{"version":"1.1","schema_version":"1.1.0","plugin_version":"1.1.2","url":"https://tutos-gameserver.fr/2020/06/12/attaques-bonet-mitm-spam-possibles-analyse-pcapng-serveur-dimpression/","llm_html_url":"https://tutos-gameserver.fr/2020/06/12/attaques-bonet-mitm-spam-possibles-analyse-pcapng-serveur-dimpression/llm","llm_json_url":"https://tutos-gameserver.fr/2020/06/12/attaques-bonet-mitm-spam-possibles-analyse-pcapng-serveur-dimpression/llm.json","manifest_url":"https://tutos-gameserver.fr/llm-endpoints-manifest.json","language":"fr-FR","locale":"fr_FR","title":"Attaques Bonet / MITM / Spam possibles. analyse pcapng\n &#8211; Serveur d&rsquo;impression","site":{"name":"Tutos GameServer","url":"https://tutos-gameserver.fr/"},"author":{"id":1,"name":"Titanfall","url":"https://tutos-gameserver.fr/author/titanfall/"},"published_at":"2020-06-12T05:57:50+00:00","modified_at":"2020-06-12T05:57:50+00:00","word_count":24535,"reading_time_seconds":7361,"summary":"Donc, nouveau scan (09-06-2020): Résultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2020 Exécuté par XXXXXXZZZ (administrateur) sur XXXXXXZZZ (Hewlett-Packard HP Pavilion Notebook) (09-06-2020 11:52:22) Exécution à partir de C: Users XXXXXXZZZ Downloads Profils chargés: XXXXXXZZZ Plateforme: Windows 8.1 (mise à jour) (X64) Langue: Português (Portugal) Navigateur par défaut: Chrome Mode de [&hellip;]","summary_points":["Donc, nouveau scan (09-06-2020): \n\nRésultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2020\nExécuté par XXXXXXZZZ (administrateur) sur XXXXXXZZZ (Hewlett-Packard HP Pavilion Notebook) (09-06-2020 11:52:22)\nExécution à partir de C:  Users  XXXXXXZZZ  Downloads\nProfils chargés: XXXXXXZZZ\nPlateforme: Windows 8.1 (mise à jour) (X64) Langue: Português (Portugal)\nNavigateur par défaut: Chrome\nMode de démarrage: Normal\n\n==================== Processus (liste blanche) =================\n\n(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé.","Le fichier ne sera pas déplacé.)\n\n() [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  opvapp.exe\n(Adobe Inc.","-&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Apple Inc.","-&gt; Apple Inc.) C:  Program Files  Bonjour  mDNSResponder.exe\n(Atheros Communications, Inc.) [File not signed] C:  Program Files (x86)  Jumpstart  jswpbapi.exe\n(AVAST Software s.r.o."],"topics":["Serveur d'impression"],"entities":[],"entities_metadata":[{"id":10,"name":"Serveur d'impression","slug":"serveur-dimpression","taxonomy":"category","count":3907,"url":"https://tutos-gameserver.fr/category/serveur-dimpression/"}],"tags":["Serveur d'impression"],"content_hash":"2ef87ae6fd79ba2996f51f89e55f5b97","plain_text":"Donc, nouveau scan (09-06-2020): \n\nRésultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2020\nExécuté par XXXXXXZZZ (administrateur) sur XXXXXXZZZ (Hewlett-Packard HP Pavilion Notebook) (09-06-2020 11:52:22)\nExécution à partir de C:  Users  XXXXXXZZZ  Downloads\nProfils chargés: XXXXXXZZZ\nPlateforme: Windows 8.1 (mise à jour) (X64) Langue: Português (Portugal)\nNavigateur par défaut: Chrome\nMode de démarrage: Normal\n\n==================== Processus (liste blanche) =================\n\n(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé. Le fichier ne sera pas déplacé.)\n\n() [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  opvapp.exe\n(Adobe Inc. -&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Apple Inc. -&gt; Apple Inc.) C:  Program Files  Bonjour  mDNSResponder.exe\n(Atheros Communications, Inc.) [File not signed] C:  Program Files (x86)  Jumpstart  jswpbapi.exe\n(AVAST Software s.r.o. -&gt; AVAST Software) C:  Program Files  AVAST Software  SecureLine  VpnSvc.exe\n(AVG Netherlands B.V. -&gt;) C:  Program Files (x86)  AVG Web TuneUp  WtuSystemSupport.exe\n(AVG Netherlands B.V. -&gt; AVG Secure Search) C:  Program Files (x86)  Common Files  AVG Secure Search  vToolbarUpdater  40.3.8  ToolbarUpdater.exe\n(AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  AVG TuneUp  TuneupSvc.exe\n(AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  AVG TuneUp  TuneupUI.