SCAN [+] int1 : 50 [+] int2 : 4716 ************************* Removal ************************* [PUP.Iolo (Potentially Malicious)] \iolo System Checkup – “C:\Program Files (x86)\Phoenix360\SCU\SCU.exe” (/toast) → Deleted [+] scan_what : 0 [+] vendors : PUP.Iolo [+] Name : \iolo System Checkup [+] value : “C:\Program Files (x86)\Phoenix360\SCU\SCU.exe” (/toast) [+] Type : Task [+] file_hash : 8DC4CCB0F80B0E23528AB87E200127EF3D58302055C9D31F6CB18EE91C959801 [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 0 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [PUP.Visicom (Potentially Malicious)] HKEY_LOCAL_MACHINE\Software\pandasecuritytb – → Deleted [+] scan_what : 2 [+] vendors : PUP.Visicom [+] Name : HKEY_LOCAL_MACHINE\Software\pandasecuritytb [+] Type : Registry [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 1 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [PUP.Visicom (Potentially Malicious)] HKEY_LOCAL_MACHINE\Software\pandasecuritytb – → Deleted [+] scan_what : 2 [+] vendors : PUP.Visicom [+] Name : HKEY_LOCAL_MACHINE\Software\pandasecuritytb [+] Type : Registry [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 2 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [PUP.Iolo (Potentially Malicious)] HKEY_LOCAL_MACHINE\Software\Phoenix360 – → Deleted [+] scan_what : 2 [+] vendors : PUP.Iolo [+] Name : HKEY_LOCAL_MACHINE\Software\Phoenix360 [+] Type : Registry [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 3 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [PUM.Policies (Potentially Malicious)] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System|ConsentPromptBehaviorAdmin – → Replaced (2) [+] scan_what : 1 [+] vendors : PUM.Policies [+] Name : HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System|ConsentPromptBehaviorAdmin [+] Type : Registry [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 4 [+] id : 4 [+] status : 3 [+] status_str : Replaced (2) [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [PUP.DriverTalent (Potentially Malicious)] Driver Talent.lnk – %SystemDrive%\Users\Public\Desktop\Driver Talent.lnk (lnk => C:\Program Files (x86)\OSTotoSoft\DriverTalent\DriverTalent.exe ) → Deleted [+] scan_what : 1 [+] vendors : PUP.DriverTalent [+] Name : Driver Talent.lnk [+] value : %SystemDrive%\Users\Public\Desktop\Driver Talent.lnk (lnk => C:\Program Files (x86)\OSTotoSoft\DriverTalent\DriverTalent.exe ) [+] Type : File/Folder [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 5 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [PUP.Iolo (Potentially Malicious)] System Checkup.lnk – %SystemDrive%\Users\Public\Desktop\System Checkup.lnk (lnk => C:\PROGRA~2\PHOENI~1\SCU\SCU.exe ) → Deleted [+] scan_what : 1 [+] vendors : PUP.Iolo [+] Name : System Checkup.lnk [+] value : %SystemDrive%\Users\Public\Desktop\System Checkup.lnk (lnk => C:\PROGRA~2\PHOENI~1\SCU\SCU.exe ) [+] Type : File/Folder [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 6 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [PUP.Iolo (Potentially Malicious)] mfc45.dat – %SystemRoot%\SysWOW64\mfc45.dat → Deleted [+] scan_what : 1 [+] vendors : PUP.Iolo [+] Name : mfc45.dat [+] value : %SystemRoot%\SysWOW64\mfc45.dat [+] Type : File/Folder [+] file_hash : 33BE1965050A0526CC9FFCE1735DD9AF2945786458F38AF6F848D185665D71CB [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 7 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [PUP.Iolo (Potentially Malicious)] Phoenix360 – %localappdata%\Phoenix360 → Deleted [+] scan_what : 1 [+] vendors : PUP.Iolo [+] Name : Phoenix360 [+] value : %localappdata%\Phoenix360 [+] Type : File/Folder [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 8 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [PUP.Iolo (Potentially Malicious)] Phoenix360 – %programdata%\Phoenix360 → Deleted [+] scan_what : 1 [+] vendors : PUP.Iolo [+] Name : Phoenix360 [+] value : %programdata%\Phoenix360 [+] Type : File/Folder [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 9 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [Adw.Xunlei (Malicious)] Thunder Network – %programdata%\Thunder Network → Deleted [+] scan_what : 1 [+] vendors : Adw.Xunlei [+] Name : Thunder Network [+] value : %programdata%\Thunder Network [+] Type : File/Folder [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 2 [+] id : 10 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 [PUP.Iolo (Potentially Malicious)] Phoenix360 – %programfiles(x86)%\Phoenix360 → Deleted [+] scan_what : 1 [+] vendors : PUP.Iolo [+] Name : Phoenix360 [+] value : %programfiles(x86)%\Phoenix360 [+] Type : File/Folder [+] file_vtscore : 0 [+] file_vttotal : 0 [+] is_malicious : Yes [+] detection_level : 3 [+] id : 11 [+] status : 3 [+] status_str : Deleted [+] removed : Yes [+] status_choice : 2 [+] malpe_score : 0 ~ ZHPDiag v2022.11.5.83 By Nicolas Coolman (2022/11/05) ~ Run by Administrator (Administrator) (2022/11/08 04:38:29) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: ZHP ~ Certificate ZHPDiag: Legal ~ State version: ~ Mode: Scan ~ Report: C:\Users\Administrator\Desktop\ZHPDiag.txt ~ Report: C:\Users\Administrator\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ System startup: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 18363) =>.Microsoft Corporation —\ Internet Browsers (5) - 0s ~ GCIE: Google Chrome v107.0.5304.88 ~ MFIE: Mozilla Firefox 106.0.5 (x64 en-US) ~ MSIE: Internet Explorer v11.1411.18362.0 ~ OBIE: BraveSoftware Brave-Browser v99.1.36.116 ~ OBIE: Microsoft Edge v107.0.1418.35 —\ Windows Product Information (3) - 1s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK —\ System protection software (6) - 25747s Trusteer Endpoint Protection v3.5.2004.84 (Protection) Avast Premium Security v22.10.6038 (Protection) Malwarebytes version 4.5.17.221 v4.5.17.221 (Protection) Malwarebytes Privacy version 2.9.0.563 v2.9.0.563 (Protection) Malwarebytes Privacy VPN Tunnel Driver v1.0.0.0 (Protection) Windows Defender W10 (Activate) (Protection) —\ ANTI-MALWARE SOFTWARE (2) - 25749s ~ IObit Malware Fighter 9 v9.3.0.744 (Anti-Malware) ~ RogueKiller version 15.6.2.0 v15.6.2.0 (Anti-Malware) —\ System optimization software (2) - 25749s ~ Avast Cleanup Premium v22.3.12404.8972 (Optimisation) ~ CCleaner v6.05 (Optimisation) —\ Informations on the system (6) - 0s ~ Operating System: Intel64 Family 6 Model 61 Stepping 4, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 16689.292 MB (66% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 1242 GB (65%) free of 1893 GB : OK =>.Disk Space —\ Connection to the system mode (3) - 0s ~ Computer Name: RAY ~ User Name: Administrator ~ Logged in as Administrator —\ Enumeration of the disk units (1) - 0s ~ Drive C: has 1242 GB free of 1893 GB (System) —\ SYSTEM DISK MAIN FEATURES (33) - 561s ~ Model: ST2000LM003 HN-M201RAD v2BE10001 (1893 Gb ) ~ Media Type: HDD Fixed Disk ( Bus: SATA) —\ SYSTEM DISK GENERAL ATTRIBUTES OK - N0 - Indicateur d’usure du périphérique de stockage (Storage Device Wear Indicator) (%): 0 OK - N1 - Temps de latence maximal de vidage (Maximum Flash latency) (ms): 2.277 RE - N2 - Temps de latence maximal d’écriture (Maximum write latency) (ms): 34.411 RE - N3 - Temps de latence maximal de lecture (Maximum read latency) (ms): 35.209 OK - N4 - Vitesse de rotation (Spindle Speed) (RPM): Unknown —\ S.M.A.R.T. PARAMETERS - [Flag][Value][Worst] [Threshold][Raw Value] OK - 01 - Taux d’erreur de lecture (Raw Read Error Rate) - [47][100][100] [51][0] OK - 02 - Performance de débit (Throughput Performance) - [38][252][252] [0][0] OK - 03 - Temps moyen de mise en rotation (ms) (Spin-Up Time) - [35][91][91] [25][2900] OK - 04 - Nombre de démarrages/arrêts (Start/Stop Count) - [50][96][96] [0][4903] OK - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][252][252] [10][0] OK - 07 - Taux d’erreurs de recherche (Seek Error Rate) - [46][252][252] [51][0] OK - 08 - Recherche de performance de temps (Seek Time Performance) - [36][252][252] [15][0] OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [50][100][100] [0][16996] OK - 0A - Nombre d’essai de relance de rotation (Spin Retry Count) - [50][252][252] [51][0] OK - 0C - Nombre total de cycles d’alimentation (Power Cycle Count) - [50][97][97] [0][3303] OK - 0D - Spécifique constructeur - [58][100][100] [0][0] OK - B5 - Spécifique Constructeur - [34][98][98] [0][28856] OK - BF - Nombre d’erreurs chargement/déchargement de tête (G-Sense Error Rate) - [34][252][252] [0][0] OK - C0 - Nombre de Rétractation d’armature magnétique (Power-off Retract Count) - [34][252][252] [0][0] OK - C1 - Cycles de charge/décharge (Load/Unload Cycle Count) - [50][99][99] [0][15873] OK - C2 - Température interne actuelle (Enclosure Temperature) - [2][64][56] [0][16] OK - C3 - Matériel ECC Récupéré (Hardware ECC Recovered) - [58][100][100] [0][0] OK - C4 - Nombre d’opérations de réallocations (remap) (Reallocation Event Count) - [50][252][252] [0][0] OK - C5 - Nombre de secteurs instables (Current Pending Sector Count) - [50][252][252] [0][0] OK - C6 - Total d’erreurs incorrigibles d’un secteur (Off-Line Uncorrectable Sector Count) - [48][252][252] [0][0] OK - C7 - Nombre d’erreurs dans le transfert de données (Ultra ATA CRC Error Rate) - [54][200][200] [0][0] OK - C8 - Nombre Total d’erreurs d’écriture d’un secteur (Uncorrectable Sector Count) - [42][100][100] [0][372] —\ State of the Windows Security Center (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK —\ Search Generic System Files (25) - 38s [MD5.7100CB37535F39957BE165297CC89EF8] - 29/05/2021 - (.Microsoft Corporation - Windows Explorer.) – C:\WINDOWS\Explorer.exe [4780136] =>.Microsoft� [MD5.737978CD2171B0EA1DE6691E24B7727F] - 13/01/2021 - (.Microsoft Corporation - Windows host process (Rundll32).) – C:\WINDOWS\System32\rundll32.exe [71168] [Unsigned] =>.Microsoft Corporation [MD5.E83650F70459A027AA596E1A73C961A1] - 02/02/2020 - (.Microsoft Corporation - Windows Start-Up Application.) – C:\WINDOWS\System32\Wininit.exe [398728] [Unsigned] =>.Microsoft Corporation [MD5.A8AFB140FDDFD1995FFF2AECC486F938] - 17/02/2021 - (.Microsoft Corporation - Internet Extensions for Win32.) – C:\WINDOWS\System32\wininet.dll [5046272] [Unsigned] =>.Microsoft Corporation [MD5.B90F17501510885D63CEBB6BAF9E7A46] - 17/02/2021 - (.Microsoft Corporation - Windows Log-on Application.) – C:\WINDOWS\System32\Winlogon.exe [845312] [Unsigned] =>.Microsoft Corporation [MD5.BC42FADF10C21F689B3F6EC052B60E1F] - 14/10/2020 - (.Microsoft Corporation - Software Licensing Library.) – C:\WINDOWS\System32\sppcomapi.dll [307712] [Unsigned] =>.Microsoft Corporation [MD5.8C799DCDD3C199BC17EC4D1A453A7EAA] - 14/04/2021 - (.Microsoft Corporation - DNS Client API DLL.) – C:\WINDOWS\System32\dnsapi.dll [822280] =>.Microsoft� [MD5.DA7D782BD14FEFD328F3E121128C5634] - 14/04/2021 - (.Microsoft Corporation - DNS Client API DLL.) – C:\WINDOWS\Syswow64\dnsapi.dll [592960] =>.Microsoft� [MD5.14356507676F2826EE4D07E977396B31] - 26/03/2021 - (.Microsoft Corporation - Windows Update Agent.) – C:\WINDOWS\System32\wuaueng.dll [3139072] [Unsigned] =>.Microsoft Corporation [MD5.9BFEAAD2EFAF678B8BBFC986D94A9757] - 09/09/2020 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) – C:\WINDOWS\System32\drivers\AFD.sys [661832] [Unsigned] =>.Microsoft Corporation [MD5.88A8B6C07F3A0E4256EFD65ECC90F6E3] - 29/05/2021 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) – C:\WINDOWS\System32\drivers\atapi.sys [30008] [Unsigned] =>.Microsoft Corporation [MD5.3E9C20ED02FAA6D194C060BC6E7D587E] - 02/02/2020 - (.Microsoft Corporation - CD-ROM File System Driver.) – C:\WINDOWS\System32\drivers\Cdfs.sys [100352] [Unsigned] =>.Microsoft Corporation [MD5.81E3779064C04790E30F25770F0AEADD] - 19/03/2019 - (.Microsoft Corporation - SCSI CD-ROM Driver.) – C:\WINDOWS\System32\drivers\Cdrom.sys [173056] [Unsigned] =>.Microsoft Corporation [MD5.F63126760B93024841C3864587D667EB] - 11/02/2021 - (.Microsoft Corporation - DFS Namespace Client Driver.) – C:\WINDOWS\System32\drivers\DfsC.sys [151040] [Unsigned] =>.Microsoft Corporation [MD5.1D742547071FC1436ED72A3F9DB6E1F0] - 03/03/2020 - (.Microsoft Corporation - High Definition Audio Bus Driver.) – C:\WINDOWS\System32\drivers\HDAudBus.sys [114688] [Unsigned] =>.Microsoft Corporation [MD5.B475892255B02D33CF29B24FBD4AFDC9] - 19/03/2019 - (.Microsoft Corporation - i8042 Port Driver.) – C:\WINDOWS\System32\drivers\i8042prt.sys [119296] [Unsigned] =>.Microsoft Corporation [MD5.5E05C0FEA671B910FEBC634E796C38B5] - 19/03/2019 - (.Microsoft Corporation - IP Network Address Translator.) – C:\WINDOWS\System32\drivers\IpNat.sys [224768] [Unsigned] =>.Microsoft Corporation [MD5.C326F23DBC89B42FC8413C5A2C000CB9] - 11/02/2021 - (.Microsoft Corporation - Windows NT SMB Minirdr.) – C:\WINDOWS\System32\drivers\MRxSmb.sys [561472] [Unsigned] =>.Microsoft Corporation [MD5.FF207E415B21D18E97BA3371BD4E3058] - 14/10/2020 - (.Microsoft Corporation - MBT Transport driver.) – C:\WINDOWS\System32\drivers\netBT.sys [337408] [Unsigned] =>.Microsoft Corporation [MD5.B8B49EF09160B3A292F1A258EE54466F] - 29/05/2021 - (.Microsoft Corporation - NT File System Driver.) – C:\WINDOWS\System32\drivers\ntfs.sys [2693432] [Unsigned] =>.Microsoft Corporation [MD5.AC682BC99BECA3A6C8C71234A9BC4225] - 19/03/2019 - (.Microsoft Corporation - Parallel Port Driver.) – C:\WINDOWS\System32\drivers\Parport.sys [108032] [Unsigned] =>.Microsoft Corporation [MD5.555E33527CC3C34620E49F5F86C8F7B0] - 19/03/2019 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) – C:\WINDOWS\System32\drivers\Rasl2tp.sys [112128] [Unsigned] =>.Microsoft Corporation [MD5.0227E0CD11B007A48327F5C86C41A6C9] - 09/12/2020 - (.Microsoft Corporation - Microsoft RDP Device redirector.) – C:\WINDOWS\System32\drivers\rdpdr.sys [167936] [Unsigned] =>.Microsoft Corporation [MD5.9AF99FB2DA176C88C68D886046C56B01] - 19/03/2019 - (.Microsoft Corporation - TDI Translation Driver.) – C:\WINDOWS\System32\drivers\tdx.sys [132616] [Unsigned] =>.Microsoft Corporation [MD5.7764E62EF94DDA90E87309E739F6970E] - 03/03/2020 - (.Microsoft Corporation - Volume Shadow Copy driver.) – C:\WINDOWS\System32\drivers\volsnap.sys [429880] [Unsigned] =>.Microsoft Corporation —\ No disabled Windows Services (79) - 109s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.� O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Windows Audio Endpoint Builder.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Windows Audio Service.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: %1!s! Update Service (avast) (avast) . (.AVAST Software - Avast Browser.) - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe =>.Avast Software s.r.o.� O23 - Service: Avast Antivirus (avast! Antivirus) . (.AVAST Software - Avast Service.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.Avast Software s.r.o.� O23 - Service: Avast Firewall Service (avast! Firewall) . (.AVAST Software - Avast firewall service.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.Avast Software s.r.o.� O23 - Service: Avast Tools (avast! Tools) . (.AVAST Software - Avast Antivirus.) - C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe =>.Avast Software s.r.o.� O23 - Service: Avast AntiTrack Service (AvastAntiTrackSvc) . (.AVAST Software - Avast AntiTrack Service.) - C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\AntiTrackSvc.exe =>.Avast Software s.r.o.� O23 - Service: AvastWscReporter (AvastWscReporter) . (.AVAST Software - Avast remediation exe.) - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe =>.Avast Software s.r.o.� O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Base Filtering Engine.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) - C:\WINDOWS\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Microsoft (R) CDP User Components.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: CDPUserSvc_c23b2 (CDPUserSvc_c23b2) . (.Microsoft Corporation - Host Process for Windows Services.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher� O23 - Service: Avast Cleanup (CleanupPSvc) . (.AVAST Software - Avast Cleanup Service.) - C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O23 - Service: Microsoft Office ClickToRun Service (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run (SxS).) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe =>.Microsoft� O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft� O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc. - Conexant Audio Message Service.) - C:\WINDOWS\system32\CxAudMsg64.exe [Unsigned] =>.Conexant Systems Inc. O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc� O23 - Service: DbxSvc (DbxSvc) . (.Dropbox, Inc. - Dropbox Service.) - C:\WINDOWS\System32\DbxSvc.exe [Unsigned] =>.Dropbox, Inc. O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Device Association Service.) - C:\WINDOWS\System32\das.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - DHCP Client Service.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Desktop Display Broker.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - DNS Caching Resolver Service.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: dynabook Function Key control service (DSDFunctionKeyCtlService) . (.Dynabook Inc. - dynabook Function Key control service.) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\DSDFunctionKeyCtlService.exe =>.Dynabook Inc.� O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Data Usage Service.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Microsoft Edge Update Service (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft� O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation� O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Event Logging Service.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation� O23 - Service: (GamingServices) . (.Microsoft Corporation - GamingServices.) - C:\Program Files\WindowsApps\Microsoft.GamingServices_2.47.10001.0_x64__8wekyb3d8bbwe\GamingServices.exe =>.Microsoft� O23 - Service: (GamingServicesNet) . (.Microsoft Corporation - GamingServices.) - C:\Program Files\WindowsApps\Microsoft.GamingServices_2.47.10001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe =>.Microsoft� O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Group Policy Client.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc� O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\System32\igfxCUIService.exe [Unsigned] =>.Intel Corporation O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - IKE extension.) - C:\WINDOWS\System32\ikeext.dll [Unsigned] =>.Microsoft Corporation O23 - Service: IMF Service (IMFservice) . (.IObit - IObit Malware Fighter Service.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe =>.IObit CO., LTD� O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) . (…) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [Unsigned] =>.Intel Corporation O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Local Session Manager Service.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Downloaded Maps Manager.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.� O23 - Service: MBVpnService (MBVpnService) . (.Malwarebytes - Malwarebytes VPN Service.) - C:\Program Files\Malwarebytes\Privacy\MBVpnService.exe =>.Malwarebytes Inc� O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Microsoft Protection Service.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Network Location Awareness 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Network Store Interface RPC server.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: OneSyncSvc_c23b2 (OneSyncSvc_c23b2) . (.Microsoft Corporation - Host Process for Windows Services.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher� O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - User-mode Power Service.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Rapport Management Service (RapportMgmtService) . (.IBM Corp. - RapportMgmtService.) - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe =>.IBM� O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Remote Access Connection Manager.) - C:\WINDOWS\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation� O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - RPC Endpoint Mapper.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SCardSvr.dll (SCardSvr) . (.Microsoft Corporation - Smart Card Resource Management Server.) - C:\WINDOWS\System32\SCardSvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Task Scheduler Service.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Avast SecureLine VPN (SecureLine) . (.AVAST Software - Avast VPN Service.) - C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe =>.Avast Software s.r.o.� O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - System Guard Runtime Monitor Broker Service.) - C:\WINDOWS\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Spooler SubSystem App.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Microsoft Software Protection Platform Serv.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Still Image Devices Service.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Surfshark Service (Surfshark Service) . (.Surfshark - Surfshark.) - C:\Program Files (x86)\Surfshark\Surfshark.Service.exe {7C3DB25748949CFC8DD57D82}. =>.Surfshark O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - System Events Broker.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: TSDSettingService (TSDSettingService) . (.Dynabook Inc. - dynabookSystemService.exe.) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\dynabookSystemService.exe =>.Dynabook Inc.� O23 - Service: TSDTabletControlService (TSDTabletControlService) . (.Dynabook Inc. - dynabook Tablet System Service.) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\TOSTABSYSSVC.exe =>.Dynabook Inc.� O23 - Service: TSDWirelessLEDCtlService (TSDWirelessLEDCtlService) . (.Dynabook Inc. - RMService.) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\RMService.exe =>.Dynabook Inc.� O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Service.) - C:\WINDOWS\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - Windows Connection Manager Service DLL.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe =>.Microsoft� O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation —\ Services not Microsoft (SR=Run, SS=Stop) (184) - 348s SR - Boot [19/03/2019] [ 107528] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft Windows� SR - Demand [09/06/2022] [ 1868848] ACE-BASE (ACE-BASE) . (.ANTICHEATEXPERT.COM.) - C:\WINDOWS\system32\drivers\ACE-BASE.sys {0F316A214F60D59DC921AEB9685136CC}. SR - Auto [26/09/2022] [ 173040] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.� SR - Boot [19/03/2019] [ 1135632] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft Windows� SR - Demand [19/03/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [19/03/2019] [ 37888] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Boot [19/03/2019] [ 83464] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 259600] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 27176] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft Windows� SS - Demand [05/07/2018] [ 83768] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.� SR - Boot [19/03/2019] [ 132112] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft Windows� SR - System [01/11/2022] [ 238152] aswArPot (aswArPot) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswArPot.sys =>.Avast Software s.r.o.� SR - System [01/11/2022] [ 390096] aswbidsdriver (aswbidsdriver) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbidsdriver.sys =>.Avast Software s.r.o.� SR - Boot [01/11/2022] [ 306128] aswbidsh (aswbidsh) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbidsh.sys =>.Avast Software s.r.o.� SR - Boot [01/11/2022] [ 105936] aswbuniv (aswbuniv) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswbuniv.sys =>.Avast Software s.r.o.� SR - Boot [13/10/2022] [ 25576] aswElam (aswElam) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswElam.sys =>.Microsoft� SR - System [01/11/2022] [ 48512] aswKbd (aswKbd) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswKbd.sys =>.Avast Software s.r.o.� SR - System [01/11/2022] [ 276520] aswMonFlt (aswMonFlt) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswMonFlt.sys =>.Avast Software s.r.o.� SR - System [01/11/2022] [ 564304] aswNetHub (aswNetHub) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswNetHub.sys =>.Avast Software s.r.o.� SR - System [01/11/2022] [ 114464] aswRdr (aswRdr) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswRdr2.sys =>.Avast Software s.r.o.� SR - Boot [01/11/2022] [ 90008] aswRvrt (aswRvrt) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswRvrt.sys =>.Avast Software s.r.o.� SR - System [01/11/2022] [ 862936] aswSnx (aswSnx) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswSnx.sys =>.Avast Software s.r.o.� SR - System [01/11/2022] [ 672272] aswSP (aswSP) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswSP.sys =>.Avast Software s.r.o.� SR - Auto [01/11/2022] [ 221944] aswStm (aswStm) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswStm.sys =>.Avast Software s.r.o.� SR - Boot [01/11/2022] [ 327896] aswVmm (aswVmm) . (.AVAST Software.) - C:\WINDOWS\System32\drivers\aswVmm.sys =>.Avast Software s.r.o.� SR - Demand [02/08/2022] [ 65944] Avast SecureLine VPN Driver (aswVpnRdr) . (.Avast Software.) - C:\WINDOWS\System32\drivers\aswVpnRdr.sys =>.Avast Software s.r.o.� SR - Auto [26/10/2020] [ 194200] %1!s! Update Service (avast) (avast) . (.AVAST Software.) - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe =>.Avast Software s.r.o.� SR - Auto [01/11/2022] [ 592600] Avast Antivirus (avast! Antivirus) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.Avast Software s.r.o.� SR - Auto [01/11/2022] [ 2018008] Avast Firewall Service (avast! Firewall) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.Avast Software s.r.o.� SR - Auto [01/11/2022] [ 592600] Avast Tools (avast! Tools) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe =>.Avast Software s.r.o.� SR - Auto [30/08/2022] [ 1747712] Avast AntiTrack Service (AvastAntiTrackSvc) . (.AVAST Software.) - C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\AntiTrackSvc.exe =>.Avast Software s.r.o.� SS - Demand [26/10/2020] [ 194200] %1!s! Update Service (avastm) (avastm) . (.AVAST Software.) - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe =>.Avast Software s.r.o.� SS - Demand [27/10/2022] [ 2047016] Avast Secure Browser Elevation Service (AvastSecureBrowserE (AvastSecureBrowserElevationService) . (.AVAST Software.) - C:\Program Files (x86)\AVAST Software\Browser\Application\106.0.19037.119\elevation_service.exe {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software SR - Auto [01/06/2021] [ 56912] AvastWscReporter (AvastWscReporter) . (.AVAST Software.) - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe =>.Avast Software s.r.o.� SR - Boot [19/03/2019] [ 534032] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft Windows� SR - Demand [19/03/2019] [ 9728] bcmfn2 Service (bcmfn2) . (…) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Auto [04/10/2020] [ 315976] BlueStacks Hypervisor (BlueStacksDrv) . (.Bluestack System Inc..) - C:\Program Files\BlueStacks\BstkDrv_bgp.sys =>.Bluestack Systems, Inc� SS - Demand [22/01/2020] [ 157320] Brave Update Service (brave) (brave) . (.BraveSoftware Inc..) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe =>.Brave Software, Inc.� SS - Demand [22/01/2020] [ 157320] Brave Update Service (bravem) (bravem) . (.BraveSoftware Inc..) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe =>.Brave Software, Inc.� SR - Demand [26/04/2013] [ 54064] Bluetooth Profile Interface Driver Service (BthL2caScoIfSrv) . (.Ralink Corporation.) - C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys =>.Mediatek Inc.� SS - Demand [20/10/2022] [ 1185616] CCleaner Performance Optimizer Service (CCleanerPerformanceOptimizerService) . (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe =>.PIRIFORM SOFTWARE LIMITED� SR - Boot [19/03/2019] [ 319528] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft Windows� SR - Demand [19/03/2019] [ 1866768] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft Windows� SR - Auto [01/11/2022] [15471512] Avast Cleanup (CleanupPSvc) . (.AVAST Software.) - C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software SR - Demand [20/03/2017] [ 1564696] Conexant U (CnxtHdAudService) . (.Conexant Systems Inc..) - C:\WINDOWS\System32\drivers\CHDRT64.sys =>.Conexant Systems, Inc.� SS - Demand [28/04/2020] [ 394824] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation� SR - Demand [00/00/0000] [ 0] cpuz154 (cpuz154) . (…) - C:\WINDOWS\temp\cpuz154\cpuz154_x64.sys (.not file.) [Unsigned] SR - Auto [05/02/2015] [ 225496] @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc..) - C:\WINDOWS\system32\CxAudMsg64.exe =>.Conexant Systems, Inc.� SR - Auto [01/01/2022] [ 130320] Dropbox Update Service (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc� SS - Demand [01/01/2022] [ 130320] Dropbox Update Service (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc� SR - Demand [04/11/2022] [ 47600] dbx (dbx) . (.Dropbox, Inc..) - C:\WINDOWS\System32\DRIVERS\dbx.sys =>.Microsoft� SR - Auto [04/11/2022] [ 46824] DbxSvc (DbxSvc) . (.Dropbox, Inc..) - C:\WINDOWS\System32\DbxSvc.exe =>.Dropbox, Inc� SR - Auto [02/03/2022] [ 640096] dynabook Function Key control (DSDFunctionKeyCtlService) . (.Dynabook Inc..) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\DSDFunctionKeyCtlService.exe =>.Dynabook Inc.� SS - Demand [27/05/2015] [ 19960] DTS APO Service (dts_apo_service) . (.DTS, Inc.�.) - C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe =>.DTS, Inc.� SS - Demand [15/07/2020] [ 818304] EasyAntiCheat (EasyAntiCheat) . (.Epic Games, Inc.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe =>.EasyAntiCheat Oy� SR - Boot [19/03/2019] [ 3419176] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft Windows� SR - Demand [02/06/2016] [ 580696] ELAN Input Device (ETD) . (.ELAN Microelectronics Corp..) - C:\WINDOWS\System32\DRIVERS\ETD.sys =>.ELAN MICROELECTRONICS CORPORATION� SR - Auto [02/06/2016] [ 144608] Elan Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation� SR - Demand [02/06/2016] [ 31832] ETDSMBus (ETDSMBus) . (.ELAN Microelectronic Corp..) - C:\WINDOWS\System32\drivers\ETDSMBus.sys =>.ELAN MICROELECTRONICS CORPORATION� SR - Auto [05/09/2018] [ 670816] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation� SS - Demand [27/10/2022] [ 1730328] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.88\elevation_service.exe =>.Google LLC� SR - System [14/03/2022] [ 384584] googledrivefs3758 (googledrivefs3758) . (.Google, Inc..) - C:\WINDOWS\System32\DRIVERS\googledrivefs3758.sys =>.Microsoft� SR - Auto [11/08/2016] [ 154440] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc� SS - Demand [11/08/2016] [ 154440] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc� SR - Demand [13/07/2022] [ 42000] HitmanPro 3.7 Support Driver (hitmanpro37) . (.© 2022 Sophos B.V..) - C:\WINDOWS\system32\drivers\hitmanpro37.sys =>.Microsoft� SS - Demand [13/07/2022] [ 152576] HitmanPro Scheduler (HitmanProScheduler) . (.SurfRight B.V..) - C:\Program Files\HitmanPro\hmpsched.exe {08DDB12146AF9858663408E98629828B}. =>.SurfRight B.V. SR - Boot [19/03/2019] [ 64528] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft Windows� SR - Demand [19/03/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [19/03/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [19/03/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [19/03/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [19/03/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [19/03/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [19/03/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [19/03/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [19/03/2019] [ 180736] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [19/03/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [19/03/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group� SR - Demand [19/03/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [12/04/2021] [ 1469952] (iaStorA) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorA.sys =>.Intel(R) Rapid Storage Technology� SR - Boot [19/03/2019] [ 885048] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 411960] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft Windows� SR - Demand [19/03/2019] [ 566800] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft Windows� SS - Demand [00/00/0000] [ 0] Intel Bluetooth Service (ibtsiva) . (…) - C:\WINDOWS\System32\ibtsiva (.not file.) [Unsigned] =>.Intel Corporation SR - Demand [06/09/2019] [ 239392] Intel(R) Wireless Bluetooth (ibtusb) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\ibtusb.sys =>.Intel(R) Wireless Connectivity Solutions� SR - Demand [24/02/2021] [ 41144] Intel(R) Watchdog Timer Driver (ICCWDT) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\ICCWDT.sys {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation SR - Demand [28/04/2020] [ 7991352] (igfx) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\igdkmd64.sys =>.Intel Corporation� SR - Auto [28/04/2020] [ 372280] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel Corporation� SR - Demand [17/12/2019] [ 41848] Imf8HpRegFilter (Imf8HpRegFilter) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\ImfHpRegFilter.sys =>.IObit Information Technology� SR - System [30/07/2019] [ 42360] IMFCameraProtect (IMFCameraProtect) . (.IObit.) - C:\WINDOWS\system32\drivers\IMFCameraProtect.sys =>.IObit Information Technology� SR - Demand [29/07/2021] [ 40920] IMFDownProtect (IMFDownProtect) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\IMFDownProtect.sys =>.IObit CO., LTD� SR - Demand [13/08/2019] [ 40824] IMFEFSFileControl (IMFEFSFileControl) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\IMFEFSFileControl.sys =>.IObit Information Technology� SR - Demand [02/08/2022] [ 20008] IMFForceDelete123 (IMFForceDelete123) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\IMFForceDelete.sys =>.Microsoft� SR - Demand [17/12/2019] [ 45432] ImfHpFileFilter (ImfHpFileFilter) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\ImfHpFileFilter.sys =>.IObit Information Technology� SR - Auto [13/04/2020] [ 57840] ImfPfFilter (ImfPfFilter) . (.IObit.) - C:\WINDOWS\system32\drivers\imfpffilter.sys =>.IObit Information Technology� SR - Demand [21/10/2021] [ 53232] ImfRealScanner (ImfRealScanner) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\ImfRealScanner.sys =>.IObit CO., LTD� SR - Demand [17/12/2019] [ 42360] ImfRegistryFilter (ImfRegistryFilter) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\ImfRegistryFilter.sys =>.IObit Information Technology� SR - Demand [03/11/2021] [ 222168] imfsbDrv (imfsbDrv) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Sandbox\imfsbDrv.sys =>.IObit CO., LTD� SR - Auto [26/05/2022] [ 2485640] IMF Service (IMFservice) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe =>.IObit CO., LTD� SR - Demand [21/08/2019] [ 62984] Intel 28F320C3 Flash Update De (int0800) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\flashud.sys {30F5F803C25B9A6B4FB38E0B0464D9F3}. =>.Intel Corporation SR - Demand [04/07/2021] [ 480176] Intel(R) Display Audio (IntcDAud) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\IntcDAud.sys =>.Intel Corporation� SS - Demand [12/04/2021] [ 861976] Intel(R) Capability Lice (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_a93205b6238060e4\lib\SocketHeciServer.exe =>.Intel(R) Trust Services� SS - Demand [19/05/2015] [ 335872] Intel(R) Security Assist (Intel(R) Security Assist) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [Unsigned] =>.Intel Corporation SS - Demand [12/08/2016] [ 18152] Intel(R) WiDi Software Asset Manager (Intel(R) WiDi SAM) . (.Intel Corporation.) - C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe =>.Intel(R) Software Asset Manager� SR - Auto [19/05/2015] [ 7680] Intel(R) Security Assist Helper (isaHelperSvc) . (…) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [Unsigned] =>.Intel Corporation SR - Boot [19/03/2019] [ 148520] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft Windows� SS - Demand [17/06/2021] [ 628608] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group� SS - Demand [29/08/2022] [ 6054624] Kamo Service (KamoSvc) . (.Piriform Software Ltd.) - C:\Program Files (x86)\Kamo\KamoSvc.exe =>.Piriform Software Ltd� SR - Demand [19/04/2016] [ 53928] Logitech Gaming Virtual Bus Enumerator Driver (LGBusEnum) . (.Logitech Inc..) - C:\WINDOWS\System32\drivers\LGBusEnum.sys =>.Logitech Inc� SR - Demand [19/04/2016] [ 85160] Logitech Translation Layer Driver (LGS) (LGJoyXlCore) . (.Logitech Inc..) - C:\WINDOWS\System32\drivers\LGJoyXlCore.sys =>.Logitech Inc� SR - Demand [14/01/2021] [ 86648] Logicool SetPoint KMDF HID Fi (LHidFilt) . (.Logitech, Inc..) - C:\WINDOWS\System32\DRIVERS\LHidFilt.Sys =>.Logitech Inc� SR - Demand [14/01/2021] [ 69240] Logicool SetPoint KMDF Mouse (LMouFilt) . (.Logitech, Inc..) - C:\WINDOWS\System32\DRIVERS\LMouFilt.Sys =>.Logitech Inc� SR - Boot [19/03/2019] [ 109064] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 124448] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 128528] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 82960] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft Windows� SR - Auto [07/10/2022] [ 223176] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Microsoft� SR - Boot [20/08/2022] [ 21480] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft� SR - Auto [07/11/2022] [ 8879024] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.� SR - Demand [29/09/2022] [ 239544] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Microsoft� SR - Demand [16/04/2021] [ 86680] MBTun (mbtun) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\mbtun.sys =>.Malwarebytes Inc� SR - Auto [16/04/2021] [ 3276912] MBVpnService (MBVpnService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Privacy\MBVpnService.exe =>.Malwarebytes Inc� SS - Demand [16/04/2021] [ 2239304] MBVpnTunnelService (MBVpnTunnelService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Privacy\MBVpnTunnelService.exe =>.Malwarebytes Inc� SR - Boot [19/03/2019] [ 59920] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 75280] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 94736] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 576016] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft Windows� SR - Demand [15/10/2022] [ 319064] Intel(R) Management Engine Interfa (MEIx64) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_6467379f0b0f181f\x64\TeeDriverW10x64.sys {0ADE8114D7679B066F2DB2DFD2F67AC2}. =>.Intel Corporation SR - Demand [19/03/2019] [ 1150480] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft Windows� SS - Demand [06/11/2022] [ 232776] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation� SR - Boot [19/03/2019] [ 64016] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft Windows� SS - Demand [05/09/2018] [ 310880] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>.Intel Corporation� SR - Demand [19/03/2019] [ 153616] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft Windows� SR - System [02/08/2022] [ 116296] netfilter2 (netfilter2) . (.Piriform Software Ltd�.) - C:\WINDOWS\System32\drivers\netfilter2.sys =>.Piriform Software Ltd� SR - Demand [09/09/2019] [ 3521016] ___ Intel(R) Wireless Adapter Driver for Windows 8.1 - 64 B (NETwNb64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\Netwbw02.sys =>.Intel(R) Wireless Connectivity Solutions� SR - Boot [19/03/2019] [ 150544] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 166408] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft Windows� SR - Demand [12/05/2021] [ 53608] ObCallbackProcess (ObCallbackProcess) . (.IObit.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\ObCallbackProcess.sys =>.IObit CO., LTD� SS - Demand [22/09/2022] [ 2577752] Overwolf Updater Windows SCM (OverwolfUpdater) . (.Overwolf LTD.) - C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe =>.Overwolf Ltd� SR - Boot [19/03/2019] [ 58896] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 68624] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft Windows� SR - Demand [08/02/2011] [ 38096] Pangu effect driver (PGEffect) . (.TOSHIBA Corporation.) - C:\WINDOWS\System32\DRIVERS\pgeffect.sys =>.TOSHIBA CORPORATION� SR - Demand [05/05/2015] [ 14000] Generic IO & Memory Access (QIOMem) . (.TOSHIBA.) - C:\WINDOWS\System32\drivers\QIOMem.sys [Unsigned] =>.Toshiba SR - System [18/08/2020] [ 450240] RapportAegle64 (RapportAegle64) . (.IBM Corp..) - C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportAegle64.sys =>.IBM� SR - System [10/01/2021] [ 1460480] RapportCerberus_2004080 (RapportCerberus_2004080) . (.IBM Corp..) - c:\programdata\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_2004080.sys =>.IBM� SR - System [18/08/2020] [ 546056] RapportEI64 (RapportEI64) . (.IBM Corp..) - C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys =>.IBM� SR - Boot [18/08/2020] [ 398984] RapportHades64 (RapportHades64) . (.IBM Corp..) - C:\WINDOWS\System32\Drivers\RapportHades64.sys =>.IBM� SR - Boot [18/08/2020] [ 448904] RapportKE64 (RapportKE64) . (.IBM Corp..) - C:\WINDOWS\System32\Drivers\RapportKE64.sys =>.IBM� SR - Auto [18/08/2020] [ 3008896] Rapport Management Service (RapportMgmtService) . (.IBM Corp..) - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe =>.IBM� SR - System [18/08/2020] [ 564928] RapportPG64 (RapportPG64) . (.IBM Corp..) - C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys =>.IBM� SR - Auto [05/09/2018] [ 170592] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation� SS - Demand [10/10/2022] [14715824] RogueKiller RTP (rkrtservice) . (.ADLICE�.) - C:\Program Files\RogueKiller\RogueKillerSvc.exe =>.ADLICE� SR - Demand [26/02/2021] [ 347224] Realtek PCIE CardReader Driver - P2 (RSP2STOR) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RtsP2Stor.sys =>.Realtek Semiconductor Corp.� SR - Demand [18/08/2022] [ 1188672] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.� SR - Demand [20/05/2021] [ 1140728] Realtek 8168 NT Driver (RTL8168) . (.Realtek.) - C:\WINDOWS\System32\drivers\Rt630x64.sys =>.Realtek Semiconductor Corp.� SR - Auto [11/10/2022] [ 9332952] Avast SecureLine VPN (SecureLine) . (.AVAST Software.) - C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe =>.Avast Software s.r.o.� SR - Boot [19/03/2019] [ 45072] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 81936] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft Windows� SS - Demand [23/05/2016] [ 324224] Skype Updater (SkypeUpdate) . (.Skype Technologies.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl� SR - Boot [19/03/2019] [ 220176] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft Windows� SR - Demand [05/01/2021] [ 41816] (SmbDrvI) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys =>.Synaptics Incorporated� SS - Demand [19/05/2021] [ 2773224] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve� SR - Boot [19/03/2019] [ 31240] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft Windows� SR - Auto [26/10/2022] [ 3603528] Surfshark Service (Surfshark Service) . (.Surfshark.) - C:\Program Files (x86)\Surfshark\Surfshark.Service.exe {7C3DB25748949CFC8DD57D82}. =>.Surfshark SR - Demand [01/02/2022] [ 39648] Surfshark Split Tunnel Driver (SurfsharkSplitTunnelDriver) . (.Microsoft�.) - C:\Program Files (x86)\Surfshark\Resources\x64\SurfsharkSplitTunnelCalloutDriver.sys =>.Microsoft� SR - Demand [22/05/2019] [ 38728] TAP-Surfshark Windows Adapte (tapsurfshark) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tapsurfshark.sys {53DBDFD481F038984E7FADD03DC31D0E}. =>.The OpenVPN Project SR - Demand [20/04/2017] [ 35112] TeamViewer VPN Adapter (teamviewervpn) . (.TeamViewer GmbH.) - C:\WINDOWS\System32\drivers\teamviewervpn.sys =>.TeamViewer GmbH� SR - Demand [29/04/2019] [ 47816] dynabook Hotkey Driver (Thotkey) . (.Dynabook Inc..) - C:\WINDOWS\System32\drivers\Thotkey.sys =>.Dynabook Inc.� SS - Demand [08/12/2015] [ 53040] TMachInfo (TMachInfo) . (.TOSHIBA Corporation.) - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe =>.TOSHIBA CORPORATION� SS - Demand [06/07/2015] [ 331056] TOSHIBA eco Utility Service (TOSHIBA eco Utility Service) . (.Toshiba Corporation.) - C:\Program Files\TOSHIBA\Teco\TecoService.exe =>.TOSHIBA CORPORATION� SR - Demand [02/03/2022] [ 37544] Bluetooth ACPI (tosrfec) . (.Dynabook Inc..) - C:\WINDOWS\System32\drivers\tosrfec.sys =>.Dynabook Inc.� SS - Demand [24/06/2015] [ 326960] TOSRMService (TOSRMService) . (.TOSHIBA.) - C:\Program Files (x86)\TOSHIBA\TOSHIBA System Driver\RMService.exe =>.TOSHIBA CORPORATION� SR - System [02/03/2022] [ 25776] dynabook Service Control Driver (TosSrvCtlDrv) . (.Dynabook Inc..) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\TosSrvCtlDrv.sys =>.Dynabook Inc.� SR - Demand [07/11/2022] [ 41920] (TrueSight) . (.ADLICE (Julien ASCOET)�.) - C:\Windows\System32\drivers\truesight.sys =>.ADLICE (Julien ASCOET)� SR - Demand [01/10/2021] [ 615840] Trufos (Trufos) . (.Bitdefender.) - C:\WINDOWS\System32\DRIVERS\TRUFOS.sys =>.Microsoft� SR - Auto [02/03/2022] [44792376] TSDSettingService (TSDSettingService) . (.Dynabook Inc..) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\dynabookSystemService.exe =>.Dynabook Inc.� SR - Auto [02/03/2022] [ 313488] TSDTabletControlService (TSDTabletControlService) . (.Dynabook Inc..) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\TOSTABSYSSVC.exe =>.Dynabook Inc.� SR - Auto [02/03/2022] [ 463440] TSDWirelessLEDCtlService (TSDWirelessLEDCtlService) . (.Dynabook Inc..) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\RMService.exe =>.Dynabook Inc.� SR - Boot [30/04/2019] [ 46088] TOSHIBA ACPI-Based Value Added L (TVALZ) . (.Dynabook Inc..) - C:\WINDOWS\System32\drivers\TVALZ_O.SYS =>.Dynabook Inc.� SR - Boot [30/04/2019] [ 46088] dynabook ACPI-Based Value Added (TVALZ_O) . (.Dynabook Inc..) - C:\WINDOWS\System32\drivers\TVALZ_O.SYS =>.Dynabook Inc.� SR - Demand [04/05/2018] [ 54784] Apple Mobile USB Driver (USBAAPL64) . (.Apple, Inc..) - C:\WINDOWS\System32\Drivers\usbaapl64.sys [Unsigned] =>.Apple, Inc. SR - Boot [19/03/2019] [ 166928] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft Windows� SR - Boot [19/03/2019] [ 305672] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft Windows� SR - Demand [19/03/2019] [ 37928] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft Windows� —\ Task Planned Automatically (Register) (86) - 151s O38 - TASK: {0507E612-19F1-4CD4-9C54-99558F182EC6} [64Bits][\CCleaner Update] - (.Piriform - Piriform CCleaner emergency updater.) – C:\Program Files\CCleaner\CCUpdate.exe [684976] =>.Piriform O38 - TASK: {085D6BED-0862-4837-A1C8-2802642085E4} [64Bits][\DropboxUpdateTaskMachineUA] - (.Dropbox, Inc. - Dropbox Update.) – C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320] =>.Dropbox, Inc. O38 - TASK: {1BBCDD0C-B7B5-4FE1-90A0-D06E6DE353D5} [64Bits][\iTopVPN_Update_adm] - (.iTop Inc. - iTop VPN.) – C:\Program Files (x86)\iTop VPN\atud.exe [3169344] =>.iTop Inc. O38 - TASK: {20F54465-850A-4141-AA71-3A509F9BC14E} [64Bits][\dts_apo_service_task] - (.DTS Inc. - .) – C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_task.exe [14320] =>.DTS Inc. O38 - TASK: {30ACDD98-26F6-4B91-BD75-311BB2766125} [64Bits][\Overwolf Updater Task] - (.Overwolf LTD - OverwolfUpdater.) – C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2577752] =>.Overwolf LTD O38 - TASK: {329C0328-3B3A-4B00-A26C-C06864F69AF4} [64Bits][\Intel\Intel Telemetry 2] - (.Intel Corporation - LRIO.) – C:\Program Files\Intel\Telemetry 2.0\lrio.exe [1698000] =>.Intel Corporation O38 - TASK: {354ADC03-16E3-455C-BE94-F3DE7242D3F0} [64Bits][\CCleanerSkipUAC - Administrator] - (.Piriform Software Ltd - CCleaner.) – C:\Program Files\CCleaner\CCleaner.exe [32472400] =>.Piriform Software Ltd O38 - TASK: {483ECDB3-97DB-4116-B8DA-E2725AFD426E} [64Bits][\CCleanerCrashReporting] - (.Piriform Software - CCleaner Bug Report.) – C:\Program Files\CCleaner\CCleanerBugReport.exe [4669264] =>.Piriform Software O38 - TASK: {4C5D06C1-611E-4C19-941B-1BF59AD791C2} [64Bits][\IMF_SkipUAC_adm] - (.IObit - IObit Malware Fighter.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [6489016] =>.IObit O38 - TASK: {4CD81EB0-A2C0-4E3A-85B7-754DA390BD67} [64Bits][\Kamo\KamoStart] - (.Piriform - Kamo.) – C:\Program Files (x86)\Kamo\Kamo.exe [907488] =>.Piriform O38 - TASK: {4CFA467A-C4A3-45E6-8EBD-B63AAFB1271A} [64Bits][\Apple\AppleSoftwareUpdate] - (.Apple Inc. - Apple Software Update.) – C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320] =>.Apple Inc. O38 - TASK: {51688ACE-6988-4D23-A726-828084C3E504} [64Bits][\Mozilla\Firefox Background Update E7CF176E110C211B] - (.Mozilla Corporation - Firefox.) – C:\Program Files (x86)\Mozilla Firefox\firefox.exe [663880] =>.Mozilla Corporation O38 - TASK: {52357615-8081-4EB9-A48A-80476379D677} [64Bits][\Avast Secure Browser Heartbeat Task (Hourly)] - (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3012440] =>.AVAST Software O38 - TASK: {54BFAB24-2958-454A-8A6D-EB9B9C0BD198} [64Bits][\DropboxUpdateTaskMachineCore] - (.Dropbox, Inc. - Dropbox Update.) – C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320] =>.Dropbox, Inc. O38 - TASK: {5977D671-B028-4623-9210-49C68E5B5A22} [64Bits][\iTopVPN_Scheduler_adm] - (.iTop Inc. - iTop VPN.) – C:\Program Files (x86)\iTop VPN\iTopVPN.exe [6716480] =>.iTop Inc. O38 - TASK: {59872FB5-7AD2-4B9D-91A7-8E7C6899A4BE} [64Bits][\AvastUpdateTaskMachineCore] - (.AVAST Software - Avast Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200] =>.AVAST Software O38 - TASK: {5A2D7156-7AA0-465D-8D55-DFDA00306504} [64Bits][\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon] - (.Intel Corporation - IntelSoftwareAssetManagerService.exe.) – C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [18152] =>.Intel Corporation O38 - TASK: {5D296BC5-5FCE-4647-9E7E-6F5042F53F8E} [64Bits][\iolo System Checkup] - (.iolo technologies, LLC - System Checkup.) – C:\Program Files (x86)\Phoenix360\SCU\SCU.exe [9667888] =>.iolo technologies, LLC O38 - TASK: {62FEF9D3-5AE4-42B4-8C79-007573EFF2CE} [64Bits][\Meta\Messenger-SL-Helper-S-1-5-21-3366790378-2559649480-2858292162-500] - (.Facebook Inc. - Messenger.) – C:\Users\Administrator\AppData\Local\Programs\Messenger\MessengerHelper.exe [1874680] =>.Facebook Inc. O38 - TASK: {66A86EE5-B0A3-452E-A763-B5F9364E5494} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) – C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376] =>.Adobe Inc. O38 - TASK: {692BD232-ADC7-4F88-B5EB-5E98819EE112} [64Bits][\Avast SecureLine VPN Update] - (.AVAST Software - Avast VPN Update.) – C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1213144] =>.AVAST Software O38 - TASK: {6D82F4A0-62D4-4C57-9E7C-840CD7364614} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Google Installer.) – C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] =>.Google Inc. O38 - TASK: {7A81F6E6-B5A8-402A-ABD6-36934DD96346} [64Bits][\Avast Software\Avast SecureLine VPN Update] - (.Avast Software - Avast Installer.) – C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [6694224] =>.AVAST Software O38 - TASK: {8A37E0D9-DCAA-48C4-BC2B-C8B6A7390748} [64Bits][\Avast Software\Avast Cleanup BugReport] - (.AVAST Software - Avast Antivirus Bug Report.) – C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4738968] =>.AVAST Software O38 - TASK: {8F0F71F6-4AC8-4A0F-B4CF-DE5C9B13D79B} [64Bits][\iTop Screen Recorder SkipUAC (Administrator)] - (.iTop Inc. - iTop Screen Recorder.) – C:\Program Files\iTop Screen Recorder\iScrRec.exe [15146752] =>.iTop Inc. O38 - TASK: {90DC7D56-ED1C-48A5-B0EC-5BA988F6050D} [64Bits][\BTSchedulerTask] - (.Toshiba Corporation - TosBt_NotificationScheduler.) – C:\Program Files (x86)\TOSHIBA\Toshiba Bluetooth Device Profile Utility\TosBt_NotificationScheduler.exe [135504] =>.Toshiba Corporation O38 - TASK: {961AA991-88D7-489A-BBDF-C3CF2D9E5E43} [64Bits][\Avast Software\Overseer] - (.Avast Software - Avast Overseer.) – C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2250576] =>.AVAST Software O38 - TASK: {97D68BEF-8380-4BA9-8A1C-E632E87ED9DC} [64Bits][\Avast Software\Avast SecureLine VPN Bug Report] - (.AVAST Software - Avast Antivirus Bug Report.) – C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4690136] =>.AVAST Software O38 - TASK: {9D1E6164-D780-4ACC-89B6-617BDA0DDB46} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Google Installer.) – C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] =>.Google Inc. O38 - TASK: {A128F632-B1C8-4906-8F98-26D853ECEA2B} [64Bits][\UCheck] - (…) – C:\Program Files\UCheck\UCheck64.exe [30807984] O38 - TASK: {ADC23E19-1ACE-4855-8A93-07EA8E954100} [64Bits][\iTop Screen Recorder Update] - (.iTop Inc. - iTop Screen Recorder Updater.) – C:\Program Files\iTop Screen Recorder\AutoUpdate.exe [3179776] =>.iTop Inc. O38 - TASK: {B23E12DC-EB67-4411-BE20-12EA42FDEC77} [64Bits][\Avast Secure Browser Heartbeat Task (Logon)] - (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3012440] =>.AVAST Software O38 - TASK: {C2944113-7633-4966-9704-33C8226F8A77} [64Bits][\iTop Screen Recorder UAC] - (.iTop Inc. - iTop Screen Recorderr Ini.) – C:\Program Files\iTop Screen Recorder\iScrInit.exe [1017088] =>.iTop Inc. O38 - TASK: {C2D307A0-F24B-4D9E-BBFB-1851BECFE80A} [64Bits][\Mozilla\Firefox Background Update 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe [670536] =>.Mozilla Corporation O38 - TASK: {C5ECD685-3A22-42B5-A69E-E48CB640CBDF} [64Bits][\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec] - (.Intel Corporation - IntelSoftwareAssetManagerService.exe.) – C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [18152] =>.Intel Corporation O38 - TASK: {C818E3BA-2715-4740-97DE-504608D23EEC} [64Bits][\WRU] - (.LAPTOP-T9HG8SOV\Ollie - Intel(R) WiDi Receiver Updater.) – C:\Program Files\Intel Corporation\Intel WiDi\WRU.exe [93184] O38 - TASK: {D2FD58A3-7B7B-4495-A3D8-28B35B0DDDA1} [64Bits][\AvastUpdateTaskMachineUA] - (.AVAST Software - Avast Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200] =>.AVAST Software O38 - TASK: {D5D5EB8C-85DD-4ADD-9255-0CB17AF7FC96} [64Bits][\Avast Software\Avast Cleanup Update] - (.Avast Software - Avast Installer.) – C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [6803168] =>.AVAST Software O38 - TASK: {D63A1724-3618-4A19-910C-C172252FF82E} [64Bits][\BraveSoftwareUpdateTaskMachineCore] - (.BraveSoftware Inc. - BraveSoftware Update.) – C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320] =>.BraveSoftware Inc. O38 - TASK: {EA4B8801-2586-45EF-A28C-487853CCE769} [64Bits][\iTopVPN_SkipUAC_adm] - (.iTop Inc. - iTop VPN.) – C:\Program Files (x86)\iTop VPN\iTopVPN.exe [6716480] =>.iTop Inc. O38 - TASK: {F138055E-1B33-4F99-9069-338A8D882494} [64Bits][\Avast Emergency Update] - (.AVAST Software - Avast Emergency Update.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4936920] =>.AVAST Software O38 - TASK: {F775BB0D-26EA-4973-BEDC-700CF042175A} [64Bits][\BraveSoftwareUpdateTaskMachineUA] - (.BraveSoftware Inc. - BraveSoftware Update.) – C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [157320] =>.BraveSoftware Inc. O38 - TASK: {F77C5366-3C6C-48C8-A4A4-B5D572859BBC} [64Bits][\TOSHIBA\Service Station] - (.TOSHIBA Corporation - TOSHIBA Service Station.) – C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe [699272] =>.Toshiba Corporation C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform.) – C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) – C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [/ua ./ua] =>.Dropbox, Inc. C:\WINDOWS\System32\Tasks\iTopVPN_Update_adm - (.iTop Inc..) – C:\Program Files (x86)\iTop VPN\atud.exe [/auto] =>.iTop Inc. C:\WINDOWS\System32\Tasks\dts_apo_service_task - (.DTS Inc..) – C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_task.exe =>.DTS Inc. C:\WINDOWS\System32\Tasks\Overwolf Updater Task - (.Overwolf LTD.) – C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [/RunningFrom Schedule./RunningFrom] =>.Overwolf LTD C:\WINDOWS\System32\Tasks\Intel\Intel Telemetry 2 - (.Intel Corporation.) – C:\Program Files\Intel\Telemetry 2.0\lrio.exe =>.Intel Corporation C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - Administrator - (.Piriform Software Ltd.) – C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd C:\WINDOWS\System32\Tasks\CCleanerCrashReporting - (.Piriform Software.) – C:\Program Files\CCleaner\CCleanerBugReport.exe [1] =>.Piriform Software C:\WINDOWS\System32\Tasks\IMF_SkipUAC_adm - (.IObit.