{"version":"1.1","schema_version":"1.1.0","plugin_version":"1.1.2","url":"https://tutos-gameserver.fr/2020/04/24/infection-possible-aide-a-la-suppression-des-virus-chevaux-de-troie-logiciels-espions-et-programmes-malveillants-bien-choisir-son-serveur-d-impression/","llm_html_url":"https://tutos-gameserver.fr/2020/04/24/infection-possible-aide-a-la-suppression-des-virus-chevaux-de-troie-logiciels-espions-et-programmes-malveillants-bien-choisir-son-serveur-d-impression/llm","llm_json_url":"https://tutos-gameserver.fr/2020/04/24/infection-possible-aide-a-la-suppression-des-virus-chevaux-de-troie-logiciels-espions-et-programmes-malveillants-bien-choisir-son-serveur-d-impression/llm.json","manifest_url":"https://tutos-gameserver.fr/llm-endpoints-manifest.json","language":"fr-FR","locale":"fr_FR","title":"Infection possible &#8211; Aide à la suppression des virus, chevaux de Troie, logiciels espions et programmes malveillants\n &#8211; Bien choisir son serveur d impression","site":{"name":"Tutos GameServer","url":"https://tutos-gameserver.fr/"},"author":{"id":1,"name":"Titanfall","url":"https://tutos-gameserver.fr/author/titanfall/"},"published_at":"2020-04-24T14:22:55+00:00","modified_at":"2020-04-24T14:22:55+00:00","word_count":17952,"reading_time_seconds":5386,"summary":"Résultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-04-2020 Ran par Daniele (administrateur) sur DANIELE-PC (Acer Aspire 5750G) (19-04-2020 14:37:26) Exécution à partir de C: Users Daniele Downloads Profils chargés: Daniele (Profils disponibles: Daniele &amp; Ree) Plateforme: Windows 7 Home Premium Service Pack 1 (X64) Langue: Italiano (Italia) Internet Explorer version 11 [&hellip;]","summary_points":["Résultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-04-2020\nRan par Daniele (administrateur) sur DANIELE-PC (Acer Aspire 5750G) (19-04-2020 14:37:26)\nExécution à partir de C:  Users  Daniele  Downloads\nProfils chargés: Daniele (Profils disponibles: Daniele &amp; Ree)\nPlateforme: Windows 7 Home Premium Service Pack 1 (X64) Langue: Italiano (Italia)\nInternet Explorer version 11 (navigateur par défaut: FF)\nMode de démarrage: Normal\n\n==================== Processus (sur liste blanche) =================\n\n(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé.","Le fichier ne sera pas déplacé.)\n\n(Adobe Inc.","-&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Avira Operations GmbH &amp; Co.","KG -&gt; Avira Operations GmbH &amp; Co."],"topics":["Serveur d'impression"],"entities":[],"entities_metadata":[{"id":10,"name":"Serveur d'impression","slug":"serveur-dimpression","taxonomy":"category","count":3907,"url":"https://tutos-gameserver.fr/category/serveur-dimpression/"}],"tags":["Serveur d'impression"],"content_hash":"e358e545bc1b539fa43ac1a74427d7a4","plain_text":"Résultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-04-2020\nRan par Daniele (administrateur) sur DANIELE-PC (Acer Aspire 5750G) (19-04-2020 14:37:26)\nExécution à partir de C:  Users  Daniele  Downloads\nProfils chargés: Daniele (Profils disponibles: Daniele &amp; Ree)\nPlateforme: Windows 7 Home Premium Service Pack 1 (X64) Langue: Italiano (Italia)\nInternet Explorer version 11 (navigateur par défaut: FF)\nMode de démarrage: Normal\n\n==================== Processus (sur liste blanche) =================\n\n(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé. Le fichier ne sera pas déplacé.)\n\n(Adobe Inc. -&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avgnt.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avguard.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avscan.exe \n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avshadow.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  sched.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Launcher  Avira.ServiceHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Launcher  Avira.Systray.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Optimizer Host  Avira.OptimizerHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  SoftwareUpdater  Avira.SoftwareUpdater.ServiceHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  VPN  Avira.VpnService.exe\n(Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment) C:  Program Files (x86)  Battle.net  Battle.net.exe \n(Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment) C:  ProgramData  Battle.net  Agent  Agent.7022  Agent.exe\n(CyberLink -&gt; CyberLink Corp.) C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fiAgent.exe\n(CyberLink -&gt; CyberLink) C:  Program Files (x86)  Acer  clear.fi  MVP  Kernel  DMR  DMREngine.exe\n(Discord Inc. -&gt; Discord Inc.) C:  Users  Daniele  AppData  Local  Discord  app-0.0.306  Discord.exe \n(Even Balance, Inc. -&gt;) C:  Windows  SysWOW64  PnkBstrA.exe\n(Google LLC -&gt; Google LLC) C:  Program Files (x86)  Google  Chrome  Application  chrome.exe \n(HearthSim, LLC -&gt; HearthSim) C:  Users  Daniele  AppData  Local  HearthstoneDeckTracker  app-1.10.7  HearthstoneDeckTracker.exe\n(Intel Corporation -&gt; Intel Corporation) C:  Windows  System32  igfxpers.exe\n(Intel Corporation -&gt; Intel Corporation) C:  Windows  System32  igfxtray.exe\n(McAfee, LLC -&gt; McAfee, LLC) C:  Program Files  McAfee  WebAdvisor  servicehost.exe\n(McAfee, LLC -&gt; McAfee, LLC) C:  Program Files  McAfee  WebAdvisor  uihost.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Fichiers communs  microsoft shared  Virtualization Handler  CVHSVC.EXE\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Application Virtualization Client  sftlist.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Application Virtualization Client  sftvsa.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  MsMpEng.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  msseces.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  NisSrv.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  dllhost.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  rundll32.exe\n(Mozilla Corporation -&gt; Mozilla Corporation) C:  Program Files (x86)  Mozilla Firefox  firefox.exe \n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  NvTelemetry  NvTelemetryContainer.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display.NvContainer  NVDisplay.Container.exe \n(SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION) C:  Program Files  Fichiers communs  EPSON  EPW! 3 SSRP  E_S60RPB.EXE\n(SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION) C:  Windows  System32  spool  drivers  x64  3  E_IATILFE.EXE\n(Shanghai Changzhi Network Technology Co., Ltd. -&gt;) D:  XuanZhi  LDPlayer  ldnews.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnh.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPHelper.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  TeamViewer.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  TeamViewer_Service.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  tv_w32.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  tv_x64.exe\n\n==================== Registre (liste blanche) ===================\n\n(Si une entrée est incluse dans la liste de correctifs, l&#39;élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)\n\nHKLM  &#8230;  Run: [MSC] =&gt; C:  Program Files  Microsoft Security Client  msseces.exe [1353680 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKLM  &#8230;  Run: [SynTPEnh] =&gt; C:  Program Files  Synaptics  SynTP  SynTPEnh.exe [2280232 2010-07-29] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nHKLM  &#8230;  Run: [] =&gt; [X]\nHKLM-x32  &#8230;  Exécuter: [KeePass 2 PreLoad] =&gt; C:  Program Files (x86)  KeePass Password Safe 2  KeePass.exe [3331264 2020-01-20] (Développeur Open Source, Dominik Reichl -&gt; Dominik Reichl)\nHKLM-x32  &#8230;  Exécuter: [Avira SystrayStartTrigger] =&gt; C:  Program Files (x86)  Avira  Launcher  Avira.SystrayStartTrigger.exe [239520 2020-04-02] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nHKLM-x32  &#8230;  Exécuter: [Avira System Speedup User Starter] =&gt; C:  Program Files (x86)  Avira  System Speedup  Avira.SystemSpeedup.Core.Common.Starter.exe [331368 2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nHKLM-x32  &#8230;  Exécuter: [] =&gt; [X]\nHKU  S-1-5-19  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKU  S-1-5-20  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [EPLTargetP0000000000000001] =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_IATILFE.EXE [297024 2013-01-24] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [Discord] =&gt; C:  Users  Daniele  AppData  Local  Discord  app-0.0.306  Discord.exe [90950968 2020-02-24] (Discord Inc. -&gt; Discord Inc.)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [LDNews] =&gt; D:  XuanZhi  LDPlayer  ldnews.exe [1309368 2020-03-25] (Shanghai Changzhi Network Technology Co., Ltd. -&gt;)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [] =&gt; [X]\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  RunOnce: [FlashPlayerUpdate] =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-18] (Adobe Inc. -&gt; Adobe)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 050c8d1e-37e4-11ea-9ee4-1c7508f37aca &#8211; H:  RTK_NIC_DRIVER_INSTALLER.sfx.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 5e68e840-be54-11e2-b434-806e6f6e6963 &#8211; G:  Setup.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 839489ac-58a7-11e5-ac80-1c7508ead495 &#8211; C:  Windows  system32  RunDLL32.EXE Shell32.DLL, ShellExec_RunDLL H:  Start.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 84650df6-67d9-11ea-9c89-1c7508f37aca &#8211; H:  HiSuiteDownLoader.exe} &#8211; H:  HiSuiteDownLoader.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: aab47bad-b4df-11e2-b1df-1c7508ead495 &#8211; F:  LANLauncher.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: b7603e81-b1e8-11e7-9500-1c7508ead495 &#8211; G:  HiSuiteDownLoader.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: fb958786-5f36-11e3-8f8a-1c7508ead495 &#8211; F:  autorun.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  Control Panel  Desktop \\ SCRNSAVE.EXE -&gt; C:  Windows  system32  scrnsave.scr [11264 2009-07-14] (Microsoft Windows -&gt; Microsoft Corporation)\nHKU  S-1-5-18  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKLM  Software  Microsoft  Active Setup  Installed Components: [2D46B6DC-2207-486B-B523-A557E6D54B47] -&gt; C:  Windows  system32  cmd.exe / D / C démarrer C:  Windows  system32  ie4uinit.exe -ClearIconCache\nHKLM  Software  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; C:  Program Files (x86)  Google  Chrome  Application  81.0.4044.113  Installer  chrmstp.exe [2020-04-15] (Google LLC -&gt; Google LLC)\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [2D46B6DC-2207-486B-B523-A557E6D54B47] -&gt; C:  Windows  system32  cmd.exe / D / C démarrer C:  Windows  system32  ie4uinit.exe -ClearIconCache\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; &quot;C:  Program Files (x86)  Google  Chrome  Application  57.0.2987.133  Installer  chrmstp.exe&quot; &#8211;configure-user-settings &#8211;verbose-logging &#8211;system-level\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [A6EADE66-0000-0000-484E-7E8A45000000] -&gt; C:  Program Files (x86)  Adobe  Acrobat Reader DC  Esl  AiodLite.dll [2019-05-03] (Adobe Inc. -&gt; Adobe Systems, Inc.)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [F8A0B131-5F68-486c-8040-7E8FC3C85BB6] -&gt; C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDCREDPROV.DLL [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nFournisseurs HKLM  Software  &#8230;  Authentication  PLAP: [60442b50-aac2-4db7-b9b0-813d2107287d] -&gt; c:  windows  system32  dsNcSmartCardProv.dll [2014-04-16] (Juniper Networks, Inc. -&gt; Juniper Networks)\nFournisseurs HKLM  Software  &#8230;  Authentication  PLAP: [9f4a51de-92b1-483a-b717-dd7d3bb7d3db] -&gt; c:  windows  system32  dsNcCredProv.dll [2014-04-16] (Juniper Networks, Inc. -&gt; Juniper Networks)\nAppInit_DLLs: C:  Windows  system32  nvinitx.dll =&gt; C:  Windows  system32  nvinitx.dll [182784 2018-03-25] (NVIDIA Corporation PE Sign v2016 -&gt; NVIDIA Corporation)\nAppInit_DLLs-x32: C:  Windows  SysWOW64  nvinit.dll =&gt; C:  Windows  SysWOW64  nvinit.dll [159704 2018-03-25] (NVIDIA Corporation PE Sign v2016 -&gt; NVIDIA Corporation)\n\n==================== Tâches planifiées (liste blanche) ============\n\n(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé sauf s&#39;il est répertorié séparément.)\n\nTâche: 0587C257-D7C6-4C78-8F21-1D7F3939B9B9 &#8211; System32  Tasks  Recovery Management  Burn Notification =&gt; C:  Program Files  Acer  Acer eRecovery Management  NotificationCenter  Notification.exe [816520 2011-08-09] (Acer Incorporated -&gt; Acer)\nTâche: 0698585B-BA25-4335-9278-3BC3C18BE8B5 &#8211; System32  Tasks  Adobe Flash Player NPAPI Notifier =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-18] (Adobe Inc. -&gt; Adobe)\nTâche: 0D073FB3-7592-4AD3-ACD5-261412DDD7DF &#8211; System32  Tasks  EPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 0D415B8D-D7FD-477F-97FB-381B18EBA498 &#8211; Tâche de mise à jour System32  Tasks  Adobe Acrobat =&gt; C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -&gt; Adobe Systems)\nTâche: 16CBEF8D-2362-4ADC-9C8E-7F143609615F &#8211; System32  Tasks  clear.fiAgent =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fiAgent.exe [120104 2011-08-24] (CyberLink -&gt; CyberLink Corp.)\nTâche: 19BE36DC-19D0-4AE2-B932-4E92E841E50E &#8211; System32  Tasks  NvTmMon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvTmMon.exe [510912 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 28017D3E-92AD-4139-B233-772380FCF796 &#8211; System32  Tasks  898F6CA2-2FC0-4969-9594-F4670EF81EBA =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 28FFE953-0A42-4552-8E34-DC5CE2F4000A &#8211; System32  Tasks  F3E47E76-9709-4A21-BB71-1B0C6C9B8223 =&gt; C:  Windows  system32  pcalua.exe -a E:  Setup.exe &#8211; d E: \nTâche: 2AFD2942-0BC9-4D3A-A82D-AD1D5CCE73FD &#8211; System32  Tasks  E3F8847E-F1BC-4BFB-8A19-8DF64248AAFE =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 34FFA4CE-EA47-418C-BE0E-1EA34C5DCC7B &#8211; System32  Tasks  AviraSystemSpeedupUpdate =&gt; C:  ProgramData  Avira  SystemSpeedup  Update  avira_speedup_setup_update.exe [27848432 2020-04-09] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nTâche: 461EE1FB-988C-4A90-BB13-D665D42A365A &#8211; System32  Tasks  NvProfileUpdaterDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  Update Core  NvProfileUpdater64 [662464 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 4802D53D-7317-4F6D-96B0-025C0D18E41B &#8211; System32  Tasks  5B715CDF-6EE8-460D-A988-FA5FE01124D1 =&gt; E:  baldur.exe\nTâche: 53F97095-C1E8-4C4E-8E7E-D640EAC6E922 &#8211; System32  Tasks  NVIDIA GeForce Experience SelfUpdate_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  NVIDIA GeForce Experience  NVIDIA GeForce Experience.exe [2069952 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 576D0D33-BE9A-4724-A555-8F4E9B90573B &#8211; System32  Tasks  EPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 58DE433B-64F3-4832-A901-30F96F3625BA &#8211; System32  Tasks  NvProfileUpdaterOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  Update Core  NvProfileUpdater64 [662464 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 5CED6FD0-67EC-4881-BEBA-77F9D42F4209 &#8211; System32  Tasks  Adobe Flash Player Updater =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashPlayerUpdateService.exe [335416 2019-12-18] (Adobe Inc. -&gt; Adobe)\nTâche: 6DA9947E-16BB-412B-9076-BAB7FB4730DC &#8211; System32  Tasks  NvTmRep_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvTmRep.exe [757184 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 6E86E2AF-4A75-49B5-B12F-E52842CDEB92 &#8211; System32  Tasks  E4841482-3364-44D1-9773-1AA169AD4679 =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 6E924764-AF68-4394-8DE7-E26688CAA88F &#8211; System32  Tasks  E6B67C06-3DA8-48D9-8061-CC54EDA7A03D =&gt; C:  Users  Daniele  Desktop  Tor Browser  Browser  firefox.exe.exe \nTâche: 82643A6B-7C76-4DDE-9EFC-EAA23691FC3F &#8211; System32  Tasks  7D643D1C-0931-495D-8883-8D8B85E39BAB =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Bureau  hpflash1.exe -d C:  Users  Daniele  Desktop\nTâche: 89BBD1F3-AD18-4295-9C8F-408713D375EF &#8211; System32  Tasks  DMREngine =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP .  Kernel  DMR  DMREngine.exe [169352 2011-08-24] (CyberLink -&gt; CyberLink)\nTâche: 8DA7805F-DA82-44FD-8C16-3DB36A78306A &#8211; System32  Tasks  UALU notificatin =&gt; C:  Program Files  Acer  Acer Updater  UALU.exe [22392 2012-04-05] (Acer Incorporated -&gt; Acer Incorporated)\nTâche: 906AA2A6-A3F5-419E-AD07-0DC22E0C18E7 &#8211; System32  Tasks  clear.fi =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fi.exe [264760 2011-08-24] (CyberLink -&gt; Acer Incorporated)\nTâche: 91BE0F27-0BB1-4F2D-AA59-B164367ED37B &#8211; System32  Tasks  GoogleUpdateTaskMachineCore =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [144200 2015-08-28] (Google Inc -&gt; Google Inc.)\nTâche: 944C8AC3-46F0-49EA-BCE6-BD5F2ABF1E25 &#8211; System32  Tasks  NvBatteryBoostCheckOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVontia Corporation  NvC [469952 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 947B3B5A-7121-4AA4-A132-B3723F145F31 &#8211; System32  Tasks  EPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 96EC6761-5AF9-498C-A923-CBEB073F3C48 &#8211; System32  Tasks  Microsoft  Microsoft Antimalware  Microsoft Antimalware Scheduled Scan =&gt; C:  Program Files  Microsoft Security Client \\ MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nTâche: 971CBDDC-AE71-4383-BF3E-55684DC6BE1F &#8211; Tâche System32  Tasks  Overwolf Updater =&gt; C:  Program Files (x86)  Overwolf  OverwolfUpdater.exe [2463064 2020-03-14] (Overwolf Ltd -&gt; Overwolf LTD)\nTâche: 9C563B9F-8477-4F74-9683-3D0C349598DD &#8211; System32  Tasks  EPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: A2AF1F20-FAF1-44EB-A8EE-F9E61B94538B &#8211; System32  Tasks  CEF4E478-F540-44FA-8A0A-B04F0C79ED38 =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Téléchargements  HijackThis.exe -d C:  Users  Daniele  Downloads\nTâche: A4CA37D7-063A-4E31-BD80-149FDBF10BE1 &#8211; System32  Tasks  5D586F1C-A007-495B-A683-84471FF9182E =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Desktop  BaldursGate2  Setup.exe -d C:  Users  Daniele  Desktop  BaldursGate2\nTâche: A5D1C74C-C335-4965-A36A-010CC81124C7 &#8211; System32  Tasks  E1FD0496-34FB-4E32-BE56-1638E11B44F0 =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: AA9292C3-4A04-427B-83C6-1D8EA215F4AC &#8211; System32  Tasks  A07D0381-8480-48E5-93B1-1CD22638FA0B =&gt; C:  Windows  system32  pcalua.exe -a E:  Launch.exe &#8211; d E: \nTâche: AF175631-4055-4EDD-B91E-ADC2D47EC4D7 &#8211; System32  Tasks  NvNodeLauncher_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  NvNode  nvnodejsla [976832 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: D7C41E02-A0BF-4278-A071-55694952ACDC &#8211; System32  Tasks  GoogleUpdateTaskMachineUA =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [144200 2015-08-28] (Google Inc -&gt; Google Inc.)\nTâche: D7F35FFC-47BF-4DC2-97D2-9C611F8EC20B &#8211; System32  Tasks  Microsoft  Windows Live  SOXE  Extractor Definitions Update Task =&gt; 3519154C-227E-47F3-9CC9-12C3F05817F1\nTâche: DD604AC5-C11F-4371-84FE-2AC34CF0D167 &#8211; System32  Tasks  NvDriverUpdateCheckDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  NvContainer  nvcontain.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: E002599A-08C1-4C42-883F-191BB591BB0F &#8211; System32  Tasks  6E01CB89-B997-4F11-A30C-C7CE8A9C91A1 =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Téléchargements  win32_152824.exe -d C:  Users  Daniele  Downloads\nTâche: F75AEAE1-46D4-4AE2-B52C-212BD3348EFE &#8211; System32  Tasks  Avira_Antivirus_Systray =&gt; C:  Program Files (x86)  Avira  Antivirus  avgnt.exe [2759304 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\n\n(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)\n\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE : / EXE: 6AFC5C38-E427-4C18-A613-15CA4120664F / F: UpdateSYSTEMĊ Recherche les mises à jour du logiciel EPSON et vous avertit lorsque des mises à jour sont disponibles.Si cette tâche est désactivée ou arrêtée, votre logiciel EPSON ne sera pas automatiquement mis à jour date.Thi\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE : / EXE: E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF / F: UpdateSYSTEMĊ Recherche les mises à jour du logiciel EPSON et vous avertit lorsque des mises à jour sont disponibles. Si cette tâche est désactivée ou arrêtée, votre logiciel EPSON ne sera pas automatiquement tenu à jour. date.Thi\n\n==================== Internet (liste blanche) ====================\n\n(Si un élément est inclus dans la liste de correctifs, s&#39;il s&#39;agit d&#39;un élément du registre, il sera supprimé ou restauré par défaut.)\n\nWinsock: Catalog5 07 C:  Program Files (x86)  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5 08 C:  Program Files (x86)  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5-x64 07 C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5-x64 08 C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nTcpip  Paramètres: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  0EF91A76-19E2-4548-BB51-E60CD7106D02: [DhcpNameServer] 192.168.0.1\nTcpip  ..  Interfaces  3EFC82CC-B91A-4C1E-B521-C2B94DC80088: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  49233639-7CE3-4A19-9C9C-58E97178E1DA: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  C05787A9-9258-4705-B63A-09E187B553B7: [DhcpNameServer] 192.168.42.129\nTcpip  ..  Interfaces  E302DF92-CA2E-4BE6-BBDF-9847BF0E7A4F: [DhcpNameServer] 192.168.42.129\n\nInternet Explorer:\n==================\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  Software  Microsoft  Internet Explorer  Main, page de démarrage = hxxp: //uk.search.yahoo.com/? Type = 714647 &amp; fr = spigot-yhp -c&#39;est à dire\nSearchScopes: HKLM -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM-x32 -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM-x32 -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKU  .DEFAULT -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  .DEFAULT -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; DefaultScope 6F10B82E-F8E1-488B-AFF0-66E6D7950E71 URL = hxxps: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9 URL = hxxp: //www1.delta-search.com/? Q =  searchTerms &amp; affID = 119776 &amp; tt = gc_ &amp; babsrc = SP_ss &amp; mntrId = 0A75EC55F940E88A\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 6F10B82E-F8E1-488B-AFF0-66E6D7950E71 URL = hxxps: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 7405AE7F-13A6-4266-A4B2-512B544AACDB URL = hxxp: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 99209B94-587D-42C2-A3CA-F72D0A76A2F6 URL = hxxp: //www.bing.com/search? Q = searchTerms  &amp; r = 503\nBHO: Aide à la connexion Windows Live ID -&gt; 9030D464-4C02-4ABF-8ECC-5164760863C6 -&gt; C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WindowsLiveLogin.dll [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nBHO: McAfee WebAdvisor -&gt; B164E929-A1B6-4A06-B104-2CD0E90A88FF -&gt; C:  Program Files  McAfee  WebAdvisor  x64  IEPlugin.dll [2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nBHO-x32: Java ™ Plug-In SSV Helper -&gt; 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  ssv.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO-x32: Aide à la connexion Windows Live ID -&gt; 9030D464-4C02-4ABF-8ECC-5164760863C6 -&gt; C:  Program Files (x86)  Common Files  Microsoft Shared  Windows Live  WindowsLiveLogin.dll [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nBHO-x32: McAfee WebAdvisor -&gt; B164E929-A1B6-4A06-B104-2CD0E90A88FF -&gt; C:  Program Files  McAfee  WebAdvisor  win32  IEPlugin.dll [2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nBHO-x32: Java ™ Plug-In 2 SSV Helper -&gt; DBC80044-A445-435b-BC74-9C25C1C588A9 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  jp2ssv.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nRestauration de session IE: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; est activé.\nDPF: HKLM AA570693-00E2-4907-B6F1-60A1199B030C hxxps: //juniper.net/dana-cached/sc/JuniperSetupClient64.cab\nDPF: HKLM-x32 E5F5D008-DD2C-4D32-977D-1A0ADF03058B hxxps: //juniper.net/dana-cached/setup/JuniperSetupSP1.cab\nDPF: HKLM-x32 F27237D7-93C8-44C2-AC6E-D6057B9A918F hxxps: //juniper.net/dana-cached/sc/JuniperSetupClient.cab\nGestionnaire: skype4com &#8211; FFC8B962-9B40-4DFF-9458-1830C7DD7F5D &#8211; Aucun fichier\nFilter-x32: application / x-ica &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = euc-jp &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = ISO-8859-1 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS936 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS949 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS950 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF-8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = euc-jp &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = ISO-8859-1 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS936 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS949 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS950 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF-8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: ica &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\n\nFireFox:\n========\nFF DefaultProfile: xlbk4m4f.default-1485720396432\nFF ProfilePath: C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432 [2020-04-19]\nRestauration de session FF: Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432 -&gt; est activé.\nExtension FF: (Sécurité du navigateur Avira) &#8211; C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432  Extensions  abs@avira.com.xpi [2020-03-23]\nExtension FF: (Recherche et nouvel onglet par Yahoo) &#8211; C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432  Extensions  jid1-16aeif9OQIRKxA@jetpack.xpi [2019-05-16]\nPlugin FF: @ adobe.com / FlashPlayer -&gt; C:  Windows  system32  Macromed  Flash  NPSWF64_32_0_0_303.dll [2019-12-18] (Adobe Inc. -&gt;)\nPlugin FF: @ microsoft.com / GENUINE -&gt; désactivé [No File]\nPlugin FF: @ Microsoft.com / NpCtrl, version = 1.0 -&gt; C:  Program Files  Microsoft Silverlight  5.1.50918.0  npctrl.dll [2018-10-23] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ adobe.com / FlashPlayer -&gt; C:  Windows  SysWOW64  Macromed  Flash  NPSWF32_32_0_0_303.dll [2019-12-18] (Adobe Inc. -&gt;)\nFF Plugin-x32: @ Citrix.com / npican -&gt; C:  Program Files (x86)  Citrix  ICA Client  npicaN.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFF Plugin-x32: @ java.com / DTPlugin, version = 11.171.2 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  dtplugin  npDeployJava1.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin-x32: @ java.com / JavaPlugin, version = 11.171.2 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  plugin2  npjp2.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin-x32: @ microsoft.com / GENUINE -&gt; désactivé [No File]\nFF Plugin-x32: @ Microsoft.com / NpCtrl, version = 1.0 -&gt; C:  Program Files (x86)  Microsoft Silverlight  5.1.50918.0  npctrl.dll [2018-10-23] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / SharePoint, version = 14.0 -&gt; C:  PROGRA ~ 2  MICROS ~ 4  Office14  NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / WLPG, version = 15.4.3502.0922 -&gt; C:  Program Files (x86)  Windows Live  Photo Gallery  NPWLPG.dll [2011-05-13] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / WLPG, version = 15.4.3538.0513 -&gt; C:  Program Files (x86)  Windows Live  Photo Gallery  NPWLPG.dll [2011-05-13] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.0.6 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.1.2 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.2.1 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.2.6 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 3.0.8 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ WildTangent.com / GamesAppPresenceDetector, Version = 1.0 -&gt; C:  Program Files (x86)  WildTangent Games  App  BrowserIntegration  Registered  0  NP_wtapp.dll [2013-08-06] (WildTangent Inc -&gt;)\nFF Plugin-x32: Adobe Reader -&gt; C:  Program Files (x86)  Adobe  Acrobat Reader DC  Reader  AIR  nppdf32.dll [2020-03-05] (Adobe Inc. -&gt; Adobe Systems Inc.)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: @ asperasoft.com / AsperaConnect -&gt; C:  Users  Daniele  AppData  Local  Programs  Aspera  Aspera Connect  lib  3.6. 1  npasperaweb_3.6.1.111228.dll [2015-09-11] (Aspera, Inc. -&gt; Aspera, Inc.)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: @ Unity3d.com / UnityPlayer, version = 1.0 -&gt; C:  Users  Daniele  AppData  LocalLow  Unity  WebPlayer  Loader  npUnity3D32 .dll [2015-03-27] (Unity Technologies SF -&gt; Unity Technologies ApS)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: SkypeForBusinessPlugin-15.8 -&gt; C:  Users  Daniele  AppData  Local  Microsoft  SkypeForBusinessPlugin  15.8.20020.400  npGatewayNpapi.dll [2015-06-15] (Microsoft Corporation -&gt; Microsoft Corporation)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: SkypeForBusinessPlugin64-15.8 -&gt; C:  Users  Daniele  AppData  Local  Microsoft  SkypeForBusinessPlugin  15.8.20020.400  npGatewayNpapi-x64.dll [2015-06-15] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin HKUS-1-5-21-1536202438-368462837-3654654372-1001: SkypePlugin -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48npGatewayNpapi.dll [2016-09-22] (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFF Plugin HKUS-1-5-21-1536202438-368462837-3654654372-1001: SkypePlugin64 -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48npGatewayNpapi-x64.dll [2016-09-22] (Microsoft Corporation -&gt; Skype Technologies S.A.)\n\nChrome: \n=======\nCHR Profile: C:UsersDanieleAppDataLocalGoogleChromeUser DataDefault [2020-04-19]\nCHR Notifications: Default -&gt; hxxps://uk-mg42.mail.yahoo.com; hxxps://web.skype.com; hxxps://web.whatsapp.com; hxxps://www.hotukdeals.com; hxxps://www.reddit.com\nCHR HomePage: Default -&gt; hxxp://uk.search.yahoo.com/?type=714647&amp;fr=spigot-yhp-ch\nCHR StartupUrls: Default -&gt; &quot;hxxps://www.google.co.uk/&quot;\nCHR Session Restore: Default -&gt; is enabled.\nCHR Extension: (Presentazioni) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-10-16]\nCHR Extension: (Documenti) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-10-16]\nCHR Extension: (Google Drive) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2015-10-21]\nCHR Extension: (YouTube) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]\nCHR Extension: (Avira Password Manager) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionscaljgklbbfbcjjanaijlacgncafpegll [2020-04-14]\nCHR Extension: (Google Search) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionscoobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]\nCHR Extension: (Fogli) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-10-16]\nCHR Extension: (Documenti Google offline) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-17]\nCHR Extension: (AdBlock: il miglior ad-blocker di sempre) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsgighmmpiobklfepjocnamgkkbiglidom [2020-04-17]\nCHR Extension: (Lightshot (strumento per screenshot)) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsmbniclmhobmnbdlbpiphghaielnnpgdp [2020-01-31]\nCHR Extension: (Pagamenti Chrome Web Store) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]\nCHR Extension: (Gmail) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-05-16]\nCHR Extension: (Chrome Media Router) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-14]\nCHR HKLM&#8230;ChromeExtension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]\nCHR HKLM&#8230;ChromeExtension: [fheoggkfdfchfphceeifdbepaooicaho]\nCHR HKLM-x32&#8230;ChromeExtension: [caljgklbbfbcjjanaijlacgncafpegll]\nCHR HKLM-x32&#8230;ChromeExtension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]\nCHR HKLM-x32&#8230;ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj]\nCHR HKLM-x32&#8230;ChromeExtension: [fheoggkfdfchfphceeifdbepaooicaho]\nCHR HKLM-x32&#8230;ChromeExtension: [flliilndjeohchalpbbcdekjklbdgfkk]\nCHR HKLM-x32&#8230;ChromeExtension: [ibbfklbaljofpaanmpaeadejijfdddco]\nCHR HKLM-x32&#8230;ChromeExtension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]\nCHR HKLM-x32&#8230;ChromeExtension: [nbmafkdmkkckhggblphicnnhlgljnoje] &#8211; \nCHR HKLM-x32&#8230;ChromeExtension: [njpedbdniajflhgfoipnjkednnlkngbj]\n\n==================== Services (Whitelisted) ===================\n\n(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)\n\nS2 AntiVirMailService; C:Program Files (x86)AviraAntivirusavmailc7.exe [1209856 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AntiVirSchedulerService; C:Program Files (x86)AviraAntivirussched.exe [485960 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AntiVirService; C:Program Files (x86)AviraAntivirusavguard.exe [485960 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nS2 AntiVirWebService; C:Program Files (x86)AviraAntivirusavwebg7.exe [573760 2020-03-22] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 Avira.ServiceHost; C:Program Files (x86)AviraLauncherAvira.ServiceHost.exe [634896 2020-04-02] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraOptimizerHost; C:Program Files (x86)AviraOptimizer HostAvira.OptimizerHost.exe [2989888 2020-01-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraPhantomVPN; C:Program Files (x86)AviraVPNAvira.VpnService.exe [382992 2020-03-18] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraUpdaterService; C:Program Files (x86)AviraSoftwareUpdaterAvira.SoftwareUpdater.ServiceHost.exe [161216 2020-04-09] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nS4 EpsonScanSvc; C:Windowssystem32EscSvc64.exe [144560 2012-05-17] (SEIKO EPSON Corporation -&gt; Seiko Epson Corporation)\nR2 EPSON_PM_RPCV4_06; C:Program FilesCommon FilesEPSONEPW!3 SSRPE_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nS3 fussvc; C:Program Files (x86)Windows Kits8.1App Certification Kitfussvc.exe [143872 2014-10-24] (Microsoft Corporation) [File not signed]\nS4 GamesAppIntegrationService; C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [240736 2013-10-07] (WildTangent Inc -&gt; WildTangent)\nR2 McAfee WebAdvisor; C:Program FilesMcAfeeWebAdvisorServiceHost.exe [913640 2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nR2 MsMpSvc; C:Program FilesMicrosoft Security ClientMsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nS4 MyEpson Portal Service; C:Program Files (x86)EPSONMyEpson PortalmepService.exe [714712 2017-06-28] (SEIKO EPSON CORPORATION -&gt; Seiko Epson Corporation)\nR3 NisSrv; C:Program FilesMicrosoft Security ClientNisSrv.exe [361816 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nS4 NTI IScheduleSvc; C:Program Files (x86)NTIAcer Backup ManagerIScheduleSvc.exe [256832 2011-04-24] (NTI Corporation -&gt; NTI Corporation)\nS3 NvContainerLocalSystem; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS3 NvContainerNetworkService; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS4 Origin Client Service; C:Program Files (x86)OriginOriginClientService.exe [2098528 2017-08-23] (Electronic Arts, Inc. -&gt; Electronic Arts)\nS4 Origin Web Helper Service; C:Program Files (x86)OriginOriginWebHelperService.exe [2977640 2017-08-23] (Electronic Arts, Inc. -&gt; Electronic Arts)\nS4 OverwolfUpdater; C:Program Files (x86)OverwolfOverwolfUpdater.exe [2463064 2020-03-14] (Overwolf Ltd -&gt; Overwolf LTD)\nR2 PnkBstrA; C:WindowsSysWOW64PnkBstrA.exe [75136 2013-05-17] (Even Balance, Inc. -&gt; )\nS3 Te.Service; C:Program Files (x86)Windows Kits8.1TestingRuntimesTAEFWex.Services.exe [122368 2015-02-26] (Microsoft Corporation) [File not signed]\nR2 TeamViewer; C:Program Files (x86)TeamViewerTeamViewer_Service.exe [13216272 2020-03-20] (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nS3 WinDefend; C:Program FilesWindows Defendermpsvc.dll [1011712 2013-05-27] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 wlidsvc; C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDSVC.EXE [2292096 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nR2 NVDisplay.ContainerLocalSystem; &quot;C:Program FilesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container.exe&quot; -s NVDisplay.ContainerLocalSystem -f &quot;C:ProgramDataNVIDIANVDisplay.ContainerLocalSystem.log&quot; -l 3 -d &quot;C:Program FilesNVIDIA CorporationDisplay.NvContainerpluginsLocalSystem&quot; -r -p 30000\nR2 NvTelemetryContainer; &quot;C:Program Files (x86)NVIDIA CorporationNvTelemetryNvTelemetryContainer.exe&quot; -s NvTelemetryContainer -f &quot;C:ProgramDataNVIDIANvTelemetryContainer.log&quot; -l 3 -d &quot;C:Program Files (x86)NVIDIA CorporationNvTelemetryplugins&quot; -r\n\n===================== Drivers (Whitelisted) ===================\n\n(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)\n\nR3 athr; C:WindowsSystem32DRIVERSathrx.sys [2755584 2011-07-19] (Microsoft Windows Hardware Compatibility Publisher -&gt; Atheros Communications, Inc.)\nR0 avdevprot; C:WindowsSystem32DRIVERSavdevprot.sys [68152 2019-06-07] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 avgntflt; C:WindowsSystem32DRIVERSavgntflt.sys [223744 2020-03-27] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 avipbb; C:WindowsSystem32DRIVERSavipbb.sys [177376 2020-04-06] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 avkmgr; C:WindowsSystem32DRIVERSavkmgr.sys [36072 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 avnetflt; C:WindowsSystem32DRIVERSavnetflt.sys [78600 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR0 avusbflt; C:WindowsSystem32Driversavusbflt.sys [35376 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 dtsoftbus01; C:WindowsSystem32DRIVERSdtsoftbus01.sys [283064 2013-12-07] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR2 LdBoxDrv; C:Program Filesdnplayerext2LdBoxDrv.sys [319376 2019-12-18] (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nR2 LdVBoxDrv; C:Program FilesldplayerboxLdVBoxDrv.sys [319376 2020-03-25] (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nR0 MpFilter; C:WindowsSystem32DRIVERSMpFilter.sys [295000 2016-08-25] (Microsoft Corporation -&gt; Microsoft Corporation)\nS3 MYFAULT; C:Windowssystem32driversmyfault.sys [25392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -&gt; Sysinternals)\nR3 NisDrv; C:WindowsSystem32DRIVERSNisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -&gt; Microsoft Corporation)\nR3 nusb3hub; C:Windowssystem32driversnusb3hub.sys [82432 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -&gt; Renesas Electronics Corporation)\nR3 nusb3xhc; C:Windowssystem32driversnusb3xhc.sys [181760 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -&gt; Renesas Electronics Corporation)\nS3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [31168 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvad_WaveExtensible; C:WindowsSystem32driversnvvad64v.sys [59240 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvhci; C:WindowsSystem32DRIVERSnvvhci.sys [58816 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 phantomtap; C:WindowsSystem32DRIVERSphantomtap.sys [35664 2020-03-18] (Avira Operations GmbH &amp; Co. KG -&gt; The OpenVPN Project)\nS3 rtux64w7; C:WindowsSystem32DRIVERSrtux64w7.sys [328448 2016-08-19] (Realtek Semiconductor Corp -&gt; Realtek )\nS4 secdrv; C:WindowsSysWow64Driverssecdrv.sys [11973 2017-06-06] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [File not signed]\nR0 sptd; C:WindowsSystem32Driverssptd.sys [381440 2013-12-07] (Disc Soft Ltd -&gt; Duplex Secure Ltd.)\n\n==================== NetSvcs (Whitelisted) ===================\n\n(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)\n\n==================== One month (created) ===================\n\n(If an entry is included in the fixlist, the file/folder will be moved.)\n\n2020-04-19 14:36 &#8211; 2020-04-19 14:36 &#8211; 000000000 ____D C:UsersDanieleDownloadsFRST-OlderVersion\n2020-04-18 14:29 &#8211; 2020-04-18 14:29 &#8211; 000062792 _____ C:ProgramDataagent.uninstall.1587216527.bdinstall.v2.bin\n2020-04-17 00:37 &#8211; 2020-04-17 00:46 &#8211; 000072692 _____ C:UsersDanieleDownloadsAddition.txt\n2020-04-17 00:28 &#8211; 2020-04-19 14:41 &#8211; 000045553 _____ C:UsersDanieleDownloadsFRST.txt\n2020-04-17 00:22 &#8211; 2020-04-19 14:40 &#8211; 000000000 ____D C:FRST\n2020-04-17 00:21 &#8211; 2020-04-19 14:36 &#8211; 002281984 _____ (Farbar) C:UsersDanieleDownloadsFRST64.exe\n2020-04-16 23:30 &#8211; 2020-04-16 23:30 &#8211; 000013738 _____ C:UsersDanieleDesktophijackthis2\n2020-04-16 22:55 &#8211; 2020-04-18 14:29 &#8211; 000000000 ____D C:Program FilesBitdefender Agent\n2020-04-16 22:55 &#8211; 2020-04-16 22:55 &#8211; 000102692 _____ C:ProgramDataagent.1587074131.bdinstall.v2.bin\n2020-04-16 22:55 &#8211; 2020-04-16 22:55 &#8211; 000000000 ____D C:ProgramDataBitdefender Agent\n2020-04-16 22:53 &#8211; 2020-04-16 22:53 &#8211; 010527368 _____ C:UsersDanieleDownloadsbitdefender_online.exe\n2020-04-16 22:40 &#8211; 2020-04-16 22:40 &#8211; 000000000 ____D C:ProgramDataUbisoft\n2020-04-16 22:11 &#8211; 2020-04-16 22:11 &#8211; 000388608 _____ (Trend Micro Inc.) C:UsersDanieleDownloadsHijackThis.exe\n2020-04-15 17:17 &#8211; 2020-04-15 17:17 &#8211; 000000219 _____ C:UsersDanieleDesktopCounter-Strike Global Offensive.url\n2020-04-10 00:18 &#8211; 2020-04-10 00:18 &#8211; 004342776 _____ (Avira Operations GmbH &amp; Co. KG) C:UsersDanieleDownloadsavira_en_sptl1_1609235037-1586472637__phpws-spotlight-release (1).exe\n2020-04-10 00:16 &#8211; 2020-04-10 00:16 &#8211; 000003292 _____ C:Windowssystem32TasksAvira_Antivirus_Systray\n2020-04-10 00:15 &#8211; 2020-04-06 21:13 &#8211; 000177376 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavipbb.sys\n2020-04-10 00:15 &#8211; 2020-03-27 12:48 &#8211; 000223744 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavgntflt.sys\n2020-04-10 00:15 &#8211; 2019-06-07 15:09 &#8211; 000068152 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavdevprot.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000078600 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavnetflt.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000036072 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavkmgr.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000035376 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavusbflt.sys\n2020-04-09 23:54 &#8211; 2020-04-09 23:55 &#8211; 000000000 ____D C:UsersPublicSpeedup Sessions\n2020-04-09 23:54 &#8211; 2020-04-09 23:54 &#8211; 000003668 _____ C:Windowssystem32TasksAviraSystemSpeedupUpdate\n2020-04-09 23:53 &#8211; 2020-04-15 08:51 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsAvira\n2020-04-09 23:53 &#8211; 2020-04-09 23:53 &#8211; 000001192 _____ C:UsersPublicDesktopAvira.lnk\n2020-04-09 23:53 &#8211; 2020-04-09 23:53 &#8211; 000001192 _____ C:ProgramDataDesktopAvira.lnk\n2020-04-09 23:50 &#8211; 2020-04-09 23:50 &#8211; 004342776 _____ (Avira Operations GmbH &amp; Co. KG) C:UsersDanieleDownloadsavira_en_sptl1_1609235037-1586472637__phpws-spotlight-release.exe\n2020-04-09 23:08 &#8211; 2020-04-09 23:08 &#8211; 003318440 _____ (Dominik Reichl ) C:UsersDanieleDownloadsKeePass-2.44-Setup.exe\n2020-04-03 01:24 &#8211; 2020-04-03 01:24 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalLowObsidian Entertainment\n2020-04-02 22:10 &#8211; 2020-04-02 22:10 &#8211; 000000222 _____ C:UsersDanieleDesktopPillars of Eternity.url\n2020-03-30 19:29 &#8211; 2020-03-30 19:29 &#8211; 000076137 _____ C:UsersDanieleDownloadseContract.pdf\n2020-03-26 17:50 &#8211; 2020-03-26 18:04 &#8211; 000000000 ____D C:UsersDanieleDesktopRee Accident Claim\n2020-03-25 23:46 &#8211; 2020-04-04 11:49 &#8211; 000000000 ____D C:UsersDaniele.Ld2VirtualBox\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000671 _____ C:UsersDanieleDesktopLDMultiPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000671 _____ C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuLDMultiPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000656 _____ C:UsersDanieleDesktopLDPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000656 _____ C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuLDPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuProgramsLDPlayer4\n2020-03-25 23:44 &#8211; 2020-03-25 23:45 &#8211; 000000000 ____D C:Program Filesldplayerbox\n2020-03-25 23:44 &#8211; 2020-03-25 23:44 &#8211; 000000000 ____D C:UsersDanieleDocumentsXuanZhi\n2020-03-25 23:43 &#8211; 2020-03-25 23:43 &#8211; 000000000 ____D C:Program FilesMcAfee\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000284010 _____ C:UsersDanieleAppDataRoamingm47_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000000000 ____D C:UsersDanieleDownloads2cep\n2020-03-25 23:41 &#8211; 2020-03-25 23:46 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingXuanZhi\n2020-03-25 23:41 &#8211; 2020-03-25 23:41 &#8211; 002931392 _____ (XUANZHI INTERNATIONAL CO., LIMITED) C:UsersDanieleDownloadsLDPlayer_ens_3020_ld.exe\n2020-03-25 23:41 &#8211; 2020-03-25 23:41 &#8211; 002931392 _____ (XUANZHI INTERNATIONAL CO., LIMITED) C:UsersDanieleDownloadsLDPlayer_ens_3020_ld (1).exe\n\n==================== One month (modified) ==================\n\n(If an entry is included in the fixlist, the file/folder will be moved.)\n\n2020-04-19 14:47 &#8211; 2014-02-28 19:48 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalBattle.net\n2020-04-19 14:28 &#8211; 2017-01-29 20:15 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalLowMozilla\n2020-04-19 14:27 &#8211; 2019-01-30 14:34 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingDiscord\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000911 _____ C:WindowsTasksEPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000911 _____ C:WindowsTasksEPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000725 _____ C:WindowsTasksEPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000725 _____ C:WindowsTasksEPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F.job\n2020-04-19 12:25 &#8211; 2018-07-01 20:59 &#8211; 000000000 ____D C:ProgramDataNVIDIA\n2020-04-19 03:56 &#8211; 2009-07-14 05:45 &#8211; 000016976 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0\n2020-04-19 03:56 &#8211; 2009-07-14 05:45 &#8211; 000016976 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0\n2020-04-19 03:19 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingHearthstoneDeckTracker\n2020-04-18 20:55 &#8211; 2018-03-26 22:41 &#8211; 000002512 _____ C:UsersDanieleDesktopHearthstone Deck Tracker.lnk\n2020-04-18 20:55 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalHearthstoneDeckTracker\n2020-04-18 20:54 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalSquirrelTemp\n2020-04-18 15:26 &#8211; 2014-02-28 19:47 &#8211; 000000000 ____D C:Program Files (x86)Battle.net\n2020-04-18 14:22 &#8211; 2014-06-18 09:34 &#8211; 000000000 ____D C:Program Files (x86)TeamViewer\n2020-04-18 14:21 &#8211; 2009-07-14 06:08 &#8211; 000000006 ____H C:WindowsTasksSA.DAT\n2020-04-17 19:37 &#8211; 2017-05-31 22:40 &#8211; 000000000 ____D C:UsersRee\n2020-04-17 13:30 &#8211; 2019-12-20 00:37 &#8211; 000000000 ____D C:WindowsSysWOW64NV\n2020-04-17 13:30 &#8211; 2019-12-20 00:37 &#8211; 000000000 ____D C:Windowssystem32NV\n2020-04-17 13:29 &#8211; 2017-09-12 00:30 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Firefox\n2020-04-17 13:29 &#8211; 2013-05-04 17:46 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service\n2020-04-17 13:22 &#8211; 2014-01-15 19:16 &#8211; 000000000 ____D C:Program Files (x86)Steam\n2020-04-17 13:10 &#8211; 2017-12-17 16:51 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalUbisoft Game Launcher\n2020-04-16 22:37 &#8211; 2012-06-21 20:37 &#8211; 000000000 ___HD C:Program Files (x86)InstallShield Installation Information\n2020-04-16 22:37 &#8211; 2009-07-14 06:32 &#8211; 000000000 ___RD C:ProgramDataMicrosoftWindowsStart MenuProgramsGames\n2020-04-16 22:36 &#8211; 2013-05-04 20:18 &#8211; 000000000 ____D C:UsersDanieleAppDataRoaminguTorrent\n2020-04-15 20:36 &#8211; 2013-05-04 18:11 &#8211; 000002226 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk\n2020-04-10 00:17 &#8211; 2009-07-14 04:20 &#8211; 000000000 ____D C:Windowsinf\n2020-04-10 00:15 &#8211; 2013-05-06 00:19 &#8211; 000000000 ____D C:ProgramDataAvira\n2020-04-10 00:15 &#8211; 2013-05-06 00:19 &#8211; 000000000 ____D C:Program Files (x86)Avira\n2020-04-10 00:13 &#8211; 2013-04-13 02:40 &#8211; 000743878 _____ C:Windowssystem32perfh010.dat\n2020-04-10 00:13 &#8211; 2013-04-13 02:40 &#8211; 000148496 _____ C:Windowssystem32perfc010.dat\n2020-04-10 00:13 &#8211; 2009-07-14 06:13 &#8211; 001662796 _____ C:Windowssystem32PerfStringBackup.INI\n2020-04-10 00:04 &#8211; 2013-04-16 13:43 &#8211; 000000000 ____D C:UsersDaniele\n2020-04-09 23:52 &#8211; 2014-08-20 13:02 &#8211; 000000000 ____D C:ProgramDataPackage Cache\n2020-04-09 23:28 &#8211; 2018-01-28 01:56 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingKeePass\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000001121 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsKeePass 2.lnk\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000001109 _____ C:UsersDanieleDesktopKeePass 2.lnk\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000000000 ____D C:Program Files (x86)KeePass Password Safe 2\n2020-04-02 06:28 &#8211; 2018-03-29 14:27 &#8211; 000000000 ____D C:Program Files (x86)Overwolf\n2020-04-02 00:49 &#8211; 2010-11-21 04:27 &#8211; 000744808 ____N (Microsoft Corporation) C:Windowssystem32MpSigStub.exe\n2020-03-26 18:43 &#8211; 2019-12-18 20:22 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingChangZhi2\n2020-03-26 17:50 &#8211; 2013-05-12 22:25 &#8211; 000000000 ____D C:UsersDanieleDesktopCompleanno Ree 2013\n2020-03-26 17:49 &#8211; 2020-02-04 14:31 &#8211; 000000000 ____D C:UsersDanieleDesktopCittadinanza\n2020-03-25 23:42 &#8211; 2013-05-06 19:11 &#8211; 000000000 ____D C:ProgramDataMcAfee\n2020-03-25 23:34 &#8211; 2019-12-18 20:31 &#8211; 000000000 ____D C:UsersDaniele.LdVirtualBox\n2020-03-25 13:00 &#8211; 2019-02-14 20:04 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalBluestacks\n2020-03-24 02:08 &#8211; 2013-05-15 17:30 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingSoftGrid Client\n2020-03-21 02:29 &#8211; 2013-05-04 18:11 &#8211; 000003586 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineUA\n2020-03-21 02:29 &#8211; 2013-05-04 18:11 &#8211; 000003458 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineCore\n2020-03-20 08:46 &#8211; 2015-01-01 09:45 &#8211; 000004476 _____ C:Windowssystem32TasksAdobe Acrobat Update Task\n2020-03-20 08:45 &#8211; 2015-12-16 22:13 &#8211; 000002441 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk\n\n==================== Files in the root of some directories ========\n\n2013-12-31 12:57 &#8211; 2013-12-31 12:58 &#8211; 000000093 _____ () C:UsersDanieleAppDataRoamingARCompanion.log\n2019-12-18 20:31 &#8211; 2019-12-18 20:31 &#8211; 000000068 _____ () C:UsersDanieleAppDataRoamingchangzhi_leidian.data\n2019-12-21 18:17 &#8211; 2019-12-21 18:17 &#8211; 000000068 _____ () C:UsersDanieleAppDataRoamingchangzhi_mplayer.data\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000284010 _____ () C:UsersDanieleAppDataRoamingm47_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt\n2017-07-11 22:13 &#8211; 2017-07-11 22:13 &#8211; 000014139 _____ () C:UsersDanieleAppDataLocalHWVendorDetection.log\n2013-05-05 00:55 &#8211; 2019-12-27 13:15 &#8211; 000007615 _____ () C:UsersDanieleAppDataLocalresmon.resmoncfg\n\n==================== SigCheck ============================\n\n(There is no automatic fix for files that do not pass verification.)\n\nLastRegBack: 2020-04-17 19:29\n==================== End of FRST.txt ========================\nAdditional scan result of Farbar Recovery Scan Tool (x64) Version: 19-04-2020\nRan by Daniele (19-04-2020 14:50:00)\nRunning from C:UsersDanieleDownloads\nWindows 7 Home Premium Service Pack 1 (X64) (2013-04-16 12:43:25)\nBoot Mode: Normal\n==========================================================\n\n==================== Accounts: =============================\n\nAdministrator (S-1-5-21-1536202438-368462837-3654654372-500 &#8211; Administrator &#8211; Disabled)\nDaniele (S-1-5-21-1536202438-368462837-3654654372-1001 &#8211; Administrator &#8211; Enabled) =&gt; C:UsersDaniele\nGuest (S-1-5-21-1536202438-368462837-3654654372-501 &#8211; Limited &#8211; Disabled)\nHomeGroupUser$ (S-1-5-21-1536202438-368462837-3654654372-1003 &#8211; Limited &#8211; Enabled)\nRee (S-1-5-21-1536202438-368462837-3654654372-1005 &#8211; Limited &#8211; Enabled) =&gt; C:UsersRee\n\n==================== Security Center ========================\n\n(If an entry is included in the fixlist, it will be removed.)\n\nAV: Avira Antivirus (Enabled &#8211; Up to date) 8EAC8D5C-B3AA-95AA-3DF1-2845CDD09CBE\nAV: Microsoft Security Essentials (Enabled &#8211; Up to date) 71A27EC9-3DA6-45FC-60A7-004F623C6189\nAS: Microsoft Security Essentials (Enabled &#8211; Up to date) CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34\nAS: Avira Antivirus (Enabled &#8211; Up to date) 35CD6CB8-9590-9A24-0741-1337B657D603\nAS: Windows Defender (Disabled &#8211; Out of date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46\n\n==================== Installed Programs ======================\n\n(Only the adware programs with &quot;Hidden&quot; flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)\n\nAcer Backup Manager (HKLM-x32&#8230;InstallShield_0B61BBD5-DA3C-409A-8730-0C3DC3B0F270) (Version: 3.0.0.99 &#8211; NTI Corporation)\nAcer Crystal Eye Webcam (HKLM-x32&#8230;1FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 1.0.1904 &#8211; CyberLink Corp.) Hidden\nAcer Crystal Eye Webcam (HKLM-x32&#8230;InstallShield_01FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 1.0.1904 &#8211; CyberLink Corp.)\nAcer ePower Management (HKLM-x32&#8230;3DB0448D-AD82-4923-B305-D001E521A964) (Version: 6.00.3008 &#8211; Acer Incorporated)\nAcer eRecovery Management (HKLM-x32&#8230;7F811A54-5A09-4579-90E1-C93498E230D9) (Version: 5.00.3504 &#8211; Acer Incorporated)\nAcer Games (HKLM-x32&#8230;WildTangent acer Master Uninstall) (Version: 1.0.2.5 &#8211; WildTangent)\nAcer Registration (HKLM-x32&#8230;Acer Registration) (Version: 1.04.3504 &#8211; Acer Incorporated)\nAcer ScreenSaver (HKLM-x32&#8230;Acer Screensaver) (Version: 1.1.0913.2011 &#8211; Acer Incorporated)\nAcer Updater (HKLM-x32&#8230;EE171732-BEB4-4576-887D-CB62727F01CA) (Version: 1.02.3502 &#8211; Acer Incorporated)\nAdobe Acrobat Reader DC &#8211; Italiano (HKLM-x32&#8230;AC76BA86-7AD7-1040-7B44-AC0F074E4100) (Version: 20.006.20042 &#8211; Adobe Systems Incorporated)\nAdobe AIR (HKLM-x32&#8230;Adobe AIR) (Version: 2.7.1.19610 &#8211; Adobe Systems Incorporated)\nAdobe Flash Player 29 ActiveX (HKLM-x32&#8230;Adobe Flash Player ActiveX) (Version: 29.0.0.140 &#8211; Adobe Systems Incorporated)\nAdobe Flash Player 32 NPAPI (HKLM-x32&#8230;Adobe Flash Player NPAPI) (Version: 32.0.0.303 &#8211; Adobe)\nAgatha Christie &#8211; Death on the Nile (HKLM-x32&#8230;WTA-5e746bf8-8dee-4fe9-9f1a-49235ad98c76) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nAggiornamenti NVIDIA 31.1.10.0 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Update) (Version: 31.1.10.0 &#8211; NVIDIA Corporation) Hidden\nApplication Verifier x64 External Package (HKLM&#8230;77F3D72C-465F-BD51-890E-CC3914B1365F) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nAspera Connect 3.6.1.111228 (HKLM-x32&#8230;EC793CAC-7C41-4817-BA98-7E481A79F9CF) (Version: 3.6.1.111228 &#8211; © Copyright IBM Corp. 2014) Hidden\nAspera Connect 3.6.1.111228 (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Aspera Connect 3.6.1.111228) (Version: 3.6.1.111228 &#8211; © Copyright IBM Corp. 2014)\nAssassin&#39;s Creed IV Black Flag (HKLM-x32&#8230;Uplay Install 273) (Version:  &#8211; Ubisoft)\nAvira (HKLM-x32&#8230;CAB70370-888E-4D62-B5D5-DA7982585C46) (Version: 1.2.145.25926 &#8211; Avira Operations GmbH &amp; Co. KG) Hidden\nAvira (HKLM-x32&#8230;e636e084-c7ab-4246-8ad2-aa1bb1cbedfd) (Version: 1.2.145.25926 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Antivirus (HKLM-x32&#8230;Avira Antivirus) (Version: 15.0.2004.1828 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Phantom VPN (HKLM-x32&#8230;Avira Phantom VPN) (Version: 2.32.2.34115 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Software Updater (HKLM-x32&#8230;30947035-9248-4304-96CE-CB6B1D38CFD5) (Version: 2.0.6.30594 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira System Speedup (HKLM-x32&#8230;Avira System Speedup_is1) (Version: 6.4.1.10871 &#8211; Avira Operations GmbH &amp; Co. KG)\nBackup Manager V3 (HKLM-x32&#8230;B61BBD5-DA3C-409A-8730-0C3DC3B0F270) (Version: 3.0.0.99 &#8211; NTI Corporation) Hidden\nBattle.net (HKLM-x32&#8230;Battle.net) (Version:  &#8211; Blizzard Entertainment)\nBejeweled 2 Deluxe (HKLM-x32&#8230;WTA-878366c0-7e0d-49fc-9060-e75a6dabe155) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nBlue Jeans (HKLM-x32&#8230;6D19EE68-6672-48DB-A45A-5CCFA8021D92) (Version: 1.28.10 &#8211; Blue Jeans)\nBroadcom Card Reader Driver Installer (HKLM&#8230;4710662C-8204-4334-A977-B1AC9E547819) (Version: 14.8.2.2 &#8211; Broadcom Corporation)\nBroadcom NetLink Controller (HKLM&#8230;C91DCB72-F5BB-410D-A91A-314F5D1B4284) (Version: 14.8.4.1 &#8211; Broadcom Corporation)\nCaesar 3 (HKLM-x32&#8230;Caesar 3) (Version:  &#8211; )\nChuzzle Deluxe (HKLM-x32&#8230;WTA-7f54354a-b7a2-4639-9a5c-f4b75efe2e90) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nclear.fi (HKLM-x32&#8230;14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C) (Version: 1.0.1517_36458 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;2637C347-9DAD-11D6-9EA2-00055D0CA761) (Version: 1.0.2024.00 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;B906C11A-D193-4143-9FA7-E2EE8A5A8F21) (Version: 9.0.8026 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;InstallShield_2637C347-9DAD-11D6-9EA2-00055D0CA761) (Version: 1.0.2024.00 &#8211; CyberLink Corp.)\nclear.fi Client (HKLM-x32&#8230;43AAE145-83CF-4C96-9A5E-756CEFCE879F) (Version: 1.00.3500 &#8211; Acer Incorporated)\nCrazy Chicken Kart 2 (HKLM-x32&#8230;WTA-111fa445-16e9-4867-bd6d-79c26bc446f5) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nD3DX10 (HKLM-x32&#8230;E09C4DB7-630C-4F06-A631-8EA7239923AF) (Version: 15.4.2368.0902 &#8211; Microsoft) Hidden\nDAEMON Tools Lite (HKLM-x32&#8230;DAEMON Tools Lite) (Version: 4.48.1.0347 &#8211; Disc Soft Ltd)\nDiablo III (HKLM-x32&#8230;Diablo III) (Version:  &#8211; Blizzard Entertainment)\nDiscord (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Discord) (Version: 0.0.306 &#8211; Discord Inc.)\nDisinstalla EPSON SX100 Series Printer (HKLM&#8230;EPSON SX100 Series) (Version:  &#8211; SEIKO EPSON Corporation)\nDisplayDriverAnalyzer (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_DisplayDriverAnalyzer) (Version: 391.35 &#8211; NVIDIA Corporation) Hidden\nDolby Advanced Audio v2 (HKLM-x32&#8230;B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613) (Version: 7.2.7000.7 &#8211; Dolby Laboratories Inc)\nDragon Age II (HKLM-x32&#8230;F2E23139-3404-4E3C-9855-7724415D62A5) (Version: 1.04 &#8211; Electronic Arts, Inc.)\nDropbox (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Dropbox) (Version: 3.0.5 &#8211; Dropbox, Inc.)\neBay Worldwide (HKLM-x32&#8230;D3E5A972-9A15-427D-AE78-8181A5FD943C) (Version: 2.2.0409 &#8211; OEM)\nEpson Connect Printer Setup (HKLM-x32&#8230;D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C) (Version: 1.4.0 &#8211; Seiko Epson Corporation)\nEpson Event Manager (HKLM-x32&#8230;9F205E94-9E42-4486-A92A-DF3F6CB85444) (Version: 3.10.0061 &#8211; Seiko Epson Corporation)\nEPSON Remote Print Uninstall (HKLM&#8230;EPSON Remote Print) (Version:  &#8211; SEIKO EPSON Corporation)\nEPSON Scan (HKLM-x32&#8230;EPSON Scanner) (Version:  &#8211; Seiko Epson Corporation)\nEpson Software Updater (HKLM-x32&#8230;FD036A57-F81D-4865-AAF0-811558EA76AE) (Version: 4.5.1 &#8211; Seiko Epson Corporation)\nEPSON XP-312 313 315 Series Printer Uninstall (HKLM&#8230;EPSON XP-312 313 315 Series) (Version:  &#8211; SEIKO EPSON Corporation)\nEpsonNet Print (HKLM-x32&#8230;3E31400D-274E-4647-916C-2CACC3741799) (Version: 2.6.0 &#8211; SEIKO EPSON CORPORATION)\nEvernote v. 4.5.1 (HKLM-x32&#8230;28921580-E4BB-11E0-9FD7-1CC1DEF07CBE) (Version: 4.5.1.5451 &#8211; Evernote Corp.)\nFATE (HKLM-x32&#8230;WTA-d562914f-464e-442a-9b6b-eef07926c4b7) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nFinal Drive: Nitro (HKLM-x32&#8230;WTA-ba528cbd-abfc-43b4-b622-039073085d6c) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nFooz Kids (HKLM-x32&#8230;4C774C35-E0AF-72E1-136A-2BF666702268) (Version: 3.0.8 &#8211; FUHU, Inc.) Hidden\nFooz Kids (HKLM-x32&#8230;FoozKids) (Version: 3.0.8 &#8211; FUHU, Inc.)\nFooz Kids Platform (HKLM-x32&#8230;8D68CE08-9A14-4B7B-9857-3C646A2F34C7) (Version: 2.1 &#8211; FUHU, Inc.)\nFotogalerija Windows Live (HKLM-x32&#8230;E59969EA-3B5B-4B24-8B94-43842A7FBFE9) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria de Fotografias do Windows Live (HKLM-x32&#8230;EC0B576-90F9-43C3-8FAD-A4902DF4B8F4) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalería fotográfica de Windows Live (HKLM-x32&#8230;E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria fotogràfica del Windows Live (HKLM-x32&#8230;4736B0ED-F6A1-48EC-A1B7-C053027648F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria fotografii usługi Windows Live (HKLM-x32&#8230;CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalerie de photos Windows Live (HKLM-x32&#8230;488F0347-C4A7-4374-91A7-30818BEDA710) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalerie foto Windows Live (HKLM-x32&#8230;CB66242D-12B1-4494-82D2-6F53A7E024A3) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGoogle Chrome (HKLM-x32&#8230;Google Chrome) (Version: 81.0.4044.113 &#8211; Google LLC)\nGoogle Update Helper (HKLM-x32&#8230;60EC980A-BDA2-4CB6-A427-B07A5498B4CA) (Version: 1.3.35.451 &#8211; Google LLC) Hidden\nHearthArena Companion (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Overwolf_eldaohcjmecjpkpdhhoiolhhaeapcldppbdgbnbc) (Version: 1.5.0.2 &#8211; Overwolf app)\nHearthstone (HKLM-x32&#8230;Hearthstone) (Version:  &#8211; Blizzard Entertainment)\nHearthstone Deck Tracker (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;HearthstoneDeckTracker) (Version: 1.10.7 &#8211; HearthSim)\nHP USB Disk Storage Format Tool (HKLM-x32&#8230;E0DF90C-D0BA-4C89-9262-AD78D1A3DE51) (Version:  &#8211; )\nIdentity Card (HKLM-x32&#8230;Identity Card) (Version: 1.00.3501 &#8211; Acer Incorporated)\nInsaniquarium Deluxe (HKLM-x32&#8230;WTA-1aadf450-ec73-41b5-b741-966d0737010a) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nIntel® Control Center (HKLM-x32&#8230;F8A9085D-4C7A-41a9-8A77-C8998A96C421) (Version: 1.2.1.1007 &#8211; Intel Corporation)\nIntel® Management Engine Components (HKLM-x32&#8230;65153EA5-8B6E-43B6-857B-C6E4FC25798A) (Version: 7.0.0.1144 &#8211; Intel Corporation)\nIntel® Processor Graphics (HKLM-x32&#8230;F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA) (Version: 8.15.10.2342 &#8211; Intel Corporation)\nIntel® Processor Identification Utility (HKLM-x32&#8230;A92A4DB0-CD37-42D1-BE1D-603D53C24328) (Version: 1.0.0.0 &#8211; Intel Corporation)\nIntel® Rapid Storage Technology (HKLM-x32&#8230;3E29EE6C-963A-4aae-86C1-DC237C4A49FC) (Version: 10.5.0.1026 &#8211; Intel Corporation)\nIntel® SDK for OpenCL &#8211; CPU Only Runtime Package (HKLM-x32&#8230;FCB3772C-B7D0-4933-B1A9-3707EBACC573) (Version: 2.0.0.37149 &#8211; Intel Corporation)\nJava 8 Update 171 (HKLM-x32&#8230;26A24AE4-039D-4CA4-87B4-2F32180171F0) (Version: 8.0.1710.11 &#8211; Oracle Corporation)\nJewel Match 3 (HKLM-x32&#8230;WTA-63325e84-34c2-4ccd-b3ee-87abc401d44a) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nJewel Quest Solitaire (HKLM-x32&#8230;WTA-4d51be1b-2978-4973-ad15-8b42189f04f8) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nJohn Deere Drive Green (HKLM-x32&#8230;WTA-91a805f7-4cee-4088-a326-afc28032536e) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nJuniper Installer Service (HKLM-x32&#8230;93A64A36-C060-47B4-96DE-D405CC22F4C4) (Version: 7.4.28485 &#8211; Juniper Networks) Hidden\nJuniper Installer Service 7.4 (HKLM-x32&#8230;Juniper Installer Service 7.4) (Version: 7.4.28485 &#8211; Juniper Networks, Inc.)\nJuniper Networks Network Connect 7.1.8 (HKLM-x32&#8230;Juniper Network Connect 7.1.8) (Version: 7.1.8.20737 &#8211; Juniper Networks)\nJuniper Networks Network Connect 7.3.0 (HKLM-x32&#8230;Juniper Network Connect 7.3.0) (Version: 7.3.0.24657 &#8211; Juniper Networks)\nJuniper Networks Network Connect 7.4.0 (HKLM-x32&#8230;Juniper Network Connect 7.4.0) (Version: 7.4.0.30731 &#8211; Juniper Networks)\nJuniper Networks, Inc. Setup Client (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Juniper_Setup_Client) (Version: 7.4.10.45165 &#8211; Juniper Networks, Inc.)\nJuniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM&#8230;Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 &#8211; Juniper Networks, Inc.)\nJuniper Networks, Inc. Setup Client Activex Control (HKLM-x32&#8230;Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 &#8211; Juniper Networks, Inc.)\nJunk Mail filter update (HKLM-x32&#8230;1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nKeePass Password Safe 2.44 (HKLM-x32&#8230;KeePassPasswordSafe2_is1) (Version: 2.44 &#8211; Dominik Reichl)\nKits Configuration Installer (HKLM-x32&#8230;B74E65FD-CC47-41C5-4B89-791A3F61942D) (Version: 8.100.25984 &#8211; Microsoft) Hidden\nKodi (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Kodi) (Version:  &#8211; XBMC-Foundation)\nLaunch Manager (HKLM-x32&#8230;LManager) (Version: 5.1.7 &#8211; Acer Inc.)\nLDPlayer (HKLM-x32&#8230;LDPlayer4) (Version: 4.0 &#8211; XUANZHI INTERNATIONAL CO., LIMITED)\nLINE (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;LINE) (Version: 5.21.3.2086 &#8211; LINE Corporation)\nManuali EPSON (HKLM-x32&#8230;84CECC1B-21EF-41B1-9A91-3E724E5D99D3) (Version: 1.53.0.0 &#8211; Seiko Epson Corporation)\nMcAfee WebAdvisor (HKLM-x32&#8230;35ED3F83-4BDC-4c44-8EC6-6A8301C7413A) (Version: 4.1.1.90 &#8211; McAfee, LLC.)\nMesh Runtime (HKLM-x32&#8230;8C6D6116-B724-4810-8F2D-D047E6B7D68E) (Version: 15.4.5722.2 &#8211; Microsoft Corporation) Hidden\nMicrosoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32&#8230;D1D37853-0004-3E36-A7AA-74F4EEA35F64) (Version: 4.5.50930 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.5.1 SDK (HKLM-x32&#8230;19A5926D-66E1-46FC-854D-163AA10A52D3) (Version: 4.5.51641 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.8 (HKLM&#8230;92FB6C44-E685-45AD-9B20-CADF4CABA132 &#8211; 1033) (Version: 4.8.03761 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.8 (Italiano) (HKLM&#8230;92FB6C44-E685-45AD-9B20-CADF4CABA132 &#8211; 1040) (Version: 4.8.03761 &#8211; Microsoft Corporation)\nMicrosoft Office 2010 (HKLM-x32&#8230;95140000-0070-0000-0000-0000000FF1CE) (Version: 14.0.4763.1000 &#8211; Microsoft Corporation)\nMicrosoft Office a portata di clic 2010 (HKLM-x32&#8230;Office14.Click2Run) (Version: 14.0.4763.1000 &#8211; Microsoft Corporation)\nMicrosoft Office Starter 2010 &#8211; Italiano (HKLM-x32&#8230;90140011-0066-0410-0000-0000000FF1CE) (Version: 14.0.5128.5002 &#8211; Microsoft Corporation)\nMicrosoft Security Essentials (HKLM&#8230;Microsoft Security Client) (Version: 4.10.209.0 &#8211; Microsoft Corporation)\nMicrosoft Silverlight (HKLM&#8230;89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50918.0 &#8211; Microsoft Corporation)\nMicrosoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32&#8230;F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8) (Version: 3.1.0000 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17 (HKLM&#8230;8220EEFE-38CD-377E-8595-13398D740ACE) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.6161 (HKLM&#8230;5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17 (HKLM-x32&#8230;9A25302D-30C0-39D9-BD6F-21E6EC160475) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148 (HKLM-x32&#8230;1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161 (HKLM-x32&#8230;9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x64 Redistributable &#8211; 10.0.40219 (HKLM&#8230;1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x86 Redistributable &#8211; 10.0.40219 (HKLM-x32&#8230;F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x64) &#8211; 11.0.61030 (HKLM-x32&#8230;ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x86) &#8211; 11.0.61030 (HKLM-x32&#8230;33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x64) &#8211; 12.0.30501 (HKLM-x32&#8230;50d4fc8-5d48-4b8f-8972-47c82c46020f) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x86) &#8211; 12.0.30501 (HKLM-x32&#8230;f65db027-aff3-4070-886a-0d87064aabb1) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015 Redistributable (x64) &#8211; 14.0.24215 (HKLM-x32&#8230;d992c12e-cab2-426f-bde3-fb8c53950b0d) (Version: 14.0.24215.1 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015 Redistributable (x86) &#8211; 14.0.24215 (HKLM-x32&#8230;e2803110-78b3-4664-a479-3611a381656a) (Version: 14.0.24215.1 &#8211; Microsoft Corporation)\nMonitoraggio della tecnologia Intel® Turbo Boost 2.0 (HKLM&#8230;B77EFA0B-9BD3-4122-9F9A-15A963B5EA24) (Version: 2.1.23.0 &#8211; Intel)\nMozilla Firefox 75.0 (x64 it) (HKLM&#8230;Mozilla Firefox 75.0 (x64 it)) (Version: 75.0 &#8211; Mozilla)\nMozilla Maintenance Service (HKLM-x32&#8230;MozillaMaintenanceService) (Version: 75.0.0.7398 &#8211; Mozilla)\nMSI Development Tools (HKLM-x32&#8230;CF3A1CA6-5E5E-B4BD-6CF1-363056816CA2) (Version: 8.100.26898 &#8211; Microsoft Corporation) Hidden\nMyEpson Portal (HKLM-x32&#8230;3361D415-BA35-4143-B301-661991BA6219) (Version: 1.1.2.2 &#8211; SEIKO EPSON CORPORATION) Hidden\nMyEpson Portal (HKLM-x32&#8230;MyEpson Portal) (Version:  &#8211; SEIKO EPSON Corporation)\nMystery of Mortlake Mansion (HKLM-x32&#8230;WTA-fa5c5656-0bbe-4718-93c5-e01c9a8c326f) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nnewsXpresso (HKLM-x32&#8230;613C0AC5-3A67-4B94-8B13-9176AD83F5BF) (Version: 1.0.0.40 &#8211; esobi Inc.) Hidden\nnewsXpresso (HKLM-x32&#8230;InstallShield_613C0AC5-3A67-4B94-8B13-9176AD83F5BF) (Version: 1.0.0.40 &#8211; esobi Inc.)\nNotepad++ (HKLM-x32&#8230;Notepad++) (Version: 6.6.8 &#8211; Notepad++ Team)\nNTI Media Maker 9 (HKLM-x32&#8230;D3D5C4E8-040F-4C6F-8105-41D43CF94F44) (Version: 9.0.2.9002 &#8211; NTI Corporation) Hidden\nNTI Media Maker 9 (HKLM-x32&#8230;InstallShield_D3D5C4E8-040F-4C6F-8105-41D43CF94F44) (Version: 9.0.2.9002 &#8211; NTI Corporation)\nNVIDIA Driver grafico 391.35 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Driver) (Version: 391.35 &#8211; NVIDIA Corporation)\nNVIDIA GeForce Experience 3.13.1.30 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.GFExperience) (Version: 3.13.1.30 &#8211; NVIDIA Corporation)\nNVIDIA PhysX System Software 9.17.0524 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.PhysX) (Version: 9.17.0524 &#8211; NVIDIA Corporation)\nOnline Plug-in (HKLM-x32&#8230;9A0FE2C0-7A7E-444E-8BD4-087178A91865) (Version: 14.0.0.91 &#8211; Citrix Systems, Inc.) Hidden\nOrigin (HKLM-x32&#8230;Origin) (Version: 10.5.2.49155 &#8211; Electronic Arts, Inc.)\nOverwolf (HKLM-x32&#8230;Overwolf) (Version: 0.143.0.24 &#8211; Overwolf Ltd.)\nPannello di controllo NVIDIA 391.35 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.ControlPanel) (Version: 391.35 &#8211; NVIDIA Corporation) Hidden\nPenguins! (HKLM-x32&#8230;WTA-f82d33cf-1bf0-4c54-85ca-769791349557) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nPidgin (HKLM-x32&#8230;Pidgin) (Version: 2.10.7 &#8211; )\nPlants vs. Zombies &#8211; Game of the Year (HKLM-x32&#8230;WTA-fc291ad5-7412-47d4-8641-d23ea23ef2e0) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nPoczta usługi Windows Live (HKLM-x32&#8230;64376910-1860-4CEF-8B34-AA5D205FC5F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPodstawowe programy Windows Live (HKLM-x32&#8230;7A9D47BA-6D50-4087-866F-0800D8B89383) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPolar Bowler (HKLM-x32&#8230;WTA-4f14c51e-af03-4658-92f9-0f759f61b306) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nPošta Windows Live (HKLM-x32&#8230;7BA19818-F717-4DFB-BC11-FAF17B2B8AEE) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPunkBuster Services (HKLM-x32&#8230;PunkBusterSvc) (Version: 0.991 &#8211; Even Balance, Inc.)\nQuickTime (HKLM-x32&#8230;B67BAFBA-4C9F-48FA-9496-933E3B255044) (Version: 7.74.80.86 &#8211; Apple Inc.)\nRaccolta foto di Windows Live (HKLM-x32&#8230;ED16B700-D91F-44B0-867C-7EB5253CA38D) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nRealtek High Definition Audio Driver (HKLM-x32&#8230;F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC) (Version: 6.0.1.6438 &#8211; Realtek Semiconductor Corp.)\nRenesas Electronics USB 3.0 Host Controller Driver (HKLM-x32&#8230;5442DAB8-7177-49E1-8B22-09A049EA5996) (Version: 2.0.34.0 &#8211; Renesas Electronics Corporation) Hidden\nRenesas Electronics USB 3.0 Host Controller Driver (HKLM-x32&#8230;InstallShield_5442DAB8-7177-49E1-8B22-09A049EA5996) (Version: 2.0.34.0 &#8211; Renesas Electronics Corporation)\nSDK Debuggers (HKLM-x32&#8230;9274C832-3D8A-A294-FDE8-8B9272357098) (Version: 8.100.26936 &#8211; Microsoft Corporation) Hidden\nShockwave (HKLM-x32&#8230;Shockwave) (Version:  &#8211; )\nSierra Utilities (HKLM-x32&#8230;Sierra Utilities) (Version:  &#8211; )\nSkype Click to Call (HKLM-x32&#8230;873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B) (Version: 8.5.0.9167 &#8211; Microsoft Corporation)\nSkype for Business Web App Plug-in (HKLM-x32&#8230;37C8167B-B653-4955-A6E8-EBB8DE937DDD) (Version: 15.8.20020.400 &#8211; Microsoft Corporation)\nSkype versione 8.44 (HKLM-x32&#8230;Skype_is1) (Version: 8.44 &#8211; Skype Technologies S.A.)