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  aswEngSrv.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  aswidsagent.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  AVGSvc.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  AVGUI.exe \n(CyberLink Corp. -&gt;) C:  Program Files  CyberLink  Shared files  RichVideo64.exe\n(CyberLink Corp. -&gt; CyberLink Corp.) C:  Program Files (x86)  Cyberlink  YouCam  YouCamService.exe\n(Dassault Systèmes) [File not signed] C:  Program Files  Dassault Systemes  DraftSight  bin  dsHttpApiService.exe\n(DesignBuilder Software Ltd -&gt; DesignBuilder Software Ltd.) C:  Program Files (x86)  DesignBuilder  JobServer  DBJobServer.exe\n(DesignBuilder Software Ltd -&gt; DesignBuilder) C:  Program Files (x86)  DesignBuilder  Lib  DBSimLServer.exe\n(DEVGURU CO LTD -&gt; DEVGURU Co., LTD.) C:  Program Files  Samsung  USB Drivers  25_escape  conn  ss_conn_service.exe\n(DEVGURU Co., Ltd. -&gt; DEVGURU Co., LTD.) C:  Program Files  Samsung  USB Drivers  28_ssconn2  conn  ss_conn_service2.exe\n(Hewlett Packard -&gt; Hewlett-Packard Co.) C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  ScanToPCActivationApp.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Company) C:  Program Files (x86)  Hewlett-Packard  Shared  hpqwmiex.exe\n(Société Hewlett-Packard -&gt; Société Hewlett-Packard) C:  Windows  System32  hpservice.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.) C:  Program Files (x86)  Hewlett-Packard  HP CoolSense  CoolSense.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.) C:  Program Files (x86)  Hewlett-Packard  HP System Event  HPWMISVC.exe\n(HP Inc. -&gt; HP Inc.) C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  HPSupportSolutionsFrameworkService.exe\n(Intel Corporation &#8211; Groupe des sous-systèmes intégrés et blocs IP -&gt; Intel Corporation) C:  Program Files (x86)  Intel  Intel® Management Engine Components  DAL  jhi_service.exe\n(Intel Corporation &#8211; Groupe des sous-systèmes intégrés et blocs IP -&gt; Intel Corporation) C:  Program Files (x86)  Intel  Intel® Management Engine Components  LMS  LMS.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxCUIService.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxEM.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxHK.exe\n(Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation) C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorDataMgrSvc.exe\n(Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation) C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorIcon.exe\n(Logiciel Intel® -&gt; Intel Corporation) C:  Windows  SysWOW64  esif_uf.exe\n(Logiciel Intel® -&gt; Intel Corporation) C:  Windows  Temp  DPTF  esif_assist.exe\n(Malwarebytes Inc -&gt; Malwarebytes) C:  Program Files  Malwarebytes  Anti-Malware  MBAMService.exe\n(Malwarebytes Inc -&gt; Malwarebytes) C:  Program Files  Malwarebytes  Anti-Malware  mbamtray.exe\n(Mega Limited -&gt; Mega Limited) C:  Users  XXXXXXZZZ  AppData  Local  MEGAsync  MEGAsync.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Office  Office14  MSOSYNC.EXE\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Windows  Microsoft.NET  Framework64  v3.0  WPF  PresentationFontCache.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  dllhost.exe \n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  SkyDrive.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  wlanext.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  NetService  NvNetworkService.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvBackend.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display  nvtray.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display  nvxdsync.