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [/SkipUac] =>.IObit C:\WINDOWS\System32\Tasks\Kamo\KamoStart - (.Piriform.) – C:\Program Files (x86)\Kamo\Kamo.exe [-minimizedBoot] =>.Piriform C:\WINDOWS\System32\Tasks\Apple\AppleSoftwareUpdate - (.Apple Inc..) – C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [-task] =>.Apple Inc. C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B - (.Mozilla Corporation.) – C:\Program Files (x86)\Mozilla Firefox\firefox.exe [–MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\WINDOWS\System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) - (.AVAST Software.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [–type=heartbeat --hourly.–type=heartbeat] =>.AVAST Software C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) – C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [/c] =>.Dropbox, Inc. C:\WINDOWS\System32\Tasks\iTopVPN_Scheduler_adm - (.iTop Inc..) – C:\Program Files (x86)\iTop VPN\iTopVPN.exe [/autostart] =>.iTop Inc. C:\WINDOWS\System32\Tasks\AvastUpdateTaskMachineCore - (.AVAST Software.) – C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [/c] =>.AVAST Software C:\WINDOWS\System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon - (.Intel Corporation.) – C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [–automatic] =>.Intel Corporation C:\WINDOWS\System32\Tasks\iolo System Checkup - (.iolo technologies, LLC.) – C:\Program Files (x86)\Phoenix360\SCU\SCU.exe [/toast] =>.iolo technologies, LLC C:\WINDOWS\System32\Tasks\Meta\Messenger-SL-Helper-S-1-5-21-3366790378-2559649480-2858292162-500 - (.Facebook Inc..) – C:\Users\Administrator\AppData\Local\Programs\Messenger\MessengerHelper.exe [–lassie] =>.Facebook Inc. C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) – C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe =>.Adobe Inc. C:\WINDOWS\System32\Tasks\Avast SecureLine VPN Update - (.AVAST Software.) – C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe =>.AVAST Software C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) – C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc. C:\WINDOWS\System32\Tasks\Avast Software\Avast SecureLine VPN Update - (.Avast Software.) – C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [/update:avast-vpn ./update:avast-vpn] =>.AVAST Software C:\WINDOWS\System32\Tasks\Avast Software\Avast Cleanup BugReport - (.AVAST Software.) – C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [1] =>.AVAST Software C:\WINDOWS\System32\Tasks\iTop Screen Recorder SkipUAC (Administrator) - (.iTop Inc..) – C:\Program Files\iTop Screen Recorder\iScrRec.exe [/skipuac] =>.iTop Inc. C:\WINDOWS\System32\Tasks\BTSchedulerTask - (.Toshiba Corporation.) – C:\Program Files (x86)\TOSHIBA\Toshiba Bluetooth Device Profile Utility\TosBt_NotificationScheduler.exe =>.Toshiba Corporation C:\WINDOWS\System32\Tasks\Avast Software\Overseer - (.Avast Software.) – C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [/from_scheduler:1] =>.AVAST Software C:\WINDOWS\System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report - (.AVAST Software.) – C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [1] =>.AVAST Software C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) – C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc. C:\WINDOWS\System32\Tasks\UCheck - (…) – C:\Program Files\UCheck\UCheck64.exe [-minimize] C:\WINDOWS\System32\Tasks\iTop Screen Recorder Update - (.iTop Inc..) – C:\Program Files\iTop Screen Recorder\AutoUpdate.exe [/auto] =>.iTop Inc. C:\WINDOWS\System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) - (.AVAST Software.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [–type=heartbeat --logon.–type=heartbeat] =>.AVAST Software C:\WINDOWS\System32\Tasks\iTop Screen Recorder UAC - (.iTop Inc..) – C:\Program Files\iTop Screen Recorder\iScrInit.exe [/UAC] =>.iTop Inc. C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB - (.Mozilla Corporation.) – C:\Program Files\Mozilla Firefox\firefox.exe [–MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\WINDOWS\System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec - (.Intel Corporation.) – C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [–automatic] =>.Intel Corporation C:\WINDOWS\System32\Tasks\WRU - (.LAPTOP-T9HG8SOV\Ollie.) – C:\Program Files\Intel Corporation\Intel WiDi\WRU.exe [-nosam -quiet.-nosam] C:\WINDOWS\System32\Tasks\AvastUpdateTaskMachineUA - (.AVAST Software.) – C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [/ua ./ua] =>.AVAST Software C:\WINDOWS\System32\Tasks\Avast Software\Avast Cleanup Update - (.Avast Software.) – C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [/update:avast-tu ./update:avast-tu] =>.AVAST Software C:\WINDOWS\System32\Tasks\BraveSoftwareUpdateTaskMachineCore - (.BraveSoftware Inc..) – C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [/c] =>.BraveSoftware Inc. C:\WINDOWS\System32\Tasks\iTopVPN_SkipUAC_adm - (.iTop Inc..) – C:\Program Files (x86)\iTop VPN\iTopVPN.exe [/SkipUac] =>.iTop Inc. C:\WINDOWS\System32\Tasks\Avast Emergency Update - (.AVAST Software.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe =>.AVAST Software C:\WINDOWS\System32\Tasks\BraveSoftwareUpdateTaskMachineUA - (.BraveSoftware Inc..) – C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [/ua ./ua] =>.BraveSoftware Inc. C:\WINDOWS\System32\Tasks\TOSHIBA\Service Station - (.TOSHIBA Corporation.) – C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe [/hide] =>.Toshiba Corporation —\ Auto loading programs from Registry and folders (32) - 46s O4 - HKLM..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) – C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM..\Run: [AvastUI.exe] . (.AVAST Software - Avast AvLaunch component.) – C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.Avast Software s.r.o.� O4 - HKLM..\Run: [TuneupUI.exe] . (.AVAST Software - Avast Cleanup UI.) – C:\Program Files\Avast Software\Cleanup\TuneupUI.exe {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - HKLM..\Run: [ETDCtrl] . (.ELAN Microelectronics Corp. - ETD Control Center.) – C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation� O4 - HKCU..\Run: [AvastBrowserAutoLaunch_8901C211194C0DFF277C9606C1448E31] . (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - HKCU..\Run: [Advanced SystemCare] . (. - .) – C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe (.Not File.) =>.SUP.Orphan O4 - HKCU..\Run: [MicrosoftEdgeAutoLaunch_98769996E24836F99EC8617644423B4C] . (…) – . [Unsigned] O4 - HKCU..\Run: [Malwarebytes Privacy] . (.Malwarebytes - Malwarebytes Privacy.) – C:\Program Files\Malwarebytes\Privacy\UI\MBPrivacy.exe =>.Malwarebytes Inc� O4 - HKCU..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) – C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED� O4 - HKCU..\Run: [Skype for Desktop] . (.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl� O4 - HKCU..\Run: [Surfshark] . (.Surfshark - Surfshark.) – C:\Program Files (x86)\Surfshark\Surfshark.exe {7C3DB25748949CFC8DD57D82}. =>.Surfshark O4 - HKCU..\RunOnce: [Application Restart #2] . (.Brave Software, Inc. - Brave Browser.) – C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - HKUS\S-1-5-19..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) – C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation� O4 - HKUS\S-1-5-20..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) – C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation� O4 - HKLM..\Wow6432Node\Run: [IObit Malware Fighter] . (.IObit - IObit Malware Fighter.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe {08DCE537FFE5AF8769F7EEC6D4D329B9}. =>.IObit O4 - HKLM..\Wow6432Node\Run: [Dropbox] . (.Dropbox, Inc. - Dropbox.) – C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc� O4 - HKUS.DEFAULT..\StartupApproved\Run: [Adobe Reader Synchronizer] . (. - .) – 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS.DEFAULT..\StartupApproved\Run: [GoogleDriveFS] . (. - .) – 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-18..\StartupApproved\Run: [Adobe Reader Synchronizer] . (. - .) – 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-18..\StartupApproved\Run: [GoogleDriveFS] . (. - .) – 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-19..\StartupApproved\Run: [OneDriveSetup] . (. - .) – 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-19..\StartupApproved\Run: [GoogleDriveFS] . (. - .) – 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-20..\StartupApproved\Run: [OneDriveSetup] . (. - .) – 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-20..\StartupApproved\Run: [GoogleDriveFS] . (. - .) – 0x020000000000000000000000 =>.SUP.Orphan O4 - HKUS\S-1-5-21-3366790378-2559649480-2858292162-500..\Run: [AvastBrowserAutoLaunch_8901C211194C0DFF277C9606C1448E31] . (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - HKUS\S-1-5-21-3366790378-2559649480-2858292162-500..\Run: [Advanced SystemCare] . (. - .) – C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-21-3366790378-2559649480-2858292162-500..\Run: [MicrosoftEdgeAutoLaunch_98769996E24836F99EC8617644423B4C] . (…) – . [Unsigned] O4 - HKUS\S-1-5-21-3366790378-2559649480-2858292162-500..\Run: [Malwarebytes Privacy] . (.Malwarebytes - Malwarebytes Privacy.) – C:\Program Files\Malwarebytes\Privacy\UI\MBPrivacy.exe =>.Malwarebytes Inc� O4 - HKUS\S-1-5-21-3366790378-2559649480-2858292162-500..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) – C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED� O4 - HKUS\S-1-5-21-3366790378-2559649480-2858292162-500..\Run: [Skype for Desktop] . (.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl� O4 - HKUS\S-1-5-21-3366790378-2559649480-2858292162-500..\Run: [Surfshark] . (.Surfshark - Surfshark.) – C:\Program Files (x86)\Surfshark\Surfshark.exe {7C3DB25748949CFC8DD57D82}. =>.Surfshark O4 - HKUS\S-1-5-21-3366790378-2559649480-2858292162-500..\RunOnce: [Application Restart #2] . (.Brave Software, Inc. - Brave Browser.) – C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� —\ Process running (104) - 148s [MD5.51D8042BCCF660F65DEC48B7F72B5C4B] - (.Intel Corporation - igfxCUIService Module.) – C:\Windows\System32\igfxCUIService.exe [372280] [PID.2084] [Unsigned] =>.Intel Corporation [MD5.62EB58FF4053ED8B89B4BA7A437BCF5B] - (.Wacom Technology, Corp. - Tablet Service.) – C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [652240] [PID.3760] =>.Wacom Technology Corporation� [MD5.19E0B5B6202CE85796EA6C0EBB7334DF] - (.Wacom Technology - Wacom Load Agent.) – C:\Program Files\Tablet\Wacom\WacomHost.exe [39808] [PID.3964] =>.Wacom Technology Corp.� [MD5.3F45B35D342E40ED592B5D1B1F0EF58F] - (.AVAST Software - Avast Emergency Update.) – C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4936920] [PID.3104] =>.Avast Software s.r.o.� [MD5.C728D2A5E7C6032BFCF723102A99D2AC] - (.AVAST Software - Avast Antivirus.) – C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [592600] [PID.3900] =>.Avast Software s.r.o.� [MD5.B9A3B958792C822E26A99378034804E5] - (.iTop Inc. - iTop VPN.) – C:\Program Files (x86)\iTop VPN\iTopVPN.exe [6716480] [PID.4408] {0148CA714AC06F07D2FD2C38F6612063}. =>.iTop Inc. [MD5.873175240679A92801C2AA1BA505ADD6] - (.AVAST Software - Avast Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200] [PID.3492] =>.Avast Software s.r.o.� [MD5.6CBA71FDBC8D1CED0204B86CF51A5BE8] - (…) – C:\Program Files\UCheck\UCheck64.exe [30807984] [PID.4676] =>.ADLICE� [MD5.B48528BEB38432A2242DC9012BC608C4] - (.Wacom Technology, Corp. - Tablet user module for professional driver.) – C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe [1552848] [PID.4808] =>.Wacom Technology Corporation� [MD5.19E0B5B6202CE85796EA6C0EBB7334DF] - (.Wacom Technology - Wacom Load Agent.) – C:\Program Files\Tablet\Wacom\WacomHost.exe [39808] [PID.2736] =>.Wacom Technology Corp.� [MD5.F2C52F64AF94EE1F0EBA08F0ED4581EF] - (.Wacom Technology, Corp. - Touch User Mode Driver.) – C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe [4317648] [PID.5252] =>.Wacom Technology Corporation� [MD5.4F48A4AA2875DBAF0C2067788F00BE2E] - (.Wacom Technology, Corp. - Tablet Service for professional driver.) – C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe [11441616] [PID.5296] =>.Wacom Technology Corporation� [MD5.7C217E0797442804A0D1A6B08671C285] - (.ELAN Microelectronics Corp. - Elan Service.) – C:\Program Files\Elantech\ETDService.exe [144608] [PID.6116] =>.ELAN Microelectronics Corporation� [MD5.76679772213DED248BB53654F0382D92] - (.Dropbox, Inc. - Dropbox Service.) – C:\WINDOWS\system32\DbxSvc.exe [46824] [PID.6124] [Unsigned] =>.Dropbox, Inc. [MD5.7F3EA3C1A26B5761FB6481D621B22EFE] - (.IObit - IObit Malware Fighter Service.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [2485640] [PID.6132] =>.IObit CO., LTD� [MD5.5FCABDE89AC62A8818C803646FCEE23E] - (.Conexant Systems Inc. - Conexant Audio Message Service.) – C:\WINDOWS\system32\CxAudMsg64.exe [225496] [PID.3924] [Unsigned] =>.Conexant Systems Inc. [MD5.0402ED31C7EF3D5A5BAA110AC3A141D8] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) – C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [170592] [PID.4068] =>.Intel Corporation� [MD5.9504A3BD80B2ABB1EE5ECB80F774A423] - (.Malwarebytes - Malwarebytes VPN Service.) – C:\Program Files\Malwarebytes\Privacy\MBVpnService.exe [3276912] [PID.2568] =>.Malwarebytes Inc� [MD5.F70A099BC16564F178EDA982377911D5] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) – C:\Program Files\Intel\WiFi\bin\EvtEng.exe [670816] [PID.4420] =>.Intel Corporation� [MD5.0B6178B0FEBD39F9ABF211B13DCBA2D4] - (.Adobe Inc. - Adobe Acrobat Update Service.) – C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040] [PID.4312] =>.Adobe Inc.� [MD5.4F48A4AA2875DBAF0C2067788F00BE2E] - (.Wacom Technology, Corp. - Tablet Service for professional driver.) – C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe [11441616] [PID.5516] =>.Wacom Technology Corporation� [MD5.6F405572FA098359838E7AA71ED6B107] - (.Intel Corporation - Intel(R) Management Engine WMI Provider Reg.) – C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe [538736] [PID.2552] {0ADE8114D7679B066F2DB2DFD2F67AC2}. =>.Intel Corporation [MD5.E2FB4D0EF99CF66ECE1DC56DD6AF2B92] - (.AVAST Software - Avast AntiTrack Service.) – C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\AntiTrackSvc.exe [1747712] [PID.1484] =>.Avast Software s.r.o.� [MD5.071773975C3EB8A7868D15E1B4E0CD26] - (.ELAN Microelectronics Corp. - ETD Control Center.) – C:\Program Files\Elantech\ETDCtrl.exe [3873000] [PID.4164] =>.ELAN Microelectronics Corporation� [MD5.25073D73ED1C3F8C130266069910F6CF] - (.AVAST Software - Avast firewall service.) – C:\Program Files\AVAST Software\Avast\afwServ.exe [2018008] [PID.5716] =>.Avast Software s.r.o.� [MD5.4F2D5284CAB84D6CA713E8278F83FF09] - (.Intel Corporation - igfxHK Module.) – C:\Windows\System32\igfxHK.exe [266824] [PID.6576] [Unsigned] =>.Intel Corporation [MD5.E6D8466A424F17893E675EE34BCA8C93] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) – C:\Program Files\Elantech\ETDCtrlHelper.exe [2580200] [PID.7512] =>.ELAN Microelectronics Corporation� [MD5.8991CE859523DDDE8E6C5DBDBAC8963C] - (.iTop Inc. - iTop VPN Mini.) – C:\Program Files (x86)\iTop VPN\iTopVPNMini.exe [3416128] [PID.8980] {0148CA714AC06F07D2FD2C38F6612063}. =>.iTop Inc. [MD5.DF0D035E8A384417AD4E987C05EA16A8] - (.AVAST Software - Avast Browser Crash Handler.) – C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler.exe [476712] [PID.6312] =>.Avast Software s.r.o.� [MD5.8AD76E0B347BB690697535CE95B1C656] - (.Dropbox, Inc. - Dropbox Update.) – C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320] [PID.7644] =>.Dropbox, Inc� [MD5.381C22092074255A291F4C9946A5C28F] - (.Google LLC - Google Crash Handler.) – C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe [309720] [PID.9100] =>.Google LLC� [MD5.5417B6EBD114899A1F38206175F6CD6A] - (.AVAST Software - Avast Antivirus engine server.) – C:\Program Files\AVAST Software\Avast\aswEngSrv.exe [631512] [PID.6084] =>.Avast Software s.r.o.� [MD5.F64DEA308BB3357E4FD697F5AEBF2DA7] - (.AVAST Software - Avast Browser Crash Handler.) – C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler64.exe [618880] [PID.1880] =>.Avast Software s.r.o.� [MD5.F1DE10A8B9909A4AF635112C8866D534] - (.Google LLC - Google Crash Handler.) – C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe [408536] [PID.9848] =>.Google LLC� [MD5.315326776336931D8988AE536236A4BE] - (.AVAST Software - Avast Cleanup UI.) – C:\Program Files\AVAST Software\Cleanup\TuneupUI.exe [4126616] [PID.10152] {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software [MD5.1E54D1BEE68DC8BF8F36DE053FF29A36] - (.Malwarebytes - Malwarebytes Privacy.) – C:\Program Files\Malwarebytes\Privacy\UI\MBPrivacy.exe [354984] [PID.8240] =>.Malwarebytes Inc� [MD5.CD57F4CFC66CD387FA17AC7899E75DC9] - (.Piriform Software Ltd - CCleaner.) – C:\Program Files\CCleaner\CCleaner64.exe [38789456] [PID.9580] =>.PIRIFORM SOFTWARE LIMITED� [MD5.8F9954E8E7873FB08282F6A12BC361B5] - (.AVAST Software - Avast Antivirus.) – C:\Program Files\AVAST Software\Avast\AvastUI.exe [18565848] [PID.10084] =>.Avast Software s.r.o.� [MD5.E2188AC70711114376EFE2222A7C76E1] - (.Avast Software - Avast Installer.) – C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [6694224] [PID.7228] =>.Avast Software s.r.o.� [MD5.CFA2BC11257FEBE1AF2817D1AD330E32] - (.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [123150752] [PID.9380] =>.Skype Software Sarl� [MD5.710A8998AFB3A2DC8F5850229E690DF6] - (.Google, Inc. - Google Drive.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe [52475672] [PID.2760] =>.Google LLC� [MD5.B201CB7A2255A3CFEF3BD07C0BAAE497] - (.Surfshark - Surfshark.) – C:\Program Files (x86)\Surfshark\Surfshark.exe [11199048] [PID.5548] {7C3DB25748949CFC8DD57D82}. =>.Surfshark [MD5.0546C4B40B9FB28990E8D3F850D1B913] - (.Spotify Ltd - Spotify.) – C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe [20068728] [PID.4428] {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd [MD5.327904C53DAF0E1B5AAF0E0D82288142] - (.IObit - IObit Malware Fighter.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [6489016] [PID.10536] {08DCE537FFE5AF8769F7EEC6D4D329B9}. =>.IObit [MD5.EF073281A2E77FBD3F7BBB08B59317D4] - (.Dropbox, Inc. - Dropbox.) – C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11209952] [PID.10928] =>.Dropbox, Inc� [MD5.18633EB0BBC0C47166A95067B3313538] - (.AVAST Software - Avast Antivirus Bug Report.) – C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4690136] [PID.10108] =>.Avast Software s.r.o.� [MD5.EF073281A2E77FBD3F7BBB08B59317D4] - (.Dropbox, Inc. - Dropbox.) – C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11209952] [PID.9356] =>.Dropbox, Inc� [MD5.EF073281A2E77FBD3F7BBB08B59317D4] - (.Dropbox, Inc. - Dropbox.) – C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11209952] [PID.9372] =>.Dropbox, Inc� [MD5.EF073281A2E77FBD3F7BBB08B59317D4] - (.Dropbox, Inc. - Dropbox.) – C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11209952] [PID.7668] =>.Dropbox, Inc� [MD5.FB555DA7214054EE69E8401B72891B9D] - (.IObit - IObit Malware Fighter Tips.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFTips.exe [1573816] [PID.11544] {08DCE537FFE5AF8769F7EEC6D4D329B9}. =>.IObit [MD5.98F7BB5ACC30CB66F2597083C7D2220D] - (…) – C:\Program Files\Google\Drive File Stream\66.0.3.0\crashpad_handler.exe [999192] [PID.11164] =>.Google LLC� [MD5.710A8998AFB3A2DC8F5850229E690DF6] - (.Google, Inc. - Google Drive.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe [52475672] [PID.12236] =>.Google LLC� [MD5.315326776336931D8988AE536236A4BE] - (.AVAST Software - Avast Cleanup UI.) – C:\Program Files\AVAST Software\Cleanup\TuneupUI.exe [4126616] [PID.11268] {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software [MD5.CFA2BC11257FEBE1AF2817D1AD330E32] - (.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [123150752] [PID.12104] =>.Skype Software Sarl� [MD5.100CAC525ED0FBA078AEF9741696D460] - (.Malwarebytes - Malwarebytes Tray Application.) – C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [7493104] [PID.12724] =>.Malwarebytes Inc.� [MD5.0546C4B40B9FB28990E8D3F850D1B913] - (.Spotify Ltd - Spotify.) – C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe [20068728] [PID.2572] {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd [MD5.CCA7F82C1944444EE1B6DA971D1ED26E] - (.IObit - IObit Malware Fighter Scan Engine.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFCore.exe [2614152] [PID.9548] =>.IObit CO., LTD� [MD5.315326776336931D8988AE536236A4BE] - (.AVAST Software - Avast Cleanup UI.) – C:\Program Files\AVAST Software\Cleanup\TuneupUI.exe [4126616] [PID.14240] {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software [MD5.CFA2BC11257FEBE1AF2817D1AD330E32] - (.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [123150752] [PID.10996] =>.Skype Software Sarl� [MD5.710A8998AFB3A2DC8F5850229E690DF6] - (.Google, Inc. - Google Drive.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe [52475672] [PID.8528] =>.Google LLC� [MD5.CFA2BC11257FEBE1AF2817D1AD330E32] - (.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [123150752] [PID.10580] =>.Skype Software Sarl� [MD5.0546C4B40B9FB28990E8D3F850D1B913] - (.Spotify Ltd - Spotify.) – C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe [20068728] [PID.10800] {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd [MD5.CFA2BC11257FEBE1AF2817D1AD330E32] - (.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [123150752] [PID.12984] =>.Skype Software Sarl� [MD5.98F7BB5ACC30CB66F2597083C7D2220D] - (…) – C:\Program Files\Google\Drive File Stream\66.0.3.0\crashpad_handler.exe [999192] [PID.7728] =>.Google LLC� [MD5.7C6DFA57F89488C74F7D4732B2DBD280] - (…) – C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [947512] [PID.9084] =>.Microsoft� [MD5.710A8998AFB3A2DC8F5850229E690DF6] - (.Google, Inc. - Google Drive.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe [52475672] [PID.8160] =>.Google LLC� [MD5.710A8998AFB3A2DC8F5850229E690DF6] - (.Google, Inc. - Google Drive.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe [52475672] [PID.9700] =>.Google LLC� [MD5.710A8998AFB3A2DC8F5850229E690DF6] - (.Google, Inc. - Google Drive.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe [52475672] [PID.14620] =>.Google LLC� [MD5.710A8998AFB3A2DC8F5850229E690DF6] - (.Google, Inc. - Google Drive.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe [52475672] [PID.14616] =>.Google LLC� [MD5.0546C4B40B9FB28990E8D3F850D1B913] - (.Spotify Ltd - Spotify.) – C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe [20068728] [PID.9116] {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd [MD5.0546C4B40B9FB28990E8D3F850D1B913] - (.Spotify Ltd - Spotify.) – C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe [20068728] [PID.14968] {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd [MD5.0546C4B40B9FB28990E8D3F850D1B913] - (.Spotify Ltd - Spotify.) – C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe [20068728] [PID.14112] {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd [MD5.CFA2BC11257FEBE1AF2817D1AD330E32] - (.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [123150752] [PID.6484] =>.Skype Software Sarl� [MD5.55DD91840BDCD5263C98CE56F50288AA] - (.Nicolas Coolman - ZHPDiag.) – C:\Users\Administrator\AppData\Roaming\ZHP\ZHPDiag3.exe [3311304] [PID.7232] [Unsigned] =>.Nicolas Coolman [MD5.8F9954E8E7873FB08282F6A12BC361B5] - (.AVAST Software - Avast Antivirus.) – C:\Program Files\AVAST Software\Avast\AvastUI.exe [18565848] [PID.12920] =>.Avast Software s.r.o.� [MD5.8F9954E8E7873FB08282F6A12BC361B5] - (.AVAST Software - Avast Antivirus.) – C:\Program Files\AVAST Software\Avast\AvastUI.exe [18565848] [PID.11352] =>.Avast Software s.r.o.� [MD5.40ADA0C8A4BF4F961F0C259940D4F4B7] - (.AVAST Software - Avast Antivirus Installer.) – C:\Program Files\AVAST Software\Avast\setup\instup.exe [3569928] [PID.12404] =>.Avast Software s.r.o.� [MD5.40ADA0C8A4BF4F961F0C259940D4F4B7] - (.AVAST Software - Avast Antivirus Installer.) – C:\Program Files\AVAST Software\Avast\setup\instup.exe [3569928] [PID.15600] =>.Avast Software s.r.o.� [MD5.DDBC912064ED5AA88EB99AF7635E6144] - (.IBM Corp. - RapportMgmtService.) – C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [3008896] [PID.15392] =>.IBM� [MD5.8F9954E8E7873FB08282F6A12BC361B5] - (.AVAST Software - Avast Antivirus.) – C:\Program Files\AVAST Software\Avast\AvastUI.exe [18565848] [PID.12856] =>.Avast Software s.r.o.� [MD5.BF820DEC52EE883CA28AE26F54464CF6] - (.Malwarebytes - Malwarebytes Native Message Service.) – C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe [3479384] [PID.16412] =>.Malwarebytes Inc.� [MD5.D4AC67265D56EAF2CA11628DBCADE27A] - (.IBM Corp. - RapportInjService_x64.) – c:\program files (x86)\Trusteer\Rapport\bin\x64\rapportinjservice_x64.exe [579456] [PID.17180] =>.IBM� [MD5.EF073281A2E77FBD3F7BBB08B59317D4] - (.Dropbox, Inc. - Dropbox.) – C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11209952] [PID.5576] =>.Dropbox, Inc� [MD5.EF073281A2E77FBD3F7BBB08B59317D4] - (.Dropbox, Inc. - Dropbox.) – C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11209952] [PID.17980] =>.Dropbox, Inc� [MD5.0546C4B40B9FB28990E8D3F850D1B913] - (.Spotify Ltd - Spotify.) – C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe [20068728] [PID.18892] {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd [MD5.CD57F4CFC66CD387FA17AC7899E75DC9] - (.Piriform Software Ltd - CCleaner.) – C:\Program Files\CCleaner\CCleaner64.exe [38789456] [PID.9012] =>.PIRIFORM SOFTWARE LIMITED� [MD5.EF073281A2E77FBD3F7BBB08B59317D4] - (.Dropbox, Inc. - Dropbox.) – C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11209952] [PID.9240] =>.Dropbox, Inc� [MD5.EF073281A2E77FBD3F7BBB08B59317D4] - (.Dropbox, Inc. - Dropbox.) – C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11209952] [PID.11172] =>.Dropbox, Inc� [MD5.064786BEF26827D3259DC5F33363CB42] - (.Avast Software - Avast Installer.) – C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [6803168] [PID.9616] =>.Avast Software s.r.o.� [MD5.EB2D0D4967E6142313BF38138B08AD1F] - (.Adobe Systems Incorporated - Adobe Acrobat.) – C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe [4379088] [PID.724] =>.Adobe Inc.� [MD5.75B11BBA349471537FB7A6924A62E2EF] - (.IBM Corp. - RapportService.) – C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe [3850112] [PID.15228] =>.IBM� [MD5.D4AC67265D56EAF2CA11628DBCADE27A] - (.IBM Corp. - RapportInjService_x64.) – c:\program files (x86)\Trusteer\Rapport\bin\x64\rapportinjservice_x64.exe [579456] [PID.18272] =>.IBM� [MD5.BA976E541D79E4014A26430D2B8F5ADA] - (.iolo technologies, LLC - System Checkup.) – C:\Program Files (x86)\Phoenix360\SCU\SCU.exe [9667888] [PID.15420] =>.iolo technologies, LLC� [MD5.50052C6D6BB91BDD6F18797618D53EB2] - (.IBM Corp. - RapportHelper.) – C:\Program Files (x86)\Trusteer\Rapport\bin\RapportHelper.exe [758144] [PID.16508] =>.IBM� [MD5.3C8B70A3B395BC63E931E8D63CC8729E] - (.Adobe Systems Incorporated - Adobe AcroCEF.) – C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe [6921680] [PID.18664] =>.Adobe Inc.� [MD5.7B170596E9B9E2D3169670D54607D533] - (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3012440] [PID.19344] {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software [MD5.7B170596E9B9E2D3169670D54607D533] - (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3012440] [PID.11804] {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software [MD5.7B170596E9B9E2D3169670D54607D533] - (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3012440] [PID.5672] {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software [MD5.2609B96753A6816A8AE1E40B9DEA39CD] - (.AVAST Software - Avast Antivirus Bug Report.) – C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4738968] [PID.14908] {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software [MD5.BB3E3E472BF67D391413979F937D3294] - (.Mozilla Corporation - Firefox.) – C:\Program Files (x86)\Mozilla Firefox\firefox.exe [663880] [PID.15560] =>.Mozilla Corporation� [MD5.9B730E97C837AF3186A76C2B1DC0433F] - (.AVAST Software - Avast Native Messaging Proxy.) – C:\Program Files\Avast Software\SecureLine VPN\VpnNM.exe [2133208] [PID.20108] =>.Avast Software s.r.o.� [MD5.7B170596E9B9E2D3169670D54607D533] - (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3012440] [PID.12804] {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software [MD5.9B730E97C837AF3186A76C2B1DC0433F] - (.AVAST Software - Avast Native Messaging Proxy.) – C:\Program Files\Avast Software\SecureLine VPN\VpnNM.exe [2133208] [PID.17404] =>.Avast Software s.r.o.� [MD5.EB2D0D4967E6142313BF38138B08AD1F] - (.Adobe Systems Incorporated - Adobe Acrobat.) – C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe [4379088] [PID.19416] =>.Adobe Inc.� —\ Google Chrome, Start,Search,Extensions (51) - 8s G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [aieoplapobidheellikiicjfpamacpfd] Google Translate G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [bbjllphbppobebmjpjcijfbakobcheof] Trusteer Rapport =>.Rapportive G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security & Privacy =>.Avast Software s.r.o G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [klekeajafkkpokaofllcadenjdckhinm] =>.McAfee Inc. G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [ppdidpcihajhihmghhhkfnpklgdehold] Avast AntiTrack G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [ppdidpcihajhihmghhhkfnpklgdehold] G2 - GCE: Preference [Administrator][User Data\Default\Sync Extension Settings] [aieoplapobidheellikiicjfpamacpfd] G0 - GCSP: Secure Preferences [User Data\Default][HomePage] http://www.google.com =>.Google Inc. G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [akimgimeeoiognljlfchpbkpfbmeapkh] G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [amdeidgbmcliegnpcbbkhlflkbdpomhk] http://translator.ehubsoft.net G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [cmedhionkhpnakcndndgjdbohmhepckk] Adblock for Youtube™ =>.Better Adblock {Adblock pour Youtube} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [elicpjhcidhpjomhibiffojpinpmmpil] Video Downloader professional =>.startpage24.com G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [emaphcfdeeaibckimbldjmkkipfknajl] Video Downloader =>.Video Downloader G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [emhginjpijfggbofeediiojmdlmlkoik] Avast Passwords =>.Avast Software s.r.o G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [fheoggkfdfchfphceeifdbepaooicaho] =>.McAfee {SECURE Safe Browsing} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [gomekmidlodglbbmalcneegieacbdmki] Avast Online Security =>.Avast Software s.r.o G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [gpdjojdkbbmdfjfahjcgigfpmkopogic] =>.pinterest.com {Save Button} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [iajjemfjhlenbakbglolaalkdpmbiama] Googletana - Transfer Bing searches to Google G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [jakmkngjpkpcjkekgoaenfhanfkfglhp] Google windows 10 integration (Cortana) G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [jlmilmpimaepjkihnncinbaooibgelhm] http://app.flowkey.com G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [jpaglkhbmbmhlnpnehlffkgaaapoicnk] Video Downloader professional =>.startpage24.com G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [kaicbfmipfpfpjmlbpejaoaflfdnabnc] Chrometana =>.Théo G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [lkobpplcnbicdniipmndjknbnlggmjdk] Translate For All G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [lmjegmlicamnimmfhcmpkclmigmmcbeh] =>.Google Inc. G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [mhmphnocemakkjdampibehejoaleebpo] Tactics Technology LLC G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [nbfjhlpinelhnncgfpgfekddidnbnaab] My Cloud Player G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. G2 - GCE: Preference [Administrator][User Data\Default\Extensions] [pmhfbelbjofadmfjpggaemekecfgpalg] G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [akimgimeeoiognljlfchpbkpfbmeapkh] G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [cmedhionkhpnakcndndgjdbohmhepckk] =>.Better Adblock {Adblock pour Youtube} G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [elicpjhcidhpjomhibiffojpinpmmpil] =>.Video Downloader G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [emhginjpijfggbofeediiojmdlmlkoik] =>.Avast Software s.r.o G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [fheoggkfdfchfphceeifdbepaooicaho] =>.McAfee {SECURE Safe Browsing} G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [gomekmidlodglbbmalcneegieacbdmki] =>.Avast Software s.r.o G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [gpdjojdkbbmdfjfahjcgigfpmkopogic] =>.pinterest.com {Save Button} G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [klekeajafkkpokaofllcadenjdckhinm] =>.McAfee Inc. G2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [mhmphnocemakkjdampibehejoaleebpo] G2 - GCE: Preference [Administrator][User Data\Default\Sync Extension Settings] [akimgimeeoiognljlfchpbkpfbmeapkh] G2 - GCE: Preference [Administrator][User Data\Default\Sync Extension Settings] [kaicbfmipfpfpjmlbpejaoaflfdnabnc] G2 - GCE: Preference [Administrator][User Data\Default\Sync Extension Settings] [libedajeiljdoodmokbppgapcfbignci] G2 - GCE: Preference [Administrator][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router} —\ Mozilla Firefox,Plugins,Start,Search,Extensions (37) - 20s P2 - EXT FILE: (.IBM Security Rapport - IBM Security Rapport.) – C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\extensions\rapportext@trusteer.com.xpi [Unsigned] P2 - EXT FILE: (.IBM Security Rapport - IBM Security Rapport.) – C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\extensions\rapportext@trusteer.com.xpi [Unsigned] P2 - EXT FILE: (.Purple and Gold.) – C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\extensions{84de84a5-1a8c-40fe-b138-1aa8a529ca46}.xpi [Unsigned] P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files (x86)\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files (x86)\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files (x86)\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) – C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\bookmarkbackups =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\crashes =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\datareporting =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\extensions =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\minidumps =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\saved-telemetry-pings =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\security_state =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\sessionstore-backups =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\shader-cache =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\cui9d65l.default-release-1\storage =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\j31l2p9t.default\extensions =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\bookmarkbackups =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\browser-extension-data =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\crashes =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\datareporting =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\extensions =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\features =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\gmp-widevinecdm =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\minidumps =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\saved-telemetry-pings =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\security_state =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\sessionstore-backups =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\settings =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\shader-cache =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\storage =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\weave =>Mozilla Corporation C:\Users\Administrator\AppData\Roaming\Mozilla\Firefox\Profiles\tmvfc11r.default-release-1637339685459\browser-extension-data\amazondotcom@search.mozilla.org —\ Internet Explorer Extensions, Start, Search (17) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://toshiba15.msn.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://toshiba.eu/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Browser.) (11.00.18362.1411 (WinBuild.160101.0800)) – C:\Windows\System32\ieframe.dll =>.Microsoft Corporation —\ INTERNET EXPLORER, trusted site and sensitive site (1) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) —\ Microsoft Edge,Plugins,Start,Search,Extensions (10) - 2s E2 - GCE: Preference [Administrator][User Data\Default\Extensions] [bkgoflemacdadndiohhdnphcmdhacabg] E2 - GCE: Preference [Administrator][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes E2 - GCE: Preference [Administrator][User Data\Default\Extensions] [kajikgogckeajjplomldcempamhidmcc] Trusteer Rapport =>.Rapportive E2 - GCE: Preference [Administrator][User Data\Default\Extensions] [kccjhjbenifblgckikkelnlgccjgkgoa] E2 - GCE: Preference [Administrator][User Data\Default\Extensions] [pjcecmgoddiomfipfobbkfnjnnlnhldj] https://pinterestvideodownloader.online/ E2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [bkgoflemacdadndiohhdnphcmdhacabg] E2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes E2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation E2 - GCE: Preference [Administrator][User Data\Default\Local Extension Settings] [kccjhjbenifblgckikkelnlgccjgkgoa] E2 - GCE: Preference [Administrator][User Data\Default\Sync Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes —\ Internet Explorer, Proxy Management (3) - 1s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies =>.Microsoft —\ Line Analysis, IniFiles, Auto loading programs (3) - 1s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= —\ Hosts file redirection (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (1) —\ Browser Helper Object (BHO) (2) - 3s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) – C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.35\BHO\ie_to_edge_bho_64.dll =>.Microsoft� O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) – C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll =>.Microsoft� —\ Global shortcuts Startup (178) - 259s O4 - GS\Desktop [Administrator]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\Desktop [Administrator]: CCleaner (2).lnk . (.Piriform Software Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe [Unsigned] =>.Piriform Software Ltd O4 - GS\Desktop [Administrator]: Documents.lnk . (…) C:\Users\Administrator\Documents [Unsigned] O4 - GS\Desktop [Administrator]: DragonNest.lnk . (.EYEDENTITY GAMES. Inc. - DragonNest Launcher.) C:\Program Files (x86)\EYEDENTITY GAMES\DragonNest\DNLauncher.exe [Unsigned] O4 - GS\Desktop [Administrator]: Dropbox.lnk . (.Dropbox, Inc. - Dropbox.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /home =>.Dropbox, Inc� O4 - GS\Desktop [Administrator]: FLV to AVI Video Converter.lnk . (…) C:\Program Files (x86)\FLV to AVI Video Converter\VideoConverter.exe [Unsigned] O4 - GS\Desktop [Administrator]: Genshin Impact.lnk . (.miHoYo - .) C:\Program Files (x86)\Genshin Impact\launcher.exe [Unsigned] O4 - GS\Desktop [Administrator]: HP Photo Creations.lnk . (.Visan / RocketLife - PhotoProduct.exe.) C:\Program Files (x86)\HP Photo Creations\PhotoProduct.exe =>.Visan Industries� O4 - GS\Desktop [Administrator]: Messenger.lnk . (.Facebook Inc. - Messenger.) C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe {0DB137C8082145F79916594933DE4D2A}. =>.Facebook Inc. O4 - GS\Desktop [Administrator]: Spotify x.lnk . (.Spotify Ltd - SpotifyLauncher.) C:\Program Files (x86)\Spotify\SpotifyLauncher.exe =>.Spotify AB� O4 - GS\Desktop [Administrator]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O4 - GS\Desktop [Administrator]: WhoCrashed.lnk . (.Resplendence Software Projects - .) C:\Program Files (x86)\WhoCrashed\WhoCrashedEx.exe [Unsigned] =>.Resplendence Software Projects O4 - GS\Desktop [Administrator]: Youtube Downloader HD.lnk . (…) C:\Program Files (x86)\Youtube Downloader HD\YouTubeDownloaderHD.exe [Unsigned] O4 - GS\Desktop [Administrator]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Administrator\AppData\Roaming\ZHP\ZHPCleaner.exe [Unsigned] =>.Nicolas Coolman O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Administrator\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman O4 - GS\Desktop [Administrator]: Zoom.lnk . (.Zoom Video Communications, Inc. - Zoom Meetings.) C:\Users\Administrator\AppData\Roaming\Zoom\bin\Zoom.exe {02009F3FD86C9A6051C97108379B1201}. =>.Zoom Video Communications, Inc. O4 - GS\Quicklaunch [Administrator]: Avast Secure Browser.lnk . (.AVAST Software - Avast Secure Browser.) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --check-run=src=quicklaunch {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - GS\Quicklaunch [Administrator]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC� O4 - GS\Quicklaunch [Administrator]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft� O4 - GS\sendTo [Administrator]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation O4 - GS\TaskBar [Administrator]: Avast Secure Browser.lnk . (.AVAST Software - Avast Secure Browser.) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --check-run=src=taskbar {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - GS\TaskBar [Administrator]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\TaskBar [Administrator]: Messenger.lnk . (.Facebook Inc. - Messenger.) C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe {0DB137C8082145F79916594933DE4D2A}. =>.Facebook Inc. O4 - GS\TaskBar [Administrator]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O4 - GS\Programs [Administrator]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\Programs [Administrator]: Messenger.lnk . (.Facebook Inc. - Messenger.) C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe {0DB137C8082145F79916594933DE4D2A}. =>.Facebook Inc. O4 - GS\Programs [Administrator]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft� O4 - GS\Programs [Administrator]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O4 - GS\Desktop [Guest]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\Desktop [Guest]: CCleaner (2).lnk . (.Piriform Software Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe [Unsigned] =>.Piriform Software Ltd O4 - GS\Desktop [Guest]: Documents.lnk . (…) C:\Users\Administrator\Documents [Unsigned] O4 - GS\Desktop [Guest]: DragonNest.lnk . (.EYEDENTITY GAMES. Inc. - DragonNest Launcher.) C:\Program Files (x86)\EYEDENTITY GAMES\DragonNest\DNLauncher.exe [Unsigned] O4 - GS\Desktop [Guest]: Dropbox.lnk . (.Dropbox, Inc. - Dropbox.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /home =>.Dropbox, Inc� O4 - GS\Desktop [Guest]: FLV to AVI Video Converter.lnk . (…) C:\Program Files (x86)\FLV to AVI Video Converter\VideoConverter.exe [Unsigned] O4 - GS\Desktop [Guest]: Genshin Impact.lnk . (.miHoYo - .) C:\Program Files (x86)\Genshin Impact\launcher.exe [Unsigned] O4 - GS\Desktop [Guest]: HP Photo Creations.lnk . (.Visan / RocketLife - PhotoProduct.exe.) C:\Program Files (x86)\HP Photo Creations\PhotoProduct.exe =>.Visan Industries� O4 - GS\Desktop [Guest]: Messenger.lnk . (.Facebook Inc. - Messenger.) C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe {0DB137C8082145F79916594933DE4D2A}. =>.Facebook Inc. O4 - GS\Desktop [Guest]: Spotify x.lnk . (.Spotify Ltd - SpotifyLauncher.) C:\Program Files (x86)\Spotify\SpotifyLauncher.exe =>.Spotify AB� O4 - GS\Desktop [Guest]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O4 - GS\Desktop [Guest]: WhoCrashed.lnk . (.Resplendence Software Projects - .) C:\Program Files (x86)\WhoCrashed\WhoCrashedEx.exe [Unsigned] =>.Resplendence Software Projects O4 - GS\Desktop [Guest]: Youtube Downloader HD.lnk . (…) C:\Program Files (x86)\Youtube Downloader HD\YouTubeDownloaderHD.exe [Unsigned] O4 - GS\Desktop [Guest]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Administrator\AppData\Roaming\ZHP\ZHPCleaner.exe [Unsigned] =>.Nicolas Coolman O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Administrator\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman O4 - GS\Desktop [Guest]: Zoom.lnk . (.Zoom Video Communications, Inc. - Zoom Meetings.) C:\Users\Administrator\AppData\Roaming\Zoom\bin\Zoom.exe {02009F3FD86C9A6051C97108379B1201}. =>.Zoom Video Communications, Inc. O4 - GS\Quicklaunch [Guest]: Avast Secure Browser.lnk . (.AVAST Software - Avast Secure Browser.) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --check-run=src=quicklaunch {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - GS\Quicklaunch [Guest]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC� O4 - GS\Quicklaunch [Guest]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft� O4 - GS\sendTo [Guest]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation O4 - GS\sendTo [Guest]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation O4 - GS\TaskBar [Guest]: Avast Secure Browser.lnk . (.AVAST Software - Avast Secure Browser.) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --check-run=src=taskbar {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - GS\TaskBar [Guest]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\TaskBar [Guest]: Messenger.lnk . (.Facebook Inc. - Messenger.) C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe {0DB137C8082145F79916594933DE4D2A}. =>.Facebook Inc. O4 - GS\TaskBar [Guest]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O4 - GS\Programs [Guest]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\Programs [Guest]: Messenger.lnk . (.Facebook Inc. - Messenger.) C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe {0DB137C8082145F79916594933DE4D2A}. =>.Facebook Inc. O4 - GS\Programs [Guest]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft� O4 - GS\Programs [Guest]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O4 - GS\Desktop [Ollie]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\Desktop [Ollie]: CCleaner (2).lnk . (.Piriform Software Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe [Unsigned] =>.Piriform Software Ltd O4 - GS\Desktop [Ollie]: Documents.lnk . (…) C:\Users\Administrator\Documents [Unsigned] O4 - GS\Desktop [Ollie]: DragonNest.lnk . (.EYEDENTITY GAMES. Inc. - DragonNest Launcher.) C:\Program Files (x86)\EYEDENTITY GAMES\DragonNest\DNLauncher.exe [Unsigned] O4 - GS\Desktop [Ollie]: Dropbox.lnk . (.Dropbox, Inc. - Dropbox.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe /home =>.Dropbox, Inc� O4 - GS\Desktop [Ollie]: FLV to AVI Video Converter.lnk . (…) C:\Program Files (x86)\FLV to AVI Video Converter\VideoConverter.exe [Unsigned] O4 - GS\Desktop [Ollie]: Genshin Impact.lnk . (.miHoYo - .) C:\Program Files (x86)\Genshin Impact\launcher.exe [Unsigned] O4 - GS\Desktop [Ollie]: HP Photo Creations.lnk . (.Visan / RocketLife - PhotoProduct.exe.) C:\Program Files (x86)\HP Photo Creations\PhotoProduct.exe =>.Visan Industries� O4 - GS\Desktop [Ollie]: Messenger.lnk . (.Facebook Inc. - Messenger.) C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe {0DB137C8082145F79916594933DE4D2A}. =>.Facebook Inc. O4 - GS\Desktop [Ollie]: Spotify x.lnk . (.Spotify Ltd - SpotifyLauncher.) C:\Program Files (x86)\Spotify\SpotifyLauncher.exe =>.Spotify AB� O4 - GS\Desktop [Ollie]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O4 - GS\Desktop [Ollie]: WhoCrashed.lnk . (.Resplendence Software Projects - .) C:\Program Files (x86)\WhoCrashed\WhoCrashedEx.exe [Unsigned] =>.Resplendence Software Projects O4 - GS\Desktop [Ollie]: Youtube Downloader HD.lnk . (…) C:\Program Files (x86)\Youtube Downloader HD\YouTubeDownloaderHD.exe [Unsigned] O4 - GS\Desktop [Ollie]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Administrator\AppData\Roaming\ZHP\ZHPCleaner.exe [Unsigned] =>.Nicolas Coolman O4 - GS\Desktop [Ollie]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Administrator\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman O4 - GS\Desktop [Ollie]: Zoom.lnk . (.Zoom Video Communications, Inc. - Zoom Meetings.) C:\Users\Administrator\AppData\Roaming\Zoom\bin\Zoom.exe {02009F3FD86C9A6051C97108379B1201}. =>.Zoom Video Communications, Inc. O4 - GS\Quicklaunch [Ollie]: Avast Secure Browser.lnk . (.AVAST Software - Avast Secure Browser.) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --check-run=src=quicklaunch {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - GS\Quicklaunch [Ollie]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\Quicklaunch [Ollie]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC� O4 - GS\Quicklaunch [Ollie]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft� O4 - GS\sendTo [Ollie]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation O4 - GS\sendTo [Ollie]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation O4 - GS\TaskBar [Ollie]: Avast Secure Browser.lnk . (.AVAST Software - Avast Secure Browser.) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --check-run=src=taskbar {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - GS\TaskBar [Ollie]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\TaskBar [Ollie]: Messenger.lnk . (.Facebook Inc. - Messenger.) C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe {0DB137C8082145F79916594933DE4D2A}. =>.Facebook Inc. O4 - GS\TaskBar [Ollie]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O4 - GS\Programs [Ollie]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\Programs [Ollie]: Messenger.lnk . (.Facebook Inc. - Messenger.) C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe {0DB137C8082145F79916594933DE4D2A}. =>.Facebook Inc. O4 - GS\Programs [Ollie]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft� O4 - GS\Programs [Ollie]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O4 - GS\CommonDesktop [Public]: Adobe Acrobat.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe [Unsigned] =>.Adobe Systems Incorporated O4 - GS\CommonDesktop [Public]: Audacity.lnk . (.Audacity Team - Audacity® Cross-Platform Sound Editor.) C:\Program Files (x86)\Audacity\Audacity.exe {00C134B2A3AE7F9BD5A260DC5FCC04087C}. =>.Audacity Team O4 - GS\CommonDesktop [Public]: Avast AntiTrack Premium.lnk . (.AVAST Software - AVAST AntiTrack.) C:\Program Files (x86)\AVAST Software\AvastAntiTrackPremium\AvastAntiTrackPremium.exe =>.Avast Software s.r.o.� O4 - GS\CommonDesktop [Public]: Avast Cleanup Premium.lnk . (.AVAST Software - .) C:\Program Files (x86)\AVAST Software\Cleanup\TuneupUI.exe [Unsigned] =>.AVAST Software O4 - GS\CommonDesktop [Public]: Avast Premium Security.lnk . (.AVAST Software - .) C:\Program Files (x86)\AVAST Software\Avast\AvastUI.exe [Unsigned] =>.AVAST Software O4 - GS\CommonDesktop [Public]: Avast Secure Browser.lnk . (.AVAST Software - Avast Secure Browser.) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --check-run=src=desktop {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - GS\CommonDesktop [Public]: BlueStacks Multi-Instance Manager.lnk . (.BlueStack Systems, Inc. - BlueStacks Multi-Instance Mana.) C:\Program Files (x86)\BlueStacks\HD-MultiInstanceManager.exe [Unsigned] =>.BlueStack Systems, Inc. O4 - GS\CommonDesktop [Public]: BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks.lnk.) C:\Program Files (x86)\BlueStacks\Bluestacks.exe [Unsigned] =>.BlueStack Systems, Inc. O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Software Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED� O4 - GS\CommonDesktop [Public]: Driver Talent.lnk . (…) C:\Program Files (x86)\OSTotoSoft\DriverTalent\DriverTalent.exe [Unsigned] =>.SUP.DriveTheLife O4 - GS\CommonDesktop [Public]: EaseUS Data Recovery Wizard.lnk . (.CHENGDU YIWO Tech Development Co., Ltd - EaseUS Data Recovery Wizard.) C:\Program Files\EaseUS\EaseUS Data Recovery Wizard\DRW.exe [Unsigned] =>.CHENGDU YIWO Tech Development Co., Ltd O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation� O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC� O4 - GS\CommonDesktop [Public]: HitmanPro.lnk . (.SurfRight B.V. - HitmanPro 3.8. True cloud comp.) C:\Program Files (x86)\HitmanPro\HitmanPro.exe [Unsigned] =>.SurfRight B.V. O4 - GS\CommonDesktop [Public]: HP DeskJet 3700 series.lnk . (.HP Inc. - .) C:\Program Files (x86)\HP\HP DeskJet 3700 series\Bin\HP DeskJet 3700 series.exe -Start UDCDevicePage [Unsigned] =>.HP Inc. O4 - GS\CommonDesktop [Public]: IObit Malware Fighter.lnk . (.IObit - IObit Malware Fighter.) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe {08DCE537FFE5AF8769F7EEC6D4D329B9}. =>.IObit O4 - GS\CommonDesktop [Public]: iTop Screen Recorder.lnk . (.iTop Inc. - iTop Screen Recorder.) C:\Program Files\iTop Screen Recorder\iScrRec.exe =>.ORANGE VIEW LIMITED� O4 - GS\CommonDesktop [Public]: iTop Video Editor.lnk . (.iTop Inc. - iTop Screen Recorder Editer.) C:\Program Files\iTop Screen Recorder\iScrEditer.exe =>.ORANGE VIEW LIMITED� O4 - GS\CommonDesktop [Public]: iTop VPN.lnk . (.iTop Inc. - iTop VPN.) C:\Program Files (x86)\iTop VPN\iTopVPN.exe {0148CA714AC06F07D2FD2C38F6612063}. =>.iTop Inc. O4 - GS\CommonDesktop [Public]: Kamo.lnk . (.Piriform - Kamo.) C:\Program Files (x86)\Kamo\Kamo.exe =>.Piriform Software Ltd� O4 - GS\CommonDesktop [Public]: Krita.lnk . (.Krita Foundation - Krita digital painting application.) C:\Program Files\Krita (x64)\bin\krita.exe =>.K Desktop Environment e.V.� O4 - GS\CommonDesktop [Public]: Malwarebytes Privacy.lnk . (.Malwarebytes - Malwarebytes Privacy provides .) C:\Program Files (x86)\Malwarebytes\Privacy\UI\MBPrivacy.exe [Unsigned] =>.Malwarebytes O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft� O4 - GS\CommonDesktop [Public]: OpenOffice 4.1.10.lnk . (.Apache Software Foundation - OpenOffice 4.1.10.) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe [Unsigned] =>.Apache Software Foundation O4 - GS\CommonDesktop [Public]: Overwolf.lnk . (.Overwolf Ltd. - Overwolf Launcher.) C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe =>.Overwolf Ltd� O4 - GS\CommonDesktop [Public]: PaintTool SAI Ver.1.lnk . (.SYSTEMAX Software Development Inc. - sai.) C:\PaintToolSAI\sai.exe [Unsigned] O4 - GS\CommonDesktop [Public]: Quantum Legacy.lnk . (.Company - .) C:\Program Files (x86)\Quantum Legacy\QuantumLegacy.exe [Unsigned] =>PUP.Optional.Company O4 - GS\CommonDesktop [Public]: Recuva.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\Recuva\recuva64.exe [Unsigned] =>.Piriform Ltd O4 - GS\CommonDesktop [Public]: RogueKiller.lnk . (…) C:\Program Files\RogueKiller\RogueKiller64.exe =>.ADLICE� O4 - GS\CommonDesktop [Public]: Shop for Supplies - HP DeskJet 3700 series.lnk . (.HP Inc. - .) C:\Program Files (x86)\HP\HP DeskJet 3700 series\Bin\hpqDTSS.exe [Unsigned] =>.HP Inc. O4 - GS\CommonDesktop [Public]: Skype.lnk . (.Skype Technologies S.A. - Skype.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl� O4 - GS\CommonDesktop [Public]: Steam.lnk . (.Valve Corporation - Steam.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corp.