cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2019.7.19.103 By Nicolas Coolman (2019/07/19)
~ Run by TOP-laptop (Administrator) (2019/07/19 18:30:01)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ State version: Version OK
~ Mode: Scan
~ Report: C:\Users\TOP-laptop\Desktop\ZHPDiag.txt
~ Report: C:\Users\TOP-laptop\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ System startup: Normal (Normal boot)
Windows 7 Ultimate, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation

---\\ Internet Browsers (4) - 0s
~ GCIE: Google Chrome v75.0.3770.142
~ MFIE: Mozilla Firefox 67.0.3 (x64 fr)
~ MFIE: Opera 62.0.3331.72
~ MSIE: Internet Explorer v11.0.9600.17843

---\\ Windows Product Information (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ System protection software (1) - 1s
Kaspersky Internet Security v19.0.0.1088 (Protection)

---\\ Surveillance software (4) - 1s
~ Adobe Flash Player 32 ActiveX (Surveillance)
~ Adobe Flash Player 32 NPAPI (Surveillance)
~ Adobe Flash Player 32 PPAPI (Surveillance)
~ Adobe Reader 8.1.0 - Français (Surveillance)

---\\ System optimization software (1) - 1s
~ Tweaking.com - Windows Repair v3.9.27 (Optimisation)

---\\ Sharing software PeerToPeer (1) - 1s
~ µTorrent v3.5.5.45146 (P2P)

---\\ Informations on the system (6) - 0s
~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 7627.888 MB (24% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 15 GB (8%) free of 179 GB : ATTENTION =>Warning Disk Space

---\\ Connection to the system mode (3) - 0s
~ Computer Name: TOP-LAPTOP-PC
~ User Name: TOP-laptop
~ Logged in as Administrator

---\\ Enumeration of the disk units (3) - 0s
~ Drive C: has 15 GB free of 179 GB (System)
~ Drive D: has 5 GB free of 125 GB
~ Drive L: has 6 GB free of 102 GB

---\\ State of the Windows Security Center (10) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ Search Generic System Files (26) - 4s
[MD5.AC4C51EB24AA95B77F705AB159189E24] - 20/11/2010 - (.Microsoft Corporation - Windows Explorer.) -- C:\Windows\Explorer.exe [2872320] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Windows host process (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Windows Start-Up Application.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.417F80E4AFBA1AA9EBBD618F1C6D9165] - 02/08/2018 - (.Microsoft Corporation - Internet Extensions for Win32.) -- C:\Windows\System32\wininet.dll [2426880] =>.Microsoft Corporation
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Windows Logon Application.) -- C:\Windows\System32\Winlogon.exe [455168] =>.Microsoft Corporation
[MD5.067FA52BFB59A56110A12312EF9AF243] - 20/11/2010 - (.Microsoft Corporation - Software Licensing Library.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation
[MD5.492D07D79E7024CA310867B526D9636D] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation
[MD5.B40420876B9288E0A1C8CCA8A84E5DC9] - 03/03/2011 - (.Microsoft Corporation - DNS Client API DLL.) -- C:\Windows\Syswow64\dnsapi.dll [270336] =>.Microsoft Corporation
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 20/11/2010 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Corporation
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 20/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 20/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 20/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - i8042 Port Driver.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.355DF71D1DD1999E8AEDF986534B233C] - 22/01/2016 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [159232] =>.Microsoft Corporation
[MD5.E47D571FEC2C76E867935109AB2A770C] - 11/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [262144] =>.Microsoft Corporation
[MD5.05D78AA5CB5F3F5C31160BDB955D0B7C] - 20/11/2010 - (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [1659776] =>.Microsoft Corporation
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Parallel Port Driver.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 20/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation
[MD5.1B6163C503398B23FF8B939C67747683] - 20/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 20/11/2010 - (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Corporation

---\\ No disabled Windows Services (87) - 11s
O23 - Service: (AdobeUpdateService) . (.Adobe Systems Incorporated - Adobe Update Service.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
O23 - Service: Adobe Genuine Monitor Service (AGMService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe =>.Adobe Inc.®
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Inc.®
O23 - Service: C:\Windows\System32\inetsrv\iisres.dll (AppHostSvc) . (.Microsoft Corporation - IIS Application Host Helper Service.) - C:\Windows\System32\inetsrv\apphostsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\audiosrv.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Windows Audio Service.) - C:\Windows\System32\Audiosrv.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\audiosrv.dll (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) - C:\Windows\System32\Audiosrv.dll =>.Microsoft Corporation
O23 - Service: خدمة Kaspersky Anti-Virus 19.0.0 (AVP19.0.0) . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avp.exe =>.Kaspersky Lab®
O23 - Service: AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) - C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O23 - Service: C:\Windows\System32\bfe.dll (BFE) . (.Microsoft Corporation - Base Filtering Engine.) - C:\Windows\System32\bfe.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) - C:\Windows\System32\qmgr.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\certprop.dll (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) - C:\Windows\System32\certprop.dll =>.Microsoft Corporation
O23 - Service: CyberGhost 6 Service (CG6Service) . (...) - C:\Program Files\CyberGhost 6\CyberGhost.Service.exe (.not file.)
O23 - Service: C:\Windows\System32\CISVC.EXE,-1 (CISVC) . (.Microsoft Corporation - Content Index service.) - C:\Windows\System32\CISVC.EXE =>.Microsoft Corporation
O23 - Service: Microsoft Office Click-to-Run Service (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run (SxS).) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe =>.Microsoft Corporation®
O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X86 (clr_optimization_v4.0.30319_32) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe =>.Microsoft Dynamic Code Publisher®
O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X64 (clr_optimization_v4.0.30319_64) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe =>.Microsoft Dynamic Code Publisher®
O23 - Service: CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG®
O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Cryptographic Services.) - C:\Windows\System32\cryptsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\cscsvc.dll (CscService) . (.Microsoft Corporation - CSC Service DLL.) - C:\Windows\System32\cscsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - DHCP Client Service.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - DNS Caching Resolver Service.) - C:\Windows\System32\dnsrslvr.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wevtsvc.dll (eventlog) . (.Microsoft Corporation - Host Process for Windows Services.) - C:\Windows\System32\svchost.exe =>.Microsoft Corporation
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll =>.Microsoft Corporation
O23 - Service: ExpressVPN Service (ExpressVPNService) . (.Iain Patterson - The non-sucking service manager.) - C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe =>.Iain Patterson
O23 - Service: FileZilla Server FTP server (FileZilla Server) . (.FileZilla Project - FileZilla Server.) - C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe =>.Tim Kosse®
O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Windows Font Cache Service.) - C:\Windows\System32\FntCache.dll =>.Microsoft Corporation
O23 - Service: Foxit Reader Service (FoxitReaderService) . (.Foxit Software Inc. - Foxit Reader ConnectedPDF Windows Service..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe =>.Foxit Software Incorporated®
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Group Policy Client.) - C:\Windows\System32\gpsvc.dll =>.Microsoft Corporation
O23 - Service: Google Update Service (gupdate) (gupdate) . (.Google Inc. - Google Installer.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HMA! Pro VPN (HmaProVpn) . (.Privax Limited - HMA! Pro VPN Service.) - C:\Program Files (x86)\HMA! Pro VPN\VpnSvc.exe =>.Privax Limited®
O23 - Service: HP Service (hpsrv) . (.HP - HP Service.) - C:\Windows\System32\Hpservice.exe =>.HP
O23 - Service: HPWMISVC (HPWMISVC) . (.HP Inc. - HP WMI Service.) - C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe =>.Hewlett-Packard Company®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation
O23 - Service: C:\Windows\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - IKE extension.) - C:\Windows\System32\ikeext.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) - C:\Windows\System32\iphlpsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\iprip.dll (iprip) . (.Microsoft Corporation - Microsoft RIP for Internet Protocol.) - C:\Windows\System32\iprip.dll =>.Microsoft Corporation
O23 - Service: (IQOptionUpdater) . (.IQOPTION EUROPE LTD - .) - C:\Program Files (x86)\IQ Option\IQOptionUpdater.exe =>.IQOPTION EUROPE LTD®
O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - Server Service DLL.) - C:\Windows\System32\srvsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - Workstation Service DLL.) - C:\Windows\System32\wkssvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - TCPIP NetBios Transport Services DLL.) - C:\Windows\System32\lmhsvc.dll =>.Microsoft Corporation
O23 - Service: ManyCam Service (ManyCam Service) . (.Visicom Media Inc. - ManyCam Service.) - C:\ProgramData\ManyCam\Service\ManyCamService.exe =>ManyCam LLC
O23 - Service: C:\Windows\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) - C:\Windows\System32\mmcss.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Microsoft Protection Service.) - C:\Windows\System32\mpssvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Network Location Awareness 2.) - C:\Windows\System32\nlasvc.dll =>.Microsoft Corporation
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (...) - C:\Windows\SysWOW64\nlssrv32.exe (.not file.)
O23 - Service: nordvpn-service (nordvpn-service) . (.2018 - nordvpn-service.) - C:\Program Files (x86)\NordVPN\nordvpn-service.exe =>.TEFINCOM S.A.®
O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Network Store Interface RPC server.) - C:\Windows\System32\nsisvc.dll =>.Microsoft Corporation
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
O23 - Service: NVIDIA WMI Provider (NVWMI) . (.NVIDIA Corporation - NVIDIA WMI Provider.) - C:\Windows\System32\nvwmi64.exe =>.NVIDIA Corporation
O23 - Service: C:\Windows\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Program Compatibility Assistant Service.) - C:\Windows\System32\pcasvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\umpnpmgr.dll (PlugPlay) . (.Microsoft Corporation - User-mode Plug-and-Play Service.) - C:\Windows\System32\umpnpmgr.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - User-mode Power Service.) - C:\Windows\System32\umpo.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - RPC Endpoint Mapper.) - C:\Windows\System32\RpcEpMap.dll =>.Microsoft Corporation
O23 - Service: @oleres.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\SCardSvr.dll (SCardSvr) . (.Microsoft Corporation - Smart Card Resource Management Server.) - C:\Windows\System32\SCardSvr.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Task Scheduler Service.) - C:\Windows\System32\schedsvc.dll =>.Microsoft Corporation
O23 - Service: Seed4.Me Service (Seed4.Me Service) . (.Seed4.Me - Seed4.Me VPN Client.) - C:\Program Files\Seed4.Me VPN\bin\Seed4.Me_service.exe =>.S4M Tech, Inc.®
O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) - C:\Windows\System32\Sens.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) - C:\Windows\System32\shsvcs.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\simptcp.dll (simptcp) . (.Microsoft Corporation - TCP/IP Services Application.) - C:\Windows\System32\TCPSVCS.EXE =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\snmp.exe,-3 (SNMP) . (.Microsoft Corporation - SNMP Service.) - C:\Windows\System32\snmp.exe =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Spooler SubSystem App.) - C:\Windows\System32\spoolsv.exe =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Microsoft Software Protection Platform Serv.) - C:\Windows\System32\sppsvc.exe =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\stlang64.dll (STacSV) . (.IDT, Inc. - IDT PC Audio.) - C:\Program Files\IDT\WDM\stacsv64.exe =>.IDT, Inc.
O23 - Service: C:\Windows\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Still Image Devices Service.) - C:\Windows\System32\wiaservc.dll =>.Microsoft Corporation
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
O23 - Service: C:\Windows\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Superfetch Service Host.) - C:\Windows\System32\sysmain.dll =>.Microsoft Corporation
O23 - Service: TeamViewer 12 (TeamViewer) . (.TeamViewer GmbH - TeamViewer 12.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) - C:\Windows\System32\themeservice.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dwm.exe,-2000 (UxSms) . (.Microsoft Corporation - Microsoft User Experience Session Managemen.) - C:\Windows\System32\uxsms.dll =>.Microsoft Corporation
O23 - Service: Synaptics FP WBF Policy Service (valWBFPolicyService) . (.Synaptics Incorporated - SynapticsWBF Policy Service (COGENT).) - C:\Windows\System32\valWBFPolicyService.exe =>.Synaptics Incorporated
O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
O23 - Service: VMware DHCP Service (VMnetDHCP) . (.VMware, Inc. - VMware VMnet DHCP service.) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.®
O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.®
O23 - Service: VMware NAT Service (VMware NAT Service) . (.VMware, Inc. - VMware NAT Service.) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.®
O23 - Service: VMware Workstation Server (VMwareHostd) . (.VMware, Inc. - .) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
O23 - Service: VyprVPN (VyprVPN) . (.Golden Frog, GmbH. - VyprVPNService.) - C:\Program Files (x86)\VyprVPN\VyprVPNService.exe =>.Golden Frog, GmbH.
O23 - Service: C:\Windows\System32\w32time.dll (W32Time) . (.Microsoft Corporation - Windows Time Service.) - C:\Windows\System32\w32time.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\inetsrv\iisres.dll (W3SVC) . (.Microsoft Corporation - IIS Web Admin Service.) - C:\Windows\System32\inetsrv\iisw3adm.dll =>.Microsoft Corporation
O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) . (.Microsoft Corporation - Service Module.) - C:\Program Files\Windows Defender\MpSvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wlansvc.dll (Wlansvc) . (.Microsoft Corporation - Windows WLAN AutoConfig Service DLL.) - C:\Windows\System32\wlansvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Windows Security Center Service.) - C:\Windows\System32\wscsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Microsoft Windows Search Indexer.) - C:\Windows\System32\SearchIndexer.exe =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) - C:\Windows\System32\wuaueng.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wudfsvc.dll (wudfsvc) . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) - C:\Windows\System32\WUDFSvc.dll =>.Microsoft Corporation

---\\ Services not Microsoft (SR=Run, SS=Stop) (166) - 71s
SR - Demand [18/11/2015] [ 53760] HP Mobile Data Protection Sensor (Accelerometer) . (.HP.) - C:\Windows\System32\DRIVERS\Accelerometer.sys =>.Hewlett-Packard®
SS - Demand [28/06/2019] [ 335416] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Inc.®
SR - Auto [20/09/2017] [ 817760] (AdobeUpdateService) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe =>.Adobe Systems Incorporated®
SR - Boot [14/07/2009] [ 491088] (adp94xx) . (.Adaptec, Inc..) - C:\Windows\System32\DRIVERS\adp94xx.sys =>.Microsoft Windows®
SR - Boot [14/07/2009] [ 339536] (adpahci) . (.Adaptec, Inc..) - C:\Windows\System32\DRIVERS\adpahci.sys =>.Microsoft Windows®
SR - Boot [14/07/2009] [ 182864] (adpu320) . (.Adaptec, Inc..) - C:\Windows\System32\DRIVERS\adpu320.sys =>.Microsoft Windows®
SR - Auto [04/07/2019] [ 3117648] Adobe Genuine Monitor Service (AGMService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe =>.Adobe Inc.®
SR - Auto [04/07/2019] [ 2888272] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Inc.®
SR - Boot [14/07/2009] [ 15440] (aliide) . (.Acer Laboratories Inc..) - C:\Windows\System32\drivers\aliide.sys =>.Microsoft Windows®
SR - Boot [21/12/2016] [ 51120] ambakdrv (ambakdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Windows\System32\ambakdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Boot [20/11/2010] [ 107904] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft Windows®
SR - Boot [14/07/2009] [ 194128] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\DRIVERS\amdsbs.sys =>.Microsoft Windows®
SR - Boot [20/11/2010] [ 27008] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft Windows®
SR - Auto [21/12/2016] [ 171952] ammntdrv (ammntdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Windows\system32\ammntdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Demand [25/12/2016] [ 38320] ampa (ampa) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Windows\System32\ampa.sys =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Auto [01/09/2017] [ 38320] amwrtdrv (amwrtdrv) . (.CHENGDU AOMEI Tech Co., Ltd..) - C:\Windows\system32\amwrtdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Demand [21/02/2013] [ 489264] Alps Touch Pad Filter Driver for Windows x64 (ApfiltrService) . (.Alps Electric Co., Ltd..) - C:\Windows\System32\DRIVERS\Apfiltr.sys =>.Alps Electric Co., LTD.®
SR - Boot [14/07/2009] [ 87632] (arc) . (.Adaptec, Inc..) - C:\Windows\System32\DRIVERS\arc.sys =>.Microsoft Windows®
SR - Boot [14/07/2009] [ 97856] (arcsas) . (.Adaptec, Inc..) - C:\Windows\System32\DRIVERS\arcsas.sys =>.Microsoft Windows®
SR - Auto [28/02/2018] [ 619640] خدمة Kaspersky Anti-Virus 19.0.0 (AVP19.0.0) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avp.exe =>.Kaspersky Lab®
SR - Demand [10/06/2009] [ 468480] Broadcom NetXtreme II VBD (b06bdrv) . (.Broadcom Corporation.) - C:\Windows\System32\DRIVERS\bxvbda.sys =>.Broadcom Corporation
SR - Demand [10/06/2009] [ 270848] Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 (b57nd60a) . (.Broadcom Corporation.) - C:\Windows\System32\DRIVERS\b57nd60a.sys =>.Broadcom Corporation
SR - Auto [11/09/2018] [ 388968] AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd..) - C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
SR - Demand [10/06/2009] [ 18432] Brother USB Mass-Storage Lower Filter Driver (BrFiltLo) . (.Brother Industries, Ltd..) - C:\Windows\System32\DRIVERS\BrFiltLo.sys =>.Brother Industries, Ltd.
SR - Demand [10/06/2009] [ 8704] Brother USB Mass-Storage Upper Filter Driver (BrFiltUp) . (.Brother Industries, Ltd..) - C:\Windows\System32\DRIVERS\BrFiltUp.sys =>.Brother Industries, Ltd.
SR - Demand [14/07/2009] [ 286720] Brother MFC Serial Port Interface Driver (WDM) (Brserid) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\Brserid.sys =>.Brother Industries Ltd.
SR - Demand [10/06/2009] [ 47104] Brother WDM Serial driver (BrSerWdm) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrSerWdm.sys =>.Brother Industries Ltd.
SR - Demand [10/06/2009] [ 14976] Brother MFC USB Fax Only Modem (BrUsbMdm) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrUsbMdm.sys =>.Brother Industries Ltd.
SR - Demand [10/06/2009] [ 14720] Brother MFC USB Serial WDM Driver (BrUsbSer) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrUsbSer.sys =>.Brother Industries Ltd.
SR - Auto [00/00/0000] [ 0] CyberGhost 6 Service (CG6Service) . (...) - C:\Program Files\CyberGhost 6\CyberGhost.Service.exe (.not file.)
SR - Boot [14/07/2009] [ 17488] (cmdide) . (.CMD Technology, Inc..) - C:\Windows\System32\drivers\cmdide.sys =>.Microsoft Windows®
SR - Demand [29/08/2008] [ 118144] Mobile Connector USB Device for Legacy Serial Communication (cmusbser) . (.Mobile Connector.) - C:\Windows\System32\DRIVERS\cmusbser.sys =>.Mobile Connector
SR - Boot [27/01/2018] [ 243400] AO Kaspersky Lab Cryptographic Module x64 (56 bit) (cm_km) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\cm_km.sys =>.Kaspersky Lab®
SR - Auto [02/07/2018] [ 5032848] CodeMeter Runtime Server (CodeMeter.exe) . (.WIBU-SYSTEMS AG.) - C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG®
SS - Demand [07/02/2019] [ 376288] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation®
SR - Demand [24/06/2014] [ 61664] Dell ControlVault (cvusbdrv) . (.Broadcom Corporation.) - C:\Windows\System32\Drivers\cvusbdrv.sys =>.Broadcom Corp®
SR - Demand [11/07/2017] [ 528360] Intel(R) PRO/1000 PCI Express Network Connection Driver D (e1dexpress) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\e1d62x64.sys =>.Intel(R) INTELND1617®
SR - Demand [05/04/2010] [ 301232] Intel(R) PRO/1000 PCI Express Network Connection Driver K (e1kexpress) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\e1k62x64.sys =>.Intel Corporation®
SR - Demand [10/06/2009] [ 3286016] Broadcom NetXtreme II 10 GigE VBD (ebdrv) . (.Broadcom Corporation.) - C:\Windows\System32\DRIVERS\evbda.sys =>.Broadcom Corporation
SR - Boot [14/07/2009] [ 530496] (elxstor) . (.Emulex.) - C:\Windows\System32\DRIVERS\elxstor.sys =>.Microsoft Windows®
SR - Demand [17/08/2016] [ 32992] (ETDSMBus) . (.ELAN Microelectronic Corp..) - C:\Windows\System32\DRIVERS\ETDSMBus.sys =>.ELAN Microelectronics Corporation®
SR - Auto [22/05/2019] [ 368640] ExpressVPN Service (ExpressVPNService) . (.Iain Patterson.) - C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe =>.Iain Patterson
SR - Demand [22/05/2019] [ 18800] expressvpnsplittunnel (expressvpnsplittunnel) . (.ExprsVPN LLC.) - C:\Program Files (x86)\ExpressVPN\splittunnel\expressvpnsplittunnel.sys =>.ExprsVPN LLC®
SR - Auto [08/02/2017] [ 859304] FileZilla Server FTP server (FileZilla Server) . (.FileZilla Project.) - C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe =>.Tim Kosse®
SS - Demand [14/08/2018] [ 655624] FLEXnet Licensing Service (FLEXnet Licensing Service) . (.Acresso Software Inc..) - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe =>.Acresso Software Inc.®
SR - Auto [17/04/2018] [ 1659456] Foxit Reader Service (FoxitReaderService) . (.Foxit Software Inc..) - C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe =>.Foxit Software Incorporated®
SS - Demand [13/07/2019] [ 1098224] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.142\elevation_service.exe =>.Google LLC®
SR - Auto [14/08/2018] [ 154440] Google Update Service (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [14/08/2018] [ 154440] Google Update Service (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Auto [02/11/2018] [ 84752] VMware hcmon (hcmon) . (.VMware, Inc..) - C:\Windows\System32\DRIVERS\hcmon.sys =>.VMware, Inc.®
SR - Demand [10/06/2009] [ 31232] Hauppauge Consumer Infrared Receiver (hcw85cir) . (.Hauppauge Computer Works, Inc..) - C:\Windows\System32\drivers\hcw85cir.sys =>.Hauppauge Computer Works, Inc.
SR - Demand [19/02/2013] [ 57848] Intel(R) Management Engine Interface (HECIx64) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\HECIx64.sys =>.Intel Corporation - Intel® Management Engine Firmware®
SR - Auto [12/07/2019] [ 6824560] HMA! Pro VPN (HmaProVpn) . (.Privax Limited.) - C:\Program Files (x86)\HMA! Pro VPN\VpnSvc.exe =>.Privax Limited®
SR - Demand [11/12/2017] [ 45560] HMA TAP-Windows Adapter V9 (hmatap) . (.The OpenVPN Project.) - C:\Windows\System32\DRIVERS\hmatap.sys =>.Privax Limited®
SR - Boot [18/11/2015] [ 40960] HP Filter (hpdskflt) . (.HP.) - C:\Windows\System32\DRIVERS\hpdskflt.sys =>.Hewlett-Packard®
SR - Boot [20/11/2010] [ 78720] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft Windows®
SR - Auto [18/11/2015] [ 31232] HP Service (hpsrv) . (.HP.) - C:\Windows\System32\Hpservice.exe =>.Hewlett-Packard®
SR - Auto [18/04/2016] [ 606224] HPWMISVC (HPWMISVC) . (.HP Inc..) - C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe =>.Hewlett-Packard Company®
SR - System [18/09/2015] [ 44648] Hotspot Shield Routing Driver 6 (HssDRV6) . (.AnchorFree Inc..) - C:\Windows\System32\DRIVERS\hssdrv6.sys =>.AnchorFree Inc®
SS - Demand [14/08/2018] [ 96600] Hotspot Shield Tray Service (HssTrayService) . (.AnchorFree Inc.) - C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE =>.AnchorFree Inc®
SR - Boot [14/09/2017] [ 1469952] (iaStorA) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\iaStorA.sys =>.Intel(R) Rapid Storage Technology®
SR - Boot [14/09/2017] [ 40448] (iaStorF) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\iaStorF.sys =>.Intel(R) Rapid Storage Technology®
SR - Boot [20/11/2010] [ 410496] Intel RAID Controller Windows 7 (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft Windows®
SR - Auto [20/12/2018] [ 229296] IDMWFP (IDMWFP) . (.Tonec Inc..) - C:\Windows\System32\DRIVERS\idmwfp.sys =>.Tonec Inc.®
SR - Demand [07/02/2019] [ 4942808] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\igdkmd64.sys =>.Intel Corporation®
SR - Auto [07/02/2019] [ 343008] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation®
SR - Boot [14/07/2009] [ 44112] (iirsp) . (.Intel Corp./ICP vortex GmbH.) - C:\Windows\System32\DRIVERS\iirsp.sys =>.Microsoft Windows®
SR - Auto [08/08/2018] [ 2987016] (IQOptionUpdater) . (.IQOPTION EUROPE LTD.) - C:\Program Files (x86)\IQ Option\IQOptionUpdater.exe =>.IQOPTION EUROPE LTD®
SR - Boot [12/05/2017] [ 23552] Intel(R) USB 3.0 Host Controller Switch Driver (iusb3hcs) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\iusb3hcs.sys =>.Intel(R) USB eXtensible Host Controller Drivers®
SR - Demand [12/05/2017] [ 401408] Intel(R) USB 3.0 Hub Driver (iusb3hub) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\iusb3hub.sys =>.Intel(R) USB eXtensible Host Controller Drivers®
SR - Demand [12/05/2017] [ 816640] Intel(R) USB 3.0 eXtensible Host Controller Driver (iusb3xhc) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\iusb3xhc.sys =>.Intel(R) USB eXtensible Host Controller Drivers®
SR - Boot [20/02/2018] [ 528576] kl1 (kl1) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\kl1.sys =>.Kaspersky Lab®
SR - Boot [15/04/2019] [ 72016] Kaspersky Lab klbackupdisk (klbackupdisk) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klbackupdisk.sys =>.Kaspersky Lab®
SR - System [15/04/2019] [ 122496] Kaspersky Lab klbackupflt (klbackupflt) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klbackupflt.sys =>.Kaspersky Lab®
SR - System [15/04/2019] [ 86656] kldisk (kldisk) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\kldisk.sys =>.Kaspersky Lab®
SR - Demand [05/06/2019] [ 217216] Kaspersky Lab Kernel DLL (klflt) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klflt.sys =>.Kaspersky Lab®
SR - System [05/06/2019] [ 1093248] Kaspersky Lab service driver (klhk) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klhk.sys =>.Kaspersky Lab®
SR - System [05/06/2019] [ 1123456] Kaspersky Lab Driver (KLIF) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klif.sys =>.Kaspersky Lab®
SR - System [15/04/2019] [ 56144] Kaspersky Anti-Virus NDIS 6 Filter (klim6) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klim6.sys =>.Kaspersky Lab®
SR - Demand [15/04/2019] [ 56656] Kaspersky Lab KLKBDFLT (klkbdflt) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klkbdflt.sys =>.Kaspersky Lab®
SR - Demand [15/04/2019] [ 57464] Kaspersky Lab KLMOUFLT (klmouflt) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klmouflt.sys =>.Kaspersky Lab®
SR - System [15/04/2019] [ 49280] Kaspersky Lab format recognizer driver (klpd) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klpd.sys =>.Kaspersky Lab®
SR - System [07/11/2017] [ 81632] kltdi (kltdi) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\kltdi.sys =>.Kaspersky Lab®
SS - Demand [00/00/0000] [ 0] klvssbridge64_18.0.0 (klvssbridge64_18.0.0) . (...) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\x64\vssbridge64.exe (.not file.)
SS - Demand [07/12/2018] [ 414352] klvssbridge64_19.0.0 (klvssbridge64_19.0.0) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\x64\vssbridge64.exe =>.Kaspersky Lab®
SR - System [15/04/2019] [ 177280] KLwtp - WFP callout traffic inspector (Klwtp) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klwtp.sys =>.Kaspersky Lab®
SR - System [15/04/2019] [ 201552] kneps (kneps) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\kneps.sys =>.Kaspersky Lab®
SR - Boot [14/07/2009] [ 114752] (LSI_FC) . (.LSI Corporation.) - C:\Windows\System32\DRIVERS\lsi_fc.sys =>.Microsoft Windows®
SR - Boot [14/07/2009] [ 106560] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\DRIVERS\lsi_sas.sys =>.Microsoft Windows®
SR - Boot [14/07/2009] [ 65600] (LSI_SAS2) . (.LSI Corporation.) - C:\Windows\System32\DRIVERS\lsi_sas2.sys =>.Microsoft Windows®
SR - Boot [14/07/2009] [ 115776] (LSI_SCSI) . (.LSI Corporation.) - C:\Windows\System32\DRIVERS\lsi_scsi.sys =>.Microsoft Windows®
SR - Demand [27/07/2018] [ 58280] ManyCam Virtual Webcam (ManyCam) . (.Visicom Media Inc..) - C:\Windows\System32\DRIVERS\mcvidrv.sys =>.SUP.VisicomMedia
SR - Auto [31/03/2016] [ 544984] ManyCam Service (ManyCam Service) . (.Visicom Media Inc..) - C:\ProgramData\ManyCam\Service\ManyCamService.exe =>ManyCam LLC =>ManyCam LLC
SR - Demand [29/12/2014] [ 35992] ManyCam Virtual Microphone (mcaudrv_simple) . (.Visicom Media Inc..) - C:\Windows\System32\drivers\mcaudrv_x64.sys =>ManyCam LLC =>ManyCam LLC
SR - Boot [14/07/2009] [ 35392] (megasas) . (.LSI Corporation.) - C:\Windows\System32\DRIVERS\megasas.sys =>.Microsoft Windows®
SR - Boot [14/07/2009] [ 284736] (MegaSR) . (.LSI Corporation, Inc..) - C:\Windows\System32\DRIVERS\MegaSR.sys =>.Microsoft Windows®
SR - Demand [23/06/2012] [ 17216] WDF MiniProWdf Service (MiniProWdf) . (.http://www.autoelectric.cn.) - C:\Windows\System32\DRIVERS\MiniProWdf.sys =>.Beijing KaiXin ShengZhou Technology Co., Ltd.®
SS - Demand [20/06/2019] [ 238624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Demand [11/07/2014] [11527888] ___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver (NETwNs64) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\NETwsw00.sys =>.Intel Corporation-Mobile Wireless Group®
SR - Boot [14/07/2009] [ 51264] (nfrd960) . (.IBM Corporation.) - C:\Windows\System32\DRIVERS\nfrd960.sys =>.Microsoft Windows®
SR - Auto [00/00/0000] [ 0] Nalpeiron Licensing Service (nlsX86cc) . (...) - C:\Windows\SysWOW64\nlssrv32.exe (.not file.)
SR - Auto [22/05/2019] [ 217040] nordvpn-service (nordvpn-service) . (.2018.) - C:\Program Files (x86)\NordVPN\nordvpn-service.exe =>.TEFINCOM S.A.®
SR - Auto [01/03/2013] [ 36600] NetGroup Packet Filter Driver (NPF) . (.Riverbed Technology, Inc..) - C:\Windows\System32\drivers\npf.sys =>.Riverbed Technology, Inc.®
SR - Auto [17/03/2019] [ 767016] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation®
SR - System [26/03/2019] [ 316288] (nvkflt) . (.NVIDIA Corporation.) - C:\Windows\System32\DRIVERS\nvkflt.sys =>.NVIDIA Corporation®
SR - Demand [26/03/2019] [20417792] (nvlddmkm) . (.NVIDIA Corporation.) - C:\Windows\System32\DRIVERS\nvlddmkm.sys =>.NVIDIA Corporation®
SR - Boot [26/03/2019] [ 54984] (nvpciflt) . (.NVIDIA Corporation.) - C:\Windows\System32\DRIVERS\nvpciflt.sys =>.NVIDIA Corporation®
SR - Boot [20/11/2010] [ 148352] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft Windows®
SR - Boot [20/11/2010] [ 166272] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft Windows®
SR - Auto [21/03/2019] [ 4738256] NVIDIA WMI Provider (NVWMI) . (.NVIDIA Corporation.) - C:\Windows\System32\nvwmi64.exe =>.NVIDIA Corporation®
SR - Boot [14/07/2009] [ 1524816] (ql2300) . (.QLogic Corporation.) - C:\Windows\System32\DRIVERS\ql2300.sys =>.Microsoft Windows®
SR - Boot [14/07/2009] [ 128592] (ql40xx) . (.QLogic Corporation.) - C:\Windows\System32\DRIVERS\ql40xx.sys =>.Microsoft Windows®
SR - Demand [21/12/2016] [ 40240] Revoflt (Revoflt) . (.VS Revo Group.) - C:\Windows\System32\DRIVERS\revoflt.sys =>.VS Revo Group®
SS - Demand [14/08/2018] [ 118520] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.®
SR - Demand [06/09/2018] [ 905224] Realtek PCIE Card Reader - PER (RTSPER) . (.Realsil Semiconductor Corporation.) - C:\Windows\System32\DRIVERS\RtsPer.sys =>.Realtek Semiconductor Corp.®
SR - Demand [12/06/2018] [ 3238336] HP Universal Camera Driver (rtsuvc) . (.Realtek Semiconductor Corp..) - C:\Windows\System32\DRIVERS\rtsuvc.sys =>.Realtek Semiconductor Corp.®
SR - Auto [09/01/2019] [ 3918168] Seed4.Me Service (Seed4.Me Service) . (.Seed4.Me.) - C:\Program Files\Seed4.Me VPN\bin\Seed4.Me_service.exe =>.S4M Tech, Inc.®
SR - Boot [14/07/2009] [ 43584] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\DRIVERS\SiSRaid2.sys =>.Microsoft Windows®
SR - Boot [14/07/2009] [ 80464] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\DRIVERS\sisraid4.sys =>.Microsoft Windows®
SR - Demand [26/06/2018] [ 42536] (SmbDrvI) . (.Synaptics Incorporated.) - C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated®
SR - Auto [19/01/2014] [ 340480] @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) . (.IDT, Inc..) - C:\Program Files\IDT\WDM\stacsv64.exe =>.IDT, Inc.
SR - Boot [16/07/2011] [ 22128] Disk Class Filter Driver for Accelerometer (stdcfltn) . (.ST Microelectronics.) - C:\Windows\System32\DRIVERS\stdcfltn.sys =>.STMicroelectronics®
SR - Boot [14/07/2009] [ 24656] (stexstor) . (.Promise Technology.) - C:\Windows\System32\DRIVERS\stexstor.sys =>.Microsoft Windows®
SR - Demand [19/01/2014] [ 551936] @%SystemRoot%\system32\stlang64.dll,-10301 (STHDA) . (.IDT, Inc..) - C:\Windows\System32\DRIVERS\stwrt64.sys =>.IDT, Inc.
SR - Demand [11/04/2013] [ 87776] STMicroelectronics Accelerometer Service (ST_Accel) . (.STMicroelectronics.) - C:\Windows\System32\DRIVERS\ST_Accel.sys =>.STMicroelectronics®
SR - Demand [00/00/0000] [ 0] (Synth3dVsc) . (...) - C:\Windows\System32\drivers\synth3dvsc.sys (.not file.)
SR - Demand [26/06/2018] [ 629800] Synaptics TouchPad Driver (SynTP) . (.Synaptics Incorporated.) - C:\Windows\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated®
SR - Auto [26/06/2018] [ 246824] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
SR - Demand [21/04/2016] [ 27136] TAP-Windows Adapter V9 (tap0901) . (.The OpenVPN Project.) - C:\Windows\System32\DRIVERS\tap0901.sys =>.The OpenVPN Project
SR - Demand [22/05/2019] [ 36208] ExpressVPN TAP Adapter (tapexpressvpn) . (.The OpenVPN Project.) - C:\Windows\System32\DRIVERS\tapexpressvpn.sys =>.ExprsVPN LLC®
SR - Demand [18/09/2015] [ 42088] Anchorfree HSS VPN Adapter (taphss6) . (.Anchorfree Inc..) - C:\Windows\System32\DRIVERS\taphss6.sys =>.AnchorFree Inc®
SR - Demand [24/07/2018] [ 35592] TAP-NordVPN Windows Adapter V9 (tapnordvpn) . (.The OpenVPN Project.) - C:\Windows\System32\DRIVERS\tapnordvpn.sys =>.TEFINCOM S.A.®
SR - Demand [12/09/2018] [ 44896] TAP-VyprVPN Adapter V9 (tapvyprvpn) . (.The OpenVPN Project.) - C:\Windows\System32\DRIVERS\tapvyprvpn.sys =>.Golden Frog, GmbH®
SR - Auto [15/12/2016] [10351856] TeamViewer 12 (TeamViewer) . (.TeamViewer GmbH.) - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
SR - Demand [00/00/0000] [ 0] @%SystemRoot%\system32\drivers\tsusbhub.sys,-1 (tsusbhub) . (...) - C:\Windows\System32\drivers\tsusbhub.sys (.not file.)
SR - Demand [00/00/0000] [ 0] USB PnP Sound Device Interface (USBPNPA) . (...) - C:\Windows\System32\drivers\CM10864.sys (.not file.)
SR - Auto [07/12/2016] [ 82944] Synaptics FP WBF Policy Service (valWBFPolicyService) . (.Synaptics Incorporated.) - C:\Windows\System32\valWBFPolicyService.exe =>.Microsoft Windows Hardware Compatibility Publisher®
SR - System [16/04/2019] [ 1023528] VirtualBox Service (VBoxDrv) . (.Oracle Corporation.) - C:\Windows\System32\DRIVERS\VBoxDrv.sys =>.Oracle Corporation®
SR - Demand [16/04/2019] [ 236560] VirtualBox NDIS 6.0 Miniport Service (VBoxNetAdp) . (.Oracle Corporation.) - C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys =>.Oracle Corporation®
SR - System [16/04/2019] [ 247952] VirtualBox NDIS6 Bridged Networking Service (VBoxNetLwf) . (.Oracle Corporation.) - C:\Windows\System32\DRIVERS\VBoxNetLwf.sys =>.Oracle Corporation®
SS - Demand [16/04/2019] [ 692992] VirtualBox system service (VBoxSDS) . (.Oracle Corporation.) - C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe =>.Oracle Corporation®
SR - Demand [16/04/2019] [ 174736] VirtualBox USB (VBoxUSB) . (.Oracle Corporation.) - C:\Windows\System32\Drivers\VBoxUSB.sys =>.Oracle Corporation®
SR - System [16/04/2019] [ 186696] VirtualBox USB Monitor Service (VBoxUSBMon) . (.Oracle Corporation.) - C:\Windows\System32\DRIVERS\VBoxUSBMon.sys =>.Oracle Corporation®
SR - Demand [00/00/0000] [ 0] (VGPU) . (...) - C:\Windows\System32\drivers\rdvgkmd.sys (.not file.)
SR - Boot [14/07/2009] [ 17488] (viaide) . (.VIA Technologies, Inc..) - C:\Windows\System32\drivers\viaide.sys =>.Microsoft Windows®
SR - Auto [04/05/2019] [ 100784] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
SR - Boot [27/04/2019] [ 106304] VMware VMCI Bus Driver (vmci) . (.VMware, Inc..) - C:\Windows\System32\DRIVERS\vmci.sys =>.VMware, Inc.®
SR - Demand [04/05/2019] [ 46096] VMware Virtual Ethernet Adapter Driver (VMnetAdapter) . (.VMware, Inc..) - C:\Windows\System32\DRIVERS\vmnetadapter.sys =>.VMware, Inc.®
SR - Auto [04/05/2019] [ 66576] VMware Bridge Protocol (VMnetBridge) . (.VMware, Inc..) - C:\Windows\System32\DRIVERS\vmnetbridge.sys =>.VMware, Inc.®
SR - Auto [04/05/2019] [ 374192] VMware DHCP Service (VMnetDHCP) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.®
SR - Auto [04/05/2019] [ 44048] VMware Virtual Ethernet Userif for VMnet (VMnetuserif) . (.VMware, Inc..) - C:\Windows\System32\DRIVERS\vmnetuserif.sys =>.VMware, Inc.®
SR - Auto [04/05/2019] [ 49216] VMware vmparport (vmparport) . (.VMware, Inc..) - C:\Windows\System32\DRIVERS\vmparport.sys =>.VMware, Inc.®
SR - Demand [02/11/2018] [ 60480] VMware USB Client Driver (vmusb) . (.VMware, Inc..) - C:\Windows\System32\DRIVERS\vmusb.sys =>.VMware, Inc.®
SR - Auto [02/11/2018] [ 929712] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.®
SR - Auto [04/05/2019] [ 396208] VMware NAT Service (VMware NAT Service) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.®
SR - Auto [04/05/2019] [15446448] VMware Workstation Server (VMwareHostd) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
SR - Auto [04/05/2019] [ 99136] VMware vmx86 (vmx86) . (.VMware, Inc..) - C:\Windows\System32\DRIVERS\vmx86.sys =>.VMware, Inc.®
SR - Boot [14/07/2009] [ 161872] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\DRIVERS\vsmraid.sys =>.Microsoft Windows®
SR - Boot [27/04/2019] [ 93576] vSockets Virtual Machine Communication Interface Sockets dr (vsock) . (.VMware, Inc..) - C:\Windows\System32\DRIVERS\vsock.sys =>.VMware, Inc.®
SR - Auto [28/02/2018] [ 52576] Vstor2 MntApi 2.0 Driver (shared) (vstor2-mntapi20-shared) . (.VMware, Inc..) - C:\Windows\SysWOW64\drivers\vstor2-x64.sys =>.VMware, Inc.®
SR - Auto [03/01/2019] [ 309248] VyprVPN (VyprVPN) . (.Golden Frog, GmbH..) - C:\Program Files (x86)\VyprVPN\VyprVPNService.exe =>.Golden Frog, GmbH.
SS - Demand [18/03/2018] [ 25600] wampapache (wampapache) . (.Apache Software Foundation.) - c:\wamp\bin\apache\apache2.4.33\bin\httpd.exe =>.Apache Software Foundation
SS - Demand [26/03/2018] [12512680] wampmariadb (wampmariadb) . (.MariaDB Corporation Ab.) - c:\wamp\bin\mariadb\mariadb10.2.14\bin\mysqld.exe =>.MariaDB Corporation Ab®
SS - Demand [28/12/2017] [35199488] wampmysqld (wampmysqld) . (...) - c:\wamp\bin\mysql\mysql5.7.21\bin\mysqld.exe =>.MySQL
SR - Auto [23/06/2011] [ 1071032] WebcamMax, WDM Video Capture (WCMVCAM) . (.Tenki Technology Co., Ltd..) - C:\Windows\System32\DRIVERS\wcmvcam64.sys =>.Tenki Technology Co., Ltd.®
SR - System [14/12/2018] [ 310536] VBox Support Driver (YSDrv) . (.BigNox Corporation.) - C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys =>.Beijing Duodian Online Science and Technology Co.,Ltd®

