• Hi there and welcome to PC Help Forum (PCHF), a more effective way to get the Tech Support you need!
    We have Experts in all areas of Tech, including Malware Removal, Crash Fixing and BSOD's , Microsoft Windows, Computer DIY and PC Hardware, Networking, Gaming, Tablets and iPads, General and Specific Software Support and so much more.

    Why not Click Here To Sign Up and start enjoying great FREE Tech Support.

    This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Solved high disk usage everytime i opened a program

Status
Not open for further replies.
Welcome to PC help forum. I will check your logs once I get off of work today.

Please download the FRST 32 bit or FRST 64bit version to suit your operating system. It is important FRST is downloaded to your desktop.

If you are unsure if your operating system is 32 or 64 Bit please go HERE.
Once downloaded right click the FRST desktop icon and select "Run as administrator" from the menu"
icon2.jpg
If you receive any security warnings, or the User Account Control warning opens at any time whilst using FRST you can safely allow FRST to proceed.
FRST will open with two dialogue boxes, accept the disclaimer.
frst disclaimer.jpg


  1. Accept the default whitelist options,
  2. If the additions.txt options box is not checked please select it.
  3. Then select Scan
frst.jpg
Frst will take a few minutes to scan your computer, and when finished will produce two log files on your desktop, FRST.txt, and Addition.txt. They will display immediately on the desktop, but can be reopened later as a notepad file.
2016-08-12_152002.jpg


Please Attach these two logs in your next post for review by our Security Team
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-04-2022
Ran by Ganja (11-04-2022 21:10:45)
Running from C:\Users\Ganja\Desktop
Microsoft Windows 10 Pro Version 20H2 19042.1586 (X64) (2022-04-09 11:11:09)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3947486154-1424391867-2577238500-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3947486154-1424391867-2577238500-503 - Limited - Disabled)
Ganja (S-1-5-21-3947486154-1424391867-2577238500-1001 - Administrator - Enabled) => C:\Users\Ganja
Guest (S-1-5-21-3947486154-1424391867-2577238500-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3947486154-1424391867-2577238500-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: 360 Total Security (Enabled - Up to date) {FFDC234A-CE9B-08F9-406B-F876951CE066}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

360 Total Security (HKLM-x32\...\360TotalSecurity) (Version: 10.8.0.1400 - 360 Security Center)
7-Zip 21.07 (x64) (HKLM\...\7-Zip) (Version: 21.07 - Igor Pavlov)
Act Editor version 1.1.0 (HKLM-x32\...\Act Editor_is1) (Version: 1.1.0 - )
Adobe Photoshop CC 2019 (HKLM-x32\...\PHSP_20_0_1) (Version: 20.0.1 - Adobe Systems Incorporated)
Apple Mobile Device Support (HKLM\...\{F9CEF01A-3907-4614-824F-CF5D3E4675EF}) (Version: 14.1.0.35 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A3985C05-7386-411F-A4BF-32A73F37EB44}) (Version: 2.6.3.1 - Apple Inc.)
Application Verifier x64 External Package (HKLM\...\{10CA1677-8F02-3131-F25C-780BAB52E468}) (Version: 10.1.18362.1 - Microsoft) Hidden
AutoHotkey 1.1.33.10 (HKLM\...\AutoHotkey) (Version: 1.1.33.10 - Lexikos)
Bandicam (HKLM-x32\...\Bandicam) (Version: 4.5.6.1647 - Bandicam.com)
Bandicam MPEG-1 Decoder (HKLM-x32\...\BandiMPEG1) (Version: - Bandicam.com)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.91 - Piriform)
Cheat Engine 7.0 (HKLM\...\Cheat Engine 7.0_is1) (Version: - Cheat Engine)
ClickOnce Bootstrapper Package for Microsoft .NET Framework (HKLM-x32\...\{0243F145-076D-423A-8F77-218DC8840261}) (Version: 4.8.04119 - Microsoft Corporation) Hidden
Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.66.95.69 - Conexant)
DiagnosticsHub_CollectionService (HKLM\...\{1F3C3AAC-9F7A-47DA-A082-0ACE770041BE}) (Version: 16.1.28901 - Microsoft Corporation) Hidden
Discord (HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\Discord) (Version: 1.0.9002 - Discord Inc.)
Dropbox (HKLM-x32\...\Dropbox) (Version: 143.4.4161 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.583.1 - Dropbox, Inc.) Hidden
Entity Framework 6.2.0 Tools for Visual Studio 2019 (HKLM-x32\...\{7C2070BF-8E07-4B5F-A182-FADB0B95AB39}) (Version: 6.2.0.0 - Microsoft Corporation) Hidden
Gameloop (HKLM-x32\...\MobileGamePC) (Version: 1.0.0.1 - Tencent Technology Company)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 99.0.4844.51 - Google LLC)
GRF Editor version 1.7.9.5 (HKLM-x32\...\GRF Editor_is1) (Version: 1.7.9.5 - )
HxD Hex Editor 2.3 (HKLM\...\HxD_is1) (Version: 2.3 - Maël Hörz)
icecap_collection_neutral (HKLM-x32\...\{929EAD9A-42D2-4FC7-B7E6-529AAD5F6D0D}) (Version: 16.5.29814 - Microsoft Corporation) Hidden
icecap_collection_x64 (HKLM\...\{84EC5964-D540-4494-9043-BF7BEE37D1E1}) (Version: 16.5.29814 - Microsoft Corporation) Hidden
icecap_collectionresources (HKLM-x32\...\{16D7574C-1007-4A85-93FF-666E74AD60D2}) (Version: 16.5.29521 - Microsoft Corporation) Hidden
icecap_collectionresourcesx64 (HKLM-x32\...\{F5C67FC5-BF18-4304-9268-A971876B245A}) (Version: 16.4.29411 - Microsoft Corporation) Hidden
Intel(R) Graphics Driver Software (HKLM-x32\...\{7d2bdb54-268a-4ce6-8063-a6cad97dba41}) (Version: 3.11.1.0 - Intel) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.7870 - Intel Corporation)
IntelliTraceProfilerProxy (HKLM-x32\...\{7D94CF67-6666-4111-B027-D7AB7F189F70}) (Version: 15.0.18198.01 - Microsoft Corporation) Hidden
Kits Configuration Installer (HKLM-x32\...\{63AAA877-5536-9481-2385-28A082100D78}) (Version: 10.1.18362.1 - Microsoft) Hidden
Microsoft .NET Core Runtime - 2.1.30 (x64) (HKLM-x32\...\{e6e5b73d-9aea-4a61-9110-4f93d1b9bc75}) (Version: 2.1.30.30411 - Microsoft Corporation)
Microsoft .NET Core SDK 3.1.201 (x64) from Visual Studio (HKLM\...\{AE0BA5F1-D63A-4784-944F-114B82FB8202}) (Version: 3.1.201.015034 - Microsoft Corporation)
Microsoft .NET Core SDK 3.1.417 (x64) (HKLM-x32\...\{544cc8ed-e21c-4242-ab28-a1e70824f769}) (Version: 3.1.417.15931 - Microsoft Corporation)
Microsoft ASP.NET Core 2.1.30 - Shared Framework (HKLM-x32\...\{614a1747-bef3-44e7-86a8-799e4d2ab88d}) (Version: 2.1.30.60071 - Microsoft Corporation)
Microsoft ASP.NET Core 3.1.23 - Shared Framework (x86) (HKLM-x32\...\{8956749b-efd9-463b-9bcf-697d196c0c8a}) (Version: 3.1.23.22123 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 100.0.1185.36 - Microsoft Corporation)
Microsoft Excel 2010 (HKLM\...\Office14.EXCEL) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\OneDriveSetup.exe) (Version: 20.124.0621.0006 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2019 CTP2.2 (HKLM\...\{8D7CE3B0-5379-46FE-9F4B-A65D9F4CC1F1}) (Version: 15.0.1200.24 - Microsoft Corporation)
Microsoft System CLR Types for SQL Server 2019 CTP2.2 (HKLM-x32\...\{725CC962-98BD-42C7-87D8-51C680FB1779}) (Version: 15.0.1200.24 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 (HKLM-x32\...\{6913e92a-b64e-41c9-a5e6-cef39207fe89}) (Version: 14.25.28508.3 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.25.28508 (HKLM-x32\...\{65e650ff-30be-469d-b63a-418d71ea1765}) (Version: 14.25.28508.3 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 2.5.2061.411 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 3.1.23 (x86) (HKLM-x32\...\{b8f5b50f-4b72-421e-ac78-130b4bce05d1}) (Version: 3.1.23.31022 - Microsoft Corporation)
MSI Development Tools (HKLM-x32\...\{DB4DB790-64DD-1902-4BF2-833B3B6DBCA1}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Mudfish Cloud VPN v5.2.1 (HKLM-x32\...\Mudfish Cloud VPN) (Version: 5.2.1 - Mudfish Networks)
MuMu Player (HKLM\...\Nemu) (Version: 2.6.21.0 - Netease)
NoxPlayer (HKLM-x32\...\Nox) (Version: 7.0.2.5 - Duodian Technology Co. Ltd.)
NVIDIA Graphics Driver 445.87 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 445.87 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Process Hacker 2.39 (r124) (HKLM\...\Process_Hacker2_is1) (Version: 2.39.0.124 - wj32)
Ragnarok Online (HKLM-x32\...\{181579B5-0028-4E01-AC27-97ED80352279}) (Version: 16.2.4 - Gravity Interactive, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.9.422.2016 - Realtek)
Redfinger (HKLM-x32\...\Redfinger) (Version: 1.1.6 - REDFINGER CLOUD PHONE)
SciTE4AutoHotkey v3.0.06.01 (HKLM-x32\...\SciTE4AutoHotkey) (Version: v3.0.06.01 - fincs)
SDK ARM Additions (HKLM-x32\...\{73681F86-CD86-4208-572F-959B45430B04}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
SDK ARM Redistributables (HKLM-x32\...\{67EE3804-9642-62BA-EBF1-B1561FB4ECBE}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition (HKLM\...\{90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{A3364707-2F53-4C83-8F68-C9877A9080C7}) (Version: - Microsoft)
Universal CRT Extension SDK (HKLM-x32\...\{13952D7A-B7B3-F4F8-5F29-5CD18E8168B7}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{74CBC330-ED16-31B9-E8BE-0C6A8E67DE32}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{847D4DAF-0182-265B-324F-406462E8A90D}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{9F7B0D96-881D-8850-C303-43F3A08E6902}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (HKLM-x32\...\{6F54BF87-2EE6-FA6D-431D-33A665992D49}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation)
vcpp_crt.redist.clickonce (HKLM-x32\...\{6B25D94A-4B50-45E2-BBD3-54E68700E1BC}) (Version: 14.25.28508 - Microsoft Corporation) Hidden
VEGAS Pro 17.0 (HKLM\...\{E649B5F0-B27C-11E9-B856-A5146957F833}) (Version: 17.0.284 - VEGAS)
Visual Studio Professional 2019 (HKLM-x32\...\a64f51a9) (Version: 16.5.30011.22 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.16 - VideoLAN)
VS Immersive Activate Helper (HKLM-x32\...\{78500789-0EBE-4490-BE43-F9EF8250BF42}) (Version: 16.0.98.0 - Microsoft Corporation) Hidden
VS JIT Debugger (HKLM\...\{4137D3AB-5B44-4AC9-83A4-5273F2E2547E}) (Version: 16.0.98.0 - Microsoft Corporation) Hidden
VS Script Debugging Common (HKLM\...\{D8B26CBD-15D2-440B-BCBD-5616D74EFC7D}) (Version: 16.0.98.0 - Microsoft Corporation) Hidden
vs_BlendMsi (HKLM-x32\...\{B5E3A3E1-1529-4D5A-9E95-34971FA07825}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_clickoncebootstrappermsi (HKLM-x32\...\{BAF91847-0A64-405E-98EC-A0BA6FB4BC4E}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_clickoncebootstrappermsires (HKLM-x32\...\{271F1F42-B547-4498-825F-590DBB1774F7}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_clickoncesigntoolmsi (HKLM-x32\...\{30D97A69-3C0F-4552-9A72-60E591B210C7}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_communitymsi (HKLM-x32\...\{FDC38876-AD68-4616-942D-AC3194DAB0A3}) (Version: 16.5.29814 - Microsoft Corporation) Hidden
vs_communitymsires (HKLM-x32\...\{95E79BBC-97FD-4FEB-91B5-CC0231324812}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_devenvmsi (HKLM-x32\...\{AD0C92A4-1514-4BC1-A723-A272A8343924}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_filehandler_amd64 (HKLM-x32\...\{7DB17E2A-450D-4DBD-9C17-545A95804B0C}) (Version: 16.5.29814 - Microsoft Corporation) Hidden
vs_filehandler_x86 (HKLM-x32\...\{C309FC3D-20C2-4F48-AF46-E59674774602}) (Version: 16.5.29814 - Microsoft Corporation) Hidden
vs_FileTracker_Singleton (HKLM-x32\...\{692A0FB3-E6A2-4D41-AC03-4136B4312DC0}) (Version: 16.3.29209 - Microsoft Corporation) Hidden
vs_Graphics_Singletonx64 (HKLM\...\{ABBD10CA-0CFA-4D76-B033-F76C55A54336}) (Version: 16.4.29411 - Microsoft Corporation) Hidden
vs_Graphics_Singletonx86 (HKLM-x32\...\{E47B4703-2337-4ED0-BA24-3EC08D643684}) (Version: 16.4.29411 - Microsoft Corporation) Hidden
vs_minshellinteropmsi (HKLM-x32\...\{27B16914-BC5D-4018-8074-071262A27F6D}) (Version: 16.2.28917 - Microsoft Corporation) Hidden
vs_minshellmsi (HKLM-x32\...\{4D33D909-B071-41D2-B305-96B8586F911E}) (Version: 16.5.29814 - Microsoft Corporation) Hidden
vs_minshellmsires (HKLM-x32\...\{EC04CD66-C03A-470D-B0D2-4BBC87F6382D}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
vs_SQLClickOnceBootstrappermsi (HKLM-x32\...\{0A54CADD-CBA1-4BC9-A134-6C9F91F41B9A}) (Version: 16.5.29521 - Microsoft Corporation) Hidden
vs_tipsmsi (HKLM-x32\...\{E208E682-50EE-4F2F-9860-C91B906B8A03}) (Version: 16.0.28329 - Microsoft Corporation) Hidden
WinAppDeploy (HKLM-x32\...\{8E3AE0EF-D067-700C-BDB4-10D5552155DC}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
Windows PC Health Check (HKLM\...\{B1E7D0FD-7CFE-4E0C-A5DA-0F676499DB91}) (Version: 3.2.2110.14001 - Microsoft Corporation)
Windows SDK AddOn (HKLM-x32\...\{E6F877A1-2F65-4BF0-87B6-A4071B7663D3}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows Software Development Kit - Windows 10.0.18362.1 (HKLM-x32\...\{126dedf0-cc0e-4b48-9ece-806b0e437195}) (Version: 10.1.18362.1 - Microsoft Corporation)
WinRAR 6.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (HKLM-x32\...\{E67F1F03-FB4A-3D61-8999-E6A4C4B26F34}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{7EF010FF-7800-28BA-FF49-2D219EC7BA82}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (HKLM-x32\...\{36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{6B03A6A4-643C-57CE-CA6F-4E19BF47497A}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense Mobile - en-us (HKLM-x32\...\{918A448F-59E8-FBF5-B087-D3F07160C7E0}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (HKLM-x32\...\{66483041-F590-EC46-4AF0-EE39C62FB680}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{9C61E6D2-C43E-6746-B519-6185558C4A24}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (HKLM-x32\...\{6B37CC5B-78DF-5050-2215-68479716A587}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{250D5341-0879-4016-399C-BBCD87B80E95}) (Version: 10.1.18362.1 - Microsoft Corporation) Hidden

Packages:
=========
Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_1.1911.21713.0_x64__8wekyb3d8bbwe [2022-04-09] (Microsoft Corporation)
Intel® Graphics Command Center -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3407.0_x64__8j3eq9eme6ctt [2022-04-09] (INTEL CORP) [Startup Task]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-03-18] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-03-18] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.962.0_x64__56jybvy8sckqj [2022-04-09] (NVIDIA Corp.)
TradingView -> C:\Program Files\WindowsApps\TradingView.Desktop_1.0.0.679_x64__r4b1km8ya33za [2022-03-18] (TradingView, Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3947486154-1424391867-2577238500-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\Ganja\Dropbox [2020-03-09 13:25]
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [7-Zip] -> [CC]{23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [DropboxExt] -> [CC]{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => -> No File
ContextMenuHandlers1: [SD360] -> {086F171D-5ED1-4ED2-B736-CFF3AD6A128E} => C:\Program Files (x86)\360\Total Security\MenuEx64.dll [2021-11-19] (Beijing Qihu Technology Co., Ltd. -> )
ContextMenuHandlers1: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> No File
ContextMenuHandlers1: [WinRAR32] -> [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> No File
ContextMenuHandlers4: [7-Zip] -> [CC]{23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [DropboxExt] -> [CC]{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => -> No File
ContextMenuHandlers4: [SD360] -> {086F171D-5ED1-4ED2-B736-CFF3AD6A128E} => C:\Program Files (x86)\360\Total Security\MenuEx64.dll [2021-11-19] (Beijing Qihu Technology Co., Ltd. -> )
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll [2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\nvshext.dll [2020-04-12] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [SD360] -> {086F171D-5ED1-4ED2-B736-CFF3AD6A128E} => C:\Program Files (x86)\360\Total Security\MenuEx64.dll [2021-11-19] (Beijing Qihu Technology Co., Ltd. -> )

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.mjpg] => C:\Windows\system32\bdmjpeg64.dll [75248 2017-01-26] (Bandicam Company -> )
HKLM\...\Drivers32: [vidc.mpeg] => C:\Windows\system32\bdmpegv64.dll [75272 2017-01-26] (Bandicam Company -> )
HKLM\...\Drivers32: [msacm.bdmpeg] => C:\Windows\system32\bdmpega64.acm [75784 2017-01-26] (Bandicam Company -> )
HKLM\...\Drivers32: [vidc.mjpg] => C:\Windows\SysWOW64\bdmjpeg.dll [71152 2017-01-26] (Bandicam Company -> )
HKLM\...\Drivers32: [vidc.mpeg] => C:\Windows\SysWOW64\bdmpegv.dll [71176 2017-01-26] (Bandicam Company -> )
HKLM\...\Drivers32: [msacm.bdmpeg] => C:\Windows\SysWOW64\bdmpega.acm [71176 2017-01-26] (Bandicam Company -> )

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2022-04-09 19:43 - 2018-03-13 10:21 - 001173504 _____ (Conexant Systems, Inc.) [File not signed] [File is in use] C:\Program Files\Conexant\SAII\CxHDAudioAPI.dll
2020-03-03 14:50 - 2021-12-26 23:00 - 000093696 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2022-03-26 09:59 - 2022-03-31 18:24 - 042859520 _____ (Intel Corporation) [File not signed] C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3407.0_x64__8j3eq9eme6ctt\IGCC.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\FileCache\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.exe\UserChoice =>
HKU\FileCache\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.reg\UserChoice =>
HKU\FileCache\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.bat\UserChoice =>
HKU\FileCache\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.cmd\UserChoice =>
HKU\FileCache\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.com\UserChoice =>
HKU\FileCache\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.scr\UserChoice =>
HKU\FileCache\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.lnk\UserChoice =>

==================== Internet Explorer (Whitelisted) ==========

BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 13:49 - 2019-03-19 13:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.43.69
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: SoftEther Lightweight Network Protocol -> SeLow (enabled)
WiFi: SoftEther Lightweight Network Protocol -> SeLow (enabled)
VPN - VPN Client: SoftEther Lightweight Network Protocol -> SeLow (enabled)
Ethernet 2: SoftEther Lightweight Network Protocol -> SeLow (enabled)

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIG\Services: AGMService => 2
MSCONFIG\Services: AGSService => 2
MSCONFIG\Services: Apple Mobile Device Service => 2
MSCONFIG\Services: AtherosSvc => 2
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: dbupdate => 3
MSCONFIG\Services: dbupdatem => 3
MSCONFIG\Services: DbxSvc => 3
MSCONFIG\Services: EasyAntiCheat => 3
MSCONFIG\Services: GoogleChromeElevationService => 3
MSCONFIG\Services: gupdate => 3
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: QHActiveDefense =>
MSCONFIG\Services: QMEmulatorService => 2
MSCONFIG\Services: SEVPNCLIENT => 3
MSCONFIG\Services: SSUService => 2
MSCONFIG\Services: Steam Client Service => 3
HKLM\...\StartupApproved\StartupFolder: => "SoftEther VPN Client Manager Startup.lnk"
HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "iTunesHelper"
HKLM\...\StartupApproved\Run: => "BCSSync"
HKLM\...\StartupApproved\Run: => "SoftEther VPN Client UI Helper"
HKLM\...\StartupApproved\Run32: => "RazerCortex"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run32: => "Dropbox"
HKLM\...\StartupApproved\Run32: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "Mirroring360"
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\StartupApproved\StartupFolder: => "regedit.lnk"
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\StartupApproved\Run: => "IDMan"
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\StartupApproved\Run: => "NoxMultiPlayer"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{45CCFB2B-BC93-40AA-A5AE-F262898605DD}] => (Allow) C:\Program Files\MuMu\emulator\nemu\EmulatorShell\NemuPlayer.exe (NetEase (Hangzhou) Network Co., Ltd -> NetEase, Inc.)
FirewallRules: [{2444F3DB-0862-4C47-9034-4446AEF0208D}] => (Allow) C:\Program Files\NemuVbox\Hypervisor\NemuSVC.exe (NetEase(Hangzhou) Network Co. Ltd. -> NetEase Corporation)
FirewallRules: [{65F1E592-C991-4310-9E5A-4C177FB0AF3C}] => (Allow) C:\Program Files\NemuVbox\Hypervisor\NemuHeadless.exe (NetEase(Hangzhou) Network Co. Ltd. -> NetEase Corporation)
FirewallRules: [{561A5B43-DE23-43C2-B938-5488779F987F}] => (Allow) C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe (Nox Limited -> Nox Limited Corporation)
FirewallRules: [{1190BF9B-D255-49DB-913D-DBA9B6A5C3B1}] => (Allow) C:\Program Files (x86)\Nox\bin\Nox.exe (Nox Limited -> Duodian Technology Co. Ltd.)
FirewallRules: [{46A9F58B-73B5-44AB-8A52-DD469DF0DA09}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{44BB7136-D4A3-47E8-94B1-DCB1E6564B52}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{c1d2b075-510d-47a0-b2b6-ded113cedbdc}] => (Allow) C:\Program Files\ldplayerbox\LdVBoxHeadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -> Oracle Corporation)
FirewallRules: [UDP Query User{CF0DBA26-1C02-4764-8B7F-A184EAB72231}C:\program files\ldplayerbox\ldvboxheadless.exe] => (Allow) C:\program files\ldplayerbox\ldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -> Oracle Corporation)
FirewallRules: [TCP Query User{E11D8751-973D-4774-8EF8-9B39A7F62C52}C:\program files\ldplayerbox\ldvboxheadless.exe] => (Allow) C:\program files\ldplayerbox\ldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -> Oracle Corporation)
FirewallRules: [{3D0BB4FD-7534-4CE1-AC20-7B4593C60E63}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{DC97765F-0D6B-4525-AC28-B0AEA0584704}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{E3A801E6-1C75-4317-B225-69A679933E4D}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{C6DDB425-9773-4801-BB1E-72BB3498B200}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{E59427F1-1477-4B12-8563-FB6B0C6C8DDE}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{58A5405E-A6C5-4E5F-9DF1-0C9F71EE5852}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{C17F354A-1712-434C-945F-9A81B080B0D7}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{5DD50909-42F5-4F0F-B2F9-002AE86A8A1C}] => (Allow) C:\Program Files (x86)\360\Total Security\360TsLiveUpd.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{69C9AB00-3659-4D46-9EF6-27C934126085}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{B2CD8716-F5DA-44B1-8387-0D3F3437B92A}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{5C34268D-5CDE-409A-B149-F5CF93047CAE}] => (Allow) C:\Program Files (x86)\360\Total Security\softmgr\360InstantSetup.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{FEFC6AF5-9258-4F13-979C-CDE52F45538F}] => (Allow) C:\Program Files (x86)\360\Total Security\softmgr\360InstantSetup.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{9E2B9C4A-BBDF-4D6C-B7DB-FC4B32F94DE2}] => (Allow) C:\Program Files\AndroidTbox\TBoxSVC.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{99A76E6A-B552-48A7-BF7D-96272D8D172F}] => (Allow) C:\Program Files\AndroidTbox\SUPInstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{F38E3BE7-6D14-4330-BDC4-4F2E9937D3A9}] => (Allow) C:\Program Files\AndroidTbox\TBoxBalloonCtrl.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{0BDC0B20-A880-4CE1-8617-3B8913918451}] => (Allow) C:\Program Files\AndroidTbox\SUPUninstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{937D07BB-AC66-4D7A-AE61-E48F4B6A4753}] => (Allow) C:\Program Files\AndroidTbox\NetFltUninstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{DC72F61F-3E8F-42CF-B0C2-9E87F0431139}] => (Allow) C:\Program Files\AndroidTbox\SUPLoggerCtl.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{84A2B8CD-D830-42E0-B4F5-9ABCB3BCB855}] => (Allow) C:\Program Files\AndroidTbox\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{F62446F2-AE39-4913-97C9-5681EC6D22EF}] => (Allow) C:\Program Files\AndroidTbox\USBUninstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{AC9B1937-3ADB-45D0-B135-B13846155DA0}] => (Allow) C:\Program Files\AndroidTbox\TBoxManage.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{FF788C31-4CBF-4956-9FCC-38ADBFDCAA9E}] => (Allow) C:\Program Files\AndroidTbox\TBoxNetDHCP.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{F1C3FF5A-A9E5-4EB0-8DE6-AFB553FECA3E}] => (Allow) C:\Program Files\AndroidTbox\USBInstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{E596674F-A113-4F90-B9AF-D5D81B5F87BF}] => (Allow) C:\Program Files\AndroidTbox\TBoxExtPackHelperApp.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{66CAC009-FAF5-492C-A3F4-AC1CF99600C8}] => (Allow) C:\Program Files\AndroidTbox\TBoxSDL.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{F2708477-689A-4F00-9CB3-E4F65EC5821F}] => (Allow) C:\Program Files\AndroidTbox\TBoxNetNAT.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{F7A4B5CE-EB69-445C-BCFA-4252F006089A}] => (Allow) C:\Program Files\AndroidTbox\TBoxHeadless.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{353C9377-5763-4D0F-9E00-D0DE0027E2AC}] => (Allow) C:\Program Files\AndroidTbox\THypervBox.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{B279E91F-25CE-4085-9B96-C7A5AF266DFA}] => (Allow) c:\program files\txgameassistant\ui\TxGaDcc.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{7C5A72E9-1DCF-4E58-8A42-EBC4756FB827}] => (Allow) c:\program files\txgameassistant\ui\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{E3CFD48A-FC05-4CC0-AD1C-6AAF1C1735A1}] => (Allow) c:\program files\txgameassistant\ui\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{C28DFAE2-66AC-4B0C-AB70-C4F79B3EB41E}] => (Allow) c:\program files\txgameassistant\ui\adb.exe () [File not signed]
FirewallRules: [{6D54340A-F30E-489E-9E54-5710BD25A587}] => (Allow) c:\program files\txgameassistant\ui\AndroidEmulator.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{8B2B2FBB-5DE3-41A3-9010-1665E12D8976}] => (Allow) c:\program files\txgameassistant\appmarket\GF186\TUpdate.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{A25FB058-A599-4A17-B767-0D01083E7889}] => (Allow) c:\program files\txgameassistant\appmarket\GameDownload.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{44F9EFF3-66EA-4761-9E10-D32412CD492B}] => (Allow) c:\program files\txgameassistant\appmarket\QQExternal.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{6D3F6C9B-7DA8-4DA8-82A1-1CC453C23661}] => (Allow) c:\program files\txgameassistant\appmarket\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> 腾讯公司)
FirewallRules: [{C71BECE9-C107-4282-9517-19A7064712BE}] => (Allow) c:\program files\txgameassistant\appmarket\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{145395CC-D8C8-4190-8554-3E1C6B230C7F}] => (Allow) c:\program files\txgameassistant\appmarket\AppMarket.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{678E46E2-8D53-4104-B3EF-BB1B0CAB4D9C}] => (Allow) C:\Users\Ganja\Documents\other file\IDA 6.8\idaq.exe (Hex-Rays SA) [File not signed]
FirewallRules: [{F65B404E-E672-445C-9EF4-1219F035274F}] => (Allow) C:\Users\Ganja\Documents\other file\IDA 6.8\idaq.exe (Hex-Rays SA) [File not signed]
FirewallRules: [{41DD20E8-1589-4021-8AF1-196F4E3E35BE}] => (Allow) C:\Games\Gravity\Ragexe.exe (GRAVITY Co., Ltd. -> )
FirewallRules: [{B11BB0D5-36A3-4525-9198-7EB0633FD33F}] => (Allow) C:\Games\Gravity\Ragexe.exe (GRAVITY Co., Ltd. -> )
FirewallRules: [{83CD6EF3-3444-4AF9-8E05-AC850008D466}] => (Allow) C:\Games\Gravity\Ragexe.exe (GRAVITY Co., Ltd. -> )
FirewallRules: [{A8664A56-F376-4CFC-9889-F34771E56BD3}] => (Allow) C:\Games\Gravity\Ragexe.exe (GRAVITY Co., Ltd. -> )
FirewallRules: [{CB5C32E9-B7D2-4F86-895B-4CC63B8CC9F7}] => (Allow) C:\Games\Gravity\Ragnarok.exe (GRAVITY Co., Ltd. -> )
FirewallRules: [{E4DBC317-9F2D-45F0-96AB-822AEBE95B5C}] => (Allow) C:\Games\Gravity\Ragnarok.exe (GRAVITY Co., Ltd. -> )
FirewallRules: [{024BCD88-7EE9-48CC-89A1-014DD6142084}] => (Allow) C:\Games\Gravity\Ragnarok.exe (GRAVITY Co., Ltd. -> )
FirewallRules: [{73756932-8A8E-4861-B457-3EA5E9672E5D}] => (Allow) C:\Games\Gravity\Ragnarok.exe (GRAVITY Co., Ltd. -> )
FirewallRules: [UDP Query User{EB709A0F-C06C-4B00-87B7-3C7CA04983D3}C:\Games\NovaRO\~tmp_0.exe] => (Allow) C:\Games\NovaRO\~tmp_0.exe () [File not signed]
FirewallRules: [TCP Query User{BF076823-0346-4F2E-9D48-60E47F74811E}C:\Games\NovaRO\~tmp_0.exe] => (Allow) C:\Games\NovaRO\~tmp_0.exe () [File not signed]
FirewallRules: [{A4A54C74-EFAC-4E2E-AF4A-1B14D8C122B6}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{88308F54-2502-44D6-864D-54A1914E759F}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{6FD09DA0-3456-4E0B-AFCC-4ED7AB6AE2CB}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{9EB9CAD7-2481-4D7A-B9FC-EAFD5917217F}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4887E9D3-A5EB-4943-BEEB-9088B5F80F71}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5101CEBA-A07A-4AC3-9D4A-E92E5CEA9D11}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [UDP Query User{5BC957A8-0843-436B-A94F-867478EEF256}C:\program files (x86)\mudfish cloud vpn\mudwfp_proxy.exe] => (Allow) C:\program files (x86)\mudfish cloud vpn\mudwfp_proxy.exe (Mudfish Networks Inc. -> )
FirewallRules: [TCP Query User{F41678D6-45DF-4BE0-8B1A-374F28091828}C:\program files (x86)\mudfish cloud vpn\mudwfp_proxy.exe] => (Allow) C:\program files (x86)\mudfish cloud vpn\mudwfp_proxy.exe (Mudfish Networks Inc. -> )
FirewallRules: [{3305BA61-EDB8-4550-8E52-31B1D50D9A77}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{E932FE02-BA1D-404B-81CD-BDBC9A04A448}] => (Allow) C:\Program Files (x86)\360\Total Security\LiveUpdate360.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{7CC2EDAB-965A-43B6-8ADE-8B3BA311AE0F}] => (Allow) C:\Program Files (x86)\360\Total Security\softmgr\360InstantSetup.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{23B5E6F4-B658-4509-9A92-B9D14C2F15A6}] => (Allow) C:\Program Files (x86)\360\Total Security\softmgr\360InstantSetup.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{2829A738-E22B-482C-81A5-8B828F33C24A}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
FirewallRules: [{33EEC805-1DBB-428D-BAD3-EA28119EBF83}] => (Allow) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)

==================== Restore Points =========================

09-04-2022 20:43:37 Windows Modules Installer
09-04-2022 21:12:20 restore

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (04/11/2022 08:19:54 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.

Error: (04/09/2022 09:40:25 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.

Error: (04/09/2022 09:16:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: SearchApp.exe, version: 10.0.19041.1566, time stamp: 0xfd932244
Faulting module name: KERNELBASE.dll, version: 10.0.19041.1566, time stamp: 0x0833f2d4
Exception code: 0xc0000602
Fault offset: 0x000000000010b362
Faulting process ID: 0x740
Faulting application start time: 0x01d84c09dd08147a
Faulting application path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Faulting module path: C:\WINDOWS\System32\KERNELBASE.dll
Report ID: 1903cbca-3f1a-488d-abd9-198f06a49afa
Faulting package full name: Microsoft.Windows.Search_1.14.3.19041_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: CortanaUI

Error: (04/09/2022 09:04:29 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.

Error: (04/09/2022 09:02:54 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.

Error: (04/09/2022 08:52:20 PM) (Source: Software Protection Platform Service) (EventID: 16385) (User: )
Description: Failed to schedule Software Protection service for re-start at 2022-06-04T11:17:19Z. Error Code: 0x80070020.

Error: (04/09/2022 08:27:19 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.

Error: (04/09/2022 07:42:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program drvinst.exe version 10.0.19041.1566 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: f9c

Start Time: 01d84bfddcf818a6

Termination Time: 1

Application Path: C:\Windows\System32\drvinst.exe

Report Id: 255e02f8-4ded-4533-9e3e-558cb6dbb5e9

Faulting package full name:

Faulting package-relative application ID:

Hang type: Unknown


System errors:
=============
Error: (04/11/2022 08:19:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The QHProtected service failed to start due to the following error:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Error: (04/11/2022 08:19:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The QHProtected service failed to start due to the following error:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Error: (04/09/2022 09:45:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The Network Connectivity Assistant service depends on the IP Helper service which failed to start because of the following error:
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.

Error: (04/09/2022 09:40:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The QHProtected service failed to start due to the following error:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Error: (04/09/2022 09:40:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The QHProtected service failed to start due to the following error:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Error: (04/09/2022 09:37:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The igccservice service failed to start due to the following error:
The service did not respond to the start or control request in a timely fashion.

Error: (04/09/2022 09:37:51 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (45000 milliseconds) while waiting for the igccservice service to connect.

Error: (04/09/2022 09:36:59 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: The NcaSvc service depends on the iphlpsvc service which failed to start because of the following error:
The service cannot be started, either because it is disabled or because it has no enabled devices associated with it.


CodeIntegrity:
===============
Date: 2022-04-11 20:19:51
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\360\Total Security\safemon\WscReg.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

BIOS: American Megatrends Inc. X456URK.301 08/15/2016
Motherboard: ASUSTeK COMPUTER INC. X456URK
Processor: Intel(R) Core(TM) i5-7200U CPU @ 2.50GHz
Percentage of memory in use: 94%
Total physical RAM: 3979.05 MB
Available physical RAM: 228.01 MB
Total Virtual: 14555.05 MB
Available Virtual: 10252.04 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.88 GB) (Free:765.63 GB) NTFS

\\?\Volume{4d0c3d92-e68c-430b-ac53-d00cb67eac7a}\ (Recovery) (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{78358102-0e79-4195-82a7-05244e9173ab}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: AD01BAF4)

Partition: GPT.