\nSkype Web Plugin (HKLM-x32&#8230;DF6DC2FB-6783-4340-8B98-401CB656AD3A) (Version: 7.26.0.48 &#8211; Skype Technologies S.A.)\nSlingo Deluxe (HKLM-x32&#8230;WTA-0317c6a7-06b3-4b13-8a10-9b264c639ed4) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nSteam (HKLM-x32&#8230;Steam) (Version:  &#8211; Valve Corporation)\nSupporto applicazioni Apple (HKLM-x32&#8230;5D09C772-ECB3-442B-9CC6-B4341C78FDC2) (Version: 2.3.4 &#8211; Apple Inc.)\nSynaptics Pointing Device Driver (HKLM&#8230;SynTPDeinstKey) (Version: 15.1.6.0 &#8211; Synaptics Incorporated)\nTeamSpeak 3 Client (HKLM&#8230;TeamSpeak 3 Client) (Version: 3.0.15 &#8211; TeamSpeak Systems GmbH)\nTeamViewer (HKLM-x32&#8230;TeamViewer) (Version: 15.4.4445 &#8211; TeamViewer)\nTorchlight (HKLM-x32&#8230;WTA-86f22e04-aba5-46a2-baee-2d2b15dcd07d) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nTreeSize Free V4.2 (HKLM-x32&#8230;TreeSize Free_is1) (Version: 4.2 &#8211; JAM Software)\nUnity Web Player (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;UnityWebPlayer) (Version: 5.0.1f1 &#8211; Unity Technologies ApS)\nUpdate Installer for WildTangent Games App (HKLM-x32&#8230;2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2.WildTangent Games App) (Version:  &#8211; WildTangent) Hidden\nUplay (HKLM-x32&#8230;Uplay) (Version: 46.0 &#8211; Ubisoft)\nVirtual Villagers 4 &#8211; The Tree of Life (HKLM-x32&#8230;WTA-2d8486f0-4bd6-4e7d-9791-27029e7c6472) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nVLC media player (HKLM-x32&#8230;VLC media player) (Version: 3.0.8 &#8211; VideoLAN)\nVulkan Run Time Libraries 1.0.65.1 (HKLM&#8230;VulkanRT1.0.65.1) (Version: 1.0.65.1 &#8211; LunarG, Inc.) Hidden\nWedding Dash (HKLM-x32&#8230;WTA-e9518137-4e7b-4626-9f43-7daf4e91fd72) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nWelcome Center (HKLM-x32&#8230;Acer Welcome Center) (Version: 1.02.3504 &#8211; Acer Incorporated)\nWhoCrashed 5.54 (HKLM&#8230;WhoCrashed_is1) (Version:  &#8211; Resplendence Software Projects Sp.)\nWildTangent Games App (HKLM-x32&#8230;70B446D1-E03B-4ab0-9B3C-0832142C9AA8.WildTangent Games App-acer) (Version: 4.0.10.25 &#8211; WildTangent) Hidden\nWindows Live Essentials (HKLM-x32&#8230;WinLiveSuite) (Version: 15.4.3538.0513 &#8211; Microsoft Corporation)\nWindows Software Development Kit for Windows 8.1 (HKLM-x32&#8230;ed3a6e6d-9661-4357-abe4-fcc03dc57a07) (Version: 8.100.26936 &#8211; Microsoft Corporation)\nWinRAR 4.20 (32-bit) (HKLM-x32&#8230;WinRAR archiver) (Version: 4.20.0 &#8211; win.rar GmbH)\nWPT Redistributables (HKLM-x32&#8230;64F3FB9A-9250-B2D6-00B4-50BE0358AEE8) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nWPTx64 (HKLM-x32&#8230;BFF81CB5-E8C7-4184-FBB4-74ADFBC6CCCB) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nZuma Deluxe (HKLM-x32&#8230;WTA-744d629c-c549-4c3b-b820-4ba591229d4e) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nΣυλλογή φωτογραφιών του Windows Live (HKLM-x32&#8230;C00C2A91-6CB3-483F-80B3-2958E29468F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nОсновные компоненты Windows Live (HKLM-x32&#8230;E83DC314-C926-4214-AD58-147691D6FE9F) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nПочта Windows Live (HKLM-x32&#8230;B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137) (Version: 15.4.3502.0922 &#8211; Корпорация Майкрософт) Hidden\nФотоальбом Windows Live (HKLM-x32&#8230;77F69CA1-E53D-4D77-8BA3-FA07606CC851) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nФотогалерия на Windows Live (HKLM-x32&#8230;4444F27C-B1A8-464E-9486-4C37BAB39A09) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nגלריית התמונות של Windows Live (HKLM-x32&#8230;CE929F09-3853-4180-BD90-30764BFF7136) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nبريد Windows Live (HKLM-x32&#8230;A4C4B29-5A9D-4910-A13C-B920D5758744) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nمعرض صور Windows Live (HKLM-x32&#8230;FBCA06D2-4642-4F33-B20A-A7AB3F0D2E69) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\n\n==================== Custom CLSID (Whitelisted): ==============\n\n(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)\n\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID05A3A96-BAC4-4B0A-94EA-C0CE100EA736localserver32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID4A9E854-6F47-4F37-8A10-F896717F0329InprocServer32 -&gt; C:UsersDanieleAppDataLocalProgramsAsperaAspera Connectlib3.6.1npasperaweb64_3.6.1.111228.dll (Aspera, Inc. -&gt; Aspera, Inc. )\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID7ECF6F97-B4F3-4168-9835-F59C06D7875FInprocServer32 -&gt; C:UsersDanieleAppDataLocalMicrosoftSkypeForBusinessPlugin15.8.20020.400GatewayActiveX-x64.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDAD17B774-7F87-4141-BB9C-2AEE3841DC4EInprocServer32 -&gt; C:UsersDanieleAppDataLocalProgramsAsperaAspera Connectlib3.6.1npasperaweb64_3.6.1.111228.dll (Aspera, Inc. -&gt; Aspera, Inc. )\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDBB384F15-7676-403E-B797-1F9D935525A3InprocServer32 -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48GatewayActiveX-x64.dll (Microsoft Corporation -&gt; Skype Technologies S.A.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314ED9-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDA-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDB-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDC-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDD-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDE-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDF-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EE0-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt1 »] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt2 »] -&gt; FB314EDA-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt3 »] -&gt; FB314EDD-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt4 »] -&gt; FB314EDE-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt5 »] -&gt; FB314EDB-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt6 »] -&gt; FB314EDF-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt7 »] -&gt; FB314EDC-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt8 »] -&gt; FB314EE0-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers1: [ANotepad++64] -&gt; B298D29A-A6ED-11DE-BA8C-A68E55D89593 =&gt; C:Program Files (x86)Notepad++NppShell_06.dll [2014-05-12] () [File not signed]\nContextMenuHandlers1: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers1: [Shell Extension for Malware scanning] -&gt; 45AC2688-0253-4ED8-97DE-B5370FA7D48A =&gt; C:Program Files (x86)AviraAntivirusshlext64.dll [2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers1: [SystemSpeedupFilesMenu] -&gt; 14cb2bd0-2375-3d10-9b5d-5e18865c8959 =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers1: [WinRAR] -&gt; B41DB860-64E4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext64.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers1-x32: [WinRAR32] -&gt; B41DB860-8EE4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers2: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers4: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers4: [SystemSpeedupFoldersMenu] -&gt; 700866bb-c8e9-3e71-b359-abb28baed0e8 =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers5: [igfxcui] -&gt; 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 =&gt; C:Windowssystem32igfxpph.dll [2011-03-26] (Microsoft Windows Hardware Compatibility Publisher -&gt; Intel Corporation)\nContextMenuHandlers5: [NvCplDesktopContext] -&gt; 3D1975AF-48C6-4f8e-A182-BE0E08FA86A9 =&gt; C:Windowssystem32nvshext.dll [2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nContextMenuHandlers5: [SynGlwPad] -&gt; 681C10CE-5E5D-463A-A270-771AA48E4C71 =&gt; C:WindowsSystem32SynGlwPadShlExt.dll [2010-07-29] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nContextMenuHandlers5: [SystemSpeedupDesktopMenu] -&gt; 0cab5786-30e8-3185-9b3b-ccefbf1b8afe =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers6: [Shell Extension for Malware scanning] -&gt; 45AC2688-0253-4ED8-97DE-B5370FA7D48A =&gt; C:Program Files (x86)AviraAntivirusshlext64.dll [2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers6: [WinRAR] -&gt; B41DB860-64E4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext64.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers6-x32: [WinRAR32] -&gt; B41DB860-8EE4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers1_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers4_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers5_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\n\n==================== Codecs (Whitelisted) ====================\n\n(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)\n\nHKLM&#8230;Drivers32: [msacm.l3acm] =&gt; C:WindowsSysWOW64l3codecp.acm [220672 2009-07-14] (Microsoft Windows -&gt; Fraunhofer Institut Integrierte Schaltungen IIS)\n\n==================== Shortcuts &amp; WMI ========================\n\n(The entries could be listed to be restored or removed.)\n\nWMI:subscription__FilterToConsumerBinding-&gt;CommandLineEventConsumer.Name=&quot;BVTConsumer&quot;&quot;,Filter=&quot;__EventFilter.Name=&quot;BVTFilter&quot;::\nWMI:subscription__EventFilter-&gt;BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA « Win32_Processor » AND TargetInstance.LoadPercentage > 99]\nWMI:subscriptionCommandLineEventConsumer-&gt;BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]\n\n==================== Loaded Modules (Whitelisted) =============\n\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 096130048 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libcef.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000117760 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libEGL.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004342784 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libGLESv2.dll\n2019-03-28 00:48 &#8211; 2019-03-28 00:48 &#8211; 000115200 _____ (Microsoft Corporation) [File not signed] C:WindowsMicrosoft.NetassemblyGAC_32System.EnterpriseServicesv4.0_4.0.0.0__b03f5f7f11d50a3aSystem.EnterpriseServices.Wrapper.dll\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 001101824 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80.DLL\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 001093120 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80U.DLL\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 000061440 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c72205943d3MFC80ITA.DLL\n2015-05-01 19:18 &#8211; 2012-11-12 15:15 &#8211; 000558592 _____ (SEIKO EPSON CORPORATION) [File not signed] C:WindowsSystem32enppmon.dll\n2015-05-01 19:18 &#8211; 2012-10-22 17:19 &#8211; 000219648 _____ (SEIKO EPSON CORPORATION) [File not signed] C:WindowsSystem32enpres.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000760832 _____ (The Chromium Authors) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943chrome_elf.dll\n2020-04-18 15:23 &#8211; 2020-04-18 15:23 &#8211; 000047104 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943audioqtaudio_windows.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000026112 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqgif.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000027136 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqico.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000243712 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqjpeg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000223744 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqmng.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000020992 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqsvg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000332288 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqtiff.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 001140224 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943platformsqwindows.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000041984 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtGraphicalEffectsprivateqtgraphicaleffectsprivate.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtGraphicalEffectsqtgraphicaleffectsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQmlModels.2modelsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuick.2qtquick2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000084480 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickControls.2qtquickcontrols2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000267776 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickControlsqtquickcontrolsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000071680 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickLayoutsqquicklayoutsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000211456 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickTemplates.2qtquicktemplates2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickWindow.2windowplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004943360 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Core.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 005022208 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Gui.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000626176 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Multimedia.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000877056 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Network.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 002908672 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Qml.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 003078656 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Quick.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000096256 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5QuickControls2.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000681472 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5QuickTemplates2.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000259072 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Svg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004718080 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Widgets.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000439296 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5WinExtras.dll\n2020-04-18 15:25 &#8211; 2020-04-18 15:25 &#8211; 000159232 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Xml.dll\n\n==================== Alternate Data Streams (Whitelisted) ========\n\n==================== Safe Mode (Whitelisted) ==================\n\n==================== Association (Whitelisted) =================\n\n==================== Internet Explorer trusted/restricted ==========\n\n(If an entry is included in the fixlist, it will be removed from the registry.)\n\nIE trusted site: HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;geforce.co.uk -&gt; hxxps://www.geforce.co.uk\n\n==================== Hosts content: =========================\n\n(If needed Hosts: directive could be included in the fixlist to reset Hosts.)\n\n2009-07-14 03:34 &#8211; 2009-06-10 22:00 &#8211; 000000824 _____ C:Windowssystem32driversetchosts\n\n==================== Other Areas ===========================\n\n(Currently there is no automatic fix for this section.)\n\nHKLMSystemCurrentControlSetControlSession ManagerEnvironment\\Path -&gt; c:program files (x86)common filesoraclejavajavapath;c:programdataoraclejavajavapath;c:program filescommon filesmicrosoft sharedwindows live;c:program files (x86)common filesmicrosoft sharedwindows live;c:windowssystem32;c:windows;c:windowssystem32wbem;c:windowssystem32windowspowershellv1.0;c:program files (x86)windows liveshared;c:program files (x86)quicktimeqtsystem;c:program files (x86)windows kits8.1windows performance toolkit;c:program files (x86)intelopencl sdk2.0binx86;c:program files (x86)intelopencl sdk2.0binx64;c:program files (x86)intelopencl sdk2.0binx86;c:program files (x86)intelopencl sdk2.0binx64;C:Program Files (x86)NVIDIA CorporationPhysXCommon\nHKUS-1-5-21-1536202438-368462837-3654654372-1001Control PanelDesktop\\Wallpaper -&gt; C:UsersDanieleAppDataRoamingMicrosoftWindowsThemesTranscodedWallpaper.jpg\nDNS Servers: 194.168.4.100 &#8211; 194.168.8.100\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)\nWindows Firewall is enabled.\n\n==================== MSCONFIG/TASK MANAGER disabled items ==\n\n(If an entry is included in the fixlist, it will be removed.)\n\nMSCONFIGServices: AdobeARMservice =&gt; 2\nMSCONFIGServices: AdobeFlashPlayerUpdateSvc =&gt; 3\nMSCONFIGServices: cphs =&gt; 3\nMSCONFIGServices: DsiWMIService =&gt; 2\nMSCONFIGServices: dsNcService =&gt; 2\nMSCONFIGServices: ePowerSvc =&gt; 2\nMSCONFIGServices: EpsonScanSvc =&gt; 2\nMSCONFIGServices: EPSON_PM_RPCV4_06 =&gt; 2\nMSCONFIGServices: FLEXnet Licensing Service =&gt; 3\nMSCONFIGServices: GamesAppIntegrationService =&gt; 3\nMSCONFIGServices: GamesAppService =&gt; 3\nMSCONFIGServices: GREGService =&gt; 2\nMSCONFIGServices: gupdate =&gt; 2\nMSCONFIGServices: gupdatem =&gt; 3\nMSCONFIGServices: IAStorDataMgrSvc =&gt; 2\nMSCONFIGServices: ICCS =&gt; 3\nMSCONFIGServices: JuniperAccessService =&gt; 2\nMSCONFIGServices: Live Updater Service =&gt; 2\nMSCONFIGServices: LMS =&gt; 2\nMSCONFIGServices: MozillaMaintenance =&gt; 3\nMSCONFIGServices: MyEpson Portal Service =&gt; 2\nMSCONFIGServices: NTI IScheduleSvc =&gt; 2\nMSCONFIGServices: NvContainerLocalSystem =&gt; 3\nMSCONFIGServices: NvContainerNetworkService =&gt; 3\nMSCONFIGServices: NVDisplay.ContainerLocalSystem =&gt; 2\nMSCONFIGServices: NvTelemetryContainer =&gt; 2\nMSCONFIGServices: Origin Client Service =&gt; 3\nMSCONFIGServices: Origin Web Helper Service =&gt; 2\nMSCONFIGServices: OverwolfUpdater =&gt; 3\nMSCONFIGServices: SkypeUpdate =&gt; 2\nMSCONFIGServices: Steam Client Service =&gt; 3\nMSCONFIGServices: TeamViewer =&gt; 2\nMSCONFIGServices: TurboBoost =&gt; 3\nMSCONFIGServices: UNS =&gt; 2\nMSCONFIGstartupreg: APSDaemon =&gt; &quot;C:Program Files (x86)Common FilesAppleApple Application SupportAPSDaemon.exe&quot;\nMSCONFIGstartupreg: ArcadeMovieService =&gt; &quot;C:Program Files (x86)Acerclear.fiMovieclear.fiMovieService.exe&quot;\nMSCONFIGstartupreg: BackupManagerTray =&gt; &quot;C:Program Files (x86)NTIAcer Backup ManagerBackupManagerTray.exe&quot; -h -k\nMSCONFIGstartupreg: ConnectionCenter =&gt; &quot;C:Program Files (x86)CitrixICA Clientconcentr.exe&quot; /startup\nMSCONFIGstartupreg: DAEMON Tools Lite =&gt; &quot;C:Program Files (x86)DAEMON Tools LiteDTLite.exe&quot; -autorun\nMSCONFIGstartupreg: Dolby Advanced Audio v2 =&gt; &quot;C:Dolby PCEE4pcee4.exe&quot; -autostart\nMSCONFIGstartupreg: EEventManager =&gt; &quot;C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe&quot;\nMSCONFIGstartupreg: HotKeysCmds =&gt; &quot;C:Windowssystem32hkcmd.exe&quot;\nMSCONFIGstartupreg: IgfxTray =&gt; &quot;C:Windowssystem32igfxtray.exe&quot;\nMSCONFIGstartupreg: KeePass 2 PreLoad =&gt; &quot;C:Program Files (x86)KeePass Password Safe 2KeePass.exe&quot; &#8211;preload\nMSCONFIGstartupreg: LManager =&gt; C:Program Files (x86)Launch ManagerLManager.exe\nMSCONFIGstartupreg: mobilegeni daemon =&gt; C:Program Files (x86)MobogenieDaemonProcess.exe\nMSCONFIGstartupreg: NUSB3MON =&gt; &quot;C:Program Files (x86)Renesas ElectronicsUSB 3.0 Host Controller DriverApplicationnusb3mon.exe&quot;\nMSCONFIGstartupreg: OOTag =&gt; C:Program Files (x86)AcerOOBEOfferootag.exe\nMSCONFIGstartupreg: Persistence =&gt; &quot;C:Windowssystem32igfxpers.exe&quot;\nMSCONFIGstartupreg: Power Management =&gt; C:Program FilesAcerAcer ePower ManagementePowerTray.exe\nMSCONFIGstartupreg: QuickTime Task =&gt; &quot;C:Program Files (x86)QuickTimeQTTask.exe&quot; -atboottime\nMSCONFIGstartupreg: Redirector =&gt; &quot;C:Program Files (x86)CitrixICA Clientredirector.exe&quot; /startup\nMSCONFIGstartupreg: RtHDVBg_Dolby =&gt; C:Program FilesRealtekAudioHDARAVBg64.exe /FORPCEE4 \nMSCONFIGstartupreg: RtHDVCpl =&gt; C:Program FilesRealtekAudioHDARAVCpl64.exe -s\nMSCONFIGstartupreg: Search Protection =&gt; &quot;C:UsersDanieleAppDataRoamingSearch ProtectionSP.EXE&quot; /autostart\nMSCONFIGstartupreg: Skype =&gt; &quot;C:Program Files (x86)SkypePhoneSkype.exe&quot; /minimized /regrun\nMSCONFIGstartupreg: SunJavaUpdateSched =&gt; C:Program Files (x86)Common FilesJavaJava Updatejusched.exe\nMSCONFIGstartupreg: SynTPEnh =&gt; %ProgramFiles%SynapticsSynTPSynTPEnh.exe\n\n==================== FirewallRules (Whitelisted) ================\n\n(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)\n\nFirewallRules: [BB9D900C-0431-418E-8C0A-C231DDCD4601] =&gt; (Allow) C:Program Files (x86)Windows LiveContactswlcomm.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [32049F24-47B1-4DD3-8444-C00D6AD61B16] =&gt; (Allow) LPort=2869\nFirewallRules: [F75F9F29-02E8-4A68-8A28-54916E467F3D] =&gt; (Allow) LPort=1900\nFirewallRules: [C356995C-A188-4CAC-A71A-7AA95365C06B] =&gt; (Allow) C:Program Files (x86)Windows LiveMessengermsnmsgr.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [F27A6AD3-BABD-4E5E-9C93-AE69FEE085E1] =&gt; (Allow) C:Program Files (x86)Windows LiveMeshMOE.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [BC8F2982-4766-4CA9-8568-4DD9325B8D8B] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPclear.fi.exe (CyberLink -&gt; Acer Incorporated)\nFirewallRules: [D0884557-C872-4F28-B425-11EA38071BAA] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPclear.fiAgent.exe (CyberLink -&gt; CyberLink Corp.)\nFirewallRules: [DED69C15-FD73-47F1-9AE7-AA1E07B1AA5F] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelCLMLCLMLSvc.exe (CyberLink -&gt; CyberLink Corp.)\nFirewallRules: [7053E4E1-5D04-4B5F-B765-30CC150AB5F0] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [CD57FF54-0544-444F-8A7C-F432B4AF1F13] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [E10AD824-55A4-4C5E-AFDC-3278CEC762AF] =&gt; (Block) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [A6B0B15B-42D5-4D85-B90A-F0312F1B958D] =&gt; (Allow) Conquer_v5721_P2P.exe No File\nFirewallRules: [TCP Query User5AE4B2B1-9F23-4BE2-B1CB-D68B83804AB3D:giochidiablo iiidiablo iiidiablo iii.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiidiablo iii.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [UDP Query UserD67346DB-E26C-48B9-82CF-217414001078D:giochidiablo iiidiablo iiidiablo iii.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiidiablo iii.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [0A3A4784-CDE8-4892-BAB0-0DDA97B44F36] =&gt; (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [EF78F40A-C8F9-45E4-91A3-FB22A2D9B090] =&gt; (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [3A4F95A8-CD4C-461E-8981-11EB54AE03F9] =&gt; (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [FEF7E85F-3029-4D61-8862-75BA9506CC73] =&gt; (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [74DB4201-A73A-48B2-AA3A-148CF51349C0] =&gt; (Allow) C:Program Files (x86)Common FilesAppleApple Application SupportWebKit2WebProcess.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [F87F2B4A-34AD-488A-A071-7849FC87729E] =&gt; (Allow) C:UsersDanieleAppDataRoaminguTorrentuTorrent.exe No File\nFirewallRules: [AB0C7AF1-9475-46B2-B111-A13144F9DDFD] =&gt; (Allow) C:UsersDanieleAppDataRoaminguTorrentuTorrent.exe No File\nFirewallRules: [6EF13497-1121-43C7-97C4-E2ED9E9E244D] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [612ED1D8-238A-4C46-A5D8-9F246018E22C] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [44E21BC9-991E-4012-8574-7C0E44EC3586] =&gt; (Allow) C:Program Files (x86)Battle.netBattle.net.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [FECBDB91-560D-4666-8565-E4E38DDA498C] =&gt; (Allow) C:Program Files (x86)Battle.netBattle.net.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [A2A5A7DD-A5F7-4DE8-824D-B5DC0DF5E263] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2737Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [6E042EB7-3751-4658-B76C-F8D665685522] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2737Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [26535086-916B-4D18-8166-4D2AC4036B93] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2753Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [56CDE0D0-F4BD-41E6-99EC-9AD17421D43A] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2753Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [DFBCBBF2-C3D0-4D12-B7FB-BE8097FDD79A] =&gt; (Allow) C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nFirewallRules: [51A92662-05B7-40E3-AC9B-4361F8756831] =&gt; (Allow) C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nFirewallRules: [C20EF2D3-73B1-459D-A216-C18E161A05F1] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [CF196B10-406C-4903-BA69-031AFBF448F2] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [CB0FE2A1-EB29-4664-BEBA-B86716D7194F] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [22CE7CBF-D8FF-4D70-AAFE-28B08ED0B355] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [TCP Query User178CF2A2-0D4F-4104-9731-24DA106BAC23C:program files (x86)mozilla firefoxfirefox.exe] =&gt; (Block) C:program files (x86)mozilla firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [UDP Query User8B73733E-A519-4359-92DA-1F88A0CDFCE8C:program files (x86)mozilla firefoxfirefox.exe] =&gt; (Block) C:program files (x86)mozilla firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [TCP Query User68CA8A72-B440-4885-A5CB-5C3B7303437EC:program files (x86)kodikodi.exe] =&gt; (Allow) C:program files (x86)kodikodi.exe (XBMC-Foundation) [File not signed]\nFirewallRules: [UDP Query User1F56C585-CDCB-435D-989C-3898A06D6B82C:program files (x86)kodikodi.exe] =&gt; (Allow) C:program files (x86)kodikodi.exe (XBMC-Foundation) [File not signed]\nFirewallRules: [49ADE3C6-B596-4EEC-BF05-A44B6D162148] =&gt; (Allow) C:Program Files (x86)Steambinsteamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [F29CF4BD-B1DF-4AAB-BFF1-78A2BF5998AE] =&gt; (Allow) C:Program Files (x86)Steambinsteamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [6EBBDC91-6891-435A-906C-B0373AE1C0C8] =&gt; (Allow) C:Program Files (x86)SteamSteamAppscommonSoccer ManagerSoccer Manager.exe () [File not signed]\nFirewallRules: [6CF1FE33-D73B-40A5-A924-ADC0D7D2AF5A] =&gt; (Allow) C:Program Files (x86)SteamSteamAppscommonSoccer ManagerSoccer Manager.exe () [File not signed]\nFirewallRules: [TCP Query User9C70BED5-17C9-4370-9B0F-126357FA2B45C:usersdanieleappdatalocalskypepluginpluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalskypepluginpluginhost.exe (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFirewallRules: [UDP Query UserCE2FDCBA-9FE0-4053-A207-1322E0F9C691C:usersdanieleappdatalocalskypepluginpluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalskypepluginpluginhost.exe (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFirewallRules: [E4A4A8EA-DBCC-43D1-BD93-562C96AB0935] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [D52DCD90-6B49-49C0-97EF-D987E1868BFA] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [FCDE241B-E22A-4166-A8DC-48695BE935D6] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe No File\nFirewallRules: [1DDA64DE-761F-40CC-9EA7-851DC33D0D83] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe No File\nFirewallRules: [TCP Query UserB3EAE4A3-48B3-4441-87D3-093BFDF490CDC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Allow) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [UDP Query User87E5D06C-0B72-435E-9416-10CA4CDC044AC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Allow) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [TCP Query User9DF0C516-812D-4B45-829B-44126C8F1B20C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [UDP Query UserB72E6E6F-F7D0-4B79-815B-A8C55347E36FC:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [TCP Query UserA0034E0B-97DD-46E8-823A-62E0703F0ADAC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Block) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [UDP Query User9ADD0A8D-6055-4CB1-BA9F-4020B6706570C:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Block) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [09E47FEF-1759-43B4-9795-E9315C90A01D] =&gt; (Allow) C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [9E3142C6-90FB-4855-8FF1-FCBE114EEF4D] =&gt; (Allow) C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [9FB0505C-59D4-4113-91C5-9FBFAB217F6D] =&gt; (Allow) C:Program Files (x86)EPSON SoftwareECPrinterSetupENPApp.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [3A64D786-1F89-4801-BD77-C585A80CBFB7] =&gt; (Allow) C:Program Files (x86)EPSON SoftwareECPrinterSetupENPApp.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [TCP Query User74F6835B-AE6B-4AB9-8FCC-4459350C6570D:giochihearthstonehearthstone.exe] =&gt; (Block) D:giochihearthstonehearthstone.exe (Blizzard Entertainment, Inc. -&gt; )\nFirewallRules: [UDP Query User58AED474-9009-46A6-9923-0206B015380FD:giochihearthstonehearthstone.exe] =&gt; (Block) D:giochihearthstonehearthstone.exe (Blizzard Entertainment, Inc. -&gt; )\nFirewallRules: [VirtualPC-In-UDP-1] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [VirtualPC-In-UDP-2] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [VirtualPC-In-TCP-1] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [2DBC1507-3D9F-4958-9F7E-83595D81F016] =&gt; (Allow) D:GiochiDOTA 2steamappscommonEador. Masters of the Broken Worldlauncher.exe () [File not signed]\nFirewallRules: [B9026BBA-84DB-4400-8E1E-ABD5059117CD] =&gt; (Allow) D:GiochiDOTA 2steamappscommonEador. Masters of the Broken Worldlauncher.exe () [File not signed]\nFirewallRules: [428E48D4-A2FC-4E38-93F0-D015DED2CEA0] =&gt; (Allow) D:GiochiDOTA 2steamappscommondota 2 betagamebinwin64dota2.exe (Valve -&gt; )\nFirewallRules: [74C303B6-F2E8-4BC6-853F-EFD5FBE1535B] =&gt; (Allow) D:GiochiDOTA 2steamappscommondota 2 betagamebinwin64dota2.exe (Valve -&gt; )\nFirewallRules: [8D39FFFC-D3F3-40B7-9A83-559EF34F746B] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [9C0BC1AD-D865-48A0-A410-D2A72E9067A0] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [E4732CBC-C606-4D23-B4BE-4EF941892D2A] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [3C1769FE-7F73-40CD-8694-9D94EB5A4C73] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [EDDA200D-3307-4268-BF74-2A6B8C5850FE] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [5AC4F2B2-78FE-4312-94CF-D9BD16700FE6] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [7FFE0A82-6CE9-4263-BCEA-12BA88FC5AD1] =&gt; (Allow) C:Program FilesBlueStacksHD-Player.exe No File\nFirewallRules: [71D0935A-3DC4-46A8-B5EC-DC69E44DE995] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [734F2907-15A9-4964-9A4B-6AF63CB588B4] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [575D6C1F-8E4F-481C-AF65-601DDDA498A1] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LINE.exe No File\nFirewallRules: [891ABF3F-4987-4BF6-894D-804B5BC60153] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LINE.exe No File\nFirewallRules: [42FF3F30-8B2A-42B0-9BC0-F6C7BACF9258] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LineUpdater.exe No File\nFirewallRules: [F38971E4-A0A7-44DB-8A1C-8450D8A685C3] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LineUpdater.exe No File\nFirewallRules: [TCP Query UserCC8480C0-2941-4E9D-8A52-47822F0D9776D:giochidiablo iiidiablo iiix64diablo iii64.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiix64diablo iii64.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [UDP Query UserF6C4F938-A1A8-4668-AB2C-03AC5CE15700D:giochidiablo iiidiablo iiix64diablo iii64.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiix64diablo iii64.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [TCP Query User163F9996-F652-4769-9BAC-80C531683DA9C:program filesdnplayerext2ldboxheadless.exe] =&gt; (Allow) C:program filesdnplayerext2ldboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [UDP Query User3343FBF2-B1FF-4C62-B5FF-D8C3A6E8EC98C:program filesdnplayerext2ldboxheadless.exe] =&gt; (Allow) C:program filesdnplayerext2ldboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [6A971D92-619D-4131-AB0C-0BC7C492C4D5] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [9947C36A-3F76-4596-90D5-7062A53E9C53] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [TCP Query User71DD669E-F8F9-4657-9480-12045D0A9A65C:program filesldplayerboxldvboxheadless.exe] =&gt; (Allow) C:program filesldplayerboxldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [UDP Query User5C9DDDCA-3F20-4505-8FE1-74593EBD6931C:program filesldplayerboxldvboxheadless.exe] =&gt; (Allow) C:program filesldplayerboxldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [170B5594-146D-4B85-9BB4-3EF53938E732] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [37535782-EEB9-4AD5-82AB-95BDA7C0B007] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [F8CACE39-A536-471F-89EC-F6BA460694F0] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [472F5DAF-CF00-417C-AB83-604384991CE5] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [8070CE88-1B4C-434E-8495-B0F0C8C82972] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [22DBF4E8-86F2-44C0-9BE2-40F28D8B56AF] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [06240932-630C-46AA-8C14-877D0EA3938A] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [CC3EB70E-EEAD-4622-8480-E3C7771BF25C] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [E59453FF-C79A-4D0D-A485-D3FE8B274B54] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [0A829F94-700F-4835-8284-7B28614D717B] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [79FB848F-BBE9-42DA-8170-285A6C0060C8] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [456EF3E4-BE52-4A9A-8CA8-06554B75D800] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [B06D86D3-3848-4734-944F-5706BE664234] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [F0855DE7-46B2-4581-BFC1-2A4EB0D47355] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [8009BD78-17DA-44F1-95AA-5E9EC7724E77] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [73B5CCA2-1DFB-417E-88E2-0DAE1645F388] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [41C0109E-C969-40D1-AEDA-28C4B17EF631] =&gt; (Allow) D:GiochiDOTA 2steamappscommonPillars of EternityPillarsOfEternity.exe (Obsidian Entertainment) [File not signed]\nFirewallRules: [0A52AC62-C826-437E-BCE1-C1902CBE00BE] =&gt; (Allow) D:GiochiDOTA 2steamappscommonPillars of EternityPillarsOfEternity.exe (Obsidian Entertainment) [File not signed]\nFirewallRules: [374A4772-2595-4C7A-9E1D-A1692E687887] =&gt; (Allow) D:GiochiDOTA 2steamappscommonCounter-Strike Global Offensivecsgo.exe (Valve -&gt; )\nFirewallRules: [55E824ED-7014-48A7-8DAA-0C8717A6913C] =&gt; (Allow) D:GiochiDOTA 2steamappscommonCounter-Strike Global Offensivecsgo.exe (Valve -&gt; )\nFirewallRules: [E3CDA667-4963-4012-8775-68F6023DADD5] =&gt; (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -&gt; Google LLC)\nFirewallRules: [BB40FF31-6239-422E-8074-B6A9E2DC0D95] =&gt; (Block) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nFirewallRules: [0645C731-0335-4950-9427-213A6DA9E558] =&gt; (Allow) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nFirewallRules: [CDB7F1B2-0F67-4210-9A69-DF18B049D9CE] =&gt; (Allow) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\n\n==================== Restore Points =========================\n\n18-04-2020 04:24:53 Punto di controllo pianificato\n18-04-2020 22:37:41 Windows Update\n\n==================== Faulty Device Manager Devices ============\n\n==================== Event log errors: ========================\n\nApplication errors:\n==================\nError: (04/19/2020 02:59:14 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x28e4\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d615ee12c7f9a8\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 5dd80d31-81e1-11ea-b4b9-1c7508f37aca\n\nError: (04/18/2020 02:22:40 PM) (Source: WinMgmt) (EventID: 10) (User: )\nDescription: Impossibile riattivare il filtro eventi con query &quot;SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA &quot;Win32_Processor&quot; AND TargetInstance.LoadPercentage &gt; 99&quot; nello spazio dei nomi &quot;//./root/CIMV2&quot;. Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.\n\nError: (04/18/2020 02:22:32 PM) (Source: Avira Phantom VPN) (EventID: 0) (User: )\nDescription: Service cannot be started. Il processo di servizio non ha potuto connettersi al controller di servizio\n\nError: (04/18/2020 02:58:54 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x13cc\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d61524e890fa87\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 27c684c1-8118-11ea-8822-1c7508f37aca\n\nError: (04/17/2020 01:32:33 PM) (Source: WinMgmt) (EventID: 10) (User: )\nDescription: Impossibile riattivare il filtro eventi con query &quot;SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA &quot;Win32_Processor&quot; AND TargetInstance.LoadPercentage &gt; 99&quot; nello spazio dei nomi &quot;//./root/CIMV2&quot;. Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.\n\nError: (04/17/2020 02:59:07 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x18b0\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d6145bbe2f4581\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 050dfbb3-804f-11ea-ad8b-1c7508f37aca\n\nError: (04/17/2020 12:36:53 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: MsMpEng.exe, versione: 4.10.209.0, timestamp: 0x582a94a1\nNome del modulo che ha generato l&#39;errore: mpengine.dll, versione: 1.1.16900.4, timestamp: 0x5e70249a\nCodice eccezione: 0xc0000005\nOffset errore 0x00000000001d00cf\nID processo che ha generato l&#39;errore: 0xac\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d60ec33667deaa\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program FilesMicrosoft Security ClientMsMpEng.exe\nPercorso del modulo che ha generato l&#39;errore: C:ProgramDataMicrosoftMicrosoft AntimalwareDefinition UpdatesABFDE23F-10A0-40FD-89BB-EEAFDF90A038mpengine.dll\nID segnalazione: 2686ef91-803b-11ea-ad8b-1c7508f37aca\n\nError: (04/16/2020 10:25:52 PM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: Il programma Explorer.EXE versione 6.1.7601.23537 non interagisce più con Windows ed è stato chiuso. Per vedere se sono disponibili ulteriori informazioni sul problema, verificare la cronologia del problema in Centro operativo nel Pannello di controllo.\n\nID processo: 804\n\nOra di avvio: 01d60ec34d82acc2\n\nOra di chiusura: 0\n\nPercorso applicazione: C:WindowsExplorer.EXE\n\nID segnalazione: cb278b7b-8028-11ea-ad8b-1c7508f37aca\n\nSystem errors:\n=============\nError: (04/18/2020 02:23:26 PM) (Source: Service Control Manager) (EventID: 7031) (User: )\nDescription: Il servizio Avira Phantom VPN è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 5000 millisecondi: Riavvia il servizio.\n\nError: (04/17/2020 12:40:19 AM) (Source: Microsoft Antimalware) (EventID: 3002) (User: )\nDescription: La funzionalità di protezione in tempo reale di Antimalware Microsoft ha rilevato un errore e non è riuscita.\n\nFunzionalità: Network Inspection System\n\nCodice errore: 0x80070002\n\nDescrizione errore: Impossibile trovare il file specificato. \n\nMotivo: Nel sistema mancano degli aggiornamenti necessari per l&#39;esecuzione di Network Inspection System. Installare gli aggiornamenti necessari e riavviare il computer.\n\nError: (04/17/2020 12:38:27 AM) (Source: Service Control Manager) (EventID: 7031) (User: )\nDescription: Il servizio Microsoft Antimalware Service è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 100 millisecondi: Esegui il programma di ripristino configurato.\n\nError: (04/17/2020 12:36:50 AM) (Source: Microsoft Antimalware) (EventID: 5008) (User: )\nDescription: Il motore Antimalware Microsoft è stato interrotto a causa di un errore imprevisto.\n\nTipo errore: Arresto anomalo\n\nCodice eccezione: 0xc0000005\n\nRisorsa: file:C:UsersDanieleDownloadsSample GESE Grade 5 Topic form_completed..pdf\n\nError: (04/16/2020 11:28:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 40.\n\nError: (04/16/2020 11:28:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 70.\n\nError: (04/16/2020 10:18:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 40.\n\nError: (04/16/2020 10:18:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 70.\n\nWindows Defender:\n===================================\nDate: 2016-06-22 23:31:54.534\nLa description: \nWindows Defender: errore durante il tentativo di caricare le firme. Verrà tentato di ripristinare un set di firme valido.\nFirme tentate:Corrente\nCodice errore:0x80070002\nDescrizione errore:Impossibile trovare il file specificato. \nVersione firma:0.0.0.0\nVersione modulo:0.0.0.0\n\n==================== Memory info =========================== \n\nBIOS: Acer V1.07 03/02/2011\nMotherboard: Acer JE50_HR\nProcessor: Intel® Core™ i5-2410M CPU @ 2.30GHz\nPercentage of memory in use: 92%\nTotal physical RAM: 8043.86 MB\nAvailable physical RAM: 633.23 MB\nTotal Virtual: 24426 MB\nAvailable Virtual: 15554.41 MB\n\n==================== Drives ================================\n\nDrive c: (Acer) (Fixed) (Total:290.05 GB) (Free:130.96 GB) NTFS\nDrive d: (DATA) (Fixed) (Total:290.4 GB) (Free:143.46 GB) NTFS\nDrive e: (Misc) (CDROM) (Total:0.69 GB) (Free:0.13 GB) UDF\nDrive g: () (Removable) (Total:29.27 GB) (Free:1.17 GB) FAT32\n\n\\?Volume283c1efb-a59f-11e2-b4d5-806e6f6e6963 (SYSTEM RESERVED) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS\n\\?Volume283c1efa-a59f-11e2-b4d5-806e6f6e6963 (PQSERVICE) (Fixed) (Total:15.62 GB) (Free:2.53 GB) NTFS\n\n==================== MBR &amp; Partition Table ====================\n\n==========================================================\nDisk: 0 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: BD414BA4)\nPartition 1: (Not Active) &#8211; (Size=15.6 GB) &#8211; (Type=27)\nPartition 2: (Active) &#8211; (Size=100 MB) &#8211; (Type=07 NTFS)\nPartition 3: (Not Active) &#8211; (Size=290.1 GB) &#8211; (Type=07 NTFS)\nPartition 4: (Not Active) &#8211; (Size=290.4 GB) &#8211; (Type=07 NTFS)\n\n==========================================================\nDisk: 1 (Protective MBR) (Size: 29.3 GB) (Disk ID: 00000000)\n\nPartition: GPT.\n\n==================== End of Addition.txt =======================\n\n\n\nClick to rate this post!\r\n                                   \r\n                               [Total: 0  Average: 0]","paragraphs":["Résultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-04-2020\nRan par Daniele (administrateur) sur DANIELE-PC (Acer Aspire 5750G) (19-04-2020 14:37:26)\nExécution à partir de C:  Users  Daniele  Downloads\nProfils chargés: Daniele (Profils disponibles: Daniele &amp; Ree)\nPlateforme: Windows 7 Home Premium Service Pack 1 (X64) Langue: Italiano (Italia)\nInternet Explorer version 11 (navigateur par défaut: FF)\nMode de démarrage: Normal","==================== Processus (sur liste blanche) =================","(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé. Le fichier ne sera pas déplacé.)","(Adobe Inc. -&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avgnt.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avguard.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avscan.exe \n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avshadow.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  sched.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Launcher  Avira.ServiceHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Launcher  Avira.Systray.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Optimizer Host  Avira.OptimizerHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  SoftwareUpdater  Avira.SoftwareUpdater.ServiceHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  VPN  Avira.VpnService.exe\n(Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment) C:  Program Files (x86)  Battle.net  Battle.net.exe \n(Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment) C:  ProgramData  Battle.net  Agent  Agent.7022  Agent.exe\n(CyberLink -&gt; CyberLink Corp.) C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fiAgent.exe\n(CyberLink -&gt; CyberLink) C:  Program Files (x86)  Acer  clear.fi  MVP  Kernel  DMR  DMREngine.exe\n(Discord Inc. -&gt; Discord Inc.) C:  Users  Daniele  AppData  Local  Discord  app-0.0.306  Discord.exe \n(Even Balance, Inc. -&gt;) C:  Windows  SysWOW64  PnkBstrA.exe\n(Google LLC -&gt; Google LLC) C:  Program Files (x86)  Google  Chrome  Application  chrome.exe \n(HearthSim, LLC -&gt; HearthSim) C:  Users  Daniele  AppData  Local  HearthstoneDeckTracker  app-1.10.7  HearthstoneDeckTracker.exe\n(Intel Corporation -&gt; Intel Corporation) C:  Windows  System32  igfxpers.exe\n(Intel Corporation -&gt; Intel Corporation) C:  Windows  System32  igfxtray.exe\n(McAfee, LLC -&gt; McAfee, LLC) C:  Program Files  McAfee  WebAdvisor  servicehost.exe\n(McAfee, LLC -&gt; McAfee, LLC) C:  Program Files  McAfee  WebAdvisor  uihost.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Fichiers communs  microsoft shared  Virtualization Handler  CVHSVC.EXE\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Application Virtualization Client  sftlist.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Application Virtualization Client  sftvsa.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  MsMpEng.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  msseces.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  NisSrv.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  dllhost.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  rundll32.exe\n(Mozilla Corporation -&gt; Mozilla Corporation) C:  Program Files (x86)  Mozilla Firefox  firefox.exe \n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  NvTelemetry  NvTelemetryContainer.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display.NvContainer  NVDisplay.Container.exe \n(SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION) C:  Program Files  Fichiers communs  EPSON  EPW! 3 SSRP  E_S60RPB.EXE\n(SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION) C:  Windows  System32  spool  drivers  x64  3  E_IATILFE.EXE\n(Shanghai Changzhi Network Technology Co., Ltd. -&gt;) D:  XuanZhi  LDPlayer  ldnews.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnh.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPHelper.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  TeamViewer.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  TeamViewer_Service.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  tv_w32.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  tv_x64.exe","==================== Registre (liste blanche) ===================","(Si une entrée est incluse dans la liste de correctifs, l&#39;élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)","HKLM  &#8230;  Run: [MSC] =&gt; C:  Program Files  Microsoft Security Client  msseces.exe [1353680 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKLM  &#8230;  Run: [SynTPEnh] =&gt; C:  Program Files  Synaptics  SynTP  SynTPEnh.exe [2280232 2010-07-29] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nHKLM  &#8230;  Run: [] =&gt; [X]\nHKLM-x32  &#8230;  Exécuter: [KeePass 2 PreLoad] =&gt; C:  Program Files (x86)  KeePass Password Safe 2  KeePass.exe [3331264 2020-01-20] (Développeur Open Source, Dominik Reichl -&gt; Dominik Reichl)\nHKLM-x32  &#8230;  Exécuter: [Avira SystrayStartTrigger] =&gt; C:  Program Files (x86)  Avira  Launcher  Avira.SystrayStartTrigger.exe [239520 2020-04-02] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nHKLM-x32  &#8230;  Exécuter: [Avira System Speedup User Starter] =&gt; C:  Program Files (x86)  Avira  System Speedup  Avira.SystemSpeedup.Core.Common.Starter.exe [331368 2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nHKLM-x32  &#8230;  Exécuter: [] =&gt; [X]\nHKU  S-1-5-19  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKU  S-1-5-20  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [EPLTargetP0000000000000001] =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_IATILFE.EXE [297024 2013-01-24] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [Discord] =&gt; C:  Users  Daniele  AppData  Local  Discord  app-0.0.306  Discord.exe [90950968 2020-02-24] (Discord Inc. -&gt; Discord Inc.)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [LDNews] =&gt; D:  XuanZhi  LDPlayer  ldnews.exe [1309368 2020-03-25] (Shanghai Changzhi Network Technology Co., Ltd. -&gt;)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [] =&gt; [X]\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  RunOnce: [FlashPlayerUpdate] =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-18] (Adobe Inc. -&gt; Adobe)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 050c8d1e-37e4-11ea-9ee4-1c7508f37aca &#8211; H:  RTK_NIC_DRIVER_INSTALLER.sfx.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 5e68e840-be54-11e2-b434-806e6f6e6963 &#8211; G:  Setup.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 839489ac-58a7-11e5-ac80-1c7508ead495 &#8211; C:  Windows  system32  RunDLL32.EXE Shell32.DLL, ShellExec_RunDLL H:  Start.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 84650df6-67d9-11ea-9c89-1c7508f37aca &#8211; H:  HiSuiteDownLoader.exe} &#8211; H:  HiSuiteDownLoader.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: aab47bad-b4df-11e2-b1df-1c7508ead495 &#8211; F:  LANLauncher.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: b7603e81-b1e8-11e7-9500-1c7508ead495 &#8211; G:  HiSuiteDownLoader.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: fb958786-5f36-11e3-8f8a-1c7508ead495 &#8211; F:  autorun.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  Control Panel  Desktop \\ SCRNSAVE.EXE -&gt; C:  Windows  system32  scrnsave.scr [11264 2009-07-14] (Microsoft Windows -&gt; Microsoft Corporation)\nHKU  S-1-5-18  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKLM  Software  Microsoft  Active Setup  Installed Components: [2D46B6DC-2207-486B-B523-A557E6D54B47] -&gt; C:  Windows  system32  cmd.exe / D / C démarrer C:  Windows  system32  ie4uinit.exe -ClearIconCache\nHKLM  Software  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; C:  Program Files (x86)  Google  Chrome  Application  81.0.4044.113  Installer  chrmstp.exe [2020-04-15] (Google LLC -&gt; Google LLC)\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [2D46B6DC-2207-486B-B523-A557E6D54B47] -&gt; C:  Windows  system32  cmd.exe / D / C démarrer C:  Windows  system32  ie4uinit.exe -ClearIconCache\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; &quot;C:  Program Files (x86)  Google  Chrome  Application  57.0.2987.133  Installer  chrmstp.exe&quot; &#8211;configure-user-settings &#8211;verbose-logging &#8211;system-level\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [A6EADE66-0000-0000-484E-7E8A45000000] -&gt; C:  Program Files (x86)  Adobe  Acrobat Reader DC  Esl  AiodLite.dll [2019-05-03] (Adobe Inc. -&gt; Adobe Systems, Inc.)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [F8A0B131-5F68-486c-8040-7E8FC3C85BB6] -&gt; C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDCREDPROV.DLL [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nFournisseurs HKLM  Software  &#8230;  Authentication  PLAP: [60442b50-aac2-4db7-b9b0-813d2107287d] -&gt; c:  windows  system32  dsNcSmartCardProv.dll [2014-04-16] (Juniper Networks, Inc. -&gt; Juniper Networks)\nFournisseurs HKLM  Software  &#8230;  Authentication  PLAP: [9f4a51de-92b1-483a-b717-dd7d3bb7d3db] -&gt; c:  windows  system32  dsNcCredProv.dll [2014-04-16] (Juniper Networks, Inc. -&gt; Juniper Networks)\nAppInit_DLLs: C:  Windows  system32  nvinitx.dll =&gt; C:  Windows  system32  nvinitx.dll [182784 2018-03-25] (NVIDIA Corporation PE Sign v2016 -&gt; NVIDIA Corporation)\nAppInit_DLLs-x32: C:  Windows  SysWOW64  nvinit.dll =&gt; C:  Windows  SysWOW64  nvinit.dll [159704 2018-03-25] (NVIDIA Corporation PE Sign v2016 -&gt; NVIDIA Corporation)","==================== Tâches planifiées (liste blanche) ============","(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé sauf s&#39;il est répertorié séparément.)","Tâche: 0587C257-D7C6-4C78-8F21-1D7F3939B9B9 &#8211; System32  Tasks  Recovery Management  Burn Notification =&gt; C:  Program Files  Acer  Acer eRecovery Management  NotificationCenter  Notification.exe [816520 2011-08-09] (Acer Incorporated -&gt; Acer)\nTâche: 0698585B-BA25-4335-9278-3BC3C18BE8B5 &#8211; System32  Tasks  Adobe Flash Player NPAPI Notifier =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-18] (Adobe Inc. -&gt; Adobe)\nTâche: 0D073FB3-7592-4AD3-ACD5-261412DDD7DF &#8211; System32  Tasks  EPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 0D415B8D-D7FD-477F-97FB-381B18EBA498 &#8211; Tâche de mise à jour System32  Tasks  Adobe Acrobat =&gt; C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -&gt; Adobe Systems)\nTâche: 16CBEF8D-2362-4ADC-9C8E-7F143609615F &#8211; System32  Tasks  clear.fiAgent =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fiAgent.exe [120104 2011-08-24] (CyberLink -&gt; CyberLink Corp.)\nTâche: 19BE36DC-19D0-4AE2-B932-4E92E841E50E &#8211; System32  Tasks  NvTmMon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvTmMon.exe [510912 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 28017D3E-92AD-4139-B233-772380FCF796 &#8211; System32  Tasks  898F6CA2-2FC0-4969-9594-F4670EF81EBA =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 28FFE953-0A42-4552-8E34-DC5CE2F4000A &#8211; System32  Tasks  F3E47E76-9709-4A21-BB71-1B0C6C9B8223 =&gt; C:  Windows  system32  pcalua.exe -a E:  Setup.exe &#8211; d E: \nTâche: 2AFD2942-0BC9-4D3A-A82D-AD1D5CCE73FD &#8211; System32  Tasks  E3F8847E-F1BC-4BFB-8A19-8DF64248AAFE =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 34FFA4CE-EA47-418C-BE0E-1EA34C5DCC7B &#8211; System32  Tasks  AviraSystemSpeedupUpdate =&gt; C:  ProgramData  Avira  SystemSpeedup  Update  avira_speedup_setup_update.exe [27848432 2020-04-09] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nTâche: 461EE1FB-988C-4A90-BB13-D665D42A365A &#8211; System32  Tasks  NvProfileUpdaterDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  Update Core  NvProfileUpdater64 [662464 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 4802D53D-7317-4F6D-96B0-025C0D18E41B &#8211; System32  Tasks  5B715CDF-6EE8-460D-A988-FA5FE01124D1 =&gt; E:  baldur.exe\nTâche: 53F97095-C1E8-4C4E-8E7E-D640EAC6E922 &#8211; System32  Tasks  NVIDIA GeForce Experience SelfUpdate_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  NVIDIA GeForce Experience  NVIDIA GeForce Experience.exe [2069952 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 576D0D33-BE9A-4724-A555-8F4E9B90573B &#8211; System32  Tasks  EPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 58DE433B-64F3-4832-A901-30F96F3625BA &#8211; System32  Tasks  NvProfileUpdaterOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  Update Core  NvProfileUpdater64 [662464 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 5CED6FD0-67EC-4881-BEBA-77F9D42F4209 &#8211; System32  Tasks  Adobe Flash Player Updater =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashPlayerUpdateService.exe [335416 2019-12-18] (Adobe Inc. -&gt; Adobe)\nTâche: 6DA9947E-16BB-412B-9076-BAB7FB4730DC &#8211; System32  Tasks  NvTmRep_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvTmRep.exe [757184 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 6E86E2AF-4A75-49B5-B12F-E52842CDEB92 &#8211; System32  Tasks  E4841482-3364-44D1-9773-1AA169AD4679 =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 6E924764-AF68-4394-8DE7-E26688CAA88F &#8211; System32  Tasks  E6B67C06-3DA8-48D9-8061-CC54EDA7A03D =&gt; C:  Users  Daniele  Desktop  Tor Browser  Browser  firefox.exe.exe \nTâche: 82643A6B-7C76-4DDE-9EFC-EAA23691FC3F &#8211; System32  Tasks  7D643D1C-0931-495D-8883-8D8B85E39BAB =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Bureau  hpflash1.exe -d C:  Users  Daniele  Desktop\nTâche: 89BBD1F3-AD18-4295-9C8F-408713D375EF &#8211; System32  Tasks  DMREngine =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP .  Kernel  DMR  DMREngine.exe [169352 2011-08-24] (CyberLink -&gt; CyberLink)\nTâche: 8DA7805F-DA82-44FD-8C16-3DB36A78306A &#8211; System32  Tasks  UALU notificatin =&gt; C:  Program Files  Acer  Acer Updater  UALU.exe [22392 2012-04-05] (Acer Incorporated -&gt; Acer Incorporated)\nTâche: 906AA2A6-A3F5-419E-AD07-0DC22E0C18E7 &#8211; System32  Tasks  clear.fi =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fi.exe [264760 2011-08-24] (CyberLink -&gt; Acer Incorporated)\nTâche: 91BE0F27-0BB1-4F2D-AA59-B164367ED37B &#8211; System32  Tasks  GoogleUpdateTaskMachineCore =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [144200 2015-08-28] (Google Inc -&gt; Google Inc.)\nTâche: 944C8AC3-46F0-49EA-BCE6-BD5F2ABF1E25 &#8211; System32  Tasks  NvBatteryBoostCheckOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVontia Corporation  NvC [469952 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 947B3B5A-7121-4AA4-A132-B3723F145F31 &#8211; System32  Tasks  EPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 96EC6761-5AF9-498C-A923-CBEB073F3C48 &#8211; System32  Tasks  Microsoft  Microsoft Antimalware  Microsoft Antimalware Scheduled Scan =&gt; C:  Program Files  Microsoft Security Client \\ MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nTâche: 971CBDDC-AE71-4383-BF3E-55684DC6BE1F &#8211; Tâche System32  Tasks  Overwolf Updater =&gt; C:  Program Files (x86)  Overwolf  OverwolfUpdater.exe [2463064 2020-03-14] (Overwolf Ltd -&gt; Overwolf LTD)\nTâche: 9C563B9F-8477-4F74-9683-3D0C349598DD &#8211; System32  Tasks  EPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: A2AF1F20-FAF1-44EB-A8EE-F9E61B94538B &#8211; System32  Tasks  CEF4E478-F540-44FA-8A0A-B04F0C79ED38 =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Téléchargements  HijackThis.exe -d C:  Users  Daniele  Downloads\nTâche: A4CA37D7-063A-4E31-BD80-149FDBF10BE1 &#8211; System32  Tasks  5D586F1C-A007-495B-A683-84471FF9182E =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Desktop  BaldursGate2  Setup.exe -d C:  Users  Daniele  Desktop  BaldursGate2\nTâche: A5D1C74C-C335-4965-A36A-010CC81124C7 &#8211; System32  Tasks  E1FD0496-34FB-4E32-BE56-1638E11B44F0 =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: AA9292C3-4A04-427B-83C6-1D8EA215F4AC &#8211; System32  Tasks  A07D0381-8480-48E5-93B1-1CD22638FA0B =&gt; C:  Windows  system32  pcalua.exe -a E:  Launch.exe &#8211; d E: \nTâche: AF175631-4055-4EDD-B91E-ADC2D47EC4D7 &#8211; System32  Tasks  NvNodeLauncher_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  NvNode  nvnodejsla [976832 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: D7C41E02-A0BF-4278-A071-55694952ACDC &#8211; System32  Tasks  GoogleUpdateTaskMachineUA =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [144200 2015-08-28] (Google Inc -&gt; Google Inc.)\nTâche: D7F35FFC-47BF-4DC2-97D2-9C611F8EC20B &#8211; System32  Tasks  Microsoft  Windows Live  SOXE  Extractor Definitions Update Task =&gt; 3519154C-227E-47F3-9CC9-12C3F05817F1\nTâche: DD604AC5-C11F-4371-84FE-2AC34CF0D167 &#8211; System32  Tasks  NvDriverUpdateCheckDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  NvContainer  nvcontain.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: E002599A-08C1-4C42-883F-191BB591BB0F &#8211; System32  Tasks  6E01CB89-B997-4F11-A30C-C7CE8A9C91A1 =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Téléchargements  win32_152824.exe -d C:  Users  Daniele  Downloads\nTâche: F75AEAE1-46D4-4AE2-B52C-212BD3348EFE &#8211; System32  Tasks  Avira_Antivirus_Systray =&gt; C:  Program Files (x86)  Avira  Antivirus  avgnt.exe [2759304 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)","(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)","Tâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE : / EXE: 6AFC5C38-E427-4C18-A613-15CA4120664F / F: UpdateSYSTEMĊ Recherche les mises à jour du logiciel EPSON et vous avertit lorsque des mises à jour sont disponibles.Si cette tâche est désactivée ou arrêtée, votre logiciel EPSON ne sera pas automatiquement mis à jour date.Thi\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE : / EXE: E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF / F: UpdateSYSTEMĊ Recherche les mises à jour du logiciel EPSON et vous avertit lorsque des mises à jour sont disponibles. Si cette tâche est désactivée ou arrêtée, votre logiciel EPSON ne sera pas automatiquement tenu à jour. date.Thi","==================== Internet (liste blanche) ====================","(Si un élément est inclus dans la liste de correctifs, s&#39;il s&#39;agit d&#39;un élément du registre, il sera supprimé ou restauré par défaut.)","Winsock: Catalog5 07 C:  Program Files (x86)  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5 08 C:  Program Files (x86)  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5-x64 07 C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5-x64 08 C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nTcpip  Paramètres: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  0EF91A76-19E2-4548-BB51-E60CD7106D02: [DhcpNameServer] 192.168.0.1\nTcpip  ..  Interfaces  3EFC82CC-B91A-4C1E-B521-C2B94DC80088: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  49233639-7CE3-4A19-9C9C-58E97178E1DA: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  C05787A9-9258-4705-B63A-09E187B553B7: [DhcpNameServer] 192.168.42.129\nTcpip  ..  Interfaces  E302DF92-CA2E-4BE6-BBDF-9847BF0E7A4F: [DhcpNameServer] 192.168.42.129","Internet Explorer:\n==================\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  Software  Microsoft  Internet Explorer  Main, page de démarrage = hxxp: //uk.search.yahoo.com/? Type = 714647 &amp; fr = spigot-yhp -c&#39;est à dire\nSearchScopes: HKLM -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM-x32 -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM-x32 -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKU  .DEFAULT -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  .DEFAULT -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; DefaultScope 6F10B82E-F8E1-488B-AFF0-66E6D7950E71 URL = hxxps: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9 URL = hxxp: //www1.delta-search.com/? Q =  searchTerms &amp; affID = 119776 &amp; tt = gc_ &amp; babsrc = SP_ss &amp; mntrId = 0A75EC55F940E88A\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 6F10B82E-F8E1-488B-AFF0-66E6D7950E71 URL = hxxps: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 7405AE7F-13A6-4266-A4B2-512B544AACDB URL = hxxp: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 99209B94-587D-42C2-A3CA-F72D0A76A2F6 URL = hxxp: //www.bing.com/search? Q = searchTerms  &amp; r = 503\nBHO: Aide à la connexion Windows Live ID -&gt; 9030D464-4C02-4ABF-8ECC-5164760863C6 -&gt; C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WindowsLiveLogin.dll [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nBHO: McAfee WebAdvisor -&gt; B164E929-A1B6-4A06-B104-2CD0E90A88FF -&gt; C:  Program Files  McAfee  WebAdvisor  x64  IEPlugin.dll [2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nBHO-x32: Java ™ Plug-In SSV Helper -&gt; 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  ssv.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO-x32: Aide à la connexion Windows Live ID -&gt; 9030D464-4C02-4ABF-8ECC-5164760863C6 -&gt; C:  Program Files (x86)  Common Files  Microsoft Shared  Windows Live  WindowsLiveLogin.dll [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nBHO-x32: McAfee WebAdvisor -&gt; B164E929-A1B6-4A06-B104-2CD0E90A88FF -&gt; C:  Program Files  McAfee  WebAdvisor  win32  IEPlugin.dll [2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nBHO-x32: Java ™ Plug-In 2 SSV Helper -&gt; DBC80044-A445-435b-BC74-9C25C1C588A9 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  jp2ssv.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nRestauration de session IE: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; est activé.\nDPF: HKLM AA570693-00E2-4907-B6F1-60A1199B030C hxxps: //juniper.net/dana-cached/sc/JuniperSetupClient64.cab\nDPF: HKLM-x32 E5F5D008-DD2C-4D32-977D-1A0ADF03058B hxxps: //juniper.net/dana-cached/setup/JuniperSetupSP1.cab\nDPF: HKLM-x32 F27237D7-93C8-44C2-AC6E-D6057B9A918F hxxps: //juniper.net/dana-cached/sc/JuniperSetupClient.cab\nGestionnaire: skype4com &#8211; FFC8B962-9B40-4DFF-9458-1830C7DD7F5D &#8211; Aucun fichier\nFilter-x32: application / x-ica &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = euc-jp &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = ISO-8859-1 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS936 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS949 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS950 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF-8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = euc-jp &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = ISO-8859-1 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS936 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS949 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS950 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF-8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: ica &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)","FireFox:\n========\nFF DefaultProfile: xlbk4m4f.default-1485720396432\nFF ProfilePath: C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432 [2020-04-19]\nRestauration de session FF: Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432 -&gt; est activé.\nExtension FF: (Sécurité du navigateur Avira) &#8211; C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432  Extensions  abs@avira.com.xpi [2020-03-23]\nExtension FF: (Recherche et nouvel onglet par Yahoo) &#8211; C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432  Extensions  jid1-16aeif9OQIRKxA@jetpack.xpi [2019-05-16]\nPlugin FF: @ adobe.com / FlashPlayer -&gt; C:  Windows  system32  Macromed  Flash  NPSWF64_32_0_0_303.dll [2019-12-18] (Adobe Inc. -&gt;)\nPlugin FF: @ microsoft.com / GENUINE -&gt; désactivé [No File]\nPlugin FF: @ Microsoft.com / NpCtrl, version = 1.0 -&gt; C:  Program Files  Microsoft Silverlight  5.1.50918.0  npctrl.dll [2018-10-23] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ adobe.com / FlashPlayer -&gt; C:  Windows  SysWOW64  Macromed  Flash  NPSWF32_32_0_0_303.dll [2019-12-18] (Adobe Inc. -&gt;)\nFF Plugin-x32: @ Citrix.com / npican -&gt; C:  Program Files (x86)  Citrix  ICA Client  npicaN.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFF Plugin-x32: @ java.com / DTPlugin, version = 11.171.2 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  dtplugin  npDeployJava1.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin-x32: @ java.com / JavaPlugin, version = 11.171.2 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  plugin2  npjp2.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin-x32: @ microsoft.com / GENUINE -&gt; désactivé [No File]\nFF Plugin-x32: @ Microsoft.com / NpCtrl, version = 1.0 -&gt; C:  Program Files (x86)  Microsoft Silverlight  5.1.50918.0  npctrl.dll [2018-10-23] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / SharePoint, version = 14.0 -&gt; C:  PROGRA ~ 2  MICROS ~ 4  Office14  NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / WLPG, version = 15.4.3502.0922 -&gt; C:  Program Files (x86)  Windows Live  Photo Gallery  NPWLPG.dll [2011-05-13] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / WLPG, version = 15.4.3538.0513 -&gt; C:  Program Files (x86)  Windows Live  Photo Gallery  NPWLPG.dll [2011-05-13] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.0.6 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.1.2 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.2.1 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.2.6 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 3.0.8 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ WildTangent.com / GamesAppPresenceDetector, Version = 1.0 -&gt; C:  Program Files (x86)  WildTangent Games  App  BrowserIntegration  Registered  0  NP_wtapp.dll [2013-08-06] (WildTangent Inc -&gt;)\nFF Plugin-x32: Adobe Reader -&gt; C:  Program Files (x86)  Adobe  Acrobat Reader DC  Reader  AIR  nppdf32.dll [2020-03-05] (Adobe Inc. -&gt; Adobe Systems Inc.)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: @ asperasoft.com / AsperaConnect -&gt; C:  Users  Daniele  AppData  Local  Programs  Aspera  Aspera Connect  lib  3.6. 1  npasperaweb_3.6.1.111228.dll [2015-09-11] (Aspera, Inc. -&gt; Aspera, Inc.)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: @ Unity3d.com / UnityPlayer, version = 1.0 -&gt; C:  Users  Daniele  AppData  LocalLow  Unity  WebPlayer  Loader  npUnity3D32 .dll [2015-03-27] (Unity Technologies SF -&gt; Unity Technologies ApS)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: SkypeForBusinessPlugin-15.8 -&gt; C:  Users  Daniele  AppData  Local  Microsoft  SkypeForBusinessPlugin  15.8.20020.400  npGatewayNpapi.dll [2015-06-15] (Microsoft Corporation -&gt; Microsoft Corporation)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: SkypeForBusinessPlugin64-15.8 -&gt; C:  Users  Daniele  AppData  Local  Microsoft  SkypeForBusinessPlugin  15.8.20020.400  npGatewayNpapi-x64.dll [2015-06-15] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin HKUS-1-5-21-1536202438-368462837-3654654372-1001: SkypePlugin -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48npGatewayNpapi.dll [2016-09-22] (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFF Plugin HKUS-1-5-21-1536202438-368462837-3654654372-1001: SkypePlugin64 -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48npGatewayNpapi-x64.dll [2016-09-22] (Microsoft Corporation -&gt; Skype Technologies S.A.)","Chrome: \n=======\nCHR Profile: C:UsersDanieleAppDataLocalGoogleChromeUser DataDefault [2020-04-19]\nCHR Notifications: Default -&gt; hxxps://uk-mg42.mail.yahoo.com; hxxps://web.skype.com; hxxps://web.whatsapp.com; hxxps://www.hotukdeals.com; hxxps://www.reddit.com\nCHR HomePage: Default -&gt; hxxp://uk.search.yahoo.com/?type=714647&amp;fr=spigot-yhp-ch\nCHR StartupUrls: Default -&gt; &quot;hxxps://www.google.co.uk/&quot;\nCHR Session Restore: Default -&gt; is enabled.