---\\ Task Planned Automatically (Register) (36) - 6s
O38 - TASK: {041C8F7F-04D1-4CC4-B121-D3DAE4CB392D} [64Bits][\Adobe Flash Player NPAPI Notifier] - (.Adobe - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_207_Plugin.exe [1457208] =>.Adobe
O38 - TASK: {0695C0E9-F3ED-4D65-A7E4-8B2BE52ACF43} [64Bits][\AdobeGCInvoker-1.0-TOP-laptop-PC-TOP-laptop] - (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872] =>.Adobe Systems, Incorporated
O38 - TASK: {13D2A483-DF7F-4E43-B9A4-06BE3B0FCE07} [64Bits][\HMA! Pro VPN Update] - (.Privax Limited - HMA! Pro VPN Update.) -- C:\Program Files (x86)\HMA! Pro VPN\VpnUpdate.exe [1485936] =>.Privax Limited
O38 - TASK: {1D942F57-9C0D-4969-959E-3F0027A6487F} [64Bits][\{981F6F5C-A744-4797-8E28-4CC84FF4A656}] - (.Mozilla Corporation - Firefox.) -- c:\program files (x86)\mozilla firefox\firefox.exe [563232] =>.Mozilla Corporation
O38 - TASK: {308ADE75-E118-4E1A-BA1D-3F934A07EF91} [64Bits][\AdobeGCInvoker-1.0-TOP-laptop-PC-dell] - (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872] =>.Adobe Systems, Incorporated
O38 - TASK: {3D1A002C-AC52-4F49-9F27-091DCC7442F0} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Google Installer.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] =>.Google Inc.
O38 - TASK: {3F5608A3-BB9F-4538-A06A-B03D50F3AB09} [64Bits][\Adobe Flash Player Updater] - (.Adobe - Adobe® Flash® Player Update Service 32.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416] =>.Adobe
O38 - TASK: {439386BB-2587-4093-B45B-698C1E2B8241} [64Bits][\Tweaking.com - Windows Repair Tray Icon] - (.Tweaking.com - Tweaking.com - Windows Repair Tray Icon.) -- C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [66816] =>.Tweaking.com
O38 - TASK: {83A93C8E-56CA-464F-A3FC-964180414BFD} [64Bits][\R@1n-KMS\Office16ProPlus] - (...) -- wmic [0] =>HackTool.WinActivator
O38 - TASK: {92640113-BB54-4041-B013-1D79C2A18D4E} [64Bits][\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}] - (.AO Kaspersky Lab - Kaspersky Upgrade Launcher.) -- C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [791232] =>.AO Kaspersky Lab
O38 - TASK: {94412304-470D-4E15-821D-7B373753C293} [64Bits][\MEGA\MEGAsync Update Task S-1-5-21-3714222476-1762379400-2213293627-1000] - (.Mega Limited - MEGAupdater.) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\MEGAupdater.exe [615160] =>.MEGA Limited
O38 - TASK: {9795A394-D750-4C81-B768-9981851B248D} [64Bits][\Adobe Flash Player PPAPI Notifier] - (.Adobe - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_207_pepper.exe [1452600] =>.Adobe
O38 - TASK: {992F8E11-A31B-4E3C-A316-20CE8983AF6A} [64Bits][\R@1n-KMS\Office16ProjectPro] - (...) -- wmic [0] =>HackTool.WinActivator
O38 - TASK: {9A837B7A-45A7-4A8E-8F5E-FAD9613962FA} [64Bits][\MEGA\MEGAsync Update Task S-1-5-21-3714222476-1762379400-2213293627-1001] - (.Mega Limited - MEGAupdater.) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\MEGAupdater.exe [615160] =>.MEGA Limited
O38 - TASK: {A0369356-3C26-4B04-BB0B-B2809B96D298} [64Bits][\R@1n-KMS\Office16VisioPro] - (...) -- wmic [0] =>HackTool.WinActivator
O38 - TASK: {C3107AA7-5601-4D5C-AC25-84D9F1C570F2} [64Bits][\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] - (...) -- C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2104640]
O38 - TASK: {C9BC376F-968F-4B35-8F59-51EEEDC120FB} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Google Installer.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440] =>.Google Inc.
O38 - TASK: {ED84599B-70E4-4D51-AC15-988630B470BC} [64Bits][\Opera scheduled Autoupdate 1558062313] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe [1348120] =>.Opera Software
C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_207_Plugin.exe [-check plugin.-check] =>.Adobe
C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-TOP-laptop-PC-TOP-laptop - (.Adobe Systems, Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [-mode=scheduled] =>.Adobe Systems, Incorporated
C:\Windows\System32\Tasks\HMA! Pro VPN Update - (.Privax Limited.) -- C:\Program Files (x86)\HMA! Pro VPN\VpnUpdate.exe [] =>.Privax Limited
C:\Windows\System32\Tasks\{981F6F5C-A744-4797-8E28-4CC84FF4A656} - (.Mozilla Corporation.) -- c:\program files (x86)\mozilla firefox\firefox.exe [https://ui.skype.com/ui/0/7.31.0.104/en/abandonins] =>.Mozilla Corporation
C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-TOP-laptop-PC-dell - (.Adobe Systems, Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [] =>.Adobe Systems, Incorporated
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
C:\Windows\System32\Tasks\Adobe Flash Player Updater - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe
C:\Windows\System32\Tasks\Tweaking.com - Windows Repair Tray Icon - (.Tweaking.com.) -- C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [] =>.Tweaking.com
C:\Windows\System32\Tasks\R@1n-KMS\Office16ProPlus - (...) -- wmic [path OfficeSoftwareProtectionProduct where (ID="d4] =>HackTool.WinActivator
C:\Windows\System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} - (.AO Kaspersky Lab.) -- C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [/waitUpgrade] =>.AO Kaspersky Lab
C:\Windows\System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-3714222476-1762379400-2213293627-1000 - (.Mega Limited.) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\MEGAupdater.exe [] =>.MEGA Limited
C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_207_pepper.exe [-check pepperplugin.-check] =>.Adobe
C:\Windows\System32\Tasks\R@1n-KMS\Office16ProjectPro - (...) -- wmic [path OfficeSoftwareProtectionProduct where (ID="4f] =>HackTool.WinActivator
C:\Windows\System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-3714222476-1762379400-2213293627-1001 - (.Mega Limited.) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\MEGAupdater.exe [] =>.MEGA Limited
C:\Windows\System32\Tasks\R@1n-KMS\Office16VisioPro - (...) -- wmic [path OfficeSoftwareProtectionProduct where (ID="6b] =>HackTool.WinActivator
C:\Windows\System32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} - (...) -- C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [/installquiet]
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1558062313 - (.Opera Software.) -- C:\Program Files (x86)\Opera\launcher.exe [--scheduledautoupdate .--scheduledautoupdate] =>.Opera Software

---\\ Auto loading programs from Registry and folders (17) - 2s
O4 - HKLM\..\Run: [Apoint] . (.Alps Electric Co., Ltd. - Alps Pointing-device Driver.) -- C:\Program Files\DellTPad\Apoint.exe =>.Alps Electric Co., LTD.®
O4 - HKLM\..\Run: [AdobeGCInvoker-1.0] . (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe =>.Adobe Inc.®
O4 - HKLM\..\Run: [SysTrayApp] . (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe =>.IDT, Inc.
O4 - HKLM\..\Run: [RtsCM] . (.Realtek Semiconductor Corp. - Integrated Camera Preview Rotation Helper.) -- C:\Windows\RTSCM64.EXE =>.Realtek Semiconductor Corp.®
O4 - HKCU\..\Run: [ShowBatteryBar] . (...) -- C:\Program Files\BatteryBar\ShowBatteryBar.exe
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKCU\..\Run: [NordVPN] . (.NordVPN - NordVPN.) -- C:\Program Files (x86)\NordVPN\NordVPN.exe =>.TEFINCOM S.A.®
O4 - HKUS\.DEFAULT\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-18\..\RunOnce: [SPReview] . (.Microsoft Corporation - SP Reviewer.) -- C:\Windows\System32\SPReview\SPReview.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKLM\..\Wow6432Node\Run: [USB3MON] . (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 3.1 eXtensible Host Controller Driver\Application\iusb3mon.exe =>.Intel(R) USB eXtensible Host Controller Drivers®
O4 - HKLM\..\Wow6432Node\Run: [HPMessageService] . (.HP Inc. - HP Message Service.) -- C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe =>.Hewlett-Packard Company®
O4 - HKLM\..\Wow6432Node\Run: [ExpressVPNNotificationService] . (.ExpressVPN - ExpressVPN Notifications.) -- C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationService.exe =>.Express Vpn LLC®
O4 - HKUS\S-1-5-21-3714222476-1762379400-2213293627-1000\..\Run: [ShowBatteryBar] . (...) -- C:\Program Files\BatteryBar\ShowBatteryBar.exe
O4 - HKUS\S-1-5-21-3714222476-1762379400-2213293627-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O4 - HKUS\S-1-5-21-3714222476-1762379400-2213293627-1000\..\Run: [NordVPN] . (.NordVPN - NordVPN.) -- C:\Program Files (x86)\NordVPN\NordVPN.exe =>.TEFINCOM S.A.®

---\\ Process running (115) - 10s
[MD5.D2FC0C9CEDBB25BC570CADE50177375F] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [767016] [PID.916] =>.NVIDIA Corporation®
[MD5.9EAB979BA497191B5338BFEE5C151AE6] - (.NVIDIA Corporation - NVIDIA WMI Provider.) -- C:\Windows\system32\nvwmi64.exe [4738256] [PID.740] =>.NVIDIA Corporation
[MD5.90674CFFC8658C4F2BF58D43BB9B7CCB] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\stacsv64.exe [340480] [PID.1312] =>.IDT, Inc.
[MD5.67A62547D4EE206C1678F8BA96107727] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\system32\igfxCUIService.exe [343008] [PID.1660] =>.Intel Corporation
[MD5.D2FC0C9CEDBB25BC570CADE50177375F] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [767016] [PID.1704] =>.NVIDIA Corporation®
[MD5.D3F81AA3074AFADDFBEE4225FE6BB9FA] - (.HP - HP Service.) -- C:\Windows\system32\Hpservice.exe [31232] [PID.1716] =>.HP
[MD5.9EAB979BA497191B5338BFEE5C151AE6] - (.NVIDIA Corporation - NVIDIA WMI Provider.) -- C:\Windows\system32\nvwmi64.exe [4738256] [PID.1724] =>.NVIDIA Corporation
[MD5.BA4D7EFDEA4603C52851F2FD872C3AF5] - (.Adobe Systems Incorporated - Adobe Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [817760] [PID.2344] =>.Adobe Systems Incorporated®
[MD5.3760282AEF6A8CE98A3CE7DC8F827E09] - (.Adobe Systems, Incorporated - Adobe Genuine Software Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648] [PID.2656] =>.Adobe Inc.®
[MD5.76DD5547E6269E1D062B7567CFEA0024] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272] [PID.2812] =>.Adobe Inc.®
[MD5.E5D432E9BCEB5CB71B71258F1046DD67] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avp.exe [619640] [PID.2228] =>.Kaspersky Lab®
[MD5.6DDB54D14F3B20B4C156CAFBAF94BB22] - (.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe [388968] [PID.2476] =>.CHENGDU AOMEI Tech Co., Ltd.®
[MD5.2ABB62E78F987E7A8FDF75B466660535] - (.IDT, Inc. - IDT PC Audio.) -- C:\Program Files\IDT\WDM\sttray64.exe [1703424] [PID.2632] =>.IDT, Inc.
[MD5.93C180EE27AFBF5550681CE219761F30] - (.Realtek Semiconductor Corp. - Integrated Camera Preview Rotation Helper.) -- C:\Windows\RtsCM64.exe [225216] [PID.2608] =>.Realtek Semiconductor Corp.®
[MD5.1F0F5A8A18146B4DAAC9922FB0A3DEB2] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [4056176] [PID.2796] =>.Tonec Inc.
[MD5.D9DA258D87101FB165CD321862358077] - (.Intel Corporation - iusb3mon.) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 3.1 eXtensible Host Controller Driver\Application\iusb3mon.exe [299520] [PID.3476] =>.Intel(R) USB eXtensible Host Controller Drivers®
[MD5.F7F59391DF418C9C62F24DFA48CF464E] - (.HP Inc. - HP Message Service.) -- C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [664848] [PID.3492] =>.Hewlett-Packard Company®
[MD5.F5067C7729C0C6DE46B810E2B52CA4AE] - (.ExpressVPN - ExpressVPN Notifications.) -- C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationService.exe [779144] [PID.3528] =>.Express Vpn LLC®
[MD5.1136EFB1A46D1F2D508162387F30DC4D] - (.Iain Patterson - The non-sucking service manager.) -- C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe [368640] [PID.3696] =>.Iain Patterson
[MD5.E9E83EC2A27C8C491A5DEA4144227644] - (.FileZilla Project - FileZilla Server.) -- C:\Program Files (x86)\FileZilla Server\FileZilla Server.exe [859304] [PID.3824] =>.Tim Kosse®
[MD5.B996F530C72E84F6208D75CD313D78A3] - (...) -- C:\Program Files (x86)\ExpressVPN\expressvpnd\expressvpnd.exe [10010504] [PID.3836] =>.Express Vpn LLC®
[MD5.A08D7CCDAB0B1E92EB3A50EA7F09CD89] - (.Foxit Software Inc. - Foxit Reader ConnectedPDF Windows Service..) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe [1659456] [PID.3908] =>.Foxit Software Incorporated®
[MD5.823E922DE21EA8738C23116724512746] - (.Privax Limited - HMA! Pro VPN Service.) -- C:\Program Files (x86)\HMA! Pro VPN\VpnSvc.exe [6824560] [PID.4008] =>.Privax Limited®
[MD5.B289C20C10B241F6016FECD92B267098] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [275512] [PID.4084] =>.Tonec Inc.®
[MD5.0A0F1421C684B617C53D792EB0BB84CE] - (...) -- C:\Program Files (x86)\IQ Option\IQOptionUpdater.exe [2987016] [PID.4116] =>.IQOPTION EUROPE LTD®
[MD5.F0DB70EA6B32DA9E8D3DFE50206CF9C4] - (.Visicom Media Inc. - ManyCam Service.) -- C:\ProgramData\ManyCam\Service\ManyCamService.exe [544984] [PID.4212] =>ManyCam LLC
[MD5.38A174FEF44C07EECDDA8B42848C9D4B] - (.2018 - nordvpn-service.) -- C:\Program Files (x86)\NordVPN\nordvpn-service.exe [217040] [PID.4308] =>.TEFINCOM S.A.®
[MD5.A53E5B3408B00F0CAED73C9BE999EF00] - (.Seed4.Me - Seed4.Me VPN Client.) -- C:\Program Files\Seed4.Me VPN\bin\Seed4.Me_service.exe [3918168] [PID.4504] =>.S4M Tech, Inc.®
[MD5.8007AF9F2434F390AA51F0A516B9756F] - (.Tweaking.com - Tweaking.com - Windows Repair Tray Icon.) -- C:\Program Files (x86)\Tweaking.com\Windows Repair (All in One)\WR_Tray_Icon.exe [66816] [PID.4964] =>.Tweaking LLC®
[MD5.25EF3E9E69D9689F26D157482ED1C487] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246824] [PID.5024] =>.Synaptics Incorporated®
[MD5.347E4AFF98888F47F26F0DA35BBA25C5] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3953192] [PID.5068] =>.Synaptics Incorporated®
[MD5.44449A0EB8EBD8DCBC3ED4BB62BA3A5F] - (.TeamViewer GmbH - TeamViewer 12.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10351856] [PID.3548] =>.TeamViewer GmbH®
[MD5.38BA31817EDA71B9C7492FF51CD98DF8] - (.Synaptics Incorporated - SynapticsWBF Policy Service (COGENT).) -- C:\Windows\system32\valWBFPolicyService.exe [82944] [PID.4644] =>.Synaptics Incorporated
[MD5.DE21598A08FC4865B64E52623BA568A5] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\Windows\SysWOW64\vmnetdhcp.exe [374192] [PID.4648] =>.VMware, Inc.®
[MD5.19E609BEE6FFA3F487B170567CFB33C0] - (.VMware, Inc. - VMware NAT Service.) -- C:\Windows\SysWOW64\vmnat.exe [396208] [PID.4844] =>.VMware, Inc.®
[MD5.5DA665A9DFAEAB9F16AB40717D7C988C] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\avpui.exe [338224] [PID.5400] =>.Kaspersky Lab®
[MD5.DD8F1ABC062011BECCF3604119DE9E96] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [100784] [PID.5840] =>.VMware, Inc.®
[MD5.59C8BF1A8C9CBB6EC136DC7F7476250D] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [929712] [PID.2760] =>.VMware, Inc.®
[MD5.5C892630B62A1A0EFF9AD8FA1386AC92] - (...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [15446448] [PID.6416] =>.VMware, Inc.®
[MD5.1D052C3829C38CB19FFC04A8B1560314] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [209960] [PID.5728] =>.Synaptics Incorporated®
[MD5.4FB971662E631DBF980FAA9059F22B5F] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [311776] [PID.7576] =>.Intel Corporation
[MD5.617BC17887D148C5A18BEA8E30BA48C4] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\system32\igfxHK.exe [246752] [PID.7596] =>.Intel Corporation
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.2668] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.4596] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.3996] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.7956] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.8096] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.8076] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.8100] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.8120] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.8000] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.7632] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.7940] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.7928] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.8172] =>.Google LLC®
[MD5.402D3F1B8B2AC9FDED325AB8A6AD84D2] - (...) -- C:\Program Files (x86)\ExpressVPN\expressvpnd\expressvpn-browser-helper.exe [6944136] [PID.8564] =>.Express Vpn LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.8900] =>.Google LLC®
[MD5.D736914AAB110730D5311E87DB51C403] - (.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe [5032848] [PID.8580] =>.WIBU-SYSTEMS AG®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.11012] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.12420] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.13136] =>.Google LLC®
[MD5.F59F4F7BEA12DD7C8D44F0A717C21C8E] - (.Alexander Roshal - WinRAR archiver.) -- C:\Program Files (x86)\WinRAR\WinRAR.exe [2230488] [PID.15700] =>.win.rar GmbH®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.14256] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.11416] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.4412] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.11004] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.12832] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.14428] =>.Google LLC®
[MD5.E7169B3C651659438BBCF1209AB88D4D] - (.Foxit Software Inc. - Foxit Reader 9.1.) -- C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\FOXITREADER.EXE [62995520] [PID.13152] =>.Foxit Software Incorporated®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.11992] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.16340] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.15324] =>.Google LLC®
[MD5.72FBDD3C48347777E97573FB2B77E937] - (.ExpressVPN - ExpressVPN.) -- C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPN.exe [802184] [PID.8456] =>.Express Vpn LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.3156] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.11096] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.12812] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.13744] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.5976] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.13564] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.3332] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.11376] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.2728] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.14976] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.13696] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.14824] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.11612] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.10440] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.14576] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.12600] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.14420] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.12004] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.5668] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.1092] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.13548] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.6036] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.15816] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.1748] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.4112] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.6448] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.14332] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.3560] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.10200] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.12228] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.6532] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.14164] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.4512] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.14460] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.11444] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.14208] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.4732] =>.Google LLC®
[MD5.7109608928D8AB470D60F47BAD5D153A] - (.HP Inc. - HP WMI Service.) -- C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [606224] [PID.9772] =>.Hewlett-Packard Company®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.3936] =>.Google LLC®
[MD5.6AA64F2A35E167E32E2CC21E1CED8585] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\TOP-laptop\Downloads\Programs\ZHPDiag3.exe [2989952] [PID.12968] =>.Nicolas Coolman
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.6892] =>.Google LLC®
[MD5.3208EA1BB78CA077A8F9BFF22FE89614] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1555952] [PID.8500] =>.Google LLC®

---\\ Google Chrome, Start,Search,Extensions (56) - 1s
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.adcash.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.superadexchange.com
G0 - GCSP: Preferences [User Data\Default][HomePage] http://www.trotux.com =>.SUP.Trotux
G0 - GCSP: Preferences [User Data\Default][HomePage] http://xa.trotux.com =>.SUP.Trotux
G0 - GCSP: Preferences [User Data\Default][HomePage] http://ssl.google-analytics.com =>.Google Inc.
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [Temp]
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [fhplmmllnpjjlncfjpbbpjadoeijkogc] FBDown Video Downloader =>.Google Chrome Addon
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [mchjnmdbdlkdbfliogedbnpnanfjnolk] =>.Kaspersky Labs
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc.
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [TOP-laptop][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [TOP-laptop][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [TOP-laptop][User Data\Default\Local Extension Settings] [ngpampappnmepgilojfohadhhmbhlaek]
G2 - GCE: Preference [TOP-laptop][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router}
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Accounts]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Application Cache]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [AutofillStrikeDatabase]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [blob_storage]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [BudgetDatabase]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Cache]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Code Cache]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [databases]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [databases-incognito]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [data_reduction_proxy_leveldb]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Download Service]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Extension Rules]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Extension State]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Extensions]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Feature Engagement Tracker]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [File System]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [GCM Store]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [GPUCache]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [IndexedDB]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [JumpListIconsMostVisited]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [JumpListIconsRecentClosed]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Local App Settings]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Local Extension Settings]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Local Storage]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Managed Extension Settings]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Pepper Data]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Platform Notifications]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Search Logos]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Service Worker]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Session Storage]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [shared_proto_db]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Site Characteristics Database]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Storage]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Sync Data]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Sync Extension Settings]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [VideoDecodeStats]
G2 - GCE: Preference [TOP-laptop][User Data\ChromeDefaultData] [Web Applications]

---\\ Mozilla Firefox,Plugins,Start,Search,Extensions (35) - 11s
P2 - EXT FILE: (...) -- C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\extensions\firefox-addon@expressvpn.com.xpi
P2 - EXT FILE: (.MEGA - Secure Cloud Storage and Chat.) -- C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\extensions\firefox@mega.co.nz.xpi =>.MEGA
P2 - EXT FILE: (.Cookie-Editor - Simple yet powerful Cookie Editor that.) -- C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\extensions\{c3c10168-4186-445c-9c5b-63f12b8e2c87}.xpi
P2 - EXT FILE: (.Download with Internet Download Manage - when activated, interrupts the built-i.) -- C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\extensions\{d1646fcf-76ad-49c5-b8b2-e496e9b71189}.xpi
P2 - EXT FILE: (...) -- C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\searchplugins\9ml82lou.xml
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.Firefox Monitor.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\fxmonitor@mozilla.org.xpi =>.Firefox Monitor
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla Corporation
P2 - EXT FILE: (.webcompat.com.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.webcompat.com
P2 - EXT FILE: (.webcompat.com.) -- C:\Program Files (x86)\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.webcompat.com
P2 - EXT: (...) -- C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\extensions\trash =>.Mozilla Corporation
P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_207.dll =>.Adobe
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\bookmarkbackups =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\browser-extension-data =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\crashes =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\datareporting =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\extensions =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\features =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\gmp =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\gmp-eme-adobe =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\gmp-gmpopenh264 =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\gmp-widevinecdm =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\healthreport =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\minidumps =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\saved-telemetry-pings =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\searchplugins =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\sessionstore-backups =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\storage =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\weave =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\webapps =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\browser-extension-data\light_plugin_448EC0843447455C9DA355B3C2811D6A@kaspersky.com =>Kaspersky Labs
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\browser-extension-data\screenshots@mozilla.org =>Mozilla Corporation
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\browser-extension-data\{48df221a-8316-4d17-9191-7fc5ea5f14c0}
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\browser-extension-data\{4ED1F68A-5463-4931-9384-8FFF5ED91D92} =>McAfee Inc.
C:\Users\TOP-laptop\AppData\Roaming\Mozilla\Firefox\Profiles\6v0hzrkh.default\browser-extension-data\{d1646fcf-76ad-49c5-b8b2-e496e9b71189}

---\\ Opera, Plugins,Start,Search (1) - 0s
B2 - EXT: [Opera Software] C:\Users\TOP-laptop\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi =>.Opera Software

---\\ Internet Explorer Extensions, Start, Search (15) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Internet Browser.) (11.00.9600.16428 (winblue_gdr.131013-1700)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, trusted site and sensitive site (3) - 0s
~ IE Restricted Site Good: dell.com
~ Microsoft Internet Explorer Restricted Site(s) Domains: 1(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)

---\\ Internet Explorer, Proxy Management (6) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 68.110.172.76:3128 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ Line Analysis, IniFiles, Auto loading programs (3) - 1s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ Hosts file redirection (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (0)

---\\ Browser Helper Object (BHO) (7) - 2s
O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc.®
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_211\bin\ssv.dll =>.Oracle America, Inc.®
O2 - BHO: VIPRE Search Guard Helper [64Bits] - {963C8283-AE7F-4AA6-9B3B-847A8FC62C5E} . (...) -- C:\Program Files (x86)\VIPRE\x64\VSGNx64.dll (.not file.)
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL =>.Microsoft Corporation®
O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_211\bin\jp2ssv.dll =>.Oracle America, Inc.®
O2 - BHO: ScriptInjectionPluginBrowserHelperObject [64Bits] - {EC1E29BB-F56A-45D8-B023-D3EF710FA0E0} . (.AO Kaspersky Lab - Kaspersky Protection plugins.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\x64\ieext\ie_plugin.dll =>.Kaspersky Lab®

---\\ Internet Explorer Toolbars (2) - 0s
O3 - Toolbar: 0x44DF53486B7DE9489258D800EEE54AF6 - [HKCU]{4853DF44-7D6B-48E9-9258-D800EEE54AF6} . (...) -- (.not file.)
O3 - Toolbar: VIPRE Search Guard Toolbar - [HKLM]{A924C17A-5E94-4E02-BED5-49720BA6F7FA} . (...) -- (.not file.)