==================== End of Addition.txt =======================
 
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-04-2022
Ran by Ganja (administrator) on DESKTOP-V4BFEG5 (ASUSTeK COMPUTER INC. X456URK) (11-04-2022 20:44:29)
Running from C:\Users\Ganja\Desktop
Loaded Profiles: Ganja
Platform: Microsoft Windows 10 Pro Version 20H2 19042.1586 (X64) Language: English (United Kingdom)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe ->) (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHSafeTray.exe
(C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe ->) (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHWatchdog.exe
(C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentask.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.exe
(Conexant Systems LLC -> Conexant Systems, Inc) C:\Program Files\CONEXANT\SAII\SmartAudio.exe
(Conexant Systems LLC -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxCUIService.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxEM.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <10>
(explorer.exe ->) (INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3407.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(Microsoft Dynamic Code Publisher -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(services.exe ->) (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.) C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\System32\SASrv.exe
(services.exe ->) (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\DriverStore\FileRepository\x40plmwa.inf_amd64_0fe274d0aafd5420\ICEsoundService64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxCUIService.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHDCPSvc.exe
(services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHeciSvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\NVDisplay.Container.exe <2>
(svchost.exe ->) (INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3407.0_x64__8j3eq9eme6ctt\IGCC.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corp.) C:\Windows\System32\Defrag.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DeviceCensus.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(taskhostw.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentask.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-09] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [10585376 2022-02-27] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [QHSafeTray] => C:\Program Files (x86)\360\Total Security\safemon\360Tray.exe [413000 2021-11-19] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35888256 2022-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\Run: [NoxMultiPlayer] => C:\Program Files (x86)\Nox\bin\MultiPlayerManager.exe [2612656 2022-04-09] (Nox Limited -> )
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\Installer\chrmstp.exe [2022-03-12] (Google LLC -> Google LLC)
Startup: C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\regedit.lnk [2020-03-01]
ShortcutAndArgument: regedit.lnk -> C:\Windows\regedit.exe => /s c:\myprocessor.reg
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0E782AB6-DD64-403B-96ED-DE437491A970} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-29] (Google LLC -> Google LLC)
Task: {21F74A47-3424-418E-A53B-4E2562C05ABA} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-29] (Dropbox, Inc -> Dropbox, Inc.)
Task: {28F2B8CE-323F-4A2F-9AE9-D06D4A7CD515} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-29] (Google LLC -> Google LLC)
Task: {32046F4E-AF40-48C9-BA8C-53DAD33FE817} - System32\Tasks\CCleanerSkipUAC - Ganja => C:\Program Files\CCleaner\CCleaner.exe [30053504 2022-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {A35BAD01-9115-4CE5-8E83-CE0363167108} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400 2019-10-09] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {B40A30F0-F3F8-4F31-B890-EEC38512349B} - System32\Tasks\Microsoft\Windows\Conexant\SA2 => C:\Program Files\CONEXANT\SAII\SACpl.exe [1832280 2017-06-07] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
Task: {CF227F5D-41D6-4B0D-89AD-32B557B193F8} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-03-11] (Piriform Software Ltd -> Piriform)
Task: {DC0F9DAF-1B83-45D9-AA91-B9C6BD78042B} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-29] (Dropbox, Inc -> Dropbox, Inc.)
Task: {E8D71E94-B741-496F-BAFF-AFADFF2255A0} - System32\Tasks\Microsoft\Windows\Conexant\AFA => C:\Program Files\CONEXANT\cAudioFilterAgent\SACpl.exe [1823232 2016-07-05] (Conexant Systems, Inc.) [File not signed]
Task: {EBE55FD7-4242-453C-8FEE-3674562547A0} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [65440 2020-04-29] (Microsoft Corporation -> Microsoft)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.43.69
Tcpip\..\Interfaces\{bff8e11e-7cb0-43cd-8ed2-84f8481e005d}: [DhcpNameServer] 192.168.43.69
Tcpip\..\Interfaces\{fc72d37d-562e-4e97-a7cf-ea1989188cd8}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\Ganja\AppData\Local\Microsoft\Edge\User Data\Default [2022-04-09]

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files\Microsoft Office\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-19] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-19] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default [2022-03-19]
CHR DownloadDir: C:\Users\Ganja\Desktop
CHR Extension: (360 Internet Protection) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Extensions\glcimepnljoholdmjchkloafkggfoijh [2021-12-15]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-16]
CHR Profile: C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-03-20]
CHR Profile: C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-04-11]
CHR Extension: (Slides) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2022-03-19]
CHR Extension: (Docs) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2022-03-19]
CHR Extension: (Google Drive) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2022-03-19]
CHR Extension: (YouTube) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2022-03-19]
CHR Extension: (Sheets) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2022-03-19]
CHR Extension: (Google Docs Offline) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-03-19]
CHR Extension: (360 Internet Protection) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\glcimepnljoholdmjchkloafkggfoijh [2022-03-19]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-19]
CHR Extension: (Gmail) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2022-03-19]
CHR Profile: C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\System Profile [2022-03-20]
CHR HKLM-x32\...\Chrome\Extension: [glcimepnljoholdmjchkloafkggfoijh]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S4 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3147344 2019-10-09] (Adobe Inc. -> Adobe Systems, Incorporated)
S4 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2914896 2019-10-09] (Adobe Inc. -> Adobe Systems, Incorporated)
S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-09-24] (Apple Inc. -> Apple Inc.)
S4 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-29] (Dropbox, Inc -> Dropbox, Inc.)
S4 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-29] (Dropbox, Inc -> Dropbox, Inc.)
S4 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [44328 2022-02-26] (Dropbox, Inc -> Dropbox, Inc.)
S4 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [805488 2019-10-16] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [7965288 2020-03-05] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.)
R2 QHActiveDefense; C:\Program Files (x86)\360\Total Security\safemon\QHActiveDefense.exe [1102080 2021-11-19] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
S3 QHProtected; C:\Program Files (x86)\360\Total Security\safemon\WscReg.exe [3082096 2021-11-19] (Beijing Qihu Technology Co., Ltd. -> Qihoo 360 Technology Co. Ltd.)
S4 QMEmulatorService; C:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe [197712 2020-04-21] (Tencent Technology(Shenzhen) Company Limited -> Tencent)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6228008 2022-04-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-05-01] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\NisSrv.exe [3285864 2020-03-03] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.10-0\MsMpEng.exe [103168 2020-03-03] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 360AntiHacker; C:\WINDOWS\System32\Drivers\360AntiHacker64.sys [199888 2021-11-19] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R3 360AvFlt; C:\WINDOWS\System32\DRIVERS\360AvFlt.sys [95232 2020-05-09] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R3 360AvFlt; C:\Windows\SysWOW64\DRIVERS\360AvFlt.sys [95232 2021-11-19] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R1 360Box64; C:\WINDOWS\System32\DRIVERS\360Box64.sys [346864 2021-11-19] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R1 360Camera; C:\WINDOWS\System32\Drivers\360Camera64.sys [58200 2021-02-05] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R1 360CondrvFix; C:\Windows\system32\DRIVERS\360CondrvFix.sys [39752 2021-01-19] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
S0 360elam64; C:\WINDOWS\System32\DRIVERS\360elam64.sys [17192 2020-03-09] (Microsoft Windows Early Launch Anti-malware Publisher -> 360.cn)
R1 360FsFlt; C:\WINDOWS\System32\DRIVERS\360FsFlt.sys [503520 2021-11-19] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R1 360Hvm; C:\WINDOWS\System32\Drivers\360Hvm64.sys [336624 2021-11-19] (Beijing Qihu Technology Co., Ltd. -> 360安全中心)
R1 360netmon; C:\WINDOWS\System32\DRIVERS\360netmon.sys [96424 2020-03-09] (Qihoo 360 Software (Beijing) Company Limited -> 360.cn)
R2 aow_drv; C:\Program Files\TxGameAssistant\UI\3.21.808.100\aow_drv_x64_ev.sys [871296 2020-05-18] (Tencent Technology (Shenzhen) Company Limited -> Tencent)
R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R1 BAPIDRV; C:\WINDOWS\System32\DRIVERS\BAPIDRV64.sys [234200 2021-11-19] (Beijing Qihu Technology Co., Ltd. -> 360.cn)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32696 2020-11-19] (ASUSTek Computer Inc. -> ASUS)
R2 LdVBoxDrv; C:\Program Files\ldplayerbox\LdVBoxDrv.sys [315232 2021-12-15] (MyTestCertificate -> Oracle Corporation)
S3 MUDWFP; C:\WINDOWS\system32\DRIVERS\MUDWFP.sys [31736 2019-12-02] (Mudfish Networks -> )
R2 NemuDrv; C:\Program Files\NemuVbox\LoadedDrivers\NemuDrv.sys [299240 2022-01-12] (NetEase(Hangzhou) Network Co. Ltd. -> NetEase Corporation)
R3 Neo_VPN; C:\WINDOWS\System32\drivers\Neo6_x64_VPN.sys [37824 2020-04-18] (SoftEther Corporation -> SoftEther Corporation)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2020-01-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R1 SeLow; C:\WINDOWS\system32\DRIVERS\SeLow_x64.sys [50624 2020-04-18] (SoftEther Corporation -> SoftEther Corporation)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [31232 2019-12-02] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R1 TBoxDrv; C:\Program Files\AndroidTbox\TBoxDrv.sys [271600 2017-09-11] (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
S3 tesrsdt; C:\Windows\system32\drivers\tesrsdt.sys [812208 2020-06-29] (Tencent Technology(Shenzhen) Company Limited -> TENCENT)
S3 UniSafe; C:\Windows\system32\drivers\UniSafe.sys [581912 2020-06-29] (Tencent Technology(Shenzhen) Company Limited -> TENCENT)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45960 2020-03-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [376544 2020-03-03] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2020-03-03] (Microsoft Windows -> Microsoft Corporation)
R3 WinRing0_1_2_0; C:\Users\Ganja\AppData\Local\Temp\WinRing0x64.sys [33176 2022-04-09] (NetEase(Hangzhou) Network Co. Ltd. -> ) <==== ATTENTION
R1 YSDrv; C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys [312776 2022-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Nox Limited Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-04-11 20:44 - 2022-04-11 20:53 - 000020554 _____ C:\Users\Ganja\Desktop\FRST.txt
2022-04-11 20:42 - 2022-04-11 20:42 - 002365952 _____ (Farbar) C:\Users\Ganja\Downloads\Unconfirmed 41027.crdownload
2022-04-11 20:41 - 2022-04-11 20:42 - 002365952 _____ (Farbar) C:\Users\Ganja\Desktop\FRST64.exe
2022-04-10 04:33 - 2022-04-09 20:11 - 000000000 ____D C:\Windows.old
2022-04-10 04:20 - 2022-04-10 04:33 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2022-04-10 04:14 - 2022-04-10 04:20 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2022-04-10 04:14 - 2022-04-10 04:14 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2022-04-10 04:03 - 2022-04-10 04:03 - 000000000 ____D C:\WINDOWS\SystemTemp
2022-04-10 04:03 - 2022-04-10 04:03 - 000000000 ____D C:\ProgramData\ssh
2022-04-10 03:48 - 2022-04-10 03:48 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll
2022-04-10 03:47 - 2022-04-10 03:47 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2022-04-10 03:47 - 2022-04-10 03:47 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll
2022-04-10 03:47 - 2022-04-10 03:47 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2022-04-10 03:46 - 2022-04-10 03:46 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2022-04-10 03:46 - 2022-04-10 03:46 - 000480256 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll
2022-04-10 03:46 - 2022-04-10 03:46 - 000195584 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll
2022-04-10 03:46 - 2022-04-10 03:46 - 000170496 _____ C:\WINDOWS\system32\DeviceUpdateCenterCsp.dll
2022-04-10 03:46 - 2022-04-10 03:46 - 000158208 _____ C:\WINDOWS\system32\uwfcsp.dll
2022-04-10 03:46 - 2022-04-10 03:46 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll
2022-04-10 03:46 - 2022-04-10 03:46 - 000040960 _____ C:\WINDOWS\system32\uwfservicingapi.dll
2022-04-10 03:45 - 2022-04-10 03:45 - 000672768 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2022-04-10 03:45 - 2022-04-10 03:45 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
2022-04-10 03:45 - 2022-04-10 03:45 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2022-04-10 03:45 - 2022-04-10 03:45 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2022-04-10 03:44 - 2022-04-10 03:44 - 002371072 _____ C:\WINDOWS\system32\rdpnano.dll
2022-04-10 03:44 - 2022-04-10 03:44 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2022-04-10 03:44 - 2022-04-10 03:44 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2022-04-10 03:43 - 2022-04-10 03:43 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2022-04-10 03:43 - 2022-04-10 03:43 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2022-04-10 03:43 - 2022-04-10 03:43 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2022-04-10 03:43 - 2022-04-10 03:43 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2022-04-10 03:43 - 2022-04-10 03:43 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2022-04-10 03:43 - 2022-04-10 03:43 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2022-04-10 03:43 - 2022-04-10 03:43 - 000011911 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-04-10 03:42 - 2022-04-10 03:42 - 002111488 _____ (Digimarc) C:\WINDOWS\SysWOW64\DMRCDecoder.dll
2022-04-10 03:42 - 2022-04-10 03:42 - 001864192 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
2022-04-10 03:42 - 2022-04-10 03:42 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2022-04-10 03:42 - 2022-04-10 03:42 - 000611960 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2022-04-10 03:42 - 2022-04-10 03:42 - 000468440 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2022-04-10 03:42 - 2022-04-10 03:42 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2022-04-10 03:42 - 2022-04-10 03:42 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2022-04-10 03:41 - 2022-04-10 03:41 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2022-04-10 03:41 - 2022-04-10 03:41 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2022-04-10 03:41 - 2022-04-10 03:41 - 001164288 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2022-04-10 03:41 - 2022-04-10 03:41 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2022-04-10 03:41 - 2022-04-10 03:41 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2022-04-10 03:41 - 2022-04-10 03:41 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2022-04-10 03:41 - 2022-04-10 03:41 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2022-04-10 03:41 - 2022-04-10 03:41 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2022-04-10 03:41 - 2022-04-10 03:41 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2022-04-10 03:41 - 2022-04-10 03:41 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2022-04-10 03:41 - 2022-04-10 03:41 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2022-04-10 03:39 - 2022-04-10 03:39 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2022-04-10 03:39 - 2022-04-10 03:39 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2022-04-10 03:39 - 2022-04-10 03:39 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2022-04-10 03:39 - 2022-04-10 03:39 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2022-04-10 03:38 - 2022-04-10 03:38 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2022-04-10 03:38 - 2022-04-10 03:38 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2022-04-10 03:38 - 2022-04-10 03:38 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2022-04-10 03:38 - 2022-04-10 03:38 - 000098304 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2022-04-10 03:37 - 2022-04-10 03:37 - 002295296 _____ (Digimarc) C:\WINDOWS\system32\DMRCDecoder.dll
2022-04-10 03:37 - 2022-04-10 03:37 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-04-10 03:37 - 2022-04-10 03:37 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2022-04-10 03:37 - 2022-04-10 03:37 - 000706536 _____ C:\WINDOWS\system32\TextShaping.dll
2022-04-10 03:37 - 2022-04-10 03:37 - 000657464 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2022-04-10 03:37 - 2022-04-10 03:37 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2022-04-10 03:37 - 2022-04-10 03:37 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2022-04-10 03:37 - 2022-04-10 03:37 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2022-04-10 03:35 - 2022-04-10 03:35 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2022-04-10 03:35 - 2022-04-10 03:35 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2022-04-10 03:35 - 2022-04-10 03:35 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2022-04-10 03:35 - 2022-04-10 03:35 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-04-10 03:35 - 2022-04-10 03:35 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2022-04-10 03:35 - 2022-04-10 03:35 - 000272896 _____ C:\WINDOWS\system32\TpmTool.exe
2022-04-10 03:35 - 2022-04-10 03:35 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2022-04-10 03:35 - 2022-04-10 03:35 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2022-04-10 03:35 - 2022-04-10 03:35 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2022-04-10 03:35 - 2022-04-10 03:35 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2022-04-10 03:35 - 2022-04-10 03:35 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2022-04-10 03:35 - 2022-04-10 03:35 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2022-04-10 03:35 - 2022-04-10 03:35 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2022-04-10 03:04 - 2022-04-10 03:04 - 000417792 _____ C:\WINDOWS\system32\d3dconfig.exe
2022-04-10 03:04 - 2022-04-10 03:04 - 000374784 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DXCpl.exe
2022-04-10 03:04 - 2022-04-10 03:04 - 000365056 _____ C:\WINDOWS\SysWOW64\d3dconfig.exe
2022-04-10 03:04 - 2022-04-10 03:04 - 000347136 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\DXCpl.exe
2022-04-10 03:01 - 2022-04-10 03:01 - 000002060 _____ C:\WINDOWS\system32\noise.jpn
2022-04-10 02:55 - 2022-04-10 02:55 - 000144624 _____ C:\WINDOWS\system32\perfi011.dat
2022-04-10 02:55 - 2022-04-10 02:55 - 000033402 _____ C:\WINDOWS\system32\perfd011.dat
2022-04-10 02:55 - 2022-04-10 02:55 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2022-04-10 02:55 - 2022-04-10 02:55 - 000000000 ____D C:\WINDOWS\SysWOW64\ja
2022-04-10 02:55 - 2022-04-10 02:55 - 000000000 ____D C:\WINDOWS\system32\ja
2022-04-10 02:55 - 2022-04-09 20:00 - 000495644 _____ C:\WINDOWS\system32\perfh011.dat
2022-04-10 02:55 - 2022-04-09 20:00 - 000138112 _____ C:\WINDOWS\system32\perfc011.dat
2022-04-10 02:39 - 2022-04-10 04:33 - 000000000 ____D C:\Program Files (x86)\MSBuild
2022-04-10 02:39 - 2022-04-10 02:39 - 000000000 ____D C:\Program Files\Reference Assemblies
2022-04-10 02:39 - 2022-04-10 02:39 - 000000000 ____D C:\Program Files\MSBuild
2022-04-10 02:39 - 2022-04-10 02:39 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2022-04-09 21:45 - 2022-04-09 21:45 - 000000730 __RSH C:\ProgramData\ntuser.pol
2022-04-09 21:36 - 2022-04-09 21:57 - 000011780 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2022-04-09 21:15 - 2022-04-09 21:15 - 000000000 ____D C:\WINDOWS\pss
2022-04-09 20:59 - 2022-04-09 21:35 - 000035725 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2022-04-09 20:59 - 2022-04-09 21:35 - 000018621 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2022-04-09 20:59 - 2022-04-09 20:59 - 000001206 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1
2022-04-09 20:37 - 2022-04-09 20:37 - 000001154 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-04-09 20:37 - 2022-04-09 20:37 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-04-09 20:23 - 2022-04-09 20:23 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-04-09 20:14 - 2022-04-09 20:14 - 000000020 ___SH C:\Users\Ganja\ntuser.ini
2022-04-09 20:09 - 2022-04-09 21:36 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-04-09 20:09 - 2022-04-09 20:10 - 000003410 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineUA
2022-04-09 20:09 - 2022-04-09 20:10 - 000002922 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3947486154-1424391867-2577238500-1001
2022-04-09 20:09 - 2022-04-09 20:10 - 000002668 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2022-04-09 20:09 - 2022-04-09 20:09 - 000003468 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-04-09 20:09 - 2022-04-09 20:09 - 000003408 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-04-09 20:09 - 2022-04-09 20:09 - 000003244 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-04-09 20:09 - 2022-04-09 20:09 - 000003186 _____ C:\WINDOWS\system32\Tasks\DropboxUpdateTaskMachineCore
2022-04-09 20:09 - 2022-04-09 20:09 - 000003184 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-04-09 20:09 - 2022-04-09 20:09 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-04-09 20:09 - 2022-04-09 20:09 - 000002254 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Ganja
2022-04-09 20:09 - 2022-04-09 20:09 - 000000000 ____D C:\WINDOWS\system32\Tasks\OfficeSoftwareProtectionPlatform
2022-04-09 20:08 - 2022-04-09 20:09 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2022-04-09 20:08 - 2022-04-09 20:09 - 000007623 _____ C:\WINDOWS\diagerr.xml
2022-04-09 20:00 - 2022-04-09 20:00 - 001451302 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-04-09 19:47 - 2022-04-09 20:14 - 000000000 ____D C:\Users\Ganja
2022-04-09 19:47 - 2019-12-07 18:10 - 000001105 _____ C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-04-09 19:43 - 2016-10-27 16:14 - 000416576 _____ (Conexant Systems, Inc.) C:\WINDOWS\SysWOW64\SASrv.exe
2022-04-09 19:43 - 2016-10-27 16:14 - 000416576 _____ (Conexant Systems, Inc.) C:\WINDOWS\system32\SASrv.exe
2022-04-09 19:43 - 2015-07-31 17:29 - 000004664 _____ C:\WINDOWS\system32\Drivers\CxSfPt.DAT
2022-04-09 19:43 - 2014-10-20 14:54 - 000207576 _____ (Conexant Systems Inc.) C:\WINDOWS\system32\CxAudMsg64.exe
2022-04-09 19:35 - 2022-04-09 20:22 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-04-09 19:34 - 2022-04-09 21:36 - 000008192 ___SH C:\DumpStack.log.tmp
2022-04-09 19:34 - 2022-04-09 19:35 - 000319144 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-04-09 15:53 - 2022-04-09 20:36 - 000000000 ____D C:\Program Files\ruxim
2022-04-09 09:33 - 2022-04-09 20:15 - 000000000 ___DC C:\WINDOWS\Panther
2022-04-09 09:26 - 2022-04-09 09:26 - 000000000 ___HD C:\$WinREAgent
2022-04-09 02:32 - 2022-04-09 02:32 - 000000000 ____D C:\Users\Ganja\AppData\Local\NemuPlayer
2022-04-09 02:32 - 2022-04-09 02:32 - 000000000 ____D C:\Users\Ganja\AppData\Local\cache
2022-04-09 02:02 - 2022-04-09 02:02 - 000000000 ____D C:\Users\Ganja\Documents\MuMuSharedFolder
2022-04-09 02:01 - 2022-04-09 02:01 - 000000000 ____D C:\Users\Ganja\AppData\Local\CrashRpt
2022-04-09 01:59 - 2022-04-10 04:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MuMu Player
2022-04-09 01:59 - 2022-04-09 01:59 - 000002174 _____ C:\Users\Public\Desktop\MuMu Multi-Drive.lnk
2022-04-09 01:59 - 2022-04-09 01:59 - 000002137 _____ C:\Users\Public\Desktop\MuMu Player.lnk
2022-04-09 01:59 - 2022-04-09 01:59 - 000000000 ____D C:\Users\Public\.NEMU
2022-04-09 01:59 - 2022-04-09 01:59 - 000000000 ____D C:\Users\Default\.NEMU
2022-04-09 01:55 - 2022-04-09 21:47 - 000000000 ____D C:\Users\Ganja\.NEMU
2022-04-09 01:54 - 2022-04-09 21:47 - 000000000 ____D C:\Users\Public\Documents\MuMu Files
2022-04-09 01:54 - 2022-04-09 01:55 - 000000000 ____D C:\Program Files\NemuVbox
2022-04-09 01:50 - 2022-04-09 01:50 - 000000000 ____D C:\Program Files\MuMu
2022-04-09 01:49 - 2022-04-09 01:49 - 009731600 _____ (NetEase, Inc.) C:\Users\Ganja\Downloads\MuMuInstaller_1.4.0.0_gw-overseas_all_1644473805.exe
2022-04-09 01:21 - 2022-04-09 10:39 - 000000000 ____D C:\Users\Ganja\.TianTianVM
2022-04-09 01:15 - 2022-04-09 01:15 - 000000299 _____ C:\Users\Ganja\d4ac4633ebd6440fa397b84f1bc94a3c.7z
2022-04-09 00:30 - 2022-04-09 01:23 - 000000000 ____D C:\Users\Ganja\.android
2022-04-09 00:29 - 2022-04-09 00:29 - 000000066 _____ C:\Users\Ganja\inittk.ini
2022-04-09 00:27 - 2022-04-09 00:43 - 000000000 ____D C:\Users\Ganja\AppData\Local\NoxSrv
2022-04-09 00:27 - 2022-04-09 00:27 - 000000053 _____ C:\Users\Ganja\useruid.ini
2022-04-09 00:27 - 2022-04-09 00:27 - 000000045 _____ C:\Users\Ganja\nuuid.ini
2022-04-09 00:27 - 2022-04-09 00:27 - 000000041 _____ C:\Users\Ganja\inst.ini
2022-04-09 00:27 - 2022-04-09 00:27 - 000000000 ____D C:\Users\Ganja\Nox_share
2022-04-09 00:26 - 2022-04-09 19:48 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Nox
2022-04-09 00:26 - 2022-04-09 00:43 - 000000000 ____D C:\Users\Ganja\vmlogs
2022-04-09 00:26 - 2022-04-09 00:26 - 000001185 _____ C:\Users\Ganja\Desktop\Nox Asst.lnk
2022-04-09 00:26 - 2022-04-09 00:26 - 000001094 _____ C:\Users\Ganja\Desktop\Nox.lnk
2022-04-09 00:26 - 2022-04-09 00:26 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\NoxSrv
2022-04-09 00:25 - 2022-04-09 01:16 - 000000000 ____D C:\Users\Ganja\.BigNox
2022-04-09 00:24 - 2022-04-09 00:25 - 000000000 ____D C:\Program Files (x86)\Bignox
2022-04-09 00:21 - 2022-04-09 09:23 - 000000000 ____D C:\Users\Ganja\AppData\Local\Nox
2022-04-09 00:21 - 2022-04-09 00:22 - 000000000 ____D C:\Program Files (x86)\Nox
2022-04-09 00:16 - 2022-04-09 00:21 - 527327744 _____ (Duodian Technology Co. Ltd.) C:\Users\Ganja\Downloads\nox_setup_v7.0.2.5_full_intl.exe
2022-04-09 00:15 - 2022-04-09 00:23 - 386265864 _____ ( ) C:\Users\Ganja\Downloads\koplayer-1-4-1056.exe
2022-04-08 23:50 - 2022-04-08 23:50 - 000000000 ____D C:\Users\Ganja\AppData\Local\CrashDumps
2022-03-26 14:25 - 2022-03-27 20:00 - 000076461 _____ C:\Users\Ganja\Desktop\Ragnarok (Autosaved).xlsx
2022-03-26 10:43 - 2022-03-26 10:43 - 000000000 __RHD C:\MSOCache
2022-03-26 10:38 - 2022-03-26 10:38 - 000000165 ____H C:\Users\Ganja\Desktop\~$Ragnarok.xlsx
2022-03-20 11:14 - 2022-03-26 09:55 - 000025832 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1
2022-03-20 10:10 - 2022-03-20 10:10 - 000000000 ____D C:\Users\Ganja\Desktop\ACLib
2022-03-20 09:41 - 2022-03-20 09:45 - 000000000 ____D C:\Users\Ganja\Documents\CTK
2022-03-20 09:39 - 2022-03-20 09:39 - 000001124 _____ C:\Users\Ganja\Desktop\BloonsTK.exe - Shortcut.lnk
2022-03-20 09:29 - 2022-03-20 09:35 - 258693173 _____ C:\Users\Ganja\Downloads\BloonsTK.rar
2022-03-19 16:32 - 2022-03-20 09:12 - 000014198 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1
2022-03-17 23:14 - 2022-03-17 23:14 - 000000080 ___SH C:\bootTel.dat
2022-03-15 13:00 - 2022-03-18 08:34 - 000000000 ____D C:\Program Files (x86)\TurboVPN
2022-03-15 12:05 - 2022-03-18 08:34 - 000000000 ____D C:\Program Files\BlueStacks_nxt
2022-03-15 12:05 - 2022-03-15 18:45 - 000000000 ____D C:\ProgramData\BlueStacks_nxt
2022-03-15 12:02 - 2022-03-18 08:34 - 000000000 ____D C:\Program Files (x86)\BlueStacks X
2022-03-15 11:27 - 2022-04-09 21:36 - 000000000 ____D C:\Intel
2022-03-14 17:42 - 2022-04-11 20:48 - 000000000 ____D C:\FRST
2022-03-14 17:15 - 2022-03-14 17:15 - 014575248 _____ (Simply Super Software ) C:\Users\Ganja\Desktop\trjsetup.exe
2022-03-14 17:15 - 2022-03-14 17:15 - 000000877 _____ C:\Users\Ganja\Desktop\ZHPCleaner.lnk
2022-03-14 17:13 - 2022-03-14 17:13 - 003294360 _____ (Nicolas Coolman) C:\Users\Ganja\Desktop\ZHPCleaner.exe
2022-03-14 16:56 - 2022-03-14 16:57 - 000000000 ____D C:\Users\Ganja\Desktop\macro
2022-03-12 17:26 - 2022-03-12 17:26 - 008540344 _____ (Malwarebytes) C:\Users\Ganja\Desktop\adwcleaner_8.3.1.exe
2022-03-12 17:18 - 2022-04-10 04:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2022-03-12 17:11 - 2022-03-12 17:11 - 000000000 ____D C:\Users\Ganja\AppData\Local\Discord
2022-03-12 17:07 - 2022-01-24 08:18 - 003165776 _____ (Patch My PC, LLC) C:\Users\Ganja\Desktop\PatchMyPC.exe
2022-03-12 16:43 - 2022-03-14 17:32 - 000000000 ____D C:\Users\Ganja\AppData\Local\RedFingerPlayer
2022-03-12 16:42 - 2022-04-09 19:48 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Redfinger
2022-03-12 16:42 - 2022-03-18 08:34 - 000000000 ____D C:\Program Files (x86)\RedFingerPlayerGlobal
2022-03-12 16:42 - 2022-03-12 16:45 - 000001256 _____ C:\Users\Ganja\Desktop\Redfinger.lnk
2022-03-12 16:42 - 2022-03-12 16:42 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\RedFinger
2022-03-12 16:19 - 2022-03-12 16:19 - 000864317 _____ C:\Users\Ganja\Desktop\AutoClicker.exe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-04-11 20:57 - 2020-03-11 11:38 - 000000000 ____D C:\ProgramData\360safe
2022-04-11 20:53 - 2020-03-11 11:38 - 000000000 ____D C:\Users\Ganja\AppData\LocalLow\360WD
2022-04-11 20:43 - 2019-12-07 18:13 - 000000000 ____D C:\WINDOWS\INF
2022-04-11 20:34 - 2019-12-07 18:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-04-11 20:24 - 2020-03-06 12:09 - 000000000 ____D C:\Program Files\CCleaner
2022-04-11 20:17 - 2020-02-29 23:02 - 000000000 __SHD C:\Users\Ganja\IntelGraphicsProfiles
2022-04-10 04:33 - 2021-11-29 19:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey
2022-04-10 04:33 - 2021-02-16 08:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2022-04-10 04:33 - 2020-06-13 00:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Act Editor
2022-04-10 04:33 - 2020-05-29 19:42 - 000000000 ____D C:\Program Files\UNP
2022-04-10 04:33 - 2020-05-01 00:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HxD Hex Editor
2022-04-10 04:33 - 2020-05-01 00:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Hacker 2
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\SysWOW64\3082
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\SysWOW64\1055
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\SysWOW64\1049
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\SysWOW64\1046
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\SysWOW64\1045
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\SysWOW64\1040
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\SysWOW64\1036
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\SysWOW64\1033
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\SysWOW64\1029
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\system32\3082
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\system32\1055
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\system32\1049
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\system32\1046
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\system32\1045
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\system32\1040
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\system32\1036
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\system32\1033
2022-04-10 04:33 - 2020-04-29 14:50 - 000000000 ____D C:\WINDOWS\system32\1029
2022-04-10 04:33 - 2020-03-28 20:33 - 000000000 ____D C:\WINDOWS\system32\CleanLog
2022-04-10 04:33 - 2020-03-21 09:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2022-04-10 04:33 - 2020-03-06 12:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2022-04-10 04:33 - 2020-03-04 19:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-04-10 04:33 - 2020-03-04 00:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 7.0
2022-04-10 04:33 - 2020-03-03 14:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2022-04-10 04:33 - 2020-03-03 03:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ragnarok Online
2022-04-10 04:33 - 2020-03-01 04:42 - 000000000 ____D C:\WINDOWS\ShellNew
2022-04-10 04:33 - 2020-03-01 04:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GRF Editor
2022-04-10 04:33 - 2020-02-29 23:03 - 000000000 ____D C:\Program Files\Intel
2022-04-10 04:33 - 2020-02-29 21:10 - 000000000 ____D C:\Program Files\CONEXANT
2022-04-10 04:33 - 2019-12-07 18:18 - 000000000 ____D C:\WINDOWS\Setup
2022-04-10 04:33 - 2019-12-07 18:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2022-04-10 04:33 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2022-04-10 04:33 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\spool
2022-04-10 04:33 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-04-10 04:33 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\Registration
2022-04-10 04:33 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-04-10 04:33 - 2019-12-07 18:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2022-04-10 04:33 - 2019-03-19 13:52 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2022-04-10 04:33 - 2019-03-19 13:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2022-04-10 04:33 - 2019-03-19 13:52 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2022-04-10 04:22 - 2020-02-29 21:09 - 000000000 ____D C:\WINDOWS\system32\Intel
2022-04-10 04:20 - 2021-04-07 09:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant
2022-04-10 04:20 - 2020-10-07 11:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS
2022-04-10 04:20 - 2020-06-29 19:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tencent Software
2022-04-10 04:20 - 2020-04-29 14:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2022-04-10 04:20 - 2020-04-29 14:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2019
2022-04-10 04:20 - 2020-03-11 11:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\360 Security Center
2022-04-10 04:04 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-04-10 04:03 - 2019-12-07 23:49 - 000000000 ___SD C:\WINDOWS\system32\AppV
2022-04-10 04:03 - 2019-12-07 23:49 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2022-04-10 04:03 - 2019-12-07 23:49 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2022-04-10 04:03 - 2019-12-07 23:49 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2022-04-10 04:03 - 2019-12-07 23:46 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2022-04-10 04:03 - 2019-12-07 23:45 - 000000000 ____D C:\WINDOWS\system32\Drivers\en-GB
2022-04-10 04:03 - 2019-12-07 23:45 - 000000000 ____D C:\WINDOWS\en-GB
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\Com
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\IME
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\Program Files\Common Files\System
2022-04-10 04:03 - 2019-12-07 18:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2022-04-10 04:03 - 2019-12-07 18:03 - 000000000 ____D C:\WINDOWS\servicing
2022-04-10 03:58 - 2019-12-07 23:49 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2022-04-10 03:58 - 2019-12-07 23:49 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2022-04-10 03:03 - 2019-12-07 23:47 - 000000000 ____D C:\WINDOWS\OCR
2022-04-10 03:01 - 2019-12-07 23:45 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2022-04-10 03:01 - 2019-12-07 23:45 - 000000000 ____D C:\WINDOWS\system32\WCN
2022-04-10 02:55 - 2019-12-07 23:45 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2022-04-10 02:55 - 2019-12-07 23:45 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2022-04-10 02:55 - 2019-12-07 23:45 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2022-04-10 02:55 - 2019-12-07 23:45 - 000000000 ____D C:\WINDOWS\system32\winrm
2022-04-10 02:55 - 2019-12-07 23:45 - 000000000 ____D C:\WINDOWS\system32\slmgr
2022-04-10 02:55 - 2019-12-07 23:45 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2022-04-10 02:55 - 2019-12-07 18:14 - 000000000 ___SD C:\WINDOWS\system32\dsc
2022-04-10 02:55 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2022-04-10 02:55 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\MUI
2022-04-09 21:39 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\appcompat
2022-04-09 21:36 - 2020-03-11 11:37 - 000000001 _____ C:\WINDOWS\system32\Drivers\360Hvm64.dat
2022-04-09 21:36 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-04-09 21:36 - 2019-12-07 18:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-04-09 21:17 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-04-09 21:07 - 2020-03-01 04:04 - 000000000 ____D C:\Users\Ganja\AppData\Local\Packages
2022-04-09 20:51 - 2019-12-07 18:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-04-09 20:42 - 2020-10-07 17:08 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-04-09 20:36 - 2019-12-07 18:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-04-09 20:35 - 2020-02-29 21:54 - 000803176 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2022-04-09 20:27 - 2019-12-07 18:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-04-09 20:24 - 2020-02-29 21:19 - 000000000 ____D C:\Users\Ganja\AppData\Local\D3DSCache
2022-04-09 20:19 - 2020-02-29 21:22 - 000000000 ____D C:\ProgramData\Packages
2022-04-09 20:19 - 2019-12-07 18:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-04-09 20:17 - 2020-03-01 04:04 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-04-09 20:17 - 2020-03-01 04:04 - 000000000 ___RD C:\Users\Ganja\3D Objects
2022-04-09 20:16 - 2019-12-07 18:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-04-09 20:11 - 2019-12-07 18:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-04-09 20:10 - 2019-12-07 18:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2022-04-09 20:09 - 2019-12-07 18:14 - 000000000 ____D C:\ProgramData\USOPrivate
2022-04-09 20:09 - 2019-12-07 18:14 - 000000000 ____D C:\Program Files\Windows Defender
2022-04-09 19:58 - 2019-12-07 18:14 - 000000000 __RHD C:\Users\Public\Libraries
2022-04-09 19:48 - 2020-03-22 21:19 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mudfish Cloud VPN
2022-04-09 19:48 - 2020-03-11 11:37 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\360 Security Center
2022-04-09 19:48 - 2020-03-04 19:25 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-04-09 19:45 - 2020-05-19 00:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2022-04-09 19:44 - 2021-04-07 09:07 - 000001963 _____ C:\ProgramData\Microsoft\Windows\Start Menu\SmartAudio.lnk
2022-04-09 19:43 - 2021-04-08 20:08 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-04-09 19:43 - 2020-02-29 21:10 - 001705080 _____ (TODO: <Company name>) C:\WINDOWS\SysWOW64\RebootPrompt.exe
2022-04-09 15:54 - 2020-04-29 14:32 - 000000000 ____D C:\Program Files\dotnet
2022-04-09 15:54 - 2020-02-29 22:55 - 000000000 ____D C:\ProgramData\Package Cache
2022-04-09 15:43 - 2020-02-29 22:19 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-04-09 15:42 - 2020-02-29 22:19 - 145666720 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-04-09 15:41 - 2020-04-29 14:32 - 000000000 ____D C:\Program Files (x86)\dotnet
2022-04-09 15:38 - 2020-04-29 14:35 - 000000000 ____D C:\Users\Ganja\.dotnet
2022-04-09 09:23 - 2020-02-29 23:02 - 000000000 ____D C:\Users\Ganja\AppData\Local\Intel
2022-04-09 00:08 - 2020-03-18 12:44 - 000000000 __SHD C:\$360Section
2022-04-09 00:08 - 2020-03-11 15:27 - 000000000 __SHD C:\ProgramData\360Quarant
2022-04-08 23:50 - 2020-03-11 11:37 - 000000000 _RSHD C:\360SANDBOX
2022-03-20 09:38 - 2020-02-29 21:37 - 000000000 ____D C:\Games
2022-03-18 08:34 - 2020-03-01 04:49 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2022-03-18 08:18 - 2020-02-29 22:54 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2022-03-17 23:35 - 2020-03-08 23:50 - 000000938 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2022-03-17 23:35 - 2020-03-08 23:49 - 000000934 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2022-03-15 12:04 - 2021-11-29 19:30 - 000000000 ____D C:\Users\Ganja\AppData\Local\Bluestacks
2022-03-15 11:45 - 2020-03-06 16:31 - 000000000 ____D C:\Users\Ganja\AppData\Local\NVIDIA
2022-03-15 11:45 - 2020-02-29 21:32 - 000000000 ____D C:\ProgramData\NVIDIA
2022-03-14 17:26 - 2020-03-11 19:31 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\ZHP
2022-03-14 17:10 - 2021-12-15 22:17 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LDPlayer4
2022-03-14 17:07 - 2020-04-18 23:45 - 000000000 ____D C:\Program Files\SoftEther VPN Client
2022-03-14 16:48 - 2021-02-16 08:49 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\vlc
2022-03-14 16:14 - 2020-02-29 21:08 - 000000000 ____D C:\Program Files (x86)\Google
2022-03-12 17:32 - 2020-03-20 00:31 - 000000000 ____D C:\AdwCleaner
2022-03-12 17:21 - 2020-03-08 23:49 - 000000000 ____D C:\Users\Ganja\AppData\Local\Dropbox
2022-03-12 17:19 - 2020-03-08 23:49 - 000000000 ____D C:\Program Files (x86)\Dropbox
2022-03-12 17:13 - 2020-03-01 04:49 - 000000000 ____D C:\Users\Ganja\AppData\Local\SquirrelTemp
2022-03-12 17:09 - 2020-03-04 19:24 - 000000000 ____D C:\Program Files\WinRAR
2022-03-12 17:09 - 2020-02-29 21:12 - 000002377 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-03-12 17:06 - 2021-12-15 21:58 - 000000000 ____D C:\Users\Ganja\AppData\Roaming\XuanZhi
2022-03-12 17:02 - 2021-12-15 22:17 - 000000000 ____D C:\Users\Ganja\.Ld2VirtualBox
2022-03-12 16:43 - 2020-02-29 21:20 - 000000000 ____D C:\Users\Ganja\AppData\Local\Comms

==================== Files in the root of some directories ========

2020-04-10 11:34 - 2020-04-10 11:34 - 003295616 _____ (Nicolas Coolman) C:\Users\Ganja\ZHPCleaner.exe
2021-12-15 22:17 - 2021-12-15 22:17 - 000000068 _____ () C:\Users\Ganja\AppData\Roaming\changzhi_leidian.data
2021-12-15 22:17 - 2021-12-15 22:17 - 000000154 _____ () C:\Users\Ganja\AppData\Roaming\changzhi_leidianmac.data
2020-05-02 22:47 - 2021-01-04 14:51 - 000001190 _____ () C:\Users\Ganja\AppData\Roaming\_encryptiondb.grf
2020-03-08 11:10 - 2020-03-08 11:10 - 000000000 _____ () C:\Users\Ganja\AppData\Local\oobelibMkey.log
2020-03-15 19:56 - 2020-03-15 19:56 - 000007625 _____ () C:\Users\Ganja\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)



ATTENTION: ==> Could not access BCD. -> 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
==================== End of FRST.txt ========================
 
Not a problem.