\nCHR Extension: (Presentazioni) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-10-16]\nCHR Extension: (Documenti) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-10-16]\nCHR Extension: (Google Drive) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2015-10-21]\nCHR Extension: (YouTube) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]\nCHR Extension: (Avira Password Manager) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionscaljgklbbfbcjjanaijlacgncafpegll [2020-04-14]\nCHR Extension: (Google Search) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionscoobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]\nCHR Extension: (Fogli) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-10-16]\nCHR Extension: (Documenti Google offline) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-17]\nCHR Extension: (AdBlock: il miglior ad-blocker di sempre) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsgighmmpiobklfepjocnamgkkbiglidom [2020-04-17]\nCHR Extension: (Lightshot (strumento per screenshot)) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsmbniclmhobmnbdlbpiphghaielnnpgdp [2020-01-31]\nCHR Extension: (Pagamenti Chrome Web Store) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]\nCHR Extension: (Gmail) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-05-16]\nCHR Extension: (Chrome Media Router) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-14]\nCHR HKLM&#8230;ChromeExtension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]\nCHR HKLM&#8230;ChromeExtension: [fheoggkfdfchfphceeifdbepaooicaho]\nCHR HKLM-x32&#8230;ChromeExtension: [caljgklbbfbcjjanaijlacgncafpegll]\nCHR HKLM-x32&#8230;ChromeExtension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]\nCHR HKLM-x32&#8230;ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj]\nCHR HKLM-x32&#8230;ChromeExtension: [fheoggkfdfchfphceeifdbepaooicaho]\nCHR HKLM-x32&#8230;ChromeExtension: [flliilndjeohchalpbbcdekjklbdgfkk]\nCHR HKLM-x32&#8230;ChromeExtension: [ibbfklbaljofpaanmpaeadejijfdddco]\nCHR HKLM-x32&#8230;ChromeExtension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]\nCHR HKLM-x32&#8230;ChromeExtension: [nbmafkdmkkckhggblphicnnhlgljnoje] &#8211; \nCHR HKLM-x32&#8230;ChromeExtension: [njpedbdniajflhgfoipnjkednnlkngbj]","==================== Services (Whitelisted) ===================","(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","S2 AntiVirMailService; C:Program Files (x86)AviraAntivirusavmailc7.exe [1209856 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AntiVirSchedulerService; C:Program Files (x86)AviraAntivirussched.exe [485960 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AntiVirService; C:Program Files (x86)AviraAntivirusavguard.exe [485960 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nS2 AntiVirWebService; C:Program Files (x86)AviraAntivirusavwebg7.exe [573760 2020-03-22] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 Avira.ServiceHost; C:Program Files (x86)AviraLauncherAvira.ServiceHost.exe [634896 2020-04-02] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraOptimizerHost; C:Program Files (x86)AviraOptimizer HostAvira.OptimizerHost.exe [2989888 2020-01-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraPhantomVPN; C:Program Files (x86)AviraVPNAvira.VpnService.exe [382992 2020-03-18] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraUpdaterService; C:Program Files (x86)AviraSoftwareUpdaterAvira.SoftwareUpdater.ServiceHost.exe [161216 2020-04-09] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nS4 EpsonScanSvc; C:Windowssystem32EscSvc64.exe [144560 2012-05-17] (SEIKO EPSON Corporation -&gt; Seiko Epson Corporation)\nR2 EPSON_PM_RPCV4_06; C:Program FilesCommon FilesEPSONEPW!3 SSRPE_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nS3 fussvc; C:Program Files (x86)Windows Kits8.1App Certification Kitfussvc.exe [143872 2014-10-24] (Microsoft Corporation) [File not signed]\nS4 GamesAppIntegrationService; C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [240736 2013-10-07] (WildTangent Inc -&gt; WildTangent)\nR2 McAfee WebAdvisor; C:Program FilesMcAfeeWebAdvisorServiceHost.exe [913640 2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nR2 MsMpSvc; C:Program FilesMicrosoft Security ClientMsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nS4 MyEpson Portal Service; C:Program Files (x86)EPSONMyEpson PortalmepService.exe [714712 2017-06-28] (SEIKO EPSON CORPORATION -&gt; Seiko Epson Corporation)\nR3 NisSrv; C:Program FilesMicrosoft Security ClientNisSrv.exe [361816 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nS4 NTI IScheduleSvc; C:Program Files (x86)NTIAcer Backup ManagerIScheduleSvc.exe [256832 2011-04-24] (NTI Corporation -&gt; NTI Corporation)\nS3 NvContainerLocalSystem; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS3 NvContainerNetworkService; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS4 Origin Client Service; C:Program Files (x86)OriginOriginClientService.exe [2098528 2017-08-23] (Electronic Arts, Inc. -&gt; Electronic Arts)\nS4 Origin Web Helper Service; C:Program Files (x86)OriginOriginWebHelperService.exe [2977640 2017-08-23] (Electronic Arts, Inc. -&gt; Electronic Arts)\nS4 OverwolfUpdater; C:Program Files (x86)OverwolfOverwolfUpdater.exe [2463064 2020-03-14] (Overwolf Ltd -&gt; Overwolf LTD)\nR2 PnkBstrA; C:WindowsSysWOW64PnkBstrA.exe [75136 2013-05-17] (Even Balance, Inc. -&gt; )\nS3 Te.Service; C:Program Files (x86)Windows Kits8.1TestingRuntimesTAEFWex.Services.exe [122368 2015-02-26] (Microsoft Corporation) [File not signed]\nR2 TeamViewer; C:Program Files (x86)TeamViewerTeamViewer_Service.exe [13216272 2020-03-20] (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nS3 WinDefend; C:Program FilesWindows Defendermpsvc.dll [1011712 2013-05-27] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 wlidsvc; C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDSVC.EXE [2292096 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nR2 NVDisplay.ContainerLocalSystem; &quot;C:Program FilesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container.exe&quot; -s NVDisplay.ContainerLocalSystem -f &quot;C:ProgramDataNVIDIANVDisplay.ContainerLocalSystem.log&quot; -l 3 -d &quot;C:Program FilesNVIDIA CorporationDisplay.NvContainerpluginsLocalSystem&quot; -r -p 30000\nR2 NvTelemetryContainer; &quot;C:Program Files (x86)NVIDIA CorporationNvTelemetryNvTelemetryContainer.exe&quot; -s NvTelemetryContainer -f &quot;C:ProgramDataNVIDIANvTelemetryContainer.log&quot; -l 3 -d &quot;C:Program Files (x86)NVIDIA CorporationNvTelemetryplugins&quot; -r","===================== Drivers (Whitelisted) ===================","(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","R3 athr; C:WindowsSystem32DRIVERSathrx.sys [2755584 2011-07-19] (Microsoft Windows Hardware Compatibility Publisher -&gt; Atheros Communications, Inc.)\nR0 avdevprot; C:WindowsSystem32DRIVERSavdevprot.sys [68152 2019-06-07] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 avgntflt; C:WindowsSystem32DRIVERSavgntflt.sys [223744 2020-03-27] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 avipbb; C:WindowsSystem32DRIVERSavipbb.sys [177376 2020-04-06] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 avkmgr; C:WindowsSystem32DRIVERSavkmgr.sys [36072 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 avnetflt; C:WindowsSystem32DRIVERSavnetflt.sys [78600 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR0 avusbflt; C:WindowsSystem32Driversavusbflt.sys [35376 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 dtsoftbus01; C:WindowsSystem32DRIVERSdtsoftbus01.sys [283064 2013-12-07] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR2 LdBoxDrv; C:Program Filesdnplayerext2LdBoxDrv.sys [319376 2019-12-18] (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nR2 LdVBoxDrv; C:Program FilesldplayerboxLdVBoxDrv.sys [319376 2020-03-25] (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nR0 MpFilter; C:WindowsSystem32DRIVERSMpFilter.sys [295000 2016-08-25] (Microsoft Corporation -&gt; Microsoft Corporation)\nS3 MYFAULT; C:Windowssystem32driversmyfault.sys [25392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -&gt; Sysinternals)\nR3 NisDrv; C:WindowsSystem32DRIVERSNisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -&gt; Microsoft Corporation)\nR3 nusb3hub; C:Windowssystem32driversnusb3hub.sys [82432 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -&gt; Renesas Electronics Corporation)\nR3 nusb3xhc; C:Windowssystem32driversnusb3xhc.sys [181760 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -&gt; Renesas Electronics Corporation)\nS3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [31168 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvad_WaveExtensible; C:WindowsSystem32driversnvvad64v.sys [59240 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvhci; C:WindowsSystem32DRIVERSnvvhci.sys [58816 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 phantomtap; C:WindowsSystem32DRIVERSphantomtap.sys [35664 2020-03-18] (Avira Operations GmbH &amp; Co. KG -&gt; The OpenVPN Project)\nS3 rtux64w7; C:WindowsSystem32DRIVERSrtux64w7.sys [328448 2016-08-19] (Realtek Semiconductor Corp -&gt; Realtek )\nS4 secdrv; C:WindowsSysWow64Driverssecdrv.sys [11973 2017-06-06] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [File not signed]\nR0 sptd; C:WindowsSystem32Driverssptd.sys [381440 2013-12-07] (Disc Soft Ltd -&gt; Duplex Secure Ltd.)","==================== NetSvcs (Whitelisted) ===================","(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","==================== One month (created) ===================","(If an entry is included in the fixlist, the file/folder will be moved.)","2020-04-19 14:36 &#8211; 2020-04-19 14:36 &#8211; 000000000 ____D C:UsersDanieleDownloadsFRST-OlderVersion\n2020-04-18 14:29 &#8211; 2020-04-18 14:29 &#8211; 000062792 _____ C:ProgramDataagent.uninstall.1587216527.bdinstall.v2.bin\n2020-04-17 00:37 &#8211; 2020-04-17 00:46 &#8211; 000072692 _____ C:UsersDanieleDownloadsAddition.txt\n2020-04-17 00:28 &#8211; 2020-04-19 14:41 &#8211; 000045553 _____ C:UsersDanieleDownloadsFRST.txt\n2020-04-17 00:22 &#8211; 2020-04-19 14:40 &#8211; 000000000 ____D C:FRST\n2020-04-17 00:21 &#8211; 2020-04-19 14:36 &#8211; 002281984 _____ (Farbar) C:UsersDanieleDownloadsFRST64.exe\n2020-04-16 23:30 &#8211; 2020-04-16 23:30 &#8211; 000013738 _____ C:UsersDanieleDesktophijackthis2\n2020-04-16 22:55 &#8211; 2020-04-18 14:29 &#8211; 000000000 ____D C:Program FilesBitdefender Agent\n2020-04-16 22:55 &#8211; 2020-04-16 22:55 &#8211; 000102692 _____ C:ProgramDataagent.1587074131.bdinstall.v2.bin\n2020-04-16 22:55 &#8211; 2020-04-16 22:55 &#8211; 000000000 ____D C:ProgramDataBitdefender Agent\n2020-04-16 22:53 &#8211; 2020-04-16 22:53 &#8211; 010527368 _____ C:UsersDanieleDownloadsbitdefender_online.exe\n2020-04-16 22:40 &#8211; 2020-04-16 22:40 &#8211; 000000000 ____D C:ProgramDataUbisoft\n2020-04-16 22:11 &#8211; 2020-04-16 22:11 &#8211; 000388608 _____ (Trend Micro Inc.) C:UsersDanieleDownloadsHijackThis.exe\n2020-04-15 17:17 &#8211; 2020-04-15 17:17 &#8211; 000000219 _____ C:UsersDanieleDesktopCounter-Strike Global Offensive.url\n2020-04-10 00:18 &#8211; 2020-04-10 00:18 &#8211; 004342776 _____ (Avira Operations GmbH &amp; Co. KG) C:UsersDanieleDownloadsavira_en_sptl1_1609235037-1586472637__phpws-spotlight-release (1).exe\n2020-04-10 00:16 &#8211; 2020-04-10 00:16 &#8211; 000003292 _____ C:Windowssystem32TasksAvira_Antivirus_Systray\n2020-04-10 00:15 &#8211; 2020-04-06 21:13 &#8211; 000177376 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavipbb.sys\n2020-04-10 00:15 &#8211; 2020-03-27 12:48 &#8211; 000223744 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavgntflt.sys\n2020-04-10 00:15 &#8211; 2019-06-07 15:09 &#8211; 000068152 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavdevprot.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000078600 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavnetflt.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000036072 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavkmgr.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000035376 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavusbflt.sys\n2020-04-09 23:54 &#8211; 2020-04-09 23:55 &#8211; 000000000 ____D C:UsersPublicSpeedup Sessions\n2020-04-09 23:54 &#8211; 2020-04-09 23:54 &#8211; 000003668 _____ C:Windowssystem32TasksAviraSystemSpeedupUpdate\n2020-04-09 23:53 &#8211; 2020-04-15 08:51 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsAvira\n2020-04-09 23:53 &#8211; 2020-04-09 23:53 &#8211; 000001192 _____ C:UsersPublicDesktopAvira.lnk\n2020-04-09 23:53 &#8211; 2020-04-09 23:53 &#8211; 000001192 _____ C:ProgramDataDesktopAvira.lnk\n2020-04-09 23:50 &#8211; 2020-04-09 23:50 &#8211; 004342776 _____ (Avira Operations GmbH &amp; Co. KG) C:UsersDanieleDownloadsavira_en_sptl1_1609235037-1586472637__phpws-spotlight-release.exe\n2020-04-09 23:08 &#8211; 2020-04-09 23:08 &#8211; 003318440 _____ (Dominik Reichl ) C:UsersDanieleDownloadsKeePass-2.44-Setup.exe\n2020-04-03 01:24 &#8211; 2020-04-03 01:24 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalLowObsidian Entertainment\n2020-04-02 22:10 &#8211; 2020-04-02 22:10 &#8211; 000000222 _____ C:UsersDanieleDesktopPillars of Eternity.url\n2020-03-30 19:29 &#8211; 2020-03-30 19:29 &#8211; 000076137 _____ C:UsersDanieleDownloadseContract.pdf\n2020-03-26 17:50 &#8211; 2020-03-26 18:04 &#8211; 000000000 ____D C:UsersDanieleDesktopRee Accident Claim\n2020-03-25 23:46 &#8211; 2020-04-04 11:49 &#8211; 000000000 ____D C:UsersDaniele.Ld2VirtualBox\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000671 _____ C:UsersDanieleDesktopLDMultiPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000671 _____ C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuLDMultiPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000656 _____ C:UsersDanieleDesktopLDPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000656 _____ C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuLDPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuProgramsLDPlayer4\n2020-03-25 23:44 &#8211; 2020-03-25 23:45 &#8211; 000000000 ____D C:Program Filesldplayerbox\n2020-03-25 23:44 &#8211; 2020-03-25 23:44 &#8211; 000000000 ____D C:UsersDanieleDocumentsXuanZhi\n2020-03-25 23:43 &#8211; 2020-03-25 23:43 &#8211; 000000000 ____D C:Program FilesMcAfee\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000284010 _____ C:UsersDanieleAppDataRoamingm47_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000000000 ____D C:UsersDanieleDownloads2cep\n2020-03-25 23:41 &#8211; 2020-03-25 23:46 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingXuanZhi\n2020-03-25 23:41 &#8211; 2020-03-25 23:41 &#8211; 002931392 _____ (XUANZHI INTERNATIONAL CO., LIMITED) C:UsersDanieleDownloadsLDPlayer_ens_3020_ld.exe\n2020-03-25 23:41 &#8211; 2020-03-25 23:41 &#8211; 002931392 _____ (XUANZHI INTERNATIONAL CO., LIMITED) C:UsersDanieleDownloadsLDPlayer_ens_3020_ld (1).exe","==================== One month (modified) ==================","(If an entry is included in the fixlist, the file/folder will be moved.)","2020-04-19 14:47 &#8211; 2014-02-28 19:48 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalBattle.net\n2020-04-19 14:28 &#8211; 2017-01-29 20:15 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalLowMozilla\n2020-04-19 14:27 &#8211; 2019-01-30 14:34 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingDiscord\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000911 _____ C:WindowsTasksEPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000911 _____ C:WindowsTasksEPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000725 _____ C:WindowsTasksEPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000725 _____ C:WindowsTasksEPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F.job\n2020-04-19 12:25 &#8211; 2018-07-01 20:59 &#8211; 000000000 ____D C:ProgramDataNVIDIA\n2020-04-19 03:56 &#8211; 2009-07-14 05:45 &#8211; 000016976 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0\n2020-04-19 03:56 &#8211; 2009-07-14 05:45 &#8211; 000016976 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0\n2020-04-19 03:19 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingHearthstoneDeckTracker\n2020-04-18 20:55 &#8211; 2018-03-26 22:41 &#8211; 000002512 _____ C:UsersDanieleDesktopHearthstone Deck Tracker.lnk\n2020-04-18 20:55 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalHearthstoneDeckTracker\n2020-04-18 20:54 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalSquirrelTemp\n2020-04-18 15:26 &#8211; 2014-02-28 19:47 &#8211; 000000000 ____D C:Program Files (x86)Battle.net\n2020-04-18 14:22 &#8211; 2014-06-18 09:34 &#8211; 000000000 ____D C:Program Files (x86)TeamViewer\n2020-04-18 14:21 &#8211; 2009-07-14 06:08 &#8211; 000000006 ____H C:WindowsTasksSA.DAT\n2020-04-17 19:37 &#8211; 2017-05-31 22:40 &#8211; 000000000 ____D C:UsersRee\n2020-04-17 13:30 &#8211; 2019-12-20 00:37 &#8211; 000000000 ____D C:WindowsSysWOW64NV\n2020-04-17 13:30 &#8211; 2019-12-20 00:37 &#8211; 000000000 ____D C:Windowssystem32NV\n2020-04-17 13:29 &#8211; 2017-09-12 00:30 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Firefox\n2020-04-17 13:29 &#8211; 2013-05-04 17:46 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service\n2020-04-17 13:22 &#8211; 2014-01-15 19:16 &#8211; 000000000 ____D C:Program Files (x86)Steam\n2020-04-17 13:10 &#8211; 2017-12-17 16:51 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalUbisoft Game Launcher\n2020-04-16 22:37 &#8211; 2012-06-21 20:37 &#8211; 000000000 ___HD C:Program Files (x86)InstallShield Installation Information\n2020-04-16 22:37 &#8211; 2009-07-14 06:32 &#8211; 000000000 ___RD C:ProgramDataMicrosoftWindowsStart MenuProgramsGames\n2020-04-16 22:36 &#8211; 2013-05-04 20:18 &#8211; 000000000 ____D C:UsersDanieleAppDataRoaminguTorrent\n2020-04-15 20:36 &#8211; 2013-05-04 18:11 &#8211; 000002226 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk\n2020-04-10 00:17 &#8211; 2009-07-14 04:20 &#8211; 000000000 ____D C:Windowsinf\n2020-04-10 00:15 &#8211; 2013-05-06 00:19 &#8211; 000000000 ____D C:ProgramDataAvira\n2020-04-10 00:15 &#8211; 2013-05-06 00:19 &#8211; 000000000 ____D C:Program Files (x86)Avira\n2020-04-10 00:13 &#8211; 2013-04-13 02:40 &#8211; 000743878 _____ C:Windowssystem32perfh010.dat\n2020-04-10 00:13 &#8211; 2013-04-13 02:40 &#8211; 000148496 _____ C:Windowssystem32perfc010.dat\n2020-04-10 00:13 &#8211; 2009-07-14 06:13 &#8211; 001662796 _____ C:Windowssystem32PerfStringBackup.INI\n2020-04-10 00:04 &#8211; 2013-04-16 13:43 &#8211; 000000000 ____D C:UsersDaniele\n2020-04-09 23:52 &#8211; 2014-08-20 13:02 &#8211; 000000000 ____D C:ProgramDataPackage Cache\n2020-04-09 23:28 &#8211; 2018-01-28 01:56 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingKeePass\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000001121 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsKeePass 2.lnk\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000001109 _____ C:UsersDanieleDesktopKeePass 2.lnk\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000000000 ____D C:Program Files (x86)KeePass Password Safe 2\n2020-04-02 06:28 &#8211; 2018-03-29 14:27 &#8211; 000000000 ____D C:Program Files (x86)Overwolf\n2020-04-02 00:49 &#8211; 2010-11-21 04:27 &#8211; 000744808 ____N (Microsoft Corporation) C:Windowssystem32MpSigStub.exe\n2020-03-26 18:43 &#8211; 2019-12-18 20:22 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingChangZhi2\n2020-03-26 17:50 &#8211; 2013-05-12 22:25 &#8211; 000000000 ____D C:UsersDanieleDesktopCompleanno Ree 2013\n2020-03-26 17:49 &#8211; 2020-02-04 14:31 &#8211; 000000000 ____D C:UsersDanieleDesktopCittadinanza\n2020-03-25 23:42 &#8211; 2013-05-06 19:11 &#8211; 000000000 ____D C:ProgramDataMcAfee\n2020-03-25 23:34 &#8211; 2019-12-18 20:31 &#8211; 000000000 ____D C:UsersDaniele.LdVirtualBox\n2020-03-25 13:00 &#8211; 2019-02-14 20:04 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalBluestacks\n2020-03-24 02:08 &#8211; 2013-05-15 17:30 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingSoftGrid Client\n2020-03-21 02:29 &#8211; 2013-05-04 18:11 &#8211; 000003586 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineUA\n2020-03-21 02:29 &#8211; 2013-05-04 18:11 &#8211; 000003458 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineCore\n2020-03-20 08:46 &#8211; 2015-01-01 09:45 &#8211; 000004476 _____ C:Windowssystem32TasksAdobe Acrobat Update Task\n2020-03-20 08:45 &#8211; 2015-12-16 22:13 &#8211; 000002441 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk","==================== Files in the root of some directories ========","2013-12-31 12:57 &#8211; 2013-12-31 12:58 &#8211; 000000093 _____ () C:UsersDanieleAppDataRoamingARCompanion.log\n2019-12-18 20:31 &#8211; 2019-12-18 20:31 &#8211; 000000068 _____ () C:UsersDanieleAppDataRoamingchangzhi_leidian.data\n2019-12-21 18:17 &#8211; 2019-12-21 18:17 &#8211; 000000068 _____ () C:UsersDanieleAppDataRoamingchangzhi_mplayer.data\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000284010 _____ () C:UsersDanieleAppDataRoamingm47_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt\n2017-07-11 22:13 &#8211; 2017-07-11 22:13 &#8211; 000014139 _____ () C:UsersDanieleAppDataLocalHWVendorDetection.log\n2013-05-05 00:55 &#8211; 2019-12-27 13:15 &#8211; 000007615 _____ () C:UsersDanieleAppDataLocalresmon.resmoncfg","==================== SigCheck ============================","(There is no automatic fix for files that do not pass verification.)","LastRegBack: 2020-04-17 19:29\n==================== End of FRST.txt ========================\nAdditional scan result of Farbar Recovery Scan Tool (x64) Version: 19-04-2020\nRan by Daniele (19-04-2020 14:50:00)\nRunning from C:UsersDanieleDownloads\nWindows 7 Home Premium Service Pack 1 (X64) (2013-04-16 12:43:25)\nBoot Mode: Normal\n==========================================================","==================== Accounts: =============================","Administrator (S-1-5-21-1536202438-368462837-3654654372-500 &#8211; Administrator &#8211; Disabled)\nDaniele (S-1-5-21-1536202438-368462837-3654654372-1001 &#8211; Administrator &#8211; Enabled) =&gt; C:UsersDaniele\nGuest (S-1-5-21-1536202438-368462837-3654654372-501 &#8211; Limited &#8211; Disabled)\nHomeGroupUser$ (S-1-5-21-1536202438-368462837-3654654372-1003 &#8211; Limited &#8211; Enabled)\nRee (S-1-5-21-1536202438-368462837-3654654372-1005 &#8211; Limited &#8211; Enabled) =&gt; C:UsersRee","==================== Security Center ========================","(If an entry is included in the fixlist, it will be removed.)","AV: Avira Antivirus (Enabled &#8211; Up to date) 8EAC8D5C-B3AA-95AA-3DF1-2845CDD09CBE\nAV: Microsoft Security Essentials (Enabled &#8211; Up to date) 71A27EC9-3DA6-45FC-60A7-004F623C6189\nAS: Microsoft Security Essentials (Enabled &#8211; Up to date) CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34\nAS: Avira Antivirus (Enabled &#8211; Up to date) 35CD6CB8-9590-9A24-0741-1337B657D603\nAS: Windows Defender (Disabled &#8211; Out of date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46","==================== Installed Programs ======================","(Only the adware programs with &quot;Hidden&quot; flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)","Acer Backup Manager (HKLM-x32&#8230;InstallShield_0B61BBD5-DA3C-409A-8730-0C3DC3B0F270) (Version: 3.0.0.99 &#8211; NTI Corporation)\nAcer Crystal Eye Webcam (HKLM-x32&#8230;1FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 1.0.1904 &#8211; CyberLink Corp.) Hidden\nAcer Crystal Eye Webcam (HKLM-x32&#8230;InstallShield_01FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 1.0.1904 &#8211; CyberLink Corp.)\nAcer ePower Management (HKLM-x32&#8230;3DB0448D-AD82-4923-B305-D001E521A964) (Version: 6.00.3008 &#8211; Acer Incorporated)\nAcer eRecovery Management (HKLM-x32&#8230;7F811A54-5A09-4579-90E1-C93498E230D9) (Version: 5.00.3504 &#8211; Acer Incorporated)\nAcer Games (HKLM-x32&#8230;WildTangent acer Master Uninstall) (Version: 1.0.2.5 &#8211; WildTangent)\nAcer Registration (HKLM-x32&#8230;Acer Registration) (Version: 1.04.3504 &#8211; Acer Incorporated)\nAcer ScreenSaver (HKLM-x32&#8230;Acer Screensaver) (Version: 1.1.0913.2011 &#8211; Acer Incorporated)\nAcer Updater (HKLM-x32&#8230;EE171732-BEB4-4576-887D-CB62727F01CA) (Version: 1.02.3502 &#8211; Acer Incorporated)\nAdobe Acrobat Reader DC &#8211; Italiano (HKLM-x32&#8230;AC76BA86-7AD7-1040-7B44-AC0F074E4100) (Version: 20.006.20042 &#8211; Adobe Systems Incorporated)\nAdobe AIR (HKLM-x32&#8230;Adobe AIR) (Version: 2.7.1.19610 &#8211; Adobe Systems Incorporated)\nAdobe Flash Player 29 ActiveX (HKLM-x32&#8230;Adobe Flash Player ActiveX) (Version: 29.0.0.140 &#8211; Adobe Systems Incorporated)\nAdobe Flash Player 32 NPAPI (HKLM-x32&#8230;Adobe Flash Player NPAPI) (Version: 32.0.0.303 &#8211; Adobe)\nAgatha Christie &#8211; Death on the Nile (HKLM-x32&#8230;WTA-5e746bf8-8dee-4fe9-9f1a-49235ad98c76) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nAggiornamenti NVIDIA 31.1.10.0 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Update) (Version: 31.1.10.0 &#8211; NVIDIA Corporation) Hidden\nApplication Verifier x64 External Package (HKLM&#8230;77F3D72C-465F-BD51-890E-CC3914B1365F) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nAspera Connect 3.6.1.111228 (HKLM-x32&#8230;EC793CAC-7C41-4817-BA98-7E481A79F9CF) (Version: 3.6.1.111228 &#8211; © Copyright IBM Corp. 2014) Hidden\nAspera Connect 3.6.1.111228 (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Aspera Connect 3.6.1.111228) (Version: 3.6.1.111228 &#8211; © Copyright IBM Corp. 2014)\nAssassin&#39;s Creed IV Black Flag (HKLM-x32&#8230;Uplay Install 273) (Version:  &#8211; Ubisoft)\nAvira (HKLM-x32&#8230;CAB70370-888E-4D62-B5D5-DA7982585C46) (Version: 1.2.145.25926 &#8211; Avira Operations GmbH &amp; Co. KG) Hidden\nAvira (HKLM-x32&#8230;e636e084-c7ab-4246-8ad2-aa1bb1cbedfd) (Version: 1.2.145.25926 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Antivirus (HKLM-x32&#8230;Avira Antivirus) (Version: 15.0.2004.1828 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Phantom VPN (HKLM-x32&#8230;Avira Phantom VPN) (Version: 2.32.2.34115 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Software Updater (HKLM-x32&#8230;30947035-9248-4304-96CE-CB6B1D38CFD5) (Version: 2.0.6.30594 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira System Speedup (HKLM-x32&#8230;Avira System Speedup_is1) (Version: 6.4.1.10871 &#8211; Avira Operations GmbH &amp; Co. KG)\nBackup Manager V3 (HKLM-x32&#8230;B61BBD5-DA3C-409A-8730-0C3DC3B0F270) (Version: 3.0.0.99 &#8211; NTI Corporation) Hidden\nBattle.net (HKLM-x32&#8230;Battle.net) (Version:  &#8211; Blizzard Entertainment)\nBejeweled 2 Deluxe (HKLM-x32&#8230;WTA-878366c0-7e0d-49fc-9060-e75a6dabe155) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nBlue Jeans (HKLM-x32&#8230;6D19EE68-6672-48DB-A45A-5CCFA8021D92) (Version: 1.28.10 &#8211; Blue Jeans)\nBroadcom Card Reader Driver Installer (HKLM&#8230;4710662C-8204-4334-A977-B1AC9E547819) (Version: 14.8.2.2 &#8211; Broadcom Corporation)\nBroadcom NetLink Controller (HKLM&#8230;C91DCB72-F5BB-410D-A91A-314F5D1B4284) (Version: 14.8.4.1 &#8211; Broadcom Corporation)\nCaesar 3 (HKLM-x32&#8230;Caesar 3) (Version:  &#8211; )\nChuzzle Deluxe (HKLM-x32&#8230;WTA-7f54354a-b7a2-4639-9a5c-f4b75efe2e90) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nclear.fi (HKLM-x32&#8230;14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C) (Version: 1.0.1517_36458 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;2637C347-9DAD-11D6-9EA2-00055D0CA761) (Version: 1.0.2024.00 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;B906C11A-D193-4143-9FA7-E2EE8A5A8F21) (Version: 9.0.8026 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;InstallShield_2637C347-9DAD-11D6-9EA2-00055D0CA761) (Version: 1.0.2024.00 &#8211; CyberLink Corp.)\nclear.fi Client (HKLM-x32&#8230;43AAE145-83CF-4C96-9A5E-756CEFCE879F) (Version: 1.00.3500 &#8211; Acer Incorporated)\nCrazy Chicken Kart 2 (HKLM-x32&#8230;WTA-111fa445-16e9-4867-bd6d-79c26bc446f5) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nD3DX10 (HKLM-x32&#8230;E09C4DB7-630C-4F06-A631-8EA7239923AF) (Version: 15.4.2368.0902 &#8211; Microsoft) Hidden\nDAEMON Tools Lite (HKLM-x32&#8230;DAEMON Tools Lite) (Version: 4.48.1.0347 &#8211; Disc Soft Ltd)\nDiablo III (HKLM-x32&#8230;Diablo III) (Version:  &#8211; Blizzard Entertainment)\nDiscord (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Discord) (Version: 0.0.306 &#8211; Discord Inc.)\nDisinstalla EPSON SX100 Series Printer (HKLM&#8230;EPSON SX100 Series) (Version:  &#8211; SEIKO EPSON Corporation)\nDisplayDriverAnalyzer (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_DisplayDriverAnalyzer) (Version: 391.35 &#8211; NVIDIA Corporation) Hidden\nDolby Advanced Audio v2 (HKLM-x32&#8230;B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613) (Version: 7.2.7000.7 &#8211; Dolby Laboratories Inc)\nDragon Age II (HKLM-x32&#8230;F2E23139-3404-4E3C-9855-7724415D62A5) (Version: 1.04 &#8211; Electronic Arts, Inc.)\nDropbox (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Dropbox) (Version: 3.0.5 &#8211; Dropbox, Inc.)\neBay Worldwide (HKLM-x32&#8230;D3E5A972-9A15-427D-AE78-8181A5FD943C) (Version: 2.2.0409 &#8211; OEM)\nEpson Connect Printer Setup (HKLM-x32&#8230;D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C) (Version: 1.4.0 &#8211; Seiko Epson Corporation)\nEpson Event Manager (HKLM-x32&#8230;9F205E94-9E42-4486-A92A-DF3F6CB85444) (Version: 3.10.0061 &#8211; Seiko Epson Corporation)\nEPSON Remote Print Uninstall (HKLM&#8230;EPSON Remote Print) (Version:  &#8211; SEIKO EPSON Corporation)\nEPSON Scan (HKLM-x32&#8230;EPSON Scanner) (Version:  &#8211; Seiko Epson Corporation)\nEpson Software Updater (HKLM-x32&#8230;FD036A57-F81D-4865-AAF0-811558EA76AE) (Version: 4.5.1 &#8211; Seiko Epson Corporation)\nEPSON XP-312 313 315 Series Printer Uninstall (HKLM&#8230;EPSON XP-312 313 315 Series) (Version:  &#8211; SEIKO EPSON Corporation)\nEpsonNet Print (HKLM-x32&#8230;3E31400D-274E-4647-916C-2CACC3741799) (Version: 2.6.0 &#8211; SEIKO EPSON CORPORATION)\nEvernote v. 4.5.1 (HKLM-x32&#8230;28921580-E4BB-11E0-9FD7-1CC1DEF07CBE) (Version: 4.5.1.5451 &#8211; Evernote Corp.)\nFATE (HKLM-x32&#8230;WTA-d562914f-464e-442a-9b6b-eef07926c4b7) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nFinal Drive: Nitro (HKLM-x32&#8230;WTA-ba528cbd-abfc-43b4-b622-039073085d6c) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nFooz Kids (HKLM-x32&#8230;4C774C35-E0AF-72E1-136A-2BF666702268) (Version: 3.0.8 &#8211; FUHU, Inc.) Hidden\nFooz Kids (HKLM-x32&#8230;FoozKids) (Version: 3.0.8 &#8211; FUHU, Inc.)\nFooz Kids Platform (HKLM-x32&#8230;8D68CE08-9A14-4B7B-9857-3C646A2F34C7) (Version: 2.1 &#8211; FUHU, Inc.)\nFotogalerija Windows Live (HKLM-x32&#8230;E59969EA-3B5B-4B24-8B94-43842A7FBFE9) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria de Fotografias do Windows Live (HKLM-x32&#8230;EC0B576-90F9-43C3-8FAD-A4902DF4B8F4) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalería fotográfica de Windows Live (HKLM-x32&#8230;E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria fotogràfica del Windows Live (HKLM-x32&#8230;4736B0ED-F6A1-48EC-A1B7-C053027648F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria fotografii usługi Windows Live (HKLM-x32&#8230;CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalerie de photos Windows Live (HKLM-x32&#8230;488F0347-C4A7-4374-91A7-30818BEDA710) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalerie foto Windows Live (HKLM-x32&#8230;CB66242D-12B1-4494-82D2-6F53A7E024A3) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGoogle Chrome (HKLM-x32&#8230;Google Chrome) (Version: 81.0.4044.113 &#8211; Google LLC)\nGoogle Update Helper (HKLM-x32&#8230;60EC980A-BDA2-4CB6-A427-B07A5498B4CA) (Version: 1.3.35.451 &#8211; Google LLC) Hidden\nHearthArena Companion (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Overwolf_eldaohcjmecjpkpdhhoiolhhaeapcldppbdgbnbc) (Version: 1.5.0.2 &#8211; Overwolf app)\nHearthstone (HKLM-x32&#8230;Hearthstone) (Version:  &#8211; Blizzard Entertainment)\nHearthstone Deck Tracker (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;HearthstoneDeckTracker) (Version: 1.10.7 &#8211; HearthSim)\nHP USB Disk Storage Format Tool (HKLM-x32&#8230;E0DF90C-D0BA-4C89-9262-AD78D1A3DE51) (Version:  &#8211; )\nIdentity Card (HKLM-x32&#8230;Identity Card) (Version: 1.00.3501 &#8211; Acer Incorporated)\nInsaniquarium Deluxe (HKLM-x32&#8230;WTA-1aadf450-ec73-41b5-b741-966d0737010a) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nIntel® Control Center (HKLM-x32&#8230;F8A9085D-4C7A-41a9-8A77-C8998A96C421) (Version: 1.2.1.1007 &#8211; Intel Corporation)\nIntel® Management Engine Components (HKLM-x32&#8230;65153EA5-8B6E-43B6-857B-C6E4FC25798A) (Version: 7.0.0.1144 &#8211; Intel Corporation)\nIntel® Processor Graphics (HKLM-x32&#8230;F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA) (Version: 8.15.10.2342 &#8211; Intel Corporation)\nIntel® Processor Identification Utility (HKLM-x32&#8230;A92A4DB0-CD37-42D1-BE1D-603D53C24328) (Version: 1.0.0.0 &#8211; Intel Corporation)\nIntel® Rapid Storage Technology (HKLM-x32&#8230;3E29EE6C-963A-4aae-86C1-DC237C4A49FC) (Version: 10.5.0.1026 &#8211; Intel Corporation)\nIntel® SDK for OpenCL &#8211; CPU Only Runtime Package (HKLM-x32&#8230;FCB3772C-B7D0-4933-B1A9-3707EBACC573) (Version: 2.0.0.37149 &#8211; Intel Corporation)\nJava 8 Update 171 (HKLM-x32&#8230;26A24AE4-039D-4CA4-87B4-2F32180171F0) (Version: 8.0.1710.11 &#8211; Oracle Corporation)\nJewel Match 3 (HKLM-x32&#8230;WTA-63325e84-34c2-4ccd-b3ee-87abc401d44a) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nJewel Quest Solitaire (HKLM-x32&#8230;WTA-4d51be1b-2978-4973-ad15-8b42189f04f8) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nJohn Deere Drive Green (HKLM-x32&#8230;WTA-91a805f7-4cee-4088-a326-afc28032536e) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nJuniper Installer Service (HKLM-x32&#8230;93A64A36-C060-47B4-96DE-D405CC22F4C4) (Version: 7.4.28485 &#8211; Juniper Networks) Hidden\nJuniper Installer Service 7.4 (HKLM-x32&#8230;Juniper Installer Service 7.4) (Version: 7.4.28485 &#8211; Juniper Networks, Inc.)\nJuniper Networks Network Connect 7.1.8 (HKLM-x32&#8230;Juniper Network Connect 7.1.8) (Version: 7.1.8.20737 &#8211; Juniper Networks)\nJuniper Networks Network Connect 7.3.0 (HKLM-x32&#8230;Juniper Network Connect 7.3.0) (Version: 7.3.0.24657 &#8211; Juniper Networks)\nJuniper Networks Network Connect 7.4.0 (HKLM-x32&#8230;Juniper Network Connect 7.4.0) (Version: 7.4.0.30731 &#8211; Juniper Networks)\nJuniper Networks, Inc. Setup Client (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Juniper_Setup_Client) (Version: 7.4.10.45165 &#8211; Juniper Networks, Inc.)\nJuniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM&#8230;Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 &#8211; Juniper Networks, Inc.)\nJuniper Networks, Inc. Setup Client Activex Control (HKLM-x32&#8230;Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 &#8211; Juniper Networks, Inc.)\nJunk Mail filter update (HKLM-x32&#8230;1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nKeePass Password Safe 2.44 (HKLM-x32&#8230;KeePassPasswordSafe2_is1) (Version: 2.44 &#8211; Dominik Reichl)\nKits Configuration Installer (HKLM-x32&#8230;B74E65FD-CC47-41C5-4B89-791A3F61942D) (Version: 8.100.25984 &#8211; Microsoft) Hidden\nKodi (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Kodi) (Version:  &#8211; XBMC-Foundation)\nLaunch Manager (HKLM-x32&#8230;LManager) (Version: 5.1.7 &#8211; Acer Inc.)\nLDPlayer (HKLM-x32&#8230;LDPlayer4) (Version: 4.0 &#8211; XUANZHI INTERNATIONAL CO., LIMITED)\nLINE (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;LINE) (Version: 5.21.3.2086 &#8211; LINE Corporation)\nManuali EPSON (HKLM-x32&#8230;84CECC1B-21EF-41B1-9A91-3E724E5D99D3) (Version: 1.53.0.0 &#8211; Seiko Epson Corporation)\nMcAfee WebAdvisor (HKLM-x32&#8230;35ED3F83-4BDC-4c44-8EC6-6A8301C7413A) (Version: 4.1.1.90 &#8211; McAfee, LLC.)\nMesh Runtime (HKLM-x32&#8230;8C6D6116-B724-4810-8F2D-D047E6B7D68E) (Version: 15.4.5722.2 &#8211; Microsoft Corporation) Hidden\nMicrosoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32&#8230;D1D37853-0004-3E36-A7AA-74F4EEA35F64) (Version: 4.5.50930 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.5.1 SDK (HKLM-x32&#8230;19A5926D-66E1-46FC-854D-163AA10A52D3) (Version: 4.5.51641 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.8 (HKLM&#8230;92FB6C44-E685-45AD-9B20-CADF4CABA132 &#8211; 1033) (Version: 4.8.03761 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.8 (Italiano) (HKLM&#8230;92FB6C44-E685-45AD-9B20-CADF4CABA132 &#8211; 1040) (Version: 4.8.03761 &#8211; Microsoft Corporation)\nMicrosoft Office 2010 (HKLM-x32&#8230;95140000-0070-0000-0000-0000000FF1CE) (Version: 14.0.4763.1000 &#8211; Microsoft Corporation)\nMicrosoft Office a portata di clic 2010 (HKLM-x32&#8230;Office14.Click2Run) (Version: 14.0.4763.1000 &#8211; Microsoft Corporation)\nMicrosoft Office Starter 2010 &#8211; Italiano (HKLM-x32&#8230;90140011-0066-0410-0000-0000000FF1CE) (Version: 14.0.5128.5002 &#8211; Microsoft Corporation)\nMicrosoft Security Essentials (HKLM&#8230;Microsoft Security Client) (Version: 4.10.209.0 &#8211; Microsoft Corporation)\nMicrosoft Silverlight (HKLM&#8230;89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50918.0 &#8211; Microsoft Corporation)\nMicrosoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32&#8230;F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8) (Version: 3.1.0000 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17 (HKLM&#8230;8220EEFE-38CD-377E-8595-13398D740ACE) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.6161 (HKLM&#8230;5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17 (HKLM-x32&#8230;9A25302D-30C0-39D9-BD6F-21E6EC160475) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148 (HKLM-x32&#8230;1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161 (HKLM-x32&#8230;9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x64 Redistributable &#8211; 10.0.40219 (HKLM&#8230;1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x86 Redistributable &#8211; 10.0.40219 (HKLM-x32&#8230;F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x64) &#8211; 11.0.61030 (HKLM-x32&#8230;ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x86) &#8211; 11.0.61030 (HKLM-x32&#8230;33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x64) &#8211; 12.0.30501 (HKLM-x32&#8230;50d4fc8-5d48-4b8f-8972-47c82c46020f) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x86) &#8211; 12.0.30501 (HKLM-x32&#8230;f65db027-aff3-4070-886a-0d87064aabb1) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015 Redistributable (x64) &#8211; 14.0.24215 (HKLM-x32&#8230;d992c12e-cab2-426f-bde3-fb8c53950b0d) (Version: 14.0.24215.1 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015 Redistributable (x86) &#8211; 14.0.24215 (HKLM-x32&#8230;e2803110-78b3-4664-a479-3611a381656a) (Version: 14.0.24215.1 &#8211; Microsoft Corporation)\nMonitoraggio della tecnologia Intel® Turbo Boost 2.0 (HKLM&#8230;B77EFA0B-9BD3-4122-9F9A-15A963B5EA24) (Version: 2.1.23.0 &#8211; Intel)\nMozilla Firefox 75.0 (x64 it) (HKLM&#8230;Mozilla Firefox 75.0 (x64 it)) (Version: 75.0 &#8211; Mozilla)\nMozilla Maintenance Service (HKLM-x32&#8230;MozillaMaintenanceService) (Version: 75.0.0.7398 &#8211; Mozilla)\nMSI Development Tools (HKLM-x32&#8230;CF3A1CA6-5E5E-B4BD-6CF1-363056816CA2) (Version: 8.100.26898 &#8211; Microsoft Corporation) Hidden\nMyEpson Portal (HKLM-x32&#8230;3361D415-BA35-4143-B301-661991BA6219) (Version: 1.1.2.2 &#8211; SEIKO EPSON CORPORATION) Hidden\nMyEpson Portal (HKLM-x32&#8230;MyEpson Portal) (Version:  &#8211; SEIKO EPSON Corporation)\nMystery of Mortlake Mansion (HKLM-x32&#8230;WTA-fa5c5656-0bbe-4718-93c5-e01c9a8c326f) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nnewsXpresso (HKLM-x32&#8230;613C0AC5-3A67-4B94-8B13-9176AD83F5BF) (Version: 1.0.0.40 &#8211; esobi Inc.) Hidden\nnewsXpresso (HKLM-x32&#8230;InstallShield_613C0AC5-3A67-4B94-8B13-9176AD83F5BF) (Version: 1.0.0.40 &#8211; esobi Inc.)\nNotepad++ (HKLM-x32&#8230;Notepad++) (Version: 6.6.8 &#8211; Notepad++ Team)\nNTI Media Maker 9 (HKLM-x32&#8230;D3D5C4E8-040F-4C6F-8105-41D43CF94F44) (Version: 9.0.2.9002 &#8211; NTI Corporation) Hidden\nNTI Media Maker 9 (HKLM-x32&#8230;InstallShield_D3D5C4E8-040F-4C6F-8105-41D43CF94F44) (Version: 9.0.2.9002 &#8211; NTI Corporation)\nNVIDIA Driver grafico 391.35 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Driver) (Version: 391.35 &#8211; NVIDIA Corporation)\nNVIDIA GeForce Experience 3.13.1.30 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.GFExperience) (Version: 3.13.1.30 &#8211; NVIDIA Corporation)\nNVIDIA PhysX System Software 9.17.0524 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.PhysX) (Version: 9.17.0524 &#8211; NVIDIA Corporation)\nOnline Plug-in (HKLM-x32&#8230;9A0FE2C0-7A7E-444E-8BD4-087178A91865) (Version: 14.0.0.91 &#8211; Citrix Systems, Inc.) Hidden\nOrigin (HKLM-x32&#8230;Origin) (Version: 10.5.2.49155 &#8211; Electronic Arts, Inc.)\nOverwolf (HKLM-x32&#8230;Overwolf) (Version: 0.143.0.24 &#8211; Overwolf Ltd.)\nPannello di controllo NVIDIA 391.35 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.ControlPanel) (Version: 391.35 &#8211; NVIDIA Corporation) Hidden\nPenguins! (HKLM-x32&#8230;WTA-f82d33cf-1bf0-4c54-85ca-769791349557) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nPidgin (HKLM-x32&#8230;Pidgin) (Version: 2.10.7 &#8211; )\nPlants vs. Zombies &#8211; Game of the Year (HKLM-x32&#8230;WTA-fc291ad5-7412-47d4-8641-d23ea23ef2e0) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nPoczta usługi Windows Live (HKLM-x32&#8230;64376910-1860-4CEF-8B34-AA5D205FC5F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPodstawowe programy Windows Live (HKLM-x32&#8230;7A9D47BA-6D50-4087-866F-0800D8B89383) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPolar Bowler (HKLM-x32&#8230;WTA-4f14c51e-af03-4658-92f9-0f759f61b306) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nPošta Windows Live (HKLM-x32&#8230;7BA19818-F717-4DFB-BC11-FAF17B2B8AEE) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPunkBuster Services (HKLM-x32&#8230;PunkBusterSvc) (Version: 0.991 &#8211; Even Balance, Inc.)\nQuickTime (HKLM-x32&#8230;B67BAFBA-4C9F-48FA-9496-933E3B255044) (Version: 7.74.80.86 &#8211; Apple Inc.)\nRaccolta foto di Windows Live (HKLM-x32&#8230;ED16B700-D91F-44B0-867C-7EB5253CA38D) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nRealtek High Definition Audio Driver (HKLM-x32&#8230;F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC) (Version: 6.0.1.6438 &#8211; Realtek Semiconductor Corp.)\nRenesas Electronics USB 3.0 Host Controller Driver (HKLM-x32&#8230;5442DAB8-7177-49E1-8B22-09A049EA5996) (Version: 2.0.34.0 &#8211; Renesas Electronics Corporation) Hidden\nRenesas Electronics USB 3.0 Host Controller Driver (HKLM-x32&#8230;InstallShield_5442DAB8-7177-49E1-8B22-09A049EA5996) (Version: 2.0.34.0 &#8211; Renesas Electronics Corporation)\nSDK Debuggers (HKLM-x32&#8230;9274C832-3D8A-A294-FDE8-8B9272357098) (Version: 8.100.26936 &#8211; Microsoft Corporation) Hidden\nShockwave (HKLM-x32&#8230;Shockwave) (Version:  &#8211; )\nSierra Utilities (HKLM-x32&#8230;Sierra Utilities) (Version:  &#8211; )\nSkype Click to Call (HKLM-x32&#8230;873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B) (Version: 8.5.0.9167 &#8211; Microsoft Corporation)\nSkype for Business Web App Plug-in (HKLM-x32&#8230;37C8167B-B653-4955-A6E8-EBB8DE937DDD) (Version: 15.8.20020.400 &#8211; Microsoft Corporation)\nSkype versione 8.44 (HKLM-x32&#8230;Skype_is1) (Version: 8.44 &#8211; Skype Technologies S.A.)\nSkype Web Plugin (HKLM-x32&#8230;DF6DC2FB-6783-4340-8B98-401CB656AD3A) (Version: 7.26.0.48 &#8211; Skype Technologies S.A.)\nSlingo Deluxe (HKLM-x32&#8230;WTA-0317c6a7-06b3-4b13-8a10-9b264c639ed4) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nSteam (HKLM-x32&#8230;Steam) (Version:  &#8211; Valve Corporation)\nSupporto applicazioni Apple (HKLM-x32&#8230;5D09C772-ECB3-442B-9CC6-B4341C78FDC2) (Version: 2.3.4 &#8211; Apple Inc.)\nSynaptics Pointing Device Driver (HKLM&#8230;SynTPDeinstKey) (Version: 15.1.6.0 &#8211; Synaptics Incorporated)\nTeamSpeak 3 Client (HKLM&#8230;TeamSpeak 3 Client) (Version: 3.0.15 &#8211; TeamSpeak Systems GmbH)\nTeamViewer (HKLM-x32&#8230;TeamViewer) (Version: 15.4.4445 &#8211; TeamViewer)\nTorchlight (HKLM-x32&#8230;WTA-86f22e04-aba5-46a2-baee-2d2b15dcd07d) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nTreeSize Free V4.2 (HKLM-x32&#8230;TreeSize Free_is1) (Version: 4.2 &#8211; JAM Software)\nUnity Web Player (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;UnityWebPlayer) (Version: 5.0.1f1 &#8211; Unity Technologies ApS)\nUpdate Installer for WildTangent Games App (HKLM-x32&#8230;2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2.WildTangent Games App) (Version:  &#8211; WildTangent) Hidden\nUplay (HKLM-x32&#8230;Uplay) (Version: 46.0 &#8211; Ubisoft)\nVirtual Villagers 4 &#8211; The Tree of Life (HKLM-x32&#8230;WTA-2d8486f0-4bd6-4e7d-9791-27029e7c6472) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nVLC media player (HKLM-x32&#8230;VLC media player) (Version: 3.0.8 &#8211; VideoLAN)\nVulkan Run Time Libraries 1.0.65.1 (HKLM&#8230;VulkanRT1.0.65.1) (Version: 1.0.65.1 &#8211; LunarG, Inc.) Hidden\nWedding Dash (HKLM-x32&#8230;WTA-e9518137-4e7b-4626-9f43-7daf4e91fd72) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nWelcome Center (HKLM-x32&#8230;Acer Welcome Center) (Version: 1.02.3504 &#8211; Acer Incorporated)\nWhoCrashed 5.54 (HKLM&#8230;WhoCrashed_is1) (Version:  &#8211; Resplendence Software Projects Sp.)\nWildTangent Games App (HKLM-x32&#8230;70B446D1-E03B-4ab0-9B3C-0832142C9AA8.WildTangent Games App-acer) (Version: 4.0.10.25 &#8211; WildTangent) Hidden\nWindows Live Essentials (HKLM-x32&#8230;WinLiveSuite) (Version: 15.4.3538.0513 &#8211; Microsoft Corporation)\nWindows Software Development Kit for Windows 8.1 (HKLM-x32&#8230;ed3a6e6d-9661-4357-abe4-fcc03dc57a07) (Version: 8.100.26936 &#8211; Microsoft Corporation)\nWinRAR 4.20 (32-bit) (HKLM-x32&#8230;WinRAR archiver) (Version: 4.20.0 &#8211; win.rar GmbH)\nWPT Redistributables (HKLM-x32&#8230;64F3FB9A-9250-B2D6-00B4-50BE0358AEE8) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nWPTx64 (HKLM-x32&#8230;BFF81CB5-E8C7-4184-FBB4-74ADFBC6CCCB) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nZuma Deluxe (HKLM-x32&#8230;WTA-744d629c-c549-4c3b-b820-4ba591229d4e) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nΣυλλογή φωτογραφιών του Windows Live (HKLM-x32&#8230;C00C2A91-6CB3-483F-80B3-2958E29468F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nОсновные компоненты Windows Live (HKLM-x32&#8230;E83DC314-C926-4214-AD58-147691D6FE9F) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nПочта Windows Live (HKLM-x32&#8230;B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137) (Version: 15.4.3502.0922 &#8211; Корпорация Майкрософт) Hidden\nФотоальбом Windows Live (HKLM-x32&#8230;77F69CA1-E53D-4D77-8BA3-FA07606CC851) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nФотогалерия на Windows Live (HKLM-x32&#8230;4444F27C-B1A8-464E-9486-4C37BAB39A09) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nגלריית התמונות של Windows Live (HKLM-x32&#8230;CE929F09-3853-4180-BD90-30764BFF7136) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nبريد Windows Live (HKLM-x32&#8230;A4C4B29-5A9D-4910-A13C-B920D5758744) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nمعرض صور Windows Live (HKLM-x32&#8230;FBCA06D2-4642-4F33-B20A-A7AB3F0D2E69) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden","==================== Custom CLSID (Whitelisted): ==============","(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","CustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID05A3A96-BAC4-4B0A-94EA-C0CE100EA736localserver32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID4A9E854-6F47-4F37-8A10-F896717F0329InprocServer32 -&gt; C:UsersDanieleAppDataLocalProgramsAsperaAspera Connectlib3.6.1npasperaweb64_3.6.1.111228.dll (Aspera, Inc. -&gt; Aspera, Inc. )\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID7ECF6F97-B4F3-4168-9835-F59C06D7875FInprocServer32 -&gt; C:UsersDanieleAppDataLocalMicrosoftSkypeForBusinessPlugin15.8.20020.400GatewayActiveX-x64.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDAD17B774-7F87-4141-BB9C-2AEE3841DC4EInprocServer32 -&gt; C:UsersDanieleAppDataLocalProgramsAsperaAspera Connectlib3.6.1npasperaweb64_3.6.1.111228.dll (Aspera, Inc. -&gt; Aspera, Inc. )\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDBB384F15-7676-403E-B797-1F9D935525A3InprocServer32 -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48GatewayActiveX-x64.dll (Microsoft Corporation -&gt; Skype Technologies S.A.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314ED9-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDA-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDB-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDC-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDD-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDE-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDF-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EE0-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt1 »] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt2 »] -&gt; FB314EDA-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt3 »] -&gt; FB314EDD-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt4 »] -&gt; FB314EDE-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt5 »] -&gt; FB314EDB-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt6 »] -&gt; FB314EDF-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt7 »] -&gt; FB314EDC-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt8 »] -&gt; FB314EE0-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers1: [ANotepad++64] -&gt; B298D29A-A6ED-11DE-BA8C-A68E55D89593 =&gt; C:Program Files (x86)Notepad++NppShell_06.dll [2014-05-12] () [File not signed]\nContextMenuHandlers1: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers1: [Shell Extension for Malware scanning] -&gt; 45AC2688-0253-4ED8-97DE-B5370FA7D48A =&gt; C:Program Files (x86)AviraAntivirusshlext64.dll [2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers1: [SystemSpeedupFilesMenu] -&gt; 14cb2bd0-2375-3d10-9b5d-5e18865c8959 =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers1: [WinRAR] -&gt; B41DB860-64E4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext64.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers1-x32: [WinRAR32] -&gt; B41DB860-8EE4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers2: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers4: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers4: [SystemSpeedupFoldersMenu] -&gt; 700866bb-c8e9-3e71-b359-abb28baed0e8 =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers5: [igfxcui] -&gt; 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 =&gt; C:Windowssystem32igfxpph.dll [2011-03-26] (Microsoft Windows Hardware Compatibility Publisher -&gt; Intel Corporation)\nContextMenuHandlers5: [NvCplDesktopContext] -&gt; 3D1975AF-48C6-4f8e-A182-BE0E08FA86A9 =&gt; C:Windowssystem32nvshext.dll [2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nContextMenuHandlers5: [SynGlwPad] -&gt; 681C10CE-5E5D-463A-A270-771AA48E4C71 =&gt; C:WindowsSystem32SynGlwPadShlExt.dll [2010-07-29] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nContextMenuHandlers5: [SystemSpeedupDesktopMenu] -&gt; 0cab5786-30e8-3185-9b3b-ccefbf1b8afe =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers6: [Shell Extension for Malware scanning] -&gt; 45AC2688-0253-4ED8-97DE-B5370FA7D48A =&gt; C:Program Files (x86)AviraAntivirusshlext64.dll [2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers6: [WinRAR] -&gt; B41DB860-64E4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext64.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers6-x32: [WinRAR32] -&gt; B41DB860-8EE4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers1_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers4_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers5_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)","==================== Codecs (Whitelisted) ====================","(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)","HKLM&#8230;Drivers32: [msacm.l3acm] =&gt; C:WindowsSysWOW64l3codecp.acm [220672 2009-07-14] (Microsoft Windows -&gt; Fraunhofer Institut Integrierte Schaltungen IIS)","==================== Shortcuts &amp; WMI ========================","(The entries could be listed to be restored or removed.)","WMI:subscription__FilterToConsumerBinding-&gt;CommandLineEventConsumer.Name=&quot;BVTConsumer&quot;&quot;,Filter=&quot;__EventFilter.Name=&quot;BVTFilter&quot;::\nWMI:subscription__EventFilter-&gt;BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA « Win32_Processor » AND TargetInstance.LoadPercentage > 99]\nWMI:subscriptionCommandLineEventConsumer-&gt;BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]","==================== Loaded Modules (Whitelisted) =============","2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 096130048 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libcef.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000117760 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libEGL.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004342784 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libGLESv2.dll\n2019-03-28 00:48 &#8211; 2019-03-28 00:48 &#8211; 000115200 _____ (Microsoft Corporation) [File not signed] C:WindowsMicrosoft.NetassemblyGAC_32System.EnterpriseServicesv4.0_4.0.0.0__b03f5f7f11d50a3aSystem.EnterpriseServices.Wrapper.dll\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 001101824 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80.DLL\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 001093120 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80U.DLL\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 000061440 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c72205943d3MFC80ITA.DLL\n2015-05-01 19:18 &#8211; 2012-11-12 15:15 &#8211; 000558592 _____ (SEIKO EPSON CORPORATION) [File not signed] C:WindowsSystem32enppmon.dll\n2015-05-01 19:18 &#8211; 2012-10-22 17:19 &#8211; 000219648 _____ (SEIKO EPSON CORPORATION) [File not signed] C:WindowsSystem32enpres.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000760832 _____ (The Chromium Authors) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943chrome_elf.dll\n2020-04-18 15:23 &#8211; 2020-04-18 15:23 &#8211; 000047104 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943audioqtaudio_windows.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000026112 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqgif.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000027136 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqico.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000243712 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqjpeg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000223744 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqmng.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000020992 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqsvg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000332288 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqtiff.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 001140224 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943platformsqwindows.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000041984 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtGraphicalEffectsprivateqtgraphicaleffectsprivate.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtGraphicalEffectsqtgraphicaleffectsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQmlModels.2modelsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuick.2qtquick2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000084480 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickControls.2qtquickcontrols2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000267776 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickControlsqtquickcontrolsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000071680 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickLayoutsqquicklayoutsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000211456 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickTemplates.2qtquicktemplates2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickWindow.2windowplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004943360 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Core.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 005022208 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Gui.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000626176 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Multimedia.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000877056 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Network.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 002908672 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Qml.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 003078656 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Quick.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000096256 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5QuickControls2.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000681472 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5QuickTemplates2.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000259072 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Svg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004718080 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Widgets.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000439296 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5WinExtras.dll\n2020-04-18 15:25 &#8211; 2020-04-18 15:25 &#8211; 000159232 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Xml.dll","==================== Alternate Data Streams (Whitelisted) ========","==================== Safe Mode (Whitelisted) ==================","==================== Association (Whitelisted) =================","==================== Internet Explorer trusted/restricted ==========","(If an entry is included in the fixlist, it will be removed from the registry.)","IE trusted site: HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;geforce.co.uk -&gt; hxxps://www.geforce.co.uk","==================== Hosts content: =========================","(If needed Hosts: directive could be included in the fixlist to reset Hosts.)","2009-07-14 03:34 &#8211; 2009-06-10 22:00 &#8211; 000000824 _____ C:Windowssystem32driversetchosts","==================== Other Areas ===========================","(Currently there is no automatic fix for this section.)","HKLMSystemCurrentControlSetControlSession ManagerEnvironment\\Path -&gt; c:program files (x86)common filesoraclejavajavapath;c:programdataoraclejavajavapath;c:program filescommon filesmicrosoft sharedwindows live;c:program files (x86)common filesmicrosoft sharedwindows live;c:windowssystem32;c:windows;c:windowssystem32wbem;c:windowssystem32windowspowershellv1.0;c:program files (x86)windows liveshared;c:program files (x86)quicktimeqtsystem;c:program files (x86)windows kits8.1windows performance toolkit;c:program files (x86)intelopencl sdk2.0binx86;c:program files (x86)intelopencl sdk2.0binx64;c:program files (x86)intelopencl sdk2.0binx86;c:program files (x86)intelopencl sdk2.0binx64;C:Program Files (x86)NVIDIA CorporationPhysXCommon\nHKUS-1-5-21-1536202438-368462837-3654654372-1001Control PanelDesktop\\Wallpaper -&gt; C:UsersDanieleAppDataRoamingMicrosoftWindowsThemesTranscodedWallpaper.jpg\nDNS Servers: 194.168.4.100 &#8211; 194.168.8.100\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)\nWindows Firewall is enabled.","==================== MSCONFIG/TASK MANAGER disabled items ==","(If an entry is included in the fixlist, it will be removed.)","MSCONFIGServices: AdobeARMservice =&gt; 2\nMSCONFIGServices: AdobeFlashPlayerUpdateSvc =&gt; 3\nMSCONFIGServices: cphs =&gt; 3\nMSCONFIGServices: DsiWMIService =&gt; 2\nMSCONFIGServices: dsNcService =&gt; 2\nMSCONFIGServices: ePowerSvc =&gt; 2\nMSCONFIGServices: EpsonScanSvc =&gt; 2\nMSCONFIGServices: EPSON_PM_RPCV4_06 =&gt; 2\nMSCONFIGServices: FLEXnet Licensing Service =&gt; 3\nMSCONFIGServices: GamesAppIntegrationService =&gt; 3\nMSCONFIGServices: GamesAppService =&gt; 3\nMSCONFIGServices: GREGService =&gt; 2\nMSCONFIGServices: gupdate =&gt; 2\nMSCONFIGServices: gupdatem =&gt; 3\nMSCONFIGServices: IAStorDataMgrSvc =&gt; 2\nMSCONFIGServices: ICCS =&gt; 3\nMSCONFIGServices: JuniperAccessService =&gt; 2\nMSCONFIGServices: Live Updater Service =&gt; 2\nMSCONFIGServices: LMS =&gt; 2\nMSCONFIGServices: MozillaMaintenance =&gt; 3\nMSCONFIGServices: MyEpson Portal Service =&gt; 2\nMSCONFIGServices: NTI IScheduleSvc =&gt; 2\nMSCONFIGServices: NvContainerLocalSystem =&gt; 3\nMSCONFIGServices: NvContainerNetworkService =&gt; 3\nMSCONFIGServices: NVDisplay.ContainerLocalSystem =&gt; 2\nMSCONFIGServices: NvTelemetryContainer =&gt; 2\nMSCONFIGServices: Origin Client Service =&gt; 3\nMSCONFIGServices: Origin Web Helper Service =&gt; 2\nMSCONFIGServices: OverwolfUpdater =&gt; 3\nMSCONFIGServices: SkypeUpdate =&gt; 2\nMSCONFIGServices: Steam Client Service =&gt; 3\nMSCONFIGServices: TeamViewer =&gt; 2\nMSCONFIGServices: TurboBoost =&gt; 3\nMSCONFIGServices: UNS =&gt; 2\nMSCONFIGstartupreg: APSDaemon =&gt; &quot;C:Program Files (x86)Common FilesAppleApple Application SupportAPSDaemon.exe&quot;\nMSCONFIGstartupreg: ArcadeMovieService =&gt; &quot;C:Program Files (x86)Acerclear.fiMovieclear.fiMovieService.exe&quot;\nMSCONFIGstartupreg: BackupManagerTray =&gt; &quot;C:Program Files (x86)NTIAcer Backup ManagerBackupManagerTray.exe&quot; -h -k\nMSCONFIGstartupreg: ConnectionCenter =&gt; &quot;C:Program Files (x86)CitrixICA Clientconcentr.exe&quot; /startup\nMSCONFIGstartupreg: DAEMON Tools Lite =&gt; &quot;C:Program Files (x86)DAEMON Tools LiteDTLite.exe&quot; -autorun\nMSCONFIGstartupreg: Dolby Advanced Audio v2 =&gt; &quot;C:Dolby PCEE4pcee4.exe&quot; -autostart\nMSCONFIGstartupreg: EEventManager =&gt; &quot;C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe&quot;\nMSCONFIGstartupreg: HotKeysCmds =&gt; &quot;C:Windowssystem32hkcmd.exe&quot;\nMSCONFIGstartupreg: IgfxTray =&gt; &quot;C:Windowssystem32igfxtray.exe&quot;\nMSCONFIGstartupreg: KeePass 2 PreLoad =&gt; &quot;C:Program Files (x86)KeePass Password Safe 2KeePass.exe&quot; &#8211;preload\nMSCONFIGstartupreg: LManager =&gt; C:Program Files (x86)Launch ManagerLManager.exe\nMSCONFIGstartupreg: mobilegeni daemon =&gt; C:Program Files (x86)MobogenieDaemonProcess.exe\nMSCONFIGstartupreg: NUSB3MON =&gt; &quot;C:Program Files (x86)Renesas ElectronicsUSB 3.0 Host Controller DriverApplicationnusb3mon.exe&quot;\nMSCONFIGstartupreg: OOTag =&gt; C:Program Files (x86)AcerOOBEOfferootag.exe\nMSCONFIGstartupreg: Persistence =&gt; &quot;C:Windowssystem32igfxpers.exe&quot;\nMSCONFIGstartupreg: Power Management =&gt; C:Program FilesAcerAcer ePower ManagementePowerTray.exe\nMSCONFIGstartupreg: QuickTime Task =&gt; &quot;C:Program Files (x86)QuickTimeQTTask.exe&quot; -atboottime\nMSCONFIGstartupreg: Redirector =&gt; &quot;C:Program Files (x86)CitrixICA Clientredirector.exe&quot; /startup\nMSCONFIGstartupreg: RtHDVBg_Dolby =&gt; C:Program FilesRealtekAudioHDARAVBg64.exe /FORPCEE4 \nMSCONFIGstartupreg: RtHDVCpl =&gt; C:Program FilesRealtekAudioHDARAVCpl64.exe -s\nMSCONFIGstartupreg: Search Protection =&gt; &quot;C:UsersDanieleAppDataRoamingSearch ProtectionSP.EXE&quot; /autostart\nMSCONFIGstartupreg: Skype =&gt; &quot;C:Program Files (x86)SkypePhoneSkype.exe&quot; /minimized /regrun\nMSCONFIGstartupreg: SunJavaUpdateSched =&gt; C:Program Files (x86)Common FilesJavaJava Updatejusched.exe\nMSCONFIGstartupreg: SynTPEnh =&gt; %ProgramFiles%SynapticsSynTPSynTPEnh.exe","==================== FirewallRules (Whitelisted) ================","(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","FirewallRules: [BB9D900C-0431-418E-8C0A-C231DDCD4601] =&gt; (Allow) C:Program Files (x86)Windows LiveContactswlcomm.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [32049F24-47B1-4DD3-8444-C00D6AD61B16] =&gt; (Allow) LPort=2869\nFirewallRules: [F75F9F29-02E8-4A68-8A28-54916E467F3D] =&gt; (Allow) LPort=1900\nFirewallRules: [C356995C-A188-4CAC-A71A-7AA95365C06B] =&gt; (Allow) C:Program Files (x86)Windows LiveMessengermsnmsgr.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [F27A6AD3-BABD-4E5E-9C93-AE69FEE085E1] =&gt; (Allow) C:Program Files (x86)Windows LiveMeshMOE.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [BC8F2982-4766-4CA9-8568-4DD9325B8D8B] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPclear.fi.exe (CyberLink -&gt; Acer Incorporated)\nFirewallRules: [D0884557-C872-4F28-B425-11EA38071BAA] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPclear.fiAgent.exe (CyberLink -&gt; CyberLink Corp.)\nFirewallRules: [DED69C15-FD73-47F1-9AE7-AA1E07B1AA5F] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelCLMLCLMLSvc.exe (CyberLink -&gt; CyberLink Corp.)\nFirewallRules: [7053E4E1-5D04-4B5F-B765-30CC150AB5F0] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [CD57FF54-0544-444F-8A7C-F432B4AF1F13] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [E10AD824-55A4-4C5E-AFDC-3278CEC762AF] =&gt; (Block) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [A6B0B15B-42D5-4D85-B90A-F0312F1B958D] =&gt; (Allow) Conquer_v5721_P2P.exe No File\nFirewallRules: [TCP Query User5AE4B2B1-9F23-4BE2-B1CB-D68B83804AB3D:giochidiablo iiidiablo iiidiablo iii.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiidiablo iii.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [UDP Query UserD67346DB-E26C-48B9-82CF-217414001078D:giochidiablo iiidiablo iiidiablo iii.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiidiablo iii.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [0A3A4784-CDE8-4892-BAB0-0DDA97B44F36] =&gt; (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [EF78F40A-C8F9-45E4-91A3-FB22A2D9B090] =&gt; (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [3A4F95A8-CD4C-461E-8981-11EB54AE03F9] =&gt; (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [FEF7E85F-3029-4D61-8862-75BA9506CC73] =&gt; (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [74DB4201-A73A-48B2-AA3A-148CF51349C0] =&gt; (Allow) C:Program Files (x86)Common FilesAppleApple Application SupportWebKit2WebProcess.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [F87F2B4A-34AD-488A-A071-7849FC87729E] =&gt; (Allow) C:UsersDanieleAppDataRoaminguTorrentuTorrent.exe No File\nFirewallRules: [AB0C7AF1-9475-46B2-B111-A13144F9DDFD] =&gt; (Allow) C:UsersDanieleAppDataRoaminguTorrentuTorrent.exe No File\nFirewallRules: [6EF13497-1121-43C7-97C4-E2ED9E9E244D] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [612ED1D8-238A-4C46-A5D8-9F246018E22C] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [44E21BC9-991E-4012-8574-7C0E44EC3586] =&gt; (Allow) C:Program Files (x86)Battle.netBattle.net.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [FECBDB91-560D-4666-8565-E4E38DDA498C] =&gt; (Allow) C:Program Files (x86)Battle.netBattle.net.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [A2A5A7DD-A5F7-4DE8-824D-B5DC0DF5E263] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2737Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [6E042EB7-3751-4658-B76C-F8D665685522] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2737Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [26535086-916B-4D18-8166-4D2AC4036B93] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2753Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [56CDE0D0-F4BD-41E6-99EC-9AD17421D43A] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2753Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [DFBCBBF2-C3D0-4D12-B7FB-BE8097FDD79A] =&gt; (Allow) C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nFirewallRules: [51A92662-05B7-40E3-AC9B-4361F8756831] =&gt; (Allow) C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nFirewallRules: [C20EF2D3-73B1-459D-A216-C18E161A05F1] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [CF196B10-406C-4903-BA69-031AFBF448F2] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [CB0FE2A1-EB29-4664-BEBA-B86716D7194F] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [22CE7CBF-D8FF-4D70-AAFE-28B08ED0B355] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [TCP Query User178CF2A2-0D4F-4104-9731-24DA106BAC23C:program files (x86)mozilla firefoxfirefox.exe] =&gt; (Block) C:program files (x86)mozilla firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [UDP Query User8B73733E-A519-4359-92DA-1F88A0CDFCE8C:program files (x86)mozilla firefoxfirefox.exe] =&gt; (Block) C:program files (x86)mozilla firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [TCP Query User68CA8A72-B440-4885-A5CB-5C3B7303437EC:program files (x86)kodikodi.exe] =&gt; (Allow) C:program files (x86)kodikodi.exe (XBMC-Foundation) [File not signed]\nFirewallRules: [UDP Query User1F56C585-CDCB-435D-989C-3898A06D6B82C:program files (x86)kodikodi.exe] =&gt; (Allow) C:program files (x86)kodikodi.exe (XBMC-Foundation) [File not signed]\nFirewallRules: [49ADE3C6-B596-4EEC-BF05-A44B6D162148] =&gt; (Allow) C:Program Files (x86)Steambinsteamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [F29CF4BD-B1DF-4AAB-BFF1-78A2BF5998AE] =&gt; (Allow) C:Program Files (x86)Steambinsteamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [6EBBDC91-6891-435A-906C-B0373AE1C0C8] =&gt; (Allow) C:Program Files (x86)SteamSteamAppscommonSoccer ManagerSoccer Manager.exe () [File not signed]\nFirewallRules: [6CF1FE33-D73B-40A5-A924-ADC0D7D2AF5A] =&gt; (Allow) C:Program Files (x86)SteamSteamAppscommonSoccer ManagerSoccer Manager.exe () [File not signed]\nFirewallRules: [TCP Query User9C70BED5-17C9-4370-9B0F-126357FA2B45C:usersdanieleappdatalocalskypepluginpluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalskypepluginpluginhost.exe (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFirewallRules: [UDP Query UserCE2FDCBA-9FE0-4053-A207-1322E0F9C691C:usersdanieleappdatalocalskypepluginpluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalskypepluginpluginhost.exe (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFirewallRules: [E4A4A8EA-DBCC-43D1-BD93-562C96AB0935] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [D52DCD90-6B49-49C0-97EF-D987E1868BFA] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [FCDE241B-E22A-4166-A8DC-48695BE935D6] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe No File\nFirewallRules: [1DDA64DE-761F-40CC-9EA7-851DC33D0D83] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe No File\nFirewallRules: [TCP Query UserB3EAE4A3-48B3-4441-87D3-093BFDF490CDC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Allow) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [UDP Query User87E5D06C-0B72-435E-9416-10CA4CDC044AC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Allow) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [TCP Query User9DF0C516-812D-4B45-829B-44126C8F1B20C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [UDP Query UserB72E6E6F-F7D0-4B79-815B-A8C55347E36FC:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [TCP Query UserA0034E0B-97DD-46E8-823A-62E0703F0ADAC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Block) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [UDP Query User9ADD0A8D-6055-4CB1-BA9F-4020B6706570C:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Block) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [09E47FEF-1759-43B4-9795-E9315C90A01D] =&gt; (Allow) C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [9E3142C6-90FB-4855-8FF1-FCBE114EEF4D] =&gt; (Allow) C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [9FB0505C-59D4-4113-91C5-9FBFAB217F6D] =&gt; (Allow) C:Program Files (x86)EPSON SoftwareECPrinterSetupENPApp.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [3A64D786-1F89-4801-BD77-C585A80CBFB7] =&gt; (Allow) C:Program Files (x86)EPSON SoftwareECPrinterSetupENPApp.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [TCP Query User74F6835B-AE6B-4AB9-8FCC-4459350C6570D:giochihearthstonehearthstone.exe] =&gt; (Block) D:giochihearthstonehearthstone.exe (Blizzard Entertainment, Inc. -&gt; )\nFirewallRules: [UDP Query User58AED474-9009-46A6-9923-0206B015380FD:giochihearthstonehearthstone.exe] =&gt; (Block) D:giochihearthstonehearthstone.exe (Blizzard Entertainment, Inc. -&gt; )\nFirewallRules: [VirtualPC-In-UDP-1] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [VirtualPC-In-UDP-2] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [VirtualPC-In-TCP-1] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [2DBC1507-3D9F-4958-9F7E-83595D81F016] =&gt; (Allow) D:GiochiDOTA 2steamappscommonEador. Masters of the Broken Worldlauncher.exe () [File not signed]\nFirewallRules: [B9026BBA-84DB-4400-8E1E-ABD5059117CD] =&gt; (Allow) D:GiochiDOTA 2steamappscommonEador. Masters of the Broken Worldlauncher.exe () [File not signed]\nFirewallRules: [428E48D4-A2FC-4E38-93F0-D015DED2CEA0] =&gt; (Allow) D:GiochiDOTA 2steamappscommondota 2 betagamebinwin64dota2.exe (Valve -&gt; )\nFirewallRules: [74C303B6-F2E8-4BC6-853F-EFD5FBE1535B] =&gt; (Allow) D:GiochiDOTA 2steamappscommondota 2 betagamebinwin64dota2.exe (Valve -&gt; )\nFirewallRules: [8D39FFFC-D3F3-40B7-9A83-559EF34F746B] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [9C0BC1AD-D865-48A0-A410-D2A72E9067A0] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [E4732CBC-C606-4D23-B4BE-4EF941892D2A] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [3C1769FE-7F73-40CD-8694-9D94EB5A4C73] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [EDDA200D-3307-4268-BF74-2A6B8C5850FE] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [5AC4F2B2-78FE-4312-94CF-D9BD16700FE6] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [7FFE0A82-6CE9-4263-BCEA-12BA88FC5AD1] =&gt; (Allow) C:Program FilesBlueStacksHD-Player.exe No File\nFirewallRules: [71D0935A-3DC4-46A8-B5EC-DC69E44DE995] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [734F2907-15A9-4964-9A4B-6AF63CB588B4] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [575D6C1F-8E4F-481C-AF65-601DDDA498A1] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LINE.exe No File\nFirewallRules: [891ABF3F-4987-4BF6-894D-804B5BC60153] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LINE.exe No File\nFirewallRules: [42FF3F30-8B2A-42B0-9BC0-F6C7BACF9258] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LineUpdater.exe No File\nFirewallRules: [F38971E4-A0A7-44DB-8A1C-8450D8A685C3] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LineUpdater.exe No File\nFirewallRules: [TCP Query UserCC8480C0-2941-4E9D-8A52-47822F0D9776D:giochidiablo iiidiablo iiix64diablo iii64.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiix64diablo iii64.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [UDP Query UserF6C4F938-A1A8-4668-AB2C-03AC5CE15700D:giochidiablo iiidiablo iiix64diablo iii64.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiix64diablo iii64.