---\\ Global shortcuts Startup (247) - 60s
O4 - GS\Desktop [Administrator]: تنظيف مخلفات التنشيط Cleaner.lnk . (...) C:\Program Files (x86)\IDMActivator-mrelhlawany\Uninstall.exe
O4 - GS\Desktop [Administrator]: Article Marketing Robot.lnk . (...) C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Installer\{31645123-137A-4A4F-A0E5-65594DEAA469}\_69F7ED9E53F84E565C7DD5.exe
O4 - GS\Desktop [Administrator]: Article Spinner.lnk . (.Fastlink2 - Article Spinner.) C:\Program Files (x86)\Submit Suite\Article Spinner\ArticleSpinner.exe =>.Cristina Mailat®
O4 - GS\Desktop [Administrator]: BacklinkSpeed.lnk . (...) C:\Program Files (x86)\BacklinkSpeed\BacklinkSpeed 2.4.EXE
O4 - GS\Desktop [Administrator]: Facebook Audiens Extractor Pro.lnk . (.--=[ Cracked By Dr.FarFar ]=-- - Facebook Audiens Extractor Pro [ Cracked By.) C:\Program Files (x86)\Facebook Audiens Extractor Pro\Facebook Audiens Extractor Pro.exe
O4 - GS\Desktop [Administrator]: Grammarly.lnk . (.Grammarly - Grammarly.) C:\Users\TOP-laptop\AppData\Local\GrammarlyForWindows\GrammarlyForWindows.exe =>.Grammarly, Inc.®
O4 - GS\Desktop [Administrator]: Hein 4.5.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein.exe =>.Hero Hero
O4 - GS\Desktop [Administrator]: Hein Recovery 1.8.lnk . (.Hero Hero - Hero Family.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein Recovery.exe =>.Hero Hero
O4 - GS\Desktop [Administrator]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\TOP-laptop\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Amazon Services LLC®
O4 - GS\Desktop [Administrator]: Microfit 5.LNK . (.Camfit Data Ltd - .) C:\Program Files (x86)\Microfit 5\Microfit 5.exe
O4 - GS\Desktop [Administrator]: QM for Windows V5.lnk . (.Microsoft - QMstartup.) C:\Program Files (x86)\POMQMV5\QMstartup.exe =>.Microsoft
O4 - GS\Desktop [Administrator]: Telegram Auto Social Media Marketing.lnk . (.--=[ Cracked By Dr.FarFar ]=-- - Telegram Auto 2019 [ Cracked By Dr.FarFar ].) C:\Program Files (x86)\Telegram Auto Social Media Marketing\Telegram Auto Starter.exe
O4 - GS\Desktop [Administrator]: Udeler.lnk . (.Faisal Umair - Udeler.) C:\Users\TOP-laptop\AppData\Local\Programs\Udeler\Udeler.exe
O4 - GS\Desktop [Administrator]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\TOP-laptop\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrator]: برنامج شبكة الامام الآجري لتفريغ الأشرطة الاصدار الثالث.lnk . (.kadrisoft - برنامج الأجري لتفريغ الأشرطة.) C:\Program Files (x86)\ajurry\ajurryProject.exe
O4 - GS\Quicklaunch [Administrator]: Article Spinner.lnk . (.Fastlink2 - Article Spinner.) C:\Program Files (x86)\Submit Suite\Article Spinner\ArticleSpinner.exe =>.Cristina Mailat®
O4 - GS\Quicklaunch [Administrator]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [Administrator]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Quicklaunch [Administrator]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrator]: Opera Browser.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Quicklaunch [Administrator]: Oracle VM VirtualBox.lnk . (.Oracle Corporation - Oracle VM VirtualBox.) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe =>.Oracle Corporation
O4 - GS\Quicklaunch [Administrator]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\TOP-laptop\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Administrator]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [Administrator]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrator]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH®
O4 - GS\TaskBar [Administrator]: Adobe Illustrator CC 2018.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2018.) C:\Program Files\Adobe\Adobe Illustrator CC 2018\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [Administrator]: Adobe Photoshop CC 2017.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2017.) C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [Administrator]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation®
O4 - GS\TaskBar [Administrator]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Administrator]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrator]: Opera Browser.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\TaskBar [Administrator]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrator]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
O4 - GS\Startup [Administrator]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\TOP-laptop\AppData\Local\MEGAsync\MEGAsync.exe =>.Mega Limited®
O4 - GS\Programs [Administrator]: f.lux.lnk . (.f.lux Software LLC - f.lux.) C:\Users\TOP-laptop\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - GS\Programs [Administrator]: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrator]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrator]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\TOP-laptop\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Administrator]: Udeler.lnk . (.Faisal Umair - Udeler.) C:\Users\TOP-laptop\AppData\Local\Programs\Udeler\Udeler.exe
O4 - GS\Desktop [dell]: تنظيف مخلفات التنشيط Cleaner.lnk . (...) C:\Program Files (x86)\IDMActivator-mrelhlawany\Uninstall.exe
O4 - GS\Desktop [dell]: Article Marketing Robot.lnk . (...) C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Installer\{31645123-137A-4A4F-A0E5-65594DEAA469}\_69F7ED9E53F84E565C7DD5.exe
O4 - GS\Desktop [dell]: Article Spinner.lnk . (.Fastlink2 - Article Spinner.) C:\Program Files (x86)\Submit Suite\Article Spinner\ArticleSpinner.exe =>.Cristina Mailat®
O4 - GS\Desktop [dell]: BacklinkSpeed.lnk . (...) C:\Program Files (x86)\BacklinkSpeed\BacklinkSpeed 2.4.EXE
O4 - GS\Desktop [dell]: Facebook Audiens Extractor Pro.lnk . (.--=[ Cracked By Dr.FarFar ]=-- - Facebook Audiens Extractor Pro [ Cracked By.) C:\Program Files (x86)\Facebook Audiens Extractor Pro\Facebook Audiens Extractor Pro.exe
O4 - GS\Desktop [dell]: Grammarly.lnk . (.Grammarly - Grammarly.) C:\Users\TOP-laptop\AppData\Local\GrammarlyForWindows\GrammarlyForWindows.exe =>.Grammarly, Inc.®
O4 - GS\Desktop [dell]: Hein 4.5.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein.exe =>.Hero Hero
O4 - GS\Desktop [dell]: Hein Recovery 1.8.lnk . (.Hero Hero - Hero Family.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein Recovery.exe =>.Hero Hero
O4 - GS\Desktop [dell]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\TOP-laptop\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Amazon Services LLC®
O4 - GS\Desktop [dell]: Microfit 5.LNK . (.Camfit Data Ltd - .) C:\Program Files (x86)\Microfit 5\Microfit 5.exe
O4 - GS\Desktop [dell]: QM for Windows V5.lnk . (.Microsoft - QMstartup.) C:\Program Files (x86)\POMQMV5\QMstartup.exe =>.Microsoft
O4 - GS\Desktop [dell]: Telegram Auto Social Media Marketing.lnk . (.--=[ Cracked By Dr.FarFar ]=-- - Telegram Auto 2019 [ Cracked By Dr.FarFar ].) C:\Program Files (x86)\Telegram Auto Social Media Marketing\Telegram Auto Starter.exe
O4 - GS\Desktop [dell]: Udeler.lnk . (.Faisal Umair - Udeler.) C:\Users\TOP-laptop\AppData\Local\Programs\Udeler\Udeler.exe
O4 - GS\Desktop [dell]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\TOP-laptop\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [dell]: برنامج شبكة الامام الآجري لتفريغ الأشرطة الاصدار الثالث.lnk . (.kadrisoft - برنامج الأجري لتفريغ الأشرطة.) C:\Program Files (x86)\ajurry\ajurryProject.exe
O4 - GS\Quicklaunch [dell]: Article Spinner.lnk . (.Fastlink2 - Article Spinner.) C:\Program Files (x86)\Submit Suite\Article Spinner\ArticleSpinner.exe =>.Cristina Mailat®
O4 - GS\Quicklaunch [dell]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [dell]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Quicklaunch [dell]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [dell]: Opera Browser.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Quicklaunch [dell]: Oracle VM VirtualBox.lnk . (.Oracle Corporation - Oracle VM VirtualBox.) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe =>.Oracle Corporation
O4 - GS\Quicklaunch [dell]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\TOP-laptop\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [dell]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [dell]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [dell]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH®
O4 - GS\TaskBar [dell]: Adobe Illustrator CC 2018.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2018.) C:\Program Files\Adobe\Adobe Illustrator CC 2018\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [dell]: Adobe Photoshop CC 2017.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2017.) C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [dell]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation®
O4 - GS\TaskBar [dell]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [dell]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\TaskBar [dell]: Opera Browser.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\TaskBar [dell]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\TaskBar [dell]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
O4 - GS\Startup [dell]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\TOP-laptop\AppData\Local\MEGAsync\MEGAsync.exe =>.Mega Limited®
O4 - GS\Programs [dell]: f.lux.lnk . (.f.lux Software LLC - f.lux.) C:\Users\TOP-laptop\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - GS\Programs [dell]: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [dell]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [dell]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\TOP-laptop\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [dell]: Udeler.lnk . (.Faisal Umair - Udeler.) C:\Users\TOP-laptop\AppData\Local\Programs\Udeler\Udeler.exe
O4 - GS\Desktop [Guest]: تنظيف مخلفات التنشيط Cleaner.lnk . (...) C:\Program Files (x86)\IDMActivator-mrelhlawany\Uninstall.exe
O4 - GS\Desktop [Guest]: Article Marketing Robot.lnk . (...) C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Installer\{31645123-137A-4A4F-A0E5-65594DEAA469}\_69F7ED9E53F84E565C7DD5.exe
O4 - GS\Desktop [Guest]: Article Spinner.lnk . (.Fastlink2 - Article Spinner.) C:\Program Files (x86)\Submit Suite\Article Spinner\ArticleSpinner.exe =>.Cristina Mailat®
O4 - GS\Desktop [Guest]: BacklinkSpeed.lnk . (...) C:\Program Files (x86)\BacklinkSpeed\BacklinkSpeed 2.4.EXE
O4 - GS\Desktop [Guest]: Facebook Audiens Extractor Pro.lnk . (.--=[ Cracked By Dr.FarFar ]=-- - Facebook Audiens Extractor Pro [ Cracked By.) C:\Program Files (x86)\Facebook Audiens Extractor Pro\Facebook Audiens Extractor Pro.exe
O4 - GS\Desktop [Guest]: Grammarly.lnk . (.Grammarly - Grammarly.) C:\Users\TOP-laptop\AppData\Local\GrammarlyForWindows\GrammarlyForWindows.exe =>.Grammarly, Inc.®
O4 - GS\Desktop [Guest]: Hein 4.5.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein.exe =>.Hero Hero
O4 - GS\Desktop [Guest]: Hein Recovery 1.8.lnk . (.Hero Hero - Hero Family.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein Recovery.exe =>.Hero Hero
O4 - GS\Desktop [Guest]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\TOP-laptop\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Amazon Services LLC®
O4 - GS\Desktop [Guest]: Microfit 5.LNK . (.Camfit Data Ltd - .) C:\Program Files (x86)\Microfit 5\Microfit 5.exe
O4 - GS\Desktop [Guest]: QM for Windows V5.lnk . (.Microsoft - QMstartup.) C:\Program Files (x86)\POMQMV5\QMstartup.exe =>.Microsoft
O4 - GS\Desktop [Guest]: Telegram Auto Social Media Marketing.lnk . (.--=[ Cracked By Dr.FarFar ]=-- - Telegram Auto 2019 [ Cracked By Dr.FarFar ].) C:\Program Files (x86)\Telegram Auto Social Media Marketing\Telegram Auto Starter.exe
O4 - GS\Desktop [Guest]: Udeler.lnk . (.Faisal Umair - Udeler.) C:\Users\TOP-laptop\AppData\Local\Programs\Udeler\Udeler.exe
O4 - GS\Desktop [Guest]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\TOP-laptop\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Guest]: برنامج شبكة الامام الآجري لتفريغ الأشرطة الاصدار الثالث.lnk . (.kadrisoft - برنامج الأجري لتفريغ الأشرطة.) C:\Program Files (x86)\ajurry\ajurryProject.exe
O4 - GS\Quicklaunch [Guest]: Article Spinner.lnk . (.Fastlink2 - Article Spinner.) C:\Program Files (x86)\Submit Suite\Article Spinner\ArticleSpinner.exe =>.Cristina Mailat®
O4 - GS\Quicklaunch [Guest]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [Guest]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Quicklaunch [Guest]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Guest]: Opera Browser.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Quicklaunch [Guest]: Oracle VM VirtualBox.lnk . (.Oracle Corporation - Oracle VM VirtualBox.) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe =>.Oracle Corporation
O4 - GS\Quicklaunch [Guest]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\TOP-laptop\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [Guest]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [Guest]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Guest]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH®
O4 - GS\TaskBar [Guest]: Adobe Illustrator CC 2018.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2018.) C:\Program Files\Adobe\Adobe Illustrator CC 2018\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [Guest]: Adobe Photoshop CC 2017.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2017.) C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [Guest]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation®
O4 - GS\TaskBar [Guest]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [Guest]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Guest]: Opera Browser.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\TaskBar [Guest]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Guest]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
O4 - GS\Startup [Guest]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\TOP-laptop\AppData\Local\MEGAsync\MEGAsync.exe =>.Mega Limited®
O4 - GS\Programs [Guest]: f.lux.lnk . (.f.lux Software LLC - f.lux.) C:\Users\TOP-laptop\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - GS\Programs [Guest]: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Guest]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Guest]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\TOP-laptop\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Guest]: Udeler.lnk . (.Faisal Umair - Udeler.) C:\Users\TOP-laptop\AppData\Local\Programs\Udeler\Udeler.exe
O4 - GS\Desktop [TOP-laptop]: تنظيف مخلفات التنشيط Cleaner.lnk . (...) C:\Program Files (x86)\IDMActivator-mrelhlawany\Uninstall.exe
O4 - GS\Desktop [TOP-laptop]: Article Marketing Robot.lnk . (...) C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Installer\{31645123-137A-4A4F-A0E5-65594DEAA469}\_69F7ED9E53F84E565C7DD5.exe
O4 - GS\Desktop [TOP-laptop]: Article Spinner.lnk . (.Fastlink2 - Article Spinner.) C:\Program Files (x86)\Submit Suite\Article Spinner\ArticleSpinner.exe =>.Cristina Mailat®
O4 - GS\Desktop [TOP-laptop]: BacklinkSpeed.lnk . (...) C:\Program Files (x86)\BacklinkSpeed\BacklinkSpeed 2.4.EXE
O4 - GS\Desktop [TOP-laptop]: Facebook Audiens Extractor Pro.lnk . (.--=[ Cracked By Dr.FarFar ]=-- - Facebook Audiens Extractor Pro [ Cracked By.) C:\Program Files (x86)\Facebook Audiens Extractor Pro\Facebook Audiens Extractor Pro.exe
O4 - GS\Desktop [TOP-laptop]: Grammarly.lnk . (.Grammarly - Grammarly.) C:\Users\TOP-laptop\AppData\Local\GrammarlyForWindows\GrammarlyForWindows.exe =>.Grammarly, Inc.®
O4 - GS\Desktop [TOP-laptop]: Hein 4.5.2.lnk . (.Hero Hero - Hero Hero.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein.exe =>.Hero Hero
O4 - GS\Desktop [TOP-laptop]: Hein Recovery 1.8.lnk . (.Hero Hero - Hero Family.) C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\Hein Recovery.exe =>.Hero Hero
O4 - GS\Desktop [TOP-laptop]: Kindle.lnk . (.Amazon.com - Kindle.) C:\Users\TOP-laptop\AppData\Local\Amazon\Kindle\application\Kindle.exe =>.Amazon Services LLC®
O4 - GS\Desktop [TOP-laptop]: Microfit 5.LNK . (.Camfit Data Ltd - .) C:\Program Files (x86)\Microfit 5\Microfit 5.exe
O4 - GS\Desktop [TOP-laptop]: QM for Windows V5.lnk . (.Microsoft - QMstartup.) C:\Program Files (x86)\POMQMV5\QMstartup.exe =>.Microsoft
O4 - GS\Desktop [TOP-laptop]: Telegram Auto Social Media Marketing.lnk . (.--=[ Cracked By Dr.FarFar ]=-- - Telegram Auto 2019 [ Cracked By Dr.FarFar ].) C:\Program Files (x86)\Telegram Auto Social Media Marketing\Telegram Auto Starter.exe
O4 - GS\Desktop [TOP-laptop]: Udeler.lnk . (.Faisal Umair - Udeler.) C:\Users\TOP-laptop\AppData\Local\Programs\Udeler\Udeler.exe
O4 - GS\Desktop [TOP-laptop]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\TOP-laptop\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [TOP-laptop]: برنامج شبكة الامام الآجري لتفريغ الأشرطة الاصدار الثالث.lnk . (.kadrisoft - برنامج الأجري لتفريغ الأشرطة.) C:\Program Files (x86)\ajurry\ajurryProject.exe
O4 - GS\Quicklaunch [TOP-laptop]: Article Spinner.lnk . (.Fastlink2 - Article Spinner.) C:\Program Files (x86)\Submit Suite\Article Spinner\ArticleSpinner.exe =>.Cristina Mailat®
O4 - GS\Quicklaunch [TOP-laptop]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\Quicklaunch [TOP-laptop]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Quicklaunch [TOP-laptop]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [TOP-laptop]: Opera Browser.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\Quicklaunch [TOP-laptop]: Oracle VM VirtualBox.lnk . (.Oracle Corporation - Oracle VM VirtualBox.) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe =>.Oracle Corporation
O4 - GS\Quicklaunch [TOP-laptop]: µTorrent.lnk . (.BitTorrent Inc. - µTorrent.) C:\Users\TOP-laptop\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O4 - GS\sendTo [TOP-laptop]: Bluetooth File Transfer.LNK . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\sendTo [TOP-laptop]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [TOP-laptop]: TeamViewer.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe --sendto =>.TeamViewer GmbH®
O4 - GS\TaskBar [TOP-laptop]: Adobe Illustrator CC 2018.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2018.) C:\Program Files\Adobe\Adobe Illustrator CC 2018\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [TOP-laptop]: Adobe Photoshop CC 2017.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2017.) C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [TOP-laptop]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation®
O4 - GS\TaskBar [TOP-laptop]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [TOP-laptop]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\TaskBar [TOP-laptop]: Opera Browser.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\TaskBar [TOP-laptop]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\TaskBar [TOP-laptop]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
O4 - GS\Startup [TOP-laptop]: MEGAsync.lnk . (.Mega Limited - MEGAsync.) C:\Users\TOP-laptop\AppData\Local\MEGAsync\MEGAsync.exe =>.Mega Limited®
O4 - GS\Programs [TOP-laptop]: f.lux.lnk . (.f.lux Software LLC - f.lux.) C:\Users\TOP-laptop\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - GS\Programs [TOP-laptop]: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [TOP-laptop]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [TOP-laptop]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\TOP-laptop\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [TOP-laptop]: Udeler.lnk . (.Faisal Umair - Udeler.) C:\Users\TOP-laptop\AppData\Local\Programs\Udeler\Udeler.exe
O4 - GS\CommonDesktop [Public]: AMC Profile Manager.lnk . (.MurGee.com - Auto Mouse Click Profile Manager.) C:\Program Files (x86)\Auto Mouse Click by MurGee.com\Auto Mouse Click Profile Manager.exe =>.MurGee Softwares Pvt Ltd®
O4 - GS\CommonDesktop [Public]: AOMEI Backupper Technician Plus.lnk . (.AOMEI Tech Co., Ltd. - AOMEI Backupper.) C:\Program Files (x86)\AOMEI Backupper\Backupper.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O4 - GS\CommonDesktop [Public]: AOMEI Partition Assistant Pro Edition 6.3.lnk . (.AOMEI Technology Co., Ltd. - AOMEI Partition Assistant.) C:\Program Files (x86)\AOMEI Partition Assistant Pro Edition 6.3\PartAssist.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O4 - GS\CommonDesktop [Public]: ArticleRewriterWizard.lnk . (...) C:\Program Files (x86)\Article Rewriter Wizard\ArticleRewriterWizard.exe
O4 - GS\CommonDesktop [Public]: EPSON Scan.lnk . (.SEIKO EPSON CORP. - EPSON Scan.) C:\Windows\twain_32\escndv\escndv.exe =>.SEIKO EPSON CORPORATION®
O4 - GS\CommonDesktop [Public]: Foxit Reader.lnk . (.Foxit Software Inc. - Foxit Reader 9.1.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe =>.Foxit Software Incorporated®
O4 - GS\CommonDesktop [Public]: Katatibe.lnk . (.RegExLab's Friends Group - Java Executive by Jar2Exe, RegExLab.com.) C:\Program Files (x86)\Sufegmar\Katatibe\elKatatibe.exe
O4 - GS\CommonDesktop [Public]: Market Samurai.lnk . (...) C:\Program Files (x86)\Market Samurai\Market Samurai.exe
O4 - GS\CommonDesktop [Public]: Opera Browser.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\CommonDesktop [Public]: Oracle VM VirtualBox.lnk . (.Oracle Corporation - Oracle VM VirtualBox.) C:\Program Files (x86)\Oracle\VirtualBox\VirtualBox.exe =>.Oracle Corporation
O4 - GS\CommonDesktop [Public]: Seo Fast Indexer.lnk . (.Traffic Mystic Solutions - Link Robot X - Auto Indexer Pro.) C:\Program Files (x86)\Stephen Hawkins\SEOLinkRobotPro\fastindexer.exe
O4 - GS\CommonDesktop [Public]: Seo Link Robot Guide.lnk . (...) C:\Program Files (x86)\Stephen Hawkins\SEOLinkRobotPro\SEO LINK ROBOT Guide v2.0.pdf
O4 - GS\CommonDesktop [Public]: Seo Link Robot Help .lnk . (...) C:\Program Files (x86)\Stephen Hawkins\SEOLinkRobotPro\troubleshooting_guide.pdf
O4 - GS\CommonDesktop [Public]: SEO Link Robot Pro.lnk . (.Traffic Mystic IM Solutions - SEO Link Robot Pro.) C:\Program Files (x86)\Stephen Hawkins\SEOLinkRobotPro\SEOLinkRobot.exe
O4 - GS\CommonDesktop [Public]: Seo Link Robot Strategy Guide.lnk . (...) C:\Program Files (x86)\Stephen Hawkins\SEOLinkRobotPro\SEOLR_Strategy_Guide.pdf
O4 - GS\CommonDesktop [Public]: Stealth Keyword Competition Analyzer.lnk . (...) C:\Program Files (x86)\Stealth Keyword Competition Analyzer\StealthKeywordCompetitionAnalyzer.exe
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: Wampserver32.lnk . (.Aestan Software - Aestan Tray Menu.) C:\wamp\wampmanager.exe =>.Aestan Software
O4 - GS\Programs [Public]: f.lux.lnk . (.f.lux Software LLC - f.lux.) C:\Users\TOP-laptop\AppData\Local\FluxSoftware\Flux\flux.exe =>.F.lux Software LLC®
O4 - GS\Programs [Public]: Internet Explorer (64-bit).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\TOP-laptop\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Udeler.lnk . (.Faisal Umair - Udeler.) C:\Users\TOP-laptop\AppData\Local\Programs\Udeler\Udeler.exe
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Windows Command Processor.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Notepad.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Windows Explorer.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe -extoff =>.Microsoft Corporation®
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Private Character Editor.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Startup [Public]: HMA! Pro VPN.lnk . (.Privax Limited - HMA! Pro VPN.) C:\Program Files (x86)\HMA! Pro VPN\Vpn.exe /nogui =>.Privax Limited®
O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - Transfers files between device.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Windows Calculator.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Display Switch.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Math Input Panel Accessory.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Windows Mobility Center.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Remote Desktop Connection.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Snipping Tool.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Windows Sound Recorder.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Sticky Notes.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Windows host process (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>..Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Windows Wordpad Application.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Character Map.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Microsoft® Disk Defragmenter.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Disk Space Cleanup Manager for Windows.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Resource and Performance Monitor.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - System Information.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Microsoft® Windows System Restore.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Windows Easy Transfer Post Migration Applic.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Windows Easy Transfer Application.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Adobe After Effects CS4.lnk . (.Adobe Systems Incorporated - Adobe After Effects CS4.) C:\Program Files (x86)\Adobe\Adobe After Effects CS4\Support Files\AfterFX.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Bridge CS4.lnk . (.Adobe Systems, Inc. - Adobe Bridge.) C:\Program Files (x86)\Adobe\Adobe Bridge CS4\Bridge.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Creative Cloud.lnk . (.Adobe Systems Incorporated - Adobe Creative Cloud.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Device Central CS4.lnk . (.Adobe Systems - Adobe Device Central CS4.) C:\Program Files (x86)\Adobe\Adobe Device Central CS4\DeviceCentral.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe ExtendScript Toolkit CS4.lnk . (.Adobe Systems Incorporated - ExtendScript Toolkit CS4 and Debugger (32 b.) C:\Program Files (x86)\Adobe\Adobe Utilities\ExtendScript Toolkit CS4\ExtendScript Toolkit.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Extension Manager CS4.lnk . (.Adobe Systems Incorporated - Adobe Extension Manager CS4.) C:\Program Files (x86)\Adobe\Adobe Extension Manager CS4\Adobe Extension Manager CS4.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Illustrator CC 2018.lnk . (.Adobe Systems Inc. - Adobe Illustrator CC 2018.) C:\Program Files\Adobe\Adobe Illustrator CC 2018\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Media Encoder CS4.lnk . (.Adobe Systems, Incorporated - .) C:\Program Files (x86)\Adobe\Adobe Media Encoder CS4\Adobe Media Encoder.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC 2017.lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC 2017.) C:\Program Files\Adobe\Adobe Photoshop CC 2017\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Pixel Bender Toolkit.lnk . (...) C:\Program Files (x86)\Adobe\Adobe Utilities\Pixel Bender Toolkit\pixel_bender_toolkit.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Reader 8.lnk . (...) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-A81000000003}\SC_Reader.exe
O4 - GS\ProgramsCommon [Public]: DTS Studio Sound.lnk . (.IDT, Inc. - IDT PC Audio.) C:\Windows\System32\IDTNC64.cpl =>.IDT, Inc.
O4 - GS\ProgramsCommon [Public]: Embratoria G10.lnk . (...) C:\Program Files (x86)\EmbratoriaG10\EmbratoriaG10.exe
O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\ProgramsCommon [Public]: Market Samurai.lnk . (...) C:\Program Files (x86)\Market Samurai\Market Samurai.exe
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Mocha for After Effects CS4.lnk . (...) C:\Program Files (x86)\Adobe\Adobe After Effects CS4\Mocha\bin\Mocha For After Effects.exe
O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Opera Browser.lnk . (.Opera Software - Opera Internet Browser.) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O4 - GS\ProgramsCommon [Public]: Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: PDF Annotator.lnk . (.GRAHL software design - PDF Annotator Crack UZ1.) C:\Program Files (x86)\PDF Annotator\PDFAnnotator.exe =>.GRAHL software design
O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Project.lnk . (.Microsoft Corporation - Microsoft Project.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINPROJ.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Seed4.Me.lnk . (.Seed4.Me - Seed4.Me VPN Client.) C:\Program Files\Seed4.Me VPN\bin\Seed4.Me_VPN.exe --show =>.S4M Tech, Inc.®
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Windows Desktop Gadgets.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Skype for Business.lnk . (.Microsoft Corporation - Skype for Business.) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: TeamViewer 12.lnk . (.TeamViewer GmbH - TeamViewer 12.) C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O4 - GS\ProgramsCommon [Public]: Visio.lnk . (.Microsoft Corporation - Microsoft Visio.) C:\Program Files (x86)\Microsoft Office\root\Office16\VISIO.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: WhiteHatBox.lnk . (.Microsoft - WhiteHatBox.) C:\Program Files (x86)\WhiteHatBox\WhiteHatBox.exe =>.Microsoft
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Windows Media Player.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - XPS Viewer.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: التجويد المصور.lnk . (.Developed By Fadi Shanti Fadishanti@hotmail.com - .) C:\Program Files (x86)\Al Tajweed Al Mosuer\tajweed.exe

---\\ Lop.com/Domain Hijackers (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\..\{CA5DEECE-3131-43E7-AB27-14F921E6EB18}: NameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{42595AC5-2304-4181-9856-1F4C16F480F3}: DhcpNameServer = 10.0.1.1 =>.Private IP (10.0.0.0 - 10.255.255.255) =>.Private IP
O17 - HKLM\System\CCS\Services\Tcpip\..\{6A030722-7354-4347-8177-07669429CE5C}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{A6D17CD0-2E44-47D1-8F75-1FB59B6306AD}: DhcpNameServer = 10.0.1.1 =>.Private IP (10.0.0.0 - 10.255.255.255) =>.Private IP

---\\ Extra protocols (22) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - OLE32 Extensions for Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - ActiveX control for streaming video.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Microsoft (R) HTML Viewer.) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: vipresg [64Bits] - {47BE2E5B-703B-444F-ABD3-05717D2191C6} . (...) -- C:\Program Files (x86)\VIPRE\x64\VSGNx64.dll (.not file.)
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ AppInit_DLLs Registry value Autorun (2) - 0s
O20 - AppInit_DLLs: . (.NVIDIA Corporation - NVIDIA shim initialization dll, Version 419.) - C:\Windows\System32\nvinitx.dll =>.NVIDIA Corporation
O20 - Winlogon : UserInit . (.Microsoft Corporation - Userinit Logon Application.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ ASIC (ActiveSetup Installed Components) (9) - 1s
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Microsoft(C) Register Server.) -- C:\Windows\System32\regsvr32.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Microsoft Windows Media Player Setup Utilit.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Disable SSL3 [64Bits] - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.142\Installer\chrmstp.exe =>.Google LLC®