Since I am at work, this is the only instruction I can give. I’ll take a closer look when I am at my computer, when I arrive home. That should be in 6-8 hours.

Adware Cleaner

  • Download AdwCleaner and save it to your Desktop
  • Right-click on AdwCleaner.exeand select
    Spcusrh.png


    Run as Administrator
  • Accept the EULA (I accept), then click on Scan Now
  • Let the scan complete
  • Once the scan completes, make sure that every item listed in the different tabs is checked and click on the Clean & Repair button
  • Subsequently you may be asked to Run Basic Repair. This is optional. I would suggest holding off on this for now.
  • Once the cleaning process is complete, AdwCleaner will ask you to restart your computer
  • Close all other open windows and allow it to restart
  • After the restart, Notepad will open with the AdwCleaner cleaning log
  • Please Attach the contents of that log into your next reply to me
 
Can you please uninstall 360 Total Security at least while we go over your machine, there are many many errors in your event viewer related to the software. You can reinstall after we are done with this exercise.

Use Geek Uninstaller to remove this other software below, as well as 360 Total Security please.

Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)




Code:
System errors:
=============
Error: (04/11/2022 08:19:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The QHProtected service failed to start due to the following error:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Error: (04/11/2022 08:19:51 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The QHProtected service failed to start due to the following error:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Error: (04/09/2022 09:40:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The QHProtected service failed to start due to the following error:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Error: (04/09/2022 09:40:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The QHProtected service failed to start due to the following error:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2022-04-11 20:19:51
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\360\Total Security\safemon\WscReg.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.




FRST Fix.

Download attached fixlist.txt file and save it to the Desktop. NOTE. It's important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work. NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system Run FRST/FRST64 and press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run. When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.



Make sure and disable your antivirus/defender prior to the scan.
  • Download ESET Online Scanner from here and save it to your Desktop.
  • Right click the esetonlinescanner.exe file you downloaded and select Run as administrator.
  • Click Get started.
  • In the Terms of use screen, click Accept if you agree to the Terms of use.
  • Click Get started in the welcome screen.
  • Select your preference for the Customer Experience Improvement Program and the Detection feedback system.Click Continue.
  • Click Computer scan, in the Welcome back screen.
  • Choose Full scan on the next screen.
  • Select Enable ESET to detect and quarantine potentially unwanted applications.Then click Start scan
  • When the scan is finished click Save scan log and save it to your Desktop as ESETScan.txt. Click Continue.
  • ESET Online Scanner will now ask if you wish to turn on the Periodic Scan feature.Click Continue
  • You will now be offered a trial version of ESET Internet Security.Click continue
  • On the next screen, you can leave feedback about the program if you wish.
  • Select Delete application's data on closing, if you are short of disk space or do not wish to retain the program for future use.
  • If you left feedback, click Submit and continue. If not, Close without feedback.
  • Copy and paste the contents of the ESETScan.txt file in your next reply.
 

Attachments

  • fixlist.txt
    3.9 KB · Views: 23
Last edited:
I uninstalled bonjour and 360 security.
I ran the adware cleaner but I didnt get ask to Accept the EUL. Also it didnt asked me to restart. So I just opened the log.
 
# -------------------------------
# Malwarebytes AdwCleaner 8.3.1.0
# -------------------------------
# Build: 11-18-2021
# Database: 2022-03-15.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 04-12-2022
# Duration: 00:00:44
# OS: Windows 10 Pro
# Scanned: 32038
# Detected: 0


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

No Preinstalled Software found.


AdwCleaner[S00].txt - [1405 octets] - [20/03/2020 00:31:43]
AdwCleaner[C00].txt - [1595 octets] - [20/03/2020 00:32:01]
AdwCleaner[S01].txt - [1527 octets] - [28/03/2020 18:58:16]
AdwCleaner[C01].txt - [1717 octets] - [28/03/2020 18:58:54]
AdwCleaner[S02].txt - [1649 octets] - [10/04/2020 11:28:12]
AdwCleaner[C02].txt - [1839 octets] - [10/04/2020 11:28:44]
AdwCleaner[S03].txt - [1771 octets] - [22/04/2020 14:58:24]
AdwCleaner[C03].txt - [1961 octets] - [22/04/2020 14:59:02]
AdwCleaner[S04].txt - [1893 octets] - [19/05/2020 01:04:35]
AdwCleaner[C04].txt - [2083 octets] - [19/05/2020 01:04:44]
AdwCleaner[S05].txt - [3568 octets] - [12/03/2022 17:28:08]
AdwCleaner[C05].txt - [3520 octets] - [12/03/2022 17:33:05]
AdwCleaner[S06].txt - [2137 octets] - [12/04/2022 21:26:29]
AdwCleaner[S07].txt - [2198 octets] - [12/04/2022 21:27:08]
AdwCleaner[C07].txt - [2388 octets] - [12/04/2022 21:28:36]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S08].txt ##########
 
Fix result of Farbar Recovery Scan Tool (x64) Version: 12-04-2022 03
Ran by Ganja (12-04-2022 21:29:58) Run:1
Running from C:\Users\Ganja\Desktop
Loaded Profiles: Ganja
Boot Mode: Normal
==============================================

fixlist content:
*****************
CloseProcesses:
SystemRestore: On
CreateRestorePoint:
RemoveProxy:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
R3 WinRing0_1_2_0; C:\Users\Ganja\AppData\Local\Temp\WinRing0x64.sys [33176 2022-04-09] (NetEase(Hangzhou) Network Co. Ltd. -> ) <==== ATTENTION
C:\Users\Ganja\AppData\Local\Temp\WinRing0x64.sys
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
Startup: C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\regedit.lnk [2020-03-01]
ShortcutAndArgument: regedit.lnk -> C:\Windows\regedit.exe => /s c:\myprocessor.reg
Task: {CF227F5D-41D6-4B0D-89AD-32B557B193F8} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-03-11] (Piriform Software Ltd -> Piriform)
Task: {0E782AB6-DD64-403B-96ED-DE437491A970} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-29] (Google LLC -> Google LLC)
Task: {28F2B8CE-323F-4A2F-9AE9-D06D4A7CD515} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-02-29] (Google LLC -> Google LLC)
Task: {32046F4E-AF40-48C9-BA8C-53DAD33FE817} - System32\Tasks\CCleanerSkipUAC - Ganja => C:\Program Files\CCleaner\CCleaner.exe [30053504 2022-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
cmd: sc stop Apple Mobile Device Service
cmd: sc config Apple Mobile Device Service start= demand
Folder: C:\WINDOWS\SystemTemp
Folder: C:\WINDOWS\DiagTrack
VirusTotal: C:\Windows\system32\drivers\UniSafe.sys
VirusTotal: C:\Windows\system32\drivers\tesrsdt.sys
VirusTotal: C:\Program Files\TxGameAssistant\UI\3.21.808.100\aow_drv_x64_ev.sys
VirusTotal: C:\WINDOWS\system32\libcrypto.dll
VirusTotal: C:\WINDOWS\system32\MBR2GPT.EXE
VirusTotal: C:\WINDOWS\SysWOW64\RebootPrompt.exe
C:\Windows\System32\drivers\etc\hosts
Hosts:
ContextMenuHandlers1: [WinRAR] -> [CC]{B41DB860-64E4-11D2-9906-E49FADC173CA} => -> No File
ContextMenuHandlers1: [WinRAR32] -> [CC]{B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> No File
ContextMenuHandlers4: [7-Zip] -> [CC]{23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [DropboxExt] -> [CC]{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => -> No File
ContextMenuHandlers1: [7-Zip] -> [CC]{23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [DropboxExt] -> [CC]{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => -> No File
MSCONFIG\Services: Bonjour Service => 2
CMD: netsh int ip reset
CMD: netsh advfirewall reset
CMD: netsh advfirewall set allprofiles state On
CMD: "%WINDIR%\SYSTEM32\lodctr.exe /R"
CMD: "%WINDIR%\SysWOW64\lodctr.exe /R"
CMD: "C:\Windows\SYSTEM32\lodctr.exe /R"
CMD: "C:\Windows\SysWOW64\lodctr.exe /R"
StartBatch:
del /s /q C:\Windows\SoftwareDistribution\download\*.*
del /s /q "%userprofile%\AppData\Local\Google\Chrome\User Data\Default\Cache\*.*"
del /s /q "%userprofile%\AppData\Local\temp\*.*"
ipconfig /flushdns
endbatch:
C:\Windows\Temp\*.*
C:\WINDOWS\system32\*.tmp
C:\WINDOWS\syswow64\*.tmp
emptytemp:
Reboot:

*****************

Processes closed successfully.
SystemRestore: On => completed
Restore point was successfully created.

========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
"HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully


========= End of RemoveProxy: =========

HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
WinRing0_1_2_0 => Service stopped successfully.
HKLM\System\CurrentControlSet\Services\WinRing0_1_2_0 => removed successfully
WinRing0_1_2_0 => service removed successfully
C:\Users\Ganja\AppData\Local\Temp\WinRing0x64.sys => moved successfully
"HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\NoLowDiskSpaceChecks" => removed successfully
C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\regedit.lnk => moved successfully
ShortcutAndArgument: regedit.lnk -> C:\Windows\regedit.exe => /s c:\myprocessor.reg => Error: No automatic fix found for this entry.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{CF227F5D-41D6-4B0D-89AD-32B557B193F8}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CF227F5D-41D6-4B0D-89AD-32B557B193F8}" => removed successfully
C:\WINDOWS\System32\Tasks\CCleaner Update => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleaner Update" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0E782AB6-DD64-403B-96ED-DE437491A970}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0E782AB6-DD64-403B-96ED-DE437491A970}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{28F2B8CE-323F-4A2F-9AE9-D06D4A7CD515}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{28F2B8CE-323F-4A2F-9AE9-D06D4A7CD515}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{32046F4E-AF40-48C9-BA8C-53DAD33FE817}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{32046F4E-AF40-48C9-BA8C-53DAD33FE817}" => removed successfully
C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - Ganja => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CCleanerSkipUAC - Ganja" => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => removed successfully

========= sc stop Apple Mobile Device Service =========

DESCRIPTION:
Sends a STOP control request to a service.
USAGE:
sc <server> stop [service name] <reason> <comment>
<reason> = Optional reason code number for service stop
formed with the following elements in the format:

Flag:Major reason:Minor reason

[E.g., 1:2:8 means Hardware: Disk (Unplanned)]

Flag Major reason
------------------ ---------------------------
1 - Unplanned 1 - Other
2 - Custom 2 - Hardware
4 - Planned 3 - Operating System
4 - Software
5 - Application
64-255 - Custom

Minor reason
-----------------------------------
1 - Other
2 - Maintenance
3 - Installation
4 - Upgrade
5 - Reconfiguration
6 - Hung
7 - Unstable
8 - Disk
9 - Network Card
10 - Environment
11 - Hardware Driver
12 - Other Driver
13 - Service Pack
14 - Software Update
15 - Security Fix
16 - Security
17 - Network Connectivity
18 - WMI
19 - Service Pack Uninstall
20 - Software Update Uninstall
22 - Security Fix Uninstall
23 - MMC
256-65535 - Custom

<comment> = Optional comment for the reason above (127 characters maximum)

========= End of CMD: =========


========= sc config Apple Mobile Device Service start= demand =========

DESCRIPTION:
Modifies a service entry in the registry and Service Database.
USAGE:
sc <server> config [service name] <option1> <option2>...

OPTIONS:
NOTE: The option name includes the equal sign.
A space is required between the equal sign and the value.
To remove the dependency, use a single / as dependency value.
type= <own|share|interact|kernel|filesys|rec|adapt|userown|usershare>
start= <boot|system|auto|demand|disabled|delayed-auto>
error= <normal|severe|critical|ignore>
binPath= <BinaryPathName to the .exe file>
group= <LoadOrderGroup>
tag= <yes|no>
depend= <Dependencies(separated by / (forward slash))>
obj= <AccountName|ObjectName>
DisplayName= <display name>
password= <password>

========= End of CMD: =========


========================= Folder: C:\WINDOWS\SystemTemp ========================


====== End of Folder: ======


========================= Folder: C:\WINDOWS\DiagTrack ========================

2019-12-07 18:08 - 2019-12-07 18:08 - 000001739 ____A [0C722B3C1B7E8FD2D53C2BB13355E23C] () C:\WINDOWS\DiagTrack\analyticsevents.dat
2022-04-10 03:39 - 2022-04-10 03:39 - 000023805 ____A [7F745CEF13A03F16EEFAA639CCEB23F0] () C:\WINDOWS\DiagTrack\GetFileActionAllowedList.dat
2019-12-07 18:08 - 2019-12-07 18:08 - 000001956 ____A [8F59BEEF46FFBED8A1A6AC8375A0CD22] () C:\WINDOWS\DiagTrack\GetFileInfoActionAllowedList.dat
2019-12-07 18:08 - 2019-12-07 18:08 - 000000426 ____A [4BDEC182309249D4765733D47E41D6FD] () C:\WINDOWS\DiagTrack\RemoteAggregatorTriggerCriteria.dat
2022-04-10 03:39 - 2022-04-10 03:39 - 000024691 ____A [4C18338BB15A07F7C7D746FEBD59E0F5] () C:\WINDOWS\DiagTrack\RunExeActionAllowedList.dat
2019-12-07 18:08 - 2019-12-07 18:08 - 000478866 ____A [F20BD336564C0F73F852FF03BA208D30] () C:\WINDOWS\DiagTrack\utc.allow.diffbase
2019-12-07 18:08 - 2019-12-07 18:08 - 000325211 ____A [A4D310B9DE25CB738AE9DD22A14D6F07] () C:\WINDOWS\DiagTrack\utc.privacy.diffbase
2019-12-07 18:14 - 2019-12-07 18:14 - 000000000 ____D [00000000000000000000000000000000] () C:\WINDOWS\DiagTrack\Scenarios
2019-12-07 18:08 - 2019-12-07 18:08 - 000172619 ____A [720F91F16E12F8723CE7ADD504F8A326] () C:\WINDOWS\DiagTrack\Scenarios\windows.diag_ondemand.xml
2019-12-07 18:08 - 2019-12-07 18:08 - 000667214 ____A [40FE70E7390B43888EAD57FEA472A05B] () C:\WINDOWS\DiagTrack\Scenarios\windows.uif_ondemand.xml
2019-12-07 18:14 - 2019-12-07 18:14 - 000000000 ____D [00000000000000000000000000000000] () C:\WINDOWS\DiagTrack\Settings
2019-12-07 18:08 - 2019-12-07 18:08 - 000001464 ____A [0BD0437314526B56FAE19033D1EDBD3D] () C:\WINDOWS\DiagTrack\Settings\telemetry.ASM-WindowsDefault.json
2019-12-07 18:08 - 2019-12-07 18:08 - 000004364 ____A [698AB53163E6D1E3ADCF0AFD1EB51F87] () C:\WINDOWS\DiagTrack\Settings\utc.app.json
2019-12-07 18:08 - 2019-12-07 18:08 - 000000028 ____A [6C7E84CB1A40E1E6A5CFE37E2CEAAD04] () C:\WINDOWS\DiagTrack\Settings\utc.tracing.json
2019-12-07 18:08 - 2019-12-07 18:08 - 000000421 ____A [352F53D80109F0413233AABAE25824B8] () C:\WINDOWS\DiagTrack\Settings\windows.uif_ondemand.json

====== End of Folder: ======

VirusTotal: C:\Windows\system32\drivers\UniSafe.sys => https://www.virustotal.com/gui/file...70a1a24403b199a111fad8f1b5d3393d9b-1643280115
VirusTotal: C:\Windows\system32\drivers\tesrsdt.sys => https://www.virustotal.com/gui/file...be9c1fbb01da65622dc93c1fbe630cf92f-1647280918
VirusTotal: C:\Program Files\TxGameAssistant\UI\3.21.808.100\aow_drv_x64_ev.sys => https://www.virustotal.com/gui/file...acfe62b28229de8ff13e9d1c726f867bc7-1591556953
VirusTotal: C:\WINDOWS\system32\libcrypto.dll => https://www.virustotal.com/gui/file...af2d6bd0c1f7d6669e16fccdf8bd6ba0ea-1647043470
VirusTotal: C:\WINDOWS\system32\MBR2GPT.EXE => https://www.virustotal.com/gui/file...9dea00ddc3af293479bc7c3380f1be30ea-1649766647
VirusTotal: C:\WINDOWS\SysWOW64\RebootPrompt.exe => https://www.virustotal.com/gui/file...b33e073f5e4703b8b48c530d7dc54d068d-1649766650
C:\Windows\System32\drivers\etc\hosts => moved successfully
Hosts restored successfully.
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\DropboxExt => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\DropboxExt => removed successfully
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\Services\Bonjour Service => removed successfully
HKLM\System\CurrentControlSet\Services\Bonjour Service => not found

========= netsh int ip reset =========

Resetting Compartment Forwarding, OK!
Resetting Compartment, OK!
Resetting Control Protocol, OK!
Resetting Echo Sequence Request, OK!
Resetting Global, OK!
Resetting Interface, OK!
Resetting Anycast Address, OK!
Resetting Multicast Address, OK!
Resetting Unicast Address, OK!
Resetting Neighbor, OK!
Resetting Path, OK!
Resetting Potential, OK!
Resetting Prefix Policy, OK!
Resetting Proxy Neighbor, OK!
Resetting Route, OK!
Resetting Site Prefix, OK!
Resetting Subinterface, OK!
Resetting Wakeup Pattern, OK!
Resetting Resolve Neighbor, OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , failed.
Access is denied.

Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Resetting , OK!
Restart the computer to complete this action.


========= End of CMD: =========


========= netsh advfirewall reset =========

Ok.


========= End of CMD: =========


========= netsh advfirewall set allprofiles state On =========

Ok.


========= End of CMD: =========


========= "%WINDIR%\SYSTEM32\lodctr.exe /R" =========


Error: Unable to rebuild performance counter setting from system backup store, error code is 2
========= End of CMD: =========


========= "%WINDIR%\SysWOW64\lodctr.exe /R" =========


Info: Successfully rebuilt performance counter setting from system backup store
========= End of CMD: =========


========= "C:\Windows\SYSTEM32\lodctr.exe /R" =========


Info: Successfully rebuilt performance counter setting from system backup store
========= End of CMD: =========


========= "C:\Windows\SysWOW64\lodctr.exe /R" =========


Info: Successfully rebuilt performance counter setting from system backup store
========= End of CMD: =========


========= Batch: =========
Deleted file - C:\Windows\SoftwareDistribution\download\45d7b8e98e22f939ed0083fe31204caa9a72fa76
Deleted file - C:\Windows\SoftwareDistribution\download\54d1fae288ca8344a8dc49a8f0d084c729c45b7e
Deleted file - C:\Windows\SoftwareDistribution\download\a45884cb837a93e75e8cd2b0ea8dd2c1cb2d580b
Deleted file - C:\Windows\SoftwareDistribution\download\daaa309cba6fca5e31f14d1e6fe3c79ff0a47788
Deleted file - C:\Windows\SoftwareDistribution\download\f411e63f3125e663ed9e2a3afe0f89805ee34919
Deleted file - C:\Windows\SoftwareDistribution\download\2c9915206dbc5f66c8b08e438bf16a4e\Windows10.0-KB5010472-x64-NDP48.cab
Deleted file - C:\Windows\SoftwareDistribution\download\2c9915206dbc5f66c8b08e438bf16a4e\cbshandler\state
Deleted file - C:\Windows\SoftwareDistribution\download\77517a7122ab7793783659727e08dab0\Windows10.0-KB5001716-x64.cab
Deleted file - C:\Windows\SoftwareDistribution\download\d081798f2fd2fc12477dad28d7c311b9\windowspchealthchecksetup.cab
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\ActionList.xml
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\compdb.xml.cab
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\DownloadList.xml
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\DownloadList_old.xml
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\ExeUpdateAgentDeployment.cab
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\unifiedinstaller.exe
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\UpdHealthTools.cab
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\windlp.state-old.xml
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\windlp.state.xml
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\Logs\CapsulePublishRemediation.001.etl
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\Metadata\compdb.xml
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\Metadata\compdb.xml.cab
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\Metadata\DeviceInventory.xml
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\Metadata\Dpx.dll
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\Metadata\ExeUpdateAgent.dll
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\Metadata\Mitigation.dll
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\Metadata\UAOneSettings.dll
Deleted file - C:\Windows\SoftwareDistribution\download\f83a4e6fe98dad3642a9cb31e880f2f1\Metadata\UpdateAgent.dll
Deleted file - C:\Windows\SoftwareDistribution\download\SharedFileCache\28b0573ec096c6e1b264df33de0db500f998462885e4c4f0f551a28bb68f9db8
Deleted file - C:\Windows\SoftwareDistribution\download\SharedFileCache\2cf43889d55f3b62a701d7cc770ead86ba5b6956fa1df90829ad1cfbeb6093d3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\data_0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\data_1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\data_2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\data_3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000001
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000002
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000004
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000005
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000007
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000008
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00000a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00000c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000014
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000015
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000016
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00001f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00002f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000030
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000031
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000033
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000034
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000035
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000036
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000037
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000039
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00003a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00003c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000055
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000056
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000057
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000058
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000059
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00005a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00005b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00005c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00005d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00005f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000060
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000061
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000062
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000065
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000069
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00006a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00006b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00006c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00006d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000075
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000076
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00007c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00007e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000c3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000ca
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000cb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000cc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000ce
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000d5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000da
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000dc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000dd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000e0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000ec
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000ef
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0000f2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00010f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000110
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000115
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000116
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000123
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000124
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000125
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000126
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000129
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00012a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00012e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00012f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000132
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000140
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000141
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000142
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000143
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000147
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000149
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00014a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00014d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00014e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000150
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000164
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000166
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000167
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000168
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000169
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00016a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00016b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00016d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000179
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000180
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00018f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000190
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000191
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000192
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000193
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000194
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000195
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000196
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000197
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000198
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000199
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001ae
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001bc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001c3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001cb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001cc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001cd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001cf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001d8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001db
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001dd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001de
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001df
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001e9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0001eb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00021f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000220
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000221
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000222
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000224
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000225
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000226
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00022b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00022c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00022d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00022e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00022f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000231
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000232
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000233
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000234
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000237
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00023a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00023c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00023d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00023f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000240
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000254
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00025d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00025e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000263
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00027a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000285
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000288
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00028b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000291
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000293
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002a5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ae
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002b5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002ef
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0002f6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000301
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000302
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000306
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000307
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00031f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000320
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00032a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00032b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000338
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000339
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00033b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00033c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00033d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00033e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00033f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000340
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000342
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000343
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000344
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000345
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000346
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000347
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000349
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00034a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00034b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00034c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00034d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00034e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00034f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000350
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000351
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000358
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00036e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00036f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000374
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000375
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000376
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000377
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000378
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000379
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000380
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000381
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000382
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000383
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000384
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000385
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000387
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000388
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000389
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00038a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00038b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000394
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000399
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00039a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00039b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00039c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00039d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00039e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00039f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003a0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003a1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003a4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003a5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003a7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003a8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003aa
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003ab
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003ac
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003b4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003cb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003e3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003e4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003e5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003e6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003e7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003e8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003e9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003ea
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003eb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003ec
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003ed
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003ee
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003ef
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003f0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003f1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003f2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003f3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003f4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003f5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003f8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003f9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003fa
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0003ff
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000400
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000401
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00041f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000420
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000446
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000447
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00044d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00044f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000451
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00046c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00046d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00046f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000478
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00047a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00047b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00047c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00047d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000480
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00049e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0004a4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0004be
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0004f9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005c6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005c8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005ce
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005cf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005d0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005d1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005d2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005d3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005d4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005d5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005d6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005d7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005d8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005d9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0005da
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000611
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000614
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000615
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000ad6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000adf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000ae2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000f56
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000f62
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000f63
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000f64
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000f75
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000f95
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000f98
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_000f9e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00126e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00126f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00133a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00133b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00133c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00133d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00133f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001349
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013a7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013a8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013aa
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013c1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013c2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013c5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013c6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013c9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013ca
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013cb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013cc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013cd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013ce
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013cf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013d2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013d3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013d4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013d5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013d8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013d9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013da
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013db
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013dc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013dd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013de
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013e3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013e4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013e5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013e6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013e7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013e8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013ea
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013eb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013ed
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013ee
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013ef
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013f0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013f1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013f4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013f5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0013f8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00157c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001582
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001583
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001584
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001587
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001683
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00168c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00175d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00175f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001761
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001772
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017b1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017b9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017ba
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017c4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017c5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017c6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017d2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017e4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017e6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017ee
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017f0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017f4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0017fe
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001800
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001801
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001803
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00180d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00182b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0018ac
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0018d2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0018e3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0018f5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_00194c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001952
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001996
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0019a1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0019cf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0019d9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0019da
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0019e1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_0019eb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001a26
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001a2a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001a2d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001a2e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001a2f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001a39
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001a40
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001a47
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001a4e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001a53
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ad1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ae9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ba0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ba1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ba2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ba3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ba4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ba5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ba6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ba7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ba8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ba9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001baa
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bab
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bac
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bad
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bae
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001baf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bb0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bb1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bb2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bb3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bb4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bb5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bb6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bb7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bb8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bb9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bba
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bbb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bbc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bbd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bbe
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bbf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bc0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bc1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bc2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bc3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bc4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bc5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bc6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bc7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bc8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bc9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bca
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bcb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bcc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bcd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bce
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bcf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bd0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bd1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bd2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bd3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bd4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bd5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bd6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bd7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bd8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bd9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bda
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bdb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bdc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bdd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bde
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bdf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001be0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001be1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001be2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001be3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001be4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001be5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001be6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001be7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001be8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001be9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bea
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001beb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bec
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bed
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bee
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bef
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bf0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bf1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bf2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bf3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bf4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bf5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bf6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bf7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bf8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bf9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bfa
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bfb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bfc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bfd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bfe
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001bff
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c00
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c01
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c02
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c03
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c04
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c05
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c06
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c07
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c08
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c09
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c0a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c0b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c0c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c0d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c0e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c0f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c10
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c11
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c12
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c13
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c14
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c15
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c16
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c17
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c18
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c19
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c1a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c1b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c1c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c1d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c1e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c1f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c20
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c21
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c22
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c23
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c24
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c25
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c26
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c27
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c28
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c29
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c2a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c2b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c2c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c2d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c2e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c2f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c30
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c31
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c32
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c33
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c34
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c35
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c36
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c37
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c38
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c39
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c3a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c3b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c3c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c3d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c3e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c3f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c40
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c41
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c42
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c43
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c44
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c45
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c46
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c47
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c48
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c49
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c4a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c4b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c4c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c4d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c4e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c4f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c50
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c51
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c52
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c53
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c54
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c55
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c56
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c57
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c58
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c59
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c5a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c5b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c5c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c5d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c5e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c5f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c60
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c61
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c62
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c63
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c64
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c65
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c66
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c67
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c68
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c69
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c6a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c6b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c6c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c6d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c6e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c6f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c70
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c71
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c72
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c73
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c74
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c75
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c76
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c77
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c78
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c79
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c7a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c7b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c7c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c7d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c7e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c7f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c80
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c81
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c82
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c83
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c84
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c85
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c86
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c87
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c88
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c89
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c8a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c8b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c8c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c8d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c8e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c8f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c90
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c91
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c92
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c93
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c94
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c95
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c96
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c97
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c98
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c99
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c9a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c9b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c9c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c9d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c9e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001c9f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ca0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ca1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ca2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ca3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ca4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ca5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ca6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ca7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ca8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ca9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001caa
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cab
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cac
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cad
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cae
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001caf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cb0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cb1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cb2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cb3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cb4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cb5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cb6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cb7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cb8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cb9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cba
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cbb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cbc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cbd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cbe
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cbf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cc0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cc1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cc2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cc3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cc4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cc5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cc6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cc7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cc8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cc9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cca
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ccb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ccc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ccd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cce
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ccf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cd0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cd1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cd2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cd3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cd4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cd5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cd6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cd7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cd8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cd9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cda
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cdb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cdc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cdd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cde
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cdf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ce0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ce1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ce2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ce3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ce4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ce5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ce6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ce7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ce8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ce9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cea
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ceb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cec
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ced
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cee
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cef
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cf0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cf1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cf2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cf3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cf4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cf5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cf6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cf7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cf8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cf9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cfa
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cfb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cfc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cfd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cfe
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001cff
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d00
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d01
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d02
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d03
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d04
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d05
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d06
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d07
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d08
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d09
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d0a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d0b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d0c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d0d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d0e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d0f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d10
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d11
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d12
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d13
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d14
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d15
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d16
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d17
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d18
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d19
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d1a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d1b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d1c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d1d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d1e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d1f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d20
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d21
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d22
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d23
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d24
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d25
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d26
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d27
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d29
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d2a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d2b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d2c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d2d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d2e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d2f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d30
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d31
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d32
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d33
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d34
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d35
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d36
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d37
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d38
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d39
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d3a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d3b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d3c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d3d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d3e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d3f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d40
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d41
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d42
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d43
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d44
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d45
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d46
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d47
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d48
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d49
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d4a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d4b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d4c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d4d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d4e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d4f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d50
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d51
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d52
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d53
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d54
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d55
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d56
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d57
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d58
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d59
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d5a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d5b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d5c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d5d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d5e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d5f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d60
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d61
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d62
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d63
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d64
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d65
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d66
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d67
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d68
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d69
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d6a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d6b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d6c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d6d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d6e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d6f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d70
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d71
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d72
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d73
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d74
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d75
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d76
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d77
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d78
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d79
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d7a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d7b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d7c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d7d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d7e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d7f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d80
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d81
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d82
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d83
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d84
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d85
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d86
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d87
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d88
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d89
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d8a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d8b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d8c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d8d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d8e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d8f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d90
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d91
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d92
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d93
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d94
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d95
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d96
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d97
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d98
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d99
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d9a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d9b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d9c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d9d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d9e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001d9f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001da0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001da1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001da2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001da3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001da4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001da5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001da6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001da7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001da8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001da9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001daa
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dac
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dad
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dae
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001daf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001db0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001db1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001db2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001db3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001db4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001db5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001db6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001db7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001db8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001db9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dba
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dbb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dbc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dbd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dbe
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dbf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dc0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dc1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dc2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dc3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dc4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dc5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dc6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dc7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dc8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dc9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dca
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dcb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dcc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dcd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dce
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dcf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dd0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dd1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dd2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dd3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dd4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dd5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dd6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dd7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dd8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dd9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dda
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ddb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ddc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ddd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dde
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ddf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001de0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001de1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001de2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001de3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001de4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001de5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001de6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001de7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001de8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001de9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dea
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001deb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dec
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ded
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dee
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001def
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001df0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001df1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001df2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001df3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001df4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001df5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001df6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001df7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001df8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001df9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dfa
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dfb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dfc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dfd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dfe
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001dff
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e00
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e01
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e02
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e03
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e04
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e05
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e06
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e07
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e08
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e09
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e0a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e0b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e0c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e0d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e0e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e0f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e10
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e11
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e12
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e13
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e14
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e15
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e16
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e17
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e18
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e19
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e1a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e1b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e1c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e1d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e1e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e1f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e20
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e21
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e22
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e23
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e24
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e25
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e26
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e27
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e28
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e29
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e2a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e2b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e2c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e2d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e2e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e2f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e30
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e31
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e32
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e33
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e34
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e35
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e36
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e38
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e39
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e3a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e3b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e3c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e3d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e3e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e3f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e40
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e41
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e42
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e43
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e44
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e45
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e46
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e47
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e48
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e49
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e4a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e4b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e4c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e4d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e4e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e4f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e50
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e51
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e52
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e53
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e54
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e55
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e56
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e57
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e58
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e59
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e5a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e5b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e5c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e5d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e5e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e5f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e60
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e61
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e62
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e63
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e64
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e65
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e66
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e67
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e68
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e69
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e6a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e6b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e6c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e6d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e6e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e73
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e74
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e76
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e77
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e79
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e7a
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e7b
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e7c
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e7d
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e7e
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e7f
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e80
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e81
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e82
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e86
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e92
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001e93
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ea6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ea7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ea8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ea9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eaa
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eab
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eac
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ead
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eae
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eaf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eb0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eb1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eb2
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eb3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eb4
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eb5
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eb6
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eb7
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eb8
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eb9
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001eba
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ebb
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ebc
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ebd
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ebe
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ebf
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ec0
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ec1
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\f_001ec3
Deleted file - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data\index
Deleted file - C:\Users\Ganja\AppData\Local\temp\1f0fb7c2d13cc0c07ff2ca40747bc03e_360tray.exe
Deleted file - C:\Users\Ganja\AppData\Local\temp\1f0fb7c2d13cc0c07ff2ca40747bc03e_remove360.bat
Deleted file - C:\Users\Ganja\AppData\Local\temp\1f0fb7c2d13cc0c07ff2ca40747bc03e_remove360.ini
C:\Users\Ganja\AppData\Local\temp\202241120203491
Access is denied.
Deleted file - C:\Users\Ganja\AppData\Local\temp\geek64.exe
Deleted file - C:\Users\Ganja\AppData\Local\temp\nemu-downloader-vt-cache.ini
Deleted file - C:\Users\Ganja\AppData\Local\temp\wd5935.tmp
Deleted file - C:\Users\Ganja\AppData\Local\temp\wd90C0.tmp
Deleted file - C:\Users\Ganja\AppData\Local\temp\wdD6B4.tmp
Deleted file - C:\Users\Ganja\AppData\Local\temp\winring0.cat
Deleted file - C:\Users\Ganja\AppData\Local\temp\WinRing0.inf
Deleted file - C:\Users\Ganja\AppData\Local\temp\WinRing0.sys
Deleted file - C:\Users\Ganja\AppData\Local\temp\winring0x64.cat
Deleted file - C:\Users\Ganja\AppData\Local\temp\WinRing0x64.inf
Deleted file - C:\Users\Ganja\AppData\Local\temp\chrome_BITS_8424_1290433441\hfnkpimlhhgieaddgfemjhofmfblmnib_7272_all_adg7oodfigim2i77ajorua3vszsa.crx3
਍楗摮睯⁳偉䌠湯楦畧慲楴湯਍਍畓捣獥晳汵祬映畬桳摥琠敨䐠华删獥汯敶⁲慃档⹥਍
========= End of Batch: =========


=========== "C:\Windows\Temp\*.*" ==========

C:\Windows\Temp\ASPNETSetup_00000.log => moved successfully
C:\Windows\Temp\ASPNETSetup_00001.log => moved successfully
C:\Windows\Temp\AudioFilterAgent.INI => moved successfully
C:\Windows\Temp\BM.INI => moved successfully
C:\Windows\Temp\CxAudMsg.ini => moved successfully
C:\Windows\Temp\D2Keys.ini => moved successfully
C:\Windows\Temp\FXMisc.ini => moved successfully
C:\Windows\Temp\FXSAPIDebugLogFile.txt => moved successfully
C:\Windows\Temp\FXSTIFFDebugLogFile.txt => moved successfully
C:\Windows\Temp\GainSpeech.ini => moved successfully
C:\Windows\Temp\HeadsetCtrl.ini => moved successfully
C:\Windows\Temp\inst_1_cxm.ini => moved successfully
C:\Windows\Temp\inst_2_wafa.ini => moved successfully
C:\Windows\Temp\inst_3_ssp.ini => moved successfully
C:\Windows\Temp\inst_4_saii.ini => moved successfully
C:\Windows\Temp\inst_5_ma4string.ini => moved successfully
C:\Windows\Temp\inst_6_maxxaudio4.ini => moved successfully
C:\Windows\Temp\inst_7_ma4preset.ini => moved successfully
C:\Windows\Temp\MA4Preset.ini => moved successfully
C:\Windows\Temp\MA4String.ini => moved successfully
C:\Windows\Temp\MaxxAudio.ini => moved successfully
C:\Windows\Temp\MicArrayInfo.ini => moved successfully
C:\Windows\Temp\MicEQ.ini => moved successfully
C:\Windows\Temp\MicGain.ini => moved successfully
C:\Windows\Temp\MpCmdRun.log => moved successfully
C:\Windows\Temp\MpSigStub.log => moved successfully
C:\Windows\Temp\msedge_installer.log => moved successfully
C:\Windows\Temp\OrVerbs.ini => moved successfully
C:\Windows\Temp\SA2Cmd.ini => moved successfully
C:\Windows\Temp\SA2EnFlt.ini => moved successfully
C:\Windows\Temp\SA2HPLimiterTimeOutMsg.ini => moved successfully
C:\Windows\Temp\SA2NGEN.ini => moved successfully
C:\Windows\Temp\SA2OptReg.ini => moved successfully
C:\Windows\Temp\SA2SCApps.ini => moved successfully
C:\Windows\Temp\SA2Setup.ini => moved successfully
C:\Windows\Temp\SA2SmEq.INI => moved successfully
C:\Windows\Temp\SA2SrchBr.ini => moved successfully
C:\Windows\Temp\SA2Srv.ini => moved successfully
C:\Windows\Temp\SA2Util.ini => moved successfully
C:\Windows\Temp\SAII.ini => moved successfully
C:\Windows\Temp\SETUP.LOG => moved successfully
C:\Windows\Temp\SoftEQ.ini => moved successfully
C:\Windows\Temp\SSPConfig.ini => moved successfully
C:\Windows\Temp\temEAB0.tmp => moved successfully

========= End -> "C:\Windows\Temp\*.*" ========


=========== "C:\WINDOWS\system32\*.tmp" ==========

not found

========= End -> "C:\WINDOWS\system32\*.tmp" ========


=========== "C:\WINDOWS\syswow64\*.tmp" ==========

not found

========= End -> "C:\WINDOWS\syswow64\*.tmp" ========


=========== EmptyTemp: ==========

BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 19040244 B
Java, Flash, Steam htmlcache => 19634645 B
Windows/system/drivers => 193992446 B
Edge => 44570 B
Chrome => 435295395 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 18056 B
NetworkService => 18056 B
Ganja => 46922214 B

RecycleBin => 0 B
EmptyTemp: => 683.3 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 21:31:36 ====
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 18056 B
NetworkService => 18056 B
Ganja => 46922214 B

RecycleBin => 0 B
EmptyTemp: => 683.3 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 21:31:36 ====
 
Once you have completed the Eset Scan and posted the log, please continue with the instructions below. Also, let me know how the machine is performing. :)




Step 1: Adware Removal Tool Scan.