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  NvStreamSrv  nvstreamsvc.exe \n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Windows  System32  nvvsvc.exe \n(Technologie PLX) [File not signed] C:  Program Files (x86)  Iomega  Iomega Encryption  Iomega Encryption.exe\n(Realtek Semiconductor Corp -&gt;) C:  Program Files (x86)  Realtek  REALTEK Bluetooth  BTDevMgr.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RAVBg64.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RtkAudioService64.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RtkNGUI64.exe\n(Softex Inc.) [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  OmniServ.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  ClientCore.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBroker.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBrokerDsktop.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnh.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnhService.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPHelper.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Program Files (x86)  Common Files  VMware  USB  vmware-usbarbitrator64.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Program Files (x86)  VMware  VMware Player  vmware-authd.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Windows  SysWOW64  vmnat.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Windows  SysWOW64  vmnetdhcp.exe\n(WildTangent Inc -&gt; WildTangent) C:  Program Files (x86)  WildTangent Games  App  GamesAppIntegrationService.exe\n(WildTangent Inc -&gt; WildTangent, Inc.) C:  Program Files (x86)  WildTangent Games  App  GamesAppService.exe\n\n==================== Registre (liste blanche) ===================\n\n(Si une entrée est incluse dans la liste de correctifs, l&#39;élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)\n\nHKLM  &#8230;  Run: [RTHDVCPL] =&gt; C:  Program Files  Realtek  Audio  HDA  RtkNGUI64.exe [8459480 2015-03-04] (Realtek Semiconductor Corp -&gt; Realtek Semiconductor)\nHKLM  &#8230;  Run: [NvBackend] =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvBackend.exe [2464072 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nHKLM  &#8230;  Run: [ShadowPlay] =&gt; C:  Windows  system32  nvspcap64.dll [2800296 2015-02-09] (NVIDIA Corporation PE Sign v2014 -&gt; NVIDIA Corporation) [File not signed]\nHKLM  &#8230;  Run: [AdobeAAMUpdater-1.0] =&gt; C:  Program Files (x86)  Common Files  Adobe  OOBE  PDApp  UWA  UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated -&gt; Adobe Systems Incorporated)\nHKLM  &#8230;  Run: [IAStorIcon] =&gt; C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorIcon.exe [322472 2015-07-22] (Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation)\nHKLM  &#8230;  Run: [AVGUI.exe] =&gt; C:  Program Files (x86)  AVG  Antivirus  AvLaunch.exe [156776 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nHKLM-x32  &#8230;  Exécuter: [AccelerometerSysTrayApplet] =&gt; C:  Program Files (x86)  Hewlett-Packard  HP 3D DriveGuard  AccelerometerST.exe [127624 2015-01-30] (Société Hewlett-Packard -&gt; Société Hewlett-Packard)\nHKLM-x32  &#8230;  Exécuter: [HPMessageService] =&gt; C:  Program Files (x86)  Hewlett-Packard  HP System Event  HPMSGSVC.exe [509192 2014-12-01] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nHKLM-x32  &#8230;  Exécuter: [HP Software Update] =&gt; C:  Program Files (x86)  Hp  HP Software Update  HPWuSchd2.exe [96056 2013-05-30] (Société Hewlett-Packard -&gt; Hewlett-Packard)\nHKLM-x32  &#8230;  Exécuter: [BCSSync] =&gt; C:  Program Files (x86)  Microsoft Office  Office14  BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKLM-x32  &#8230;  Exécuter: [] =&gt; [X]\nHKLM-x32  &#8230;  Exécuter: [Acrobat Assistant 8.0] =&gt; C:  Program Files (x86)  Adobe  Acrobat 11.0  Acrobat  Acrotray.exe [3498728 2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nHKLM-x32  &#8230;  Exécuter: [vProt] =&gt; C:  Program Files (x86)  AVG Web TuneUp  vprot.exe [2195968 2019-01-28] (AVG Netherlands B.V. -&gt;)\nHKLM-x32  &#8230;  Exécuter: [VirtualCloneDrive] =&gt; C:  Program Files (x86)  Elaborate Bytes  VirtualCloneDrive  VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nHKLM-x32  &#8230;  Exécuter: [Autodesk Desktop App] =&gt; C:  Program Files (x86)  Autodesk  Autodesk Desktop App  AutodeskDesktopApp.exe [709416 2018-03-10] (Autodesk, Inc. -&gt; Autodesk, Inc.)