---\\ Software installed (292) - 51s
O42 - Logiciel: µTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- uTorrent =>.BitTorrent Inc®
O42 - Logiciel: adobe - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DC92137A-66A3-4FEF-A5B1-FB233399C823} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {FA26FC41-15CE-4632-A1C6-9E11927496B7} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe After Effects CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {45EC816C-0771-4C14-AE6D-72D1B578F4C8} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe After Effects CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe_3dcb365ab9e01871fb8c6f27b0ea079 =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe After Effects CS4 Presets - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {44E240EC-2224-4078-A88B-2CEE0D3016EF} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe After Effects CS4 Third Party Content - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {67A9747A-E1F5-4E9A-81CC-12B5D5B81B6E} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe After Effects CS4 Third Party Content - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe_5aab5a491a3a52ae624fd639f6aaa95 =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {10E33ABF-D7FB-4F47-900A-7973854AB45A} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Anchor Service CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {1618734A-3957-4ADD-8199-F973763109A8} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Bridge CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {83877DB1-8B77-45BC-AB43-2BAC22E093E0} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe CMaps CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {94D398EB-D2FD-4FD1-B8C4-592635E8A191} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Color Video Profiles AE CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {B15381DD-FF97-4FCD-A881-ED4DB0975500} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Creative Cloud - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Creative Cloud =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Default Language CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {C52E3EC1-048C-45E1-8D53-10B0C6509683} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Device Central CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {67F0E67A-8E93-4C2C-B29D-47C48262738A} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Dynamiclink Support - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {60DB5894-B5A1-4B62-B0F3-669A22C0EE5D} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe ExtendScript Toolkit CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {F8EF2B3F-C345-4F20-8FE4-791A20333CD5} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Extension Manager CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {054EFA56-2AC1-48F4-A883-0AB89874B972} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Flash Player 32 ActiveX - (.Adobe.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Inc.®
O42 - Logiciel: Adobe Flash Player 32 NPAPI - (.Adobe.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Inc.®
O42 - Logiciel: Adobe Flash Player 32 PPAPI - (.Adobe.) [HKLM][64Bits] -- Adobe Flash Player PPAPI =>.Adobe Inc.®
O42 - Logiciel: Adobe Fonts All - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {FCDD51BB-CAD0-4BB1-B7DF-CE86D1032794} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Illustrator CC 2018 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- ILST_22_0_0 =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Media Encoder CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {DEB90B8E-0DCB-48CE-B90E-8842A2BD643E} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Media Encoder CS4 Additional Exporter - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BE9CEAAA-F069-4331-BF2F-8D350F6504F4} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe MotionPicture Color Files CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {B05DE7B7-0B40-4411-BD4B-222CAE2D8F15} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Output Module - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BB4E33EC-8181-4685-96F7-8554293DEC6A} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe PDF Library Files CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {F93C84A6-0DC6-42AF-89FA-776F7C377353} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Photoshop CC 2017 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- PHSP_18_1_1 =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Premiere Pro CC 2017 11.0.0.47 - (.Adobe Systems Incorporated..) [HKLM][64Bits] -- Adobe Premiere Pro CC 2017 11.0.0.47 =>.Adobe Systems Incorporated.
O42 - Logiciel: Adobe Reader 8.1.0 - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-A81000000003} =>.Adobe Systems Incorporated
O42 - Logiciel: Adobe Setup - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {411F3ABA-2AB5-4799-AA19-6ADF0A8F7424} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Setup - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8EB8E60B-315D-44EB-A896-10D88602EE46} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Type Support CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {820D3F45-F6EE-4AAF-81EF-CE21FF21D230} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Update Manager CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {05308C4E-7285-4066-BAE3-6B50DA6ED755} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe XMP Panels CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {3A4E8896-C2E7-4084-A4A4-B8FD1894E739} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Aiseesoft Video Converter Ultimate 9.2.26 - (.Aiseesoft Studio.) [HKLM][64Bits] -- {BD446D04-7426-4a27-9B0B-33B0C386F71B}_is1 =>.Aiseesoft Studio
O42 - Logiciel: Al Tajweed Al Mosuer - (.Al-kamal.) [HKLM][64Bits] -- {A8EACA60-644E-4169-A333-AE1BA8C8DF75}
O42 - Logiciel: Amazon Kindle - (.Amazon.) [HKCU][64Bits] -- Amazon Kindle =>.Amazon
O42 - Logiciel: Android Studio - (.Google Inc..) [HKLM][64Bits] -- Android Studio =>.Google Inc®
O42 - Logiciel: AOMEI Backupper Technician Plus - (.AOMEI Technology Co., Ltd..) [HKLM][64Bits] -- {A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1 =>.AOMEI Technology Co., Ltd.
O42 - Logiciel: AOMEI Partition Assistant Pro Edition 6.3 - (.AOMEI Technology Co., Ltd..) [HKLM][64Bits] -- {02F850ED-FD0E-4ED1-BE0B-5498165BF300}_is1 =>.AOMEI Technology Co., Ltd.
O42 - Logiciel: Article Marketing Robot - (.Article Marketing Robot.) [HKLM][64Bits] -- {31645123-137A-4A4F-A0E5-65594DEAA469}
O42 - Logiciel: Article Rewriter Wizard - (.ArticleRewriterWizard.com.) [HKLM][64Bits] -- {35C0A67C-F107-4700-A430-8956A692C3D4}
O42 - Logiciel: Article Spinner 5.0.0.0 - (.Fastlink2.) [HKLM][64Bits] -- {60103DBD-B2E6-4C64-A409-36C856029364}_is1
O42 - Logiciel: Atomic Email Hunter 11.20.0.223 - (.AtomPark Software Inc..) [HKLM][64Bits] -- AtomicEmailHunter_is1 =>.AtomPark Software Inc.
O42 - Logiciel: Auto WhatsApp Marketing v5.2 [ Cracked By Dr.FarFar ] - (.Dr.FarFar.) [HKLM][64Bits] -- {0EF3DDF3-9CFC-46A9-AE7E-60C0FEA190E5}_is1
O42 - Logiciel: BacklinkSpeed v2.4 - (..) [HKLM][64Bits] -- BacklinkSpeed v2.4_is1
O42 - Logiciel: BatteryBar (remove only) - (.Chris Thompson.) [HKLM][64Bits] -- BatteryBar =>.Chris Thompson
O42 - Logiciel: BeIn Player - (.BeIn.) [HKLM][64Bits] -- BeinPlayerForDesktopWindows_is1
O42 - Logiciel: Dell System Detect - (.Dell.) [HKCU][64Bits] -- 58d94f3ce2c27db0 =>.Dell
O42 - Logiciel: Dell Touchpad - (.ALPS ELECTRIC CO., LTD..) [HKLM][64Bits] -- {9F72EF8B-AEC9-4CA5-B483-143980AFD6FD} =>.Alps Electric Co., LTD.®
O42 - Logiciel: DriverPack Notifier - (.DriverPack Solution.) [HKLM][64Bits] -- DriverPack Notifier =>.DriverPack Solution
O42 - Logiciel: Easy GIF Animator 6.2 - (.Karlis Blumentals.) [HKLM][64Bits] -- Easy GIF Animator_is1 =>.Karlis Blumentals
O42 - Logiciel: Embratoria G10 version 10.2.0 - (.Embratoria, Inc..) [HKLM][64Bits] -- {5A43BA74-DF79-454C-91A1-2CCF2F528BF2}_is1
O42 - Logiciel: EPSON Scan - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON Scanner =>.Seiko Epson Corporation
O42 - Logiciel: EPSON SX218 Series Printer Uninstall - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON SX218 Series =>.SEIKO EPSON Corporation®
O42 - Logiciel: EViews 9 (64-bit) - (.IHS Global Inc..) [HKLM][64Bits] -- {907404D2-8C9D-428D-AB5B-FD8CA68A7305} (Hidden)
O42 - Logiciel: EViews 9 (64-bit) - (.IHS Global Inc..) [HKLM][64Bits] -- InstallShield_{907404D2-8C9D-428D-AB5B-FD8CA68A7305}
O42 - Logiciel: ExpressVPN - (.ExpressVPN.) [HKLM][64Bits] -- {3cb2ba2a-ceb7-4515-b7ca-0182de74b68c} =>.Express Vpn LLC®
O42 - Logiciel: ExpressVPN - (.ExpressVPN.) [HKLM][64Bits] -- {E5B9C3E5-889C-4F22-A959-F4B846DD9769} =>.ExpressVPN (Hidden)
O42 - Logiciel: f.lux - (.f.lux Software LLC.) [HKCU][64Bits] -- Flux =>.f.lux Software LLC
O42 - Logiciel: Facebook Audiens Extractor Pro [ Cracked By Dr.FarFar ] - (.Dr.FarFar.) [HKLM][64Bits] -- {3AE068B7-307A-488D-98A3-23F513F66D57}_is1
O42 - Logiciel: FARO LS 1.1.502.0 (64bit) - (.FARO Scanner Production.) [HKLM][64Bits] -- {66D83FE0-D798-4B38-86FE-FB48151E5AEF} =>.FARO Scanner Production
O42 - Logiciel: FileZilla Client 3.38.1 - (.Tim Kosse.) [HKLM][64Bits] -- FileZilla Client =>.Tim Kosse
O42 - Logiciel: FileZilla Server - (.FileZilla Project.) [HKLM][64Bits] -- FileZilla Server =>.FileZilla Project
O42 - Logiciel: Foxit Reader - (.Foxit Software Inc..) [HKLM][64Bits] -- Foxit Reader_is1 =>.Foxit Software Inc.
O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC®
O42 - Logiciel: Google Earth - (.Google.) [HKLM][64Bits] -- {6F545E5E-4595-11E2-93B6-B8AC6F97B88E} =>.Google
O42 - Logiciel: Google Update Helper - (.Google LLC.) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google LLC (Hidden)
O42 - Logiciel: Grammarly - (.Grammarly.) [HKCU][64Bits] -- GrammarlyForWindows =>.Grammarly, Inc.®
O42 - Logiciel: HDD Regenerator - (.Abstradrome.) [HKLM][64Bits] -- {B7C076CA-126E-497C-8724-B589F54031AF} =>.Abstradrome
O42 - Logiciel: HP System Event Utility - (.HP Inc..) [HKLM][64Bits] -- {29E20347-C62F-4657-938E-876A182B67F1} =>.HP Inc.
O42 - Logiciel: HSPA USB Modem - (.اسم شركتك.) [HKLM][64Bits] -- {06ADE2A0-E46A-4A84-A211-64CF50520185} (Hidden)
O42 - Logiciel: HSPA USB Modem - (.اسم شركتك.) [HKLM][64Bits] -- InstallShield_{06ADE2A0-E46A-4A84-A211-64CF50520185}
O42 - Logiciel: IBM SPSS Amos 23 - (.IBM Corp.) [HKLM][64Bits] -- {2B603859-DCA2-45DD-92DF-98542E78BAA8} =>.IBM Corp
O42 - Logiciel: IBM SPSS Statistics 24 - (.IBM Corp.) [HKLM][64Bits] -- {4762AE15-E5A3-43BF-8822-1CFC70FB147A} =>.IBM Corp
O42 - Logiciel: IDMActivator-mrelhlawany 6.32.6 - (.mrelhlawany.com.) [HKLM][64Bits] -- IDMActivator-mrelhlawany 6.32.6
O42 - Logiciel: IDT Audio - (.IDT.) [HKLM][64Bits] -- {E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001} =>.IDT
O42 - Logiciel: Image Resizer for Windows - (.Brice Lambson.) [HKLM][64Bits] -- {92916BDF-74CB-479C-B69E-32EACB074FFE} =>.Brice Lambson (Hidden)
O42 - Logiciel: Image Resizer for Windows - (.Brice Lambson.) [HKLM][64Bits] -- {c624f5da-779e-4ccb-9ce1-34bc5ef0a6b9} =>.Open Source Developer, Brice Lambson®
O42 - Logiciel: Image Resizer for Windows (64 bit) - (.Brice Lambson.) [HKLM][64Bits] -- {2A1F3759-5792-469B-B895-7E29680F02F1} =>.Brice Lambson (Hidden)
O42 - Logiciel: Inpaint 6.2 - (.Teorex.) [HKLM][64Bits] -- {2AEDC172-479F-47AE-8A48-A0524D4AED5B}_is1 =>.Teorex
O42 - Logiciel: Intel(R) Network Connections Drivers - (.Intel.) [HKLM][64Bits] -- PROSet =>.Intel
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation®
O42 - Logiciel: Intel(R) USB 3.0\3.1 eXtensible Host Controller Driver - (.Intel Corporation.) [HKLM][64Bits] -- {240C3DDD-C5E9-4029-9DF7-95650D040CF2} =>.Intel(R) USB eXtensible Host Controller Drivers®
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: IQ Option - (.IQOption.) [HKLM][64Bits] -- IQ Option =>.IQOption
O42 - Logiciel: Java 2 Runtime Environment Standard Edition v1.3.1_03 - (..) [HKLM][64Bits] -- JRE 1.3.1_03
O42 - Logiciel: Java 8 Update 211 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F64180211F0} =>.Oracle Corporation
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {718613F4-492D-4272-ACC3-D04A8EF0F883} =>.Kaspersky Lab (Hidden)
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{718613F4-492D-4272-ACC3-D04A8EF0F883} =>.Kaspersky Lab
O42 - Logiciel: Katatibe - (.Sufegmar.) [HKLM][64Bits] -- {7FCA6A55-3FE8-4DCD-A1BC-14FDB4D29503}
O42 - Logiciel: K-Lite Mega Codec Pack 6.9.0 - (.KLite Inc.) [HKLM][64Bits] -- KLiteCodecPack_is1 =>.KLite Inc
O42 - Logiciel: Lazesoft Recover My Password version 4.1 Home Edition - (.Lazesoft.) [HKLM][64Bits] -- LS-C4DC987A-47E2-487C-9F63-7E1DB5F88FC3_is1 =>.LAZYSOFT TECHNIQUE LTD®
O42 - Logiciel: LetsExtract Email Studio version 5.1 - (.LetsExtract Software.) [HKLM][64Bits] -- {A0268B4C-9D2E-40DC-B76B-0DC27B3D6716}_is1 =>.LetsExtract Software
O42 - Logiciel: LinuxLive USB Creator - (.Thibaut Lauziere.) [HKLM][64Bits] -- LinuxLive USB Creator =>.Thibaut Lauziere
O42 - Logiciel: Lynda.com Desktop App - (.Lynda.com.) [HKCU][64Bits] -- 3dda80bfb31b2b6f =>.Lynda.com
O42 - Logiciel: MalvaStyle Disk Repair - (.CJSecure Pty Ltd.) [HKLM][64Bits] -- {413953AB-0C2F-43B6-96F3-133F743193FA} =>.CJSecure Pty Ltd
O42 - Logiciel: ManyCam 6.6.0 - (.Visicom Media Inc..) [HKLM][64Bits] -- ManyCam =>.SUP.VisicomMedia
O42 - Logiciel: Market Samurai - (.Alliance Software Pty Ltd.) [HKLM][64Bits] -- {3ABD05BC-D654-FB04-B2CE-B33D33E3AB0D} =>.Alliance Software Pty Ltd (Hidden)
O42 - Logiciel: Market Samurai - (.Alliance Software Pty Ltd.) [HKLM][64Bits] -- MarketSamurai.6E37012E1CBD7F47B14488FCC715944F3EBDCEDC.1 =>.Alliance Software Pty Ltd
O42 - Logiciel: MEGAsync - (.Mega Limited.) [HKLM][64Bits] -- MEGAsync =>.Mega Limited®
O42 - Logiciel: Microfit 5.5 - (..) [HKLM][64Bits] -- Microfit 5.5
O42 - Logiciel: Microsoft .NET Framework 4.7.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {09CCBE8E-B964-30EF-AE84-6537AB4197F9} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.7.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93} =>.Microsoft
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0015-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0019-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{664655D8-B9BB-455D-8A58-7EAF7B0B2862} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-040C-1000-0000000FF1CE}_PROPLUS_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0044-040C-0000-0000000FF1CE}_PROPLUS_{CF3C20A6-47B7-48DA-95C1-6FBB5A439AF8} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{8283FD64-6A3B-4104-9E12-7CA25EF29A1A} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Access MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0015-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0044-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001A-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Professional Plus 2016 - ar-sa - (.Microsoft Corporation.) [HKLM][64Bits] -- ProplusRetail - ar-sa =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Office Professional Plus 2016 - en-us - (.Microsoft Corporation.) [HKLM][64Bits] -- ProplusRetail - en-us =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002C-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE}_PROPLUS_{3E8EA473-ECCE-405F-A9CA-59446AEADD3A} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE}_PROPLUS_{928D7B99-2BEA-49F9-83B8-20FA57860643} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE}_PROPLUS_{1FF96026-A04A-4C3E-B50A-BB7022654D0F} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE}_PROPLUS_{71F055E8-E2C6-4214-BB3D-BFE03561B89E} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE}_PROPLUS_{2C95E7EE-FEA7-4B3A-A6E5-DF90A88B816A} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) - (.Microsoft.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE}_PROPLUS_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC} =>.Microsoft (Hidden)
O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0019-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002A-040C-1000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Project Professional 2016 - ar-sa - (.Microsoft Corporation.) [HKLM][64Bits] -- ProjectProRetail - ar-sa =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Project Professional 2016 - en-us - (.Microsoft Corporation.) [HKLM][64Bits] -- ProjectProRetail - en-us =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft SQL Server Compact 3.5 SP2 x64 ENU - (.Microsoft Corporation.) [HKLM][64Bits] -- {D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visio Professional 2016 - ar-sa - (.Microsoft Corporation.) [HKLM][64Bits] -- VisioProRetail - ar-sa =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visio Professional 2016 - en-us - (.Microsoft Corporation.) [HKLM][64Bits] -- VisioProRetail - en-us =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 - (.Microsoft Corporation.) [HKLM][64Bits] -- {95716cce-fc71-413f-8ad5-56c2892d4b3a} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {577ff5ba-39aa-4d8c-a3a9-f95012763438} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7DAD0258-515C-3DD4-8964-BD714199E0F7} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {E30D8B21-D82D-3211-82CC-0F0A5D1495E8} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {d992c12e-cab2-426f-bde3-fb8c53950b0d} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123 - (.Microsoft Corporation.) [HKLM][64Bits] -- {206898cc-4b41-4d98-ac28-9f9ae57f91fe} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x64) - 14.15.26706 - (.Microsoft Corporation.) [HKLM][64Bits] -- {95ac1cfa-f4fb-4d1b-8912-7f9d5fbb140d} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25017 - (.Microsoft Corporation.) [HKLM][64Bits] -- {58b3beca-b999-4f6f-a48c-81681136a620} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2017 x64 Additional Runtime - 14.15.26706 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F106B700-BFF8-3065-B305-14D36AD40539} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.15.26706 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C77195A4-CEB8-38EE-BDD6-C46CB459EF6E} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2017 x86 Additional Runtime - 14.10.25017 - (.Microsoft Corporation.) [HKLM][64Bits] -- {68306422-7C57-373F-8860-D26CE4BA2A15} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.10.25017 - (.Microsoft Corporation.) [HKLM][64Bits] -- {582EA838-9199-3518-A05C-DB09462F68EC} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9495AEB4-AB97-39DE-8C42-806EEF75ECA7} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual Studio 2010 Tools for Office Runtime (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Visual Studio 2010 Tools for Office Runtime (x64) =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual Studio Tools for Applications 2.0 - ENU - (.Microsoft Corporation.) [HKLM][64Bits] -- {AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual Studio Tools for Applications 2.0 Runtime - (.Microsoft Corporation.) [HKLM][64Bits] -- {299C0434-4F4E-341F-A916-4E07AEB35E79} =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 67.0.3 (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 67.0.3 (x64 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: Multilogin version 4.1.15 - (.Multilogin.) [HKLM][64Bits] -- Multilogin_is1
O42 - Logiciel: NordVPN - (.NordVPN.) [HKLM][64Bits] -- {F4325B30-A8A0-4D09-B0DE-7CBB485A52D8} =>.NordVPN (Hidden)
O42 - Logiciel: NordVPN - (.NordVPN.) [HKLM][64Bits] -- NordVPN 6.22.6 =>.TEFINCOM S.A.®
O42 - Logiciel: NordVPN network TAP - (.NordVPN.) [HKLM][64Bits] -- {97DEC5D6-2BE9-45BB-BFC5-274B851B486B} =>.NordVPN
O42 - Logiciel: Nox APP Player - (.Duodian Technology Co. Ltd..) [HKLM][64Bits] -- Nox =>.Duodian Technology Co. Ltd.
O42 - Logiciel: NVIDIA Control Panel 419.69 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Display Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplaySessionContainer =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Display Watchdog Plugin - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayPluginWatchdog =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA Graphics Driver 419.69 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation (Hidden)
O42 - Logiciel: NVIDIA nView 149.34 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView =>.NVIDIA Corporation
O42 - Logiciel: NVIDIA WMI 2.33.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVWMI =>.NVIDIA Corporation
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0401-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0409-0000-0000000FF1CE} =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Opera Stable 62.0.3331.72 - (.Opera Software.) [HKLM][64Bits] -- Opera 62.0.3331.72 =>.Opera Software AS®
O42 - Logiciel: Oracle VM VirtualBox 6.0.6 - (.Oracle Corporation.) [HKLM][64Bits] -- {6C89B405-9910-446E-A6A9-7B15A09513D3} =>.Oracle Corporation
O42 - Logiciel: PassFab Product Key Recovery - (.PassFab, Inc..) [HKLM][64Bits] -- {PassFab Product Key Recovery}_is1
O42 - Logiciel: PDF Annotator 6.1.0.612 - (.GRAHL software design.) [HKLM][64Bits] -- PDFAnnotator_is1 =>.GRAHL software design
O42 - Logiciel: Photoshop Camera Raw - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {CC75AB5C-2110-4A7F-AF52-708680D22FE8} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Pixel Bender Toolkit - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {43509E18-076E-40FE-AF38-CA5ED400A5A9} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: PlayReady PC Runtime amd64 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BCA9334F-B6C9-4F65-9A73-AC5A329A4D04} =>.Microsoft Corporation
O42 - Logiciel: POM-QM for Windows, v5 - (.Pearson Education Inc.) [HKLM][64Bits] -- POM-QM for Windows, v5
O42 - Logiciel: PowerISO - (.PowerISO Computing, Inc..) [HKLM][64Bits] -- PowerISO =>.PowerISO Computing, Inc.
O42 - Logiciel: Print to PDF Annotator (novaPDF OEM 7.7 printer) - (.Softland.) [HKLM][64Bits] -- Print to PDF Annotator_is1 =>.Softland
O42 - Logiciel: PuTTY release 0.70 (64-bit) - (.Simon Tatham.) [HKLM][64Bits] -- {45B3032F-22CC-40CD-9E97-4DA7095FA5A2} =>.Simon Tatham
O42 - Logiciel: Recover My Files - (.GetData Pty Ltd.) [HKLM][64Bits] -- Recover My Files v6_is1 =>.GetData Pty Ltd
O42 - Logiciel: Revo Uninstaller Pro 3.1.9 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1 =>.VS Revo Group, Ltd.
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596650) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{DF2F5DAC-93D7-434B-96B1-EAF4D891AD24} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{B145DBBB-7778-4A5D-9D2B-DA6569F02391} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E34960DB-2A93-45DB-A208-02650F7AB09C} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{B7727B4D-5EA3-4C11-9D30-15E47616DCAF} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{293FB6BE-D3EB-4162-B522-F9108040B9FE} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2596904) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{5BF3F29E-C924-48BB-AA3C-EA2BA14B7027} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{2B3C041A-A7F2-4A24-968D-4BEB6A123D15} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{BF11577A-6876-45AA-86C9-2BA4CFB8B019} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE}_PROPLUS_{BF11577A-6876-45AA-86C9-2BA4CFB8B019} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6B4A3804-666A-4DD8-84A7-B97701416784} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{36842896-D83B-4C92-8261-6312B7DEB562} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{4C1BE82B-9AC0-4AB9-B76D-5467131955E1} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2881067) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{08F2015D-61E9-4252-9355-AB8D15C73C96} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2956110) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{488CDF0A-098C-4CF5-8552-DA5F2F7B7829} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2984938) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E359D786-B101-4545-B8AB-8652323CF3CA} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2984943) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{800D1A82-D1B0-4ED4-89B4-C666B570ABA5} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB2986253) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{1EBDB402-7B61-4224-994D-6882DC69F493} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB3085549) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8D2CDFAB-0079-43CC-A289-2F7A67F0A4DE} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB3213641) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{F5E44FF6-5802-4FCC-B0CA-6C2C0C455CA3} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB4011656) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{06180089-0302-4F85-BE6E-D4E0A9906FD9} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office 2007 suites (KB4011715) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8711951B-FD11-4309-BD11-8A19551CEBC9} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Access 2007 (KB2596614) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{7F774C8A-B1CE-486C-A64E-EA96AE48B813} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB4 - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{5C007116-E724-483B-BE67-870B5DB121A5} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB4 - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{60463207-1C72-43FF-BE7E-E8E3A23FB756} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Excel 2007 (KB4018353) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{59859CCA-ECF5-407F-801A-99C0AA65DD92} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Editi - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8F311D6C-D8DD-4C32-9457-1A129CABD1A5} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office InfoPath 2007 (KB3114426) 32-Bit Editi - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{26C5C75F-E1FD-4F95-AA29-CA221C3AFEEE} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Outlook 2007 (KB4011200) 32-Bit Editio - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6612D084-0180-4A86-B2B3-FDFA4E7F9DF9} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Outlook 2007 (KB4011200) 32-Bit Editio - (.Microsoft.) [HKLM][64Bits] -- {90120000-001A-040C-0000-0000000FF1CE}_PROPLUS_{F08C1474-AD3C-43AA-9AB9-C189FD832259} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edi - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{0EF0D4FB-BB23-4515-AAEA-1240AC2DA525} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office PowerPoint 2007 (KB3213642) 32-Bit Edi - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{81769578-260D-428A-90BD-BDC1AD58061A} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Visio Viewer 2007 (KB2596915) 32-Bit E - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{7FE99CC2-FBE5-422F-A6FB-49E0D8AFE919} =>.Microsoft
O42 - Logiciel: Security Update for Microsoft Office Word 2007 (KB4018355) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{6C57A6AB-7AEC-47A2-BDA9-B157361F37DE} =>.Microsoft
O42 - Logiciel: Seed4.Me VPN 1.0.46 - (.Seed4.me.) [HKLM][64Bits] -- Seed4.Me VPN =>.Seed4.Me
O42 - Logiciel: SEO Link Robot Pro 2.1.5.0 - (.Traffic Mystic IM Solutions.) [HKLM][64Bits] -- {723A4A11-2999-43C7-88EE-9512F90BB51F} =>.Tarma Software Research Pty Ltd®
O42 - Logiciel: Skype Click to Call - (.Microsoft Corporation.) [HKLM][64Bits] -- {873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B} =>.Microsoft Corporation
O42 - Logiciel: Software Updater - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {8DBC5A0A-31C4-46C7-B252-6B593EA11A87} =>.Seiko Epson Corporation
O42 - Logiciel: Stealth Keyword Competition Analyzer 2.3.1 - (..) [HKLM][64Bits] -- Stealth Keyword Competition Analyzer_is1
O42 - Logiciel: Suite Shared Configuration CS4 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {842B4B72-9E8F-4962-B3C1-1C422A5C4434} =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated®
O42 - Logiciel: TeamViewer 12 - (.TeamViewer.) [HKLM][64Bits] -- TeamViewer =>.TeamViewer
O42 - Logiciel: Telegram Auto Pro 2019 v3.17.3 [ Cracked By Dr.FarFar ] - (.Dr.FarFar.) [HKLM][64Bits] -- {EBBDFEC1-AC07-49B5-B326-65356C78C90D}_is1
O42 - Logiciel: The KMPlayer (remove only) - (.KMP Media co., Ltd.) [HKLM][64Bits] -- The KMPlayer =>.KMP Media co., Ltd
O42 - Logiciel: TheBestSpinner3 - (..) [HKLM][64Bits] -- TheBestSpinner3
O42 - Logiciel: Tweaking.com - Windows Repair - (.Tweaking.com.) [HKLM][64Bits] -- Tweaking.com - Windows Repair =>.Tweaking.com
O42 - Logiciel: Udeler 1.6.2 (only current user) - (.Faisal Umair.) [HKCU][64Bits] -- 673f2c58-06b2-567b-837c-438fe37de4ce
O42 - Logiciel: Update for 2007 Microsoft Office System (KB967642) - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{C444285D-5E4F-48A4-91DD-47AAAA68E92D} =>.Microsoft
O42 - Logiciel: Update for Microsoft .NET Framework 4.7.2 (KB4087364) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB4087364 =>.Microsoft Corporation®
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{A024FC7B-77DE-45DE-A058-1C049A17BFB3} =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{02206DCC-0CAF-46BB-8EDC-6C281AA21EFA} =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{02206DCC-0CAF-46BB-8EDC-6C281AA21EFA} =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2} =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB2965286) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{7C3337E5-1294-4270-A64F-DCEF812159E5} =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB3213646) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE}_PROPLUS_{54689E6A-2CDC-4B4F-B2FD-78C129EC68B3} =>.Microsoft
O42 - Logiciel: Update for Microsoft Office 2007 suites (KB3213649) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{E39085A9-74AC-465D-8240-E7AF57F3BA44} =>.Microsoft
O42 - Logiciel: Update for Microsoft Office Outlook 2007 Junk Email Filter (KB3115461) 32-B - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{8C829BE5-F60C-417A-89E3-9A1B427320F2} =>.Microsoft
O42 - Logiciel: Update for Microsoft Office Publisher 2007 (KB4011203) 32-Bit Edition - (.Microsoft.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE}_PROPLUS_{962B4B3F-E8E5-4E11-B64B-1885D7F41BAA} =>.Microsoft
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN
O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {2B5DAA91-E0C9-4307-90B7-5688E910C894} =>.VMware, Inc.
O42 - Logiciel: VyprVPN - (.Golden Frog, GmbH..) [HKLM][64Bits] -- {526B3DDC-6891-4F43-8F64-8B83DC9E4848} =>.Golden Frog GmbH®
O42 - Logiciel: Wampserver32 3.1.3 - (.Dominique Ottello aka Otomatic.) [HKLM][64Bits] -- {wampserver32}_is1 =>.Dominique Ottello aka Otomatic
O42 - Logiciel: WhiteHatBox version 1.2.2 - (.WhiteHatBox.) [HKLM][64Bits] -- {FE1C1F4E-B029-4698-8F8E-024166763758}_is1
O42 - Logiciel: Windows 7 USB/DVD Download Tool - (.Microsoft Corporation.) [HKLM][64Bits] -- {CCF298AF-9CE1-4B26-B251-486E98A34789} =>.Microsoft Corporation
O42 - Logiciel: Windows Driver Package - Google, Inc. (WinUSB) AndroidUsbDeviceClass (12/0 - (.Google, Inc..) [HKLM][64Bits] -- 76F6B4A696B8C9A7ACFF01D4E1D6EF2D974C3E67 =>.Microsoft Windows®
O42 - Logiciel: Windows Driver Package - MediaTek Inc. (usbser) Ports (09/01/2011 2.0.1136 - (.MediaTek Inc..) [HKLM][64Bits] -- 32DC281B7E359EA3D16ECC7D98609F6A592B981D =>.Microsoft Windows®
O42 - Logiciel: Windows Driver Package - MediaTek Inc. Net (07/14/2011 1.1129.00) - (.MediaTek Inc..) [HKLM][64Bits] -- 89BF901AB9E67C6D8D35E49F33EBEA28C8B5F658 =>.Microsoft Windows®
O42 - Logiciel: Windows Driver Package - Microsoft (WUDFRd) WPD (02/22/2006 5.2.5326.4762) - (.Microsoft.) [HKLM][64Bits] -- B77DDB8A5697AAF5DA4E4859E53C301B877DD206 =>.Microsoft Windows®
O42 - Logiciel: Windows Loader 9.0.0 - (.Windows Loader.) [HKLM][64Bits] -- Windows Loader 9.0.0
O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM][64Bits] -- WinPcapInst =>.Riverbed Technology, Inc.
O42 - Logiciel: WinRAR 5.70 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: WinRAR 5.71 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: XLSTAT 2016 - (.Addinsoft.) [HKLM][64Bits] -- {68B36FA5-E276-4C03-A56C-EC25717E1668} =>.Addinsoft
O42 - Logiciel: Zoom - (.Zoom Video Communications, Inc..) [HKCU][64Bits] -- ZoomUMX =>.Zoom Video Communications, Inc.®

---\\ HKCU & HKLM Software Keys (369) - 52s
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\drp.su =>.SUP.DriverPack
HKCU\Software\drpsu =>.SUP.DriverPack
HKCU\Software\undefined =>.SUP.Downloader
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\drp.su =>.SUP.DriverPack
HKLM\SOFTWARE\Wow6432Node\drpsu =>.SUP.DriverPack
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\Alps =>.ALPS
HKLM\SOFTWARE\Android Studio =>.Android Studio
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\Autodesk =>.Autodesk
HKLM\SOFTWARE\BenVista =>.BenVista
HKLM\SOFTWARE\Caphyon =>.Caphyon
HKLM\SOFTWARE\CPA Blaster
HKLM\SOFTWARE\CyberGhost =>.CyberGhost S.R.L
HKLM\SOFTWARE\Dell =>.Dell
HKLM\SOFTWARE\EPSON =>.EPSON
HKLM\SOFTWARE\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\HaaliMkx =>.Haali Media
HKLM\SOFTWARE\IBM =>.IBM
HKLM\SOFTWARE\IDT =>.IDT
HKLM\SOFTWARE\InstalledOptions =>.Installed Options
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Macrovision =>.Macrovision
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nektra =>.Nektra Advanced Computing
HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Oracle =>.Oracle
HKLM\SOFTWARE\PowerISO =>.PowerISO Computing
HKLM\SOFTWARE\Privax =>.Privax
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\SAMSUNG =>.Samsung Electronics
HKLM\SOFTWARE\Seed4.Me VPN
HKLM\SOFTWARE\SimonTatham =>.Simon Tatham
HKLM\SOFTWARE\Softland =>.Softland
HKLM\SOFTWARE\Sonic =>.Sonic
HKLM\SOFTWARE\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\Synaptics =>.Synaptics
HKLM\SOFTWARE\Validity =>.Validity Sensors, Inc.
HKLM\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKLM\SOFTWARE\WIBU-SYSTEMS =>.Wibu-Systems
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Addinsoft =>.Addinsoft
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\Amos
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\Artem Izmaylov =>.Artem Izmaylov
HKLM\SOFTWARE\WOW6432Node\Autodesk =>.Autodesk
HKLM\SOFTWARE\WOW6432Node\BenVista =>.BenVista
HKLM\SOFTWARE\WOW6432Node\BR529.Br530Ctrl.2
HKLM\SOFTWARE\WOW6432Node\BR529.Br530Ctrl.3
HKLM\SOFTWARE\WOW6432Node\BriceLambson
HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\WOW6432Node\CLSYSTEM =>.ClSystem
HKLM\SOFTWARE\WOW6432Node\Codec Tweak Tool =>.KLite Inc
HKLM\SOFTWARE\WOW6432Node\DigitalWave =>.DigitalWave Corporation
HKLM\SOFTWARE\WOW6432Node\DuoDianOnline =>.DuoDian Online
HKLM\SOFTWARE\WOW6432Node\EA Games =>.EA Games
HKLM\SOFTWARE\WOW6432Node\electronic arts =>.Electronic Arts
HKLM\SOFTWARE\WOW6432Node\EPSON =>.EPSON
HKLM\SOFTWARE\WOW6432Node\FileZilla 3 =>.FileZilla
HKLM\SOFTWARE\WOW6432Node\FileZilla Client =>.Tim Kosse
HKLM\SOFTWARE\WOW6432Node\FileZilla Server =>.FileZilla
HKLM\SOFTWARE\WOW6432Node\Foxit Software =>.Foxit Software
HKLM\SOFTWARE\WOW6432Node\GNU =>.GNU
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\GRAHL
HKLM\SOFTWARE\WOW6432Node\GuidGuid13
HKLM\SOFTWARE\WOW6432Node\HaaliMkx =>.Haali Media
HKLM\SOFTWARE\WOW6432Node\honestech =>.honestech
HKLM\SOFTWARE\WOW6432Node\HSPA =>.HSPA
HKLM\SOFTWARE\WOW6432Node\IDT =>.IDT
HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\WOW6432Node\Imagineer Systems Ltd =>.Imagineer Systems Ltd
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\WOW6432Node\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\KLCodecPack =>.KLite Inc
HKLM\SOFTWARE\WOW6432Node\KMPlayer =>.KMPlayer
HKLM\SOFTWARE\WOW6432Node\kSoft
HKLM\SOFTWARE\WOW6432Node\Lazesoft =>.Lazesoft
HKLM\SOFTWARE\WOW6432Node\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\LinuxLive USB Creator =>.LinuxLive Team
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\Macrovision =>.Macrovision
HKLM\SOFTWARE\WOW6432Node\MassFaces
HKLM\SOFTWARE\WOW6432Node\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\WOW6432Node\Miner3D
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\Mr DJ =>.Mr DJ
HKLM\SOFTWARE\WOW6432Node\Nalpeiron =>.Nalpeiron
HKLM\SOFTWARE\WOW6432Node\NordVPN =>.NordVPN
HKLM\SOFTWARE\WOW6432Node\Ntpad =>.Ntpad
HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\OpenVPN =>.OpenVPN Technologie
HKLM\SOFTWARE\WOW6432Node\Opera Software =>.Opera Software
HKLM\SOFTWARE\WOW6432Node\Pandora.TV =>.Pandora.TV
HKLM\SOFTWARE\WOW6432Node\PowerISO =>.PowerISO Computing
HKLM\SOFTWARE\WOW6432Node\Prezi =>.Prezi
HKLM\SOFTWARE\WOW6432Node\Privax =>.Privax
HKLM\SOFTWARE\WOW6432Node\Prospect Software
HKLM\SOFTWARE\WOW6432Node\Protexis =>.Protexis Inc.
HKLM\SOFTWARE\WOW6432Node\Rainbow Technologies =>.Rainbow Technologies
HKLM\SOFTWARE\WOW6432Node\Riot Games =>.Riot Games
HKLM\SOFTWARE\WOW6432Node\Skype =>.Skype
HKLM\SOFTWARE\WOW6432Node\SPSS =>.SPSS
HKLM\SOFTWARE\WOW6432Node\Steganos =>.Steganos
HKLM\SOFTWARE\WOW6432Node\Sufegmar
HKLM\SOFTWARE\WOW6432Node\Synthetic Aperture
HKLM\SOFTWARE\WOW6432Node\TeamViewer =>.TeamViewer GmbH
HKLM\SOFTWARE\WOW6432Node\Tec-9
HKLM\SOFTWARE\WOW6432Node\TheBestSpinner3
HKLM\SOFTWARE\WOW6432Node\ThinPrint =>.ThinPrint
HKLM\SOFTWARE\WOW6432Node\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\WOW6432Node\Visicom Media =>.SUP.VisicomMedia
HKLM\SOFTWARE\WOW6432Node\VMware, Inc. =>.VMware, Inc.
HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\WIBU-SYSTEMS =>.Wibu-Systems
HKLM\SOFTWARE\WOW6432Node\WinPcap =>.Riverbed Technology
HKLM\SOFTWARE\WOW6432Node\WinRAR =>.WinRAR
HKLM\SOFTWARE\WOW6432Node\Wise Solutions =>.Wise Solutions
HKLM\SOFTWARE\WOW6432Node\XLSTAT+
HKLM\SOFTWARE\WOW6432Node\XLSTAT+Pro
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\673f2c58-06b2-567b-837c-438fe37de4ce =>Adware.CrossRider
HKCU\SOFTWARE\Actecom
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\Affinix =>.Affinix Software
HKCU\SOFTWARE\Aiseesoft Studio =>.Aiseesoft Studio
HKCU\SOFTWARE\Alps =>.ALPS
HKCU\SOFTWARE\Amanpreet Singh
HKCU\SOFTWARE\Amazon =>.Amazon
HKCU\SOFTWARE\Amos
HKCU\SOFTWARE\AOMEI =>.AOMEI Tech Co
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Artem Izmaylov =>.Artem Izmaylov
HKCU\SOFTWARE\Article Marketing Robot
HKCU\SOFTWARE\ASProtect =>.ASPack Software
HKCU\SOFTWARE\AtomPark =>.AtomPark
HKCU\SOFTWARE\Autodesk =>.Autodesk
HKCU\SOFTWARE\BacklinkSpeed
HKCU\SOFTWARE\BenVista =>.BenVista
HKCU\SOFTWARE\BitTorrent =>.BitTorrent (P2P)
HKCU\SOFTWARE\BugSplat =>.Bugsplat Game
HKCU\SOFTWARE\CartyStudios Corporation
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\Corel =>.Corel
HKCU\SOFTWARE\Developer Express =>.Developer Express
HKCU\SOFTWARE\Digital River =>.Digital River Entreprise
HKCU\SOFTWARE\DownloadManager =>.DownloadManager
HKCU\SOFTWARE\DRP
HKCU\SOFTWARE\DuoDianApp =>.DuoDianApp
HKCU\SOFTWARE\EPSON =>.EPSON
HKCU\SOFTWARE\EPSON Software Updater =>.Epson/Seico
HKCU\SOFTWARE\Estima
HKCU\SOFTWARE\ExpressVPN =>.ExpressVPN
HKCU\SOFTWARE\FileZilla Server =>.FileZilla
HKCU\SOFTWARE\Foxit Software =>.Foxit Software
HKCU\SOFTWARE\Gabest =>.Gabest
HKCU\SOFTWARE\GetData =>.GetData
HKCU\SOFTWARE\giveawayoftheday.com =>.giveawayoftheday.com
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\Golden Frog, GmbH. =>.Golden Frog, GmbH.
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\GRAHL
HKCU\SOFTWARE\Haali =>.Haali Media
HKCU\SOFTWARE\honestech =>.honestech
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\IHS EViews
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\imo.im
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\IQOption =>.IQOption
HKCU\SOFTWARE\Jingling
HKCU\SOFTWARE\Karlis Blumentals =>.Karlis Blumentals
HKCU\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKCU\SOFTWARE\KMPlayer =>.KMPlayer
HKCU\SOFTWARE\kSoft
HKCU\SOFTWARE\LAV =>.LAV Inc
HKCU\SOFTWARE\LinuxLive =>.LinuxLive Team
HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\madFlac =>.Free-Codecs
HKCU\SOFTWARE\ManyCam =>.ManyCam LLC
HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez
HKCU\SOFTWARE\Michael Herf =>.Michael Herf
HKCU\SOFTWARE\Miner3D
HKCU\SOFTWARE\Mirage =>.Mirage Game
HKCU\SOFTWARE\MMBPlayer
HKCU\SOFTWARE\MONOGRAM =>.MOO Software
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team
HKCU\SOFTWARE\MTK =>.MTK
HKCU\SOFTWARE\MurGee.com =>.MurGee.com
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\Oracle =>.Oracle
HKCU\SOFTWARE\Partition Assistant
HKCU\SOFTWARE\PC SOFT =>.PC SOFT
HKCU\SOFTWARE\PowerISO =>.PowerISO Computing
HKCU\SOFTWARE\Prezi =>.Prezi
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\SEIKO EPSON CORPORATION =>.Epson/Seico
HKCU\SOFTWARE\SimonTatham =>.Simon Tatham
HKCU\SOFTWARE\Skype =>.Skype
HKCU\SOFTWARE\SmartFTP =>.SmartSoft Ltd
HKCU\SOFTWARE\Softland =>.Softland
HKCU\SOFTWARE\Stata
HKCU\SOFTWARE\Steganos =>.Steganos
HKCU\SOFTWARE\Synaptics =>.Synaptics
HKCU\SOFTWARE\Sysinternals =>.Sysinternals
HKCU\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKCU\SOFTWARE\Teorex =>.Teorex
HKCU\SOFTWARE\Trolltech =>.Trolltech
HKCU\SOFTWARE\user32.dll
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\Visicom Media =>.SUP.VisicomMedia
HKCU\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\WixSharp =>.Legitimate
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\XLSTAT+
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\zst
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Autodesk =>.Autodesk
HKU\.DEFAULT\SOFTWARE\CyberGhost =>.CyberGhost S.R.L
HKU\.DEFAULT\SOFTWARE\Foxit Software =>.Foxit Software
HKU\.DEFAULT\SOFTWARE\IQOption =>.IQOption
HKU\.DEFAULT\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla
HKU\.DEFAULT\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\.DEFAULT\SOFTWARE\Opera Software =>.Opera Software
HKU\.DEFAULT\SOFTWARE\Prezi =>.Prezi
HKU\.DEFAULT\SOFTWARE\Protexis =>.Protexis Inc.
HKU\.DEFAULT\SOFTWARE\SetID =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\Synaptics =>.Synaptics
HKU\.DEFAULT\SOFTWARE\VIPRE
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\673f2c58-06b2-567b-837c-438fe37de4ce =>Adware.CrossRider
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Actecom
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Affinix =>.Affinix Software
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Aiseesoft Studio =>.Aiseesoft Studio
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Alps =>.ALPS
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Amanpreet Singh
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Amazon =>.Amazon
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Amos
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\AOMEI =>.AOMEI Tech Co
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Artem Izmaylov =>.Artem Izmaylov
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Article Marketing Robot
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\ASProtect =>.ASPack Software
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\AtomPark =>.AtomPark
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Autodesk =>.Autodesk
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\BacklinkSpeed
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\BenVista =>.BenVista
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\BitTorrent =>.BitTorrent (P2P)
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\BugSplat =>.Bugsplat Game
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\CartyStudios Corporation
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Corel =>.Corel
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Developer Express =>.Developer Express
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Digital River =>.Digital River Entreprise
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\DownloadManager =>.DownloadManager
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\DRP
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\drpsu =>.SUP.DriverPack
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\DuoDianApp =>.DuoDianApp
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\EPSON =>.EPSON
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\EPSON Software Updater =>.Epson/Seico
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Estima
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\ExpressVPN =>.ExpressVPN
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\FileZilla Server =>.FileZilla
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Foxit Software =>.Foxit Software
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Gabest =>.Gabest
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\GetData =>.GetData
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\giveawayoftheday.com =>.giveawayoftheday.com
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\GNU =>.GNU
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Golden Frog, GmbH. =>.Golden Frog, GmbH.
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Google =>.Google
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\GRAHL
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Haali =>.Haali Media
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\honestech =>.honestech
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\HP =>.HP
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\IHS EViews
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\IM Providers =>.IM Providers
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\imo.im
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\IQOption =>.IQOption
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Jingling
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Karlis Blumentals =>.Karlis Blumentals
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\KMPlayer =>.KMPlayer
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\kSoft
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\LAV =>.LAV Inc
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\LinuxLive =>.LinuxLive Team
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\madFlac =>.Free-Codecs
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\ManyCam =>.ManyCam LLC
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\MediaInfo =>.Jérôme Martinez
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Michael Herf =>.Michael Herf
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Miner3D
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Mirage =>.Mirage Game
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\MMBPlayer
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\MONOGRAM =>.MOO Software
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\MPC-HC =>.MPC-HC Team
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\MTK =>.MTK
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\MurGee.com =>.MurGee.com
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Opera Software =>.Opera Software
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Oracle =>.Oracle
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Partition Assistant
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\PC SOFT =>.PC SOFT
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\PowerISO =>.PowerISO Computing
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Prezi =>.Prezi
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\SEIKO EPSON CORPORATION =>.Epson/Seico
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\SimonTatham =>.Simon Tatham
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Skype =>.Skype
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\SmartFTP =>.SmartSoft Ltd
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Softland =>.Softland
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Stata
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Steganos =>.Steganos
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Synaptics =>.Synaptics
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Sysinternals =>.Sysinternals
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\TeamViewer =>.TeamViewer GmbH
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Teorex =>.Teorex
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Trolltech =>.Trolltech
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\undefined =>.SUP.Downloader
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\user32.dll
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Valve =>.Valve
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Visicom Media =>.SUP.VisicomMedia
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\VMware, Inc. =>.VMware, Inc.
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\VS Revo Group =>.VS Revo Group
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\WixSharp =>.Legitimate
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\XLSTAT+
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\ZHP =>.Nicolas Coolman
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\SOFTWARE\zst