Download Adware removal tool to your desktop, right click the icon and select Run as Administrator.
Click Scan
Hit Ok.
Hit next make sure to leave all items checked, for removal.
Click Next
The Program will close all open programs to complete the removal, so save any work and hit OK.
Then hit OK after the removal process is complete, thenOK again to finish up.
Post log generated by tool.



Step2: ZHP cleaner Scan.


Please download Zhp Cleaner to your desktop. Right Click the icon and select run as administrator.
Once you have started the program, you will need to click the scanner button.
The program will close all open browsers!
Once the scan is completed, the you will want to click the Repair button.
At the end of the process you may be asked to reboot your machine.
After you reboot a report will open on your desktop.
Attach the report here in your next reply.





Step 3: ZHP Diag Scan


Click here to download.
Save to your desktop.
Right Click Run as Admin.
Click the Options button.
Click on Check All
Then click close.
Click the Scanner button.
When complete please push the report button.
A notepad will open... attach the report in your next reply.
 
4/13/2022 6:52:10 AM
Files scanned: 533184
Detected files: 5
Cleaned files: 5
Total scan time 05:09:18
Scan status: Finished
C:\bandicam crack\keymaker.exe Win32/Keygen.KL potentially unsafe application cleaned by deleting

C:\Gaming Stuff\snd-reversingwithlena-tutorials\snd-reversingwithlena-tutorial34.tutorial\files\Remind!-S&R-loader.exe a variant of Win32/HackTool.Patcher.N potentially unsafe application cleaned by deleting

C:\Program Files\Cheat Engine 7.0\dbk64.sys a variant of Win64/HackTool.CheatEngine.A potentially unsafe application cleaned by deleting

C:\Program Files\Cheat Engine 7.0\standalonephase1.dat a variant of Win32/HackTool.CheatEngine.AF potentially unsafe application cleaned by deleting

C:\Users\Ganja\Downloads\koplayer-1-4-1056.exe a variant of Win32/Adware.VrBrothers.AI potentially unwanted application cleaned by deleting
 
C:\bandicam crack\keymaker.exe Win32/Keygen.KL

You must agree to and uninstall your version of Bandicam as it seems to be a cracked version. PCHF does not support illegal software.

Please uninstall this program and post the requested logs, they will tell me if the program has been uninstalled.

Uninstall Bandicam or I will be forced to close this thread.
 
* * * * * * * * * * * * * * * * * * * * * * * * * * * * * *

Adware Removal Tool 5.1
Time: 2022_04_13_17_29_07
OS: Windows 10 Enterprise - x64 Bit
Account Name: Ganja
Adware Definition: 03292022
Elapsed time: 16:16
Scan Status:- Automatic Done

\\\\\\\\\\\\\\\\\\\\\\\ Scan Logs \\\\\\\\\\\\\\\\\\\\\\


No results found
 
~ ZHPCleaner v2022.4.10.24 by Nicolas Coolman (2022/04/10)
~ Run by Ganja (Administrator) (13/04/2022 18:12:23)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook : https://www.facebook.com/nicolascoolman1
~ State version : Version OK
~ Type : Repair
~ Report : C:\Users\Ganja\Desktop\ZHPCleaner (R).txt
~ Quarantine : C:\Users\Ganja\AppData\Roaming\ZHP\ZHPCleaner_Reg.txt
~ System Restore Point : OK
~ UAC : Deactivate
~ Boot Mode : Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 19042)


---\\ Alternate Data Stream (ADS). (0)
~ No malicious or unnecessary items found.


---\\ Services (0)
~ No malicious or unnecessary items found.


---\\ Browser internet (0)
~ No malicious or unnecessary items found.


---\\ Hosts file (1)
~ The hosts file is legitimate (1)


---\\ Scheduled automatic tasks. (0)
~ No malicious or unnecessary items found.


---\\ Explorer ( File, Folder) (5)
MOVED file: C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\Preferences =>Préférences Chromium
MOVED file: C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences =>Préférences Chromium
MOVED file: C:\Users\Ganja\AppData\Local\Microsoft\Edge\User Data\Default\Preferences =>Préférences Chromium
MOVED folder: C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc =>.SUP.Discord
MOVED folder: C:\Documents and Settings\Ganja\Application Data\Microsoft\Windows\Start Menu\Programs\Discord Inc =>.SUP.Discord


---\\ Registry ( Key, Value, Data) (4)
DELETED key*: HKEY_USERS\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Discord [] =>.SUP.Discord
DELETED key*: HKEY_USERS\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Classes\Discord [URL:Discord Protocol] =>.SUP.Discord
DELETED key**: HKCU\Software\Discord [] =>.SUP.Discord
DELETED key*: HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Discord [Discord Inc.] =>.SUP.Discord


---\\ Summary of the elements found (2)
https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>Préférences Chromium
https://nicolascoolman.eu/forum/Topic/Discord-logiciel-potentiellement-superflu-lps/ =>.SUP.Discord


---\\ Other deletions. (11)
~ Registry Keys Tracing deleted (9)
~ Remove the old reports ZHPCleaner. (2)


---\\ Result of repair
~ Repair carried out successfully
~ Google Chrome OK
~ Internet Explorer OK


---\\ Statistics
~ Items scanned : 1326
~ Items found : 0
~ Items cancelled : 0
~ Space saving (bytes) : 0
~ Items options : 9/17


---\\ OPTIONS NOT ACTIVES
~ Temporary file analysis
~ Temporary folder analysis
~ Empty Folder CLSID Analysis
~ Empty Other Folder Analysis
~ Empty LocalLow Folder Analysis
~ Empty Local Folder Analysis
~ Obsolete Installer File Analysis
~ Start browsers with extensions removed





~ End of clean in 00h00mn29s

---\\ Reports (2)
ZHPCleaner--13042022-18_07_53.txt
ZHPCleaner-[R]-13042022-18_12_52.txt


 
~ ZHPDiag v2022.4.10.24 By Nicolas Coolman (2022/04/10)
~ Run by Ganja (Administrator) (2022/04/13 18:18:05)
~ Assistance: https://forum.nicolascoolman.eu/
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\Ganja\Desktop\ZHPDiag.txt
~ Report: C:\Users\Ganja\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Deactivate
~ System startup: Normal (Normal boot)
Windows 10 Pro, 64-bit (Build 19042) =>.Microsoft Corporation

---\\ Internet Browsers (3) - 0s
~ GCIE: Google Chrome v99.0.4844.51
~ MSIE: Internet Explorer v11.789.19041.0
~ OBIE: Microsoft Edge v100.0.1185.36

---\\ Windows Product Information (3) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : KO

---\\ System protection software (1) - 1s
Windows Defender W10 (Activate) (Protection)

---\\ System optimization software (1) - 1s
~ CCleaner v5.91 (Optimisation)

---\\ Informations on the system (6) - 0s
~ Operating System: Intel64 Family 6 Model 142 Stepping 9, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4074.544 MB (23% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 783 GB (82%) free of 953 GB : OK =>.Disk Space

---\\ Connection to the system mode (3) - 0s
~ Computer Name: DESKTOP-V4BFEG5
~ User Name: Ganja
~ Logged in as Administrator

---\\ Enumeration of the disk units (1) - 0s
~ Drive C: has 783 GB free of 953 GB (System)

---\\ State of the Windows Security Center (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Search Generic System Files (25) - 2s
[MD5.25C8B9AE873248CD98AB17539F5B1F15] - 10/04/2022 - (.Microsoft Corporation - Windows Explorer.) -- C:\WINDOWS\Explorer.exe [4967688] =>.Microsoft®
[MD5.EF3179D498793BF4234F708D3BE28633] - 10/04/2022 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation
[MD5.FDA73105E744211CB0E28008882DAF21] - 10/04/2022 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\WINDOWS\System32\Wininit.exe [427192] [Unsigned] =>.Microsoft Corporation
[MD5.11F7419009AF2874C4B0E4505D185D79] - 10/04/2022 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\WINDOWS\System32\wininet.dll [5038592] [Unsigned] =>.Microsoft Corporation
[MD5.FC7F68EE85A3AE64D6E58C2B2D673793] - 10/04/2022 - (.Microsoft Corporation - Windows Log-on Application.) -- C:\WINDOWS\System32\Winlogon.exe [910336] [Unsigned] =>.Microsoft Corporation
[MD5.A01E533388EF4141854A72CB9F17B5BE] - 10/04/2022 - (.Microsoft Corporation - Software Licensing Library.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation
[MD5.914AE33E90AF8D3C19ED7678D56B4977] - 10/04/2022 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\System32\dnsapi.dll [820728] =>.Microsoft®
[MD5.1EAD098027CC4D0CD3A8DBE7FFA4D244] - 10/04/2022 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\WINDOWS\Syswow64\dnsapi.dll [581568] =>.Microsoft®
[MD5.CBD095290A7B0970D87AEB53A44D9018] - 10/04/2022 - (.Microsoft Corporation - Windows Update Agent.) -- C:\WINDOWS\System32\wuaueng.dll [3403776] [Unsigned] =>.Microsoft Corporation
[MD5.E04072187F967B0041C994CCCDB9E101] - 10/04/2022 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [651096] [Unsigned] =>.Microsoft Corporation
[MD5.AF0AA60DD36E4FA227F3C441B008336E] - 10/04/2022 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30032] [Unsigned] =>.Microsoft Corporation
[MD5.764FE2149251A246F6B047A0F09F5F0B] - 07/12/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation
[MD5.054ABC6C64AE969D033B7876C04D52B4] - 10/04/2022 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation
[MD5.3D3CCAFC76E02403E2963A2CB45D61F7] - 10/04/2022 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation
[MD5.4F39254C6E087D4789D2C3EBD3C7F744] - 10/04/2022 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [134656] [Unsigned] =>.Microsoft Corporation
[MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation
[MD5.F63572DF4295C78B3F7036AEDA878176] - 07/12/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [225280] [Unsigned] =>.Microsoft Corporation
[MD5.570402953F29A5AC0FBD2715454DED89] - 10/04/2022 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [579432] [Unsigned] =>.Microsoft Corporation
[MD5.49F7DE6F689C47B64A2C2D46CD98E327] - 10/04/2022 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation
[MD5.69B5F6B8793F3E59B84D08A70BB1240C] - 10/04/2022 - (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2851664] [Unsigned] =>.Microsoft Corporation
[MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation
[MD5.40CBDB4B80284451536C8CA49561E5CD] - 10/04/2022 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation
[MD5.64991B36F0BD38026F7589572C98E3D6] - 10/04/2022 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation
[MD5.2A8B28579A4964AA7EA8CEB1AC121243] - 10/04/2022 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117584] [Unsigned] =>.Microsoft Corporation
[MD5.988A7A685BB51BAC62F4E176BE5432AC] - 10/04/2022 - (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] [Unsigned] =>.Microsoft Corporation

---\\ No disabled Windows Services (59) - 2s
O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Windows Audio Endpoint Builder.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Windows Audio Service.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Base Filtering Engine.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Microsoft (R) CDP User Components.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Connected Devices Platform User Service_50f0b (CDPUserSvc_50f0b) . (.Microsoft Corporation - Host Process for Windows Services.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft®
O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHDCPSvc.exe =>.Intel(R) pGFX 2020®
O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc. - Conexant Audio Message Service.) - C:\WINDOWS\system32\CxAudMsg64.exe [Unsigned] =>.Conexant Systems Inc.
O23 - Service: C:\WINDOWS\System32\umpnpmgr.dll (DeviceInstall) . (.Microsoft Corporation - User-mode Plug-and-Play Service.) - C:\WINDOWS\System32\umpnpmgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - DHCP Client Service.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Desktop Display Broker.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - DNS Caching Resolver Service.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Host Process for Windows Services.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Data Usage Service.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: ESIF Upper Framework Service (esifsvc) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe [Unsigned] =>.Intel Corporation
O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Event Logging Service.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Windows Font Cache Service.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Group Policy Client.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: ICEsoundService (ICEsoundService) . (.ICEpower A/S - ICEpower ICEsound APO service.) - C:\Windows\System32\DriverStore\FileRepository\x40plmwa.inf_amd64_0fe274d0aafd5420\ICEsoundService64.exe {0B9DE2343AC13F9FDF2BC2D7F3A6C200}. =>.ICEpower a/s
O23 - Service: Intel(R) Graphics Command Center Service (igccservice) . (.Intel Corporation - Intel® Graphics Command Center Service.) - C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_54b736e5be5b50b2\OneApp.IGCC.WinService.exe =>.Intel(R) pGFX 2020®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxCUIService.exe =>.Intel(R) pGFX 2020®
O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - IKE extension.) - C:\WINDOWS\System32\ikeext.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Local Session Manager Service.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Microsoft Protection Service.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Network Location Awareness 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Network Store Interface RPC server.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Sync Host_50f0b (OneSyncSvc_50f0b) . (.Microsoft Corporation - Host Process for Windows Services.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - User-mode Power Service.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Remote Access Connection Manager.) - C:\WINDOWS\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - RPC Endpoint Mapper.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Conexant SmartAudio service (SAService) . (.Conexant Systems, Inc. - SmartAudio Service Application.) - C:\Windows\System32\SASrv.exe =>.Conexant Systems, Inc.®
O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Task Scheduler Service.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - System Guard Runtime Monitor Broker Service.) - C:\WINDOWS\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Microsoft Software Protection Platform Serv.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Storage Services.) - C:\WINDOWS\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - System Events Broker.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Service.) - C:\WINDOWS\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - Windows Connection Manager Service DLL.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wecsvc.dll (Wecsvc) . (.Microsoft Corporation - Event Collector Service.) - C:\WINDOWS\System32\wecsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2001.10-0\MsMpEng.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - Windows WLAN AutoConfig Service DLL.) - C:\WINDOWS\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Windows Push Notification System Service.) - C:\WINDOWS\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Windows Push Notification User Service.) - C:\WINDOWS\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Windows Push Notifications User Service_50f0b (WpnUserService_50f0b) . (.Microsoft Corporation - Host Process for Windows Services.) - C:\Windows\System32\svchost.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation

---\\ Services not Microsoft (SR=Run, SS=Stop) (99) - 6s
SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft®
SR - Disabl [09/10/2019] [ 3147344] Adobe Genuine Monitor Service (AGMService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe =>.Adobe Inc.®
SR - Disabl [09/10/2019] [ 2914896] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Inc.®
SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft®
SR - Auto [18/05/2020] [ 871296] aow_drv (aow_drv) . (.Tencent.) - C:\Program Files\TxGameAssistant\ui\3.21.808.100\aow_drv_x64_ev.sys =>.Tencent Technology (Shenzhen) Company Limited®
SR - Disabl [24/09/2020] [ 96056] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft®
SR - Demand [24/04/2019] [ 108504] ASUS Touch Service (AsusPTPDrv) . (.ASUSTek COMPUTER INC..) - C:\WINDOWS\System32\drivers\AsusPTPFilter.sys =>.ASUSTek Computer Inc.®
SR - Disabl [31/01/2019] [ 415992] AtherosSvc (AtherosSvc) . (.Qualcomm Atheros.) - C:\WINDOWS\System32\drivers\AdminService.exe =>.Qualcomm Atheros®
SR - Demand [21/05/2019] [ 4322552] Qualcomm Extensible Wire (athr) . (.Qualcomm Atheros Communications, Inc..) - C:\WINDOWS\System32\drivers\athw10x.sys =>.Qualcomm Atheros®
SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation
SR - Demand [31/01/2019] [ 69368] BtFilter (BtFilter) . (.Qualcomm.) - C:\WINDOWS\System32\drivers\btfilter.sys =>.Qualcomm Atheros®
SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft®
SR - Demand [05/01/2021] [ 3463992] Conexant U (CnxtHdAudService) . (.Conexant Systems Inc..) - C:\WINDOWS\System32\drivers\CHDRT64.sys =>.Synaptics Incorporated®
SS - Demand [11/09/2020] [ 513264] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHeciSvc.exe =>.Intel(R) pGFX 2020®
SR - Auto [11/09/2020] [ 527600] Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHDCPSvc.exe =>.Intel(R) pGFX 2020®
SR - Auto [20/10/2014] [ 207576] @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc..) - C:\WINDOWS\system32\CxAudMsg64.exe =>.Conexant Systems, Inc.®
SR - Disabl [29/11/2021] [ 130320] Dropbox Update Service (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc®
SR - Disabl [29/11/2021] [ 130320] Dropbox Update Service (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc®
SR - Disabl [26/02/2022] [ 44328] DbxSvc (DbxSvc) . (.Dropbox, Inc..) - C:\WINDOWS\System32\DbxSvc.exe =>.Dropbox, Inc®
SR - Demand [18/05/2016] [ 65088] (dptf_cpu) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\dptf_cpu.sys =>.Intel Corporation®
SR - Disabl [16/10/2019] [ 805488] EasyAntiCheat (EasyAntiCheat) . (.EasyAntiCheat Ltd.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe =>.EasyAntiCheat Oy®
SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft®
SR - Auto [19/05/2016] [ 1592064] ESIF Upper Framework Service (esifsvc) . (.Intel Corporation.) - C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe =>.Intel Corporation®
SR - Demand [19/05/2016] [ 343608] (esif_lf) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\esif_lf.sys =>.Intel Corporation®
SR - Disabl [27/02/2022] [ 1489240] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\elevation_service.exe =>.Google LLC®
SR - Disabl [29/02/2020] [ 156104] Google Update Service (gupdate) (gupdate) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC®
SR - Disabl [29/02/2020] [ 156104] Google Update Service (gupdatem) (gupdatem) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC®
SR - Demand [19/11/2020] [ 32696] ASUS Wireless Radio Control (HIDSwitch) . (.ASUS.) - C:\WINDOWS\System32\drivers\AsRadioControl.sys =>.ASUSTek Computer Inc.®
SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group®
SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation
SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft®
SR - Auto [05/01/2021] [ 817432] ICEsoundService (ICEsoundService) . (.ICEpower A/S.) - C:\Windows\System32\DriverStore\FileRepository\x40plmwa.inf_amd64_0fe274d0aafd5420\ICEsoundService64.exe {0B9DE2343AC13F9FDF2BC2D7F3A6C200}. =>.ICEpower a/s
SR - Auto [11/09/2020] [ 41200] Intel(R) Graphics Command Center Service (igccservice) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_54b736e5be5b50b2\OneApp.IGCC.WinService.exe =>.Intel(R) pGFX 2020®
SR - Demand [11/09/2020] [27076848] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\igdkmd64.sys =>.Intel(R) pGFX 2020®
SR - Auto [11/09/2020] [ 409328] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxCUIService.exe =>.Intel(R) pGFX 2020®
SR - Demand [11/09/2020] [ 349936] Intel(R) Display Audio (IntcDAud) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\intcdaud.inf_amd64_1b570d7b9a790b1a\IntcDAud.sys =>.Intel(R) pGFX 2020®
SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft®
SR - Auto [15/12/2021] [ 315232] LdVBoxDrv (LdVBoxDrv) . (.Oracle Corporation.) - C:\Program Files\ldplayerbox\LdVBoxDrv.sys {BE6F62A4E7D23882446460A8503B5F5A}. =>.Oracle Corporation
SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft®
SR - Demand [14/04/2016] [ 202848] Intel(R) Management Engine Interfac (MEIx64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group®
SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft®
SR - Demand [02/12/2019] [ 31736] MUDWFP (MUDWFP) . (. {21EDB2EF87AC6DA0A985561590036EAA}..) - C:\WINDOWS\System32\DRIVERS\MUDWFP.sys {21EDB2EF87AC6DA0A985561590036EAA}.
SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft®
SR - Auto [12/01/2022] [ 299240] NemuDrv (NemuDrv) . (.NetEase Corporation.) - C:\Program Files\NemuVbox\LoadedDrivers\NemuDrv.sys {6E784D426DC9B224B766A95D34B03A8E}.
SR - Demand [18/04/2020] [ 37824] VPN Client Device Driver (Neo_VPN) . (.SoftEther Corporation.) - C:\WINDOWS\System32\drivers\Neo6_x64_VPN.sys =>.SoftEther Corporation®
SR - Demand [10/01/2020] [ 23040] Apple Mobile Device Ethernet Service (Netaapl) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\netaapl64.sys [Unsigned] =>.Apple Inc.
SS - Demand [00/00/0000] [ 0] nProtect GameGuard Service (npggsvc) . (...) - C:\Windows\System32\GameMon.des (.not file.) [Unsigned] =>.INCA Internet
SR - Auto [12/04/2020] [ 883088] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
SR - Demand [12/04/2020] [23446760] (nvlddmkm) . (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\nvlddmkm.sys =>.NVIDIA Corporation®
SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft®
SR - Disabl [21/04/2020] [ 197712] QMEmulatorService (QMEmulatorService) . (.Tencent.) - C:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe =>.Tencent Technology(Shenzhen) Company Limited®
SR - Demand [19/03/2020] [ 1162832] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.®
SR - Auto [27/10/2016] [ 416576] Conexant SmartAudio service (SAService) . (.Conexant Systems, Inc..) - C:\Windows\System32\SASrv.exe =>.Conexant Systems, Inc.®
SR - System [18/04/2020] [ 50624] SoftEther Lightweight Networ (SeLow) . (.SoftEther Corporation.) - C:\WINDOWS\System32\DRIVERS\SeLow_x64.sys =>.SoftEther Corporation®
SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft®
SR - Demand [02/12/2019] [ 31232] TAP-Win32 Adapter V9 (tap0901) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tap0901.sys [Unsigned] =>.The OpenVPN Project
SR - System [11/09/2017] [ 271600] TBox Support Driver (TBoxDrv) . (.Hyperv Corporation.) - C:\Program Files\AndroidTbox\TBoxDrv.sys =>.Tencent Technology(Shenzhen) Company Limited®
SR - Demand [29/06/2020] [ 812208] tesrsdt (tesrsdt) . (.TENCENT.) - C:\Windows\system32\drivers\tesrsdt.sys =>.Tencent Technology(Shenzhen) Company Limited®
SR - Demand [29/06/2020] [ 581912] UniSafe (UniSafe) . (.TENCENT.) - C:\Windows\system32\drivers\UniSafe.sys =>.Tencent Technology(Shenzhen) Company Limited®
SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft®
SR - System [09/04/2022] [ 312776] Nox Limited Service (YSDrv) . (.Nox Limited Corporation.) - C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys =>.Microsoft®

---\\ Task Planned Automatically (Register) (14) - 9s
O38 - TASK: {21F74A47-3424-418E-A53B-4E2562C05ABA} [64Bits][\DropboxUpdateTaskMachineCore] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320] =>.Dropbox, Inc.
O38 - TASK: {35C3CE0C-6E9C-4368-8970-5A1EC2984974} [64Bits][\EOSv3 Scheduler onTime] - (.ESET - ESET Online Scanner.) -- C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [21737944] =>.ESET
O38 - TASK: {A35BAD01-9115-4CE5-8E83-CE0363167108} [64Bits][\AdobeGCInvoker-1.0] - (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2872400] =>.Adobe Systems, Incorporated
O38 - TASK: {A9461498-6A3F-4F98-B10D-680CD902F8BB} [64Bits][\EOSv3 Scheduler onLogOn] - (.ESET - ESET Online Scanner.) -- C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [21737944] =>.ESET
O38 - TASK: {B40A30F0-F3F8-4F31-B890-EEC38512349B} [64Bits][\Microsoft\Windows\Conexant\SA2] - (.Conexant Systems, Inc. - SmartAudio CPL (32bit).) -- C:\Program Files\CONEXANT\SAII\SACpl.exe [1832280] =>.Conexant Systems, Inc.
O38 - TASK: {DC0F9DAF-1B83-45D9-AA91-B9C6BD78042B} [64Bits][\DropboxUpdateTaskMachineUA] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320] =>.Dropbox, Inc.
O38 - TASK: {E8D71E94-B741-496F-BAFF-AFADFF2255A0} [64Bits][\Microsoft\Windows\Conexant\AFA] - (.Conexant Systems, Inc. - SmartAudio CPL (32bit).) -- C:\Program Files\CONEXANT\cAudioFilterAgent\SACpl.exe [1823232] =>.Conexant Systems, Inc.
C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [/c] =>.Dropbox, Inc.
C:\WINDOWS\System32\Tasks\EOSv3 Scheduler onTime - (.ESET.) -- C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [SCHED] =>.ESET
C:\WINDOWS\System32\Tasks\AdobeGCInvoker-1.0 - (.Adobe Systems, Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [-mode=scheduled] =>.Adobe Systems, Incorporated
C:\WINDOWS\System32\Tasks\EOSv3 Scheduler onLogOn - (.ESET.) -- C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [LOGON] =>.ESET
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Conexant\SA2 - (.Conexant Systems, Inc..) -- C:\Program Files\CONEXANT\SAII\SACpl.exe [/c ./c] =>.Conexant Systems, Inc.
C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [/ua ./ua] =>.Dropbox, Inc.
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Conexant\AFA - (.Conexant Systems, Inc..) -- C:\Program Files\CONEXANT\cAudioFilterAgent\SACpl.exe [/uid:cAudioFilterAgent] =>.Conexant Systems, Inc.

---\\ Auto loading programs from Registry and folders (13) - 3s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Run: [AdobeGCInvoker-1.0] . (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe =>.Adobe Inc.®
O4 - HKLM\..\Run: [BCSSync] . (.Microsoft Corporation - Microsoft Office 2010 component.) -- C:\Program Files\Microsoft Office\Office14\BCSSync.exe =>.Microsoft®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd®
O4 - HKCU\..\Run: [NoxMultiPlayer] . (...) -- C:\Program Files (x86)\Nox\bin\MultiPlayerManager.exe {0EE046089841742E8E7719016790622B}.
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKLM\..\Wow6432Node\Run: [Dropbox] . (.Dropbox, Inc. - Dropbox.) -- C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc®
O4 - HKUS\S-1-5-21-3947486154-1424391867-2577238500-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - HKUS\S-1-5-21-3947486154-1424391867-2577238500-1001\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd®
O4 - HKUS\S-1-5-21-3947486154-1424391867-2577238500-1001\..\Run: [NoxMultiPlayer] . (...) -- C:\Program Files (x86)\Nox\bin\MultiPlayerManager.exe {0EE046089841742E8E7719016790622B}.

---\\ Process running (25) - 5s
[MD5.B9B6CA44BB89F814084D04B7DCF85ED6] - (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) -- C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHDCPSvc.exe [527600] [PID.1712] =>.Intel(R) pGFX 2020®
[MD5.FA982D3189B9D683D4EE8F814F11D992] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\NVDisplay.Container.exe [883088] [PID.1976] =>.NVIDIA Corporation®
[MD5.5E7EA9CA8FBA5925C184BE86EC90D2C5] - (.Intel Corporation - IntelCpHeciSvc Executable.) -- C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHeciSvc.exe [513264] [PID.1748] =>.Intel(R) pGFX 2020®
[MD5.00FA87158A61EDD41D7DC71BF435A711] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxCUIService.exe [409328] [PID.2300] =>.Intel(R) pGFX 2020®
[MD5.FA982D3189B9D683D4EE8F814F11D992] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\NVDisplay.Container.exe [883088] [PID.2648] =>.NVIDIA Corporation®
[MD5.07F3534C07C5110E9A424C04634C4A8D] - (.Conexant Systems Inc. - Conexant Audio Message Service.) -- C:\Windows\System32\CxAudMsg64.exe [207576] [PID.3468] [Unsigned] =>.Conexant Systems Inc.
[MD5.320D14F293288A92A67FAE822624D3E7] - (.Intel Corporation - Intel® Graphics Command Center Service.) -- C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_54b736e5be5b50b2\OneApp.IGCC.WinService.exe [41200] [PID.3476] =>.Intel(R) pGFX 2020®
[MD5.6F3A5BDDFC17DD4A3E0F9F8AC809C5FD] - (.Conexant Systems, Inc. - SmartAudio Service Application.) -- C:\Windows\System32\SASrv.exe [416576] [PID.3484] =>.Conexant Systems, Inc.®
[MD5.9881CA7CD8792905DDA7109613B5F055] - (.ICEpower A/S - ICEpower ICEsound APO service.) -- C:\Windows\System32\DriverStore\FileRepository\x40plmwa.inf_amd64_0fe274d0aafd5420\ICEsoundService64.exe [817432] [PID.3548] {0B9DE2343AC13F9FDF2BC2D7F3A6C200}. =>.ICEpower a/s
[MD5.8F6A6F22FF33DECBBC89F574CB54A2F3] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe [1592064] [PID.3724] [Unsigned] =>.Intel Corporation
[MD5.01DDF9BC7198C71B445ED89B8EDD660B] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\Temp\DPTF\esif_assist_64.exe [254184] [PID.1420] =>.Intel Corporation®
[MD5.8EE9FF6DC61DC96A69FF9DB0F3F30A98] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxEM.exe [896752] [PID.5424] =>.Intel(R) pGFX 2020®
[MD5.5CDDF06A40E89358807A2B9506F064D9] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [793416] [PID.6032] =>.Microsoft®
[MD5.1DB4EE21CDF12711DA62D0361EFE33AB] - (.Intel Corporation - IGCC.) -- C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3407.0_x64__8j3eq9eme6ctt\IGCC.exe [20480] [PID.6688] [Unsigned] =>.Intel Corporation
[MD5.0D769AB9BF218DAC9B3E6D257B3BFAC2] - (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe [604496] [PID.6488] =>.Conexant Systems LLC®
[MD5.3892AD0CC7DC6564D98EA5894A709857] - (.Conexant Systems, Inc - SmartAudio.) -- C:\Program Files\CONEXANT\SAII\SmartAudio.exe [1100112] [PID.6496] =>.Conexant Systems LLC®
[MD5.8044B568747388B47D366A6CCE6198C2] - (...) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2021.21090.10008.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [756224] [PID.7000] [Unsigned] =>.Microsoft Corporation
[MD5.E29E507A9742C2DADCAD126734FF5695] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2623832] [PID.3932] =>.Google LLC®
[MD5.E29E507A9742C2DADCAD126734FF5695] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2623832] [PID.6436] =>.Google LLC®
[MD5.E29E507A9742C2DADCAD126734FF5695] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2623832] [PID.3292] =>.Google LLC®
[MD5.E29E507A9742C2DADCAD126734FF5695] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2623832] [PID.5336] =>.Google LLC®
[MD5.E29E507A9742C2DADCAD126734FF5695] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2623832] [PID.8068] =>.Google LLC®
[MD5.E29E507A9742C2DADCAD126734FF5695] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2623832] [PID.4684] =>.Google LLC®
[MD5.E29E507A9742C2DADCAD126734FF5695] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2623832] [PID.5520] =>.Google LLC®
[MD5.7FBFB92E4E16C822D6C186838A812B19] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Ganja\AppData\Roaming\ZHP\ZHPDiag3.exe [3287240] [PID.4736] [Unsigned] =>.Nicolas Coolman

---\\ Google Chrome, Start,Search,Extensions (3) - 1s
G2 - GCE: Preference [Ganja][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [Ganja][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [Ganja][User Data\Default\Local Extension Settings] [glcimepnljoholdmjchkloafkggfoijh] =>.Legitimate

---\\ Internet Explorer Extensions, Start, Search (15) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Browser.) (11.00.19041.1503 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, trusted site and sensitive site (1) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)

---\\ Microsoft Edge,Plugins,Start,Search,Extensions (1) - 0s
E2 - GCE: Preference [Ganja][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation

---\\ Internet Explorer, Proxy Management (3) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 0s
F2 - REG:system.ini: UserInit=
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ Hosts file redirection (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (1)

---\\ Browser Helper Object (BHO) (2) - 0s
O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\BHO\ie_to_edge_bho_64.dll =>.Microsoft®
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL =>.Microsoft®