� O4 - GS\CommonDesktop [Public]: Surfshark.lnk . (.Surfshark - Surfshark.) C:\Program Files (x86)\Surfshark\Surfshark.exe {7C3DB25748949CFC8DD57D82}. =>.Surfshark O4 - GS\CommonDesktop [Public]: System Checkup.lnk . (.iolo technologies, LLC - System Checkup.) C:\Program Files (x86)\Phoenix360\SCU\SCU.exe =>.iolo technologies, LLC� O4 - GS\CommonDesktop [Public]: Toshiba Tempro.lnk . (…) C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe /startUI [Unsigned] O4 - GS\CommonDesktop [Public]: True Key.lnk . (.Intel Security - .) C:\Program Files (x86)\Intel Security\True Key\Application\truekey.exe --open-source=dtopicon [Unsigned] =>.Intel Security O4 - GS\CommonDesktop [Public]: UCheck.lnk . (…) C:\Program Files\UCheck\UCheck64.exe =>.ADLICE� O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN� O4 - GS\Programs [Public]: Brave.lnk . (.Brave Software, Inc. - Brave Browser.) C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O4 - GS\Programs [Public]: Messenger.lnk . (.Facebook Inc. - Messenger.) C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe {0DB137C8082145F79916594933DE4D2A}. =>.Facebook Inc. O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Administrator\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft� O4 - GS\Programs [Public]: Spotify.lnk . (.Spotify Ltd - Spotify.) C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft� O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\WINDOWS\system32\notepad.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\WINDOWS\system32\mstsc.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\system32\SnippingTool.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Steps Recorder.) C:\WINDOWS\system32\psr.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe [Unsigned] =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\WINDOWS\system32\charmap.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft� O4 - GS\ProgramsCommon [Public]: Adobe Acrobat.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe [Unsigned] =>.Adobe Systems Incorporated O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (…) C:\WINDOWS\Installer{A30EA700-5515-48F0-88B0-9E99DC356B88}\AppleSoftwareUpdateIco.exe [Unsigned] =>.Apple Inc. O4 - GS\ProgramsCommon [Public]: Audacity.lnk . (.Audacity Team - Audacity® Cross-Platform Sound Editor.) C:\Program Files (x86)\Audacity\Audacity.exe {00C134B2A3AE7F9BD5A260DC5FCC04087C}. =>.Audacity Team O4 - GS\ProgramsCommon [Public]: Avast AntiTrack Premium.lnk . (.AVAST Software - AVAST AntiTrack.) C:\Program Files (x86)\AVAST Software\AvastAntiTrackPremium\AvastAntiTrackPremium.exe =>.Avast Software s.r.o.� O4 - GS\ProgramsCommon [Public]: Avast Cleanup Premium.lnk . (.AVAST Software - .) C:\Program Files (x86)\AVAST Software\Cleanup\TuneupUI.exe [Unsigned] =>.AVAST Software O4 - GS\ProgramsCommon [Public]: Avast Premium Security.lnk . (.AVAST Software - .) C:\Program Files (x86)\AVAST Software\Avast\AvastUI.exe [Unsigned] =>.AVAST Software O4 - GS\ProgramsCommon [Public]: Avast Secure Browser.lnk . (.AVAST Software - Avast Secure Browser.) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --check-run=src=tile {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O4 - GS\ProgramsCommon [Public]: Blend for Visual Studio 2015.lnk . (.Microsoft Corporation - Blend for Visual Studio.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\Blend.exe =>.Microsoft� O4 - GS\ProgramsCommon [Public]: BlueStacks Multi-Instance Manager.lnk . (.BlueStack Systems, Inc. - BlueStacks Multi-Instance Mana.) C:\Program Files (x86)\BlueStacks\HD-MultiInstanceManager.exe [Unsigned] =>.BlueStack Systems, Inc. O4 - GS\ProgramsCommon [Public]: BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks.lnk.) C:\Program Files (x86)\BlueStacks\Bluestacks.exe [Unsigned] =>.BlueStack Systems, Inc. O4 - GS\ProgramsCommon [Public]: Content Manager Assistant for PlayStation(R).lnk . (.Sony Interactive Entertainment Inc. - Content Manager Assistant.) C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe =>.Sony Interactive Entertainment Inc.� O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft� O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation� O4 - GS\ProgramsCommon [Public]: GIMP 2.lnk . (.Spencer Kimball, Peter Mattis and the GIMP Developmen - GIMP 2.8.10.) C:\Program Files (x86)\GIMP 2\bin\gimp-2.8.exe [Unsigned] =>.Spencer Kimball, Peter Mattis and the GIMP Developmen O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC� O4 - GS\ProgramsCommon [Public]: Google Drive.lnk . (.Google, Inc. - Google Drive.) C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe =>.Google LLC� O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Kamo.lnk . (.Piriform - Kamo.) C:\Program Files (x86)\Kamo\Kamo.exe =>.Piriform Software Ltd� O4 - GS\ProgramsCommon [Public]: Malwarebytes Privacy (VPN).lnk . (.Malwarebytes - Malwarebytes Privacy provides .) C:\Program Files (x86)\Malwarebytes\Privacy\UI\MBPrivacy.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft� O4 - GS\ProgramsCommon [Public]: OneNote.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft� O4 - GS\ProgramsCommon [Public]: Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft� O4 - GS\ProgramsCommon [Public]: PaintTool SAI Ver.1.lnk . (.SYSTEMAX Software Development Inc. - sai.) C:\PaintToolSAI\sai.exe [Unsigned] O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft� O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft� O4 - GS\ProgramsCommon [Public]: Spotify.lnk . (.Spotify Ltd - SpotifyLauncher.) C:\Program Files (x86)\Spotify\SpotifyLauncher.exe =>.Spotify AB� O4 - GS\ProgramsCommon [Public]: Symbaloo.lnk . (…) C:\Program Files (x86)\Symbaloo_TLauncher\Symbaloo.exe [Unsigned] O4 - GS\ProgramsCommon [Public]: True Key.lnk . (.Intel Security - True Key™.) C:\Program Files\Intel Security\True Key\Application\truekey.exe --open-source=startmenu =>.McAfee, Inc.� O4 - GS\ProgramsCommon [Public]: Visual Studio 2015.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2015.) C:\Program Files (x86)\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe =>.Microsoft� O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft� —\ Lop.com/Domain Hijackers (3) - 1s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip..{407c9b73-3ce0-413b-b03d-fae98e671fce}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip..{cd180246-361e-435b-be61-1843cd6af530}: DhcpDomain = lan =>.Local Domain —\ Extra protocols (23) - 14s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) – C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) – C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) – C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) – C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) – C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) – C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) – C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) – C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) – C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) – C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) – C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft� —\ AppInit_DLLs Registry value Autorun (1) - 1s O20 - Winlogon : UserInit . (.Microsoft Corporation - Userinit Log-on Application.) - C:\WINDOWS\system32\userinit.exe =>.Microsoft Corporation —\ List of key exploring StartupApproved (54) - 19s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDriveSetup =>.Microsoft Corporation [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastBrowserAutoLaunch_8901C211194C0DFF277C9606C1448E31 =>PUP.Optional.MyBrowser [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Spotify Web Helper =>.Spotify [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Spotify =>.Spotify [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Surfshark =>.Legitimate [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Advanced SystemCare =>SUP.Optional.AdvancedSystemCare [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype for Desktop =>.Skype Technologies [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GoogleDriveFS =>.Google Inc. [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Overwolf =>.Overwolf [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Malwarebytes Privacy [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_98769996E24836F99EC8617644423B4C [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDriveSetup =>.Microsoft Corporation [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastBrowserAutoLaunch_8901C211194C0DFF277C9606C1448E31 =>PUP.Optional.MyBrowser [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Spotify Web Helper =>.Spotify [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Spotify =>.Spotify [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Surfshark =>.Legitimate [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Advanced SystemCare =>SUP.Optional.AdvancedSystemCare [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Skype for Desktop =>.Skype Technologies [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GoogleDriveFS =>.Google Inc. [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Overwolf =>.Overwolf [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Malwarebytes Privacy [HKEY_USERS\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MicrosoftEdgeAutoLaunch_98769996E24836F99EC8617644423B4C [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ETDCtrl =>.Elantech Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:TecoResident =>.Toshiba Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:LogiOptions =>.Logitech Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastUI.exe =>.Avast Software s.r.o [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:cAudioFilterAgent =>.Conexant Systems, Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SmartAudio =>.Conexant Systems, Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Intel(R) WiDi Receiver Updater [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Launch LCore =>.Logitech Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WindowsDefender =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:TuneupUI.exe [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:MRT [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:DriverUpdUI.exe [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Dropbox =>.Dropbox Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:TSVU [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:SunJavaUpdateSched =>.Oracle [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:pSUAMain [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Aeria Ignite [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Discord =>.SUP.Discord [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Genshin Impact_Launcher [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:IObit Malware Fighter =>.IObit [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Genshin Impact_launcher__1_1 [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Avast Cleanup Premium.lnk =>.Avast Software s.r.o [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:B1.BAT [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:FAH.lnk [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:WinZip Preloader.lnk [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:McAfee Security Scan Plus.lnk =>.McAfee Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Content Manager Assistant for PlayStation(R).lnk —\ ASIC (ActiveSetup Installed Components) (9) - 15s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) – C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) – C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) – C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - IE Per-User Initialisation Utility.) – C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) – C:\Windows\System32\mscories.dll =>.Microsoft Corporation� O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) – C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.88\Installer\chrmstp.exe =>.Google LLC� O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) – C:\Program Files (x86)\Microsoft\Edge\Application\107.0.1418.35\Installer\setup.exe =>.Microsoft� O40 - ASIC: Avast Secure Browser [64Bits] - {A8504530-742B-42BC-895D-2BAD6406F698} . (.AVAST Software - Avast Secure Browser Installer.) – C:\Program Files (x86)\AVAST Software\Browser\Application\106.0.19037.119\Installer\chrmstp.exe {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O40 - ASIC: Brave [64Bits] - {AFE6A462-C574-4B8A-AF43-4CC60DF4563B} . (.Brave Software, Inc. - Brave Installer.) – C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\99.1.36.116\Installer\chrmstp.exe =>.Brave Software, Inc.� —\ Software installed (410) - 468s O42 - Logiciel: 7-Zip 22.01 (x64) - (.Igor Pavlov.) [HKLM][64Bits] – 7-Zip [Unsigned] =>.Igor Pavlov O42 - Logiciel: Adobe Acrobat (64-bit) - (.Adobe.) [HKLM][64Bits] – {AC76BA86-1033-1033-7760-BC15014EA700} [Unsigned] =>.Adobe O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] – {AC76BA86-0804-1033-1959-018244601032} [Unsigned] =>.Adobe Systems Incorporated (Hidden) O42 - Logiciel: Apple Application Support (32-bit) - (.Apple Inc..) [HKLM][64Bits] – {E5347310-C82F-4833-AA36-8D11E5A8A86A} [Unsigned] =>.Apple Inc. O42 - Logiciel: Apple Application Support (64-bit) - (.Apple Inc..) [HKLM][64Bits] – {D745E014-74DD-43A3-98DF-E7D38164B681} [Unsigned] =>.Apple Inc. O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] – {C29B636B-9015-4ED1-A12F-6375A337F23B} [Unsigned] =>.Apple Inc. O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] – {A30EA700-5515-48F0-88B0-9E99DC356B88} [Unsigned] =>.Apple Inc. O42 - Logiciel: Application Insights Tools for Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] – {0E4C791E-B78E-477D-BD5A-CDD0985BA6EC} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Audacity 2.1.2 - (.Audacity Team.) [HKLM][64Bits] – Audacity®_is1 {00C134B2A3AE7F9BD5A260DC5FCC04087C}. =>.Audacity Team O42 - Logiciel: Audacity 3.2.1 - (.Audacity Team.) [HKLM][64Bits] – Audacity_is1 {00C134B2A3AE7F9BD5A260DC5FCC04087C}. =>.Audacity Team O42 - Logiciel: Aura Kingdom - (..) [HKLM][64Bits] – Aura Kingdom [Unsigned] O42 - Logiciel: Avast AntiTrack Premium - (.Avast Software.) [HKLM][64Bits] – AvastAntiTrackPremium =>.Avast Software s.r.o.� O42 - Logiciel: Avast Cleanup Premium - (.Avast Software.) [HKLM][64Bits] – Avast Cleanup =>.Avast Software s.r.o.� O42 - Logiciel: Avast Premium Security - (.Avast Software.) [HKLM][64Bits] – Avast Antivirus =>.Avast Software s.r.o.� O42 - Logiciel: Avast Secure Browser - (.AVAST Software.) [HKLM][64Bits] – Avast Secure Browser {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O42 - Logiciel: Avast Update Helper - (.AVAST Software.) [HKLM][64Bits] – {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [Unsigned] =>.AVAST Software (Hidden) O42 - Logiciel: Azure AD Authentication Connected Service - (.Microsoft Corporation.) [HKLM][64Bits] – {8A1AD070-269F-4A15-AAB5-76AB896EF195} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: AzureTools.Notifications - (.Microsoft Corporation.) [HKLM][64Bits] – {1E5CA362-39B6-4BD0-B9C0-69CF15F0FEA2} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Backup and Sync from Google - (.Google, Inc..) [HKLM][64Bits] – {696895F7-52C7-4C9E-998B-C7E0CC907092} [Unsigned] =>.Google, Inc. O42 - Logiciel: Bandisoft MPEG-1 Decoder - (.Bandisoft.com.) [HKLM][64Bits] – BandiMPEG1 [Unsigned] =>.Bandisoft.com O42 - Logiciel: Blend for Visual Studio SDK for .NET 4.5 - (.Microsoft Corporation.) [HKLM][64Bits] – {37E53780-3944-4A6A-842F-727128E8616E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] – BlueStacks =>.BlueStack Systems, Inc.� O42 - Logiciel: Bluetooth(R) Link - (.Toshiba Corporation.) [HKLM][64Bits] – {936D21BF-3344-4B20-BC4C-3B67580C19F5} [Unsigned] =>.Toshiba Corporation O42 - Logiciel: Brave - (.Brave Software Inc.) [HKLM][64Bits] – BraveSoftware Brave-Browser =>.Brave Software, Inc.� O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] – CCleaner =>.PIRIFORM SOFTWARE LIMITED� O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] – CNXT_AUDIO_HDA =>.Conexant Systems, Inc.� O42 - Logiciel: Conexant SmartAudio - (.Conexant Systems.) [HKLM][64Bits] – SAII =>.Conexant Systems, Inc.� O42 - Logiciel: Content Manager Assistant for PlayStation(R) - (.Sony Interactive Entertainment Inc..) [HKLM][64Bits] – {C0115E87-E731-48DC-B258-DB2AD494DC80} [Unsigned] =>.Sony Interactive Entertainment Inc. O42 - Logiciel: Dead Frontier 2 - (.Creaky Corpse Ltd.) [HKLM][64Bits] – Steam App 744900 =>.Valve Corp.� O42 - Logiciel: Dotfuscator and Analytics Community Edition 5.22.0 - (.PreEmptive Solutions.) [HKLM][64Bits] – {60018889-9E0F-43E8-9B89-29E8C828B40A} [Unsigned] =>.PreEmptive Solutions (Hidden) O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM][64Bits] – Dropbox =>.Dropbox, Inc� O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] – {099218A5-A723-43DC-8DB5-6173656A1E94} [Unsigned] =>.Dropbox, Inc. (Hidden) O42 - Logiciel: DTS Sound - (.DTS, Inc..) [HKLM][64Bits] – {793B70D2-41E9-46AB-9DDC-B34C99D07DB5} [Unsigned] =>.DTS, Inc. O42 - Logiciel: EaseUS Data Recovery Wizard - (.EaseUS.) [HKLM][64Bits] – EaseUS Data Recovery Wizard_is1 [Unsigned] =>.EaseUS O42 - Logiciel: ELAN Touchpad 15.8.12.5_X64_WHQL - (.ELAN Microelectronic Corp..) [HKLM][64Bits] – Elantech =>.ELAN Microelectronics Corporation� O42 - Logiciel: FINAL FANTASY IX - (.Square Enix.) [HKLM][64Bits] – Steam App 377840 =>.Valve Corp.� O42 - Logiciel: FLV to AVI Video Converter v. 1.2 - (.FDRLab.com.) [HKLM][64Bits] – FLV to AVI Video Converter_is1 [Unsigned] =>.FDRLab.com O42 - Logiciel: GameInput Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] – {7E52156F-18FE-B953-BEA9-6BE6A77AFDFF} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Genshin Impact - (.miHoYo Co.,Ltd.) [HKLM][64Bits] – Genshin Impact {0111C69A751AB53D0C4C4D18B9ED0A00}. =>.miHoYo Co.,Ltd O42 - Logiciel: GIMP 2.8.10 - (.The GIMP Team.) [HKLM][64Bits] – GIMP-2_is1 =>.Jernej Simoncic� O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] – Google Chrome =>.Google LLC� O42 - Logiciel: Google Drive - (.Google LLC.) [HKLM][64Bits] – {6BBAE539-2232-434A-A4E5-9A33560C6283} =>.Google LLC� O42 - Logiciel: HitmanPro 3.8 - (.SurfRight B.V..) [HKLM][64Bits] – HitmanPro38 {08DDB12146AF9858663408E98629828B}. =>.SurfRight B.V. O42 - Logiciel: HP DeskJet 3700 series Basic Device Software - (.HP Inc..) [HKLM][64Bits] – {307EE3A5-A788-4D01-B615-ABAA728DFB57} [Unsigned] =>.HP Inc. O42 - Logiciel: HP DeskJet 3700 series Help - (.HP.) [HKLM][64Bits] – {9D10BAEF-4767-46EC-8A40-A6E75D84432C} [Unsigned] =>.HP O42 - Logiciel: HP Dropbox Plugin - (.HP.) [HKLM][64Bits] – {D12BC084-97D6-438A-AA7C-5962608D17A0} [Unsigned] =>.HP O42 - Logiciel: HP Google Drive Plugin - (.HP.) [HKLM][64Bits] – {BFA42100-DB54-467A-BB87-CF70732B4065} [Unsigned] =>.HP O42 - Logiciel: HP Photo Creations - (.HP.) [HKLM][64Bits] – HP Photo Creations =>.Visan Industries� O42 - Logiciel: Intel Security True Key - (.Intel Security.) [HKLM][64Bits] – TrueKey =>.McAfee, Inc.� O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] – {8C91A5EB-2C62-4A6D-8802-CC79FD2ED390} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel(R) Corporation.) [HKLM][64Bits] – {60c073df-e736-4210-9c3a-5fc2b651cef3} =>.Intel Corporation - Software and Firmware Products� (Hidden) O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] – {1CEAC85D-2590-4760-800F-8DE5E91F3700} [Unsigned] =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] – {A5536A08-5A7F-4330-8947-0372B500A3BD} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] – {C6C06C9F-B452-4C7A-AB83-F5931AB9B372} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) ME UninstallLegacy - (.Intel Corporation.) [HKLM][64Bits] – {94BC10B9-159A-44E8-BEA1-34BF765FEA58} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) PRO/Wireless Driver - (.Intel Corporation.) [HKLM][64Bits] – {8fb9abdb-d154-4df3-bd67-8817a4550027} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] – {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX� O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] – {205AE40D-8AD7-4F29-A430-DD2168DA562D} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] – {409CB30E-E457-4008-9B1A-ED1B9EA21140} [Unsigned] =>.Intel Corporation O42 - Logiciel: Intel(R) WiDi - (.Intel Corporation.) [HKLM][64Bits] – {C1DD4078-51FD-42CC-91DA-AD4369D5F973} [Unsigned] =>.Intel Corporation O42 - Logiciel: Intel(R) WiDi Software Asset Manager - (.Intel Corporation.) [HKLM][64Bits] – {C7D64C31-3F1E-4205-87A5-B61AAE55E64B} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Wireless Bluetooth(R) - (.Intel Corporation.) [HKLM][64Bits] – {C345A462-2044-47D6-81F6-A4416453A514} [Unsigned] =>.Intel Corporation O42 - Logiciel: Intel® PROSet/Wireless Software - (.Intel Corporation.) [HKLM][64Bits] – {f8c930bd-0a68-425f-8c11-87723d1e2c97} =>.Intel(R) Wireless Connectivity Solutions� O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] – {EF71AFFB-85B5-407C-A301-39EA25F98313} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel® RealSense™ SDK 2014 Runtime (x64): Core - (.Intel Corporation.) [HKLM][64Bits] – {37D41A97-6B02-4C30-8753-85107BE1D674} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel® Security Assist - (.Intel Corporation.) [HKLM][64Bits] – {4B230374-6475-4A73-BA6E-41015E9C5013} [Unsigned] =>.Intel Corporation O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] – {7D84E343-A23D-451C-B123-0195B2D903A6} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: IObit Malware Fighter 9 - (.IObit.) [HKLM][64Bits] – IObit Malware Fighter_is1 =>.IObit CO., LTD� O42 - Logiciel: iTop Screen Recorder - (.iTop Inc..) [HKLM][64Bits] – iTop Screen Recorder_is1 =>.ORANGE VIEW LIMITED� O42 - Logiciel: iTop VPN - (.iTop Inc..) [HKLM][64Bits] – iTop VPN_is1 {0148CA714AC06F07D2FD2C38F6612063}. =>.iTop Inc. O42 - Logiciel: Kamo - (.Piriform.) [HKLM][64Bits] – Kamo =>.Piriform Software Ltd� O42 - Logiciel: Krita (x64) 5.1.1 - (.Krita Foundation.) [HKLM][64Bits] – Krita_x64 [Unsigned] =>.Krita Foundation O42 - Logiciel: LAME v3.99.3 (for Windows) - (.Audacity.) [HKLM][64Bits] – LAME_is1 [Unsigned] =>.Audacity O42 - Logiciel: Logitech Gaming Software - (.Logitech Inc..) [HKLM][64Bits] – {690285C2-2481-44FB-8402-162EA970A6DD} [Unsigned] =>.Logitech Inc. (Hidden) O42 - Logiciel: Logitech Options - (.Logitech.) [HKLM][64Bits] – LogiOptions =>.Logitech Inc� O42 - Logiciel: Malwarebytes Privacy version 2.9.0.563 - (.Malwarebytes.) [HKLM][64Bits] – {934873BE-C9BC-4F19-B698-9B3E3F8FF07F}_is1 =>.Malwarebytes Inc� O42 - Logiciel: Malwarebytes Privacy VPN Tunnel Driver - (.Malwarebytes.) [HKLM][64Bits] – {FEE4A372-663C-47A0-BD08-A6C34320DC52} [Unsigned] =>.Malwarebytes O42 - Logiciel: Malwarebytes version 4.5.17.221 - (.Malwarebytes.) [HKLM][64Bits] – {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc.� O42 - Logiciel: Messenger - (.Facebook, Inc..) [HKCU][64Bits] – c1b3adcf-2068-5e8d-b25d-30ce588e3a4c [Unsigned] =>.Facebook, Inc. O42 - Logiciel: Microsoft .NET Core 5.0 SDK - (.Microsoft Corporation.) [HKLM][64Bits] – {E092A9F3-15AE-46B4-9A25-6C25F7F44795} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft .NET Framework 4 Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] – {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft .NET Framework 4.5 Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] – {56E962F0-4FB0-3C67-88DB-9EAA6EEFC493} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.5.1 Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] – {6A0C6700-EA93-372C-8871-DCCF13D160A4} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) - (.Microsoft Corporation.) [HKLM][64Bits] – {D3517C62-68A5-37CF-92F7-93C029A89681} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Ap - (.Microsoft Corporation.) [HKLM][64Bits] – {976C3D92-0DEC-37A6-A870-FF4FC18CD029} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Ap - (.Microsoft Corporation.) [HKLM][64Bits] – {A223B446-EC3D-3031-828D-5188800AB782} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft .NET Framework 4.5.1 SDK - (.Microsoft Corporation.) [HKLM][64Bits] – {19A5926D-66E1-46FC-854D-163AA10A52D3} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.5.2 Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] – {19E8AE59-4D4A-3534-B567-6CC08FA4102E} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU) - (.Microsoft Corporation.) [HKLM][64Bits] – {290FC320-2F5A-329E-8840-C4193BD7A9EE} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.6 SDK - (.Microsoft Corporation.) [HKLM][64Bits] – {B5915D37-0637-4A26-A3AA-C5DC9F856370} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.6 Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] – {2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.6 Targeting Pack (ENU) - (.Microsoft Corporation.) [HKLM][64Bits] – {034547E9-D8FA-49E7-8B9C-4C9861FB9146} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.6.1 Developer Pack - (.Microsoft Corporation.) [HKLM][64Bits] – {463d5540-8dfd-4eef-92e5-b729b3b73cfb} =>.Microsoft� (Hidden) O42 - Logiciel: Microsoft .NET Framework 4.6.1 SDK - (.Microsoft Corporation.) [HKLM][64Bits] – {2F0ECC80-B9E4-4485-8083-CD32F22ABD92} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.6.1 Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] – {8BC3EEC9-090F-4C53-A8DA-1BEC913040F9} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) - (.Microsoft Corporation.) [HKLM][64Bits] – {8EEB28EE-5141-411C-9CF0-9952264FE4AF} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft 365 - en-us - (.Microsoft Corporation.) [HKLM][64Bits] – O365HomePremRetail - en-us =>.Microsoft� O42 - Logiciel: Microsoft Agents for Visual Studio 2015 Preview - (.Microsoft Corporation.) [HKLM][64Bits] – {CE37CE67-2660-30EE-805B-78829CC3554B} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Agents for Visual Studio 2015 Preview - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {B57097EF-5F38-348C-8081-4D0F0B78757E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Azure Mobile Services Connected Service - (.Microsoft Corporation.) [HKLM][64Bits] – {107518BF-43A3-4CB6-B571-9C5A241F9586} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Azure Mobile Services SDK V2.0 - (.Microsoft Corporation.) [HKLM][64Bits] – {A00EC54A-CE16-4CF6-A14A-5CF81A1FE03F} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Azure Mobile Services Tools for Visual Studio - v1.4 - (.Microsoft Corporation.) [HKLM][64Bits] – {5536AAD4-740A-4577-843D-4281D3F30726} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Azure Shared Components for Visual Studio 2015 - v1.8 - (.Microsoft Corporation.) [HKLM][64Bits] – {F02B1BAC-94DA-46FB-B27B-7287FC0EF481} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Azure Storage Connected Service - (.Microsoft Corporation.) [HKLM][64Bits] – {8F15E32A-FAD1-49E3-9378-C8EE0530E192} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Blend for Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] – {D7C23E28-E8E0-326D-92B2-357D6D6AFBC0} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Blend for Visual Studio 2015 - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {BAF28CA1-4B3C-36C7-9136-4597ED8694BB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Build Tools 14.0 (amd64) - (.Microsoft Corporation.) [HKLM][64Bits] – {79750C81-714E-45F2-B5DE-42DEF00687B8} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Build Tools 14.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] – {6BF8837D-67E1-4359-89FB-C08BFD6F2138} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Build Tools Language Resources 14.0 (amd64) - (.Microsoft Corporation.) [HKLM][64Bits] – {34BFF66C-9A7E-4778-8A9F-1DA1F0F4C22E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Build Tools Language Resources 14.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] – {5127B392-8820-4822-A21F-1CB78C2E25AD} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] – Microsoft Edge =>.Microsoft� O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] – Microsoft Edge Update [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Edge WebView2 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] – Microsoft EdgeWebView =>.Microsoft� O42 - Logiciel: Microsoft Expression Blend SDK for .NET 4 - (.Microsoft Corporation.) [HKLM][64Bits] – {9B3A1C97-A361-463E-8817-444F9F88CDFE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Help Viewer 2.2 - (.Microsoft Corporation.) [HKLM][64Bits] – {4740889B-2D03-3A6F-BC42-07C8AFDF3B2E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Help Viewer 2.2 - (.Microsoft Corporation.) [HKLM][64Bits] – Microsoft Help Viewer 2.2 [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft NuGet - Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] – {2D170B66-A905-385C-93E0-20A47812B777} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-0016-0409-0000-0000000FF1CE}HOMESTUDENTR{AAA19365-932B-49BD-8138-BE28CEE9C4B4} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-0018-0409-0000-0000000FF1CE}HOMESTUDENTR{AAA19365-932B-49BD-8138-BE28CEE9C4B4} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-001B-0409-0000-0000000FF1CE}HOMESTUDENTR{AAA19365-932B-49BD-8138-BE28CEE9C4B4} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-002A-0000-1000-0000000FF1CE}HOMESTUDENTR{664655D8-B9BB-455D-8A58-7EAF7B0B2862} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-002A-0409-1000-0000000FF1CE}HOMESTUDENTR{98333358-268C-4164-B6D4-C96DF5153727} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-006E-0409-0000-0000000FF1CE}HOMESTUDENTR{98333358-268C-4164-B6D4-C96DF5153727} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-00A1-0409-0000-0000000FF1CE}HOMESTUDENTR{AAA19365-932B-49BD-8138-BE28CEE9C4B4} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-0115-0409-0000-0000000FF1CE}HOMESTUDENTR{98333358-268C-4164-B6D4-C96DF5153727} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-0116-0409-1000-0000000FF1CE}HOMESTUDENTR{98333358-268C-4164-B6D4-C96DF5153727} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{6E107EB7-8B55-48BF-ACCB-199F86A2CD93} [Unsigned] =>.Microsoft O42 - Logiciel: Microsoft Office Excel MUI (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-0016-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office File Validation Add-In - (.Microsoft Corporation.) [HKLM][64Bits] – {90140000-2005-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Home and Student 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – HOMESTUDENTR =>.Microsoft Corporation� O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-002A-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office OneNote MUI (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-00A1-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office PowerPoint MUI (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-0018-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-001F-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-001F-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-001F-0C0A-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proofing (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-002C-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-001F-0409-0000-0000000FF1CE}HOMESTUDENTR{1FF96026-A04A-4C3E-B50A-BB7022654D0F} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-001F-040C-0000-0000000FF1CE}HOMESTUDENTR{71F055E8-E2C6-4214-BB3D-BFE03561B89E} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] – {90120000-001F-0C0A-0000-0000000FF1CE}HOMESTUDENTR{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Office Shared 64-bit MUI (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-002A-0409-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-0116-0409-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Shared MUI (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-006E-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Shared Setup Metadata MUI (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-0115-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Word MUI (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] – {90120000-001B-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] – OneDriveSetup.exe =>.Microsoft� O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] – {1634C655-2398-35C0-89BE-291449A72F88} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Portable Library Multi-Targeting Pack Language Pack - enu - (.Microsoft Corporation.) [HKLM][64Bits] – {B01EE326-AFD3-30C9-804A-CBC36CBD4922} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] – {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft SQL Server 2014 Management Objects - (.Microsoft Corporation.) [HKLM][64Bits] – {2774595F-BC2A-4B12-A25B-0C37A37049B0} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft SQL Server 2014 Management Objects (x64) - (.Microsoft Corporation.) [HKLM][64Bits] – {1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft SQL Server 2014 Transact-SQL ScriptDom - (.Microsoft Corporation.) [HKLM][64Bits] – {020CDFE0-C127-4047-B571-37C82396B662} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft SQL Server 2014 T-SQL Language Service - (.Microsoft Corporation.) [HKLM][64Bits] – {47D08E7A-92A1-489B-B0BF-415516497BCE} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft SQL Server Compact 4.0 SP1 x64 ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {78909610-D229-459C-A936-25D92283D3FD} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft System CLR Types for SQL Server 2014 - (.Microsoft Corporation.) [HKLM][64Bits] – {091CE6AA-2753-4F6E-AD1C-0E875744EB54} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft System CLR Types for SQL Server 2014 - (.Microsoft Corporation.) [HKLM][64Bits] – {FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] – {B5664346-4402-4834-81BE-9687BF653BA2} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] – {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] – {837b34e3-7c30-493c-8f6a-2b0f04e2912c} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] – {6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] – {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] – {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] – {9A25302D-30C0-39D9-BD6F-21E6EC160475} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] – {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] – {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] – {1D8E6291-B0D5-35EC-8441-6616F567A0F7} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] – {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] – {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft� O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] – {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft� O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] – {37B8F9C7-03FB-3253-8781-2517C99D7C00} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] – {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] – {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] – {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] – {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft� O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] – {ef6b00ec-13e1-4c25-9064-b2f383cb8412} =>.Microsoft� O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] – {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft� O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] – {61087a79-ac85-455c-934d-1fa22cc64f36} =>.Microsoft� O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] – {5740BD44-B58D-321A-AFC0-6D3D4556DD6C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] – {CB0836EC-B072-368D-82B2-D3470BF95707} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] – {7DAD0258-515C-3DD4-8964-BD714199E0F7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] – {E30D8B21-D82D-3211-82CC-0F0A5D1495E8} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015 x64 Debug Runtime - 14.0.24210 - (.Microsoft Corporation.) [HKLM][64Bits] – {D94D812C-B20F-3DB9-82D2-A57AC2CAF9CA} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015 x86 Debug Runtime - 14.0.24210 - (.Microsoft Corporation.) [HKLM][64Bits] – {2509566A-3416-3B50-B2FC-F7A0254C24CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] – {3746f21b-c990-4045-bb33-1cf98cff7a68} =>.Microsoft� O42 - Logiciel: Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] – {a98dc6ff-d360-4878-9f0a-915eba86eaf3} =>.Microsoft� O42 - Logiciel: Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] – {F4499EE3-A166-496C-81BB-51D1BCDC70A9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] – {3407B900-37F5-4CC2-B612-5CD5D580A163} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X86 Additional Runtime - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] – {8972AC25-452E-4FFE-945A-EB9E28C20322} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31332 - (.Microsoft Corporation.) [HKLM][64Bits] – {AEAA18F7-9C96-4A43-BC07-8B88A4913EEB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] – {9495AEB4-AB97-39DE-8C42-806EEF75ECA7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] – Microsoft Visual Studio 2010 Tools for Office Runtime (x64) =>.Microsoft� O42 - Logiciel: Microsoft Visual Studio 2015 Devenv - (.Microsoft Corporation.) [HKLM][64Bits] – {FC1F3422-0C94-3178-AD95-3EA889DF55AF} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Devenv Resources - (.Microsoft Corporation.) [HKLM][64Bits] – {173D2989-6B09-3A90-8819-A53E43F99818} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Diagnostic Tools - amd64 - (.Microsoft Corporation.) [HKLM][64Bits] – {62D2E847-606F-49FB-A38B-F9D5AA936331} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Performance Collection Tools - (.Microsoft Corporation.) [HKLM][64Bits] – {FCC6E820-B5DB-454E-96E3-B6182DDEEC8D} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Performance Collection Tools - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {3AE40040-2F48-4617-9228-49E999738BDB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Preparation - (.Microsoft Corporation.) [HKLM][64Bits] – {919C67A9-2DE8-4929-A910-CB85E009B5CB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Preparation - (.Microsoft Corporation.) [HKLM][64Bits] – {93A31A4A-197C-43F0-9687-7FFC47C33D44} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Preparation - (.Microsoft Corporation.) [HKLM][64Bits] – {9E99CC49-D305-4D42-AC34-6C732062B142} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Profiling Tools - (.Microsoft Corporation.) [HKLM][64Bits] – {4AD3777F-D26B-4FCD-8823-B1D9784141C6} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 SDK - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {67A74EC1-A89D-3553-B38D-D17D4991CD2F} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Shell (Minimum) - (.Microsoft Corporation.) [HKLM][64Bits] – {030A6785-C3A9-37DA-8530-444C320629FA} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Shell (Minimum) Interop Assemblies - (.Microsoft Corporation.) [HKLM][64Bits] – {166EEF5C-F996-390E-91F6-DD6DFD008E9B} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Shell (Minimum) Resources - (.Microsoft Corporation.) [HKLM][64Bits] – {7FF53256-7BAF-3EFA-91B4-DB65F37EB5E9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Test Tools Language Pack - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {E41854EE-D8A6-4E03-B42D-E0006C24A306} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Update 3 CTP1 Team Explorer Language Pack - EN - (.Microsoft.) [HKLM][64Bits] – {FFA8B646-066E-34A4-8168-C410DAFA631F} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - amd64 - (.Microsoft Corporation.) [HKLM][64Bits] – {9253C880-B8D2-4A37-AE3C-9DC597A2F866} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - amd64 - (.Microsoft Corporation.) [HKLM][64Bits] – {BCAC059C-E06C-4D45-928A-A69061678ECA} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {0DC92391-4C2B-4C35-A674-EBDEE5ABB375} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 - (.Microsoft Corporation.) [HKLM][64Bits] – {35B1EDF3-63B5-4908-989D-6F62DBA02C58} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 - (.Microsoft Corporation.) [HKLM][64Bits] – {7DFB810E-B924-4DAD-975A-E07F58153727} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86 - (.Microsoft Corporation.) [HKLM][64Bits] – {DFFDC6DF-D4F8-4A4C-AC63-136996ADAFAD} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Update 3 Performance Debugger Web Views - (.Microsoft Corporation.) [HKLM][64Bits] – {A5C0F000-F324-46D3-BBD9-5F6AD1886B12} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 VsGraphics Helper Dependencies - (.Microsoft Corporation.) [HKLM][64Bits] – {599702AA-91EB-38C1-B994-CDE35C57E007} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Windows Diagnostic Tools - (.Microsoft Corporation.) [HKLM][64Bits] – {D67494E9-AA13-403B-A3BE-C26C399EEA4A} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 Windows Diagnostic Tools - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {AB5A27F1-57C7-4E4C-90C4-28E55272FD6F} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 XAML Application Timeline - (.Microsoft Corporation.) [HKLM][64Bits] – {A04247F5-CEE1-4521-87FD-90DA04C800A1} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 XAML Application Timeline - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {C3C024EC-B097-43BE-9BFC-E3D10EF45510} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 XAML Designer - (.Microsoft Corporation.) [HKLM][64Bits] – {441BFBCD-8830-3FE9-BBBE-643CA7982CA0} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 XAML Designer - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {AC0CF5DB-30CD-3504-96FC-CC3CC3BAF368} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 XAML Visual Diagnostics - (.Microsoft Corporation.) [HKLM][64Bits] – {6906ABB6-435A-4F7A-B94A-A057121DA285} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio 2015 XAML Visual Diagnostics - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {8BD56634-6B9E-4CDA-8857-C73F20F57907} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio Community 2015 - (.Microsoft Corporation.) [HKLM][64Bits] – {DE064F60-6522-3310-9665-B5E3E78B3638} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio Community 2015 - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {5C4DD346-D2B9-3B7B-9320-A90049D5E48B} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio Community 2015 with Updates - (.Microsoft Corporation.) [HKLM][64Bits] – {79b486b9-c5f0-4096-a00c-8351f59587c2} =>.Microsoft� O42 - Logiciel: Microsoft Visual Studio Connected Services - (.Microsoft Corporation.) [HKLM][64Bits] – {76722C36-3BF4-4326-9ADF-A56ABA50AA9F} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio Services Hub - (.Microsoft Corporation.) [HKLM][64Bits] – {79B9B6C9-3FAF-4F50-96A9-C1651EA0DD31} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Office In - (.Microsoft.) [HKLM][64Bits] – {647DB777-6309-3551-9262-6B9CDB97635B} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Office In - (.Microsoft.) [HKLM][64Bits] – {F04AB121-B3E1-39FE-8A5E-EF8484210107} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Storyboar - (.Microsoft.) [HKLM][64Bits] – {4E27A682-5F47-3B82-AF7C-90218C7078C3} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Storyboar - (.Microsoft.) [HKLM][64Bits] – {B97772BE-2F7E-3F09-93B4-D1C9E196018A} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: Microsoft VisualStudio JavaScript Language Service - (.Microsoft Corporation.) [HKLM][64Bits] – {D7DF0F16-53C8-4AAB-8D54-78F16218419A} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft VisualStudio JavaScript Project System - (.Microsoft Corporation.) [HKLM][64Bits] – {5080852D-31F3-49D3-B6F3-7FEC8C339A03} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Web Deploy 3.6 - (.Microsoft Corporation.) [HKLM][64Bits] – {94E1227C-08A9-4962-B388-1F05D89AEA75} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft XNA Framework Redistributable 4.0 Refresh - (.Microsoft Corporation.) [HKLM][64Bits] – {D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft.VisualStudio_Office365 - (.Microsoft Corporation.) [HKLM][64Bits] – {3196EC29-B75D-4EE3-8AB0-46418BC31483} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Mozilla Firefox (x64 en-US) - (.Mozilla.) [HKLM][64Bits] – Mozilla Firefox 106.0.5 (x64 en-US) =>.Mozilla Corporation� O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] – MozillaMaintenanceService [Unsigned] =>.Mozilla O42 - Logiciel: MSBuild/NuGet Integration 14.0 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] – {128C1654-3B9E-4959-8BFB-CE6F09C0A01D} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Multi-Device Hybrid Apps using C# - Templates - ENU - (.Microsoft Corporation.) [HKLM][64Bits] – {12D99739-FFD3-3761-8AA6-F929E0FE407E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] – {3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA} [Unsigned] =>.NVIDIA Corporation O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] – {90160000-008C-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] – {90160000-00DD-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] – {90160000-008F-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] – {90160000-008C-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: OpenAL - (.Open Audio Library.) [HKLM][64Bits] – OpenAL =>.Creative Labs Inc� O42 - Logiciel: OpenOffice 4.1.10 - (.Apache Software Foundation.) [HKLM][64Bits] – {D909483F-780E-4232-9313-4C24A1B09BE8} [Unsigned] =>.Apache Software Foundation O42 - Logiciel: Overwolf - (.Overwolf Ltd..) [HKLM][64Bits] – Overwolf =>.Overwolf Ltd� O42 - Logiciel: PaintTool SAI Ver.1 - (.Systemax Software Development.) [HKLM][64Bits] – PaintToolSAI [Unsigned] =>.Systemax Software Development O42 - Logiciel: PreEmptive Analytics Visual Studio Components - (.PreEmptive Solutions.) [HKLM][64Bits] – {436A18DD-5F2C-4B3C-985E-AD3C13B0CC25} [Unsigned] =>.PreEmptive Solutions (Hidden) O42 - Logiciel: Product Improvement Study for HP DeskJet 3700 series - (.HP Inc..) [HKLM][64Bits] – {826144A0-42A2-40D3-A49B-129979BA2B0C} [Unsigned] =>.HP Inc. O42 - Logiciel: Qcma - (.codestation.) [HKLM][64Bits] – Qcma [Unsigned] =>.codestation O42 - Logiciel: Quantum Legacy - (..) [HKLM][64Bits] – {24EBDD34-E08C-485B-8071-4DA36ABA862F} =>.InstallShield Software Corporation� O42 - Logiciel: Rapport - (.Trusteer.) [HKLM][64Bits] – {1DD81E7D-0D28-4CEB-87B2-C041A4FCB215} [Unsigned] =>.Trusteer (Hidden) O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] – {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp� O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] – Recuva =>.Piriform Ltd� O42 - Logiciel: RogueKiller version 15.6.2.0 - (.Adlice Software.) [HKLM][64Bits] – 8B3D7924-ED89-486B-8322-E8594065D5CB_is1 =>.ADLICE� O42 - Logiciel: Roslyn Language Services - x86 - (.Microsoft Corporation.) [HKLM][64Bits] – {6C1985E7-E1C5-3A95-86EF-2C62465F15C3} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Roslyn Language Services - x86 - (.Microsoft Corporation.) [HKLM][64Bits] – {7138CC92-123A-393F-BC30-B784794DF4E7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596650) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{DF2F5DAC-93D7-434B-96B1-EAF4D891AD24} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{B145DBBB-7778-4A5D-9D2B-DA6569F02391} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{E34960DB-2A93-45DB-A208-02650F7AB09C} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{B7727B4D-5EA3-4C11-9D30-15E47616DCAF} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{293FB6BE-D3EB-4162-B522-F9108040B9FE} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596904) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{5BF3F29E-C924-48BB-AA3C-EA2BA14B7027} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{2B3C041A-A7F2-4A24-968D-4BEB6A123D15} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {90120000-002A-0000-1000-0000000FF1CE}HOMESTUDENTR{BF11577A-6876-45AA-86C9-2BA4CFB8B019} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{BF11577A-6876-45AA-86C9-2BA4CFB8B019} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{6B4A3804-666A-4DD8-84A7-B97701416784} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{36842896-D83B-4C92-8261-6312B7DEB562} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{4C1BE82B-9AC0-4AB9-B76D-5467131955E1} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2881067) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{08F2015D-61E9-4252-9355-AB8D15C73C96} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2956110) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{488CDF0A-098C-4CF5-8552-DA5F2F7B7829} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2984938) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{E359D786-B101-4545-B8AB-8652323CF3CA} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2984943) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{800D1A82-D1B0-4ED4-89B4-C666B570ABA5} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2986253) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{1EBDB402-7B61-4224-994D-6882DC69F493} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB3085549) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{8D2CDFAB-0079-43CC-A289-2F7A67F0A4DE} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB3213641) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{F5E44FF6-5802-4FCC-B0CA-6C2C0C455CA3} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB4011656) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {90120000-006E-0409-0000-0000000FF1CE}HOMESTUDENTR{DF5328AC-F010-4FD4-87F1-B0BEA5922D05} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB4011715) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{8711951B-FD11-4309-BD11-8A19551CEBC9} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB4 - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{5C007116-E724-483B-BE67-870B5DB121A5} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB4 - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{60463207-1C72-43FF-BE7E-E8E3A23FB756} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB4018353) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{59859CCA-ECF5-407F-801A-99C0AA65DD92} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Editi - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{8F311D6C-D8DD-4C32-9457-1A129CABD1A5} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office OneNote 2007 (KB3114456) 32-Bit Editio - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{E0F25378-0690-4F53-998A-F5D63412BBD7} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office OneNote 2007 (KB3191829) 32-Bit Editio - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{0FC61568-EC6B-4C62-ACAB-CA311D7A91FC} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edi - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{0EF0D4FB-BB23-4515-AAEA-1240AC2DA525} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB3213642) 32-Bit Edi - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{81769578-260D-428A-90BD-BDC1AD58061A} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB2596915) 32-Bit E - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{7FE99CC2-FBE5-422F-A6FB-49E0D8AFE919} [Unsigned] =>.Microsoft O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB4018355) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{6C57A6AB-7AEC-47A2-BDA9-B157361F37DE} [Unsigned] =>.Microsoft O42 - Logiciel: Shark007 STANDARD Codecs - (.Shark007.) [HKLM][64Bits] – {898E81AD-6DB9-4750-866B-B8958C5DC7AA} [Unsigned] =>.Shark007 O42 - Logiciel: Shark007 STANDARD x64Components - (.Shark007.) [HKLM][64Bits] – STANDARD x64Components_is1 [Unsigned] =>.Shark007 O42 - Logiciel: Skype version 8.90 - (.Skype Technologies S.A..) [HKLM][64Bits] – Skype_is1 =>.Skype Software Sarl� O42 - Logiciel: Skype™ 7.25 - (.Skype Technologies S.A..) [HKLM][64Bits] – {FC965A47-4839-40CA-B618-18F486F042C6} [Unsigned] =>.Skype Technologies S.A. O42 - Logiciel: Spiral Knights - (.Grey Havens, LLC.) [HKLM][64Bits] – Steam App 99900 =>.Valve Corp.� O42 - Logiciel: Spotify - (.Spotify AB.) [HKCU][64Bits] – Spotify {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify AB O42 - Logiciel: Spotify - (.Spotify AB.) [HKLM][64Bits] – Spotify =>.Spotify AB� O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] – Steam =>.Valve� O42 - Logiciel: Surfshark - (.Surfshark.) [HKLM][64Bits] – {3B27DD8D-8F47-48FD-BB58-EE243B81359A} [Unsigned] =>.Surfshark (Hidden) O42 - Logiciel: Surfshark - (.Surfshark.) [HKLM][64Bits] – Surfshark 4.4.1999 {7C3DB25748949CFC8DD57D82}. =>.Surfshark O42 - Logiciel: Surfshark TAP Driver Windows - (.Surfshark.) [HKLM][64Bits] – {56142B6D-2B61-4BDC-A607-B06CB18FE179} [Unsigned] =>.Surfshark O42 - Logiciel: Surfshark TAP Driver Windows - (.Surfshark.) [HKLM][64Bits] – {A270BA60-BE4B-44CE-A208-1028297B65C1} [Unsigned] =>.Surfshark O42 - Logiciel: Surfshark TAP Driver Windows - (.Surfshark.) [HKLM][64Bits] – {D416A6E6-F990-42CF-A790-8F9179762F34} [Unsigned] =>.Surfshark O42 - Logiciel: Surfshark TUN Driver Windows - (.Surfshark.) [HKLM][64Bits] – {72639F74-7F85-40B8-98B8-9CB339BC701A} [Unsigned] =>.Surfshark O42 - Logiciel: Sword and Fairy 4 - (.SOFTSTAR TECHNOLOGY(SHANGHAI).) [HKLM][64Bits] – Steam App 1621680 =>.Valve Corp.� O42 - Logiciel: Sword and Fairy: Original Soundtrack Collection - (.SOFTSTAR Entertainment.) [HKLM][64Bits] – Steam App 1557570 =>.Valve Corp.