---\\ Contents of the Common Files folders (615) - 65s
O43 - CFD: 29/07/2018 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 25/02/2017 - [] D -- C:\Program Files\Android =>.Android
O43 - CFD: 13/02/2016 - [] D -- C:\Program Files\BatteryBar
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files\CodeMeter =>.Legitimate
O43 - CFD: 26/05/2019 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 05/02/2018 - [] D -- C:\Program Files\CyberGhost 6 =>.CyberGhost S.R.L
O43 - CFD: 05/02/2017 - [] D -- C:\Program Files\DellTPad =>.Alps Electric Co., LTD.®
O43 - CFD: 25/12/2016 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\EViews 9 =>.IHS Global Inc.®
O43 - CFD: 02/11/2018 - [] D -- C:\Program Files\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files\GetData =>.GetData Pty Ltd®
O43 - CFD: 17/02/2017 - [] D -- C:\Program Files\IBM =>.IBM
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files\IDT =>.IDT
O43 - CFD: 24/05/2019 - [] D -- C:\Program Files\Image Resizer for Windows =>.Brice Lambson
O43 - CFD: 26/03/2017 - [] D -- C:\Program Files\Inpaint
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 26/06/2019 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Microsoft Games =>.Microsoft Corporation
O43 - CFD: 07/12/2016 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 20/10/2018 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation
O43 - CFD: 30/10/2018 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 02/02/2019 - [] D -- C:\Program Files\Microsoft SQL Server Compact Edition =>.Microsoft Corporation
O43 - CFD: 02/02/2019 - [] D -- C:\Program Files\Microsoft Synchronization Services =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 23/04/2019 - [] D -- C:\Program Files\Oracle =>.Oracle
O43 - CFD: 26/03/2017 - [0] D -- C:\Program Files\PhotoZoom Pro 4
O43 - CFD: 29/03/2017 - [] D -- C:\Program Files\PlayReady =>.Microsoft Corporation
O43 - CFD: 26/10/2018 - [] D -- C:\Program Files\PuTTY =>.Simon Tatham®
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 03/12/2016 - [] D -- C:\Program Files\SAMSUNG =>.Samsung Electronics
O43 - CFD: 05/02/2019 - [] D -- C:\Program Files\Seed4.Me VPN
O43 - CFD: 04/01/2018 - [] D -- C:\Program Files\SketchUp =>.@Last Software
O43 - CFD: 02/11/2018 - [0] D -- C:\Program Files\SmartFTP Client =>.SmartSoft Ltd
O43 - CFD: 28/01/2016 - [] D -- C:\Program Files\STMicroelectronics =>.Microsoft Windows®
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 23/10/2017 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 05/09/2018 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 22/12/2018 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 18/04/2019 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 08/03/2018 - [] D -- C:\Program Files (x86)\Addinsoft =>.Addinsoft sarl®
O43 - CFD: 29/07/2018 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated®
O43 - CFD: 25/07/2018 - [] D -- C:\Program Files (x86)\Adobe Systems Incorporated =>.Adobe Systems Incorporated
O43 - CFD: 14/02/2019 - [] D -- C:\Program Files (x86)\AIMP Classic =>.Artem Izmaylov
O43 - CFD: 05/10/2017 - [] D -- C:\Program Files (x86)\Aiseesoft Studio =>.RayShare Co.,Ltd®
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\ajurry
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\Al Tajweed Al Mosuer
O43 - CFD: 26/03/2017 - [] D -- C:\Program Files (x86)\AoaoPhoto Digital Studio =>.AoaoPhoto Digital Studio
O43 - CFD: 05/06/2019 - [] D -- C:\Program Files (x86)\AOMEI Backupper =>.AOMEI Tech Co
O43 - CFD: 11/10/2018 - [] D -- C:\Program Files (x86)\AOMEI Partition Assistant Pro Edition 6.3 =>.AOMEI Tech Co
O43 - CFD: 16/12/2018 - [] D -- C:\Program Files (x86)\Article Marketing Robot
O43 - CFD: 13/12/2018 - [] D -- C:\Program Files (x86)\Article Rewriter Wizard
O43 - CFD: 14/04/2019 - [] D -- C:\Program Files (x86)\AtomPark =>.AtomPark
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\Auto Mouse Click by MurGee.com =>.MurGee Softwares Pvt Ltd®
O43 - CFD: 12/11/2018 - [] D -- C:\Program Files (x86)\Auto WhatsApp Marketing
O43 - CFD: 01/07/2017 - [0] D -- C:\Program Files (x86)\Avira =>.Avira Software
O43 - CFD: 13/07/2019 - [] D -- C:\Program Files (x86)\BacklinkSpeed
O43 - CFD: 14/12/2018 - [] D -- C:\Program Files (x86)\Bignox =>.BigNox
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files (x86)\CodeMeter =>.Legitimate
O43 - CFD: 26/06/2019 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 18/05/2019 - [] D -- C:\Program Files (x86)\DriverPack Notifier =>.SUP.DriverPack
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\DZSchool4.5
O43 - CFD: 20/03/2017 - [] D -- C:\Program Files (x86)\DZSchool4.5Reports
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\Easy GIF Animator =>.Blumentals Solutions SIA®
O43 - CFD: 29/09/2018 - [] D -- C:\Program Files (x86)\EmbratoriaG10
O43 - CFD: 28/01/2017 - [] D -- C:\Program Files (x86)\epson =>.EPSON
O43 - CFD: 28/01/2017 - [] D -- C:\Program Files (x86)\EPSON Software =>.Epson/Seico
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\EViews 9
O43 - CFD: 27/06/2019 - [] D -- C:\Program Files (x86)\ExpressVPN =>.ExprsVPN LLC®
O43 - CFD: 08/06/2019 - [] D -- C:\Program Files (x86)\ExtraTools
O43 - CFD: 21/12/2018 - [] D -- C:\Program Files (x86)\Facebook Audiens Extractor Pro
O43 - CFD: 24/10/2018 - [] D -- C:\Program Files (x86)\FileZilla Server =>.FileZilla
O43 - CFD: 16/05/2018 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Software
O43 - CFD: 03/10/2017 - [] D -- C:\Program Files (x86)\FreeCodecPack =>.Free Codec Pack
O43 - CFD: 07/12/2016 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\GUM46DF.tmp
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\HDD Regenerator =>.Dmitriy Primochenko
O43 - CFD: 18/07/2019 - [] D -- C:\Program Files (x86)\HMA! Pro VPN =>.HMA!
O43 - CFD: 25/03/2017 - [] D -- C:\Program Files (x86)\honestech =>.honestech
O43 - CFD: 27/03/2017 - [] D -- C:\Program Files (x86)\honestech Video Editor 8.0 =>.honestech
O43 - CFD: 06/09/2017 - [] D -- C:\Program Files (x86)\Hotspot Shield =>.AnchorFree Inc®
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\HSPA USB Modem =>.Legitimate
O43 - CFD: 09/02/2017 - [] D -- C:\Program Files (x86)\IBM =>.IBM
O43 - CFD: 03/03/2019 - [] D -- C:\Program Files (x86)\IDMActivator-mrelhlawany
O43 - CFD: 24/05/2019 - [] D -- C:\Program Files (x86)\Image Resizer for Windows =>.Brice Lambson
O43 - CFD: 08/03/2018 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 11/04/2019 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 19/07/2019 - [] D -- C:\Program Files (x86)\IQ Option =>.IQ OPTION EUROPE LTD®
O43 - CFD: 07/03/2018 - [] D -- C:\Program Files (x86)\JavaSoft =>.JavaSoft
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 07/12/2018 - [] D -- C:\Program Files (x86)\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\Lazesoft Recover My Password =>.Lazesoft
O43 - CFD: 22/02/2019 - [] D -- C:\Program Files (x86)\LetsExtract Email Studio
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\LinuxLive USB Creator =>.LinuxLiveUSB Team
O43 - CFD: 26/03/2017 - [] D -- C:\Program Files (x86)\MalvaStyle
O43 - CFD: 14/12/2018 - [] D -- C:\Program Files (x86)\ManyCam =>.ManyCam LLC
O43 - CFD: 25/04/2019 - [] D -- C:\Program Files (x86)\Market Samurai
O43 - CFD: 05/03/2019 - [] D -- C:\Program Files (x86)\Micro Niche Finder 5.0
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\Microfit 5
O43 - CFD: 18/07/2019 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 20/10/2018 - [] D -- C:\Program Files (x86)\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 29/12/2016 - [] D -- C:\Program Files (x86)\Microsoft SDKs =>.Microsoft Corporation
O43 - CFD: 30/10/2018 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 07/12/2016 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio =>.Microsoft Corporation
O43 - CFD: 07/12/2016 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 8 =>.Microsoft Corporation
O43 - CFD: 29/12/2016 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio 9.0 =>.Pinnacle Systems, Inc.
O43 - CFD: 06/08/2017 - [] D -- C:\Program Files (x86)\Microsoft Works =>.Microsoft Corporation
O43 - CFD: 31/01/2017 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 01/07/2019 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 01/07/2019 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 29/12/2016 - [0] D -- C:\Program Files (x86)\Mr DJ =>.Mr DJ
O43 - CFD: 07/12/2016 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 27/01/2017 - [] D -- C:\Program Files (x86)\MSECache =>.Microsoft Corporation
O43 - CFD: 24/05/2019 - [] D -- C:\Program Files (x86)\Multilogin =>.Multilogin Ltd.®
O43 - CFD: 29/06/2019 - [] D -- C:\Program Files (x86)\NordVPN =>.TEFINCOM S.A.®
O43 - CFD: 23/09/2018 - [] D -- C:\Program Files (x86)\NordVPN network TAP =>.OpenVPN Technologies, Inc.®
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 15/07/2019 - [] D -- C:\Program Files (x86)\Opera =>.Opera Software
O43 - CFD: 07/12/2016 - [] D -- C:\Program Files (x86)\PANDORA.TV =>.Pandora.TV
O43 - CFD: 14/02/2019 - [] D -- C:\Program Files (x86)\PassFab Product Key Recovery =>.Tenorshare Co.,Ltd.®
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\PDF Annotator
O43 - CFD: 06/12/2018 - [] D -- C:\Program Files (x86)\POMQMV4
O43 - CFD: 06/12/2018 - [] D -- C:\Program Files (x86)\POMQMV5
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\PowerISO =>.PowerISO Computing
O43 - CFD: 17/10/2018 - [] D -- C:\Program Files (x86)\Prezi =>.Prezi
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 07/03/2018 - [] D -- C:\Program Files (x86)\SAS
O43 - CFD: 25/12/2018 - [] D -- C:\Program Files (x86)\Stealth Keyword Competition Analyzer
O43 - CFD: 02/02/2019 - [] D -- C:\Program Files (x86)\Stephen Hawkins
O43 - CFD: 13/12/2018 - [] D -- C:\Program Files (x86)\Submit Suite =>.Cristina Mailat®
O43 - CFD: 23/09/2018 - [] D -- C:\Program Files (x86)\Sufegmar
O43 - CFD: 13/07/2019 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 09/02/2019 - [] D -- C:\Program Files (x86)\Telegram Auto Social Media Marketing
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\The KMPlayer =>.The KMPlayer Team
O43 - CFD: 25/12/2018 - [] D -- C:\Program Files (x86)\TheBestSpinner3
O43 - CFD: 15/08/2018 - [] D -- C:\Program Files (x86)\Tweaking.com =>.Tweaking LLC®
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 07/12/2016 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team
O43 - CFD: 26/05/2019 - [] D -- C:\Program Files (x86)\VMware =>.VMware, Inc.®
O43 - CFD: 11/01/2019 - [] D -- C:\Program Files (x86)\VyprVPN =>.Golden Frog GmbH
O43 - CFD: 03/12/2018 - [] D -- C:\Program Files (x86)\WhiteHatBox
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 07/03/2019 - [] D -- C:\Program Files (x86)\Windows Loader =>HackTool.WinActivator
O43 - CFD: 04/01/2018 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 05/09/2018 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\WinPcap =>.Riverbed Technology
O43 - CFD: 02/06/2019 - [] D -- C:\Program Files (x86)\WinRAR =>.win.rar GmbH®
O43 - CFD: 17/05/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 08/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Addinsoft =>.Addinsoft
O43 - CFD: 04/01/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 14/02/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP Classic =>.Artem Izmaylov
O43 - CFD: 05/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aiseesoft =>.Aiseesoft
O43 - CFD: 25/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio =>.Google Inc.
O43 - CFD: 16/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper =>.AOMEI Tech Co
O43 - CFD: 26/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant Pro Edition 6.3 =>.AOMEI Tech Co
O43 - CFD: 13/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Article Rewriter Wizard
O43 - CFD: 14/04/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AtomPark =>.AtomPark
O43 - CFD: 22/11/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auto Mouse Click by MurGee.com
O43 - CFD: 12/11/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auto WhatsApp Marketing
O43 - CFD: 13/07/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BacklinkSpeed
O43 - CFD: 26/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CJSecure Pty Ltd =>.CJSecure Pty Ltd
O43 - CFD: 20/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DZSchool4.5
O43 - CFD: 26/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Easy GIF Animator
O43 - CFD: 02/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON =>.EPSON
O43 - CFD: 28/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software =>.Epson/Seico
O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EViews 9
O43 - CFD: 27/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ExpressVPN =>.ExpressVPN
O43 - CFD: 08/06/2019 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ExtraTools
O43 - CFD: 21/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Facebook Audiens Extractor Pro
O43 - CFD: 02/11/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client =>.Tim Kosse
O43 - CFD: 24/10/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla Server =>.FileZilla
O43 - CFD: 16/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader =>.Foxit Corporation
O43 - CFD: 28/01/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 07/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth =>.Google Earth
O43 - CFD: 03/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Regenerator =>.Dmitriy Primochenko
O43 - CFD: 06/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hotspot Shield =>.Hotspot Shield
O43 - CFD: 01/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HSPA USB Modem =>.Legitimate
O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics =>.IBM Corporation
O43 - CFD: 26/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Inpaint
O43 - CFD: 11/04/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 27/01/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IQ Option =>.IQ Option
O43 - CFD: 26/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 07/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2 Runtime Environment
O43 - CFD: 07/12/2016 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 07/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security =>.Kaspersky Lab
O43 - CFD: 12/08/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lazesoft Recover My Password =>.Lazesoft
O43 - CFD: 22/02/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LetsExtract Email Studio
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 14/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ManyCam =>.ManyCam LLC
O43 - CFD: 23/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microfit 5
O43 - CFD: 06/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 29/10/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 24/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Multilogin
O43 - CFD: 29/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NordVPN =>.NordVPN
O43 - CFD: 23/04/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox =>.Oracle
O43 - CFD: 14/02/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PassFab Product Key Recovery
O43 - CFD: 06/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\POM-QM for Windows 5
O43 - CFD: 10/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO =>.PowerISO Computing
O43 - CFD: 08/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Privax
O43 - CFD: 26/10/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PuTTY (64-bit)
O43 - CFD: 23/10/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro =>.VS Revo Group
O43 - CFD: 02/02/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SEO Link Robot Pro
O43 - CFD: 08/06/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 25/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stealth Keyword Competition Analyzer
O43 - CFD: 13/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Submit Suite
O43 - CFD: 03/01/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Subsystem for UNIX-based Applications
O43 - CFD: 14/07/2009 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology
O43 - CFD: 25/01/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Telegram Auto Social Media Marketing
O43 - CFD: 25/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TheBestSpinner3
O43 - CFD: 13/12/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Trial Email Generator
O43 - CFD: 25/11/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 15/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wampserver32 =>.Wamp Server
O43 - CFD: 22/02/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap =>.Riverbed Technology
O43 - CFD: 02/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 18/07/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\أدوات Microsoft Office =>.Microsoft Corporation
O43 - CFD: 16/05/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\برنامج شبكة الامام الآجري لتفريغ الاشرطة
O43 - CFD: 31/07/2018 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 05/10/2017 - [] D -- C:\ProgramData\Aiseesoft Studio =>.Aiseesoft Studio
O43 - CFD: 16/05/2019 - [] D -- C:\ProgramData\Aomei =>.AOMEI Tech Co
O43 - CFD: 16/05/2019 - [] D -- C:\ProgramData\AomeiBR =>.AOMEI Technology
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 18/09/2017 - [] D -- C:\ProgramData\Autodesk =>.Autodesk
O43 - CFD: 01/07/2017 - [0] D -- C:\ProgramData\Avira =>.Avira Software
O43 - CFD: 04/09/2018 - [] D -- C:\ProgramData\Caphyon =>.Caphyon
O43 - CFD: 17/05/2019 - [] D -- C:\ProgramData\CodeMeter =>.Legitimate
O43 - CFD: 04/02/2017 - [] D -- C:\ProgramData\Corel =>.Corel Corporation
O43 - CFD: 29/12/2016 - [0] D -- C:\ProgramData\CorelDRAW Graphics Suite X5
O43 - CFD: 04/02/2017 - [] D -- C:\ProgramData\dell =>.Dell
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 03/10/2017 - [0] D -- C:\ProgramData\DigitalWave.ApplicationUpdater_files
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 03/08/2017 - [] D -- C:\ProgramData\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 28/01/2017 - [] D -- C:\ProgramData\EPSON =>.EPSON
O43 - CFD: 27/06/2019 - [] D -- C:\ProgramData\ExpressVPN =>.ExpressVPN
O43 - CFD: 14/09/2017 - [] D -- C:\ProgramData\FARO =>.FARO
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 21/07/2018 - [] D -- C:\ProgramData\FLEXnet =>.Flexera Software
O43 - CFD: 13/02/2017 - [] D -- C:\ProgramData\Foxit ContentPlatform =>.Foxit Corporation
O43 - CFD: 16/05/2018 - [] D -- C:\ProgramData\Foxit Software =>.Foxit Software
O43 - CFD: 15/10/2018 - [] D -- C:\ProgramData\Golden Frog, GmbH =>.Golden Frog, GmbH
O43 - CFD: 06/09/2017 - [] D -- C:\ProgramData\Hotspot Shield =>.Hotspot Shield
O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\IBM =>.IBM
O43 - CFD: 11/04/2019 - [0] D -- C:\ProgramData\IDM =>.IDM
O43 - CFD: 09/02/2017 - [] D -- C:\ProgramData\IHS EViews
O43 - CFD: 02/02/2019 - [] D -- C:\ProgramData\InstallMate =>Adware.Tarma
O43 - CFD: 04/01/2018 - [] D -- C:\ProgramData\IQ Option =>.IQ Option
O43 - CFD: 19/07/2019 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 20/11/2017 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files =>.Kaspersky Lab
O43 - CFD: 14/12/2018 - [] D -- C:\ProgramData\ManyCam =>.ManyCam LLC
O43 - CFD: 20/10/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 31/10/2018 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 20/10/2018 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 10/06/2017 - [] D -- C:\ProgramData\Microsoft Toolkit =>.Microsoft Corporation
O43 - CFD: 11/03/2019 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 29/06/2019 - [] D -- C:\ProgramData\NordVpn =>.NordVPN
O43 - CFD: 18/07/2019 - [] D -- C:\ProgramData\NVIDIA =>.nVidia Corporation
O43 - CFD: 17/05/2019 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 28/09/2018 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 27/06/2019 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 29/09/2018 - [] D -- C:\ProgramData\Prezi =>.Prezi
O43 - CFD: 08/03/2018 - [] D -- C:\ProgramData\Privax
O43 - CFD: 29/12/2016 - [] D -- C:\ProgramData\Protexis =>.Protexis Inc.
O43 - CFD: 15/12/2016 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 18/07/2019 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] AD -- C:\ProgramData\Reprise =>.Legitimate
O43 - CFD: 15/12/2016 - [] D -- C:\ProgramData\Riot Games =>.Riot Games
O43 - CFD: 09/02/2017 - [] D -- C:\ProgramData\SafeNet Sentinel =>.SafeNet
O43 - CFD: 03/12/2016 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics
O43 - CFD: 04/01/2018 - [] D -- C:\ProgramData\SketchUp =>.@Last Software
O43 - CFD: 29/12/2017 - [] D -- C:\ProgramData\Skype =>.Skype
O43 - CFD: 17/02/2017 - [] D -- C:\ProgramData\SPSS =>.SPSS
O43 - CFD: 25/12/2016 - [] D -- C:\ProgramData\SP_FT_Logs
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 13/12/2018 - [] D -- C:\ProgramData\Submit Suite
O43 - CFD: 18/07/2019 - [] D -- C:\ProgramData\Synaptics =>.Synaptics
O43 - CFD: 10/09/2017 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 06/06/2019 - [] D -- C:\ProgramData\VirtualBox =>.Oracle
O43 - CFD: 18/07/2019 - [] D -- C:\ProgramData\VMware =>.VMware
O43 - CFD: 23/10/2017 - [] D -- C:\ProgramData\VS Revo Group =>.VS Revo Group
O43 - CFD: 29/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 27/12/2018 - [] D -- C:\Program Files (x86)\Common Files\Adobe AIR =>.Adobe Inc.
O43 - CFD: 13/12/2018 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 07/03/2018 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 17/05/2019 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 21/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Macrovision Shared =>.Rovi Corporation
O43 - CFD: 18/07/2019 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 26/06/2019 - [] D -- C:\Program Files (x86)\Common Files\Oracle =>.Oracle
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 22/12/2017 - [] D -- C:\Program Files (x86)\Common Files\Steganos =>.Steganos
O43 - CFD: 14/08/2018 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 26/05/2019 - [] D -- C:\Program Files (x86)\Common Files\ThinPrint =>.ThinPrint
O43 - CFD: 26/05/2019 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware
O43 - CFD: 02/10/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Actecom
O43 - CFD: 16/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\ADBDriverInstaller =>.Samsung Electronics
O43 - CFD: 08/03/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\ADDINSOFT =>.Addinsoft
O43 - CFD: 11/06/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 29/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Appԁata
O43 - CFD: 16/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Article Marketing Robot
O43 - CFD: 14/04/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\AtomPark =>.AtomPark
O43 - CFD: 16/09/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Autodesk =>.Autodesk
O43 - CFD: 13/02/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\BatteryBar
O43 - CFD: 28/05/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Roaming\Ckerpege
O43 - CFD: 03/02/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\com.trafficspy
O43 - CFD: 29/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Corel =>.Corel Corporation
O43 - CFD: 04/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\DataRecommendations =>.Unknown
O43 - CFD: 12/11/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Diabolic Labs
O43 - CFD: 07/07/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\DMCache =>.DMCache
O43 - CFD: 18/05/2019 - [] AD -- C:\Users\TOP-laptop\AppData\Roaming\DriverPack Notifier =>.SUP.DriverPack
O43 - CFD: 17/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\DRPSu =>.SUP.DriverPack
O43 - CFD: 22/05/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\dvdcss =>.VideoLan Team
O43 - CFD: 03/10/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\DVDVideoSoft =>.DVDVideoSoft
O43 - CFD: 31/01/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\EarnMoney
O43 - CFD: 02/10/2017 - [0] D -- C:\Users\TOP-laptop\AppData\Roaming\EncryptStick =>.EncryptStick
O43 - CFD: 02/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\EPSON =>.EPSON
O43 - CFD: 17/06/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\ExpressVPN =>.ExpressVPN
O43 - CFD: 14/11/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\FileZilla =>.FileZilla
O43 - CFD: 24/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\FileZilla Server =>.FileZilla
O43 - CFD: 13/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Foxit AgentInformation =>.Foxit Corporation
O43 - CFD: 13/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Foxit Software =>.Foxit Software
O43 - CFD: 11/06/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\GetRightToGo =>.Headlight Software
O43 - CFD: 07/07/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Google =>.Google
O43 - CFD: 20/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Grammarly =>.Grammarly
O43 - CFD: 06/09/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Hotspot Shield =>.Hotspot Shield
O43 - CFD: 28/01/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 18/07/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\IDM =>.IDM
O43 - CFD: 30/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\IDT =>.IDT
O43 - CFD: 09/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\IHS EViews
O43 - CFD: 25/03/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\InstallShield =>.InstallShield
O43 - CFD: 15/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\IQ Option =>.IQ Option
O43 - CFD: 25/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\JetBrains =>.JetBrains Inc
O43 - CFD: 28/09/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\katatibejfx.ElKatatibeJFX
O43 - CFD: 28/10/2018 - [] SHD -- C:\Users\TOP-laptop\AppData\Roaming\Latas
O43 - CFD: 22/02/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\LetsExtract Software =>.LetsExtract Software
O43 - CFD: 15/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\LolClient =>.LolClient
O43 - CFD: 15/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 14/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\ManyCam =>.ManyCam LLC
O43 - CFD: 25/04/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\MarketSamurai.6E37012E1CBD7F47B14488FCC715944F3EBDCEDC.1
O43 - CFD: 03/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\MassFaces
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\TOP-laptop\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
O43 - CFD: 07/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Media Player Classic =>.Microsoft Corporation
O43 - CFD: 19/12/2018 - [] SD -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 26/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 29/06/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\NordVPN =>.NordVPN
O43 - CFD: 17/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\NVIDIA =>.nVidia Corporation
O43 - CFD: 17/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 29/10/2018 - [] SHD -- C:\Users\TOP-laptop\AppData\Roaming\Pr
O43 - CFD: 29/09/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Prezi =>.Prezi
O43 - CFD: 29/09/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\PreziPitch
O43 - CFD: 27/03/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Profiles =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\SketchUp =>.@Last Software
O43 - CFD: 26/11/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Skype =>.Skype
O43 - CFD: 02/11/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\SmartFTP =>.SmartSoft Ltd
O43 - CFD: 18/06/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Softland =>.Softland
O43 - CFD: 27/03/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\SoftOrbits =>.SoftOrbits
O43 - CFD: 01/10/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Spiritsoft
O43 - CFD: 17/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\SPSSInc =>.SPSS Inc
O43 - CFD: 22/12/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Steganos =>.Steganos
O43 - CFD: 22/12/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Steganos VPN
O43 - CFD: 26/06/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 10/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\TeamViewer =>.TeamViewer GmbH
O43 - CFD: 14/02/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Tenorshare =>.Tenorshare
O43 - CFD: 27/09/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Udeler
O43 - CFD: 18/04/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\uTorrent
O43 - CFD: 22/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 04/07/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\VMware =>.VMware
O43 - CFD: 22/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\WebcamMax =>.CoolwareMax
O43 - CFD: 03/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 19/07/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 04/03/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Zoom =>.ZOOM
O43 - CFD: 05/11/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Adobe =>.Adobe
O43 - CFD: 05/10/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Aiseesoft Studio =>.Aiseesoft Studio
O43 - CFD: 16/08/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Amazon =>.Amazon
O43 - CFD: 09/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\AmosDevelopment
O43 - CFD: 25/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Android =>.Android
O43 - CFD: 28/01/2016 - [0] SHD -- C:\Users\TOP-laptop\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 25/09/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 15/09/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Autodesk =>.Autodesk
O43 - CFD: 07/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\BeIn Player
O43 - CFD: 07/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\beinplayer
O43 - CFD: 21/02/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\Brice_Lambson
O43 - CFD: 22/02/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\CEF =>.CEF
O43 - CFD: 08/03/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\ControlActivation
O43 - CFD: 29/06/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 28/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\CRYPTOCOMPANY
O43 - CFD: 28/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\CryptoTab Browser =>.CryptoTab Browser
O43 - CFD: 21/01/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\CyberGhost =>.CyberGhost S.R.L
O43 - CFD: 04/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\DataRecommendation =>.Unknown
O43 - CFD: 04/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\dell =>.Dell
O43 - CFD: 17/10/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Deployment =>.Microsoft Corporation
O43 - CFD: 22/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Devolutions =>.Devolutions Inc
O43 - CFD: 18/07/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 18/07/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 07/04/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Embratoria =>.Embratoria
O43 - CFD: 04/07/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\ExpressVPN =>.ExpressVPN
O43 - CFD: 14/11/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\FileZilla =>.FileZilla
O43 - CFD: 11/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\FluxSoftware =>.Stereopsis
O43 - CFD: 18/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Foxit Reader =>.Foxit Corporation
O43 - CFD: 23/04/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Geckofx =>.Geckofx
O43 - CFD: 15/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Golden Frog, GmbH =>.Golden Frog, GmbH
O43 - CFD: 15/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Golden_Frog,_GmbH =>.Golden Frog GmbH
O43 - CFD: 08/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Local\Google =>.Google
O43 - CFD: 30/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\GrammarlyForWindows
O43 - CFD: 28/01/2016 - [0] SHD -- C:\Users\TOP-laptop\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 17/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\IBM =>.IBM
O43 - CFD: 12/08/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Iheb_Briki
O43 - CFD: 03/08/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\IsolatedStorage =>.id Software
O43 - CFD: 17/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\javasharedresources =>.Legitimate
O43 - CFD: 24/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\JxBrowser
O43 - CFD: 17/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\lynda.com =>.Lynda.com
O43 - CFD: 18/03/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 14/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\ManyCam =>.ManyCam LLC
O43 - CFD: 13/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Mega Limited =>.MEGA Limited
O43 - CFD: 05/06/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\MEGAsync =>.MegaSystems
O43 - CFD: 25/02/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 16/12/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 03/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 29/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\mpress =>.MPress
O43 - CFD: 20/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\MSfree Inc =>HackTool.WinActivator
O43 - CFD: 14/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\MultiPlayerManager
O43 - CFD: 29/06/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\NordVPN =>.NordVPN
O43 - CFD: 13/03/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\Nox =>.FFmpeg Project
O43 - CFD: 17/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\NVIDIA =>.nVidia Corporation
O43 - CFD: 17/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 20/07/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\PDF Annotator
O43 - CFD: 29/09/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Prezi =>.Prezi
O43 - CFD: 29/09/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\PreziPitch
O43 - CFD: 27/09/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 29/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Local\PunkBuster =>.PunkBuster Games
O43 - CFD: 02/10/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\SanDiskSecureAccessV2_win
O43 - CFD: 14/02/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\Seed4Me
O43 - CFD: 12/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\ShortestMiner
O43 - CFD: 10/08/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\SkinSoft =>.SkinSoft
O43 - CFD: 26/11/2017 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Skype =>.Skype
O43 - CFD: 07/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\SQPlayer.js
O43 - CFD: 03/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 19/07/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 28/01/2016 - [0] SHD -- C:\Users\TOP-laptop\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign000b29d8ad35c6df =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign01e4491d0d5558b3 =>.SUP.Temporary
O43 - CFD: 22/04/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign057ded7c75cc795b =>.SUP.Temporary
O43 - CFD: 11/06/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign08d8e8e4527e2212 =>.SUP.Temporary
O43 - CFD: 11/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign13bcf6b407c112dd =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign166779d41007629d =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign17c7b2f10839c7e7 =>.SUP.Temporary
O43 - CFD: 20/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign21252d09e25cc6fd =>.SUP.Temporary
O43 - CFD: 11/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign221ff1cb2ed7ab02 =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign29782588b331f58a =>.SUP.Temporary
O43 - CFD: 20/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign2bd07f00fae863c7 =>.SUP.Temporary
O43 - CFD: 05/07/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign2e0232ec2a4ffb65 =>.SUP.Temporary
O43 - CFD: 23/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign2e6b0f8008e2dcf9 =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign2f665485cadcf8c1 =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign3334d053a5f0f6a7 =>.SUP.Temporary
O43 - CFD: 28/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign33f1bff494f502f4 =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign3757b5910f0f466d =>.SUP.Temporary
O43 - CFD: 20/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign43d581a2cf10ea6e =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign45d4709665f2af11 =>.SUP.Temporary
O43 - CFD: 05/07/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign4b58d2fec18be587 =>.SUP.Temporary
O43 - CFD: 14/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign4edf07a343803724 =>.SUP.Temporary
O43 - CFD: 20/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign557ac0b64e4b708d =>.SUP.Temporary
O43 - CFD: 23/07/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign568063183babc190 =>.SUP.Temporary
O43 - CFD: 11/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign5903bf7e17fb849b =>.SUP.Temporary
O43 - CFD: 22/04/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign59dbccdd83b1cf15 =>.SUP.Temporary
O43 - CFD: 05/07/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign605589c0f0d4b237 =>.SUP.Temporary
O43 - CFD: 21/06/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign662fdc6cbabf4297 =>.SUP.Temporary
O43 - CFD: 20/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign6889d2d6a55f2a0a =>.SUP.Temporary
O43 - CFD: 25/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign69cb8889f74b5865 =>.SUP.Temporary
O43 - CFD: 21/06/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign6b4db92b8ba53eec =>.SUP.Temporary
O43 - CFD: 28/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign7cf8a250c833ba72 =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign80bfbdcc8733ed54 =>.SUP.Temporary
O43 - CFD: 11/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign8432b1f7940c5412 =>.SUP.Temporary
O43 - CFD: 17/05/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign851eb57bf7f57722 =>.SUP.Temporary
O43 - CFD: 07/07/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign87b05803d7edd3d3 =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign8c98b8498c41f805 =>.SUP.Temporary
O43 - CFD: 20/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign8d21428bd2cc858f =>.SUP.Temporary
O43 - CFD: 11/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign9ef48041c08a2f72 =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsign9f0c540d41182e38 =>.SUP.Temporary
O43 - CFD: 07/07/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsigna04883a2947ae81a =>.SUP.Temporary
O43 - CFD: 10/07/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsigna675f8cd51630ba6 =>.SUP.Temporary
O43 - CFD: 17/05/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignadc0f192c0fcef6c =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignb42b9754ad26f492 =>.SUP.Temporary
O43 - CFD: 23/07/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignb8b6d0c4c9364a76 =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignbd710bcc37e05a74 =>.SUP.Temporary
O43 - CFD: 05/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignbf55ee9f6d8a931d =>.SUP.Temporary
O43 - CFD: 05/07/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignc0a3a770024b21a3 =>.SUP.Temporary
O43 - CFD: 20/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignc24de0d4859326e1 =>.SUP.Temporary
O43 - CFD: 21/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignd10212b1b62ac31d =>.SUP.Temporary
O43 - CFD: 21/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignd2b289fb78291d86 =>.SUP.Temporary
O43 - CFD: 22/04/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignd4070325ae1314c9 =>.SUP.Temporary
O43 - CFD: 23/07/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsigndd7f5c5ddbcc4fd9 =>.SUP.Temporary
O43 - CFD: 14/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsigne0606e24af7aef63 =>.SUP.Temporary
O43 - CFD: 11/06/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsigne5aff92381bbc756 =>.SUP.Temporary
O43 - CFD: 21/06/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsigne673af57da5be9f8 =>.SUP.Temporary
O43 - CFD: 21/06/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignea92b729209bec4c =>.SUP.Temporary
O43 - CFD: 14/02/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsigneaa0076c4f816bde =>.SUP.Temporary
O43 - CFD: 21/06/2019 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignf5bbc017ab2c5c64 =>.SUP.Temporary
O43 - CFD: 20/11/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Tempzxpsignfcf01b55fe5e78bd =>.SUP.Temporary
O43 - CFD: 08/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\TheStorm.app
O43 - CFD: 27/03/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Thodsh
O43 - CFD: 03/02/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\Traffic_Mystic_IM_Solutio
O43 - CFD: 25/03/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\Video Editor Advanced
O43 - CFD: 13/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 14/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Visicom Media =>.SUP.VisicomMedia
O43 - CFD: 04/07/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\VMware =>.VMware
O43 - CFD: 23/10/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\VS Revo Group =>.VS Revo Group
O43 - CFD: 02/10/2017 - [] D -- C:\Users\TOP-laptop\AppData\Local\WDSetup =>.WDSetup
O43 - CFD: 19/07/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 25/01/2019 - [] D -- C:\Users\TOP-laptop\AppData\Local\{84101108101103114971093265117116111}
O43 - CFD: 03/02/2017 - [0] D -- C:\Users\TOP-laptop\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 27/09/2018 - [] D -- C:\Users\TOP-laptop\AppData\Local\Programs\Udeler
O43 - CFD: 23/07/2018 - [] D -- C:\Users\TOP-laptop\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 05/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\LocalLow\Amanpreet Singh
O43 - CFD: 30/10/2017 - [] D -- C:\Users\TOP-laptop\AppData\LocalLow\Google =>.Google
O43 - CFD: 14/11/2017 - [] D -- C:\Users\TOP-laptop\AppData\LocalLow\KMPlayer
O43 - CFD: 07/09/2018 - [] D -- C:\Users\TOP-laptop\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 18/07/2019 - [0] D -- C:\Users\TOP-laptop\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 02/06/2019 - [] D -- C:\Users\TOP-laptop\AppData\LocalLow\Oracle =>.Oracle
O43 - CFD: 02/06/2019 - [] D -- C:\Users\TOP-laptop\AppData\LocalLow\Sun =>.Oracle
O43 - CFD: 29/05/2018 - [0] SD -- C:\Users\TOP-laptop\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 27/06/2019 - [] D -- C:\Users\TOP-laptop\Desktop\1x
O43 - CFD: 27/09/2017 - [] D -- C:\Users\TOP-laptop\Desktop\activate windows 8.1
O43 - CFD: 19/07/2019 - [] D -- C:\Users\TOP-laptop\Desktop\artedu
O43 - CFD: 29/05/2019 - [] D -- C:\Users\TOP-laptop\Desktop\Author's guide
O43 - CFD: 31/01/2019 - [] D -- C:\Users\TOP-laptop\Desktop\diet
O43 - CFD: 02/06/2019 - [] D -- C:\Users\TOP-laptop\Desktop\ebay =>.eBay
O43 - CFD: 28/05/2019 - [] D -- C:\Users\TOP-laptop\Desktop\flash
O43 - CFD: 01/02/2019 - [] D -- C:\Users\TOP-laptop\Desktop\food
O43 - CFD: 10/07/2019 - [] D -- C:\Users\TOP-laptop\Desktop\foodfreedom
O43 - CFD: 04/07/2019 - [] D -- C:\Users\TOP-laptop\Desktop\fraud
O43 - CFD: 09/07/2016 - [] D -- C:\Users\TOP-laptop\Desktop\IBM SPSS Statistics 24 Win64 =>.IBM Corporation
O43 - CFD: 27/06/2018 - [] D -- C:\Users\TOP-laptop\Desktop\js_composer
O43 - CFD: 21/02/2019 - [] D -- C:\Users\TOP-laptop\Desktop\kids food
O43 - CFD: 07/12/2018 - [] D -- C:\Users\TOP-laptop\Desktop\Macro TD serie exercice 3
O43 - CFD: 17/06/2019 - [] D -- C:\Users\TOP-laptop\Desktop\merch Aziz Basha
O43 - CFD: 17/06/2019 - [] D -- C:\Users\TOP-laptop\Desktop\merch by amazon kouifi
O43 - CFD: 13/06/2019 - [] D -- C:\Users\TOP-laptop\Desktop\MOHAMED REZRAZI
O43 - CFD: 24/05/2019 - [] D -- C:\Users\TOP-laptop\Desktop\New folder
O43 - CFD: 25/12/2018 - [] D -- C:\Users\TOP-laptop\Desktop\Recipes
O43 - CFD: 03/07/2017 - [] D -- C:\Users\TOP-laptop\Desktop\sc
O43 - CFD: 14/08/2018 - [] D -- C:\Users\TOP-laptop\Desktop\Selfishnet win 7
O43 - CFD: 13/07/2019 - [] D -- C:\Users\TOP-laptop\Desktop\SpinnerChief-v9.0.4
O43 - CFD: 05/07/2019 - [] D -- C:\Users\TOP-laptop\Desktop\tshirts
O43 - CFD: 13/03/2019 - [] D -- C:\Users\TOP-laptop\Desktop\Windows Loader portabl
O43 - CFD: 08/05/2017 - [] D -- C:\Users\TOP-laptop\Desktop\صناعة المحاور
O43 - CFD: 13/12/2010 - [] D -- C:\Users\TOP-laptop\Desktop\كتاب تومي صالح في الاقتصاد الكلي كامل
O43 - CFD: 07/12/2018 - [] D -- C:\Users\TOP-laptop\Desktop\ملتقى الطاقات
O43 - CFD: 27/12/2018 - [] D -- C:\Users\TOP-laptop\Desktop\نظرية اتخاذ القرار
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 04/01/2018 - [] RD -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 16/08/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Amazon =>.Amazon
O43 - CFD: 08/09/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Applications Chrome =>.Google Inc.
O43 - CFD: 16/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Article Marketing Robot
O43 - CFD: 04/02/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell =>.Dell
O43 - CFD: 30/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grammarly =>.Grammarly
O43 - CFD: 11/04/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 10/07/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LinuxLive USB Creator =>.LinuxLiveUSB Team
O43 - CFD: 17/10/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lynda.com =>.Lynda.com
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 13/12/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync =>.MegaSystems
O43 - CFD: 23/02/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microfit 5
O43 - CFD: 16/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MiniPro Programmer
O43 - CFD: 06/05/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\POM-QM for Windows 5
O43 - CFD: 17/05/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Recover My Files v6 =>.GetData
O43 - CFD: 02/02/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SEO Link Robot Pro
O43 - CFD: 04/06/2019 - [] RD -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 07/12/2016 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The KMPlayer =>.The KMPlayer Team
O43 - CFD: 25/12/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TheBestSpinner3
O43 - CFD: 31/10/2018 - [0] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trial Email Generator
O43 - CFD: 15/08/2018 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tweaking.com =>.Tweaking.com
O43 - CFD: 25/09/2017 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool =>.Microsoft Corporation
O43 - CFD: 02/06/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 04/03/2019 - [] D -- C:\Users\TOP-laptop\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom =>.ZOOM
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 06/08/2017 - [0] D -- C:\Users\Default\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 06/08/2017 - [0] D -- C:\Users\Default User\AppData\Local\Microsoft Help =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 19/07/2019 - [0] -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 15/10/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Golden_Frog,_GmbH =>.Golden Frog GmbH
O43 - CFD: 10/09/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\HideMyIpSRV
O43 - CFD: 21/10/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 05/02/2019 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Seed4
O43 - CFD: 05/09/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\ExpressVPN =>.ExpressVPN
O43 - CFD: 13/02/2017 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Foxit Software =>.Foxit Software
O43 - CFD: 19/03/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 19/03/2018 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/05/2019 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 18/07/2019 - [0] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\VMware =>.VMware