---\\ Global shortcuts Startup (85) - 15s
O4 - GS\Desktop [Administrator]: BloonsTK.exe - Shortcut.lnk . (.ClassicTK - ClassicTK.) C:\Games\BloonsTK\BloonsTK.exe [Unsigned]
O4 - GS\Desktop [Administrator]: ESET Online Scanner.lnk . (.ESET - ESET Online Scanner.) C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe =>.ESET, spol. s r.o.®
O4 - GS\Desktop [Administrator]: Nox Asst.lnk . (...) C:\Program Files (x86)\Nox\bin\MultiPlayerManager.exe {0EE046089841742E8E7719016790622B}.
O4 - GS\Desktop [Administrator]: Nox.lnk . (.Duodian Technology Co. Ltd. - NoxPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe {0EE046089841742E8E7719016790622B}. =>.Duodian Technology Co. Ltd.
O4 - GS\Desktop [Administrator]: Redfinger.lnk . (...) C:\Program Files (x86)\RedFingerPlayerGlobal\RedFingerPlayerGlobal.exe [Unsigned]
O4 - GS\Desktop [Administrator]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Ganja\AppData\Roaming\ZHP\ZHPCleaner.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Ganja\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\sendTo [Administrator]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation
O4 - GS\TaskBar [Administrator]: CCleaner.lnk . (.Piriform Software Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe [Unsigned] =>.Piriform Software Ltd
O4 - GS\TaskBar [Administrator]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\TaskBar [Administrator]: GRF Editor.lnk . (...) C:\Program Files (x86)\GRF Editor\GRF Editor.exe [Unsigned]
O4 - GS\TaskBar [Administrator]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\TaskBar [Administrator]: Mudfish Launcher.lnk . (.by Mudfish Networks - Mudfish Launcher.) C:\Program Files (x86)\Mudfish Cloud VPN\mudrun.exe {00B6A30C06CEC6A72F77268A6069BFBDE2}.
O4 - GS\TaskBar [Administrator]: Visual Studio 2019.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2019.) C:\Program Files (x86)\Microsoft Visual Studio\2019\Professional\Common7\IDE\devenv.exe =>.Microsoft®
O4 - GS\TaskBar [Administrator]: x64dbg.lnk . (.x64dbg.com - x64dbg.) C:\debugger\release\x96dbg.exe {4E0B86EECF78E905EF7CA498D841EA16}. =>.x64dbg.com
O4 - GS\Programs [Administrator]: ESET Online Scanner.lnk . (.ESET - ESET Online Scanner.) C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe =>.ESET, spol. s r.o.®
O4 - GS\Programs [Administrator]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Desktop [Ganja]: BloonsTK.exe - Shortcut.lnk . (.ClassicTK - ClassicTK.) C:\Games\BloonsTK\BloonsTK.exe [Unsigned]
O4 - GS\Desktop [Ganja]: ESET Online Scanner.lnk . (.ESET - ESET Online Scanner.) C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe =>.ESET, spol. s r.o.®
O4 - GS\Desktop [Ganja]: Nox Asst.lnk . (...) C:\Program Files (x86)\Nox\bin\MultiPlayerManager.exe {0EE046089841742E8E7719016790622B}.
O4 - GS\Desktop [Ganja]: Nox.lnk . (.Duodian Technology Co. Ltd. - NoxPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe {0EE046089841742E8E7719016790622B}. =>.Duodian Technology Co. Ltd.
O4 - GS\Desktop [Ganja]: Redfinger.lnk . (...) C:\Program Files (x86)\RedFingerPlayerGlobal\RedFingerPlayerGlobal.exe [Unsigned]
O4 - GS\Desktop [Ganja]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Ganja\AppData\Roaming\ZHP\ZHPCleaner.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Desktop [Ganja]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Ganja\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Quicklaunch [Ganja]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\sendTo [Ganja]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\sendTo [Ganja]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation
O4 - GS\TaskBar [Ganja]: CCleaner.lnk . (.Piriform Software Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe [Unsigned] =>.Piriform Software Ltd
O4 - GS\TaskBar [Ganja]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\TaskBar [Ganja]: GRF Editor.lnk . (...) C:\Program Files (x86)\GRF Editor\GRF Editor.exe [Unsigned]
O4 - GS\TaskBar [Ganja]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\TaskBar [Ganja]: Mudfish Launcher.lnk . (.by Mudfish Networks - Mudfish Launcher.) C:\Program Files (x86)\Mudfish Cloud VPN\mudrun.exe {00B6A30C06CEC6A72F77268A6069BFBDE2}.
O4 - GS\TaskBar [Ganja]: Visual Studio 2019.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2019.) C:\Program Files (x86)\Microsoft Visual Studio\2019\Professional\Common7\IDE\devenv.exe =>.Microsoft®
O4 - GS\TaskBar [Ganja]: x64dbg.lnk . (.x64dbg.com - x64dbg.) C:\debugger\release\x96dbg.exe {4E0B86EECF78E905EF7CA498D841EA16}. =>.x64dbg.com
O4 - GS\Programs [Ganja]: ESET Online Scanner.lnk . (.ESET - ESET Online Scanner.) C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe =>.ESET, spol. s r.o.®
O4 - GS\Programs [Ganja]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Desktop [Guest]: BloonsTK.exe - Shortcut.lnk . (.ClassicTK - ClassicTK.) C:\Games\BloonsTK\BloonsTK.exe [Unsigned]
O4 - GS\Desktop [Guest]: ESET Online Scanner.lnk . (.ESET - ESET Online Scanner.) C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe =>.ESET, spol. s r.o.®
O4 - GS\Desktop [Guest]: Nox Asst.lnk . (...) C:\Program Files (x86)\Nox\bin\MultiPlayerManager.exe {0EE046089841742E8E7719016790622B}.
O4 - GS\Desktop [Guest]: Nox.lnk . (.Duodian Technology Co. Ltd. - NoxPlayer.) C:\Program Files (x86)\Nox\bin\Nox.exe {0EE046089841742E8E7719016790622B}. =>.Duodian Technology Co. Ltd.
O4 - GS\Desktop [Guest]: Redfinger.lnk . (...) C:\Program Files (x86)\RedFingerPlayerGlobal\RedFingerPlayerGlobal.exe [Unsigned]
O4 - GS\Desktop [Guest]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Ganja\AppData\Roaming\ZHP\ZHPCleaner.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Ganja\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\sendTo [Guest]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\sendTo [Guest]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation
O4 - GS\TaskBar [Guest]: CCleaner.lnk . (.Piriform Software Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe [Unsigned] =>.Piriform Software Ltd
O4 - GS\TaskBar [Guest]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\TaskBar [Guest]: GRF Editor.lnk . (...) C:\Program Files (x86)\GRF Editor\GRF Editor.exe [Unsigned]
O4 - GS\TaskBar [Guest]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\TaskBar [Guest]: Mudfish Launcher.lnk . (.by Mudfish Networks - Mudfish Launcher.) C:\Program Files (x86)\Mudfish Cloud VPN\mudrun.exe {00B6A30C06CEC6A72F77268A6069BFBDE2}.
O4 - GS\TaskBar [Guest]: Visual Studio 2019.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2019.) C:\Program Files (x86)\Microsoft Visual Studio\2019\Professional\Common7\IDE\devenv.exe =>.Microsoft®
O4 - GS\TaskBar [Guest]: x64dbg.lnk . (.x64dbg.com - x64dbg.) C:\debugger\release\x96dbg.exe {4E0B86EECF78E905EF7CA498D841EA16}. =>.x64dbg.com
O4 - GS\Programs [Guest]: ESET Online Scanner.lnk . (.ESET - ESET Online Scanner.) C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe =>.ESET, spol. s r.o.®
O4 - GS\Programs [Guest]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: Binance.lnk . (.BinanceTech - Binance.) C:\Program Files\Binance\Binance.exe =>.Binance Holdings Limited®
O4 - GS\CommonDesktop [Public]: MuMu Multi-Drive.lnk . (.网易游戏 - MuMu Multi Player.) C:\Program Files\MuMu\emulator\nemu\EmulatorShell\NemuMultiPlayer.exe {024453709C84725B990371856B0E50E0}.
O4 - GS\CommonDesktop [Public]: MuMu Player.lnk . (.NetEase, Inc. - MuMu Player.) C:\Program Files\MuMu\emulator\nemu\EmulatorShell\NemuPlayer.exe {024453709C84725B990371856B0E50E0}.
O4 - GS\CommonDesktop [Public]: Ragnarok Online.lnk . (...) C:\Games\Gravity\Ragnarok.exe {4A39CFE869DE11482DDD70F99C1EF777}.
O4 - GS\Programs [Public]: ESET Online Scanner.lnk . (.ESET - ESET Online Scanner.) C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe =>.ESET, spol. s r.o.®
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Ganja\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\WINDOWS\system32\notepad.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\WINDOWS\system32\mstsc.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\WINDOWS\system32\SnippingTool.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Steps Recorder.) C:\WINDOWS\system32\psr.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\WINDOWS\system32\charmap.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2019.lnk . (.Adobe Systems Incorporated - Adobe Photoshop CC 2019.) C:\Program Files (x86)\Adobe\Adobe Photoshop CC 2019\Photoshop.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{A3985C05-7386-411F-A4BF-32A73F37EB44}\AppleSoftwareUpdateIco.exe [Unsigned] =>.Apple Inc.
O4 - GS\ProgramsCommon [Public]: Binance.lnk . (.BinanceTech - Binance.) C:\Program Files\Binance\Binance.exe =>.Binance Holdings Limited®
O4 - GS\ProgramsCommon [Public]: Blend for Visual Studio 2019.lnk . (.Microsoft Corporation - Blend for Visual Studio.) C:\Program Files (x86)\Microsoft Visual Studio\2019\Professional\Common7\IDE\Blend.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: PC Health Check.lnk . (...) C:\Program Files (x86)\PCHealthCheck\PCHealthCheck.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Visual Studio 2019.lnk . (.Microsoft Corporation - Microsoft Visual Studio 2019.) C:\Program Files (x86)\Microsoft Visual Studio\2019\Professional\Common7\IDE\devenv.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Visual Studio Installer.lnk . (.Microsoft Corporation - Visual Studio Installer.) C:\Program Files (x86)\Microsoft Visual Studio\Installer\vs_installer.exe =>.Microsoft®

---\\ Lop.com/Domain Hijackers (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.43.193 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{bff8e11e-7cb0-43cd-8ed2-84f8481e005d}: DhcpNameServer = 192.168.43.193 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{fc72d37d-562e-4e97-a7cf-ea1989188cd8}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress

---\\ Extra protocols (24) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft®
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807573E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ AppInit_DLLs Registry value Autorun (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Userinit Log-on Application.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ List of key exploring StartupApproved (27) - 1s
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord =>.SUP.Discord
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:IDMan =>.Tonec Inc
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Steam =>.Valve
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:NoxMultiPlayer
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:regedit.lnk
[HKEY_USERS\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation
[HKEY_USERS\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord =>.SUP.Discord
[HKEY_USERS\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:IDMan =>.Tonec Inc
[HKEY_USERS\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Steam =>.Valve
[HKEY_USERS\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:NoxMultiPlayer
[HKEY_USERS\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:regedit.lnk
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AdobeAAMUpdater-1.0 =>.Adobe Inc.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AdobeGCInvoker-1.0
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:iTunesHelper =>.Apple Inc.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:BCSSync =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SoftEther VPN Client UI Helper
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:RazerCortex =>.Razer Inc
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:AdobeAAMUpdater-1.0 =>.Adobe Inc.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:AdobeGCInvoker-1.0
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Dropbox =>.Dropbox Inc.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Mirroring360
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:SoftEther VPN Client Manager Startup.lnk

---\\ ASIC (ActiveSetup Installed Components) (7) - 1s
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - IE Per-User Initialisation Utility.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\Installer\chrmstp.exe =>.Google LLC®
O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\100.0.1185.36\Installer\setup.exe =>.Microsoft®

---\\ Software installed (338) - 44s
O42 - Logiciel: 7-Zip 21.07 (x64) - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip [Unsigned] =>.Igor Pavlov
O42 - Logiciel: Act Editor version 1.1.0 - (..) [HKLM][64Bits] -- Act Editor_is1 [Unsigned]
O42 - Logiciel: Adobe Photoshop CC 2019 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- PHSP_20_0_1 =>.Adobe Systems Incorporated®
O42 - Logiciel: Apple Mobile Device Support - (.Apple Inc..) [HKLM][64Bits] -- {F9CEF01A-3907-4614-824F-CF5D3E4675EF} [Unsigned] =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {A3985C05-7386-411F-A4BF-32A73F37EB44} [Unsigned] =>.Apple Inc.
O42 - Logiciel: Application Verifier x64 External Package - (.Microsoft.) [HKLM][64Bits] -- {10CA1677-8F02-3131-F25C-780BAB52E468} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: AutoHotkey 1.1.33.10 - (.Lexikos.) [HKLM][64Bits] -- AutoHotkey [Unsigned] =>.Lexikos
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Software Ltd®
O42 - Logiciel: Cheat Engine 7.0 - (.Cheat Engine.) [HKLM][64Bits] -- Cheat Engine 7.0_is1 =>.Cheat Engine®
O42 - Logiciel: ClickOnce Bootstrapper Package for Microsoft .NET Framework - (.Microsoft Corporation.) [HKLM][64Bits] -- {0243F145-076D-423A-8F77-218DC8840261} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems LLC®
O42 - Logiciel: Definition Update for Microsoft Office 2010 (KB3115475) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{2F7967D2-535C-4D3A-AEE8-CC9C204E7586} =>.Microsoft Corporation®
O42 - Logiciel: DiagnosticsHub_CollectionService - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F3C3AAC-9F7A-47DA-A082-0ACE770041BE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Dropbox - (.Dropbox, Inc..) [HKLM][64Bits] -- Dropbox =>.Dropbox, Inc®
O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} [Unsigned] =>.Dropbox, Inc. (Hidden)
O42 - Logiciel: Entity Framework 6.2.0 Tools for Visual Studio 2019 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7C2070BF-8E07-4B5F-A182-FADB0B95AB39} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Gameloop - (.Tencent Technology Company.) [HKLM][64Bits] -- MobileGamePC =>.Tencent Technology(Shenzhen) Company Limited®
O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC®
O42 - Logiciel: GRF Editor version 1.7.9.5 - (..) [HKLM][64Bits] -- GRF Editor_is1 [Unsigned]
O42 - Logiciel: HxD Hex Editor 2.3 - (.Maël Hörz.) [HKLM][64Bits] -- HxD_is1 [Unsigned] =>.Maël Hörz
O42 - Logiciel: icecap_collection_neutral - (.Microsoft Corporation.) [HKLM][64Bits] -- {929EAD9A-42D2-4FC7-B7E6-529AAD5F6D0D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: icecap_collection_x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {84EC5964-D540-4494-9043-BF7BEE37D1E1} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: icecap_collectionresources - (.Microsoft Corporation.) [HKLM][64Bits] -- {16D7574C-1007-4A85-93FF-666E74AD60D2} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: icecap_collectionresourcesx64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F5C67FC5-BF18-4304-9268-A971876B245A} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Intel(R) Graphics Driver Software - (.Intel.) [HKLM][64Bits] -- {7d2bdb54-268a-4ce6-8063-a6cad97dba41} =>.IntelGfxReleaseExternal2020® (Hidden)
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel®
O42 - Logiciel: IntelliTraceProfilerProxy - (.Microsoft Corporation.) [HKLM][64Bits] -- {1C92D642-AD8C-4319-8E7B-5D6AA55F430B} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: IntelliTraceProfilerProxy - (.Microsoft Corporation.) [HKLM][64Bits] -- {7D94CF67-6666-4111-B027-D7AB7F189F70} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Kits Configuration Installer - (.Microsoft.) [HKLM][64Bits] -- {63AAA877-5536-9481-2385-28A082100D78} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft .NET Core 2.1 Templates 3.1.201 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {8CA6CB88-5BD7-43EC-A512-60B06CB175BA} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core 3.1 Templates 3.1.201 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {5F1749AA-5952-4C58-83A0-491C3FB670DB} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core 3.1 Templates 3.1.417 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {24764607-7353-45A3-B41D-B0E27DFD9324} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core AppHost Pack - 3.1.23 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {832FC239-AE54-4957-AFC3-67A723C2883C} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core AppHost Pack - 3.1.23 (x64_arm) - (.Microsoft Corporation.) [HKLM][64Bits] -- {643977DC-2D85-4198-B73B-D287098396F8} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core AppHost Pack - 3.1.23 (x64_arm64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {B0D52F62-1A2D-4023-8799-E8554E7E913E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core AppHost Pack - 3.1.23 (x64_x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {112516EB-23D5-4F3A-AD7B-3AB68DC30E72} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core AppHost Pack - 3.1.3 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {EC143F9C-DB78-44D4-9D57-DB9E8817A759} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core AppHost Pack - 3.1.3 (x64_arm) - (.Microsoft Corporation.) [HKLM][64Bits] -- {61EDE4EB-E98C-47FE-BDA0-783067AE9770} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core AppHost Pack - 3.1.3 (x64_arm64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {D14AD32F-059A-435B-B920-14934A177552} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core AppHost Pack - 3.1.3 (x64_x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {C9A5D681-0618-4A1B-8444-5D2BF9B35D79} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Host - 2.1.30 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {8FD66631-B964-4E12-92E1-A8A4CAD5D14C} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Host - 3.1.23 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9C7A4D28-C2E1-4CA7-A1F3-603049ED2937} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Host - 3.1.23 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {50C787F3-AD71-498F-96AE-748293C32704} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Host - 3.1.3 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {3FCA57CB-43E8-4010-9EAD-5A160415C21A} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Host FX Resolver - 2.1.30 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {EB291DFA-DEDE-4355-98D9-17F95E91C437} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Host FX Resolver - 3.1.23 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {7FF9BE57-3115-4282-BC9A-7FAB77C27235} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Host FX Resolver - 3.1.23 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {C3E7A321-C146-47B7-9E3B-706A21031272} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Host FX Resolver - 3.1.3 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {C9C2C8AF-2311-4B95-A96A-F05C08DF3F63} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Host FX Resolver - 3.1.3 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {672AD782-9047-4F2B-ADD8-3A4D14FA1543} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Runtime - 2.1.17 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {2239C6B6-4ADC-4763-8AE1-8C63F6BFBE83} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Runtime - 2.1.30 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92A0517D-D5F9-4D8F-87F9-83ABC04240C2} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Runtime - 2.1.30 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {e6e5b73d-9aea-4a61-9110-4f93d1b9bc75} =>.Microsoft®
O42 - Logiciel: Microsoft .NET Core Runtime - 3.1.23 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {81EDF4A0-FC57-48C3-B26A-E90C2DC266CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Runtime - 3.1.23 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {E40BC6AB-5820-4457-A2B9-2C628F8C7BFA} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Runtime - 3.1.3 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {1A4BD749-610A-4E36-A697-BDED2A6643E3} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Runtime - 3.1.3 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {E7C7A69B-34C1-463C-8789-6E5AB73A1277} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core SDK 3.1.201 (x64) from Visual Studio - (.Microsoft Corporation.) [HKLM][64Bits] -- {AE0BA5F1-D63A-4784-944F-114B82FB8202} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Core SDK 3.1.417 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {544cc8ed-e21c-4242-ab28-a1e70824f769} =>.Microsoft®
O42 - Logiciel: Microsoft .NET Core Targeting Pack - 3.1.0 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {31EDE1E7-C855-4633-9D73-56F566136567} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Toolset 3.1.201 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0123CF7-E987-4454-8D59-B1CF4A2F4BC6} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Core Toolset 3.1.417 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {40E525F8-4526-456F-8B8F-D74A40D2D019} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET CoreRuntime For CoreCon - (.Microsoft Corporation.) [HKLM][64Bits] -- {48A8F171-52F2-372B-8414-EA50617708BE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET CoreRuntime SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {12702494-9E6A-3F5E-9441-2B7D258A639B} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4 Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.5 Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {56E962F0-4FB0-3C67-88DB-9EAA6EEFC493} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.5.1 Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {6A0C6700-EA93-372C-8871-DCCF13D160A4} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.5.2 Multi-Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {19E8AE59-4D4A-3534-B567-6CC08FA4102E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.6 Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.6.1 Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {8BC3EEC9-090F-4C53-A8DA-1BEC913040F9} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.7.2 Targeting Pack - (.Microsoft Corporation.) [HKLM][64Bits] -- {1784A8CD-F7FE-47E2-A87D-1F31E7242D0D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.7.2 Targeting Pack (ENU) - (.Microsoft Corporation.) [HKLM][64Bits] -- {B517DBD3-B542-4FC8-9957-FFB2C3E65D1D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.8 SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {949C0535-171C-480F-9CF4-D25C9E60FE88} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework Cumulative Intellisense Pack for Visual Studio (EN - (.Microsoft Corporation.) [HKLM][64Bits] -- {C33E412F-4981-4953-825C-9DEA45ABEC01} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Native SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {EF0C772D-F5E3-36D0-BDAB-FD378533CD40} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Standard Targeting Pack - 2.1.0 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {A7036CFB-B403-4598-85FF-D397ABB88173} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft ASP.NET Core 2.1.17 Shared Framework (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {62B81036-B82F-3788-A47B-546459818811} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft ASP.NET Core 2.1.30 - Shared Framework - (.Microsoft Corporation.) [HKLM][64Bits] -- {614a1747-bef3-44e7-86a8-799e4d2ab88d} =>.Microsoft®
O42 - Logiciel: Microsoft ASP.NET Core 2.1.30 Shared Framework (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {3F0FA3FE-95FA-3B48-ABD1-46FB4DA4021E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft ASP.NET Core 3.1.10 Targeting Pack (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {FEA48357-CE2F-3ED0-B2A0-8548BEC6F111} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft ASP.NET Core 3.1.23 - Shared Framework (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {8956749b-efd9-463b-9bcf-697d196c0c8a} =>.Microsoft®
O42 - Logiciel: Microsoft ASP.NET Core 3.1.23 Shared Framework (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {5673D71A-7C3A-3C2E-BF77-EA4890864EE4} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft ASP.NET Core 3.1.23 Shared Framework (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {BF9694C8-23BA-3602-991A-1008206AB753} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft ASP.NET Core 3.1.3 Shared Framework (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {7A7C3976-250D-3C98-8010-EA18A8601A12} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft ASP.NET Core 3.1.3 Shared Framework (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {5C7D8ED1-94E3-377E-BB2F-D20CA97F8A6F} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft ASP.NET Core 3.1.3 Targeting Pack (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0DDEAE87-9909-334B-A5AA-6CF9A9E3F170} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge =>.Microsoft®
O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Excel 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office14.EXCEL =>.Microsoft®
O42 - Logiciel: Microsoft NetStandard SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {737FDDA7-B944-4CB5-92D9-3D56373BD301} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Excel 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Excel MUI (English) 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-0016-0409-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Office 32-bit Components 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (English) 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-001F-0409-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (French) 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-001F-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (Spanish) 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-001F-0C0A-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing (English) 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-002C-0409-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared 32-bit MUI (English) 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-0043-0409-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared MUI (English) 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-006E-0409-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared Setup Metadata MUI (English) 2010 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90140000-0115-0409-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft®
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2019 CTP2.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {725CC962-98BD-42C7-87D8-51C680FB1779} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft System CLR Types for SQL Server 2019 CTP2.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8D7CE3B0-5379-46FE-9F4B-A65D9F4CC1F1} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft TestPlatform SDK Local Feed - (.Microsoft.) [HKLM][64Bits] -- {47CA7775-2AED-421F-B2A9-E4D0CD941483} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft UniversalWindowsPlatform SDK - (.Microsoft.) [HKLM][64Bits] -- {111EA02F-B08D-42ED-ADA5-E2A4B58815E5} [Unsigned] =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {7B1FCD52-8F6B-4F12-A143-361EA39F5E7C} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {071c9b48-7c32-4621-a0ac-3f809523288f} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6913e92a-b64e-41c9-a5e6-cef39207fe89} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {65e650ff-30be-469d-b63a-418d71ea1765} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2019 X64 Additional Runtime - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7D0B74C2-C3F8-4AF1-940F-CD79AB4B2DCE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2019 X64 Debug Runtime - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EBEA650F-B55C-4B38-A06D-1C2AC1635073} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EEA66967-97E2-4561-A999-5C22E3CDE428} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2019 X86 Additional Runtime - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {0FA68574-690B-4B00-89AA-B28946231449} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2019 X86 Debug Runtime - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BA7E28F8-29C9-4F6D-B719-DD305A263BAA} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2BC3BD4D-FABA-4394-93C7-9AC82A263FE2} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9495AEB4-AB97-39DE-8C42-806EEF75ECA7} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x64) =>.Microsoft®
O42 - Logiciel: Microsoft Visual Studio Installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {6F320B93-EE3C-4826-85E0-ADF79F8D4C61} =>.Microsoft®
O42 - Logiciel: Microsoft Visual Studio Setup Configuration - (.Microsoft Corporation.) [HKLM][64Bits] -- {EECD89A4-F3F0-47BE-ACCF-ADFFCF2E1769} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Windows Desktop Runtime - 3.1.23 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {4456FDE5-AAE9-4E03-9B34-0D9A476CEF5A} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Windows Desktop Runtime - 3.1.23 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {32D405E8-E1B0-4E1D-BCFF-B9FE5AB15F7E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Windows Desktop Runtime - 3.1.23 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {b8f5b50f-4b72-421e-ac78-130b4bce05d1} =>.Microsoft®
O42 - Logiciel: Microsoft Windows Desktop Runtime - 3.1.3 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {76BAD9AC-C7FA-4119-B56A-A450F848ABB1} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Windows Desktop Runtime - 3.1.3 (x86) - (.Microsoft Corporation.) [HKLM][64Bits] -- {D4BD6DA8-0E15-4C37-8743-4B4ADDA40D40} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Windows Desktop Targeting Pack - 3.1.0 (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {7519423C-A977-4160-83A2-48633600A216} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: MSI Development Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {DB4DB790-64DD-1902-4BF2-833B3B6DBCA1} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: MSVCRT Redists - (.MAGIX Computer Products Intl. Co..) [HKLM][64Bits] -- {E83D6FA1-B27C-11E9-B0DB-A5146957F833} [Unsigned] =>.MAGIX Computer Products Intl. Co. (Hidden)
O42 - Logiciel: Mudfish Cloud VPN v5.2.1 - (.Mudfish Networks.) [HKLM][64Bits] -- Mudfish Cloud VPN {00B6A30C06CEC6A72F77268A6069BFBDE2}.
O42 - Logiciel: MuMu Player - (.Netease.) [HKLM][64Bits] -- Nemu [Unsigned]
O42 - Logiciel: NoxPlayer - (.Duodian Technology Co. Ltd..) [HKLM][64Bits] -- Nox {0EE046089841742E8E7719016790622B}. =>.Duodian Technology Co. Ltd.
O42 - Logiciel: NVIDIA Graphics Driver 445.87 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver [Unsigned] =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer [Unsigned] =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA PhysX System Software 9.21.0713 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX [Unsigned] =>.NVIDIA Corporation
O42 - Logiciel: Process Hacker 2.39 (r124) - (.wj32.) [HKLM][64Bits] -- Process_Hacker2_is1 [Unsigned] =>.wj32
O42 - Logiciel: Ragnarok Online - (.Gravity Interactive, Inc..) [HKLM][64Bits] -- {181579B5-0028-4E01-AC27-97ED80352279} [Unsigned]
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Redfinger - (.REDFINGER CLOUD PHONE.) [HKLM][64Bits] -- Redfinger [Unsigned]
O42 - Logiciel: SciTE4AutoHotkey v3.0.06.01 - (.fincs.) [HKLM][64Bits] -- SciTE4AutoHotkey [Unsigned]
O42 - Logiciel: SDK ARM Additions - (.Microsoft Corporation.) [HKLM][64Bits] -- {73681F86-CD86-4208-572F-959B45430B04} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: SDK ARM Redistributables - (.Microsoft Corporation.) [HKLM][64Bits] -- {67EE3804-9642-62BA-EBF1-B1561FB4ECBE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Security Update for Microsoft Access 2010 (KB4484385) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{8BF74FCB-3035-4DFF-BB71-FC05B1714AE2} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Excel 2010 (KB3017810) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{29A8C5C7-8B7E-4175-97ED-D653E9FBCAD5} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Excel 2010 (KB3017810) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0409-1000-0000000FF1CE}_Office14.EXCEL_{F36EA81A-47DA-41E2-B81B-40A1FB8A2753} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Excel 2010 (KB3017810) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{29A8C5C7-8B7E-4175-97ED-D653E9FBCAD5} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Excel 2010 (KB3017810) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0409-1000-0000000FF1CE}_Office14.EXCEL_{F36EA81A-47DA-41E2-B81B-40A1FB8A2753} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft InfoPath 2010 (KB3114414) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{B78E5386-2F91-4CB4-A8CF-F5582CF3C920} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2553313) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{A97FC79A-3344-410B-8E6B-95931B630C42} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2553313) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{A97FC79A-3344-410B-8E6B-95931B630C42} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2553332) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{0CC3786B-BA15-44EA-9210-3C3B1545EB8B} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2553332) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{0CC3786B-BA15-44EA-9210-3C3B1545EB8B} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2553491) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0409-1000-0000000FF1CE}_Office14.EXCEL_{FB2AE127-529A-4105-8836-3676B1D30FAB} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2589361) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{DBA66980-EE63-43AC-AFAC-A2420C199328} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2850016) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{DEE523DB-C590-45D3-B658-73F93062D7B3} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2880971) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{C7B639A9-54A9-4B30-87AA-45BD4F06E1A6} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2920748) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{58C697C0-E8B1-4AF2-9352-292877352216} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB2956076) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-006E-0409-1000-0000000FF1CE}_Office14.EXCEL_{2CE7AC23-5E40-43BD-8DA3-8D17677D8199} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB3114565) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{7DF0FA0F-0C50-4065-91BE-E890C68BD33D} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB3191908) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{E6C29785-2909-4FAA-8A61-085F2F1D92A0} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB3203468) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-001F-0409-1000-0000000FF1CE}_Office14.EXCEL_{BABE5F32-A2B5-498E-BCB5-1325170A8F56} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB3203468) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-001F-040C-1000-0000000FF1CE}_Office14.EXCEL_{569742BC-C32F-4C9C-9B21-18409AFF9599} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB3203468) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-001F-0C0A-1000-0000000FF1CE}_Office14.EXCEL_{512A0E32-6C63-4C73-9C82-FC1B10668ED8} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB3213626) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-006E-0409-1000-0000000FF1CE}_Office14.EXCEL_{437ECECB-17E8-4AC7-AF9E-F8A4308BBCC8} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB3213631) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{6BE89FBA-5B21-4752-85A2-1DE104A9F5DD} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB4011610) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-006E-0409-1000-0000000FF1CE}_Office14.EXCEL_{C799AC81-98A1-49EF-AA41-46F4534FAE06} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB4022206) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{8692BFE2-0A72-4503-A687-5B96B0815E76} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB4022206) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-006E-0409-1000-0000000FF1CE}_Office14.EXCEL_{8692BFE2-0A72-4503-A687-5B96B0815E76} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB4022208) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{337BCB84-C6C1-48F9-8370-425383A667CB} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB4484455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{1CB487A7-9FC0-42DF-A550-B80291521A3A} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB4493143) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{65C22C4A-7374-42B3-9215-6CA7CCA92CCE} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB4504738) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{6C7AE074-5411-4DB8-B9A3-8F7A6F046771} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB4504738) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{6C7AE074-5411-4DB8-B9A3-8F7A6F046771} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Office 2010 (KB4504739) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{E4848FE8-F0C1-43A3-84E8-3205B25C7AB0} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft OneNote 2010 (KB3114885) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{31243FE5-01D6-47AF-9A5E-6D021AA63358} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft PowerPoint 2010 (KB4504702) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{3935073D-AED7-4467-B884-CAA9680F90AB} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Project 2010 (KB4484463) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{46BA48B6-73B5-41AE-992B-5B073F035616} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Publisher 2010 (KB4032216) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{3F276C56-7A71-4B02-9E30-C332785D34A3} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Visio 2010 (KB4484376) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{B9582F02-1DFC-4E97-AAE5-FD4F08527C15} =>.Microsoft Corporation®
O42 - Logiciel: Security Update for Microsoft Word 2010 (KB4493218) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{565C3C1B-B400-4DB6-B58B-589C66433C23} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{A3364707-2F53-4C83-8F68-C9877A9080C7} =>.Microsoft Corporation®
O42 - Logiciel: Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0409-1000-0000000FF1CE}_Office14.EXCEL_{C7BC6847-623D-4D8F-B87C-82215F0752BA} =>.Microsoft Corporation® (Hidden)
O42 - Logiciel: Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-001F-0409-1000-0000000FF1CE}_Office14.EXCEL_{C814F7D9-CE9D-45AA-BA7C-88BDD0E1EB7C} =>.Microsoft Corporation® (Hidden)
O42 - Logiciel: Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-001F-040C-1000-0000000FF1CE}_Office14.EXCEL_{77A8B979-11B0-4774-8003-574EE8A4BC22} =>.Microsoft Corporation® (Hidden)
O42 - Logiciel: Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-001F-0C0A-1000-0000000FF1CE}_Office14.EXCEL_{05916788-991E-417B-A8F3-77F90A2B8271} =>.Microsoft Corporation® (Hidden)
O42 - Logiciel: Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-002C-0409-1000-0000000FF1CE}_Office14.EXCEL_{D4D48631-AC28-4250-B882-C956555B0B1D} =>.Microsoft Corporation® (Hidden)
O42 - Logiciel: Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{F3FAAB68-7697-4B1F-A23A-72312565AEAB} =>.Microsoft Corporation® (Hidden)
O42 - Logiciel: Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0409-1000-0000000FF1CE}_Office14.EXCEL_{944EFCFD-823D-4C0A-9B01-CD76EEAEA1F3} =>.Microsoft Corporation® (Hidden)
O42 - Logiciel: Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-006E-0409-1000-0000000FF1CE}_Office14.EXCEL_{58B1AD3E-54D7-42DC-AF42-218AA7C1ED8B} =>.Microsoft Corporation® (Hidden)
O42 - Logiciel: Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0115-0409-1000-0000000FF1CE}_Office14.EXCEL_{58B1AD3E-54D7-42DC-AF42-218AA7C1ED8B} =>.Microsoft Corporation® (Hidden)
O42 - Logiciel: Universal CRT Extension SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {13952D7A-B7B3-F4F8-5F29-5CD18E8168B7} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Universal CRT Headers Libraries and Sources - (.Microsoft Corporation.) [HKLM][64Bits] -- {74CBC330-ED16-31B9-E8BE-0C6A8E67DE32} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Universal CRT Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {847D4DAF-0182-265B-324F-406462E8A90D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Universal CRT Tools x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Universal CRT Tools x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9F7B0D96-881D-8850-C303-43F3A08E6902} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Universal General MIDI DLS Extension SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {6F54BF87-2EE6-FA6D-431D-33A665992D49} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Update for Microsoft Filter Pack 2.0 (KB3114879) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{85483BCA-BCA1-4046-9673-53FAB79E6979} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft InfoPath 2010 (KB2817369) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{DB0B0CDF-77EC-47B0-94E2-4738573A1E58} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553140) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{8C0FFF5F-4CC1-48F5-9B3F-8DE7DA2E116F} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553140) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-006E-0409-1000-0000000FF1CE}_Office14.EXCEL_{8C0FFF5F-4CC1-48F5-9B3F-8DE7DA2E116F} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553347) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{1B114BCA-F84F-45EB-ACE8-FC3CB5557FB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553347) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0409-1000-0000000FF1CE}_Office14.EXCEL_{1B114BCA-F84F-45EB-ACE8-FC3CB5557FB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553347) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-001F-0409-1000-0000000FF1CE}_Office14.EXCEL_{1B114BCA-F84F-45EB-ACE8-FC3CB5557FB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553347) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-001F-040C-1000-0000000FF1CE}_Office14.EXCEL_{1B114BCA-F84F-45EB-ACE8-FC3CB5557FB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553347) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-001F-0C0A-1000-0000000FF1CE}_Office14.EXCEL_{1B114BCA-F84F-45EB-ACE8-FC3CB5557FB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553347) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-002C-0409-1000-0000000FF1CE}_Office14.EXCEL_{1B114BCA-F84F-45EB-ACE8-FC3CB5557FB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553347) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{1B114BCA-F84F-45EB-ACE8-FC3CB5557FB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553347) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0409-1000-0000000FF1CE}_Office14.EXCEL_{1B114BCA-F84F-45EB-ACE8-FC3CB5557FB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553347) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-006E-0409-1000-0000000FF1CE}_Office14.EXCEL_{1B114BCA-F84F-45EB-ACE8-FC3CB5557FB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553347) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0115-0409-1000-0000000FF1CE}_Office14.EXCEL_{1B114BCA-F84F-45EB-ACE8-FC3CB5557FB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553388) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{08E1BF53-B96E-4ADF-935F-A90F867E8F6B} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2553388) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{08E1BF53-B96E-4ADF-935F-A90F867E8F6B} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2589298) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{79C725A1-3964-421C-A528-78C1C083C7C7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2589318) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{9466D7C3-A2C9-457A-8135-03F20F3268B4} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2589339) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{C91587A2-1FEA-4F7B-BBC5-4D8914E8C0D3} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2589375) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{EBD18DE5-BC84-4B57-9A30-097044871F9A} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{4AD36582-256B-433D-8593-F31773A15CA4} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{4AD36582-256B-433D-8593-F31773A15CA4} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2881030) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{F1B89D7E-298C-49C3-A136-9962C9123CB7} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB2883019) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{956B3213-0246-42A8-A6FE-3EF7DC6E66A9} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB3054873) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{75A4ACD6-A407-41B3-8889-8AB7862A9D9D} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB3054886) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{4F55B2F9-E491-4630-A994-2F37D1AB3A77} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB3054886) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{4F55B2F9-E491-4630-A994-2F37D1AB3A77} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB3055047) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{4BC0A78F-012B-47BF-80E8-963D44286558} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB4092436) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{8539273B-603A-4939-AC68-206447EB9536} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB4461579) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{D7C90ED7-E184-4423-B3FC-F3AA7BB856E0} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB4461579) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{D7C90ED7-E184-4423-B3FC-F3AA7BB856E0} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB4461626) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{6E14E5FA-BB3A-4583-B77E-87284B73AD16} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2010 (KB4462172) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0016-0000-1000-0000000FF1CE}_Office14.EXCEL_{ED7A5337-C4D3-455F-8B84-E90FB9605977} =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft SharePoint Workspace 2010 (KB2760601) 64-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90140000-0043-0000-1000-0000000FF1CE}_Office14.EXCEL_{77374F16-2DC6-4EEF-AFAD-C59FDA2E010D} =>.Microsoft Corporation®
O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB5001716) - (.Microsoft Corporation.) [HKLM][64Bits] -- {82BD0A1C-815F-487F-9AE7-CE73DA413CFF} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: vcpp_crt.redist.clickonce - (.Microsoft Corporation.) [HKLM][64Bits] -- {6B25D94A-4B50-45E2-BBD3-54E68700E1BC} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: VEGAS Pro 17.0 - (.VEGAS.) [HKLM][64Bits] -- {E649B5F0-B27C-11E9-B856-A5146957F833} [Unsigned] =>.VEGAS
O42 - Logiciel: Visual C++ Library CRT Appx Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {1A7F0A9D-4C93-4260-967E-C1DD196CD5D6} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Visual C++ Library CRT Appx Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {568191A0-2DF9-44B7-B81A-92C60B6F45B1} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Visual C++ Library CRT Appx Resource Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {92D8CBA6-0F6D-4A32-8D98-E5E6939F0684} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Visual C++ Library CRT ARM64 Appx Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {A1611231-89EF-48C4-A5F4-5F7B0BAE2733} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Visual C++ Library CRT Desktop Appx Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {0A2D9E0D-0B02-4227-A890-A26AF5862C32} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Visual C++ Library CRT Desktop Appx Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {12B0E23A-5181-4D41-A311-C3221BDC2328} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Visual C++ Library CRT Desktop Appx Package - (.Microsoft Corporation.) [HKLM][64Bits] -- {135ED615-775A-4D03-9590-F2A115D132C0} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Visual Studio Professional 2019 - (.Microsoft Corporation.) [HKLM][64Bits] -- a64f51a9 =>.Microsoft®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: VS Immersive Activate Helper - (.Microsoft Corporation.) [HKLM][64Bits] -- {78500789-0EBE-4490-BE43-F9EF8250BF42} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: VS JIT Debugger - (.Microsoft Corporation.) [HKLM][64Bits] -- {4137D3AB-5B44-4AC9-83A4-5273F2E2547E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: VS Script Debugging Common - (.Microsoft Corporation.) [HKLM][64Bits] -- {D8B26CBD-15D2-440B-BCBD-5616D74EFC7D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_BlendMsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {B5E3A3E1-1529-4D5A-9E95-34971FA07825} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_clickoncebootstrappermsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {BAF91847-0A64-405E-98EC-A0BA6FB4BC4E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_clickoncebootstrappermsires - (.Microsoft Corporation.) [HKLM][64Bits] -- {271F1F42-B547-4498-825F-590DBB1774F7} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_clickoncesigntoolmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {30D97A69-3C0F-4552-9A72-60E591B210C7} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_communitymsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {FDC38876-AD68-4616-942D-AC3194DAB0A3} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_communitymsires - (.Microsoft Corporation.) [HKLM][64Bits] -- {95E79BBC-97FD-4FEB-91B5-CC0231324812} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_devenvmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {AD0C92A4-1514-4BC1-A723-A272A8343924} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_filehandler_amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7DB17E2A-450D-4DBD-9C17-545A95804B0C} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_filehandler_x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C309FC3D-20C2-4F48-AF46-E59674774602} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_FileTracker_Singleton - (.Microsoft Corporation.) [HKLM][64Bits] -- {692A0FB3-E6A2-4D41-AC03-4136B4312DC0} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_Graphics_Singletonx64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ABBD10CA-0CFA-4D76-B033-F76C55A54336} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_Graphics_Singletonx86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {E47B4703-2337-4ED0-BA24-3EC08D643684} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_minshellinteropmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {27B16914-BC5D-4018-8074-071262A27F6D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_minshellmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {4D33D909-B071-41D2-B305-96B8586F911E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_minshellmsires - (.Microsoft Corporation.) [HKLM][64Bits] -- {EC04CD66-C03A-470D-B0D2-4BBC87F6382D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_SQLClickOnceBootstrappermsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {0A54CADD-CBA1-4BC9-A134-6C9F91F41B9A} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: vs_tipsmsi - (.Microsoft Corporation.) [HKLM][64Bits] -- {E208E682-50EE-4F2F-9860-C91B906B8A03} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: WinAppDeploy - (.Microsoft Corporation.) [HKLM][64Bits] -- {8E3AE0EF-D067-700C-BDB4-10D5552155DC} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows App Certification Kit Native Components - (.Microsoft Corporation.) [HKLM][64Bits] -- {21F4DE3E-CE64-584E-BD74-2D1765EB39DE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows App Certification Kit SupportedApiList x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5C3F08FC-E0D4-6C94-90EF-72DE63DDA885} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows App Certification Kit x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {15E06EC7-2755-BD07-45AD-98DF1679A6BE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Desktop Extension SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {B4A7994D-DBA1-8B4D-621A-03EE52CF838A} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Desktop Extension SDK Contracts - (.Microsoft Corporation.) [HKLM][64Bits] -- {39EDCC7D-7B63-5D99-C053-C8CDF02DC5ED} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows IoT Extension SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {9DA29C3D-9E36-AC22-59C8-FFCF413DC068} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows IoT Extension SDK Contracts - (.Microsoft Corporation.) [HKLM][64Bits] -- {3CEE8EB6-538E-DDA2-51A5-842ECE6CE1E8} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Mobile Extension SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {30AD20A4-1FFF-2632-4555-EFAF9D8A32CD} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Mobile Extension SDK Contracts - (.Microsoft Corporation.) [HKLM][64Bits] -- {154EEEB2-18D9-4FD5-EDE1-6D0B318FAC53} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows PC Health Check - (.Microsoft Corporation.) [HKLM][64Bits] -- {B1E7D0FD-7CFE-4E0C-A5DA-0F676499DB91} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Windows Phone SDK 8.0 Assemblies for Visual Studio 2019 - (.Microsoft Corporation.) [HKLM][64Bits] -- {315CD35B-6684-383F-B9DF-83E17B38A1F4} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {3A98BFB1-16A6-576B-FFC8-7FEF26B40DBA} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK AddOn - (.Microsoft Corporation.) [HKLM][64Bits] -- {E6F877A1-2F65-4BF0-87B6-A4071B7663D3} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Windows SDK ARM Desktop Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {20C00582-BD18-B599-CF98-61011567D747} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Headers arm - (.Microsoft Corporation.) [HKLM][64Bits] -- {3DC4086C-B365-3DE4-878B-659DEB72904E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Headers arm64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {452ABC9E-731E-71B2-8824-C5B2595370AF} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Headers x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6A96DEED-D0D8-6DD0-21BD-7D8F60714854} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Headers x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {86ADBBAE-77AE-FA26-7C17-802AE28AC316} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Libs arm - (.Microsoft Corporation.) [HKLM][64Bits] -- {995DDD4F-928C-4EBA-9702-E7CD3F6A7A9D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Libs arm64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {166BCCDD-48C1-8103-A7E7-0F3DE471223D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Libs x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {54140689-B7DB-B9CF-537D-8FEB279410F9} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Libs x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {238F56B7-7D14-F8EB-3F4D-8CFF18C19E2B} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Tools arm64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2E6C6299-BF5F-379D-55F2-8FD3367F5918} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Tools x64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {795E8F11-37DE-611E-921E-7D70BE09BF7B} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Desktop Tools x86 - (.Microsoft Corporation.) [HKLM][64Bits] -- {540ADDB0-7A37-9B99-3568-FD1EA33D3B38} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK DirectX x64 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E3528B9-92A6-A48A-AE84-890E0E5DE9BB} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK DirectX x86 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {52CE7A43-B499-5F4B-A525-AA8794D3580F} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK EULA - (.Microsoft Corporations.) [HKLM][64Bits] -- {5F56BF12-0818-B58A-5862-939784E12F8B} [Unsigned] =>.Microsoft Corporations (Hidden)
O42 - Logiciel: Windows SDK Facade Windows WinMD Versioned - (.Microsoft Corporation.) [HKLM][64Bits] -- {A5EF45C5-FA27-7E8F-1AE8-E3D39BAC779E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK for Windows Store Apps - (.Microsoft Corporation.) [HKLM][64Bits] -- {39692B57-0BA8-2197-8BC5-4108DFB8475A} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK for Windows Store Apps Contracts - (.Microsoft Corporation.) [HKLM][64Bits] -- {C13D21F1-E9A3-FB93-18C4-B905FB47F122} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK for Windows Store Apps DirectX x86 Remote - (.Microsoft Corporation.) [HKLM][64Bits] -- {8F21D4CD-9CB4-2648-EECC-60147DE7B32D} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK for Windows Store Apps Headers - (.Microsoft Corporation.) [HKLM][64Bits] -- {65E9398F-77A0-8681-026C-8CF092A71F11} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK for Windows Store Apps Libs - (.Microsoft Corporation.) [HKLM][64Bits] -- {217E19C8-ACC0-C7ED-AB69-A30F3F96C625} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK for Windows Store Apps Metadata - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FAF2ED2-CA24-0313-8CAF-C28DEE421200} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK for Windows Store Apps Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {A5174AE6-3704-EE0A-BEFF-21BC5275BA02} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK for Windows Store Managed Apps Libs - (.Microsoft Corporation.) [HKLM][64Bits] -- {CEDD7BE6-97B5-9AE8-57C0-B390E0C4328F} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Modern Non-Versioned Developer Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {DDAF4CFD-D635-8305-5157-9ECEA9F89678} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Modern Versioned Developer Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {21514D7D-4124-E52E-8483-727380B855D7} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Redistributables - (.Microsoft Corporation.) [HKLM][64Bits] -- {34B51780-922E-5CBF-C16F-13F0A9502267} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows SDK Signing Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {4CA7ABF1-DB68-0F9E-5AD9-58550198D0AC} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Simulator - (.Microsoft Corporation.) [HKLM][64Bits] -- {E957D37E-05B8-4A46-965E-A27D1F666554} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Simulator - ENU - (.Microsoft Corporation.) [HKLM][64Bits] -- {0D5009C8-F5AF-4A81-B4F8-F334A6358CCA} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Software Development Kit - Windows 10.0.18362.1 - (.Microsoft Corporation.) [HKLM][64Bits] -- {126dedf0-cc0e-4b48-9ece-806b0e437195} =>.Microsoft®
O42 - Logiciel: Windows Team Extension SDK - (.Microsoft Corporation.) [HKLM][64Bits] -- {6EEDDD9D-BF7B-8229-92B4-89DFCF7481ED} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Windows Team Extension SDK Contracts - (.Microsoft Corporation.) [HKLM][64Bits] -- {5D60A4EF-6EDF-AAF4-F0F0-49FDD40176B8} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: windows_toolscorepkg - (.Microsoft Corporation.) [HKLM][64Bits] -- {DBABDF5D-F6E9-46FC-81EF-9C583C22E8B7} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: WinRAR 6.11 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: WinRT Intellisense Desktop - en-us - (.Microsoft Corporation.) [HKLM][64Bits] -- {E67F1F03-FB4A-3D61-8999-E6A4C4B26F34} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: WinRT Intellisense Desktop - Other Languages - (.Microsoft Corporation.) [HKLM][64Bits] -- {7EF010FF-7800-28BA-FF49-2D219EC7BA82} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: WinRT Intellisense IoT - en-us - (.Microsoft Corporation.) [HKLM][64Bits] -- {36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: WinRT Intellisense IoT - Other Languages - (.Microsoft Corporation.) [HKLM][64Bits] -- {6B03A6A4-643C-57CE-CA6F-4E19BF47497A} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: WinRT Intellisense Mobile - en-us - (.Microsoft Corporation.) [HKLM][64Bits] -- {918A448F-59E8-FBF5-B087-D3F07160C7E0} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: WinRT Intellisense PPI - en-us - (.Microsoft Corporation.) [HKLM][64Bits] -- {66483041-F590-EC46-4AF0-EE39C62FB680} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: WinRT Intellisense PPI - Other Languages - (.Microsoft Corporation.) [HKLM][64Bits] -- {9C61E6D2-C43E-6746-B519-6185558C4A24} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: WinRT Intellisense UAP - en-us - (.Microsoft Corporation.) [HKLM][64Bits] -- {6B37CC5B-78DF-5050-2215-68479716A587} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: WinRT Intellisense UAP - Other Languages - (.Microsoft Corporation.) [HKLM][64Bits] -- {250D5341-0879-4016-399C-BBCD87B80E95} [Unsigned] =>.Microsoft Corporation (Hidden)