\nHKLM-x32  &#8230;  Exécuter: [jswtrayutil] =&gt; C:  Program Files (x86)  Jumpstart  jswtrayutil.exe [528384 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nHKLM-x32  &#8230;  Exécuter: [KiesTrayAgent] =&gt; C:  Program Files (x86)  Samsung  Kies  KiesTrayAgent.exe [318112 2017-11-15] (Samsung Electronics CO., LTD. -&gt; Samsung Electronics Co., Ltd.)\nHKLM-x32  &#8230;  Exécuter: [Aimersoft Helper Compact.exe] =&gt; C:  Program Files (x86)  Fichiers communs  Aimersoft  Aimersoft Helper Compact  ASHelper.exe [2138272 2016-10-08] (Shenzhen Jia Xing Investment Co., Ltd. -&gt; AimerSoft)\nHKLM-x32  &#8230;  Exécuter: [SunJavaUpdateSched] =&gt; C:  Program Files (x86)  Fichiers communs  Java  Java Update  jusched.exe [646160 2019-12-11] (Oracle America, Inc. -&gt; Oracle Corporation)\nHKLM-x32  &#8230;  Exécuter: [XArp] =&gt; C:  Program Files (x86)  XArp  xarp.exe [10413568 2011-04-01] (www.chrismc.de) [File not signed]\nHKLM  &#8230;  Winlogon: [Userinit] C:  Windows  SysWOW64  userinit.exe, &lt;==== ATTENTION\nHKLM  &#8230;  Policies  Explorer: [AllowLegacyWebView] 1\nHKLM  &#8230;  Policies  Explorer: [AllowUnhashedWebView] 1\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [HP Deskjet 3050 J610 series (NET)] =&gt; C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [IomegaEncryption] =&gt; C:  Program Files (x86)  Iomega  Iomega Encryption  Iomega Encryption.exe [455168 2011-09-16] (Technologie PLX) [File not signed]\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [DAEMON Tools Lite Automount] =&gt; C:  Program Files  DAEMON Tools Lite  DTAgent.exe [4289728 2016-04-04] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [GoogleDriveSync] =&gt; C:  Program Files  Google  Drive  googledrivesync.exe [48214752 2020-04-06] (Google LLC -&gt;)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Autodesk Sync] =&gt; C:  Program Files  Autodesk  Autodesk Sync  AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -&gt; Autodesk, Inc.)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Steam] =&gt; C:  Program Files (x86)  Steam  steam.exe [3200800 2018-05-19] (Valve -&gt; Valve Corporation)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [CCleaner Smart Cleaning] =&gt; C:  Program Files  CCleaner  CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Spotify] =&gt; C:  Users  XXXXXXZZZ  AppData  Roaming  Spotify  Spotify.exe [22824680 2020-05-19] (Spotify AB -&gt; Spotify Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [OfficeSyncProcess] =&gt; C:  Program Files (x86)  Microsoft Office  Office14  MSOSYNC.EXE [721504 2015-09-02] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Policies  Explorer: [] \nHKU  S-1-5-18  &#8230;  Run: [Autodesk Sync] =&gt; C:  Program Files  Autodesk  Autodesk Sync  AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -&gt; Autodesk, Inc.)\nHKLM  &#8230;  Print  Monitors  Adobe PDF Port Monitor: C:  Windows  system32  AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc)\nHKLM  &#8230;  Print  Monitors  HP 9311 Status Monitor: C:  Windows  system32  hpinksts9311LM.dll [332176 2012-09-12] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  Moniteur d&#39;état HP C611: C:  Windows  system32  hpinkstsC611LM.dll [333344 2013-05-06] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  HP Discovery Port Monitor (HP Deskjet 3050 J610 series): C:  Windows  system32  HPDiscoPM9311.dll [741480 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  HP Universal Port Monitor: C:  Windows  system32  hpbprtmon.dll [423936 2014-06-11] (Éditeur de compatibilité matérielle Microsoft Windows -&gt; Hewlett-Packard)\nHKLM  &#8230;  Print  Monitors  KM Language Monitor: C:  Windows  system32  KMPJL64.DLL [124560 2017-07-31] (Éditeur de compatibilité matérielle Microsoft Windows -&gt; KYOCERA Document Solutions Inc.)