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [TCP Query User163F9996-F652-4769-9BAC-80C531683DA9C:program filesdnplayerext2ldboxheadless.exe] =&gt; (Allow) C:program filesdnplayerext2ldboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [UDP Query User3343FBF2-B1FF-4C62-B5FF-D8C3A6E8EC98C:program filesdnplayerext2ldboxheadless.exe] =&gt; (Allow) C:program filesdnplayerext2ldboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [6A971D92-619D-4131-AB0C-0BC7C492C4D5] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [9947C36A-3F76-4596-90D5-7062A53E9C53] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [TCP Query User71DD669E-F8F9-4657-9480-12045D0A9A65C:program filesldplayerboxldvboxheadless.exe] =&gt; (Allow) C:program filesldplayerboxldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [UDP Query User5C9DDDCA-3F20-4505-8FE1-74593EBD6931C:program filesldplayerboxldvboxheadless.exe] =&gt; (Allow) C:program filesldplayerboxldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [170B5594-146D-4B85-9BB4-3EF53938E732] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [37535782-EEB9-4AD5-82AB-95BDA7C0B007] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [F8CACE39-A536-471F-89EC-F6BA460694F0] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [472F5DAF-CF00-417C-AB83-604384991CE5] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [8070CE88-1B4C-434E-8495-B0F0C8C82972] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [22DBF4E8-86F2-44C0-9BE2-40F28D8B56AF] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [06240932-630C-46AA-8C14-877D0EA3938A] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [CC3EB70E-EEAD-4622-8480-E3C7771BF25C] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [E59453FF-C79A-4D0D-A485-D3FE8B274B54] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [0A829F94-700F-4835-8284-7B28614D717B] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [79FB848F-BBE9-42DA-8170-285A6C0060C8] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [456EF3E4-BE52-4A9A-8CA8-06554B75D800] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [B06D86D3-3848-4734-944F-5706BE664234] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [F0855DE7-46B2-4581-BFC1-2A4EB0D47355] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [8009BD78-17DA-44F1-95AA-5E9EC7724E77] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [73B5CCA2-1DFB-417E-88E2-0DAE1645F388] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [41C0109E-C969-40D1-AEDA-28C4B17EF631] =&gt; (Allow) D:GiochiDOTA 2steamappscommonPillars of EternityPillarsOfEternity.exe (Obsidian Entertainment) [File not signed]\nFirewallRules: [0A52AC62-C826-437E-BCE1-C1902CBE00BE] =&gt; (Allow) D:GiochiDOTA 2steamappscommonPillars of EternityPillarsOfEternity.exe (Obsidian Entertainment) [File not signed]\nFirewallRules: [374A4772-2595-4C7A-9E1D-A1692E687887] =&gt; (Allow) D:GiochiDOTA 2steamappscommonCounter-Strike Global Offensivecsgo.exe (Valve -&gt; )\nFirewallRules: [55E824ED-7014-48A7-8DAA-0C8717A6913C] =&gt; (Allow) D:GiochiDOTA 2steamappscommonCounter-Strike Global Offensivecsgo.exe (Valve -&gt; )\nFirewallRules: [E3CDA667-4963-4012-8775-68F6023DADD5] =&gt; (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -&gt; Google LLC)\nFirewallRules: [BB40FF31-6239-422E-8074-B6A9E2DC0D95] =&gt; (Block) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nFirewallRules: [0645C731-0335-4950-9427-213A6DA9E558] =&gt; (Allow) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nFirewallRules: [CDB7F1B2-0F67-4210-9A69-DF18B049D9CE] =&gt; (Allow) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)","==================== Restore Points =========================","18-04-2020 04:24:53 Punto di controllo pianificato\n18-04-2020 22:37:41 Windows Update","==================== Faulty Device Manager Devices ============","==================== Event log errors: ========================","Application errors:\n==================\nError: (04/19/2020 02:59:14 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x28e4\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d615ee12c7f9a8\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 5dd80d31-81e1-11ea-b4b9-1c7508f37aca","Error: (04/18/2020 02:22:40 PM) (Source: WinMgmt) (EventID: 10) (User: )\nDescription: Impossibile riattivare il filtro eventi con query &quot;SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA &quot;Win32_Processor&quot; AND TargetInstance.LoadPercentage &gt; 99&quot; nello spazio dei nomi &quot;//./root/CIMV2&quot;. Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.","Error: (04/18/2020 02:22:32 PM) (Source: Avira Phantom VPN) (EventID: 0) (User: )\nDescription: Service cannot be started. Il processo di servizio non ha potuto connettersi al controller di servizio","Error: (04/18/2020 02:58:54 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x13cc\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d61524e890fa87\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 27c684c1-8118-11ea-8822-1c7508f37aca","Error: (04/17/2020 01:32:33 PM) (Source: WinMgmt) (EventID: 10) (User: )\nDescription: Impossibile riattivare il filtro eventi con query &quot;SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA &quot;Win32_Processor&quot; AND TargetInstance.LoadPercentage &gt; 99&quot; nello spazio dei nomi &quot;//./root/CIMV2&quot;. Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.","Error: (04/17/2020 02:59:07 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x18b0\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d6145bbe2f4581\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 050dfbb3-804f-11ea-ad8b-1c7508f37aca","Error: (04/17/2020 12:36:53 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: MsMpEng.exe, versione: 4.10.209.0, timestamp: 0x582a94a1\nNome del modulo che ha generato l&#39;errore: mpengine.dll, versione: 1.1.16900.4, timestamp: 0x5e70249a\nCodice eccezione: 0xc0000005\nOffset errore 0x00000000001d00cf\nID processo che ha generato l&#39;errore: 0xac\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d60ec33667deaa\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program FilesMicrosoft Security ClientMsMpEng.exe\nPercorso del modulo che ha generato l&#39;errore: C:ProgramDataMicrosoftMicrosoft AntimalwareDefinition UpdatesABFDE23F-10A0-40FD-89BB-EEAFDF90A038mpengine.dll\nID segnalazione: 2686ef91-803b-11ea-ad8b-1c7508f37aca","Error: (04/16/2020 10:25:52 PM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: Il programma Explorer.EXE versione 6.1.7601.23537 non interagisce più con Windows ed è stato chiuso. Per vedere se sono disponibili ulteriori informazioni sul problema, verificare la cronologia del problema in Centro operativo nel Pannello di controllo.","ID processo: 804","Ora di avvio: 01d60ec34d82acc2","Ora di chiusura: 0","Percorso applicazione: C:WindowsExplorer.EXE","ID segnalazione: cb278b7b-8028-11ea-ad8b-1c7508f37aca","System errors:\n=============\nError: (04/18/2020 02:23:26 PM) (Source: Service Control Manager) (EventID: 7031) (User: )\nDescription: Il servizio Avira Phantom VPN è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 5000 millisecondi: Riavvia il servizio.","Error: (04/17/2020 12:40:19 AM) (Source: Microsoft Antimalware) (EventID: 3002) (User: )\nDescription: La funzionalità di protezione in tempo reale di Antimalware Microsoft ha rilevato un errore e non è riuscita.","Funzionalità: Network Inspection System","Codice errore: 0x80070002","Descrizione errore: Impossibile trovare il file specificato.","Motivo: Nel sistema mancano degli aggiornamenti necessari per l&#39;esecuzione di Network Inspection System. Installare gli aggiornamenti necessari e riavviare il computer.","Error: (04/17/2020 12:38:27 AM) (Source: Service Control Manager) (EventID: 7031) (User: )\nDescription: Il servizio Microsoft Antimalware Service è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 100 millisecondi: Esegui il programma di ripristino configurato.","Error: (04/17/2020 12:36:50 AM) (Source: Microsoft Antimalware) (EventID: 5008) (User: )\nDescription: Il motore Antimalware Microsoft è stato interrotto a causa di un errore imprevisto.","Tipo errore: Arresto anomalo","Codice eccezione: 0xc0000005","Risorsa: file:C:UsersDanieleDownloadsSample GESE Grade 5 Topic form_completed..pdf","Error: (04/16/2020 11:28:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 40.","Error: (04/16/2020 11:28:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 70.","Error: (04/16/2020 10:18:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 40.","Error: (04/16/2020 10:18:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 70.","Windows Defender:\n===================================\nDate: 2016-06-22 23:31:54.534\nLa description: \nWindows Defender: errore durante il tentativo di caricare le firme. Verrà tentato di ripristinare un set di firme valido.\nFirme tentate:Corrente\nCodice errore:0x80070002\nDescrizione errore:Impossibile trovare il file specificato. \nVersione firma:0.0.0.0\nVersione modulo:0.0.0.0","==================== Memory info ===========================","BIOS: Acer V1.07 03/02/2011\nMotherboard: Acer JE50_HR\nProcessor: Intel® Core™ i5-2410M CPU @ 2.30GHz\nPercentage of memory in use: 92%\nTotal physical RAM: 8043.86 MB\nAvailable physical RAM: 633.23 MB\nTotal Virtual: 24426 MB\nAvailable Virtual: 15554.41 MB","==================== Drives ================================","Drive c: (Acer) (Fixed) (Total:290.05 GB) (Free:130.96 GB) NTFS\nDrive d: (DATA) (Fixed) (Total:290.4 GB) (Free:143.46 GB) NTFS\nDrive e: (Misc) (CDROM) (Total:0.69 GB) (Free:0.13 GB) UDF\nDrive g: () (Removable) (Total:29.27 GB) (Free:1.17 GB) FAT32","\\?Volume283c1efb-a59f-11e2-b4d5-806e6f6e6963 (SYSTEM RESERVED) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS\n\\?Volume283c1efa-a59f-11e2-b4d5-806e6f6e6963 (PQSERVICE) (Fixed) (Total:15.62 GB) (Free:2.53 GB) NTFS","==================== MBR &amp; Partition Table ====================","==========================================================\nDisk: 0 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: BD414BA4)\nPartition 1: (Not Active) &#8211; (Size=15.6 GB) &#8211; (Type=27)\nPartition 2: (Active) &#8211; (Size=100 MB) &#8211; (Type=07 NTFS)\nPartition 3: (Not Active) &#8211; (Size=290.1 GB) &#8211; (Type=07 NTFS)\nPartition 4: (Not Active) &#8211; (Size=290.4 GB) &#8211; (Type=07 NTFS)","==========================================================\nDisk: 1 (Protective MBR) (Size: 29.3 GB) (Disk ID: 00000000)","Partition: GPT.","==================== End of Addition.txt =======================","Click to rate this post!\n                                   \n                               [Total: 0  Average: 0]"],"content_blocks":[{"id":"text-1","type":"text","heading":"","plain_text":"Résultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-04-2020\nRan par Daniele (administrateur) sur DANIELE-PC (Acer Aspire 5750G) (19-04-2020 14:37:26)\nExécution à partir de C:  Users  Daniele  Downloads\nProfils chargés: Daniele (Profils disponibles: Daniele &amp; Ree)\nPlateforme: Windows 7 Home Premium Service Pack 1 (X64) Langue: Italiano (Italia)\nInternet Explorer version 11 (navigateur par défaut: FF)\nMode de démarrage: Normal","html":"<p>Résultat de l&#039;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-04-2020\nRan par Daniele (administrateur) sur DANIELE-PC (Acer Aspire 5750G) (19-04-2020 14:37:26)\nExécution à partir de C:  Users  Daniele  Downloads\nProfils chargés: Daniele (Profils disponibles: Daniele &amp; Ree)\nPlateforme: Windows 7 Home Premium Service Pack 1 (X64) Langue: Italiano (Italia)\nInternet Explorer version 11 (navigateur par défaut: FF)\nMode de démarrage: Normal</p>"},{"id":"text-2","type":"text","heading":"","plain_text":"==================== Processus (sur liste blanche) =================","html":"<p>==================== Processus (sur liste blanche) =================</p>"},{"id":"text-3","type":"text","heading":"","plain_text":"(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé. Le fichier ne sera pas déplacé.)","html":"<p>(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé. Le fichier ne sera pas déplacé.)</p>"},{"id":"text-4","type":"text","heading":"","plain_text":"(Adobe Inc. -&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avgnt.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avguard.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avscan.exe \n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avshadow.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  sched.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Launcher  Avira.ServiceHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Launcher  Avira.Systray.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Optimizer Host  Avira.OptimizerHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  SoftwareUpdater  Avira.SoftwareUpdater.ServiceHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  VPN  Avira.VpnService.exe\n(Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment) C:  Program Files (x86)  Battle.net  Battle.net.exe \n(Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment) C:  ProgramData  Battle.net  Agent  Agent.7022  Agent.exe\n(CyberLink -&gt; CyberLink Corp.) C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fiAgent.exe\n(CyberLink -&gt; CyberLink) C:  Program Files (x86)  Acer  clear.fi  MVP  Kernel  DMR  DMREngine.exe\n(Discord Inc. -&gt; Discord Inc.) C:  Users  Daniele  AppData  Local  Discord  app-0.0.306  Discord.exe \n(Even Balance, Inc. -&gt;) C:  Windows  SysWOW64  PnkBstrA.exe\n(Google LLC -&gt; Google LLC) C:  Program Files (x86)  Google  Chrome  Application  chrome.exe \n(HearthSim, LLC -&gt; HearthSim) C:  Users  Daniele  AppData  Local  HearthstoneDeckTracker  app-1.10.7  HearthstoneDeckTracker.exe\n(Intel Corporation -&gt; Intel Corporation) C:  Windows  System32  igfxpers.exe\n(Intel Corporation -&gt; Intel Corporation) C:  Windows  System32  igfxtray.exe\n(McAfee, LLC -&gt; McAfee, LLC) C:  Program Files  McAfee  WebAdvisor  servicehost.exe\n(McAfee, LLC -&gt; McAfee, LLC) C:  Program Files  McAfee  WebAdvisor  uihost.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Fichiers communs  microsoft shared  Virtualization Handler  CVHSVC.EXE\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Application Virtualization Client  sftlist.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Application Virtualization Client  sftvsa.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  MsMpEng.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  msseces.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  NisSrv.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  dllhost.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  rundll32.exe\n(Mozilla Corporation -&gt; Mozilla Corporation) C:  Program Files (x86)  Mozilla Firefox  firefox.exe \n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  NvTelemetry  NvTelemetryContainer.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display.NvContainer  NVDisplay.Container.exe \n(SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION) C:  Program Files  Fichiers communs  EPSON  EPW! 3 SSRP  E_S60RPB.EXE\n(SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION) C:  Windows  System32  spool  drivers  x64  3  E_IATILFE.EXE\n(Shanghai Changzhi Network Technology Co., Ltd. -&gt;) D:  XuanZhi  LDPlayer  ldnews.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnh.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPHelper.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  TeamViewer.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  TeamViewer_Service.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  tv_w32.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  tv_x64.exe","html":"<p>(Adobe Inc. -&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avgnt.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avguard.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avscan.exe \n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avshadow.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  sched.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Launcher  Avira.ServiceHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Launcher  Avira.Systray.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Optimizer Host  Avira.OptimizerHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  SoftwareUpdater  Avira.SoftwareUpdater.ServiceHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  VPN  Avira.VpnService.exe\n(Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment) C:  Program Files (x86)  Battle.net  Battle.net.exe \n(Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment) C:  ProgramData  Battle.net  Agent  Agent.7022  Agent.exe\n(CyberLink -&gt; CyberLink Corp.) C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fiAgent.exe\n(CyberLink -&gt; CyberLink) C:  Program Files (x86)  Acer  clear.fi  MVP  Kernel  DMR  DMREngine.exe\n(Discord Inc. -&gt; Discord Inc.) C:  Users  Daniele  AppData  Local  Discord  app-0.0.306  Discord.exe \n(Even Balance, Inc. -&gt;) C:  Windows  SysWOW64  PnkBstrA.exe\n(Google LLC -&gt; Google LLC) C:  Program Files (x86)  Google  Chrome  Application  chrome.exe \n(HearthSim, LLC -&gt; HearthSim) C:  Users  Daniele  AppData  Local  HearthstoneDeckTracker  app-1.10.7  HearthstoneDeckTracker.exe\n(Intel Corporation -&gt; Intel Corporation) C:  Windows  System32  igfxpers.exe\n(Intel Corporation -&gt; Intel Corporation) C:  Windows  System32  igfxtray.exe\n(McAfee, LLC -&gt; McAfee, LLC) C:  Program Files  McAfee  WebAdvisor  servicehost.exe\n(McAfee, LLC -&gt; McAfee, LLC) C:  Program Files  McAfee  WebAdvisor  uihost.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Fichiers communs  microsoft shared  Virtualization Handler  CVHSVC.EXE\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Application Virtualization Client  sftlist.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Application Virtualization Client  sftvsa.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  MsMpEng.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  msseces.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  NisSrv.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  dllhost.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  rundll32.exe\n(Mozilla Corporation -&gt; Mozilla Corporation) C:  Program Files (x86)  Mozilla Firefox  firefox.exe \n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  NvTelemetry  NvTelemetryContainer.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display.NvContainer  NVDisplay.Container.exe \n(SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION) C:  Program Files  Fichiers communs  EPSON  EPW! 3 SSRP  E_S60RPB.EXE\n(SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION) C:  Windows  System32  spool  drivers  x64  3  E_IATILFE.EXE\n(Shanghai Changzhi Network Technology Co., Ltd. -&gt;) D:  XuanZhi  LDPlayer  ldnews.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnh.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPHelper.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  TeamViewer.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  TeamViewer_Service.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  tv_w32.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  tv_x64.exe</p>"},{"id":"text-5","type":"text","heading":"","plain_text":"==================== Registre (liste blanche) ===================","html":"<p>==================== Registre (liste blanche) ===================</p>"},{"id":"text-6","type":"text","heading":"","plain_text":"(Si une entrée est incluse dans la liste de correctifs, l&#39;élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)","html":"<p>(Si une entrée est incluse dans la liste de correctifs, l&#039;élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)</p>"},{"id":"text-7","type":"text","heading":"","plain_text":"HKLM  &#8230;  Run: [MSC] =&gt; C:  Program Files  Microsoft Security Client  msseces.exe [1353680 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKLM  &#8230;  Run: [SynTPEnh] =&gt; C:  Program Files  Synaptics  SynTP  SynTPEnh.exe [2280232 2010-07-29] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nHKLM  &#8230;  Run: [] =&gt; [X]\nHKLM-x32  &#8230;  Exécuter: [KeePass 2 PreLoad] =&gt; C:  Program Files (x86)  KeePass Password Safe 2  KeePass.exe [3331264 2020-01-20] (Développeur Open Source, Dominik Reichl -&gt; Dominik Reichl)\nHKLM-x32  &#8230;  Exécuter: [Avira SystrayStartTrigger] =&gt; C:  Program Files (x86)  Avira  Launcher  Avira.SystrayStartTrigger.exe [239520 2020-04-02] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nHKLM-x32  &#8230;  Exécuter: [Avira System Speedup User Starter] =&gt; C:  Program Files (x86)  Avira  System Speedup  Avira.SystemSpeedup.Core.Common.Starter.exe [331368 2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nHKLM-x32  &#8230;  Exécuter: [] =&gt; [X]\nHKU  S-1-5-19  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKU  S-1-5-20  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [EPLTargetP0000000000000001] =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_IATILFE.EXE [297024 2013-01-24] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [Discord] =&gt; C:  Users  Daniele  AppData  Local  Discord  app-0.0.306  Discord.exe [90950968 2020-02-24] (Discord Inc. -&gt; Discord Inc.)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [LDNews] =&gt; D:  XuanZhi  LDPlayer  ldnews.exe [1309368 2020-03-25] (Shanghai Changzhi Network Technology Co., Ltd. -&gt;)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [] =&gt; [X]\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  RunOnce: [FlashPlayerUpdate] =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-18] (Adobe Inc. -&gt; Adobe)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 050c8d1e-37e4-11ea-9ee4-1c7508f37aca &#8211; H:  RTK_NIC_DRIVER_INSTALLER.sfx.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 5e68e840-be54-11e2-b434-806e6f6e6963 &#8211; G:  Setup.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 839489ac-58a7-11e5-ac80-1c7508ead495 &#8211; C:  Windows  system32  RunDLL32.EXE Shell32.DLL, ShellExec_RunDLL H:  Start.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 84650df6-67d9-11ea-9c89-1c7508f37aca &#8211; H:  HiSuiteDownLoader.exe} &#8211; H:  HiSuiteDownLoader.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: aab47bad-b4df-11e2-b1df-1c7508ead495 &#8211; F:  LANLauncher.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: b7603e81-b1e8-11e7-9500-1c7508ead495 &#8211; G:  HiSuiteDownLoader.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: fb958786-5f36-11e3-8f8a-1c7508ead495 &#8211; F:  autorun.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  Control Panel  Desktop \\ SCRNSAVE.EXE -&gt; C:  Windows  system32  scrnsave.scr [11264 2009-07-14] (Microsoft Windows -&gt; Microsoft Corporation)\nHKU  S-1-5-18  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKLM  Software  Microsoft  Active Setup  Installed Components: [2D46B6DC-2207-486B-B523-A557E6D54B47] -&gt; C:  Windows  system32  cmd.exe / D / C démarrer C:  Windows  system32  ie4uinit.exe -ClearIconCache\nHKLM  Software  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; C:  Program Files (x86)  Google  Chrome  Application  81.0.4044.113  Installer  chrmstp.exe [2020-04-15] (Google LLC -&gt; Google LLC)\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [2D46B6DC-2207-486B-B523-A557E6D54B47] -&gt; C:  Windows  system32  cmd.exe / D / C démarrer C:  Windows  system32  ie4uinit.exe -ClearIconCache\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; &quot;C:  Program Files (x86)  Google  Chrome  Application  57.0.2987.133  Installer  chrmstp.exe&quot; &#8211;configure-user-settings &#8211;verbose-logging &#8211;system-level\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [A6EADE66-0000-0000-484E-7E8A45000000] -&gt; C:  Program Files (x86)  Adobe  Acrobat Reader DC  Esl  AiodLite.dll [2019-05-03] (Adobe Inc. -&gt; Adobe Systems, Inc.)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [F8A0B131-5F68-486c-8040-7E8FC3C85BB6] -&gt; C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDCREDPROV.DLL [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nFournisseurs HKLM  Software  &#8230;  Authentication  PLAP: [60442b50-aac2-4db7-b9b0-813d2107287d] -&gt; c:  windows  system32  dsNcSmartCardProv.dll [2014-04-16] (Juniper Networks, Inc. -&gt; Juniper Networks)\nFournisseurs HKLM  Software  &#8230;  Authentication  PLAP: [9f4a51de-92b1-483a-b717-dd7d3bb7d3db] -&gt; c:  windows  system32  dsNcCredProv.dll [2014-04-16] (Juniper Networks, Inc. -&gt; Juniper Networks)\nAppInit_DLLs: C:  Windows  system32  nvinitx.dll =&gt; C:  Windows  system32  nvinitx.dll [182784 2018-03-25] (NVIDIA Corporation PE Sign v2016 -&gt; NVIDIA Corporation)\nAppInit_DLLs-x32: C:  Windows  SysWOW64  nvinit.dll =&gt; C:  Windows  SysWOW64  nvinit.dll [159704 2018-03-25] (NVIDIA Corporation PE Sign v2016 -&gt; NVIDIA Corporation)","html":"<p>HKLM  &#8230;  Run: [MSC] =&gt; C:  Program Files  Microsoft Security Client  msseces.exe [1353680 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKLM  &#8230;  Run: [SynTPEnh] =&gt; C:  Program Files  Synaptics  SynTP  SynTPEnh.exe [2280232 2010-07-29] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nHKLM  &#8230;  Run: [] =&gt; [X]\nHKLM-x32  &#8230;  Exécuter: [KeePass 2 PreLoad] =&gt; C:  Program Files (x86)  KeePass Password Safe 2  KeePass.exe [3331264 2020-01-20] (Développeur Open Source, Dominik Reichl -&gt; Dominik Reichl)\nHKLM-x32  &#8230;  Exécuter: [Avira SystrayStartTrigger] =&gt; C:  Program Files (x86)  Avira  Launcher  Avira.SystrayStartTrigger.exe [239520 2020-04-02] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nHKLM-x32  &#8230;  Exécuter: [Avira System Speedup User Starter] =&gt; C:  Program Files (x86)  Avira  System Speedup  Avira.SystemSpeedup.Core.Common.Starter.exe [331368 2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nHKLM-x32  &#8230;  Exécuter: [] =&gt; [X]\nHKU  S-1-5-19  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKU  S-1-5-20  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [EPLTargetP0000000000000001] =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_IATILFE.EXE [297024 2013-01-24] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [Discord] =&gt; C:  Users  Daniele  AppData  Local  Discord  app-0.0.306  Discord.exe [90950968 2020-02-24] (Discord Inc. -&gt; Discord Inc.)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [LDNews] =&gt; D:  XuanZhi  LDPlayer  ldnews.exe [1309368 2020-03-25] (Shanghai Changzhi Network Technology Co., Ltd. -&gt;)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [] =&gt; [X]\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  RunOnce: [FlashPlayerUpdate] =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-18] (Adobe Inc. -&gt; Adobe)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 050c8d1e-37e4-11ea-9ee4-1c7508f37aca &#8211; H:  RTK_NIC_DRIVER_INSTALLER.sfx.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 5e68e840-be54-11e2-b434-806e6f6e6963 &#8211; G:  Setup.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 839489ac-58a7-11e5-ac80-1c7508ead495 &#8211; C:  Windows  system32  RunDLL32.EXE Shell32.DLL, ShellExec_RunDLL H:  Start.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 84650df6-67d9-11ea-9c89-1c7508f37aca &#8211; H:  HiSuiteDownLoader.exe} &#8211; H:  HiSuiteDownLoader.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: aab47bad-b4df-11e2-b1df-1c7508ead495 &#8211; F:  LANLauncher.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: b7603e81-b1e8-11e7-9500-1c7508ead495 &#8211; G:  HiSuiteDownLoader.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: fb958786-5f36-11e3-8f8a-1c7508ead495 &#8211; F:  autorun.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  Control Panel  Desktop \\ SCRNSAVE.EXE -&gt; C:  Windows  system32  scrnsave.scr [11264 2009-07-14] (Microsoft Windows -&gt; Microsoft Corporation)\nHKU  S-1-5-18  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKLM  Software  Microsoft  Active Setup  Installed Components: [2D46B6DC-2207-486B-B523-A557E6D54B47] -&gt; C:  Windows  system32  cmd.exe / D / C démarrer C:  Windows  system32  ie4uinit.exe -ClearIconCache\nHKLM  Software  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; C:  Program Files (x86)  Google  Chrome  Application  81.0.4044.113  Installer  chrmstp.exe [2020-04-15] (Google LLC -&gt; Google LLC)\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [2D46B6DC-2207-486B-B523-A557E6D54B47] -&gt; C:  Windows  system32  cmd.exe / D / C démarrer C:  Windows  system32  ie4uinit.exe -ClearIconCache\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; &quot;C:  Program Files (x86)  Google  Chrome  Application  57.0.2987.133  Installer  chrmstp.exe&quot; &#8211;configure-user-settings &#8211;verbose-logging &#8211;system-level\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [A6EADE66-0000-0000-484E-7E8A45000000] -&gt; C:  Program Files (x86)  Adobe  Acrobat Reader DC  Esl  AiodLite.dll [2019-05-03] (Adobe Inc. -&gt; Adobe Systems, Inc.)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [F8A0B131-5F68-486c-8040-7E8FC3C85BB6] -&gt; C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDCREDPROV.DLL [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nFournisseurs HKLM  Software  &#8230;  Authentication  PLAP: [60442b50-aac2-4db7-b9b0-813d2107287d] -&gt; c:  windows  system32  dsNcSmartCardProv.dll [2014-04-16] (Juniper Networks, Inc. -&gt; Juniper Networks)\nFournisseurs HKLM  Software  &#8230;  Authentication  PLAP: [9f4a51de-92b1-483a-b717-dd7d3bb7d3db] -&gt; c:  windows  system32  dsNcCredProv.dll [2014-04-16] (Juniper Networks, Inc. -&gt; Juniper Networks)\nAppInit_DLLs: C:  Windows  system32  nvinitx.dll =&gt; C:  Windows  system32  nvinitx.dll [182784 2018-03-25] (NVIDIA Corporation PE Sign v2016 -&gt; NVIDIA Corporation)\nAppInit_DLLs-x32: C:  Windows  SysWOW64  nvinit.dll =&gt; C:  Windows  SysWOW64  nvinit.dll [159704 2018-03-25] (NVIDIA Corporation PE Sign v2016 -&gt; NVIDIA Corporation)</p>"},{"id":"text-8","type":"text","heading":"","plain_text":"==================== Tâches planifiées (liste blanche) ============","html":"<p>==================== Tâches planifiées (liste blanche) ============</p>"},{"id":"text-9","type":"text","heading":"","plain_text":"(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé sauf s&#39;il est répertorié séparément.)","html":"<p>(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé sauf s&#039;il est répertorié séparément.)</p>"},{"id":"text-10","type":"text","heading":"","plain_text":"Tâche: 0587C257-D7C6-4C78-8F21-1D7F3939B9B9 &#8211; System32  Tasks  Recovery Management  Burn Notification =&gt; C:  Program Files  Acer  Acer eRecovery Management  NotificationCenter  Notification.exe [816520 2011-08-09] (Acer Incorporated -&gt; Acer)\nTâche: 0698585B-BA25-4335-9278-3BC3C18BE8B5 &#8211; System32  Tasks  Adobe Flash Player NPAPI Notifier =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-18] (Adobe Inc. -&gt; Adobe)\nTâche: 0D073FB3-7592-4AD3-ACD5-261412DDD7DF &#8211; System32  Tasks  EPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 0D415B8D-D7FD-477F-97FB-381B18EBA498 &#8211; Tâche de mise à jour System32  Tasks  Adobe Acrobat =&gt; C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -&gt; Adobe Systems)\nTâche: 16CBEF8D-2362-4ADC-9C8E-7F143609615F &#8211; System32  Tasks  clear.fiAgent =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fiAgent.exe [120104 2011-08-24] (CyberLink -&gt; CyberLink Corp.)\nTâche: 19BE36DC-19D0-4AE2-B932-4E92E841E50E &#8211; System32  Tasks  NvTmMon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvTmMon.exe [510912 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 28017D3E-92AD-4139-B233-772380FCF796 &#8211; System32  Tasks  898F6CA2-2FC0-4969-9594-F4670EF81EBA =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 28FFE953-0A42-4552-8E34-DC5CE2F4000A &#8211; System32  Tasks  F3E47E76-9709-4A21-BB71-1B0C6C9B8223 =&gt; C:  Windows  system32  pcalua.exe -a E:  Setup.exe &#8211; d E: \nTâche: 2AFD2942-0BC9-4D3A-A82D-AD1D5CCE73FD &#8211; System32  Tasks  E3F8847E-F1BC-4BFB-8A19-8DF64248AAFE =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 34FFA4CE-EA47-418C-BE0E-1EA34C5DCC7B &#8211; System32  Tasks  AviraSystemSpeedupUpdate =&gt; C:  ProgramData  Avira  SystemSpeedup  Update  avira_speedup_setup_update.exe [27848432 2020-04-09] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nTâche: 461EE1FB-988C-4A90-BB13-D665D42A365A &#8211; System32  Tasks  NvProfileUpdaterDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  Update Core  NvProfileUpdater64 [662464 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 4802D53D-7317-4F6D-96B0-025C0D18E41B &#8211; System32  Tasks  5B715CDF-6EE8-460D-A988-FA5FE01124D1 =&gt; E:  baldur.exe\nTâche: 53F97095-C1E8-4C4E-8E7E-D640EAC6E922 &#8211; System32  Tasks  NVIDIA GeForce Experience SelfUpdate_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  NVIDIA GeForce Experience  NVIDIA GeForce Experience.exe [2069952 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 576D0D33-BE9A-4724-A555-8F4E9B90573B &#8211; System32  Tasks  EPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 58DE433B-64F3-4832-A901-30F96F3625BA &#8211; System32  Tasks  NvProfileUpdaterOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  Update Core  NvProfileUpdater64 [662464 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 5CED6FD0-67EC-4881-BEBA-77F9D42F4209 &#8211; System32  Tasks  Adobe Flash Player Updater =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashPlayerUpdateService.exe [335416 2019-12-18] (Adobe Inc. -&gt; Adobe)\nTâche: 6DA9947E-16BB-412B-9076-BAB7FB4730DC &#8211; System32  Tasks  NvTmRep_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvTmRep.exe [757184 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 6E86E2AF-4A75-49B5-B12F-E52842CDEB92 &#8211; System32  Tasks  E4841482-3364-44D1-9773-1AA169AD4679 =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 6E924764-AF68-4394-8DE7-E26688CAA88F &#8211; System32  Tasks  E6B67C06-3DA8-48D9-8061-CC54EDA7A03D =&gt; C:  Users  Daniele  Desktop  Tor Browser  Browser  firefox.exe.exe \nTâche: 82643A6B-7C76-4DDE-9EFC-EAA23691FC3F &#8211; System32  Tasks  7D643D1C-0931-495D-8883-8D8B85E39BAB =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Bureau  hpflash1.exe -d C:  Users  Daniele  Desktop\nTâche: 89BBD1F3-AD18-4295-9C8F-408713D375EF &#8211; System32  Tasks  DMREngine =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP .  Kernel  DMR  DMREngine.exe [169352 2011-08-24] (CyberLink -&gt; CyberLink)\nTâche: 8DA7805F-DA82-44FD-8C16-3DB36A78306A &#8211; System32  Tasks  UALU notificatin =&gt; C:  Program Files  Acer  Acer Updater  UALU.exe [22392 2012-04-05] (Acer Incorporated -&gt; Acer Incorporated)\nTâche: 906AA2A6-A3F5-419E-AD07-0DC22E0C18E7 &#8211; System32  Tasks  clear.fi =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fi.exe [264760 2011-08-24] (CyberLink -&gt; Acer Incorporated)\nTâche: 91BE0F27-0BB1-4F2D-AA59-B164367ED37B &#8211; System32  Tasks  GoogleUpdateTaskMachineCore =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [144200 2015-08-28] (Google Inc -&gt; Google Inc.)\nTâche: 944C8AC3-46F0-49EA-BCE6-BD5F2ABF1E25 &#8211; System32  Tasks  NvBatteryBoostCheckOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVontia Corporation  NvC [469952 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 947B3B5A-7121-4AA4-A132-B3723F145F31 &#8211; System32  Tasks  EPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 96EC6761-5AF9-498C-A923-CBEB073F3C48 &#8211; System32  Tasks  Microsoft  Microsoft Antimalware  Microsoft Antimalware Scheduled Scan =&gt; C:  Program Files  Microsoft Security Client \\ MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nTâche: 971CBDDC-AE71-4383-BF3E-55684DC6BE1F &#8211; Tâche System32  Tasks  Overwolf Updater =&gt; C:  Program Files (x86)  Overwolf  OverwolfUpdater.exe [2463064 2020-03-14] (Overwolf Ltd -&gt; Overwolf LTD)\nTâche: 9C563B9F-8477-4F74-9683-3D0C349598DD &#8211; System32  Tasks  EPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: A2AF1F20-FAF1-44EB-A8EE-F9E61B94538B &#8211; System32  Tasks  CEF4E478-F540-44FA-8A0A-B04F0C79ED38 =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Téléchargements  HijackThis.exe -d C:  Users  Daniele  Downloads\nTâche: A4CA37D7-063A-4E31-BD80-149FDBF10BE1 &#8211; System32  Tasks  5D586F1C-A007-495B-A683-84471FF9182E =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Desktop  BaldursGate2  Setup.exe -d C:  Users  Daniele  Desktop  BaldursGate2\nTâche: A5D1C74C-C335-4965-A36A-010CC81124C7 &#8211; System32  Tasks  E1FD0496-34FB-4E32-BE56-1638E11B44F0 =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: AA9292C3-4A04-427B-83C6-1D8EA215F4AC &#8211; System32  Tasks  A07D0381-8480-48E5-93B1-1CD22638FA0B =&gt; C:  Windows  system32  pcalua.exe -a E:  Launch.exe &#8211; d E: \nTâche: AF175631-4055-4EDD-B91E-ADC2D47EC4D7 &#8211; System32  Tasks  NvNodeLauncher_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  NvNode  nvnodejsla [976832 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: D7C41E02-A0BF-4278-A071-55694952ACDC &#8211; System32  Tasks  GoogleUpdateTaskMachineUA =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [144200 2015-08-28] (Google Inc -&gt; Google Inc.)\nTâche: D7F35FFC-47BF-4DC2-97D2-9C611F8EC20B &#8211; System32  Tasks  Microsoft  Windows Live  SOXE  Extractor Definitions Update Task =&gt; 3519154C-227E-47F3-9CC9-12C3F05817F1\nTâche: DD604AC5-C11F-4371-84FE-2AC34CF0D167 &#8211; System32  Tasks  NvDriverUpdateCheckDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  NvContainer  nvcontain.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: E002599A-08C1-4C42-883F-191BB591BB0F &#8211; System32  Tasks  6E01CB89-B997-4F11-A30C-C7CE8A9C91A1 =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Téléchargements  win32_152824.exe -d C:  Users  Daniele  Downloads\nTâche: F75AEAE1-46D4-4AE2-B52C-212BD3348EFE &#8211; System32  Tasks  Avira_Antivirus_Systray =&gt; C:  Program Files (x86)  Avira  Antivirus  avgnt.exe [2759304 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)","html":"<p>Tâche: 0587C257-D7C6-4C78-8F21-1D7F3939B9B9 &#8211; System32  Tasks  Recovery Management  Burn Notification =&gt; C:  Program Files  Acer  Acer eRecovery Management  NotificationCenter  Notification.exe [816520 2011-08-09] (Acer Incorporated -&gt; Acer)\nTâche: 0698585B-BA25-4335-9278-3BC3C18BE8B5 &#8211; System32  Tasks  Adobe Flash Player NPAPI Notifier =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-18] (Adobe Inc. -&gt; Adobe)\nTâche: 0D073FB3-7592-4AD3-ACD5-261412DDD7DF &#8211; System32  Tasks  EPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 0D415B8D-D7FD-477F-97FB-381B18EBA498 &#8211; Tâche de mise à jour System32  Tasks  Adobe Acrobat =&gt; C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -&gt; Adobe Systems)\nTâche: 16CBEF8D-2362-4ADC-9C8E-7F143609615F &#8211; System32  Tasks  clear.fiAgent =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fiAgent.exe [120104 2011-08-24] (CyberLink -&gt; CyberLink Corp.)\nTâche: 19BE36DC-19D0-4AE2-B932-4E92E841E50E &#8211; System32  Tasks  NvTmMon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvTmMon.exe [510912 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 28017D3E-92AD-4139-B233-772380FCF796 &#8211; System32  Tasks  898F6CA2-2FC0-4969-9594-F4670EF81EBA =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 28FFE953-0A42-4552-8E34-DC5CE2F4000A &#8211; System32  Tasks  F3E47E76-9709-4A21-BB71-1B0C6C9B8223 =&gt; C:  Windows  system32  pcalua.exe -a E:  Setup.exe &#8211; d E: \nTâche: 2AFD2942-0BC9-4D3A-A82D-AD1D5CCE73FD &#8211; System32  Tasks  E3F8847E-F1BC-4BFB-8A19-8DF64248AAFE =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 34FFA4CE-EA47-418C-BE0E-1EA34C5DCC7B &#8211; System32  Tasks  AviraSystemSpeedupUpdate =&gt; C:  ProgramData  Avira  SystemSpeedup  Update  avira_speedup_setup_update.exe [27848432 2020-04-09] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nTâche: 461EE1FB-988C-4A90-BB13-D665D42A365A &#8211; System32  Tasks  NvProfileUpdaterDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  Update Core  NvProfileUpdater64 [662464 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 4802D53D-7317-4F6D-96B0-025C0D18E41B &#8211; System32  Tasks  5B715CDF-6EE8-460D-A988-FA5FE01124D1 =&gt; E:  baldur.exe\nTâche: 53F97095-C1E8-4C4E-8E7E-D640EAC6E922 &#8211; System32  Tasks  NVIDIA GeForce Experience SelfUpdate_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  NVIDIA GeForce Experience  NVIDIA GeForce Experience.exe [2069952 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 576D0D33-BE9A-4724-A555-8F4E9B90573B &#8211; System32  Tasks  EPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 58DE433B-64F3-4832-A901-30F96F3625BA &#8211; System32  Tasks  NvProfileUpdaterOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  Update Core  NvProfileUpdater64 [662464 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 5CED6FD0-67EC-4881-BEBA-77F9D42F4209 &#8211; System32  Tasks  Adobe Flash Player Updater =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashPlayerUpdateService.exe [335416 2019-12-18] (Adobe Inc. -&gt; Adobe)\nTâche: 6DA9947E-16BB-412B-9076-BAB7FB4730DC &#8211; System32  Tasks  NvTmRep_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvTmRep.exe [757184 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 6E86E2AF-4A75-49B5-B12F-E52842CDEB92 &#8211; System32  Tasks  E4841482-3364-44D1-9773-1AA169AD4679 =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 6E924764-AF68-4394-8DE7-E26688CAA88F &#8211; System32  Tasks  E6B67C06-3DA8-48D9-8061-CC54EDA7A03D =&gt; C:  Users  Daniele  Desktop  Tor Browser  Browser  firefox.exe.exe \nTâche: 82643A6B-7C76-4DDE-9EFC-EAA23691FC3F &#8211; System32  Tasks  7D643D1C-0931-495D-8883-8D8B85E39BAB =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Bureau  hpflash1.exe -d C:  Users  Daniele  Desktop\nTâche: 89BBD1F3-AD18-4295-9C8F-408713D375EF &#8211; System32  Tasks  DMREngine =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP .  Kernel  DMR  DMREngine.exe [169352 2011-08-24] (CyberLink -&gt; CyberLink)\nTâche: 8DA7805F-DA82-44FD-8C16-3DB36A78306A &#8211; System32  Tasks  UALU notificatin =&gt; C:  Program Files  Acer  Acer Updater  UALU.exe [22392 2012-04-05] (Acer Incorporated -&gt; Acer Incorporated)\nTâche: 906AA2A6-A3F5-419E-AD07-0DC22E0C18E7 &#8211; System32  Tasks  clear.fi =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fi.exe [264760 2011-08-24] (CyberLink -&gt; Acer Incorporated)\nTâche: 91BE0F27-0BB1-4F2D-AA59-B164367ED37B &#8211; System32  Tasks  GoogleUpdateTaskMachineCore =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [144200 2015-08-28] (Google Inc -&gt; Google Inc.)\nTâche: 944C8AC3-46F0-49EA-BCE6-BD5F2ABF1E25 &#8211; System32  Tasks  NvBatteryBoostCheckOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVontia Corporation  NvC [469952 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 947B3B5A-7121-4AA4-A132-B3723F145F31 &#8211; System32  Tasks  EPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 96EC6761-5AF9-498C-A923-CBEB073F3C48 &#8211; System32  Tasks  Microsoft  Microsoft Antimalware  Microsoft Antimalware Scheduled Scan =&gt; C:  Program Files  Microsoft Security Client \\ MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nTâche: 971CBDDC-AE71-4383-BF3E-55684DC6BE1F &#8211; Tâche System32  Tasks  Overwolf Updater =&gt; C:  Program Files (x86)  Overwolf  OverwolfUpdater.exe [2463064 2020-03-14] (Overwolf Ltd -&gt; Overwolf LTD)\nTâche: 9C563B9F-8477-4F74-9683-3D0C349598DD &#8211; System32  Tasks  EPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: A2AF1F20-FAF1-44EB-A8EE-F9E61B94538B &#8211; System32  Tasks  CEF4E478-F540-44FA-8A0A-B04F0C79ED38 =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Téléchargements  HijackThis.exe -d C:  Users  Daniele  Downloads\nTâche: A4CA37D7-063A-4E31-BD80-149FDBF10BE1 &#8211; System32  Tasks  5D586F1C-A007-495B-A683-84471FF9182E =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Desktop  BaldursGate2  Setup.exe -d C:  Users  Daniele  Desktop  BaldursGate2\nTâche: A5D1C74C-C335-4965-A36A-010CC81124C7 &#8211; System32  Tasks  E1FD0496-34FB-4E32-BE56-1638E11B44F0 =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: AA9292C3-4A04-427B-83C6-1D8EA215F4AC &#8211; System32  Tasks  A07D0381-8480-48E5-93B1-1CD22638FA0B =&gt; C:  Windows  system32  pcalua.exe -a E:  Launch.exe &#8211; d E: \nTâche: AF175631-4055-4EDD-B91E-ADC2D47EC4D7 &#8211; System32  Tasks  NvNodeLauncher_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  NvNode  nvnodejsla [976832 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: D7C41E02-A0BF-4278-A071-55694952ACDC &#8211; System32  Tasks  GoogleUpdateTaskMachineUA =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [144200 2015-08-28] (Google Inc -&gt; Google Inc.)\nTâche: D7F35FFC-47BF-4DC2-97D2-9C611F8EC20B &#8211; System32  Tasks  Microsoft  Windows Live  SOXE  Extractor Definitions Update Task =&gt; 3519154C-227E-47F3-9CC9-12C3F05817F1\nTâche: DD604AC5-C11F-4371-84FE-2AC34CF0D167 &#8211; System32  Tasks  NvDriverUpdateCheckDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  NvContainer  nvcontain.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: E002599A-08C1-4C42-883F-191BB591BB0F &#8211; System32  Tasks  6E01CB89-B997-4F11-A30C-C7CE8A9C91A1 =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Téléchargements  win32_152824.exe -d C:  Users  Daniele  Downloads\nTâche: F75AEAE1-46D4-4AE2-B52C-212BD3348EFE &#8211; System32  Tasks  Avira_Antivirus_Systray =&gt; C:  Program Files (x86)  Avira  Antivirus  avgnt.exe [2759304 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)</p>"},{"id":"text-11","type":"text","heading":"","plain_text":"(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)","html":"<p>(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)</p>"},{"id":"text-12","type":"text","heading":"","plain_text":"Tâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE : / EXE: 6AFC5C38-E427-4C18-A613-15CA4120664F / F: UpdateSYSTEMĊ Recherche les mises à jour du logiciel EPSON et vous avertit lorsque des mises à jour sont disponibles.Si cette tâche est désactivée ou arrêtée, votre logiciel EPSON ne sera pas automatiquement mis à jour date.Thi\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE : / EXE: E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF / F: UpdateSYSTEMĊ Recherche les mises à jour du logiciel EPSON et vous avertit lorsque des mises à jour sont disponibles. Si cette tâche est désactivée ou arrêtée, votre logiciel EPSON ne sera pas automatiquement tenu à jour. date.Thi","html":"<p>Tâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE : / EXE: 6AFC5C38-E427-4C18-A613-15CA4120664F / F: UpdateSYSTEMĊ Recherche les mises à jour du logiciel EPSON et vous avertit lorsque des mises à jour sont disponibles.Si cette tâche est désactivée ou arrêtée, votre logiciel EPSON ne sera pas automatiquement mis à jour date.Thi\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE : / EXE: E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF / F: UpdateSYSTEMĊ Recherche les mises à jour du logiciel EPSON et vous avertit lorsque des mises à jour sont disponibles. Si cette tâche est désactivée ou arrêtée, votre logiciel EPSON ne sera pas automatiquement tenu à jour. date.Thi</p>"},{"id":"text-13","type":"text","heading":"","plain_text":"==================== Internet (liste blanche) ====================","html":"<p>==================== Internet (liste blanche) ====================</p>"},{"id":"text-14","type":"text","heading":"","plain_text":"(Si un élément est inclus dans la liste de correctifs, s&#39;il s&#39;agit d&#39;un élément du registre, il sera supprimé ou restauré par défaut.)","html":"<p>(Si un élément est inclus dans la liste de correctifs, s&#039;il s&#039;agit d&#039;un élément du registre, il sera supprimé ou restauré par défaut.)</p>"},{"id":"text-15","type":"text","heading":"","plain_text":"Winsock: Catalog5 07 C:  Program Files (x86)  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5 08 C:  Program Files (x86)  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5-x64 07 C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5-x64 08 C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nTcpip  Paramètres: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  0EF91A76-19E2-4548-BB51-E60CD7106D02: [DhcpNameServer] 192.168.0.1\nTcpip  ..  Interfaces  3EFC82CC-B91A-4C1E-B521-C2B94DC80088: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  49233639-7CE3-4A19-9C9C-58E97178E1DA: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  C05787A9-9258-4705-B63A-09E187B553B7: [DhcpNameServer] 192.168.42.129\nTcpip  ..  Interfaces  E302DF92-CA2E-4BE6-BBDF-9847BF0E7A4F: [DhcpNameServer] 192.168.42.129","html":"<p>Winsock: Catalog5 07 C:  Program Files (x86)  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5 08 C:  Program Files (x86)  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5-x64 07 C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5-x64 08 C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nTcpip  Paramètres: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  0EF91A76-19E2-4548-BB51-E60CD7106D02: [DhcpNameServer] 192.168.0.1\nTcpip  ..  Interfaces  3EFC82CC-B91A-4C1E-B521-C2B94DC80088: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  49233639-7CE3-4A19-9C9C-58E97178E1DA: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  C05787A9-9258-4705-B63A-09E187B553B7: [DhcpNameServer] 192.168.42.129\nTcpip  ..  Interfaces  E302DF92-CA2E-4BE6-BBDF-9847BF0E7A4F: [DhcpNameServer] 192.168.42.129</p>"},{"id":"text-16","type":"text","heading":"","plain_text":"Internet Explorer:\n==================\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  Software  Microsoft  Internet Explorer  Main, page de démarrage = hxxp: //uk.search.yahoo.com/? Type = 714647 &amp; fr = spigot-yhp -c&#39;est à dire\nSearchScopes: HKLM -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM-x32 -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM-x32 -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKU  .DEFAULT -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  .DEFAULT -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; DefaultScope 6F10B82E-F8E1-488B-AFF0-66E6D7950E71 URL = hxxps: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9 URL = hxxp: //www1.delta-search.com/? Q =  searchTerms &amp; affID = 119776 &amp; tt = gc_ &amp; babsrc = SP_ss &amp; mntrId = 0A75EC55F940E88A\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 6F10B82E-F8E1-488B-AFF0-66E6D7950E71 URL = hxxps: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 7405AE7F-13A6-4266-A4B2-512B544AACDB URL = hxxp: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 99209B94-587D-42C2-A3CA-F72D0A76A2F6 URL = hxxp: //www.bing.com/search? Q = searchTerms  &amp; r = 503\nBHO: Aide à la connexion Windows Live ID -&gt; 9030D464-4C02-4ABF-8ECC-5164760863C6 -&gt; C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WindowsLiveLogin.dll [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nBHO: McAfee WebAdvisor -&gt; B164E929-A1B6-4A06-B104-2CD0E90A88FF -&gt; C:  Program Files  McAfee  WebAdvisor  x64  IEPlugin.dll [2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nBHO-x32: Java ™ Plug-In SSV Helper -&gt; 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  ssv.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO-x32: Aide à la connexion Windows Live ID -&gt; 9030D464-4C02-4ABF-8ECC-5164760863C6 -&gt; C:  Program Files (x86)  Common Files  Microsoft Shared  Windows Live  WindowsLiveLogin.dll [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nBHO-x32: McAfee WebAdvisor -&gt; B164E929-A1B6-4A06-B104-2CD0E90A88FF -&gt; C:  Program Files  McAfee  WebAdvisor  win32  IEPlugin.dll [2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nBHO-x32: Java ™ Plug-In 2 SSV Helper -&gt; DBC80044-A445-435b-BC74-9C25C1C588A9 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  jp2ssv.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nRestauration de session IE: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; est activé.\nDPF: HKLM AA570693-00E2-4907-B6F1-60A1199B030C hxxps: //juniper.net/dana-cached/sc/JuniperSetupClient64.cab\nDPF: HKLM-x32 E5F5D008-DD2C-4D32-977D-1A0ADF03058B hxxps: //juniper.net/dana-cached/setup/JuniperSetupSP1.cab\nDPF: HKLM-x32 F27237D7-93C8-44C2-AC6E-D6057B9A918F hxxps: //juniper.net/dana-cached/sc/JuniperSetupClient.cab\nGestionnaire: skype4com &#8211; FFC8B962-9B40-4DFF-9458-1830C7DD7F5D &#8211; Aucun fichier\nFilter-x32: application / x-ica &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = euc-jp &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = ISO-8859-1 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS936 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS949 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS950 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF-8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = euc-jp &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = ISO-8859-1 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS936 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS949 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS950 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF-8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: ica &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)","html":"<p>Internet Explorer:\n==================\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  Software  Microsoft  Internet Explorer  Main, page de démarrage = hxxp: //uk.search.yahoo.com/? Type = 714647 &amp; fr = spigot-yhp -c&#039;est à dire\nSearchScopes: HKLM -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM-x32 -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM-x32 -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKU  .DEFAULT -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  .DEFAULT -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; DefaultScope 6F10B82E-F8E1-488B-AFF0-66E6D7950E71 URL = hxxps: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9 URL = hxxp: //www1.delta-search.com/? Q =  searchTerms &amp; affID = 119776 &amp; tt = gc_ &amp; babsrc = SP_ss &amp; mntrId = 0A75EC55F940E88A\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 6F10B82E-F8E1-488B-AFF0-66E6D7950E71 URL = hxxps: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 7405AE7F-13A6-4266-A4B2-512B544AACDB URL = hxxp: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 99209B94-587D-42C2-A3CA-F72D0A76A2F6 URL = hxxp: //www.bing.com/search? Q = searchTerms  &amp; r = 503\nBHO: Aide à la connexion Windows Live ID -&gt; 9030D464-4C02-4ABF-8ECC-5164760863C6 -&gt; C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WindowsLiveLogin.dll [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nBHO: McAfee WebAdvisor -&gt; B164E929-A1B6-4A06-B104-2CD0E90A88FF -&gt; C:  Program Files  McAfee  WebAdvisor  x64  IEPlugin.dll [2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nBHO-x32: Java ™ Plug-In SSV Helper -&gt; 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  ssv.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO-x32: Aide à la connexion Windows Live ID -&gt; 9030D464-4C02-4ABF-8ECC-5164760863C6 -&gt; C:  Program Files (x86)  Common Files  Microsoft Shared  Windows Live  WindowsLiveLogin.dll [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nBHO-x32: McAfee WebAdvisor -&gt; B164E929-A1B6-4A06-B104-2CD0E90A88FF -&gt; C:  Program Files  McAfee  WebAdvisor  win32  IEPlugin.dll [2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nBHO-x32: Java ™ Plug-In 2 SSV Helper -&gt; DBC80044-A445-435b-BC74-9C25C1C588A9 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  jp2ssv.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nRestauration de session IE: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; est activé.\nDPF: HKLM AA570693-00E2-4907-B6F1-60A1199B030C hxxps: //juniper.net/dana-cached/sc/JuniperSetupClient64.cab\nDPF: HKLM-x32 E5F5D008-DD2C-4D32-977D-1A0ADF03058B hxxps: //juniper.net/dana-cached/setup/JuniperSetupSP1.cab\nDPF: HKLM-x32 F27237D7-93C8-44C2-AC6E-D6057B9A918F hxxps: //juniper.net/dana-cached/sc/JuniperSetupClient.cab\nGestionnaire: skype4com &#8211; FFC8B962-9B40-4DFF-9458-1830C7DD7F5D &#8211; Aucun fichier\nFilter-x32: application / x-ica &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = euc-jp &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = ISO-8859-1 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS936 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS949 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS950 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF-8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = euc-jp &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = ISO-8859-1 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS936 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS949 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS950 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF-8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: ica &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)</p>"},{"id":"text-17","type":"text","heading":"","plain_text":"FireFox:\n========\nFF DefaultProfile: xlbk4m4f.default-1485720396432\nFF ProfilePath: C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432 [2020-04-19]\nRestauration de session FF: Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432 -&gt; est activé.\nExtension FF: (Sécurité du navigateur Avira) &#8211; C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432  Extensions  abs@avira.com.xpi [2020-03-23]\nExtension FF: (Recherche et nouvel onglet par Yahoo) &#8211; C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432  Extensions  jid1-16aeif9OQIRKxA@jetpack.xpi [2019-05-16]\nPlugin FF: @ adobe.com / FlashPlayer -&gt; C:  Windows  system32  Macromed  Flash  NPSWF64_32_0_0_303.dll [2019-12-18] (Adobe Inc. -&gt;)\nPlugin FF: @ microsoft.com / GENUINE -&gt; désactivé [No File]\nPlugin FF: @ Microsoft.com / NpCtrl, version = 1.0 -&gt; C:  Program Files  Microsoft Silverlight  5.1.50918.0  npctrl.dll [2018-10-23] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ adobe.com / FlashPlayer -&gt; C:  Windows  SysWOW64  Macromed  Flash  NPSWF32_32_0_0_303.dll [2019-12-18] (Adobe Inc. -&gt;)\nFF Plugin-x32: @ Citrix.com / npican -&gt; C:  Program Files (x86)  Citrix  ICA Client  npicaN.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFF Plugin-x32: @ java.com / DTPlugin, version = 11.171.2 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  dtplugin  npDeployJava1.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin-x32: @ java.com / JavaPlugin, version = 11.171.2 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  plugin2  npjp2.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin-x32: @ microsoft.com / GENUINE -&gt; désactivé [No File]\nFF Plugin-x32: @ Microsoft.com / NpCtrl, version = 1.0 -&gt; C:  Program Files (x86)  Microsoft Silverlight  5.1.50918.0  npctrl.dll [2018-10-23] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / SharePoint, version = 14.0 -&gt; C:  PROGRA ~ 2  MICROS ~ 4  Office14  NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / WLPG, version = 15.4.3502.0922 -&gt; C:  Program Files (x86)  Windows Live  Photo Gallery  NPWLPG.dll [2011-05-13] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / WLPG, version = 15.4.3538.0513 -&gt; C:  Program Files (x86)  Windows Live  Photo Gallery  NPWLPG.dll [2011-05-13] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.0.6 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.1.2 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.2.1 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.2.6 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 3.0.8 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ WildTangent.com / GamesAppPresenceDetector, Version = 1.0 -&gt; C:  Program Files (x86)  WildTangent Games  App  BrowserIntegration  Registered  0  NP_wtapp.dll [2013-08-06] (WildTangent Inc -&gt;)\nFF Plugin-x32: Adobe Reader -&gt; C:  Program Files (x86)  Adobe  Acrobat Reader DC  Reader  AIR  nppdf32.dll [2020-03-05] (Adobe Inc. -&gt; Adobe Systems Inc.)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: @ asperasoft.com / AsperaConnect -&gt; C:  Users  Daniele  AppData  Local  Programs  Aspera  Aspera Connect  lib  3.6. 1  npasperaweb_3.6.1.111228.dll [2015-09-11] (Aspera, Inc. -&gt; Aspera, Inc.)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: @ Unity3d.com / UnityPlayer, version = 1.0 -&gt; C:  Users  Daniele  AppData  LocalLow  Unity  WebPlayer  Loader  npUnity3D32 .dll [2015-03-27] (Unity Technologies SF -&gt; Unity Technologies ApS)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: SkypeForBusinessPlugin-15.8 -&gt; C:  Users  Daniele  AppData  Local  Microsoft  SkypeForBusinessPlugin  15.8.20020.400  npGatewayNpapi.dll [2015-06-15] (Microsoft Corporation -&gt; Microsoft Corporation)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: SkypeForBusinessPlugin64-15.8 -&gt; C:  Users  Daniele  AppData  Local  Microsoft  SkypeForBusinessPlugin  15.8.20020.400  npGatewayNpapi-x64.dll [2015-06-15] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin HKUS-1-5-21-1536202438-368462837-3654654372-1001: SkypePlugin -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48npGatewayNpapi.dll [2016-09-22] (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFF Plugin HKUS-1-5-21-1536202438-368462837-3654654372-1001: SkypePlugin64 -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48npGatewayNpapi-x64.dll [2016-09-22] (Microsoft Corporation -&gt; Skype Technologies S.A.)","html":"<p>FireFox:\n========\nFF DefaultProfile: xlbk4m4f.default-1485720396432\nFF ProfilePath: C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432 [2020-04-19]\nRestauration de session FF: Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432 -&gt; est activé.\nExtension FF: (Sécurité du navigateur Avira) &#8211; C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432  Extensions  abs@avira.com.xpi [2020-03-23]\nExtension FF: (Recherche et nouvel onglet par Yahoo) &#8211; C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432  Extensions  jid1-16aeif9OQIRKxA@jetpack.xpi [2019-05-16]\nPlugin FF: @ adobe.com / FlashPlayer -&gt; C:  Windows  system32  Macromed  Flash  NPSWF64_32_0_0_303.dll [2019-12-18] (Adobe Inc. -&gt;)\nPlugin FF: @ microsoft.com / GENUINE -&gt; désactivé [No File]\nPlugin FF: @ Microsoft.com / NpCtrl, version = 1.0 -&gt; C:  Program Files  Microsoft Silverlight  5.1.50918.0  npctrl.dll [2018-10-23] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ adobe.com / FlashPlayer -&gt; C:  Windows  SysWOW64  Macromed  Flash  NPSWF32_32_0_0_303.dll [2019-12-18] (Adobe Inc. -&gt;)\nFF Plugin-x32: @ Citrix.com / npican -&gt; C:  Program Files (x86)  Citrix  ICA Client  npicaN.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFF Plugin-x32: @ java.com / DTPlugin, version = 11.171.2 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  dtplugin  npDeployJava1.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin-x32: @ java.com / JavaPlugin, version = 11.171.2 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  plugin2  npjp2.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin-x32: @ microsoft.com / GENUINE -&gt; désactivé [No File]\nFF Plugin-x32: @ Microsoft.com / NpCtrl, version = 1.0 -&gt; C:  Program Files (x86)  Microsoft Silverlight  5.1.50918.0  npctrl.dll [2018-10-23] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / SharePoint, version = 14.0 -&gt; C:  PROGRA ~ 2  MICROS ~ 4  Office14  NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / WLPG, version = 15.4.3502.0922 -&gt; C:  Program Files (x86)  Windows Live  Photo Gallery  NPWLPG.dll [2011-05-13] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / WLPG, version = 15.4.3538.0513 -&gt; C:  Program Files (x86)  Windows Live  Photo Gallery  NPWLPG.dll [2011-05-13] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.0.6 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.1.2 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.2.1 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.2.6 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 3.0.8 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ WildTangent.com / GamesAppPresenceDetector, Version = 1.0 -&gt; C:  Program Files (x86)  WildTangent Games  App  BrowserIntegration  Registered  0  NP_wtapp.dll [2013-08-06] (WildTangent Inc -&gt;)\nFF Plugin-x32: Adobe Reader -&gt; C:  Program Files (x86)  Adobe  Acrobat Reader DC  Reader  AIR  nppdf32.dll [2020-03-05] (Adobe Inc. -&gt; Adobe Systems Inc.)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: @ asperasoft.com / AsperaConnect -&gt; C:  Users  Daniele  AppData  Local  Programs  Aspera  Aspera Connect  lib  3.6. 1  npasperaweb_3.6.1.111228.dll [2015-09-11] (Aspera, Inc. -&gt; Aspera, Inc.)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: @ Unity3d.com / UnityPlayer, version = 1.0 -&gt; C:  Users  Daniele  AppData  LocalLow  Unity  WebPlayer  Loader  npUnity3D32 .dll [2015-03-27] (Unity Technologies SF -&gt; Unity Technologies ApS)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: SkypeForBusinessPlugin-15.8 -&gt; C:  Users  Daniele  AppData  Local  Microsoft  SkypeForBusinessPlugin  15.8.20020.400  npGatewayNpapi.dll [2015-06-15] (Microsoft Corporation -&gt; Microsoft Corporation)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: SkypeForBusinessPlugin64-15.8 -&gt; C:  Users  Daniele  AppData  Local  Microsoft  SkypeForBusinessPlugin  15.8.20020.400  npGatewayNpapi-x64.dll [2015-06-15] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin HKUS-1-5-21-1536202438-368462837-3654654372-1001: SkypePlugin -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48npGatewayNpapi.dll [2016-09-22] (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFF Plugin HKUS-1-5-21-1536202438-368462837-3654654372-1001: SkypePlugin64 -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48npGatewayNpapi-x64.dll [2016-09-22] (Microsoft Corporation -&gt; Skype Technologies S.A.)</p>"},{"id":"text-18","type":"text","heading":"","plain_text":"Chrome: \n=======\nCHR Profile: C:UsersDanieleAppDataLocalGoogleChromeUser DataDefault [2020-04-19]\nCHR Notifications: Default -&gt; hxxps://uk-mg42.mail.yahoo.com; hxxps://web.skype.com; hxxps://web.whatsapp.com; hxxps://www.hotukdeals.com; hxxps://www.reddit.com\nCHR HomePage: Default -&gt; hxxp://uk.search.yahoo.com/?type=714647&amp;fr=spigot-yhp-ch\nCHR StartupUrls: Default -&gt; &quot;hxxps://www.google.co.uk/&quot;\nCHR Session Restore: Default -&gt; is enabled.\nCHR Extension: (Presentazioni) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-10-16]\nCHR Extension: (Documenti) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-10-16]\nCHR Extension: (Google Drive) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2015-10-21]\nCHR Extension: (YouTube) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]\nCHR Extension: (Avira Password Manager) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionscaljgklbbfbcjjanaijlacgncafpegll [2020-04-14]\nCHR Extension: (Google Search) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionscoobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]\nCHR Extension: (Fogli) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-10-16]\nCHR Extension: (Documenti Google offline) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-17]\nCHR Extension: (AdBlock: il miglior ad-blocker di sempre) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsgighmmpiobklfepjocnamgkkbiglidom [2020-04-17]\nCHR Extension: (Lightshot (strumento per screenshot)) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsmbniclmhobmnbdlbpiphghaielnnpgdp [2020-01-31]\nCHR Extension: (Pagamenti Chrome Web Store) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]\nCHR Extension: (Gmail) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-05-16]\nCHR Extension: (Chrome Media Router) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-14]\nCHR HKLM&#8230;ChromeExtension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]\nCHR HKLM&#8230;ChromeExtension: [fheoggkfdfchfphceeifdbepaooicaho]\nCHR HKLM-x32&#8230;ChromeExtension: [caljgklbbfbcjjanaijlacgncafpegll]\nCHR HKLM-x32&#8230;ChromeExtension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]\nCHR HKLM-x32&#8230;ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj]\nCHR HKLM-x32&#8230;ChromeExtension: [fheoggkfdfchfphceeifdbepaooicaho]\nCHR HKLM-x32&#8230;ChromeExtension: [flliilndjeohchalpbbcdekjklbdgfkk]\nCHR HKLM-x32&#8230;ChromeExtension: [ibbfklbaljofpaanmpaeadejijfdddco]\nCHR HKLM-x32&#8230;ChromeExtension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]\nCHR HKLM-x32&#8230;ChromeExtension: [nbmafkdmkkckhggblphicnnhlgljnoje] &#8211; \nCHR HKLM-x32&#8230;ChromeExtension: [njpedbdniajflhgfoipnjkednnlkngbj]","html":"<p>Chrome: \n=======\nCHR Profile: C:UsersDanieleAppDataLocalGoogleChromeUser DataDefault [2020-04-19]\nCHR Notifications: Default -&gt; hxxps://uk-mg42.mail.yahoo.com; hxxps://web.skype.com; hxxps://web.whatsapp.com; hxxps://www.hotukdeals.com; hxxps://www.reddit.com\nCHR HomePage: Default -&gt; hxxp://uk.search.yahoo.com/?type=714647&amp;fr=spigot-yhp-ch\nCHR StartupUrls: Default -&gt; &quot;hxxps://www.google.co.uk/&quot;\nCHR Session Restore: Default -&gt; is enabled.\nCHR Extension: (Presentazioni) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-10-16]\nCHR Extension: (Documenti) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-10-16]\nCHR Extension: (Google Drive) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2015-10-21]\nCHR Extension: (YouTube) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]\nCHR Extension: (Avira Password Manager) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionscaljgklbbfbcjjanaijlacgncafpegll [2020-04-14]\nCHR Extension: (Google Search) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionscoobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]\nCHR Extension: (Fogli) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-10-16]\nCHR Extension: (Documenti Google offline) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-17]\nCHR Extension: (AdBlock: il miglior ad-blocker di sempre) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsgighmmpiobklfepjocnamgkkbiglidom [2020-04-17]\nCHR Extension: (Lightshot (strumento per screenshot)) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsmbniclmhobmnbdlbpiphghaielnnpgdp [2020-01-31]\nCHR Extension: (Pagamenti Chrome Web Store) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]\nCHR Extension: (Gmail) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-05-16]\nCHR Extension: (Chrome Media Router) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-14]\nCHR HKLM&#8230;ChromeExtension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]\nCHR HKLM&#8230;ChromeExtension: [fheoggkfdfchfphceeifdbepaooicaho]\nCHR HKLM-x32&#8230;ChromeExtension: [caljgklbbfbcjjanaijlacgncafpegll]\nCHR HKLM-x32&#8230;ChromeExtension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]\nCHR HKLM-x32&#8230;ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj]\nCHR HKLM-x32&#8230;ChromeExtension: [fheoggkfdfchfphceeifdbepaooicaho]\nCHR HKLM-x32&#8230;ChromeExtension: [flliilndjeohchalpbbcdekjklbdgfkk]\nCHR HKLM-x32&#8230;ChromeExtension: [ibbfklbaljofpaanmpaeadejijfdddco]\nCHR HKLM-x32&#8230;ChromeExtension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]\nCHR HKLM-x32&#8230;ChromeExtension: [nbmafkdmkkckhggblphicnnhlgljnoje] &#8211; \nCHR HKLM-x32&#8230;ChromeExtension: [njpedbdniajflhgfoipnjkednnlkngbj]</p>"},{"id":"text-19","type":"text","heading":"","plain_text":"==================== Services (Whitelisted) ===================","html":"<p>==================== Services (Whitelisted) ===================</p>"},{"id":"text-20","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)</p>"},{"id":"text-21","type":"text","heading":"","plain_text":"S2 AntiVirMailService; C:Program Files (x86)AviraAntivirusavmailc7.exe [1209856 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AntiVirSchedulerService; C:Program Files (x86)AviraAntivirussched.exe [485960 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AntiVirService; C:Program Files (x86)AviraAntivirusavguard.exe [485960 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nS2 AntiVirWebService; C:Program Files (x86)AviraAntivirusavwebg7.exe [573760 2020-03-22] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 Avira.ServiceHost; C:Program Files (x86)AviraLauncherAvira.ServiceHost.exe [634896 2020-04-02] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraOptimizerHost; C:Program Files (x86)AviraOptimizer HostAvira.OptimizerHost.exe [2989888 2020-01-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraPhantomVPN; C:Program Files (x86)AviraVPNAvira.VpnService.exe [382992 2020-03-18] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraUpdaterService; C:Program Files (x86)AviraSoftwareUpdaterAvira.SoftwareUpdater.ServiceHost.exe [161216 2020-04-09] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nS4 EpsonScanSvc; C:Windowssystem32EscSvc64.exe [144560 2012-05-17] (SEIKO EPSON Corporation -&gt; Seiko Epson Corporation)\nR2 EPSON_PM_RPCV4_06; C:Program FilesCommon FilesEPSONEPW!3 SSRPE_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nS3 fussvc; C:Program Files (x86)Windows Kits8.1App Certification Kitfussvc.exe [143872 2014-10-24] (Microsoft Corporation) [File not signed]\nS4 GamesAppIntegrationService; C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [240736 2013-10-07] (WildTangent Inc -&gt; WildTangent)\nR2 McAfee WebAdvisor; C:Program FilesMcAfeeWebAdvisorServiceHost.exe [913640 2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nR2 MsMpSvc; C:Program FilesMicrosoft Security ClientMsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nS4 MyEpson Portal Service; C:Program Files (x86)EPSONMyEpson PortalmepService.exe [714712 2017-06-28] (SEIKO EPSON CORPORATION -&gt; Seiko Epson Corporation)\nR3 NisSrv; C:Program FilesMicrosoft Security ClientNisSrv.exe [361816 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nS4 NTI IScheduleSvc; C:Program Files (x86)NTIAcer Backup ManagerIScheduleSvc.exe [256832 2011-04-24] (NTI Corporation -&gt; NTI Corporation)\nS3 NvContainerLocalSystem; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS3 NvContainerNetworkService; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS4 Origin Client Service; C:Program Files (x86)OriginOriginClientService.exe [2098528 2017-08-23] (Electronic Arts, Inc. -&gt; Electronic Arts)\nS4 Origin Web Helper Service; C:Program Files (x86)OriginOriginWebHelperService.exe [2977640 2017-08-23] (Electronic Arts, Inc. -&gt; Electronic Arts)\nS4 OverwolfUpdater; C:Program Files (x86)OverwolfOverwolfUpdater.exe [2463064 2020-03-14] (Overwolf Ltd -&gt; Overwolf LTD)\nR2 PnkBstrA; C:WindowsSysWOW64PnkBstrA.exe [75136 2013-05-17] (Even Balance, Inc. -&gt; )\nS3 Te.Service; C:Program Files (x86)Windows Kits8.1TestingRuntimesTAEFWex.Services.exe [122368 2015-02-26] (Microsoft Corporation) [File not signed]\nR2 TeamViewer; C:Program Files (x86)TeamViewerTeamViewer_Service.exe [13216272 2020-03-20] (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nS3 WinDefend; C:Program FilesWindows Defendermpsvc.dll [1011712 2013-05-27] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 wlidsvc; C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDSVC.EXE [2292096 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nR2 NVDisplay.ContainerLocalSystem; &quot;C:Program FilesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container.exe&quot; -s NVDisplay.ContainerLocalSystem -f &quot;C:ProgramDataNVIDIANVDisplay.ContainerLocalSystem.log&quot; -l 3 -d &quot;C:Program FilesNVIDIA CorporationDisplay.NvContainerpluginsLocalSystem&quot; -r -p 30000\nR2 NvTelemetryContainer; &quot;C:Program Files (x86)NVIDIA CorporationNvTelemetryNvTelemetryContainer.exe&quot; -s NvTelemetryContainer -f &quot;C:ProgramDataNVIDIANvTelemetryContainer.log&quot; -l 3 -d &quot;C:Program Files (x86)NVIDIA CorporationNvTelemetryplugins&quot; -r","html":"<p>S2 AntiVirMailService; C:Program Files (x86)AviraAntivirusavmailc7.exe [1209856 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AntiVirSchedulerService; C:Program Files (x86)AviraAntivirussched.exe [485960 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AntiVirService; C:Program Files (x86)AviraAntivirusavguard.exe [485960 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nS2 AntiVirWebService; C:Program Files (x86)AviraAntivirusavwebg7.exe [573760 2020-03-22] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 Avira.ServiceHost; C:Program Files (x86)AviraLauncherAvira.ServiceHost.exe [634896 2020-04-02] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraOptimizerHost; C:Program Files (x86)AviraOptimizer HostAvira.OptimizerHost.exe [2989888 2020-01-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraPhantomVPN; C:Program Files (x86)AviraVPNAvira.VpnService.exe [382992 2020-03-18] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraUpdaterService; C:Program Files (x86)AviraSoftwareUpdaterAvira.SoftwareUpdater.ServiceHost.exe [161216 2020-04-09] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nS4 EpsonScanSvc; C:Windowssystem32EscSvc64.exe [144560 2012-05-17] (SEIKO EPSON Corporation -&gt; Seiko Epson Corporation)\nR2 EPSON_PM_RPCV4_06; C:Program FilesCommon FilesEPSONEPW!3 SSRPE_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nS3 fussvc; C:Program Files (x86)Windows Kits8.1App Certification Kitfussvc.exe [143872 2014-10-24] (Microsoft Corporation) [File not signed]\nS4 GamesAppIntegrationService; C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [240736 2013-10-07] (WildTangent Inc -&gt; WildTangent)\nR2 McAfee WebAdvisor; C:Program FilesMcAfeeWebAdvisorServiceHost.exe [913640 2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nR2 MsMpSvc; C:Program FilesMicrosoft Security ClientMsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nS4 MyEpson Portal Service; C:Program Files (x86)EPSONMyEpson PortalmepService.exe [714712 2017-06-28] (SEIKO EPSON CORPORATION -&gt; Seiko Epson Corporation)\nR3 NisSrv; C:Program FilesMicrosoft Security ClientNisSrv.exe [361816 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nS4 NTI IScheduleSvc; C:Program Files (x86)NTIAcer Backup ManagerIScheduleSvc.exe [256832 2011-04-24] (NTI Corporation -&gt; NTI Corporation)\nS3 NvContainerLocalSystem; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS3 NvContainerNetworkService; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS4 Origin Client Service; C:Program Files (x86)OriginOriginClientService.exe [2098528 2017-08-23] (Electronic Arts, Inc. -&gt; Electronic Arts)\nS4 Origin Web Helper Service; C:Program Files (x86)OriginOriginWebHelperService.exe [2977640 2017-08-23] (Electronic Arts, Inc. -&gt; Electronic Arts)\nS4 OverwolfUpdater; C:Program Files (x86)OverwolfOverwolfUpdater.exe [2463064 2020-03-14] (Overwolf Ltd -&gt; Overwolf LTD)\nR2 PnkBstrA; C:WindowsSysWOW64PnkBstrA.exe [75136 2013-05-17] (Even Balance, Inc. -&gt; )\nS3 Te.Service; C:Program Files (x86)Windows Kits8.1TestingRuntimesTAEFWex.Services.exe [122368 2015-02-26] (Microsoft Corporation) [File not signed]\nR2 TeamViewer; C:Program Files (x86)TeamViewerTeamViewer_Service.exe [13216272 2020-03-20] (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nS3 WinDefend; C:Program FilesWindows Defendermpsvc.dll [1011712 2013-05-27] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 wlidsvc; C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDSVC.EXE [2292096 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nR2 NVDisplay.ContainerLocalSystem; &quot;C:Program FilesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container.exe&quot; -s NVDisplay.ContainerLocalSystem -f &quot;C:ProgramDataNVIDIANVDisplay.ContainerLocalSystem.log&quot; -l 3 -d &quot;C:Program FilesNVIDIA CorporationDisplay.NvContainerpluginsLocalSystem&quot; -r -p 30000\nR2 NvTelemetryContainer; &quot;C:Program Files (x86)NVIDIA CorporationNvTelemetryNvTelemetryContainer.exe&quot; -s NvTelemetryContainer -f &quot;C:ProgramDataNVIDIANvTelemetryContainer.log&quot; -l 3 -d &quot;C:Program Files (x86)NVIDIA CorporationNvTelemetryplugins&quot; -r</p>"},{"id":"text-22","type":"text","heading":"","plain_text":"===================== Drivers (Whitelisted) ===================","html":"<p>===================== Drivers (Whitelisted) ===================</p>"},{"id":"text-23","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)</p>"},{"id":"text-24","type":"text","heading":"","plain_text":"R3 athr; C:WindowsSystem32DRIVERSathrx.sys [2755584 2011-07-19] (Microsoft Windows Hardware Compatibility Publisher -&gt; Atheros Communications, Inc.)