---\\ HKCU & HKLM Software Keys (197) - 44s
HKLM\SOFTWARE\7-Zip =>.Igor Pavlov
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\AutoHotkey =>.AutoHotkey
HKLM\SOFTWARE\BANDISOFT =>.Bandisoft
HKLM\SOFTWARE\Binance =>.Binance
HKLM\SOFTWARE\BlueStacksInstaller =>.BlueStack Systems, Inc.
HKLM\SOFTWARE\Conexant =>.Conexant Systems, Inc.
HKLM\SOFTWARE\CVSM =>.Legitimate
HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation
HKLM\SOFTWARE\dotnet
HKLM\SOFTWARE\ej-technologies =>.ej-technologies
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\ICEpower =>.ICEpower
HKLM\SOFTWARE\InstalledOptions =>.Installed Options
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nahimic =>.Nahimic
HKLM\SOFTWARE\Nemu
HKLM\SOFTWARE\NemuBase
HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\OpenSSH =>.OpenBSD
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\Patch My PC =>.Justin Chalfant
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\SoftEther Project =>.SoftEther Project
HKLM\SOFTWARE\Sony Creative Software =>.Sony Creative Software
HKLM\SOFTWARE\UIU =>.Legitimate
HKLM\SOFTWARE\UIUTask
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\Windows =>.Microsoft Corporation
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\360DocProtect
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\Adware Removal Tool by TSA =>.TSA Softwares
HKLM\SOFTWARE\WOW6432Node\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\WOW6432Node\AndroidTBox
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\BANDISOFT =>.Bandisoft
HKLM\SOFTWARE\WOW6432Node\CDDB =>.Cddb Software
HKLM\SOFTWARE\WOW6432Node\Conexant =>.Conexant Systems, Inc.
HKLM\SOFTWARE\WOW6432Node\dotnet
HKLM\SOFTWARE\WOW6432Node\Dropbox =>.Dropbox
HKLM\SOFTWARE\WOW6432Node\DropboxUpdate =>.Dropbox Inc.
HKLM\SOFTWARE\WOW6432Node\DuoDianOnline =>.DuoDian Online
HKLM\SOFTWARE\WOW6432Node\EasyAntiCheat =>.EasyAntiCheat
HKLM\SOFTWARE\WOW6432Node\Eset =>.ESET
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Gravity Soft =>.Gravity Soft
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\kpzs
HKLM\SOFTWARE\WOW6432Node\Magix =>.MAGIX_Software_GmbH
HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\NemuBase
HKLM\SOFTWARE\WOW6432Node\NemuServer
HKLM\SOFTWARE\WOW6432Node\Nexon =>.Nexon
HKLM\SOFTWARE\WOW6432Node\NuGet =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\SciTE4AutoHotkey =>.AutoHotkey
HKLM\SOFTWARE\WOW6432Node\SoftEther Project =>.SoftEther Project
HKLM\SOFTWARE\WOW6432Node\Sony Creative Software =>.Sony Creative Software
HKLM\SOFTWARE\WOW6432Node\Tencent =>.Tencent
HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve
HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Apowersoft =>.Apowersoft
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\AutoHotkey =>.AutoHotkey
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKCU\SOFTWARE\BANDISOFT =>.Bandisoft
HKCU\SOFTWARE\BlueStacksInstaller =>.BlueStack Systems, Inc.
HKCU\SOFTWARE\Browedit
HKCU\SOFTWARE\Cheat Engine =>.Dark Byte
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\ClassicTK
HKCU\SOFTWARE\CocCoc =>.Legitimate
HKCU\SOFTWARE\Conexant =>.Conexant Systems, Inc.
HKCU\SOFTWARE\DirectShow =>.Microsoft Corporation
HKCU\SOFTWARE\Dropbox =>.Dropbox
HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc.
HKCU\SOFTWARE\DuoDianApp =>.DuoDianApp
HKCU\SOFTWARE\ej-technologies =>.ej-technologies
HKCU\SOFTWARE\ESET =>.ESET
HKCU\SOFTWARE\Geek Uninstaller =>.Geek Uninstaller
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Gravity =>.Gravity
HKCU\SOFTWARE\Hex-Rays
HKCU\SOFTWARE\INCAInternet =>.INCAInternet
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\KRU
HKCU\SOFTWARE\LINE Games Corporation
HKCU\SOFTWARE\Magix =>.MAGIX_Software_GmbH
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\Nemu
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\Nexon =>.Nexon
HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\RedFingerPlayerGlobal
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\SoftEther Project =>.SoftEther Project
HKCU\SOFTWARE\Sony Creative Software =>.Sony Creative Software
HKCU\SOFTWARE\TEAM R2R =>.TEAM R2R
HKCU\SOFTWARE\Tencent =>.Tencent
HKCU\SOFTWARE\University of Tsukuba =>.University of Tsukuba
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\XuanZhi
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\.DEFAULT\SOFTWARE\Conexant =>.Conexant Systems, Inc.
HKU\.DEFAULT\SOFTWARE\Dropbox =>.Dropbox
HKU\.DEFAULT\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\.DEFAULT\SOFTWARE\Razer =>.Razer
HKU\.DEFAULT\SOFTWARE\Splashtop Inc. =>.Splashtop Inc.
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\7-Zip =>.Igor Pavlov
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Apowersoft =>.Apowersoft
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\AutoHotkey =>.AutoHotkey
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\BANDISOFT =>.Bandisoft
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\BlueStacksInstaller =>.BlueStack Systems, Inc.
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Browedit
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Cheat Engine =>.Dark Byte
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\ClassicTK
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\CocCoc =>.Legitimate
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Conexant =>.Conexant Systems, Inc.
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\DirectShow =>.Microsoft Corporation
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Dropbox =>.Dropbox
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\DropboxUpdate =>.Dropbox Inc.
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\DuoDianApp =>.DuoDianApp
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\ej-technologies =>.ej-technologies
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\ESET =>.ESET
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Geek Uninstaller =>.Geek Uninstaller
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Google =>.Google
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Gravity =>.Gravity
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Hex-Rays
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\INCAInternet =>.INCAInternet
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\JavaSoft =>.JavaSoft
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\KRU
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\LINE Games Corporation
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Magix =>.MAGIX_Software_GmbH
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Nemu
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Nexon =>.Nexon
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\RedFingerPlayerGlobal
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\SoftEther Project =>.SoftEther Project
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Sony Creative Software =>.Sony Creative Software
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\TEAM R2R =>.TEAM R2R
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Tencent =>.Tencent
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\University of Tsukuba =>.University of Tsukuba
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Valve =>.Valve
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\XuanZhi
HKU\S-1-5-21-3947486154-1424391867-2577238500-1001\SOFTWARE\ZHP =>.Nicolas Coolman

---\\ Packages (5) - 0s
C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation
C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.1023.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft
C:\Program Files (x86)\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.961.0_x64__56jybvy8sckqj - (.nVidia Corporation.) [][NVIDIA Control Panel] =>nVidia Corporation
C:\Program Files (x86)\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.962.0_x64__56jybvy8sckqj - (.nVidia Corporation.) [][NVIDIA Control Panel] =>nVidia Corporation
C:\Program Files (x86)\WindowsApps\TradingView.Desktop_1.0.0.679_x64__r4b1km8ya33za - (..) [][TradingView]

---\\ Contents of the Common Files folders (292) - 29s
O43 - CFD: 03/03/2020 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov
O43 - CFD: 29/06/2020 - [] D -- C:\Program Files\AndroidTbox =>.Tencent Technology(Shenzhen) Company Limited®
O43 - CFD: 29/04/2020 - [] D -- C:\Program Files\Application Verifier =>.Microsoft Corporation
O43 - CFD: 02/03/2020 - [] D -- C:\Program Files\AutoHotkey =>.Chicony Multimedia
O43 - CFD: 13/04/2021 - [] D -- C:\Program Files\Binance =>.Binance Holdings Limited®
O43 - CFD: 18/03/2022 - [] D -- C:\Program Files\BlueStacks_nxt
O43 - CFD: 12/04/2022 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 12/04/2022 - [] D -- C:\Program Files\Cheat Engine 7.0 =>.Dark Byte
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc.
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\dotnet =>.Microsoft®
O43 - CFD: 01/05/2020 - [] D -- C:\Program Files\HxD [Unsigned]
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 15/12/2021 - [] D -- C:\Program Files\ldplayerbox =>.Microsoft Windows®
O43 - CFD: 21/03/2020 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 21/03/2020 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 29/04/2020 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 21/03/2020 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 21/03/2020 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\MuMu [Unsigned]
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\NemuVbox =>.NetEase(Hangzhou) Network Co. Ltd.®
O43 - CFD: 18/05/2020 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\PCHealthCheck =>.Microsoft®
O43 - CFD: 01/05/2020 - [] D -- C:\Program Files\Process Hacker 2 =>.Wj32
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\ruxim =>.Microsoft®
O43 - CFD: 14/03/2022 - [] D -- C:\Program Files\SoftEther VPN Client =>.SoftEther
O43 - CFD: 29/06/2020 - [] D -- C:\Program Files\txgameassistant [Unsigned]
O43 - CFD: 01/03/2020 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\UNP =>.Microsoft Corporation
O43 - CFD: 07/10/2020 - [] D -- C:\Program Files\VEGAS =>.VEGAS
O43 - CFD: 16/02/2021 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 12/03/2022 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 15/03/2020 - [] D -- C:\Program Files (x86)\360 =>.Qihu 360 Software
O43 - CFD: 13/06/2020 - [] D -- C:\Program Files (x86)\Act Editor [Unsigned]
O43 - CFD: 06/03/2020 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 13/04/2022 - [] D -- C:\Program Files (x86)\Adware Removal Tool by TSA =>.TSA Softwares
O43 - CFD: 23/03/2020 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.
O43 - CFD: 29/04/2020 - [] D -- C:\Program Files (x86)\Application Verifier =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files (x86)\Bignox =>.BigNox
O43 - CFD: 18/03/2022 - [] D -- C:\Program Files (x86)\BlueStacks X
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files (x86)\dotnet =>.Microsoft®
O43 - CFD: 12/03/2022 - [] D -- C:\Program Files (x86)\Dropbox =>.Dropbox, Inc®
O43 - CFD: 21/04/2020 - [] D -- C:\Program Files (x86)\EasyAntiCheat =>.EasyAntiCheat
O43 - CFD: 30/03/2021 - [] D -- C:\Program Files (x86)\eNexia750
O43 - CFD: 14/03/2022 - [] D -- C:\Program Files (x86)\Google =>.Google LLC®
O43 - CFD: 03/03/2020 - [] D -- C:\Program Files (x86)\GRF Editor [Unsigned]
O43 - CFD: 01/03/2020 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 29/02/2020 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation
O43 - CFD: 21/03/2020 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation
O43 - CFD: 21/03/2020 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 29/04/2020 - [] D -- C:\Program Files (x86)\Microsoft SDKs =>.Microsoft Corporation
O43 - CFD: 29/04/2020 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation
O43 - CFD: 29/04/2020 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 12/06/2020 - [] D -- C:\Program Files (x86)\Mudfish Cloud VPN [Unsigned]
O43 - CFD: 09/04/2022 - [] D -- C:\Program Files (x86)\Nox =>.FFmpeg Project
O43 - CFD: 29/04/2020 - [] D -- C:\Program Files (x86)\NuGet =>.Microsoft Corporation
O43 - CFD: 18/05/2020 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 01/03/2020 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 18/03/2022 - [] D -- C:\Program Files (x86)\RedFingerPlayerGlobal [Unsigned]
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 18/03/2022 - [] D -- C:\Program Files (x86)\TurboVPN
O43 - CFD: 07/10/2020 - [] D -- C:\Program Files (x86)\VEGAS =>.VEGAS
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 29/04/2020 - [] D -- C:\Program Files (x86)\Windows Kits =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 10/04/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Act Editor
O43 - CFD: 10/04/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoHotkey =>.Chicony Multimedia
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 7.0 =>.Dark Byte
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant =>.Conexant Systems, Inc.
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox =>.Dropbox
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GRF Editor
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HxD Hex Editor
O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MuMu Player
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Hacker 2 =>.Wj32
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ragnarok Online
O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tencent Software
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS =>.VEGAS
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2019 =>.Pinnacle Systems, Inc.
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 06/03/2020 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 10/10/2020 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 23/03/2020 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 09/04/2022 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 15/03/2022 - [] D -- C:\ProgramData\BlueStacks_nxt
O43 - CFD: 07/04/2021 - [] D -- C:\ProgramData\Conexant =>.Conexant Systems, Inc.
O43 - CFD: 09/04/2022 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\ProgramData\Dropbox =>.Dropbox
O43 - CFD: 29/02/2020 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 07/10/2020 - [] D -- C:\ProgramData\Magix =>.MAGIX_Software_GmbH
O43 - CFD: 09/04/2022 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 15/04/2021 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 29/04/2020 - [] D -- C:\ProgramData\Microsoft Visual Studio =>.Microsoft Corporation
O43 - CFD: 15/03/2022 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation
O43 - CFD: 18/03/2022 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 29/03/2021 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation
O43 - CFD: 15/03/2020 - [] D -- C:\ProgramData\Razer =>.Razer
O43 - CFD: 13/04/2022 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 03/03/2020 - [0] D -- C:\ProgramData\Solid State Networks =>.Solid State Networks
O43 - CFD: 10/04/2022 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 07/04/2021 - [] D -- C:\ProgramData\UIU
O43 - CFD: 09/04/2022 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 07/10/2020 - [] D -- C:\ProgramData\VEGAS =>.VEGAS
O43 - CFD: 07/10/2020 - [] D -- C:\ProgramData\VEGAS Pro
O43 - CFD: 29/04/2020 - [] D -- C:\ProgramData\Windows App Certification Kit =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 10/10/2020 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc.
O43 - CFD: 29/04/2020 - [] D -- C:\Program Files (x86)\Common Files\Designer =>.Designer
O43 - CFD: 29/04/2020 - [] D -- C:\Program Files (x86)\Common Files\Microsoft =>.Microsoft Corporation
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 18/05/2020 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games
O43 - CFD: 10/04/2022 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 12/04/2022 - [0] D -- C:\Users\Ganja\AppData\Roaming\360DesktopLite
O43 - CFD: 11/03/2020 - [0] D -- C:\Users\Ganja\AppData\Roaming\360DrvMgr
O43 - CFD: 13/06/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Act Editor
O43 - CFD: 17/05/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 29/06/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\AndroidTbox
O43 - CFD: 16/02/2021 - [] D -- C:\Users\Ganja\AppData\Roaming\Apowersoft =>.Apowersoft
O43 - CFD: 23/03/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 18/04/2021 - [] D -- C:\Users\Ganja\AppData\Roaming\Binance =>.Binance
O43 - CFD: 15/12/2021 - [] D -- C:\Users\Ganja\AppData\Roaming\ChangZhi2
O43 - CFD: 29/11/2021 - [] D -- C:\Users\Ganja\AppData\Roaming\discord
O43 - CFD: 08/03/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Dropbox =>.Dropbox
O43 - CFD: 21/04/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\EasyAntiCheat =>.EasyAntiCheat
O43 - CFD: 12/04/2022 - [] D -- C:\Users\Ganja\AppData\Roaming\Geek Uninstaller =>.Geek Uninstaller
O43 - CFD: 13/06/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\GRF Editor
O43 - CFD: 09/05/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Hex-Rays
O43 - CFD: 29/03/2021 - [] D -- C:\Users\Ganja\AppData\Roaming\java =>.Oracle
O43 - CFD: 15/12/2021 - [] D -- C:\Users\Ganja\AppData\Roaming\lddownloader
O43 - CFD: 01/05/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Mael Horz
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\MAGIX =>.MAGIX_Software_GmbH
O43 - CFD: 09/04/2022 - [] SD -- C:\Users\Ganja\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 30/04/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Microsoft FxCop =>.Microsoft Corporation
O43 - CFD: 30/03/2021 - [] D -- C:\Users\Ganja\AppData\Roaming\Mirroring360
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Roaming\NoxSrv
O43 - CFD: 30/04/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\NuGet =>.Microsoft Corporation
O43 - CFD: 22/05/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\NVIDIA =>.nVidia Corporation
O43 - CFD: 01/05/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Process Hacker 2 =>.Wj32
O43 - CFD: 12/03/2022 - [] D -- C:\Users\Ganja\AppData\Roaming\RedFinger
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Sony =>.Sony
O43 - CFD: 08/03/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Tk Patcher
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\VEGAS =>.VEGAS
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\VEGAS Pro
O43 - CFD: 29/04/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\Visual Studio Setup =>.Pinnacle Systems, Inc.
O43 - CFD: 14/03/2022 - [] D -- C:\Users\Ganja\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 29/04/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\vstelemetry =>.Legitimate
O43 - CFD: 29/04/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\vs_installershell
O43 - CFD: 04/03/2020 - [] D -- C:\Users\Ganja\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 12/03/2022 - [] D -- C:\Users\Ganja\AppData\Roaming\XuanZhi
O43 - CFD: 15/12/2021 - [] D -- C:\Users\Ganja\AppData\Roaming\XuanZhi64
O43 - CFD: 13/04/2022 - [] D -- C:\Users\Ganja\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 22/05/2020 - [] D -- C:\Users\Ganja\AppData\Local\.IdentityService
O43 - CFD: 06/03/2020 - [] D -- C:\Users\Ganja\AppData\Local\Adobe =>.Adobe
O43 - CFD: 23/03/2020 - [] D -- C:\Users\Ganja\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 23/03/2020 - [] D -- C:\Users\Ganja\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 09/04/2022 - [0] SHD -- C:\Users\Ganja\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 31/03/2021 - [] D -- C:\Users\Ganja\AppData\Local\binance-updater
O43 - CFD: 15/03/2022 - [] D -- C:\Users\Ganja\AppData\Local\Bluestacks =>.BlueStack Systems, Inc.
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\cache =>.Legitimate
O43 - CFD: 01/03/2020 - [] D -- C:\Users\Ganja\AppData\Local\CEF =>.CEF
O43 - CFD: 12/03/2022 - [] D -- C:\Users\Ganja\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 07/04/2021 - [] D -- C:\Users\Ganja\AppData\Local\Conexant =>.Conexant Systems, Inc.
O43 - CFD: 27/03/2021 - [] D -- C:\Users\Ganja\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 08/04/2022 - [0] D -- C:\Users\Ganja\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\CrashRpt
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 05/04/2020 - [0] D -- C:\Users\Ganja\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 12/03/2022 - [0] D -- C:\Users\Ganja\AppData\Local\Discord
O43 - CFD: 12/03/2022 - [] D -- C:\Users\Ganja\AppData\Local\Dropbox =>.Dropbox
O43 - CFD: 26/05/2020 - [0] D -- C:\Users\Ganja\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 12/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\ESET =>.ESET
O43 - CFD: 29/02/2020 - [] D -- C:\Users\Ganja\AppData\Local\Google =>.Google
O43 - CFD: 09/04/2022 - [0] SHD -- C:\Users\Ganja\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\Intel =>.Intel Corporation
O43 - CFD: 30/04/2020 - [] D -- C:\Users\Ganja\AppData\Local\IsolatedStorage =>.id Software
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Local\MAGIX =>.MAGIX_Software_GmbH
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 21/03/2020 - [0] D -- C:\Users\Ganja\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 29/02/2020 - [] D -- C:\Users\Ganja\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\NemuPlayer
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\Nox =>.FFmpeg Project
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\NoxSrv
O43 - CFD: 22/05/2020 - [] D -- C:\Users\Ganja\AppData\Local\NuGet =>.Microsoft Corporation
O43 - CFD: 15/03/2022 - [] D -- C:\Users\Ganja\AppData\Local\NVIDIA =>.nVidia Corporation
O43 - CFD: 29/02/2020 - [] D -- C:\Users\Ganja\AppData\Local\OneDrive =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 16/02/2021 - [] D -- C:\Users\Ganja\AppData\Local\Patch_My_PC,_LLC
O43 - CFD: 02/03/2020 - [0] D -- C:\Users\Ganja\AppData\Local\PeerDistRepub =>.Microsoft Corporation
O43 - CFD: 06/04/2021 - [] D -- C:\Users\Ganja\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Local\Plugin.MxOfxRotation
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Local\Plugin.ofx360Stabilizer
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Local\Plugin.OfxStitch
O43 - CFD: 29/02/2020 - [] D -- C:\Users\Ganja\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 29/02/2020 - [] D -- C:\Users\Ganja\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 15/03/2020 - [0] D -- C:\Users\Ganja\AppData\Local\Razer =>.Razer
O43 - CFD: 14/03/2022 - [] D -- C:\Users\Ganja\AppData\Local\RedFingerPlayer
O43 - CFD: 29/04/2020 - [] D -- C:\Users\Ganja\AppData\Local\ServiceHub
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Local\Sony =>.Sony
O43 - CFD: 01/03/2020 - [] D -- C:\Users\Ganja\AppData\Local\speech =>.Microsoft Corporation
O43 - CFD: 12/03/2022 - [] D -- C:\Users\Ganja\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 18/05/2020 - [] D -- C:\Users\Ganja\AppData\Local\Steam =>.Steam Games
O43 - CFD: 13/04/2022 - [] D -- C:\Users\Ganja\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [0] SHD -- C:\Users\Ganja\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Local\VEGAS =>.VEGAS
O43 - CFD: 07/10/2020 - [] D -- C:\Users\Ganja\AppData\Local\VEGAS Pro
O43 - CFD: 01/03/2020 - [0] D -- C:\Users\Ganja\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 11/03/2020 - [] D -- C:\Users\Ganja\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 29/02/2020 - [0] D -- C:\Users\Ganja\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 06/03/2020 - [] D -- C:\Users\Ganja\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 29/02/2020 - [] D -- C:\Users\Ganja\AppData\LocalLow\Intel =>.Intel Corporation
O43 - CFD: 18/05/2020 - [] D -- C:\Users\Ganja\AppData\LocalLow\LINE Games Corporation
O43 - CFD: 06/03/2020 - [] SD -- C:\Users\Ganja\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/04/2022 - [0] D -- C:\Users\Ganja\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 20/03/2022 - [] D -- C:\Users\Ganja\Desktop\ACLib
O43 - CFD: 12/04/2022 - [] D -- C:\Users\Ganja\Desktop\FRST-OlderVersion
O43 - CFD: 14/03/2022 - [] D -- C:\Users\Ganja\Desktop\macro
O43 - CFD: 10/04/2022 - [] RD -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] RD -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] RD -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 14/03/2022 - [0] D -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LDPlayer4
O43 - CFD: 07/12/2019 - [] D -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mudfish Cloud VPN
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Redfinger
O43 - CFD: 12/04/2022 - [] RD -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] RD -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] D -- C:\Users\Ganja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 09/04/2022 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 15/04/2021 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 15/04/2021 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 11/04/2022 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 09/04/2022 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\360safe =>.Qihu 360 Software
O43 - CFD: 09/04/2022 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (12) - 0s
O106 - SIOI: DropboxExt1 Class [ DropboxExt01] - {FB314ED9-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O106 - SIOI: DropboxExt7 Class [ DropboxExt02] - {FB314EDF-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O106 - SIOI: DropboxExt9 Class [ DropboxExt03] - {FB314EE1-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O106 - SIOI: DropboxExt3 Class [ DropboxExt04] - {FB314EDB-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O106 - SIOI: DropboxExt2 Class [ DropboxExt05] - {FB314EDA-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O106 - SIOI: DropboxExt4 Class [ DropboxExt06] - {FB314EDC-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O106 - SIOI: DropboxExt5 Class [ DropboxExt07] - {FB314EDD-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O106 - SIOI: DropboxExt8 Class [ DropboxExt08] - {FB314EE0-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O106 - SIOI: DropboxExt10 Class [ DropboxExt09] - {FB314EE2-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O106 - SIOI: DropboxExt6 Class [ DropboxExt10] - {FB314EDE-A251-47B7-93E1-CDD82E34AF8B}. (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - Client Side Caching UI.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation

---\\ Search Context Menu Handlers (SCMH) (30) - 2s
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Microsoft Security Client Shell Extension.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: DropboxExt [64Bits] - {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} . (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O108 - CMH2: NvAppShExt [64Bits] - {A929C4CE-FD36-4270-B4F5-34ECAC5BD63C} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\nv3dappshext.dll =>.NVIDIA Corporation®
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH2: OpenGLShExt [64Bits] - {E97DEC16-A50D-49bb-AE24-CF682282E08D} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\nv3dappshext.dll =>.NVIDIA Corporation®
O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned]
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Microsoft Security Client Shell Extension.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Client Side Caching UI.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: DropboxExt [64Bits] - {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} . (.Dropbox, Inc. - Dropbox Shell Extension.) -- C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc®
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\nvshext.dll =>.NVIDIA Corporation®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Microsoft (C) Work Folders Shell Extension.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Client Side Caching UI.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - App Resolver.) -- C:\Windows\System32\appresolver.dll =>.Microsoft®
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Microsoft Security Client Shell Extension.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation

---\\ Image File Execution Options (11) - 1s
O50 - IFEO:C:\Windows\System32\appverif.exe - (.Microsoft Corporation - Application Verifier User Interface Utility.) [CfgOptions\\0] =>.Microsoft®
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - IE Per-User Initialisation Utility.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - IE 7.0 Unattended Install Utility.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Microsoft Windows Malicious Software Remova.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Microsoft (R) HTML Application host.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Spooler SubSystem App.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Host Process for Windows Services.) [MinimumStackCommitInBytes\\32768] =>.Microsoft®