---\\ ShellIconOverlayIdentifiers (SIOI) (10) - 1s
O106 - SIOI:  MEGA (Pending) [ MEGA (Pending)] - {056D528D-CE28-4194-9BA3-BA2E9197FF8C}. (...) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\ShellExtX64.dll =>.Mega Limited®
O106 - SIOI:  MEGA (Synced) [ MEGA (Synced)] - {05B38830-F4E9-4329-978B-1DD28605D202}. (...) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\ShellExtX64.dll =>.Mega Limited®
O106 - SIOI:  MEGA (Syncing) [ MEGA (Syncing)] - {0596C850-7BDD-4C9D-AFDF-873BE6890637}. (...) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\ShellExtX64.dll =>.Mega Limited®
O106 - SIOI: [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc.®
O106 - SIOI: [ AccExtIco1] - {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47}. (.2013-2017, Adobe Systems Incorporated. All rights res - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: [ AccExtIco2] - {853B7E05-C47D-4985-909A-D0DC5C6D7303}. (.2013-2017, Adobe Systems Incorporated. All rights res - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: [ AccExtIco3] - {42D38F2E-98E9-4382-B546-E24E4D6D04BB}. (.2013-2017, Adobe Systems Incorporated. All rights res - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - Client Side Caching UI.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ Search Context Menu Handlers (SCMH) (47) - 2s
O108 - CMH1: AccExt [64Bits] - {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} . (.2013-2017, Adobe Systems Incorporated. All rights res - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Windows Briefcase.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH1: Foxit_ConvertToPDF_Reader [64Bits] - {A94757A0-0226-426F-B4F1-4DF381C630D3} . (.Foxit Software Inc. - ConvertToPDFShellExtension.) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll =>.Foxit Software Incorporated®
O108 - CMH1: Image Resizer [64Bits] - {51B4D7E5-7568-4234-B4BB-47FB3C016A69} . (.Brice Lambson - .) -- C:\Program Files\Image Resizer for Windows\ShellExtensions.dll =>.Open Source Developer, Brice Lambson®
O108 - CMH1: Kaspersky Anti-Virus 19.0.0 [64Bits] - {755D388B-420B-4692-A974-84AAF0E577D3} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\x64\shellex.dll =>.Kaspersky Lab®
O108 - CMH1: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\ShellExtX64.dll =>.Mega Limited®
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.PowerISO Computing, Inc. - PowerISOShell DLL.) -- C:\Program Files (x86)\PowerISO\PWRISOSH.DLL =>.PowerISO Computing, Inc.
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files (x86)\WinRAR\RarExt64.dll =>.win.rar GmbH®
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH2: Compatibility [64Bits] - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Compatibility Tab Shell Extension Library.) -- C:\Windows\System32\acppage.dll =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files (x86)\WinRAR\RarExt64.dll =>.win.rar GmbH®
O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\ShellExtX64.dll =>.Mega Limited®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: Kaspersky Anti-Virus 19.0.0 [64Bits] - {755D388B-420B-4692-A974-84AAF0E577D3} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\x64\shellex.dll =>.Kaspersky Lab®
O108 - CMH4: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\ShellExtX64.dll =>.Mega Limited®
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Client Side Caching UI.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.PowerISO Computing, Inc. - PowerISOShell DLL.) -- C:\Program Files (x86)\PowerISO\PWRISOSH.DLL =>.PowerISO Computing, Inc.
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: 00nView [64Bits] - {1E9B04FB-F9E5-4718-997B-B8DA88302A48} . (...) -- C:\Program Files\NVIDIA Corporation\nview\nvShell.dll =>.NVIDIA Corporation®
O108 - CMH5: Gadgets [64Bits] - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Sidebar droptarget.) -- C:\Program Files\Windows Sidebar\sbdrop.dll =>.Microsoft Corporation
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\system32\igfxDTCM.dll =>.Intel Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\Windows\System32\nvshext.dll =>.NVIDIA Corporation
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH6: AccExt [64Bits] - {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} . (.2013-2017, Adobe Systems Incorporated. All rights res - Core Sync.) -- C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll =>.Adobe Systems Incorporated®
O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Windows Briefcase.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH6: Foxit_ConvertToPDF_Reader [64Bits] - {A94757A0-0226-426F-B4F1-4DF381C630D3} . (.Foxit Software Inc. - ConvertToPDFShellExtension.) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll =>.Foxit Software Incorporated®
O108 - CMH6: Kaspersky Anti-Virus 19.0.0 [64Bits] - {755D388B-420B-4692-A974-84AAF0E577D3} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\x64\shellex.dll =>.Kaspersky Lab®
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - Windows Shell Common Dll.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - Client Side Caching UI.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.PowerISO Computing, Inc. - PowerISOShell DLL.) -- C:\Program Files (x86)\PowerISO\PWRISOSH.DLL =>.PowerISO Computing, Inc.
O108 - CMH6: RUShellExt [64Bits] - {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} . (.VS Revo Group - Revo Uninstaller Pro Extension.) -- C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll =>.VS Revo Group®
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files (x86)\WinRAR\RarExt64.dll =>.win.rar GmbH®
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - Windows Enhanced Storage Shell Extension DL.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: Kaspersky Anti-Virus 19.0.0 [64Bits] - {755D388B-420B-4692-A974-84AAF0E577D3} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 19.0.0\x64\shellex.dll =>.Kaspersky Lab®
O108 - CMH7: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\TOP-laptop\AppData\Local\MEGAsync\ShellExtX64.dll =>.Mega Limited®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Shell extensions for sharing.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH7: VMDiskMenuHandler [64Bits] - {271DC252-6FE1-4D59-9053-E4CF50AB99DE} . (.Orphan.)
O108 - CMH7: VMDiskMenuHandler64 [64Bits] - {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} . (.VMware, Inc. - VMware Workstation.) -- C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll =>.VMware, Inc.®

---\\ Image File Execution Options (4) - 0s
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - IE Per-User Initialization Utility.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - IE 7.0 Unattended Install Utility.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Microsoft (R) HTML Application host.) [MitigationOptions\\256] =>.Microsoft Corporation

---\\ ShareTools MSconfig StartupReg (22) - 2s
O53 - SMSR:HKLM\...\startupreg\Adobe Creative Cloud [Key] [64Bits] . (.Adobe Systems Incorporated - Adobe Creative Cloud.) -- C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\Adobe Reader Speed Launcher [Key] [64Bits] . (.Adobe Systems Incorporated - Adobe Acrobat SpeedLauncher.) -- C:\Program Files (x86)\Adobe\Reader 8.0\Reader\Reader_sl.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\AdobeAAMUpdater-1.0 [Key] [64Bits] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated
O53 - SMSR:HKLM\...\startupreg\AdobeGCInvoker-1.0 [Key] [64Bits] . (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe =>.Adobe Systems, Incorporated
O53 - SMSR:HKLM\...\startupreg\ADSKAppManager [Key] [64Bits] . (...) -- C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\Autodesk Sync [Key] [64Bits] . (...) -- C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\CyberGhost [Key] [64Bits] . (...) -- .
O53 - SMSR:HKLM\...\startupreg\EarnMoney [Key] [64Bits] . (...) -- C:\Users\TOP-laptop\AppData\Local\Programs\EarnMoney\EarnMoney.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\EPSON SX218 Series [Key] [64Bits] . (.SEIKO EPSON CORPORATION - EPSON Status Monitor 3.) -- C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGDE.EXE =>.Seiko Epson Corporation
O53 - SMSR:HKLM\...\startupreg\f.lux [Key] [64Bits] . (.f.lux Software LLC - f.lux.) -- C:\Users\TOP-laptop\AppData\Local\FluxSoftware\Flux\flux.exe =>.f.lux Software LLC
O53 - SMSR:HKLM\...\startupreg\FileZilla Server Interface [Key] [64Bits] . (.FileZilla Project - FileZilla Server.) -- C:\Program Files (x86)\FileZilla Server\FileZilla Server Interface.exe =>.FileZilla Project
O53 - SMSR:HKLM\...\startupreg\HideMyIPSh [Key] [64Bits] . (...) -- C:\Program Files (x86)\Hide My IP 6\HideMyIP.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\HSPALauncher [Key] [64Bits] . (...) -- C:\PROGRA~2\HSPAUS~1\HSPALA~1.EXE (.not file.)
O53 - SMSR:HKLM\...\startupreg\IDMan [Key] [64Bits] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc.
O53 - SMSR:HKLM\...\startupreg\ipts [Key] [64Bits] . (...) -- C:\Users\TOP-laptop\AppData\Local\Temp\Rar$EXa0.570\New Folder\ipts.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\NordVPN [Key] [64Bits] . (.NordVPN - NordVPN.) -- C:\Program Files (x86)\NordVPN\NordVPN.exe =>.NordVPN
O53 - SMSR:HKLM\...\startupreg\PWRISOVM.EXE [Key] [64Bits] . (...) -- C:\Program Files (x86)\PowerISO\PWRISOVM.EXE (.not file.)
O53 - SMSR:HKLM\...\startupreg\Seed4Me [Key] [64Bits] . (.Seed4.Me - Seed4.Me VPN Client.) -- C:\Program Files\Seed4.Me VPN\bin\Seed4.Me_VPN.exe =>.Seed4.Me
O53 - SMSR:HKLM\...\startupreg\Skype [Key] [64Bits] . (...) -- C:\Program Files (x86)\Skype\Phone\Skype.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\urlspace [Key] [64Bits] . (...) -- C:\Users\TOP-laptop\AppData\Local\Temp\Rar$EXb0.582\jingling.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\uTorrent [Key] [64Bits] . (.BitTorrent Inc. - µTorrent.) -- C:\Users\TOP-laptop\AppData\Roaming\uTorrent\uTorrent.exe =>BitTorrent (P2P)
O53 - SMSR:HKLM\...\startupreg\vmware-tray.exe [Key] [64Bits] . (.VMware, Inc. - VMware Tray Process.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe =>.VMware, Inc.

---\\ System Drivers List (369) - 20s
O58 - SDL:2009/07/14 01:06:38 A . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\drivers\1394bus.sys [68096] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:44:56 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\drivers\1394ohci.sys [229888] =>.Microsoft Corporation
O58 - SDL:2015/11/18 20:07:30 A . (.HP - HP Accelerometer.) -- C:\Windows\System32\drivers\Accelerometer.sys [53760] =>.Hewlett-Packard®
O58 - SDL:2010/11/20 14:32:46 A . (.Microsoft Corporation - ACPI Driver for NT.) -- C:\Windows\System32\drivers\acpi.sys [334208] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:30:42 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\drivers\acpipmi.sys [12800] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2015/10/13 17:41:05 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\afd.sys [497664] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:24 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\drivers\agilevpn.sys [60416] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:52:21 A . (.Microsoft Corporation - 440 NT AGP Filter.) -- C:\Windows\System32\drivers\AGP440.sys [61008] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Microsoft Corporation - AMD IDE Driver.) -- C:\Windows\System32\drivers\amdide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:19:25 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdk8.sys [64512] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:19:25 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdppm.sys [60928] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:32:46 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:32:47 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2013/02/21 20:10:12 A . (.Alps Electric Co., Ltd. - Alps Touch Pad Driver.) -- C:\Windows\System32\drivers\Apfiltr.sys [489264] =>.Alps Electric Co., LTD.®
O58 - SDL:2015/02/03 03:32:25 A . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\drivers\appid.sys [61440] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:10:13 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\drivers\asyncmac.sys [23040] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:52:21 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:32:46 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\drivers\ataport.sys [155520] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2009/07/14 02:52:21 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\drivers\battc.sys [28240] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:00:13 A . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\drivers\beep.sys [6656] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:35:59 A . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\drivers\blbdrive.sys [45056] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:23:50 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\drivers\bowser.sys [90624] =>.Microsoft Corporation
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 02:01:48 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\drivers\bridge.sys [95232] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Brotehr Serial I/F Driver (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 01:06:53 A . (.Microsoft Corporation - Bluetooth Bus Extender.) -- C:\Windows\System32\drivers\bthenum.sys [41984] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:52 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\drivers\bthmodem.sys [72192] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:07:00 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\Windows\System32\drivers\bthpan.sys [118784] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:44:52 A . (.Microsoft Corporation - Bluetooth Bus Driver.) -- C:\Windows\System32\drivers\bthport.sys [552448] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:44:33 A . (.Microsoft Corporation - Bluetooth Miniport Driver.) -- C:\Windows\System32\drivers\BTHUSB.SYS [80384] =>.Microsoft Corporation
O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/07/14 00:19:47 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\cdfs.sys [92160] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:19:21 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\cdrom.sys [147456] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:34 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\drivers\circlass.sys [45568] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:32:57 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\drivers\Classpnp.sys [179072] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:31:03 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\drivers\CmBatt.sys [17664] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2008/08/29 17:54:30 A . (.Mobile Connector - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\cmusbser.sys [118144] =>.Mobile Connector
O58 - SDL:2018/01/27 11:10:16 A . (.AO Kaspersky Lab - Cryptographic Module Driver x64 (56 bit).) -- C:\Windows\System32\drivers\cm_km.sys [243400] =>.Kaspersky Lab®
O58 - SDL:2015/09/23 14:15:25 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\drivers\cng.sys [460776] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:31 A . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\drivers\compbatt.sys [21584] =>.Microsoft Windows®
O58 - SDL:2010/11/20 11:33:17 A . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\drivers\CompositeBus.sys [38912] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\drivers\crashdmp.sys [39504] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\drivers\crcdisk.sys [24144] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:27:13 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\Windows\System32\drivers\csc.sys [514560] =>.Microsoft Corporation
O58 - SDL:2014/06/24 13:01:36 A . (.Broadcom Corporation - Broadcom Credential Vault USB Driver.) -- C:\Windows\System32\drivers\cvusbdrv.sys [61664] =>.Broadcom Corp®
O58 - SDL:2010/11/20 10:26:32 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\dfsc.sys [102400] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:37:18 A . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\drivers\discache.sys [40448] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\drivers\disk.sys [73280] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:33:18 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\drivers\Diskdump.sys [27520] =>.Microsoft Windows®
O58 - SDL:2015/12/08 19:54:36 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmk.sys [116736] =>.Microsoft Corporation
O58 - SDL:2015/12/08 19:11:53 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmkaud.sys [5632] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\drivers\Dumpata.sys [28736] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:43:14 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\drivers\dumpfve.sys [55128] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:38:28 A . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\drivers\dxapi.sys [16896] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:38:28 A . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\drivers\dxg.sys [98816] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:33:25 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\drivers\dxgkrnl.sys [982912] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:49:55 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\drivers\dxgmms1.sys [258048] =>.Microsoft Corporation
O58 - SDL:2017/07/11 12:15:32 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1d62x64.sys [528360] =>.Intel(R) INTELND1617®
O58 - SDL:2010/04/05 23:37:42 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\Windows\System32\drivers\e1k62x64.sys [301232] =>.Intel Corporation®
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:31:04 A . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\drivers\errdev.sys [9728] =>.Microsoft Corporation
O58 - SDL:2016/08/17 16:25:24 A . (.ELAN Microelectronic Corp. - ELAN SMBus Driver.) -- C:\Windows\System32\drivers\ETDSMBus.sys [32992] =>.ELAN Microelectronics Corporation®
O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2009/07/14 00:23:29 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\drivers\exfat.sys [195072] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:23:29 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\drivers\fastfat.sys [204800] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\drivers\fdc.sys [29696] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\drivers\fileinfo.sys [70224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:25:40 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\drivers\filetrace.sys [34304] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\drivers\flpydisk.sys [24576] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:33:34 A . (.Microsoft Corporation - Microsoft Filesystem Filter Manager.) -- C:\Windows\System32\drivers\fltMgr.sys [289664] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:47:49 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\Windows\System32\drivers\fsdepends.sys [55376] =>.Microsoft Windows®
O58 - SDL:2012/03/01 07:46:16 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\drivers\fs_rec.sys [23408] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:28:59 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\drivers\fvevol.sys [223248] =>.Microsoft Windows®
O58 - SDL:2018/08/02 00:46:30 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\drivers\FWPKCLNT.SYS [288088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - MS Generic AGPv3.0 Filter for K8/9 Processo.) -- C:\Windows\System32\drivers\GAGP30KX.SYS [65088] =>.Microsoft Windows®
O58 - SDL:2018/11/02 05:21:58 A . (.VMware, Inc. - VMware USB monitor.) -- C:\Windows\System32\drivers\hcmon.sys [84752] =>.VMware, Inc.®
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/11/20 11:43:43 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\hdaudbus.sys [122368] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:44:23 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\HdAudio.sys [350208] =>.Microsoft Corporation
O58 - SDL:2013/02/19 09:59:38 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [57848] =>.Intel Corporation - Intel® Management Engine Firmware®
O58 - SDL:2009/07/14 00:31:06 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\drivers\hidbatt.sys [26624] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:52 A . (.Microsoft Corporation - Bluetooth Miniport Driver for HID Devices.) -- C:\Windows\System32\drivers\hidbth.sys [100864] =>.Microsoft Corporation
O58 - SDL:2013/07/03 05:05:05 A . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\drivers\hidclass.sys [76800] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:23 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidir.sys [46592] =>.Microsoft Corporation
O58 - SDL:2013/07/03 05:05:04 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\drivers\hidparse.sys [32896] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:43:49 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidusb.sys [30208] =>.Microsoft Corporation
O58 - SDL:2017/12/11 10:35:48 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\hmatap.sys [45560] =>.Privax Limited®
O58 - SDL:2015/11/18 20:07:30 A . (.HP - HP Disk Filter - SATA/RAID.) -- C:\Windows\System32\drivers\hpdskflt.sys [40960] =>.Hewlett-Packard®
O58 - SDL:2010/11/20 14:33:35 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2015/09/18 22:42:08 A . (.AnchorFree Inc. - Hotspot Shield Routing Driver.) -- C:\Windows\System32\drivers\hssdrv6.sys [44648] =>.AnchorFree Inc®
O58 - SDL:2010/11/20 10:25:14 A . (.Microsoft Corporation - HTTP Protocol Stack.) -- C:\Windows\System32\drivers\http.sys [753664] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:33:36 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\drivers\hwpolicy.sys [14720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:19:57 A . (.Microsoft Corporation - i8042 Port Driver.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
O58 - SDL:2017/09/14 13:10:36 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\Windows\System32\drivers\iaStorA.sys [1469952] =>.Intel(R) Rapid Storage Technology®
O58 - SDL:2017/09/14 13:10:36 A . (.Intel Corporation - Intel(R) Rapid Storage Technology Filter dr.) -- C:\Windows\System32\drivers\iaStorF.sys [40448] =>.Intel(R) Rapid Storage Technology®
O58 - SDL:2010/11/20 14:33:38 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2018/12/20 11:05:20 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [229296] =>.Tonec Inc.®
O58 - SDL:2019/02/07 00:00:54 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [4942808] =>.Intel Corporation®
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\drivers\intelide.sys [16960] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:19:25 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\intelppm.sys [62464] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:52:19 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\drivers\ipfltdrv.sys [82944] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:04:53 A . (.Microsoft Corporation - WMI IPMI DRIVER.) -- C:\Windows\System32\drivers\IPMIDrv.sys [78848] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:03 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\ipnat.sys [116224] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:09:02 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\drivers\irda.sys [120320] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:08:59 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\drivers\irenum.sys [17920] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:48:04 A . (.Microsoft Corporation - PNP ISA Bus Driver.) -- C:\Windows\System32\drivers\isapnp.sys [20544] =>.Microsoft Windows®
O58 - SDL:2017/05/12 02:23:40 A . (.Intel Corporation - Intel(R) USB 3.0 Host Controller Switch Dri.) -- C:\Windows\System32\drivers\iusb3hcs.sys [23552] =>.Intel(R) USB eXtensible Host Controller Drivers®
O58 - SDL:2017/05/12 02:23:40 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [401408] =>.Intel(R) USB eXtensible Host Controller Drivers®
O58 - SDL:2017/05/12 02:23:40 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [816640] =>.Intel(R) USB eXtensible Host Controller Drivers®
O58 - SDL:2009/07/14 02:48:04 A . (.Microsoft Corporation - Keyboard Class Driver.) -- C:\Windows\System32\drivers\kbdclass.sys [50768] =>.Microsoft Windows®
O58 - SDL:2010/11/20 11:33:25 A . (.Microsoft Corporation - HID Keyboard Filter Driver.) -- C:\Windows\System32\drivers\kbdhid.sys [33280] =>.Microsoft Corporation
O58 - SDL:2018/02/20 11:53:38 A . (.AO Kaspersky Lab - Updatable component loader [fre_wnet_x64].) -- C:\Windows\System32\drivers\kl1.sys [528576] =>.Kaspersky Lab®
O58 - SDL:2019/04/15 10:56:27 A . (.AO Kaspersky Lab - Backup Disk Filter [fre_wnet_x64].) -- C:\Windows\System32\drivers\klbackupdisk.sys [72016] =>.Kaspersky Lab®
O58 - SDL:2019/04/15 10:56:27 A . (.AO Kaspersky Lab - Backup File Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klbackupflt.sys [122496] =>.Kaspersky Lab®
O58 - SDL:2019/04/15 10:56:27 A . (.AO Kaspersky Lab - Virtual Disk [fre_wnet_x64].) -- C:\Windows\System32\drivers\kldisk.sys [86656] =>.Kaspersky Lab®
O58 - SDL:2019/06/05 17:39:50 A . (.AO Kaspersky Lab - Filter Core [fre_wlh_x64].) -- C:\Windows\System32\drivers\klflt.sys [217216] =>.Kaspersky Lab®
O58 - SDL:2019/06/05 17:37:50 A . (.AO Kaspersky Lab - klhk [fre_win7_x64].) -- C:\Windows\System32\drivers\klhk.sys [1093248] =>.Kaspersky Lab®
O58 - SDL:2019/06/05 17:39:51 A . (.AO Kaspersky Lab - Core System Interceptors [fre_wlh_x64].) -- C:\Windows\System32\drivers\klif.sys [1123456] =>.Kaspersky Lab®
O58 - SDL:2019/04/15 10:56:29 A . (.AO Kaspersky Lab - Packet Network Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klim6.sys [56144] =>.Kaspersky Lab®
O58 - SDL:2019/04/15 10:56:29 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klkbdflt.sys [56656] =>.Kaspersky Lab®
O58 - SDL:2019/04/15 10:56:29 A . (.AO Kaspersky Lab - Mouse Device Filter [fre_wlh_x64].) -- C:\Windows\System32\drivers\klmouflt.sys [57464] =>.Kaspersky Lab®
O58 - SDL:2019/04/15 10:56:29 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x64].) -- C:\Windows\System32\drivers\klpd.sys [49280] =>.Kaspersky Lab®
O58 - SDL:2017/11/07 23:56:12 A . (.AO Kaspersky Lab - Legacy Network Filter [fre_wnet_x64].) -- C:\Windows\System32\drivers\kltdi.sys [81632] =>.Kaspersky Lab®
O58 - SDL:2019/04/15 10:56:29 A . (.AO Kaspersky Lab - WFP Network Connection Filter Driver [fre_w.) -- C:\Windows\System32\drivers\klwtp.sys [177280] =>.Kaspersky Lab®
O58 - SDL:2019/04/15 10:56:30 A . (.AO Kaspersky Lab - Network Processor [fre_wnet_x64].) -- C:\Windows\System32\drivers\kneps.sys [201552] =>.Kaspersky Lab®
O58 - SDL:2010/11/20 11:33:25 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\drivers\ks.sys [243712] =>.Microsoft Corporation
O58 - SDL:2016/01/22 07:27:08 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecdd.sys [95680] =>.Microsoft Windows®
O58 - SDL:2016/01/22 07:27:08 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecpkg.sys [154560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:00:19 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\drivers\ksthunk.sys [20992] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:08:51 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\drivers\lltdio.sys [60928] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:26:13 A . (.Microsoft Corporation - LUA File Virtualization Filter Driver.) -- C:\Windows\System32\drivers\luafv.sys [113152] =>.Microsoft Corporation
O58 - SDL:2014/12/29 04:56:08 A . (.Visicom Media Inc. - ManyCam Virtual Microphone.) -- C:\Windows\System32\drivers\mcaudrv_x64.sys [35992] =>ManyCam LLC
O58 - SDL:2009/07/14 01:01:06 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\drivers\mcd.sys [22016] =>.Microsoft Corporation
O58 - SDL:2018/07/27 05:47:04 A . (.Visicom Media Inc. - ManyCam Virtual Webcam Driver.) -- C:\Windows\System32\drivers\mcvidrv.sys [58280] =>.SUP.VisicomMedia
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2012/06/23 01:46:56 A . (.http://www.autoelectric.cn - .) -- C:\Windows\System32\drivers\MiniProWdf.sys [17216] =>.Beijing KaiXin ShengZhou Technology Co., Ltd.®
O58 - SDL:2009/07/14 01:10:48 A . (.Microsoft Corporation - Modem Device Driver.) -- C:\Windows\System32\drivers\modem.sys [40448] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:38:52 A . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\drivers\monitor.sys [30208] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:48:27 A . (.Microsoft Corporation - Mouse Class Driver.) -- C:\Windows\System32\drivers\mouclass.sys [49216] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:00:20 A . (.Microsoft Corporation - HID Mouse Filter Driver.) -- C:\Windows\System32\drivers\mouhid.sys [31232] =>.Microsoft Corporation
O58 - SDL:2015/07/15 19:15:11 A . (.Microsoft Corporation - Mount Point Manager.) -- C:\Windows\System32\drivers\mountmgr.sys [94656] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:33:44 A . (.Microsoft Corporation - MultiPath Support Bus-Driver.) -- C:\Windows\System32\drivers\mpio.sys [155008] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:08:25 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\drivers\mpsdrv.sys [77312] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:26:42 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\drivers\mrxdav.sys [140800] =>.Microsoft Corporation
O58 - SDL:2016/01/22 05:59:53 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\mrxsmb.sys [159232] =>.Microsoft Corporation
O58 - SDL:2016/01/22 05:58:52 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\drivers\mrxsmb10.sys [290816] =>.Microsoft Corporation
O58 - SDL:2016/01/22 05:58:46 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\drivers\mrxsmb20.sys [129024] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:33:44 A . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\drivers\msahci.sys [31104] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:33:44 A . (.Microsoft Corporation - Microsoft Device Specific Module.) -- C:\Windows\System32\drivers\msdsm.sys [140672] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:19:47 A . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\drivers\msfs.sys [26112] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:24 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\drivers\mshidkmdf.sys [8192] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:48:27 A . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\drivers\msisadrv.sys [15424] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:33:45 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\drivers\msiscsi.sys [273792] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:00:18 A . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\drivers\mskssrv.sys [11136] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:17 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\drivers\mspclock.sys [7168] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:17 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\drivers\mspqm.sys [6784] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:33:45 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\drivers\msrpc.sys [366976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:27 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\drivers\mssmbios.sys [32320] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:00:17 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\drivers\mstee.sys [8064] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:02:08 A . (.Microsoft Corporation - Microsoft Multi-Touch HID Driver.) -- C:\Windows\System32\drivers\MTConfig.sys [15360] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:48:27 A . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\drivers\mup.sys [60496] =>.Microsoft Windows®
O58 - SDL:2015/10/13 05:57:21 A . (.Microsoft Corporation - NDIS 6.20 driver.) -- C:\Windows\System32\drivers\ndis.sys [950720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:08:13 A . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\drivers\ndiscap.sys [35328] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:00 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\drivers\ndistapi.sys [24064] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:50:08 A . (.Microsoft Corporation - NDIS User mode I/O driver.) -- C:\Windows\System32\drivers\ndisuio.sys [56832] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:52:34 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\drivers\ndiswan.sys [164352] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:52:20 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\drivers\ndproxy.sys [57856] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:09:26 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\drivers\netbios.sys [44544] =>.Microsoft Corporation
O58 - SDL:2016/05/11 15:58:23 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netbt.sys [262144] =>.Microsoft Corporation
O58 - SDL:2018/08/02 00:46:30 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\drivers\netio.sys [376688] =>.Microsoft Windows®
O58 - SDL:2014/07/11 13:02:18 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETwsw00.sys [11527888] =>.Intel Corporation-Mobile Wireless Group®
O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2013/03/01 02:49:12 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.®
O58 - SDL:2009/07/14 00:19:48 A . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\drivers\npfs.sys [44032] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:21:02 A . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\drivers\nsiproxy.sys [24576] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:33:46 A . (.Microsoft Corporation - NT File System Driver.) -- C:\Windows\System32\drivers\ntfs.sys [1659776] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:19:38 A . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\drivers\null.sys [6144] =>.Microsoft Corporation
O58 - SDL:2019/03/26 09:21:09 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvkflt.sys [316288] =>.NVIDIA Corporation®
O58 - SDL:2019/03/26 09:21:09 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvlddmkm.sys [20417792] =>.NVIDIA Corporation®
O58 - SDL:2019/03/26 09:21:09 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\Windows\System32\drivers\nvpciflt.sys [54984] =>.NVIDIA Corporation®
O58 - SDL:2010/11/20 14:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:26 A . (.Microsoft Corporation - NForce NT AGP Filter.) -- C:\Windows\System32\drivers\NV_AGP.SYS [122960] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:07:23 A . (.Microsoft Corporation - NativeWiFi Miniport Driver.) -- C:\Windows\System32\drivers\nwifi.sys [318976] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:45 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\drivers\ohci1394.sys [72832] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:52:20 A . (.Microsoft Corporation - QoS Packet Scheduler.) -- C:\Windows\System32\drivers\pacer.sys [131584] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:41 A . (.Microsoft Corporation - Parallel Port Driver.) -- C:\Windows\System32\drivers\parport.sys [97280] =>.Microsoft Corporation
O58 - SDL:2012/03/17 08:58:57 A . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\drivers\partmgr.sys [75120] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:33:48 A . (.Microsoft Corporation - NT Plug and Play PCI Enumerator.) -- C:\Windows\System32\drivers\pci.sys [184704] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\pciide.sys [12352] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\drivers\pciidex.sys [48720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.Microsoft Corporation - PCMCIA Bus Driver.) -- C:\Windows\System32\drivers\pcmcia.sys [220752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\drivers\pcw.sys [50768] =>.Microsoft Windows®
O58 - SDL:2015/02/03 04:19:12 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\drivers\PEAuth.sys [663552] =>.Microsoft Corporation
O58 - SDL:2015/12/08 19:12:08 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\drivers\portcls.sys [230400] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:19:25 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\processr.sys [60416] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:35:55 A . (.Microsoft Corporation - SUA Subsystem Driver.) -- C:\Windows\System32\drivers\psxdrv.sys [10240] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:09:48 A . (.Microsoft Corporation - Microsoft Quality Windows Audio Video Exper.) -- C:\Windows\System32\drivers\qwavedrv.sys [46592] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:09 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\drivers\rasacd.sys [14848] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:52:35 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\rasl2tp.sys [129536] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:17 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\drivers\raspppoe.sys [92672] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:52:32 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\drivers\raspptp.sys [111104] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:25 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\drivers\rassstp.sys [83968] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:27:54 A . (.Microsoft Corporation - Redirected Drive Buffering SubSystem Driver.) -- C:\Windows\System32\drivers\rdbss.sys [309248] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:17:46 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\drivers\rdpbus.sys [24064] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:16:34 A . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\drivers\RDPCDD.sys [7680] =>.Microsoft Corporation
O58 - SDL:2010/11/20 12:06:41 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:16:34 A . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\drivers\RDPENCDD.sys [7680] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:16:35 A . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\drivers\RDPREFMP.sys [8192] =>.Microsoft Corporation
O58 - SDL:2010/11/20 12:03:42 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\drivers\rdpvideominiport.sys [20992] =>.Microsoft Corporation
O58 - SDL:2014/07/17 02:21:54 A . (.Microsoft Corporation - RDP Terminal Stack Driver.) -- C:\Windows\System32\drivers\rdpwd.sys [212480] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:33:53 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\drivers\rdyboost.sys [213888] =>.Microsoft Windows®
O58 - SDL:2016/12/21 14:52:50 A . (.VS Revo Group - Revo Uninstaller Minifilter.) -- C:\Windows\System32\drivers\revoflt.sys [40240] =>.VS Revo Group®
O58 - SDL:2009/07/14 01:06:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\Windows\System32\drivers\rfcomm.sys [158720] =>.Microsoft Corporation
O58 - SDL:2015/11/05 10:53:59 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\drivers\rmcast.sys [146944] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:09:48 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\drivers\RNDISMP.sys [41472] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:47 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\drivers\rootmdm.sys [11264] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:08:51 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\Windows\System32\drivers\rspndr.sys [76800] =>.Microsoft Corporation
O58 - SDL:2018/09/06 13:14:14 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\Windows\System32\drivers\RtsPer.sys [905224] =>.Realtek Semiconductor Corp.®
O58 - SDL:2018/06/12 18:38:38 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for Win7/Win8/Win8.1/Win.) -- C:\Windows\System32\drivers\rtsuvc.sys [3238336] =>.Realtek Semiconductor Corp.®
O58 - SDL:2010/11/20 14:33:54 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\drivers\sbp2port.sys [103808] =>.Microsoft Windows®
O58 - SDL:2010/04/12 09:55:00 A . (.PowerISO Computing, Inc. - PowerISO Virtual Drive.) -- C:\Windows\System32\drivers\scdemu.sys [91568] =>.Fenghua Lee®
O58 - SDL:2010/11/20 11:09:59 A . (.Microsoft Corporation - Microsoft Smart Card Reader Filter Driver.) -- C:\Windows\System32\drivers\scfilter.sys [29696] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:33:54 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\drivers\scsiport.sys [171392] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:37:42 A . (.Microsoft Corporation - SecureDigital Bus Driver.) -- C:\Windows\System32\drivers\sdbus.sys [109056] =>.Microsoft Corporation
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Rovi Corporation
O58 - SDL:2009/07/14 01:00:33 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\drivers\serenum.sys [23552] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:40 A . (.Microsoft Corporation - Serial Device Driver.) -- C:\Windows\System32\drivers\serial.sys [94208] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:20 A . (.Microsoft Corporation - Serial Mouse Filter Driver.) -- C:\Windows\System32\drivers\sermouse.sys [26624] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:01:01 A . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\drivers\sffdisk.sys [14336] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:01:03 A . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\drivers\sffp_mmc.sys [13824] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:34:00 A . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\drivers\sffp_sd.sys [14336] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:01:02 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\drivers\sfloppy.sys [16896] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:09:09 A . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
O58 - SDL:2018/06/26 19:48:36 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_AMDASF_Aux.sys [42024] =>.Synaptics Incorporated®
O58 - SDL:2018/06/26 19:48:38 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [42536] =>.Synaptics Incorporated®
O58 - SDL:2018/06/26 19:48:38 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel_Aux.sys [42536] =>.Synaptics Incorporated®
O58 - SDL:2009/07/14 01:00:35 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\drivers\smclib.sys [20992] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\drivers\spldr.sys [19008] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:48:43 A . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\drivers\spsys.sys [426496] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:28:09 A . (.Microsoft Corporation - Server driver.) -- C:\Windows\System32\drivers\srv.sys [468992] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:27:46 A . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\drivers\srv2.sys [413184] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:27:21 A . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\drivers\srvnet.sys [167936] =>.Microsoft Corporation
O58 - SDL:2011/07/16 06:31:22 A . (.ST Microelectronics - Disk Class Filter Driver for Accelerometer.) -- C:\Windows\System32\drivers\stdcfltn.sys [22128] =>.STMicroelectronics®
O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:33:57 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\drivers\storport.sys [189824] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:34:01 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\drivers\storvsc.sys [34688] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:06:18 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\drivers\stream.sys [68864] =>.Microsoft Corporation
O58 - SDL:2014/01/19 22:04:46 A . (.IDT, Inc. - IDT PC Audio.) -- C:\Windows\System32\drivers\stwrt64.sys [551936] =>.IDT, Inc.
O58 - SDL:2013/04/11 08:21:14 A . (.STMicroelectronics - STM Accelerometer Device Driver.) -- C:\Windows\System32\drivers\ST_Accel.sys [87776] =>.STMicroelectronics®
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\drivers\swenum.sys [12496] =>.Microsoft Windows®
O58 - SDL:2018/06/26 19:48:32 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\Windows\System32\drivers\SynRMIHID_Aux.sys [56872] =>.Synaptics Incorporated®
O58 - SDL:2018/06/26 19:48:30 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\Windows\System32\drivers\SynTP.sys [629800] =>.Synaptics Incorporated®
O58 - SDL:2016/04/21 10:10:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tap0901.sys [27136] =>.The OpenVPN Project
O58 - SDL:2009/07/14 01:01:04 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\drivers\tape.sys [29184] =>.Microsoft Corporation
O58 - SDL:2019/05/22 20:29:50 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tapexpressvpn.sys [36208] =>.ExprsVPN LLC®
O58 - SDL:2015/09/18 22:43:56 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\Windows\System32\drivers\taphss6.sys [42088] =>.AnchorFree Inc®
O58 - SDL:2018/07/24 15:50:08 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tapnordvpn.sys [35592] =>.TEFINCOM S.A.®
O58 - SDL:2018/09/12 15:43:52 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\Windows\System32\drivers\tapvyprvpn.sys [44896] =>.Golden Frog, GmbH®
O58 - SDL:2018/08/02 00:46:30 A . (.Microsoft Corporation - TCP/IP Driver.) -- C:\Windows\System32\drivers\tcpip.sys [1903552] =>.Microsoft Windows®
O58 - SDL:2010/11/20 11:51:48 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\drivers\tcpipreg.sys [45056] =>.Microsoft Corporation
O58 - SDL:2010/11/20 10:22:07 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\drivers\tdi.sys [26624] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:16:32 A . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\drivers\tdpipe.sys [15872] =>.Microsoft Corporation
O58 - SDL:2012/02/17 05:57:32 A . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\drivers\tdtcp.sys [23552] =>.Microsoft Corporation
O58 - SDL:2015/10/13 17:40:33 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:33:57 A . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\drivers\termdd.sys [63360] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:21:48 A . (.Microsoft Corporation - TPM Device Driver.) -- C:\Windows\System32\drivers\tpm.sys [38400] =>.Microsoft Corporation
O58 - SDL:2014/07/17 02:21:27 A . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\drivers\tssecsrv.sys [39936] =>.Microsoft Corporation
O58 - SDL:2010/11/20 12:07:05 A . (.Microsoft Corporation - Remote Desktop USB Hub Filter Driver.) -- C:\Windows\System32\drivers\TsUsbFlt.sys [59392] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:51:50 A . (.Microsoft Corporation - Microsoft Tunnel Interface Driver.) -- C:\Windows\System32\drivers\tunnel.sys [125440] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - MS AGPv3.5 Filter.) -- C:\Windows\System32\drivers\UAGP35.SYS [64080] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:26:11 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\drivers\udfs.sys [328192] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - ULi AGPv3.0 Filter for K8/9 Processor Platf.) -- C:\Windows\System32\drivers\ULIAGPKX.SYS [64592] =>.Microsoft Windows®
O58 - SDL:2010/11/20 11:44:37 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\drivers\umbus.sys [48640] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:52 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\drivers\umpass.sys [9728] =>.Microsoft Corporation
O58 - SDL:2013/02/12 05:12:05 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\drivers\usb8023.sys [19968] =>.Microsoft Corporation
O58 - SDL:2013/07/12 11:40:58 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\Windows\System32\drivers\USBAUDIO.sys [109824] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:44:05 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\drivers\USBCAMD2.sys [32896] =>.Microsoft Corporation
O58 - SDL:2013/11/27 02:41:15 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\drivers\usbccgp.sys [99840] =>.Microsoft Corporation
O58 - SDL:2013/07/12 11:41:12 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\drivers\usbcir.sys [100864] =>.Microsoft Corporation
O58 - SDL:2013/11/27 02:41:03 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\drivers\usbd.sys [7808] =>.Microsoft Corporation
O58 - SDL:2013/11/27 02:41:11 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\drivers\usbehci.sys [53248] =>.Microsoft Corporation
O58 - SDL:2013/11/27 02:41:37 A . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\drivers\usbhub.sys [343040] =>.Microsoft Corporation
O58 - SDL:2013/11/27 02:41:09 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbohci.sys [25600] =>.Microsoft Corporation
O58 - SDL:2013/11/27 02:41:11 A . (.Microsoft Corporation - USB 1.1 & 2.0 Port Driver.) -- C:\Windows\System32\drivers\usbport.sys [325120] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:38:18 A . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\drivers\usbprint.sys [25088] =>.Microsoft Corporation
O58 - SDL:2010/11/20 12:37:20 A . (.Microsoft Corporation - Windows USB Redirection Policy Manager.) -- C:\Windows\System32\drivers\usbrpm.sys [31744] =>.Microsoft Corporation
O58 - SDL:2013/07/03 05:40:12 A . (.Microsoft Corporation - USB Scanner Driver.) -- C:\Windows\System32\drivers\usbscan.sys [42496] =>.Microsoft Corporation
O58 - SDL:2013/08/29 02:29:52 A . (.Microsoft Corporation - USB Modem Driver.) -- C:\Windows\System32\drivers\usbser.sys [33280] =>.Microsoft Corporation
O58 - SDL:2016/02/03 19:07:06 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\drivers\USBSTOR.SYS [91648] =>.Microsoft Corporation
O58 - SDL:2013/11/27 02:41:06 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbuhci.sys [30720] =>.Microsoft Corporation
O58 - SDL:2013/07/12 11:41:35 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\drivers\usbvideo.sys [185344] =>.Microsoft Corporation
O58 - SDL:2019/04/16 09:22:54 A . (.Oracle Corporation - VirtualBox Support Driver.) -- C:\Windows\System32\drivers\VBoxDrv.sys [1023528] =>.Oracle Corporation®
O58 - SDL:2019/04/16 09:22:56 A . (.Oracle Corporation - VirtualBox NDIS 6.0 Host-Only Network Adapt.) -- C:\Windows\System32\drivers\VBoxNetAdp6.sys [236560] =>.Oracle Corporation®
O58 - SDL:2019/04/16 09:22:56 A . (.Oracle Corporation - VirtualBox NDIS 6.0 Lightweight Filter Driv.) -- C:\Windows\System32\drivers\VBoxNetLwf.sys [247952] =>.Oracle Corporation®
O58 - SDL:2019/04/16 09:22:58 A . (.Oracle Corporation - VirtualBox USB Driver.) -- C:\Windows\System32\drivers\VBoxUSB.sys [174736] =>.Oracle Corporation®
O58 - SDL:2019/04/16 09:22:58 A . (.Oracle Corporation - VirtualBox USB Monitor Driver.) -- C:\Windows\System32\drivers\VBoxUSBMon.sys [186696] =>.Oracle Corporation®
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\Windows\System32\drivers\vdrvroot.sys [36432] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vga.sys [29184] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vgapnp.sys [29184] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:34:00 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\drivers\vhdmp.sys [215936] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:38:51 A . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\drivers\videoprt.sys [129024] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:34:01 A . (.Microsoft Corporation - Virtual Machine Bus.) -- C:\Windows\System32\drivers\vmbus.sys [199552] =>.Microsoft Windows®
O58 - SDL:2010/11/20 10:57:13 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\drivers\VMBusHID.sys [21760] =>.Microsoft Corporation
O58 - SDL:2019/04/27 01:11:48 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\Windows\System32\drivers\vmci.sys [106304] =>.VMware, Inc.®
O58 - SDL:2019/05/04 23:29:20 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\Windows\System32\drivers\vmnet.sys [46096] =>.VMware, Inc.®
O58 - SDL:2019/05/04 23:29:20 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\Windows\System32\drivers\vmnetadapter.sys [46096] =>.VMware, Inc.®
O58 - SDL:2019/05/04 23:29:26 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\Windows\System32\drivers\vmnetbridge.sys [66576] =>.VMware, Inc.®
O58 - SDL:2019/05/04 23:29:20 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\Windows\System32\drivers\vmnetuserif.sys [44048] =>.VMware, Inc.®
O58 - SDL:2019/05/04 23:22:26 A . (.VMware, Inc. - VMware parallel port driver.) -- C:\Windows\System32\drivers\vmparport.sys [49216] =>.VMware, Inc.®
O58 - SDL:2010/11/20 10:57:33 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\drivers\vms3cap.sys [6656] =>.Microsoft Corporation
O58 - SDL:2010/11/20 14:34:01 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\Windows\System32\drivers\vmstorfl.sys [46464] =>.Microsoft Windows®
O58 - SDL:2018/11/02 05:21:58 A . (.VMware, Inc. - VMware USB driver.) -- C:\Windows\System32\drivers\vmusb.sys [60480] =>.VMware, Inc.®
O58 - SDL:2019/05/04 23:22:16 A . (.VMware, Inc. - VMware kernel driver.) -- C:\Windows\System32\drivers\vmx86.sys [99136] =>.VMware, Inc.®
O58 - SDL:2010/11/20 14:34:01 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\drivers\volmgr.sys [71552] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:34:01 A . (.Microsoft Corporation - Volume Manager Extension Driver.) -- C:\Windows\System32\drivers\volmgrx.sys [363392] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:34:02 A . (.Microsoft Corporation - Volume Shadow Copy Driver.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®
O58 - SDL:2019/04/27 01:11:54 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\Windows\System32\drivers\vsock.sys [93576] =>.VMware, Inc.®
O58 - SDL:2009/07/14 01:07:21 A . (.Microsoft Corporation - Virtual WiFi Bus Driver.) -- C:\Windows\System32\drivers\vwifibus.sys [24576] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:07:22 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\drivers\vwififlt.sys [59904] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:07:28 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\drivers\vwifimp.sys [17920] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:02:07 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\drivers\wacompen.sys [27776] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:52:37 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\drivers\wanarp.sys [88576] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:37:35 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\drivers\watchdog.sys [42496] =>.Microsoft Corporation
O58 - SDL:2011/06/23 07:43:04 A . (. - WebcamMax Capture.) -- C:\Windows\System32\drivers\wcmvcam64.sys [1071032] =>.Tenki Technology Co., Ltd.®
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\drivers\wd.sys [21056] =>.Microsoft Windows®
O58 - SDL:2013/06/25 23:55:52 A . (.Microsoft Corporation - Kernel Mode Driver Framework Runtime.) -- C:\Windows\System32\drivers\Wdf01000.sys [785624] =>.Microsoft Windows®
O58 - SDL:2012/07/26 05:55:47 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\drivers\WdfLdr.sys [54376] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:09:26 A . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\drivers\wfplwf.sys [12800] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:56 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\drivers\wimmount.sys [22096] =>.Microsoft Windows®
O58 - SDL:2010/11/20 14:33:38 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\drivers\winhv.sys [52096] =>.Microsoft Windows®
O58 - SDL:2010/11/20 11:43:56 A . (.Microsoft Corporation - Windows USB Class Driver BETA.) -- C:\Windows\System32\drivers\winusb.sys [41984] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:31:02 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\drivers\wmiacpi.sys [14336] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\drivers\wmilib.sys [16464] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:10:33 A . (.Microsoft Corporation - Winsock2 IFS Layer.) -- C:\Windows\System32\drivers\ws2ifsl.sys [21504] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:42:44 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFPf.sys [112128] =>.Microsoft Corporation
O58 - SDL:2010/11/20 11:43:32 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFRd.sys [172544] =>.Microsoft Corporation
O58 - SDL:2016/12/21 22:54:56 A . (...) -- C:\Windows\System32\ambakdrv.sys [51120] =>.CHENGDU AOMEI Tech Co., Ltd.®
O58 - SDL:2016/12/21 22:52:42 A . (...) -- C:\Windows\System32\ammntdrv.sys [171952] =>.CHENGDU AOMEI Tech Co., Ltd.®
O58 - SDL:2016/12/25 23:26:16 A . (...) -- C:\Windows\System32\ampa.sys [38320] =>.CHENGDU AOMEI Tech Co., Ltd.®
O58 - SDL:2017/09/01 18:12:38 A . (...) -- C:\Windows\System32\amwrtdrv.sys [38320] =>.CHENGDU AOMEI Tech Co., Ltd.®
O58 - SDL:2015/03/04 05:55:13 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [367552] =>.Microsoft Windows®
O58 - SDL:2015/07/30 17:56:07 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\Windows\System32\win32k.sys [3208192] =>.Microsoft Corporation
O58 - SDL:2016/12/25 23:26:16 A . (...) -- C:\Windows\SysWOW64\ampa.sys [38320] =>.CHENGDU AOMEI Tech Co., Ltd.®