� O42 - Logiciel: Symbaloo - (.Symbaloo Launcher by Toshiba Europe GmbH.) [HKLM][64Bits] – Symbaloo [Unsigned] =>.Symbaloo Launcher by Toshiba Europe GmbH O42 - Logiciel: System Checkup - (.iolo technologies, LLC.) [HKLM][64Bits] – {78B3977C-FE07-4D6C-8ECB-614482F24494} [Unsigned] =>.iolo technologies, LLC O42 - Logiciel: Team Explorer for Microsoft Visual Studio 2015 Update 3 CTP1 - (.Microsoft.) [HKLM][64Bits] – {C0402801-37B7-30B1-A678-AE3E73E4C4F6} [Unsigned] =>.Microsoft (Hidden) O42 - Logiciel: TeamViewer - (.TeamViewer.) [HKLM][64Bits] – TeamViewer [Unsigned] =>.TeamViewer O42 - Logiciel: Telegram Desktop - (.Telegram FZ-LLC.) [HKCU][64Bits] – {53F49750-6209-4FBF-9CA8-7A333C87D1ED}is1 [Unsigned] =>.Telegram FZ-LLC O42 - Logiciel: Test Tools for Microsoft Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] – {9EABBFE1-7EED-47D9-8FB8-21D7E4808057} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Tools for .Net 3.5 - (.Microsoft Corporation.) [HKLM][64Bits] – {1690CE56-2231-4E59-9006-A0876D949EA8} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: TOSHIBA Audio Enhancement - (.Toshiba Corporation.) [HKLM][64Bits] – {1515F5E3-29EA-4CD1-A981-032D88880F09} [Unsigned] =>.Toshiba Corporation O42 - Logiciel: TOSHIBA eco Utility - (.Toshiba Corporation.) [HKLM][64Bits] – {72EFCFA8-3923-451D-AF52-7CE9D87BC2A1} [Unsigned] =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Manuals - (.TOSHIBA.) [HKLM][64Bits] – {90FF4432-21B7-4AF6-BA6E-FB8C1FED9173} =>.TOSHIBA CORPORATION� O42 - Logiciel: TOSHIBA PC Diagnostic Tool - (.TOSHIBA Corporation.) [HKLM][64Bits] – {2C38F661-26B7-445D-B87D-B53FE2D3BD42} [Unsigned] =>.Toshiba Corporation (Hidden) O42 - Logiciel: TOSHIBA PC Diagnostic Tool - (.TOSHIBA Corporation.) [HKLM][64Bits] – InstallShield{2C38F661-26B7-445D-B87D-B53FE2D3BD42} [Unsigned] =>.Toshiba Corporation O42 - Logiciel: TOSHIBA Recovery Media Creator - (.Toshiba Corporation.) [HKLM][64Bits] – {B65BBB06-1F8E-48F5-8A54-B024A9E15FDF} =>.TOSHIBA CORPORATION� O42 - Logiciel: TOSHIBA Service Station - (.Toshiba Corporation.) [HKLM][64Bits] – {1404E6C5-5E3A-48D5-BE44-8C63CFB2A7C9} [Unsigned] =>.Toshiba Corporation O42 - Logiciel: TOSHIBA System Driver - (.Toshiba Corporation.) [HKLM][64Bits] – {1E6A96A1-2BAB-43EF-8087-30437593C66C} [Unsigned] =>.Toshiba Corporation O42 - Logiciel: Trusteer Endpoint Protection - (.Trusteer.) [HKLM][64Bits] – Rapport_msi [Unsigned] =>.Trusteer O42 - Logiciel: TypeScript Power Tool - (.Microsoft Corporation.) [HKLM][64Bits] – {465ACA24-B8D6-4FEC-A42D-9EFCB92CD560} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: TypeScript Tools for Microsoft Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] – {BDB33BE7-73D0-4C02-A576-78FD17C95A8D} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: UCheck version 4.5.2.0 - (.Adlice Software.) [HKLM][64Bits] – C4E7EE54-826F-41C4-BE3C-375CC70DC1D8_is1 =>.ADLICE� O42 - Logiciel: Unity - (.Unity Technologies ApS.) [HKLM][64Bits] – Unity =>.Unity Technologies SF� O42 - Logiciel: Unity Web Player (x64) (All users) - (.Unity Technologies ApS.) [HKLM][64Bits] – UnityWebPlayer [Unsigned] =>.Unity Technologies ApS O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{C444285D-5E4F-48A4-91DD-47AAAA68E92D} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office 2007 Help for Common Features (KB963673) - (.Microsoft.) [HKLM][64Bits] – {90120000-006E-0409-0000-0000000FF1CE}HOMESTUDENTR{AB365889-0395-4FAD-B702-CA5985D53D42} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{A024FC7B-77DE-45DE-A058-1C049A17BFB3} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {90120000-006E-0409-0000-0000000FF1CE}HOMESTUDENTR{02206DCC-0CAF-46BB-8EDC-6C281AA21EFA} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{02206DCC-0CAF-46BB-8EDC-6C281AA21EFA} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2965286) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{7C3337E5-1294-4270-A64F-DCEF812159E5} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office 2007 suites (KB3213646) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {90120000-006E-0409-0000-0000000FF1CE}HOMESTUDENTR{7F843484-AE8C-497D-BC63-1F40955FF85E} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office 2007 suites (KB3213649) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] – {91120000-002F-0000-0000-0000000FF1CE}HOMESTUDENTR{E39085A9-74AC-465D-8240-E7AF57F3BA44} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office Excel 2007 Help (KB963678) - (.Microsoft.) [HKLM][64Bits] – {90120000-0016-0409-0000-0000000FF1CE}HOMESTUDENTR{199DF7B6-169C-448C-B511-1054101BE9C9} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office OneNote 2007 Help (KB963670) - (.Microsoft.) [HKLM][64Bits] – {90120000-00A1-0409-0000-0000000FF1CE}HOMESTUDENTR{2744EF05-38E1-4D5D-B333-E021EDAEA245} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office Powerpoint 2007 Help (KB963669) - (.Microsoft.) [HKLM][64Bits] – {90120000-0018-0409-0000-0000000FF1CE}HOMESTUDENTR{397B1D4F-ED7B-4ACA-A637-43B670843876} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office Script Editor Help (KB963671) - (.Microsoft.) [HKLM][64Bits] – {90120000-006E-0409-0000-0000000FF1CE}HOMESTUDENTR{CD11C6A2-FFC6-4271-8EAB-79C3582F505C} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Office Word 2007 Help (KB963665) - (.Microsoft.) [HKLM][64Bits] – {90120000-001B-0409-0000-0000000FF1CE}HOMESTUDENTR{80E762AA-C921-4839-9D7D-DB62A72C0726} [Unsigned] =>.Microsoft O42 - Logiciel: Update for Microsoft Visual Studio 2015 (KB3165756) - (.Microsoft Corporation.) [HKLM][64Bits] – {5893a8f9-bc5b-4e68-97ee-1e86a780f0dd} =>.Microsoft� O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB4480730) - (.Microsoft Corporation.) [HKLM][64Bits] – {3BAE4496-6F6C-4330-A8AA-B93D3D346FA5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB5001716) - (.Microsoft Corporation.) [HKLM][64Bits] – {B652B695-C849-4EF2-B09A-72771C7AD2BA} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: UpdateAssistant - (.Microsoft Corporation.) [HKLM][64Bits] – {F339C545-24DC-4870-AA32-6EB6B0500B95} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: VdhCoApp 1.3.0 - (.DownloadHelper.) [HKLM][64Bits] – weh-iss-net.downloadhelper.coapp_is1 [Unsigned] =>.DownloadHelper O42 - Logiciel: Visual C++ Compiler/Tools X86 Base Package - (.Microsoft Corporation.) [HKLM][64Bits] – {7BC93EE9-44F1-3783-AD76-F6BD6C8F6B58} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ Compiler/Tools X86 Base Package - (.Microsoft Corporation.) [HKLM][64Bits] – {BFEC9D45-BAD4-3D7C-B6A7-887D21E6C25A} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ Compiler/Tools X86 Base Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {62505F19-7D2A-3FD0-B1A2-D8E2FA2F96B3} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ Compiler/Tools X86 Base Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {85658238-483F-3148-967E-ECD533AE6FE7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Base Package - (.Microsoft Corporation.) [HKLM][64Bits] – {0A002F88-FD5D-379B-A350-A25D84AF128B} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Base Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {A3CF57ED-FFD1-3AC4-B9D7-90069B2B5EDA} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Base Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {DC3240BB-9136-3978-8EF3-F041ACEA11BF} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Common Package - (.Microsoft Corporation.) [HKLM][64Bits] – {BD5A23D6-1E9F-3378-89CF-E96908078D53} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Common Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {EFE03B21-A8A5-3CCD-81BD-7FC47007F1BA} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Package - (.Microsoft Corporation.) [HKLM][64Bits] – {01AC157E-26F2-393E-8B91-3FEBD41A4E5D} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {0FDFB80D-91E1-36F1-B523-0B90421FDDC1} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {1D958A62-C980-3CB7-AC59-40EF0D1FA80E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {1DC85000-B0F8-325F-AD01-2770D36517D5} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {2FEE4EBD-CEB0-3E26-9405-CF0D812CFA3C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {33DA2215-AF20-3F21-A171-57F0533A5CAF} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {43027679-FD40-32E6-A9F0-7BB3CDEBE416} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {49D4D4E2-21E8-3346-A496-1A1415B18594} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {4E61EF40-8A51-3D99-AA4C-32F203370083} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {5130318D-7FEA-35E6-927D-01368910BDFC} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {66DA8EAA-D4CD-30DC-B993-0EDF728ED1F6} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {B2321364-E928-325D-A954-933D35239BE5} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {D1201DF3-F934-342A-A586-2B255CB8B215} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {D209BFE9-3EDA-3606-AF6B-DCADA87A2285} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Core Professional Plus Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {D9CE69E8-D77A-3C94-A910-641622794ED4} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Debugger Package - (.Microsoft Corporation.) [HKLM][64Bits] – {26EFB5DE-50E2-3961-AE7A-15BC0FAAF208} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Debugger Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {E20C5867-063A-36FF-B630-A9C96CE5D8AF} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE Professional Core Package - (.Microsoft Corporation.) [HKLM][64Bits] – {C67257E4-F24C-3C35-86BB-E9B7D5D4D9FB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ IDE x64 Package - (.Microsoft Corporation.) [HKLM][64Bits] – {60DED060-0B6B-3CC1-B955-D0CD401F0FBA} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ Library PGO X86 Package - (.Microsoft Corporation.) [HKLM][64Bits] – {023FCA1D-E591-3AF9-9D2F-9876639A511A} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ MSBuild ARM Package - (.Microsoft Corporation.) [HKLM][64Bits] – {51547499-4A12-3CC6-AE3D-3C5E87D72909} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ MSBuild Base Package - (.Microsoft Corporation.) [HKLM][64Bits] – {35433594-85A3-3EEA-963E-0E5E860B82D6} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ MSBuild Base Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {D073E568-C258-381C-B9DB-965434B1DF53} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ MSBuild X64 Package - (.Microsoft Corporation.) [HKLM][64Bits] – {EE527713-BE8A-348A-8854-DACBCE5316F2} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual C++ MSBuild X86 Package - (.Microsoft Corporation.) [HKLM][64Bits] – {8CB498C5-672B-3F6C-9143-84B0BBC1EAB3} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual Studio 2012 Verification SDK - (.Microsoft Corporation.) [HKLM][64Bits] – {A3BCFD43-58D6-3132-A7DF-16CE04672372} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual Studio 2015 Prerequisites - (.Microsoft Corporation.) [HKLM][64Bits] – {DF32E41C-24AD-4A87-B43A-B38553B1806E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual Studio 2015 Prerequisites - ENU Language Pack - (.Microsoft Corporation.) [HKLM][64Bits] – {83B181F2-20B8-4F00-8E71-C66E951A8D4F} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Visual Studio 2015 Update 3 (KB3022398) - (.Microsoft Corporation.) [HKLM][64Bits] – {7a68448b-9cf2-4049-bd73-5875f1aa7ba2} =>.Microsoft� O42 - Logiciel: Visual Studio Graphics Analyzer - (.Microsoft Corporation.) [HKLM][64Bits] – {8C26982F-B345-3C87-8D17-5E88ADDAFFF6} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] – VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: VS Update core components - (.Microsoft Corporation.) [HKLM][64Bits] – {5C946395-4D29-3274-A47D-B77D4B10E126} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: vs_update3notification - (.Microsoft Corporation.) [HKLM][64Bits] – {B5BE6171-568A-3657-90CD-A76BEC01F62D} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Wacom Tablet - (.Wacom Technology Corp..) [HKLM][64Bits] – Wacom Tablet Driver =>.Wacom Technology Corporation� O42 - Logiciel: WCF Data Services 5.6.4 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] – {DB85E7BD-B2DD-43D4-B3C0-23D7B527B597} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: WCF Data Services Tools for Microsoft Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] – {0A3B508E-5638-4471-BCC9-954E1868CB86} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: WebTablet FB Plugin 32 bit - (.Wacom Technology Corp..) [HKLM][64Bits] – Wacom WebTabletPlugin for Internet Explorer and Netscape [Unsigned] =>.Wacom Technology Corp. O42 - Logiciel: WebTablet FB Plugin 64 bit - (.Wacom Technology Corp..) [HKLM][64Bits] – Wacom WebTabletPlugin for Internet Explorer and Netscape [Unsigned] =>.Wacom Technology Corp. O42 - Logiciel: WhoCrashed 7.01 - (.Resplendence Software Projects Sp..) [HKLM][64Bits] – WhoCrashed_is1 [Unsigned] =>.Resplendence Software Projects Sp. O42 - Logiciel: Windows Driver Package - Microsoft PS Vita Type B (02/22/2013 6.1.7600.1638 - (.Microsoft.) [HKLM][64Bits] – A0EC80B5719D4DA4CF40C9219D7CB9CCAD6DBA40 =>.Microsoft Windows� O42 - Logiciel: Windows Espc Package - (.Microsoft Corporation.) [HKLM][64Bits] – {42AF2A8C-6EBB-3D2E-9BF1-6135379FBABC} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Windows Espc Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] – {FC94D188-1E08-3707-9D23-F41178D44664} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Windows Phone SDK 8.0 Assemblies for Visual Studio 2015 - (.Microsoft Corporation.) [HKLM][64Bits] – {44474AE7-7770-3676-AC63-C9DDD15011FF} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Windows Setup Remediations (x64) (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] – {5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Windows Software Development Kit DirectX x64 Remote - (.Microsoft Corporation.) [HKLM][64Bits] – {5247E16E-BCF8-95AB-1653-B3F8FBF8B3F1} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Windows Software Development Kit DirectX x86 Remote - (.Microsoft Corporation.) [HKLM][64Bits] – {A1CB8286-CFB3-A985-D799-721A0F2A27F3} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Windows Software Development Kit for Windows Store Apps DirectX x64 Remote - (.Microsoft Corporation.) [HKLM][64Bits] – {96F4525A-470D-F15C-796E-58D9988C3E5F} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Windows Software Development Kit for Windows Store Apps DirectX x86 Remote - (.Microsoft Corporation.) [HKLM][64Bits] – {56AD3004-0B49-967F-F682-B05650B61A78} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: WinRAR 6.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] – WinRAR archiver =>.win.rar GmbH� O42 - Logiciel: Youtube Downloader HD v. 4.4.2 - (.YoutubeDownloaderHD.com.) [HKLM][64Bits] – Youtube Downloader HD_is1 [Unsigned] =>.YoutubeDownloaderHD.com O42 - Logiciel: Yu-Gi-Oh! Master Duel - (.Konami Digital Entertainment.) [HKLM][64Bits] – Steam App 1449850 =>.Valve Corp.� O42 - Logiciel: Zoom - (.Zoom Video Communications, Inc..) [HKCU][64Bits] – ZoomUMX {02009F3FD86C9A6051C97108379B1201}. =>.Zoom Video Communications, Inc. O42 - Logiciel: 古剑奇谭(GuJian) - (.上海烛龙信息科技有限公司.) [HKLM][64Bits] – Steam App 570780 =>.Valve Corp.� O42 - Logiciel: 古剑奇谭二(GuJian2) - (.上海烛龙信息科技有限公司.) [HKLM][64Bits] – Steam App 570770 =>.Valve Corp.� —\ HKCU & HKLM Software Keys (280) - 469s HKLM\SOFTWARE\Wow6432Node\pandasecuritytb =>.SUP.VisicomMedia HKLM\SOFTWARE\pandasecuritytb =>.SUP.VisicomMedia HKLM\SOFTWARE\POLICIES\Mozilla\Firefox =>.SUP.FirefoxRestriction HKLM\SOFTWARE\7-Zip =>.Igor Pavlov HKLM\SOFTWARE\Ada2 HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\AE Protection =>.Legitimate HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\Ashampoo =>.Ashampoo HKLM\SOFTWARE\AVAST Software =>.AVAST Software HKLM\SOFTWARE\BandiMPEG1 =>.Bandisoft HKLM\SOFTWARE\BlueStacks =>.BlueStack Systems, Inc. HKLM\SOFTWARE\BlueStacksInstaller =>.BlueStack Systems, Inc. HKLM\SOFTWARE\Chromium =>.Chromium HKLM\SOFTWARE\Cnxt_Uiu_Parms =>.Conexant Systems, Inc. HKLM\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Dell =>.Dell HKLM\SOFTWARE\DownloadHelper =>.DownloadHelper HKLM\SOFTWARE\DriverSupport =>PUP.Optional.DriverSupport HKLM\SOFTWARE\DRWNewFree =>.EaseUS Software HKLM\SOFTWARE\DTS =>.Creative Technology HKLM\SOFTWARE\Dynabook =>.Legitimate HKLM\SOFTWARE\EASEUS =>.EaseUS Software HKLM\SOFTWARE\FileZilla 3 =>.FileZilla HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\HitmanPro =>.EIDOS hitman Game HKLM\SOFTWARE\Icaros =>.Icaros HKLM\SOFTWARE\IM Providers =>.IM Providers HKLM\SOFTWARE\InstalledOptions =>.Installed Options HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Intel Security =>.Intel Security HKLM\SOFTWARE\IntelVolatile =>.Intel Corporation HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Krita HKLM\SOFTWARE\launcher HKLM\SOFTWARE\Logitech =>.Logitech HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\mcafeeupdater =>.McAfee Inc. HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\MRAC HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\panda_url_filtering =>SUP.Optional.StartSearch HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\SCU HKLM\SOFTWARE\SRS Labs =>.SRS Labs HKLM\SOFTWARE\Toshiba =>.Toshiba Corporation HKLM\SOFTWARE\Toshiba Tempro =>.Toshiba Corporation HKLM\SOFTWARE\ToshibaBlobDelivery =>.Toshiba Corporation HKLM\SOFTWARE\TrueKey =>.Intel Corporation HKLM\SOFTWARE\UIU =>.Legitimate HKLM\SOFTWARE\Unity =>.Unity HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\Wacom =>.Wacom HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\AceBIT =>.AceBIT HKLM\SOFTWARE\WOW6432Node\ActiveOptimization HKLM\SOFTWARE\WOW6432Node\Ada2 HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\AGEIA Technologies =>.AGEIA Technologies HKLM\SOFTWARE\WOW6432Node\Amazon =>.Amazon HKLM\SOFTWARE\WOW6432Node\AppDataLow =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\WOW6432Node\Ashampoo =>.Ashampoo HKLM\SOFTWARE\WOW6432Node\Avast =>.Avast Software s.r.o HKLM\SOFTWARE\WOW6432Node\AVAST Software =>.AVAST Software HKLM\SOFTWARE\WOW6432Node\BandiMPEG1 =>.Bandisoft HKLM\SOFTWARE\WOW6432Node\BraveSoftware =>.Brave Software Inc. HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon HKLM\SOFTWARE\WOW6432Node\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\WOW6432Node\Dropbox =>.Dropbox HKLM\SOFTWARE\WOW6432Node\DropboxUpdate =>.Dropbox Inc. HKLM\SOFTWARE\WOW6432Node\DTS =>.Creative Technology HKLM\SOFTWARE\WOW6432Node\DTS, Inc. =>.DTS, Inc. HKLM\SOFTWARE\WOW6432Node\EasyAntiCheat =>.EasyAntiCheat HKLM\SOFTWARE\WOW6432Node\FFOnline HKLM\SOFTWARE\WOW6432Node\FileZilla 3 =>.FileZilla HKLM\SOFTWARE\WOW6432Node\Gameforge4d =>.ZemiInteractive Ltd HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\WOW6432Node\Icaros =>.Icaros HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\WOW6432Node\InstallShield =>.InstallShield HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Intel Security =>.Intel Security HKLM\SOFTWARE\WOW6432Node\IObit =>.IObit HKLM\SOFTWARE\WOW6432Node\iTop Screen Recorder HKLM\SOFTWARE\WOW6432Node\iTop VPN HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Lake =>.Lake Sofware HKLM\SOFTWARE\WOW6432Node\Lame For Audacity =>.Audacity HKLM\SOFTWARE\WOW6432Node\Malwarebytes’ Anti-Malware =>.Malwarebytes’ Anti-Malware HKLM\SOFTWARE\WOW6432Node\Martin Prikryl =>.Martin Prikryl HKLM\SOFTWARE\WOW6432Node\McAfee =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\McAfee NGI =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\mcafeeupdater =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\MOh3iXFrKcal Updater HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\NuGet =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\OpenAL =>.Open Audio Library HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge HKLM\SOFTWARE\WOW6432Node\Overwolf =>.Overwolf HKLM\SOFTWARE\WOW6432Node\Panda Software =>.Panda Software HKLM\SOFTWARE\WOW6432Node\Perfect World Entertainment =>.Perfect World Entertainment HKLM\SOFTWARE\WOW6432Node\Phoenix360 =>.Iolo Technologies HKLM\SOFTWARE\WOW6432Node\Piriform =>.Piriform HKLM\SOFTWARE\WOW6432Node\PreEmptive Solutions =>.PreEmptive Solutions HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\retirweRPH HKLM\SOFTWARE\WOW6432Node\RocketLife =>.RocketLife HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype HKLM\SOFTWARE\WOW6432Node\Sony Corporation =>.Sony Corporation HKLM\SOFTWARE\WOW6432Node\SRS Labs =>.SRS Labs HKLM\SOFTWARE\WOW6432Node\Surfshark =>.Surfshark HKLM\SOFTWARE\WOW6432Node\TeamViewer =>.TeamViewer GmbH HKLM\SOFTWARE\WOW6432Node\Toshiba =>.Toshiba Corporation HKLM\SOFTWARE\WOW6432Node\Trusteer =>.Trusteer HKLM\SOFTWARE\WOW6432Node\TVInstallTemp =>.TeamViewer GmbH HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve HKLM\SOFTWARE\WOW6432Node\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\WOW6432Node\Visan =>.Visan Software HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Wacom =>.Wacom HKLM\SOFTWARE\WOW6432Node\Westwood HKLM\SOFTWARE\WOW6432Node\WildTangent =>.WildTangent HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\Adlice Software =>.Adlice Software HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Aeria Games =>.Aeria Games HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\AVAST Software =>.AVAST Software HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKCU\SOFTWARE\BlueStacksInstaller =>.BlueStack Systems, Inc. HKCU\SOFTWARE\BraveSoftware =>.Brave Software Inc. HKCU\SOFTWARE\c1b3adcf-2068-5e8d-b25d-30ce588e3a4c =>Adware.CrossRider HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Dropbox =>.Dropbox HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKCU\SOFTWARE\Elantech =>.Elantech Inc. HKCU\SOFTWARE\ElswordINT =>.ElswordINT HKCU\SOFTWARE\Facebook Inc. =>.Facebook Inc. HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\Geek Uninstaller =>.Geek Uninstaller HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\HWiNFO32 HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\Imagination Technologies =>.Imagination Technologies HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\Intel Security =>.Intel Security HKCU\SOFTWARE\iTop Screen Recorder HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\Konami Digital Entertainment Co., Ltd. =>.Konami Digital Entertainment Co., Ltd. HKCU\SOFTWARE\LAV =>.LAV Inc HKCU\SOFTWARE\Logitech =>.Logitech HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\miHoYo HKCU\SOFTWARE\miHoYoSDK HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\Overwolf =>.Overwolf HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Resplendence Sp =>.Resplendence Software HKCU\SOFTWARE\Sony Corporation =>.Sony Corporation HKCU\SOFTWARE\Spotify =>.Spotify HKCU\SOFTWARE\SquareEnix =>.SquareEnix HKCU\SOFTWARE\SYNCJM =>.SYNCJM HKCU\SOFTWARE\SYSTEMAX Software Development =>.Systemax Software Development HKCU\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKCU\SOFTWARE\TOSHIBA =>.Toshiba Corporation HKCU\SOFTWARE\TrueKey =>.Intel Corporation HKCU\SOFTWARE\Trusteer =>.Trusteer HKCU\SOFTWARE\Unity =>.Unity HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\Visan =>.Visan Software HKCU\SOFTWARE\Wacom =>.Wacom HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\ZoomUMX HKCU\SOFTWARE\AppDataLow\AntiCheatExpert HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU.DEFAULT\SOFTWARE\Adlice Software =>.Adlice Software HKU.DEFAULT\SOFTWARE\Adobe =>.Adobe HKU.DEFAULT\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU.DEFAULT\SOFTWARE\Apple Inc. =>.Apple Inc. HKU.DEFAULT\SOFTWARE\Avast Software =>.AVAST Software HKU.DEFAULT\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKU.DEFAULT\SOFTWARE\Dropbox =>.Dropbox HKU.DEFAULT\SOFTWARE\Google =>.Google HKU.DEFAULT\SOFTWARE\Intel =>.Intel HKU.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc. HKU.DEFAULT\SOFTWARE\Mozilla =>.Mozilla HKU.DEFAULT\SOFTWARE\Netscape =>.Netscape HKU.DEFAULT\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU.DEFAULT\SOFTWARE\Piriform =>.Piriform HKU.DEFAULT\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU.DEFAULT\SOFTWARE\SetID =>.Bitdefender HKU.DEFAULT\SOFTWARE\Trusteer =>.Trusteer HKU.DEFAULT\SOFTWARE\Wacom =>.Wacom HKU.DEFAULT\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\7-Zip =>.Igor Pavlov HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Adlice Software =>.Adlice Software HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Aeria Games =>.Aeria Games HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\AVAST Software =>.AVAST Software HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\BlueStacksInstaller =>.BlueStack Systems, Inc. HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\BraveSoftware =>.Brave Software Inc. HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\c1b3adcf-2068-5e8d-b25d-30ce588e3a4c =>Adware.CrossRider HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Dropbox =>.Dropbox HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\DropboxUpdate =>.Dropbox Inc. HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Elantech =>.Elantech Inc. HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\ElswordINT =>.ElswordINT HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Facebook Inc. =>.Facebook Inc. HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Gabest =>.Gabest HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Geek Uninstaller =>.Geek Uninstaller HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Google =>.Google HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\HWiNFO32 HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Icaros =>.Icaros HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Imagination Technologies =>.Imagination Technologies HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Intel =>.Intel HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Intel Security =>.Intel Security HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\iTop Screen Recorder HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\JavaSoft =>.JavaSoft HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Konami Digital Entertainment Co., Ltd. =>.Konami Digital Entertainment Co., Ltd. HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\LAV =>.LAV Inc HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Logitech =>.Logitech HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\miHoYo HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\miHoYoSDK HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Overwolf =>.Overwolf HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Resplendence Sp =>.Resplendence Software HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Sony Corporation =>.Sony Corporation HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Spotify =>.Spotify HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\SquareEnix =>.SquareEnix HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\SYNCJM =>.SYNCJM HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\SYSTEMAX Software Development =>.Systemax Software Development HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\TOSHIBA =>.Toshiba Corporation HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\TrueKey =>.Intel Corporation HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Trusteer =>.Trusteer HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Unity =>.Unity HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Valve =>.Valve HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Visan =>.Visan Software HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Wacom =>.Wacom HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\ZHP =>.Nicolas Coolman HKU\S-1-5-21-3366790378-2559649480-2858292162-500\SOFTWARE\ZoomUMX —\ Packages (11) - 2s C:\Program Files (x86)\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 - (.Netflix.) [Netflix] =>Netflix C:\Program Files (x86)\WindowsApps\7906AAC0.TruRecorder_2.3.7.0_x86__nvaxck9xhg5vg - (..) C:\Program Files (x86)\WindowsApps\Amazon.com.Amazon_2018.519.2815.0_x64__343d40qqvtj1t - (.Amazon.com.) [Amazon] =>Amazon.com C:\Program Files (x86)\WindowsApps\AMZNMobileLLC.KindleforWindows8_2.1.0.2_neutral__stfe6vwa9jnbp - (..) [Kindle] C:\Program Files (x86)\WindowsApps\CyberLinkCorp.to.PowerMediaPlayerforToshiba_5.0.2006.48358_x86__0nrkv0a31nfem - (.CyberLink Corporation.) [Power Media Player for Toshiba] =>CyberLink Corporation C:\Program Files (x86)\WindowsApps\DolbyLaboratories.DolbyAccess_3.7.337.0_x64__rz1tebttyb220 - (.Dolby Laboratories.) [Dolby Access] =>Dolby Laboratories C:\Program Files (x86)\WindowsApps\DolbyLaboratories.DolbyAtmosforHeadphones_2.3.303.0_x64__rz1tebttyb220 - (.Dolby Laboratories.) [Dolby Atmos for Headphones] =>Dolby Laboratories C:\Program Files (x86)\WindowsApps\eBayInc.eBay_1.6.0.34_neutral__1618n3s9xq8tw - (.eBay, Inc.) [eBay] =>eBay, Inc C:\Program Files (x86)\WindowsApps\EnnovaResearch.ToshibaPlaces_3.2.49.0_x64__3s2an63h56yee - (.Toshiba Corporation.) [My Toshiba] =>Toshiba Corporation C:\Program Files (x86)\WindowsApps\Skyscanner.Skyscanner_1.4.2.0_neutral__623c9he0pwcym - (.Skyscanner.) [Skyscanner] =>Skyscanner C:\Program Files (x86)\WindowsApps\TripAdvisorLLC.TripAdvisorHotelsFlightsRestaurants_1.5.10.0_x64__qj0v5chwq8f2g - (.TripAdvisor LLC.) [TripAdvisor Hotels Flights Restaurants] =>TripAdvisor LLC —\ Contents of the Common Files folders (477) - 172s O43 - CFD: 04/02/2022 - D – C:\Program Files\7-Zip =>.Igor Pavlov O43 - CFD: 25/03/2022 - D – C:\Program Files\Adobe =>.Adobe Inc.� O43 - CFD: 28/10/2022 - D – C:\Program Files\AVAST Software =>.Avast Software s.r.o.� O43 - CFD: 23/06/2022 - D – C:\Program Files\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 31/10/2022 - [0] D – C:\Program Files\Bonjour =>.Apple Inc. O43 - CFD: 08/11/2022 - AD – C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 26/01/2022 - D – C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 02/01/2020 - D – C:\Program Files\CONEXANT =>.Conexant Systems, Inc. O43 - CFD: 07/12/2019 - D – C:\Program Files\CUAssistant =>.Microsoft� O43 - CFD: 25/10/2020 - D – C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 21/07/2017 - D – C:\Program Files\EaseUS =>.EaseUS Software O43 - CFD: 28/10/2022 - [0] D – C:\Program Files\Easeware =>.Easeware O43 - CFD: 02/01/2020 - D – C:\Program Files\Elantech =>.ELAN Microelectronics Corporation� O43 - CFD: 06/07/2021 - D – C:\Program Files\FileZilla FTP Client =>.Tim Kosse O43 - CFD: 12/05/2022 - D – C:\Program Files\Genshin Impact {0111C69A751AB53D0C4C4D18B9ED0A00}. O43 - CFD: 29/06/2016 - AD – C:\Program Files\GIMP 2 =>.Jernej Simoncic� O43 - CFD: 23/06/2022 - D – C:\Program Files\Google =>.Google LLC� O43 - CFD: 03/08/2017 - AD – C:\Program Files\HitmanPro =>.EIDOS hitman Game O43 - CFD: 13/04/2021 - D – C:\Program Files\HP =>.Hewlett-Packard O43 - CFD: 02/01/2020 - AD – C:\Program Files\IIS =>.Microsoft Corporation O43 - CFD: 02/01/2020 - D – C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 03/08/2016 - D – C:\Program Files\Intel Corporation =>.Intel Corporation O43 - CFD: 29/06/2016 - D – C:\Program Files\Intel Security =>.Intel Corporation O43 - CFD: 14/07/2021 - D – C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 10/10/2022 - D – C:\Program Files\iTop Screen Recorder =>.ORANGE VIEW LIMITED� O43 - CFD: 15/09/2022 - D – C:\Program Files\Krita (x64) [Unsigned] O43 - CFD: 21/07/2017 - D – C:\Program Files\Logitech =>.Logitech Inc� O43 - CFD: 11/10/2022 - D – C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 16/04/2021 - D – C:\Program Files\MBTunnel O43 - CFD: 12/04/2022 - D – C:\Program Files\Microsoft =>.Microsoft Corporation O43 - CFD: 10/08/2016 - D – C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 09/10/2019 - D – C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation O43 - CFD: 16/05/2019 - AD – C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 01/07/2016 - D – C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 01/07/2016 - AD – C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 09/03/2022 - D – C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation O43 - CFD: 01/07/2016 - D – C:\Program Files\Microsoft Visual Studio 12.0 =>.Pinnacle Systems, Inc. O43 - CFD: 19/03/2019 - [0] D – C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation O43 - CFD: 23/09/2022 - D – C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 02/01/2020 - D – C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 25/02/2020 - D – C:\Program Files\net.downloadhelper.coapp [Unsigned] O43 - CFD: 25/10/2020 - D – C:\Program Files\Qcma [Unsigned] O43 - CFD: 02/04/2021 - AD – C:\Program Files\Recuva =>.Piriform O43 - CFD: 02/01/2020 - D – C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 03/01/2020 - AD – C:\Program Files\rempl =>.Microsoft Corporation O43 - CFD: 07/11/2022 - D – C:\Program Files\RogueKiller =>.Adlice Software O43 - CFD: 18/08/2021 - D – C:\Program Files\ruxim =>.Microsoft� O43 - CFD: 28/05/2020 - D – C:\Program Files\Shark007 =>.Shark007 O43 - CFD: 29/12/2020 - D – C:\Program Files\Surfshark =>.Surfshark O43 - CFD: 06/10/2016 - D – C:\Program Files\Tablet =>.Wacom Technology Corporation� O43 - CFD: 30/06/2016 - D – C:\Program Files\TabletPlugins =>.Wacom Technology O43 - CFD: 27/10/2022 - D – C:\Program Files\TOSHIBA =>.Toshiba Corporation O43 - CFD: 12/09/2021 - D – C:\Program Files\TrueKey =>.Intel Corporation O43 - CFD: 07/11/2022 - D – C:\Program Files\UCheck =>.Adlice Software O43 - CFD: 20/05/2017 - [0] HD – C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 01/07/2016 - D – C:\Program Files\Unity =>.Unity O43 - CFD: 30/05/2020 - AD – C:\Program Files\UNP =>.Microsoft Corporation O43 - CFD: 29/06/2016 - D – C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 25/03/2022 - D – C:\Program Files\WhoCrashed =>.Resplendence Software O43 - CFD: 14/07/2021 - D – C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 14/07/2021 - D – C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation O43 - CFD: 12/02/2021 - D – C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 14/07/2021 - D – C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 19/03/2019 - D – C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 19/03/2019 - D – C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 14/07/2021 - D – C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 19/03/2019 - D – C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 19/03/2019 - D – C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 19/03/2019 - SHD – C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 12/09/2021 - HD – C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 19/03/2019 - D – C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 14/03/2022 - D – C:\Program Files\WinRAR =>.win.rar GmbH� O43 - CFD: 09/10/2019 - AD – C:\Program Files\WinZip =>.WinZip Computing LLC� O43 - CFD: 25/03/2022 - [0] D – C:\Program Files (x86)\Adobe =>.Adobe O43 - CFD: 01/07/2016 - D – C:\Program Files (x86)\AppInsights =>.Microsoft Corporation O43 - CFD: 07/07/2021 - D – C:\Program Files (x86)\Apple Software Update =>.Apple Inc. O43 - CFD: 17/10/2016 - D – C:\Program Files (x86)\Ashampoo =>.Ashampoo GmbH O43 - CFD: 17/10/2022 - AD – C:\Program Files (x86)\Audacity =>.Audacity O43 - CFD: 30/08/2022 - D – C:\Program Files (x86)\AVAST Software {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O43 - CFD: 18/07/2016 - D – C:\Program Files (x86)\BandiMPEG1 =>.Bandisoft O43 - CFD: 09/10/2019 - D – C:\Program Files (x86)\Blacklight Retribution_en {28229DB87B1D0591EEADF2A183F42AB2}. O43 - CFD: 22/01/2020 - D – C:\Program Files (x86)\BraveSoftware =>.Brave Software Inc. O43 - CFD: 25/05/2022 - D – C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 28/12/2015 - D – C:\Program Files (x86)\CyberLink =>.CyberLink Corporation O43 - CFD: 05/11/2018 - D – C:\Program Files (x86)\Driver Support {7D81783CDFC41FF7C4DA6D061A3840D4}. =>PUP.Optional.DriverSupport O43 - CFD: 05/11/2022 - D – C:\Program Files (x86)\Dropbox =>.Dropbox, Inc� O43 - CFD: 28/12/2015 - D – C:\Program Files (x86)\DTS, Inc =>.DTS, Inc.� O43 - CFD: 24/01/2021 - D – C:\Program Files (x86)\EasyAntiCheat =>.EasyAntiCheat O43 - CFD: 28/12/2015 - D – C:\Program Files (x86)\eBay =>.eBay O43 - CFD: 17/02/2017 - D – C:\Program Files (x86)\EYEDENTITY GAMES [Unsigned] =>.Eyedentity Games O43 - CFD: 17/08/2022 - D – C:\Program Files (x86)\FLV to AVI Video Converter [Unsigned] O43 - CFD: 09/10/2019 - D – C:\Program Files (x86)\Forsaken World_en =>.RSA Security O43 - CFD: 28/11/2016 - D – C:\Program Files (x86)\Games =>.Microsoft Corporation O43 - CFD: 08/11/2022 - D – C:\Program Files (x86)\Google =>.Google Inc� O43 - CFD: 02/08/2016 - D – C:\Program Files (x86)\GtkSharp =>.Xamarin, Inc O43 - CFD: 16/05/2017 - D – C:\Program Files (x86)\GUMF1BA.tmp =>.Google Inc� O43 - CFD: 13/04/2021 - D – C:\Program Files (x86)\HP =>.Hewlett-Packard O43 - CFD: 13/04/2021 - D – C:\Program Files (x86)\HP Photo Creations =>.Visan Industries� O43 - CFD: 01/07/2016 - D – C:\Program Files (x86)\IIS =>.Microsoft Corporation O43 - CFD: 22/03/2022 - HD – C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 16/05/2019 - D – C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 28/12/2015 - D – C:\Program Files (x86)\Intel Corporation =>.Intel Corporation O43 - CFD: 14/07/2021 - D – C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 29/10/2022 - D – C:\Program Files (x86)\IObit =>.IObit O43 - CFD: 08/11/2022 - D – C:\Program Files (x86)\iTop VPN {0148CA714AC06F07D2FD2C38F6612063}. O43 - CFD: 11/07/2016 - D – C:\Program Files (x86)\Jade Dynasty_en [Unsigned] O43 - CFD: 06/08/2017 - AD – C:\Program Files (x86)\JPEG Repair PRO =>.SoftOrbits� O43 - CFD: 29/08/2022 - D – C:\Program Files (x86)\Kamo =>.Piriform Software Ltd� O43 - CFD: 05/08/2016 - AD – C:\Program Files (x86)\Lame For Audacity =>.Audacity O43 - CFD: 22/02/2017 - D – C:\Program Files (x86)\McAfee =>.McAfee O43 - CFD: 03/08/2022 - D – C:\Program Files (x86)\Microsoft =>.Microsoft Corporation O43 - CFD: 01/07/2016 - D – C:\Program Files (x86)\Microsoft Help Viewer =>.Microsoft Corporation O43 - CFD: 04/11/2022 - AD – C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 01/07/2016 - D – C:\Program Files (x86)\Microsoft Office365 Tools =>.Microsoft Corporation O43 - CFD: 01/07/2016 - AD – C:\Program Files (x86)\Microsoft SDKs =>.Microsoft Corporation O43 - CFD: 16/05/2019 - D – C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 01/07/2016 - AD – C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 01/07/2016 - D – C:\Program Files (x86)\Microsoft SQL Server Compact Edition =>.Microsoft Corporation O43 - CFD: 03/01/2020 - D – C:\Program Files (x86)\Microsoft Visual Studio 11.0 =>.Pinnacle Systems, Inc. O43 - CFD: 03/01/2020 - D – C:\Program Files (x86)\Microsoft Visual Studio 12.0 =>.Pinnacle Systems, Inc. O43 - CFD: 03/01/2020 - AD – C:\Program Files (x86)\Microsoft Visual Studio 14.0 =>.Pinnacle Systems, Inc. O43 - CFD: 01/07/2016 - D – C:\Program Files (x86)\Microsoft WCF Data Services =>.Microsoft Corporation O43 - CFD: 11/08/2016 - D – C:\Program Files (x86)\Microsoft Works =>.Microsoft Corporation O43 - CFD: 14/10/2019 - D – C:\Program Files (x86)\Microsoft XNA =>.Microsoft Corporation O43 - CFD: 02/01/2020 - D – C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 07/11/2022 - D – C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 07/11/2022 - D – C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 02/01/2020 - D – C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 01/07/2016 - D – C:\Program Files (x86)\NuGet =>.Microsoft Corporation O43 - CFD: 01/07/2016 - D – C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 18/07/2016 - D – C:\Program Files (x86)\OGPlanet O43 - CFD: 14/10/2019 - D – C:\Program Files (x86)\OpenAL =>.Open Audio Library O43 - CFD: 10/05/2021 - D – C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org O43 - CFD: 07/11/2022 - AD – C:\Program Files (x86)\Overwolf =>.Overwolf O43 - CFD: 22/03/2022 - D – C:\Program Files (x86)\Phoenix360 =>.Iolo Technologies O43 - CFD: 03/07/2022 - D – C:\Program Files (x86)\Quantum Legacy [Unsigned] O43 - CFD: 05/10/2016 - D – C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 02/01/2020 - D – C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 28/05/2020 - D – C:\Program Files (x86)\Shark007 =>.Shark007 O43 - CFD: 01/07/2016 - D – C:\Program Files (x86)\ShellDir =>.Unknown O43 - CFD: 24/07/2016 - RD – C:\Program Files (x86)\Skype =>.Skype O43 - CFD: 05/10/2016 - D – C:\Program Files (x86)\Snail Games USA =>.Snail Games USA O43 - CFD: 12/02/2021 - D – C:\Program Files (x86)\Sony =>.Sony Interactive Entertainment Inc.� O43 - CFD: 30/06/2016 - D – C:\Program Files (x86)\Spiral Knights [Unsigned] O43 - CFD: 10/07/2021 - AD – C:\Program Files (x86)\Spotify =>.Spotify AB� O43 - CFD: 17/07/2016 - D – C:\Program Files (x86)\Star Trek Online_en [Unsigned] O43 - CFD: 07/11/2022 - D – C:\Program Files (x86)\Steam =>.Steam Games O43 - CFD: 04/11/2022 - D – C:\Program Files (x86)\Surfshark {7C3DB25748949CFC8DD57D82}. =>.Surfshark O43 - CFD: 26/08/2022 - D – C:\Program Files (x86)\Surfshark TAP Driver Windows =>.OpenVPN Technologies, Inc.� O43 - CFD: 12/09/2021 - D – C:\Program Files (x86)\Symbaloo_TLauncher =>.Symbaloo O43 - CFD: 30/06/2016 - D – C:\Program Files (x86)\TabletPlugins =>.Wacom Technology O43 - CFD: 02/01/2020 - AD – C:\Program Files (x86)\TeamViewer =>.TeamViewer GmbH O43 - CFD: 27/10/2022 - D – C:\Program Files (x86)\TOSHIBA =>.Toshiba Corporation O43 - CFD: 10/01/2021 - D – C:\Program Files (x86)\Trusteer =>.Trusteer O43 - CFD: 08/05/2020 - D – C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 08/12/2016 - D – C:\Program Files (x86)\WildTangent =>.WildTangent O43 - CFD: 14/07/2021 - D – C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 17/10/2020 - D – C:\Program Files (x86)\Windows Kits =>.Microsoft Corporation O43 - CFD: 12/02/2021 - D – C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 14/07/2021 - D – C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 19/03/2019 - D – C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 19/03/2019 - D – C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 14/07/2021 - D – C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 19/03/2019 - D – C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 19/03/2019 - SHD – C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 19/03/2019 - D – C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 25/08/2022 - D – C:\Program Files (x86)\Youtube Downloader HD =>.Regensoft O43 - CFD: 16/02/2021 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov O43 - CFD: 13/01/2021 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 29/05/2021 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 22/07/2021 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 06/02/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant =>.Conexant Systems, Inc. O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DragonNest O43 - CFD: 05/11/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox =>.Dropbox O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS, Inc =>.DTS, Inc O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard =>.EaseUS Software O43 - CFD: 17/08/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FLV to AVI Video Converter O43 - CFD: 11/11/2021 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Genshin Impact O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro =>.EIDOS hitman Game O43 - CFD: 13/04/2021 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Corporation =>.Intel Corporation O43 - CFD: 12/09/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter =>.IObit O43 - CFD: 05/10/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTop Screen Recorder O43 - CFD: 24/10/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTop VPN O43 - CFD: 15/09/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Krita O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech =>.Logitech O43 - CFD: 19/03/2019 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression =>.Microsoft Corporation O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 27/05/2021 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools =>.Microsoft Corporation O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 24/08/2017 - [0] D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCSOFT =>.NCSOFT O43 - CFD: 24/08/2017 - [0] D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NCWest =>.NCWest O43 - CFD: 10/05/2021 - SD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.10 =>.SourceForge O43 - CFD: 25/10/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qcma O43 - CFD: 13/10/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Quantum Legacy O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva =>.Piriform O43 - CFD: 07/11/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller =>.Adlice Software O43 - CFD: 28/05/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shark007 Codecs =>.Shark007 O43 - CFD: 04/11/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype O43 - CFD: 29/10/2022 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 01/03/2021 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Surfshark =>.Surfshark O43 - CFD: 21/07/2019 - [0] D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Mechanic =>.Iolo Technologies O43 - CFD: 13/01/2021 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 27/04/2016 - [0] RHD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 27/10/2022 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TOSHIBA =>.Toshiba Corporation O43 - CFD: 03/09/2021 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trusteer Endpoint Protection O43 - CFD: 07/11/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UCheck =>.Adlice Software O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unity 5.3.5f1 (64-bit) O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015 =>.Pinnacle Systems, Inc. O43 - CFD: 02/01/2020 - RD – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wacom Tablet O43 - CFD: 02/01/2020 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Westwood O43 - CFD: 25/03/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WhoCrashed =>.Resplendence Software O43 - CFD: 14/03/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 25/08/2022 - D – C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Downloader HD =>.Regensoft O43 - CFD: 16/12/2020 - D – C:\ProgramData.mono =>.Legitimate O43 - CFD: 26/01/2022 - D – C:\ProgramData\Adobe =>.Adobe O43 - CFD: 23/07/2016 - D – C:\ProgramData\Aeria Games =>.Aeria Games O43 - CFD: 07/07/2021 - D – C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 02/01/2020 - [0] SHD – C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 31/12/2016 - [0] D – C:\ProgramData\Ashampoo =>.Ashampoo GmbH O43 - CFD: 08/11/2022 - D – C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 23/06/2022 - D – C:\ProgramData\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 29/12/2020 - D – C:\ProgramData\Caphyon =>.Caphyon O43 - CFD: 16/07/2016 - [0] D – C:\ProgramData\Comms =>.Microsoft Corporation O43 - CFD: 20/05/2017 - D – C:\ProgramData\Conexant =>.Conexant Systems, Inc. O43 - CFD: 15/08/2022 - D – C:\ProgramData\ConsoleApp O43 - CFD: 05/10/2016 - D – C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 02/01/2020 - [0] SHD – C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 02/01/2020 - [0] SHD – C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 05/11/2018 - D – C:\ProgramData\Driver Support =>PUP.Optional.DriverSupport O43 - CFD: 07/01/2017 - D – C:\ProgramData\Dropbox =>.Dropbox O43 - CFD: 16/01/2021 - D – C:\ProgramData\fltk.org =>.fltk.org O43 - CFD: 27/10/2020 - D – C:\ProgramData\Gaijin =>.Gaijin Entertainment O43 - CFD: 30/07/2018 - D – C:\ProgramData\HitmanPro =>.EIDOS hitman Game O43 - CFD: 13/04/2021 - D – C:\ProgramData\HP =>.Hewlett-Packard O43 - CFD: 13/04/2021 - D – C:\ProgramData\HP Photo Creations =>.HP Photo Creations O43 - CFD: 02/10/2018 - D – C:\ProgramData\install_clap =>.Microsoft Corporation O43 - CFD: 16/05/2019 - D – C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 28/12/2015 - D – C:\ProgramData\Intel Corporation =>.Intel Corporation O43 - CFD: 30/06/2016 - D – C:\ProgramData\Intel Telemetry =>.Intel Corporation O43 - CFD: 04/11/2022 - D – C:\ProgramData\IObit =>.IObit O43 - CFD: 29/06/2016 - D – C:\ProgramData\IsolatedStorage =>.id Software O43 - CFD: 08/11/2022 - D – C:\ProgramData\iTop O43 - CFD: 08/11/2022 - D – C:\ProgramData\iTop VPN O43 - CFD: 17/03/2022 - D – C:\ProgramData\Local =>.Microsoft Corporation O43 - CFD: 29/01/2022 - D – C:\ProgramData\LogiShrd =>.Logitech Inc. O43 - CFD: 11/10/2022 - D – C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 30/12/2021 - SD – C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 17/09/2022 - D – C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 03/01/2020 - D – C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 06/10/2016 - D – C:\ProgramData\Microsoft Toolkit =>.Microsoft Corporation O43 - CFD: 09/02/2022 - D – C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 08/09/2022 - D – C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation O43 - CFD: 26/08/2020 - D – C:\ProgramData\NCH Software =>.NCH Software O43 - CFD: 01/07/2016 - D – C:\ProgramData\NuGet =>.Microsoft Corporation O43 - CFD: 22/07/2016 - D – C:\ProgramData\Oracle =>.Oracle O43 - CFD: 27/11/2019 - D – C:\ProgramData\Overwolf =>.Overwolf O43 - CFD: 07/07/2022 - D – C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 24/08/2020 - D – C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 18/09/2017 - D – C:\ProgramData\Panda Security =>.Panda Security O43 - CFD: 20/01/2017 - D – C:\ProgramData\panda_url_filtering =>SUP.Optional.StartSearch O43 - CFD: 16/05/2019 - D – C:\ProgramData\Phoenix360 =>.Iolo Technologies O43 - CFD: 27/07/2022 - D – C:\ProgramData\Piriform =>.Piriform O43 - CFD: 01/07/2016 - D – C:\ProgramData\PreEmptive Solutions =>.PreEmptive Solutions O43 - CFD: 04/11/2022 - D – C:\ProgramData\ProductData =>.Microsoft Corporation O43 - CFD: 02/01/2020 - HD – C:\ProgramData\Recovery =>.Recovery Labs O43 - CFD: 08/11/2022 - D – C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 12/10/2016 - D – C:\ProgramData\Riot Games =>.Riot Games O43 - CFD: 28/12/2015 - D – C:\ProgramData\Roaming =>.Microsoft Corporation O43 - CFD: 07/11/2022 - D – C:\ProgramData\RogueKiller =>.Adlice Software O43 - CFD: 28/05/2020 - D – C:\ProgramData\Shark007 =>.Shark007 O43 - CFD: 24/07/2016 - D – C:\ProgramData\Skype =>.Skype O43 - CFD: 19/03/2019 - [0] D – C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 15/03/2020 - D – C:\ProgramData\SquirrelMachineInstalls =>.Squirrels O43 - CFD: 28/12/2015 - D – C:\ProgramData\SRS Labs =>.SRS Labs O43 - CFD: 23/02/2020 - [0] D – C:\ProgramData\ssh =>.Microsoft Corporation O43 - CFD: 28/05/2020 - D – C:\ProgramData\Standard O43 - CFD: 02/01/2020 - [0] SHD – C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 13/08/2022 - D – C:\ProgramData\Surfshark =>.Surfshark O43 - CFD: 11/08/2016 - D – C:\ProgramData\SYSTEMAX Software Development =>.Systemax Software Development O43 - CFD: 28/12/2015 - D – C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 02/01/2020 - [0] SHD – C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 20/12/2021 - D – C:\ProgramData\Thunder Network =>.Thunder Network O43 - CFD: 27/10/2022 - D – C:\ProgramData\Toshiba =>.Toshiba Corporation O43 - CFD: 29/06/2016 - D – C:\ProgramData\ToshibaEurope =>.Toshiba Corporation O43 - CFD: 21/08/2020 - D – C:\ProgramData\TrueKey =>.Intel Corporation O43 - CFD: 10/01/2021 - D – C:\ProgramData\Trusteer =>.Trusteer O43 - CFD: 05/11/2018 - [0] D – C:\ProgramData\UAB =>.UAB Software O43 - CFD: 07/11/2022 - D – C:\ProgramData\UCheck =>.Adlice Software O43 - CFD: 01/07/2016 - [0] D – C:\ProgramData\Unity =>.Unity O43 - CFD: 02/01/2020 - D – C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 02/01/2020 - D – C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 13/04/2021 - D – C:\ProgramData\Visan =>.Visan Industries O43 - CFD: 19/03/2019 - D – C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 24/06/2021 - D – C:\ProgramData\WindSolutions =>.WindSolutions O43 - CFD: 03/10/2022 - D – C:\ProgramData{150F4013-6884-4350-8DDC-6BFCB4C5DC15} O43 - CFD: 06/09/2019 - D – C:\ProgramData{E0224FF9-7AE3-4F9E-991A-2F004F7E3952} O43 - CFD: 09/09/2019 - [0] D – C:\ProgramData{F86B0233-9A85-4589-8AAF-524CC4F8211B} O43 - CFD: 25/03/2022 - AD – C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 07/07/2021 - D – C:\Program Files (x86)\Common Files\Apple =>.Apple Inc. O43 - CFD: 23/09/2018 - AD – C:\Program Files (x86)\Common Files\Designer =>.Designer O43 - CFD: 15/11/2016 - D – C:\Program Files (x86)\Common Files\Hesof O43 - CFD: 13/10/2020 - D – C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 02/01/2020 - D – C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 27/10/2022 - D – C:\Program Files (x86)\Common Files\IObit =>.IObit O43 - CFD: 09/10/2019 - D – C:\Program Files (x86)\Common Files\McAfee =>.McAfee O43 - CFD: 31/07/2021 - D – C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 15/07/2018 - D – C:\Program Files (x86)\Common Files\OnlineLines O43 - CFD: 07/11/2022 - D – C:\Program Files (x86)\Common Files\Overwolf =>.Overwolf O43 - CFD: 02/10/2018 - D – C:\Program Files (x86)\Common Files\Phoenix360 =>.Iolo Technologies O43 - CFD: 28/12/2015 - D – C:\Program Files (x86)\Common Files\PostureAgent =>.Microsoft Corporation O43 - CFD: 19/03/2019 - D – C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 29/06/2016 - AD – C:\Program Files (x86)\Common Files\Skype =>.Skype O43 - CFD: 31/05/2021 - D – C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 14/07/2021 - D – C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 01/07/2016 - D – C:\Program Files (x86)\Common Files\Wise Installation Wizard =>.Seagate O43 - CFD: 25/05/2022 - D – C:\Program Files (x86)\Common Files\Zoom =>.ZOOM O43 - CFD: 26/08/2021 - D – C:\Users\Administrator\AppData\Roaming.mono =>.Legitimate O43 - CFD: 27/10/2022 - D – C:\Users\Administrator\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 17/10/2022 - D – C:\Users\Administrator\AppData\Roaming\audacity =>.Audacity O43 - CFD: 28/10/2022 - D – C:\Users\Administrator\AppData\Roaming\AVAST Software =>.AVAST Software O43 - CFD: 12/09/2022 - D – C:\Users\Administrator\AppData\Roaming\com.adobe.dunamis =>.Adobe Inc. O43 - CFD: 07/08/2021 - D – C:\Users\Administrator\AppData\Roaming\Dropbox =>.Dropbox O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Roaming\DropboxElectron O43 - CFD: 28/10/2022 - [0] D – C:\Users\Administrator\AppData\Roaming\Easeware =>.Easeware O43 - CFD: 05/11/2022 - D – C:\Users\Administrator\AppData\Roaming\Geek Uninstaller =>.Geek Uninstaller O43 - CFD: 13/08/2019 - D – C:\Users\Administrator\AppData\Roaming\Intel =>.Intel Corporation O43 - CFD: 28/10/2022 - D – C:\Users\Administrator\AppData\Roaming\IObit =>.IObit O43 - CFD: 30/08/2022 - D – C:\Users\Administrator\AppData\Roaming\iTop Screen Recorder O43 - CFD: 24/10/2022 - D – C:\Users\Administrator\AppData\Roaming\iTop VPN O43 - CFD: 01/09/2022 - D – C:\Users\Administrator\AppData\Roaming\krita O43 - CFD: 13/08/2019 - D – C:\Users\Administrator\AppData\Roaming\Logishrd =>.Logitech Inc. O43 - CFD: 05/11/2022 - D – C:\Users\Administrator\AppData\Roaming\Messenger =>.Microsoft Corporation O43 - CFD: 07/11/2022 - SD – C:\Users\Administrator\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 15/07/2021 - D – C:\Users\Administrator\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 10/07/2021 - D – C:\Users\Administrator\AppData\Roaming\OpenOffice =>.SourceForge O43 - CFD: 13/03/2022 - D – C:\Users\Administrator\AppData\Roaming\PCGameBoost O43 - CFD: 27/07/2021 - D – C:\Users\Administrator\AppData\Roaming\Skype =>.Skype O43 - CFD: 14/05/2022 - D – C:\Users\Administrator\AppData\Roaming\Sony Corporation =>.Sony Corporation O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Roaming\Spotify =>.Spotify O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Roaming\Surfshark =>.Surfshark O43 - CFD: 18/11/2021 - D – C:\Users\Administrator\AppData\Roaming\SYSTEMAX Software Development =>.Systemax Software Development O43 - CFD: 07/11/2022 - D – C:\Users\Administrator\AppData\Roaming\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 22/09/2021 - D – C:\Users\Administrator\AppData\Roaming\toshiba =>.Toshiba Corporation O43 - CFD: 07/11/2022 - D – C:\Users\Administrator\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 22/09/2021 - D – C:\Users\Administrator\AppData\Roaming\WinBatch =>.winbatch.com O43 - CFD: 13/07/2021 - D – C:\Users\Administrator\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 13/07/2022 - D – C:\Users\Administrator\AppData\Roaming\WTablet =>.Wacom Technology O43 - CFD: 28/05/2022 - D – C:\Users\Administrator\AppData\Roaming\Youtube Downloader HD =>.Regensoft O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Roaming\Zoom =>.ZOOM O43 - CFD: 12/01/2022 - D – C:\Users\Administrator\AppData\Local\Adobe =>.Adobe O43 - CFD: 06/03/2022 - D – C:\Users\Administrator\AppData\Local\AnotherEden O43 - CFD: 22/07/2021 - D – C:\Users\Administrator\AppData\Local\Apple =>.Apple Inc. O43 - CFD: 02/01/2020 - [0] SHD – C:\Users\Administrator\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 23/12/2021 - D – C:\Users\Administrator\AppData\Local\Audacity =>.Audacity O43 - CFD: 26/09/2021 - D – C:\Users\Administrator\AppData\Local\AurCrashRpt O43 - CFD: 26/09/2021 - D – C:\Users\Administrator\AppData\Local\Aurogon O43 - CFD: 27/09/2021 - D – C:\Users\Administrator\AppData\Local\Aurogon Games O43 - CFD: 07/11/2022 - D – C:\Users\Administrator\AppData\Local\AVAST Software =>.AVAST Software O43 - CFD: 31/08/2022 - D – C:\Users\Administrator\AppData\Local\AvastAntiTrackPremium O43 - CFD: 23/06/2022 - D – C:\Users\Administrator\AppData\Local\Bluestacks =>.BlueStack Systems, Inc. O43 - CFD: 23/06/2022 - D – C:\Users\Administrator\AppData\Local\BlueStacksSetup =>.BlueStack Systems, Inc. O43 - CFD: 14/10/2020 - D – C:\Users\Administrator\AppData\Local\BraveSoftware =>.Brave Software Inc. O43 - CFD: 19/02/2022 - D – C:\Users\Administrator\AppData\Local\cache =>.Legitimate O43 - CFD: 13/08/2019 - D – C:\Users\Administrator\AppData\Local\CEF =>.CEF O43 - CFD: 13/08/2019 - D – C:\Users\Administrator\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 08/01/2020 - D – C:\Users\Administrator\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 01/11/2022 - D – C:\Users\Administrator\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 02/05/2022 - D – C:\Users\Administrator\AppData\Local\DBG =>.DBG O43 - CFD: 22/03/2022 - [0] D – C:\Users\Administrator\AppData\Local\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Local\Dropbox =>.Dropbox O43 - CFD: 11/10/2022 - D – C:\Users\Administrator\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 06/03/2022 - D – C:\Users\Administrator\AppData\Local\GameLib O43 - CFD: 12/11/2021 - D – C:\Users\Administrator\AppData\Local\Google =>.Google O43 - CFD: 02/01/2020 - [0] SHD – C:\Users\Administrator\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/01/2022 - D – C:\Users\Administrator\AppData\Local\HP =>.Hewlett-Packard O43 - CFD: 09/09/2021 - D – C:\Users\Administrator\AppData\Local\IsolatedStorage =>.id Software O43 - CFD: 29/08/2022 - D – C:\Users\Administrator\AppData\Local\Kamo O43 - CFD: 02/10/2021 - D – C:\Users\Administrator\AppData\Local\krita O43 - CFD: 19/06/2022 - D – C:\Users\Administrator\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 13/08/2019 - D – C:\Users\Administrator\AppData\Local\mbamtray =>.Malwarebytes O43 - CFD: 05/11/2022 - D – C:\Users\Administrator\AppData\Local\Messenger =>.Microsoft Corporation O43 - CFD: 17/11/2021 - D – C:\Users\Administrator\AppData\Local\messenger-updater O43 - CFD: 20/07/2022 - D – C:\Users\Administrator\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 11/08/2016 - [0] D – C:\Users\Administrator\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 13/08/2019 - D – C:\Users\Administrator\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 15/02/2022 - D – C:\Users\Administrator\AppData\Local\miHoYo O43 - CFD: 15/07/2021 - D – C:\Users\Administrator\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 01/08/2021 - D – C:\Users\Administrator\AppData\Local\OneDrive =>.Microsoft Corporation O43 - CFD: 02/01/2022 - D – C:\Users\Administrator\AppData\Local\Overwolf =>.Overwolf O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 13/08/2019 - [0] D – C:\Users\Administrator\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 22/03/2022 - D – C:\Users\Administrator\AppData\Local\Phoenix360 =>.Iolo Technologies O43 - CFD: 09/07/2021 - D – C:\Users\Administrator\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 03/12/2021 - D – C:\Users\Administrator\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 13/08/2019 - D – C:\Users\Administrator\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 15/04/2022 - D – C:\Users\Administrator\AppData\Local\SolidDocuments =>.SolidDocuments O43 - CFD: 04/12/2021 - D – C:\Users\Administrator\AppData\Local\speech =>.Microsoft Corporation O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Local\Spotify =>.Spotify O43 - CFD: 28/07/2021 - D – C:\Users\Administrator\AppData\Local\Steam =>.Steam Games O43 - CFD: 12/08/2022 - D – C:\Users\Administrator\AppData\Local\Surfshark =>.Surfshark O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 11/08/2021 - D – C:\Users\Administrator\AppData\Local\TempOfficeC2R13ECBB43-219D-4127-97F8-E0C565FBFCC6 O43 - CFD: 02/01/2020 - [0] SHD – C:\Users\Administrator\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 19/08/2022 - D – C:\Users\Administrator\AppData\Local\tkdata =>.TK-Data O43 - CFD: 07/07/2021 - D – C:\Users\Administrator\AppData\Local\Trusteer =>.Trusteer O43 - CFD: 13/07/2022 - D – C:\Users\Administrator\AppData\Local\Wacom =>.Wacom O43 - CFD: 07/11/2022 - D – C:\Users\Administrator\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 06/03/2022 - D – C:\Users\Administrator\AppData\Local\Zoom =>.ZOOM O43 - CFD: 12/07/2021 - [0] D – C:\Users\Administrator\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 04/09/2022 - D – C:\Users\Administrator\AppData\Local\Programs\Messenger =>.Microsoft Corporation O43 - CFD: 15/07/2021 - D – C:\Users\Administrator\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 27/10/2022 - D – C:\Users\Administrator\AppData\LocalLow\IObit =>.IObit O43 - CFD: 13/03/2022 - D – C:\Users\Administrator\AppData\LocalLow\iTop Screen Recorder O43 - CFD: 23/11/2021 - D – C:\Users\Administrator\AppData\LocalLow\Messenger =>.Microsoft Corporation O43 - CFD: 14/10/2022 - SD – C:\Users\Administrator\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 20/05/2022 - D – C:\Users\Administrator\AppData\LocalLow\miHoYo O43 - CFD: 07/11/2022 - D – C:\Users\Administrator\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 12/07/2021 - [0] D – C:\Users\Administrator\AppData\LocalLow\MSLiveSticker O43 - CFD: 04/08/2021 - [0] D – C:\Users\Administrator\AppData\LocalLow\MSLiveStickerWhiteList O43 - CFD: 22/05/2022 - D – C:\Users\Administrator\AppData\LocalLow\SquareEnix O43 - CFD: 07/11/2022 - [0] D – C:\Users\Administrator\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 29/10/2022 - RD – C:\Users\Administrator\Desktop\adwcleaner =>.xPlode O43 - CFD: 22/03/2022 - D – C:\Users\Administrator\Desktop\ASC15-Skin-Editor O43 - CFD: 09/10/2022 - D – C:\Users\Administrator\Desktop\Crack O43 - CFD: 07/11/2022 - D – C:\Users\Administrator\Desktop\FRST -OlderVersion O43 - CFD: 07/11/2022 - D – C:\Users\Administrator\Desktop\LOG =>.Unknown O43 - CFD: 19/03/2022 - D – C:\Users\Administrator\Desktop\Old Firefox Data O43 - CFD: 22/07/2021 - D – C:\Users\Administrator\Desktop\OutByte-PC-Repair-1112641-with-Crack =>SUP.Optional.Outbyte O43 - CFD: 13/07/2021 - D – C:\Users\Administrator\Desktop\Restoro-2021-License-Key—Crack-Full-Key-Download =>SUP.Optional.Restoro O43 - CFD: 19/03/2019 - RD – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 08/01/2020 - RD – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 07/07/2021 - RD – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 19/03/2019 - D – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 07/07/2021 - RD – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 20/05/2022 - D – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 19/03/2019 - RD – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 07/10/2022 - D – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 19/03/2019 - RD – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 14/03/2022 - D – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 08/11/2022 - D – C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom =>.ZOOM O43 - CFD: 02/01/2020 - [0] SHD – C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 02/11/2016 - D – C:\Users\Default\AppData\Local\Google =>.Google O43 - CFD: 02/01/2020 - [0] SHD – C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 12/09/2021 - D – C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 11/08/2016 - [0] D – C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 19/03/2019 - [0] D – C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 02/01/2020 - [0] SHD – C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 23/08/2021 - D – C:\Users\Default\AppData\Local\Trusteer =>.Trusteer O43 - CFD: 02/01/2020 - [0] SHD – C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 02/11/2016 - D – C:\Users\Default User\AppData\Local\Google =>.Google O43 - CFD: 02/01/2020 - [0] SHD – C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 12/09/2021 - D – C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 11/08/2016 - [0] D – C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 19/03/2019 - [0] D – C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 02/01/2020 - [0] SHD – C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 23/08/2021 - D – C:\Users\Default User\AppData\Local\Trusteer =>.Trusteer O43 - CFD: 25/03/2022 - – C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe O43 - CFD: 08/11/2022 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 25/03/2022 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Dropbox =>.Dropbox O43 - CFD: 15/02/2022 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/11/2022 - [0] – C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Overwolf =>.Overwolf O43 - CFD: 18/03/2022 - [0] D – C:\WINDOWS\System32\Config\systemprofile\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 15/02/2022 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Surfshark =>.Surfshark O43 - CFD: 11/01/2021 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Trusteer =>.Trusteer O43 - CFD: 25/03/2022 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 08/01/2020 - – C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Dropbox =>.Dropbox O43 - CFD: 27/10/2022 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\IObit =>.IObit O43 - CFD: 20/01/2020 - – C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 25/03/2022 - D – C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation —\ ShellIconOverlayIdentifiers (SIOI) (21) - 6s O106 - SIOI: [ IMFSafeBox] - {0BB81440-5F42-4480-A5F7-770A6F439FC8}. (.IObit - IMFShellExt Module.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll =>.IObit Information Technology� O106 - SIOI: [ GoogleDriveCloudOverlayIconHandler] - {A8E52322-8734-481D-A7E2-27B309EF8D56}. (.Google, Inc. - Google Drive Extensions.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\drivefsext.dll =>.Google LLC� O106 - SIOI: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] - {51EF1569-67EE-4AD6-9646-E726C3FFC8A2}. (.Google, Inc. - Google Drive Extensions.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\drivefsext.dll =>.Google LLC� O106 - SIOI: [ GoogleDrivePinnedOverlayIconHandler] - {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6}. (.Google, Inc. - Google Drive Extensions.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\drivefsext.dll =>.Google LLC� O106 - SIOI: [ GoogleDriveProgressOverlayIconHandler] - {C973DA94-CBDF-4E77-81D1-E5B794FBD146}. (.Google, Inc. - Google Drive Extensions.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\drivefsext.dll =>.Google LLC� O106 - SIOI: DropboxExt1 Class [ DropboxExt01] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O106 - SIOI: DropboxExt7 Class [ DropboxExt02] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O106 - SIOI: DropboxExt9 Class [ DropboxExt03] - {FB314EE1-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O106 - SIOI: DropboxExt3 Class [ DropboxExt04] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O106 - SIOI: DropboxExt2 Class [ DropboxExt05] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O106 - SIOI: DropboxExt4 Class [ DropboxExt06] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O106 - SIOI: DropboxExt5 Class [ DropboxExt07] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O106 - SIOI: DropboxExt8 Class [ DropboxExt08] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O106 - SIOI: DropboxExt10 Class [ DropboxExt09] - {FB314EE2-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O106 - SIOI: DropboxExt6 Class [ DropboxExt10] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O106 - SIOI: [ GoogleDriveBlacklisted] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}. (.Google - Google Drive shell extension.) – C:\Program Files\Google\Drive\googledrivesync64.dll =>.Google LLC� O106 - SIOI: [ GoogleDriveSynced] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}. (.Google - Google Drive shell extension.) – C:\Program Files\Google\Drive\googledrivesync64.dll =>.Google LLC� O106 - SIOI: [ GoogleDriveSyncing] - {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}. (.Google - Google Drive shell extension.) – C:\Program Files\Google\Drive\googledrivesync64.dll =>.Google LLC� O106 - SIOI: avast [00asw] - {472083B0-C522-11CF-8763-00608CC02F24}. (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.Avast Software s.r.o.� O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) – C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - Client Side Caching UI.) – C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation —\ Search Context Menu Handlers (SCMH) (54) - 12s O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) – C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov O108 - CMH1: avast [64Bits] - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.Avast Software s.r.o.� O108 - CMH1: DriveFS 28 or later [64Bits] - {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} . (.Google, Inc. - Google Drive Extensions.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\drivefsext.dll =>.Google LLC� O108 - CMH1: DropboxExt [64Bits] - {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} . (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O108 - CMH1: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) – C:\Program Files\Google\Drive\contextmenu64.dll =>.Google LLC� O108 - CMH1: IObit Malware Fighter [64Bits] - {0BB81440-5F42-4480-A5F7-770A6F439FC8} . (.IObit - IMFShellExt Module.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll =>.IObit Information Technology� O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Shell extensions for sharing.) – C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\Windows\System32\shell32.dll =>.Microsoft� O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\Windows\System32\shell32.dll =>.Microsoft� O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) – C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) – C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH� O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) – C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: DriveFS 28 or later [64Bits] - {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} . (.Google, Inc. - Google Drive Extensions.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\drivefsext.dll =>.Google LLC� O108 - CMH2: DropboxExt [64Bits] - {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} . (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O108 - CMH2: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) – C:\Program Files\Google\Drive\contextmenu64.dll =>.Google LLC� O108 - CMH2: Incinerator [64Bits] - {E8215BEA-3290-4C73-964B-75502B9B41B2} . (.Orphan.) [Unsigned] O108 - CMH2: IObit Malware Fighter [64Bits] - {0BB81440-5F42-4480-A5F7-770A6F439FC8} . (.IObit - IMFShellExt Module.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll =>.IObit Information Technology� O108 - CMH2: IObitUnstaler [64Bits] - {836AB26C-2DE4-41D3-AC24-4C6C2699B960} . (.Orphan.) [Unsigned] O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\Windows\System32\shell32.dll =>.Microsoft� O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) – C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH� O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH3: 00asw [64Bits] - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.Avast Software s.r.o.� O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\Windows\System32\shell32.dll =>.Microsoft� O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) – C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.� O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\Windows\System32\shell32.dll =>.Microsoft� O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) – C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov O108 - CMH4: DriveFS 28 or later [64Bits] - {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} . (.Google, Inc. - Google Drive Extensions.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\drivefsext.dll =>.Google LLC� O108 - CMH4: DropboxExt [64Bits] - {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} . (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\Windows\System32\shell32.dll =>.Microsoft� O108 - CMH4: GDContextMenu [64Bits] - {BB02B294-8425-42E5-983F-41A1FA970CD6} . (.Google - Google Drive shell extension.) – C:\Program Files\Google\Drive\contextmenu64.dll =>.Google LLC� O108 - CMH4: IObit Malware Fighter [64Bits] - {0BB81440-5F42-4480-A5F7-770A6F439FC8} . (.IObit - IMFShellExt Module.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll =>.IObit Information Technology� O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Client Side Caching UI.) – C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: RecuvaShellExt [64Bits] - {435E5DF5-2510-463C-B223-BDA47006D002} . (.Piriform Ltd - Recuva shell extensions.) – C:\Program Files\Recuva\RecuvaShell64.dll =>.Piriform Ltd� O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) – C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) – C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: DriveFS 28 or later [64Bits] - {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} . (.Google, Inc. - Google Drive Extensions.) – C:\Program Files\Google\Drive File Stream\66.0.3.0\drivefsext.dll =>.Google LLC� O108 - CMH5: DropboxExt [64Bits] - {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} . (.Dropbox, Inc. - Dropbox Shell Extension.) – C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc� O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) – C:\WINDOWS\system32\igfxDTCM.dll [Unsigned] =>.Intel Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\Windows\System32\shell32.dll =>.Microsoft� O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) – C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) – C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) – C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov O108 - CMH6: avast [64Bits] - {472083B0-C522-11CF-8763-00608CC02F24} . (.AVAST Software - Avast Shell Extension.) – C:\Program Files\AVAST Software\Avast\ashShell.dll =>.Avast Software s.r.o.� O108 - CMH6: IObit Malware Fighter [64Bits] - {0BB81440-5F42-4480-A5F7-770A6F439FC8} . (.IObit - IMFShellExt Module.) – C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll =>.IObit Information Technology� O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - Windows Shell Common Dll.) – C:\Windows\System32\shell32.dll =>.Microsoft� O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) – C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.� O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Client Side Caching UI.) – C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - App Resolver.) – C:\Windows\System32\appresolver.dll =>.Microsoft� O108 - CMH6: RecuvaShellExt [64Bits] - {435E5DF5-2510-463C-B223-BDA47006D002} . (.Piriform Ltd - Recuva shell extensions.) – C:\Program Files\Recuva\RecuvaShell64.dll =>.Piriform Ltd� O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) – C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH� O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) – C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) – C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation —\ Image File Execution Options (15) - 6s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Driver Installation Module.) [DisableExceptionChainValidation\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - IE Per-User Initialisation Utility.) [MitigationOptions\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - IE 7.0 Unattended Install Utility.) [MitigationOptions\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Microsoft Windows Malicious Software Remova.) [CFGOptions\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Microsoft (R) HTML Application host.) [MitigationOptions\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Spooler SubSystem App.) [MitigationOptions\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Host Process for Windows Services.) [MinimumStackCommitInBytes\32768] =>.Microsoft Windows Publisher� O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\3] [Unsigned] =>.Microsoft Corporation —\ System Drivers List (486) - 105s O58 - SDL:2019/03/19 04:43:39 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) – C:\WINDOWS\System32\drivers\1394ohci.sys [264704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:39 A . (.LSI - LSI 3ware SCSI Storport Driver.) – C:\WINDOWS\System32\drivers\3ware.sys [107528] =>.Microsoft Windows� O58 - SDL:2022/06/09 23:52:00 A . (.ANTICHEATEXPERT.COM - ACE-BASE64 NT Driver.) – C:\WINDOWS\System32\drivers\ACE-BASE.sys [1868848] {0F316A214F60D59DC921AEB9685136CC}. O58 - SDL:2021/05/29 19:59:33 A . (.Microsoft Corporation - ACPI Driver for NT.) – C:\WINDOWS\System32\drivers\acpi.sys [805176] =>.Microsoft� O58 - SDL:2019/03/19 04:43:39 A . (.Microsoft Corporation - ACPI Devices Driver.) – C:\WINDOWS\System32\drivers\AcpiDev.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:49 A . (.Microsoft Corporation - ACPIEx Driver.) – C:\WINDOWS\System32\drivers\acpiex.sys [136712] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) – C:\WINDOWS\System32\drivers\acpipagr.sys [12800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:38 A . (.Microsoft Corporation - ACPI Power Metering Driver.) – C:\WINDOWS\System32\drivers\acpipmi.sys [16896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - ACPI Wake Alarm.) – C:\WINDOWS\System32\drivers\acpitime.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/03/03 18:52:46 A . (.Microsoft Corporation - Audio KMDF Class Extension.) – C:\WINDOWS\System32\drivers\Acx01000.sys [337920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:39 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) – C:\WINDOWS\System32\drivers\adp80xx.sys [1135632] =>.Microsoft Windows� O58 - SDL:2020/09/09 20:11:51 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) – C:\WINDOWS\System32\drivers\afd.sys [661832] =>.Microsoft� O58 - SDL:2020/07/28 20:32:24 A . (.Microsoft Corporation - AF_UNIX socket provider.) – C:\WINDOWS\System32\drivers\afunix.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/17 16:58:39 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) – C:\WINDOWS\System32\drivers\agilevpn.sys [114176] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 00:33:15 A . (.Microsoft Corporation - Application Compatibility Cache.) – C:\WINDOWS\System32\drivers\ahcache.sys [291840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:33 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) – C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/03/19 04:43:33 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) – C:\WINDOWS\System32\drivers\amdi2c.sys [37888] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2020/09/09 20:07:33 A . (.Microsoft Corporation - Processor Device Driver.) – C:\WINDOWS\System32\drivers\amdk8.sys [200008] =>.Microsoft� O58 - SDL:2020/09/09 20:07:33 A . (.Microsoft Corporation - Processor Device Driver.) – C:\WINDOWS\System32\drivers\amdppm.sys [201544] =>.Microsoft� O58 - SDL:2019/03/19 04:43:39 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) – C:\WINDOWS\System32\drivers\amdsata.sys [83464] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) – C:\WINDOWS\System32\drivers\amdsbs.sys [259600] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.Advanced Micro Devices - Storage Filter Driver.) – C:\WINDOWS\System32\drivers\amdxata.sys [27176] =>.Microsoft Windows� O58 - SDL:2020/10/14 15:55:51 A . (.Microsoft Corporation - AppID Driver.) – C:\WINDOWS\System32\drivers\appid.sys [205632] =>.Microsoft� O58 - SDL:2020/10/14 15:55:51 A . (.Microsoft Corporation - Applocker Filter.) – C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/26 20:54:08 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) – C:\WINDOWS\System32\drivers\AppVStrm.sys [138040] =>.Microsoft� O58 - SDL:2021/03/26 20:54:07 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) – C:\WINDOWS\System32\drivers\AppvVemgr.sys [174392] =>.Microsoft� O58 - SDL:2021/03/26 20:54:08 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) – C:\WINDOWS\System32\drivers\AppvVfs.sys [153912] =>.Microsoft� O58 - SDL:2019/03/19 04:43:39 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) – C:\WINDOWS\System32\drivers\arcsas.sys [132112] =>.Microsoft Windows� O58 - SDL:2022/11/01 19:43:44 A . (.AVAST Software - Avast Anti Rootkit.) – C:\WINDOWS\System32\drivers\aswArPot.sys [238152] =>.Avast Software s.r.o.� O58 - SDL:2022/11/01 19:43:22 A . (.AVAST Software - Avast IDS Application Activity Monitor Driv.) – C:\WINDOWS\System32\drivers\aswbidsdriver.sys [390096] =>.Avast Software s.r.o.� O58 - SDL:2022/11/01 19:45:36 A . (.AVAST Software - Avast Application Activity Monitor Helper D.) – C:\WINDOWS\System32\drivers\aswbidsh.sys [306128] =>.Avast Software s.r.o.� O58 - SDL:2022/11/01 19:45:37 A . (.AVAST Software - Avast Universal Driver.) – C:\WINDOWS\System32\drivers\aswbuniv.sys [105936] =>.Avast Software s.r.o.� O58 - SDL:2022/10/13 15:05:08 A . (.AVAST Software - Avast ELAM Driver.) – C:\WINDOWS\System32\drivers\aswElam.sys [25576] =>.Microsoft� O58 - SDL:2022/11/01 19:45:10 A . (.AVAST Software - Avast Keyboard Filter Driver.) – C:\WINDOWS\System32\drivers\aswKbd.sys [48512] =>.Avast Software s.r.o.� O58 - SDL:2022/11/01 19:45:30 A . (.AVAST Software - Avast File System Filter.) – C:\WINDOWS\System32\drivers\aswMonFlt.sys [276520] =>.Avast Software s.r.o.� O58 - SDL:2022/11/01 19:45:13 A . (.AVAST Software - Avast Network Security Driver.) – C:\WINDOWS\System32\drivers\aswNetHub.sys [564304] =>.Avast Software s.r.o.� O58 - SDL:2022/11/01 19:45:29 A . (.AVAST Software - Avast Antivirus.) – C:\WINDOWS\System32\drivers\aswRdr2.sys [114464] =>.Avast Software s.r.o.� O58 - SDL:2022/11/01 19:45:31 A . (.AVAST Software - Avast Revert.) – C:\WINDOWS\System32\drivers\aswRvrt.sys [90008] =>.Avast Software s.r.o.� (Avast Software s.r.o) O58 - SDL:2022/11/01 19:43:38 A . (.AVAST Software - Avast Antivirus.) – C:\WINDOWS\System32\drivers\aswSnx.sys [862936] =>.Avast Software s.r.o.� O58 - SDL:2022/11/01 19:45:32 A . (.AVAST Software - Avast Self Protection.) – C:\WINDOWS\System32\drivers\aswSP.sys [672272] =>.Avast Software s.r.o.� O58 - SDL:2022/11/01 19:45:38 A . (.AVAST Software - Avast Stream Filter.) – C:\WINDOWS\System32\drivers\aswStm.sys [221944] =>.Avast Software s.r.o.� O58 - SDL:2022/11/01 19:45:49 A . (.AVAST Software - Avast VM Monitor.) – C:\WINDOWS\System32\drivers\aswVmm.sys [327896] =>.Avast Software s.r.o.� (Avast Software s.r.o) O58 - SDL:2022/08/02 15:56:15 A . (.Avast Software - Avast SecureLine.) – C:\WINDOWS\System32\drivers\aswVpnRdr.sys [65944] =>.Avast Software s.r.o.� O58 - SDL:2019/03/19 04:45:02 A . (.Microsoft Corporation - MS Remote Access serial network driver.) – C:\WINDOWS\System32\drivers\asyncmac.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 19:59:35 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) – C:\WINDOWS\System32\drivers\atapi.sys [30008] =>.Microsoft� O58 - SDL:2021/05/29 19:59:35 A . (.Microsoft Corporation - ATAPI Driver Extension.) – C:\WINDOWS\System32\drivers\ataport.sys [223032] =>.Microsoft� O58 - SDL:2019/03/19 04:44:01 A . (.Microsoft Corporation - BAM Kernel Driver.) – C:\WINDOWS\System32\drivers\bam.sys [70456] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Battery Class Driver.) – C:\WINDOWS\System32\drivers\battc.sys [41784] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:34 A . (. - BCM Function 2 Device Driver.) – C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/03/19 04:44:32 A . (.Microsoft Corporation - BEEP Driver.) – C:\WINDOWS\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 20:01:09 A . (.Microsoft Corporation - Windows Bind Filter Driver.) – C:\WINDOWS\System32\drivers\bindflt.sys [117048] =>.Microsoft� O58 - SDL:2021/01/13 01:24:39 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) – C:\WINDOWS\System32\drivers\bowser.sys [117248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:38 A . (.Microsoft Corporation - MAC Bridge Driver.) – C:\WINDOWS\System32\drivers\bridge.sys [127488] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/09 20:07:29 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) – C:\WINDOWS\System32\drivers\BtaMPM.sys [36352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/03/03 18:51:25 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) – C:\WINDOWS\System32\drivers\BthA2dp.sys [231936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 19:59:38 A . (.Microsoft Corporation - Bluetooth Bus Extender.) – C:\WINDOWS\System32\drivers\bthenum.sys [114688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:33 A . (.Microsoft Corporation - Bluetooth Hands-free Audio Device Driver.) – C:\WINDOWS\System32\drivers\BthHfAud.sys [57856] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:33 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) – C:\WINDOWS\System32\drivers\BthHfEnum.sys [131072] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 19:59:39 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) – C:\WINDOWS\System32\drivers\BthMini.SYS [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:37 A . (.Microsoft Corporation - Bluetooth Communications Driver.) – C:\WINDOWS\System32\drivers\bthmodem.sys [76288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) – C:\WINDOWS\System32\drivers\bthpan.sys [133120] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 19:59:39 A . (.Microsoft Corporation - Bluetooth Bus Driver.) – C:\WINDOWS\System32\drivers\bthport.sys [1434112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 19:59:39 A . (.Microsoft Corporation - Bluetooth Miniport Driver.) – C:\WINDOWS\System32\drivers\BTHUSB.SYS [99328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/04/26 10:18:00 A . (.Ralink Corporation - Bluetooth L2CAP_SCO Interface Profile Drive.) – C:\WINDOWS\System32\drivers\BtL2caScoIf.sys [54064] =>.Mediatek Inc.� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - VHD BTT Filter Driver.) – C:\WINDOWS\System32\drivers\bttflt.sys [42808] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Button Converter Driver.) – C:\WINDOWS\System32\drivers\buttonconverter.sys [43008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:38 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) – C:\WINDOWS\System32\drivers\bxvbda.sys [534032] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:34 A . (.Microsoft Corporation - Charge Arbiration Driver.) – C:\WINDOWS\System32\drivers\CAD.sys [64312] =>.Microsoft Windows� O58 - SDL:2020/02/02 03:12:28 A . (.Microsoft Corporation - CD-ROM File System Driver.) – C:\WINDOWS\System32\drivers\cdfs.sys [100352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:39 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) – C:\WINDOWS\System32\drivers\cdrom.sys [173056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/26 20:43:13 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) – C:\WINDOWS\System32\drivers\CEA.sys [79672] =>.Microsoft� O58 - SDL:2017/03/20 14:26:48 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) – C:\WINDOWS\System32\drivers\CHDRT64.sys [1564696] =>.Conexant Systems, Inc.� O58 - SDL:2019/03/19 04:43:40 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) – C:\WINDOWS\System32\drivers\cht4dx64.sys [142864] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:40 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) – C:\WINDOWS\System32\drivers\cht4sx64.sys [319528] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:41 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) – C:\WINDOWS\System32\drivers\cht4vfx.sys [29696] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/03/19 04:43:41 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) – C:\WINDOWS\System32\drivers\cht4vx64.sys [1866768] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:37 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) – C:\WINDOWS\System32\drivers\circlass.sys [51200] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/28 17:07:46 A . (.Microsoft Corporation - SCSI Class System Dll.) – C:\WINDOWS\System32\drivers\Classpnp.sys [416080] =>.Microsoft� O58 - SDL:2021/05/29 20:02:03 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) – C:\WINDOWS\System32\drivers\cldflt.sys [457728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/26 20:47:44 A . (.Microsoft Corporation - Common Log File System Driver.) – C:\WINDOWS\System32\drivers\clfs.sys [403784] =>.Microsoft� O58 - SDL:2021/05/29 20:00:56 A . (.Microsoft Corporation - CLIP Service.) – C:\WINDOWS\System32\drivers\ClipSp.sys [1030456] =>.Microsoft� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Control Method Battery Driver.) – C:\WINDOWS\System32\drivers\CmBatt.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:49 A . (.Microsoft Corporation - Kernel Configuration Manager Initial Config.) – C:\WINDOWS\System32\drivers\cmimcext.sys [29200] =>.Microsoft Windows� O58 - SDL:2020/12/09 09:18:29 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) – C:\WINDOWS\System32\drivers\cng.sys [752040] =>.Microsoft� O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) – C:\WINDOWS\System32\drivers\cnghwassist.sys [40760] =>.Microsoft Windows� O58 - SDL:2021/04/14 00:33:02 A . (.Microsoft Corporation - Console Driver.) – C:\WINDOWS\System32\drivers\condrv.sys [58168] =>.Microsoft� O58 - SDL:2020/03/03 18:55:16 A . (.Microsoft Corporation - Crash Dump Driver.) – C:\WINDOWS\System32\drivers\crashdmp.sys [98104] =>.Microsoft� O58 - SDL:2020/10/14 15:59:30 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) – C:\WINDOWS\System32\drivers\csc.sys [576512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:00 A . (.Microsoft Corporation - DAM Kernel Driver.) – C:\WINDOWS\System32\drivers\dam.sys [100152] =>.Microsoft Windows� O58 - SDL:2022/11/04 13:23:34 A . (.Dropbox, Inc. - Dropbox Filter Driver.) – C:\WINDOWS\System32\drivers\dbx-canary.sys [47600] =>.Microsoft� O58 - SDL:2022/11/04 13:23:34 A . (.Dropbox, Inc. - Dropbox Filter Driver.) – C:\WINDOWS\System32\drivers\dbx-dev.sys [47600] =>.Microsoft� O58 - SDL:2022/11/04 13:23:34 A . (.Dropbox, Inc. - Dropbox Filter Driver.) – C:\WINDOWS\System32\drivers\dbx-stable.sys [47600] =>.Microsoft� O58 - SDL:2022/11/04 13:23:34 A . (.Dropbox, Inc. - Dropbox Filter Driver.) – C:\WINDOWS\System32\drivers\dbx.sys [47600] =>.Microsoft� O58 - SDL:2020/11/10 21:08:22 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) – C:\WINDOWS\System32\drivers\devauthe.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/11 23:58:05 A . (.Microsoft Corporation - DFS Namespace Client Driver.) – C:\WINDOWS\System32\drivers\dfsc.sys [151040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/28 17:05:21 A . (.Microsoft Corporation - PnP Disk Driver.) – C:\WINDOWS\System32\drivers\disk.sys [98128] =>.Microsoft� O58 - SDL:2019/03/19 04:44:45 A . (.Microsoft Corporation - Crash Dump Disk Driver.) – C:\WINDOWS\System32\drivers\Diskdump.sys [37928] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:45 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) – C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:44 A . (.Microsoft Corporation - Dynamic Memory.) – C:\WINDOWS\System32\drivers\dmvsc.sys [58168] =>.Microsoft Windows� O58 - SDL:2021/01/13 01:22:17 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) – C:\WINDOWS\System32\drivers\drmk.sys [98304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/13 01:22:17 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) – C:\WINDOWS\System32\drivers\drmkaud.sys [16160] =>.Microsoft� O58 - SDL:2019/03/19 04:44:28 A . (.Microsoft Corporation - ATAPI Dump Driver.) – C:\WINDOWS\System32\drivers\Dumpata.sys [36904] =>.Microsoft Windows� O58 - SDL:2021/01/28 17:15:10 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) – C:\WINDOWS\System32\drivers\dumpfve.sys [93104] =>.Microsoft� O58 - SDL:2021/03/26 20:42:29 A . (.Microsoft Corporation - SD Crashdump Port Driver.) – C:\WINDOWS\System32\drivers\dumpsd.sys [193864] =>.Microsoft� O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) – C:\WINDOWS\System32\drivers\dumpsdport.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:45 A . (.Microsoft Corporation - Storport Dump Driver.) – C:\WINDOWS\System32\drivers\Dumpstorport.sys [34616] =>.Microsoft Windows� O58 - SDL:2021/05/29 20:00:57 A . (.Microsoft Corporation - DirectX Graphics Kernel.) – C:\WINDOWS\System32\drivers\dxgkrnl.sys [3581752] =>.Microsoft� O58 - SDL:2021/05/29 20:00:57 A . (.Microsoft Corporation - DirectX Graphics MMS.) – C:\WINDOWS\System32\drivers\dxgmms1.sys [441168] =>.Microsoft� O58 - SDL:2021/05/29 20:00:58 A . (.Microsoft Corporation - DirectX Graphics MMS.) – C:\WINDOWS\System32\drivers\dxgmms2.sys [872760] =>.Microsoft� O58 - SDL:2021/05/29 20:05:32 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) – C:\WINDOWS\System32\drivers\EhStorClass.sys [85328] =>.Microsoft� O58 - SDL:2019/03/19 04:43:37 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) – C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [114696] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Error Device Driver.) – C:\WINDOWS\System32\drivers\errdev.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/06/02 09:38:52 A . (.ELAN Microelectronics Corp. - ELAN KMDF Driver.) – C:\WINDOWS\System32\drivers\ETD.sys [580696] =>.ELAN MICROELECTRONICS CORPORATION� O58 - SDL:2016/06/02 09:40:18 A . (.ELAN Microelectronic Corp. - ELAN SMBus Driver.) – C:\WINDOWS\System32\drivers\ETDSMBus.sys [31832] =>.ELAN MICROELECTRONICS CORPORATION� O58 - SDL:2019/03/19 04:43:38 A . (.QLogic Corporation - QLogic 10 GigE VBD.) – C:\WINDOWS\System32\drivers\evbda.sys [3419176] =>.Microsoft Windows� O58 - SDL:2020/02/02 03:03:24 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) – C:\WINDOWS\System32\drivers\exfat.sys [404480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/14 15:53:16 A . (.Microsoft Corporation - Fast FAT File System Driver.) – C:\WINDOWS\System32\drivers\fastfat.sys [422712] =>.Microsoft� O58 - SDL:2016/06/29 10:37:13 A . (…) – C:\WINDOWS\System32\drivers\fbd.sys [13] [Unsigned] =>.EasyCo LLC O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) – C:\WINDOWS\System32\drivers\fdc.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:49 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) – C:\WINDOWS\System32\drivers\filecrypt.sys [59392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:28 A . (.Microsoft Corporation - FileInfo Filter Driver.) – C:\WINDOWS\System32\drivers\fileinfo.sys [94520] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:28 A . (.Microsoft Corporation - File Trace Filter Driver.) – C:\WINDOWS\System32\drivers\filetrace.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/08/21 07:56:42 A . (.Intel Corporation - BIOS Update Driver.) – C:\WINDOWS\System32\drivers\flashud.sys [62984] {30F5F803C25B9A6B4FB38E0B0464D9F3}. =>.Intel Corporation O58 - SDL:2020/04/10 14:10:40 A . (.Microsoft Corporation - Floppy Driver.) – C:\WINDOWS\System32\drivers\flpydisk.sys [28160] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/14 15:56:41 A . (.Microsoft Corporation - Microsoft Filesystem Filter Manager.) – C:\WINDOWS\System32\drivers\fltMgr.sys [437568] =>.Microsoft� O58 - SDL:2021/04/14 00:32:41 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) – C:\WINDOWS\System32\drivers\fsdepends.sys [68920] =>.Microsoft� O58 - SDL:2019/03/19 04:44:35 A . (.Microsoft Corporation - File System Recognizer Driver.) – C:\WINDOWS\System32\drivers\fs_rec.sys [34320] =>.Microsoft Windows� O58 - SDL:2021/01/28 17:15:08 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) – C:\WINDOWS\System32\drivers\fvevol.sys [800568] =>.Microsoft� O58 - SDL:2021/05/29 20:02:16 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) – C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [477512] =>.Microsoft� O58 - SDL:2022/03/14 12:02:52 A . (.Google, Inc. - Google Drive File System Driver.) – C:\WINDOWS\System32\drivers\googledrivefs3758.sys [384584] =>.Microsoft� O58 - SDL:2019/03/19 04:43:45 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) – C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/03/03 18:51:31 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) – C:\WINDOWS\System32\drivers\hdaudbus.sys [114688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:02:37 A . (.Microsoft Corporation - High Definition Audio Function Driver.) – C:\WINDOWS\System32\drivers\HdAudio.sys [425472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Hid Battery Driver.) – C:\WINDOWS\System32\drivers\hidbatt.sys [39736] =>.Microsoft Windows� O58 - SDL:2020/05/08 15:13:06 A . (.Microsoft Corporation - Bluetooth Miniport Driver for HID Devices.) – C:\WINDOWS\System32\drivers\hidbth.sys [121344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/06/12 01:30:39 A . (.Microsoft Corporation - Hid Class Library.) – C:\WINDOWS\System32\drivers\hidclass.sys [211968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - I2C HID Miniport Driver.) – C:\WINDOWS\System32\drivers\hidi2c.sys [54784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) – C:\WINDOWS\System32\drivers\hidinterrupt.sys [53560] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:37 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) – C:\WINDOWS\System32\drivers\hidir.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/06/12 01:30:39 A . (.Microsoft Corporation - Hid Parsing Library.) – C:\WINDOWS\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/14 15:53:03 A . (.Microsoft Corporation - SPI HID Miniport Driver.) – C:\WINDOWS\System32\drivers\hidspi.sys [64512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/06/12 01:30:39 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) – C:\WINDOWS\System32\drivers\hidusb.sys [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/07/13 09:47:38 A . (.© 2022 Sophos B.V. - HitmanPro 3.8 Support Driver.) – C:\WINDOWS\System32\drivers\hitmanpro37.sys [42000] =>.Microsoft� O58 - SDL:2019/03/19 04:43:39 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) – C:\WINDOWS\System32\drivers\HpSAMD.sys [64528] =>.Microsoft Windows� O58 - SDL:2020/04/10 14:14:21 A . (.Microsoft Corporation - HTTP Protocol Stack.) – C:\WINDOWS\System32\drivers\http.sys [1300280] =>.Microsoft� O58 - SDL:2019/03/19 04:43:44 A . (.Microsoft Corporation - Hyper-V Crashdump.) – C:\WINDOWS\System32\drivers\hvcrash.sys [32568] =>.Microsoft Windows� O58 - SDL:2021/05/29 20:05:20 A . (.Microsoft Corporation - Hypervisor Boot Driver.) – C:\WINDOWS\System32\drivers\hvservice.sys [84296] =>.Microsoft� O58 - SDL:2019/03/19 04:45:54 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) – C:\WINDOWS\System32\drivers\hvsocket.sys [145208] =>.Microsoft Windows� O58 - SDL:2020/04/10 14:14:22 A . (.Microsoft Corporation - Hardware Policy Driver.) – C:\WINDOWS\System32\drivers\hwpolicy.sys [33080] =>.Microsoft� O58 - SDL:2019/03/19 04:43:44 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) – C:\WINDOWS\System32\drivers\hyperkbd.sys [25400] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) – C:\WINDOWS\System32\drivers\HyperVideo.sys [42000] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - i8042 Port Driver.) – C:\WINDOWS\System32\drivers\i8042prt.sys [119296] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:34 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) – C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/03/19 04:43:34 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) – C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/03/19 04:43:34 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) – C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/03/19 04:43:34 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) – C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/03/19 04:43:34 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) – C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/03/19 04:43:34 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) – C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/03/19 04:43:34 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) – C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/03/19 04:43:34 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) – C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/03/19 04:43:34 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) – C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [180736] [Unsigned] =>.Intel Corporation O58 - SDL:2019/03/19 04:43:34 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) – C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/03/19 04:43:38 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) – C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group� O58 - SDL:2019/03/19 04:43:37 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) – C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2021/04/12 16:05:09 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) – C:\WINDOWS\System32\drivers\iaStorA.sys [1469952] =>.Intel(R) Rapid Storage Technology� O58 - SDL:2019/03/19 04:43:41 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) – C:\WINDOWS\System32\drivers\iaStorAVC.sys [885048] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:41 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) – C:\WINDOWS\System32\drivers\iaStorV.sys [411960] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:41 A . (.Mellanox - InfiniBand Fabric Bus Driver.) – C:\WINDOWS\System32\drivers\ibbus.sys [566800] =>.Microsoft Windows� O58 - SDL:2019/09/06 22:40:16 A . (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Filter Drive.) – C:\WINDOWS\System32\drivers\ibtusb.sys [239392] =>.Intel(R) Wireless Connectivity Solutions� O58 - SDL:2021/02/24 11:09:30 A . (.Intel Corporation - Intel(R) Watchdog Timer Driver (Intel(R) WD.) – C:\WINDOWS\System32\drivers\ICCWDT.sys [41144] {78A52B157183BC6A8469BBC4F2B97BB0}. =>.Intel Corporation O58 - SDL:2020/04/28 19:06:58 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) – C:\WINDOWS\System32\drivers\igdkmd64.sys [7991352] =>.Intel Corporation� O58 - SDL:2019/07/30 04:02:04 A . (.IObit - IMFCameraProtect.) – C:\WINDOWS\System32\drivers\IMFCameraProtect.sys [42360] =>.IObit Information Technology� O58 - SDL:2020/04/13 18:14:32 A . (.IObit - IMF SafeBox filter driver.) – C:\WINDOWS\System32\drivers\imfpffilter.sys [57840] =>.IObit Information Technology� O58 - SDL:2019/03/19 04:44:16 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) – C:\WINDOWS\System32\drivers\IndirectKmd.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/04 12:59:31 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) – C:\WINDOWS\System32\drivers\IntcDAud.sys [480176] =>.Intel Corporation� O58 - SDL:2021/05/29 19:59:36 A . (.Microsoft Corporation - Intel PCI IDE Driver.) – C:\WINDOWS\System32\drivers\intelide.sys [19768] =>.Microsoft� O58 - SDL:2020/03/03 18:51:33 A . (.Microsoft Corporation - Intel Power Engine Plugin.) – C:\WINDOWS\System32\drivers\intelpep.sys [355000] =>.Microsoft� O58 - SDL:2019/03/19 04:43:34 A . (.Microsoft Corporation - Intel Power Limit Driver.) – C:\WINDOWS\System32\drivers\intelpmax.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/09 20:07:32 A . (.Microsoft Corporation - Processor Device Driver.) – C:\WINDOWS\System32\drivers\intelppm.sys [224072] =>.Microsoft� O58 - SDL:2019/03/19 04:43:45 A . (.Microsoft Corporation - I/O rate control Filter.) – C:\WINDOWS\System32\drivers\iorate.sys [56632] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:45:02 A . (.Microsoft Corporation - IP FILTER DRIVER.) – C:\WINDOWS\System32\drivers\ipfltdrv.sys [90624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - WMI IPMI DRIVER.) – C:\WINDOWS\System32\drivers\IPMIDrv.sys [110904] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:16 A . (.Microsoft Corporation - IP Network Address Translator.) – C:\WINDOWS\System32\drivers\ipnat.sys [224768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:49 A . (.Microsoft Corporation - IPT Driver.) – C:\WINDOWS\System32\drivers\ipt.sys [54584] =>.Microsoft Windows� O58 - SDL:2020/02/02 03:02:44 A . (.Microsoft Corporation - PNP ISA Bus Driver.) – C:\WINDOWS\System32\drivers\isapnp.sys [23352] =>.Microsoft� O58 - SDL:2019/03/19 04:43:39 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) – C:\WINDOWS\System32\drivers\ItSas35i.sys [148520] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Keyboard Class Driver.) – C:\WINDOWS\System32\drivers\kbdclass.sys [70968] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - HID Keyboard Filter Driver.) – C:\WINDOWS\System32\drivers\kbdhid.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/17 17:01:10 A . (.Microsoft Corporation - Keyboard Lockdown Subsystem.) – C:\WINDOWS\System32\drivers\kbldfltr.sys [26952] =>.Microsoft� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) – C:\WINDOWS\System32\drivers\kdnic.sys [32568] =>.Microsoft Windows� O58 - SDL:2020/11/10 21:08:42 A . (.Microsoft Corporation - Network Power Dependency Broker.) – C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/10 21:12:36 A . (.Microsoft Corporation - Kernel CSA Library.) – C:\WINDOWS\System32\drivers\ks.sys [455680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/26 20:47:35 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) – C:\WINDOWS\System32\drivers\ksecdd.sys [146232] =>.Microsoft� O58 - SDL:2021/03/26 20:46:06 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) – C:\WINDOWS\System32\drivers\ksecpkg.sys [179528] =>.Microsoft� O58 - SDL:2019/03/19 04:44:52 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) – C:\WINDOWS\System32\drivers\ksthunk.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/04/19 01:09:16 A . (.Logitech Inc. - Logitech WingMan Virtual Bus Enumerator Dri.) – C:\WINDOWS\System32\drivers\LGBusEnum.sys [53928] =>.Logitech Inc� O58 - SDL:2016/04/19 01:09:16 A . (.Logitech Inc. - Logitech Gaming Software Joystick Translati.) – C:\WINDOWS\System32\drivers\LGJoyXlCore.sys [85160] =>.Logitech Inc� O58 - SDL:2016/04/19 01:09:16 A . (.Logitech Inc. - Logitech GamePanel Virtual Hid Device Drive.) – C:\WINDOWS\System32\drivers\LGVirHid.sys [43432] =>.Logitech Inc� O58 - SDL:2021/01/14 13:29:47 A . (.Logitech, Inc. - Logitech HID Filter Driver..) – C:\WINDOWS\System32\drivers\LHidFilt.Sys [86648] =>.Logitech Inc� O58 - SDL:2019/03/19 04:44:48 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) – C:\WINDOWS\System32\drivers\lltdio.sys [72192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/14 13:29:47 A . (.Logitech, Inc. - Logitech Mouse Filter Driver..) – C:\WINDOWS\System32\drivers\LMouFilt.Sys [69240] =>.Logitech Inc� O58 - SDL:2021/12/22 19:19:59 A . (.Logitech, Inc. - Logitech Non-Plug and Play Driver..) – C:\WINDOWS\System32\drivers\LNonPnP.sys [18960] =>.Logitech� O58 - SDL:2021/12/20 23:16:42 A . (…) – C:\WINDOWS\System32\drivers\lpsport.sys [61304] =>.AVG Technologies CZ, s.r.o.� O58 - SDL:2019/03/19 04:43:39 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) – C:\WINDOWS\System32\drivers\lsi_sas.sys [109064] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) – C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124448] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) – C:\WINDOWS\System32\drivers\lsi_sas3i.sys [128528] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) – C:\WINDOWS\System32\drivers\lsi_sss.sys [82960] =>.Microsoft Windows� O58 - SDL:2021/03/10 22:28:58 A . (.Microsoft Corporation - LUA File Virtualization Filter Driver.) – C:\WINDOWS\System32\drivers\luafv.sys [141824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) – C:\WINDOWS\System32\drivers\mausbhost.sys [535864] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - MA-USB IP Driver.) – C:\WINDOWS\System32\drivers\mausbip.sys [62264] =>.Microsoft Windows� O58 - SDL:2022/08/20 19:21:54 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) – C:\WINDOWS\System32\drivers\mbae64.sys [158640] =>.Microsoft� O58 - SDL:2022/10/07 20:20:01 A . (.Malwarebytes - Malwarebytes Chameleon.) – C:\WINDOWS\System32\drivers\MbamChameleon.sys [223176] =>.Microsoft� O58 - SDL:2022/08/20 19:21:29 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) – C:\WINDOWS\System32\drivers\MbamElam.sys [21480] =>.Microsoft� O58 - SDL:2022/09/29 10:32:44 A . (.Malwarebytes - Malwarebytes SwissArmy.) – C:\WINDOWS\System32\drivers\mbamswissarmy.sys [239544] =>.Microsoft� O58 - SDL:2020/02/02 03:03:24 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) – C:\WINDOWS\System32\drivers\MbbCx.sys [359424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/16 12:51:22 A . (.Malwarebytes - Malwarebytes VPN Tunnel Driver.) – C:\WINDOWS\System32\drivers\mbtun.sys [86680] =>.Malwarebytes Inc� O58 - SDL:2019/03/19 04:44:33 A . (.Microsoft Corporation - Medium changer class driver.) – C:\WINDOWS\System32\drivers\mcd.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) – C:\WINDOWS\System32\drivers\megasas.sys [59920] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) – C:\WINDOWS\System32\drivers\MegaSas2i.sys [75280] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) – C:\WINDOWS\System32\drivers\megasas35i.sys [94736] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) – C:\WINDOWS\System32\drivers\megasr.sys [576016] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:33 A . (.Microsoft Corporation - Microsoft Bluetooth Avrcp Transport Driver.) – C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [64512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) – C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [97280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:41 A . (.Mellanox - MLX4 Bus Driver.) – C:\WINDOWS\System32\drivers\mlx4_bus.sys [1150480] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:47 A . (.Microsoft Corporation - MMCSS Driver.) – C:\WINDOWS\System32\drivers\mmcss.sys [53760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/13 01:43:43 A . (.Microsoft Corporation - Modem Device Driver.) – C:\WINDOWS\System32\drivers\modem.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/03/03 18:51:31 A . (.Microsoft Corporation - Monitor Driver.) – C:\WINDOWS\System32\drivers\monitor.sys [69632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Mouse Class Driver.) – C:\WINDOWS\System32\drivers\mouclass.sys [66872] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - HID Mouse Filter Driver.) – C:\WINDOWS\System32\drivers\mouhid.sys [35840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:08:20 A . (.Microsoft Corporation - Mount Point Manager.) – C:\WINDOWS\System32\drivers\mountmgr.sys [113160] =>.Microsoft� O58 - SDL:2019/03/19 04:44:15 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) – C:\WINDOWS\System32\drivers\mpsdrv.sys [80384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:13:20 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) – C:\WINDOWS\System32\drivers\mrxdav.sys [158208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/11 23:58:07 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) – C:\WINDOWS\System32\drivers\mrxsmb.sys [561472] =>.Microsoft� O58 - SDL:2021/02/11 23:58:07 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) – C:\WINDOWS\System32\drivers\mrxsmb20.sys [260416] =>.Microsoft� O58 - SDL:2020/02/02 03:08:21 A . (.Microsoft Corporation - Mailslot driver.) – C:\WINDOWS\System32\drivers\msfs.sys [43536] =>.Microsoft� O58 - SDL:2020/02/02 03:05:07 A . (.Microsoft Corporation - GPIO Class Extension Driver.) – C:\WINDOWS\System32\drivers\msgpioclx.sys [182288] =>.Microsoft� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - GPIO Button Driver.) – C:\WINDOWS\System32\drivers\msgpiowin32.sys [54072] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:16 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) – C:\WINDOWS\System32\drivers\mshidkmdf.sys [8704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - Pass-through Driver for HID-UMDF Interface.) – C:\WINDOWS\System32\drivers\mshidumdf.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:16 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) – C:\WINDOWS\System32\drivers\mshwnclx.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:02:44 A . (.Microsoft Corporation - ISA Driver.) – C:\WINDOWS\System32\drivers\msisadrv.sys [19256] =>.Microsoft� O58 - SDL:2021/01/28 17:05:22 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) – C:\WINDOWS\System32\drivers\msiscsi.sys [293176] =>.Microsoft� O58 - SDL:2020/11/10 21:12:36 A . (.Microsoft Corporation - MS KS Server.) – C:\WINDOWS\System32\drivers\mskssrv.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:00 A . (.Microsoft Corporation - Microsoft Link-Layer Discovery Protocol Dri.) – C:\WINDOWS\System32\drivers\mslldp.