\nR0 avdevprot; C:WindowsSystem32DRIVERSavdevprot.sys [68152 2019-06-07] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 avgntflt; C:WindowsSystem32DRIVERSavgntflt.sys [223744 2020-03-27] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 avipbb; C:WindowsSystem32DRIVERSavipbb.sys [177376 2020-04-06] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 avkmgr; C:WindowsSystem32DRIVERSavkmgr.sys [36072 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 avnetflt; C:WindowsSystem32DRIVERSavnetflt.sys [78600 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR0 avusbflt; C:WindowsSystem32Driversavusbflt.sys [35376 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 dtsoftbus01; C:WindowsSystem32DRIVERSdtsoftbus01.sys [283064 2013-12-07] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR2 LdBoxDrv; C:Program Filesdnplayerext2LdBoxDrv.sys [319376 2019-12-18] (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nR2 LdVBoxDrv; C:Program FilesldplayerboxLdVBoxDrv.sys [319376 2020-03-25] (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nR0 MpFilter; C:WindowsSystem32DRIVERSMpFilter.sys [295000 2016-08-25] (Microsoft Corporation -&gt; Microsoft Corporation)\nS3 MYFAULT; C:Windowssystem32driversmyfault.sys [25392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -&gt; Sysinternals)\nR3 NisDrv; C:WindowsSystem32DRIVERSNisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -&gt; Microsoft Corporation)\nR3 nusb3hub; C:Windowssystem32driversnusb3hub.sys [82432 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -&gt; Renesas Electronics Corporation)\nR3 nusb3xhc; C:Windowssystem32driversnusb3xhc.sys [181760 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -&gt; Renesas Electronics Corporation)\nS3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [31168 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvad_WaveExtensible; C:WindowsSystem32driversnvvad64v.sys [59240 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvhci; C:WindowsSystem32DRIVERSnvvhci.sys [58816 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 phantomtap; C:WindowsSystem32DRIVERSphantomtap.sys [35664 2020-03-18] (Avira Operations GmbH &amp; Co. KG -&gt; The OpenVPN Project)\nS3 rtux64w7; C:WindowsSystem32DRIVERSrtux64w7.sys [328448 2016-08-19] (Realtek Semiconductor Corp -&gt; Realtek )\nS4 secdrv; C:WindowsSysWow64Driverssecdrv.sys [11973 2017-06-06] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [File not signed]\nR0 sptd; C:WindowsSystem32Driverssptd.sys [381440 2013-12-07] (Disc Soft Ltd -&gt; Duplex Secure Ltd.)","html":"<p>R3 athr; C:WindowsSystem32DRIVERSathrx.sys [2755584 2011-07-19] (Microsoft Windows Hardware Compatibility Publisher -&gt; Atheros Communications, Inc.)\nR0 avdevprot; C:WindowsSystem32DRIVERSavdevprot.sys [68152 2019-06-07] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 avgntflt; C:WindowsSystem32DRIVERSavgntflt.sys [223744 2020-03-27] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 avipbb; C:WindowsSystem32DRIVERSavipbb.sys [177376 2020-04-06] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 avkmgr; C:WindowsSystem32DRIVERSavkmgr.sys [36072 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 avnetflt; C:WindowsSystem32DRIVERSavnetflt.sys [78600 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR0 avusbflt; C:WindowsSystem32Driversavusbflt.sys [35376 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 dtsoftbus01; C:WindowsSystem32DRIVERSdtsoftbus01.sys [283064 2013-12-07] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR2 LdBoxDrv; C:Program Filesdnplayerext2LdBoxDrv.sys [319376 2019-12-18] (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nR2 LdVBoxDrv; C:Program FilesldplayerboxLdVBoxDrv.sys [319376 2020-03-25] (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nR0 MpFilter; C:WindowsSystem32DRIVERSMpFilter.sys [295000 2016-08-25] (Microsoft Corporation -&gt; Microsoft Corporation)\nS3 MYFAULT; C:Windowssystem32driversmyfault.sys [25392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -&gt; Sysinternals)\nR3 NisDrv; C:WindowsSystem32DRIVERSNisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -&gt; Microsoft Corporation)\nR3 nusb3hub; C:Windowssystem32driversnusb3hub.sys [82432 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -&gt; Renesas Electronics Corporation)\nR3 nusb3xhc; C:Windowssystem32driversnusb3xhc.sys [181760 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -&gt; Renesas Electronics Corporation)\nS3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [31168 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvad_WaveExtensible; C:WindowsSystem32driversnvvad64v.sys [59240 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvhci; C:WindowsSystem32DRIVERSnvvhci.sys [58816 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 phantomtap; C:WindowsSystem32DRIVERSphantomtap.sys [35664 2020-03-18] (Avira Operations GmbH &amp; Co. KG -&gt; The OpenVPN Project)\nS3 rtux64w7; C:WindowsSystem32DRIVERSrtux64w7.sys [328448 2016-08-19] (Realtek Semiconductor Corp -&gt; Realtek )\nS4 secdrv; C:WindowsSysWow64Driverssecdrv.sys [11973 2017-06-06] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [File not signed]\nR0 sptd; C:WindowsSystem32Driverssptd.sys [381440 2013-12-07] (Disc Soft Ltd -&gt; Duplex Secure Ltd.)</p>"},{"id":"text-25","type":"text","heading":"","plain_text":"==================== NetSvcs (Whitelisted) ===================","html":"<p>==================== NetSvcs (Whitelisted) ===================</p>"},{"id":"text-26","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)</p>"},{"id":"text-27","type":"text","heading":"","plain_text":"==================== One month (created) ===================","html":"<p>==================== One month (created) ===================</p>"},{"id":"text-28","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, the file/folder will be moved.)","html":"<p>(If an entry is included in the fixlist, the file/folder will be moved.)</p>"},{"id":"text-29","type":"text","heading":"","plain_text":"2020-04-19 14:36 &#8211; 2020-04-19 14:36 &#8211; 000000000 ____D C:UsersDanieleDownloadsFRST-OlderVersion\n2020-04-18 14:29 &#8211; 2020-04-18 14:29 &#8211; 000062792 _____ C:ProgramDataagent.uninstall.1587216527.bdinstall.v2.bin\n2020-04-17 00:37 &#8211; 2020-04-17 00:46 &#8211; 000072692 _____ C:UsersDanieleDownloadsAddition.txt\n2020-04-17 00:28 &#8211; 2020-04-19 14:41 &#8211; 000045553 _____ C:UsersDanieleDownloadsFRST.txt\n2020-04-17 00:22 &#8211; 2020-04-19 14:40 &#8211; 000000000 ____D C:FRST\n2020-04-17 00:21 &#8211; 2020-04-19 14:36 &#8211; 002281984 _____ (Farbar) C:UsersDanieleDownloadsFRST64.exe\n2020-04-16 23:30 &#8211; 2020-04-16 23:30 &#8211; 000013738 _____ C:UsersDanieleDesktophijackthis2\n2020-04-16 22:55 &#8211; 2020-04-18 14:29 &#8211; 000000000 ____D C:Program FilesBitdefender Agent\n2020-04-16 22:55 &#8211; 2020-04-16 22:55 &#8211; 000102692 _____ C:ProgramDataagent.1587074131.bdinstall.v2.bin\n2020-04-16 22:55 &#8211; 2020-04-16 22:55 &#8211; 000000000 ____D C:ProgramDataBitdefender Agent\n2020-04-16 22:53 &#8211; 2020-04-16 22:53 &#8211; 010527368 _____ C:UsersDanieleDownloadsbitdefender_online.exe\n2020-04-16 22:40 &#8211; 2020-04-16 22:40 &#8211; 000000000 ____D C:ProgramDataUbisoft\n2020-04-16 22:11 &#8211; 2020-04-16 22:11 &#8211; 000388608 _____ (Trend Micro Inc.) C:UsersDanieleDownloadsHijackThis.exe\n2020-04-15 17:17 &#8211; 2020-04-15 17:17 &#8211; 000000219 _____ C:UsersDanieleDesktopCounter-Strike Global Offensive.url\n2020-04-10 00:18 &#8211; 2020-04-10 00:18 &#8211; 004342776 _____ (Avira Operations GmbH &amp; Co. KG) C:UsersDanieleDownloadsavira_en_sptl1_1609235037-1586472637__phpws-spotlight-release (1).exe\n2020-04-10 00:16 &#8211; 2020-04-10 00:16 &#8211; 000003292 _____ C:Windowssystem32TasksAvira_Antivirus_Systray\n2020-04-10 00:15 &#8211; 2020-04-06 21:13 &#8211; 000177376 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavipbb.sys\n2020-04-10 00:15 &#8211; 2020-03-27 12:48 &#8211; 000223744 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavgntflt.sys\n2020-04-10 00:15 &#8211; 2019-06-07 15:09 &#8211; 000068152 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavdevprot.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000078600 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavnetflt.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000036072 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavkmgr.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000035376 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavusbflt.sys\n2020-04-09 23:54 &#8211; 2020-04-09 23:55 &#8211; 000000000 ____D C:UsersPublicSpeedup Sessions\n2020-04-09 23:54 &#8211; 2020-04-09 23:54 &#8211; 000003668 _____ C:Windowssystem32TasksAviraSystemSpeedupUpdate\n2020-04-09 23:53 &#8211; 2020-04-15 08:51 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsAvira\n2020-04-09 23:53 &#8211; 2020-04-09 23:53 &#8211; 000001192 _____ C:UsersPublicDesktopAvira.lnk\n2020-04-09 23:53 &#8211; 2020-04-09 23:53 &#8211; 000001192 _____ C:ProgramDataDesktopAvira.lnk\n2020-04-09 23:50 &#8211; 2020-04-09 23:50 &#8211; 004342776 _____ (Avira Operations GmbH &amp; Co. KG) C:UsersDanieleDownloadsavira_en_sptl1_1609235037-1586472637__phpws-spotlight-release.exe\n2020-04-09 23:08 &#8211; 2020-04-09 23:08 &#8211; 003318440 _____ (Dominik Reichl ) C:UsersDanieleDownloadsKeePass-2.44-Setup.exe\n2020-04-03 01:24 &#8211; 2020-04-03 01:24 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalLowObsidian Entertainment\n2020-04-02 22:10 &#8211; 2020-04-02 22:10 &#8211; 000000222 _____ C:UsersDanieleDesktopPillars of Eternity.url\n2020-03-30 19:29 &#8211; 2020-03-30 19:29 &#8211; 000076137 _____ C:UsersDanieleDownloadseContract.pdf\n2020-03-26 17:50 &#8211; 2020-03-26 18:04 &#8211; 000000000 ____D C:UsersDanieleDesktopRee Accident Claim\n2020-03-25 23:46 &#8211; 2020-04-04 11:49 &#8211; 000000000 ____D C:UsersDaniele.Ld2VirtualBox\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000671 _____ C:UsersDanieleDesktopLDMultiPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000671 _____ C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuLDMultiPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000656 _____ C:UsersDanieleDesktopLDPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000656 _____ C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuLDPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuProgramsLDPlayer4\n2020-03-25 23:44 &#8211; 2020-03-25 23:45 &#8211; 000000000 ____D C:Program Filesldplayerbox\n2020-03-25 23:44 &#8211; 2020-03-25 23:44 &#8211; 000000000 ____D C:UsersDanieleDocumentsXuanZhi\n2020-03-25 23:43 &#8211; 2020-03-25 23:43 &#8211; 000000000 ____D C:Program FilesMcAfee\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000284010 _____ C:UsersDanieleAppDataRoamingm47_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000000000 ____D C:UsersDanieleDownloads2cep\n2020-03-25 23:41 &#8211; 2020-03-25 23:46 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingXuanZhi\n2020-03-25 23:41 &#8211; 2020-03-25 23:41 &#8211; 002931392 _____ (XUANZHI INTERNATIONAL CO., LIMITED) C:UsersDanieleDownloadsLDPlayer_ens_3020_ld.exe\n2020-03-25 23:41 &#8211; 2020-03-25 23:41 &#8211; 002931392 _____ (XUANZHI INTERNATIONAL CO., LIMITED) C:UsersDanieleDownloadsLDPlayer_ens_3020_ld (1).exe","html":"<p>2020-04-19 14:36 &#8211; 2020-04-19 14:36 &#8211; 000000000 ____D C:UsersDanieleDownloadsFRST-OlderVersion\n2020-04-18 14:29 &#8211; 2020-04-18 14:29 &#8211; 000062792 _____ C:ProgramDataagent.uninstall.1587216527.bdinstall.v2.bin\n2020-04-17 00:37 &#8211; 2020-04-17 00:46 &#8211; 000072692 _____ C:UsersDanieleDownloadsAddition.txt\n2020-04-17 00:28 &#8211; 2020-04-19 14:41 &#8211; 000045553 _____ C:UsersDanieleDownloadsFRST.txt\n2020-04-17 00:22 &#8211; 2020-04-19 14:40 &#8211; 000000000 ____D C:FRST\n2020-04-17 00:21 &#8211; 2020-04-19 14:36 &#8211; 002281984 _____ (Farbar) C:UsersDanieleDownloadsFRST64.exe\n2020-04-16 23:30 &#8211; 2020-04-16 23:30 &#8211; 000013738 _____ C:UsersDanieleDesktophijackthis2\n2020-04-16 22:55 &#8211; 2020-04-18 14:29 &#8211; 000000000 ____D C:Program FilesBitdefender Agent\n2020-04-16 22:55 &#8211; 2020-04-16 22:55 &#8211; 000102692 _____ C:ProgramDataagent.1587074131.bdinstall.v2.bin\n2020-04-16 22:55 &#8211; 2020-04-16 22:55 &#8211; 000000000 ____D C:ProgramDataBitdefender Agent\n2020-04-16 22:53 &#8211; 2020-04-16 22:53 &#8211; 010527368 _____ C:UsersDanieleDownloadsbitdefender_online.exe\n2020-04-16 22:40 &#8211; 2020-04-16 22:40 &#8211; 000000000 ____D C:ProgramDataUbisoft\n2020-04-16 22:11 &#8211; 2020-04-16 22:11 &#8211; 000388608 _____ (Trend Micro Inc.) C:UsersDanieleDownloadsHijackThis.exe\n2020-04-15 17:17 &#8211; 2020-04-15 17:17 &#8211; 000000219 _____ C:UsersDanieleDesktopCounter-Strike Global Offensive.url\n2020-04-10 00:18 &#8211; 2020-04-10 00:18 &#8211; 004342776 _____ (Avira Operations GmbH &amp; Co. KG) C:UsersDanieleDownloadsavira_en_sptl1_1609235037-1586472637__phpws-spotlight-release (1).exe\n2020-04-10 00:16 &#8211; 2020-04-10 00:16 &#8211; 000003292 _____ C:Windowssystem32TasksAvira_Antivirus_Systray\n2020-04-10 00:15 &#8211; 2020-04-06 21:13 &#8211; 000177376 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavipbb.sys\n2020-04-10 00:15 &#8211; 2020-03-27 12:48 &#8211; 000223744 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavgntflt.sys\n2020-04-10 00:15 &#8211; 2019-06-07 15:09 &#8211; 000068152 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavdevprot.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000078600 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavnetflt.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000036072 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavkmgr.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000035376 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavusbflt.sys\n2020-04-09 23:54 &#8211; 2020-04-09 23:55 &#8211; 000000000 ____D C:UsersPublicSpeedup Sessions\n2020-04-09 23:54 &#8211; 2020-04-09 23:54 &#8211; 000003668 _____ C:Windowssystem32TasksAviraSystemSpeedupUpdate\n2020-04-09 23:53 &#8211; 2020-04-15 08:51 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsAvira\n2020-04-09 23:53 &#8211; 2020-04-09 23:53 &#8211; 000001192 _____ C:UsersPublicDesktopAvira.lnk\n2020-04-09 23:53 &#8211; 2020-04-09 23:53 &#8211; 000001192 _____ C:ProgramDataDesktopAvira.lnk\n2020-04-09 23:50 &#8211; 2020-04-09 23:50 &#8211; 004342776 _____ (Avira Operations GmbH &amp; Co. KG) C:UsersDanieleDownloadsavira_en_sptl1_1609235037-1586472637__phpws-spotlight-release.exe\n2020-04-09 23:08 &#8211; 2020-04-09 23:08 &#8211; 003318440 _____ (Dominik Reichl ) C:UsersDanieleDownloadsKeePass-2.44-Setup.exe\n2020-04-03 01:24 &#8211; 2020-04-03 01:24 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalLowObsidian Entertainment\n2020-04-02 22:10 &#8211; 2020-04-02 22:10 &#8211; 000000222 _____ C:UsersDanieleDesktopPillars of Eternity.url\n2020-03-30 19:29 &#8211; 2020-03-30 19:29 &#8211; 000076137 _____ C:UsersDanieleDownloadseContract.pdf\n2020-03-26 17:50 &#8211; 2020-03-26 18:04 &#8211; 000000000 ____D C:UsersDanieleDesktopRee Accident Claim\n2020-03-25 23:46 &#8211; 2020-04-04 11:49 &#8211; 000000000 ____D C:UsersDaniele.Ld2VirtualBox\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000671 _____ C:UsersDanieleDesktopLDMultiPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000671 _____ C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuLDMultiPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000656 _____ C:UsersDanieleDesktopLDPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000656 _____ C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuLDPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuProgramsLDPlayer4\n2020-03-25 23:44 &#8211; 2020-03-25 23:45 &#8211; 000000000 ____D C:Program Filesldplayerbox\n2020-03-25 23:44 &#8211; 2020-03-25 23:44 &#8211; 000000000 ____D C:UsersDanieleDocumentsXuanZhi\n2020-03-25 23:43 &#8211; 2020-03-25 23:43 &#8211; 000000000 ____D C:Program FilesMcAfee\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000284010 _____ C:UsersDanieleAppDataRoamingm47_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000000000 ____D C:UsersDanieleDownloads2cep\n2020-03-25 23:41 &#8211; 2020-03-25 23:46 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingXuanZhi\n2020-03-25 23:41 &#8211; 2020-03-25 23:41 &#8211; 002931392 _____ (XUANZHI INTERNATIONAL CO., LIMITED) C:UsersDanieleDownloadsLDPlayer_ens_3020_ld.exe\n2020-03-25 23:41 &#8211; 2020-03-25 23:41 &#8211; 002931392 _____ (XUANZHI INTERNATIONAL CO., LIMITED) C:UsersDanieleDownloadsLDPlayer_ens_3020_ld (1).exe</p>"},{"id":"text-30","type":"text","heading":"","plain_text":"==================== One month (modified) ==================","html":"<p>==================== One month (modified) ==================</p>"},{"id":"text-31","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, the file/folder will be moved.)","html":"<p>(If an entry is included in the fixlist, the file/folder will be moved.)</p>"},{"id":"text-32","type":"text","heading":"","plain_text":"2020-04-19 14:47 &#8211; 2014-02-28 19:48 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalBattle.net\n2020-04-19 14:28 &#8211; 2017-01-29 20:15 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalLowMozilla\n2020-04-19 14:27 &#8211; 2019-01-30 14:34 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingDiscord\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000911 _____ C:WindowsTasksEPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000911 _____ C:WindowsTasksEPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000725 _____ C:WindowsTasksEPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000725 _____ C:WindowsTasksEPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F.job\n2020-04-19 12:25 &#8211; 2018-07-01 20:59 &#8211; 000000000 ____D C:ProgramDataNVIDIA\n2020-04-19 03:56 &#8211; 2009-07-14 05:45 &#8211; 000016976 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0\n2020-04-19 03:56 &#8211; 2009-07-14 05:45 &#8211; 000016976 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0\n2020-04-19 03:19 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingHearthstoneDeckTracker\n2020-04-18 20:55 &#8211; 2018-03-26 22:41 &#8211; 000002512 _____ C:UsersDanieleDesktopHearthstone Deck Tracker.lnk\n2020-04-18 20:55 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalHearthstoneDeckTracker\n2020-04-18 20:54 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalSquirrelTemp\n2020-04-18 15:26 &#8211; 2014-02-28 19:47 &#8211; 000000000 ____D C:Program Files (x86)Battle.net\n2020-04-18 14:22 &#8211; 2014-06-18 09:34 &#8211; 000000000 ____D C:Program Files (x86)TeamViewer\n2020-04-18 14:21 &#8211; 2009-07-14 06:08 &#8211; 000000006 ____H C:WindowsTasksSA.DAT\n2020-04-17 19:37 &#8211; 2017-05-31 22:40 &#8211; 000000000 ____D C:UsersRee\n2020-04-17 13:30 &#8211; 2019-12-20 00:37 &#8211; 000000000 ____D C:WindowsSysWOW64NV\n2020-04-17 13:30 &#8211; 2019-12-20 00:37 &#8211; 000000000 ____D C:Windowssystem32NV\n2020-04-17 13:29 &#8211; 2017-09-12 00:30 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Firefox\n2020-04-17 13:29 &#8211; 2013-05-04 17:46 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service\n2020-04-17 13:22 &#8211; 2014-01-15 19:16 &#8211; 000000000 ____D C:Program Files (x86)Steam\n2020-04-17 13:10 &#8211; 2017-12-17 16:51 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalUbisoft Game Launcher\n2020-04-16 22:37 &#8211; 2012-06-21 20:37 &#8211; 000000000 ___HD C:Program Files (x86)InstallShield Installation Information\n2020-04-16 22:37 &#8211; 2009-07-14 06:32 &#8211; 000000000 ___RD C:ProgramDataMicrosoftWindowsStart MenuProgramsGames\n2020-04-16 22:36 &#8211; 2013-05-04 20:18 &#8211; 000000000 ____D C:UsersDanieleAppDataRoaminguTorrent\n2020-04-15 20:36 &#8211; 2013-05-04 18:11 &#8211; 000002226 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk\n2020-04-10 00:17 &#8211; 2009-07-14 04:20 &#8211; 000000000 ____D C:Windowsinf\n2020-04-10 00:15 &#8211; 2013-05-06 00:19 &#8211; 000000000 ____D C:ProgramDataAvira\n2020-04-10 00:15 &#8211; 2013-05-06 00:19 &#8211; 000000000 ____D C:Program Files (x86)Avira\n2020-04-10 00:13 &#8211; 2013-04-13 02:40 &#8211; 000743878 _____ C:Windowssystem32perfh010.dat\n2020-04-10 00:13 &#8211; 2013-04-13 02:40 &#8211; 000148496 _____ C:Windowssystem32perfc010.dat\n2020-04-10 00:13 &#8211; 2009-07-14 06:13 &#8211; 001662796 _____ C:Windowssystem32PerfStringBackup.INI\n2020-04-10 00:04 &#8211; 2013-04-16 13:43 &#8211; 000000000 ____D C:UsersDaniele\n2020-04-09 23:52 &#8211; 2014-08-20 13:02 &#8211; 000000000 ____D C:ProgramDataPackage Cache\n2020-04-09 23:28 &#8211; 2018-01-28 01:56 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingKeePass\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000001121 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsKeePass 2.lnk\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000001109 _____ C:UsersDanieleDesktopKeePass 2.lnk\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000000000 ____D C:Program Files (x86)KeePass Password Safe 2\n2020-04-02 06:28 &#8211; 2018-03-29 14:27 &#8211; 000000000 ____D C:Program Files (x86)Overwolf\n2020-04-02 00:49 &#8211; 2010-11-21 04:27 &#8211; 000744808 ____N (Microsoft Corporation) C:Windowssystem32MpSigStub.exe\n2020-03-26 18:43 &#8211; 2019-12-18 20:22 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingChangZhi2\n2020-03-26 17:50 &#8211; 2013-05-12 22:25 &#8211; 000000000 ____D C:UsersDanieleDesktopCompleanno Ree 2013\n2020-03-26 17:49 &#8211; 2020-02-04 14:31 &#8211; 000000000 ____D C:UsersDanieleDesktopCittadinanza\n2020-03-25 23:42 &#8211; 2013-05-06 19:11 &#8211; 000000000 ____D C:ProgramDataMcAfee\n2020-03-25 23:34 &#8211; 2019-12-18 20:31 &#8211; 000000000 ____D C:UsersDaniele.LdVirtualBox\n2020-03-25 13:00 &#8211; 2019-02-14 20:04 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalBluestacks\n2020-03-24 02:08 &#8211; 2013-05-15 17:30 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingSoftGrid Client\n2020-03-21 02:29 &#8211; 2013-05-04 18:11 &#8211; 000003586 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineUA\n2020-03-21 02:29 &#8211; 2013-05-04 18:11 &#8211; 000003458 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineCore\n2020-03-20 08:46 &#8211; 2015-01-01 09:45 &#8211; 000004476 _____ C:Windowssystem32TasksAdobe Acrobat Update Task\n2020-03-20 08:45 &#8211; 2015-12-16 22:13 &#8211; 000002441 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk","html":"<p>2020-04-19 14:47 &#8211; 2014-02-28 19:48 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalBattle.net\n2020-04-19 14:28 &#8211; 2017-01-29 20:15 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalLowMozilla\n2020-04-19 14:27 &#8211; 2019-01-30 14:34 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingDiscord\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000911 _____ C:WindowsTasksEPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000911 _____ C:WindowsTasksEPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000725 _____ C:WindowsTasksEPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000725 _____ C:WindowsTasksEPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F.job\n2020-04-19 12:25 &#8211; 2018-07-01 20:59 &#8211; 000000000 ____D C:ProgramDataNVIDIA\n2020-04-19 03:56 &#8211; 2009-07-14 05:45 &#8211; 000016976 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0\n2020-04-19 03:56 &#8211; 2009-07-14 05:45 &#8211; 000016976 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0\n2020-04-19 03:19 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingHearthstoneDeckTracker\n2020-04-18 20:55 &#8211; 2018-03-26 22:41 &#8211; 000002512 _____ C:UsersDanieleDesktopHearthstone Deck Tracker.lnk\n2020-04-18 20:55 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalHearthstoneDeckTracker\n2020-04-18 20:54 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalSquirrelTemp\n2020-04-18 15:26 &#8211; 2014-02-28 19:47 &#8211; 000000000 ____D C:Program Files (x86)Battle.net\n2020-04-18 14:22 &#8211; 2014-06-18 09:34 &#8211; 000000000 ____D C:Program Files (x86)TeamViewer\n2020-04-18 14:21 &#8211; 2009-07-14 06:08 &#8211; 000000006 ____H C:WindowsTasksSA.DAT\n2020-04-17 19:37 &#8211; 2017-05-31 22:40 &#8211; 000000000 ____D C:UsersRee\n2020-04-17 13:30 &#8211; 2019-12-20 00:37 &#8211; 000000000 ____D C:WindowsSysWOW64NV\n2020-04-17 13:30 &#8211; 2019-12-20 00:37 &#8211; 000000000 ____D C:Windowssystem32NV\n2020-04-17 13:29 &#8211; 2017-09-12 00:30 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Firefox\n2020-04-17 13:29 &#8211; 2013-05-04 17:46 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service\n2020-04-17 13:22 &#8211; 2014-01-15 19:16 &#8211; 000000000 ____D C:Program Files (x86)Steam\n2020-04-17 13:10 &#8211; 2017-12-17 16:51 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalUbisoft Game Launcher\n2020-04-16 22:37 &#8211; 2012-06-21 20:37 &#8211; 000000000 ___HD C:Program Files (x86)InstallShield Installation Information\n2020-04-16 22:37 &#8211; 2009-07-14 06:32 &#8211; 000000000 ___RD C:ProgramDataMicrosoftWindowsStart MenuProgramsGames\n2020-04-16 22:36 &#8211; 2013-05-04 20:18 &#8211; 000000000 ____D C:UsersDanieleAppDataRoaminguTorrent\n2020-04-15 20:36 &#8211; 2013-05-04 18:11 &#8211; 000002226 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk\n2020-04-10 00:17 &#8211; 2009-07-14 04:20 &#8211; 000000000 ____D C:Windowsinf\n2020-04-10 00:15 &#8211; 2013-05-06 00:19 &#8211; 000000000 ____D C:ProgramDataAvira\n2020-04-10 00:15 &#8211; 2013-05-06 00:19 &#8211; 000000000 ____D C:Program Files (x86)Avira\n2020-04-10 00:13 &#8211; 2013-04-13 02:40 &#8211; 000743878 _____ C:Windowssystem32perfh010.dat\n2020-04-10 00:13 &#8211; 2013-04-13 02:40 &#8211; 000148496 _____ C:Windowssystem32perfc010.dat\n2020-04-10 00:13 &#8211; 2009-07-14 06:13 &#8211; 001662796 _____ C:Windowssystem32PerfStringBackup.INI\n2020-04-10 00:04 &#8211; 2013-04-16 13:43 &#8211; 000000000 ____D C:UsersDaniele\n2020-04-09 23:52 &#8211; 2014-08-20 13:02 &#8211; 000000000 ____D C:ProgramDataPackage Cache\n2020-04-09 23:28 &#8211; 2018-01-28 01:56 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingKeePass\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000001121 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsKeePass 2.lnk\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000001109 _____ C:UsersDanieleDesktopKeePass 2.lnk\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000000000 ____D C:Program Files (x86)KeePass Password Safe 2\n2020-04-02 06:28 &#8211; 2018-03-29 14:27 &#8211; 000000000 ____D C:Program Files (x86)Overwolf\n2020-04-02 00:49 &#8211; 2010-11-21 04:27 &#8211; 000744808 ____N (Microsoft Corporation) C:Windowssystem32MpSigStub.exe\n2020-03-26 18:43 &#8211; 2019-12-18 20:22 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingChangZhi2\n2020-03-26 17:50 &#8211; 2013-05-12 22:25 &#8211; 000000000 ____D C:UsersDanieleDesktopCompleanno Ree 2013\n2020-03-26 17:49 &#8211; 2020-02-04 14:31 &#8211; 000000000 ____D C:UsersDanieleDesktopCittadinanza\n2020-03-25 23:42 &#8211; 2013-05-06 19:11 &#8211; 000000000 ____D C:ProgramDataMcAfee\n2020-03-25 23:34 &#8211; 2019-12-18 20:31 &#8211; 000000000 ____D C:UsersDaniele.LdVirtualBox\n2020-03-25 13:00 &#8211; 2019-02-14 20:04 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalBluestacks\n2020-03-24 02:08 &#8211; 2013-05-15 17:30 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingSoftGrid Client\n2020-03-21 02:29 &#8211; 2013-05-04 18:11 &#8211; 000003586 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineUA\n2020-03-21 02:29 &#8211; 2013-05-04 18:11 &#8211; 000003458 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineCore\n2020-03-20 08:46 &#8211; 2015-01-01 09:45 &#8211; 000004476 _____ C:Windowssystem32TasksAdobe Acrobat Update Task\n2020-03-20 08:45 &#8211; 2015-12-16 22:13 &#8211; 000002441 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk</p>"},{"id":"text-33","type":"text","heading":"","plain_text":"==================== Files in the root of some directories ========","html":"<p>==================== Files in the root of some directories ========</p>"},{"id":"text-34","type":"text","heading":"","plain_text":"2013-12-31 12:57 &#8211; 2013-12-31 12:58 &#8211; 000000093 _____ () C:UsersDanieleAppDataRoamingARCompanion.log\n2019-12-18 20:31 &#8211; 2019-12-18 20:31 &#8211; 000000068 _____ () C:UsersDanieleAppDataRoamingchangzhi_leidian.data\n2019-12-21 18:17 &#8211; 2019-12-21 18:17 &#8211; 000000068 _____ () C:UsersDanieleAppDataRoamingchangzhi_mplayer.data\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000284010 _____ () C:UsersDanieleAppDataRoamingm47_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt\n2017-07-11 22:13 &#8211; 2017-07-11 22:13 &#8211; 000014139 _____ () C:UsersDanieleAppDataLocalHWVendorDetection.log\n2013-05-05 00:55 &#8211; 2019-12-27 13:15 &#8211; 000007615 _____ () C:UsersDanieleAppDataLocalresmon.resmoncfg","html":"<p>2013-12-31 12:57 &#8211; 2013-12-31 12:58 &#8211; 000000093 _____ () C:UsersDanieleAppDataRoamingARCompanion.log\n2019-12-18 20:31 &#8211; 2019-12-18 20:31 &#8211; 000000068 _____ () C:UsersDanieleAppDataRoamingchangzhi_leidian.data\n2019-12-21 18:17 &#8211; 2019-12-21 18:17 &#8211; 000000068 _____ () C:UsersDanieleAppDataRoamingchangzhi_mplayer.data\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000284010 _____ () C:UsersDanieleAppDataRoamingm47_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt\n2017-07-11 22:13 &#8211; 2017-07-11 22:13 &#8211; 000014139 _____ () C:UsersDanieleAppDataLocalHWVendorDetection.log\n2013-05-05 00:55 &#8211; 2019-12-27 13:15 &#8211; 000007615 _____ () C:UsersDanieleAppDataLocalresmon.resmoncfg</p>"},{"id":"text-35","type":"text","heading":"","plain_text":"==================== SigCheck ============================","html":"<p>==================== SigCheck ============================</p>"},{"id":"text-36","type":"text","heading":"","plain_text":"(There is no automatic fix for files that do not pass verification.)","html":"<p>(There is no automatic fix for files that do not pass verification.)</p>"},{"id":"text-37","type":"text","heading":"","plain_text":"LastRegBack: 2020-04-17 19:29\n==================== End of FRST.txt ========================\nAdditional scan result of Farbar Recovery Scan Tool (x64) Version: 19-04-2020\nRan by Daniele (19-04-2020 14:50:00)\nRunning from C:UsersDanieleDownloads\nWindows 7 Home Premium Service Pack 1 (X64) (2013-04-16 12:43:25)\nBoot Mode: Normal\n==========================================================","html":"<p>LastRegBack: 2020-04-17 19:29\n==================== End of FRST.txt ========================\nAdditional scan result of Farbar Recovery Scan Tool (x64) Version: 19-04-2020\nRan by Daniele (19-04-2020 14:50:00)\nRunning from C:UsersDanieleDownloads\nWindows 7 Home Premium Service Pack 1 (X64) (2013-04-16 12:43:25)\nBoot Mode: Normal\n==========================================================</p>"},{"id":"text-38","type":"text","heading":"","plain_text":"==================== Accounts: =============================","html":"<p>==================== Accounts: =============================</p>"},{"id":"text-39","type":"text","heading":"","plain_text":"Administrator (S-1-5-21-1536202438-368462837-3654654372-500 &#8211; Administrator &#8211; Disabled)\nDaniele (S-1-5-21-1536202438-368462837-3654654372-1001 &#8211; Administrator &#8211; Enabled) =&gt; C:UsersDaniele\nGuest (S-1-5-21-1536202438-368462837-3654654372-501 &#8211; Limited &#8211; Disabled)\nHomeGroupUser$ (S-1-5-21-1536202438-368462837-3654654372-1003 &#8211; Limited &#8211; Enabled)\nRee (S-1-5-21-1536202438-368462837-3654654372-1005 &#8211; Limited &#8211; Enabled) =&gt; C:UsersRee","html":"<p>Administrator (S-1-5-21-1536202438-368462837-3654654372-500 &#8211; Administrator &#8211; Disabled)\nDaniele (S-1-5-21-1536202438-368462837-3654654372-1001 &#8211; Administrator &#8211; Enabled) =&gt; C:UsersDaniele\nGuest (S-1-5-21-1536202438-368462837-3654654372-501 &#8211; Limited &#8211; Disabled)\nHomeGroupUser$ (S-1-5-21-1536202438-368462837-3654654372-1003 &#8211; Limited &#8211; Enabled)\nRee (S-1-5-21-1536202438-368462837-3654654372-1005 &#8211; Limited &#8211; Enabled) =&gt; C:UsersRee</p>"},{"id":"text-40","type":"text","heading":"","plain_text":"==================== Security Center ========================","html":"<p>==================== Security Center ========================</p>"},{"id":"text-41","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed.)","html":"<p>(If an entry is included in the fixlist, it will be removed.)</p>"},{"id":"text-42","type":"text","heading":"","plain_text":"AV: Avira Antivirus (Enabled &#8211; Up to date) 8EAC8D5C-B3AA-95AA-3DF1-2845CDD09CBE\nAV: Microsoft Security Essentials (Enabled &#8211; Up to date) 71A27EC9-3DA6-45FC-60A7-004F623C6189\nAS: Microsoft Security Essentials (Enabled &#8211; Up to date) CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34\nAS: Avira Antivirus (Enabled &#8211; Up to date) 35CD6CB8-9590-9A24-0741-1337B657D603\nAS: Windows Defender (Disabled &#8211; Out of date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46","html":"<p>AV: Avira Antivirus (Enabled &#8211; Up to date) 8EAC8D5C-B3AA-95AA-3DF1-2845CDD09CBE\nAV: Microsoft Security Essentials (Enabled &#8211; Up to date) 71A27EC9-3DA6-45FC-60A7-004F623C6189\nAS: Microsoft Security Essentials (Enabled &#8211; Up to date) CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34\nAS: Avira Antivirus (Enabled &#8211; Up to date) 35CD6CB8-9590-9A24-0741-1337B657D603\nAS: Windows Defender (Disabled &#8211; Out of date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46</p>"},{"id":"text-43","type":"text","heading":"","plain_text":"==================== Installed Programs ======================","html":"<p>==================== Installed Programs ======================</p>"},{"id":"text-44","type":"text","heading":"","plain_text":"(Only the adware programs with &quot;Hidden&quot; flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)","html":"<p>(Only the adware programs with &quot;Hidden&quot; flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)</p>"},{"id":"text-45","type":"text","heading":"","plain_text":"Acer Backup Manager (HKLM-x32&#8230;InstallShield_0B61BBD5-DA3C-409A-8730-0C3DC3B0F270) (Version: 3.0.0.99 &#8211; NTI Corporation)\nAcer Crystal Eye Webcam (HKLM-x32&#8230;1FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 1.0.1904 &#8211; CyberLink Corp.) Hidden\nAcer Crystal Eye Webcam (HKLM-x32&#8230;InstallShield_01FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 1.0.1904 &#8211; CyberLink Corp.)\nAcer ePower Management (HKLM-x32&#8230;3DB0448D-AD82-4923-B305-D001E521A964) (Version: 6.00.3008 &#8211; Acer Incorporated)\nAcer eRecovery Management (HKLM-x32&#8230;7F811A54-5A09-4579-90E1-C93498E230D9) (Version: 5.00.3504 &#8211; Acer Incorporated)\nAcer Games (HKLM-x32&#8230;WildTangent acer Master Uninstall) (Version: 1.0.2.5 &#8211; WildTangent)\nAcer Registration (HKLM-x32&#8230;Acer Registration) (Version: 1.04.3504 &#8211; Acer Incorporated)\nAcer ScreenSaver (HKLM-x32&#8230;Acer Screensaver) (Version: 1.1.0913.2011 &#8211; Acer Incorporated)\nAcer Updater (HKLM-x32&#8230;EE171732-BEB4-4576-887D-CB62727F01CA) (Version: 1.02.3502 &#8211; Acer Incorporated)\nAdobe Acrobat Reader DC &#8211; Italiano (HKLM-x32&#8230;AC76BA86-7AD7-1040-7B44-AC0F074E4100) (Version: 20.006.20042 &#8211; Adobe Systems Incorporated)\nAdobe AIR (HKLM-x32&#8230;Adobe AIR) (Version: 2.7.1.19610 &#8211; Adobe Systems Incorporated)\nAdobe Flash Player 29 ActiveX (HKLM-x32&#8230;Adobe Flash Player ActiveX) (Version: 29.0.0.140 &#8211; Adobe Systems Incorporated)\nAdobe Flash Player 32 NPAPI (HKLM-x32&#8230;Adobe Flash Player NPAPI) (Version: 32.0.0.303 &#8211; Adobe)\nAgatha Christie &#8211; Death on the Nile (HKLM-x32&#8230;WTA-5e746bf8-8dee-4fe9-9f1a-49235ad98c76) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nAggiornamenti NVIDIA 31.1.10.0 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Update) (Version: 31.1.10.0 &#8211; NVIDIA Corporation) Hidden\nApplication Verifier x64 External Package (HKLM&#8230;77F3D72C-465F-BD51-890E-CC3914B1365F) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nAspera Connect 3.6.1.111228 (HKLM-x32&#8230;EC793CAC-7C41-4817-BA98-7E481A79F9CF) (Version: 3.6.1.111228 &#8211; © Copyright IBM Corp. 2014) Hidden\nAspera Connect 3.6.1.111228 (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Aspera Connect 3.6.1.111228) (Version: 3.6.1.111228 &#8211; © Copyright IBM Corp. 2014)\nAssassin&#39;s Creed IV Black Flag (HKLM-x32&#8230;Uplay Install 273) (Version:  &#8211; Ubisoft)\nAvira (HKLM-x32&#8230;CAB70370-888E-4D62-B5D5-DA7982585C46) (Version: 1.2.145.25926 &#8211; Avira Operations GmbH &amp; Co. KG) Hidden\nAvira (HKLM-x32&#8230;e636e084-c7ab-4246-8ad2-aa1bb1cbedfd) (Version: 1.2.145.25926 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Antivirus (HKLM-x32&#8230;Avira Antivirus) (Version: 15.0.2004.1828 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Phantom VPN (HKLM-x32&#8230;Avira Phantom VPN) (Version: 2.32.2.34115 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Software Updater (HKLM-x32&#8230;30947035-9248-4304-96CE-CB6B1D38CFD5) (Version: 2.0.6.30594 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira System Speedup (HKLM-x32&#8230;Avira System Speedup_is1) (Version: 6.4.1.10871 &#8211; Avira Operations GmbH &amp; Co. KG)\nBackup Manager V3 (HKLM-x32&#8230;B61BBD5-DA3C-409A-8730-0C3DC3B0F270) (Version: 3.0.0.99 &#8211; NTI Corporation) Hidden\nBattle.net (HKLM-x32&#8230;Battle.net) (Version:  &#8211; Blizzard Entertainment)\nBejeweled 2 Deluxe (HKLM-x32&#8230;WTA-878366c0-7e0d-49fc-9060-e75a6dabe155) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nBlue Jeans (HKLM-x32&#8230;6D19EE68-6672-48DB-A45A-5CCFA8021D92) (Version: 1.28.10 &#8211; Blue Jeans)\nBroadcom Card Reader Driver Installer (HKLM&#8230;4710662C-8204-4334-A977-B1AC9E547819) (Version: 14.8.2.2 &#8211; Broadcom Corporation)\nBroadcom NetLink Controller (HKLM&#8230;C91DCB72-F5BB-410D-A91A-314F5D1B4284) (Version: 14.8.4.1 &#8211; Broadcom Corporation)\nCaesar 3 (HKLM-x32&#8230;Caesar 3) (Version:  &#8211; )\nChuzzle Deluxe (HKLM-x32&#8230;WTA-7f54354a-b7a2-4639-9a5c-f4b75efe2e90) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nclear.fi (HKLM-x32&#8230;14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C) (Version: 1.0.1517_36458 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;2637C347-9DAD-11D6-9EA2-00055D0CA761) (Version: 1.0.2024.00 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;B906C11A-D193-4143-9FA7-E2EE8A5A8F21) (Version: 9.0.8026 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;InstallShield_2637C347-9DAD-11D6-9EA2-00055D0CA761) (Version: 1.0.2024.00 &#8211; CyberLink Corp.)\nclear.fi Client (HKLM-x32&#8230;43AAE145-83CF-4C96-9A5E-756CEFCE879F) (Version: 1.00.3500 &#8211; Acer Incorporated)\nCrazy Chicken Kart 2 (HKLM-x32&#8230;WTA-111fa445-16e9-4867-bd6d-79c26bc446f5) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nD3DX10 (HKLM-x32&#8230;E09C4DB7-630C-4F06-A631-8EA7239923AF) (Version: 15.4.2368.0902 &#8211; Microsoft) Hidden\nDAEMON Tools Lite (HKLM-x32&#8230;DAEMON Tools Lite) (Version: 4.48.1.0347 &#8211; Disc Soft Ltd)\nDiablo III (HKLM-x32&#8230;Diablo III) (Version:  &#8211; Blizzard Entertainment)\nDiscord (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Discord) (Version: 0.0.306 &#8211; Discord Inc.)\nDisinstalla EPSON SX100 Series Printer (HKLM&#8230;EPSON SX100 Series) (Version:  &#8211; SEIKO EPSON Corporation)\nDisplayDriverAnalyzer (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_DisplayDriverAnalyzer) (Version: 391.35 &#8211; NVIDIA Corporation) Hidden\nDolby Advanced Audio v2 (HKLM-x32&#8230;B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613) (Version: 7.2.7000.7 &#8211; Dolby Laboratories Inc)\nDragon Age II (HKLM-x32&#8230;F2E23139-3404-4E3C-9855-7724415D62A5) (Version: 1.04 &#8211; Electronic Arts, Inc.)\nDropbox (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Dropbox) (Version: 3.0.5 &#8211; Dropbox, Inc.)\neBay Worldwide (HKLM-x32&#8230;D3E5A972-9A15-427D-AE78-8181A5FD943C) (Version: 2.2.0409 &#8211; OEM)\nEpson Connect Printer Setup (HKLM-x32&#8230;D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C) (Version: 1.4.0 &#8211; Seiko Epson Corporation)\nEpson Event Manager (HKLM-x32&#8230;9F205E94-9E42-4486-A92A-DF3F6CB85444) (Version: 3.10.0061 &#8211; Seiko Epson Corporation)\nEPSON Remote Print Uninstall (HKLM&#8230;EPSON Remote Print) (Version:  &#8211; SEIKO EPSON Corporation)\nEPSON Scan (HKLM-x32&#8230;EPSON Scanner) (Version:  &#8211; Seiko Epson Corporation)\nEpson Software Updater (HKLM-x32&#8230;FD036A57-F81D-4865-AAF0-811558EA76AE) (Version: 4.5.1 &#8211; Seiko Epson Corporation)\nEPSON XP-312 313 315 Series Printer Uninstall (HKLM&#8230;EPSON XP-312 313 315 Series) (Version:  &#8211; SEIKO EPSON Corporation)\nEpsonNet Print (HKLM-x32&#8230;3E31400D-274E-4647-916C-2CACC3741799) (Version: 2.6.0 &#8211; SEIKO EPSON CORPORATION)\nEvernote v. 4.5.1 (HKLM-x32&#8230;28921580-E4BB-11E0-9FD7-1CC1DEF07CBE) (Version: 4.5.1.5451 &#8211; Evernote Corp.)\nFATE (HKLM-x32&#8230;WTA-d562914f-464e-442a-9b6b-eef07926c4b7) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nFinal Drive: Nitro (HKLM-x32&#8230;WTA-ba528cbd-abfc-43b4-b622-039073085d6c) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nFooz Kids (HKLM-x32&#8230;4C774C35-E0AF-72E1-136A-2BF666702268) (Version: 3.0.8 &#8211; FUHU, Inc.) Hidden\nFooz Kids (HKLM-x32&#8230;FoozKids) (Version: 3.0.8 &#8211; FUHU, Inc.)\nFooz Kids Platform (HKLM-x32&#8230;8D68CE08-9A14-4B7B-9857-3C646A2F34C7) (Version: 2.1 &#8211; FUHU, Inc.)\nFotogalerija Windows Live (HKLM-x32&#8230;E59969EA-3B5B-4B24-8B94-43842A7FBFE9) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria de Fotografias do Windows Live (HKLM-x32&#8230;EC0B576-90F9-43C3-8FAD-A4902DF4B8F4) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalería fotográfica de Windows Live (HKLM-x32&#8230;E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria fotogràfica del Windows Live (HKLM-x32&#8230;4736B0ED-F6A1-48EC-A1B7-C053027648F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria fotografii usługi Windows Live (HKLM-x32&#8230;CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalerie de photos Windows Live (HKLM-x32&#8230;488F0347-C4A7-4374-91A7-30818BEDA710) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalerie foto Windows Live (HKLM-x32&#8230;CB66242D-12B1-4494-82D2-6F53A7E024A3) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGoogle Chrome (HKLM-x32&#8230;Google Chrome) (Version: 81.0.4044.113 &#8211; Google LLC)\nGoogle Update Helper (HKLM-x32&#8230;60EC980A-BDA2-4CB6-A427-B07A5498B4CA) (Version: 1.3.35.451 &#8211; Google LLC) Hidden\nHearthArena Companion (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Overwolf_eldaohcjmecjpkpdhhoiolhhaeapcldppbdgbnbc) (Version: 1.5.0.2 &#8211; Overwolf app)\nHearthstone (HKLM-x32&#8230;Hearthstone) (Version:  &#8211; Blizzard Entertainment)\nHearthstone Deck Tracker (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;HearthstoneDeckTracker) (Version: 1.10.7 &#8211; HearthSim)\nHP USB Disk Storage Format Tool (HKLM-x32&#8230;E0DF90C-D0BA-4C89-9262-AD78D1A3DE51) (Version:  &#8211; )\nIdentity Card (HKLM-x32&#8230;Identity Card) (Version: 1.00.3501 &#8211; Acer Incorporated)\nInsaniquarium Deluxe (HKLM-x32&#8230;WTA-1aadf450-ec73-41b5-b741-966d0737010a) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nIntel® Control Center (HKLM-x32&#8230;F8A9085D-4C7A-41a9-8A77-C8998A96C421) (Version: 1.2.1.1007 &#8211; Intel Corporation)\nIntel® Management Engine Components (HKLM-x32&#8230;65153EA5-8B6E-43B6-857B-C6E4FC25798A) (Version: 7.0.0.1144 &#8211; Intel Corporation)\nIntel® Processor Graphics (HKLM-x32&#8230;F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA) (Version: 8.15.10.2342 &#8211; Intel Corporation)\nIntel® Processor Identification Utility (HKLM-x32&#8230;A92A4DB0-CD37-42D1-BE1D-603D53C24328) (Version: 1.0.0.0 &#8211; Intel Corporation)\nIntel® Rapid Storage Technology (HKLM-x32&#8230;3E29EE6C-963A-4aae-86C1-DC237C4A49FC) (Version: 10.5.0.1026 &#8211; Intel Corporation)\nIntel® SDK for OpenCL &#8211; CPU Only Runtime Package (HKLM-x32&#8230;FCB3772C-B7D0-4933-B1A9-3707EBACC573) (Version: 2.0.0.37149 &#8211; Intel Corporation)\nJava 8 Update 171 (HKLM-x32&#8230;26A24AE4-039D-4CA4-87B4-2F32180171F0) (Version: 8.0.1710.11 &#8211; Oracle Corporation)\nJewel Match 3 (HKLM-x32&#8230;WTA-63325e84-34c2-4ccd-b3ee-87abc401d44a) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nJewel Quest Solitaire (HKLM-x32&#8230;WTA-4d51be1b-2978-4973-ad15-8b42189f04f8) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nJohn Deere Drive Green (HKLM-x32&#8230;WTA-91a805f7-4cee-4088-a326-afc28032536e) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nJuniper Installer Service (HKLM-x32&#8230;93A64A36-C060-47B4-96DE-D405CC22F4C4) (Version: 7.4.28485 &#8211; Juniper Networks) Hidden\nJuniper Installer Service 7.4 (HKLM-x32&#8230;Juniper Installer Service 7.4) (Version: 7.4.28485 &#8211; Juniper Networks, Inc.)\nJuniper Networks Network Connect 7.1.8 (HKLM-x32&#8230;Juniper Network Connect 7.1.8) (Version: 7.1.8.20737 &#8211; Juniper Networks)\nJuniper Networks Network Connect 7.3.0 (HKLM-x32&#8230;Juniper Network Connect 7.3.0) (Version: 7.3.0.24657 &#8211; Juniper Networks)\nJuniper Networks Network Connect 7.4.0 (HKLM-x32&#8230;Juniper Network Connect 7.4.0) (Version: 7.4.0.30731 &#8211; Juniper Networks)\nJuniper Networks, Inc. Setup Client (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Juniper_Setup_Client) (Version: 7.4.10.45165 &#8211; Juniper Networks, Inc.)\nJuniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM&#8230;Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 &#8211; Juniper Networks, Inc.)\nJuniper Networks, Inc. Setup Client Activex Control (HKLM-x32&#8230;Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 &#8211; Juniper Networks, Inc.)\nJunk Mail filter update (HKLM-x32&#8230;1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nKeePass Password Safe 2.44 (HKLM-x32&#8230;KeePassPasswordSafe2_is1) (Version: 2.44 &#8211; Dominik Reichl)\nKits Configuration Installer (HKLM-x32&#8230;B74E65FD-CC47-41C5-4B89-791A3F61942D) (Version: 8.100.25984 &#8211; Microsoft) Hidden\nKodi (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Kodi) (Version:  &#8211; XBMC-Foundation)\nLaunch Manager (HKLM-x32&#8230;LManager) (Version: 5.1.7 &#8211; Acer Inc.)\nLDPlayer (HKLM-x32&#8230;LDPlayer4) (Version: 4.0 &#8211; XUANZHI INTERNATIONAL CO., LIMITED)\nLINE (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;LINE) (Version: 5.21.3.2086 &#8211; LINE Corporation)\nManuali EPSON (HKLM-x32&#8230;84CECC1B-21EF-41B1-9A91-3E724E5D99D3) (Version: 1.53.0.0 &#8211; Seiko Epson Corporation)\nMcAfee WebAdvisor (HKLM-x32&#8230;35ED3F83-4BDC-4c44-8EC6-6A8301C7413A) (Version: 4.1.1.90 &#8211; McAfee, LLC.)\nMesh Runtime (HKLM-x32&#8230;8C6D6116-B724-4810-8F2D-D047E6B7D68E) (Version: 15.4.5722.2 &#8211; Microsoft Corporation) Hidden\nMicrosoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32&#8230;D1D37853-0004-3E36-A7AA-74F4EEA35F64) (Version: 4.5.50930 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.5.1 SDK (HKLM-x32&#8230;19A5926D-66E1-46FC-854D-163AA10A52D3) (Version: 4.5.51641 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.8 (HKLM&#8230;92FB6C44-E685-45AD-9B20-CADF4CABA132 &#8211; 1033) (Version: 4.8.03761 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.8 (Italiano) (HKLM&#8230;92FB6C44-E685-45AD-9B20-CADF4CABA132 &#8211; 1040) (Version: 4.8.03761 &#8211; Microsoft Corporation)\nMicrosoft Office 2010 (HKLM-x32&#8230;95140000-0070-0000-0000-0000000FF1CE) (Version: 14.0.4763.1000 &#8211; Microsoft Corporation)\nMicrosoft Office a portata di clic 2010 (HKLM-x32&#8230;Office14.Click2Run) (Version: 14.0.4763.1000 &#8211; Microsoft Corporation)\nMicrosoft Office Starter 2010 &#8211; Italiano (HKLM-x32&#8230;90140011-0066-0410-0000-0000000FF1CE) (Version: 14.0.5128.5002 &#8211; Microsoft Corporation)\nMicrosoft Security Essentials (HKLM&#8230;Microsoft Security Client) (Version: 4.10.209.0 &#8211; Microsoft Corporation)\nMicrosoft Silverlight (HKLM&#8230;89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50918.0 &#8211; Microsoft Corporation)\nMicrosoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32&#8230;F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8) (Version: 3.1.0000 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17 (HKLM&#8230;8220EEFE-38CD-377E-8595-13398D740ACE) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.6161 (HKLM&#8230;5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17 (HKLM-x32&#8230;9A25302D-30C0-39D9-BD6F-21E6EC160475) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148 (HKLM-x32&#8230;1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161 (HKLM-x32&#8230;9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x64 Redistributable &#8211; 10.0.40219 (HKLM&#8230;1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x86 Redistributable &#8211; 10.0.40219 (HKLM-x32&#8230;F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x64) &#8211; 11.0.61030 (HKLM-x32&#8230;ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x86) &#8211; 11.0.61030 (HKLM-x32&#8230;33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x64) &#8211; 12.0.30501 (HKLM-x32&#8230;50d4fc8-5d48-4b8f-8972-47c82c46020f) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x86) &#8211; 12.0.30501 (HKLM-x32&#8230;f65db027-aff3-4070-886a-0d87064aabb1) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015 Redistributable (x64) &#8211; 14.0.24215 (HKLM-x32&#8230;d992c12e-cab2-426f-bde3-fb8c53950b0d) (Version: 14.0.24215.1 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015 Redistributable (x86) &#8211; 14.0.24215 (HKLM-x32&#8230;e2803110-78b3-4664-a479-3611a381656a) (Version: 14.0.24215.1 &#8211; Microsoft Corporation)\nMonitoraggio della tecnologia Intel® Turbo Boost 2.0 (HKLM&#8230;B77EFA0B-9BD3-4122-9F9A-15A963B5EA24) (Version: 2.1.23.0 &#8211; Intel)\nMozilla Firefox 75.0 (x64 it) (HKLM&#8230;Mozilla Firefox 75.0 (x64 it)) (Version: 75.0 &#8211; Mozilla)\nMozilla Maintenance Service (HKLM-x32&#8230;MozillaMaintenanceService) (Version: 75.0.0.7398 &#8211; Mozilla)\nMSI Development Tools (HKLM-x32&#8230;CF3A1CA6-5E5E-B4BD-6CF1-363056816CA2) (Version: 8.100.26898 &#8211; Microsoft Corporation) Hidden\nMyEpson Portal (HKLM-x32&#8230;3361D415-BA35-4143-B301-661991BA6219) (Version: 1.1.2.2 &#8211; SEIKO EPSON CORPORATION) Hidden\nMyEpson Portal (HKLM-x32&#8230;MyEpson Portal) (Version:  &#8211; SEIKO EPSON Corporation)\nMystery of Mortlake Mansion (HKLM-x32&#8230;WTA-fa5c5656-0bbe-4718-93c5-e01c9a8c326f) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nnewsXpresso (HKLM-x32&#8230;613C0AC5-3A67-4B94-8B13-9176AD83F5BF) (Version: 1.0.0.40 &#8211; esobi Inc.) Hidden\nnewsXpresso (HKLM-x32&#8230;InstallShield_613C0AC5-3A67-4B94-8B13-9176AD83F5BF) (Version: 1.0.0.40 &#8211; esobi Inc.)\nNotepad++ (HKLM-x32&#8230;Notepad++) (Version: 6.6.8 &#8211; Notepad++ Team)\nNTI Media Maker 9 (HKLM-x32&#8230;D3D5C4E8-040F-4C6F-8105-41D43CF94F44) (Version: 9.0.2.9002 &#8211; NTI Corporation) Hidden\nNTI Media Maker 9 (HKLM-x32&#8230;InstallShield_D3D5C4E8-040F-4C6F-8105-41D43CF94F44) (Version: 9.0.2.9002 &#8211; NTI Corporation)\nNVIDIA Driver grafico 391.35 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Driver) (Version: 391.35 &#8211; NVIDIA Corporation)\nNVIDIA GeForce Experience 3.13.1.30 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.GFExperience) (Version: 3.13.1.30 &#8211; NVIDIA Corporation)\nNVIDIA PhysX System Software 9.17.0524 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.PhysX) (Version: 9.17.0524 &#8211; NVIDIA Corporation)\nOnline Plug-in (HKLM-x32&#8230;9A0FE2C0-7A7E-444E-8BD4-087178A91865) (Version: 14.0.0.91 &#8211; Citrix Systems, Inc.) Hidden\nOrigin (HKLM-x32&#8230;Origin) (Version: 10.5.2.49155 &#8211; Electronic Arts, Inc.)\nOverwolf (HKLM-x32&#8230;Overwolf) (Version: 0.143.0.24 &#8211; Overwolf Ltd.)\nPannello di controllo NVIDIA 391.35 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.ControlPanel) (Version: 391.35 &#8211; NVIDIA Corporation) Hidden\nPenguins! (HKLM-x32&#8230;WTA-f82d33cf-1bf0-4c54-85ca-769791349557) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nPidgin (HKLM-x32&#8230;Pidgin) (Version: 2.10.7 &#8211; )\nPlants vs. Zombies &#8211; Game of the Year (HKLM-x32&#8230;WTA-fc291ad5-7412-47d4-8641-d23ea23ef2e0) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nPoczta usługi Windows Live (HKLM-x32&#8230;64376910-1860-4CEF-8B34-AA5D205FC5F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPodstawowe programy Windows Live (HKLM-x32&#8230;7A9D47BA-6D50-4087-866F-0800D8B89383) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPolar Bowler (HKLM-x32&#8230;WTA-4f14c51e-af03-4658-92f9-0f759f61b306) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nPošta Windows Live (HKLM-x32&#8230;7BA19818-F717-4DFB-BC11-FAF17B2B8AEE) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPunkBuster Services (HKLM-x32&#8230;PunkBusterSvc) (Version: 0.991 &#8211; Even Balance, Inc.)\nQuickTime (HKLM-x32&#8230;B67BAFBA-4C9F-48FA-9496-933E3B255044) (Version: 7.74.80.86 &#8211; Apple Inc.)\nRaccolta foto di Windows Live (HKLM-x32&#8230;ED16B700-D91F-44B0-867C-7EB5253CA38D) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nRealtek High Definition Audio Driver (HKLM-x32&#8230;F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC) (Version: 6.0.1.6438 &#8211; Realtek Semiconductor Corp.)\nRenesas Electronics USB 3.0 Host Controller Driver (HKLM-x32&#8230;5442DAB8-7177-49E1-8B22-09A049EA5996) (Version: 2.0.34.0 &#8211; Renesas Electronics Corporation) Hidden\nRenesas Electronics USB 3.0 Host Controller Driver (HKLM-x32&#8230;InstallShield_5442DAB8-7177-49E1-8B22-09A049EA5996) (Version: 2.0.34.0 &#8211; Renesas Electronics Corporation)\nSDK Debuggers (HKLM-x32&#8230;9274C832-3D8A-A294-FDE8-8B9272357098) (Version: 8.100.26936 &#8211; Microsoft Corporation) Hidden\nShockwave (HKLM-x32&#8230;Shockwave) (Version:  &#8211; )\nSierra Utilities (HKLM-x32&#8230;Sierra Utilities) (Version:  &#8211; )\nSkype Click to Call (HKLM-x32&#8230;873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B) (Version: 8.5.0.9167 &#8211; Microsoft Corporation)\nSkype for Business Web App Plug-in (HKLM-x32&#8230;37C8167B-B653-4955-A6E8-EBB8DE937DDD) (Version: 15.8.20020.400 &#8211; Microsoft Corporation)\nSkype versione 8.44 (HKLM-x32&#8230;Skype_is1) (Version: 8.44 &#8211; Skype Technologies S.A.)\nSkype Web Plugin (HKLM-x32&#8230;DF6DC2FB-6783-4340-8B98-401CB656AD3A) (Version: 7.26.0.48 &#8211; Skype Technologies S.A.)\nSlingo Deluxe (HKLM-x32&#8230;WTA-0317c6a7-06b3-4b13-8a10-9b264c639ed4) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nSteam (HKLM-x32&#8230;Steam) (Version:  &#8211; Valve Corporation)\nSupporto applicazioni Apple (HKLM-x32&#8230;5D09C772-ECB3-442B-9CC6-B4341C78FDC2) (Version: 2.3.4 &#8211; Apple Inc.)\nSynaptics Pointing Device Driver (HKLM&#8230;SynTPDeinstKey) (Version: 15.1.6.0 &#8211; Synaptics Incorporated)\nTeamSpeak 3 Client (HKLM&#8230;TeamSpeak 3 Client) (Version: 3.0.15 &#8211; TeamSpeak Systems GmbH)\nTeamViewer (HKLM-x32&#8230;TeamViewer) (Version: 15.4.4445 &#8211; TeamViewer)\nTorchlight (HKLM-x32&#8230;WTA-86f22e04-aba5-46a2-baee-2d2b15dcd07d) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nTreeSize Free V4.2 (HKLM-x32&#8230;TreeSize Free_is1) (Version: 4.2 &#8211; JAM Software)\nUnity Web Player (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;UnityWebPlayer) (Version: 5.0.1f1 &#8211; Unity Technologies ApS)\nUpdate Installer for WildTangent Games App (HKLM-x32&#8230;2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2.WildTangent Games App) (Version:  &#8211; WildTangent) Hidden\nUplay (HKLM-x32&#8230;Uplay) (Version: 46.0 &#8211; Ubisoft)\nVirtual Villagers 4 &#8211; The Tree of Life (HKLM-x32&#8230;WTA-2d8486f0-4bd6-4e7d-9791-27029e7c6472) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nVLC media player (HKLM-x32&#8230;VLC media player) (Version: 3.0.8 &#8211; VideoLAN)\nVulkan Run Time Libraries 1.0.65.1 (HKLM&#8230;VulkanRT1.0.65.1) (Version: 1.0.65.1 &#8211; LunarG, Inc.) Hidden\nWedding Dash (HKLM-x32&#8230;WTA-e9518137-4e7b-4626-9f43-7daf4e91fd72) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nWelcome Center (HKLM-x32&#8230;Acer Welcome Center) (Version: 1.02.3504 &#8211; Acer Incorporated)\nWhoCrashed 5.54 (HKLM&#8230;WhoCrashed_is1) (Version:  &#8211; Resplendence Software Projects Sp.)\nWildTangent Games App (HKLM-x32&#8230;70B446D1-E03B-4ab0-9B3C-0832142C9AA8.WildTangent Games App-acer) (Version: 4.0.10.25 &#8211; WildTangent) Hidden\nWindows Live Essentials (HKLM-x32&#8230;WinLiveSuite) (Version: 15.4.3538.0513 &#8211; Microsoft Corporation)\nWindows Software Development Kit for Windows 8.1 (HKLM-x32&#8230;ed3a6e6d-9661-4357-abe4-fcc03dc57a07) (Version: 8.100.26936 &#8211; Microsoft Corporation)\nWinRAR 4.20 (32-bit) (HKLM-x32&#8230;WinRAR archiver) (Version: 4.20.0 &#8211; win.rar GmbH)\nWPT Redistributables (HKLM-x32&#8230;64F3FB9A-9250-B2D6-00B4-50BE0358AEE8) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nWPTx64 (HKLM-x32&#8230;BFF81CB5-E8C7-4184-FBB4-74ADFBC6CCCB) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nZuma Deluxe (HKLM-x32&#8230;WTA-744d629c-c549-4c3b-b820-4ba591229d4e) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nΣυλλογή φωτογραφιών του Windows Live (HKLM-x32&#8230;C00C2A91-6CB3-483F-80B3-2958E29468F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nОсновные компоненты Windows Live (HKLM-x32&#8230;E83DC314-C926-4214-AD58-147691D6FE9F) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nПочта Windows Live (HKLM-x32&#8230;B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137) (Version: 15.4.3502.0922 &#8211; Корпорация Майкрософт) Hidden\nФотоальбом Windows Live (HKLM-x32&#8230;77F69CA1-E53D-4D77-8BA3-FA07606CC851) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nФотогалерия на Windows Live (HKLM-x32&#8230;4444F27C-B1A8-464E-9486-4C37BAB39A09) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nגלריית התמונות של Windows Live (HKLM-x32&#8230;CE929F09-3853-4180-BD90-30764BFF7136) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nبريد Windows Live (HKLM-x32&#8230;A4C4B29-5A9D-4910-A13C-B920D5758744) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nمعرض صور Windows Live (HKLM-x32&#8230;FBCA06D2-4642-4F33-B20A-A7AB3F0D2E69) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden","html":"<p>Acer Backup Manager (HKLM-x32&#8230;InstallShield_0B61BBD5-DA3C-409A-8730-0C3DC3B0F270) (Version: 3.0.0.99 &#8211; NTI Corporation)\nAcer Crystal Eye Webcam (HKLM-x32&#8230;1FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 1.0.1904 &#8211; CyberLink Corp.) Hidden\nAcer Crystal Eye Webcam (HKLM-x32&#8230;InstallShield_01FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 1.0.1904 &#8211; CyberLink Corp.)\nAcer ePower Management (HKLM-x32&#8230;3DB0448D-AD82-4923-B305-D001E521A964) (Version: 6.00.3008 &#8211; Acer Incorporated)\nAcer eRecovery Management (HKLM-x32&#8230;7F811A54-5A09-4579-90E1-C93498E230D9) (Version: 5.00.3504 &#8211; Acer Incorporated)\nAcer Games (HKLM-x32&#8230;WildTangent acer Master Uninstall) (Version: 1.0.2.5 &#8211; WildTangent)\nAcer Registration (HKLM-x32&#8230;Acer Registration) (Version: 1.04.3504 &#8211; Acer Incorporated)\nAcer ScreenSaver (HKLM-x32&#8230;Acer Screensaver) (Version: 1.1.0913.2011 &#8211; Acer Incorporated)\nAcer Updater (HKLM-x32&#8230;EE171732-BEB4-4576-887D-CB62727F01CA) (Version: 1.02.3502 &#8211; Acer Incorporated)\nAdobe Acrobat Reader DC &#8211; Italiano (HKLM-x32&#8230;AC76BA86-7AD7-1040-7B44-AC0F074E4100) (Version: 20.006.20042 &#8211; Adobe Systems Incorporated)\nAdobe AIR (HKLM-x32&#8230;Adobe AIR) (Version: 2.7.1.19610 &#8211; Adobe Systems Incorporated)\nAdobe Flash Player 29 ActiveX (HKLM-x32&#8230;Adobe Flash Player ActiveX) (Version: 29.0.0.140 &#8211; Adobe Systems Incorporated)\nAdobe Flash Player 32 NPAPI (HKLM-x32&#8230;Adobe Flash Player NPAPI) (Version: 32.0.0.303 &#8211; Adobe)\nAgatha Christie &#8211; Death on the Nile (HKLM-x32&#8230;WTA-5e746bf8-8dee-4fe9-9f1a-49235ad98c76) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nAggiornamenti NVIDIA 31.1.10.0 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Update) (Version: 31.1.10.0 &#8211; NVIDIA Corporation) Hidden\nApplication Verifier x64 External Package (HKLM&#8230;77F3D72C-465F-BD51-890E-CC3914B1365F) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nAspera Connect 3.6.1.111228 (HKLM-x32&#8230;EC793CAC-7C41-4817-BA98-7E481A79F9CF) (Version: 3.6.1.111228 &#8211; © Copyright IBM Corp. 2014) Hidden\nAspera Connect 3.6.1.111228 (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Aspera Connect 3.6.1.111228) (Version: 3.6.1.111228 &#8211; © Copyright IBM Corp. 2014)\nAssassin&#039;s Creed IV Black Flag (HKLM-x32&#8230;Uplay Install 273) (Version:  &#8211; Ubisoft)\nAvira (HKLM-x32&#8230;CAB70370-888E-4D62-B5D5-DA7982585C46) (Version: 1.2.145.25926 &#8211; Avira Operations GmbH &amp; Co. KG) Hidden\nAvira (HKLM-x32&#8230;e636e084-c7ab-4246-8ad2-aa1bb1cbedfd) (Version: 1.2.145.25926 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Antivirus (HKLM-x32&#8230;Avira Antivirus) (Version: 15.0.2004.1828 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Phantom VPN (HKLM-x32&#8230;Avira Phantom VPN) (Version: 2.32.2.34115 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Software Updater (HKLM-x32&#8230;30947035-9248-4304-96CE-CB6B1D38CFD5) (Version: 2.0.6.30594 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira System Speedup (HKLM-x32&#8230;Avira System Speedup_is1) (Version: 6.4.1.10871 &#8211; Avira Operations GmbH &amp; Co. KG)\nBackup Manager V3 (HKLM-x32&#8230;B61BBD5-DA3C-409A-8730-0C3DC3B0F270) (Version: 3.0.0.99 &#8211; NTI Corporation) Hidden\nBattle.net (HKLM-x32&#8230;Battle.net) (Version:  &#8211; Blizzard Entertainment)\nBejeweled 2 Deluxe (HKLM-x32&#8230;WTA-878366c0-7e0d-49fc-9060-e75a6dabe155) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nBlue Jeans (HKLM-x32&#8230;6D19EE68-6672-48DB-A45A-5CCFA8021D92) (Version: 1.28.10 &#8211; Blue Jeans)\nBroadcom Card Reader Driver Installer (HKLM&#8230;4710662C-8204-4334-A977-B1AC9E547819) (Version: 14.8.2.2 &#8211; Broadcom Corporation)\nBroadcom NetLink Controller (HKLM&#8230;C91DCB72-F5BB-410D-A91A-314F5D1B4284) (Version: 14.8.4.1 &#8211; Broadcom Corporation)\nCaesar 3 (HKLM-x32&#8230;Caesar 3) (Version:  &#8211; )\nChuzzle Deluxe (HKLM-x32&#8230;WTA-7f54354a-b7a2-4639-9a5c-f4b75efe2e90) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nclear.fi (HKLM-x32&#8230;14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C) (Version: 1.0.1517_36458 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;2637C347-9DAD-11D6-9EA2-00055D0CA761) (Version: 1.0.2024.00 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;B906C11A-D193-4143-9FA7-E2EE8A5A8F21) (Version: 9.0.8026 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;InstallShield_2637C347-9DAD-11D6-9EA2-00055D0CA761) (Version: 1.0.2024.00 &#8211; CyberLink Corp.)\nclear.fi Client (HKLM-x32&#8230;43AAE145-83CF-4C96-9A5E-756CEFCE879F) (Version: 1.00.3500 &#8211; Acer Incorporated)\nCrazy Chicken Kart 2 (HKLM-x32&#8230;WTA-111fa445-16e9-4867-bd6d-79c26bc446f5) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nD3DX10 (HKLM-x32&#8230;E09C4DB7-630C-4F06-A631-8EA7239923AF) (Version: 15.4.2368.0902 &#8211; Microsoft) Hidden\nDAEMON Tools Lite (HKLM-x32&#8230;DAEMON Tools Lite) (Version: 4.48.1.0347 &#8211; Disc Soft Ltd)\nDiablo III (HKLM-x32&#8230;Diablo III) (Version:  &#8211; Blizzard Entertainment)\nDiscord (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Discord) (Version: 0.0.306 &#8211; Discord Inc.)\nDisinstalla EPSON SX100 Series Printer (HKLM&#8230;EPSON SX100 Series) (Version:  &#8211; SEIKO EPSON Corporation)\nDisplayDriverAnalyzer (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_DisplayDriverAnalyzer) (Version: 391.35 &#8211; NVIDIA Corporation) Hidden\nDolby Advanced Audio v2 (HKLM-x32&#8230;B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613) (Version: 7.2.7000.7 &#8211; Dolby Laboratories Inc)\nDragon Age II (HKLM-x32&#8230;F2E23139-3404-4E3C-9855-7724415D62A5) (Version: 1.04 &#8211; Electronic Arts, Inc.)\nDropbox (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Dropbox) (Version: 3.0.5 &#8211; Dropbox, Inc.)\neBay Worldwide (HKLM-x32&#8230;D3E5A972-9A15-427D-AE78-8181A5FD943C) (Version: 2.2.0409 &#8211; OEM)\nEpson Connect Printer Setup (HKLM-x32&#8230;D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C) (Version: 1.4.0 &#8211; Seiko Epson Corporation)\nEpson Event Manager (HKLM-x32&#8230;9F205E94-9E42-4486-A92A-DF3F6CB85444) (Version: 3.10.0061 &#8211; Seiko Epson Corporation)\nEPSON Remote Print Uninstall (HKLM&#8230;EPSON Remote Print) (Version:  &#8211; SEIKO EPSON Corporation)\nEPSON Scan (HKLM-x32&#8230;EPSON Scanner) (Version:  &#8211; Seiko Epson Corporation)\nEpson Software Updater (HKLM-x32&#8230;FD036A57-F81D-4865-AAF0-811558EA76AE) (Version: 4.5.1 &#8211; Seiko Epson Corporation)\nEPSON XP-312 313 315 Series Printer Uninstall (HKLM&#8230;EPSON XP-312 313 315 Series) (Version:  &#8211; SEIKO EPSON Corporation)\nEpsonNet Print (HKLM-x32&#8230;3E31400D-274E-4647-916C-2CACC3741799) (Version: 2.6.0 &#8211; SEIKO EPSON CORPORATION)\nEvernote v. 4.5.1 (HKLM-x32&#8230;28921580-E4BB-11E0-9FD7-1CC1DEF07CBE) (Version: 4.5.1.5451 &#8211; Evernote Corp.)\nFATE (HKLM-x32&#8230;WTA-d562914f-464e-442a-9b6b-eef07926c4b7) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nFinal Drive: Nitro (HKLM-x32&#8230;WTA-ba528cbd-abfc-43b4-b622-039073085d6c) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nFooz Kids (HKLM-x32&#8230;4C774C35-E0AF-72E1-136A-2BF666702268) (Version: 3.0.8 &#8211; FUHU, Inc.) Hidden\nFooz Kids (HKLM-x32&#8230;FoozKids) (Version: 3.0.8 &#8211; FUHU, Inc.)\nFooz Kids Platform (HKLM-x32&#8230;8D68CE08-9A14-4B7B-9857-3C646A2F34C7) (Version: 2.1 &#8211; FUHU, Inc.)\nFotogalerija Windows Live (HKLM-x32&#8230;E59969EA-3B5B-4B24-8B94-43842A7FBFE9) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria de Fotografias do Windows Live (HKLM-x32&#8230;EC0B576-90F9-43C3-8FAD-A4902DF4B8F4) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalería fotográfica de Windows Live (HKLM-x32&#8230;E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria fotogràfica del Windows Live (HKLM-x32&#8230;4736B0ED-F6A1-48EC-A1B7-C053027648F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria fotografii usługi Windows Live (HKLM-x32&#8230;CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalerie de photos Windows Live (HKLM-x32&#8230;488F0347-C4A7-4374-91A7-30818BEDA710) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalerie foto Windows Live (HKLM-x32&#8230;CB66242D-12B1-4494-82D2-6F53A7E024A3) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGoogle Chrome (HKLM-x32&#8230;Google Chrome) (Version: 81.0.4044.113 &#8211; Google LLC)\nGoogle Update Helper (HKLM-x32&#8230;60EC980A-BDA2-4CB6-A427-B07A5498B4CA) (Version: 1.3.35.451 &#8211; Google LLC) Hidden\nHearthArena Companion (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Overwolf_eldaohcjmecjpkpdhhoiolhhaeapcldppbdgbnbc) (Version: 1.5.0.2 &#8211; Overwolf app)\nHearthstone (HKLM-x32&#8230;Hearthstone) (Version:  &#8211; Blizzard Entertainment)\nHearthstone Deck Tracker (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;HearthstoneDeckTracker) (Version: 1.10.7 &#8211; HearthSim)\nHP USB Disk Storage Format Tool (HKLM-x32&#8230;E0DF90C-D0BA-4C89-9262-AD78D1A3DE51) (Version:  &#8211; )\nIdentity Card (HKLM-x32&#8230;Identity Card) (Version: 1.00.3501 &#8211; Acer Incorporated)\nInsaniquarium Deluxe (HKLM-x32&#8230;WTA-1aadf450-ec73-41b5-b741-966d0737010a) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nIntel® Control Center (HKLM-x32&#8230;F8A9085D-4C7A-41a9-8A77-C8998A96C421) (Version: 1.2.1.1007 &#8211; Intel Corporation)\nIntel® Management Engine Components (HKLM-x32&#8230;65153EA5-8B6E-43B6-857B-C6E4FC25798A) (Version: 7.0.0.1144 &#8211; Intel Corporation)\nIntel® Processor Graphics (HKLM-x32&#8230;F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA) (Version: 8.15.10.2342 &#8211; Intel Corporation)\nIntel® Processor Identification Utility (HKLM-x32&#8230;A92A4DB0-CD37-42D1-BE1D-603D53C24328) (Version: 1.0.0.0 &#8211; Intel Corporation)\nIntel® Rapid Storage Technology (HKLM-x32&#8230;3E29EE6C-963A-4aae-86C1-DC237C4A49FC) (Version: 10.5.0.1026 &#8211; Intel Corporation)\nIntel® SDK for OpenCL &#8211; CPU Only Runtime Package (HKLM-x32&#8230;FCB3772C-B7D0-4933-B1A9-3707EBACC573) (Version: 2.0.0.37149 &#8211; Intel Corporation)\nJava 8 Update 171 (HKLM-x32&#8230;26A24AE4-039D-4CA4-87B4-2F32180171F0) (Version: 8.0.1710.11 &#8211; Oracle Corporation)\nJewel Match 3 (HKLM-x32&#8230;WTA-63325e84-34c2-4ccd-b3ee-87abc401d44a) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nJewel Quest Solitaire (HKLM-x32&#8230;WTA-4d51be1b-2978-4973-ad15-8b42189f04f8) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nJohn Deere Drive Green (HKLM-x32&#8230;WTA-91a805f7-4cee-4088-a326-afc28032536e) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nJuniper Installer Service (HKLM-x32&#8230;93A64A36-C060-47B4-96DE-D405CC22F4C4) (Version: 7.4.28485 &#8211; Juniper Networks) Hidden\nJuniper Installer Service 7.4 (HKLM-x32&#8230;Juniper Installer Service 7.4) (Version: 7.4.28485 &#8211; Juniper Networks, Inc.)