---\\ File Associations Shell Spawning (12) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Event Viewer Snapin Launcher.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software AS®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Registry Editor.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O67 - Shell Spawning: <.scr> [HKCU\..\open\Command] (.Microsoft Corporation - Notepad.) -- C:\Windows\System32\notepad.exe =>.Microsoft Corporation

---\\ Start Menu Internet (16) - 0s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\Launcher.exe =>.Opera Software AS®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Initialization Utility.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software

---\\ Search Browser Infection (2) - 16s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ Search Svchost Services (32) - 2s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Application Experience Service.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Microsoft Smartcard Certificate Propagation.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - Server Service DLL.) -- C:\Windows\System32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Group Policy Client.) -- C:\Windows\System32\gpsvc.dll [794624] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - IKE extension.) -- C:\Windows\System32\IKEEXT.DLL [859648] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Windows Audio Service.) -- C:\Windows\System32\audiosrv.dll [680960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Remote Access AutoDial Manager.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Remote Access Connection Manager.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Dynamic Interface Manager.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - System Event Notification Service (SENS).) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Microsoft NAT Helper Components.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Microsoft® Windows(TM) Telephony Server.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Remote Desktop Session Host Server Remote C.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Windows Update Agent.) -- C:\Windows\System32\wuaueng.dll [2610688] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Background Intelligent Transfer Service.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Windows Shell Services Dll.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service that offers IPv6 connectivity over.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - Secondary Logon Service DLL.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Application Information Service.) -- C:\Windows\System32\appinfo.dll [70656] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - iSCSI Discovery service.) -- C:\Windows\System32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Multimedia Class Scheduler Service.) -- C:\Windows\System32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Remote Desktop Configuration service.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - Computer Browser Service DLL.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Microsoft EAPHost service.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Task Scheduler Service.) -- C:\Windows\System32\schedsvc.dll [1110016] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Problem Reports and Solutions.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [210432] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - Windows Shell Theme Service Dll.) -- C:\Windows\System32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - BDE Service.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Software installation Service.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation

---\\ Firewall Active Exception List (73) - 8s
O87 - FAEL: "{6E8C7344-D159-4F6D-A830-0F6046F4E8E9}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{B4D31DE1-E836-4182-A7C5-170716C8CC78}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{237F8138-5AA9-41D1-9703-455122B5BAAC}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Microsoft Office\Office12\outlook.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{08E8BA43-5E98-48D3-996E-FC79DD8CB7DE}" [In-None-P6-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\TOP-laptop\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{B072428B-2758-40BC-8540-4291A25AD5B3}" [In-None-P17-TRUE] .(.BitTorrent Inc. - µTorrent.) -- C:\Users\TOP-laptop\AppData\Roaming\uTorrent\uTorrent.exe =>.BitTorrent Inc®
O87 - FAEL: "{D1DBFE9F-010E-408F-A97C-C0C18831B302}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{CA5953F6-F772-4CB3-9661-F83275B7566C}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "TCP Query User{8334B121-F443-466C-B940-FD1C4F8CFB85}C:\program files (x86)\counter-strike 1.6\hl.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\counter-strike 1.6\hl.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{39EE6C83-1AFE-4167-B594-2F8631AA2893}C:\program files (x86)\counter-strike 1.6\hl.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\counter-strike 1.6\hl.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{D93819AF-E6F1-435B-81B3-CCE6583BC9B8}" [In-None-P6-TRUE] .(...) -- C:\Users\TOP-laptop\Desktop\EmbratoriaG6.5.1\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{DDAE8ABC-63AB-4FB6-A1DF-FF84CE7DDDDF}" [In-None-P17-TRUE] .(...) -- C:\Users\TOP-laptop\Desktop\EmbratoriaG6.5.1\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{1CE1585C-0A06-436F-8222-6646042F2884}" [In-None-P6-TRUE] .(...) -- J:\Users\PC\Desktop\embratoria\EmbratoriaG6.5.1\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{95A22A7F-8F70-4F0A-9669-CD039A1F4198}" [In-None-P17-TRUE] .(...) -- J:\Users\PC\Desktop\embratoria\EmbratoriaG6.5.1\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{F04A3076-D88C-4BDC-9F97-A20AB3FD0303}" [In-None-P6-TRUE] .(...) -- J:\Users\PC\Desktop\embratoria\EmbratoriaG6.2\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{A0410BE0-D9CB-4F92-81D2-2B4F0F021619}" [In-None-P17-TRUE] .(...) -- J:\Users\PC\Desktop\embratoria\EmbratoriaG6.2\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{E83A5DD7-3660-493F-AB04-B95C50D02BC9}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 12.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O87 - FAEL: "{821F54FF-6011-4A6F-8405-299B279C9D43}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 12.) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe =>.TeamViewer GmbH®
O87 - FAEL: "{A0487D43-E05E-43DA-AE45-B22E9613DAB1}" [In-None-P6-TRUE] .(.TeamViewer GmbH - TeamViewer 12.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
O87 - FAEL: "{E20AA25A-5575-4E12-8504-D3AFA5DA78E1}" [In-None-P17-TRUE] .(.TeamViewer GmbH - TeamViewer 12.) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe =>.TeamViewer GmbH®
O87 - FAEL: "{5DBA2445-7468-48A2-BE2C-E17670543861}" [In-None-P6-FALSE] .(.IBM Corp. - IBM SPSS WinWrap Basic IDE 24.0.) -- C:\Program Files\IBM\SPSS\Statistics\24\WinWrapIDE.exe =>.IBM Corp.
O87 - FAEL: "{3CC905DA-F18C-468F-B5BB-75464703105D}" [In-None-P17-FALSE] .(.IBM Corp. - IBM SPSS WinWrap Basic IDE 24.0.) -- C:\Program Files\IBM\SPSS\Statistics\24\WinWrapIDE.exe =>.IBM Corp.
O87 - FAEL: "{B30B480B-E803-4EE8-A958-D6C3CA9911E7}" [In-None-P6-FALSE] .(.IBM Corp. - IBM SPSS Statistics 24.0 Command.) -- C:\Program Files\IBM\SPSS\Statistics\24\stats.com =>.IBM Corp.
O87 - FAEL: "{29EAD76A-4847-46D8-8D2C-E21604D6EC6E}" [In-None-P17-FALSE] .(.IBM Corp. - IBM SPSS Statistics 24.0 Command.) -- C:\Program Files\IBM\SPSS\Statistics\24\stats.com =>.IBM Corp.
O87 - FAEL: "{915BF770-2192-40B2-ACD6-B49046B07C92}" [In-None-P6-FALSE] .(.IBM Corp. - IBM SPSS Statistics 24.0.) -- C:\Program Files\IBM\SPSS\Statistics\24\stats.exe =>.IBM Corp.
O87 - FAEL: "{EBECDDE7-5CC7-49A7-8ED8-333B555B30DA}" [In-None-P17-FALSE] .(.IBM Corp. - IBM SPSS Statistics 24.0.) -- C:\Program Files\IBM\SPSS\Statistics\24\stats.exe =>.IBM Corp.
O87 - FAEL: "{3DD4C984-A8CB-44AA-813F-05A954068E56}" [In-None-P6-TRUE] .(...) -- C:\Users\TOP-laptop\Desktop\EmbratoriaG6.5.2\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{678AF646-837A-4CEF-8115-CBA829667317}" [In-None-P17-TRUE] .(...) -- C:\Users\TOP-laptop\Desktop\EmbratoriaG6.5.2\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{54ED3D03-63FD-48B6-B2B3-A2BF38093863}" [In-None-P6-TRUE] .(...) -- D:\EmbratoriaG6.5.2\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{D98CEB77-0413-420B-AA58-6A845BAA4B27}" [In-None-P17-TRUE] .(...) -- D:\EmbratoriaG6.5.2\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{1F92158C-99C5-44C7-9CD4-8418BE18AF83}C:\program files (x86)\dzschool4.5\dzschool.main.exe" [In-None-P6-TRUE] .(.DZSoft-tech - DZSchool.) -- C:\program files (x86)\dzschool4.5\dzschool.main.exe
O87 - FAEL: "UDP Query User{F61F9C77-4A7E-4726-84F7-56FD8F811B62}C:\program files (x86)\dzschool4.5\dzschool.main.exe" [In-None-P17-TRUE] .(.DZSoft-tech - DZSchool.) -- C:\program files (x86)\dzschool4.5\dzschool.main.exe
O87 - FAEL: "{D74BBCF5-8E32-479E-B6C0-A9F0A98E6DAF}" [In-None-P6-TRUE] .(...) -- C:\Users\TOP-laptop\Desktop\EmbratoriaG7\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{4CA7F2FA-BE0B-4065-9584-E01DCBE59B03}" [In-None-P17-TRUE] .(...) -- C:\Users\TOP-laptop\Desktop\EmbratoriaG7\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{F3626B85-BDBF-473E-AB77-FF4F71F7C382}" [In-None-P6-TRUE] .(...) -- D:\EmbratoriaG7\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{3A8588A7-8403-4DFE-8F94-5721B32C7898}" [In-None-P17-TRUE] .(...) -- D:\EmbratoriaG7\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{066683DA-2CBD-4FCB-B325-28392361AC6A}" [In-None-P6-TRUE] .(...) -- E:\EmbratoriaG7\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{A0A6D7EA-BD36-4B87-A6C6-27FC6028C317}" [In-None-P17-TRUE] .(...) -- E:\EmbratoriaG7\libs.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{6C3EDB0C-E7BE-48E2-A23E-25668BA66CA7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\HideMyIP.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{3163B8DC-DBE6-469B-B95F-9A2CFCD53438}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\HideMyIpSrv.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{B9CD9A5C-DD81-4D0E-BA90-9D6CE2281D4E}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\hideipsh.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{1CDFE5B2-88DC-40E3-8366-B6D58FE5E209}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\hideipshp.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{29639B99-256D-483D-AC69-7D57F540BB85}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\HideMyIP.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{0CC884DC-2FD2-43D3-A3A4-761911B87FE9}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\HideMyIpSrv.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{E52BD7F2-3A02-4A4B-884C-B3BDD0E1BC53}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\hideipsh.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{5A87E5B2-9303-448D-AE3E-D2D8619A7783}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\hideipshp.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{AABECBB3-873B-4E1F-8BA2-913C8F0A79AD}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\HideMyIP.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{9B3B7E6D-AADF-42D2-9F23-995D9F86DD82}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\HideMyIpSrv.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{1AF1DE5A-6A91-4E2A-BECC-435F7C1FDA59}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\hideipsh.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{9396F417-472F-4F45-ADA4-2A88E28D4C38}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Hide My IP 6\hideipshp.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{1310714A-650E-4EE4-BA22-7BF617117586}E:\embratoria_g10\libsg10.exe" [In-None-P6-TRUE] .(...) -- E:\embratoria_g10\libsg10.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{50B0F914-C3A8-4462-BE49-96F0BF42A488}E:\embratoria_g10\libsg10.exe" [In-None-P17-TRUE] .(...) -- E:\embratoria_g10\libsg10.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{A71F71C2-B2F8-4120-90AE-BC8615445B0C}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{4BF0C4F3-ED69-4CBE-B4F8-8F5F031DB2F6}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\PANDORA.TV\PanService\KMPProcess.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{64A43D6B-A79D-49FE-BAE4-CFD3B5FA5587}" [In-None-P17-TRUE] .(.BeIn - BeIn Player.) -- C:\Users\TOP-laptop\AppData\Local\BeIn Player\nw.exe =>.VIACCESS SA®
O87 - FAEL: "{585B6C15-ED59-42DD-BCB1-365B7549C86F}" [In-None-P17-TRUE] .(.BeIn - BeIn Player.) -- C:\Users\TOP-laptop\AppData\Local\BeIn Player\BeInPlayerLauncher.exe =>.VIACCESS SA®
O87 - FAEL: "{8B573735-3F96-490F-86D2-9E42E31EECBD}" [In-None-P17-TRUE] .(...) -- D:\Program Files\Nox\bin\Nox.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{3EF56F1F-68CC-490B-85BA-5C82B43218CE}" [In-None-P17-TRUE] .(.BigNox Corporation - NoxVMHandle Frontend.) -- C:\Program Files (x86)\Bignox\BigNoxVM\RT\NoxVMHandle.exe =>.Beijing Duodian Online Science and Technology Co.,Ltd®
O87 - FAEL: "{CED44882-6E1C-44D0-818B-E071705BA40D}" [In-None-P6-TRUE] .(...) -- C:\Users\TOP-laptop\AppData\Local\Temp\Rar$EXa0.116\CPA Lander 5.4\CPA Lander\CPA Lander.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{E8D7E5DF-9963-49F8-8352-7E2F3D611D7C}" [In-None-P17-TRUE] .(...) -- C:\Users\TOP-laptop\AppData\Local\Temp\Rar$EXa0.116\CPA Lander 5.4\CPA Lander\CPA Lander.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{BBD74254-52CE-48ED-B04A-30B4C3022836}" [In-None-P17-TRUE] .(.Seed4.Me - Seed4.Me VPN Client.) -- C:\Program Files\Seed4.Me VPN\bin\Seed4.Me_VPN.exe =>.S4M Tech, Inc.®
O87 - FAEL: "{278C9BC5-32D7-4BB4-B40A-C564E9F34BAE}" [In-None-P6-TRUE] .(.LetsExtract Software - LetsExtract Email Studio.) -- C:\Program Files (x86)\LetsExtract Email Studio\LetsExtract.exe =>.LetsExtract Software
O87 - FAEL: "{88FB3433-5CEE-488A-8CD2-90D18BBA3F9D}" [In-None-P17-TRUE] .(.LetsExtract Software - LetsExtract Email Studio.) -- C:\Program Files (x86)\LetsExtract Email Studio\LetsExtract.exe =>.LetsExtract Software
O87 - FAEL: "{9B149D04-CA5E-4C8C-B341-F5CE8B0EA391}" [In-None-P6-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O87 - FAEL: "{4E3B84FD-97B0-47E5-8797-FC6AB8508127}" [In-None-P17-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.®
O87 - FAEL: "{4EC97C14-4005-4EDC-A205-0BDA37C538F5}" [In-None-P6-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG®
O87 - FAEL: "{4016A282-FA0B-462E-807C-1851C26B9DC6}" [In-None-P17-TRUE] .(.WIBU-SYSTEMS AG - CodeMeter Runtime Server.) -- C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe =>.WIBU-SYSTEMS AG®
O87 - FAEL: "{289738DC-564C-416A-9F90-A005A2B57543}" [In-None-P17-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
O87 - FAEL: "{513562F8-063F-4F3C-AA14-4364C6B82DB6}" [In-None-P17-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.®
O87 - FAEL: "{308FA941-4294-4BDE-95FC-60E30DB3D1DD}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
O87 - FAEL: "{2CBEF857-D622-4170-ABE6-FAD26C626AFB}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.®
O87 - FAEL: "{78DE775D-FD0A-49F8-B4ED-8B675E042BDB}" [In-None-P17-TRUE] .(.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\62.0.3331.43\opera.exe =>.Opera Software AS®
O87 - FAEL: "{57481DEE-9ED9-4725-B321-05B886C91C53}" [In-None-P17-TRUE] .(.Opera Software - Opera Internet Browser.) -- C:\Program Files (x86)\Opera\62.0.3331.72\opera.exe =>.Opera Software AS®
O87 - FAEL: "{CDA89570-82E4-4CC0-9534-F84D8EEE44CD}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®