---\\ System Drivers List (437) - 23s
O58 - SDL:2019/12/07 18:07:53 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [266240] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:13 A . (.Microsoft Corporation - ACPI Driver for NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [809288] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:09 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [139792] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [18432] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [16384] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:35:20 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [694272] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:34 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [651096] =>.Microsoft®
O58 - SDL:2022/04/10 03:40:35 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [48128] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:52 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [118784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:08 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [292352] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2019/12/07 18:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2022/04/10 03:34:14 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [207160] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:14 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [211256] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:53 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [215400] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:53 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:46:40 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) -- C:\WINDOWS\System32\drivers\AppVStrm.sys [138056] =>.Microsoft®
O58 - SDL:2022/04/10 03:46:40 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) -- C:\WINDOWS\System32\drivers\AppvVemgr.sys [174408] =>.Microsoft®
O58 - SDL:2022/04/10 03:46:40 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) -- C:\WINDOWS\System32\drivers\AppvVfs.sys [154952] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft®
O58 - SDL:2020/11/19 01:02:54 A . (.ASUS - ASUS Wireless Radio Control.) -- C:\WINDOWS\System32\drivers\AsRadioControl.sys [32696] =>.ASUSTek Computer Inc.®
O58 - SDL:2019/04/24 15:01:46 A . (.ASUSTek COMPUTER INC. - Asus PTP Filter Driver (x64).) -- C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504] =>.ASUSTek Computer Inc.®
O58 - SDL:2019/12/07 18:09:07 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30032] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [224080] =>.Microsoft®
O58 - SDL:2019/05/21 12:00:00 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw10x.sys [4322552] =>.Qualcomm Atheros®
O58 - SDL:2019/12/07 18:08:41 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [78136] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [41272] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2019/12/07 18:09:00 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:38:00 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [149320] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:32 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [117760] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:39 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [127488] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [36352] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/01/31 08:44:54 A . (.Qualcomm - BT Filter.) -- C:\WINDOWS\System32\drivers\btfilter.sys [69368] =>.Qualcomm Atheros®
O58 - SDL:2019/12/07 18:07:47 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [279040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:21 A . (.Microsoft Corporation - Bluetooth Bus Extender.) -- C:\WINDOWS\System32\drivers\bthenum.sys [113664] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [144896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:22 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [45568] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [76800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:22 A . (.Microsoft Corporation - Bluetooth Bus Driver.) -- C:\WINDOWS\System32\drivers\bthport.sys [1559552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:22 A . (.Microsoft Corporation - Bluetooth Miniport Driver.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [110592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [43832] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [44032] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:47 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [66576] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:37 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:13 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:37:47 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [82256] =>.Microsoft®
O58 - SDL:2021/01/05 01:52:46 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\WINDOWS\System32\drivers\CHDRT64.sys [3463992] =>.Synaptics Incorporated®
O58 - SDL:2019/12/07 18:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications
O58 - SDL:2019/12/07 18:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:00 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [98304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [52224] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:21 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [417080] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:58 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [499712] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:39 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [414024] =>.Microsoft®
O58 - SDL:2022/04/10 03:36:34 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1094456] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [36864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:35:20 A . (.Microsoft Corporation - Kernel Configuration Manager Initial Config.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [29000] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:17 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [746416] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:37 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [40968] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:00 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [57144] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [99368] =>.Microsoft®
O58 - SDL:2022/04/10 03:46:57 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\WINDOWS\System32\drivers\csc.sys [586752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:38:25 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [97096] =>.Microsoft®
O58 - SDL:2022/02/26 23:59:32 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\WINDOWS\System32\drivers\dbx-canary.sys [47600] =>.Microsoft®
O58 - SDL:2022/02/26 23:59:32 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\WINDOWS\System32\drivers\dbx-dev.sys [47600] =>.Microsoft®
O58 - SDL:2022/02/26 23:59:32 A . (.Dropbox, Inc. - Dropbox Filter Driver.) -- C:\WINDOWS\System32\drivers\dbx-stable.sys [47600] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:07 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [47104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:39 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [152064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:14 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [98624] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:52 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [38200] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:52 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:57 A . (.Microsoft Corporation - Dynamic Memory.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [59192] =>.Microsoft®
O58 - SDL:2016/05/18 18:50:44 A . (.Intel Corporation - DPTF CPU Device (64-Bit).) -- C:\WINDOWS\System32\drivers\dptf_cpu.sys [65088] =>.Intel Corporation®
O58 - SDL:2022/04/10 03:34:09 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [97792] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:09 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16128] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [37392] =>.Microsoft®
O58 - SDL:2022/04/10 03:49:32 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [94176] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:23 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [196432] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:37 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:52 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [35128] =>.Microsoft®
O58 - SDL:2022/04/10 03:36:36 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [3814768] =>.Microsoft®
O58 - SDL:2022/04/10 03:36:36 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [456016] =>.Microsoft®
O58 - SDL:2022/04/10 03:36:36 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [901960] =>.Microsoft®
O58 - SDL:2022/04/10 03:44:19 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [95032] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [124728] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [15872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/05/19 01:51:24 A . (.Intel Corporation - DPTF Zone (64-Bit).) -- C:\WINDOWS\System32\drivers\esif_lf.sys [343608] =>.Intel Corporation®
O58 - SDL:2019/12/07 18:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:05 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [418648] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:05 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [426352] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [34816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:09 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [59392] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:46 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [94736] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:46 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [28672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:21 A . (.Microsoft Corporation - Microsoft Filesystem Filter Manager.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [435568] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:20 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [69968] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [33592] =>.Microsoft®
O58 - SDL:2022/04/10 03:49:32 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [801608] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:35 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [502584] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:05 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:08 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [134656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:08 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [430080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [39440] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:22 A . (.Microsoft Corporation - Bluetooth Miniport Driver for HID Devices.) -- C:\WINDOWS\System32\drivers\hidbth.sys [120320] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:22 A . (.Microsoft Corporation - Hid Class Library.) -- C:\WINDOWS\System32\drivers\hidclass.sys [225792] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [55824] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [48640] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:22 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [66560] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:22 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [44032] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:17 A . (.Microsoft Corporation - HTTP Protocol Stack.) -- C:\WINDOWS\System32\drivers\http.sys [1576760] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:57 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [35128] =>.Microsoft®
O58 - SDL:2022/04/10 03:43:57 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [95048] =>.Microsoft®
O58 - SDL:2022/04/10 03:45:30 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [148280] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:21 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [33096] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:57 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [27448] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:57 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [41784] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - i8042 Port Driver.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 18:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 18:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2019/12/07 18:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:01 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [47104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19792] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:13 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [418800] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:47 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [30720] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:14 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [230728] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:13 A . (.Microsoft Corporation - Intel Telemetry Driver.) -- C:\WINDOWS\System32\drivers\IntelTA.sys [26608] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:02 A . (.Microsoft Corporation - I/O rate control Filter.) -- C:\WINDOWS\System32\drivers\iorate.sys [57168] =>.Microsoft®
O58 - SDL:2022/04/10 03:40:50 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [90112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - WMI IPMI DRIVER.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [117584] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:34 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [225280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:09 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [59704] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - PNP ISA Bus Driver.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22864] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Keyboard Class Driver.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [71480] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - HID Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [46592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:46:48 A . (.Microsoft Corporation - Keyboard Lockdown Subsystem.) -- C:\WINDOWS\System32\drivers\kbldfltr.sys [29000] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [33296] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:04 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [32256] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:58 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [449024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:33 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [148312] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:18 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [180040] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:58 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:55 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [72704] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft®
O58 - SDL:2022/04/10 03:40:08 A . (.Microsoft Corporation - LUA File Virtualization Filter Driver.) -- C:\WINDOWS\System32\drivers\luafv.sys [140800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [537608] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [64016] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:03 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [391168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:00 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [25088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:47 A . (.Microsoft Corporation - Microsoft Bluetooth Avrcp Transport Driver.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [65024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:22 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [106496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:17 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:45:19 A . (.Microsoft Corporation - Modem Device Driver.) -- C:\WINDOWS\System32\drivers\modem.sys [47104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:12 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [83968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Mouse Class Driver.) -- C:\WINDOWS\System32\drivers\mouclass.sys [67600] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - HID Mouse Filter Driver.) -- C:\WINDOWS\System32\drivers\mouhid.sys [35328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - Mount Point Manager.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [110392] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:33 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [80896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:45:33 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [165888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:39 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [579432] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:39 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [261448] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [44048] =>.Microsoft®
O58 - SDL:2022/04/10 03:36:41 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [183112] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [56120] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:36 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:16 A . (.Microsoft Corporation - Pass-through Driver for HID-UMDF Interface.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [12288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:36 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [30208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [20280] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:14 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [293176] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:58 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [34816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:05 A . (.Microsoft Corporation - Microsoft Link-Layer Discovery Protocol Dri.) -- C:\WINDOWS\System32\drivers\mslldp.sys [78848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:58 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [11264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:58 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [11264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:13 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\msquic.sys [322376] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:34 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [375608] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:58 A . (.Microsoft Corporation - Microsoft Security Events Component file sy.) -- C:\WINDOWS\System32\drivers\mssecflt.sys [331064] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [47928] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:58 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:53 A . (.Microsoft Corporation - Microsoft Multi-Touch HID Driver.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/02 17:49:00 A . (...) -- C:\WINDOWS\System32\drivers\MUDWFP.sys [31736] {21EDB2EF87AC6DA0A985561590036EAA}.
O58 - SDL:2022/04/10 03:39:39 A . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\WINDOWS\System32\drivers\mup.sys [132920] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:34 A . (.Microsoft Corporation - Network Driver Interface Specification (NDI.) -- C:\WINDOWS\System32\drivers\ndis.sys [1476944] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:48 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [54272] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:34 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [135168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:52 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [28672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - NDIS User mode I/O driver.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [70656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:05 A . (.Microsoft Corporation - Microsoft Virtual Network Adapter Enumerato.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:52 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [212992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:48 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [72720] =>.Microsoft®
O58 - SDL:2022/04/10 03:40:52 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [93696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:33 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [131584] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/18 23:48:37 A . (.SoftEther Corporation - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\Neo6_x64_VPN.sys [37824] =>.SoftEther Corporation®
O58 - SDL:2020/01/10 19:43:42 A . (.Apple Inc. - Apple Mobile Device Ethernet.) -- C:\WINDOWS\System32\drivers\netaapl64.sys [23040] [Unsigned] =>.Apple Inc.
O58 - SDL:2022/04/10 03:39:35 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [214528] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:04 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [64312] =>.Microsoft®
O58 - SDL:2022/04/10 03:40:34 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [341504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:34 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [601944] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:27 A . (.Microsoft Corporation - Virtual NDIS Miniport.) -- C:\WINDOWS\System32\drivers\netvsc.sys [252264] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:22 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [87368] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [27648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:34 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [48640] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:32 A . (.Microsoft Corporation - NT File System Driver.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2851664] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:58 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [20792] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7680] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - NVDIMM device driver.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [168464] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:43 A . (.Microsoft Corporation - NativeWiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\nwifi.sys [757760] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:37:48 A . (.Microsoft Corporation - QoS Packet Scheduler.) -- C:\WINDOWS\System32\drivers\pacer.sys [161608] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Parallel Port Driver.) -- C:\WINDOWS\System32\drivers\parport.sys [109056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:33 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [182608] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - NT Plug and Play PCI Enumerator.) -- C:\WINDOWS\System32\drivers\pci.sys [469840] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16712] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [56656] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - PCMCIA Bus Driver.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [127800] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:12 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [57656] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:20 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [159056] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:29 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [823808] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft®
O58 - SDL:2022/04/10 03:45:15 A . (.Microsoft Corporation - Packet Monitor Driver.) -- C:\WINDOWS\System32\drivers\PktMon.sys [130360] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Persistent memory driver.) -- C:\WINDOWS\System32\drivers\pmem.sys [138040] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - Plug and Play Memory Driver.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [17408] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:36 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:09 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [388608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:14 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [216376] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:33 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [43448] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:05 A . (.Microsoft Corporation - Microsoft Quality Windows Audio Video Exper.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:09 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [42296] =>.Microsoft®
O58 - SDL:2022/04/10 03:40:50 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [20480] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:52 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:07 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [87552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:52 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [101376] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:52 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [86016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:39 A . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) -- C:\WINDOWS\System32\drivers\rdbss.sys [462696] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [28672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:45:14 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:44:58 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [32624] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:54 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [297784] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:55 A . (.Microsoft Corporation - NT ReFS FS Driver.) -- C:\WINDOWS\System32\drivers\refs.sys [2004792] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:55 A . (.Microsoft Corporation - NT ReFS FS Driver.) -- C:\WINDOWS\System32\drivers\refsv1.sys [990536] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [213504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:27 A . (.Microsoft Corporation - Microsoft RemoteFX VM Transport.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [115712] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:41 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [158208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:07 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:51 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:55 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [89088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/19 03:50:08 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [1162832] =>.Realtek Semiconductor Corp.®
O58 - SDL:2019/12/07 18:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek
O58 - SDL:2022/04/10 03:34:14 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [118088] =>.Microsoft®
O58 - SDL:2022/04/10 03:41:08 A . (.Microsoft Corporation - Microsoft Smart Card Reader Filter Driver.) -- C:\WINDOWS\System32\drivers\scfilter.sys [44032] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - Storage Class Memory Bus Driver.) -- C:\WINDOWS\System32\drivers\scmbus.sys [158520] =>.Microsoft®
O58 - SDL:2022/04/10 03:40:13 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [188232] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:23 A . (.Microsoft Corporation - SecureDigital Bus Driver.) -- C:\WINDOWS\System32\drivers\sdbus.sys [306544] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [35128] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:09 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [105488] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:23 A . (.Microsoft Corporation - SD Storage Class Driver.) -- C:\WINDOWS\System32\drivers\sdstor.sys [104264] =>.Microsoft®
O58 - SDL:2020/04/18 23:45:05 A . (.SoftEther Corporation - SoftEther VPN.) -- C:\WINDOWS\System32\drivers\SeLow_x64.sys [50624] =>.SoftEther Corporation®
O58 - SDL:2019/12/07 18:08:36 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [86328] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:36 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [173072] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [27648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Serial Device Driver.) -- C:\WINDOWS\System32\drivers\serial.sys [90624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Serial Mouse Filter Driver.) -- C:\WINDOWS\System32\drivers\sermouse.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [19456] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:33 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [88080] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [38200] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft®
O58 - SDL:2019/12/07 23:48:54 A . (.Microsoft Corporation - SMB Network Direct Driver.) -- C:\WINDOWS\System32\drivers\smbdirect.sys [172544] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:09 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:14 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [215864] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:34 A . (.Microsoft Corporation - Storage Spaces Parser.) -- C:\WINDOWS\System32\drivers\spaceparser.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:14 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [679736] =>.Microsoft®
O58 - SDL:2019/12/07 23:48:51 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [90936] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:37 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [87352] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:39 A . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\WINDOWS\System32\drivers\srv2.sys [784896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:39:39 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [315904] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [186168] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:15 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [162128] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:20 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [723280] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:37 A . (.Microsoft Corporation - Storage QoS Filter.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [92984] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:16 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [61264] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:57 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [44048] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:00 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [82432] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:27 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSC.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [6656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/02 17:49:00 A . (.The OpenVPN Project - TAP-Win32 Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tap0901.sys [31232] [Unsigned] =>.The OpenVPN Project
O58 - SDL:2019/12/07 18:09:00 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [33280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:35:35 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [31568] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:35 A . (.Microsoft Corporation - TCP/IP Driver.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2991416] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:04 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [54784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [39736] =>.Microsoft®
O58 - SDL:2022/04/10 03:43:55 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117584] =>.Microsoft®
O58 - SDL:2016/04/14 18:37:54 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [202848] =>.Intel(R) Embedded Subsystems and IP Blocks Group®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [41272] =>.Microsoft®
O58 - SDL:2020/06/29 20:28:57 A . (.TENCENT - tesrsdt64 NT Driver.) -- C:\WINDOWS\System32\drivers\tesrsdt.sys [812208] =>.Tencent Technology(Shenzhen) Company Limited®
O58 - SDL:2022/04/10 03:39:39 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [142136] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:24 A . (.Microsoft Corporation - TPM Device Driver.) -- C:\WINDOWS\System32\drivers\tpm.sys [255288] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:09 A . (.Microsoft Corporation - Remote Desktop USB Hub Filter Driver.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [66560] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:13 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [37888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:28 A . (.Microsoft Corporation - Remote Desktop USB Hub.) -- C:\WINDOWS\System32\drivers\tsusbhub.sys [137728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:04 A . (.Microsoft Corporation - Microsoft Tunnel Interface Driver.) -- C:\WINDOWS\System32\drivers\tunnel.sys [129024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:16 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79160] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:02 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [160256] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:37 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [188416] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [36864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:38:02 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [113152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:09 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [259896] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:09 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [52736] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:09:51 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [344064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:46:41 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) -- C:\WINDOWS\System32\drivers\UevAgentDriver.sys [41288] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:02 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [324432] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:23 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [168264] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [15360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/06/29 23:00:07 A . (.TENCENT - Loader64 NT Driver.) -- C:\WINDOWS\System32\drivers\UniSafe.sys [581912] =>.Tencent Technology(Shenzhen) Company Limited®
O58 - SDL:2019/12/07 18:08:37 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [76304] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:07 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [24064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:08 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [209920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [260608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:41 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:23 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [185664] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:50 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [107520] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [33080] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [86544] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\WINDOWS\System32\drivers\usbhub.sys [528184] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:23 A . (.Microsoft Corporation - USB3 HUB Driver.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [648016] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - USB 1.1 & 2.0 Port Driver.) -- C:\WINDOWS\System32\drivers\usbport.sys [473400] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:12 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:18 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [81408] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:23 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [136528] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [39424] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:13 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [330576] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:23 A . (.Microsoft Corporation - USB XHCI Driver.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [624976] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [67384] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - Driver Verifier Extension.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [347448] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:19 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [821584] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [47616] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:25 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [641352] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [47104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:45:23 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [114504] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:26 A . (.Microsoft Corporation - Microsoft Hyper-V Virtual Machine Bus Child.) -- C:\WINDOWS\System32\drivers\vmbus.sys [160072] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:57 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [36664] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:57 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [23864] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:57 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [19768] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:57 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [18960] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:26 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [54080] =>.Microsoft®
O58 - SDL:2022/04/10 03:34:14 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\WINDOWS\System32\drivers\volmgr.sys [90960] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:37 A . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [389432] =>.Microsoft®
O58 - SDL:2022/04/10 03:36:00 A . (.Microsoft Corporation - Volume Shadow Copy driver.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:53 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16696] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:57 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [89400] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:13 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:35:44 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [77824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:13 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [50688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:53 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\WINDOWS\System32\drivers\wacompen.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:52 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [93184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:36:36 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [74752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:38:00 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [202568] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:00 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [93184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:15 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46688] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:33 A . (.Microsoft Corporation - Kernel Mode Driver Framework Runtime.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [828240] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:15 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [350136] =>.Microsoft®
O58 - SDL:2022/04/10 03:39:33 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [59192] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:43 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [967168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:39 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [23560] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:16 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [54200] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [52024] =>.Microsoft®
O58 - SDL:2022/04/10 03:37:48 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [180040] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:59 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [39760] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:37 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [76984] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18920] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:51 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [32784] =>.Microsoft®
O58 - SDL:2019/12/07 18:09:33 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [96056] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft®
O58 - SDL:2022/04/10 03:35:10 A . (.Microsoft Corporation - Windows NAT Driver.) -- C:\WINDOWS\System32\drivers\winnat.sys [261120] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:56 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [107008] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft®
O58 - SDL:2019/12/07 18:07:54 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [19456] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [19472] =>.Microsoft®
O58 - SDL:2022/04/10 03:38:58 A . (.Microsoft Corporation - Windows Overlay Filter.) -- C:\WINDOWS\System32\drivers\wof.sys [234296] =>.Microsoft®
O58 - SDL:2019/12/07 23:48:53 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [32568] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:49 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [43832] =>.Microsoft®
O58 - SDL:2019/12/07 18:08:41 A . (.Microsoft Corporation - Winsock2 IFS Layer.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [25088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:08 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [136192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:40:08 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [315392] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:07 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [332288] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:34:07 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [51712] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:37:51 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [596992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:37:02 A . (.Microsoft Corporation - Base Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kbase.sys [2892800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:37:51 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3813888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 18:08:34 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [30208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:42:40 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\SysWOW64\win32k.sys [329728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2022/04/10 03:42:40 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\SysWOW64\win32kfull.sys [2753536] [Unsigned] =>.Microsoft Corporation

---\\ File Associations Shell Spawning (10) - 0s
O67 - Shell Spawning: <.bat> <batfile>[HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> <cplfile>[HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> <cmdfile>[HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> <comfile>[HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> <evtfile>[HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> <exefile>[HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> <htmlfile>[HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O67 - Shell Spawning: <.js> <JSFile>[HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> <regfile>[HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> <scrfile>[HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ Start Menu Internet (12) - 1s
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O68 - StartMenuInternet: <Microsoft Edge> <Microsoft Edge> [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Microsoft Edge> <Microsoft Edge> [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialisation Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Microsoft Edge> <Microsoft Edge> [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Google Chrome> <Google Chrome> [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: <IEXPLORE.EXE> <Internet Explorer> [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: <Microsoft Edge> <Microsoft Edge> [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation

---\\ Search Browser Infection (3) - 0s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] [64Bits]{67C334C0-408D-4E6D-B5A7-0ADD6AFFA252} - (Google) - http://www.google.com/ =>.Google Inc.
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ Search Svchost Services (51) - 4s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smart card Certificate Propagatio.) -- C:\WINDOWS\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smart card Certificate Propagatio.) -- C:\Windows\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [301568] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [1335808] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [1054208] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [836096] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Log-on Service DLL.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\System32\iscsiexe.dll [160256] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\System32\schedsvc.dll [814592] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [488960] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [515072] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports.) -- C:\Windows\System32\wercplsupport.dll [134656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2430976] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [340480] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [487936] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Provides infrastructure support for deployi.) -- C:\Windows\System32\LanguageOverlayServer.dll [302080] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1270272] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - Windows Managent Service DLL.) -- C:\Windows\System32\Windows.Internal.Management.dll [1016320] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - Windows Management Service DLL.) -- C:\Windows\System32\Windows.Management.Service.dll [809984] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1484288] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Network Setup Service.) -- C:\Windows\System32\NetSetupSvc.dll [335360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Microsoft® Account Service.) -- C:\Windows\System32\wlidsvc.dll [2246144] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Token Broker.) -- C:\Windows\System32\TokenBroker.dll [1522176] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Geolocation Service.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Natural Authentication Service.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [967680] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [551936] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [619008] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [3403776] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [259584] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Flight Settings.) -- C:\Windows\System32\flightsettings.dll [939984] =>.Microsoft®
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Windows Push Notification System Service.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [223232] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Update Session Orchestrator Service.) -- C:\Windows\System32\usosvc.dll [569856] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Microsoft Network Connectivity Assistant Se.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Device Setup Manager.) -- C:\Windows\System32\DeviceSetupManager.dll [288256] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [207360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [555008] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - SvcHost Service for Microsoft Keyboard Filt.) -- C:\Windows\System32\KeyboardFilterSvc.dll [161096] =>.Microsoft®

---\\ Product Upgrade Codes (210) - 5s
O90 - PUC: "00004109340000000100000000F01FEC" [HKLM] . (.Microsoft Office Office 32-bit Components 2010.) =>.Microsoft Corporation
O90 - PUC: "00004109340090400100000000F01FEC" [HKLM] . (.Microsoft Office Shared 32-bit MUI (English) 2010.) =>.Microsoft Corporation
O90 - PUC: "00004109511090400100000000F01FEC" [HKLM] . (.Microsoft Office Shared Setup Metadata MUI (English) 2010.) =>.Microsoft Corporation
O90 - PUC: "00004109610000000100000000F01FEC" [HKLM] . (.Microsoft Office Excel 2010.) =>.Microsoft Corporation
O90 - PUC: "00004109610090400100000000F01FEC" [HKLM] . (.Microsoft Office Excel MUI (English) 2010.) =>.Microsoft Corporation
O90 - PUC: "00004109C20090400100000000F01FEC" [HKLM] . (.Microsoft Office Proofing (English) 2010.) =>.Microsoft Corporation
O90 - PUC: "00004109E60090400100000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (English) 2010.) =>.Microsoft Corporation
O90 - PUC: "00004109F10090400100000000F01FEC" [HKLM] . (.Microsoft Office Proof (English) 2010.) =>.Microsoft Corporation
O90 - PUC: "00004109F100A0C00100000000F01FEC" [HKLM] . (.Microsoft Office Proof (Spanish) 2010.) =>.Microsoft Corporation
O90 - PUC: "00004109F100C0400100000000F01FEC" [HKLM] . (.Microsoft Office Proof (French) 2010.) =>.Microsoft Corporation
O90 - PUC: "0076C0A639AEC2738817CDFC311D064A" [HKLM] . (.Microsoft .NET Framework 4.5.1 Multi-Targeting Pack.) =>.Microsoft Corporation
O90 - PUC: "033CBC4761DE9B138EEBC0A6E876ED23" [HKLM] . (.Universal CRT Headers Libraries and Sources.) =>.Microsoft Corporation
O90 - PUC: "08715B43E229FBC51CF6310F9A052276" [HKLM] . (.Windows SDK Redistributables.) =>.bl.org
O90 - PUC: "097BD4BDDD462091B42F38B3B3D6CB1A" [HKLM] . (.MSI Development Tools.) =>.Microsoft Corporation
O90 - PUC: "0A1918659FD27B448BA1296CB0F6541B" [HKLM] . (.Visual C++ Library CRT Appx Package.) =>.Microsoft Corporation
O90 - PUC: "0A4FDE1875CF3C842BA69EC0D22C66EC" [HKLM] . (.Microsoft .NET Core Runtime - 3.1.23 (x64).) =>.Microsoft Corporation
O90 - PUC: "0B3EC7D89735EF64F9B46AD5F9C41C1F" [HKLM] . (.Microsoft System CLR Types for SQL Server 2019 CTP2.2.) -- C:\Windows\Installer\{8D7CE3B0-5379-46FE-9F4B-A65D9F4CC1F1}\ARPIco =>.Microsoft Corporation
O90 - PUC: "0BDDA04573A799B95386DFE13AD3B383" [HKLM] . (.Windows SDK Desktop Tools x86.) =>.Microsoft Corporation
O90 - PUC: "0F269E650BF476C388BDE9AAE6FE4C39" [HKLM] . (.Microsoft .NET Framework 4.5 Multi-Targeting Pack.) =>.Microsoft Corporation
O90 - PUC: "0F5B946EC72B9E118B655A4196758F33" [HKLM] . (.VEGAS Pro 17.0.) -- C:\Windows\Installer\{E649B5F0-B27C-11E9-B856-A5146957F833}\vegas.ico (new loc) =>.Sony Corporation
O90 - PUC: "11F8E597ED73E11629E1D707EB90FBB7" [HKLM] . (.Windows SDK Desktop Tools x64.) =>.Microsoft Corporation
O90 - PUC: "123A7E3C641C7B74E9B307A612302127" [HKLM] . (.Microsoft .NET Core Host FX Resolver - 3.1.23 (x86).) =>.Microsoft Corporation
O90 - PUC: "1321161AFE984C845A4FF5B7B0EA7233" [HKLM] . (.Visual C++ Library CRT ARM64 Appx Package.) =>.Microsoft Corporation
O90 - PUC: "13666DF8469B21E4291E8A4AAC5D1DC4" [HKLM] . (.Microsoft .NET Core Host - 2.1.30 (x64).) =>.Microsoft Corporation
O90 - PUC: "14038466095F64CEA40FEE936CF26B08" [HKLM] . (.WinRT Intellisense PPI - en-us.) =>.Microsoft Corporation
O90 - PUC: "1435D0529780610493C9BBDC788BE059" [HKLM] . (.WinRT Intellisense UAP - Other Languages.) =>.Microsoft Corporation
O90 - PUC: "171F8A842F25B2734841AE05167780EB" [HKLM] . (.Microsoft .NET CoreRuntime For CoreCon.) =>.Microsoft Corporation
O90 - PUC: "186D5A9C8160B1A44844D5B29F3BD597" [HKLM] . (.Microsoft .NET Core AppHost Pack - 3.1.3 (x64_x86).) =>.Microsoft Corporation
O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "1A778F6E56F20FB4786B4A70B167363D" [HKLM] . (.Windows SDK AddOn.) =>.Microsoft Corporation
O90 - PUC: "1af2a8da7e60d0b429d7e6453b3d0182" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org
O90 - PUC: "1AF6D38EC72B9E110BBD5A4196758F33" [HKLM] . (.MSVCRT Redists.) =>.Advanced Micro Devices Inc
O90 - PUC: "1BFB89A36A61B675FF8CF7FE624BD0AB" [HKLM] . (.Windows SDK.) =>.Microsoft Corporation
O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "1DE8D7C53E49E773BBF22DC09AF7A8F6" [HKLM] . (.Microsoft ASP.NET Core 3.1.3 Shared Framework (x86).) =>.Microsoft Corporation
O90 - PUC: "1E3A3E5B9251A5D4E9594379F10A8752" [HKLM] . (.vs_BlendMsi.) =>.bl.org
O90 - PUC: "1F12D31C3A9E39BF814C9B50BF741F22" [HKLM] . (.Windows SDK for Windows Store Apps Contracts.) =>.Microsoft Corporation
O90 - PUC: "1F5AB0EAA36D487449F411B428BF2820" [HKLM] . (.Microsoft .NET Core SDK 3.1.201 (x64) from Visual Studio.) -- C:\Windows\Installer\{AE0BA5F1-D63A-4784-944F-114B82FB8202}\icon.ico =>.Microsoft Corporation
O90 - PUC: "1FBA7AC486BDE9F0A59D855510890DCA" [HKLM] . (.Windows SDK Signing Tools.) =>.Microsoft Corporation
O90 - PUC: "21EE4A31AE32173319EEFE3BD6FDFFE3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "21FB65F58180A85B85263979481EF2B8" [HKLM] . (.Windows SDK EULA.) =>.Microsoft Corporation
O90 - PUC: "22BEFC8F7E2A1793E9ADB411DEFE1C58" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "246D29C1C8DA9134E8B7D5A65AF534B0" [HKLM] . (.IntelliTraceProfilerProxy.) =>.Microsoft Corporation
O90 - PUC: "24F1F172745B894428F595D0BB71477F" [HKLM] . (.vs_clickoncebootstrappermsires.) =>.Microsoft Corporation
O90 - PUC: "25DCF1B7B6F821F41A3463E13AF9E5C7" [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation
O90 - PUC: "269CC527DB897C24788D156C08BF7197" [HKLM] . (.Microsoft System CLR Types for SQL Server 2019 CTP2.2.) -- C:\Windows\Installer\{725CC962-98BD-42C7-87D8-51C680FB1779}\ARPIco =>.Microsoft Corporation
O90 - PUC: "26F25D0BD2A1320478998E55E4E719E3" [HKLM] . (.Microsoft .NET Core AppHost Pack - 3.1.23 (x64_arm64).) =>.Microsoft Corporation
O90 - PUC: "28500C0281DB995BFC89161051767D74" [HKLM] . (.Windows SDK ARM Desktop Tools.) =>.Microsoft Corporation
O90 - PUC: "286E802EEE05F2F489069CB109B6A830" [HKLM] . (.vs_tipsmsi.) =>.Microsoft Corporation
O90 - PUC: "287DA2767409B2F4DA8DA3D441AF5134" [HKLM] . (.Microsoft .NET Core Host FX Resolver - 3.1.3 (x86).) =>.Microsoft Corporation
O90 - PUC: "2BEEE4519D815DF4DE1ED6B013F8CA35" [HKLM] . (.Windows Mobile Extension SDK Contracts.) =>.Microsoft Corporation
O90 - PUC: "2C47B0D78F3C1FA449F0DC97BAB4D2EC" [HKLM] . (.Microsoft Visual C++ 2019 X64 Additional Runtime - 14.25.28508.) =>.Microsoft Corporation
O90 - PUC: "2D6E16C9E34C64765B91165855C8A442" [HKLM] . (.WinRT Intellisense PPI - Other Languages.) =>.Microsoft Corporation
O90 - PUC: "2DE2FAF542AC3130C8FA2CD8EE242100" [HKLM] . (.Windows SDK for Windows Store Apps Metadata.) =>.Microsoft Corporation
O90 - PUC: "3074B74E73320DE4AB42E30CD8466348" [HKLM] . (.vs_Graphics_Singletonx86.) =>.Microsoft Corporation
O90 - PUC: "30F1F76EA4BF16D398996E4A4C2BF643" [HKLM] . (.WinRT Intellisense Desktop - en-us.) =>.Microsoft Corporation
O90 - PUC: "32D4EF452A114C1F679E978CBF044A1A" [HKLM] . (.Universal CRT Tools x64.) =>.Microsoft Corporation
O90 - PUC: "34A7EC25994BB4F55A52AA78493D85F0" [HKLM] . (.Windows SDK DirectX x86 Remote.) =>.Microsoft Corporation
O90 - PUC: "3BF0A2962A6E14D4CA3014634B13D20C" [HKLM] . (.vs_FileTracker_Singleton.) =>.Microsoft Corporation
O90 - PUC: "3DBD715B245B8CF49975FF2B3C6ED5D1" [HKLM] . (.Microsoft .NET Framework 4.7.2 Targeting Pack (ENU).) =>.Microsoft Corporation
O90 - PUC: "3e43b73803c7c394f8a6b2f0402e19c2" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "3F787C0517DAF89469EA4728393C7240" [HKLM] . (.Microsoft .NET Core Host - 3.1.23 (x86).) =>.Microsoft Corporation
O90 - PUC: "4083EE762469AB26BE1F1B65F14BCEEB" [HKLM] . (.SDK ARM Redistributables.) =>.bl.org
O90 - PUC: "41961B72D5CB810408477021262AF7D6" [HKLM] . (.vs_minshellinteropmsi.) =>.Microsoft Corporation
O90 - PUC: "4695CE48045D49440934FBB7EE731D1E" [HKLM] . (.icecap_collection_x64.) =>.Microsoft Corporation
O90 - PUC: "47586AF0B09600B498AA2B9864324194" [HKLM] . (.Microsoft Visual C++ 2019 X86 Additional Runtime - 14.25.28508.) =>.Microsoft Corporation
O90 - PUC: "49420721A6E9E5F34914B2D752A836B9" [HKLM] . (.Microsoft .NET CoreRuntime SDK.) =>.Microsoft Corporation
O90 - PUC: "4A02DA03FFF123625455FEFAD9A823DC" [HKLM] . (.Windows Mobile Extension SDK.) =>.Microsoft Corporation
O90 - PUC: "4A29C0DA41511CB47A322A278A439342" [HKLM] . (.vs_devenvmsi.) =>.Microsoft Corporation
O90 - PUC: "4A6A30B6C346EC75ACF6E491FB7494A7" [HKLM] . (.WinRT Intellisense IoT - Other Languages.) =>.Microsoft Corporation
O90 - PUC: "4A98DCEE0F3FEB74CAFCDAFFFCE27196" [HKLM] . (.Microsoft Visual Studio Setup Configuration.) =>.Microsoft Corporation
O90 - PUC: "4BEA594979BAED93C82408E6FE57CE7A" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x64).) =>.Microsoft Corporation
O90 - PUC: "50C5893A6837F1144AFB237AF373BE44" [HKLM] . (.Apple Software Update.) -- C:\Windows\Installer\{A3985C05-7386-411F-A4BF-32A73F37EB44}\Installer.ico =>.Apple Inc.
O90 - PUC: "516DE531A57730D459092F1A511D230C" [HKLM] . (.Visual C++ Library CRT Desktop Appx Package.) =>.Microsoft Corporation
O90 - PUC: "5350C949C171F084C94F2DC5E906EF88" [HKLM] . (.Microsoft .NET Framework 4.8 SDK.) =>.Microsoft Corporation
O90 - PUC: "541F3420D670A324F87712D88C482016" [HKLM] . (.ClickOnce Bootstrapper Package for Microsoft .NET Framework.) =>.Microsoft Corporation
O90 - PUC: "5777AC74DEA2F1242B9A4E0DDC494138" [HKLM] . (.Microsoft TestPlatform SDK Local Feed.) =>.Legitimate
O90 - PUC: "5A812990327ACD34D85B163756A6E149" [HKLM] . (.Dropbox Update Helper.) =>.WINSE
O90 - PUC: "5B975181820010E4CA7279DE08532297" [HKLM] . (.Ragnarok Online.) -- C:\Windows\Installer\{181579B5-0028-4E01-AC27-97ED80352279}\RagnarokIcon.exe
O90 - PUC: "5C54FE5A72AFF8E7A18E3E3DB9CA77E9" [HKLM] . (.Windows SDK Facade Windows WinMD Versioned.) =>.Autodesk
O90 - PUC: "5CF76C5F81FB403429869A1778B642A5" [HKLM] . (.icecap_collectionresourcesx64.) =>.Microsoft Corporation
O90 - PUC: "5EDF65449EAA30E4B943D0A974C6FEA5" [HKLM] . (.Microsoft Windows Desktop Runtime - 3.1.23 (x64).) =>.Microsoft Corporation
O90 - PUC: "62DBF9290209B993A9A757D1160F9B24" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "63018B26F28B88734AB7454695188811" [HKLM] . (.Microsoft ASP.NET Core 2.1.17 Shared Framework (x64).) =>.Microsoft Corporation
O90 - PUC: "66DC40CEA30CD0740B2DB4CB786F83D2" [HKLM] . (.vs_minshellmsires.) =>.Microsoft Corporation
O90 - PUC: "67883CDF86DA616449D2CA1349AD0B3A" [HKLM] . (.vs_communitymsi.) =>.Microsoft Corporation
O90 - PUC: "6793C7A7D05289C30801AE818A06A121" [HKLM] . (.Microsoft ASP.NET Core 3.1.3 Shared Framework (x64).) =>.Microsoft Corporation
O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org
O90 - PUC: "68F1863768DC802475F259B95434B040" [HKLM] . (.SDK ARM Additions.) =>.Microsoft Corporation
O90 - PUC: "69D0B7F9D18805883C30343F0AE89620" [HKLM] . (.Universal CRT Tools x86.) =>.Microsoft Corporation
O90 - PUC: "6ABC8D29D6F023A4D8895E6E39F96048" [HKLM] . (.Visual C++ Library CRT Appx Resource Package.) =>.Microsoft Corporation
O90 - PUC: "6B6C9322CDA43674A81EC8366FFBEB38" [HKLM] . (.Microsoft .NET Core Runtime - 2.1.17 (x64).) =>.Microsoft Corporation
O90 - PUC: "6BE8EEC3E8352ADD155A48E2ECC61E8E" [HKLM] . (.Windows IoT Extension SDK Contracts.) =>.Microsoft Corporation
O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "6EA4715A4073A0EEEBFF12CB2557AB20" [HKLM] . (.Windows SDK for Windows Store Apps Tools.) =>.Microsoft Corporation
O90 - PUC: "6EB7DDEC5B798EA9750C3B090E4C23F8" [HKLM] . (.Windows SDK for Windows Store Managed Apps Libs.) =>.Microsoft Corporation
O90 - PUC: "7064674235373A544BD10B2ED7DF3942" [HKLM] . (.Microsoft .NET Core 3.1 Templates 3.1.417 (x64).) =>.Microsoft Corporation
O90 - PUC: "74819FAB46A0E50489CE0AABF64BCBE4" [HKLM] . (.vs_clickoncebootstrappermsi.) =>.Microsoft Corporation
O90 - PUC: "75384AEFF2EC0DE32B0A5884EB6C1F11" [HKLM] . (.Microsoft ASP.NET Core 3.1.10 Targeting Pack (x64).) =>.Microsoft Corporation
O90 - PUC: "75B296938AB07912B85C1480FD8B74A5" [HKLM] . (.Windows SDK for Windows Store Apps.) =>.Microsoft Corporation
O90 - PUC: "75EB9FF751132824CBA9F7BA772C2753" [HKLM] . (.Microsoft .NET Core Host FX Resolver - 3.1.23 (x64).) =>.Microsoft Corporation
O90 - PUC: "76966AEE2E7916549A99C5223EDC4E82" [HKLM] . (.Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.25.28508.) =>.Microsoft Corporation
O90 - PUC: "76FC49D7666611140B727DBAF781F907" [HKLM] . (.IntelliTraceProfilerProxy.) =>.Microsoft Corporation
O90 - PUC: "7761AC0120F813132FC587B0BA254E86" [HKLM] . (.Application Verifier x64 External Package.) =>.Microsoft Corporation
O90 - PUC: "778AAA36635518493258820A2801D087" [HKLM] . (.Kits Configuration Installer.) =>.Microsoft Corporation
O90 - PUC: "78EAEDD09099B4335AAAC69F9A3E1F07" [HKLM] . (.Microsoft ASP.NET Core 3.1.3 Targeting Pack (x64).) =>.Microsoft Corporation
O90 - PUC: "78FB45F66EE2D6AF34D1336A5699D294" [HKLM] . (.Universal General MIDI DLS Extension SDK.) =>.Microsoft Corporation
O90 - PUC: "7A4A6CC22CAA9C64D9BB73725B59F456" [HKLM] . (.Microsoft .NET Framework 4.6 Targeting Pack.) =>.Microsoft Corporation
O90 - PUC: "7ADDF737449B5BC4299DD36573B33D10" [HKLM] . (.Microsoft NetStandard SDK.) =>.Microsoft Corporation
O90 - PUC: "7B65F83241D7BE8FF3D4C8FF811CE9B2" [HKLM] . (.Windows SDK Desktop Libs x86.) =>.Microsoft Corporation
O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "7CE60E51557270DB54DA89FD61976AEB" [HKLM] . (.Windows App Certification Kit x64.) =>.Microsoft Corporation
O90 - PUC: "7E1EDE13558C3364D937655F66315676" [HKLM] . (.Microsoft .NET Core Targeting Pack - 3.1.0 (x64).) =>.Microsoft Corporation
O90 - PUC: "7FC3210F789E4544D8951BFCA4F2B46C" [HKLM] . (.Microsoft .NET Core Toolset 3.1.201 (x64).) =>.Microsoft Corporation
O90 - PUC: "82D4A7C91E2C7AC41A3F060394DE9273" [HKLM] . (.Microsoft .NET Core Host - 3.1.23 (x64).) =>.Microsoft Corporation
O90 - PUC: "84b9c17023c712640acaf308593282f8" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org
O90 - PUC: "88BC6AC87DB5CE345A21060BC61B57AB" [HKLM] . (.Microsoft .NET Core 2.1 Templates 3.1.201 (x64).) =>.Microsoft Corporation
O90 - PUC: "8A84FEFC8BFBCAE3B85AEDF4A82A76EC" [HKLM] . (.Microsoft .NET Framework 4 Multi-Targeting Pack.) =>.Microsoft Corporation
O90 - PUC: "8AD6DB4D51E073C47834B4A4DD4AD004" [HKLM] . (.Microsoft Windows Desktop Runtime - 3.1.3 (x86).) =>.Microsoft Corporation
O90 - PUC: "8C4969FBAB32206399A1018002A67B35" [HKLM] . (.Microsoft ASP.NET Core 3.1.23 Shared Framework (x86).) =>.Microsoft Corporation
O90 - PUC: "8C9005D0FA5F18A44B8F3F436A53C8AC" [HKLM] . (.Windows Simulator - ENU.) =>.Microsoft Corporation
O90 - PUC: "8C91E7120CCADE7CBA963AF0F3696C52" [HKLM] . (.Windows SDK for Windows Store Apps Libs.) =>.Microsoft Corporation
O90 - PUC: "8E504D230B1ED1E4CBFF9BEFA51BF5E7" [HKLM] . (.Microsoft Windows Desktop Runtime - 3.1.23 (x86).) =>.Microsoft Corporation
O90 - PUC: "8F525E046254F654B8F87DA4042D0D91" [HKLM] . (.Microsoft .NET Core Toolset 3.1.417 (x64).) =>.Microsoft Corporation
O90 - PUC: "8F82E7AB9C92D6F47B91DD03A562B3AA" [HKLM] . (.Microsoft Visual C++ 2019 X86 Debug Runtime - 14.25.28508.) =>.Microsoft Corporation
O90 - PUC: "909D33D4170B2D143B50698B85F619E1" [HKLM] . (.vs_minshellmsi.) =>.Microsoft Corporation
O90 - PUC: "932CF23845EA7594FA3C767A322C88C3" [HKLM] . (.Microsoft .NET Core AppHost Pack - 3.1.23 (x64).) =>.Microsoft Corporation
O90 - PUC: "947DB4A1A01663E46A79DBDEA266343E" [HKLM] . (.Microsoft .NET Core Runtime - 3.1.3 (x64).) =>.Microsoft Corporation
O90 - PUC: "95EA8E91A4D443535B76C60CF84A01E2" [HKLM] . (.Microsoft .NET Framework 4.5.2 Multi-Targeting Pack.) =>.Microsoft Corporation
O90 - PUC: "96A79D03F0C32554A927065E192B017C" [HKLM] . (.vs_clickoncesigntoolmsi.) =>.Microsoft Corporation
O90 - PUC: "98604145BD7BFC9B35D7F8BE7249019F" [HKLM] . (.Windows SDK Desktop Libs x64.) =>.Microsoft Corporation
O90 - PUC: "98700587EBE00944EB349FFE2805FB24" [HKLM] . (.VS Immersive Activate Helper.) =>.Microsoft Corporation
O90 - PUC: "9926C6E2F5FBD973552FF83D63F79581" [HKLM] . (.Windows SDK Desktop Tools arm64.) =>.Microsoft Corporation
O90 - PUC: "9B8253E66A29A84AEA4898E0E0D59EBB" [HKLM] . (.Windows SDK DirectX x64 Remote.) =>.Microsoft Corporation
O90 - PUC: "9CEE3CB8F09035C48AADB1CE1903049F" [HKLM] . (.Microsoft .NET Framework 4.6.1 Targeting Pack.) =>.Microsoft Corporation
O90 - PUC: "A10FEC9F7093416428F4FCD5E36457FE" [HKLM] . (.Apple Mobile Device Support.) -- C:\Windows\Installer\{F9CEF01A-3907-4614-824F-CF5D3E4675EF}\Installer.ico =>.Apple Inc.
O90 - PUC: "A17D3765A3C7E2C3FB77AE840968E44E" [HKLM] . (.Microsoft ASP.NET Core 3.1.23 Shared Framework (x64).) =>.Microsoft Corporation
O90 - PUC: "A2E71BD7D054DBD4C97145A55908B4C0" [HKLM] . (.vs_filehandler_amd64.) =>.Microsoft Corporation
O90 - PUC: "A32E0B21181514D43A113C22B1CD3282" [HKLM] . (.Visual C++ Library CRT Desktop Appx Package.) =>.Microsoft Corporation
O90 - PUC: "A49D52B605B42E54BB3D456E78001ECB" [HKLM] . (.vcpp_crt.redist.clickonce.) =>.Microsoft Corporation
O90 - PUC: "A7D259313B7B8F4FF592C51DE818867B" [HKLM] . (.Universal CRT Extension SDK.) =>.Microsoft Corporation
O90 - PUC: "A9DAE9292D247CF47B6E25A9DAF5D6D0" [HKLM] . (.icecap_collection_neutral.) =>.Microsoft Corporation
O90 - PUC: "AA9471F5259585C4380A94C1F36B07BD" [HKLM] . (.Microsoft .NET Core 3.1 Templates 3.1.201 (x64).) =>.Microsoft Corporation
O90 - PUC: "AC01DBBAAFC067D40B337FC6555A3463" [HKLM] . (.vs_Graphics_Singletonx64.) =>.Microsoft Corporation
O90 - PUC: "AFD192BEEDED5534899D719FE5194C73" [HKLM] . (.Microsoft .NET Core Host FX Resolver - 2.1.30 (x64).) =>.Microsoft Corporation
O90 - PUC: "B53DC5134866F3839BFD381EB7831A4F" [HKLM] . (.Windows Phone SDK 8.0 Assemblies for Visual Studio 2019.) =>.bl.org
O90 - PUC: "B5CC73B6FD8705052251867479615A78" [HKLM] . (.WinRT Intellisense UAP - en-us.) =>.Microsoft Corporation
O90 - PUC: "B96A7C7E1C43C3647898E6A57BA32177" [HKLM] . (.Microsoft .NET Core Runtime - 3.1.3 (x86).) =>.Microsoft Corporation
O90 - PUC: "BA3D731444B59CA4384A25372F2E45E7" [HKLM] . (.VS JIT Debugger.) =>.Microsoft Corporation
O90 - PUC: "BA6CB04E028575442A9BC226F8C8B7AF" [HKLM] . (.Microsoft .NET Core Runtime - 3.1.23 (x86).) =>.Microsoft Corporation
O90 - PUC: "BC75ACF38E340104E9DAA56140512CA1" [HKLM] . (.Microsoft .NET Core Host - 3.1.3 (x64).) =>.Microsoft Corporation
O90 - PUC: "BE4EDE16C89EEF74DB0A870376EA7907" [HKLM] . (.Microsoft .NET Core AppHost Pack - 3.1.3 (x64_arm).) =>.Microsoft Corporation
O90 - PUC: "BE6152115D32A3F4DAB7A36BD83CE027" [HKLM] . (.Microsoft .NET Core AppHost Pack - 3.1.23 (x64_x86).) =>.Microsoft Corporation
O90 - PUC: "BF21EA639434AAE66B4EF5E460AFA88E" [HKLM] . (.WinRT Intellisense IoT - en-us.) =>.Microsoft Corporation
O90 - PUC: "BFC6307A304B895458FF3D79BA8B1837" [HKLM] . (.Microsoft .NET Standard Targeting Pack - 2.1.0 (x64).) =>.Microsoft Corporation
O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C1A0DB28F518F784A97EEC37AD14C3FF" [HKLM] . (.Update for Windows 10 for x64-based Systems (KB5001716).) =>.Microsoft Corporation
O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "C3249157779A0614382A843663002A61" [HKLM] . (.Microsoft Windows Desktop Targeting Pack - 3.1.0 (x64).) =>.Microsoft Corporation
O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C4757D61700158A439FF66E647DA062D" [HKLM] . (.icecap_collectionresources.) =>.Microsoft Corporation
O90 - PUC: "C6804CD3563B4ED378B856D9BE2709E4" [HKLM] . (.Windows SDK Desktop Headers arm.) =>.Microsoft Corporation
O90 - PUC: "C9F341CE87BD4D44D975BDE988717A95" [HKLM] . (.Microsoft .NET Core AppHost Pack - 3.1.3 (x64).) =>.Microsoft Corporation
O90 - PUC: "CA9DAB67AF7C91145BA64A058F84BA1B" [HKLM] . (.Microsoft Windows Desktop Runtime - 3.1.3 (x64).) =>.Microsoft Corporation
O90 - PUC: "CAA3C3F1A7F9AD740A28A0EC770014EB" [HKLM] . (.DiagnosticsHub_CollectionService.) =>.Microsoft Corporation
O90 - PUC: "CBB97E59DF79BEF4195BCC2013238421" [HKLM] . (.vs_communitymsires.) =>.Microsoft Corporation
O90 - PUC: "CD77934658D289147BB32D789038698F" [HKLM] . (.Microsoft .NET Core AppHost Pack - 3.1.23 (x64_arm).) =>.Microsoft Corporation
O90 - PUC: "CF80F3C54D0E49C609FE27ED36DD8A58" [HKLM] . (.Windows App Certification Kit SupportedApiList x86.) =>.Microsoft Corporation
O90 - PUC: "D0E9D2A020B072248A092AA65F68C223" [HKLM] . (.Visual C++ Library CRT Desktop Appx Package.) =>.Microsoft Corporation
O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org
O90 - PUC: "D277C0FE3E5F0D63DBBADF735833DC04" [HKLM] . (.Microsoft .NET Native SDK.) =>.Microsoft Corporation
O90 - PUC: "D3C92AD963E922CA958CFFFC14D30C86" [HKLM] . (.Windows IoT Extension SDK.) =>.Microsoft Corporation
O90 - PUC: "D3CF903C2C0284F4FA645E6947776420" [HKLM] . (.vs_filehandler_x86.) =>.Microsoft Corporation
O90 - PUC: "D4997A4B1ABDD4B826A130EE25FC38A8" [HKLM] . (.Windows Desktop Extension SDK.) =>.Microsoft Corporation
O90 - PUC: "D4DB3CB2ABAF4934397CA98CA262F32E" [HKLM] . (.Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.25.28508.) =>.Microsoft Corporation
O90 - PUC: "D5FDBABD9E6FCF6418FEC985C3228E7B" [HKLM] . (.windows_toolscorepkg.)
O90 - PUC: "D7150A299F5DF8D4789F38BA0C24042C" [HKLM] . (.Microsoft .NET Core Runtime - 2.1.30 (x64).) =>.Microsoft Corporation
O90 - PUC: "D7CCDE9336B799D50C358CDC0FD25CDE" [HKLM] . (.Windows Desktop Extension SDK Contracts.) =>.Microsoft Corporation
O90 - PUC: "D7D415124214E25E48382737088B557D" [HKLM] . (.Windows SDK Modern Versioned Developer Tools.) =>.Microsoft Corporation
O90 - PUC: "D9A0F7A139C4062469E71CDD91C65D6D" [HKLM] . (.Visual C++ Library CRT Appx Package.) =>.Microsoft Corporation
O90 - PUC: "D9DDDEE6B7FB9228294B98FDFC4718DE" [HKLM] . (.Windows Team Extension SDK.) =>.Microsoft Corporation
O90 - PUC: "DBC62B8D2D51B044CBDB65617DE4CFD7" [HKLM] . (.VS Script Debugging Common.) =>.Microsoft Corporation
O90 - PUC: "DC4D12F84BC98462EECC0641D77E3BD2" [HKLM] . (.Windows SDK for Windows Store Apps DirectX x86 Remote.) =>.Microsoft Corporation
O90 - PUC: "DC8A4871EF7F2E748AD7F1137E42D2D0" [HKLM] . (.Microsoft .NET Framework 4.7.2 Targeting Pack.) =>.Microsoft Corporation
O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "DDAC45A01ABC9CB41A43C6F9194FB1A9" [HKLM] . (.vs_SQLClickOnceBootstrappermsi.) =>.Microsoft Corporation
O90 - PUC: "DDCCB6611C8430187A7EF0D34E1722D3" [HKLM] . (.Windows SDK Desktop Libs arm64.) =>.Microsoft Corporation
O90 - PUC: "DEED69A68D0D0DD612DBD7F806178445" [HKLM] . (.Windows SDK Desktop Headers x64.) =>.Microsoft Corporation
O90 - PUC: "DF0D7E1BEFC7C0E45AADF0764699BD19" [HKLM] . (.Windows PC Health Check.) -- C:\WINDOWS\Installer\{B1E7D0FD-7CFE-4E0C-A5DA-0F676499DB91}\ArpIcon.ico
O90 - PUC: "DFC4FADD536D50381575E9EC9A8F6987" [HKLM] . (.Windows SDK Modern Non-Versioned Developer Tools.) =>.Microsoft Corporation
O90 - PUC: "E3ED4F1246ECE485DB47D27156BE93ED" [HKLM] . (.Windows App Certification Kit Native Components.) =>.Microsoft Corporation
O90 - PUC: "E73D759E8B5064A469E52AD7F1665645" [HKLM] . (.Windows Simulator.) =>.Microsoft Corporation
O90 - PUC: "E9CBA254E1372B1788425C2B953507FA" [HKLM] . (.Windows SDK Desktop Headers arm64.) =>.Microsoft Corporation
O90 - PUC: "EABBDA68EA7762AFC77108A22EA83C61" [HKLM] . (.Windows SDK Desktop Headers x86.) =>.Microsoft Corporation
O90 - PUC: "EF3AF0F3AF5984B3BA1D64BFD44A20E1" [HKLM] . (.Microsoft ASP.NET Core 2.1.30 Shared Framework (x64).) =>.Microsoft Corporation
O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17.) =>.bl.org
O90 - PUC: "F056AEBEC55B83B40AD6C1A21C360537" [HKLM] . (.Microsoft Visual C++ 2019 X64 Debug Runtime - 14.25.28508.) =>.Microsoft Corporation
O90 - PUC: "F20AE111D80BDE24DA5A2E4A5B88515E" [HKLM] . (.Microsoft UniversalWindowsPlatform SDK.) =>.Legitimate
O90 - PUC: "F214E33C1894359428C5D9AE54BACE10" [HKLM] . (.Microsoft .NET Framework Cumulative Intellisense Pack for Visual Studio (ENU).) =>.Microsoft Corporation
O90 - PUC: "F23DA41DA950B5349B024139A4715725" [HKLM] . (.Microsoft .NET Core AppHost Pack - 3.1.3 (x64_arm64).) =>.Microsoft Corporation
O90 - PUC: "F4DDD599C829ABE479207EDCF3A6A7D9" [HKLM] . (.Windows SDK Desktop Libs arm.) =>.Microsoft Corporation
O90 - PUC: "F844A8198E955FBF0B783D0F17067C0E" [HKLM] . (.WinRT Intellisense Mobile - en-us.) =>.Microsoft Corporation
O90 - PUC: "F8939E560A77186820C6C80F297AF111" [HKLM] . (.Windows SDK for Windows Store Apps Headers.) =>.Microsoft Corporation
O90 - PUC: "FA8C2C9C113259B49AA60FC580FDF336" [HKLM] . (.Microsoft .NET Core Host FX Resolver - 3.1.3 (x64).) =>.Microsoft Corporation
O90 - PUC: "FAD4D7482810B56223F40446268E9AD0" [HKLM] . (.Universal CRT Redistributable.) =>.bl.org
O90 - PUC: "FB0702C770E8F5B41A28AFBDB059BA93" [HKLM] . (.Entity Framework 6.2.0 Tools for Visual Studio 2019.) =>.Microsoft Corporation
O90 - PUC: "FE0EA3E8760DC007DB4B015D551255CD" [HKLM] . (.WinAppDeploy.) =>.Microsoft Corporation
O90 - PUC: "FE4A06D5FDE64FAA0F0F94DF4D10678B" [HKLM] . (.Windows Team Extension SDK Contracts.) =>.Microsoft Corporation
O90 - PUC: "FF010FE70087AB82FF94D212E97CAB28" [HKLM] . (.WinRT Intellisense Desktop - Other Languages.) =>.Microsoft Corporation