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:52 A . (.Microsoft Corporation - MS Proxy Clock.) – C:\WINDOWS\System32\drivers\mspclock.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:52 A . (.Microsoft Corporation - MS Proxy Quality Manager.) – C:\WINDOWS\System32\drivers\mspqm.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 00:33:12 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) – C:\WINDOWS\System32\drivers\msrpc.sys [375608] =>.Microsoft� O58 - SDL:2021/03/26 20:42:39 A . (.Microsoft Corporation - Microsoft Security Events Component file sy.) – C:\WINDOWS\System32\drivers\mssecflt.sys [281416] =>.Microsoft� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - System Management BIOS Driver.) – C:\WINDOWS\System32\drivers\mssmbios.sys [48440] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:52 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) – C:\WINDOWS\System32\drivers\mstee.sys [12800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:39 A . (.Microsoft Corporation - Microsoft Multi-Touch HID Driver.) – C:\WINDOWS\System32\drivers\MTConfig.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/11 23:58:06 A . (.Microsoft Corporation - Multiple UNC Provider Driver.) – C:\WINDOWS\System32\drivers\mup.sys [131904] =>.Microsoft� O58 - SDL:2019/03/19 04:43:39 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) – C:\WINDOWS\System32\drivers\mvumis.sys [64016] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:41 A . (.Mellanox - NetworkDirect Support Filter Driver.) – C:\WINDOWS\System32\drivers\ndfltr.sys [153616] =>.Microsoft Windows� O58 - SDL:2021/03/26 20:47:36 A . (.Microsoft Corporation - Network Driver Interface Specification (NDI.) – C:\WINDOWS\System32\drivers\ndis.sys [1481016] =>.Microsoft� O58 - SDL:2020/09/09 20:17:30 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) – C:\WINDOWS\System32\drivers\ndiscap.sys [56320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/03/03 18:56:12 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) – C:\WINDOWS\System32\drivers\NdisImPlatform.sys [135168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/14 15:57:18 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) – C:\WINDOWS\System32\drivers\ndistapi.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:35 A . (.Microsoft Corporation - NDIS User mode I/O driver.) – C:\WINDOWS\System32\drivers\ndisuio.sys [70656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:00 A . (.Microsoft Corporation - Microsoft Virtual Network Adapter Enumerato.) – C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [22016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/03/17 01:48:30 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) – C:\WINDOWS\System32\drivers\ndiswan.sys [206336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:50 A . (.Microsoft Corporation - RDMA Sample Driver.) – C:\WINDOWS\System32\drivers\NDKPing.sys [63488] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/14 15:57:18 A . (.Microsoft Corporation - NDIS Proxy.) – C:\WINDOWS\System32\drivers\ndproxy.sys [244736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:32 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) – C:\WINDOWS\System32\drivers\Ndu.sys [132096] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:36 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) – C:\WINDOWS\System32\drivers\NetAdapterCx.sys [187904] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:58 A . (.Microsoft Corporation - NetBIOS interface driver.) – C:\WINDOWS\System32\drivers\netbios.sys [64824] =>.Microsoft Windows� O58 - SDL:2020/10/14 15:57:17 A . (.Microsoft Corporation - MBT Transport driver.) – C:\WINDOWS\System32\drivers\netbt.sys [337408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2022/08/02 14:09:01 A . (. - NetFilter SDK WFP Driver (WPP).) – C:\WINDOWS\System32\drivers\netfilter2.sys [116296] =>.Piriform Software Ltd� O58 - SDL:2021/05/29 20:02:15 A . (.Microsoft Corporation - Network I/O Subsystem.) – C:\WINDOWS\System32\drivers\netio.sys [586552] =>.Microsoft� O58 - SDL:2021/04/14 00:32:37 A . (.Microsoft Corporation - Virtual NDIS Miniport.) – C:\WINDOWS\System32\drivers\netvsc.sys [246584] =>.Microsoft� O58 - SDL:2019/09/09 16:46:29 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) – C:\WINDOWS\System32\drivers\Netwbw02.sys [3521016] =>.Intel(R) Wireless Connectivity Solutions� O58 - SDL:2020/02/02 03:08:22 A . (.Microsoft Corporation - NPFS Driver.) – C:\WINDOWS\System32\drivers\npfs.sys [87048] =>.Microsoft� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Named pipe service triggers.) – C:\WINDOWS\System32\drivers\npsvctrig.sys [27136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:08:26 A . (.Microsoft Corporation - NSI Proxy.) – C:\WINDOWS\System32\drivers\nsiproxy.sys [48128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 20:02:13 A . (.Microsoft Corporation - NT File System Driver.) – C:\WINDOWS\System32\drivers\ntfs.sys [2693432] =>.Microsoft� O58 - SDL:2019/03/19 04:44:53 A . (.Microsoft Corporation - NTOS extension host driver.) – C:\WINDOWS\System32\drivers\ntosext.sys [20496] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:35 A . (.Microsoft Corporation - NULL Driver.) – C:\WINDOWS\System32\drivers\null.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - NVDIMM device driver.) – C:\WINDOWS\System32\drivers\nvdimm.sys [158520] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.NVIDIA Corporation - NVIDIA® nForce™ RAID Driver.) – C:\WINDOWS\System32\drivers\nvraid.sys [150544] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.NVIDIA Corporation - NVIDIA® nForce™ Sata Performance Driver.) – C:\WINDOWS\System32\drivers\nvstor.sys [166408] =>.Microsoft Windows� O58 - SDL:2021/03/10 22:28:29 A . (.Microsoft Corporation - NativeWiFi Miniport Driver.) – C:\WINDOWS\System32\drivers\nwifi.sys [702976] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:15 A . (.Microsoft Corporation - QoS Packet Scheduler.) – C:\WINDOWS\System32\drivers\pacer.sys [160784] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Parallel Port Driver.) – C:\WINDOWS\System32\drivers\parport.sys [108032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/28 17:07:51 A . (.Microsoft Corporation - Partition driver.) – C:\WINDOWS\System32\drivers\partmgr.sys [178000] =>.Microsoft� O58 - SDL:2021/05/29 19:59:37 A . (.Microsoft Corporation - NT Plug and Play PCI Enumerator.) – C:\WINDOWS\System32\drivers\pci.sys [435024] =>.Microsoft� O58 - SDL:2021/05/29 19:59:36 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) – C:\WINDOWS\System32\drivers\pciide.sys [16696] =>.Microsoft� O58 - SDL:2021/05/29 19:59:36 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) – C:\WINDOWS\System32\drivers\pciidex.sys [56632] =>.Microsoft� O58 - SDL:2019/03/19 04:43:34 A . (.Microsoft Corporation - PCMCIA Bus Driver.) – C:\WINDOWS\System32\drivers\pcmcia.sys [127504] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:33 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) – C:\WINDOWS\System32\drivers\pcw.sys [58384] =>.Microsoft Windows� O58 - SDL:2020/03/03 18:52:47 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) – C:\WINDOWS\System32\drivers\pdc.sys [180232] =>.Microsoft� O58 - SDL:2020/09/09 20:08:01 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) – C:\WINDOWS\System32\drivers\PEAuth.sys [817152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) – C:\WINDOWS\System32\drivers\percsas2i.sys [58896] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) – C:\WINDOWS\System32\drivers\percsas3i.sys [68624] =>.Microsoft Windows� O58 - SDL:2011/02/08 18:07:00 A . (.TOSHIBA Corporation - TOSHIBA Universal Camera Filter Driver.) – C:\WINDOWS\System32\drivers\PGEffect.sys [38096] =>.TOSHIBA CORPORATION� O58 - SDL:2021/04/14 00:34:06 A . (.Microsoft Corporation - Packet Monitor Driver.) – C:\WINDOWS\System32\drivers\PktMon.sys [130360] =>.Microsoft� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Persistent memory driver.) – C:\WINDOWS\System32\drivers\pmem.sys [127800] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:38 A . (.Microsoft Corporation - Plug and Play Memory Driver.) – C:\WINDOWS\System32\drivers\pnpmem.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) – C:\WINDOWS\System32\drivers\portcfg.sys [25600] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/13 01:22:18 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) – C:\WINDOWS\System32\drivers\portcls.sys [390144] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/09 20:07:32 A . (.Microsoft Corporation - Processor Device Driver.) – C:\WINDOWS\System32\drivers\processr.sys [208712] =>.Microsoft� O58 - SDL:2019/03/19 04:44:15 A . (.Microsoft Corporation - Process Launch Monitor driver.) – C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [36248] =>.Microsoft Windows� O58 - SDL:2015/05/05 21:40:36 A . (.TOSHIBA - Generic IO & Memory Access.) – C:\WINDOWS\System32\drivers\QIOMem.sys [14000] [Unsigned] =>.Toshiba O58 - SDL:2019/03/19 04:45:00 A . (.Microsoft Corporation - Microsoft Quality Windows Audio Video Exper.) – C:\WINDOWS\System32\drivers\qwavedrv.sys [53760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:49 A . (.Microsoft Corporation - RAM Disk Driver.) – C:\WINDOWS\System32\drivers\ramdisk.sys [41784] =>.Microsoft Windows� O58 - SDL:2020/08/18 17:24:52 A . (.IBM Corp. - RapportHades64.) – C:\WINDOWS\System32\drivers\RapportHades64.sys [398984] =>.IBM� O58 - SDL:2020/08/18 17:24:52 A . (.IBM Corp. - RapportKE.) – C:\WINDOWS\System32\drivers\RapportKE64.sys [448904] =>.IBM� O58 - SDL:2019/03/19 04:45:02 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) – C:\WINDOWS\System32\drivers\rasacd.sys [19968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:02 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) – C:\WINDOWS\System32\drivers\rasl2tp.sys [112128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:02 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) – C:\WINDOWS\System32\drivers\raspppoe.sys [87552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:02 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) – C:\WINDOWS\System32\drivers\raspptp.sys [103424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:02 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) – C:\WINDOWS\System32\drivers\rassstp.sys [85504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/11 23:58:06 A . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) – C:\WINDOWS\System32\drivers\rdbss.sys [457024] =>.Microsoft� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) – C:\WINDOWS\System32\drivers\rdpbus.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/09 09:19:49 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) – C:\WINDOWS\System32\drivers\rdpdr.sys [167936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 00:34:05 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) – C:\WINDOWS\System32\drivers\rdpvideominiport.sys [32080] =>.Microsoft� O58 - SDL:2019/03/19 04:45:56 A . (.Microsoft Corporation - ReadyBoost Driver.) – C:\WINDOWS\System32\drivers\rdyboost.sys [294928] =>.Microsoft Windows� O58 - SDL:2021/01/28 17:07:37 A . (.Microsoft Corporation - NT ReFS FS Driver.) – C:\WINDOWS\System32\drivers\refs.sys [1972048] =>.Microsoft� O58 - SDL:2020/02/02 03:07:05 A . (.Microsoft Corporation - NT ReFS FS Driver.) – C:\WINDOWS\System32\drivers\refsv1.sys [986936] =>.Microsoft� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) – C:\WINDOWS\System32\drivers\rfcomm.sys [211456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 00:32:38 A . (.Microsoft Corporation - Microsoft RemoteFX VM Transport.) – C:\WINDOWS\System32\drivers\RfxVmt.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:38 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) – C:\WINDOWS\System32\drivers\rhproxy.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:43 A . (.Microsoft Corporation - Reliable Multicast Transport.) – C:\WINDOWS\System32\drivers\rmcast.sys [159232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:02 A . (.Microsoft Corporation - Remote NDIS Miniport.) – C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:53 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) – C:\WINDOWS\System32\drivers\rootmdm.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:48 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) – C:\WINDOWS\System32\drivers\rspndr.sys [89088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/20 01:39:10 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.30 64-bi.) – C:\WINDOWS\System32\drivers\Rt630x64.sys [1140728] =>.Realtek Semiconductor Corp.� O58 - SDL:2022/08/18 15:47:10 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) – C:\WINDOWS\System32\drivers\rt640x64.sys [1188672] =>.Realtek Semiconductor Corp.� O58 - SDL:2019/03/19 04:43:49 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) – C:\WINDOWS\System32\drivers\rteth.sys [57856] [Unsigned] =>.Realtek O58 - SDL:2021/02/26 11:32:22 A . (.Realtek Semiconductor Corp. - Realtek Pcie CardReader Driver for 2K/XP/Vi.) – C:\WINDOWS\System32\drivers\RtsP2Stor.sys [347224] =>.Realtek Semiconductor Corp.� O58 - SDL:2021/05/29 19:59:34 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) – C:\WINDOWS\System32\drivers\sbp2port.sys [118088] =>.Microsoft� O58 - SDL:2021/02/17 16:57:22 A . (.Microsoft Corporation - Microsoft Smart Card Reader Filter Driver.) – C:\WINDOWS\System32\drivers\scfilter.sys [45056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/04/10 14:10:41 A . (.Microsoft Corporation - Storage Class Memory Bus Driver.) – C:\WINDOWS\System32\drivers\scmbus.sys [151352] =>.Microsoft� O58 - SDL:2021/05/29 20:02:07 A . (.Microsoft Corporation - SCSI Port Driver.) – C:\WINDOWS\System32\drivers\scsiport.sys [187704] =>.Microsoft� O58 - SDL:2021/03/26 20:42:25 A . (.Microsoft Corporation - SecureDigital Bus Driver.) – C:\WINDOWS\System32\drivers\sdbus.sys [297272] =>.Microsoft� O58 - SDL:2019/03/19 04:43:38 A . (.Microsoft Corporation - SDF Reflector.) – C:\WINDOWS\System32\drivers\SDFRd.sys [33592] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:49 A . (.Microsoft Corporation - SD Host Controller Port Driver.) – C:\WINDOWS\System32\drivers\sdport.sys [105784] =>.Microsoft Windows� O58 - SDL:2021/05/29 19:59:40 A . (.Microsoft Corporation - SD Storage Class Driver.) – C:\WINDOWS\System32\drivers\sdstor.sys [103736] =>.Microsoft� O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - Serial Class Extension.) – C:\WINDOWS\System32\drivers\SerCx.sys [84792] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - Serial Class Extension V2.) – C:\WINDOWS\System32\drivers\SerCx2.sys [170808] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Serial Port Enumerator.) – C:\WINDOWS\System32\drivers\serenum.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Serial Device Driver.) – C:\WINDOWS\System32\drivers\serial.sys [89600] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Serial Mouse Filter Driver.) – C:\WINDOWS\System32\drivers\sermouse.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/04/10 14:10:40 A . (.Microsoft Corporation - SCSI Floppy Driver.) – C:\WINDOWS\System32\drivers\sfloppy.sys [18944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:45:32 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) – C:\WINDOWS\System32\drivers\SgrmAgent.sys [89096] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) – C:\WINDOWS\System32\drivers\sisraid2.sys [45072] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) – C:\WINDOWS\System32\drivers\sisraid4.sys [81936] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:36 A . (.Microsoft Corporation - Sleep Study Helper.) – C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [38200] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:39 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) – C:\WINDOWS\System32\drivers\SmartSAMD.sys [220176] =>.Microsoft Windows� O58 - SDL:2021/01/05 15:04:12 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) – C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [41816] =>.Synaptics Incorporated� O58 - SDL:2019/03/19 04:44:30 A . (.Microsoft Corporation - Smart Card Driver Library.) – C:\WINDOWS\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 19:59:34 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) – C:\WINDOWS\System32\drivers\spacedump.sys [204600] =>.Microsoft� O58 - SDL:2021/05/29 19:59:34 A . (.Microsoft Corporation - Storage Spaces Driver.) – C:\WINDOWS\System32\drivers\spaceport.sys [656200] =>.Microsoft� O58 - SDL:2019/03/19 11:42:58 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) – C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [76088] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - SPB Class Extension.) – C:\WINDOWS\System32\drivers\SpbCx.sys [85816] =>.Microsoft Windows� O58 - SDL:2021/05/29 20:02:17 A . (.Microsoft Corporation - Smb 2.0 Server driver.) – C:\WINDOWS\System32\drivers\srv2.sys [771584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/10 21:12:31 A . (.Microsoft Corporation - Server Network driver.) – C:\WINDOWS\System32\drivers\srvnet.sys [309248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:39 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) – C:\WINDOWS\System32\drivers\stexstor.sys [31240] =>.Microsoft Windows� O58 - SDL:2021/05/29 19:59:37 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) – C:\WINDOWS\System32\drivers\storahci.sys [174392] =>.Microsoft� O58 - SDL:2020/10/14 15:53:01 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) – C:\WINDOWS\System32\drivers\stornvme.sys [141632] =>.Microsoft� O58 - SDL:2021/05/29 19:59:58 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) – C:\WINDOWS\System32\drivers\storport.sys [650040] =>.Microsoft� O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - Storage QoS Filter.) – C:\WINDOWS\System32\drivers\storqosflt.sys [93200] =>.Microsoft Windows� O58 - SDL:2021/05/29 19:59:38 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) – C:\WINDOWS\System32\drivers\storufs.sys [59704] =>.Microsoft� O58 - SDL:2020/02/02 03:03:03 A . (.Microsoft Corporation - Storage VSC Driver.) – C:\WINDOWS\System32\drivers\storvsc.sys [43536] =>.Microsoft� O58 - SDL:2019/03/19 04:44:33 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) – C:\WINDOWS\System32\drivers\stream.sys [82432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/14 00:32:37 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSC.) – C:\WINDOWS\System32\drivers\Synth3dVsc.sys [6656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:33 A . (.Microsoft Corporation - SCSI Tape Class Driver.) – C:\WINDOWS\System32\drivers\tape.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/05/22 11:51:38 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) – C:\WINDOWS\System32\drivers\tapsurfshark.sys [38728] {53DBDFD481F038984E7FADD03DC31D0E}. =>.The OpenVPN Project O58 - SDL:2021/01/13 01:24:45 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) – C:\WINDOWS\System32\drivers\tbs.sys [29512] =>.Microsoft� O58 - SDL:2021/05/29 20:02:16 A . (.Microsoft Corporation - TCP/IP Driver.) – C:\WINDOWS\System32\drivers\tcpip.sys [2992968] =>.Microsoft� O58 - SDL:2019/03/19 04:44:58 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) – C:\WINDOWS\System32\drivers\tcpipreg.sys [54784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:36 A . (.Microsoft Corporation - TDI Wrapper.) – C:\WINDOWS\System32\drivers\tdi.sys [39440] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:45:32 A . (.Microsoft Corporation - TDI Translation Driver.) – C:\WINDOWS\System32\drivers\tdx.sys [132616] =>.Microsoft Windows� O58 - SDL:2017/04/20 07:27:11 A . (.TeamViewer GmbH - TeamViewerVPN Network Adapter.) – C:\WINDOWS\System32\drivers\teamviewervpn.sys [35112] =>.TeamViewer GmbH� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Terminal Server Input Driver.) – C:\WINDOWS\System32\drivers\terminpt.sys [41488] =>.Microsoft Windows� O58 - SDL:2019/04/29 23:38:00 A . (.Dynabook Inc. - dynabook Hotkey Driver.) – C:\WINDOWS\System32\drivers\Thotkey.sys [47816] =>.Dynabook Inc.� O58 - SDL:2020/02/02 03:08:33 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) – C:\WINDOWS\System32\drivers\tm.sys [141840] =>.Microsoft� O58 - SDL:2015/06/18 18:38:12 A . (.Toshiba Corporation - Toshiba Bluetooth Filter Driver.) – C:\WINDOWS\System32\drivers\TosBTFilter.sys [28432] =>.TOSHIBA CORPORATION� O58 - SDL:2022/03/02 22:10:39 A . (.Dynabook Inc. - dynabook Bluetooth ACPI Driver.) – C:\WINDOWS\System32\drivers\tosrfec.sys [37544] =>.Dynabook Inc.� O58 - SDL:2021/01/13 01:22:27 A . (.Microsoft Corporation - TPM Device Driver.) – C:\WINDOWS\System32\drivers\tpm.sys [251720] =>.Microsoft� O58 - SDL:2022/11/07 19:15:59 A . (…) – C:\WINDOWS\System32\drivers\truesight.sys [41920] =>.ADLICE (Julien ASCOET)� O58 - SDL:2021/10/01 09:09:06 A . (.Bitdefender - Trufos Kernel Module.) – C:\WINDOWS\System32\drivers\trufos.sys [615840] =>.Microsoft� O58 - SDL:2019/03/19 04:43:49 A . (.Microsoft Corporation - Remote Desktop USB Hub Filter Driver.) – C:\WINDOWS\System32\drivers\TsUsbFlt.sys [65024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/05/12 19:52:37 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) – C:\WINDOWS\System32\drivers\TsUsbGD.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:03:04 A . (.Microsoft Corporation - Remote Desktop USB Hub.) – C:\WINDOWS\System32\drivers\tsusbhub.sys [132096] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:09:49 A . (.Microsoft Corporation - Microsoft Tunnel Interface Driver.) – C:\WINDOWS\System32\drivers\tunnel.sys [128512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/04/30 02:12:14 A . (.Dynabook Inc. - dynabook ACPI-Based Value Added Logical and.) – C:\WINDOWS\System32\drivers\TVALZ_O.SYS [46088] =>.Dynabook Inc.� O58 - SDL:2020/02/02 03:02:45 A . (.Microsoft Corporation - Microsoft Uasp Driver.) – C:\WINDOWS\System32\drivers\uaspstor.sys [79376] =>.Microsoft� O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) – C:\WINDOWS\System32\drivers\UcmCx.sys [160256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) – C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [186368] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) – C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) – C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [111104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:49 A . (.Microsoft Corporation - USB Controller Extension.) – C:\WINDOWS\System32\drivers\Ucx01000.sys [244024] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:49 A . (.Microsoft Corporation - “udecx.DRIVER”.) – C:\WINDOWS\System32\drivers\Udecx.sys [51200] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:13:10 A . (.Microsoft Corporation - UDF File System Driver.) – C:\WINDOWS\System32\drivers\udfs.sys [342528] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 11:42:59 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) – C:\WINDOWS\System32\drivers\UevAgentDriver.sys [41272] =>.Microsoft Windows� O58 - SDL:2021/01/28 17:07:16 A . (.Microsoft Corporation - USB Function Driver Class Extension.) – C:\WINDOWS\System32\drivers\ufx01000.sys [312120] =>.Microsoft� O58 - SDL:2021/01/28 17:05:24 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) – C:\WINDOWS\System32\drivers\ufxsynopsys.sys [181048] =>.Microsoft� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Generic pass-through driver.) – C:\WINDOWS\System32\drivers\umpass.sys [13312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) – C:\WINDOWS\System32\drivers\urscx01000.sys [74552] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:45:02 A . (.Microsoft Corporation - Remote NDIS USB Driver.) – C:\WINDOWS\System32\drivers\usb8023.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/05/04 09:03:54 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) – C:\WINDOWS\System32\drivers\usbaapl64.sys [54784] [Unsigned] =>.Apple, Inc. O58 - SDL:2021/03/26 20:41:39 A . (.Microsoft Corporation - USB Audio Class Driver.) – C:\WINDOWS\System32\drivers\USBAUDIO.sys [198656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:02:37 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) – C:\WINDOWS\System32\drivers\usbaudio2.sys [257536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:38 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) – C:\WINDOWS\System32\drivers\USBCAMD2.sys [39936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/14 15:53:04 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) – C:\WINDOWS\System32\drivers\usbccgp.sys [183616] =>.Microsoft� O58 - SDL:2019/03/19 04:43:37 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) – C:\WINDOWS\System32\drivers\usbcir.sys [107008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Universal Serial Bus Driver.) – C:\WINDOWS\System32\drivers\usbd.sys [33592] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) – C:\WINDOWS\System32\drivers\usbehci.sys [100664] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Default Hub Driver for USB.) – C:\WINDOWS\System32\drivers\usbhub.sys [545592] =>.Microsoft Windows� O58 - SDL:2020/05/12 19:52:38 A . (.Microsoft Corporation - USB3 HUB Driver.) – C:\WINDOWS\System32\drivers\USBHUB3.SYS [634680] =>.Microsoft� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) – C:\WINDOWS\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:06:07 A . (…) – C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - USB 1.1 & 2.0 Port Driver.) – C:\WINDOWS\System32\drivers\usbport.sys [475144] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:37 A . (.Microsoft Corporation - USB Printer driver.) – C:\WINDOWS\System32\drivers\usbprint.sys [34304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - USB Serial Driver.) – C:\WINDOWS\System32\drivers\usbser.sys [79360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 19:59:39 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) – C:\WINDOWS\System32\drivers\USBSTOR.SYS [136008] =>.Microsoft� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) – C:\WINDOWS\System32\drivers\usbuhci.sys [39936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/05/08 15:13:05 A . (.Microsoft Corporation - USB Video Class Driver.) – C:\WINDOWS\System32\drivers\usbvideo.sys [306496] =>.Microsoft� O58 - SDL:2020/06/14 14:28:21 A . (.Microsoft Corporation - USB XHCI Driver.) – C:\WINDOWS\System32\drivers\USBXHCI.SYS [531768] =>.Microsoft� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) – C:\WINDOWS\System32\drivers\vdrvroot.sys [60216] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:35 A . (.Microsoft Corporation - Driver Verifier Extension.) – C:\WINDOWS\System32\drivers\VerifierExt.sys [321040] =>.Microsoft Windows� O58 - SDL:2020/11/10 21:08:26 A . (.Microsoft Corporation - VHD Miniport Driver.) – C:\WINDOWS\System32\drivers\vhdmp.sys [804168] =>.Microsoft� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) – C:\WINDOWS\System32\drivers\vhf.sys [39936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/13 01:22:30 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) – C:\WINDOWS\System32\drivers\Vid.sys [555320] =>.Microsoft� O58 - SDL:2019/03/19 04:44:38 A . (.Microsoft Corporation - Video Port Driver.) – C:\WINDOWS\System32\drivers\videoprt.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:13:15 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) – C:\WINDOWS\System32\drivers\vmbkmcl.sys [100664] =>.Microsoft� O58 - SDL:2021/01/28 17:05:26 A . (.Microsoft Corporation - Microsoft Hyper-V Virtual Machine Bus Child.) – C:\WINDOWS\System32\drivers\vmbus.sys [150840] =>.Microsoft� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) – C:\WINDOWS\System32\drivers\VMBusHID.sys [36152] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) – C:\WINDOWS\System32\drivers\vmgencounter.sys [22328] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:44 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) – C:\WINDOWS\System32\drivers\vmgid.sys [18232] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) – C:\WINDOWS\System32\drivers\vms3cap.sys [17208] =>.Microsoft Windows� O58 - SDL:2021/05/29 19:59:42 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) – C:\WINDOWS\System32\drivers\vmstorfl.sys [52536] =>.Microsoft� O58 - SDL:2021/04/14 00:32:36 A . (.Microsoft Corporation - Volume Manager Driver.) – C:\WINDOWS\System32\drivers\volmgr.sys [90448] =>.Microsoft� O58 - SDL:2019/03/19 04:45:38 A . (.Microsoft Corporation - Volume Manager Extension Driver.) – C:\WINDOWS\System32\drivers\volmgrx.sys [388112] =>.Microsoft Windows� O58 - SDL:2020/03/03 18:52:54 A . (.Microsoft Corporation - Volume Shadow Copy driver.) – C:\WINDOWS\System32\drivers\volsnap.sys [429880] =>.Microsoft� O58 - SDL:2019/03/19 04:43:39 A . (.Microsoft Corporation - Volume driver.) – C:\WINDOWS\System32\drivers\volume.sys [16696] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:44 A . (.Microsoft Corporation - Virtual PCI Bus.) – C:\WINDOWS\System32\drivers\vpci.sys [83768] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:40 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) – C:\WINDOWS\System32\drivers\vsmraid.sys [166928] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:40 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) – C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305672] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:55 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) – C:\WINDOWS\System32\drivers\vwifibus.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:55 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) – C:\WINDOWS\System32\drivers\vwififlt.sys [77312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:55 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) – C:\WINDOWS\System32\drivers\vwifimp.sys [50176] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:39 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) – C:\WINDOWS\System32\drivers\wacompen.sys [31744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/14 15:57:18 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) – C:\WINDOWS\System32\drivers\wanarp.sys [92672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/09 09:17:49 A . (.Microsoft Corporation - Watchdog Driver.) – C:\WINDOWS\System32\drivers\watchdog.sys [66048] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/11 23:57:52 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) – C:\WINDOWS\System32\drivers\wcifs.sys [201528] =>.Microsoft� O58 - SDL:2021/02/11 23:57:52 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) – C:\WINDOWS\System32\drivers\wcnfs.sys [92672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:57 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) – C:\WINDOWS\System32\drivers\WdBoot.sys [46472] =>.Microsoft� O58 - SDL:2020/05/08 15:16:04 A . (.Microsoft Corporation - Kernel Mode Driver Framework Runtime.) – C:\WINDOWS\System32\drivers\Wdf01000.sys [847168] =>.Microsoft� O58 - SDL:2019/03/19 04:43:57 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) – C:\WINDOWS\System32\drivers\WdFilter.sys [333784] =>.Microsoft� O58 - SDL:2020/05/08 15:16:04 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) – C:\WINDOWS\System32\drivers\WdfLdr.sys [58696] =>.Microsoft� O58 - SDL:2021/03/10 22:28:30 A . (.Microsoft Corporation - WDI Driver Framework Driver.) – C:\WINDOWS\System32\drivers\WdiWiFi.sys [931840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:21 A . (.Microsoft Corporation - WDM Companion Filter.) – C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [21816] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:43:57 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) – C:\WINDOWS\System32\drivers\WdNisDrv.sys [62432] =>.Microsoft� O58 - SDL:2019/03/19 04:44:35 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) – C:\WINDOWS\System32\drivers\werkernel.sys [50488] =>.Microsoft Windows� O58 - SDL:2021/05/29 20:01:05 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) – C:\WINDOWS\System32\drivers\wfplwfs.sys [180536] =>.Microsoft� O58 - SDL:2020/02/23 01:05:01 A . (.Microsoft Corporation - Wim file system Driver.) – C:\WINDOWS\System32\drivers\wimmount.sys [37392] =>.Microsoft� O58 - SDL:2019/03/19 04:44:18 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) – C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [75752] =>.Microsoft� O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) – C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [17896] =>.Microsoft� O58 - SDL:2019/03/19 04:45:54 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) – C:\WINDOWS\System32\drivers\winhv.sys [32568] =>.Microsoft Windows� O58 - SDL:2020/02/02 03:12:19 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) – C:\WINDOWS\System32\drivers\winhvr.sys [84488] =>.Microsoft� O58 - SDL:2019/03/19 04:43:41 A . (.Mellanox - Kernel WinMad.) – C:\WINDOWS\System32\drivers\winmad.sys [37928] =>.Microsoft Windows� O58 - SDL:2021/03/10 22:28:27 A . (.Microsoft Corporation - Windows NAT Driver.) – C:\WINDOWS\System32\drivers\winnat.sys [251904] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/06/12 01:30:48 A . (.Microsoft Corporation - Windows QUIC Driver.) – C:\WINDOWS\System32\drivers\winquic.sys [205112] =>.Microsoft Windows� O58 - SDL:2020/09/17 13:05:30 A . (.Surfshark Ltd - WintunShark Driver.) – C:\WINDOWS\System32\drivers\wintunshark.sys [31096] {5150076BDC338FA24FC29BCD40730489}. O58 - SDL:2019/03/19 04:43:43 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) – C:\WINDOWS\System32\drivers\winusb.sys [105472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:41 A . (.Mellanox - Kernel WinVerbs.) – C:\WINDOWS\System32\drivers\winverbs.sys [77832] =>.Microsoft Windows� O58 - SDL:2022/08/12 13:34:16 AT . (.WireGuard LLC - WireGuard Driver.) – C:\WINDOWS\System32\drivers\wireguard.sys [489368] =>.Microsoft� O58 - SDL:2019/03/19 04:43:41 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) – C:\WINDOWS\System32\drivers\wmiacpi.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:36 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) – C:\WINDOWS\System32\drivers\wmilib.sys [20496] =>.Microsoft Windows� O58 - SDL:2021/04/14 00:33:06 A . (.Microsoft Corporation - Windows Overlay Filter.) – C:\WINDOWS\System32\drivers\wof.sys [225104] =>.Microsoft� O58 - SDL:2019/03/19 11:43:00 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) – C:\WINDOWS\System32\drivers\WpdUpFltr.sys [31248] =>.Microsoft Windows� O58 - SDL:2019/03/19 04:44:36 A . (.Microsoft Corporation - WPP Trace Recorder.) – C:\WINDOWS\System32\drivers\WppRecorder.sys [39976] =>.Microsoft Windows� O58 - SDL:2020/02/02 03:08:36 A . (.Microsoft Corporation - Winsock2 IFS Layer.) – C:\WINDOWS\System32\drivers\ws2ifsl.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:43:37 A . (.Microsoft Corporation - Web Services Print Device Driver.) – C:\WINDOWS\System32\drivers\WSDPrint.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/02/02 03:02:40 A . (.Microsoft Corporation - Web Service Based Scan Device Driver.) – C:\WINDOWS\System32\drivers\WSDScan.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:53 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) – C:\WINDOWS\System32\drivers\WUDFPf.sys [134656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:53 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) – C:\WINDOWS\System32\drivers\WUDFRd.sys [297984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/10 21:08:22 A . (.Microsoft Corporation - Game Input Protocol Driver.) – C:\WINDOWS\System32\drivers\xboxgip.sys [325120] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/10 21:08:22 A . (.Microsoft Corporation - XINPUT filter driver for HID.) – C:\WINDOWS\System32\drivers\xinputhid.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 20:01:08 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) – C:\WINDOWS\System32\win32k.sys [550400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 20:00:58 A . (.Microsoft Corporation - Base Win32k Kernel Driver.) – C:\WINDOWS\System32\win32kbase.sys [2703872] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 20:01:08 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) – C:\WINDOWS\System32\win32kfull.sys [3732992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/19 04:44:15 A . (.Microsoft Corporation - Win32k non session driver.) – C:\WINDOWS\System32\win32kns.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 20:05:10 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) – C:\WINDOWS\SysWOW64\win32k.sys [324096] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/29 20:05:11 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) – C:\WINDOWS\SysWOW64\win32kfull.sys [2801664] [Unsigned] =>.Microsoft Corporation —\ Last modified or created user files (1) - 292s O61 - LFC: 2022/11/04 14:44:11 A . (..) – C:\ProgramData\AVAST Software\Avast\Cache\InstallLocation\OneDriveSetup.exe [436] [Unsigned] —\ File Associations Shell Spawning (10) - 2s O67 - Shell Spawning: <.bat> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) – C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) – C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM..\open\Command] (…) – “%1” %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM..\open\Command] (.Microsoft Corporation - Internet Explorer.) – C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft� O67 - Shell Spawning: <.js> [HKLM..\open\Command] (…) – C:\Windows\System32\WScript.exe “%1” %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM..\open\Command] (.Microsoft Corporation - Registry Editor.) – C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM..\open\Command] (…) – “%1” /S =>.Default.Value —\ Start Menu Internet (28) - 5s O68 - StartMenuInternet: [64Bits][HKLM..\Shell\open\Command] (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe {0902B36B3251C328083F777CA08428FF}. =>.AVAST Software O68 - StartMenuInternet: [64Bits][HKLM..\Shell\open\Command] (.Brave Software, Inc. - Brave Browser.) – C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc.� O68 - StartMenuInternet: [64Bits][HKLM..\Shell\open\Command] (.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation� O68 - StartMenuInternet: <FIREFOX.EXE> [64Bits][HKLM..\Shell\open\Command] (.Mozilla Corporation - Firefox.) – C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation� O68 - StartMenuInternet: [64Bits][HKLM..\Shell\open\Command] (.Google LLC - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC� O68 - StartMenuInternet: <IEXPLORE.EXE> [64Bits][HKLM..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) – C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft� O68 - StartMenuInternet: [64Bits][HKLM..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) – C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft� O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\ShowIconsCommand] (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe =>.AVAST Software O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\ShowIconsCommand] (.Brave Software, Inc. - Brave Browser.) – C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc. O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\ShowIconsCommand] (…) – C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.) O68 - StartMenuInternet: <FIREFOX.EXE> [64Bits][HKLM..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) – C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: <IEXPLORE.EXE> [64Bits][HKLM..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) – C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) – C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\ReinstallCommand] (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe =>.AVAST Software O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\ReinstallCommand] (.Brave Software, Inc. - Brave Browser.) – C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc. O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\ReinstallCommand] (…) – C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.) O68 - StartMenuInternet: <FIREFOX.EXE> [64Bits][HKLM..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) – C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: <IEXPLORE.EXE> [64Bits][HKLM..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialisation Utility.) – C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) – C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\HideIconsCommand] (.AVAST Software - Avast Secure Browser.) – C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe =>.AVAST Software O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\HideIconsCommand] (.Brave Software, Inc. - Brave Browser.) – C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc. O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\HideIconsCommand] (…) – C:\Program Files\Mozilla Firefox\uninstall\helper.exe (.not file.) O68 - StartMenuInternet: <FIREFOX.EXE> [64Bits][HKLM..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) – C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) – C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: <IEXPLORE.EXE> [64Bits][HKLM..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) – C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) – C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation —\ Search Browser Infection (3) - 58s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{1F90CCF0-DDC4-4A14-8D4A-CA861733A8AE} - (Bing) - http://www.bing.com/ =>.Bing.com —\ Search Svchost Services (51) - 17s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smart card Certificate Propagatio.) – C:\WINDOWS\System32\certprop.dll [192512] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smart card Certificate Propagatio.) – C:\Windows\System32\certprop.dll [192512] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) – C:\Windows\System32\srvsvc.dll [280064] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) – C:\Windows\System32\gpsvc.dll [1271808] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) – C:\Windows\System32\IKEEXT.DLL [1048576] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) – C:\Windows\System32\iphlpsvc.dll [832000] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Log-on Service DLL.) – C:\Windows\System32\seclogon.dll [31232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) – C:\Windows\System32\iscsiexe.dll [151040] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) – C:\Windows\System32\eapsvc.dll [110080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) – C:\Windows\System32\schedsvc.dll [859136] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) – C:\Windows\System32\wbem\WMIsvc.dll [233472] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) – C:\Windows\System32\profsvc.dll [494080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) – C:\Windows\System32\SessEnv.dll [483328] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) – C:\Windows\System32\wercplsupport.dll [125440] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) – C:\Windows\System32\PushToInstall.dll [285184] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) – C:\Windows\System32\InstallService.dll [2490368] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) – C:\Windows\System32\MitigationClient.dll [395264] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Provides infrastructure support for deployi.) – C:\Windows\System32\LanguageOverlayServer.dll [339968] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) – C:\Windows\System32\Windows.SharedPC.AccountManager.dll [237568] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) – C:\Windows\System32\XblGameSave.dll [1264640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) – C:\Windows\System32\Windows.Internal.Management.dll [940032] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) – C:\Windows\System32\themeservice.dll [67072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - Windows Management Service DLL.) – C:\Windows\System32\Windows.Management.Service.dll [941056] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Token Broker.) – C:\Windows\System32\TokenBroker.dll [1490432] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) – C:\Windows\System32\lfsvc.dll [47104] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) – C:\Windows\System32\rasauto.dll [104448] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) – C:\Windows\System32\rasmans.dll [915968] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) – C:\Windows\System32\mprdim.dll [500224] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) – C:\Windows\System32\Sens.dll [73728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) – C:\Windows\System32\ipnathlp.dll [630784] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows™ Telephony Server.) – C:\Windows\System32\tapisrv.dll [309248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) – C:\Windows\System32\wuaueng.dll [3139072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) – C:\Windows\System32\qmgr.dll [1588224] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) – C:\Windows\System32\shsvcs.dll [252928] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) – C:\Windows\System32\dmwappushsvc.dll [58368] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Flight Settings.) – C:\Windows\System32\flightsettings.dll [894464] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) – C:\Windows\System32\NetSetupSvc.dll [336896] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Windows Push Notification System Service.) – C:\Windows\System32\WpnService.dll [254976] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) – C:\Windows\System32\XboxNetApiSvc.dll [1269248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Service.) – C:\Windows\System32\usosvc.dll [545280] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) – C:\Windows\System32\usermgr.dll [1284608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) – C:\Windows\System32\DeviceSetupManager.dll [265728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) – C:\Windows\System32\wlidsvc.dll [2157056] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) – C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) – C:\Windows\System32\NcaSvc.dll [170496] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) – C:\Windows\System32\appinfo.dll [162304] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) – C:\Windows\System32\XblAuthManager.dll [1064960] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Natural Authentication Service.) – C:\Windows\System32\NaturalAuth.dll [831488] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) – C:\Windows\System32\appmgmts.dll [198656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) – C:\Windows\System32\bdesvc.dll [526336] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - SvcHost Service for Microsoft Keyboard Filt.) – C:\Windows\System32\KeyboardFilterSvc.dll [162632] =>.Microsoft� —\ Firewall Active Exception List (86) - 71s O87 - FAEL: “UDP Query User{B6FD034C-4AF0-4415-A6EF-C2EFDF1B17F0}C:\users\ollie\appdata\local\gamecenter\gamecenter.exe” [In-None-P17-TRUE] .(…) – C:\users\ollie\appdata\local\gamecenter\gamecenter.exe {05BEF9A17340E40BFDEAFB3057281859}. O87 - FAEL: “TCP Query User{406FADDF-C74A-46EA-A9A8-0FB51DCE1BB3}C:\users\ollie\appdata\local\gamecenter\gamecenter.exe” [In-None-P6-TRUE] .(…) – C:\users\ollie\appdata\local\gamecenter\gamecenter.exe {05BEF9A17340E40BFDEAFB3057281859}. O87 - FAEL: “{87D2FBE5-C2DD-44E1-A9A6-FE2AFC5AFC34}” [In-None-P17-TRUE] .(.Valve Corporation - Steam.) – C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corp.� O87 - FAEL: “{56B23348-835E-4CC6-8F89-55D1B0CBC628}” [In-None-P6-TRUE] .(.Valve Corporation - Steam.) – C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corp.� O87 - FAEL: “UDP Query User{3BB371F2-E9F4-4E75-A8FB-0A2AFD62965C}C:\mygames\revelation online\game\tianyu.exe” [In-None-P17-TRUE] .(.Mail.Ru Group + Netease Games - Revelation.) – C:\mygames\revelation online\game\tianyu.exe [Unsigned] =>.Mail.Ru Group + Netease Games O87 - FAEL: “TCP Query User{58259647-D178-4C89-9CAB-F421A90BD62B}C:\mygames\revelation online\game\tianyu.exe” [In-None-P6-TRUE] .(.Mail.Ru Group + Netease Games - Revelation.) – C:\mygames\revelation online\game\tianyu.exe [Unsigned] =>.Mail.Ru Group + Netease Games O87 - FAEL: “{85E9F5BA-EE1C-4F88-84E9-A44730C6DC28}” [In-None-P17-TRUE] .(.Eyedentity Games - DragonNest.) – C:\Program Files (x86)\EYEDENTITY GAMES\DragonNest\DragonNest.exe [Unsigned] =>.Eyedentity Games O87 - FAEL: “{6FDD6CF9-D905-4EF4-9152-61BF472D2238}” [In-None-P6-TRUE] .(.Eyedentity Games - DragonNest.) – C:\Program Files (x86)\EYEDENTITY GAMES\DragonNest\DragonNest.exe [Unsigned] =>.Eyedentity Games O87 - FAEL: “{ADB370D1-A196-4450-B510-826B38CD78E6}” [In-None-P6-TRUE] .(.MY.COM B.V. - GameCenter compatibility component.) – C:\users\ollie\appdata\local\mycomgames\mycomgames.exe =>.Mail.Ru, LLC� O87 - FAEL: “{B73F2AFB-2B5A-4EB8-9913-649C4C8EE57B}” [In-None-P17-TRUE] .(.MY.COM B.V. - GameCenter compatibility component.) – C:\users\ollie\appdata\local\mycomgames\mycomgames.exe =>.Mail.Ru, LLC� O87 - FAEL: “UDP Query User{097236B6-D52E-4E46-8056-157565CC066A}C:\users\ollie\appdata\local\mycomgames\mycomgames.exe” [In-None-P17-TRUE] .(.MY.COM B.V. - GameCenter compatibility component.) – C:\users\ollie\appdata\local\mycomgames\mycomgames.exe =>.Mail.Ru, LLC� O87 - FAEL: “TCP Query User{7EF910B8-0492-4D7A-9A20-EC93DEA1491D}C:\users\ollie\appdata\local\mycomgames\mycomgames.exe” [In-None-P6-TRUE] .(.MY.COM B.V. - GameCenter compatibility component.) – C:\users\ollie\appdata\local\mycomgames\mycomgames.exe =>.Mail.Ru, LLC� O87 - FAEL: “UDP Query User{5FEA143F-61A8-4EB5-959A-1D17A8B834A3}C:\users\ollie\appdata\roaming\spotify\spotify.exe” [In-None-P17-TRUE] .(.Spotify Ltd - Spotify.) – C:\users\ollie\appdata\roaming\spotify\spotify.exe =>.Spotify AB� O87 - FAEL: “TCP Query User{F4066BB0-8B23-452A-A3F9-21736B03819F}C:\users\ollie\appdata\roaming\spotify\spotify.exe” [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) – C:\users\ollie\appdata\roaming\spotify\spotify.exe =>.Spotify AB� O87 - FAEL: “{923F7890-DC8F-43D5-9579-00CC7FCF4334}” [In-None-P6-TRUE] .(.X-LEGEND Entertaimment - Fantasy Frontier Online.) – C:\AeriaGames\AuraKingdom\game.bin {4D72A00B3DA59455189D3C5D1B0EFDFC}. =>.X-LEGEND Entertaimment O87 - FAEL: “{6363ACE9-19BE-4396-A05B-F5617D8DA1C3}” [In-None-P17-TRUE] .(.X-LEGEND Entertaimment - Fantasy Frontier Online.) – C:\AeriaGames\AuraKingdom\game.bin {4D72A00B3DA59455189D3C5D1B0EFDFC}. =>.X-LEGEND Entertaimment O87 - FAEL: “UDP Query User{B9F63931-3A81-442D-A562-BAFB4FBCACF9}C:\program files (x86)\mozilla firefox\firefox.exe” [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) – C:\program files (x86)\mozilla firefox\firefox.exe =>.Mozilla Corporation� O87 - FAEL: “{FF9E1E5E-2157-4109-B72A-9444FEE4509A}” [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation� O87 - FAEL: “{88BA6C31-698E-43E1-9CEA-F78E5C7463D0}” [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation� O87 - FAEL: “{0AB6CD9B-8D73-4C1A-8889-19A495FBBE41}” [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl� O87 - FAEL: “{E9266E9C-0C03-4F9F-9EAD-036816942670}” [In-None-P17-TRUE] .(.Spotify Ltd - SpotifyCrashService.) – C:\Program Files (x86)\Spotify\SpotifyCrashService.exe =>.Spotify AB� O87 - FAEL: “{3A9493CC-6AEF-48EE-8AA0-E69E605D9861}” [In-None-P6-TRUE] .(.Spotify Ltd - SpotifyCrashService.) – C:\Program Files (x86)\Spotify\SpotifyCrashService.exe =>.Spotify AB� O87 - FAEL: “{F7FBAC44-AF13-4BE4-BA38-98A90C9F5B0F}” [In-None-P17-TRUE] .(.Spotify Ltd - SpotifyWebHelper.) – C:\Program Files (x86)\Spotify\SpotifyWebHelper.exe =>.Spotify AB� O87 - FAEL: “{858F86F7-051F-4A36-9A5F-866B40D8B867}” [In-None-P6-TRUE] .(.Spotify Ltd - SpotifyWebHelper.) – C:\Program Files (x86)\Spotify\SpotifyWebHelper.exe =>.Spotify AB� O87 - FAEL: “{5A314F86-4A28-49D6-85D8-538B56979BFC}” [In-None-P17-TRUE] .(.Spotify Ltd - Spotify.) – C:\Program Files (x86)\Spotify\Spotify.exe =>.Spotify AB� O87 - FAEL: “{87E6B498-E95C-4EF4-9A89-656F306B673F}” [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) – C:\Program Files (x86)\Spotify\Spotify.exe =>.Spotify AB� O87 - FAEL: “{DB190F44-554A-4017-A76D-468DA556D4F4}” [In-None-P6-TRUE] .(.CyberLink Corp. - CyberLink PowerDVD Cinema 12 Main Program.) – C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD Cinema\PowerDVDCinema12.exe =>.CyberLink Corp.� O87 - FAEL: “{F845E869-635D-40F1-B603-5A99B12882EA}” [In-None-P17-TRUE] .(.Logitech, Inc. - LogiOptionsMgr.exe (UNICODE).) – C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE =>.Logitech Inc� O87 - FAEL: “TCP Query User{8E3394C7-70EB-4721-B895-25A5BD1971A8}C:\users\ollie\appdata\roaming\spotify\spotify.exe” [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) – C:\users\ollie\appdata\roaming\spotify\spotify.exe =>.Spotify AB� O87 - FAEL: “UDP Query User{8F6471FD-235E-46E7-ABFC-80547494A538}C:\users\ollie\appdata\roaming\spotify\spotify.exe” [In-None-P17-TRUE] .(.Spotify Ltd - Spotify.) – C:\users\ollie\appdata\roaming\spotify\spotify.exe =>.Spotify AB� O87 - FAEL: “TCP Query User{7283B6FF-FF46-44DF-A5D2-E9314E21B598}C:\users\ollie\appdata\local\gamecenter\gamecenter.exe” [In-None-P6-TRUE] .(…) – C:\users\ollie\appdata\local\gamecenter\gamecenter.exe {05BEF9A17340E40BFDEAFB3057281859}. O87 - FAEL: “UDP Query User{36B63483-92F4-4DD0-B9AF-637D0F3AA6D8}C:\users\ollie\appdata\local\gamecenter\gamecenter.exe” [In-None-P17-TRUE] .(…) – C:\users\ollie\appdata\local\gamecenter\gamecenter.exe {05BEF9A17340E40BFDEAFB3057281859}. O87 - FAEL: “{F14CF007-2951-45A1-B809-78FA657C12B6}” [In-None-P6-TRUE] .(.Valve Corporation - Steam Client WebHelper.) – C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve Corp.� O87 - FAEL: “{CFD91A01-CB0A-4617-A0CF-1D19F7056210}” [In-None-P17-TRUE] .(.Valve Corporation - Steam Client WebHelper.) – C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve Corp.� O87 - FAEL: “{1280AD3F-BF6A-451B-A1A5-3555E17BFAA4}” [In-None-P6-TRUE] .(.Piriform - Piriform CCleaner emergency updater.) – C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform Software Ltd� O87 - FAEL: “{C0B02515-A719-4B5B-8CD1-DEF3FB2551DF}” [In-None-P17-TRUE] .(.Piriform - Piriform CCleaner emergency updater.) – C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform Software Ltd� O87 - FAEL: “{80FE36A0-124B-44B8-9B6E-FFE761B915ED}” [In-None-P6-TRUE] .(…) – C:\Program Files (x86)\Steam\steamapps\common\Dead Frontier 2\DeadFrontier2.exe {00DEAF52CEBE1A83772B8A067655A963C8}. =>.Steam Games O87 - FAEL: “{53664E44-D101-430B-816C-FEEF51D5D29E}” [In-None-P17-TRUE] .(…) – C:\Program Files (x86)\Steam\steamapps\common\Dead Frontier 2\DeadFrontier2.exe {00DEAF52CEBE1A83772B8A067655A963C8}. =>.Steam Games O87 - FAEL: “TCP Query User{669AC062-561D-4ED3-B3BF-3776EBCC2DDA}C:\program files\videolan\vlc\vlc.exe” [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) – C:\program files\videolan\vlc\vlc.exe =>.VideoLAN� O87 - FAEL: “UDP Query User{75FC68A4-4E32-453C-8108-39CE86DFC6B0}C:\program files\videolan\vlc\vlc.exe” [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) – C:\program files\videolan\vlc\vlc.exe =>.VideoLAN� O87 - FAEL: “{FE252FC2-572D-4E21-A1A9-615454FF0F08}” [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation� O87 - FAEL: “{0F49FF25-A560-46DE-84AA-E03412CE40FA}” [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) – C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation� O87 - FAEL: “TCP Query User{81DE8282-DF8A-41F2-8944-CC790C7F41F6}C:\program files\videolan\vlc\vlc.exe” [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) – C:\program files\videolan\vlc\vlc.exe =>.VideoLAN� O87 - FAEL: “UDP Query User{46FD15FC-947A-4432-A6E0-9D25B557BA57}C:\program files\videolan\vlc\vlc.exe” [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) – C:\program files\videolan\vlc\vlc.exe =>.VideoLAN� O87 - FAEL: “TCP Query User{6EB9D970-884E-4145-A840-109FD9FE6091}C:\mygames\warface my.com\bin64release\game.exe” [In-None-P6-TRUE] .