---\\ Product Upgrade Codes (109) - 3s
O90 - PUC: "00002109110000000000000000F01FEC" [HKLM] . (.Microsoft Office Professional Plus 2007.) =>.Microsoft Corporation
O90 - PUC: "000021094400C0400000000000F01FEC" [HKLM] . (.Microsoft Office InfoPath MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "000021095100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Access MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "000021096100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Excel MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "000021098100C0400000000000F01FEC" [HKLM] . (.Microsoft Office PowerPoint MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "000021099100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Publisher MUI (French) 2007.) =>.bl.org
O90 - PUC: "00002109A100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Outlook MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109A20000000100000000F01FEC" [HKLM] . (.Microsoft Office Office 64-bit Components 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109A200C0400100000000F01FEC" [HKLM] . (.Microsoft Office Shared 64-bit MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109B100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Word MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109C200C0400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109E600C0400000000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F10010400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (Arabic) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F10031400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (Dutch) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F10070400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (German) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F10090400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (English) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F100A0C00000000000F01FEC" [HKLM] . (.Microsoft Office Proof (Spanish) 2007.) =>.Microsoft Corporation
O90 - PUC: "00002109F100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (French) 2007.) =>.Microsoft Corporation
O90 - PUC: "00006109C80000000000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component.) =>.Microsoft Corporation
O90 - PUC: "00006109C80010400000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation
O90 - PUC: "00006109C80090400000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation
O90 - PUC: "00006109DD0000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component 64-bit Registration.) =>.Microsoft Corporation
O90 - PUC: "00006109F80000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Licensing Component.) =>.Microsoft Corporation
O90 - PUC: "007B601F8FFB56033B50413DA64D5093" [HKLM] . (.Microsoft Visual C++ 2017 x64 Additional Runtime - 14.15.26706.) =>.Microsoft Corporation
O90 - PUC: "03B5234F0A8A90D40BEDC7BB84A5258D" [HKLM] . (.NordVPN.) -- C:\Windows\Installer\{F4325B30-A8A0-4D09-B0DE-7CBB485A52D8}\AI_PROPPATH_FILENAME_PERBUILD_NordVPN.exe =>.NordVPN
O90 - PUC: "06ACAE8AE44696143A33EAB18A8CFD57" [HKLM] . (.Al Tajweed Al Mosuer.) -- C:\Windows\Installer\{A8EACA60-644E-4169-A333-AE1BA8C8DF75}\ARPPRODUCTICON.exe
O90 - PUC: "0A2EDA60A64E48A42A1146FC05251058" [HKLM] . (.HSPA USB Modem.) -- C:\Windows\Installer\{06ADE2A0-E46A-4A84-A211-64CF50520185}\ARPPRODUCTICON.exe
O90 - PUC: "1007C6B46D7C017319E3B52CF3EC196E" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148.) =>.bl.org
O90 - PUC: "12B8D03ED28D112328CCF0A0D541598E" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation
O90 - PUC: "14CF62AFEC5123641A6CE9112947697B" [HKLM] . (.Adobe.) -- C:\Windows\Installer\{FA26FC41-15CE-4632-A1C6-9E11927496B7}\ARPPRODUCTICON.exe
O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "19AAD5B29C0E7034097B65889E018C49" [HKLM] . (.VMware Workstation.) =>.VMware
O90 - PUC: "1BD7783877B8CB54BA34B2CA220E390E" [HKLM] . (.Adobe Bridge CS4.) =>.Adobe Inc.
O90 - PUC: "1CE3E25CC8401E54D835010B6C056938" [HKLM] . (.Adobe Default Language CS4.) =>.Adobe Inc.
O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "2246038675C7F37388062DC64EABA251" [HKLM] . (.Microsoft Visual C++ 2017 x86 Additional Runtime - 14.10.25017.) =>.Microsoft Corporation
O90 - PUC: "27B4B248F8E926943B1CC124A2C54443" [HKLM] . (.Suite Shared Configuration CS4.) =>.Adobe Inc.
O90 - PUC: "2D404709D9C8D824BAB5DFC86AA83750" [HKLM] . (.EViews 9 (64-bit).) -- C:\Windows\Installer\{907404D2-8C9D-428D-AB5B-FD8CA68A7305}\ARPPRODUCTICON.exe
O90 - PUC: "4340C992E4F4F1439A61E470EA3BE597" [HKLM] . (.Microsoft Visual Studio Tools for Applications 2.0 Runtime.) =>.Microsoft Corporation
O90 - PUC: "4985BD061A5B26B40B3F66A9220CEED5" [HKLM] . (.Adobe Dynamiclink Support.) =>.Adobe Inc.
O90 - PUC: "4A59177C8BECEE83DB6D4CC64B95FEE6" [HKLM] . (.Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.15.26706.) =>.Microsoft Corporation
O90 - PUC: "4BEA594979BAED93C82408E6FE57CE7A" [HKLM] . (.Microsoft Visual Studio 2010 Tools for Office Runtime (x64).) =>.Microsoft Corporation
O90 - PUC: "4EA42A62D9304AC4784BF2468120110F" [HKLM] . (.Java 8 Update 211 (64-bit).) -- C:\Program Files\Java\jre1.8.0_211\\bin\javaws.exe =>.Sun Microsystems
O90 - PUC: "4F316817D2942724CA3C0DA4E80F8F38" [HKLM] . (.Kaspersky Internet Security.) -- C:\Windows\Installer\{718613F4-492D-4272-ACC3-D04A8EF0F883}\arp.ico =>.F-Secure
O90 - PUC: "504B98C60199E6446A9AB7510A59313D" [HKLM] . (.Oracle VM VirtualBox 6.0.6.) -- C:\Windows\Installer\{6C89B405-9910-446E-A6A9-7B15A09513D3}\IconVirtualBox =>.Oracle
O90 - PUC: "51EA26743A5EFB348822C1CF07BF41A7" [HKLM] . (.IBM SPSS Statistics 24.) -- C:\Windows\Installer\{4762AE15-E5A3-43BF-8822-1CFC70FB147A}\ARPPRODUCTICON.exe =>.IBM Corporation
O90 - PUC: "54F3D028EE6FFAA418FEEC12FF122D03" [HKLM] . (.Adobe Type Support CS4.) =>.Adobe Inc.
O90 - PUC: "55A6ACF78EF3DCD41ACB41DF4B2D5930" [HKLM] . (.Katatibe.) -- C:\Windows\Installer\{7FCA6A55-3FE8-4DCD-A1BC-14FDB4D29503}\logo.exe
O90 - PUC: "5E3C9B5EC98822F49A954F8B64DD7996" [HKLM] . (.ExpressVPN.) -- C:\Windows\Installer\{E5B9C3E5-889C-4F22-A959-F4B846DD9769}\app_icon.ico =>.ExpressVPN
O90 - PUC: "62DBF9290209B993A9A757D1160F9B24" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "65AFE4501CA24F848A38A08B89479B27" [HKLM] . (.Adobe Extension Manager CS4.) =>.Western Digital Technologies
O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org
O90 - PUC: "68AB67CA7DA76301B7448A0100000030" [HKLM] . (.Adobe Reader 8.1.0 - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-A81000000003}\SC_Reader.exe =>.Adobe Inc.
O90 - PUC: "6988E4A37E2C48044A4A8BDF81497E93" [HKLM] . (.Adobe XMP Panels CS4.) =>.Adobe Inc.
O90 - PUC: "6A48C39F6CD0FA2498AF77F6C7733735" [HKLM] . (.Adobe PDF Library Files CS4.) =>.Adobe Inc.
O90 - PUC: "6D5CED799EB2BB54FB5C72B458B184B6" [HKLM] . (.NordVPN network TAP.) -- C:\Windows\Installer\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}\appwindow.exe =>.Hewlett-Packard
O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "74302E92F26C756439E878A681B2761F" [HKLM] . (.HP System Event Utility.) -- C:\Windows\Installer\{29E20347-C62F-4657-938E-876A182B67F1}\_853F67D554F05449430E7E.exe =>.Hewlett-Packard
O90 - PUC: "7B7ED50B04B01144DBB422C2EAD2F851" [HKLM] . (.Adobe MotionPicture Color Files CS4.) =>.Adobe Inc.
O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "81E90534E670EF04FA83ACE54D005A9A" [HKLM] . (.Pixel Bender Toolkit.)
O90 - PUC: "838AE285991981530AC5BD9064F286CE" [HKLM] . (.Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.10.25017.) =>.Microsoft Corporation
O90 - PUC: "8520DAD7C5154DD39846DB1714990E7F" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation
O90 - PUC: "9573F1A22975B9648B59E79286F0201F" [HKLM] . (.Image Resizer for Windows (64 bit).)
O90 - PUC: "958306B22ACDDD5429FD8945E287AB8A" [HKLM] . (.IBM SPSS Amos 23.) -- C:\Windows\Installer\{2B603859-DCA2-45DD-92DF-98542E78BAA8}\ARPPRODUCTICON.exe =>.IBM Corporation
O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "A0A5CBD84C137C642B25B695E31AA178" [HKLM] . (.Software Updater.) -- C:\Windows\Installer\{8DBC5A0A-31C4-46C7-B252-6B593EA11A87}\icon.ico =>.Epson/Seico
O90 - PUC: "A43781617593DDA418999F376713908A" [HKLM] . (.Adobe Anchor Service CS4.) =>.Adobe Inc.
O90 - PUC: "A73129CD3A66FEF45A1BBF3233998C32" [HKLM] . (.adobe.) -- C:\Windows\Installer\{DC92137A-66A3-4FEF-A5B1-FB233399C823}\ARPPRODUCTICON.exe
O90 - PUC: "A7479A765F1EA9E418CC215B5D8BB1E6" [HKLM] . (.Adobe After Effects CS4 Third Party Content.) =>.Adobe Inc.
O90 - PUC: "A76E0F7639E8C2C42BD9744C282637A8" [HKLM] . (.Adobe Device Central CS4.) =>.Adobe Inc.
O90 - PUC: "AAAEC9EB960F1334FBF2D853F056404F" [HKLM] . (.Adobe Media Encoder CS4 Additional Exporter.) =>.Adobe Inc.
O90 - PUC: "ABA3F1145BA29974AA91A6FDA0F84742" [HKLM] . (.Adobe Setup.) =>.Adobe Inc.
O90 - PUC: "AC670C7BE621C79478425B985F0413FA" [HKLM] . (.HDD Regenerator.) -- C:\Windows\Installer\{B7C076CA-126E-497C-8724-B589F54031AF}\ARPPRODUCTICON.exe
O90 - PUC: "B06E8BE8D513BE448A69018D6820EE64" [HKLM] . (.Adobe Setup.) =>.Adobe Inc.
O90 - PUC: "BA359314F2C06B34693F31F3471339AF" [HKLM] . (.MalvaStyle Disk Repair.) -- C:\Windows\Installer\{413953AB-0C2F-43B6-96F3-133F743193FA}\ARPPRODUCTICON.exe
O90 - PUC: "BB15DDCF0DAC1BB47BFDEC681D307249" [HKLM] . (.Adobe Fonts All.) =>.Adobe Inc.
O90 - PUC: "BE893D49DF2D1DF48B4C9562538E1A19" [HKLM] . (.Adobe CMaps CS4.) =>.Adobe Inc.
O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C2B4A4AA56408FC3AB67720A728DCABA" [HKLM] . (.Microsoft Visual Studio Tools for Applications 2.0 - ENU.) -- c:\Windows\Installer\{AA4A4B2C-0465-3CF8-BA76-27A027D8ACAB}\VSTA_ARP_Icon =>.Microsoft Corporation
O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C5BA57CC0112F7A4FA250768082DF28E" [HKLM] . (.Photoshop Camera Raw.) =>.Adobe Inc.
O90 - PUC: "C618CE54177041C4EAD6271D5B874F8C" [HKLM] . (.Adobe After Effects CS4.) =>.Adobe Inc.
O90 - PUC: "C76A0C53701F00744A0398656A293C4D" [HKLM] . (.Article Rewriter Wizard.)
O90 - PUC: "CB50DBA3456D40BF2BEC3BD3333EBAD0" [HKLM] . (.Market Samurai.)
O90 - PUC: "CE042E44422287048AB8C2EED00361FE" [HKLM] . (.Adobe After Effects CS4 Presets.) =>.Adobe Inc.
O90 - PUC: "CE33E4BB18185864697F584592D3CEA6" [HKLM] . (.Adobe Output Module.) =>.Adobe Inc.
O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" [HKLM] . (.Microsoft Silverlight.) -- c:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon =>.Microsoft Corporation
O90 - PUC: "DA93DA4DE19033D4BBB2956FCF8BDA3C" [HKLM] . (.Microsoft SQL Server Compact 3.5 SP2 x64 ENU.) -- C:\Windows\Installer\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}\ProductIcon =>.Microsoft Corporation
O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "DD18351B79FFDCF48A18DED40B795500" [HKLM] . (.Adobe Color Video Profiles AE CS4.) =>.Adobe Inc.
O90 - PUC: "E4C8035058276604AB3EB605ADE67D55" [HKLM] . (.Adobe Update Manager CS4.) =>.Western Digital Technologies
O90 - PUC: "E5E545F659542E11396B8BCAF6798BE8" [HKLM] . (.Google Earth.) -- C:\Windows\Installer\{6F545E5E-4595-11E2-93B6-B8AC6F97B88E}\ARPPRODUCTICON.exe =>.Google Inc.
O90 - PUC: "E8B09BEDBCD0EC849BE088242ADB46E3" [HKLM] . (.Adobe Media Encoder CS4.) =>.Adobe Inc.
O90 - PUC: "E8EBCC90469BFE03EA485673BA14799F" [HKLM] . (.Microsoft .NET Framework 4.7.2.) =>.Microsoft Corporation
O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17.) =>.bl.org
O90 - PUC: "F2303B54CC22DC04E979D47A90F55A2A" [HKLM] . (.PuTTY release 0.70 (64-bit).) -- C:\Windows\Installer\{45B3032F-22CC-40CD-9E97-4DA7095FA5A2}\installericon.exe =>.Simon Tatham
O90 - PUC: "F3B2FE8F543C02F4F84E97A10233C35D" [HKLM] . (.Adobe ExtendScript Toolkit CS4.) =>.Adobe Inc.
O90 - PUC: "F4339ACB9C6B56F4A937CAA523A9D440" [HKLM] . (.PlayReady PC Runtime amd64.) =>.Microsoft Corporation
O90 - PUC: "FBA33E01BF7D74F409A0973758A44BA5" [HKLM] . (.Adobe AIR.) =>.Adobe Inc.
O90 - PUC: "FDB61929BC47C9746BE923AEBC70F4EF" [HKLM] . (.Image Resizer for Windows.)
O90 - PUC: "0EF38D66897D83B468EFBF8451E1A5FE" [HKCU] . (.FARO LS 1.1.502.0 (64bit).)
O90 - PUC: "32154613A731F4A40A5E5695D4AE4A96" [HKCU] . (.Article Marketing Robot.)
O90 - PUC: "FA892FCC1EC962B42B1584E6893A7498" [HKCU] . (.Windows 7 USB/DVD Download Tool.) =>.Microsoft Corporation
O90 - PUC: "0EF38D66897D83B468EFBF8451E1A5FE" [HKU] . (.FARO LS 1.1.502.0 (64bit).)
O90 - PUC: "32154613A731F4A40A5E5695D4AE4A96" [HKU] . (.Article Marketing Robot.)
O90 - PUC: "FA892FCC1EC962B42B1584E6893A7498" [HKU] . (.Windows 7 USB/DVD Download Tool.) =>.Microsoft Corporation

---\\ Windows Installer Scan (60) - 57s
[MD5.7DD1B9E1564A4501C2E4D49ED11A959B] [WIS][2008/09/03 02:17:24] (.Adobe Systems, Inc..) -- C:\Windows\Installer\10742e4.msi [3769856] =>.Adobe Systems, Inc.
[MD5.92B79A5AC1F029CADE5BCD5A5EA40D1E] [WIS][2008/09/03 02:17:16] (.Adobe Systems, Inc..) -- C:\Windows\Installer\10742f4.msi [3222528] =>.Adobe Systems, Inc.
[MD5.268E9C4CBEC76709F776514CD5FCE3B1] [WIS][2018/09/23 21:01:23] (.NordVPN - NordVPN network TAP.) -- C:\Windows\Installer\1186e264.msi [1507840] =>.NordVPN
[MD5.277A9CA4400243121E8147F96347025E] [WIS][2019/05/22 20:33:32] (.ExpressVPN - ExpressVPN.) -- C:\Windows\Installer\118f975a.msi [25575424] =>.ExpressVPN
[MD5.EE72EA01A73BD2791FBB04B12DC6D431] [WIS][2017/02/17 16:45:31] (.IBM Corp - IBM SPSS Statistics 24.) -- C:\Windows\Installer\15674f0.msi [894730632] =>.IBM Corp
[MD5.6E73A265A05A5CD87C00E42B68A33116] [WIS][2017/05/01 23:01:27] (.HSPA - HSPA USB Modem.) -- C:\Windows\Installer\15d553ff.msi [7503360] =>.HSPA
[MD5.3B81966052A27B9C676FFB0C12CD9C49] [WIS][2019/04/25 21:45:07] (.Alliance Software Pty Ltd - Market Samurai.) -- C:\Windows\Installer\15fdb257.msi [98304] =>.Alliance Software Pty Ltd
[MD5.EDCC229F9DE77F003CCE756188CCE5C8] [WIS][2019/05/22 08:09:18] (.NordVPN - NordVPN.) -- C:\Windows\Installer\175d8be4.msi [2309120] =>.NordVPN
[MD5.0BDF1A37BD179C8BCE0A9602D7149F08] [WIS][2017/05/02 19:28:06] (.Adobe Systems Incorporated.) -- C:\Windows\Installer\1772671.msi [93322752] =>.Adobe Systems Incorporated
[MD5.655C43A192BD8B705F2B707CA1FD5651] [WIS][2015/12/04 18:15:28] (.SPSS - Amos Structural Equation Modeling.) -- C:\Windows\Installer\17df9c3.msi [6471680] =>.SPSS
[MD5.1E4BB281FF74AC55598853EC1052A778] [WIS][2015/03/13 04:37:00] (..) -- C:\Windows\Installer\186befc.msi [7555072]
[MD5.45B7F22163D089C3B783555040F060BD] [WIS][2017/02/17 17:39:50] (.IHS Global Inc. - Blank Project Template .) -- C:\Windows\Installer\1888b86.msi [205257728]
[MD5.202B7EC9D41CDA7ECC9A5DB38301AB9F] [WIS][2019/05/15 17:46:08] (.Google LLC - Google Update Helper.) -- C:\Windows\Installer\1a17d77b.msi [40960] =>.Google LLC
[MD5.0F504326FB275EBF1DB49E58DAABEDB9] [WIS][2018/05/26 22:49:48] (.Brice Lambson - Image Resizer for Windows.) -- C:\Windows\Installer\1eb76879.msi [184320] =>.Brice Lambson
[MD5.4E4C363EE242EED710D656E83F708BFD] [WIS][2018/05/26 22:48:16] (.Brice Lambson - Image Resizer for Windows (64 bit).) -- C:\Windows\Installer\1eb76880.msi [40960] =>.Brice Lambson
[MD5.726C9920D58DAB13C6C7FDB97F3C0709] [WIS][2017/10/18 17:27:33] (.Adobe Systems Incorporated.) -- C:\Windows\Installer\20cafbae.msi [93134848] =>.Adobe Systems Incorporated
[MD5.AB338C0582E92EB727C0B82D9E2AC91C] [WIS][2019/05/26 14:38:18] (.VMware, Inc. - VMware Workstation.) -- C:\Windows\Installer\23896b6b.msi [506712064] =>.VMware, Inc.
[MD5.983D8C71DD6EEED78012112B85734318] [WIS][2018/10/26 17:34:28] (.Simon Tatham - PuTTY release 0.70 installer.) -- C:\Windows\Installer\2433c0ef.msi [3048960] =>.Simon Tatham
[MD5.7ECBCD2BC9DB9A80BACB6AD77E6B764F] [WIS][2018/11/25 23:43:09] (.Kaspersky Lab - Kaspersky Internet Security.) -- C:\Windows\Installer\2f748a.msi [13561950] =>.Kaspersky Lab
[MD5.B5B1569A848E852F51225C220AD6D7CE] [WIS][2019/05/31 17:38:48] (.Sufegmar - Katatibe.) -- C:\Windows\Installer\490a741.msi [1324032]
[MD5.BE1EDECD114D816589C42FF4B022AED6] [WIS][2016/05/18 17:22:56] (.© Copyright 2015 HP Development Company, L.P..) -- C:\Windows\Installer\4910f9.msi [4710912]
[MD5.E49AB7DCC303BA518F83122C11EF9C4F] [WIS][2018/12/27 12:32:53] (.Adobe Systems Incorporated - Adobe AIR Installer.) -- C:\Windows\Installer\561d05d.msi [45056] =>.Adobe Systems Incorporated
[MD5.1A4296A140D8E1D84F04820BBDCC5D77] [WIS][2017/03/26 15:50:06] (.CJSecure Pty Ltd - InstallShield® 2010 - Premier Edition with .) -- C:\Windows\Installer\653fc2.msi [3397120] =>.CJSecure Pty Ltd
[MD5.D30A1BAC50F4CE405F8D21C14289189B] [WIS][2013/02/08 09:00:00] (.Article Marketing Robot.) -- C:\Windows\Installer\6dc1ba1.msi [15254016]
[MD5.114D319648CA2EF713FFBFBBBDA1E9DD] [WIS][2007/05/11 12:32:57] (.Adobe Systems Incorporated - ADOBER~1.0Adobe Reader 8.) -- C:\Windows\Installer\7cf28.msi [3612672] =>.Adobe Systems Incorporated
[MD5.DEC8EF5C9573103EF3FBA33BC8F2ABA8] [WIS][2012/12/14 03:25:57] (.Google - Google Earth.) -- C:\Windows\Installer\7cff9.msi [1317888] =>.Google
[MD5.02AA0265E4B4B042709643BCEE86C83E] [WIS][2019/06/26 00:47:09] (.Oracle Corporation - Java SE Runtime Environment 8 Update 211.) -- C:\Windows\Installer\807bd31.msi [76595200] =>.Oracle Corporation
[MD5.F36AB0EA3BBD6ADB6FB37B93B7F1AA60] [WIS][2018/12/13 00:16:23] (.ArticleRewriterWizard.com - Article Rewriter Wizard.) -- C:\Windows\Installer\bfe78d9.msi [178176]
[MD5.2E8815E004A2587B5001BB04933A6F6E] [WIS][2019/04/23 23:26:57] (.Oracle Corporation - Oracle VM VirtualBox 6.0.6 installation pac.) -- C:\Windows\Installer\c0e5ce4.msi [51773440] =>.Oracle Corporation
[MD5.3A0FD916F7DE0B9847B7082A753C14B4] [WIS][2017/09/03 14:54:34] (.Dmitriy Primochenko - HDD Regenerator.) -- C:\Windows\Installer\d43fd4.msi [6985216] =>.Dmitriy Primochenko
[MD5.80927A98C1511B46B1733272A96241AF] [WIS][2013/12/04 21:31:26] (.FARO Scanner Production - FARO LS.) -- C:\Windows\Installer\d85090.msi [18513920] =>.FARO Scanner Production
[MD5.69E547875E9515C9F76BD5FACBE7E992] [WIS][2008/09/12 03:00:17] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9a1.msi [3782588] =>.Adobe Systems, Inc.
[MD5.2FDEB67846625731ABBC4E527585497A] [WIS][2008/08/07 23:44:04] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9a8.msi [3106816] =>.Adobe Systems, Inc.
[MD5.39C11C6DE94152B1E9A20DD1F4AF7CCB] [WIS][2008/07/31 03:39:18] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9af.msi [3181568] =>.Adobe Systems, Inc.
[MD5.31FDBA0DA2B8B1575F11D9E454F1BC8A] [WIS][2008/08/21 23:56:06] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9b6.msi [5404672] =>.Adobe Systems, Inc.
[MD5.38CF20D9AD4D65018629216CCCE25326] [WIS][2008/08/26 00:45:10] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9bd.msi [5426688] =>.Adobe Systems, Inc.
[MD5.FC4DED0449053FBFFEE8E20E6DA8F68B] [WIS][2008/08/29 03:57:06] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9c4.msi [3737088] =>.Adobe Systems, Inc.
[MD5.6D0216CE848E7EC52BDBC726C3F4898A] [WIS][2008/08/25 18:58:34] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9cb.msi [3146240] =>.Adobe Systems, Inc.
[MD5.EB5C50B4F5457B9D15BC8441A237415C] [WIS][2008/07/28 23:13:46] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9d3.msi [3108864] =>.Adobe Systems, Inc.
[MD5.7B08D746376F9352E519E1AF6992F883] [WIS][2008/08/31 02:15:06] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9da.msi [3772416] =>.Adobe Systems, Inc.
[MD5.B0D5FBC588160515AE677E76AB869B99] [WIS][2008/07/31 20:53:16] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9e1.msi [5470728] =>.Adobe Systems, Inc.
[MD5.6D44BC1D06C1BA6DCD2202D8AF50E321] [WIS][2008/08/01 20:13:08] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9e8.msi [3129344] =>.Adobe Systems, Inc.
[MD5.4AEAF773C77752BEEDC92C4ECE160EF5] [WIS][2008/07/28 23:47:22] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9ef.msi [3122688] =>.Adobe Systems, Inc.
[MD5.B1B94F639B998D9E338E24B720F3595F] [WIS][2008/07/29 00:03:28] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9f6.msi [3119104] =>.Adobe Systems, Inc.
[MD5.CEDACE5BF12FD1037A27A61010EA9877] [WIS][2008/08/13 19:16:50] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbb9fd.msi [3124736] =>.Adobe Systems, Inc.
[MD5.F5ADD63C35C1DAC344E15989CD1C5D53] [WIS][2008/08/07 19:29:28] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbba0c.msi [3237376] =>.Adobe Systems, Inc.
[MD5.2BABA3387E3CD8AD8F8F9BDF8D68E5FE] [WIS][2008/08/12 15:09:44] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbba13.msi [3110400] =>.Adobe Systems, Inc.
[MD5.949FA045823F0C795F4859F484F8183E] [WIS][2008/08/06 18:52:42] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbba1b.msi [6025728] =>.Adobe Systems, Inc.
[MD5.9F3F23C8E77C09DB278002C253AF666C] [WIS][2008/07/28 23:17:32] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbba22.msi [3131904] =>.Adobe Systems, Inc.
[MD5.5D858CF970B4584D84E4FC47C1EB7ADA] [WIS][2008/08/26 22:50:54] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbba29.msi [3152896] =>.Adobe Systems, Inc.
[MD5.7977A52C4195D092F10EB5E98A74CAF1] [WIS][2008/07/28 22:58:42] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbba3a.msi [3114496] =>.Adobe Systems, Inc.
[MD5.179955209DD94DA7EEAB4EB7E618A57C] [WIS][2008/08/01 00:04:40] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbba42.msi [4612096] =>.Adobe Systems, Inc.
[MD5.EF81676AF433096D2C0D4B3C4A259E62] [WIS][2008/08/26 11:35:30] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbba4b.msi [5793280] =>.Adobe Systems, Inc.
[MD5.6B5B021AFA9B91A0D14FFE6876D96AD8] [WIS][2008/08/29 03:42:46] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbba52.msi [3319296] =>.Adobe Systems, Inc.
[MD5.F46C5303BA35EB4C51C33AC8962683C7] [WIS][2008/09/03 10:32:44] (.Adobe Systems, Inc..) -- C:\Windows\Installer\ecbba7d.msi [5676032] =>.Adobe Systems, Inc.
[MD5.13EFF559A3BB478F83A579587774B26D] [WIS][2011/07/23 06:46:00] (.Al-kamal - InstallShield® 2009 - Premier Edition 15.) -- C:\Windows\Installer\f6bfc.msi [848384]
[MD5.EA4886B1B22F73D7C9235860D622AB03] [WIS][2019/06/05 17:37:45] (.Kaspersky Lab.) -- C:\Windows\Installer\19c0dc4.msp [4653056] =>.Kaspersky Lab
[MD5.83CA600132BF2A3DB42359BD1CAAD7C8] [WIS][2019/04/15 10:47:11] (.Kaspersky Lab.) -- C:\Windows\Installer\2a71f46.msp [19210240] =>.Kaspersky Lab
[MD5.67F102D351190B79F7A9D733D880B929] [WIS][2018/12/07 10:42:33] (.Kaspersky Lab.) -- C:\Windows\Installer\2b801.msp [17375232] =>.Kaspersky Lab

---\\ FEATURE CONTROLE. (266) - 0s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_96DPI_PIXEL]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_AJAX_CONNECTIONEVENTS]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_CROSS_PROTOCOL_FILE_NAVIGATION]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:FoxitReader.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:MicroNicheFinder.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:msoasb.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_NAVIGATION_SOUNDS]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_GPU_RENDERING]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST_BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IVIEWOBJECTDRAW_DMLT9_WITH_GDI]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:winwordd.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:winproj.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:onenote.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:visio.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:mspub.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:msaccess.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_NINPUT_LEGACYMODE]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:sllauncher.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SPELLCHECKING]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_STATUS_BAR_THROTTLING]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBSOCKET]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XDOMAINREQUEST]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XMLHTTP]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OUTLOOK.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:clview.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate

---\\ Additional Scan (O88) (168) - 49s
HKLM\SYSTEM\CurrentControlSet\Services\ManyCam Service =>ManyCam LLC
C:\ProgramData\ManyCam\Service\ManyCamService.exe =>ManyCam LLC
HKLM\SYSTEM\CurrentControlSet\Services\mcaudrv_simple =>ManyCam LLC
C:\Windows\System32\drivers\mcaudrv_x64.sys =>ManyCam LLC
C:\Windows\System32\Tasks\R@1n-KMS\Office16ProPlus =>HackTool.WinActivator
C:\Windows\System32\Tasks\R@1n-KMS\Office16ProjectPro =>HackTool.WinActivator
C:\Windows\System32\Tasks\R@1n-KMS\Office16VisioPro =>HackTool.WinActivator
C:\Program Files (x86)\DriverPack Notifier =>.SUP.DriverPack
C:\Program Files (x86)\Windows Loader =>HackTool.WinActivator
C:\ProgramData\InstallMate =>Adware.Tarma
C:\Users\TOP-laptop\AppData\Roaming\DriverPack Notifier =>.SUP.DriverPack
C:\Users\TOP-laptop\AppData\Roaming\DRPSu =>.SUP.DriverPack
C:\Users\TOP-laptop\AppData\Local\MSfree Inc =>HackTool.WinActivator
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign000b29d8ad35c6df =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign01e4491d0d5558b3 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign057ded7c75cc795b =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign08d8e8e4527e2212 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign13bcf6b407c112dd =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign166779d41007629d =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign17c7b2f10839c7e7 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign21252d09e25cc6fd =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign221ff1cb2ed7ab02 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign29782588b331f58a =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign2bd07f00fae863c7 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign2e0232ec2a4ffb65 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign2e6b0f8008e2dcf9 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign2f665485cadcf8c1 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign3334d053a5f0f6a7 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign33f1bff494f502f4 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign3757b5910f0f466d =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign43d581a2cf10ea6e =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign45d4709665f2af11 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign4b58d2fec18be587 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign4edf07a343803724 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign557ac0b64e4b708d =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign568063183babc190 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign5903bf7e17fb849b =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign59dbccdd83b1cf15 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign605589c0f0d4b237 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign662fdc6cbabf4297 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign6889d2d6a55f2a0a =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign69cb8889f74b5865 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign6b4db92b8ba53eec =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign7cf8a250c833ba72 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign80bfbdcc8733ed54 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign8432b1f7940c5412 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign851eb57bf7f57722 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign87b05803d7edd3d3 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign8c98b8498c41f805 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign8d21428bd2cc858f =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign9ef48041c08a2f72 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsign9f0c540d41182e38 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsigna04883a2947ae81a =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsigna675f8cd51630ba6 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignadc0f192c0fcef6c =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignb42b9754ad26f492 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignb8b6d0c4c9364a76 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignbd710bcc37e05a74 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignbf55ee9f6d8a931d =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignc0a3a770024b21a3 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignc24de0d4859326e1 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignd10212b1b62ac31d =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignd2b289fb78291d86 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignd4070325ae1314c9 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsigndd7f5c5ddbcc4fd9 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsigne0606e24af7aef63 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsigne5aff92381bbc756 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsigne673af57da5be9f8 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignea92b729209bec4c =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsigneaa0076c4f816bde =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignf5bbc017ab2c5c64 =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Tempzxpsignfcf01b55fe5e78bd =>.SUP.Temporary
C:\Users\TOP-laptop\AppData\Local\Visicom Media =>.SUP.VisicomMedia
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\VMDiskMenuHandler =>.SUP.Orphan
C:\Users\TOP-laptop\AppData\Roaming\uTorrent\uTorrent.exe =>BitTorrent (P2P)
HKLM\SOFTWARE\Wow6432Node\Microsoft\Shared Tools\MSConfig\startupreg\uTorrent =>BitTorrent (P2P)
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_microsoft-net-framework-4.en.softonic.com_0.localstorage =>.SUP.Softonic
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_microsoft-net-framework-4.en.softonic.com_0.localstorage-journal =>.SUP.Softonic
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\004 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\005 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\006 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\007 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\009 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\010 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\011 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\012 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\013 =>.SUP.Temporary.Chrome
C:\Users\TOP-laptop\AppData\Local\Google\Chrome\User Data\Default\File System\014 =>.SUP.Temporary.Chrome
HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\drp.su =>.SUP.DriverPack
HKCU\Software\drpsu =>.SUP.DriverPack
HKCU\Software\undefined =>.SUP.Downloader
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\drp.su =>.SUP.DriverPack
HKLM\SOFTWARE\Wow6432Node\drpsu =>.SUP.DriverPack
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Desktop\SketchUpMake-en-x64.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\CyberGhost 6\CyberGhost.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\CyberGhost 6\install_crack_RUN_AS_ADMIN.cmd =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Desktop\Selfishnet win 7\Selfishnet win 7\SelfishNetv0.2-beta_vista.exe =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\PROGRA~2\MICROS~1\Office12\OIS.EXE =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\enbratoria g7\EmbratoriaG7\libs.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\AppData\Roaming\uTorrent\uTorrent.exe =>BitTorrent (P2P)
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Common Files\Microsoft Shared\MSEnv\VSLauncher.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\enbratoria g7\EmbratoriaG7\EmbratoriaG7.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\embratoria_g10\libsg10.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\Embratoria_G10\EmbratoriaG10.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\AutoClicker.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\kis18.0.0.405abcden_ar_13370.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Office12\INFOPATH.EXE =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:G:\rubyinstaller-devkit-2.4.4-2-x64.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\AppData\Local\Temp\Rar$EXa0.904\Diabolic Traffic Bot v6.30 Full Edition Cracked\TrafficBot Full Edition.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\rufus-3.3p.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\BlackBullet 2.0.2 Cracked\BlackBullet2.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\BlackBullet 2.1.6 Cracked\BlackBullet INI To BBC Converter.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\AppData\Local\Temp\Rar$EXa0.116\CPA Lander 5.4\CPA Lander\CPA Lander.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IDMActivator-mrelhlawany\Uninstall.exe =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\AppData\Local\Temp\Rar$EXa0.452\Auto Blog Samurai\AutoBlog Samurai Pro\Auto Blogging.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:G:\hdtunepro_570_trial.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\nox_setup_v6.2.6.0_full_intl.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\VMware\VMware Player\vmplayer.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\patch.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\IPTV Smarters_V1.4_3.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\SFTPMSI.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\setup.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\1and1MailFree5.0.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\multilogin-4.1-windows_x86_32_setup.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\RecoverMyFiles-64bit-(v6.3.2.2552).exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\hma_pro_vpn_setup.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Desktop\SketchUpMake-en-x64.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\CyberGhost 6\CyberGhost.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\CyberGhost 6\install_crack_RUN_AS_ADMIN.cmd =>.Unsigned
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Desktop\Selfishnet win 7\Selfishnet win 7\SelfishNetv0.2-beta_vista.exe =>.Unsigned
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\PROGRA~2\MICROS~1\Office12\OIS.EXE =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\enbratoria g7\EmbratoriaG7\libs.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\AppData\Roaming\uTorrent\uTorrent.exe =>BitTorrent (P2P)
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Common Files\Microsoft Shared\MSEnv\VSLauncher.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\enbratoria g7\EmbratoriaG7\EmbratoriaG7.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\embratoria_g10\libsg10.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\Embratoria_G10\EmbratoriaG10.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\AutoClicker.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\kis18.0.0.405abcden_ar_13370.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Microsoft Office\Office12\INFOPATH.EXE =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:G:\rubyinstaller-devkit-2.4.4-2-x64.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\AppData\Local\Temp\Rar$EXa0.904\Diabolic Traffic Bot v6.30 Full Edition Cracked\TrafficBot Full Edition.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\rufus-3.3p.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\BlackBullet 2.0.2 Cracked\BlackBullet2.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\BlackBullet 2.1.6 Cracked\BlackBullet INI To BBC Converter.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\AppData\Local\Temp\Rar$EXa0.116\CPA Lander 5.4\CPA Lander\CPA Lander.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\IDMActivator-mrelhlawany\Uninstall.exe =>.Unsigned
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\AppData\Local\Temp\Rar$EXa0.452\Auto Blog Samurai\AutoBlog Samurai Pro\Auto Blogging.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:G:\hdtunepro_570_trial.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\nox_setup_v6.2.6.0_full_intl.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\VMware\VMware Player\vmplayer.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\patch.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\IPTV Smarters_V1.4_3.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\SFTPMSI.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\setup.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\1and1MailFree5.0.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\multilogin-4.1-windows_x86_32_setup.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\RecoverMyFiles-64bit-(v6.3.2.2552).exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-3714222476-1762379400-2213293627-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\TOP-laptop\Downloads\Programs\hma_pro_vpn_setup.exe =>.SUP.Orphan.MUICache

---\\ Summary of the elements found (14) - 0s
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>ManyCam LLC
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/03/14/superfluous-trotux/ =>.SUP.Trotux
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P)
https://nicolascoolman.eu/2018/07/04/sup-driverpack/ =>.SUP.DriverPack
https://nicolascoolman.eu/2017/03/18/superfluous-visicommedia/ =>.SUP.VisicomMedia
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider
https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader
https://nicolascoolman.eu/2017/09/09/adware-tarma/ =>Adware.Tarma
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Softonic
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Orphan.MUICache

~ Unselected Options: O82,
~ End of the scan, 16408 items in 10mn45s (3490)(0)

Publicité


Signaler le contenu de ce document

Publicité