\nJuniper Networks Network Connect 7.1.8 (HKLM-x32&#8230;Juniper Network Connect 7.1.8) (Version: 7.1.8.20737 &#8211; Juniper Networks)\nJuniper Networks Network Connect 7.3.0 (HKLM-x32&#8230;Juniper Network Connect 7.3.0) (Version: 7.3.0.24657 &#8211; Juniper Networks)\nJuniper Networks Network Connect 7.4.0 (HKLM-x32&#8230;Juniper Network Connect 7.4.0) (Version: 7.4.0.30731 &#8211; Juniper Networks)\nJuniper Networks, Inc. Setup Client (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Juniper_Setup_Client) (Version: 7.4.10.45165 &#8211; Juniper Networks, Inc.)\nJuniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM&#8230;Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 &#8211; Juniper Networks, Inc.)\nJuniper Networks, Inc. Setup Client Activex Control (HKLM-x32&#8230;Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 &#8211; Juniper Networks, Inc.)\nJunk Mail filter update (HKLM-x32&#8230;1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nKeePass Password Safe 2.44 (HKLM-x32&#8230;KeePassPasswordSafe2_is1) (Version: 2.44 &#8211; Dominik Reichl)\nKits Configuration Installer (HKLM-x32&#8230;B74E65FD-CC47-41C5-4B89-791A3F61942D) (Version: 8.100.25984 &#8211; Microsoft) Hidden\nKodi (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Kodi) (Version:  &#8211; XBMC-Foundation)\nLaunch Manager (HKLM-x32&#8230;LManager) (Version: 5.1.7 &#8211; Acer Inc.)\nLDPlayer (HKLM-x32&#8230;LDPlayer4) (Version: 4.0 &#8211; XUANZHI INTERNATIONAL CO., LIMITED)\nLINE (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;LINE) (Version: 5.21.3.2086 &#8211; LINE Corporation)\nManuali EPSON (HKLM-x32&#8230;84CECC1B-21EF-41B1-9A91-3E724E5D99D3) (Version: 1.53.0.0 &#8211; Seiko Epson Corporation)\nMcAfee WebAdvisor (HKLM-x32&#8230;35ED3F83-4BDC-4c44-8EC6-6A8301C7413A) (Version: 4.1.1.90 &#8211; McAfee, LLC.)\nMesh Runtime (HKLM-x32&#8230;8C6D6116-B724-4810-8F2D-D047E6B7D68E) (Version: 15.4.5722.2 &#8211; Microsoft Corporation) Hidden\nMicrosoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32&#8230;D1D37853-0004-3E36-A7AA-74F4EEA35F64) (Version: 4.5.50930 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.5.1 SDK (HKLM-x32&#8230;19A5926D-66E1-46FC-854D-163AA10A52D3) (Version: 4.5.51641 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.8 (HKLM&#8230;92FB6C44-E685-45AD-9B20-CADF4CABA132 &#8211; 1033) (Version: 4.8.03761 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.8 (Italiano) (HKLM&#8230;92FB6C44-E685-45AD-9B20-CADF4CABA132 &#8211; 1040) (Version: 4.8.03761 &#8211; Microsoft Corporation)\nMicrosoft Office 2010 (HKLM-x32&#8230;95140000-0070-0000-0000-0000000FF1CE) (Version: 14.0.4763.1000 &#8211; Microsoft Corporation)\nMicrosoft Office a portata di clic 2010 (HKLM-x32&#8230;Office14.Click2Run) (Version: 14.0.4763.1000 &#8211; Microsoft Corporation)\nMicrosoft Office Starter 2010 &#8211; Italiano (HKLM-x32&#8230;90140011-0066-0410-0000-0000000FF1CE) (Version: 14.0.5128.5002 &#8211; Microsoft Corporation)\nMicrosoft Security Essentials (HKLM&#8230;Microsoft Security Client) (Version: 4.10.209.0 &#8211; Microsoft Corporation)\nMicrosoft Silverlight (HKLM&#8230;89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50918.0 &#8211; Microsoft Corporation)\nMicrosoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32&#8230;F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8) (Version: 3.1.0000 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17 (HKLM&#8230;8220EEFE-38CD-377E-8595-13398D740ACE) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.6161 (HKLM&#8230;5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17 (HKLM-x32&#8230;9A25302D-30C0-39D9-BD6F-21E6EC160475) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148 (HKLM-x32&#8230;1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161 (HKLM-x32&#8230;9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x64 Redistributable &#8211; 10.0.40219 (HKLM&#8230;1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x86 Redistributable &#8211; 10.0.40219 (HKLM-x32&#8230;F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x64) &#8211; 11.0.61030 (HKLM-x32&#8230;ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x86) &#8211; 11.0.61030 (HKLM-x32&#8230;33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x64) &#8211; 12.0.30501 (HKLM-x32&#8230;50d4fc8-5d48-4b8f-8972-47c82c46020f) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x86) &#8211; 12.0.30501 (HKLM-x32&#8230;f65db027-aff3-4070-886a-0d87064aabb1) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015 Redistributable (x64) &#8211; 14.0.24215 (HKLM-x32&#8230;d992c12e-cab2-426f-bde3-fb8c53950b0d) (Version: 14.0.24215.1 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015 Redistributable (x86) &#8211; 14.0.24215 (HKLM-x32&#8230;e2803110-78b3-4664-a479-3611a381656a) (Version: 14.0.24215.1 &#8211; Microsoft Corporation)\nMonitoraggio della tecnologia Intel® Turbo Boost 2.0 (HKLM&#8230;B77EFA0B-9BD3-4122-9F9A-15A963B5EA24) (Version: 2.1.23.0 &#8211; Intel)\nMozilla Firefox 75.0 (x64 it) (HKLM&#8230;Mozilla Firefox 75.0 (x64 it)) (Version: 75.0 &#8211; Mozilla)\nMozilla Maintenance Service (HKLM-x32&#8230;MozillaMaintenanceService) (Version: 75.0.0.7398 &#8211; Mozilla)\nMSI Development Tools (HKLM-x32&#8230;CF3A1CA6-5E5E-B4BD-6CF1-363056816CA2) (Version: 8.100.26898 &#8211; Microsoft Corporation) Hidden\nMyEpson Portal (HKLM-x32&#8230;3361D415-BA35-4143-B301-661991BA6219) (Version: 1.1.2.2 &#8211; SEIKO EPSON CORPORATION) Hidden\nMyEpson Portal (HKLM-x32&#8230;MyEpson Portal) (Version:  &#8211; SEIKO EPSON Corporation)\nMystery of Mortlake Mansion (HKLM-x32&#8230;WTA-fa5c5656-0bbe-4718-93c5-e01c9a8c326f) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nnewsXpresso (HKLM-x32&#8230;613C0AC5-3A67-4B94-8B13-9176AD83F5BF) (Version: 1.0.0.40 &#8211; esobi Inc.) Hidden\nnewsXpresso (HKLM-x32&#8230;InstallShield_613C0AC5-3A67-4B94-8B13-9176AD83F5BF) (Version: 1.0.0.40 &#8211; esobi Inc.)\nNotepad++ (HKLM-x32&#8230;Notepad++) (Version: 6.6.8 &#8211; Notepad++ Team)\nNTI Media Maker 9 (HKLM-x32&#8230;D3D5C4E8-040F-4C6F-8105-41D43CF94F44) (Version: 9.0.2.9002 &#8211; NTI Corporation) Hidden\nNTI Media Maker 9 (HKLM-x32&#8230;InstallShield_D3D5C4E8-040F-4C6F-8105-41D43CF94F44) (Version: 9.0.2.9002 &#8211; NTI Corporation)\nNVIDIA Driver grafico 391.35 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Driver) (Version: 391.35 &#8211; NVIDIA Corporation)\nNVIDIA GeForce Experience 3.13.1.30 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.GFExperience) (Version: 3.13.1.30 &#8211; NVIDIA Corporation)\nNVIDIA PhysX System Software 9.17.0524 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.PhysX) (Version: 9.17.0524 &#8211; NVIDIA Corporation)\nOnline Plug-in (HKLM-x32&#8230;9A0FE2C0-7A7E-444E-8BD4-087178A91865) (Version: 14.0.0.91 &#8211; Citrix Systems, Inc.) Hidden\nOrigin (HKLM-x32&#8230;Origin) (Version: 10.5.2.49155 &#8211; Electronic Arts, Inc.)\nOverwolf (HKLM-x32&#8230;Overwolf) (Version: 0.143.0.24 &#8211; Overwolf Ltd.)\nPannello di controllo NVIDIA 391.35 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.ControlPanel) (Version: 391.35 &#8211; NVIDIA Corporation) Hidden\nPenguins! (HKLM-x32&#8230;WTA-f82d33cf-1bf0-4c54-85ca-769791349557) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nPidgin (HKLM-x32&#8230;Pidgin) (Version: 2.10.7 &#8211; )\nPlants vs. Zombies &#8211; Game of the Year (HKLM-x32&#8230;WTA-fc291ad5-7412-47d4-8641-d23ea23ef2e0) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nPoczta usługi Windows Live (HKLM-x32&#8230;64376910-1860-4CEF-8B34-AA5D205FC5F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPodstawowe programy Windows Live (HKLM-x32&#8230;7A9D47BA-6D50-4087-866F-0800D8B89383) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPolar Bowler (HKLM-x32&#8230;WTA-4f14c51e-af03-4658-92f9-0f759f61b306) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nPošta Windows Live (HKLM-x32&#8230;7BA19818-F717-4DFB-BC11-FAF17B2B8AEE) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPunkBuster Services (HKLM-x32&#8230;PunkBusterSvc) (Version: 0.991 &#8211; Even Balance, Inc.)\nQuickTime (HKLM-x32&#8230;B67BAFBA-4C9F-48FA-9496-933E3B255044) (Version: 7.74.80.86 &#8211; Apple Inc.)\nRaccolta foto di Windows Live (HKLM-x32&#8230;ED16B700-D91F-44B0-867C-7EB5253CA38D) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nRealtek High Definition Audio Driver (HKLM-x32&#8230;F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC) (Version: 6.0.1.6438 &#8211; Realtek Semiconductor Corp.)\nRenesas Electronics USB 3.0 Host Controller Driver (HKLM-x32&#8230;5442DAB8-7177-49E1-8B22-09A049EA5996) (Version: 2.0.34.0 &#8211; Renesas Electronics Corporation) Hidden\nRenesas Electronics USB 3.0 Host Controller Driver (HKLM-x32&#8230;InstallShield_5442DAB8-7177-49E1-8B22-09A049EA5996) (Version: 2.0.34.0 &#8211; Renesas Electronics Corporation)\nSDK Debuggers (HKLM-x32&#8230;9274C832-3D8A-A294-FDE8-8B9272357098) (Version: 8.100.26936 &#8211; Microsoft Corporation) Hidden\nShockwave (HKLM-x32&#8230;Shockwave) (Version:  &#8211; )\nSierra Utilities (HKLM-x32&#8230;Sierra Utilities) (Version:  &#8211; )\nSkype Click to Call (HKLM-x32&#8230;873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B) (Version: 8.5.0.9167 &#8211; Microsoft Corporation)\nSkype for Business Web App Plug-in (HKLM-x32&#8230;37C8167B-B653-4955-A6E8-EBB8DE937DDD) (Version: 15.8.20020.400 &#8211; Microsoft Corporation)\nSkype versione 8.44 (HKLM-x32&#8230;Skype_is1) (Version: 8.44 &#8211; Skype Technologies S.A.)\nSkype Web Plugin (HKLM-x32&#8230;DF6DC2FB-6783-4340-8B98-401CB656AD3A) (Version: 7.26.0.48 &#8211; Skype Technologies S.A.)\nSlingo Deluxe (HKLM-x32&#8230;WTA-0317c6a7-06b3-4b13-8a10-9b264c639ed4) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nSteam (HKLM-x32&#8230;Steam) (Version:  &#8211; Valve Corporation)\nSupporto applicazioni Apple (HKLM-x32&#8230;5D09C772-ECB3-442B-9CC6-B4341C78FDC2) (Version: 2.3.4 &#8211; Apple Inc.)\nSynaptics Pointing Device Driver (HKLM&#8230;SynTPDeinstKey) (Version: 15.1.6.0 &#8211; Synaptics Incorporated)\nTeamSpeak 3 Client (HKLM&#8230;TeamSpeak 3 Client) (Version: 3.0.15 &#8211; TeamSpeak Systems GmbH)\nTeamViewer (HKLM-x32&#8230;TeamViewer) (Version: 15.4.4445 &#8211; TeamViewer)\nTorchlight (HKLM-x32&#8230;WTA-86f22e04-aba5-46a2-baee-2d2b15dcd07d) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nTreeSize Free V4.2 (HKLM-x32&#8230;TreeSize Free_is1) (Version: 4.2 &#8211; JAM Software)\nUnity Web Player (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;UnityWebPlayer) (Version: 5.0.1f1 &#8211; Unity Technologies ApS)\nUpdate Installer for WildTangent Games App (HKLM-x32&#8230;2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2.WildTangent Games App) (Version:  &#8211; WildTangent) Hidden\nUplay (HKLM-x32&#8230;Uplay) (Version: 46.0 &#8211; Ubisoft)\nVirtual Villagers 4 &#8211; The Tree of Life (HKLM-x32&#8230;WTA-2d8486f0-4bd6-4e7d-9791-27029e7c6472) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nVLC media player (HKLM-x32&#8230;VLC media player) (Version: 3.0.8 &#8211; VideoLAN)\nVulkan Run Time Libraries 1.0.65.1 (HKLM&#8230;VulkanRT1.0.65.1) (Version: 1.0.65.1 &#8211; LunarG, Inc.) Hidden\nWedding Dash (HKLM-x32&#8230;WTA-e9518137-4e7b-4626-9f43-7daf4e91fd72) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nWelcome Center (HKLM-x32&#8230;Acer Welcome Center) (Version: 1.02.3504 &#8211; Acer Incorporated)\nWhoCrashed 5.54 (HKLM&#8230;WhoCrashed_is1) (Version:  &#8211; Resplendence Software Projects Sp.)\nWildTangent Games App (HKLM-x32&#8230;70B446D1-E03B-4ab0-9B3C-0832142C9AA8.WildTangent Games App-acer) (Version: 4.0.10.25 &#8211; WildTangent) Hidden\nWindows Live Essentials (HKLM-x32&#8230;WinLiveSuite) (Version: 15.4.3538.0513 &#8211; Microsoft Corporation)\nWindows Software Development Kit for Windows 8.1 (HKLM-x32&#8230;ed3a6e6d-9661-4357-abe4-fcc03dc57a07) (Version: 8.100.26936 &#8211; Microsoft Corporation)\nWinRAR 4.20 (32-bit) (HKLM-x32&#8230;WinRAR archiver) (Version: 4.20.0 &#8211; win.rar GmbH)\nWPT Redistributables (HKLM-x32&#8230;64F3FB9A-9250-B2D6-00B4-50BE0358AEE8) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nWPTx64 (HKLM-x32&#8230;BFF81CB5-E8C7-4184-FBB4-74ADFBC6CCCB) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nZuma Deluxe (HKLM-x32&#8230;WTA-744d629c-c549-4c3b-b820-4ba591229d4e) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nΣυλλογή φωτογραφιών του Windows Live (HKLM-x32&#8230;C00C2A91-6CB3-483F-80B3-2958E29468F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nОсновные компоненты Windows Live (HKLM-x32&#8230;E83DC314-C926-4214-AD58-147691D6FE9F) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nПочта Windows Live (HKLM-x32&#8230;B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137) (Version: 15.4.3502.0922 &#8211; Корпорация Майкрософт) Hidden\nФотоальбом Windows Live (HKLM-x32&#8230;77F69CA1-E53D-4D77-8BA3-FA07606CC851) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nФотогалерия на Windows Live (HKLM-x32&#8230;4444F27C-B1A8-464E-9486-4C37BAB39A09) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nגלריית התמונות של Windows Live (HKLM-x32&#8230;CE929F09-3853-4180-BD90-30764BFF7136) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nبريد Windows Live (HKLM-x32&#8230;A4C4B29-5A9D-4910-A13C-B920D5758744) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nمعرض صور Windows Live (HKLM-x32&#8230;FBCA06D2-4642-4F33-B20A-A7AB3F0D2E69) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden</p>"},{"id":"text-46","type":"text","heading":"","plain_text":"==================== Custom CLSID (Whitelisted): ==============","html":"<p>==================== Custom CLSID (Whitelisted): ==============</p>"},{"id":"text-47","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)</p>"},{"id":"text-48","type":"text","heading":"","plain_text":"CustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID05A3A96-BAC4-4B0A-94EA-C0CE100EA736localserver32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID4A9E854-6F47-4F37-8A10-F896717F0329InprocServer32 -&gt; C:UsersDanieleAppDataLocalProgramsAsperaAspera Connectlib3.6.1npasperaweb64_3.6.1.111228.dll (Aspera, Inc. -&gt; Aspera, Inc. )\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID7ECF6F97-B4F3-4168-9835-F59C06D7875FInprocServer32 -&gt; C:UsersDanieleAppDataLocalMicrosoftSkypeForBusinessPlugin15.8.20020.400GatewayActiveX-x64.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDAD17B774-7F87-4141-BB9C-2AEE3841DC4EInprocServer32 -&gt; C:UsersDanieleAppDataLocalProgramsAsperaAspera Connectlib3.6.1npasperaweb64_3.6.1.111228.dll (Aspera, Inc. -&gt; Aspera, Inc. )\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDBB384F15-7676-403E-B797-1F9D935525A3InprocServer32 -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48GatewayActiveX-x64.dll (Microsoft Corporation -&gt; Skype Technologies S.A.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314ED9-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDA-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDB-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDC-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDD-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDE-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDF-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EE0-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt1 »] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt2 »] -&gt; FB314EDA-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt3 »] -&gt; FB314EDD-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt4 »] -&gt; FB314EDE-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt5 »] -&gt; FB314EDB-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt6 »] -&gt; FB314EDF-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt7 »] -&gt; FB314EDC-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt8 »] -&gt; FB314EE0-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers1: [ANotepad++64] -&gt; B298D29A-A6ED-11DE-BA8C-A68E55D89593 =&gt; C:Program Files (x86)Notepad++NppShell_06.dll [2014-05-12] () [File not signed]\nContextMenuHandlers1: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers1: [Shell Extension for Malware scanning] -&gt; 45AC2688-0253-4ED8-97DE-B5370FA7D48A =&gt; C:Program Files (x86)AviraAntivirusshlext64.dll [2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers1: [SystemSpeedupFilesMenu] -&gt; 14cb2bd0-2375-3d10-9b5d-5e18865c8959 =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers1: [WinRAR] -&gt; B41DB860-64E4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext64.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers1-x32: [WinRAR32] -&gt; B41DB860-8EE4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers2: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers4: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers4: [SystemSpeedupFoldersMenu] -&gt; 700866bb-c8e9-3e71-b359-abb28baed0e8 =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers5: [igfxcui] -&gt; 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 =&gt; C:Windowssystem32igfxpph.dll [2011-03-26] (Microsoft Windows Hardware Compatibility Publisher -&gt; Intel Corporation)\nContextMenuHandlers5: [NvCplDesktopContext] -&gt; 3D1975AF-48C6-4f8e-A182-BE0E08FA86A9 =&gt; C:Windowssystem32nvshext.dll [2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nContextMenuHandlers5: [SynGlwPad] -&gt; 681C10CE-5E5D-463A-A270-771AA48E4C71 =&gt; C:WindowsSystem32SynGlwPadShlExt.dll [2010-07-29] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nContextMenuHandlers5: [SystemSpeedupDesktopMenu] -&gt; 0cab5786-30e8-3185-9b3b-ccefbf1b8afe =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers6: [Shell Extension for Malware scanning] -&gt; 45AC2688-0253-4ED8-97DE-B5370FA7D48A =&gt; C:Program Files (x86)AviraAntivirusshlext64.dll [2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers6: [WinRAR] -&gt; B41DB860-64E4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext64.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers6-x32: [WinRAR32] -&gt; B41DB860-8EE4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers1_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers4_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers5_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)","html":"<p>CustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID05A3A96-BAC4-4B0A-94EA-C0CE100EA736localserver32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID4A9E854-6F47-4F37-8A10-F896717F0329InprocServer32 -&gt; C:UsersDanieleAppDataLocalProgramsAsperaAspera Connectlib3.6.1npasperaweb64_3.6.1.111228.dll (Aspera, Inc. -&gt; Aspera, Inc. )\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID7ECF6F97-B4F3-4168-9835-F59C06D7875FInprocServer32 -&gt; C:UsersDanieleAppDataLocalMicrosoftSkypeForBusinessPlugin15.8.20020.400GatewayActiveX-x64.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDAD17B774-7F87-4141-BB9C-2AEE3841DC4EInprocServer32 -&gt; C:UsersDanieleAppDataLocalProgramsAsperaAspera Connectlib3.6.1npasperaweb64_3.6.1.111228.dll (Aspera, Inc. -&gt; Aspera, Inc. )\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDBB384F15-7676-403E-B797-1F9D935525A3InprocServer32 -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48GatewayActiveX-x64.dll (Microsoft Corporation -&gt; Skype Technologies S.A.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314ED9-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDA-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDB-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDC-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDD-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDE-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDF-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EE0-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt1 »] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt2 »] -&gt; FB314EDA-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt3 »] -&gt; FB314EDD-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt4 »] -&gt; FB314EDE-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt5 »] -&gt; FB314EDB-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt6 »] -&gt; FB314EDF-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt7 »] -&gt; FB314EDC-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt8 »] -&gt; FB314EE0-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers1: [ANotepad++64] -&gt; B298D29A-A6ED-11DE-BA8C-A68E55D89593 =&gt; C:Program Files (x86)Notepad++NppShell_06.dll [2014-05-12] () [File not signed]\nContextMenuHandlers1: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers1: [Shell Extension for Malware scanning] -&gt; 45AC2688-0253-4ED8-97DE-B5370FA7D48A =&gt; C:Program Files (x86)AviraAntivirusshlext64.dll [2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers1: [SystemSpeedupFilesMenu] -&gt; 14cb2bd0-2375-3d10-9b5d-5e18865c8959 =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers1: [WinRAR] -&gt; B41DB860-64E4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext64.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers1-x32: [WinRAR32] -&gt; B41DB860-8EE4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers2: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers4: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers4: [SystemSpeedupFoldersMenu] -&gt; 700866bb-c8e9-3e71-b359-abb28baed0e8 =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers5: [igfxcui] -&gt; 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 =&gt; C:Windowssystem32igfxpph.dll [2011-03-26] (Microsoft Windows Hardware Compatibility Publisher -&gt; Intel Corporation)\nContextMenuHandlers5: [NvCplDesktopContext] -&gt; 3D1975AF-48C6-4f8e-A182-BE0E08FA86A9 =&gt; C:Windowssystem32nvshext.dll [2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nContextMenuHandlers5: [SynGlwPad] -&gt; 681C10CE-5E5D-463A-A270-771AA48E4C71 =&gt; C:WindowsSystem32SynGlwPadShlExt.dll [2010-07-29] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nContextMenuHandlers5: [SystemSpeedupDesktopMenu] -&gt; 0cab5786-30e8-3185-9b3b-ccefbf1b8afe =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers6: [Shell Extension for Malware scanning] -&gt; 45AC2688-0253-4ED8-97DE-B5370FA7D48A =&gt; C:Program Files (x86)AviraAntivirusshlext64.dll [2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers6: [WinRAR] -&gt; B41DB860-64E4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext64.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers6-x32: [WinRAR32] -&gt; B41DB860-8EE4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers1_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers4_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers5_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)</p>"},{"id":"text-49","type":"text","heading":"","plain_text":"==================== Codecs (Whitelisted) ====================","html":"<p>==================== Codecs (Whitelisted) ====================</p>"},{"id":"text-50","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)","html":"<p>(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)</p>"},{"id":"text-51","type":"text","heading":"","plain_text":"HKLM&#8230;Drivers32: [msacm.l3acm] =&gt; C:WindowsSysWOW64l3codecp.acm [220672 2009-07-14] (Microsoft Windows -&gt; Fraunhofer Institut Integrierte Schaltungen IIS)","html":"<p>HKLM&#8230;Drivers32: [msacm.l3acm] =&gt; C:WindowsSysWOW64l3codecp.acm [220672 2009-07-14] (Microsoft Windows -&gt; Fraunhofer Institut Integrierte Schaltungen IIS)</p>"},{"id":"text-52","type":"text","heading":"","plain_text":"==================== Shortcuts &amp; WMI ========================","html":"<p>==================== Shortcuts &amp; WMI ========================</p>"},{"id":"text-53","type":"text","heading":"","plain_text":"(The entries could be listed to be restored or removed.)","html":"<p>(The entries could be listed to be restored or removed.)</p>"},{"id":"text-54","type":"text","heading":"","plain_text":"WMI:subscription__FilterToConsumerBinding-&gt;CommandLineEventConsumer.Name=&quot;BVTConsumer&quot;&quot;,Filter=&quot;__EventFilter.Name=&quot;BVTFilter&quot;::\nWMI:subscription__EventFilter-&gt;BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA « Win32_Processor » AND TargetInstance.LoadPercentage > 99]\nWMI:subscriptionCommandLineEventConsumer-&gt;BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]","html":"<p>WMI:subscription__FilterToConsumerBinding-&gt;CommandLineEventConsumer.Name=&quot;BVTConsumer&quot;&quot;,Filter=&quot;__EventFilter.Name=&quot;BVTFilter&quot;::\nWMI:subscription__EventFilter-&gt;BVTFilter::[Query =&gt; SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA « Win32_Processor » AND TargetInstance.LoadPercentage &gt; 99]\nWMI:subscriptionCommandLineEventConsumer-&gt;BVTConsumer::[CommandLineTemplate =&gt; cscript KernCap.vbs][WorkingDirectory =&gt; C:\\tools\\kernrate]</p>"},{"id":"text-55","type":"text","heading":"","plain_text":"==================== Loaded Modules (Whitelisted) =============","html":"<p>==================== Loaded Modules (Whitelisted) =============</p>"},{"id":"text-56","type":"text","heading":"","plain_text":"2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 096130048 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libcef.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000117760 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libEGL.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004342784 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libGLESv2.dll\n2019-03-28 00:48 &#8211; 2019-03-28 00:48 &#8211; 000115200 _____ (Microsoft Corporation) [File not signed] C:WindowsMicrosoft.NetassemblyGAC_32System.EnterpriseServicesv4.0_4.0.0.0__b03f5f7f11d50a3aSystem.EnterpriseServices.Wrapper.dll\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 001101824 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80.DLL\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 001093120 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80U.DLL\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 000061440 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c72205943d3MFC80ITA.DLL\n2015-05-01 19:18 &#8211; 2012-11-12 15:15 &#8211; 000558592 _____ (SEIKO EPSON CORPORATION) [File not signed] C:WindowsSystem32enppmon.dll\n2015-05-01 19:18 &#8211; 2012-10-22 17:19 &#8211; 000219648 _____ (SEIKO EPSON CORPORATION) [File not signed] C:WindowsSystem32enpres.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000760832 _____ (The Chromium Authors) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943chrome_elf.dll\n2020-04-18 15:23 &#8211; 2020-04-18 15:23 &#8211; 000047104 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943audioqtaudio_windows.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000026112 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqgif.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000027136 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqico.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000243712 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqjpeg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000223744 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqmng.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000020992 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqsvg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000332288 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqtiff.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 001140224 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943platformsqwindows.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000041984 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtGraphicalEffectsprivateqtgraphicaleffectsprivate.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtGraphicalEffectsqtgraphicaleffectsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQmlModels.2modelsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuick.2qtquick2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000084480 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickControls.2qtquickcontrols2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000267776 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickControlsqtquickcontrolsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000071680 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickLayoutsqquicklayoutsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000211456 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickTemplates.2qtquicktemplates2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickWindow.2windowplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004943360 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Core.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 005022208 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Gui.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000626176 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Multimedia.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000877056 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Network.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 002908672 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Qml.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 003078656 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Quick.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000096256 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5QuickControls2.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000681472 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5QuickTemplates2.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000259072 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Svg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004718080 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Widgets.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000439296 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5WinExtras.dll\n2020-04-18 15:25 &#8211; 2020-04-18 15:25 &#8211; 000159232 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Xml.dll","html":"<p>2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 096130048 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libcef.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000117760 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libEGL.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004342784 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libGLESv2.dll\n2019-03-28 00:48 &#8211; 2019-03-28 00:48 &#8211; 000115200 _____ (Microsoft Corporation) [File not signed] C:WindowsMicrosoft.NetassemblyGAC_32System.EnterpriseServicesv4.0_4.0.0.0__b03f5f7f11d50a3aSystem.EnterpriseServices.Wrapper.dll\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 001101824 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80.DLL\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 001093120 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80U.DLL\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 000061440 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c72205943d3MFC80ITA.DLL\n2015-05-01 19:18 &#8211; 2012-11-12 15:15 &#8211; 000558592 _____ (SEIKO EPSON CORPORATION) [File not signed] C:WindowsSystem32enppmon.dll\n2015-05-01 19:18 &#8211; 2012-10-22 17:19 &#8211; 000219648 _____ (SEIKO EPSON CORPORATION) [File not signed] C:WindowsSystem32enpres.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000760832 _____ (The Chromium Authors) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943chrome_elf.dll\n2020-04-18 15:23 &#8211; 2020-04-18 15:23 &#8211; 000047104 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943audioqtaudio_windows.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000026112 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqgif.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000027136 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqico.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000243712 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqjpeg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000223744 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqmng.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000020992 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqsvg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000332288 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqtiff.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 001140224 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943platformsqwindows.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000041984 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtGraphicalEffectsprivateqtgraphicaleffectsprivate.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtGraphicalEffectsqtgraphicaleffectsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQmlModels.2modelsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuick.2qtquick2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000084480 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickControls.2qtquickcontrols2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000267776 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickControlsqtquickcontrolsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000071680 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickLayoutsqquicklayoutsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000211456 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickTemplates.2qtquicktemplates2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickWindow.2windowplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004943360 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Core.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 005022208 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Gui.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000626176 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Multimedia.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000877056 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Network.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 002908672 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Qml.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 003078656 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Quick.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000096256 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5QuickControls2.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000681472 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5QuickTemplates2.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000259072 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Svg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004718080 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Widgets.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000439296 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5WinExtras.dll\n2020-04-18 15:25 &#8211; 2020-04-18 15:25 &#8211; 000159232 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Xml.dll</p>"},{"id":"text-57","type":"text","heading":"","plain_text":"==================== Alternate Data Streams (Whitelisted) ========","html":"<p>==================== Alternate Data Streams (Whitelisted) ========</p>"},{"id":"text-58","type":"text","heading":"","plain_text":"==================== Safe Mode (Whitelisted) ==================","html":"<p>==================== Safe Mode (Whitelisted) ==================</p>"},{"id":"text-59","type":"text","heading":"","plain_text":"==================== Association (Whitelisted) =================","html":"<p>==================== Association (Whitelisted) =================</p>"},{"id":"text-60","type":"text","heading":"","plain_text":"==================== Internet Explorer trusted/restricted ==========","html":"<p>==================== Internet Explorer trusted/restricted ==========</p>"},{"id":"text-61","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry.)</p>"},{"id":"text-62","type":"text","heading":"","plain_text":"IE trusted site: HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;geforce.co.uk -&gt; hxxps://www.geforce.co.uk","html":"<p>IE trusted site: HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;geforce.co.uk -&gt; hxxps://www.geforce.co.uk</p>"},{"id":"text-63","type":"text","heading":"","plain_text":"==================== Hosts content: =========================","html":"<p>==================== Hosts content: =========================</p>"},{"id":"text-64","type":"text","heading":"","plain_text":"(If needed Hosts: directive could be included in the fixlist to reset Hosts.)","html":"<p>(If needed Hosts: directive could be included in the fixlist to reset Hosts.)</p>"},{"id":"text-65","type":"text","heading":"","plain_text":"2009-07-14 03:34 &#8211; 2009-06-10 22:00 &#8211; 000000824 _____ C:Windowssystem32driversetchosts","html":"<p>2009-07-14 03:34 &#8211; 2009-06-10 22:00 &#8211; 000000824 _____ C:Windowssystem32driversetchosts</p>"},{"id":"text-66","type":"text","heading":"","plain_text":"==================== Other Areas ===========================","html":"<p>==================== Other Areas ===========================</p>"},{"id":"text-67","type":"text","heading":"","plain_text":"(Currently there is no automatic fix for this section.)","html":"<p>(Currently there is no automatic fix for this section.)</p>"},{"id":"text-68","type":"text","heading":"","plain_text":"HKLMSystemCurrentControlSetControlSession ManagerEnvironment\\Path -&gt; c:program files (x86)common filesoraclejavajavapath;c:programdataoraclejavajavapath;c:program filescommon filesmicrosoft sharedwindows live;c:program files (x86)common filesmicrosoft sharedwindows live;c:windowssystem32;c:windows;c:windowssystem32wbem;c:windowssystem32windowspowershellv1.0;c:program files (x86)windows liveshared;c:program files (x86)quicktimeqtsystem;c:program files (x86)windows kits8.1windows performance toolkit;c:program files (x86)intelopencl sdk2.0binx86;c:program files (x86)intelopencl sdk2.0binx64;c:program files (x86)intelopencl sdk2.0binx86;c:program files (x86)intelopencl sdk2.0binx64;C:Program Files (x86)NVIDIA CorporationPhysXCommon\nHKUS-1-5-21-1536202438-368462837-3654654372-1001Control PanelDesktop\\Wallpaper -&gt; C:UsersDanieleAppDataRoamingMicrosoftWindowsThemesTranscodedWallpaper.jpg\nDNS Servers: 194.168.4.100 &#8211; 194.168.8.100\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)\nWindows Firewall is enabled.","html":"<p>HKLMSystemCurrentControlSetControlSession ManagerEnvironment\\Path -&gt; c:program files (x86)common filesoraclejavajavapath;c:programdataoraclejavajavapath;c:program filescommon filesmicrosoft sharedwindows live;c:program files (x86)common filesmicrosoft sharedwindows live;c:windowssystem32;c:windows;c:windowssystem32wbem;c:windowssystem32windowspowershellv1.0;c:program files (x86)windows liveshared;c:program files (x86)quicktimeqtsystem;c:program files (x86)windows kits8.1windows performance toolkit;c:program files (x86)intelopencl sdk2.0binx86;c:program files (x86)intelopencl sdk2.0binx64;c:program files (x86)intelopencl sdk2.0binx86;c:program files (x86)intelopencl sdk2.0binx64;C:Program Files (x86)NVIDIA CorporationPhysXCommon\nHKUS-1-5-21-1536202438-368462837-3654654372-1001Control PanelDesktop\\Wallpaper -&gt; C:UsersDanieleAppDataRoamingMicrosoftWindowsThemesTranscodedWallpaper.jpg\nDNS Servers: 194.168.4.100 &#8211; 194.168.8.100\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)\nWindows Firewall is enabled.</p>"},{"id":"text-69","type":"text","heading":"","plain_text":"==================== MSCONFIG/TASK MANAGER disabled items ==","html":"<p>==================== MSCONFIG/TASK MANAGER disabled items ==</p>"},{"id":"text-70","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed.)","html":"<p>(If an entry is included in the fixlist, it will be removed.)</p>"},{"id":"text-71","type":"text","heading":"","plain_text":"MSCONFIGServices: AdobeARMservice =&gt; 2\nMSCONFIGServices: AdobeFlashPlayerUpdateSvc =&gt; 3\nMSCONFIGServices: cphs =&gt; 3\nMSCONFIGServices: DsiWMIService =&gt; 2\nMSCONFIGServices: dsNcService =&gt; 2\nMSCONFIGServices: ePowerSvc =&gt; 2\nMSCONFIGServices: EpsonScanSvc =&gt; 2\nMSCONFIGServices: EPSON_PM_RPCV4_06 =&gt; 2\nMSCONFIGServices: FLEXnet Licensing Service =&gt; 3\nMSCONFIGServices: GamesAppIntegrationService =&gt; 3\nMSCONFIGServices: GamesAppService =&gt; 3\nMSCONFIGServices: GREGService =&gt; 2\nMSCONFIGServices: gupdate =&gt; 2\nMSCONFIGServices: gupdatem =&gt; 3\nMSCONFIGServices: IAStorDataMgrSvc =&gt; 2\nMSCONFIGServices: ICCS =&gt; 3\nMSCONFIGServices: JuniperAccessService =&gt; 2\nMSCONFIGServices: Live Updater Service =&gt; 2\nMSCONFIGServices: LMS =&gt; 2\nMSCONFIGServices: MozillaMaintenance =&gt; 3\nMSCONFIGServices: MyEpson Portal Service =&gt; 2\nMSCONFIGServices: NTI IScheduleSvc =&gt; 2\nMSCONFIGServices: NvContainerLocalSystem =&gt; 3\nMSCONFIGServices: NvContainerNetworkService =&gt; 3\nMSCONFIGServices: NVDisplay.ContainerLocalSystem =&gt; 2\nMSCONFIGServices: NvTelemetryContainer =&gt; 2\nMSCONFIGServices: Origin Client Service =&gt; 3\nMSCONFIGServices: Origin Web Helper Service =&gt; 2\nMSCONFIGServices: OverwolfUpdater =&gt; 3\nMSCONFIGServices: SkypeUpdate =&gt; 2\nMSCONFIGServices: Steam Client Service =&gt; 3\nMSCONFIGServices: TeamViewer =&gt; 2\nMSCONFIGServices: TurboBoost =&gt; 3\nMSCONFIGServices: UNS =&gt; 2\nMSCONFIGstartupreg: APSDaemon =&gt; &quot;C:Program Files (x86)Common FilesAppleApple Application SupportAPSDaemon.exe&quot;\nMSCONFIGstartupreg: ArcadeMovieService =&gt; &quot;C:Program Files (x86)Acerclear.fiMovieclear.fiMovieService.exe&quot;\nMSCONFIGstartupreg: BackupManagerTray =&gt; &quot;C:Program Files (x86)NTIAcer Backup ManagerBackupManagerTray.exe&quot; -h -k\nMSCONFIGstartupreg: ConnectionCenter =&gt; &quot;C:Program Files (x86)CitrixICA Clientconcentr.exe&quot; /startup\nMSCONFIGstartupreg: DAEMON Tools Lite =&gt; &quot;C:Program Files (x86)DAEMON Tools LiteDTLite.exe&quot; -autorun\nMSCONFIGstartupreg: Dolby Advanced Audio v2 =&gt; &quot;C:Dolby PCEE4pcee4.exe&quot; -autostart\nMSCONFIGstartupreg: EEventManager =&gt; &quot;C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe&quot;\nMSCONFIGstartupreg: HotKeysCmds =&gt; &quot;C:Windowssystem32hkcmd.exe&quot;\nMSCONFIGstartupreg: IgfxTray =&gt; &quot;C:Windowssystem32igfxtray.exe&quot;\nMSCONFIGstartupreg: KeePass 2 PreLoad =&gt; &quot;C:Program Files (x86)KeePass Password Safe 2KeePass.exe&quot; &#8211;preload\nMSCONFIGstartupreg: LManager =&gt; C:Program Files (x86)Launch ManagerLManager.exe\nMSCONFIGstartupreg: mobilegeni daemon =&gt; C:Program Files (x86)MobogenieDaemonProcess.exe\nMSCONFIGstartupreg: NUSB3MON =&gt; &quot;C:Program Files (x86)Renesas ElectronicsUSB 3.0 Host Controller DriverApplicationnusb3mon.exe&quot;\nMSCONFIGstartupreg: OOTag =&gt; C:Program Files (x86)AcerOOBEOfferootag.exe\nMSCONFIGstartupreg: Persistence =&gt; &quot;C:Windowssystem32igfxpers.exe&quot;\nMSCONFIGstartupreg: Power Management =&gt; C:Program FilesAcerAcer ePower ManagementePowerTray.exe\nMSCONFIGstartupreg: QuickTime Task =&gt; &quot;C:Program Files (x86)QuickTimeQTTask.exe&quot; -atboottime\nMSCONFIGstartupreg: Redirector =&gt; &quot;C:Program Files (x86)CitrixICA Clientredirector.exe&quot; /startup\nMSCONFIGstartupreg: RtHDVBg_Dolby =&gt; C:Program FilesRealtekAudioHDARAVBg64.exe /FORPCEE4 \nMSCONFIGstartupreg: RtHDVCpl =&gt; C:Program FilesRealtekAudioHDARAVCpl64.exe -s\nMSCONFIGstartupreg: Search Protection =&gt; &quot;C:UsersDanieleAppDataRoamingSearch ProtectionSP.EXE&quot; /autostart\nMSCONFIGstartupreg: Skype =&gt; &quot;C:Program Files (x86)SkypePhoneSkype.exe&quot; /minimized /regrun\nMSCONFIGstartupreg: SunJavaUpdateSched =&gt; C:Program Files (x86)Common FilesJavaJava Updatejusched.exe\nMSCONFIGstartupreg: SynTPEnh =&gt; %ProgramFiles%SynapticsSynTPSynTPEnh.exe","html":"<p>MSCONFIGServices: AdobeARMservice =&gt; 2\nMSCONFIGServices: AdobeFlashPlayerUpdateSvc =&gt; 3\nMSCONFIGServices: cphs =&gt; 3\nMSCONFIGServices: DsiWMIService =&gt; 2\nMSCONFIGServices: dsNcService =&gt; 2\nMSCONFIGServices: ePowerSvc =&gt; 2\nMSCONFIGServices: EpsonScanSvc =&gt; 2\nMSCONFIGServices: EPSON_PM_RPCV4_06 =&gt; 2\nMSCONFIGServices: FLEXnet Licensing Service =&gt; 3\nMSCONFIGServices: GamesAppIntegrationService =&gt; 3\nMSCONFIGServices: GamesAppService =&gt; 3\nMSCONFIGServices: GREGService =&gt; 2\nMSCONFIGServices: gupdate =&gt; 2\nMSCONFIGServices: gupdatem =&gt; 3\nMSCONFIGServices: IAStorDataMgrSvc =&gt; 2\nMSCONFIGServices: ICCS =&gt; 3\nMSCONFIGServices: JuniperAccessService =&gt; 2\nMSCONFIGServices: Live Updater Service =&gt; 2\nMSCONFIGServices: LMS =&gt; 2\nMSCONFIGServices: MozillaMaintenance =&gt; 3\nMSCONFIGServices: MyEpson Portal Service =&gt; 2\nMSCONFIGServices: NTI IScheduleSvc =&gt; 2\nMSCONFIGServices: NvContainerLocalSystem =&gt; 3\nMSCONFIGServices: NvContainerNetworkService =&gt; 3\nMSCONFIGServices: NVDisplay.ContainerLocalSystem =&gt; 2\nMSCONFIGServices: NvTelemetryContainer =&gt; 2\nMSCONFIGServices: Origin Client Service =&gt; 3\nMSCONFIGServices: Origin Web Helper Service =&gt; 2\nMSCONFIGServices: OverwolfUpdater =&gt; 3\nMSCONFIGServices: SkypeUpdate =&gt; 2\nMSCONFIGServices: Steam Client Service =&gt; 3\nMSCONFIGServices: TeamViewer =&gt; 2\nMSCONFIGServices: TurboBoost =&gt; 3\nMSCONFIGServices: UNS =&gt; 2\nMSCONFIGstartupreg: APSDaemon =&gt; &quot;C:Program Files (x86)Common FilesAppleApple Application SupportAPSDaemon.exe&quot;\nMSCONFIGstartupreg: ArcadeMovieService =&gt; &quot;C:Program Files (x86)Acerclear.fiMovieclear.fiMovieService.exe&quot;\nMSCONFIGstartupreg: BackupManagerTray =&gt; &quot;C:Program Files (x86)NTIAcer Backup ManagerBackupManagerTray.exe&quot; -h -k\nMSCONFIGstartupreg: ConnectionCenter =&gt; &quot;C:Program Files (x86)CitrixICA Clientconcentr.exe&quot; /startup\nMSCONFIGstartupreg: DAEMON Tools Lite =&gt; &quot;C:Program Files (x86)DAEMON Tools LiteDTLite.exe&quot; -autorun\nMSCONFIGstartupreg: Dolby Advanced Audio v2 =&gt; &quot;C:Dolby PCEE4pcee4.exe&quot; -autostart\nMSCONFIGstartupreg: EEventManager =&gt; &quot;C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe&quot;\nMSCONFIGstartupreg: HotKeysCmds =&gt; &quot;C:Windowssystem32hkcmd.exe&quot;\nMSCONFIGstartupreg: IgfxTray =&gt; &quot;C:Windowssystem32igfxtray.exe&quot;\nMSCONFIGstartupreg: KeePass 2 PreLoad =&gt; &quot;C:Program Files (x86)KeePass Password Safe 2KeePass.exe&quot; &#8211;preload\nMSCONFIGstartupreg: LManager =&gt; C:Program Files (x86)Launch ManagerLManager.exe\nMSCONFIGstartupreg: mobilegeni daemon =&gt; C:Program Files (x86)MobogenieDaemonProcess.exe\nMSCONFIGstartupreg: NUSB3MON =&gt; &quot;C:Program Files (x86)Renesas ElectronicsUSB 3.0 Host Controller DriverApplicationnusb3mon.exe&quot;\nMSCONFIGstartupreg: OOTag =&gt; C:Program Files (x86)AcerOOBEOfferootag.exe\nMSCONFIGstartupreg: Persistence =&gt; &quot;C:Windowssystem32igfxpers.exe&quot;\nMSCONFIGstartupreg: Power Management =&gt; C:Program FilesAcerAcer ePower ManagementePowerTray.exe\nMSCONFIGstartupreg: QuickTime Task =&gt; &quot;C:Program Files (x86)QuickTimeQTTask.exe&quot; -atboottime\nMSCONFIGstartupreg: Redirector =&gt; &quot;C:Program Files (x86)CitrixICA Clientredirector.exe&quot; /startup\nMSCONFIGstartupreg: RtHDVBg_Dolby =&gt; C:Program FilesRealtekAudioHDARAVBg64.exe /FORPCEE4 \nMSCONFIGstartupreg: RtHDVCpl =&gt; C:Program FilesRealtekAudioHDARAVCpl64.exe -s\nMSCONFIGstartupreg: Search Protection =&gt; &quot;C:UsersDanieleAppDataRoamingSearch ProtectionSP.EXE&quot; /autostart\nMSCONFIGstartupreg: Skype =&gt; &quot;C:Program Files (x86)SkypePhoneSkype.exe&quot; /minimized /regrun\nMSCONFIGstartupreg: SunJavaUpdateSched =&gt; C:Program Files (x86)Common FilesJavaJava Updatejusched.exe\nMSCONFIGstartupreg: SynTPEnh =&gt; %ProgramFiles%SynapticsSynTPSynTPEnh.exe</p>"},{"id":"text-72","type":"text","heading":"","plain_text":"==================== FirewallRules (Whitelisted) ================","html":"<p>==================== FirewallRules (Whitelisted) ================</p>"},{"id":"text-73","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)</p>"},{"id":"text-74","type":"text","heading":"","plain_text":"FirewallRules: [BB9D900C-0431-418E-8C0A-C231DDCD4601] =&gt; (Allow) C:Program Files (x86)Windows LiveContactswlcomm.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [32049F24-47B1-4DD3-8444-C00D6AD61B16] =&gt; (Allow) LPort=2869\nFirewallRules: [F75F9F29-02E8-4A68-8A28-54916E467F3D] =&gt; (Allow) LPort=1900\nFirewallRules: [C356995C-A188-4CAC-A71A-7AA95365C06B] =&gt; (Allow) C:Program Files (x86)Windows LiveMessengermsnmsgr.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [F27A6AD3-BABD-4E5E-9C93-AE69FEE085E1] =&gt; (Allow) C:Program Files (x86)Windows LiveMeshMOE.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [BC8F2982-4766-4CA9-8568-4DD9325B8D8B] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPclear.fi.exe (CyberLink -&gt; Acer Incorporated)\nFirewallRules: [D0884557-C872-4F28-B425-11EA38071BAA] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPclear.fiAgent.exe (CyberLink -&gt; CyberLink Corp.)\nFirewallRules: [DED69C15-FD73-47F1-9AE7-AA1E07B1AA5F] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelCLMLCLMLSvc.exe (CyberLink -&gt; CyberLink Corp.)\nFirewallRules: [7053E4E1-5D04-4B5F-B765-30CC150AB5F0] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [CD57FF54-0544-444F-8A7C-F432B4AF1F13] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [E10AD824-55A4-4C5E-AFDC-3278CEC762AF] =&gt; (Block) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [A6B0B15B-42D5-4D85-B90A-F0312F1B958D] =&gt; (Allow) Conquer_v5721_P2P.exe No File\nFirewallRules: [TCP Query User5AE4B2B1-9F23-4BE2-B1CB-D68B83804AB3D:giochidiablo iiidiablo iiidiablo iii.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiidiablo iii.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [UDP Query UserD67346DB-E26C-48B9-82CF-217414001078D:giochidiablo iiidiablo iiidiablo iii.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiidiablo iii.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [0A3A4784-CDE8-4892-BAB0-0DDA97B44F36] =&gt; (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [EF78F40A-C8F9-45E4-91A3-FB22A2D9B090] =&gt; (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [3A4F95A8-CD4C-461E-8981-11EB54AE03F9] =&gt; (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [FEF7E85F-3029-4D61-8862-75BA9506CC73] =&gt; (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [74DB4201-A73A-48B2-AA3A-148CF51349C0] =&gt; (Allow) C:Program Files (x86)Common FilesAppleApple Application SupportWebKit2WebProcess.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [F87F2B4A-34AD-488A-A071-7849FC87729E] =&gt; (Allow) C:UsersDanieleAppDataRoaminguTorrentuTorrent.exe No File\nFirewallRules: [AB0C7AF1-9475-46B2-B111-A13144F9DDFD] =&gt; (Allow) C:UsersDanieleAppDataRoaminguTorrentuTorrent.exe No File\nFirewallRules: [6EF13497-1121-43C7-97C4-E2ED9E9E244D] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [612ED1D8-238A-4C46-A5D8-9F246018E22C] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [44E21BC9-991E-4012-8574-7C0E44EC3586] =&gt; (Allow) C:Program Files (x86)Battle.netBattle.net.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [FECBDB91-560D-4666-8565-E4E38DDA498C] =&gt; (Allow) C:Program Files (x86)Battle.netBattle.net.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [A2A5A7DD-A5F7-4DE8-824D-B5DC0DF5E263] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2737Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [6E042EB7-3751-4658-B76C-F8D665685522] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2737Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [26535086-916B-4D18-8166-4D2AC4036B93] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2753Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [56CDE0D0-F4BD-41E6-99EC-9AD17421D43A] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2753Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [DFBCBBF2-C3D0-4D12-B7FB-BE8097FDD79A] =&gt; (Allow) C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nFirewallRules: [51A92662-05B7-40E3-AC9B-4361F8756831] =&gt; (Allow) C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nFirewallRules: [C20EF2D3-73B1-459D-A216-C18E161A05F1] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [CF196B10-406C-4903-BA69-031AFBF448F2] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [CB0FE2A1-EB29-4664-BEBA-B86716D7194F] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [22CE7CBF-D8FF-4D70-AAFE-28B08ED0B355] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [TCP Query User178CF2A2-0D4F-4104-9731-24DA106BAC23C:program files (x86)mozilla firefoxfirefox.exe] =&gt; (Block) C:program files (x86)mozilla firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [UDP Query User8B73733E-A519-4359-92DA-1F88A0CDFCE8C:program files (x86)mozilla firefoxfirefox.exe] =&gt; (Block) C:program files (x86)mozilla firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [TCP Query User68CA8A72-B440-4885-A5CB-5C3B7303437EC:program files (x86)kodikodi.exe] =&gt; (Allow) C:program files (x86)kodikodi.exe (XBMC-Foundation) [File not signed]\nFirewallRules: [UDP Query User1F56C585-CDCB-435D-989C-3898A06D6B82C:program files (x86)kodikodi.exe] =&gt; (Allow) C:program files (x86)kodikodi.exe (XBMC-Foundation) [File not signed]\nFirewallRules: [49ADE3C6-B596-4EEC-BF05-A44B6D162148] =&gt; (Allow) C:Program Files (x86)Steambinsteamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [F29CF4BD-B1DF-4AAB-BFF1-78A2BF5998AE] =&gt; (Allow) C:Program Files (x86)Steambinsteamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [6EBBDC91-6891-435A-906C-B0373AE1C0C8] =&gt; (Allow) C:Program Files (x86)SteamSteamAppscommonSoccer ManagerSoccer Manager.exe () [File not signed]\nFirewallRules: [6CF1FE33-D73B-40A5-A924-ADC0D7D2AF5A] =&gt; (Allow) C:Program Files (x86)SteamSteamAppscommonSoccer ManagerSoccer Manager.exe () [File not signed]\nFirewallRules: [TCP Query User9C70BED5-17C9-4370-9B0F-126357FA2B45C:usersdanieleappdatalocalskypepluginpluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalskypepluginpluginhost.exe (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFirewallRules: [UDP Query UserCE2FDCBA-9FE0-4053-A207-1322E0F9C691C:usersdanieleappdatalocalskypepluginpluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalskypepluginpluginhost.exe (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFirewallRules: [E4A4A8EA-DBCC-43D1-BD93-562C96AB0935] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [D52DCD90-6B49-49C0-97EF-D987E1868BFA] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [FCDE241B-E22A-4166-A8DC-48695BE935D6] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe No File\nFirewallRules: [1DDA64DE-761F-40CC-9EA7-851DC33D0D83] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe No File\nFirewallRules: [TCP Query UserB3EAE4A3-48B3-4441-87D3-093BFDF490CDC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Allow) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [UDP Query User87E5D06C-0B72-435E-9416-10CA4CDC044AC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Allow) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [TCP Query User9DF0C516-812D-4B45-829B-44126C8F1B20C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [UDP Query UserB72E6E6F-F7D0-4B79-815B-A8C55347E36FC:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [TCP Query UserA0034E0B-97DD-46E8-823A-62E0703F0ADAC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Block) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [UDP Query User9ADD0A8D-6055-4CB1-BA9F-4020B6706570C:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Block) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [09E47FEF-1759-43B4-9795-E9315C90A01D] =&gt; (Allow) C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [9E3142C6-90FB-4855-8FF1-FCBE114EEF4D] =&gt; (Allow) C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [9FB0505C-59D4-4113-91C5-9FBFAB217F6D] =&gt; (Allow) C:Program Files (x86)EPSON SoftwareECPrinterSetupENPApp.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [3A64D786-1F89-4801-BD77-C585A80CBFB7] =&gt; (Allow) C:Program Files (x86)EPSON SoftwareECPrinterSetupENPApp.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [TCP Query User74F6835B-AE6B-4AB9-8FCC-4459350C6570D:giochihearthstonehearthstone.exe] =&gt; (Block) D:giochihearthstonehearthstone.exe (Blizzard Entertainment, Inc. -&gt; )\nFirewallRules: [UDP Query User58AED474-9009-46A6-9923-0206B015380FD:giochihearthstonehearthstone.exe] =&gt; (Block) D:giochihearthstonehearthstone.exe (Blizzard Entertainment, Inc. -&gt; )\nFirewallRules: [VirtualPC-In-UDP-1] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [VirtualPC-In-UDP-2] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [VirtualPC-In-TCP-1] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [2DBC1507-3D9F-4958-9F7E-83595D81F016] =&gt; (Allow) D:GiochiDOTA 2steamappscommonEador. Masters of the Broken Worldlauncher.exe () [File not signed]\nFirewallRules: [B9026BBA-84DB-4400-8E1E-ABD5059117CD] =&gt; (Allow) D:GiochiDOTA 2steamappscommonEador. Masters of the Broken Worldlauncher.exe () [File not signed]\nFirewallRules: [428E48D4-A2FC-4E38-93F0-D015DED2CEA0] =&gt; (Allow) D:GiochiDOTA 2steamappscommondota 2 betagamebinwin64dota2.exe (Valve -&gt; )\nFirewallRules: [74C303B6-F2E8-4BC6-853F-EFD5FBE1535B] =&gt; (Allow) D:GiochiDOTA 2steamappscommondota 2 betagamebinwin64dota2.exe (Valve -&gt; )\nFirewallRules: [8D39FFFC-D3F3-40B7-9A83-559EF34F746B] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [9C0BC1AD-D865-48A0-A410-D2A72E9067A0] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [E4732CBC-C606-4D23-B4BE-4EF941892D2A] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [3C1769FE-7F73-40CD-8694-9D94EB5A4C73] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [EDDA200D-3307-4268-BF74-2A6B8C5850FE] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [5AC4F2B2-78FE-4312-94CF-D9BD16700FE6] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [7FFE0A82-6CE9-4263-BCEA-12BA88FC5AD1] =&gt; (Allow) C:Program FilesBlueStacksHD-Player.exe No File\nFirewallRules: [71D0935A-3DC4-46A8-B5EC-DC69E44DE995] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [734F2907-15A9-4964-9A4B-6AF63CB588B4] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [575D6C1F-8E4F-481C-AF65-601DDDA498A1] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LINE.exe No File\nFirewallRules: [891ABF3F-4987-4BF6-894D-804B5BC60153] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LINE.exe No File\nFirewallRules: [42FF3F30-8B2A-42B0-9BC0-F6C7BACF9258] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LineUpdater.exe No File\nFirewallRules: [F38971E4-A0A7-44DB-8A1C-8450D8A685C3] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LineUpdater.exe No File\nFirewallRules: [TCP Query UserCC8480C0-2941-4E9D-8A52-47822F0D9776D:giochidiablo iiidiablo iiix64diablo iii64.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiix64diablo iii64.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [UDP Query UserF6C4F938-A1A8-4668-AB2C-03AC5CE15700D:giochidiablo iiidiablo iiix64diablo iii64.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiix64diablo iii64.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [TCP Query User163F9996-F652-4769-9BAC-80C531683DA9C:program filesdnplayerext2ldboxheadless.exe] =&gt; (Allow) C:program filesdnplayerext2ldboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [UDP Query User3343FBF2-B1FF-4C62-B5FF-D8C3A6E8EC98C:program filesdnplayerext2ldboxheadless.exe] =&gt; (Allow) C:program filesdnplayerext2ldboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [6A971D92-619D-4131-AB0C-0BC7C492C4D5] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [9947C36A-3F76-4596-90D5-7062A53E9C53] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [TCP Query User71DD669E-F8F9-4657-9480-12045D0A9A65C:program filesldplayerboxldvboxheadless.exe] =&gt; (Allow) C:program filesldplayerboxldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [UDP Query User5C9DDDCA-3F20-4505-8FE1-74593EBD6931C:program filesldplayerboxldvboxheadless.exe] =&gt; (Allow) C:program filesldplayerboxldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [170B5594-146D-4B85-9BB4-3EF53938E732] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [37535782-EEB9-4AD5-82AB-95BDA7C0B007] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [F8CACE39-A536-471F-89EC-F6BA460694F0] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [472F5DAF-CF00-417C-AB83-604384991CE5] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [8070CE88-1B4C-434E-8495-B0F0C8C82972] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [22DBF4E8-86F2-44C0-9BE2-40F28D8B56AF] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [06240932-630C-46AA-8C14-877D0EA3938A] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [CC3EB70E-EEAD-4622-8480-E3C7771BF25C] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [E59453FF-C79A-4D0D-A485-D3FE8B274B54] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [0A829F94-700F-4835-8284-7B28614D717B] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [79FB848F-BBE9-42DA-8170-285A6C0060C8] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [456EF3E4-BE52-4A9A-8CA8-06554B75D800] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [B06D86D3-3848-4734-944F-5706BE664234] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [F0855DE7-46B2-4581-BFC1-2A4EB0D47355] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [8009BD78-17DA-44F1-95AA-5E9EC7724E77] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [73B5CCA2-1DFB-417E-88E2-0DAE1645F388] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [41C0109E-C969-40D1-AEDA-28C4B17EF631] =&gt; (Allow) D:GiochiDOTA 2steamappscommonPillars of EternityPillarsOfEternity.exe (Obsidian Entertainment) [File not signed]\nFirewallRules: [0A52AC62-C826-437E-BCE1-C1902CBE00BE] =&gt; (Allow) D:GiochiDOTA 2steamappscommonPillars of EternityPillarsOfEternity.exe (Obsidian Entertainment) [File not signed]\nFirewallRules: [374A4772-2595-4C7A-9E1D-A1692E687887] =&gt; (Allow) D:GiochiDOTA 2steamappscommonCounter-Strike Global Offensivecsgo.exe (Valve -&gt; )\nFirewallRules: [55E824ED-7014-48A7-8DAA-0C8717A6913C] =&gt; (Allow) D:GiochiDOTA 2steamappscommonCounter-Strike Global Offensivecsgo.exe (Valve -&gt; )\nFirewallRules: [E3CDA667-4963-4012-8775-68F6023DADD5] =&gt; (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -&gt; Google LLC)\nFirewallRules: [BB40FF31-6239-422E-8074-B6A9E2DC0D95] =&gt; (Block) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nFirewallRules: [0645C731-0335-4950-9427-213A6DA9E558] =&gt; (Allow) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nFirewallRules: [CDB7F1B2-0F67-4210-9A69-DF18B049D9CE] =&gt; (Allow) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)","html":"<p>FirewallRules: [BB9D900C-0431-418E-8C0A-C231DDCD4601] =&gt; (Allow) C:Program Files (x86)Windows LiveContactswlcomm.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [32049F24-47B1-4DD3-8444-C00D6AD61B16] =&gt; (Allow) LPort=2869\nFirewallRules: [F75F9F29-02E8-4A68-8A28-54916E467F3D] =&gt; (Allow) LPort=1900\nFirewallRules: [C356995C-A188-4CAC-A71A-7AA95365C06B] =&gt; (Allow) C:Program Files (x86)Windows LiveMessengermsnmsgr.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [F27A6AD3-BABD-4E5E-9C93-AE69FEE085E1] =&gt; (Allow) C:Program Files (x86)Windows LiveMeshMOE.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [BC8F2982-4766-4CA9-8568-4DD9325B8D8B] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPclear.fi.exe (CyberLink -&gt; Acer Incorporated)\nFirewallRules: [D0884557-C872-4F28-B425-11EA38071BAA] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPclear.fiAgent.exe (CyberLink -&gt; CyberLink Corp.)\nFirewallRules: [DED69C15-FD73-47F1-9AE7-AA1E07B1AA5F] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelCLMLCLMLSvc.exe (CyberLink -&gt; CyberLink Corp.)\nFirewallRules: [7053E4E1-5D04-4B5F-B765-30CC150AB5F0] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [CD57FF54-0544-444F-8A7C-F432B4AF1F13] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [E10AD824-55A4-4C5E-AFDC-3278CEC762AF] =&gt; (Block) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [A6B0B15B-42D5-4D85-B90A-F0312F1B958D] =&gt; (Allow) Conquer_v5721_P2P.exe No File\nFirewallRules: [TCP Query User5AE4B2B1-9F23-4BE2-B1CB-D68B83804AB3D:giochidiablo iiidiablo iiidiablo iii.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiidiablo iii.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [UDP Query UserD67346DB-E26C-48B9-82CF-217414001078D:giochidiablo iiidiablo iiidiablo iii.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiidiablo iii.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [0A3A4784-CDE8-4892-BAB0-0DDA97B44F36] =&gt; (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [EF78F40A-C8F9-45E4-91A3-FB22A2D9B090] =&gt; (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [3A4F95A8-CD4C-461E-8981-11EB54AE03F9] =&gt; (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [FEF7E85F-3029-4D61-8862-75BA9506CC73] =&gt; (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [74DB4201-A73A-48B2-AA3A-148CF51349C0] =&gt; (Allow) C:Program Files (x86)Common FilesAppleApple Application SupportWebKit2WebProcess.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [F87F2B4A-34AD-488A-A071-7849FC87729E] =&gt; (Allow) C:UsersDanieleAppDataRoaminguTorrentuTorrent.exe No File\nFirewallRules: [AB0C7AF1-9475-46B2-B111-A13144F9DDFD] =&gt; (Allow) C:UsersDanieleAppDataRoaminguTorrentuTorrent.exe No File\nFirewallRules: [6EF13497-1121-43C7-97C4-E2ED9E9E244D] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [612ED1D8-238A-4C46-A5D8-9F246018E22C] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [44E21BC9-991E-4012-8574-7C0E44EC3586] =&gt; (Allow) C:Program Files (x86)Battle.netBattle.net.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [FECBDB91-560D-4666-8565-E4E38DDA498C] =&gt; (Allow) C:Program Files (x86)Battle.netBattle.net.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [A2A5A7DD-A5F7-4DE8-824D-B5DC0DF5E263] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2737Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [6E042EB7-3751-4658-B76C-F8D665685522] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2737Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [26535086-916B-4D18-8166-4D2AC4036B93] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2753Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [56CDE0D0-F4BD-41E6-99EC-9AD17421D43A] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2753Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [DFBCBBF2-C3D0-4D12-B7FB-BE8097FDD79A] =&gt; (Allow) C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nFirewallRules: [51A92662-05B7-40E3-AC9B-4361F8756831] =&gt; (Allow) C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nFirewallRules: [C20EF2D3-73B1-459D-A216-C18E161A05F1] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [CF196B10-406C-4903-BA69-031AFBF448F2] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [CB0FE2A1-EB29-4664-BEBA-B86716D7194F] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [22CE7CBF-D8FF-4D70-AAFE-28B08ED0B355] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [TCP Query User178CF2A2-0D4F-4104-9731-24DA106BAC23C:program files (x86)mozilla firefoxfirefox.exe] =&gt; (Block) C:program files (x86)mozilla firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [UDP Query User8B73733E-A519-4359-92DA-1F88A0CDFCE8C:program files (x86)mozilla firefoxfirefox.exe] =&gt; (Block) C:program files (x86)mozilla firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [TCP Query User68CA8A72-B440-4885-A5CB-5C3B7303437EC:program files (x86)kodikodi.exe] =&gt; (Allow) C:program files (x86)kodikodi.exe (XBMC-Foundation) [File not signed]\nFirewallRules: [UDP Query User1F56C585-CDCB-435D-989C-3898A06D6B82C:program files (x86)kodikodi.exe] =&gt; (Allow) C:program files (x86)kodikodi.exe (XBMC-Foundation) [File not signed]\nFirewallRules: [49ADE3C6-B596-4EEC-BF05-A44B6D162148] =&gt; (Allow) C:Program Files (x86)Steambinsteamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [F29CF4BD-B1DF-4AAB-BFF1-78A2BF5998AE] =&gt; (Allow) C:Program Files (x86)Steambinsteamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [6EBBDC91-6891-435A-906C-B0373AE1C0C8] =&gt; (Allow) C:Program Files (x86)SteamSteamAppscommonSoccer ManagerSoccer Manager.exe () [File not signed]\nFirewallRules: [6CF1FE33-D73B-40A5-A924-ADC0D7D2AF5A] =&gt; (Allow) C:Program Files (x86)SteamSteamAppscommonSoccer ManagerSoccer Manager.exe () [File not signed]\nFirewallRules: [TCP Query User9C70BED5-17C9-4370-9B0F-126357FA2B45C:usersdanieleappdatalocalskypepluginpluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalskypepluginpluginhost.exe (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFirewallRules: [UDP Query UserCE2FDCBA-9FE0-4053-A207-1322E0F9C691C:usersdanieleappdatalocalskypepluginpluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalskypepluginpluginhost.exe (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFirewallRules: [E4A4A8EA-DBCC-43D1-BD93-562C96AB0935] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [D52DCD90-6B49-49C0-97EF-D987E1868BFA] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [FCDE241B-E22A-4166-A8DC-48695BE935D6] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe No File\nFirewallRules: [1DDA64DE-761F-40CC-9EA7-851DC33D0D83] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe No File\nFirewallRules: [TCP Query UserB3EAE4A3-48B3-4441-87D3-093BFDF490CDC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Allow) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [UDP Query User87E5D06C-0B72-435E-9416-10CA4CDC044AC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Allow) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [TCP Query User9DF0C516-812D-4B45-829B-44126C8F1B20C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [UDP Query UserB72E6E6F-F7D0-4B79-815B-A8C55347E36FC:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [TCP Query UserA0034E0B-97DD-46E8-823A-62E0703F0ADAC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Block) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [UDP Query User9ADD0A8D-6055-4CB1-BA9F-4020B6706570C:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Block) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [09E47FEF-1759-43B4-9795-E9315C90A01D] =&gt; (Allow) C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [9E3142C6-90FB-4855-8FF1-FCBE114EEF4D] =&gt; (Allow) C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [9FB0505C-59D4-4113-91C5-9FBFAB217F6D] =&gt; (Allow) C:Program Files (x86)EPSON SoftwareECPrinterSetupENPApp.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [3A64D786-1F89-4801-BD77-C585A80CBFB7] =&gt; (Allow) C:Program Files (x86)EPSON SoftwareECPrinterSetupENPApp.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [TCP Query User74F6835B-AE6B-4AB9-8FCC-4459350C6570D:giochihearthstonehearthstone.exe] =&gt; (Block) D:giochihearthstonehearthstone.exe (Blizzard Entertainment, Inc. -&gt; )\nFirewallRules: [UDP Query User58AED474-9009-46A6-9923-0206B015380FD:giochihearthstonehearthstone.exe] =&gt; (Block) D:giochihearthstonehearthstone.exe (Blizzard Entertainment, Inc. -&gt; )\nFirewallRules: [VirtualPC-In-UDP-1] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [VirtualPC-In-UDP-2] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [VirtualPC-In-TCP-1] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [2DBC1507-3D9F-4958-9F7E-83595D81F016] =&gt; (Allow) D:GiochiDOTA 2steamappscommonEador. Masters of the Broken Worldlauncher.exe () [File not signed]\nFirewallRules: [B9026BBA-84DB-4400-8E1E-ABD5059117CD] =&gt; (Allow) D:GiochiDOTA 2steamappscommonEador. Masters of the Broken Worldlauncher.exe () [File not signed]\nFirewallRules: [428E48D4-A2FC-4E38-93F0-D015DED2CEA0] =&gt; (Allow) D:GiochiDOTA 2steamappscommondota 2 betagamebinwin64dota2.exe (Valve -&gt; )\nFirewallRules: [74C303B6-F2E8-4BC6-853F-EFD5FBE1535B] =&gt; (Allow) D:GiochiDOTA 2steamappscommondota 2 betagamebinwin64dota2.exe (Valve -&gt; )\nFirewallRules: [8D39FFFC-D3F3-40B7-9A83-559EF34F746B] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [9C0BC1AD-D865-48A0-A410-D2A72E9067A0] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [E4732CBC-C606-4D23-B4BE-4EF941892D2A] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [3C1769FE-7F73-40CD-8694-9D94EB5A4C73] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [EDDA200D-3307-4268-BF74-2A6B8C5850FE] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [5AC4F2B2-78FE-4312-94CF-D9BD16700FE6] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [7FFE0A82-6CE9-4263-BCEA-12BA88FC5AD1] =&gt; (Allow) C:Program FilesBlueStacksHD-Player.exe No File\nFirewallRules: [71D0935A-3DC4-46A8-B5EC-DC69E44DE995] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [734F2907-15A9-4964-9A4B-6AF63CB588B4] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [575D6C1F-8E4F-481C-AF65-601DDDA498A1] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LINE.exe No File\nFirewallRules: [891ABF3F-4987-4BF6-894D-804B5BC60153] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LINE.exe No File\nFirewallRules: [42FF3F30-8B2A-42B0-9BC0-F6C7BACF9258] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LineUpdater.exe No File\nFirewallRules: [F38971E4-A0A7-44DB-8A1C-8450D8A685C3] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LineUpdater.exe No File\nFirewallRules: [TCP Query UserCC8480C0-2941-4E9D-8A52-47822F0D9776D:giochidiablo iiidiablo iiix64diablo iii64.