(…) – C:\mygames\warface my.com\bin64release\game.exe =>.warface� O87 - FAEL: “UDP Query User{9B4A1C15-72A9-4D02-AD68-8A164E8CDD89}C:\mygames\warface my.com\bin64release\game.exe” [In-None-P17-TRUE] .(…) – C:\mygames\warface my.com\bin64release\game.exe =>.warface� O87 - FAEL: “TCP Query User{17F4BA2C-7DC0-4151-B4A9-EE9C16FA9C81}C:\program files (x86)\videolan\vlc\vlc.exe” [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) – C:\program files (x86)\videolan\vlc\vlc.exe =>.VideoLAN� O87 - FAEL: “UDP Query User{309E811E-350D-4F76-8A3F-2055C15122B5}C:\program files (x86)\videolan\vlc\vlc.exe” [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) – C:\program files (x86)\videolan\vlc\vlc.exe =>.VideoLAN� O87 - FAEL: “TCP Query User{EF0D1960-5D00-4B63-9D2C-E114DC5B1779}C:\program files\qcma\qcma.exe” [In-None-P6-TRUE] .(…) – C:\program files\qcma\qcma.exe [Unsigned] O87 - FAEL: “UDP Query User{821CA653-20AE-4D36-9FF2-5891F54AA52F}C:\program files\qcma\qcma.exe” [In-None-P17-TRUE] .(…) – C:\program files\qcma\qcma.exe [Unsigned] O87 - FAEL: “{F0720854-FB25-4A44-8BCC-EA1EBFA30AC8}” [In-None-P17-TRUE] .(.by Achal Dhir - Wireless PAN DHCP and DNS Server.) – C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>.Intel Corporation� O87 - FAEL: “TCP Query User{BDBF9CBD-9476-44CA-868D-A31FB9CE4D9C}C:\program files (x86)\videolan\vlc\vlc.exe” [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) – C:\program files (x86)\videolan\vlc\vlc.exe =>.VideoLAN� O87 - FAEL: “UDP Query User{3A7C3F4A-6C24-4BD5-9AAB-F8019B9C5561}C:\program files (x86)\videolan\vlc\vlc.exe” [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) – C:\program files (x86)\videolan\vlc\vlc.exe =>.VideoLAN� O87 - FAEL: “{0E120EB6-EED7-44FA-87AB-C8545116AB69}” [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) – C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl� O87 - FAEL: “{BD51759E-C567-4766-83E7-D80271F88E5B}” [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) – C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl� O87 - FAEL: “{794A935D-81B1-44F5-9EBF-222468595CFB}” [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) – C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl� O87 - FAEL: “{12335BD4-35D5-4418-8D27-1A87D89AF2AF}” [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) – C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl� O87 - FAEL: “TCP Query User{01F38659-1347-4437-BC87-200211BB3887}C:\program files\qcma\qcma.exe” [In-None-P6-TRUE] .(…) – C:\program files\qcma\qcma.exe [Unsigned] O87 - FAEL: “UDP Query User{3C77066C-BB71-483D-B12F-D56FA5C89D9C}C:\program files\qcma\qcma.exe” [In-None-P17-TRUE] .(…) – C:\program files\qcma\qcma.exe [Unsigned] O87 - FAEL: “TCP Query User{AD968C38-B141-4180-99DC-D1536DFA0BCE}C:\program files (x86)\sony\content manager assistant\cma.exe” [In-None-P6-TRUE] .(.Sony Interactive Entertainment Inc. - Content Manager Assistant.) – C:\program files (x86)\sony\content manager assistant\cma.exe =>.Sony Interactive Entertainment Inc.� O87 - FAEL: “UDP Query User{17A86D93-CA5D-4496-827F-4324B05A1A03}C:\program files (x86)\sony\content manager assistant\cma.exe” [In-None-P17-TRUE] .(.Sony Interactive Entertainment Inc. - Content Manager Assistant.) – C:\program files (x86)\sony\content manager assistant\cma.exe =>.Sony Interactive Entertainment Inc.� O87 - FAEL: “TCP Query User{83BBF8E4-9989-4822-B6DA-EAC2D32A4EAB}C:\program files (x86)\sony\content manager assistant\cma.exe” [In-None-P6-TRUE] .(.Sony Interactive Entertainment Inc. - Content Manager Assistant.) – C:\program files (x86)\sony\content manager assistant\cma.exe =>.Sony Interactive Entertainment Inc.� O87 - FAEL: “UDP Query User{EBFB962C-D7B6-45CD-9FA3-BD50755005CE}C:\program files (x86)\sony\content manager assistant\cma.exe” [In-None-P17-TRUE] .(.Sony Interactive Entertainment Inc. - Content Manager Assistant.) – C:\program files (x86)\sony\content manager assistant\cma.exe =>.Sony Interactive Entertainment Inc.� O87 - FAEL: “{3A652644-FE42-4EEE-897F-3877F70C019E}” [In-None-P17-TRUE] .(.HP Inc. - DeviceSetup.exe.) – C:\Program Files\HP\HP DeskJet 3700 series\Bin\DeviceSetup.exe =>.Hewlett Packard� O87 - FAEL: “{3C939866-7017-49C3-B4F3-FDF13C81457D}” [In-None-P17-TRUE] .(.HP Inc. - HPNetworkCommunicatorCom.) – C:\Program Files\HP\HP DeskJet 3700 series\Bin\HPNetworkCommunicatorCom.exe =>.Hewlett Packard� O87 - FAEL: “{94DE92E8-5715-4E4B-9240-8657B8FE3524}” [In-None-P6-TRUE] .(.Mail.Ru Group + Netease Games - Revelation.) – C:\MyGames\Revelation Online\game\tianyu.exe [Unsigned] =>.Mail.Ru Group + Netease Games O87 - FAEL: “{9BAC5044-2471-4442-9626-231A932D0C6D}” [In-None-P17-TRUE] .(.Mail.Ru Group + Netease Games - Revelation.) – C:\MyGames\Revelation Online\game\tianyu.exe [Unsigned] =>.Mail.Ru Group + Netease Games O87 - FAEL: “TCP Query User{F71E68F5-D934-408D-9322-1BD77B6A82FD}C:\program files\windowsapps\telegrammessengerllp.telegramdesktop_2.5.1.0_x64__t4vj0pshhgkwm\telegram.exe” [In-None-P6-TRUE] .(.Telegram FZ-LLC - Telegram Desktop.) – C:\program files\windowsapps\telegrammessengerllp.telegramdesktop_2.5.1.0_x64__t4vj0pshhgkwm\telegram.exe =>.Telegram FZ-LLC� O87 - FAEL: “UDP Query User{CACB564F-0232-48C1-AFB9-DF2845A4AFAA}C:\program files\windowsapps\telegrammessengerllp.telegramdesktop_2.5.1.0_x64__t4vj0pshhgkwm\telegram.exe” [In-None-P17-TRUE] .(.Telegram FZ-LLC - Telegram Desktop.) – C:\program files\windowsapps\telegrammessengerllp.telegramdesktop_2.5.1.0_x64__t4vj0pshhgkwm\telegram.exe =>.Telegram FZ-LLC� O87 - FAEL: “{3194D158-9C84-49B4-B9FB-F6E96F2600E8}” [In-None-P17-TRUE] .(.Telegram FZ-LLC - Telegram Desktop.) – C:\program files\windowsapps\telegrammessengerllp.telegramdesktop_2.5.1.0_x64__t4vj0pshhgkwm\telegram.exe =>.Telegram FZ-LLC� O87 - FAEL: “{CF3F06D2-28AB-45AC-A51F-963797A20D78}” [In-None-P6-TRUE] .(.Telegram FZ-LLC - Telegram Desktop.) – C:\program files\windowsapps\telegrammessengerllp.telegramdesktop_2.5.1.0_x64__t4vj0pshhgkwm\telegram.exe =>.Telegram FZ-LLC� O87 - FAEL: “TCP Query User{413DD2F5-D10D-4678-9713-66E6041C8C20}C:\mygames\stay out\game\sogame.exe” [In-None-P6-TRUE] .(.Mobile Technologies LLC - Client of the game “SO”.) – C:\mygames\stay out\game\sogame.exe [Unsigned] O87 - FAEL: “UDP Query User{223D7BB0-9425-4DD5-9DE3-FC3FCBD10153}C:\mygames\stay out\game\sogame.exe” [In-None-P17-TRUE] .(.Mobile Technologies LLC - Client of the game “SO”.) – C:\mygames\stay out\game\sogame.exe [Unsigned] O87 - FAEL: “{0DAF7BD0-7E64-47A3-A993-96583CA1B006}” [In-None-P17-TRUE] .(.Mobile Technologies LLC - Client of the game “SO”.) – C:\mygames\stay out\game\sogame.exe [Unsigned] O87 - FAEL: “{47284D3C-45E1-4E62-A4D7-22143FA7CAD0}” [In-None-P6-TRUE] .(.Mobile Technologies LLC - Client of the game “SO”.) – C:\mygames\stay out\game\sogame.exe [Unsigned] O87 - FAEL: “{362407F1-8971-4575-AFDD-34E3F9064AE8}” [In-None-P6-TRUE] .(.Apple Inc. - Apple Push.) – C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.� O87 - FAEL: “TCP Query User{273C67E1-6720-4D15-9ACF-9C6A58679229}C:\users\administrator\appdata\roaming\spotify\spotify.exe” [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) – C:\users\administrator\appdata\roaming\spotify\spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O87 - FAEL: “UDP Query User{12AB6962-4590-4C09-9059-66E497EDB844}C:\users\administrator\appdata\roaming\spotify\spotify.exe” [In-None-P17-TRUE] .(.Spotify Ltd - Spotify.) – C:\users\administrator\appdata\roaming\spotify\spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O87 - FAEL: “{1CE55AF3-8480-4A60-8C83-0AB7D44457C1}” [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl� O87 - FAEL: “{11BB6473-C16B-460F-BA76-8B058B6BA9EA}” [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) – C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl� O87 - FAEL: “{5C84200C-A40D-4F21-8D34-31C7ADAD0941}” [In-None-P17-TRUE] .(.Zoom Video Communications, Inc. - Zoom Meetings.) – C:\Users\Administrator\AppData\Roaming\Zoom\bin\Zoom.exe {02009F3FD86C9A6051C97108379B1201}. =>.Zoom Video Communications, Inc. O87 - FAEL: “TCP Query User{0029C7CC-A4C5-44DE-844F-99D6D7633541}C:\users\administrator\appdata\roaming\spotify\spotify.exe” [In-None-P6-TRUE] .(.Spotify Ltd - Spotify.) – C:\users\administrator\appdata\roaming\spotify\spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O87 - FAEL: “UDP Query User{299CDF76-4DFE-48EA-A8D8-C8D739C33A48}C:\users\administrator\appdata\roaming\spotify\spotify.exe” [In-None-P17-TRUE] .(.Spotify Ltd - Spotify.) – C:\users\administrator\appdata\roaming\spotify\spotify.exe {04C530703A210EC1D6F83CB4FE1118C5}. =>.Spotify Ltd O87 - FAEL: “{CF42F9BB-1F41-4C97-BB8C-C5296B64ED34}” [In-None-P6-TRUE] .(.AVAST Software - Avast Antivirus.) – C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.Avast Software s.r.o.� O87 - FAEL: “{0C0E9420-339F-45CF-B90B-6DA6C3EEB44F}” [In-None-P17-TRUE] .(.AVAST Software - Avast Antivirus.) – C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.Avast Software s.r.o.� O87 - FAEL: “{EC87AD6A-771C-49E5-995B-799AAE7A7103}” [In-None-P17-TRUE] .(.Zoom Video Communications, Inc. - Zoom Meetings.) – C:\Users\Administrator\AppData\Roaming\Zoom\bin\Zoom.exe {02009F3FD86C9A6051C97108379B1201}. =>.Zoom Video Communications, Inc. —\ Product Upgrade Codes (253) - 30s O90 - PUC: “000021091A0090400000000000F01FEC” [HKLM] . (.Microsoft Office OneNote MUI (English) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109511090400000000000F01FEC” [HKLM] . (.Microsoft Office Shared Setup Metadata MUI (English) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109610090400000000000F01FEC” [HKLM] . (.Microsoft Office Excel MUI (English) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109611090400100000000F01FEC” [HKLM] . (.Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109810090400000000000F01FEC” [HKLM] . (.Microsoft Office PowerPoint MUI (English) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109A20000000100000000F01FEC” [HKLM] . (.Microsoft Office Office 64-bit Components 2007.) =>.Microsoft Corporation O90 - PUC: “00002109A20090400100000000F01FEC” [HKLM] . (.Microsoft Office Shared 64-bit MUI (English) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109B10090400000000000F01FEC” [HKLM] . (.Microsoft Office Word MUI (English) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109C20090400000000000F01FEC” [HKLM] . (.Microsoft Office Proofing (English) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109E60090400000000000F01FEC” [HKLM] . (.Microsoft Office Shared MUI (English) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109F10090400000000000F01FEC” [HKLM] . (.Microsoft Office Proof (English) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109F100A0C00000000000F01FEC” [HKLM] . (.Microsoft Office Proof (Spanish) 2007.) =>.Microsoft Corporation O90 - PUC: “00002109F100C0400000000000F01FEC” [HKLM] . (.Microsoft Office Proof (French) 2007.) =>.Microsoft Corporation O90 - PUC: “00002119F20000000000000000F01FEC” [HKLM] . (.Microsoft Office Home and Student 2007.) =>.Microsoft Corporation O90 - PUC: “00004109500200000000000000F01FEC” [HKLM] . (.Microsoft Office File Validation Add-In.) =>.Microsoft Corporation O90 - PUC: “00006109C80000000000000000F01FEC” [HKLM] . (.Office 16 Click-to-Run Extensibility Component.) =>.Microsoft Corporation O90 - PUC: “00006109C80090400000000000F01FEC” [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation O90 - PUC: “00006109DD0000000100000000F01FEC” [HKLM] . (.Office 16 Click-to-Run Extensibility Component 64-bit Registration.) =>.Microsoft Corporation O90 - PUC: “00006109F80000000100000000F01FEC” [HKLM] . (.Office 16 Click-to-Run Licensing Component.) =>.Microsoft Corporation O90 - PUC: “00058CD18F0BF523DA1072073D56715D” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “000F0C5A423F3D64BB9DF5A61D88B621” [HKLM] . (.Microsoft Visual Studio 2015 Update 3 Performance Debugger Web Views.) =>.Microsoft Corporation O90 - PUC: “00124AFB45BDA764BB78FC0737B20456” [HKLM] . (.HP Google Drive Plugin.) – C:\WINDOWS\Installer{BFA42100-DB54-467A-BB87-CF70732B4065}\HPScan.ico =>.Google Inc. O90 - PUC: “0076C0A639AEC2738817CDFC311D064A” [HKLM] . (.Microsoft .NET Framework 4.5.1 Multi-Targeting Pack.) =>.Microsoft Corporation O90 - PUC: “007AE03A51550F84880BE999CD53B688” [HKLM] . (.Apple Software Update.) – C:\WINDOWS\Installer{A30EA700-5515-48F0-88B0-9E99DC356B88}\Installer.ico =>.Apple Inc. O90 - PUC: “009B70435F732CC46B21C55D5D081A36” [HKLM] . (.Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332.) =>.Microsoft Corporation O90 - PUC: “0137435EF28C3384AA63D8115E8A8AA6” [HKLM] . (.Apple Application Support (32-bit).) – C:\WINDOWS\Installer{E5347310-C82F-4833-AA36-8D11E5A8A86A}\WinInstall.ico =>.Apple Inc. O90 - PUC: “01690987922DC9549A63529D22383DDF” [HKLM] . (.Microsoft SQL Server Compact 4.0 SP1 x64 ENU.) – C:\WINDOWS\Installer{78909610-D229-459C-A936-25D92283D3FD}\ProductIcon =>.Microsoft Corporation O90 - PUC: “023CF092A5F2E92388044C91B37D9AEE” [HKLM] . (.Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (ENU).) =>.Microsoft Corporation O90 - PUC: “028E6CCFBD5BE454693E6B81D2EDCED8” [HKLM] . (.Microsoft Visual Studio 2015 Performance Collection Tools.) =>.Microsoft Corporation O90 - PUC: “04004EA384F271642982949E9937B8BD” [HKLM] . (.Microsoft Visual Studio 2015 Performance Collection Tools - ENU.) =>.Microsoft Corporation O90 - PUC: “04FE16E415A899D3AAC4232F30730038” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “060DED06B6B01CC39B550DDC04F1F0AB” [HKLM] . (.Visual C++ IDE x64 Package.) =>.Microsoft Corporation O90 - PUC: “06AB072AB4EBEC442A80018292B7561C” [HKLM] . (.Surfshark TAP Driver Windows.) – C:\WINDOWS\Installer{A270BA60-BE4B-44CE-A208-1028297B65C1}\TAP1x.exe O90 - PUC: “06F460ED2256013369565B3E7EB86383” [HKLM] . (.Microsoft Visual Studio Community 2015.) =>.Microsoft Corporation O90 - PUC: “070DA1A8F96251A4AA5B67BA98E61F59” [HKLM] . (.Azure AD Authentication Connected Service.) =>.Microsoft Corporation O90 - PUC: “08735E734493A6A448F22717828E16E6” [HKLM] . (.Blend for Visual Studio SDK for .NET 4.5.) – C:\WINDOWS\Installer{37E53780-3944-4A6A-842F-727128E8616E}\Application =>.bl.org O90 - PUC: “088C35292D8B73A4EAC3D95C792A8F66” [HKLM] . (.Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - amd64.) =>.Microsoft Corporation O90 - PUC: “08CCE0F24E9B58440838DC232FA2DB29” [HKLM] . (.Microsoft .NET Framework 4.6.1 SDK.) =>.Microsoft Corporation O90 - PUC: “0A4416282A243D044AB9219997ABB2C0” [HKLM] . (.Product Improvement Study for HP DeskJet 3700 series.) – C:\WINDOWS\Installer{826144A0-42A2-40D3-A49B-129979BA2B0C}\ARP_Icon =>.Hewlett-Packard O90 - PUC: “0EFDC020721C74045B17738C32696B26” [HKLM] . (.Microsoft SQL Server 2014 Transact-SQL ScriptDom .) – C:\WINDOWS\Installer{020CDFE0-C127-4047-B571-37C82396B662}\ARPIco =>.Microsoft Corporation O90 - PUC: “0F269E650BF476C388BDE9AAE6FE4C39” [HKLM] . (.Microsoft .NET Framework 4.5 Multi-Targeting Pack.) =>.Microsoft Corporation O90 - PUC: “1082040C7B731B036A87EAE3374E4C6F” [HKLM] . (.Team Explorer for Microsoft Visual Studio 2015 Update 3 CTP1.) =>.Microsoft Corporation O90 - PUC: “1098C3F63DBED074788FCA12F0E6E520” [HKLM] . (.TOSHIBA Web Camera Application.) – C:\WINDOWS\Installer{6F3C8901-EBD3-470D-87F8-AC210F6E5E02}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: “121BA40F1E3BEF93A8E5FE4848121070” [HKLM] . (.Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Office Integration Language Pack (x64) - ENU.) =>.Microsoft Corporation O90 - PUC: “12B30EFE5A8ADCC318DBF74C07701FAB” [HKLM] . (.Visual C++ IDE Common Resource Package.) =>.Microsoft Corporation O90 - PUC: “12B8D03ED28D112328CCF0A0D541598E” [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: “13C46D7CE1F35024785A6BA1EA556EB4” [HKLM] . (.Intel(R) WiDi Software Asset Manager.) =>.Western Digital Technologies O90 - PUC: “166F83C27B62D5448BD75BF32E3DDB24” [HKLM] . (.TOSHIBA PC Diagnostic Tool.) – C:\WINDOWS\Installer{2C38F661-26B7-445D-B87D-B53FE2D3BD42}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: “1716EB5BA865756309DC7AB6CE106FD2” [HKLM] . (.vs_update3notification.) =>.Microsoft Corporation O90 - PUC: “18C05797E4172F545BED24ED0F60788B” [HKLM] . (.Microsoft Build Tools 14.0 (amd64).) =>.Microsoft Corporation O90 - PUC: “1926E8D15D0BCE53481466615F760A7F” [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: “19329CD0B2C453C46A47BEED5EBA3B57” [HKLM] . (.Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - ENU.) =>.Microsoft Corporation O90 - PUC: “1A69A6E1BAB2FE340878033457396CC6” [HKLM] . (.TOSHIBA System Driver.) – C:\Windows\Installer{1E6A96A1-2BAB-43EF-8087-30437593C66C}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: “1AC82FABC3B47C6319635479DE6849BB” [HKLM] . (.Microsoft Blend for Visual Studio 2015 - ENU.) =>.bl.org O90 - PUC: “1af2a8da7e60d0b429d7e6453b3d0182” [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org O90 - PUC: “1CE47A76D98A35533BD81DD79419DCF2” [HKLM] . (.Microsoft Visual Studio 2015 SDK - ENU.) =>.Microsoft Corporation O90 - PUC: “1D5E3C0FEDA1E123187686FED06E995A” [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: “1EFBBAE9DEE79D74F88B127D4E080875” [HKLM] . (.Test Tools for Microsoft Visual Studio 2015.) =>.Microsoft Corporation O90 - PUC: “1F72A5BA7C75C4E4094C825E2527DFF6” [HKLM] . (.Microsoft Visual Studio 2015 Windows Diagnostic Tools - ENU.) =>.Microsoft Corporation O90 - PUC: “2243F1CF49C08713DA59E38A98FD55FA” [HKLM] . (.Microsoft Visual Studio 2015 Devenv.) =>.Microsoft Corporation O90 - PUC: “263AC5E16B930DB49B0C96FC510FEF2A” [HKLM] . (.AzureTools.Notifications.) =>.Microsoft Corporation O90 - PUC: “264A543C44026D74186F4A1446355A41” [HKLM] . (.Intel(R) Wireless Bluetooth(R).) – C:\Windows\Installer{C345A462-2044-47D6-81F6-A4416453A514}\IntelBluetooth.ico =>.bl.org O90 - PUC: “26A859D1089C7BC3CA9504FED0F18AE0” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “26C7153D5A86FC73297F390C928A6918” [HKLM] . (.Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU).) =>.Microsoft Corporation O90 - PUC: “273A4EEFC3660A74DB806A3C3402CD25” [HKLM] . (.Malwarebytes Privacy VPN Tunnel Driver.) – C:\WINDOWS\Installer{FEE4A372-663C-47A0-BD08-A6C34320DC52}\prodIcon O90 - PUC: “286A72E474F528B3FAC70912C807873C” [HKLM] . (.Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Storyboarding (x64).) =>.Microsoft Corporation O90 - PUC: “293B7215028822842AF1C17BC8E252DA” [HKLM] . (.Microsoft Build Tools Language Resources 14.0 (x86).) =>.Microsoft Corporation O90 - PUC: “29CC8317A321F393CB037B4897D44F7E” [HKLM] . (.Roslyn Language Services - x86.) =>.Microsoft Corporation O90 - PUC: “29D3C679CED06A738A07FFF41CC80D92” [HKLM] . (.Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps.) =>.Microsoft Corporation O90 - PUC: “2C5820961842BF44482061E29A076ADD” [HKLM] . (.Logitech Gaming Software.) =>.Logitech Inc. O90 - PUC: “2D07B3979E14BA64D9CD3BC4990DD75B” [HKLM] . (.DTS Sound.) – C:\Windows\Installer{793B70D2-41E9-46AB-9DDC-B34C99D07DB5}\ARPPRODUCTICON.exe =>.DTS Sound O90 - PUC: “2E4D4D948E1264334A69A141511B5849” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “2F181B388B0200F4E8176CE659A1D8F4” [HKLM] . (.Visual Studio 2015 Prerequisites - ENU Language Pack.) =>.Legitimate O90 - PUC: “317725EEA8EBA8438845ADBCEC35612F” [HKLM] . (.Visual C++ MSBuild X64 Package.) =>.Microsoft Corporation O90 - PUC: “343E48D7D32AC1541B3210592B9D306A” [HKLM] . (.Intel® Trusted Connect Service Client.) =>.Intel Corporation O90 - PUC: “34DFCB3A6D8523137AFD61EC40763227” [HKLM] . (.Visual Studio 2012 Verification SDK.) =>.Microsoft Corporation O90 - PUC: “3e43b73803c7c394f8a6b2f0402e19c2” [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: “3E5F5151AE921DC49A1830D28888F090” [HKLM] . (.TOSHIBA Audio Enhancement.) – C:\Windows\Installer{1515F5E3-29EA-4CD1-A981-032D88880F09}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: “3EE9944F661AC69418BB151DCBCD079A” [HKLM] . (.Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332.) =>.Microsoft Corporation O90 - PUC: “3F9A290EEA514B64A952C6527F4F7459” [HKLM] . (.Microsoft .NET Core 5.0 SDK.) =>.Microsoft Corporation O90 - PUC: “3FD1021D439FA2435A68B252C58B2B51” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “3FDE1B535B36809489D9F626BD0AC285” [HKLM] . (.Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86.) =>.Microsoft Corporation O90 - PUC: “4003DA6594B0F7696F280B65056BA187” [HKLM] . (.Windows Software Development Kit for Windows Store Apps DirectX x86 Remote.) =>.Microsoft Corporation O90 - PUC: “410E547DDD473A3489FD7E3D18466B18” [HKLM] . (.Apple Application Support (64-bit).) – C:\WINDOWS\Installer{D745E014-74DD-43A3-98DF-E7D38164B681}\WinInstall.ico =>.Apple Inc. O90 - PUC: “42ACA5646D8BCEF44AD2E9CF9BC25D06” [HKLM] . (.TypeScript Power Tool.) – C:\WINDOWS\Installer{465ACA24-B8D6-4FEC-A42D-9EFCB92CD560}\TypeScriptIcon.ico =>.Microsoft Corporation O90 - PUC: “43665DB8E9B6ADC488757CF3025F9770” [HKLM] . (.Microsoft Visual Studio 2015 XAML Visual Diagnostics - ENU.) =>.Microsoft Corporation O90 - PUC: “44DB0475D85BA123FA0CD6D35465DDC6” [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: “4561C821E9B39594B8BFECF6900C0AD1” [HKLM] . (.MSBuild/NuGet Integration 14.0 (x86).) =>.Microsoft Corporation O90 - PUC: “4631232B829ED5239A4539D35332B95E” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “473032B4574637A4ABE61410E5C90531” [HKLM] . (.Intel® Security Assist.) – C:\Windows\Installer{4B230374-6475-4A73-BA6E-41015E9C5013}\isa.ico =>.Intel Corporation O90 - PUC: “47F9362758F78B04898BC93B93CB07A1” [HKLM] . (.Surfshark TUN Driver Windows.) – C:\WINDOWS\Installer{72639F74-7F85-40B8-98B8-9CB339BC701A}\TUN1x.exe O90 - PUC: “480CB21D6D79A834AAC7952606D8710A” [HKLM] . (.HP Dropbox Plugin.) – C:\WINDOWS\Installer{D12BC084-97D6-438A-AA7C-5962608D17A0}\HPScan.ico =>.WINSE O90 - PUC: “495334533A58AEE369E3E0E568B0286D” [HKLM] . (.Visual C++ MSBuild Base Package.) =>.Microsoft Corporation O90 - PUC: “4BEA594979BAED93C82408E6FE57CE7A” [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x64).) =>.Microsoft Corporation O90 - PUC: “4DAA6355A047775448D324183D3F7062” [HKLM] . (.Microsoft Azure Mobile Services Tools for Visual Studio - v1.4.) – C:\WINDOWS\Installer{5536AAD4-740A-4577-843D-4281D3F30726}\icon.ico =>.Microsoft Corporation O90 - PUC: “4E75276CC42F53C368BB9E7B5D4D9DBF” [HKLM] . (.Visual C++ IDE Professional Core Package.) =>.Microsoft Corporation O90 - PUC: “5122AD3302FA12F31A17750F35A3C5FA” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “52CA2798E254EFF449A5BEE9822C3022” [HKLM] . (.Microsoft Visual C++ 2022 X86 Additional Runtime - 14.32.31332.) =>.Microsoft Corporation O90 - PUC: “545C933FCD420784AA23E66B0B05B059” [HKLM] . (.UpdateAssistant.) =>.Corel Corporation O90 - PUC: “54D9CEFB4DABC7D36B7A88D7126E2CA5” [HKLM] . (.Visual C++ Compiler/Tools X86 Base Package.) =>.Microsoft Corporation O90 - PUC: “556C436189320C5398EB9241947AF288” [HKLM] . (.Microsoft Portable Library Multi-Targeting Pack.) =>.bl.org O90 - PUC: “5728C6179A4ABC84880C899233C43A5C” [HKLM] . (.Toshiba Quality Application.) – C:\Windows\Installer{716C8275-A4A9-48CB-88C0-9829334CA3C5}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: “5876A0309A3CAD73580344C4236092AF” [HKLM] . (.Microsoft Visual Studio 2015 Shell (Minimum).) =>.Microsoft Corporation O90 - PUC: “593649C592D447234AD77BD7B4011E62” [HKLM] . (.VS Update core components.) =>.Legitimate O90 - PUC: “596B256B948C2FE40BA92777C1A72DAB” [HKLM] . (.Update for Windows 10 for x64-based Systems (KB5001716).) =>.Microsoft Corporation O90 - PUC: “5A3EE703887A10D46B51BAAA27D8BF75” [HKLM] . (.HP DeskJet 3700 series Basic Device Software.) – C:\WINDOWS\Installer{307EE3A5-A788-4D01-B615-ABAA728DFB57}\ARP_Icon =>.Hewlett-Packard O90 - PUC: “5A812990327ACD34D85B163756A6E149” [HKLM] . (.Dropbox Update Helper.) =>.WINSE O90 - PUC: “5C6E4041A3E55D84EB44C836FC2B7A9C” [HKLM] . (.TOSHIBA Service Station.) – C:\Windows\Installer{1404E6C5-5E3A-48D5-BE44-8C63CFB2A7C9}\Main.ico =>.Toshiba Corporation O90 - PUC: “5C894BC8B276C6F31934480BBB1CAE3B” [HKLM] . (.Visual C++ MSBuild X86 Package.) =>.Microsoft Corporation O90 - PUC: “5F74240A1EEC125478DF09AD408C001A” [HKLM] . (.Microsoft Visual Studio 2015 XAML Application Timeline.) =>.Microsoft Corporation O90 - PUC: “61F0FD7D8C35BAA4D845871F268114A9” [HKLM] . (.Microsoft VisualStudio JavaScript Language Service.) =>.Sun Microsystems O90 - PUC: “623EE10B3DFA9C0308A4BC3CC6DB9422” [HKLM] . (.Microsoft Portable Library Multi-Targeting Pack Language Pack - enu.) =>.bl.org O90 - PUC: “63C227674FB36234A9FD5AA6AB05AAF9” [HKLM] . (.Microsoft Visual Studio Connected Services.) =>.Microsoft Corporation O90 - PUC: “6434665B2044438418EB6978FB56B32A” [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation O90 - PUC: “643DD4C59B2DB7B339029A00945D4EB8” [HKLM] . (.Microsoft Visual Studio Community 2015 - ENU.) =>.Microsoft Corporation O90 - PUC: “644B322AD3CE130328D8158808A07B28” [HKLM] . (.Microsoft .NET Framework 4.5.1 RC Multi-Targeting Pack for Windows Store Apps (ENU).) =>.Microsoft Corporation O90 - PUC: “646B8AFFE6604A4318864C01ADAF36F1” [HKLM] . (.Microsoft Visual Studio 2015 Update 3 CTP1 Team Explorer Language Pack - ENU.) =>.Microsoft Corporation O90 - PUC: “65235FF7FAB7AFE3194BBD563FE75B9E” [HKLM] . (.Microsoft Visual Studio 2015 Shell (Minimum) Resources.) =>.Microsoft Corporation O90 - PUC: “65EC0961132295E409600A78D649E98A” [HKLM] . (. Tools for .Net 3.5.) =>.Microsoft Corporation O90 - PUC: “66B071D2509AC583390E024A87217B77” [HKLM] . (.Microsoft NuGet - Visual Studio 2015.) =>.Microsoft Corporation O90 - PUC: “67D6ECF5CD5FBA732B8B22BAC8DE1B4D” [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org O90 - PUC: “6828BC1A3BFC589A7D9927A1F0A2723F” [HKLM] . (.Windows Software Development Kit DirectX x86 Remote.) =>.Microsoft Corporation O90 - PUC: “68AB67CA330133017706CB5110E47A00” [HKLM] . (.Adobe Acrobat (64-bit).) – C:\WINDOWS\Installer{AC76BA86-1033-1033-7760-BC15014EA700}_SC_Acrobat.ico =>.Adobe Inc. O90 - PUC: “68AB67CA408033019195102844060123” [HKLM] . (.Adobe Refresh Manager.) – C:\WINDOWS\Installer{AC76BA86-0804-1033-1959-018244601032}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: “6944EAB3C6F603348AAA9BD3D343F65A” [HKLM] . (.Update for Windows 10 for x64-based Systems (KB4480730).) =>.Microsoft Corporation O90 - PUC: “6B3BE9F17DEA7AA48B1FE813B4472B5A” [HKLM] . (.Microsoft SQL Server 2014 Management Objects (x64).) – C:\WINDOWS\Installer{1F9EB3B6-AED7-4AA7-B8F1-8E314B74B2A5}\ARPIco =>.Microsoft Corporation O90 - PUC: “6BBA6096A534A7F49BA40A7521D12A58” [HKLM] . (.Microsoft Visual Studio 2015 XAML Visual Diagnostics.) =>.Microsoft Corporation O90 - PUC: “6D32A5DBF9E1873398FC9E968070D835” [HKLM] . (.Visual C++ IDE Common Package.) =>.Microsoft Corporation O90 - PUC: “6E6A614D099FFC247A09F8199767F243” [HKLM] . (.Surfshark TAP Driver Windows.) – C:\WINDOWS\Installer{D416A6E6-F990-42CF-A790-8F9179762F34}\TAP1x.exe O90 - PUC: “6E815EB96CCE9A53884E7857C57002F0” [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org O90 - PUC: “73D5195B736062A43AAA5CCDF9583607” [HKLM] . (.Microsoft .NET Framework 4.6 SDK.) =>.Microsoft Corporation O90 - PUC: “748E2D26F606BF943AB89F5DAA393613” [HKLM] . (.Microsoft Visual Studio 2015 Diagnostic Tools - amd64.) =>.Microsoft Corporation O90 - PUC: “74A569CF9384AC046B81814F680F246C” [HKLM] . (.Skype™ 7.25.) – C:\Windows\Installer{FC965A47-4839-40CA-B618-18F486F042C6}\SkypeIcon.exe =>.Skype Technologies O90 - PUC: “7685C02EA360FF636B039A9CC65E8DFA” [HKLM] . (.Visual C++ IDE Debugger Resource Package.) =>.Microsoft Corporation O90 - PUC: “76EC73EC0662EE0308B58728C93C55B4” [HKLM] . (.Microsoft Agents for Visual Studio 2015 Preview.) =>.Microsoft Corporation O90 - PUC: “777BD746903615532926B6C9BD7936B5” [HKLM] . (.Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Office Integration (x64).) =>.Microsoft Corporation O90 - PUC: “78E5110C137ECD842B85BDA24D49CD08” [HKLM] . (.Content Manager Assistant for PlayStation(R).) – C:\WINDOWS\Installer{C0115E87-E731-48DC-B258-DB2AD494DC80}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: “79A14D7320B603C478355801B71E6D47” [HKLM] . (.Intel® RealSense™ SDK 2014 Runtime (x64): Core.) – C:\Windows\Installer{37D41A97-6B02-4C30-8753-85107BE1D674}\arp.ico =>.Intel Corporation O90 - PUC: “79C1A3B9163AE364887144F4F988DCEF” [HKLM] . (.Microsoft Expression Blend SDK for .NET 4.) – C:\WINDOWS\Installer{9B3A1C97-A361-463E-8817-444F9F88CDFE}\Application =>.bl.org O90 - PUC: “7A4A6CC22CAA9C64D9BB73725B59F456” [HKLM] . (.Microsoft .NET Framework 4.6 Targeting Pack.) =>.Microsoft Corporation O90 - PUC: “7C9F8B73BF303523781852719CD9C700” [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: “7D9D7C4E4D913264FAC0AE13C3644611” [HKLM] . (.Toshiba TEMPRO.) =>.Toshiba Corporation O90 - PUC: “7E5891C65C1E59A368FEC22664F5513C” [HKLM] . (.Roslyn Language Services - x86.) =>.Microsoft Corporation O90 - PUC: “7EA4744407776763CA369CDD1D0511FF” [HKLM] . (.Windows Phone SDK 8.0 Assemblies for Visual Studio 2015.) =>.bl.org O90 - PUC: “7EB33BDB0D3720C45A6787DF719CA5D8” [HKLM] . (.TypeScript Tools for Microsoft Visual Studio 2015.) – C:\WINDOWS\Installer{BDB33BE7-73D0-4C02-A576-78FD17C95A8D}\TypeScriptIcon.ico =>.Microsoft Corporation O90 - PUC: “7F5986967C25E9C499B87C0ECC090729” [HKLM] . (.Backup and Sync from Google.) – C:\WINDOWS\Installer{696895F7-52C7-4C9E-998B-C7E0CC907092}\DriveIcon =>.Google Inc. O90 - PUC: “7F81AAEA69C934A4CB70B8884A19E3BE” [HKLM] . (.Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31332.) =>.Microsoft Corporation O90 - PUC: “80A6355AF7A50334987430275B003ADB” [HKLM] . (.Intel(R) Management Engine Components.) =>.Intel Corporation O90 - PUC: “82E32C7D0E8ED623292B53D7D6A6BF0C” [HKLM] . (.Microsoft Blend for Visual Studio 2015.) =>.bl.org O90 - PUC: “83285658F384841369E7CE5D33EAF67E” [HKLM] . (.Visual C++ Compiler/Tools X86 Base Resource Package.) =>.Microsoft Corporation O90 - PUC: “8520DAD7C5154DD39846DB1714990E7F” [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: “865E370D852CC1839BBD6945431BFD35” [HKLM] . (.Visual C++ MSBuild Base Resource Package.) =>.Microsoft Corporation O90 - PUC: “8704DD1CDF15CC2419ADDA34965D9F37” [HKLM] . (.Intel(R) WiDi.) – C:\Windows\Installer{C1DD4078-51FD-42CC-91DA-AD4369D5F973}\WiDiIcon =>.Intel Corporation O90 - PUC: “881D49CF80E17073D9324F11874D6446” [HKLM] . (.Windows Espc Resource Package.) =>.Microsoft Corporation O90 - PUC: “88F200A0D5DFB9733A052AD548FA21B8” [HKLM] . (.Visual C++ IDE Base Package.) =>.Microsoft Corporation O90 - PUC: “8A84FEFC8BFBCAE3B85AEDF4A82A76EC” [HKLM] . (.Microsoft .NET Framework 4 Multi-Targeting Pack.) =>.Microsoft Corporation O90 - PUC: “8AFCFE273293D154FA25C79E8DB72C1A” [HKLM] . (.TOSHIBA eco Utility.) – C:\Windows\Installer{72EFCFA8-3923-451D-AF52-7CE9D87BC2A1}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: “8E96EC9DA77D49C39A0146612297E44D” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “91F50526A2D70DF31B2A8D2EAFF2693B” [HKLM] . (.Visual C++ Compiler/Tools X86 Base Resource Package.) =>.Microsoft Corporation O90 - PUC: “92CE6913D57B3EE4A80B6414B83C4138” [HKLM] . (.Microsoft.VisualStudio_Office365.) =>.Microsoft Corporation O90 - PUC: “93799D213DFF1673A86A9F920EEF04E7” [HKLM] . (.Multi-Device Hybrid Apps using C# - Templates - ENU.) O90 - PUC: “93BAD29AC2E44034A96BCB446EB8552E” [HKLM] . (.Avast Update Helper.) =>.Avast Software s.r.o O90 - PUC: “94CC99E9503D24D4CA43C63702261B24” [HKLM] . (.Microsoft Visual Studio 2015 Preparation.) =>.Microsoft Corporation O90 - PUC: “95EA8E91A4D443535B76C60CF84A01E2” [HKLM] . (.Microsoft .NET Framework 4.5.2 Multi-Targeting Pack.) =>.Microsoft Corporation O90 - PUC: “9767203404DF6E239A0FB73BDCBE4E61” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “979BB3CF45AA06B4BB3AC2D46A0ED808” [HKLM] . (.Microsoft System CLR Types for SQL Server 2014.) – C:\WINDOWS\Installer{FC3BB979-AA54-4B60-BBA3-2C4DA6E08D80}\ARPIco =>.Microsoft Corporation O90 - PUC: “98881006F0E98E34B998928E8C824BA0” [HKLM] . (.Dotfuscator and Analytics Community Edition 5.22.0.) – C:\WINDOWS\Installer{60018889-9E0F-43E8-9B89-29E8C828B40A}\DfIcon.ico =>.PreEmptive O90 - PUC: “9892D37190B609A388915AE3349F8981” [HKLM] . (.Microsoft Visual Studio 2015 Devenv Resources.) =>.Microsoft Corporation O90 - PUC: “9947451521A46CC3EAD3C3E5787D9290” [HKLM] . (.Visual C++ MSBuild ARM Package.) =>.Microsoft Corporation O90 - PUC: “9A76C9198ED292949A01BC580E905BBC” [HKLM] . (.Microsoft Visual Studio 2015 Preparation.) =>.Microsoft Corporation O90 - PUC: “9B01CB49A9518E44EB1A43FB67F5AE85” [HKLM] . (.Intel(R) ME UninstallLegacy.) =>.Intel Corporation O90 - PUC: “9C5D040BAA9CA0344AE496666510E216” [HKLM] . (.TOSHIBA System Settings.) – C:\Windows\Installer{B040D5C9-C9AA-430A-A44E-696656012E61}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: “9C6B9B97FAF305F4699A1C56E10ADD13” [HKLM] . (.Microsoft Visual Studio Services Hub.) =>.Microsoft Corporation O90 - PUC: “9CEE3CB8F09035C48AADB1CE1903049F” [HKLM] . (.Microsoft .NET Framework 4.6.1 Targeting Pack.) =>.Microsoft Corporation O90 - PUC: “9E49476D31AAB3043AEB2CC693E9AEA4” [HKLM] . (.Microsoft Visual Studio 2015 Windows Diagnostic Tools.) =>.Microsoft Corporation O90 - PUC: “9E745430AF8D7E94B8C9C48916BF1964” [HKLM] . (.Microsoft .NET Framework 4.6 Targeting Pack (ENU).) =>.Microsoft Corporation O90 - PUC: “9eab5ec6ac3d99b498a1d16c1c815acf” [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org O90 - PUC: “9EE39CB71F443873DA676FDBC6F8B685” [HKLM] . (.Visual C++ Compiler/Tools X86 Base Package.) =>.Microsoft Corporation O90 - PUC: “9EFB902DADE36063FAB6CDDA8AA72258” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “A23E51F81DAF3E9439878CEE50031E29” [HKLM] . (.Microsoft Azure Storage Connected Service.) =>.Microsoft Corporation O90 - PUC: “A45CE00A61EC6FC41AA4C58FA1F10EF3” [HKLM] . (.Microsoft Azure Mobile Services SDK V2.0.) – C:\WINDOWS\Installer{A00EC54A-CE16-4CF6-A14A-5CF81A1FE03F}\icon.ico =>.Microsoft Corporation O90 - PUC: “A4A13A39C7910F346978F7CF743CD344” [HKLM] . (.Microsoft Visual Studio 2015 Preparation.) =>.Microsoft Corporation O90 - PUC: “A5254F69D074C51F97E6859D89C8E3F5” [HKLM] . (.Windows Software Development Kit for Windows Store Apps DirectX x64 Remote.) =>.Microsoft Corporation O90 - PUC: “A6659052614305B32BCF7F0A52C442EC” [HKLM] . (.Microsoft Visual C++ 2015 x86 Debug Runtime - 14.0.24210.) =>.Microsoft Corporation O90 - PUC: “A7E80D741A29B9840BFB14556194B7EC” [HKLM] . (.Microsoft SQL Server 2014 T-SQL Language Service .) – C:\WINDOWS\Installer{47D08E7A-92A1-489B-B0BF-415516497BCE}\ARPIco =>.Microsoft Corporation O90 - PUC: “A93C93B0ECE32854C91948D22218A942” [HKLM] . (.TOSHIBA Display Utility.) – C:\Windows\Installer{0B39C39A-3ECE-4582-9C91-842D22819A24}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: “AA207995BE191C839B49DC3EC5750E70” [HKLM] . (.Microsoft Visual Studio 2015 VsGraphics Helper Dependencies.) =>.Microsoft Corporation O90 - PUC: “AA6EC1903572E6F4DAC1E0787544BE45” [HKLM] . (.Microsoft System CLR Types for SQL Server 2014.) – C:\WINDOWS\Installer{091CE6AA-2753-4F6E-AD1C-0E875744EB54}\ARPIco =>.Microsoft Corporation O90 - PUC: “AAE8AD66DC4DCD039B39E0FD27E81D6F” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “B636B92C51091DE41AF236573A732FB3” [HKLM] . (.Apple Mobile Device Support.) – C:\WINDOWS\Installer{C29B636B-9015-4ED1-A12F-6375A337F23B}\Installer.ico =>.Apple Inc. O90 - PUC: “B988047430D2F6A3CB24708CFAFDB3E2” [HKLM] . (.Microsoft Help Viewer 2.2.) =>.Microsoft Corporation O90 - PUC: “BB0423CD63198793E83F0F14CAAE11FB” [HKLM] . (.Visual C++ IDE Base Resource Package.) =>.Microsoft Corporation O90 - PUC: “BB86BB6239FC21A4CBD63A6B5FA38C9D” [HKLM] . (.TOSHIBA Password Utility.) – C:\Windows\Installer{26BB68BB-CF93-4A12-BC6D-A3B6F53AC8D9}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: “BD5FC0CADC03405369CFCCC33CAB3F86” [HKLM] . (.Microsoft Visual Studio 2015 XAML Designer - ENU.) =>.Microsoft Corporation O90 - PUC: “BDBA9BF8451D3FD4DB7688714A550072” [HKLM] . (.Intel(R) PRO/Wireless Driver.) – C:\WINDOWS\Installer{8FB9ABDB-D154-4DF3-BD67-8817A4550027}\ARPPRODUCTICON.exe =>.Intel Corporation O90 - PUC: “BE5A19C826C2D6A48820CC97DFE23D09” [HKLM] . (.Intel(R) Chipset Device Software.) =>.Intel Corporation O90 - PUC: “BFFA17FE5B58C7043A1093AE529F3831” [HKLM] . (.Intel® PROSet/Wireless WiFi Software.) – C:\WINDOWS\Installer{EF71AFFB-85B5-407C-A301-39EA25F98313}\ARPPRODUCTICON.exe =>.Intel Corporation O90 - PUC: “C025571B2A687A53689168CD7369889B” [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: “C14E23FDDA4278A44BA33B58351B08E6” [HKLM] . (.Visual Studio 2015 Prerequisites.) =>.Legitimate O90 - PUC: “c1c4f01781cc94c4c8fb1542c0981a2a” [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: “C218D49DF02B9BD3282D5AA72CAC9FAC” [HKLM] . (.Microsoft Visual C++ 2015 x64 Debug Runtime - 14.0.24210.) =>.Microsoft Corporation O90 - PUC: “C3AEB2FCAE628F23AAB933F1E743AB79” [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: “C5FEE661699FE093196FDDD6DF00E8B9” [HKLM] . (.Microsoft Visual Studio 2015 Shell (Minimum) Interop Assemblies.) =>.bl.org O90 - PUC: “C66FFB43E7A98774A8F9D11A0F4F2CE2” [HKLM] . (.Microsoft Build Tools Language Resources 14.0 (amd64).) =>.Microsoft Corporation O90 - PUC: “C7221E499A8026943B88F1508DA9AE57” [HKLM] . (.Microsoft Web Deploy 3.6.) – C:\WINDOWS\Installer{94E1227C-08A9-4962-B388-1F05D89AEA75}\MSDeployIcon.exe =>.Microsoft Corporation O90 - PUC: “C8A2FA24BBE6E2D3B91F165373F9ABCB” [HKLM] . (.Windows Espc Package.) =>.Microsoft Corporation O90 - PUC: “C950CACBC60E54D429A86A091676E8AC” [HKLM] . (.Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - amd64.) =>.Microsoft Corporation O90 - PUC: “CAB1B20FAD49BF642BB72778CFE04F18” [HKLM] . (.Microsoft Azure Shared Components for Visual Studio 2015 - v1.8.) – C:\WINDOWS\Installer{F02B1BAC-94DA-46FB-B27B-7287FC0EF481}\icon.ico =>.Microsoft Corporation O90 - PUC: “CE420C3C790BEB34B9CF3E1DE04F5501” [HKLM] . (.Microsoft Visual Studio 2015 XAML Application Timeline - ENU.) =>.Microsoft Corporation O90 - PUC: “CE6380BC270BD863282B3D74B09F7570” [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: “CFD2C1F142D260E3CB8B271543DA9F98” [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org O90 - PUC: “D04EA5027DA892F44A03DD1286AD65D2” [HKLM] . (.Intel(R) Rapid Storage Technology.) =>.Intel Corporation O90 - PUC: “D08BFDF01E191F635B32B00924F1DD1C” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “D1ACF320195E9FA3D9F2896736A915A1” [HKLM] . (.Visual C++ Library PGO X86 Package.) =>.Microsoft Corporation O90 - PUC: “D20352A90C039D93DBF6126ECE614057” [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org O90 - PUC: “D25808053F133D946B3FF7CEC833A930” [HKLM] . (.Microsoft VisualStudio JavaScript Project System.) =>.Sun Microsystems O90 - PUC: “D6295A911E66CF6458D461A31AA0253D” [HKLM] . (.Microsoft .NET Framework 4.5.1 SDK.) =>.Microsoft Corporation O90 - PUC: “D683705B16F155E40BB55FA6BC00683B” [HKLM] . (.TOSHIBA PC Health Monitor.) – C:\Windows\Installer{B507386D-1F61-4E55-B05B-F56ACB0086B3}\ARPPRODUCTICON.exe =>.Toshiba Corporation O90 - PUC: “D6B2416516B2CDB46A700BC61BF81E97” [HKLM] . (.Surfshark TAP Driver Windows.) – C:\WINDOWS\Installer{56142B6D-2B61-4BDC-A607-B06CB18FE179}\TAP1x.exe O90 - PUC: “D7314F9862C648A4DB8BE2A5B47BE100” [HKLM] . (.Microsoft Silverlight.) – c:\WINDOWS\Installer{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon =>.Microsoft Corporation O90 - PUC: “D7388FB61E76953498BF0CB8DFF61283” [HKLM] . (.Microsoft Build Tools 14.0 (x86).) =>.Microsoft Corporation O90 - PUC: “D7E18DD182D0BEC4782B0C144ACF2B51” [HKLM] . (.Rapport.) – C:\WINDOWS\Installer{1DD81E7D-0D28-4CEB-87B2-C041A4FCB215}\icon.ico O90 - PUC: “D8130315AEF76E5329D710639801DBCF” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “D8DD72B374F8DF84BB85EE42B31853A9” [HKLM] . (.Surfshark.) – C:\WINDOWS\Installer{3B27DD8D-8F47-48FD-BB58-EE243B81359A}\artboard.exe O90 - PUC: “DA18E8989BD6057468B68B59C8D57CAA” [HKLM] . (.Shark007 STANDARD Codecs.) – C:\WINDOWS\Installer{898E81AD-6DB9-4750-866B-B8958C5DC7AA}\ARPPRODUCTICON.exe O90 - PUC: “DB7E58BDDD2B4D343B0C327D5B725B79” [HKLM] . (.WCF Data Services 5.6.4 Runtime.) =>.Microsoft Corporation O90 - PUC: “DBE4EEF20BEC62E34950FCD018C2AFC3” [HKLM] . (.Visual C++ IDE Core Professional Plus Resource Package.) =>.Microsoft Corporation O90 - PUC: “DC8A59DBF9D1DA5389A1E3975220E6BB” [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: “DCBFB14403889EF3BBEB46C37A89C20A” [HKLM] . (.Microsoft Visual Studio 2015 XAML Designer.) =>.Microsoft Corporation O90 - PUC: “DD81A634C2F5C3B489E5DAC3310BCC52” [HKLM] . (.PreEmptive Analytics Visual Studio Components.) – C:\WINDOWS\Installer{436A18DD-5F2C-4B3C-985E-AD3C13B0CC25}\icon.ico =>.PreEmptive O90 - PUC: “DE75FC3A1DFF4CA39B7D0960B9B2E5AD” [HKLM] . (.Visual C++ IDE Base Resource Package.) =>.Microsoft Corporation O90 - PUC: “E018BFD7429BDAD479A50EF785517372” [HKLM] . (.Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86.) =>.Microsoft Corporation O90 - PUC: “E197C4E0E87BD774DBA5DC0D89B56ACE” [HKLM] . (.Application Insights Tools for Visual Studio 2015.) =>.Microsoft Corporation O90 - PUC: “E61E74258FCBBA5961353B8FBF8F3B1F” [HKLM] . (.Windows Software Development Kit DirectX x64 Remote.) =>.Microsoft Corporation O90 - PUC: “E751CA102F62E393B819F3BE4DA1E4D5” [HKLM] . (.Visual C++ IDE Core Package.) =>.Microsoft Corporation O90 - PUC: “E805B3A083651744CB9C59E48186BC68” [HKLM] . (.WCF Data Services Tools for Microsoft Visual Studio 2015.) =>.Microsoft Corporation O90 - PUC: “EB27779BE7F290F3394B1D9C1E6910A8” [HKLM] . (.Microsoft Visual Studio Team Foundation Server 2015 Update 3 CTP1 Storyboarding Language Pack (x64) - ENU.) =>.Microsoft Corporation O90 - PUC: “ED5BFE622E051693EAA751CBF0AA2F80” [HKLM] . (.Visual C++ IDE Debugger Package.) =>.Microsoft Corporation O90 - PUC: “EDE8C96D5CBBB634E8E05C6A3D11FCF4” [HKLM] . (.Microsoft XNA Framework Redistributable 4.0 Refresh.) – C:\WINDOWS\Installer{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}\ProductIcon =>.bl.org O90 - PUC: “EE45814E6A8D30E44BD20E00C6423A60” [HKLM] . (.Microsoft Visual Studio 2015 Test Tools Language Pack - ENU.) =>.Microsoft Corporation O90 - PUC: “EE82BEE81415C114C90F992562F44EFA” [HKLM] . (.Microsoft .NET Framework 4.6.1 Targeting Pack (ENU).) =>.Microsoft Corporation O90 - PUC: “F173C5F32AE852F4D9D30D4B25E6A3AE” [HKLM] . (.NVIDIA PhysX.) =>.nVidia Corporation O90 - PUC: “F28962C8543B78C3D871E588DAADFF6F” [HKLM] . (.Visual Studio Graphics Analyzer.) =>.Microsoft Corporation O90 - PUC: “F384909DE08723243931C4421A0BB98E” [HKLM] . (.OpenOffice 4.1.10.) – C:\WINDOWS\Installer{D909483F-780E-4232-9313-4C24A1B09BE8}\soffice.ico =>.Open Source O90 - PUC: “F5954772A2CB21B42AB5C0733A07940B” [HKLM] . (.Microsoft SQL Server 2014 Management Objects .) – C:\WINDOWS\Installer{2774595F-BC2A-4B12-A25B-0C37A37049B0}\ARPIco =>.Microsoft Corporation O90 - PUC: “F65125E7EF81359BEB9AB66E7AA7DFFF” [HKLM] . (.GameInput Redistributable.) =>.bl.org O90 - PUC: “F7773DA4B62DDCF488321B9D8714146C” [HKLM] . (.Microsoft Visual Studio 2015 Profiling Tools.) =>.Microsoft Corporation O90 - PUC: “F9C60C6C254BA7C4BA385F39A19B3B27” [HKLM] . (.Intel(R) Management Engine Components.) =>.Intel Corporation O90 - PUC: “FB12D639443302B4CBC4B37685C0915F” [HKLM] . (.Bluetooth(R) Link.) – C:\Windows\Installer{936D21BF-3344-4B20-BC4C-3B67580C19F5}\ARPPRODUCTICON.exe =>.bl.org O90 - PUC: “FB8157013A346BC45B17C9A542F15968” [HKLM] . (.Microsoft Azure Mobile Services Connected Service.) =>.Microsoft Corporation O90 - PUC: “FD6CDFFD8F4DC4A4CA36319669DAFADA” [HKLM] . (.Microsoft Visual Studio 2015 Update 3 Diagnostic Tools - x86.) =>.Microsoft Corporation O90 - PUC: “FE79075B83F5C8430818D4F0B08757E7” [HKLM] . (.Microsoft Agents for Visual Studio 2015 Preview - ENU.) =>.Microsoft Corporation O90 - PUC: “FEAB01D97674CE64A8046A7ED54834C2” [HKLM] . (.HP DeskJet 3700 series Help.) – C:\WINDOWS\Installer{9D10BAEF-4767-46EC-8A40-A6E75D84432C}\ARP_Icon =>.Hewlett-Packard —\ Windows Installer Scan (63) - 217s [MD5.AAB62F725A00FE2715BACFE096C7F6BA] [WIS][2020/11/27 14:31:02] (.Surfshark - Surfshark TUN Driver Windows.) – C:\WINDOWS\Installer\1011620.msi [1929728] =>.Surfshark [MD5.2E387CA160CB78909CFBC1697D907132] [WIS][2015/06/24 22:17:54] (.Toshiba Corporation - TOSHIBA System Driver.) – C:\WINDOWS\Installer\136ec.msi [6495744] =>.Toshiba Corporation [MD5.B92159D3755350C38ECAFE37731FC142] [WIS][2020/05/28 23:45:26] (.Shark007 - Standard.) – C:\WINDOWS\Installer\152d8c74.msi [35051520] =>.Shark007 [MD5.147D9C7D57109D19D9C18320C572897E] [WIS][2015/08/14 01:23:14] (.Intel Corporation - Intel(R) ME UninstallLegacy.) – C:\WINDOWS\Installer\153fa.msi [397312] =>.Intel Corporation [MD5.9A7ECEA011D5DEBE4B1AB7271E6539C9] [WIS][2015/08/14 01:24:44] (.Intel Corporation - Intel(R) Management Engine Components.) – C:\WINDOWS\Installer\153fe.msi [9736192] =>.Intel Corporation [MD5.D15392BE5D3D8C5D2737DF22FA0976FF] [WIS][2015/08/14 01:25:04] (.Intel Corporation - Intel(R) Management Engine Components.) – C:\WINDOWS\Installer\15402.msi [17072128] =>.Intel Corporation [MD5.0ED0C9589B99557E514AC19AF6C73A22] [WIS][2015/05/22 16:27:22] (.Intel Corporation - Intel(R) Trusted Connect Service Client.) – C:\WINDOWS\Installer\15406.msi [11005952] =>.Intel Corporation [MD5.0D69490E64E1185C42AB13FE88AC6335] [WIS][2015/05/22 00:25:00] (.Intel Corporation - Intel® Security Assist.) – C:\WINDOWS\Installer\1540a.msi [1167360] =>.Intel Corporation [MD5.2A08127CB509B3A8AEB4F5A495AEEE02] [WIS][2022/03/03 00:38:47] (.Adobe - Installers.) – C:\WINDOWS\Installer\17333be.msi [11624448] =>.Adobe [MD5.2BEB777DCF7C8FC0A10F9ACE15AC92EE] [WIS][2015/06/05 18:00:32] (.Toshiba Corporation - TOSHIBA Password Utility.) – C:\WINDOWS\Installer\182f2.msi [753664] =>.Toshiba Corporation [MD5.0413B9BBAED73B00C80134D8151B3F3C] [WIS][2019/09/06 23:35:06] (.TOSHIBA Corporation - TOSHIBA Web Camera Application.) – C:\WINDOWS\Installer\18b5092.msi [84555640] =>.TOSHIBA Corporation [MD5.FD8FA0B062CCE0F4F242B03C123EBAAC] [WIS][2022/10/26 07:25:53] (.Surfshark - Surfshark.) – C:\WINDOWS\Installer\1b8684.msi [6717440] =>.Surfshark [MD5.9AD77AC648BEBBD42A73BC6E829D8E9D] [WIS][2022/11/04 21:28:57] (.Surfshark - Surfshark TAP Driver Windows.) – C:\WINDOWS\Installer\1b8691.msi [1857536] =>.Surfshark [MD5.44B601BED6F1271F956D558276158ED4] [WIS][2015/06/23 15:01:14] (.Intel Corporation - Intel(R) Rapid Storage Technology.) – C:\WINDOWS\Installer\1c292.msi [2990080] =>.Intel Corporation [MD5.B77266AA8837E435C07BF23C19D071C4] [WIS][2015/12/28 15:44:24] (.DTS, Inc. - DTS Premium Sound.) – C:\WINDOWS\Installer\1c297.msi [8126976] =>.DTS, Inc. [MD5.04B26305C5813F434FD648152EC3530C] [WIS][2015/07/15 15:43:14] (.Intel Corporation - Intel(R) Wireless Bluetooth(R) Patch/Audio .) – C:\WINDOWS\Installer\1c29a.msi [7503872] =>.Intel Corporation [MD5.80B1355EB92E1F95647F85D42B63BE0F] [WIS][2015/06/16 13:44:34] (.Intel Corporation - Intel(R) Chipset Device Software.) – C:\WINDOWS\Installer\1db7a.msi [798720] =>.Intel Corporation [MD5.3977F43E388B0B1B110D5D6147636B4E] [WIS][2021/01/10 21:40:26] (.Trusteer - Rapport.) – C:\WINDOWS\Installer\1dde408.msi [116084736] =>.Trusteer [MD5.0F2077FE49F787C9415D6733DA96385A] [WIS][2015/07/06 19:03:34] (.Toshiba Corporation - TOSHIBA eco Utility.) – C:\WINDOWS\Installer\1ecbf.msi [27799552] =>.Toshiba Corporation [MD5.2FE1731A512E430E8F5E1E7193CDB370] [WIS][2015/07/09 22:36:00] (.Macrovision Corporation.) – C:\WINDOWS\Installer\1fe8f.msi [452608] =>.Macrovision Corporation [MD5.1BDFEC5F31DA3576C1050F7224A83118] [WIS][2015/12/28 16:15:20] (.Toshiba Corporation - Bluetooth(R) Link.) – C:\WINDOWS\Installer\1fe94.msi [11740160] =>.Toshiba Corporation [MD5.9C05FF9DBF12FCEDE8A5BC47AFA55CD6] [WIS][2015/11/03 12:38:42] (.InstallShield.) – C:\WINDOWS\Installer\211a2d.msi [25568768] =>.InstallShield [MD5.60BF7D94E281FE2046481DC883A5AAE3] [WIS][2021/02/12 22:38:59] (.Sony Interactive Entertainment Inc. - Content Manager Assistant.) – C:\WINDOWS\Installer\23b991d.msi [7007232] =>.Sony Interactive Entertainment Inc. [MD5.5276AF3C5AB0F35BA0BC2DAAFF325D0E] [WIS][2020/10/26 17:29:27] (.AVAST Software - Avast Update Helper.) – C:\WINDOWS\Installer\24a8c9.msi [32768] =>.AVAST Software [MD5.D728611CF546A3F25A91BE92E1E2D942] [WIS][2021/04/20 07:01:34] (.OpenOffice - OpenOffice 4.1.10.) – C:\WINDOWS\Installer\257942.msi [2465792] =>.OpenOffice [MD5.6B5655B4D6FA8BBE4C65242C594B5CA6] [WIS][2015/06/16 23:08:40] (.Toshiba Corporation - TOSHIBA Display Utility.) – C:\WINDOWS\Installer\25b48.msi [4839936] =>.Toshiba Corporation [MD5.3D99A29A4DFF2BE75AF08FFE0572F5D6] [WIS][2016/07/01 09:24:45] (.PreEmptive Solutions LLC - PreEmptive Solutions provides analytics, ob.) – C:\WINDOWS\Installer\2c997a1.msi [1048576] =>.PreEmptive Solutions LLC [MD5.60835A715E830AA0565045EA6E46A25D] [WIS][2016/07/01 09:24:58] (.PreEmptive Solutions - PreEmptive Analytics Visual Studio Componen.) – C:\WINDOWS\Installer\2c997a5.msi [438272] =>.PreEmptive Solutions [MD5.AEBFF4D29B4F5C174F693F07B0E13105] [WIS][2022/08/12 13:13:34] (.Surfshark - Surfshark TAP Driver Windows.) – C:\WINDOWS\Installer\2fca79.msi [1857536] =>.Surfshark [MD5.74EB679853F3032C43FB01AEBD153992] [WIS][2022/10/11 17:43:07] (.Adobe Systems Incorporated - Adobe ARM Installer.) – C:\WINDOWS\Installer\31e3e3.msi [1056768] =>.Adobe Systems Incorporated [MD5.15FE74356728EAEF4002BDDF8DF7DAE6] [WIS][2015/09/18 10:35:40] (.Toshiba Corporation - TOSHIBA PC Health Monitor.) – C:\WINDOWS\Installer\335c555d.msi [29072896] =>.Toshiba Corporation [MD5.5C69DA41436D2D06B2E12A883CAFACF7] [WIS][2015/06/09 13:47:50] (.TOSHIBA - Toshiba Quality Application.) – C:\WINDOWS\Installer\345c13.msi [644096] =>.TOSHIBA [MD5.375324ACA01886EEB28A5B9F8B2CFEE7] [WIS][2016/07/01 14:01:42] (.NVIDIA Corporation - Install/UnInstall PhysX Driver + Engines: 2.) – C:\WINDOWS\Installer\3df873.msi [26969088] =>.NVIDIA Corporation [MD5.CCA73DEE90A8159E45417584329E7C06] [WIS][2015/11/17 12:18:11] (.Toshiba - Toshiba support and information tool.) – C:\WINDOWS\Installer\44337f.msi [18345472] =>.Toshiba [MD5.4A1BBF6CC46D15F19B1252E764F4A9DC] [WIS][2016/06/29 19:01:18] (.Logitech Inc - Logitech Gaming Software.) – C:\WINDOWS\Installer\4e5cf5.msi [188928] =>.Logitech Inc [MD5.02C0C8FECBE0D403AD55E2B67FEADD6B] [WIS][2018/04/06 22:33:04] (.HP Inc. - HP DeskJet 3700 series Basic Device Softwar.) – C:\WINDOWS\Installer\530c53.msi [5283840] =>.HP Inc. [MD5.6BEA76F7FF747779C5D646226AB72990] [WIS][2018/04/06 22:33:10] (.HP - HP Scan Dropbox destination plugin.) – C:\WINDOWS\Installer\530c57.msi [155648] =>.HP [MD5.42C8A467BA948995922E26B8F87E42C5] [WIS][2018/04/06 22:33:11] (.HP - HP Scan Google Drive destination plugin.) – C:\WINDOWS\Installer\530c5b.msi [155648] =>.HP [MD5.A289F7BAA18BCAD7CDC0BB2DED4E71A0] [WIS][2018/04/06 22:33:12] (.HP - HP DeskJet 3700 series Get product specific.) – C:\WINDOWS\Installer\530c5f.msi [163840] =>.HP [MD5.29D03A2C78656D0308DBF9F2FF86F51C] [WIS][2018/04/06 22:33:08] (.HP Inc. - Product Improvement Study for HP DeskJet 37.) – C:\WINDOWS\Installer\530c63.msi [294912] =>.HP Inc. [MD5.DCED9CF9504C89AC0B8AA0BB05EF181E] [WIS][2021/09/22 22:16:07] (.InstallShield Software Corporation.) – C:\WINDOWS\Installer\563325a.msi [5182464] =>.InstallShield Software Corporation [MD5.9FA0FB567C8CC8E9590FB35483771B7C] [WIS][2016/07/24 16:02:07] (.Skype Technologies S.A. - Skype.) – C:\WINDOWS\Installer\5e40411.msi [39772160] =>.Skype Technologies S.A. [MD5.A04E16FA33082B02CB691F122BAB15B3] [WIS][2015/10/27 05:55:00] (.Intel Corporation - Intel® RealSense™ SDK 2014 Runtime (x64): .) – C:\WINDOWS\Installer\63b334.msi [2801664] =>.Intel Corporation [MD5.53DE567B87B7649DC3F42F8AD0A8CEAF] [WIS][2018/10/12 13:05:22] (.Intel Corporation - Intel� WiFi.) – C:\WINDOWS\Installer\8b0b41b.msi [28954624] =>.Intel Corporation [MD5.835F26FBE9F2DB8CD869D6E04FBCDB17] [WIS][2018/10/12 13:05:22] (.Intel Corporation - Intel� WiFi.) – C:\WINDOWS\Installer\8b0b5ac.msi [65212416] =>.Intel Corporation [MD5.054EC82CDD4193046B95C637A9A54D21] [WIS][2016/11/04 17:07:16] (.Intel Corporation - Intel(R) WiDi Software Asset Manager.) – C:\WINDOWS\Installer\8cd668f.msi [7147520] =>.Intel Corporation [MD5.7C2B515F118877B70E98B85FE02997B0] [WIS][2022/02/06 11:54:02] (.Google, Inc. - Backup and Sync from Google.) – C:\WINDOWS\Installer\9ce7693.msi [319799296] =>.Google, Inc. [MD5.CE6C63E6CBC532B737E1E6C334332573] [WIS][2022/08/26 20:58:01] (.Surfshark - Surfshark TAP Driver Windows.) – C:\WINDOWS\Installer\9cf617.msi [1857536] =>.Surfshark [MD5.D8FE1FC75BF3D87C308D67F08D803097] [WIS][2018/07/06 00:59:20] (.Apple Inc. - Apple Application Support Installer.) – C:\WINDOWS\Installer\a782d3.msi [48050176] =>.Apple Inc. [MD5.C771BD22382A102ED5259274C479D907] [WIS][2018/07/06 00:59:22] (.Apple Inc. - Apple Application Support Installer.) – C:\WINDOWS\Installer\a782d7.msi [53202944] =>.Apple Inc. [MD5.F7A461B666C72BD0624FF4FE100E5E22] [WIS][2018/07/06 00:54:34] (.Apple Inc. - Apple Mobile Device Support Installer.) – C:\WINDOWS\Installer\a782df.msi [14053376] =>.Apple Inc. [MD5.0D54B7E528B43CAFA7860F6752745234] [WIS][2018/04/23 08:40:54] (.Apple Inc. - Apple Software Update Installer.) – C:\WINDOWS\Installer\a782e3.msi [3612672] =>.Apple Inc. [MD5.4E0EB6D750C2CBA6579805A3E0AD3D69] [WIS][2015/12/08 01:50:02] (.Intel Corporation - Intel(R) WiDi.) – C:\WINDOWS\Installer\d0426c.msi [26066944] =>.Intel Corporation [MD5.8C05E9F858CDCDF4049C7FE61D69009D] [WIS][2016/06/29 17:27:13] (.InstallShield.) – C:\WINDOWS\Installer\d042b9.msi [1752576] =>.InstallShield [MD5.4A3622E2781AF3CA226BC65FBD93CC54] [WIS][2015/12/08 16:18:34] (.Toshiba Corporation - TOSHIBA Service Station.) – C:\WINDOWS\Installer\d04363.msi [2879488] =>.Toshiba Corporation [MD5.930BBFFBED78F9830442038F7E82BBAB] [WIS][2021/04/16 12:49:34] (.Malwarebytes - Malwarebytes Privacy VPN Tunnel Driver.) – C:\WINDOWS\Installer\d1df3e.msi [2822144] =>.Malwarebytes [MD5.D78D0FE3A00F46774880F12E14F7394C] [WIS][2022/08/11 23:02:26] (.Dropbox, Inc. - Dropbox Update Helper.) – C:\WINDOWS\Installer\f28be0.msi [27136] =>.Dropbox, Inc. [MD5.CA5E7E3127D58F6CA3CBA316226759D8] [WIS][2022/03/03 00:39:14] (.Adobe Inc..) – C:\WINDOWS\Installer\17333bf.msp [280211456] =>.Adobe Inc. [MD5.6049D0E498510FD3904A79308F00AE46] [WIS][2022/09/29 08:06:19] (.Adobe Inc..) – C:\WINDOWS\Installer\31e449.msp [199811072] =>.Adobe Inc. [MD5.372536BF13E51B494DCA602533FF613F] [WIS][2022/09/08 02:24:49] (.Adobe Inc..) – C:\WINDOWS\Installer\4ad107.msp [65650688] =>.Adobe Inc. [MD5.CEE31BEFD23037527A2BA4237C2FBC1C] [WIS][2022/10/16 20:35:27] (.Adobe Inc..) – C:\WINDOWS\Installer\9038801.msp [130744320] =>.Adobe Inc. [MD5.1D14D261AA0BDC4F039BFE2ABD9B453E] [WIS][2022/08/03 00:38:41] (.Adobe Inc..) – C:\WINDOWS\Installer\9ae07a.msp [64937984] =>.Adobe Inc. [MD5.CCD5BD099073D7DA739C819E6DBE3DE8] [WIS][2022/07/05 07:40:44] (.Adobe Inc..) – C:\WINDOWS\Installer\d48d91.msp [282443776] =>.Adobe Inc. —\ FEATURE CONTROL. (282) - 2s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BFCACHE]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_CROSS_PROTOCOL_FILE_NAVIGATION]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:IsaUi.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:dllhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:ToshibaRegistration.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Skype.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:SkypeBrowserHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Amazon1ButtonBrowser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbamtray.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbam.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Acrodist.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AcroLicApp.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Acrobat.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AASIapp.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:msoasb.