---\\ Windows Installer Scan (6) - 57s
[MD5.65A283FB9F881E295B3A652970D3E9E9] [WIS][2019/07/30 13:18:24] (.MAGIX Computer Products Intl. Co. - MSVCRT Redists.) -- C:\WINDOWS\Installer\1aaf5f.msi [52375552] =>.MAGIX Computer Products Intl. Co.
[MD5.F828DFBDB1E86C1853837C333AC663CD] [WIS][2020/10/07 11:03:22] (.VEGAS - VEGAS Pro 17.0.) -- C:\WINDOWS\Installer\1aaf64.msi [2887680] =>.VEGAS
[MD5.6D421AFED4EFE2F869468F62ACA556E5] [WIS][2020/10/15 11:35:38] (.Apple Inc. - Apple Mobile Device Support Installer.) -- C:\WINDOWS\Installer\2a5020d.msi [39952384] =>.Apple Inc.
[MD5.C8930105EF370D14C12EAEF50D25599F] [WIS][2022/03/12 16:08:57] (.Dropbox, Inc. - Dropbox Update Helper.) -- C:\WINDOWS\Installer\557b2.msi [24576] =>.Dropbox, Inc.
[MD5.D69051B70A13944539D18796BE4D21EF] [WIS][2020/01/16 18:21:56] (.Apple Inc. - Apple Software Update Installer.) -- C:\WINDOWS\Installer\5889798.msi [3608576] =>.Apple Inc.
[MD5.94CD25417ECF61AEE430E00C797EE96F] [WIS][2020/03/03 03:29:41] (.Gravity Interactive, Inc. - Ragnarok Online.) -- C:\WINDOWS\Installer\7cd7bd8.msi [1179136]

---\\ FEATURE CONTROL. (137) - 0s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_CROSS_PROTOCOL_FILE_NAVIGATION]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Apowersoft iPhone Recorder.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IFRAME_MAILTO_THRESHOLD]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:eek:utlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SCRIPTURL_MITIGATION]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:eek:utlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:presentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate

---\\ Observer Of Events (116) - 15s

Application.Warning: Microsoft-Windows-System-Restore (1)
~Numéro: 1031
~Date: 04/13/2022 04:40:29 AM
~ID: 8303
~Description: Scoping unsuccessful for shadowcopy %1 with error %2.
~Suggestion: Exécuter la commande chkdsk / f

Application.Warning: ESENT (19)
~Numéro: 1023
~Date: 04/13/2022 03:38:11 AM
~ID: 508
~Description: %1 (%2) %3A request to write to the file "%4" at offset %5 for %6 bytes succeeded, but took an abnormally long time (%7 seconds) to be serviced by the OS. This problem is likely due to faulty hardware. Please contact your hardware vendor for further
~Suggestion: Aucune

Application.Error: VSS (5)
~Numéro: 942
~Date: 04/12/2022 09:31:56 PM
~ID: 8193
~Description: Volume Shadow Copy Service error: Unexpected error calling routine %1. hr = %2.
~Suggestion: Utiliser la procédure de reconstruction du VSS

Application.Error: Microsoft-Windows-CAPI2 (11)
~Numéro: 933
~Date: 04/12/2022 09:30:08 PM
~ID: 513
~Description: Cryptographic Services failed while processing the OnIdentity() call in the System Writer Object.%1.

Application.Error: SecurityCenter (6)
~Numéro: 909
~Date: 04/12/2022 09:18:23 PM
~ID: 17
~Description: Security Center failed to validate caller with error %1.

Application.Warning: Wlclntfy (3)
~Numéro: 837
~Date: 04/09/2022 09:35:26 PM
~ID: 6001
~Description: The winlogon notification subscriber <%1> failed a notification event.

Application.Error: Application Error (1)
~Numéro: 813
~Date: 04/09/2022 09:16:50 PM
~ID: 1000
~Description: Faulting application name: %1, version: %2, time stamp: 0xfd932244 Faulting module name: %4, version: %5, time stamp: 0x0833f2d4 Exception code: 0xc0000602 Fault offset: 0x000000000010b362 Faulting process ID: 0x740 Faulting application start time: 0
~Suggestion: Réparer ou réinstaller l'application.

Application.Error: Software Protection Platform Service (1)
~Numéro: 750
~Date: 04/09/2022 08:52:20 PM
~ID: 16385
~Description: Failed to schedule Software Protection service for re-start at %2. Error Code: %1.

Application.Warning: Windows Search Service (2)
~Numéro: 688
~Date: 04/09/2022 08:26:28 PM
~ID: 10024
~Description: The filter host process %2 did not respond and is being forcibly terminated.

Application.Warning: Microsoft-Windows-User Profiles Service (1)
~Numéro: 483
~Date: 04/09/2022 07:47:05 PM
~ID: 1534
~Description: Profile notification of event %1 for component %2 failed, error code is %3.
~Suggestion: https://www.ghacks.net/2018/12/29/windows-10-user-profile-service-event-id-1534-warnings/

Application.Error: Application Hang (1)
~Numéro: 97
~Date: 04/09/2022 07:42:07 PM
~ID: 1002
~Description: The program %1 version %2 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel. Process ID: f9c Start Time: 01d84bfddcf81
~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew.

Application.Warning: Microsoft-Windows-WMI (84)
~Numéro: 86
~Date: 04/09/2022 07:36:32 PM
~ID: 63
~Description: A provider, %1, has been registered in the Windows Management Instrumentation namespace %2 to use the LocalSystem account. This account is privileged and the provider may cause a security violation if it does not correctly impersonate user requests.
~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié.

System.Warning: DCOM (24)
~Numéro: 833
~Date: 04/13/2022 06:14:22 PM
~ID: 10016
~Description: application-specificLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}DESKTOP-V4BFEG5GanjaS-1-5-21-3947486154-1424391867-2577238500-1001LocalHost (Using LRPC)UnavailableUnavailable
~Suggestion: Vérifier les autorisations pour l'accès DCOM

System.Error: Application Popup (15)
~Numéro: 800
~Date: 04/12/2022 09:59:41 PM
~ID: 1060
~Description: \??\C:\Users\Ganja\AppData\Local\Temp\ehdrv.sys

System.Error: Service Control Manager (65)
~Numéro: 799
~ID: 7000
~Description: The %1 service failed to start due to the following error: %%1275

System.Warning: Microsoft-Windows-Kernel-Processor-Power (5)
~Numéro: 725
~Date: 04/12/2022 09:34:16 PM
~ID: 37
~Description: The speed of Hyper-V logical processor %2 is being limited by system firmware. The processor has been in this reduced performance state for %3 seconds since the last report.

System.Warning: Microsoft-Windows-Kernel-PnP (4)
~Numéro: 689
~Date: 04/12/2022 09:33:04 PM
~ID: 219
~Description: The driver %5 failed to load for the device %2.
~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système

System.Warning: Microsoft-Windows-DNS-Client (1)
~Numéro: 624
~Date: 04/11/2022 09:22:31 PM
~ID: 1014
~Description: Name resolution for the name %1 timed out after none of the configured DNS servers responded.
~Suggestion: https://social.technet.microsoft.co...ent-id-1014-microsoft-windows-dns-client.aspx

System.Warning: Microsoft-Windows-NDIS (3)
~Numéro: 623
~Date: 04/11/2022 09:22:26 PM
~ID: 10400
~Description: The network interface "%4" has begun resetting. There will be a momentary disruption in network connectivity while the hardware resets. Reason: %5. This network interface has reset %6 time(s) since it was last initialized.
~Suggestion: Vérifier la connexion à l'interface réseau

System.Error: Microsoft-Windows-WindowsUpdateClient (1)
~Numéro: 372
~Date: 04/09/2022 08:54:36 PM
~ID: 20
~Description: Installation Failure: Windows failed to install the following update with error %1: %2.
~Suggestion: http://kb.eventtracker.com/evtpass/...crosoft-Windows-WindowsUpdateClient_63351.asp

System.Warning: Microsoft-Windows-Kernel-Tm (2)
~Numéro: 123
~Date: 04/09/2022 07:49:27 PM
~ID: 4
~Description: The TransactionManager (TmId=%1, LogPath=%3) has failed to advance its log tail, due to the transaction (UOW=%4, Description='%6') being unresolved for some time. The transaction must be forced to resolve in order for the TransactionManager to conti

---\\ Additional Scan (O88) (4) - 56s
HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan
C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome

---\\ Summary of the elements found (5) - 0s
https://nicolascoolman.eu/forum/Topic/Discord-logiciel-potentiellement-superflu-lps/ =>.SUP.Discord
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp
https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys
https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Chrome

---\\ Serial Number
[00B6A30C06CEC6A72F77268A6069BFBDE2] [17/02/2020] (.Mudfish Networks Inc..) - C:\Program Files (x86)\Mudfish Cloud VPN\mudrun.exe =>.Not verified
[00B6A30C06CEC6A72F77268A6069BFBDE2] [17/02/2020] (.Mudfish Networks Inc..) - C:\Program Files (x86)\Mudfish Cloud VPN\uninstaller.exe =>.Not verified
[00C82FAC5D4F7288471464A39982A0D37F] [23/03/2022] (.CrystalBit Solutions.) - C:\Users\Ganja\Desktop\geek.exe =>.CrystalBit Solutions
[01EA62E443CB2250C870FF6BB13BA98E] [21/04/2020] (.Tencent Technology(Shenzhen) Company Limited.) - c:\program files\txgameassistant\appmarket\GF186\TUninstall.exe =>.Tencent Technology(Shenzhen) Company Limited
[01EA62E443CB2250C870FF6BB13BA98E] [21/04/2020] (.Tencent Technology(Shenzhen) Company Limited.) - C:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe =>.Tencent Technology(Shenzhen) Company Limited
[01EA62E443CB2250C870FF6BB13BA98E] [29/06/2020] (.Tencent Technology(Shenzhen) Company Limited.) - C:\Windows\system32\drivers\UniSafe.sys =>.Tencent Technology(Shenzhen) Company Limited
[024453709C84725B990371856B0E50E0] [24/03/2022] (.NetEase (Hangzhou) Network Co., Ltd.) - C:\Program Files\MuMu\emulator\nemu\EmulatorShell\NemuMultiPlayer.exe =>.Not verified
[024453709C84725B990371856B0E50E0] [24/03/2022] (.NetEase (Hangzhou) Network Co., Ltd.) - C:\Program Files\MuMu\emulator\nemu\EmulatorShell\NemuPlayer.exe =>.Not verified
[024FD22ED89C8823D79C2A09A4E6423F] [19/11/2020] (.ASUSTek Computer Inc..) - C:\WINDOWS\System32\drivers\AsRadioControl.sys =>.ASUSTek Computer Inc.
[02FA994D660DE659EE9037ECB437D766] [11/03/2022] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd
[02FA994D660DE659EE9037ECB437D766] [11/03/2022] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\uninst.exe =>.Piriform Software Ltd
[03C6ABDDE7AA440BC1990A06D53489DB] [29/10/2018] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Adobe\Adobe Photoshop CC 2019\convert.exe =>.Adobe Systems Incorporated
[04DF4D56733AE38D598EA004DD2D9C51] [19/03/2020] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.
[04E705BCC353AEEDB59DC141D48C972B] [18/04/2020] (.SoftEther Corporation.) - C:\WINDOWS\System32\drivers\Neo6_x64_VPN.sys =>.SoftEther Corporation
[04E705BCC353AEEDB59DC141D48C972B] [18/04/2020] (.SoftEther Corporation.) - C:\WINDOWS\System32\DRIVERS\SeLow_x64.sys =>.SoftEther Corporation
[0678BE9B85D65AC22E0BE99D3FBB4DA3] [05/01/2021] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\CHDRT64.sys =>.Synaptics Incorporated
[0682AF34F3FABD86EDB20C036DE21EC3] [18/05/2020] (.Tencent Technology (Shenzhen) Company Limited.) - C:\Program Files\TxGameAssistant\ui\3.21.808.100\aow_drv_x64_ev.sys =>.Tencent Technology (Shenzhen) Company Limited
[06AEA76BAC46A9E8CFE6D29E45AAF033] [29/02/2020] (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google LLC
[06B922A8397E632FE5348DA267275B4F] [04/08/2018] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HDBox\Uninstaller.exe =>.Adobe Systems Incorporated
[06B922A8397E632FE5348DA267275B4F] [11/04/2018] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated
[06F24D9F4DB07BD7ECAD067F5EE26C29] [09/10/2019] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe =>.Adobe Inc.
[06F24D9F4DB07BD7ECAD067F5EE26C29] [09/10/2019] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe =>.Adobe Inc.
[06F24D9F4DB07BD7ECAD067F5EE26C29] [09/10/2019] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Inc.
[0739378AAA468C162A3816A9E0B04EE8] [11/09/2017] (.Tencent Technology(Shenzhen) Company Limited.) - C:\Program Files\AndroidTbox\TBoxDrv.sys =>.Tencent Technology(Shenzhen) Company Limited
[0B0497702C3210F09ED59602E6F2EA27] [24/04/2019] (.ASUSTek Computer Inc..) - C:\WINDOWS\System32\drivers\AsusPTPFilter.sys =>.ASUSTek Computer Inc.
[0B9DE2343AC13F9FDF2BC2D7F3A6C200] [05/01/2021] (.ICEpower a/s.) - C:\Windows\System32\DriverStore\FileRepository\x40plmwa.inf_amd64_0fe274d0aafd5420\ICEsoundService64.exe =>.Not verified
[0D07705FA0E0C4827CC287CFCDEC20C4] [11/03/2021] (.Binance Holdings Limited.) - C:\Program Files\Binance\Binance.exe =>.Binance Holdings Limited
[0E4418E2DEDE36DD2974C3443AFB5CE5] [12/03/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\Installer\chrmstp.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [12/03/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\Installer\setup.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [27/02/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.51\elevation_service.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [27/02/2022] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
[0E4418E2DEDE36DD2974C3443AFB5CE5] [29/03/2022] (.Google LLC.) - C:\Users\Ganja\AppData\Local\Google\Chrome\User Data\SwReporter\100.281.200\software_reporter_tool.exe =>.Google LLC
[0EE046089841742E8E7719016790622B] [09/04/2022] (.Nox Limited.) - C:\Program Files (x86)\Nox\bin\MultiPlayerManager.exe =>.Not verified
[0EE046089841742E8E7719016790622B] [09/04/2022] (.Nox Limited.) - C:\Program Files (x86)\Nox\bin\Nox.exe =>.Not verified
[0EE046089841742E8E7719016790622B] [09/04/2022] (.Nox Limited.) - C:\Program Files (x86)\Nox\bin\Nox_unload.exe =>.Not verified
[0F7A165550163D5ED7D1CAA3FC13DA06] [26/02/2022] (.Dropbox, Inc.) - C:\WINDOWS\System32\DbxSvc.exe =>.Dropbox, Inc
[0F7A165550163D5ED7D1CAA3FC13DA06] [27/02/2022] (.Dropbox, Inc.) - C:\Program Files (x86)\Dropbox\Client\Dropbox.exe =>.Dropbox, Inc
[0F7A165550163D5ED7D1CAA3FC13DA06] [27/02/2022] (.Dropbox, Inc.) - C:\Program Files (x86)\Dropbox\Client\DropboxExt64.52.0.dll =>.Dropbox, Inc
[0F7A165550163D5ED7D1CAA3FC13DA06] [27/02/2022] (.Dropbox, Inc.) - C:\Program Files (x86)\Dropbox\Client\DropboxUninstaller.exe =>.Dropbox, Inc
[0F7A165550163D5ED7D1CAA3FC13DA06] [29/11/2021] (.Dropbox, Inc.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc
[13222A5DCCF716DF5AF9C87084412DD9] [09/07/2015] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe =>.Realtek Semiconductor Corp
[167DB6F0182412A5F7E507AD73FD4A04] [05/01/2021] (.Conexant Systems LLC.) - C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU64a.exe =>.Conexant Systems LLC
[167DB6F0182412A5F7E507AD73FD4A04] [20/06/2018] (.Conexant Systems LLC.) - C:\Program Files\CONEXANT\SAII\SmartAudio.exe =>.Conexant Systems LLC
[167DB6F0182412A5F7E507AD73FD4A04] [24/11/2017] (.Conexant Systems LLC.) - C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe =>.Conexant Systems LLC
[19D2BBA6922F3C7A0242B54C040F8B11] [27/10/2016] (.Conexant Systems, Inc..) - C:\Windows\System32\SASrv.exe =>.Conexant Systems, Inc.
[21EDB2EF87AC6DA0A985561590036EAA] [02/12/2019] (.Mudfish Networks.) - C:\WINDOWS\System32\DRIVERS\MUDWFP.sys =>.Not verified
[234175E3D1A23EF8ACB50245] [16/10/2019] (.EasyAntiCheat Oy.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe =>.EasyAntiCheat Oy
[36FDED94E8651EFB63DEF58687F9CC0D] [12/01/2022] (.NetEase(Hangzhou) Network Co. Ltd..) - C:\Program Files\NemuVbox\LoadedDrivers\SUPInstall.exe =>.NetEase(Hangzhou) Network Co. Ltd.
[3DD79449EA86A17D1AED3D553A987DDF] [21/05/2019] (.Qualcomm Atheros.) - C:\WINDOWS\System32\drivers\athw10x.sys =>.Qualcomm Atheros
[3DD79449EA86A17D1AED3D553A987DDF] [31/01/2019] (.Qualcomm Atheros.) - C:\WINDOWS\System32\drivers\AdminService.exe =>.Qualcomm Atheros
[3DD79449EA86A17D1AED3D553A987DDF] [31/01/2019] (.Qualcomm Atheros.) - C:\WINDOWS\System32\drivers\btfilter.sys =>.Qualcomm Atheros
[411239DA46A29C98B8A15077] [04/03/2020] (.Cheat Engine.) - C:\Program Files\Cheat Engine 7.0\unins000.exe =>.Cheat Engine
[4A39CFE869DE11482DDD70F99C1EF777] [30/01/2020] (.GRAVITY Co., Ltd..) - C:\Games\Gravity\Ragnarok.exe =>.Not verified
[4CE26AB7B08A86A56200DE244E294BA5] [20/10/2014] (.Conexant Systems, Inc..) - C:\WINDOWS\system32\CxAudMsg64.exe =>.Conexant Systems, Inc.
[4E0B86EECF78E905EF7CA498D841EA16] [01/03/2020] (.Open Source Developer, Duncan Ogilvie.) - C:\debugger\release\x96dbg.exe =>.Not verified
[4EF16586A2FF12D69C556EC4C91BAEE1] [24/09/2020] (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.
[52048B9C8A67E28F0CC8CC75813DDC5A] [25/09/2017] (.Tencent Technology(Shenzhen) Company Limited.) - C:\Program Files\AndroidTbox\NetFltInstall.exe =>.Tencent Technology(Shenzhen) Company Limited
[5600000027396847078B466FFF000000000027] [14/04/2016] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group
[5600000C148C3F94CD2631870A000000000C14] [29/02/2020] (.IntelGfxReleaseExternal2020.) - C:\ProgramData\Package Cache\{7d2bdb54-268a-4ce6-8063-a6cad97dba41}\win64.exe =>.IntelGfxReleaseExternal2020
[5600000C3BF9A3682289A06F40000000000C3B] [11/09/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxCUIService.exe =>.Intel(R) pGFX 2020
[5600000C3BF9A3682289A06F40000000000C3B] [11/09/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxEM.exe =>.Intel(R) pGFX 2020
[5600000C3BF9A3682289A06F40000000000C3B] [11/09/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_54b736e5be5b50b2\OneApp.IGCC.WinService.exe =>.Intel(R) pGFX 2020
[5600000C3BF9A3682289A06F40000000000C3B] [11/09/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\igdkmd64.sys =>.Intel(R) pGFX 2020
[5600000C3BF9A3682289A06F40000000000C3B] [11/09/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHDCPSvc.exe =>.Intel(R) pGFX 2020
[5600000C3BF9A3682289A06F40000000000C3B] [11/09/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHeciSvc.exe =>.Intel(R) pGFX 2020
[5600000C3BF9A3682289A06F40000000000C3B] [11/09/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\intcdaud.inf_amd64_1b570d7b9a790b1a\IntcDAud.sys =>.Intel(R) pGFX 2020
[62E745E92165213C971F5C490AEA12A5] [12/04/2020] (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation
[62E745E92165213C971F5C490AEA12A5] [12/04/2020] (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\nv3dappshext.dll =>.NVIDIA Corporation
[62E745E92165213C971F5C490AEA12A5] [12/04/2020] (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\nvlddmkm.sys =>.NVIDIA Corporation
[62E745E92165213C971F5C490AEA12A5] [12/04/2020] (.NVIDIA Corporation.) - C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\nvshext.dll =>.NVIDIA Corporation
[65628C146ACE93037FC58659F14BD35F] [12/04/2022] (.ESET, spol. s r.o..) - C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [12/04/2022] (.ESET, spol. s r.o..) - C:\Users\Ganja\AppData\Local\ESET\ESETOnlineScanner\sciter-x.dll =>.ESET, spol. s r.o.
[6E784D426DC9B224B766A95D34B03A8E] [12/01/2022] (.NetEase(Hangzhou) Network Co. Ltd..) - C:\Program Files\NemuVbox\LoadedDrivers\NemuDrv.sys =>.Not verified
[731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH
[731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH
[731D40AE3F3A1FB2BC3D8395] [03/03/2022] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH
[7C443D7DBB054E459C513D665DFA8DB7] [29/06/2020] (.Tencent Technology(Shenzhen) Company Limited.) - C:\Windows\system32\drivers\tesrsdt.sys =>.Tencent Technology(Shenzhen) Company Limited
[BE6F62A4E7D23882446460A8503B5F5A] [15/12/2021] (.MyTestCertificate.) - C:\Program Files\ldplayerbox\LdVBoxDrv.sys =>.Not verified

~ Unselected Options:
~ End of the scan, 24308 items in 06mn04s (2521)(0)
 
Status
Not open for further replies.