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiix64diablo iii64.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [UDP Query UserF6C4F938-A1A8-4668-AB2C-03AC5CE15700D:giochidiablo iiidiablo iiix64diablo iii64.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiix64diablo iii64.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [TCP Query User163F9996-F652-4769-9BAC-80C531683DA9C:program filesdnplayerext2ldboxheadless.exe] =&gt; (Allow) C:program filesdnplayerext2ldboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [UDP Query User3343FBF2-B1FF-4C62-B5FF-D8C3A6E8EC98C:program filesdnplayerext2ldboxheadless.exe] =&gt; (Allow) C:program filesdnplayerext2ldboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [6A971D92-619D-4131-AB0C-0BC7C492C4D5] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [9947C36A-3F76-4596-90D5-7062A53E9C53] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [TCP Query User71DD669E-F8F9-4657-9480-12045D0A9A65C:program filesldplayerboxldvboxheadless.exe] =&gt; (Allow) C:program filesldplayerboxldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [UDP Query User5C9DDDCA-3F20-4505-8FE1-74593EBD6931C:program filesldplayerboxldvboxheadless.exe] =&gt; (Allow) C:program filesldplayerboxldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [170B5594-146D-4B85-9BB4-3EF53938E732] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [37535782-EEB9-4AD5-82AB-95BDA7C0B007] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [F8CACE39-A536-471F-89EC-F6BA460694F0] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [472F5DAF-CF00-417C-AB83-604384991CE5] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [8070CE88-1B4C-434E-8495-B0F0C8C82972] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [22DBF4E8-86F2-44C0-9BE2-40F28D8B56AF] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [06240932-630C-46AA-8C14-877D0EA3938A] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [CC3EB70E-EEAD-4622-8480-E3C7771BF25C] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [E59453FF-C79A-4D0D-A485-D3FE8B274B54] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [0A829F94-700F-4835-8284-7B28614D717B] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [79FB848F-BBE9-42DA-8170-285A6C0060C8] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [456EF3E4-BE52-4A9A-8CA8-06554B75D800] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [B06D86D3-3848-4734-944F-5706BE664234] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [F0855DE7-46B2-4581-BFC1-2A4EB0D47355] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [8009BD78-17DA-44F1-95AA-5E9EC7724E77] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [73B5CCA2-1DFB-417E-88E2-0DAE1645F388] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [41C0109E-C969-40D1-AEDA-28C4B17EF631] =&gt; (Allow) D:GiochiDOTA 2steamappscommonPillars of EternityPillarsOfEternity.exe (Obsidian Entertainment) [File not signed]\nFirewallRules: [0A52AC62-C826-437E-BCE1-C1902CBE00BE] =&gt; (Allow) D:GiochiDOTA 2steamappscommonPillars of EternityPillarsOfEternity.exe (Obsidian Entertainment) [File not signed]\nFirewallRules: [374A4772-2595-4C7A-9E1D-A1692E687887] =&gt; (Allow) D:GiochiDOTA 2steamappscommonCounter-Strike Global Offensivecsgo.exe (Valve -&gt; )\nFirewallRules: [55E824ED-7014-48A7-8DAA-0C8717A6913C] =&gt; (Allow) D:GiochiDOTA 2steamappscommonCounter-Strike Global Offensivecsgo.exe (Valve -&gt; )\nFirewallRules: [E3CDA667-4963-4012-8775-68F6023DADD5] =&gt; (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -&gt; Google LLC)\nFirewallRules: [BB40FF31-6239-422E-8074-B6A9E2DC0D95] =&gt; (Block) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nFirewallRules: [0645C731-0335-4950-9427-213A6DA9E558] =&gt; (Allow) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nFirewallRules: [CDB7F1B2-0F67-4210-9A69-DF18B049D9CE] =&gt; (Allow) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)</p>"},{"id":"text-75","type":"text","heading":"","plain_text":"==================== Restore Points =========================","html":"<p>==================== Restore Points =========================</p>"},{"id":"text-76","type":"text","heading":"","plain_text":"18-04-2020 04:24:53 Punto di controllo pianificato\n18-04-2020 22:37:41 Windows Update","html":"<p>18-04-2020 04:24:53 Punto di controllo pianificato\n18-04-2020 22:37:41 Windows Update</p>"},{"id":"text-77","type":"text","heading":"","plain_text":"==================== Faulty Device Manager Devices ============","html":"<p>==================== Faulty Device Manager Devices ============</p>"},{"id":"text-78","type":"text","heading":"","plain_text":"==================== Event log errors: ========================","html":"<p>==================== Event log errors: ========================</p>"},{"id":"text-79","type":"text","heading":"","plain_text":"Application errors:\n==================\nError: (04/19/2020 02:59:14 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x28e4\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d615ee12c7f9a8\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 5dd80d31-81e1-11ea-b4b9-1c7508f37aca","html":"<p>Application errors:\n==================\nError: (04/19/2020 02:59:14 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#039;applicazione che ha generato l&#039;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#039;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#039;errore: 0x28e4\nOra di avvio dell&#039;applicazione che ha generato l&#039;errore: 0x01d615ee12c7f9a8\nPercorso dell&#039;applicazione che ha generato l&#039;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#039;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 5dd80d31-81e1-11ea-b4b9-1c7508f37aca</p>"},{"id":"text-80","type":"text","heading":"","plain_text":"Error: (04/18/2020 02:22:40 PM) (Source: WinMgmt) (EventID: 10) (User: )\nDescription: Impossibile riattivare il filtro eventi con query &quot;SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA &quot;Win32_Processor&quot; AND TargetInstance.LoadPercentage &gt; 99&quot; nello spazio dei nomi &quot;//./root/CIMV2&quot;. Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.","html":"<p>Error: (04/18/2020 02:22:40 PM) (Source: WinMgmt) (EventID: 10) (User: )\nDescription: Impossibile riattivare il filtro eventi con query &quot;SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA &quot;Win32_Processor&quot; AND TargetInstance.LoadPercentage &gt; 99&quot; nello spazio dei nomi &quot;//./root/CIMV2&quot;. Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.</p>"},{"id":"text-81","type":"text","heading":"","plain_text":"Error: (04/18/2020 02:22:32 PM) (Source: Avira Phantom VPN) (EventID: 0) (User: )\nDescription: Service cannot be started. Il processo di servizio non ha potuto connettersi al controller di servizio","html":"<p>Error: (04/18/2020 02:22:32 PM) (Source: Avira Phantom VPN) (EventID: 0) (User: )\nDescription: Service cannot be started. Il processo di servizio non ha potuto connettersi al controller di servizio</p>"},{"id":"text-82","type":"text","heading":"","plain_text":"Error: (04/18/2020 02:58:54 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x13cc\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d61524e890fa87\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 27c684c1-8118-11ea-8822-1c7508f37aca","html":"<p>Error: (04/18/2020 02:58:54 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#039;applicazione che ha generato l&#039;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#039;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#039;errore: 0x13cc\nOra di avvio dell&#039;applicazione che ha generato l&#039;errore: 0x01d61524e890fa87\nPercorso dell&#039;applicazione che ha generato l&#039;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#039;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 27c684c1-8118-11ea-8822-1c7508f37aca</p>"},{"id":"text-83","type":"text","heading":"","plain_text":"Error: (04/17/2020 01:32:33 PM) (Source: WinMgmt) (EventID: 10) (User: )\nDescription: Impossibile riattivare il filtro eventi con query &quot;SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA &quot;Win32_Processor&quot; AND TargetInstance.LoadPercentage &gt; 99&quot; nello spazio dei nomi &quot;//./root/CIMV2&quot;. Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.","html":"<p>Error: (04/17/2020 01:32:33 PM) (Source: WinMgmt) (EventID: 10) (User: )\nDescription: Impossibile riattivare il filtro eventi con query &quot;SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA &quot;Win32_Processor&quot; AND TargetInstance.LoadPercentage &gt; 99&quot; nello spazio dei nomi &quot;//./root/CIMV2&quot;. Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema.</p>"},{"id":"text-84","type":"text","heading":"","plain_text":"Error: (04/17/2020 02:59:07 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x18b0\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d6145bbe2f4581\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 050dfbb3-804f-11ea-ad8b-1c7508f37aca","html":"<p>Error: (04/17/2020 02:59:07 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#039;applicazione che ha generato l&#039;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#039;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#039;errore: 0x18b0\nOra di avvio dell&#039;applicazione che ha generato l&#039;errore: 0x01d6145bbe2f4581\nPercorso dell&#039;applicazione che ha generato l&#039;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#039;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 050dfbb3-804f-11ea-ad8b-1c7508f37aca</p>"},{"id":"text-85","type":"text","heading":"","plain_text":"Error: (04/17/2020 12:36:53 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: MsMpEng.exe, versione: 4.10.209.0, timestamp: 0x582a94a1\nNome del modulo che ha generato l&#39;errore: mpengine.dll, versione: 1.1.16900.4, timestamp: 0x5e70249a\nCodice eccezione: 0xc0000005\nOffset errore 0x00000000001d00cf\nID processo che ha generato l&#39;errore: 0xac\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d60ec33667deaa\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program FilesMicrosoft Security ClientMsMpEng.exe\nPercorso del modulo che ha generato l&#39;errore: C:ProgramDataMicrosoftMicrosoft AntimalwareDefinition UpdatesABFDE23F-10A0-40FD-89BB-EEAFDF90A038mpengine.dll\nID segnalazione: 2686ef91-803b-11ea-ad8b-1c7508f37aca","html":"<p>Error: (04/17/2020 12:36:53 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#039;applicazione che ha generato l&#039;errore: MsMpEng.exe, versione: 4.10.209.0, timestamp: 0x582a94a1\nNome del modulo che ha generato l&#039;errore: mpengine.dll, versione: 1.1.16900.4, timestamp: 0x5e70249a\nCodice eccezione: 0xc0000005\nOffset errore 0x00000000001d00cf\nID processo che ha generato l&#039;errore: 0xac\nOra di avvio dell&#039;applicazione che ha generato l&#039;errore: 0x01d60ec33667deaa\nPercorso dell&#039;applicazione che ha generato l&#039;errore: C:Program FilesMicrosoft Security ClientMsMpEng.exe\nPercorso del modulo che ha generato l&#039;errore: C:ProgramDataMicrosoftMicrosoft AntimalwareDefinition UpdatesABFDE23F-10A0-40FD-89BB-EEAFDF90A038mpengine.dll\nID segnalazione: 2686ef91-803b-11ea-ad8b-1c7508f37aca</p>"},{"id":"text-86","type":"text","heading":"","plain_text":"Error: (04/16/2020 10:25:52 PM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: Il programma Explorer.EXE versione 6.1.7601.23537 non interagisce più con Windows ed è stato chiuso. Per vedere se sono disponibili ulteriori informazioni sul problema, verificare la cronologia del problema in Centro operativo nel Pannello di controllo.","html":"<p>Error: (04/16/2020 10:25:52 PM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: Il programma Explorer.EXE versione 6.1.7601.23537 non interagisce più con Windows ed è stato chiuso. Per vedere se sono disponibili ulteriori informazioni sul problema, verificare la cronologia del problema in Centro operativo nel Pannello di controllo.</p>"},{"id":"text-87","type":"text","heading":"","plain_text":"ID processo: 804","html":"<p>ID processo: 804</p>"},{"id":"text-88","type":"text","heading":"","plain_text":"Ora di avvio: 01d60ec34d82acc2","html":"<p>Ora di avvio: 01d60ec34d82acc2</p>"},{"id":"text-89","type":"text","heading":"","plain_text":"Ora di chiusura: 0","html":"<p>Ora di chiusura: 0</p>"},{"id":"text-90","type":"text","heading":"","plain_text":"Percorso applicazione: C:WindowsExplorer.EXE","html":"<p>Percorso applicazione: C:WindowsExplorer.EXE</p>"},{"id":"text-91","type":"text","heading":"","plain_text":"ID segnalazione: cb278b7b-8028-11ea-ad8b-1c7508f37aca","html":"<p>ID segnalazione: cb278b7b-8028-11ea-ad8b-1c7508f37aca</p>"},{"id":"text-92","type":"text","heading":"","plain_text":"System errors:\n=============\nError: (04/18/2020 02:23:26 PM) (Source: Service Control Manager) (EventID: 7031) (User: )\nDescription: Il servizio Avira Phantom VPN è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 5000 millisecondi: Riavvia il servizio.","html":"<p>System errors:\n=============\nError: (04/18/2020 02:23:26 PM) (Source: Service Control Manager) (EventID: 7031) (User: )\nDescription: Il servizio Avira Phantom VPN è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 5000 millisecondi: Riavvia il servizio.</p>"},{"id":"text-93","type":"text","heading":"","plain_text":"Error: (04/17/2020 12:40:19 AM) (Source: Microsoft Antimalware) (EventID: 3002) (User: )\nDescription: La funzionalità di protezione in tempo reale di Antimalware Microsoft ha rilevato un errore e non è riuscita.","html":"<p>Error: (04/17/2020 12:40:19 AM) (Source: Microsoft Antimalware) (EventID: 3002) (User: )\nDescription: La funzionalità di protezione in tempo reale di Antimalware Microsoft ha rilevato un errore e non è riuscita.</p>"},{"id":"text-94","type":"text","heading":"","plain_text":"Funzionalità: Network Inspection System","html":"<p>Funzionalità: Network Inspection System</p>"},{"id":"text-95","type":"text","heading":"","plain_text":"Codice errore: 0x80070002","html":"<p>Codice errore: 0x80070002</p>"},{"id":"text-96","type":"text","heading":"","plain_text":"Descrizione errore: Impossibile trovare il file specificato.","html":"<p>Descrizione errore: Impossibile trovare il file specificato.</p>"},{"id":"text-97","type":"text","heading":"","plain_text":"Motivo: Nel sistema mancano degli aggiornamenti necessari per l&#39;esecuzione di Network Inspection System. Installare gli aggiornamenti necessari e riavviare il computer.","html":"<p>Motivo: Nel sistema mancano degli aggiornamenti necessari per l&#039;esecuzione di Network Inspection System. Installare gli aggiornamenti necessari e riavviare il computer.</p>"},{"id":"text-98","type":"text","heading":"","plain_text":"Error: (04/17/2020 12:38:27 AM) (Source: Service Control Manager) (EventID: 7031) (User: )\nDescription: Il servizio Microsoft Antimalware Service è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 100 millisecondi: Esegui il programma di ripristino configurato.","html":"<p>Error: (04/17/2020 12:38:27 AM) (Source: Service Control Manager) (EventID: 7031) (User: )\nDescription: Il servizio Microsoft Antimalware Service è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 100 millisecondi: Esegui il programma di ripristino configurato.</p>"},{"id":"text-99","type":"text","heading":"","plain_text":"Error: (04/17/2020 12:36:50 AM) (Source: Microsoft Antimalware) (EventID: 5008) (User: )\nDescription: Il motore Antimalware Microsoft è stato interrotto a causa di un errore imprevisto.","html":"<p>Error: (04/17/2020 12:36:50 AM) (Source: Microsoft Antimalware) (EventID: 5008) (User: )\nDescription: Il motore Antimalware Microsoft è stato interrotto a causa di un errore imprevisto.</p>"},{"id":"text-100","type":"text","heading":"","plain_text":"Tipo errore: Arresto anomalo","html":"<p>Tipo errore: Arresto anomalo</p>"},{"id":"text-101","type":"text","heading":"","plain_text":"Codice eccezione: 0xc0000005","html":"<p>Codice eccezione: 0xc0000005</p>"},{"id":"text-102","type":"text","heading":"","plain_text":"Risorsa: file:C:UsersDanieleDownloadsSample GESE Grade 5 Topic form_completed..pdf","html":"<p>Risorsa: file:C:UsersDanieleDownloadsSample GESE Grade 5 Topic form_completed..pdf</p>"},{"id":"text-103","type":"text","heading":"","plain_text":"Error: (04/16/2020 11:28:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 40.","html":"<p>Error: (04/16/2020 11:28:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 40.</p>"},{"id":"text-104","type":"text","heading":"","plain_text":"Error: (04/16/2020 11:28:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 70.","html":"<p>Error: (04/16/2020 11:28:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 70.</p>"},{"id":"text-105","type":"text","heading":"","plain_text":"Error: (04/16/2020 10:18:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 40.","html":"<p>Error: (04/16/2020 10:18:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 40.</p>"},{"id":"text-106","type":"text","heading":"","plain_text":"Error: (04/16/2020 10:18:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 70.","html":"<p>Error: (04/16/2020 10:18:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 70.</p>"},{"id":"text-107","type":"text","heading":"","plain_text":"Windows Defender:\n===================================\nDate: 2016-06-22 23:31:54.534\nLa description: \nWindows Defender: errore durante il tentativo di caricare le firme. Verrà tentato di ripristinare un set di firme valido.\nFirme tentate:Corrente\nCodice errore:0x80070002\nDescrizione errore:Impossibile trovare il file specificato. \nVersione firma:0.0.0.0\nVersione modulo:0.0.0.0","html":"<p>Windows Defender:\n===================================\nDate: 2016-06-22 23:31:54.534\nLa description: \nWindows Defender: errore durante il tentativo di caricare le firme. Verrà tentato di ripristinare un set di firme valido.\nFirme tentate:Corrente\nCodice errore:0x80070002\nDescrizione errore:Impossibile trovare il file specificato. \nVersione firma:0.0.0.0\nVersione modulo:0.0.0.0</p>"},{"id":"text-108","type":"text","heading":"","plain_text":"==================== Memory info ===========================","html":"<p>==================== Memory info ===========================</p>"},{"id":"text-109","type":"text","heading":"","plain_text":"BIOS: Acer V1.07 03/02/2011\nMotherboard: Acer JE50_HR\nProcessor: Intel® Core™ i5-2410M CPU @ 2.30GHz\nPercentage of memory in use: 92%\nTotal physical RAM: 8043.86 MB\nAvailable physical RAM: 633.23 MB\nTotal Virtual: 24426 MB\nAvailable Virtual: 15554.41 MB","html":"<p>BIOS: Acer V1.07 03/02/2011\nMotherboard: Acer JE50_HR\nProcessor: Intel® Core™ i5-2410M CPU @ 2.30GHz\nPercentage of memory in use: 92%\nTotal physical RAM: 8043.86 MB\nAvailable physical RAM: 633.23 MB\nTotal Virtual: 24426 MB\nAvailable Virtual: 15554.41 MB</p>"},{"id":"text-110","type":"text","heading":"","plain_text":"==================== Drives ================================","html":"<p>==================== Drives ================================</p>"},{"id":"text-111","type":"text","heading":"","plain_text":"Drive c: (Acer) (Fixed) (Total:290.05 GB) (Free:130.96 GB) NTFS\nDrive d: (DATA) (Fixed) (Total:290.4 GB) (Free:143.46 GB) NTFS\nDrive e: (Misc) (CDROM) (Total:0.69 GB) (Free:0.13 GB) UDF\nDrive g: () (Removable) (Total:29.27 GB) (Free:1.17 GB) FAT32","html":"<p>Drive c: (Acer) (Fixed) (Total:290.05 GB) (Free:130.96 GB) NTFS\nDrive d: (DATA) (Fixed) (Total:290.4 GB) (Free:143.46 GB) NTFS\nDrive e: (Misc) (CDROM) (Total:0.69 GB) (Free:0.13 GB) UDF\nDrive g: () (Removable) (Total:29.27 GB) (Free:1.17 GB) FAT32</p>"},{"id":"text-112","type":"text","heading":"","plain_text":"\\?Volume283c1efb-a59f-11e2-b4d5-806e6f6e6963 (SYSTEM RESERVED) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS\n\\?Volume283c1efa-a59f-11e2-b4d5-806e6f6e6963 (PQSERVICE) (Fixed) (Total:15.62 GB) (Free:2.53 GB) NTFS","html":"<p>\\?Volume283c1efb-a59f-11e2-b4d5-806e6f6e6963 (SYSTEM RESERVED) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS\n\\?Volume283c1efa-a59f-11e2-b4d5-806e6f6e6963 (PQSERVICE) (Fixed) (Total:15.62 GB) (Free:2.53 GB) NTFS</p>"},{"id":"text-113","type":"text","heading":"","plain_text":"==================== MBR &amp; Partition Table ====================","html":"<p>==================== MBR &amp; Partition Table ====================</p>"},{"id":"text-114","type":"text","heading":"","plain_text":"==========================================================\nDisk: 0 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: BD414BA4)\nPartition 1: (Not Active) &#8211; (Size=15.6 GB) &#8211; (Type=27)\nPartition 2: (Active) &#8211; (Size=100 MB) &#8211; (Type=07 NTFS)\nPartition 3: (Not Active) &#8211; (Size=290.1 GB) &#8211; (Type=07 NTFS)\nPartition 4: (Not Active) &#8211; (Size=290.4 GB) &#8211; (Type=07 NTFS)","html":"<p>==========================================================\nDisk: 0 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: BD414BA4)\nPartition 1: (Not Active) &#8211; (Size=15.6 GB) &#8211; (Type=27)\nPartition 2: (Active) &#8211; (Size=100 MB) &#8211; (Type=07 NTFS)\nPartition 3: (Not Active) &#8211; (Size=290.1 GB) &#8211; (Type=07 NTFS)\nPartition 4: (Not Active) &#8211; (Size=290.4 GB) &#8211; (Type=07 NTFS)</p>"},{"id":"text-115","type":"text","heading":"","plain_text":"==========================================================\nDisk: 1 (Protective MBR) (Size: 29.3 GB) (Disk ID: 00000000)","html":"<p>==========================================================\nDisk: 1 (Protective MBR) (Size: 29.3 GB) (Disk ID: 00000000)</p>"},{"id":"text-116","type":"text","heading":"","plain_text":"Partition: GPT.","html":"<p>Partition: GPT.</p>"},{"id":"text-117","type":"text","heading":"","plain_text":"==================== End of Addition.txt =======================","html":"<p>==================== End of Addition.txt =======================</p>"},{"id":"text-118","type":"text","heading":"","plain_text":"Click to rate this post!\n                                   \n                               [Total: 0  Average: 0]","html":"<p>Click to rate this post!\n                                   \n                               [Total: 0  Average: 0]</p>"}],"sections":[{"id":"text-1","heading":"Text","content":"Résultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 19-04-2020\nRan par Daniele (administrateur) sur DANIELE-PC (Acer Aspire 5750G) (19-04-2020 14:37:26)\nExécution à partir de C:  Users  Daniele  Downloads\nProfils chargés: Daniele (Profils disponibles: Daniele &amp; Ree)\nPlateforme: Windows 7 Home Premium Service Pack 1 (X64) Langue: Italiano (Italia)\nInternet Explorer version 11 (navigateur par défaut: FF)\nMode de démarrage: Normal"},{"id":"text-2","heading":"Text","content":"==================== Processus (sur liste blanche) ================="},{"id":"text-3","heading":"Text","content":"(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé. Le fichier ne sera pas déplacé.)"},{"id":"text-4","heading":"Text","content":"(Adobe Inc. -&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avgnt.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avguard.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avscan.exe \n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  avshadow.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Antivirus  sched.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Launcher  Avira.ServiceHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Launcher  Avira.Systray.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  Optimizer Host  Avira.OptimizerHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  SoftwareUpdater  Avira.SoftwareUpdater.ServiceHost.exe\n(Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG) C:  Program Files (x86)  Avira  VPN  Avira.VpnService.exe\n(Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment) C:  Program Files (x86)  Battle.net  Battle.net.exe \n(Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment) C:  ProgramData  Battle.net  Agent  Agent.7022  Agent.exe\n(CyberLink -&gt; CyberLink Corp.) C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fiAgent.exe\n(CyberLink -&gt; CyberLink) C:  Program Files (x86)  Acer  clear.fi  MVP  Kernel  DMR  DMREngine.exe\n(Discord Inc. -&gt; Discord Inc.) C:  Users  Daniele  AppData  Local  Discord  app-0.0.306  Discord.exe \n(Even Balance, Inc. -&gt;) C:  Windows  SysWOW64  PnkBstrA.exe\n(Google LLC -&gt; Google LLC) C:  Program Files (x86)  Google  Chrome  Application  chrome.exe \n(HearthSim, LLC -&gt; HearthSim) C:  Users  Daniele  AppData  Local  HearthstoneDeckTracker  app-1.10.7  HearthstoneDeckTracker.exe\n(Intel Corporation -&gt; Intel Corporation) C:  Windows  System32  igfxpers.exe\n(Intel Corporation -&gt; Intel Corporation) C:  Windows  System32  igfxtray.exe\n(McAfee, LLC -&gt; McAfee, LLC) C:  Program Files  McAfee  WebAdvisor  servicehost.exe\n(McAfee, LLC -&gt; McAfee, LLC) C:  Program Files  McAfee  WebAdvisor  uihost.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Fichiers communs  microsoft shared  Virtualization Handler  CVHSVC.EXE\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Application Virtualization Client  sftlist.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Application Virtualization Client  sftvsa.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  MsMpEng.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  msseces.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files  Microsoft Security Client  NisSrv.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  dllhost.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  rundll32.exe\n(Mozilla Corporation -&gt; Mozilla Corporation) C:  Program Files (x86)  Mozilla Firefox  firefox.exe \n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  NvTelemetry  NvTelemetryContainer.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display.NvContainer  NVDisplay.Container.exe \n(SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION) C:  Program Files  Fichiers communs  EPSON  EPW! 3 SSRP  E_S60RPB.EXE\n(SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION) C:  Windows  System32  spool  drivers  x64  3  E_IATILFE.EXE\n(Shanghai Changzhi Network Technology Co., Ltd. -&gt;) D:  XuanZhi  LDPlayer  ldnews.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnh.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPHelper.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  TeamViewer.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  TeamViewer_Service.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  tv_w32.exe\n(TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH) C:  Program Files (x86)  TeamViewer  tv_x64.exe"},{"id":"text-5","heading":"Text","content":"==================== Registre (liste blanche) ==================="},{"id":"text-6","heading":"Text","content":"(Si une entrée est incluse dans la liste de correctifs, l&#39;élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)"},{"id":"text-7","heading":"Text","content":"HKLM  &#8230;  Run: [MSC] =&gt; C:  Program Files  Microsoft Security Client  msseces.exe [1353680 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKLM  &#8230;  Run: [SynTPEnh] =&gt; C:  Program Files  Synaptics  SynTP  SynTPEnh.exe [2280232 2010-07-29] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nHKLM  &#8230;  Run: [] =&gt; [X]\nHKLM-x32  &#8230;  Exécuter: [KeePass 2 PreLoad] =&gt; C:  Program Files (x86)  KeePass Password Safe 2  KeePass.exe [3331264 2020-01-20] (Développeur Open Source, Dominik Reichl -&gt; Dominik Reichl)\nHKLM-x32  &#8230;  Exécuter: [Avira SystrayStartTrigger] =&gt; C:  Program Files (x86)  Avira  Launcher  Avira.SystrayStartTrigger.exe [239520 2020-04-02] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nHKLM-x32  &#8230;  Exécuter: [Avira System Speedup User Starter] =&gt; C:  Program Files (x86)  Avira  System Speedup  Avira.SystemSpeedup.Core.Common.Starter.exe [331368 2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nHKLM-x32  &#8230;  Exécuter: [] =&gt; [X]\nHKU  S-1-5-19  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKU  S-1-5-20  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [EPLTargetP0000000000000001] =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_IATILFE.EXE [297024 2013-01-24] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [Discord] =&gt; C:  Users  Daniele  AppData  Local  Discord  app-0.0.306  Discord.exe [90950968 2020-02-24] (Discord Inc. -&gt; Discord Inc.)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [LDNews] =&gt; D:  XuanZhi  LDPlayer  ldnews.exe [1309368 2020-03-25] (Shanghai Changzhi Network Technology Co., Ltd. -&gt;)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  Run: [] =&gt; [X]\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  RunOnce: [FlashPlayerUpdate] =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-18] (Adobe Inc. -&gt; Adobe)\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 050c8d1e-37e4-11ea-9ee4-1c7508f37aca &#8211; H:  RTK_NIC_DRIVER_INSTALLER.sfx.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 5e68e840-be54-11e2-b434-806e6f6e6963 &#8211; G:  Setup.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 839489ac-58a7-11e5-ac80-1c7508ead495 &#8211; C:  Windows  system32  RunDLL32.EXE Shell32.DLL, ShellExec_RunDLL H:  Start.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: 84650df6-67d9-11ea-9c89-1c7508f37aca &#8211; H:  HiSuiteDownLoader.exe} &#8211; H:  HiSuiteDownLoader.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: aab47bad-b4df-11e2-b1df-1c7508ead495 &#8211; F:  LANLauncher.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: b7603e81-b1e8-11e7-9500-1c7508ead495 &#8211; G:  HiSuiteDownLoader.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  &#8230;  MountPoints2: fb958786-5f36-11e3-8f8a-1c7508ead495 &#8211; F:  autorun.exe\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  Control Panel  Desktop \\ SCRNSAVE.EXE -&gt; C:  Windows  system32  scrnsave.scr [11264 2009-07-14] (Microsoft Windows -&gt; Microsoft Corporation)\nHKU  S-1-5-18  &#8230;  RunOnce: [IsMyWinLockerReboot] =&gt; msiexec.exe / qn / x voidguid\nHKLM  Software  Microsoft  Active Setup  Installed Components: [2D46B6DC-2207-486B-B523-A557E6D54B47] -&gt; C:  Windows  system32  cmd.exe / D / C démarrer C:  Windows  system32  ie4uinit.exe -ClearIconCache\nHKLM  Software  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; C:  Program Files (x86)  Google  Chrome  Application  81.0.4044.113  Installer  chrmstp.exe [2020-04-15] (Google LLC -&gt; Google LLC)\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [2D46B6DC-2207-486B-B523-A557E6D54B47] -&gt; C:  Windows  system32  cmd.exe / D / C démarrer C:  Windows  system32  ie4uinit.exe -ClearIconCache\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; &quot;C:  Program Files (x86)  Google  Chrome  Application  57.0.2987.133  Installer  chrmstp.exe&quot; &#8211;configure-user-settings &#8211;verbose-logging &#8211;system-level\nHKLM  Software  Wow6432Node  Microsoft  Active Setup  Installed Components: [A6EADE66-0000-0000-484E-7E8A45000000] -&gt; C:  Program Files (x86)  Adobe  Acrobat Reader DC  Esl  AiodLite.dll [2019-05-03] (Adobe Inc. -&gt; Adobe Systems, Inc.)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [F8A0B131-5F68-486c-8040-7E8FC3C85BB6] -&gt; C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDCREDPROV.DLL [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nFournisseurs HKLM  Software  &#8230;  Authentication  PLAP: [60442b50-aac2-4db7-b9b0-813d2107287d] -&gt; c:  windows  system32  dsNcSmartCardProv.dll [2014-04-16] (Juniper Networks, Inc. -&gt; Juniper Networks)\nFournisseurs HKLM  Software  &#8230;  Authentication  PLAP: [9f4a51de-92b1-483a-b717-dd7d3bb7d3db] -&gt; c:  windows  system32  dsNcCredProv.dll [2014-04-16] (Juniper Networks, Inc. -&gt; Juniper Networks)\nAppInit_DLLs: C:  Windows  system32  nvinitx.dll =&gt; C:  Windows  system32  nvinitx.dll [182784 2018-03-25] (NVIDIA Corporation PE Sign v2016 -&gt; NVIDIA Corporation)\nAppInit_DLLs-x32: C:  Windows  SysWOW64  nvinit.dll =&gt; C:  Windows  SysWOW64  nvinit.dll [159704 2018-03-25] (NVIDIA Corporation PE Sign v2016 -&gt; NVIDIA Corporation)"},{"id":"text-8","heading":"Text","content":"==================== Tâches planifiées (liste blanche) ============"},{"id":"text-9","heading":"Text","content":"(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé sauf s&#39;il est répertorié séparément.)"},{"id":"text-10","heading":"Text","content":"Tâche: 0587C257-D7C6-4C78-8F21-1D7F3939B9B9 &#8211; System32  Tasks  Recovery Management  Burn Notification =&gt; C:  Program Files  Acer  Acer eRecovery Management  NotificationCenter  Notification.exe [816520 2011-08-09] (Acer Incorporated -&gt; Acer)\nTâche: 0698585B-BA25-4335-9278-3BC3C18BE8B5 &#8211; System32  Tasks  Adobe Flash Player NPAPI Notifier =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_303_Plugin.exe [1457720 2019-12-18] (Adobe Inc. -&gt; Adobe)\nTâche: 0D073FB3-7592-4AD3-ACD5-261412DDD7DF &#8211; System32  Tasks  EPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 0D415B8D-D7FD-477F-97FB-381B18EBA498 &#8211; Tâche de mise à jour System32  Tasks  Adobe Acrobat =&gt; C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -&gt; Adobe Systems)\nTâche: 16CBEF8D-2362-4ADC-9C8E-7F143609615F &#8211; System32  Tasks  clear.fiAgent =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fiAgent.exe [120104 2011-08-24] (CyberLink -&gt; CyberLink Corp.)\nTâche: 19BE36DC-19D0-4AE2-B932-4E92E841E50E &#8211; System32  Tasks  NvTmMon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvTmMon.exe [510912 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 28017D3E-92AD-4139-B233-772380FCF796 &#8211; System32  Tasks  898F6CA2-2FC0-4969-9594-F4670EF81EBA =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 28FFE953-0A42-4552-8E34-DC5CE2F4000A &#8211; System32  Tasks  F3E47E76-9709-4A21-BB71-1B0C6C9B8223 =&gt; C:  Windows  system32  pcalua.exe -a E:  Setup.exe &#8211; d E: \nTâche: 2AFD2942-0BC9-4D3A-A82D-AD1D5CCE73FD &#8211; System32  Tasks  E3F8847E-F1BC-4BFB-8A19-8DF64248AAFE =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 34FFA4CE-EA47-418C-BE0E-1EA34C5DCC7B &#8211; System32  Tasks  AviraSystemSpeedupUpdate =&gt; C:  ProgramData  Avira  SystemSpeedup  Update  avira_speedup_setup_update.exe [27848432 2020-04-09] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nTâche: 461EE1FB-988C-4A90-BB13-D665D42A365A &#8211; System32  Tasks  NvProfileUpdaterDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  Update Core  NvProfileUpdater64 [662464 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 4802D53D-7317-4F6D-96B0-025C0D18E41B &#8211; System32  Tasks  5B715CDF-6EE8-460D-A988-FA5FE01124D1 =&gt; E:  baldur.exe\nTâche: 53F97095-C1E8-4C4E-8E7E-D640EAC6E922 &#8211; System32  Tasks  NVIDIA GeForce Experience SelfUpdate_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  NVIDIA GeForce Experience  NVIDIA GeForce Experience.exe [2069952 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 576D0D33-BE9A-4724-A555-8F4E9B90573B &#8211; System32  Tasks  EPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 58DE433B-64F3-4832-A901-30F96F3625BA &#8211; System32  Tasks  NvProfileUpdaterOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  Update Core  NvProfileUpdater64 [662464 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 5CED6FD0-67EC-4881-BEBA-77F9D42F4209 &#8211; System32  Tasks  Adobe Flash Player Updater =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashPlayerUpdateService.exe [335416 2019-12-18] (Adobe Inc. -&gt; Adobe)\nTâche: 6DA9947E-16BB-412B-9076-BAB7FB4730DC &#8211; System32  Tasks  NvTmRep_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvTmRep.exe [757184 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 6E86E2AF-4A75-49B5-B12F-E52842CDEB92 &#8211; System32  Tasks  E4841482-3364-44D1-9773-1AA169AD4679 =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: 6E924764-AF68-4394-8DE7-E26688CAA88F &#8211; System32  Tasks  E6B67C06-3DA8-48D9-8061-CC54EDA7A03D =&gt; C:  Users  Daniele  Desktop  Tor Browser  Browser  firefox.exe.exe \nTâche: 82643A6B-7C76-4DDE-9EFC-EAA23691FC3F &#8211; System32  Tasks  7D643D1C-0931-495D-8883-8D8B85E39BAB =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Bureau  hpflash1.exe -d C:  Users  Daniele  Desktop\nTâche: 89BBD1F3-AD18-4295-9C8F-408713D375EF &#8211; System32  Tasks  DMREngine =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP .  Kernel  DMR  DMREngine.exe [169352 2011-08-24] (CyberLink -&gt; CyberLink)\nTâche: 8DA7805F-DA82-44FD-8C16-3DB36A78306A &#8211; System32  Tasks  UALU notificatin =&gt; C:  Program Files  Acer  Acer Updater  UALU.exe [22392 2012-04-05] (Acer Incorporated -&gt; Acer Incorporated)\nTâche: 906AA2A6-A3F5-419E-AD07-0DC22E0C18E7 &#8211; System32  Tasks  clear.fi =&gt; C:  Program Files (x86)  Acer  clear.fi  MVP  clear.fi.exe [264760 2011-08-24] (CyberLink -&gt; Acer Incorporated)\nTâche: 91BE0F27-0BB1-4F2D-AA59-B164367ED37B &#8211; System32  Tasks  GoogleUpdateTaskMachineCore =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [144200 2015-08-28] (Google Inc -&gt; Google Inc.)\nTâche: 944C8AC3-46F0-49EA-BCE6-BD5F2ABF1E25 &#8211; System32  Tasks  NvBatteryBoostCheckOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVontia Corporation  NvC [469952 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: 947B3B5A-7121-4AA4-A132-B3723F145F31 &#8211; System32  Tasks  EPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: 96EC6761-5AF9-498C-A923-CBEB073F3C48 &#8211; System32  Tasks  Microsoft  Microsoft Antimalware  Microsoft Antimalware Scheduled Scan =&gt; C:  Program Files  Microsoft Security Client \\ MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nTâche: 971CBDDC-AE71-4383-BF3E-55684DC6BE1F &#8211; Tâche System32  Tasks  Overwolf Updater =&gt; C:  Program Files (x86)  Overwolf  OverwolfUpdater.exe [2463064 2020-03-14] (Overwolf Ltd -&gt; Overwolf LTD)\nTâche: 9C563B9F-8477-4F74-9683-3D0C349598DD &#8211; System32  Tasks  EPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nTâche: A2AF1F20-FAF1-44EB-A8EE-F9E61B94538B &#8211; System32  Tasks  CEF4E478-F540-44FA-8A0A-B04F0C79ED38 =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Téléchargements  HijackThis.exe -d C:  Users  Daniele  Downloads\nTâche: A4CA37D7-063A-4E31-BD80-149FDBF10BE1 &#8211; System32  Tasks  5D586F1C-A007-495B-A683-84471FF9182E =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Desktop  BaldursGate2  Setup.exe -d C:  Users  Daniele  Desktop  BaldursGate2\nTâche: A5D1C74C-C335-4965-A36A-010CC81124C7 &#8211; System32  Tasks  E1FD0496-34FB-4E32-BE56-1638E11B44F0 =&gt; C:  Program Files (x86)  Activision  Rome &#8211; Total War  RomeTW.exe\nTâche: AA9292C3-4A04-427B-83C6-1D8EA215F4AC &#8211; System32  Tasks  A07D0381-8480-48E5-93B1-1CD22638FA0B =&gt; C:  Windows  system32  pcalua.exe -a E:  Launch.exe &#8211; d E: \nTâche: AF175631-4055-4EDD-B91E-ADC2D47EC4D7 &#8211; System32  Tasks  NvNodeLauncher_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files (x86)  NVIDIA Corporation  NvNode  nvnodejsla [976832 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: D7C41E02-A0BF-4278-A071-55694952ACDC &#8211; System32  Tasks  GoogleUpdateTaskMachineUA =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [144200 2015-08-28] (Google Inc -&gt; Google Inc.)\nTâche: D7F35FFC-47BF-4DC2-97D2-9C611F8EC20B &#8211; System32  Tasks  Microsoft  Windows Live  SOXE  Extractor Definitions Update Task =&gt; 3519154C-227E-47F3-9CC9-12C3F05817F1\nTâche: DD604AC5-C11F-4371-84FE-2AC34CF0D167 &#8211; System32  Tasks  NvDriverUpdateCheckDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 =&gt; C:  Program Files  NVIDIA Corporation  NvContainer  nvcontain.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nTâche: E002599A-08C1-4C42-883F-191BB591BB0F &#8211; System32  Tasks  6E01CB89-B997-4F11-A30C-C7CE8A9C91A1 =&gt; C:  Windows  system32  pcalua.exe -a C:  Users  Daniele  Téléchargements  win32_152824.exe -d C:  Users  Daniele  Downloads\nTâche: F75AEAE1-46D4-4AE2-B52C-212BD3348EFE &#8211; System32  Tasks  Avira_Antivirus_Systray =&gt; C:  Program Files (x86)  Avira  Antivirus  avgnt.exe [2759304 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)"},{"id":"text-11","heading":"Text","content":"(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)"},{"id":"text-12","heading":"Text","content":"Tâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE : / EXE: 6AFC5C38-E427-4C18-A613-15CA4120664F / F: UpdateSYSTEMĊ Recherche les mises à jour du logiciel EPSON et vous avertit lorsque des mises à jour sont disponibles.Si cette tâche est désactivée ou arrêtée, votre logiciel EPSON ne sera pas automatiquement mis à jour date.Thi\nTâche: C:  Windows  Tasks  EPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF .job =&gt; C:  Windows  system32  spool  DRIVERS  x64  3  E_ITSLFE.EXE : / EXE: E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF / F: UpdateSYSTEMĊ Recherche les mises à jour du logiciel EPSON et vous avertit lorsque des mises à jour sont disponibles. Si cette tâche est désactivée ou arrêtée, votre logiciel EPSON ne sera pas automatiquement tenu à jour. date.Thi"},{"id":"text-13","heading":"Text","content":"==================== Internet (liste blanche) ===================="},{"id":"text-14","heading":"Text","content":"(Si un élément est inclus dans la liste de correctifs, s&#39;il s&#39;agit d&#39;un élément du registre, il sera supprimé ou restauré par défaut.)"},{"id":"text-15","heading":"Text","content":"Winsock: Catalog5 07 C:  Program Files (x86)  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5 08 C:  Program Files (x86)  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [145280 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5-x64 07 C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nWinsock: Catalog5-x64 08 C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WLIDNSP.DLL [171392 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nTcpip  Paramètres: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  0EF91A76-19E2-4548-BB51-E60CD7106D02: [DhcpNameServer] 192.168.0.1\nTcpip  ..  Interfaces  3EFC82CC-B91A-4C1E-B521-C2B94DC80088: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  49233639-7CE3-4A19-9C9C-58E97178E1DA: [DhcpNameServer] 194.168.4.100 194.168.8.100\nTcpip  ..  Interfaces  C05787A9-9258-4705-B63A-09E187B553B7: [DhcpNameServer] 192.168.42.129\nTcpip  ..  Interfaces  E302DF92-CA2E-4BE6-BBDF-9847BF0E7A4F: [DhcpNameServer] 192.168.42.129"},{"id":"text-16","heading":"Text","content":"Internet Explorer:\n==================\nHKU  S-1-5-21-1536202438-368462837-3654654372-1001  Software  Microsoft  Internet Explorer  Main, page de démarrage = hxxp: //uk.search.yahoo.com/? Type = 714647 &amp; fr = spigot-yhp -c&#39;est à dire\nSearchScopes: HKLM -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM-x32 -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKLM-x32 -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = hxxp: //www.bing.com/search? Q = searchTerms &amp; form = AARTDF &amp; pc = MAAR &amp; src = IE-SearchBox\nSearchScopes: HKU  .DEFAULT -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  .DEFAULT -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; DefaultScope 6F10B82E-F8E1-488B-AFF0-66E6D7950E71 URL = hxxps: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9 URL = hxxp: //www1.delta-search.com/? Q =  searchTerms &amp; affID = 119776 &amp; tt = gc_ &amp; babsrc = SP_ss &amp; mntrId = 0A75EC55F940E88A\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 6F10B82E-F8E1-488B-AFF0-66E6D7950E71 URL = hxxps: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 7405AE7F-13A6-4266-A4B2-512B544AACDB URL = hxxp: //uk.search.yahoo.com/search? Fr = chr-greentree_ie &amp; ei = utf-8 &amp; ilc = 12 &amp; type = 714647 &amp; p = searchTerms\nSearchScopes: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; 99209B94-587D-42C2-A3CA-F72D0A76A2F6 URL = hxxp: //www.bing.com/search? Q = searchTerms  &amp; r = 503\nBHO: Aide à la connexion Windows Live ID -&gt; 9030D464-4C02-4ABF-8ECC-5164760863C6 -&gt; C:  Program Files  Fichiers communs  Microsoft Shared  Windows Live  WindowsLiveLogin.dll [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nBHO: McAfee WebAdvisor -&gt; B164E929-A1B6-4A06-B104-2CD0E90A88FF -&gt; C:  Program Files  McAfee  WebAdvisor  x64  IEPlugin.dll [2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nBHO-x32: Java ™ Plug-In SSV Helper -&gt; 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  ssv.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO-x32: Aide à la connexion Windows Live ID -&gt; 9030D464-4C02-4ABF-8ECC-5164760863C6 -&gt; C:  Program Files (x86)  Common Files  Microsoft Shared  Windows Live  WindowsLiveLogin.dll [2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nBHO-x32: McAfee WebAdvisor -&gt; B164E929-A1B6-4A06-B104-2CD0E90A88FF -&gt; C:  Program Files  McAfee  WebAdvisor  win32  IEPlugin.dll [2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nBHO-x32: Java ™ Plug-In 2 SSV Helper -&gt; DBC80044-A445-435b-BC74-9C25C1C588A9 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  jp2ssv.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nRestauration de session IE: HKU  S-1-5-21-1536202438-368462837-3654654372-1001 -&gt; est activé.\nDPF: HKLM AA570693-00E2-4907-B6F1-60A1199B030C hxxps: //juniper.net/dana-cached/sc/JuniperSetupClient64.cab\nDPF: HKLM-x32 E5F5D008-DD2C-4D32-977D-1A0ADF03058B hxxps: //juniper.net/dana-cached/setup/JuniperSetupSP1.cab\nDPF: HKLM-x32 F27237D7-93C8-44C2-AC6E-D6057B9A918F hxxps: //juniper.net/dana-cached/sc/JuniperSetupClient.cab\nGestionnaire: skype4com &#8211; FFC8B962-9B40-4DFF-9458-1830C7DD7F5D &#8211; Aucun fichier\nFilter-x32: application / x-ica &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = euc-jp &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = ISO-8859-1 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS936 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS949 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS950 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF-8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = euc-jp &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = ISO-8859-1 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS936 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS949 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = MS950 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF-8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: application / x-ica; charset = UTF8 &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFilter-x32: ica &#8211; CFB6322E-CC85-4d1b-82C7-893888A236BC &#8211; C:  Program Files (x86)  Citrix  ICA Client  IcaMimeFilter.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)"},{"id":"text-17","heading":"Text","content":"FireFox:\n========\nFF DefaultProfile: xlbk4m4f.default-1485720396432\nFF ProfilePath: C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432 [2020-04-19]\nRestauration de session FF: Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432 -&gt; est activé.\nExtension FF: (Sécurité du navigateur Avira) &#8211; C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432  Extensions  abs@avira.com.xpi [2020-03-23]\nExtension FF: (Recherche et nouvel onglet par Yahoo) &#8211; C:  Users  Daniele  AppData  Roaming  Mozilla  Firefox  Profiles  xlbk4m4f.default-1485720396432  Extensions  jid1-16aeif9OQIRKxA@jetpack.xpi [2019-05-16]\nPlugin FF: @ adobe.com / FlashPlayer -&gt; C:  Windows  system32  Macromed  Flash  NPSWF64_32_0_0_303.dll [2019-12-18] (Adobe Inc. -&gt;)\nPlugin FF: @ microsoft.com / GENUINE -&gt; désactivé [No File]\nPlugin FF: @ Microsoft.com / NpCtrl, version = 1.0 -&gt; C:  Program Files  Microsoft Silverlight  5.1.50918.0  npctrl.dll [2018-10-23] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ adobe.com / FlashPlayer -&gt; C:  Windows  SysWOW64  Macromed  Flash  NPSWF32_32_0_0_303.dll [2019-12-18] (Adobe Inc. -&gt;)\nFF Plugin-x32: @ Citrix.com / npican -&gt; C:  Program Files (x86)  Citrix  ICA Client  npicaN.dll [2013-10-01] (Citrix Systems, Inc. -&gt; Citrix Systems, Inc.)\nFF Plugin-x32: @ java.com / DTPlugin, version = 11.171.2 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  dtplugin  npDeployJava1.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin-x32: @ java.com / JavaPlugin, version = 11.171.2 -&gt; C:  Program Files (x86)  Java  jre1.8.0_171  bin  plugin2  npjp2.dll [2018-04-24] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin-x32: @ microsoft.com / GENUINE -&gt; désactivé [No File]\nFF Plugin-x32: @ Microsoft.com / NpCtrl, version = 1.0 -&gt; C:  Program Files (x86)  Microsoft Silverlight  5.1.50918.0  npctrl.dll [2018-10-23] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / SharePoint, version = 14.0 -&gt; C:  PROGRA ~ 2  MICROS ~ 4  Office14  NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / WLPG, version = 15.4.3502.0922 -&gt; C:  Program Files (x86)  Windows Live  Photo Gallery  NPWLPG.dll [2011-05-13] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ microsoft.com / WLPG, version = 15.4.3538.0513 -&gt; C:  Program Files (x86)  Windows Live  Photo Gallery  NPWLPG.dll [2011-05-13] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.0.6 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.1.2 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.2.1 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 2.2.6 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ videolan.org / vlc, version = 3.0.8 -&gt; C:  Program Files (x86)  VideoLAN  VLC  npvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @ WildTangent.com / GamesAppPresenceDetector, Version = 1.0 -&gt; C:  Program Files (x86)  WildTangent Games  App  BrowserIntegration  Registered  0  NP_wtapp.dll [2013-08-06] (WildTangent Inc -&gt;)\nFF Plugin-x32: Adobe Reader -&gt; C:  Program Files (x86)  Adobe  Acrobat Reader DC  Reader  AIR  nppdf32.dll [2020-03-05] (Adobe Inc. -&gt; Adobe Systems Inc.)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: @ asperasoft.com / AsperaConnect -&gt; C:  Users  Daniele  AppData  Local  Programs  Aspera  Aspera Connect  lib  3.6. 1  npasperaweb_3.6.1.111228.dll [2015-09-11] (Aspera, Inc. -&gt; Aspera, Inc.)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: @ Unity3d.com / UnityPlayer, version = 1.0 -&gt; C:  Users  Daniele  AppData  LocalLow  Unity  WebPlayer  Loader  npUnity3D32 .dll [2015-03-27] (Unity Technologies SF -&gt; Unity Technologies ApS)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: SkypeForBusinessPlugin-15.8 -&gt; C:  Users  Daniele  AppData  Local  Microsoft  SkypeForBusinessPlugin  15.8.20020.400  npGatewayNpapi.dll [2015-06-15] (Microsoft Corporation -&gt; Microsoft Corporation)\nPlugin FF HKU  S-1-5-21-1536202438-368462837-3654654372-1001: SkypeForBusinessPlugin64-15.8 -&gt; C:  Users  Daniele  AppData  Local  Microsoft  SkypeForBusinessPlugin  15.8.20020.400  npGatewayNpapi-x64.dll [2015-06-15] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin HKUS-1-5-21-1536202438-368462837-3654654372-1001: SkypePlugin -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48npGatewayNpapi.dll [2016-09-22] (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFF Plugin HKUS-1-5-21-1536202438-368462837-3654654372-1001: SkypePlugin64 -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48npGatewayNpapi-x64.dll [2016-09-22] (Microsoft Corporation -&gt; Skype Technologies S.A.)"},{"id":"text-18","heading":"Text","content":"Chrome: \n=======\nCHR Profile: C:UsersDanieleAppDataLocalGoogleChromeUser DataDefault [2020-04-19]\nCHR Notifications: Default -&gt; hxxps://uk-mg42.mail.yahoo.com; hxxps://web.skype.com; hxxps://web.whatsapp.com; hxxps://www.hotukdeals.com; hxxps://www.reddit.com\nCHR HomePage: Default -&gt; hxxp://uk.search.yahoo.com/?type=714647&amp;fr=spigot-yhp-ch\nCHR StartupUrls: Default -&gt; &quot;hxxps://www.google.co.uk/&quot;\nCHR Session Restore: Default -&gt; is enabled.\nCHR Extension: (Presentazioni) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-10-16]\nCHR Extension: (Documenti) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-10-16]\nCHR Extension: (Google Drive) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2015-10-21]\nCHR Extension: (YouTube) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]\nCHR Extension: (Avira Password Manager) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionscaljgklbbfbcjjanaijlacgncafpegll [2020-04-14]\nCHR Extension: (Google Search) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionscoobgpohoikkiipiblmjeljniedjpjpf [2015-10-28]\nCHR Extension: (Fogli) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-10-16]\nCHR Extension: (Documenti Google offline) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-17]\nCHR Extension: (AdBlock: il miglior ad-blocker di sempre) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsgighmmpiobklfepjocnamgkkbiglidom [2020-04-17]\nCHR Extension: (Lightshot (strumento per screenshot)) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsmbniclmhobmnbdlbpiphghaielnnpgdp [2020-01-31]\nCHR Extension: (Pagamenti Chrome Web Store) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]\nCHR Extension: (Gmail) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-05-16]\nCHR Extension: (Chrome Media Router) &#8211; C:UsersDanieleAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-14]\nCHR HKLM&#8230;ChromeExtension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]\nCHR HKLM&#8230;ChromeExtension: [fheoggkfdfchfphceeifdbepaooicaho]\nCHR HKLM-x32&#8230;ChromeExtension: [caljgklbbfbcjjanaijlacgncafpegll]\nCHR HKLM-x32&#8230;ChromeExtension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]\nCHR HKLM-x32&#8230;ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj]\nCHR HKLM-x32&#8230;ChromeExtension: [fheoggkfdfchfphceeifdbepaooicaho]\nCHR HKLM-x32&#8230;ChromeExtension: [flliilndjeohchalpbbcdekjklbdgfkk]\nCHR HKLM-x32&#8230;ChromeExtension: [ibbfklbaljofpaanmpaeadejijfdddco]\nCHR HKLM-x32&#8230;ChromeExtension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl]\nCHR HKLM-x32&#8230;ChromeExtension: [nbmafkdmkkckhggblphicnnhlgljnoje] &#8211; \nCHR HKLM-x32&#8230;ChromeExtension: [njpedbdniajflhgfoipnjkednnlkngbj]"},{"id":"text-19","heading":"Text","content":"==================== Services (Whitelisted) ==================="},{"id":"text-20","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)"},{"id":"text-21","heading":"Text","content":"S2 AntiVirMailService; C:Program Files (x86)AviraAntivirusavmailc7.exe [1209856 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AntiVirSchedulerService; C:Program Files (x86)AviraAntivirussched.exe [485960 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AntiVirService; C:Program Files (x86)AviraAntivirusavguard.exe [485960 2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nS2 AntiVirWebService; C:Program Files (x86)AviraAntivirusavwebg7.exe [573760 2020-03-22] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 Avira.ServiceHost; C:Program Files (x86)AviraLauncherAvira.ServiceHost.exe [634896 2020-04-02] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraOptimizerHost; C:Program Files (x86)AviraOptimizer HostAvira.OptimizerHost.exe [2989888 2020-01-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraPhantomVPN; C:Program Files (x86)AviraVPNAvira.VpnService.exe [382992 2020-03-18] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 AviraUpdaterService; C:Program Files (x86)AviraSoftwareUpdaterAvira.SoftwareUpdater.ServiceHost.exe [161216 2020-04-09] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nS4 EpsonScanSvc; C:Windowssystem32EscSvc64.exe [144560 2012-05-17] (SEIKO EPSON Corporation -&gt; Seiko Epson Corporation)\nR2 EPSON_PM_RPCV4_06; C:Program FilesCommon FilesEPSONEPW!3 SSRPE_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON Corporation -&gt; SEIKO EPSON CORPORATION)\nS3 fussvc; C:Program Files (x86)Windows Kits8.1App Certification Kitfussvc.exe [143872 2014-10-24] (Microsoft Corporation) [File not signed]\nS4 GamesAppIntegrationService; C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [240736 2013-10-07] (WildTangent Inc -&gt; WildTangent)\nR2 McAfee WebAdvisor; C:Program FilesMcAfeeWebAdvisorServiceHost.exe [913640 2020-04-08] (McAfee, LLC -&gt; McAfee, LLC)\nR2 MsMpSvc; C:Program FilesMicrosoft Security ClientMsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nS4 MyEpson Portal Service; C:Program Files (x86)EPSONMyEpson PortalmepService.exe [714712 2017-06-28] (SEIKO EPSON CORPORATION -&gt; Seiko Epson Corporation)\nR3 NisSrv; C:Program FilesMicrosoft Security ClientNisSrv.exe [361816 2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nS4 NTI IScheduleSvc; C:Program Files (x86)NTIAcer Backup ManagerIScheduleSvc.exe [256832 2011-04-24] (NTI Corporation -&gt; NTI Corporation)\nS3 NvContainerLocalSystem; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS3 NvContainerNetworkService; C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS4 Origin Client Service; C:Program Files (x86)OriginOriginClientService.exe [2098528 2017-08-23] (Electronic Arts, Inc. -&gt; Electronic Arts)\nS4 Origin Web Helper Service; C:Program Files (x86)OriginOriginWebHelperService.exe [2977640 2017-08-23] (Electronic Arts, Inc. -&gt; Electronic Arts)\nS4 OverwolfUpdater; C:Program Files (x86)OverwolfOverwolfUpdater.exe [2463064 2020-03-14] (Overwolf Ltd -&gt; Overwolf LTD)\nR2 PnkBstrA; C:WindowsSysWOW64PnkBstrA.exe [75136 2013-05-17] (Even Balance, Inc. -&gt; )\nS3 Te.Service; C:Program Files (x86)Windows Kits8.1TestingRuntimesTAEFWex.Services.exe [122368 2015-02-26] (Microsoft Corporation) [File not signed]\nR2 TeamViewer; C:Program Files (x86)TeamViewerTeamViewer_Service.exe [13216272 2020-03-20] (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nS3 WinDefend; C:Program FilesWindows Defendermpsvc.dll [1011712 2013-05-27] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 wlidsvc; C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDSVC.EXE [2292096 2011-03-29] (Microsoft Corporation -&gt; Microsoft Corp.)\nR2 NVDisplay.ContainerLocalSystem; &quot;C:Program FilesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container.exe&quot; -s NVDisplay.ContainerLocalSystem -f &quot;C:ProgramDataNVIDIANVDisplay.ContainerLocalSystem.log&quot; -l 3 -d &quot;C:Program FilesNVIDIA CorporationDisplay.NvContainerpluginsLocalSystem&quot; -r -p 30000\nR2 NvTelemetryContainer; &quot;C:Program Files (x86)NVIDIA CorporationNvTelemetryNvTelemetryContainer.exe&quot; -s NvTelemetryContainer -f &quot;C:ProgramDataNVIDIANvTelemetryContainer.log&quot; -l 3 -d &quot;C:Program Files (x86)NVIDIA CorporationNvTelemetryplugins&quot; -r"},{"id":"text-22","heading":"Text","content":"===================== Drivers (Whitelisted) ==================="},{"id":"text-23","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)"},{"id":"text-24","heading":"Text","content":"R3 athr; C:WindowsSystem32DRIVERSathrx.sys [2755584 2011-07-19] (Microsoft Windows Hardware Compatibility Publisher -&gt; Atheros Communications, Inc.)\nR0 avdevprot; C:WindowsSystem32DRIVERSavdevprot.sys [68152 2019-06-07] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 avgntflt; C:WindowsSystem32DRIVERSavgntflt.sys [223744 2020-03-27] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 avipbb; C:WindowsSystem32DRIVERSavipbb.sys [177376 2020-04-06] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 avkmgr; C:WindowsSystem32DRIVERSavkmgr.sys [36072 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR2 avnetflt; C:WindowsSystem32DRIVERSavnetflt.sys [78600 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR0 avusbflt; C:WindowsSystem32Driversavusbflt.sys [35376 2019-03-20] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nR1 dtsoftbus01; C:WindowsSystem32DRIVERSdtsoftbus01.sys [283064 2013-12-07] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR2 LdBoxDrv; C:Program Filesdnplayerext2LdBoxDrv.sys [319376 2019-12-18] (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nR2 LdVBoxDrv; C:Program FilesldplayerboxLdVBoxDrv.sys [319376 2020-03-25] (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nR0 MpFilter; C:WindowsSystem32DRIVERSMpFilter.sys [295000 2016-08-25] (Microsoft Corporation -&gt; Microsoft Corporation)\nS3 MYFAULT; C:Windowssystem32driversmyfault.sys [25392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -&gt; Sysinternals)\nR3 NisDrv; C:WindowsSystem32DRIVERSNisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -&gt; Microsoft Corporation)\nR3 nusb3hub; C:Windowssystem32driversnusb3hub.sys [82432 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -&gt; Renesas Electronics Corporation)\nR3 nusb3xhc; C:Windowssystem32driversnusb3xhc.sys [181760 2011-02-10] (Microsoft Windows Hardware Compatibility Publisher -&gt; Renesas Electronics Corporation)\nS3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [31168 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvad_WaveExtensible; C:WindowsSystem32driversnvvad64v.sys [59240 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvhci; C:WindowsSystem32DRIVERSnvvhci.sys [58816 2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 phantomtap; C:WindowsSystem32DRIVERSphantomtap.sys [35664 2020-03-18] (Avira Operations GmbH &amp; Co. KG -&gt; The OpenVPN Project)\nS3 rtux64w7; C:WindowsSystem32DRIVERSrtux64w7.sys [328448 2016-08-19] (Realtek Semiconductor Corp -&gt; Realtek )\nS4 secdrv; C:WindowsSysWow64Driverssecdrv.sys [11973 2017-06-06] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [File not signed]\nR0 sptd; C:WindowsSystem32Driverssptd.sys [381440 2013-12-07] (Disc Soft Ltd -&gt; Duplex Secure Ltd.)"},{"id":"text-25","heading":"Text","content":"==================== NetSvcs (Whitelisted) ==================="},{"id":"text-26","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)"},{"id":"text-27","heading":"Text","content":"==================== One month (created) ==================="},{"id":"text-28","heading":"Text","content":"(If an entry is included in the fixlist, the file/folder will be moved.)"},{"id":"text-29","heading":"Text","content":"2020-04-19 14:36 &#8211; 2020-04-19 14:36 &#8211; 000000000 ____D C:UsersDanieleDownloadsFRST-OlderVersion\n2020-04-18 14:29 &#8211; 2020-04-18 14:29 &#8211; 000062792 _____ C:ProgramDataagent.uninstall.1587216527.bdinstall.v2.bin\n2020-04-17 00:37 &#8211; 2020-04-17 00:46 &#8211; 000072692 _____ C:UsersDanieleDownloadsAddition.txt\n2020-04-17 00:28 &#8211; 2020-04-19 14:41 &#8211; 000045553 _____ C:UsersDanieleDownloadsFRST.txt\n2020-04-17 00:22 &#8211; 2020-04-19 14:40 &#8211; 000000000 ____D C:FRST\n2020-04-17 00:21 &#8211; 2020-04-19 14:36 &#8211; 002281984 _____ (Farbar) C:UsersDanieleDownloadsFRST64.exe\n2020-04-16 23:30 &#8211; 2020-04-16 23:30 &#8211; 000013738 _____ C:UsersDanieleDesktophijackthis2\n2020-04-16 22:55 &#8211; 2020-04-18 14:29 &#8211; 000000000 ____D C:Program FilesBitdefender Agent\n2020-04-16 22:55 &#8211; 2020-04-16 22:55 &#8211; 000102692 _____ C:ProgramDataagent.1587074131.bdinstall.v2.bin\n2020-04-16 22:55 &#8211; 2020-04-16 22:55 &#8211; 000000000 ____D C:ProgramDataBitdefender Agent\n2020-04-16 22:53 &#8211; 2020-04-16 22:53 &#8211; 010527368 _____ C:UsersDanieleDownloadsbitdefender_online.exe\n2020-04-16 22:40 &#8211; 2020-04-16 22:40 &#8211; 000000000 ____D C:ProgramDataUbisoft\n2020-04-16 22:11 &#8211; 2020-04-16 22:11 &#8211; 000388608 _____ (Trend Micro Inc.) C:UsersDanieleDownloadsHijackThis.exe\n2020-04-15 17:17 &#8211; 2020-04-15 17:17 &#8211; 000000219 _____ C:UsersDanieleDesktopCounter-Strike Global Offensive.url\n2020-04-10 00:18 &#8211; 2020-04-10 00:18 &#8211; 004342776 _____ (Avira Operations GmbH &amp; Co. KG) C:UsersDanieleDownloadsavira_en_sptl1_1609235037-1586472637__phpws-spotlight-release (1).exe\n2020-04-10 00:16 &#8211; 2020-04-10 00:16 &#8211; 000003292 _____ C:Windowssystem32TasksAvira_Antivirus_Systray\n2020-04-10 00:15 &#8211; 2020-04-06 21:13 &#8211; 000177376 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavipbb.sys\n2020-04-10 00:15 &#8211; 2020-03-27 12:48 &#8211; 000223744 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavgntflt.sys\n2020-04-10 00:15 &#8211; 2019-06-07 15:09 &#8211; 000068152 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavdevprot.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000078600 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavnetflt.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000036072 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavkmgr.sys\n2020-04-10 00:15 &#8211; 2019-03-20 19:50 &#8211; 000035376 _____ (Avira Operations GmbH &amp; Co. KG) C:Windowssystem32Driversavusbflt.sys\n2020-04-09 23:54 &#8211; 2020-04-09 23:55 &#8211; 000000000 ____D C:UsersPublicSpeedup Sessions\n2020-04-09 23:54 &#8211; 2020-04-09 23:54 &#8211; 000003668 _____ C:Windowssystem32TasksAviraSystemSpeedupUpdate\n2020-04-09 23:53 &#8211; 2020-04-15 08:51 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsAvira\n2020-04-09 23:53 &#8211; 2020-04-09 23:53 &#8211; 000001192 _____ C:UsersPublicDesktopAvira.lnk\n2020-04-09 23:53 &#8211; 2020-04-09 23:53 &#8211; 000001192 _____ C:ProgramDataDesktopAvira.lnk\n2020-04-09 23:50 &#8211; 2020-04-09 23:50 &#8211; 004342776 _____ (Avira Operations GmbH &amp; Co. KG) C:UsersDanieleDownloadsavira_en_sptl1_1609235037-1586472637__phpws-spotlight-release.exe\n2020-04-09 23:08 &#8211; 2020-04-09 23:08 &#8211; 003318440 _____ (Dominik Reichl ) C:UsersDanieleDownloadsKeePass-2.44-Setup.exe\n2020-04-03 01:24 &#8211; 2020-04-03 01:24 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalLowObsidian Entertainment\n2020-04-02 22:10 &#8211; 2020-04-02 22:10 &#8211; 000000222 _____ C:UsersDanieleDesktopPillars of Eternity.url\n2020-03-30 19:29 &#8211; 2020-03-30 19:29 &#8211; 000076137 _____ C:UsersDanieleDownloadseContract.pdf\n2020-03-26 17:50 &#8211; 2020-03-26 18:04 &#8211; 000000000 ____D C:UsersDanieleDesktopRee Accident Claim\n2020-03-25 23:46 &#8211; 2020-04-04 11:49 &#8211; 000000000 ____D C:UsersDaniele.Ld2VirtualBox\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000671 _____ C:UsersDanieleDesktopLDMultiPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000671 _____ C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuLDMultiPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000656 _____ C:UsersDanieleDesktopLDPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000656 _____ C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuLDPlayer4.lnk\n2020-03-25 23:45 &#8211; 2020-03-25 23:45 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingMicrosoftWindowsStart MenuProgramsLDPlayer4\n2020-03-25 23:44 &#8211; 2020-03-25 23:45 &#8211; 000000000 ____D C:Program Filesldplayerbox\n2020-03-25 23:44 &#8211; 2020-03-25 23:44 &#8211; 000000000 ____D C:UsersDanieleDocumentsXuanZhi\n2020-03-25 23:43 &#8211; 2020-03-25 23:43 &#8211; 000000000 ____D C:Program FilesMcAfee\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000284010 _____ C:UsersDanieleAppDataRoamingm47_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000000000 ____D C:UsersDanieleDownloads2cep\n2020-03-25 23:41 &#8211; 2020-03-25 23:46 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingXuanZhi\n2020-03-25 23:41 &#8211; 2020-03-25 23:41 &#8211; 002931392 _____ (XUANZHI INTERNATIONAL CO., LIMITED) C:UsersDanieleDownloadsLDPlayer_ens_3020_ld.exe\n2020-03-25 23:41 &#8211; 2020-03-25 23:41 &#8211; 002931392 _____ (XUANZHI INTERNATIONAL CO., LIMITED) C:UsersDanieleDownloadsLDPlayer_ens_3020_ld (1).exe"},{"id":"text-30","heading":"Text","content":"==================== One month (modified) =================="},{"id":"text-31","heading":"Text","content":"(If an entry is included in the fixlist, the file/folder will be moved.)"},{"id":"text-32","heading":"Text","content":"2020-04-19 14:47 &#8211; 2014-02-28 19:48 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalBattle.net\n2020-04-19 14:28 &#8211; 2017-01-29 20:15 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalLowMozilla\n2020-04-19 14:27 &#8211; 2019-01-30 14:34 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingDiscord\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000911 _____ C:WindowsTasksEPSON XP-312 313 315 Series Update E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000911 _____ C:WindowsTasksEPSON XP-312 313 315 Series Update 6AFC5C38-E427-4C18-A613-15CA4120664F.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000725 _____ C:WindowsTasksEPSON XP-312 313 315 Series Invitation E25A4D64-F87D-4249-99D5-CFF2F8F8E6DF.job\n2020-04-19 13:50 &#8211; 2018-10-22 17:50 &#8211; 000000725 _____ C:WindowsTasksEPSON XP-312 313 315 Series Invitation 6AFC5C38-E427-4C18-A613-15CA4120664F.job\n2020-04-19 12:25 &#8211; 2018-07-01 20:59 &#8211; 000000000 ____D C:ProgramDataNVIDIA\n2020-04-19 03:56 &#8211; 2009-07-14 05:45 &#8211; 000016976 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0\n2020-04-19 03:56 &#8211; 2009-07-14 05:45 &#8211; 000016976 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0\n2020-04-19 03:19 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingHearthstoneDeckTracker\n2020-04-18 20:55 &#8211; 2018-03-26 22:41 &#8211; 000002512 _____ C:UsersDanieleDesktopHearthstone Deck Tracker.lnk\n2020-04-18 20:55 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalHearthstoneDeckTracker\n2020-04-18 20:54 &#8211; 2018-03-26 22:41 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalSquirrelTemp\n2020-04-18 15:26 &#8211; 2014-02-28 19:47 &#8211; 000000000 ____D C:Program Files (x86)Battle.net\n2020-04-18 14:22 &#8211; 2014-06-18 09:34 &#8211; 000000000 ____D C:Program Files (x86)TeamViewer\n2020-04-18 14:21 &#8211; 2009-07-14 06:08 &#8211; 000000006 ____H C:WindowsTasksSA.DAT\n2020-04-17 19:37 &#8211; 2017-05-31 22:40 &#8211; 000000000 ____D C:UsersRee\n2020-04-17 13:30 &#8211; 2019-12-20 00:37 &#8211; 000000000 ____D C:WindowsSysWOW64NV\n2020-04-17 13:30 &#8211; 2019-12-20 00:37 &#8211; 000000000 ____D C:Windowssystem32NV\n2020-04-17 13:29 &#8211; 2017-09-12 00:30 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Firefox\n2020-04-17 13:29 &#8211; 2013-05-04 17:46 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service\n2020-04-17 13:22 &#8211; 2014-01-15 19:16 &#8211; 000000000 ____D C:Program Files (x86)Steam\n2020-04-17 13:10 &#8211; 2017-12-17 16:51 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalUbisoft Game Launcher\n2020-04-16 22:37 &#8211; 2012-06-21 20:37 &#8211; 000000000 ___HD C:Program Files (x86)InstallShield Installation Information\n2020-04-16 22:37 &#8211; 2009-07-14 06:32 &#8211; 000000000 ___RD C:ProgramDataMicrosoftWindowsStart MenuProgramsGames\n2020-04-16 22:36 &#8211; 2013-05-04 20:18 &#8211; 000000000 ____D C:UsersDanieleAppDataRoaminguTorrent\n2020-04-15 20:36 &#8211; 2013-05-04 18:11 &#8211; 000002226 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk\n2020-04-10 00:17 &#8211; 2009-07-14 04:20 &#8211; 000000000 ____D C:Windowsinf\n2020-04-10 00:15 &#8211; 2013-05-06 00:19 &#8211; 000000000 ____D C:ProgramDataAvira\n2020-04-10 00:15 &#8211; 2013-05-06 00:19 &#8211; 000000000 ____D C:Program Files (x86)Avira\n2020-04-10 00:13 &#8211; 2013-04-13 02:40 &#8211; 000743878 _____ C:Windowssystem32perfh010.dat\n2020-04-10 00:13 &#8211; 2013-04-13 02:40 &#8211; 000148496 _____ C:Windowssystem32perfc010.dat\n2020-04-10 00:13 &#8211; 2009-07-14 06:13 &#8211; 001662796 _____ C:Windowssystem32PerfStringBackup.INI\n2020-04-10 00:04 &#8211; 2013-04-16 13:43 &#8211; 000000000 ____D C:UsersDaniele\n2020-04-09 23:52 &#8211; 2014-08-20 13:02 &#8211; 000000000 ____D C:ProgramDataPackage Cache\n2020-04-09 23:28 &#8211; 2018-01-28 01:56 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingKeePass\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000001121 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsKeePass 2.lnk\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000001109 _____ C:UsersDanieleDesktopKeePass 2.lnk\n2020-04-09 23:10 &#8211; 2018-01-28 01:00 &#8211; 000000000 ____D C:Program Files (x86)KeePass Password Safe 2\n2020-04-02 06:28 &#8211; 2018-03-29 14:27 &#8211; 000000000 ____D C:Program Files (x86)Overwolf\n2020-04-02 00:49 &#8211; 2010-11-21 04:27 &#8211; 000744808 ____N (Microsoft Corporation) C:Windowssystem32MpSigStub.exe\n2020-03-26 18:43 &#8211; 2019-12-18 20:22 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingChangZhi2\n2020-03-26 17:50 &#8211; 2013-05-12 22:25 &#8211; 000000000 ____D C:UsersDanieleDesktopCompleanno Ree 2013\n2020-03-26 17:49 &#8211; 2020-02-04 14:31 &#8211; 000000000 ____D C:UsersDanieleDesktopCittadinanza\n2020-03-25 23:42 &#8211; 2013-05-06 19:11 &#8211; 000000000 ____D C:ProgramDataMcAfee\n2020-03-25 23:34 &#8211; 2019-12-18 20:31 &#8211; 000000000 ____D C:UsersDaniele.LdVirtualBox\n2020-03-25 13:00 &#8211; 2019-02-14 20:04 &#8211; 000000000 ____D C:UsersDanieleAppDataLocalBluestacks\n2020-03-24 02:08 &#8211; 2013-05-15 17:30 &#8211; 000000000 ____D C:UsersDanieleAppDataRoamingSoftGrid Client\n2020-03-21 02:29 &#8211; 2013-05-04 18:11 &#8211; 000003586 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineUA\n2020-03-21 02:29 &#8211; 2013-05-04 18:11 &#8211; 000003458 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineCore\n2020-03-20 08:46 &#8211; 2015-01-01 09:45 &#8211; 000004476 _____ C:Windowssystem32TasksAdobe Acrobat Update Task\n2020-03-20 08:45 &#8211; 2015-12-16 22:13 &#8211; 000002441 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk"},{"id":"text-33","heading":"Text","content":"==================== Files in the root of some directories ========"},{"id":"text-34","heading":"Text","content":"2013-12-31 12:57 &#8211; 2013-12-31 12:58 &#8211; 000000093 _____ () C:UsersDanieleAppDataRoamingARCompanion.log\n2019-12-18 20:31 &#8211; 2019-12-18 20:31 &#8211; 000000068 _____ () C:UsersDanieleAppDataRoamingchangzhi_leidian.data\n2019-12-21 18:17 &#8211; 2019-12-21 18:17 &#8211; 000000068 _____ () C:UsersDanieleAppDataRoamingchangzhi_mplayer.data\n2020-03-25 23:42 &#8211; 2020-03-25 23:42 &#8211; 000284010 _____ () C:UsersDanieleAppDataRoamingm47_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt\n2017-07-11 22:13 &#8211; 2017-07-11 22:13 &#8211; 000014139 _____ () C:UsersDanieleAppDataLocalHWVendorDetection.log\n2013-05-05 00:55 &#8211; 2019-12-27 13:15 &#8211; 000007615 _____ () C:UsersDanieleAppDataLocalresmon.resmoncfg"},{"id":"text-35","heading":"Text","content":"==================== SigCheck ============================"},{"id":"text-36","heading":"Text","content":"(There is no automatic fix for files that do not pass verification.)"