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IFRAME_MAILTO_THRESHOLD]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:winwordd.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:Skype.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:SkypeBrowserHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:Skype.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:SkypeBrowserHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:mspub.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:eek:utlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:eek:nenote.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:msaccess.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:eek:utlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SCRIPTURL_MITIGATION]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:eek:utlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WARN_ON_SEC_CERT_REV_FAILED]:mbam.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:mspub.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:eek:utlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:eek:nenote.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msoasb.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msaccess.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:presentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate —\ Observer Of Events (169) - 296s Application.Error: ESENT (813) ~Numéro: 426617 ~Date: 11/08/2022 12:40:33 PM ~ID: 455 ~Description: %1 (%2) %3Error %5 occurred while opening logfile %4. ~Suggestion: Créer un dossier C:\Windows\system32\config\systemprofile\AppData\Local\TileDataLayer\Database Application.Error: Application Hang (31) ~Numéro: 426444 ~Date: 11/08/2022 12:08:41 PM ~ID: 1002 ~Description: The program %1 version %2 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: 3f10 Start Time: 01d8f32ba827 ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Error: DbxSvc (68) ~Numéro: 426432 ~Date: 11/08/2022 11:57:04 AM ~ID: 281 ~Description: CertFindCertificateInStore failed with: (-2146885628) Cannot find object or property. ~Suggestion: Aucune Application.Error: SideBySide (75) ~Numéro: 426415 ~Date: 11/08/2022 11:55:55 AM ~ID: 33 ~Description: Activation context generation failed for “%11”. Dependent Assembly %1 could not be found. Please use sxstrace.exe for detailed diagnosis. ~Suggestion: Ces erreurs peuvent généralement être ignorées Application.Warning: AutoEnrollment (29) ~Numéro: 426384 ~Date: 11/08/2022 11:47:03 AM ~ID: 64 ~Description: local system05 97 36 5b 98 ff a0 32 1f 4e bd 39 65 6b 3b 3e c4 fe 6b 93 ~Suggestion: Installer le Kit de développement logiciel (SDK). Application.Error: Application Error (49) ~Numéro: 426382 ~Date: 11/08/2022 11:46:41 AM ~ID: 1000 ~Description: Faulting application name: %1, version: %2, time stamp: 0x81c628b3 Faulting module name: %4, version: %5, time stamp: 0x5f3bd7ec Exception code: 0xc0000005 Fault offset: 0x001218f6 Faulting process ID: 0x232c Faulting application start time: 0x01d8f3 ~Suggestion: Réparer ou réinstaller l’application. Application.Error: System Restore (2) ~Numéro: 426379 ~Date: 11/08/2022 11:45:29 AM ~ID: 8193 ~Description: Failed to create restore point (Process = %1; Description = %2; Error = %3). Application.Warning: Microsoft-Windows-WMI (6) ~Numéro: 426337 ~Date: 11/08/2022 04:24:17 AM ~ID: 63 ~Description: A provider, %1, has been registered in the Windows Management Instrumentation namespace %2 to use the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests. ~Suggestion: Généralement LocalSystem n’est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié. Application.Error: VSS (41) ~Numéro: 426270 ~Date: 11/08/2022 04:07:41 AM ~Description: Volume Shadow Copy Service error: Unexpected error calling routine %1. hr = %2. ~Suggestion: Utiliser la procédure de reconstruction du VSS Application.Error: Microsoft-Windows-Spell-Checking (3) ~Numéro: 426101 ~Date: 11/07/2022 09:41:31 PM ~ID: 31 ~Description: Failed to update %1 user custom wordlist: %2. Spell checking will remain available, but this user wordlist will not be updated. Application.Error: SecurityCenter (17) ~Numéro: 425866 ~Date: 11/07/2022 06:33:28 PM ~ID: 17 ~Description: Security Center failed to validate caller with error %1. Application.Error: WTabletServicePro (2) ~Numéro: 425840 ~Date: 11/07/2022 06:28:18 PM ~ID: 1 ~Description: Prefs: Failed to get user path Application.Warning: EventSystem (1) ~Numéro: 425829 ~Date: 11/07/2022 06:27:19 PM ~ID: 4627 ~Description: 80010002PostShell{D5978650-5B9F-11D1-8DD2-00AA004ABD5E}SENS Logon2 Subscription180 Application.Warning: Wlclntfy (26) ~Numéro: 425798 ~Date: 11/07/2022 06:23:51 PM ~ID: 6006 ~Description: The winlogon notification subscriber <%1> took %2 second(s) to handle the notification event (%3). ~Suggestion: Supprimer la valeur de registre GpNetworkStartTimeoutPolicyValue de la clé HKLM\SOFTWARE\Policies\Microsoft\Windows\System Application.Error: Microsoft-Windows-LoadPerf (4) ~Numéro: 425706 ~Date: 11/07/2022 05:56:11 PM ~ID: 3006 ~Description: Unable to read the performance counter strings defined for the %1 language ID. The first DWORD in the Data section contains the Win32 error code. Application.Error: WMIRegistrationService (10) ~Numéro: 425404 ~Date: 11/07/2022 04:32:02 PM ~ID: 3 ~Description: Intel(R) WMI Registration Service has failed WMI Registration. Application.Warning: Microsoft-Windows-RPC-Events (8) ~Numéro: 425327 ~Date: 11/07/2022 01:36:35 PM ~ID: 9 ~Description: “C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.420.11102.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe” -Embedding21640 Application.Warning: Edge (4) ~Numéro: 425298 ~Date: 11/07/2022 11:38:44 AM ~ID: 256 ~Description: %1!S! Application.Error: .NET Runtime (19) ~Numéro: 424936 ~Date: 11/06/2022 07:08:43 PM ~ID: 1026 ~Description: Application: ActiveBridge.exeFramework Version: v4.0.30319Description: The process was terminated due to an unhandled exception.Exception Info: System.NullReferenceException at iolo.Common.BaseSettings.GetProperty[[System.__Canon, mscorlib, Version ~Suggestion: Essayer d’installer la dernière version de l’application ou du dernier correctif Application.Error: Microsoft-Windows-RestartManager (13) ~Numéro: 423455 ~Date: 11/04/2022 12:12:49 PM ~ID: 10006 ~Description: Application or service ‘%3’ could not be shut down. Application.Error: Software Protection Platform Service (2) ~Numéro: 423437 ~Date: 11/04/2022 12:08:55 PM ~ID: 8208 ~Description: Acquisition of genuine ticket failed (%1) for template Id {99d92734-d682-4d71-983e-d6ec3f16059f} Application.Warning: Microsoft-Windows-System-Restore (30) ~Numéro: 423297 ~Date: 11/04/2022 02:12:27 AM ~ID: 8303 ~Description: Scoping unsuccessful for shadowcopy %1 with error %2. ~Suggestion: Exécuter la commande chkdsk / f System.Error: Schannel (707) ~Numéro: 305279 ~Date: 11/08/2022 12:36:57 PM ~ID: 4103 ~Description: A fatal error occurred while creating a TLS %1 credential. The internal error state is %2. System.Warning: Microsoft-Windows-DNS-Client (61) ~Numéro: 305271 ~Date: 11/08/2022 12:15:25 PM ~ID: 1014 ~Description: Name resolution for the name %1 timed out after none of the configured DNS servers responded. ~Suggestion: Event ID 1014: Microsoft Windows DNS Client | Microsoft Learn System.Warning: DCOM (357) ~Numéro: 305270 ~Date: 11/08/2022 12:12:41 PM ~ID: 10016 ~Description: application-specificLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}RAYAdministratorS-1-5-21-3366790378-2559649480-2858292162-500LocalHost (Using LRPC)UnavailableUnavailable ~Suggestion: Vérifier les autorisations pour l’accès DCOM System.Error: Service Control Manager (576) ~Numéro: 305260 ~Date: 11/08/2022 11:52:08 AM ~ID: 7000 ~Description: The %1 service failed to start due to the following error: %%1053 System.Warning: BTHUSB (47) ~Numéro: 305252 ~Date: 11/08/2022 11:45:31 AM ~ID: 34 ~Description: The local adapter does not support an important Low Energy controller state to support peripheral mode. The minimum required supported state mask is %2; got %3. Low Energy peripheral role functionality will not be available. System.Warning: Microsoft-Windows-Kernel-PnP (26) ~Numéro: 305172 ~Date: 11/08/2022 04:10:02 AM ~ID: 219 ~Description: The driver %5 failed to load for the device %2. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: Microsoft-Windows-WLAN-AutoConfig (22) ~Numéro: 305046 ~Date: 11/07/2022 06:19:12 PM ~ID: 10000 ~Description: WLAN Extensibility Module has failed to start. Module Path: C:\WINDOWS\System32\IWMSSvc.dll Error Code: 258 System.Warning: Microsoft-Windows-Time-Service (2) ~Numéro: 303478 ~Date: 11/01/2022 10:50:42 AM ~ID: 134 ~Description: NtpClient was unable to set a manual peer to use as a time source because of DNS resolution error on ‘%3’. NtpClient will try again in %2 minutes and double the reattempt interval thereafter. The error was: No such host is known. (0x80072AF9) ~Suggestion: Resynchroniser le client avec l’homologue de source de temps System.Error: volmgr (8) ~Numéro: 302121 ~Date: 10/27/2022 06:46:21 PM ~ID: 46 ~Description: Crash dump initialization failed! —\ Additional Scan (O88) (90) - 198s C:\Program Files (x86)\Driver Support =>PUP.Optional.DriverSupport C:\ProgramData\Driver Support =>PUP.Optional.DriverSupport C:\ProgramData\panda_url_filtering =>SUP.Optional.StartSearch C:\Users\Administrator\Desktop\OutByte-PC-Repair-1112641-with-Crack =>SUP.Optional.Outbyte C:\Users\Administrator\Desktop\Restoro-2021-License-Key—Crack-Full-Key-Download =>SUP.Optional.Restoro HKLM\Software\Classes*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\Incinerator =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\IObitUnstaler =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome HKLM\SOFTWARE\Wow6432Node\pandasecuritytb =>.SUP.VisicomMedia HKLM\SOFTWARE\pandasecuritytb =>.SUP.VisicomMedia HKLM\SOFTWARE\POLICIES\Mozilla\Firefox =>.SUP.FirefoxRestriction C:\Program Files (x86)\Quantum Legacy\QuantumLegacy.exe =>PUP.Optional.Company [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Quantum Legacy\QuantumLegacy.exe.FriendlyAppName =>PUP.Optional.Company [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Quantum Legacy\QuantumLegacy.exe.ApplicationCompany =>PUP.Optional.Company [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\OSTotoSoft\DriverTalent\DriverTalent.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\OSTotoSoft\DriverTalent\DriverTalent.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Software Updater\SoftwareUpdater.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Software Updater\SoftwareUpdater.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Easeware\DriverEasy\DriverEasy.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Easeware\DriverEasy\DriverEasy.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Youtube Downloader HD\YouTubeDownloaderHD.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\FLV to AVI Video Converter\VideoConverter.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\AVAST Software\Driver Updater\DriverUpdUI.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\AVAST Software\Driver Updater\DriverUpdUI.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Downloads\advanced-systemcare-setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Downloads\advanced-systemcare-setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\uninstall_flash_player.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\uninstall_flash_player.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\adwcleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\adwcleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\ZHPCleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\ZHPCleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\Check Browsers LNK.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\Check Browsers LNK.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\FRST-OlderVersion\FRST64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\FRST-OlderVersion\FRST64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\RogueKiller_setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\RogueKiller_setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\ZHPDiag3.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\ZHPDiag3.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\RogueKiller\RogueKiller64.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\RogueKiller\RogueKiller64.exe.ApplicationCompany =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\UCheck\UCheck64.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\UCheck\UCheck64.exe.ApplicationCompany =>.Unsigned [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Quantum Legacy\QuantumLegacy.exe.FriendlyAppName =>PUP.Optional.Company [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Quantum Legacy\QuantumLegacy.exe.ApplicationCompany =>PUP.Optional.Company [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\OSTotoSoft\DriverTalent\DriverTalent.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\OSTotoSoft\DriverTalent\DriverTalent.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Software Updater\SoftwareUpdater.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Software Updater\SoftwareUpdater.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Easeware\DriverEasy\DriverEasy.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\Easeware\DriverEasy\DriverEasy.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Youtube Downloader HD\YouTubeDownloaderHD.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\FLV to AVI Video Converter\VideoConverter.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\AVAST Software\Driver Updater\DriverUpdUI.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\AVAST Software\Driver Updater\DriverUpdUI.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Downloads\advanced-systemcare-setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Downloads\advanced-systemcare-setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\uninstall_flash_player.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\uninstall_flash_player.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\adwcleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\adwcleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\ZHPCleaner.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\ZHPCleaner.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\Check Browsers LNK.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\Check Browsers LNK.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\FRST-OlderVersion\FRST64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\FRST-OlderVersion\FRST64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\RogueKiller_setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\RogueKiller_setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\ZHPDiag3.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Administrator\Desktop\ZHPDiag3.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\RogueKiller\RogueKiller64.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\RogueKiller\RogueKiller64.exe.ApplicationCompany =>.Unsigned [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\UCheck\UCheck64.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-3366790378-2559649480-2858292162-500\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\UCheck\UCheck64.exe.ApplicationCompany =>.Unsigned C:\ProgramData\Microsoft Toolkit =>HackTool.AutoKMS —\ Summary of the elements found (19) - 0s ZHPDiag et l'analyse S.M.A.R.T. des disques durs - ZAM => SMART Information Zone Anti-Malware - ZAM =>.SUP.Orphan Zone Anti-Malware - ZAM =>.SUP.DriveTheLife Zone Anti-Malware - ZAM =>PUP.Optional.Company Zone Anti-Malware - ZAM =>PUP.Optional.MyBrowser Zone Anti-Malware - ZAM =>SUP.Optional.AdvancedSystemCare Zone Anti-Malware - ZAM =>.SUP.Discord Zone Anti-Malware - ZAM =>PUP.Optional.DriverSupport Zone Anti-Malware - ZAM =>.SUP.VisicomMedia Zone Anti-Malware - ZAM =>SUP.Optional.StartSearch Zone Anti-Malware - ZAM =>Adware.CrossRider Zone Anti-Malware - ZAM =>SUP.Optional.Outbyte Zone Anti-Malware - ZAM =>SUP.Optional.Restoro Zone Anti-Malware - ZAM =>Warning.EventLogApp Zone Anti-Malware - ZAM =>Warning.EventLogSys Zone Anti-Malware - ZAM =>.SUP.Temporary.Chrome Zone Anti-Malware - ZAM =>.SUP.FirefoxRestriction Zone Anti-Malware - ZAM =>.SUP.Orphan.MUICache Zone Anti-Malware - ZAM =>HackTool.AutoKMS —\ Serial Number [009E0433AB8DD97C709FF850DDAB967C87] [08/11/2022] (.ADLICE (Julien ASCOET).) - C:\Windows\System32\drivers\truesight.sys =>.ADLICE (Julien ASCOET) [00A657F778B31AE523D667131718D16EB2] [04/11/2022] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [04/11/2022] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [04/11/2022] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [04/11/2022] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [04/11/2022] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [07/10/2022] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbuns.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [07/11/2022] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [07/11/2022] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [07/11/2022] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [20/08/2022] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc. [00C134B2A3AE7F9BD5A260DC5FCC04087C] [05/10/2022] (.Musecy SM Ltd..) - C:\Program Files (x86)\Audacity\Audacity.exe =>.Not verified [00C134B2A3AE7F9BD5A260DC5FCC04087C] [08/10/2022] (.Musecy SM Ltd..) - C:\Program Files (x86)\Audacity\unins000.exe =>.Not verified [00D346B753DC51B7C9A690B3D2EE769139] [28/12/2015] (.Spotify AB.) - C:\Program Files (x86)\Spotify\Spotify.exe =>.Spotify AB [00D346B753DC51B7C9A690B3D2EE769139] [28/12/2015] (.Spotify AB.) - C:\Program Files (x86)\Spotify\SpotifyCrashService.exe =>.Spotify AB [00D346B753DC51B7C9A690B3D2EE769139] [28/12/2015] (.Spotify AB.) - C:\Program Files (x86)\Spotify\SpotifyLauncher.exe =>.Spotify AB [00D346B753DC51B7C9A690B3D2EE769139] [28/12/2015] (.Spotify AB.) - C:\Program Files (x86)\Spotify\SpotifyWebHelper.exe =>.Spotify AB [00DEAF52CEBE1A83772B8A067655A963C8] [18/10/2022] (.Creaky Corpse Ltd.) - C:\Program Files (x86)\Steam\steamapps\common\Dead Frontier 2\DeadFrontier2.exe =>.Not verified [00E0CCC32A366AB8037E7EBD2934F711DC] [22/01/2019] (.iolo technologies, LLC.) - C:\Program Files (x86)\Phoenix360\SCU\SCU.exe =>.iolo technologies, LLC [00F0C27275D68638437918392B6F79BBCC] [13/09/2022] (.K Desktop Environment e.V..) - C:\Program Files\Krita (x64)\bin\krita.exe =>.K Desktop Environment e.V. [01] [02/04/2021] (.warface.) - C:\mygames\warface my.com\bin64release\game.exe =>.warface [0111C69A751AB53D0C4C4D18B9ED0A00] [26/01/2022] (.COGNOSPHERE PTE. LTD..) - C:\Program Files\Genshin Impact\7z.exe =>.Not verified [0111C69A751AB53D0C4C4D18B9ED0A00] [26/01/2022] (.COGNOSPHERE PTE. LTD..) - C:\Program Files\Genshin Impact\launcher.exe =>.Not verified [0111C69A751AB53D0C4C4D18B9ED0A00] [26/01/2022] (.COGNOSPHERE PTE. LTD..) - C:\Program Files\Genshin Impact\uninstall.exe =>.Not verified [0148CA714AC06F07D2FD2C38F6612063] [14/09/2022] (.Chengdu ShanHe Information Technology Co., Ltd..) - C:\Program Files (x86)\iTop VPN\atud.exe =>.Not verified [0148CA714AC06F07D2FD2C38F6612063] [24/10/2022] (.Chengdu ShanHe Information Technology Co., Ltd..) - C:\Program Files (x86)\iTop VPN\unins000.exe =>.Not verified [0148CA714AC06F07D2FD2C38F6612063] [26/09/2022] (.Chengdu ShanHe Information Technology Co., Ltd..) - C:\Program Files (x86)\iTop VPN\iTopVPNMini.exe =>.Not verified [0148CA714AC06F07D2FD2C38F6612063] [27/09/2022] (.Chengdu ShanHe Information Technology Co., Ltd..) - C:\Program Files (x86)\iTop VPN\iTopVPN.exe =>.Not verified [02009F3FD86C9A6051C97108379B1201] [08/11/2022] (.Zoom Video Communications, Inc..) - C:\Users\Administrator\AppData\Roaming\Zoom\bin\Zoom.exe =>.Not verified [02009F3FD86C9A6051C97108379B1201] [08/11/2022] (.Zoom Video Communications, Inc..) - C:\Users\Administrator\AppData\Roaming\Zoom\uninstall\Installer.exe =>.Not verified [025A1BF3E389238382537190D349E56A] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\afwServ.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\ashShell.dll =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\aswEngSrv.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastSvc.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvastUI.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\AvLaunch.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\setup\instup.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [02/08/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswVpnRdr.sys =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [11/10/2022] (.Avast Software s.r.o..) - C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [11/10/2022] (.Avast Software s.r.o..) - C:\Program Files\Avast Software\SecureLine VPN\VpnNM.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [11/10/2022] (.Avast Software s.r.o..) - C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [26/10/2020] (.Avast Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [26/10/2020] (.Avast Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler64.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [26/10/2020] (.Avast Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [28/07/2022] (.Avast Software s.r.o..) - C:\Program Files\Common Files\Avast Software\Icarus\avast-atrk\icarus.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [29/09/2022] (.Avast Software s.r.o..) - C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [30/08/2022] (.Avast Software s.r.o..) - C:\Program Files (x86)\Avast Software\AvastAntiTrackPremium\AntiTrackSvc.exe =>.Avast Software s.r.o. [025A1BF3E389238382537190D349E56A] [31/10/2022] (.Avast Software s.r.o..) - C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe =>.Avast Software s.r.o. [02FA994D660DE659EE9037ECB437D766] [02/08/2022] (.Piriform Software Ltd.) - C:\WINDOWS\System32\drivers\netfilter2.sys =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [20/10/2022] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [25/08/2022] (.Piriform Software Ltd.) - C:\Program Files\Common Files\Piriform\Icarus\piriform-atrk\icarus.exe =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [29/08/2022] (.Piriform Software Ltd.) - C:\Program Files (x86)\Kamo\CefSharp.BrowserSubprocess.exe =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [29/08/2022] (.Piriform Software Ltd.) - C:\Program Files (x86)\Kamo\Kamo.exe =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [29/08/2022] (.Piriform Software Ltd.) - C:\Program Files (x86)\Kamo\KamoSvc.exe =>.Piriform Software Ltd [034B2981B20F76E6BC69D2ED44EBF2E8] [14/01/2021] (.Logitech Inc.) - C:\WINDOWS\System32\DRIVERS\LHidFilt.Sys =>.Logitech Inc [034B2981B20F76E6BC69D2ED44EBF2E8] [14/01/2021] (.Logitech Inc.) - C:\WINDOWS\System32\DRIVERS\LMouFilt.Sys =>.Logitech Inc [03574AC3E8A3001F70F9AEC1E7034AD1] [21/09/2012] (.Visan Industries.) - C:\Program Files (x86)\HP Photo Creations\PhotoProduct.exe =>.Visan Industries [03F02ACA051D1C9330EEABD3706E836F] [01/06/2021] (.Avast Software s.r.o..) - C:\Program Files\AVAST Software\Avast\wsc_proxy.exe =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswArPot.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbidsdriver.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbidsh.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswbuniv.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswKbd.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswMonFlt.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswNetHub.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswRdr2.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswRvrt.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswSnx.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswSP.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswStm.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [01/11/2022] (.Avast Software s.r.o..) - C:\WINDOWS\System32\drivers\aswVmm.sys =>.Avast Software s.r.o. [03F02ACA051D1C9330EEABD3706E836F] [30/08/2022] (.Avast Software s.r.o..) - C:\Program Files (x86)\AVAST Software\AvastAntiTrackPremium\AvastAntiTrackPremium.exe =>.Avast Software s.r.o. [0407ABB64E9990180789EACB81F5F914] [24/03/2022] (.VideoLAN.) - C:\program files (x86)\videolan\vlc\vlc.exe =>.VideoLAN [0407ABB64E9990180789EACB81F5F914] [24/03/2022] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN [045296F8FCD829A75DC94294F5A415A4] [16/10/2022] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe =>.Adobe Inc. [045296F8FCD829A75DC94294F5A415A4] [16/10/2022] (.Adobe Inc..) - C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_2\AcroCEF.exe =>.Adobe Inc. [045296F8FCD829A75DC94294F5A415A4] [26/09/2022] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc. [045F7B840FB74D1CD3FD9920335A93A0] [11/07/2017] (.Logitech Inc.) - C:\Program Files\Logitech\LogiOptions\CreateShortcut.exe =>.Logitech Inc [045F7B840FB74D1CD3FD9920335A93A0] [11/07/2017] (.Logitech Inc.) - C:\Program Files\Logitech\LogiOptions\uninstaller.exe =>.Logitech Inc [045F7B840FB74D1CD3FD9920335A93A0] [11/07/2017] (.Logitech Inc.) - C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE =>.Logitech Inc [045F7B840FB74D1CD3FD9920335A93A0] [19/04/2016] (.Logitech Inc.) - C:\WINDOWS\System32\drivers\LGBusEnum.sys =>.Logitech Inc [045F7B840FB74D1CD3FD9920335A93A0] [19/04/2016] (.Logitech Inc.) - C:\WINDOWS\System32\drivers\LGJoyXlCore.sys =>.Logitech Inc [045F7B840FB74D1CD3FD9920335A93A0] [19/04/2016] (.Logitech Inc.) - C:\WINDOWS\System32\drivers\LGVirHid.sys =>.Logitech Inc [04C530703A210EC1D6F83CB4FE1118C5] [28/10/2022] (.Spotify AB.) - C:\Users\Administrator\AppData\Roaming\Spotify\Spotify.exe =>.Not verified [04D54DC0A2016B263EEEB255D321056E] [01/02/2022] (.OpenVPN Technologies, Inc..) - C:\Program Files (x86)\Surfshark TAP Driver Windows\bin\x86\tapinstall.exe =>.OpenVPN Technologies, Inc. [04DF4D56733AE38D598EA004DD2D9C51] [26/02/2021] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RtsP2Stor.sys =>.Realtek Semiconductor Corp. [05488AD7E4BABA7F93E3323C0573BF3C] [16/03/2022] (.Brave Software, Inc..) - C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\brave.exe =>.Brave Software, Inc. [05488AD7E4BABA7F93E3323C0573BF3C] [17/03/2022] (.Brave Software, Inc..) - C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\99.1.36.116\Installer\chrmstp.exe =>.Brave Software, Inc. [05488AD7E4BABA7F93E3323C0573BF3C] [17/03/2022] (.Brave Software, Inc..) - C:\Program Files (x86)\BraveSoftware\Brave-Browser\Application\99.1.36.116\Installer\setup.exe =>.Brave Software, Inc. [054F466CECCBE9D6BEE81F5435E64D47] [19/05/2021] (.Valve.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve [0575E1F7EC9BD8A67A3F6189C63E97BB] [20/10/2022] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files\CCleaner\CCleaner64.exe =>.PIRIFORM SOFTWARE LIMITED [0575E1F7EC9BD8A67A3F6189C63E97BB] [20/10/2022] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe =>.PIRIFORM SOFTWARE LIMITED [0575E1F7EC9BD8A67A3F6189C63E97BB] [20/10/2022] (.PIRIFORM SOFTWARE LIMITED.) - C:\Program Files\CCleaner\uninst.exe =>.PIRIFORM SOFTWARE LIMITED [05BEF9A17340E40BFDEAFB3057281859] [02/07/2021] (.LLC Mail.Ru.) - C:\users\ollie\appdata\local\gamecenter\gamecenter.exe =>.Not verified [05C6B77FCCA38C46FDA07191919C7447] [02/03/2022] (.Dynabook Inc..) - C:\WINDOWS\System32\drivers\tosrfec.sys =>.Dynabook Inc. [05C6B77FCCA38C46FDA07191919C7447] [02/03/2022] (.Dynabook Inc..) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\DSDFunctionKeyCtlService.exe =>.Dynabook Inc. [05C6B77FCCA38C46FDA07191919C7447] [02/03/2022] (.Dynabook Inc..) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\dynabookSystemService.exe =>.Dynabook Inc. [05C6B77FCCA38C46FDA07191919C7447] [02/03/2022] (.Dynabook Inc..) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\TosSrvCtlDrv.sys =>.Dynabook Inc. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [28/10/2022] (.ESET, spol. s r.o..) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\SwReporter\104.289.200\edls_64.dll =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [28/10/2022] (.ESET, spol. s r.o..) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\SwReporter\104.289.200\em002_64.dll =>.ESET, spol. s r.o. [05F97D054A9BFCBF9D5E12F8D0ABBE07] [28/10/2022] (.ESET, spol. s r.o..) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\SwReporter\104.289.200\em003_64.dll =>.ESET, spol. s r.o. [068983642C953E46F7BDCE4143F133C1] [10/07/2019] (.Adobe Systems, Incorporated.) - C:\WINDOWS\Installer\MSID9EC.tmp =>.Adobe Systems, Incorporated [0689B3BCEB4409890A32D71976B132A4] [19/10/2022] (.Valve Corp..) - C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve Corp. [0689B3BCEB4409890A32D71976B132A4] [19/10/2022] (.Valve Corp..) - C:\Program Files (x86)\Steam\Steam.exe =>.Valve Corp. [06AEA76BAC46A9E8CFE6D29E45AAF033] [30/08/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe =>.Google LLC [06AEA76BAC46A9E8CFE6D29E45AAF033] [30/08/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe =>.Google LLC [0732A8F76CAB52571E0277593B1DB3A5] [07/02/2017] (.McAfee, Inc..) - C:\Program Files\Intel Security\True Key\Application\truekey.exe =>.McAfee, Inc. [0732A8F76CAB52571E0277593B1DB3A5] [07/02/2017] (.McAfee, Inc..) - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll =>.McAfee, Inc. [07577900B9B5A8E448A66528C7760D31] [08/05/2016] (.Unity Technologies SF.) - C:\Program Files\Unity\Editor\Uninstall.exe =>.Unity Technologies SF [07F3E5C0807B417CAFDBD7D4AB23CF8B] [04/10/2020] (.Bluestack Systems, Inc.) - C:\Program Files\BlueStacks\BstkDrv_bgp.sys =>.Bluestack Systems, Inc [07FD93A49244DA84F806598A60133C86] [14/07/2016] (.Wacom Technology Corporation.) - C:\Program Files\Tablet\DevInst.exe =>.Wacom Technology Corporation [07FD93A49244DA84F806598A60133C86] [14/07/2016] (.Wacom Technology Corporation.) - C:\Program Files\Tablet\Wacom\32\Remove.exe =>.Wacom Technology Corporation [07FD93A49244DA84F806598A60133C86] [14/07/2016] (.Wacom Technology Corporation.) - C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe =>.Wacom Technology Corporation [07FD93A49244DA84F806598A60133C86] [14/07/2016] (.Wacom Technology Corporation.) - C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe =>.Wacom Technology Corporation [07FD93A49244DA84F806598A60133C86] [14/07/2016] (.Wacom Technology Corporation.) - C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe =>.Wacom Technology Corporation [07FD93A49244DA84F806598A60133C86] [14/07/2016] (.Wacom Technology Corporation.) - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe =>.Wacom Technology Corporation [08059B3E593E584D45F048DD80D7EF83] [05/01/2021] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys =>.Synaptics Incorporated [0815C9CCD49A7C0E6DE478EFE90F9669] [22/01/2020] (.Brave Software, Inc..) - C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe =>.Brave Software, Inc. [084CAF4DF499141D404B7199AA2C2131] [08/08/2016] (.Valve.) - C:\Program Files (x86)\Steam\uninstall.exe =>.Valve [08A2EC4E78A09E174B192E5535984B59] [16/04/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Privacy\mbuns.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [16/04/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Privacy\MBVpnService.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [16/04/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Privacy\MBVpnTunnelService.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [16/04/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Privacy\UI\MBPrivacy.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [16/04/2021] (.Malwarebytes Inc.) - C:\WINDOWS\System32\DRIVERS\mbtun.sys =>.Malwarebytes Inc [08DCE537FFE5AF8769F7EEC6D4D329B9] [02/09/2022] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe =>.Not verified [08DCE537FFE5AF8769F7EEC6D4D329B9] [24/08/2022] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFTips.exe =>.Not verified [08DDB12146AF9858663408E98629828B] [13/07/2022] (.SurfRight B.V..) - C:\Program Files\HitmanPro\HitmanPro.exe =>.Not verified [08DDB12146AF9858663408E98629828B] [13/07/2022] (.SurfRight B.V..) - C:\Program Files\HitmanPro\hmpsched.exe =>.Not verified [0902B36B3251C328083F777CA08428FF] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\Avast Software\Cleanup\AvBugReport.exe =>.Not verified [0902B36B3251C328083F777CA08428FF] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe =>.Not verified [0902B36B3251C328083F777CA08428FF] [01/11/2022] (.Avast Software s.r.o..) - C:\Program Files\Avast Software\Cleanup\TuneupUI.exe =>.Not verified [0902B36B3251C328083F777CA08428FF] [04/11/2022] (.Avast Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Application\106.0.19037.119\Installer\chrmstp.exe =>.Not verified [0902B36B3251C328083F777CA08428FF] [27/10/2022] (.Avast Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Application\106.0.19037.119\elevation_service.exe =>.Not verified [0902B36B3251C328083F777CA08428FF] [27/10/2022] (.Avast Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe =>.Not verified [0902B36B3251C328083F777CA08428FF] [27/10/2022] (.Avast Software s.r.o..) - C:\Program Files (x86)\AVAST Software\Browser\AvastBrowserUninstall.exe =>.Not verified [0993029BC550FB0A04CCB4BD264134D5] [20/04/2017] (.TeamViewer GmbH.) - C:\WINDOWS\System32\drivers\teamviewervpn.sys =>.TeamViewer GmbH [0B8F52FAF64C421EABB2275AE148C519] [18/08/2022] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp. [0BFCFAC08E216A1C1FDAA6B77BB2D66E] [20/05/2021] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\Rt630x64.sys =>.Realtek Semiconductor Corp. [0C1CD3EEA47EDDA7A032573B014D0AFD] [06/11/2022] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [06/11/2022] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [06/11/2022] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [22/09/2022] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0D36AB0805BA9450220F865C58918F52] [27/10/2022] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_ELXR82.1.0.9.x64.dll =>.Malwarebytes Inc [0D98F5DF96C592C5B76BFDE1CB823096] [03/11/2021] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Sandbox\imfsbDrv.sys =>.IObit CO., LTD [0D98F5DF96C592C5B76BFDE1CB823096] [12/05/2021] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\ObCallbackProcess.sys =>.IObit CO., LTD [0D98F5DF96C592C5B76BFDE1CB823096] [12/09/2022] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\unins001.exe =>.IObit CO., LTD [0D98F5DF96C592C5B76BFDE1CB823096] [21/10/2021] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\ImfRealScanner.sys =>.IObit CO., LTD [0D98F5DF96C592C5B76BFDE1CB823096] [26/05/2022] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe =>.IObit CO., LTD [0D98F5DF96C592C5B76BFDE1CB823096] [29/07/2021] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\IMFDownProtect.sys =>.IObit CO., LTD [0D98F5DF96C592C5B76BFDE1CB823096] [31/05/2022] (.IObit CO., LTD.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFCore.exe =>.IObit CO., LTD [0DB137C8082145F79916594933DE4D2A] [30/08/2022] (.Facebook, Inc..) - C:\Users\Administrator\AppData\Local\Programs\Messenger\Messenger.exe =>.Not verified [0E22F15724FA09F07FBBF2A05306BB27] [05/10/2022] (.ORANGE VIEW LIMITED.) - C:\Program Files\iTop Screen Recorder\unins000.exe =>.ORANGE VIEW LIMITED [0E22F15724FA09F07FBBF2A05306BB27] [16/06/2022] (.ORANGE VIEW LIMITED.) - C:\Program Files\iTop Screen Recorder\AUpdate.exe =>.ORANGE VIEW LIMITED [0E22F15724FA09F07FBBF2A05306BB27] [26/09/2022] (.ORANGE VIEW LIMITED.) - C:\Program Files\iTop Screen Recorder\iScrEditer.exe =>.ORANGE VIEW LIMITED [0E22F15724FA09F07FBBF2A05306BB27] [26/09/2022] (.ORANGE VIEW LIMITED.) - C:\Program Files\iTop Screen Recorder\iScrRec.exe =>.ORANGE VIEW LIMITED [0E4418E2DEDE36DD2974C3443AFB5CE5] [01/02/2022] (.Google LLC.) - C:\Program Files\Google\Drive\contextmenu64.dll =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [01/02/2022] (.Google LLC.) - C:\Program Files\Google\Drive\googledrivesync64.dll =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [01/11/2022] (.Google LLC.) - C:\Program Files\Google\Drive File Stream\66.0.3.0\crashpad_handler.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [01/11/2022] (.Google LLC.) - C:\Program Files\Google\Drive File Stream\66.0.3.0\drivefsext.dll =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [01/11/2022] (.Google LLC.) - C:\Program Files\Google\Drive File Stream\66.0.3.0\GoogleDriveFS.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [01/11/2022] (.Google LLC.) - C:\Program Files\Google\Drive File Stream\66.0.3.0\uninstall.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [27/10/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.88\elevation_service.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [27/10/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.88\Installer\chrmstp.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [27/10/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\107.0.5304.88\Installer\setup.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [27/10/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [27/10/2022] (.Google LLC.) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\SwReporter\104.289.200\software_reporter_tool.exe =>.Google LLC [0E5C1023180A1E44F148BBBC529F553E] [27/05/2015] (.DTS, Inc..) - C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\APO3GUI.exe =>.DTS, Inc. [0E5C1023180A1E44F148BBBC529F553E] [27/05/2015] (.DTS, Inc..) - C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe =>.DTS, Inc. [0EE00D4B1A480CA87001B5408063DA71] [22/09/2022] (.Overwolf Ltd.) - C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe =>.Overwolf Ltd [0EE00D4B1A480CA87001B5408063DA71] [22/09/2022] (.Overwolf Ltd.) - C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe =>.Overwolf Ltd [0EE00D4B1A480CA87001B5408063DA71] [22/09/2022] (.Overwolf Ltd.) - C:\Program Files (x86)\Overwolf\OWUninstaller.exe =>.Overwolf Ltd [0F316A214F60D59DC921AEB9685136CC] [09/06/2022] (.HIGH MORALE DEVELOPMENTS LIMITED.) - C:\WINDOWS\system32\drivers\ACE-BASE.sys =>.Not verified [0F4D8F268EE80DC8859E7CC11874E40C] [06/07/2021] (.Spotify AB.) - C:\users\ollie\appdata\roaming\spotify\spotify.exe =>.Spotify AB [0F7A165550163D5ED7D1CAA3FC13DA06] [01/01/2022] (.Dropbox, Inc.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc [0F7A165550163D5ED7D1CAA3FC13DA06] [04/11/2022] (.Dropbox, Inc.) - C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc [0F7A165550163D5ED7D1CAA3FC13DA06] [04/11/2022] (.Dropbox, Inc.) - C:\Program Files (x86)\Dropbox\Client\DropboxUninstaller.exe =>.Dropbox, Inc [0F7A165550163D5ED7D1CAA3FC13DA06] [04/11/2022] (.Dropbox, Inc.) - C:\WINDOWS\System32\DbxSvc.exe =>.Dropbox, Inc [0F7A165550163D5ED7D1CAA3FC13DA06] [11/10/2022] (.Dropbox, Inc.) - C:\Program Files (x86)\Dropbox\Client\DropboxExt64.56.0.dll =>.Dropbox, Inc [0FA41A17EFFB667DA065C0DA] [04/12/2017] (.Sony Interactive Entertainment Inc..) - C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe =>.Sony Interactive Entertainment Inc. [1044F31AE1F93A0BB95F19AB9FAAC6BB] [28/10/2022] (.ESET, spol. s r.o..) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\SwReporter\104.289.200\em000_64.dll =>.ESET, spol. s r.o. [10A5ED306FFA97319DB8227CC10AF69C] [06/07/2015] (.TOSHIBA CORPORATION.) - C:\Program Files\TOSHIBA\Teco\TecoService.exe =>.TOSHIBA CORPORATION [10A5ED306FFA97319DB8227CC10AF69C] [08/12/2015] (.TOSHIBA CORPORATION.) - C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe =>.TOSHIBA CORPORATION [10A5ED306FFA97319DB8227CC10AF69C] [16/07/2015] (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\InstallShield Installation Information{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}\setup.exe =>.TOSHIBA CORPORATION [10A5ED306FFA97319DB8227CC10AF69C] [18/06/2015] (.TOSHIBA CORPORATION.) - C:\WINDOWS\System32\drivers\TosBTFilter.sys =>.TOSHIBA CORPORATION [10A5ED306FFA97319DB8227CC10AF69C] [24/06/2015] (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\TOSHIBA\TOSHIBA System Driver\RMService.exe =>.TOSHIBA CORPORATION [1121C760AE457C81A5F30C2746F18F0981E6] [29/06/2016] (.Jernej Simoncic.) - C:\Program Files\GIMP 2\uninst\unins000.exe =>.Jernej Simoncic [1121D1D8286B82393399C853E44FF8AA3854] [07/07/2015] (.WinZip Computing LLC.) - C:\Program Files\WinZip\UnInstall64.exe =>.WinZip Computing LLC [13222A5DCCF716DF5AF9C87084412DD9] [11/05/2015] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\InstallShield Installation Information{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\setup.exe =>.Realtek Semiconductor Corp [14F8FDD167F92402B1570B5DC495C815] [16/05/2017] (.Google Inc.) - C:\Program Files (x86)\GUMF1BA.tmp\GoogleUpdate.exe =>.Google Inc [17AED194A417BC79B175CAE316DF75BA] [24/01/2015] (.Visan Industries.) - C:\Program Files (x86)\HP Photo Creations\uninst.exe =>.Visan Industries [1839AF8574AA0E80C371D9803461DD7B] [07/11/2022] (.ADLICE.) - C:\Program Files\RogueKiller\unins000.exe =>.ADLICE [1839AF8574AA0E80C371D9803461DD7B] [07/11/2022] (.ADLICE.) - C:\Program Files\UCheck\unins000.exe =>.ADLICE [1839AF8574AA0E80C371D9803461DD7B] [10/10/2022] (.ADLICE.) - C:\Program Files\RogueKiller\RogueKiller64.exe =>.ADLICE [1839AF8574AA0E80C371D9803461DD7B] [10/10/2022] (.ADLICE.) - C:\Program Files\RogueKiller\RogueKillerSvc.exe =>.ADLICE [1839AF8574AA0E80C371D9803461DD7B] [14/10/2022] (.ADLICE.) - C:\Program Files\UCheck\UCheck64.exe =>.ADLICE [19D2BBA6922F3C7A0242B54C040F8B11] [11/11/2015] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\SAII\setup64.exe =>.Conexant Systems, Inc. [19D2BBA6922F3C7A0242B54C040F8B11] [20/03/2017] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU64a.exe =>.Conexant Systems, Inc. [1F3216F428F850BE2C66CAA056F6D821] [27/12/2020] (.Telegram FZ-LLC.) - C:\program files\windowsapps\telegrammessengerllp.telegramdesktop_2.5.1.0_x64__t4vj0pshhgkwm\telegram.exe =>.Telegram FZ-LLC [1F9AE0] [13/10/2020] (.InstallShield Software Corporation.) - C:\Program Files (x86)\InstallShield Installation Information{24EBDD34-E08C-485B-8071-4DA36ABA862F}\setup.exe =>.InstallShield Software Corporation [234175E3D1A23EF8ACB50245] [15/07/2020] (.EasyAntiCheat Oy.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe =>.EasyAntiCheat Oy [266D333EDE17A8B472053E4FA3934572] [20/12/2021] (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\lpsport.sys =>.AVG Technologies CZ, s.r.o. [28229DB87B1D0591EEADF2A183F42AB2] [01/07/2016] (.Hardsuit Labs.) - C:\Program Files (x86)\Blacklight Retribution_en\Blacklight Retribution.exe =>.Not verified [2CA12CED1E35656C636428A3FACED867] [22/12/2021] (.Logitech.) - C:\WINDOWS\System32\drivers\LNonPnP.sys =>.Logitech [2CD2C5777BFC596CE3F6EBFDFB9B9469] [09/07/2015] (.CyberLink Corp..) - C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD Cinema\PowerDVDCinema12.exe =>.CyberLink Corp. [31B1B08C8899CA883CE1B0F17D56403B] [05/07/2018] (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc. [31B1B08C8899CA883CE1B0F17D56403B] [23/06/2018] (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc. [3300000110109D6B6E7785AE8D000100000110] [23/05/2016] (.Skype Software Sarl.) - C:\Program Files (x86)\Skype\Updater\Updater.exe =>.Skype Software Sarl [3300000110109D6B6E7785AE8D000100000110] [28/06/2016] (.Skype Software Sarl.) - C:\Program Files (x86)\Skype\Phone\Skype.exe =>.Skype Software Sarl [33000001C5CE6E1B72871D1C550000000001C5] [27/01/2021] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl [330000029B1302828FF3904ED200000000029B] [04/11/2022] (.Skype Software Sarl.) - C:\Program Files (x86)\Microsoft\Skype for Desktop\unins000.exe =>.Skype Software Sarl [330000029B1302828FF3904ED200000000029B] [27/10/2022] (.Skype Software Sarl.) - C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl [330000C0D4363D419B1C37EF9700020000C0D4] [12/04/2021] (.Intel(R) Rapid Storage Technology.) - C:\WINDOWS\System32\drivers\iaStorA.sys =>.Intel(R) Rapid Storage Technology [33FDB6C8EA3C6AC8C485E9FE1DDFF684] [17/03/2021] (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks\BlueStacksUninstaller.exe =>.BlueStack Systems, Inc. [353F70520DE1390E210CDD7A92CB0DA7] [24/02/2016] (.SoftOrbits.) - C:\Program Files (x86)\JPEG Repair PRO\PictureDoctor.exe =>.SoftOrbits [36336D836A19E244FF0E52882EB5B1DE] [18/09/2021] (.Creative Labs Inc.) - C:\Program Files (x86)\OpenAL\oalinst.exe =>.Creative Labs Inc [3F8FC51D6CEE4096DE3028D24B94E160] [02/06/2016] (.ELAN MICROELECTRONICS CORPORATION.) - C:\WINDOWS\System32\DRIVERS\ETD.sys =>.ELAN MICROELECTRONICS CORPORATION [3F8FC51D6CEE4096DE3028D24B94E160] [02/06/2016] (.ELAN MICROELECTRONICS CORPORATION.) - C:\WINDOWS\System32\drivers\ETDSMBus.sys =>.ELAN MICROELECTRONICS CORPORATION [419FD63037414E95D9FE6ACA3CB6C964] [20/03/2017] (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\CHDRT64.sys =>.Conexant Systems, Inc. [4B06FB7842759523C64BC79DEAA482C6] [08/02/2011] (.TOSHIBA CORPORATION.) - C:\WINDOWS\System32\DRIVERS\pgeffect.sys =>.TOSHIBA CORPORATION [4B48B27C8224FE37B17A6A2ED7A81C9F] [06/06/2016] (.Piriform Ltd.) - C:\Program Files\Recuva\RecuvaShell64.dll =>.Piriform Ltd [4B48B27C8224FE37B17A6A2ED7A81C9F] [25/08/2016] (.Piriform Ltd.) - C:\Program Files\Recuva\uninst.exe =>.Piriform Ltd [4C40DBA5F988FAE57A57D6457495F98B] [11/08/2016] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc [4CE26AB7B08A86A56200DE244E294BA5] [05/02/2015] (.Conexant Systems, Inc..) - C:\WINDOWS\system32\CxAudMsg64.exe =>.Conexant Systems, Inc. [4D72A00B3DA59455189D3C5D1B0EFDFC] [13/10/2020] (.X-Legend Entertainment CO., LTD..) - C:\AeriaGames\AuraKingdom\game.bin =>.Not verified [5150076BDC338FA24FC29BCD40730489] [17/09/2020] (.WDKTestCert nikod,132409123292239223.) - C:\WINDOWS\System32\drivers\wintunshark.sys =>.Not verified [53A771232CA017C09272FEF4ECB6C69A] [18/08/2018] (.Mail.Ru, LLC.) - C:\users\ollie\appdata\local\mycomgames\mycomgames.exe =>.Mail.Ru, LLC [53DBDFD481F038984E7FADD03DC31D0E] [22/05/2019] (.WDKTestCert Lenovo,131775874531219913.) - C:\WINDOWS\System32\drivers\tapsurfshark.sys =>.Not verified [56000000B3D2126A53D17267B40000000000B3] [12/08/2016] (.Intel(R) Software Asset Manager.) - C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe =>.Intel(R) Software Asset Manager [56000001F46907127A1D6406CD0000000001F4] [16/05/2019] (.Intel(R) Wireless Connectivity Solutions.) - C:\ProgramData\Package Cache{f8c930bd-0a68-425f-8c11-87723d1e2c97}\ISetup.exe =>.Intel(R) Wireless Connectivity Solutions [560000088689EFB89169C165B1000000000886] [12/04/2021] (.Intel(R) Trust Services.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_a93205b6238060e4\lib\SocketHeciServer.exe =>.Intel(R) Trust Services [560000089D2953A788A5B8886900000000089D] [06/09/2019] (.Intel(R) Wireless Connectivity Solutions.) - C:\WINDOWS\System32\DRIVERS\ibtusb.sys =>.Intel(R) Wireless Connectivity Solutions [560000089D2953A788A5B8886900000000089D] [09/09/2019] (.Intel(R) Wireless Connectivity Solutions.) - C:\WINDOWS\System32\drivers\Netwbw02.sys =>.Intel(R) Wireless Connectivity Solutions [5600000C970A207F2C4F00043D000000000C97] [17/06/2021] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group [5B84FCEA3F01CD1E55F097486EDCA0A1] [02/07/2014] (.TOSHIBA CORPORATION.) - C:\Program Files (x86)\InstallShield Installation Information{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}\setup.exe =>.TOSHIBA CORPORATION [5CD0502920C27EEAEC2A184D0452E53A] [13/04/2020] (.IObit Information Technology.) - C:\WINDOWS\system32\drivers\imfpffilter.sys =>.IObit Information Technology [5CD0502920C27EEAEC2A184D0452E53A] [13/08/2019] (.IObit Information Technology.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\IMFEFSFileControl.sys =>.IObit Information Technology [5CD0502920C27EEAEC2A184D0452E53A] [17/12/2019] (.IObit Information Technology.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\ImfHpFileFilter.sys =>.IObit Information Technology [5CD0502920C27EEAEC2A184D0452E53A] [17/12/2019] (.IObit Information Technology.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\ImfHpRegFilter.sys =>.IObit Information Technology [5CD0502920C27EEAEC2A184D0452E53A] [17/12/2019] (.IObit Information Technology.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win10_amd64\ImfRegistryFilter.sys =>.IObit Information Technology [5CD0502920C27EEAEC2A184D0452E53A] [22/07/2020] (.IObit Information Technology.) - C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFShellExt.dll =>.IObit Information Technology [5CD0502920C27EEAEC2A184D0452E53A] [30/07/2019] (.IObit Information Technology.) - C:\WINDOWS\system32\drivers\IMFCameraProtect.sys =>.IObit Information Technology [5DC98B9ADD1B30090983CBE53B9E6406] [06/02/2017] (.McAfee, Inc..) - C:\Program Files\TrueKey\Mcafee.TrueKey.Uninstaller.Exe =>.McAfee, Inc. [5EA9A42377C05624E16F6291CAF56BDA] [08/10/2012] (.Wacom Technology Corp..) - C:\Program Files\Tablet\Wacom\WacomHost.exe =>.Wacom Technology Corp. [65628C146ACE93037FC58659F14BD35F] [28/10/2022] (.ESET, spol. s r.o..) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\SwReporter\104.289.200\em001_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [28/10/2022] (.ESET, spol. s r.o..) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\SwReporter\104.289.200\em004_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [28/10/2022] (.ESET, spol. s r.o..) - C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\SwReporter\104.289.200\em005_64.dll =>.ESET, spol. s r.o. [6CA5EA5F3E39854E37335F11D5CC59CE] [26/04/2013] (.Mediatek Inc..) - C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys =>.Mediatek Inc. [6DCCE46BF957272AE06D045FED960536] [02/06/2016] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation [6DCCE46BF957272AE06D045FED960536] [02/06/2016] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDCtrlHelper.exe =>.ELAN Microelectronics Corporation [6DCCE46BF957272AE06D045FED960536] [02/06/2016] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation [6DCCE46BF957272AE06D045FED960536] [02/06/2016] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDUn_inst.exe =>.ELAN Microelectronics Corporation [731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH [731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH [731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH [738E0B963A4DB08231F49F664AF83E5B] [06/04/2018] (.Hewlett Packard.) - C:\Program Files\HP\HP DeskJet 3700 series\Bin\DeviceSetup.exe =>.Hewlett Packard [738E0B963A4DB08231F49F664AF83E5B] [06/04/2018] (.Hewlett Packard.) - C:\Program Files\HP\HP DeskJet 3700 series\Bin\HPNetworkCommunicatorCom.exe =>.Hewlett Packard [7A6D788082AD888A28797D03815CB962] [02/03/2022] (.Dynabook Inc..) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\RMService.exe =>.Dynabook Inc. [7A6D788082AD888A28797D03815CB962] [02/03/2022] (.Dynabook Inc..) - C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5b653f8f5261ead1\TOSTABSYSSVC.exe =>.Dynabook Inc. [7A6D788082AD888A28797D03815CB962] [29/04/2019] (.Dynabook Inc..) - C:\WINDOWS\System32\drivers\Thotkey.sys =>.Dynabook Inc. [7A6D788082AD888A28797D03815CB962] [30/04/2019] (.Dynabook Inc..) - C:\WINDOWS\System32\drivers\TVALZ_O.SYS =>.Dynabook Inc. [7B79A671BCDBCB575578952C856B8F09] [10/01/2021] (.IBM.) - c:\programdata\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_2004080.sys =>.IBM [7B79A671BCDBCB575578952C856B8F09] [18/08/2020] (.IBM.) - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportHelper.exe =>.IBM [7B79A671BCDBCB575578952C856B8F09] [18/08/2020] (.IBM.) - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe =>.IBM [7B79A671BCDBCB575578952C856B8F09] [18/08/2020] (.IBM.) - C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe =>.IBM [7B79A671BCDBCB575578952C856B8F09] [18/08/2020] (.IBM.) - C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportAegle64.sys =>.IBM [7B79A671BCDBCB575578952C856B8F09] [18/08/2020] (.IBM.) - C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys =>.IBM [7B79A671BCDBCB575578952C856B8F09] [18/08/2020] (.IBM.) - c:\program files (x86)\Trusteer\Rapport\bin\x64\rapportinjservice_x64.exe =>.IBM [7B79A671BCDBCB575578952C856B8F09] [18/08/2020] (.IBM.) - C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys =>.IBM [7B79A671BCDBCB575578952C856B8F09] [18/08/2020] (.IBM.) - C:\WINDOWS\System32\Drivers\RapportHades64.sys =>.IBM [7B79A671BCDBCB575578952C856B8F09] [18/08/2020] (.IBM.) - C:\WINDOWS\System32\Drivers\RapportKE64.sys =>.IBM [7C3DB25748949CFC8DD57D82] [04/11/2022] (.Surfshark B.V..) - C:\ProgramData\Caphyon\Advanced Installer{3B27DD8D-8F47-48FD-BB58-EE243B81359A}\SurfsharkSetup.exe =>.Not verified [7C3DB25748949CFC8DD57D82] [26/10/2022] (.Surfshark B.V..) - C:\Program Files (x86)\Surfshark\Surfshark.Antivirus.Remediation.exe =>.Not verified [7C3DB25748949CFC8DD57D82] [26/10/2022] (.Surfshark B.V..) - C:\Program Files (x86)\Surfshark\Surfshark.exe =>.Not verified [7C3DB25748949CFC8DD57D82] [26/10/2022] (.Surfshark B.V..) - C:\Program Files (x86)\Surfshark\Surfshark.Service.exe =>.Not verified [7D81783CDFC41FF7C4DA6D061A3840D4] [29/10/2018] (.PC DRIVERS HEADQUARTERS I, INC.) - C:\Program Files (x86)\Driver Support\Agent.CPU.exe =>.Not verified ~ Unselected Options: WR, ~ End of the scan, 11433 items in 14mn43s (4209)(0)
Comment
-
You have multiple VPN software, since Avast has one perhaps just use that, and uninstall the rest. Also, I believe Surfshark has an antivirus, which you do not need since you have Avast installed.
C:\Program Files (x86)\iTop VPN
C:\Program Files\Malwarebytes\Privacy\MBVpnTunnelService.exe
C:\WINDOWS\System32\drivers\teamviewervpn.sys
C:\Program Files (x86)\Surfshark
C:\WINDOWS\System32\drivers\wireguard.sys
Remove the following with GeekUninstaller.
Intel Security True Key
IObit Malware Fighter 9
System Checkup
FRST Fix.
Download attached fixlist.txt file and save it to the Desktop. NOTE. It’s important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work. NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system Run FRST/FRST64 and press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run. When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.
Security Check Scan.
[ul]
[li]Download Security Check to your desktop.[/li][li]Right click it run as administrator.[/li][li]When the program completes, the tool will automatically open a log file.[/li][li]Please Copy and paste that log here in your next post[/li][/ul]Comment
-
Originally posted by MalnutritionYou have multiple VPN software, since Avast has one perhaps just use that, and uninstall the rest. Also, I believe Surfshark has an antivirus, which you do not need since you have Avast installed.
C:\Program Files (x86)\iTop VPN
C:\Program Files\Malwarebytes\Privacy\MBVpnTunnelService.exe
C:\WINDOWS\System32\drivers\teamviewervpn.sys
C:\Program Files (x86)\Surfshark
C:\WINDOWS\System32\drivers\wireguard.sys
Remove the following with GeekUninstaller.
Intel Security True Key
IObit Malware Fighter 9
System Checkup
FRST Fix.
Download attached fixlist.txt file and save it to the Desktop. NOTE. It’s important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work. NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system Run FRST/FRST64 and press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run. When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.
Security Check Scan.
[ul]
[li]Download Security Check to your desktop.[/li][li]Right click it run as administrator.[/li][li]When the program completes, the tool will automatically open a log file.[/li][li]Please Copy and paste that log here in your next post[/li][/ul]Comment
-
I’m not sure about Avast browser, I have never used it. It just seems redundant to have so many VPN services.
In the end that is your choice, you already have an enormous amount of items starting with your machine and a large amount of scheduled task. Which we can trim down if you wish. For right now, remove any vpn if you want, and run the fix. Post the requested logs.Comment
Comment