},{"id":"text-37","heading":"Text","content":"LastRegBack: 2020-04-17 19:29\n==================== End of FRST.txt ========================\nAdditional scan result of Farbar Recovery Scan Tool (x64) Version: 19-04-2020\nRan by Daniele (19-04-2020 14:50:00)\nRunning from C:UsersDanieleDownloads\nWindows 7 Home Premium Service Pack 1 (X64) (2013-04-16 12:43:25)\nBoot Mode: Normal\n=========================================================="},{"id":"text-38","heading":"Text","content":"==================== Accounts: ============================="},{"id":"text-39","heading":"Text","content":"Administrator (S-1-5-21-1536202438-368462837-3654654372-500 &#8211; Administrator &#8211; Disabled)\nDaniele (S-1-5-21-1536202438-368462837-3654654372-1001 &#8211; Administrator &#8211; Enabled) =&gt; C:UsersDaniele\nGuest (S-1-5-21-1536202438-368462837-3654654372-501 &#8211; Limited &#8211; Disabled)\nHomeGroupUser$ (S-1-5-21-1536202438-368462837-3654654372-1003 &#8211; Limited &#8211; Enabled)\nRee (S-1-5-21-1536202438-368462837-3654654372-1005 &#8211; Limited &#8211; Enabled) =&gt; C:UsersRee"},{"id":"text-40","heading":"Text","content":"==================== Security Center ========================"},{"id":"text-41","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed.)"},{"id":"text-42","heading":"Text","content":"AV: Avira Antivirus (Enabled &#8211; Up to date) 8EAC8D5C-B3AA-95AA-3DF1-2845CDD09CBE\nAV: Microsoft Security Essentials (Enabled &#8211; Up to date) 71A27EC9-3DA6-45FC-60A7-004F623C6189\nAS: Microsoft Security Essentials (Enabled &#8211; Up to date) CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34\nAS: Avira Antivirus (Enabled &#8211; Up to date) 35CD6CB8-9590-9A24-0741-1337B657D603\nAS: Windows Defender (Disabled &#8211; Out of date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46"},{"id":"text-43","heading":"Text","content":"==================== Installed Programs ======================"},{"id":"text-44","heading":"Text","content":"(Only the adware programs with &quot;Hidden&quot; flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)"},{"id":"text-45","heading":"Text","content":"Acer Backup Manager (HKLM-x32&#8230;InstallShield_0B61BBD5-DA3C-409A-8730-0C3DC3B0F270) (Version: 3.0.0.99 &#8211; NTI Corporation)\nAcer Crystal Eye Webcam (HKLM-x32&#8230;1FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 1.0.1904 &#8211; CyberLink Corp.) Hidden\nAcer Crystal Eye Webcam (HKLM-x32&#8230;InstallShield_01FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 1.0.1904 &#8211; CyberLink Corp.)\nAcer ePower Management (HKLM-x32&#8230;3DB0448D-AD82-4923-B305-D001E521A964) (Version: 6.00.3008 &#8211; Acer Incorporated)\nAcer eRecovery Management (HKLM-x32&#8230;7F811A54-5A09-4579-90E1-C93498E230D9) (Version: 5.00.3504 &#8211; Acer Incorporated)\nAcer Games (HKLM-x32&#8230;WildTangent acer Master Uninstall) (Version: 1.0.2.5 &#8211; WildTangent)\nAcer Registration (HKLM-x32&#8230;Acer Registration) (Version: 1.04.3504 &#8211; Acer Incorporated)\nAcer ScreenSaver (HKLM-x32&#8230;Acer Screensaver) (Version: 1.1.0913.2011 &#8211; Acer Incorporated)\nAcer Updater (HKLM-x32&#8230;EE171732-BEB4-4576-887D-CB62727F01CA) (Version: 1.02.3502 &#8211; Acer Incorporated)\nAdobe Acrobat Reader DC &#8211; Italiano (HKLM-x32&#8230;AC76BA86-7AD7-1040-7B44-AC0F074E4100) (Version: 20.006.20042 &#8211; Adobe Systems Incorporated)\nAdobe AIR (HKLM-x32&#8230;Adobe AIR) (Version: 2.7.1.19610 &#8211; Adobe Systems Incorporated)\nAdobe Flash Player 29 ActiveX (HKLM-x32&#8230;Adobe Flash Player ActiveX) (Version: 29.0.0.140 &#8211; Adobe Systems Incorporated)\nAdobe Flash Player 32 NPAPI (HKLM-x32&#8230;Adobe Flash Player NPAPI) (Version: 32.0.0.303 &#8211; Adobe)\nAgatha Christie &#8211; Death on the Nile (HKLM-x32&#8230;WTA-5e746bf8-8dee-4fe9-9f1a-49235ad98c76) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nAggiornamenti NVIDIA 31.1.10.0 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Update) (Version: 31.1.10.0 &#8211; NVIDIA Corporation) Hidden\nApplication Verifier x64 External Package (HKLM&#8230;77F3D72C-465F-BD51-890E-CC3914B1365F) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nAspera Connect 3.6.1.111228 (HKLM-x32&#8230;EC793CAC-7C41-4817-BA98-7E481A79F9CF) (Version: 3.6.1.111228 &#8211; © Copyright IBM Corp. 2014) Hidden\nAspera Connect 3.6.1.111228 (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Aspera Connect 3.6.1.111228) (Version: 3.6.1.111228 &#8211; © Copyright IBM Corp. 2014)\nAssassin&#39;s Creed IV Black Flag (HKLM-x32&#8230;Uplay Install 273) (Version:  &#8211; Ubisoft)\nAvira (HKLM-x32&#8230;CAB70370-888E-4D62-B5D5-DA7982585C46) (Version: 1.2.145.25926 &#8211; Avira Operations GmbH &amp; Co. KG) Hidden\nAvira (HKLM-x32&#8230;e636e084-c7ab-4246-8ad2-aa1bb1cbedfd) (Version: 1.2.145.25926 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Antivirus (HKLM-x32&#8230;Avira Antivirus) (Version: 15.0.2004.1828 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Phantom VPN (HKLM-x32&#8230;Avira Phantom VPN) (Version: 2.32.2.34115 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira Software Updater (HKLM-x32&#8230;30947035-9248-4304-96CE-CB6B1D38CFD5) (Version: 2.0.6.30594 &#8211; Avira Operations GmbH &amp; Co. KG)\nAvira System Speedup (HKLM-x32&#8230;Avira System Speedup_is1) (Version: 6.4.1.10871 &#8211; Avira Operations GmbH &amp; Co. KG)\nBackup Manager V3 (HKLM-x32&#8230;B61BBD5-DA3C-409A-8730-0C3DC3B0F270) (Version: 3.0.0.99 &#8211; NTI Corporation) Hidden\nBattle.net (HKLM-x32&#8230;Battle.net) (Version:  &#8211; Blizzard Entertainment)\nBejeweled 2 Deluxe (HKLM-x32&#8230;WTA-878366c0-7e0d-49fc-9060-e75a6dabe155) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nBlue Jeans (HKLM-x32&#8230;6D19EE68-6672-48DB-A45A-5CCFA8021D92) (Version: 1.28.10 &#8211; Blue Jeans)\nBroadcom Card Reader Driver Installer (HKLM&#8230;4710662C-8204-4334-A977-B1AC9E547819) (Version: 14.8.2.2 &#8211; Broadcom Corporation)\nBroadcom NetLink Controller (HKLM&#8230;C91DCB72-F5BB-410D-A91A-314F5D1B4284) (Version: 14.8.4.1 &#8211; Broadcom Corporation)\nCaesar 3 (HKLM-x32&#8230;Caesar 3) (Version:  &#8211; )\nChuzzle Deluxe (HKLM-x32&#8230;WTA-7f54354a-b7a2-4639-9a5c-f4b75efe2e90) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nclear.fi (HKLM-x32&#8230;14C4C3B6-F1F4-401F-8C86-03E8E19AAC8C) (Version: 1.0.1517_36458 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;2637C347-9DAD-11D6-9EA2-00055D0CA761) (Version: 1.0.2024.00 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;B906C11A-D193-4143-9FA7-E2EE8A5A8F21) (Version: 9.0.8026 &#8211; CyberLink Corp.) Hidden\nclear.fi (HKLM-x32&#8230;InstallShield_2637C347-9DAD-11D6-9EA2-00055D0CA761) (Version: 1.0.2024.00 &#8211; CyberLink Corp.)\nclear.fi Client (HKLM-x32&#8230;43AAE145-83CF-4C96-9A5E-756CEFCE879F) (Version: 1.00.3500 &#8211; Acer Incorporated)\nCrazy Chicken Kart 2 (HKLM-x32&#8230;WTA-111fa445-16e9-4867-bd6d-79c26bc446f5) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nD3DX10 (HKLM-x32&#8230;E09C4DB7-630C-4F06-A631-8EA7239923AF) (Version: 15.4.2368.0902 &#8211; Microsoft) Hidden\nDAEMON Tools Lite (HKLM-x32&#8230;DAEMON Tools Lite) (Version: 4.48.1.0347 &#8211; Disc Soft Ltd)\nDiablo III (HKLM-x32&#8230;Diablo III) (Version:  &#8211; Blizzard Entertainment)\nDiscord (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Discord) (Version: 0.0.306 &#8211; Discord Inc.)\nDisinstalla EPSON SX100 Series Printer (HKLM&#8230;EPSON SX100 Series) (Version:  &#8211; SEIKO EPSON Corporation)\nDisplayDriverAnalyzer (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_DisplayDriverAnalyzer) (Version: 391.35 &#8211; NVIDIA Corporation) Hidden\nDolby Advanced Audio v2 (HKLM-x32&#8230;B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613) (Version: 7.2.7000.7 &#8211; Dolby Laboratories Inc)\nDragon Age II (HKLM-x32&#8230;F2E23139-3404-4E3C-9855-7724415D62A5) (Version: 1.04 &#8211; Electronic Arts, Inc.)\nDropbox (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Dropbox) (Version: 3.0.5 &#8211; Dropbox, Inc.)\neBay Worldwide (HKLM-x32&#8230;D3E5A972-9A15-427D-AE78-8181A5FD943C) (Version: 2.2.0409 &#8211; OEM)\nEpson Connect Printer Setup (HKLM-x32&#8230;D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C) (Version: 1.4.0 &#8211; Seiko Epson Corporation)\nEpson Event Manager (HKLM-x32&#8230;9F205E94-9E42-4486-A92A-DF3F6CB85444) (Version: 3.10.0061 &#8211; Seiko Epson Corporation)\nEPSON Remote Print Uninstall (HKLM&#8230;EPSON Remote Print) (Version:  &#8211; SEIKO EPSON Corporation)\nEPSON Scan (HKLM-x32&#8230;EPSON Scanner) (Version:  &#8211; Seiko Epson Corporation)\nEpson Software Updater (HKLM-x32&#8230;FD036A57-F81D-4865-AAF0-811558EA76AE) (Version: 4.5.1 &#8211; Seiko Epson Corporation)\nEPSON XP-312 313 315 Series Printer Uninstall (HKLM&#8230;EPSON XP-312 313 315 Series) (Version:  &#8211; SEIKO EPSON Corporation)\nEpsonNet Print (HKLM-x32&#8230;3E31400D-274E-4647-916C-2CACC3741799) (Version: 2.6.0 &#8211; SEIKO EPSON CORPORATION)\nEvernote v. 4.5.1 (HKLM-x32&#8230;28921580-E4BB-11E0-9FD7-1CC1DEF07CBE) (Version: 4.5.1.5451 &#8211; Evernote Corp.)\nFATE (HKLM-x32&#8230;WTA-d562914f-464e-442a-9b6b-eef07926c4b7) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nFinal Drive: Nitro (HKLM-x32&#8230;WTA-ba528cbd-abfc-43b4-b622-039073085d6c) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nFooz Kids (HKLM-x32&#8230;4C774C35-E0AF-72E1-136A-2BF666702268) (Version: 3.0.8 &#8211; FUHU, Inc.) Hidden\nFooz Kids (HKLM-x32&#8230;FoozKids) (Version: 3.0.8 &#8211; FUHU, Inc.)\nFooz Kids Platform (HKLM-x32&#8230;8D68CE08-9A14-4B7B-9857-3C646A2F34C7) (Version: 2.1 &#8211; FUHU, Inc.)\nFotogalerija Windows Live (HKLM-x32&#8230;E59969EA-3B5B-4B24-8B94-43842A7FBFE9) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria de Fotografias do Windows Live (HKLM-x32&#8230;EC0B576-90F9-43C3-8FAD-A4902DF4B8F4) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalería fotográfica de Windows Live (HKLM-x32&#8230;E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria fotogràfica del Windows Live (HKLM-x32&#8230;4736B0ED-F6A1-48EC-A1B7-C053027648F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGaleria fotografii usługi Windows Live (HKLM-x32&#8230;CB3F59BB-7858-41A1-A7EA-4B8A6FC7D431) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalerie de photos Windows Live (HKLM-x32&#8230;488F0347-C4A7-4374-91A7-30818BEDA710) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGalerie foto Windows Live (HKLM-x32&#8230;CB66242D-12B1-4494-82D2-6F53A7E024A3) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nGoogle Chrome (HKLM-x32&#8230;Google Chrome) (Version: 81.0.4044.113 &#8211; Google LLC)\nGoogle Update Helper (HKLM-x32&#8230;60EC980A-BDA2-4CB6-A427-B07A5498B4CA) (Version: 1.3.35.451 &#8211; Google LLC) Hidden\nHearthArena Companion (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Overwolf_eldaohcjmecjpkpdhhoiolhhaeapcldppbdgbnbc) (Version: 1.5.0.2 &#8211; Overwolf app)\nHearthstone (HKLM-x32&#8230;Hearthstone) (Version:  &#8211; Blizzard Entertainment)\nHearthstone Deck Tracker (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;HearthstoneDeckTracker) (Version: 1.10.7 &#8211; HearthSim)\nHP USB Disk Storage Format Tool (HKLM-x32&#8230;E0DF90C-D0BA-4C89-9262-AD78D1A3DE51) (Version:  &#8211; )\nIdentity Card (HKLM-x32&#8230;Identity Card) (Version: 1.00.3501 &#8211; Acer Incorporated)\nInsaniquarium Deluxe (HKLM-x32&#8230;WTA-1aadf450-ec73-41b5-b741-966d0737010a) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nIntel® Control Center (HKLM-x32&#8230;F8A9085D-4C7A-41a9-8A77-C8998A96C421) (Version: 1.2.1.1007 &#8211; Intel Corporation)\nIntel® Management Engine Components (HKLM-x32&#8230;65153EA5-8B6E-43B6-857B-C6E4FC25798A) (Version: 7.0.0.1144 &#8211; Intel Corporation)\nIntel® Processor Graphics (HKLM-x32&#8230;F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA) (Version: 8.15.10.2342 &#8211; Intel Corporation)\nIntel® Processor Identification Utility (HKLM-x32&#8230;A92A4DB0-CD37-42D1-BE1D-603D53C24328) (Version: 1.0.0.0 &#8211; Intel Corporation)\nIntel® Rapid Storage Technology (HKLM-x32&#8230;3E29EE6C-963A-4aae-86C1-DC237C4A49FC) (Version: 10.5.0.1026 &#8211; Intel Corporation)\nIntel® SDK for OpenCL &#8211; CPU Only Runtime Package (HKLM-x32&#8230;FCB3772C-B7D0-4933-B1A9-3707EBACC573) (Version: 2.0.0.37149 &#8211; Intel Corporation)\nJava 8 Update 171 (HKLM-x32&#8230;26A24AE4-039D-4CA4-87B4-2F32180171F0) (Version: 8.0.1710.11 &#8211; Oracle Corporation)\nJewel Match 3 (HKLM-x32&#8230;WTA-63325e84-34c2-4ccd-b3ee-87abc401d44a) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nJewel Quest Solitaire (HKLM-x32&#8230;WTA-4d51be1b-2978-4973-ad15-8b42189f04f8) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nJohn Deere Drive Green (HKLM-x32&#8230;WTA-91a805f7-4cee-4088-a326-afc28032536e) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nJuniper Installer Service (HKLM-x32&#8230;93A64A36-C060-47B4-96DE-D405CC22F4C4) (Version: 7.4.28485 &#8211; Juniper Networks) Hidden\nJuniper Installer Service 7.4 (HKLM-x32&#8230;Juniper Installer Service 7.4) (Version: 7.4.28485 &#8211; Juniper Networks, Inc.)\nJuniper Networks Network Connect 7.1.8 (HKLM-x32&#8230;Juniper Network Connect 7.1.8) (Version: 7.1.8.20737 &#8211; Juniper Networks)\nJuniper Networks Network Connect 7.3.0 (HKLM-x32&#8230;Juniper Network Connect 7.3.0) (Version: 7.3.0.24657 &#8211; Juniper Networks)\nJuniper Networks Network Connect 7.4.0 (HKLM-x32&#8230;Juniper Network Connect 7.4.0) (Version: 7.4.0.30731 &#8211; Juniper Networks)\nJuniper Networks, Inc. Setup Client (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Juniper_Setup_Client) (Version: 7.4.10.45165 &#8211; Juniper Networks, Inc.)\nJuniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM&#8230;Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 &#8211; Juniper Networks, Inc.)\nJuniper Networks, Inc. Setup Client Activex Control (HKLM-x32&#8230;Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 &#8211; Juniper Networks, Inc.)\nJunk Mail filter update (HKLM-x32&#8230;1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nKeePass Password Safe 2.44 (HKLM-x32&#8230;KeePassPasswordSafe2_is1) (Version: 2.44 &#8211; Dominik Reichl)\nKits Configuration Installer (HKLM-x32&#8230;B74E65FD-CC47-41C5-4B89-791A3F61942D) (Version: 8.100.25984 &#8211; Microsoft) Hidden\nKodi (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;Kodi) (Version:  &#8211; XBMC-Foundation)\nLaunch Manager (HKLM-x32&#8230;LManager) (Version: 5.1.7 &#8211; Acer Inc.)\nLDPlayer (HKLM-x32&#8230;LDPlayer4) (Version: 4.0 &#8211; XUANZHI INTERNATIONAL CO., LIMITED)\nLINE (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;LINE) (Version: 5.21.3.2086 &#8211; LINE Corporation)\nManuali EPSON (HKLM-x32&#8230;84CECC1B-21EF-41B1-9A91-3E724E5D99D3) (Version: 1.53.0.0 &#8211; Seiko Epson Corporation)\nMcAfee WebAdvisor (HKLM-x32&#8230;35ED3F83-4BDC-4c44-8EC6-6A8301C7413A) (Version: 4.1.1.90 &#8211; McAfee, LLC.)\nMesh Runtime (HKLM-x32&#8230;8C6D6116-B724-4810-8F2D-D047E6B7D68E) (Version: 15.4.5722.2 &#8211; Microsoft Corporation) Hidden\nMicrosoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32&#8230;D1D37853-0004-3E36-A7AA-74F4EEA35F64) (Version: 4.5.50930 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.5.1 SDK (HKLM-x32&#8230;19A5926D-66E1-46FC-854D-163AA10A52D3) (Version: 4.5.51641 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.8 (HKLM&#8230;92FB6C44-E685-45AD-9B20-CADF4CABA132 &#8211; 1033) (Version: 4.8.03761 &#8211; Microsoft Corporation)\nMicrosoft .NET Framework 4.8 (Italiano) (HKLM&#8230;92FB6C44-E685-45AD-9B20-CADF4CABA132 &#8211; 1040) (Version: 4.8.03761 &#8211; Microsoft Corporation)\nMicrosoft Office 2010 (HKLM-x32&#8230;95140000-0070-0000-0000-0000000FF1CE) (Version: 14.0.4763.1000 &#8211; Microsoft Corporation)\nMicrosoft Office a portata di clic 2010 (HKLM-x32&#8230;Office14.Click2Run) (Version: 14.0.4763.1000 &#8211; Microsoft Corporation)\nMicrosoft Office Starter 2010 &#8211; Italiano (HKLM-x32&#8230;90140011-0066-0410-0000-0000000FF1CE) (Version: 14.0.5128.5002 &#8211; Microsoft Corporation)\nMicrosoft Security Essentials (HKLM&#8230;Microsoft Security Client) (Version: 4.10.209.0 &#8211; Microsoft Corporation)\nMicrosoft Silverlight (HKLM&#8230;89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50918.0 &#8211; Microsoft Corporation)\nMicrosoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32&#8230;F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8) (Version: 3.1.0000 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17 (HKLM&#8230;8220EEFE-38CD-377E-8595-13398D740ACE) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.6161 (HKLM&#8230;5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17 (HKLM-x32&#8230;9A25302D-30C0-39D9-BD6F-21E6EC160475) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148 (HKLM-x32&#8230;1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161 (HKLM-x32&#8230;9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x64 Redistributable &#8211; 10.0.40219 (HKLM&#8230;1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x86 Redistributable &#8211; 10.0.40219 (HKLM-x32&#8230;F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x64) &#8211; 11.0.61030 (HKLM-x32&#8230;ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x86) &#8211; 11.0.61030 (HKLM-x32&#8230;33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x64) &#8211; 12.0.30501 (HKLM-x32&#8230;50d4fc8-5d48-4b8f-8972-47c82c46020f) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x86) &#8211; 12.0.30501 (HKLM-x32&#8230;f65db027-aff3-4070-886a-0d87064aabb1) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015 Redistributable (x64) &#8211; 14.0.24215 (HKLM-x32&#8230;d992c12e-cab2-426f-bde3-fb8c53950b0d) (Version: 14.0.24215.1 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015 Redistributable (x86) &#8211; 14.0.24215 (HKLM-x32&#8230;e2803110-78b3-4664-a479-3611a381656a) (Version: 14.0.24215.1 &#8211; Microsoft Corporation)\nMonitoraggio della tecnologia Intel® Turbo Boost 2.0 (HKLM&#8230;B77EFA0B-9BD3-4122-9F9A-15A963B5EA24) (Version: 2.1.23.0 &#8211; Intel)\nMozilla Firefox 75.0 (x64 it) (HKLM&#8230;Mozilla Firefox 75.0 (x64 it)) (Version: 75.0 &#8211; Mozilla)\nMozilla Maintenance Service (HKLM-x32&#8230;MozillaMaintenanceService) (Version: 75.0.0.7398 &#8211; Mozilla)\nMSI Development Tools (HKLM-x32&#8230;CF3A1CA6-5E5E-B4BD-6CF1-363056816CA2) (Version: 8.100.26898 &#8211; Microsoft Corporation) Hidden\nMyEpson Portal (HKLM-x32&#8230;3361D415-BA35-4143-B301-661991BA6219) (Version: 1.1.2.2 &#8211; SEIKO EPSON CORPORATION) Hidden\nMyEpson Portal (HKLM-x32&#8230;MyEpson Portal) (Version:  &#8211; SEIKO EPSON Corporation)\nMystery of Mortlake Mansion (HKLM-x32&#8230;WTA-fa5c5656-0bbe-4718-93c5-e01c9a8c326f) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nnewsXpresso (HKLM-x32&#8230;613C0AC5-3A67-4B94-8B13-9176AD83F5BF) (Version: 1.0.0.40 &#8211; esobi Inc.) Hidden\nnewsXpresso (HKLM-x32&#8230;InstallShield_613C0AC5-3A67-4B94-8B13-9176AD83F5BF) (Version: 1.0.0.40 &#8211; esobi Inc.)\nNotepad++ (HKLM-x32&#8230;Notepad++) (Version: 6.6.8 &#8211; Notepad++ Team)\nNTI Media Maker 9 (HKLM-x32&#8230;D3D5C4E8-040F-4C6F-8105-41D43CF94F44) (Version: 9.0.2.9002 &#8211; NTI Corporation) Hidden\nNTI Media Maker 9 (HKLM-x32&#8230;InstallShield_D3D5C4E8-040F-4C6F-8105-41D43CF94F44) (Version: 9.0.2.9002 &#8211; NTI Corporation)\nNVIDIA Driver grafico 391.35 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Driver) (Version: 391.35 &#8211; NVIDIA Corporation)\nNVIDIA GeForce Experience 3.13.1.30 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.GFExperience) (Version: 3.13.1.30 &#8211; NVIDIA Corporation)\nNVIDIA PhysX System Software 9.17.0524 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.PhysX) (Version: 9.17.0524 &#8211; NVIDIA Corporation)\nOnline Plug-in (HKLM-x32&#8230;9A0FE2C0-7A7E-444E-8BD4-087178A91865) (Version: 14.0.0.91 &#8211; Citrix Systems, Inc.) Hidden\nOrigin (HKLM-x32&#8230;Origin) (Version: 10.5.2.49155 &#8211; Electronic Arts, Inc.)\nOverwolf (HKLM-x32&#8230;Overwolf) (Version: 0.143.0.24 &#8211; Overwolf Ltd.)\nPannello di controllo NVIDIA 391.35 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.ControlPanel) (Version: 391.35 &#8211; NVIDIA Corporation) Hidden\nPenguins! (HKLM-x32&#8230;WTA-f82d33cf-1bf0-4c54-85ca-769791349557) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nPidgin (HKLM-x32&#8230;Pidgin) (Version: 2.10.7 &#8211; )\nPlants vs. Zombies &#8211; Game of the Year (HKLM-x32&#8230;WTA-fc291ad5-7412-47d4-8641-d23ea23ef2e0) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nPoczta usługi Windows Live (HKLM-x32&#8230;64376910-1860-4CEF-8B34-AA5D205FC5F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPodstawowe programy Windows Live (HKLM-x32&#8230;7A9D47BA-6D50-4087-866F-0800D8B89383) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPolar Bowler (HKLM-x32&#8230;WTA-4f14c51e-af03-4658-92f9-0f759f61b306) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nPošta Windows Live (HKLM-x32&#8230;7BA19818-F717-4DFB-BC11-FAF17B2B8AEE) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nPunkBuster Services (HKLM-x32&#8230;PunkBusterSvc) (Version: 0.991 &#8211; Even Balance, Inc.)\nQuickTime (HKLM-x32&#8230;B67BAFBA-4C9F-48FA-9496-933E3B255044) (Version: 7.74.80.86 &#8211; Apple Inc.)\nRaccolta foto di Windows Live (HKLM-x32&#8230;ED16B700-D91F-44B0-867C-7EB5253CA38D) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nRealtek High Definition Audio Driver (HKLM-x32&#8230;F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC) (Version: 6.0.1.6438 &#8211; Realtek Semiconductor Corp.)\nRenesas Electronics USB 3.0 Host Controller Driver (HKLM-x32&#8230;5442DAB8-7177-49E1-8B22-09A049EA5996) (Version: 2.0.34.0 &#8211; Renesas Electronics Corporation) Hidden\nRenesas Electronics USB 3.0 Host Controller Driver (HKLM-x32&#8230;InstallShield_5442DAB8-7177-49E1-8B22-09A049EA5996) (Version: 2.0.34.0 &#8211; Renesas Electronics Corporation)\nSDK Debuggers (HKLM-x32&#8230;9274C832-3D8A-A294-FDE8-8B9272357098) (Version: 8.100.26936 &#8211; Microsoft Corporation) Hidden\nShockwave (HKLM-x32&#8230;Shockwave) (Version:  &#8211; )\nSierra Utilities (HKLM-x32&#8230;Sierra Utilities) (Version:  &#8211; )\nSkype Click to Call (HKLM-x32&#8230;873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B) (Version: 8.5.0.9167 &#8211; Microsoft Corporation)\nSkype for Business Web App Plug-in (HKLM-x32&#8230;37C8167B-B653-4955-A6E8-EBB8DE937DDD) (Version: 15.8.20020.400 &#8211; Microsoft Corporation)\nSkype versione 8.44 (HKLM-x32&#8230;Skype_is1) (Version: 8.44 &#8211; Skype Technologies S.A.)\nSkype Web Plugin (HKLM-x32&#8230;DF6DC2FB-6783-4340-8B98-401CB656AD3A) (Version: 7.26.0.48 &#8211; Skype Technologies S.A.)\nSlingo Deluxe (HKLM-x32&#8230;WTA-0317c6a7-06b3-4b13-8a10-9b264c639ed4) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nSteam (HKLM-x32&#8230;Steam) (Version:  &#8211; Valve Corporation)\nSupporto applicazioni Apple (HKLM-x32&#8230;5D09C772-ECB3-442B-9CC6-B4341C78FDC2) (Version: 2.3.4 &#8211; Apple Inc.)\nSynaptics Pointing Device Driver (HKLM&#8230;SynTPDeinstKey) (Version: 15.1.6.0 &#8211; Synaptics Incorporated)\nTeamSpeak 3 Client (HKLM&#8230;TeamSpeak 3 Client) (Version: 3.0.15 &#8211; TeamSpeak Systems GmbH)\nTeamViewer (HKLM-x32&#8230;TeamViewer) (Version: 15.4.4445 &#8211; TeamViewer)\nTorchlight (HKLM-x32&#8230;WTA-86f22e04-aba5-46a2-baee-2d2b15dcd07d) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nTreeSize Free V4.2 (HKLM-x32&#8230;TreeSize Free_is1) (Version: 4.2 &#8211; JAM Software)\nUnity Web Player (HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;UnityWebPlayer) (Version: 5.0.1f1 &#8211; Unity Technologies ApS)\nUpdate Installer for WildTangent Games App (HKLM-x32&#8230;2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2.WildTangent Games App) (Version:  &#8211; WildTangent) Hidden\nUplay (HKLM-x32&#8230;Uplay) (Version: 46.0 &#8211; Ubisoft)\nVirtual Villagers 4 &#8211; The Tree of Life (HKLM-x32&#8230;WTA-2d8486f0-4bd6-4e7d-9791-27029e7c6472) (Version: 2.2.0.97 &#8211; WildTangent) Hidden\nVLC media player (HKLM-x32&#8230;VLC media player) (Version: 3.0.8 &#8211; VideoLAN)\nVulkan Run Time Libraries 1.0.65.1 (HKLM&#8230;VulkanRT1.0.65.1) (Version: 1.0.65.1 &#8211; LunarG, Inc.) Hidden\nWedding Dash (HKLM-x32&#8230;WTA-e9518137-4e7b-4626-9f43-7daf4e91fd72) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nWelcome Center (HKLM-x32&#8230;Acer Welcome Center) (Version: 1.02.3504 &#8211; Acer Incorporated)\nWhoCrashed 5.54 (HKLM&#8230;WhoCrashed_is1) (Version:  &#8211; Resplendence Software Projects Sp.)\nWildTangent Games App (HKLM-x32&#8230;70B446D1-E03B-4ab0-9B3C-0832142C9AA8.WildTangent Games App-acer) (Version: 4.0.10.25 &#8211; WildTangent) Hidden\nWindows Live Essentials (HKLM-x32&#8230;WinLiveSuite) (Version: 15.4.3538.0513 &#8211; Microsoft Corporation)\nWindows Software Development Kit for Windows 8.1 (HKLM-x32&#8230;ed3a6e6d-9661-4357-abe4-fcc03dc57a07) (Version: 8.100.26936 &#8211; Microsoft Corporation)\nWinRAR 4.20 (32-bit) (HKLM-x32&#8230;WinRAR archiver) (Version: 4.20.0 &#8211; win.rar GmbH)\nWPT Redistributables (HKLM-x32&#8230;64F3FB9A-9250-B2D6-00B4-50BE0358AEE8) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nWPTx64 (HKLM-x32&#8230;BFF81CB5-E8C7-4184-FBB4-74ADFBC6CCCB) (Version: 8.100.26936 &#8211; Microsoft) Hidden\nZuma Deluxe (HKLM-x32&#8230;WTA-744d629c-c549-4c3b-b820-4ba591229d4e) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nΣυλλογή φωτογραφιών του Windows Live (HKLM-x32&#8230;C00C2A91-6CB3-483F-80B3-2958E29468F1) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nОсновные компоненты Windows Live (HKLM-x32&#8230;E83DC314-C926-4214-AD58-147691D6FE9F) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nПочта Windows Live (HKLM-x32&#8230;B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137) (Version: 15.4.3502.0922 &#8211; Корпорация Майкрософт) Hidden\nФотоальбом Windows Live (HKLM-x32&#8230;77F69CA1-E53D-4D77-8BA3-FA07606CC851) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nФотогалерия на Windows Live (HKLM-x32&#8230;4444F27C-B1A8-464E-9486-4C37BAB39A09) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nגלריית התמונות של Windows Live (HKLM-x32&#8230;CE929F09-3853-4180-BD90-30764BFF7136) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nبريد Windows Live (HKLM-x32&#8230;A4C4B29-5A9D-4910-A13C-B920D5758744) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden\nمعرض صور Windows Live (HKLM-x32&#8230;FBCA06D2-4642-4F33-B20A-A7AB3F0D2E69) (Version: 15.4.3502.0922 &#8211; Microsoft Corporation) Hidden"},{"id":"text-46","heading":"Text","content":"==================== Custom CLSID (Whitelisted): =============="},{"id":"text-47","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)"},{"id":"text-48","heading":"Text","content":"CustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID05A3A96-BAC4-4B0A-94EA-C0CE100EA736localserver32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID4A9E854-6F47-4F37-8A10-F896717F0329InprocServer32 -&gt; C:UsersDanieleAppDataLocalProgramsAsperaAspera Connectlib3.6.1npasperaweb64_3.6.1.111228.dll (Aspera, Inc. -&gt; Aspera, Inc. )\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSID7ECF6F97-B4F3-4168-9835-F59C06D7875FInprocServer32 -&gt; C:UsersDanieleAppDataLocalMicrosoftSkypeForBusinessPlugin15.8.20020.400GatewayActiveX-x64.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDAD17B774-7F87-4141-BB9C-2AEE3841DC4EInprocServer32 -&gt; C:UsersDanieleAppDataLocalProgramsAsperaAspera Connectlib3.6.1npasperaweb64_3.6.1.111228.dll (Aspera, Inc. -&gt; Aspera, Inc. )\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDBB384F15-7676-403E-B797-1F9D935525A3InprocServer32 -&gt; C:UsersDanieleAppDataLocalSkypePlugin7.26.0.48GatewayActiveX-x64.dll (Microsoft Corporation -&gt; Skype Technologies S.A.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314ED9-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDA-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDB-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDC-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDD-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDE-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EDF-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nCustomCLSID: HKUS-1-5-21-1536202438-368462837-3654654372-1001_ClassesCLSIDFB314EE0-A251-47B7-93E1-CDD82E34AF8BInprocServer32 -&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt1 »] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt2 »] -&gt; FB314EDA-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt3 »] -&gt; FB314EDD-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt4 »] -&gt; FB314EDE-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt5 »] -&gt; FB314EDB-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt6 »] -&gt; FB314EDF-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt7 »] -&gt; FB314EDC-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nShellIconOverlayIdentifiers: [« DropboxExt8 »] -&gt; FB314EE0-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers1: [ANotepad++64] -&gt; B298D29A-A6ED-11DE-BA8C-A68E55D89593 =&gt; C:Program Files (x86)Notepad++NppShell_06.dll [2014-05-12] () [File not signed]\nContextMenuHandlers1: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers1: [Shell Extension for Malware scanning] -&gt; 45AC2688-0253-4ED8-97DE-B5370FA7D48A =&gt; C:Program Files (x86)AviraAntivirusshlext64.dll [2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers1: [SystemSpeedupFilesMenu] -&gt; 14cb2bd0-2375-3d10-9b5d-5e18865c8959 =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers1: [WinRAR] -&gt; B41DB860-64E4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext64.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers1-x32: [WinRAR32] -&gt; B41DB860-8EE4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers2: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers4: [EPP] -&gt; 09A47860-11B0-4DA5-AFA5-26D86198A780 =&gt; C:Program FilesMicrosoft Security Clientshellext.dll [2016-11-14] (Microsoft Corporation -&gt; Microsoft Corporation)\nContextMenuHandlers4: [SystemSpeedupFoldersMenu] -&gt; 700866bb-c8e9-3e71-b359-abb28baed0e8 =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers5: [igfxcui] -&gt; 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 =&gt; C:Windowssystem32igfxpph.dll [2011-03-26] (Microsoft Windows Hardware Compatibility Publisher -&gt; Intel Corporation)\nContextMenuHandlers5: [NvCplDesktopContext] -&gt; 3D1975AF-48C6-4f8e-A182-BE0E08FA86A9 =&gt; C:Windowssystem32nvshext.dll [2018-03-24] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nContextMenuHandlers5: [SynGlwPad] -&gt; 681C10CE-5E5D-463A-A270-771AA48E4C71 =&gt; C:WindowsSystem32SynGlwPadShlExt.dll [2010-07-29] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nContextMenuHandlers5: [SystemSpeedupDesktopMenu] -&gt; 0cab5786-30e8-3185-9b3b-ccefbf1b8afe =&gt; C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.UI.ShellExtension.DLL [2020-01-30] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers6: [Shell Extension for Malware scanning] -&gt; 45AC2688-0253-4ED8-97DE-B5370FA7D48A =&gt; C:Program Files (x86)AviraAntivirusshlext64.dll [2020-04-01] (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nContextMenuHandlers6: [WinRAR] -&gt; B41DB860-64E4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext64.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers6-x32: [WinRAR32] -&gt; B41DB860-8EE4-11D2-9906-E49FADC173CA =&gt; C:Program Files (x86)WinRARrarext.dll [2012-06-09] (Alexander Roshal) [File not signed]\nContextMenuHandlers1_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers4_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)\nContextMenuHandlers5_S-1-5-21-1536202438-368462837-3654654372-1001: [DropboxExt] -&gt; FB314ED9-A251-47B7-93E1-CDD82E34AF8B =&gt; C:UsersDanieleAppDataRoamingDropboxbinDropboxExt64.24.dll [2015-01-09] (Dropbox, Inc -&gt; Dropbox, Inc.)"},{"id":"text-49","heading":"Text","content":"==================== Codecs (Whitelisted) ===================="},{"id":"text-50","heading":"Text","content":"(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)"},{"id":"text-51","heading":"Text","content":"HKLM&#8230;Drivers32: [msacm.l3acm] =&gt; C:WindowsSysWOW64l3codecp.acm [220672 2009-07-14] (Microsoft Windows -&gt; Fraunhofer Institut Integrierte Schaltungen IIS)"},{"id":"text-52","heading":"Text","content":"==================== Shortcuts &amp; WMI ========================"},{"id":"text-53","heading":"Text","content":"(The entries could be listed to be restored or removed.)"},{"id":"text-54","heading":"Text","content":"WMI:subscription__FilterToConsumerBinding-&gt;CommandLineEventConsumer.Name=&quot;BVTConsumer&quot;&quot;,Filter=&quot;__EventFilter.Name=&quot;BVTFilter&quot;::\nWMI:subscription__EventFilter-&gt;BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA « Win32_Processor » AND TargetInstance.LoadPercentage > 99]\nWMI:subscriptionCommandLineEventConsumer-&gt;BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]"},{"id":"text-55","heading":"Text","content":"==================== Loaded Modules (Whitelisted) ============="},{"id":"text-56","heading":"Text","content":"2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 096130048 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libcef.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000117760 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libEGL.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004342784 _____ () [File not signed] C:Program Files (x86)Battle.netBattle.net.11943libGLESv2.dll\n2019-03-28 00:48 &#8211; 2019-03-28 00:48 &#8211; 000115200 _____ (Microsoft Corporation) [File not signed] C:WindowsMicrosoft.NetassemblyGAC_32System.EnterpriseServicesv4.0_4.0.0.0__b03f5f7f11d50a3aSystem.EnterpriseServices.Wrapper.dll\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 001101824 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80.DLL\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 001093120 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80U.DLL\n2018-05-03 22:00 &#8211; 2018-05-03 22:00 &#8211; 000061440 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfcloc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_03ce2c72205943d3MFC80ITA.DLL\n2015-05-01 19:18 &#8211; 2012-11-12 15:15 &#8211; 000558592 _____ (SEIKO EPSON CORPORATION) [File not signed] C:WindowsSystem32enppmon.dll\n2015-05-01 19:18 &#8211; 2012-10-22 17:19 &#8211; 000219648 _____ (SEIKO EPSON CORPORATION) [File not signed] C:WindowsSystem32enpres.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000760832 _____ (The Chromium Authors) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943chrome_elf.dll\n2020-04-18 15:23 &#8211; 2020-04-18 15:23 &#8211; 000047104 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943audioqtaudio_windows.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000026112 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqgif.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000027136 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqico.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000243712 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqjpeg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000223744 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqmng.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000020992 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqsvg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000332288 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943imageformatsqtiff.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 001140224 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943platformsqwindows.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000041984 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtGraphicalEffectsprivateqtgraphicaleffectsprivate.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtGraphicalEffectsqtgraphicaleffectsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQmlModels.2modelsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuick.2qtquick2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000084480 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickControls.2qtquickcontrols2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000267776 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickControlsqtquickcontrolsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000071680 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickLayoutsqquicklayoutsplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000211456 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickTemplates.2qtquicktemplates2plugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000014848 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943qmlQtQuickWindow.2windowplugin.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004943360 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Core.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 005022208 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Gui.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000626176 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Multimedia.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000877056 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Network.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 002908672 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Qml.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 003078656 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Quick.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000096256 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5QuickControls2.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000681472 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5QuickTemplates2.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000259072 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Svg.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 004718080 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Widgets.dll\n2020-04-18 15:24 &#8211; 2020-04-18 15:24 &#8211; 000439296 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5WinExtras.dll\n2020-04-18 15:25 &#8211; 2020-04-18 15:25 &#8211; 000159232 _____ (The Qt Company Ltd.) [File not signed] C:Program Files (x86)Battle.netBattle.net.11943Qt5Xml.dll"},{"id":"text-57","heading":"Text","content":"==================== Alternate Data Streams (Whitelisted) ========"},{"id":"text-58","heading":"Text","content":"==================== Safe Mode (Whitelisted) =================="},{"id":"text-59","heading":"Text","content":"==================== Association (Whitelisted) ================="},{"id":"text-60","heading":"Text","content":"==================== Internet Explorer trusted/restricted =========="},{"id":"text-61","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry.)"},{"id":"text-62","heading":"Text","content":"IE trusted site: HKUS-1-5-21-1536202438-368462837-3654654372-1001&#8230;geforce.co.uk -&gt; hxxps://www.geforce.co.uk"},{"id":"text-63","heading":"Text","content":"==================== Hosts content: ========================="},{"id":"text-64","heading":"Text","content":"(If needed Hosts: directive could be included in the fixlist to reset Hosts.)"},{"id":"text-65","heading":"Text","content":"2009-07-14 03:34 &#8211; 2009-06-10 22:00 &#8211; 000000824 _____ C:Windowssystem32driversetchosts"},{"id":"text-66","heading":"Text","content":"==================== Other Areas ==========================="},{"id":"text-67","heading":"Text","content":"(Currently there is no automatic fix for this section.)"},{"id":"text-68","heading":"Text","content":"HKLMSystemCurrentControlSetControlSession ManagerEnvironment\\Path -&gt; c:program files (x86)common filesoraclejavajavapath;c:programdataoraclejavajavapath;c:program filescommon filesmicrosoft sharedwindows live;c:program files (x86)common filesmicrosoft sharedwindows live;c:windowssystem32;c:windows;c:windowssystem32wbem;c:windowssystem32windowspowershellv1.0;c:program files (x86)windows liveshared;c:program files (x86)quicktimeqtsystem;c:program files (x86)windows kits8.1windows performance toolkit;c:program files (x86)intelopencl sdk2.0binx86;c:program files (x86)intelopencl sdk2.0binx64;c:program files (x86)intelopencl sdk2.0binx86;c:program files (x86)intelopencl sdk2.0binx64;C:Program Files (x86)NVIDIA CorporationPhysXCommon\nHKUS-1-5-21-1536202438-368462837-3654654372-1001Control PanelDesktop\\Wallpaper -&gt; C:UsersDanieleAppDataRoamingMicrosoftWindowsThemesTranscodedWallpaper.jpg\nDNS Servers: 194.168.4.100 &#8211; 194.168.8.100\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)\nWindows Firewall is enabled."},{"id":"text-69","heading":"Text","content":"==================== MSCONFIG/TASK MANAGER disabled items =="},{"id":"text-70","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed.)"},{"id":"text-71","heading":"Text","content":"MSCONFIGServices: AdobeARMservice =&gt; 2\nMSCONFIGServices: AdobeFlashPlayerUpdateSvc =&gt; 3\nMSCONFIGServices: cphs =&gt; 3\nMSCONFIGServices: DsiWMIService =&gt; 2\nMSCONFIGServices: dsNcService =&gt; 2\nMSCONFIGServices: ePowerSvc =&gt; 2\nMSCONFIGServices: EpsonScanSvc =&gt; 2\nMSCONFIGServices: EPSON_PM_RPCV4_06 =&gt; 2\nMSCONFIGServices: FLEXnet Licensing Service =&gt; 3\nMSCONFIGServices: GamesAppIntegrationService =&gt; 3\nMSCONFIGServices: GamesAppService =&gt; 3\nMSCONFIGServices: GREGService =&gt; 2\nMSCONFIGServices: gupdate =&gt; 2\nMSCONFIGServices: gupdatem =&gt; 3\nMSCONFIGServices: IAStorDataMgrSvc =&gt; 2\nMSCONFIGServices: ICCS =&gt; 3\nMSCONFIGServices: JuniperAccessService =&gt; 2\nMSCONFIGServices: Live Updater Service =&gt; 2\nMSCONFIGServices: LMS =&gt; 2\nMSCONFIGServices: MozillaMaintenance =&gt; 3\nMSCONFIGServices: MyEpson Portal Service =&gt; 2\nMSCONFIGServices: NTI IScheduleSvc =&gt; 2\nMSCONFIGServices: NvContainerLocalSystem =&gt; 3\nMSCONFIGServices: NvContainerNetworkService =&gt; 3\nMSCONFIGServices: NVDisplay.ContainerLocalSystem =&gt; 2\nMSCONFIGServices: NvTelemetryContainer =&gt; 2\nMSCONFIGServices: Origin Client Service =&gt; 3\nMSCONFIGServices: Origin Web Helper Service =&gt; 2\nMSCONFIGServices: OverwolfUpdater =&gt; 3\nMSCONFIGServices: SkypeUpdate =&gt; 2\nMSCONFIGServices: Steam Client Service =&gt; 3\nMSCONFIGServices: TeamViewer =&gt; 2\nMSCONFIGServices: TurboBoost =&gt; 3\nMSCONFIGServices: UNS =&gt; 2\nMSCONFIGstartupreg: APSDaemon =&gt; &quot;C:Program Files (x86)Common FilesAppleApple Application SupportAPSDaemon.exe&quot;\nMSCONFIGstartupreg: ArcadeMovieService =&gt; &quot;C:Program Files (x86)Acerclear.fiMovieclear.fiMovieService.exe&quot;\nMSCONFIGstartupreg: BackupManagerTray =&gt; &quot;C:Program Files (x86)NTIAcer Backup ManagerBackupManagerTray.exe&quot; -h -k\nMSCONFIGstartupreg: ConnectionCenter =&gt; &quot;C:Program Files (x86)CitrixICA Clientconcentr.exe&quot; /startup\nMSCONFIGstartupreg: DAEMON Tools Lite =&gt; &quot;C:Program Files (x86)DAEMON Tools LiteDTLite.exe&quot; -autorun\nMSCONFIGstartupreg: Dolby Advanced Audio v2 =&gt; &quot;C:Dolby PCEE4pcee4.exe&quot; -autostart\nMSCONFIGstartupreg: EEventManager =&gt; &quot;C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe&quot;\nMSCONFIGstartupreg: HotKeysCmds =&gt; &quot;C:Windowssystem32hkcmd.exe&quot;\nMSCONFIGstartupreg: IgfxTray =&gt; &quot;C:Windowssystem32igfxtray.exe&quot;\nMSCONFIGstartupreg: KeePass 2 PreLoad =&gt; &quot;C:Program Files (x86)KeePass Password Safe 2KeePass.exe&quot; &#8211;preload\nMSCONFIGstartupreg: LManager =&gt; C:Program Files (x86)Launch ManagerLManager.exe\nMSCONFIGstartupreg: mobilegeni daemon =&gt; C:Program Files (x86)MobogenieDaemonProcess.exe\nMSCONFIGstartupreg: NUSB3MON =&gt; &quot;C:Program Files (x86)Renesas ElectronicsUSB 3.0 Host Controller DriverApplicationnusb3mon.exe&quot;\nMSCONFIGstartupreg: OOTag =&gt; C:Program Files (x86)AcerOOBEOfferootag.exe\nMSCONFIGstartupreg: Persistence =&gt; &quot;C:Windowssystem32igfxpers.exe&quot;\nMSCONFIGstartupreg: Power Management =&gt; C:Program FilesAcerAcer ePower ManagementePowerTray.exe\nMSCONFIGstartupreg: QuickTime Task =&gt; &quot;C:Program Files (x86)QuickTimeQTTask.exe&quot; -atboottime\nMSCONFIGstartupreg: Redirector =&gt; &quot;C:Program Files (x86)CitrixICA Clientredirector.exe&quot; /startup\nMSCONFIGstartupreg: RtHDVBg_Dolby =&gt; C:Program FilesRealtekAudioHDARAVBg64.exe /FORPCEE4 \nMSCONFIGstartupreg: RtHDVCpl =&gt; C:Program FilesRealtekAudioHDARAVCpl64.exe -s\nMSCONFIGstartupreg: Search Protection =&gt; &quot;C:UsersDanieleAppDataRoamingSearch ProtectionSP.EXE&quot; /autostart\nMSCONFIGstartupreg: Skype =&gt; &quot;C:Program Files (x86)SkypePhoneSkype.exe&quot; /minimized /regrun\nMSCONFIGstartupreg: SunJavaUpdateSched =&gt; C:Program Files (x86)Common FilesJavaJava Updatejusched.exe\nMSCONFIGstartupreg: SynTPEnh =&gt; %ProgramFiles%SynapticsSynTPSynTPEnh.exe"},{"id":"text-72","heading":"Text","content":"==================== FirewallRules (Whitelisted) ================"},{"id":"text-73","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)"},{"id":"text-74","heading":"Text","content":"FirewallRules: [BB9D900C-0431-418E-8C0A-C231DDCD4601] =&gt; (Allow) C:Program Files (x86)Windows LiveContactswlcomm.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [32049F24-47B1-4DD3-8444-C00D6AD61B16] =&gt; (Allow) LPort=2869\nFirewallRules: [F75F9F29-02E8-4A68-8A28-54916E467F3D] =&gt; (Allow) LPort=1900\nFirewallRules: [C356995C-A188-4CAC-A71A-7AA95365C06B] =&gt; (Allow) C:Program Files (x86)Windows LiveMessengermsnmsgr.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [F27A6AD3-BABD-4E5E-9C93-AE69FEE085E1] =&gt; (Allow) C:Program Files (x86)Windows LiveMeshMOE.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [BC8F2982-4766-4CA9-8568-4DD9325B8D8B] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPclear.fi.exe (CyberLink -&gt; Acer Incorporated)\nFirewallRules: [D0884557-C872-4F28-B425-11EA38071BAA] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPclear.fiAgent.exe (CyberLink -&gt; CyberLink Corp.)\nFirewallRules: [DED69C15-FD73-47F1-9AE7-AA1E07B1AA5F] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelCLMLCLMLSvc.exe (CyberLink -&gt; CyberLink Corp.)\nFirewallRules: [7053E4E1-5D04-4B5F-B765-30CC150AB5F0] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [CD57FF54-0544-444F-8A7C-F432B4AF1F13] =&gt; (Allow) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [E10AD824-55A4-4C5E-AFDC-3278CEC762AF] =&gt; (Block) C:Program Files (x86)Acerclear.fiMVPKernelDMRDMREngine.exe (CyberLink -&gt; CyberLink)\nFirewallRules: [A6B0B15B-42D5-4D85-B90A-F0312F1B958D] =&gt; (Allow) Conquer_v5721_P2P.exe No File\nFirewallRules: [TCP Query User5AE4B2B1-9F23-4BE2-B1CB-D68B83804AB3D:giochidiablo iiidiablo iiidiablo iii.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiidiablo iii.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [UDP Query UserD67346DB-E26C-48B9-82CF-217414001078D:giochidiablo iiidiablo iiidiablo iii.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiidiablo iii.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [0A3A4784-CDE8-4892-BAB0-0DDA97B44F36] =&gt; (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [EF78F40A-C8F9-45E4-91A3-FB22A2D9B090] =&gt; (Allow) C:WindowsSysWOW64PnkBstrA.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [3A4F95A8-CD4C-461E-8981-11EB54AE03F9] =&gt; (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [FEF7E85F-3029-4D61-8862-75BA9506CC73] =&gt; (Allow) C:WindowsSysWOW64PnkBstrB.exe (Even Balance, Inc. -&gt; )\nFirewallRules: [74DB4201-A73A-48B2-AA3A-148CF51349C0] =&gt; (Allow) C:Program Files (x86)Common FilesAppleApple Application SupportWebKit2WebProcess.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [F87F2B4A-34AD-488A-A071-7849FC87729E] =&gt; (Allow) C:UsersDanieleAppDataRoaminguTorrentuTorrent.exe No File\nFirewallRules: [AB0C7AF1-9475-46B2-B111-A13144F9DDFD] =&gt; (Allow) C:UsersDanieleAppDataRoaminguTorrentuTorrent.exe No File\nFirewallRules: [6EF13497-1121-43C7-97C4-E2ED9E9E244D] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [612ED1D8-238A-4C46-A5D8-9F246018E22C] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [44E21BC9-991E-4012-8574-7C0E44EC3586] =&gt; (Allow) C:Program Files (x86)Battle.netBattle.net.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [FECBDB91-560D-4666-8565-E4E38DDA498C] =&gt; (Allow) C:Program Files (x86)Battle.netBattle.net.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [A2A5A7DD-A5F7-4DE8-824D-B5DC0DF5E263] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2737Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [6E042EB7-3751-4658-B76C-F8D665685522] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2737Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [26535086-916B-4D18-8166-4D2AC4036B93] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2753Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [56CDE0D0-F4BD-41E6-99EC-9AD17421D43A] =&gt; (Allow) C:ProgramDataBattle.netAgentAgent.beta.2753Agent.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [DFBCBBF2-C3D0-4D12-B7FB-BE8097FDD79A] =&gt; (Allow) C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nFirewallRules: [51A92662-05B7-40E3-AC9B-4361F8756831] =&gt; (Allow) C:UsersDanieleAppDataRoamingDropboxbinDropbox.exe (Dropbox, Inc -&gt; Dropbox, Inc.)\nFirewallRules: [C20EF2D3-73B1-459D-A216-C18E161A05F1] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [CF196B10-406C-4903-BA69-031AFBF448F2] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [CB0FE2A1-EB29-4664-BEBA-B86716D7194F] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [22CE7CBF-D8FF-4D70-AAFE-28B08ED0B355] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [TCP Query User178CF2A2-0D4F-4104-9731-24DA106BAC23C:program files (x86)mozilla firefoxfirefox.exe] =&gt; (Block) C:program files (x86)mozilla firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [UDP Query User8B73733E-A519-4359-92DA-1F88A0CDFCE8C:program files (x86)mozilla firefoxfirefox.exe] =&gt; (Block) C:program files (x86)mozilla firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [TCP Query User68CA8A72-B440-4885-A5CB-5C3B7303437EC:program files (x86)kodikodi.exe] =&gt; (Allow) C:program files (x86)kodikodi.exe (XBMC-Foundation) [File not signed]\nFirewallRules: [UDP Query User1F56C585-CDCB-435D-989C-3898A06D6B82C:program files (x86)kodikodi.exe] =&gt; (Allow) C:program files (x86)kodikodi.exe (XBMC-Foundation) [File not signed]\nFirewallRules: [49ADE3C6-B596-4EEC-BF05-A44B6D162148] =&gt; (Allow) C:Program Files (x86)Steambinsteamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [F29CF4BD-B1DF-4AAB-BFF1-78A2BF5998AE] =&gt; (Allow) C:Program Files (x86)Steambinsteamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [6EBBDC91-6891-435A-906C-B0373AE1C0C8] =&gt; (Allow) C:Program Files (x86)SteamSteamAppscommonSoccer ManagerSoccer Manager.exe () [File not signed]\nFirewallRules: [6CF1FE33-D73B-40A5-A924-ADC0D7D2AF5A] =&gt; (Allow) C:Program Files (x86)SteamSteamAppscommonSoccer ManagerSoccer Manager.exe () [File not signed]\nFirewallRules: [TCP Query User9C70BED5-17C9-4370-9B0F-126357FA2B45C:usersdanieleappdatalocalskypepluginpluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalskypepluginpluginhost.exe (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFirewallRules: [UDP Query UserCE2FDCBA-9FE0-4053-A207-1322E0F9C691C:usersdanieleappdatalocalskypepluginpluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalskypepluginpluginhost.exe (Microsoft Corporation -&gt; Skype Technologies S.A.)\nFirewallRules: [E4A4A8EA-DBCC-43D1-BD93-562C96AB0935] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [D52DCD90-6B49-49C0-97EF-D987E1868BFA] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [FCDE241B-E22A-4166-A8DC-48695BE935D6] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe No File\nFirewallRules: [1DDA64DE-761F-40CC-9EA7-851DC33D0D83] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe No File\nFirewallRules: [TCP Query UserB3EAE4A3-48B3-4441-87D3-093BFDF490CDC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Allow) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [UDP Query User87E5D06C-0B72-435E-9416-10CA4CDC044AC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Allow) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [TCP Query User9DF0C516-812D-4B45-829B-44126C8F1B20C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [UDP Query UserB72E6E6F-F7D0-4B79-815B-A8C55347E36FC:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe] =&gt; (Allow) C:usersdanieleappdatalocalmicrosoftskypeforbusinessplugin15.8.20020.400pluginhost.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [TCP Query UserA0034E0B-97DD-46E8-823A-62E0703F0ADAC:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Block) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [UDP Query User9ADD0A8D-6055-4CB1-BA9F-4020B6706570C:usersreeappdatalocalblue jeansappbluejeans.exe] =&gt; (Block) C:usersreeappdatalocalblue jeansappbluejeans.exe (Blue Jeans Network -&gt; Blue Jeans)\nFirewallRules: [09E47FEF-1759-43B4-9795-E9315C90A01D] =&gt; (Allow) C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [9E3142C6-90FB-4855-8FF1-FCBE114EEF4D] =&gt; (Allow) C:Program Files (x86)Epson SoftwareEvent ManagerEEventManager.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [9FB0505C-59D4-4113-91C5-9FBFAB217F6D] =&gt; (Allow) C:Program Files (x86)EPSON SoftwareECPrinterSetupENPApp.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [3A64D786-1F89-4801-BD77-C585A80CBFB7] =&gt; (Allow) C:Program Files (x86)EPSON SoftwareECPrinterSetupENPApp.exe (SEIKO EPSON CORPORATION -&gt; SEIKO EPSON CORPORATION)\nFirewallRules: [TCP Query User74F6835B-AE6B-4AB9-8FCC-4459350C6570D:giochihearthstonehearthstone.exe] =&gt; (Block) D:giochihearthstonehearthstone.exe (Blizzard Entertainment, Inc. -&gt; )\nFirewallRules: [UDP Query User58AED474-9009-46A6-9923-0206B015380FD:giochihearthstonehearthstone.exe] =&gt; (Block) D:giochihearthstonehearthstone.exe (Blizzard Entertainment, Inc. -&gt; )\nFirewallRules: [VirtualPC-In-UDP-1] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [VirtualPC-In-UDP-2] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [VirtualPC-In-TCP-1] =&gt; (Allow) %SystemRoot%System32vpc.exe No File\nFirewallRules: [2DBC1507-3D9F-4958-9F7E-83595D81F016] =&gt; (Allow) D:GiochiDOTA 2steamappscommonEador. Masters of the Broken Worldlauncher.exe () [File not signed]\nFirewallRules: [B9026BBA-84DB-4400-8E1E-ABD5059117CD] =&gt; (Allow) D:GiochiDOTA 2steamappscommonEador. Masters of the Broken Worldlauncher.exe () [File not signed]\nFirewallRules: [428E48D4-A2FC-4E38-93F0-D015DED2CEA0] =&gt; (Allow) D:GiochiDOTA 2steamappscommondota 2 betagamebinwin64dota2.exe (Valve -&gt; )\nFirewallRules: [74C303B6-F2E8-4BC6-853F-EFD5FBE1535B] =&gt; (Allow) D:GiochiDOTA 2steamappscommondota 2 betagamebinwin64dota2.exe (Valve -&gt; )\nFirewallRules: [8D39FFFC-D3F3-40B7-9A83-559EF34F746B] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [9C0BC1AD-D865-48A0-A410-D2A72E9067A0] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [E4732CBC-C606-4D23-B4BE-4EF941892D2A] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [3C1769FE-7F73-40CD-8694-9D94EB5A4C73] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [EDDA200D-3307-4268-BF74-2A6B8C5850FE] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [5AC4F2B2-78FE-4312-94CF-D9BD16700FE6] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [7FFE0A82-6CE9-4263-BCEA-12BA88FC5AD1] =&gt; (Allow) C:Program FilesBlueStacksHD-Player.exe No File\nFirewallRules: [71D0935A-3DC4-46A8-B5EC-DC69E44DE995] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [734F2907-15A9-4964-9A4B-6AF63CB588B4] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [575D6C1F-8E4F-481C-AF65-601DDDA498A1] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LINE.exe No File\nFirewallRules: [891ABF3F-4987-4BF6-894D-804B5BC60153] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LINE.exe No File\nFirewallRules: [42FF3F30-8B2A-42B0-9BC0-F6C7BACF9258] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LineUpdater.exe No File\nFirewallRules: [F38971E4-A0A7-44DB-8A1C-8450D8A685C3] =&gt; (Allow) C:UsersDanieleAppDataLocalLINEbin5.18.2.1998LineUpdater.exe No File\nFirewallRules: [TCP Query UserCC8480C0-2941-4E9D-8A52-47822F0D9776D:giochidiablo iiidiablo iiix64diablo iii64.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiix64diablo iii64.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [UDP Query UserF6C4F938-A1A8-4668-AB2C-03AC5CE15700D:giochidiablo iiidiablo iiix64diablo iii64.exe] =&gt; (Allow) D:giochidiablo iiidiablo iiix64diablo iii64.exe (Blizzard Entertainment, Inc. -&gt; Blizzard Entertainment)\nFirewallRules: [TCP Query User163F9996-F652-4769-9BAC-80C531683DA9C:program filesdnplayerext2ldboxheadless.exe] =&gt; (Allow) C:program filesdnplayerext2ldboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [UDP Query User3343FBF2-B1FF-4C62-B5FF-D8C3A6E8EC98C:program filesdnplayerext2ldboxheadless.exe] =&gt; (Allow) C:program filesdnplayerext2ldboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [6A971D92-619D-4131-AB0C-0BC7C492C4D5] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [9947C36A-3F76-4596-90D5-7062A53E9C53] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7x64steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [TCP Query User71DD669E-F8F9-4657-9480-12045D0A9A65C:program filesldplayerboxldvboxheadless.exe] =&gt; (Allow) C:program filesldplayerboxldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [UDP Query User5C9DDDCA-3F20-4505-8FE1-74593EBD6931C:program filesldplayerboxldvboxheadless.exe] =&gt; (Allow) C:program filesldplayerboxldvboxheadless.exe (Shanghai Changzhi Network Technology Co., Ltd. -&gt; Oracle Corporation)\nFirewallRules: [170B5594-146D-4B85-9BB4-3EF53938E732] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [37535782-EEB9-4AD5-82AB-95BDA7C0B007] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [F8CACE39-A536-471F-89EC-F6BA460694F0] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [472F5DAF-CF00-417C-AB83-604384991CE5] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [8070CE88-1B4C-434E-8495-B0F0C8C82972] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [22DBF4E8-86F2-44C0-9BE2-40F28D8B56AF] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [06240932-630C-46AA-8C14-877D0EA3938A] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [CC3EB70E-EEAD-4622-8480-E3C7771BF25C] =&gt; (Allow) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [E59453FF-C79A-4D0D-A485-D3FE8B274B54] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [0A829F94-700F-4835-8284-7B28614D717B] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [79FB848F-BBE9-42DA-8170-285A6C0060C8] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [456EF3E4-BE52-4A9A-8CA8-06554B75D800] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [B06D86D3-3848-4734-944F-5706BE664234] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [F0855DE7-46B2-4581-BFC1-2A4EB0D47355] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [8009BD78-17DA-44F1-95AA-5E9EC7724E77] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [73B5CCA2-1DFB-417E-88E2-0DAE1645F388] =&gt; (Block) C:Program Files (x86)Overwolf.143.0.24OverwolfBrowser.exe (Overwolf Ltd -&gt; Overwolf LTD)\nFirewallRules: [41C0109E-C969-40D1-AEDA-28C4B17EF631] =&gt; (Allow) D:GiochiDOTA 2steamappscommonPillars of EternityPillarsOfEternity.exe (Obsidian Entertainment) [File not signed]\nFirewallRules: [0A52AC62-C826-437E-BCE1-C1902CBE00BE] =&gt; (Allow) D:GiochiDOTA 2steamappscommonPillars of EternityPillarsOfEternity.exe (Obsidian Entertainment) [File not signed]\nFirewallRules: [374A4772-2595-4C7A-9E1D-A1692E687887] =&gt; (Allow) D:GiochiDOTA 2steamappscommonCounter-Strike Global Offensivecsgo.exe (Valve -&gt; )\nFirewallRules: [55E824ED-7014-48A7-8DAA-0C8717A6913C] =&gt; (Allow) D:GiochiDOTA 2steamappscommonCounter-Strike Global Offensivecsgo.exe (Valve -&gt; )\nFirewallRules: [E3CDA667-4963-4012-8775-68F6023DADD5] =&gt; (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -&gt; Google LLC)\nFirewallRules: [BB40FF31-6239-422E-8074-B6A9E2DC0D95] =&gt; (Block) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nFirewallRules: [0645C731-0335-4950-9427-213A6DA9E558] =&gt; (Allow) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)\nFirewallRules: [CDB7F1B2-0F67-4210-9A69-DF18B049D9CE] =&gt; (Allow) C:Program Files (x86)AviraSoftwareUpdateravirasoftwareupdatertoastnotificationsbridge.exe (Avira Operations GmbH &amp; Co. KG -&gt; Avira Operations GmbH &amp; Co. KG)"},{"id":"text-75","heading":"Text","content":"==================== Restore Points ========================="},{"id":"text-76","heading":"Text","content":"18-04-2020 04:24:53 Punto di controllo pianificato\n18-04-2020 22:37:41 Windows Update"},{"id":"text-77","heading":"Text","content":"==================== Faulty Device Manager Devices ============"},{"id":"text-78","heading":"Text","content":"==================== Event log errors: ========================"},{"id":"text-79","heading":"Text","content":"Application errors:\n==================\nError: (04/19/2020 02:59:14 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x28e4\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d615ee12c7f9a8\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 5dd80d31-81e1-11ea-b4b9-1c7508f37aca"},{"id":"text-80","heading":"Text","content":"Error: (04/18/2020 02:22:40 PM) (Source: WinMgmt) (EventID: 10) (User: )\nDescription: Impossibile riattivare il filtro eventi con query &quot;SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA &quot;Win32_Processor&quot; AND TargetInstance.LoadPercentage &gt; 99&quot; nello spazio dei nomi &quot;//./root/CIMV2&quot;. Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema."},{"id":"text-81","heading":"Text","content":"Error: (04/18/2020 02:22:32 PM) (Source: Avira Phantom VPN) (EventID: 0) (User: )\nDescription: Service cannot be started. Il processo di servizio non ha potuto connettersi al controller di servizio"},{"id":"text-82","heading":"Text","content":"Error: (04/18/2020 02:58:54 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x13cc\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d61524e890fa87\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 27c684c1-8118-11ea-8822-1c7508f37aca"},{"id":"text-83","heading":"Text","content":"Error: (04/17/2020 01:32:33 PM) (Source: WinMgmt) (EventID: 10) (User: )\nDescription: Impossibile riattivare il filtro eventi con query &quot;SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA &quot;Win32_Processor&quot; AND TargetInstance.LoadPercentage &gt; 99&quot; nello spazio dei nomi &quot;//./root/CIMV2&quot;. Errore 0x80041003. Impossibile recapitare gli eventi tramite questo filtro fino alla risoluzione del problema."},{"id":"text-84","heading":"Text","content":"Error: (04/17/2020 02:59:07 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: Avira.SystemSpeedup.Maintenance.exe, versione: 6.4.1.10871, timestamp: 0x5e32ea26\nNome del modulo che ha generato l&#39;errore: clr.dll, versione: 4.8.4110.0, timestamp: 0x5de6da2a\nCodice eccezione: 0xc0000409\nOffset errore 0x0035a538\nID processo che ha generato l&#39;errore: 0x18b0\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d6145bbe2f4581\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program Files (x86)AviraSystem SpeedupAvira.SystemSpeedup.Maintenance.exe\nPercorso del modulo che ha generato l&#39;errore: C:WindowsMicrosoft.NETFrameworkv4.0.30319clr.dll\nID segnalazione: 050dfbb3-804f-11ea-ad8b-1c7508f37aca"},{"id":"text-85","heading":"Text","content":"Error: (04/17/2020 12:36:53 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome dell&#39;applicazione che ha generato l&#39;errore: MsMpEng.exe, versione: 4.10.209.0, timestamp: 0x582a94a1\nNome del modulo che ha generato l&#39;errore: mpengine.dll, versione: 1.1.16900.4, timestamp: 0x5e70249a\nCodice eccezione: 0xc0000005\nOffset errore 0x00000000001d00cf\nID processo che ha generato l&#39;errore: 0xac\nOra di avvio dell&#39;applicazione che ha generato l&#39;errore: 0x01d60ec33667deaa\nPercorso dell&#39;applicazione che ha generato l&#39;errore: C:Program FilesMicrosoft Security ClientMsMpEng.exe\nPercorso del modulo che ha generato l&#39;errore: C:ProgramDataMicrosoftMicrosoft AntimalwareDefinition UpdatesABFDE23F-10A0-40FD-89BB-EEAFDF90A038mpengine.dll\nID segnalazione: 2686ef91-803b-11ea-ad8b-1c7508f37aca"},{"id":"text-86","heading":"Text","content":"Error: (04/16/2020 10:25:52 PM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: Il programma Explorer.EXE versione 6.1.7601.23537 non interagisce più con Windows ed è stato chiuso. Per vedere se sono disponibili ulteriori informazioni sul problema, verificare la cronologia del problema in Centro operativo nel Pannello di controllo."},{"id":"text-87","heading":"Text","content":"ID processo: 804"},{"id":"text-88","heading":"Text","content":"Ora di avvio: 01d60ec34d82acc2"},{"id":"text-89","heading":"Text","content":"Ora di chiusura: 0"},{"id":"text-90","heading":"Text","content":"Percorso applicazione: C:WindowsExplorer.EXE"},{"id":"text-91","heading":"Text","content":"ID segnalazione: cb278b7b-8028-11ea-ad8b-1c7508f37aca"},{"id":"text-92","heading":"Text","content":"System errors:\n=============\nError: (04/18/2020 02:23:26 PM) (Source: Service Control Manager) (EventID: 7031) (User: )\nDescription: Il servizio Avira Phantom VPN è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 5000 millisecondi: Riavvia il servizio."},{"id":"text-93","heading":"Text","content":"Error: (04/17/2020 12:40:19 AM) (Source: Microsoft Antimalware) (EventID: 3002) (User: )\nDescription: La funzionalità di protezione in tempo reale di Antimalware Microsoft ha rilevato un errore e non è riuscita."},{"id":"text-94","heading":"Text","content":"Funzionalità: Network Inspection System"},{"id":"text-95","heading":"Text","content":"Codice errore: 0x80070002"},{"id":"text-96","heading":"Text","content":"Descrizione errore: Impossibile trovare il file specificato."},{"id":"text-97","heading":"Text","content":"Motivo: Nel sistema mancano degli aggiornamenti necessari per l&#39;esecuzione di Network Inspection System. Installare gli aggiornamenti necessari e riavviare il computer."},{"id":"text-98","heading":"Text","content":"Error: (04/17/2020 12:38:27 AM) (Source: Service Control Manager) (EventID: 7031) (User: )\nDescription: Il servizio Microsoft Antimalware Service è stato arrestato in modo imprevisto. Questo problema si è verificato 1 volta/e. Le seguenti azioni di correzione saranno eseguite tra 100 millisecondi: Esegui il programma di ripristino configurato."},{"id":"text-99","heading":"Text","content":"Error: (04/17/2020 12:36:50 AM) (Source: Microsoft Antimalware) (EventID: 5008) (User: )\nDescription: Il motore Antimalware Microsoft è stato interrotto a causa di un errore imprevisto."},{"id":"text-100","heading":"Text","content":"Tipo errore: Arresto anomalo"},{"id":"text-101","heading":"Text","content":"Codice eccezione: 0xc0000005"},{"id":"text-102","heading":"Text","content":"Risorsa: file:C:UsersDanieleDownloadsSample GESE Grade 5 Topic form_completed..pdf"},{"id":"text-103","heading":"Text","content":"Error: (04/16/2020 11:28:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 40."},{"id":"text-104","heading":"Text","content":"Error: (04/16/2020 11:28:52 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 70."},{"id":"text-105","heading":"Text","content":"Error: (04/16/2020 10:18:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 40."},{"id":"text-106","heading":"Text","content":"Error: (04/16/2020 10:18:15 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)\nDescription: Ricevuto avviso di errore irreversibile: 70."},{"id":"text-107","heading":"Text","content":"Windows Defender:\n===================================\nDate: 2016-06-22 23:31:54.534\nLa description: \nWindows Defender: errore durante il tentativo di caricare le firme. Verrà tentato di ripristinare un set di firme valido.\nFirme tentate:Corrente\nCodice errore:0x80070002\nDescrizione errore:Impossibile trovare il file specificato. \nVersione firma:0.0.0.0\nVersione modulo:0.0.0.0"},{"id":"text-108","heading":"Text","content":"==================== Memory info ==========================="},{"id":"text-109","heading":"Text","content":"BIOS: Acer V1.07 03/02/2011\nMotherboard: Acer JE50_HR\nProcessor: Intel® Core™ i5-2410M CPU @ 2.30GHz\nPercentage of memory in use: 92%\nTotal physical RAM: 8043.86 MB\nAvailable physical RAM: 633.23 MB\nTotal Virtual: 24426 MB\nAvailable Virtual: 15554.41 MB"},{"id":"text-110","heading":"Text","content":"==================== Drives ================================"},{"id":"text-111","heading":"Text","content":"Drive c: (Acer) (Fixed) (Total:290.05 GB) (Free:130.96 GB) NTFS\nDrive d: (DATA) (Fixed) (Total:290.4 GB) (Free:143.46 GB) NTFS\nDrive e: (Misc) (CDROM) (Total:0.69 GB) (Free:0.13 GB) UDF\nDrive g: () (Removable) (Total:29.27 GB) (Free:1.17 GB) FAT32"},{"id":"text-112","heading":"Text","content":"\\?Volume283c1efb-a59f-11e2-b4d5-806e6f6e6963 (SYSTEM RESERVED) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS\n\\?Volume283c1efa-a59f-11e2-b4d5-806e6f6e6963 (PQSERVICE) (Fixed) (Total:15.62 GB) (Free:2.53 GB) NTFS"},{"id":"text-113","heading":"Text","content":"==================== MBR &amp; Partition Table ===================="},{"id":"text-114","heading":"Text","content":"==========================================================\nDisk: 0 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: BD414BA4)\nPartition 1: (Not Active) &#8211; (Size=15.6 GB) &#8211; (Type=27)\nPartition 2: (Active) &#8211; (Size=100 MB) &#8211; (Type=07 NTFS)\nPartition 3: (Not Active) &#8211; (Size=290.1 GB) &#8211; (Type=07 NTFS)\nPartition 4: (Not Active) &#8211; (Size=290.4 GB) &#8211; (Type=07 NTFS)"},{"id":"text-115","heading":"Text","content":"==========================================================\nDisk: 1 (Protective MBR) (Size: 29.3 GB) (Disk ID: 00000000)"},{"id":"text-116","heading":"Text","content":"Partition: GPT."},{"id":"text-117","heading":"Text","content":"==================== End of Addition.txt ======================="},{"id":"text-118","heading":"Text","content":"Click to rate this post!\n                                   \n                               [Total: 0  Average: 0]"}],"media":{"primary_image":"https://tutos-gameserver.fr/wp-content/uploads/2020/03/1585419619_meta_image.png"},"relations":[{"rel":"canonical","href":"https://tutos-gameserver.fr/2020/04/24/infection-possible-aide-a-la-suppression-des-virus-chevaux-de-troie-logiciels-espions-et-programmes-malveillants-bien-choisir-son-serveur-d-impression/"},{"rel":"alternate","href":"https://tutos-gameserver.fr/2020/04/24/infection-possible-aide-a-la-suppression-des-virus-chevaux-de-troie-logiciels-espions-et-programmes-malveillants-bien-choisir-son-serveur-d-impression/llm","type":"text/html"},{"rel":"alternate","href":"https://tutos-gameserver.fr/2020/04/24/infection-possible-aide-a-la-suppression-des-virus-chevaux-de-troie-logiciels-espions-et-programmes-malveillants-bien-choisir-son-serveur-d-impression/llm.json","type":"application/json"},{"rel":"llm-manifest","href":"https://tutos-gameserver.fr/llm-endpoints-manifest.json","type":"application/json"}],"http_headers":{"X-LLM-Friendly":"1","X-LLM-Schema":"1.1.0","Content-Security-Policy":"default-src 'none'; img-src * data:; style-src 'unsafe-inline'"},"license":"CC BY-ND 4.0","attribution_required":true,"allow_cors":false}