\nHKLM  &#8230;  Print  Monitors  Wondershare PDFelement Monitor: C:  Windows  system32  WSPDFelementMonitor.dll [271360 2017-10-19] (Logiciel Wondershare) [File not signed]\nHKLM  Software  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; C:  Program Files (x86)  Google  Chrome  Application  83.0.4103.97  Installer  chrmstp.exe [2020-06-05] (Google LLC -&gt; Google LLC)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [538C240D-3DEE-4032-AB4C-08A3A6EB0861] -&gt; c:  Program Files (x86)  CyberLink  YouCam  CLCredProv  x64  CLCredProv.dll [2015-02-11] (CyberLink Corp. -&gt; CyberLink)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [F3F1B0FA-4775-41d8-8578-436772D93FB4] -&gt; C:  Program Files  Hewlett-Packard  SimplePass  OmniPassCredProv.dll [2015-03-04] (Softex Inc.) [File not signed]\nHKLM  Software  &#8230;  Authentication  Credential Provider Filters: [F3F1B0FA-4775-41d8-8578-436772D93FB4] -&gt; C:  Program Files  Hewlett-Packard  SimplePass  OmniPassCredProv.dll [2015-03-04] (Softex Inc.) [File not signed]\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  Assistante de gestor de conteúdo pour PlayStation®.lnk [2016-04-23]\nShortcutTarget: Assistente de gestor de conteúdo for PlayStation®.lnk -&gt; C:  Program Files (x86)  Sony  Content Manager Assistant  CMA.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  Avast SecureLine VPN.lnk [2019-07-16]\nShortcutTarget: Avast SecureLine VPN.lnk -&gt; C:  Program Files  AVAST Software  SecureLine  Vpn.exe (AVAST Software s.r.o. -&gt; AVAST Software)\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  AVG TuneUp.lnk [2019-09-20]\nShortcutTarget: AVG TuneUp.lnk -&gt; C:  Program Files (x86)  AVG  AVG TuneUp  TuneupUI.exe (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  Autenticacao.gov.pt.lnk [2020-04-24]\nShortcutTarget: Autenticacao.gov.pt.lnk -&gt; C:  Program Files (x86)  plugin Autenticacao.Gov  Autenticacao.gov.pt.exe (Agência para a Modernização Administrativa, I.P. -&gt; Agência para a Modernização Administrativa, IP)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  MEGAsync.lnk [2019-02-07]\nShortcutTarget: MEGAsync.lnk -&gt; C:  Users  XXXXXXZZZ  AppData  Local  MEGAsync  MEGAsync.exe (Mega Limited -&gt; Mega Limited)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  OneNote 2010 Screen Clipper and Launcher.lnk [2018-05-18]\nShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -&gt; C:  Program Files (x86)  Microsoft Office  Office14  ONENOTEM.EXE (Microsoft Corporation -&gt; Microsoft Corporation)\nBootExecute: autocheck autochk / m / P  Device  HarddiskVolume13autocheck autochk * \nGroupPolicy: Restriction? &lt;==== ATTENTION\nFF HKLM  SOFTWARE  Policies  Mozilla  Firefox: Restriction &lt;==== ATTENTION\nCHR HKLM  SOFTWARE  Policies  Google: Restriction &lt;==== ATTENTION\n\n==================== Tâches planifiées (liste blanche) ============\n\n(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé sauf s&#39;il est répertorié séparément.)\n\nTâche: 019EFCA7-800A-45BD-B5D4-E7BC04A47010 &#8211; System32  Tasks  Adobe Flash Player NPAPI Notifier =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_371_Plugin.exe [1458232 2020-05-13] (Adobe Inc. -&gt; Adobe)\nTâche: 035A9236-3D0D-4CEC-88E7-316A88A60D57 &#8211; System32  Tasks  AutoKMS =&gt; C:  Windows  AutoKMS  AutoKMS.exe [5046784 2018-01-30] () [File not signed]\nTâche: 0B7F76E1-EE25-416A-B69A-E967896AD3B6 &#8211; System32  Tasks  GoogleUpdateTaskMachineUA =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [154440 2016-03-18] (Google Inc -&gt; Google Inc.)\nTâche: 0CE47549-B8CB-4819-ABF3-3FA3A57AB0D4 &#8211; System32  Tasks  Hewlett-Packard  HP Active Health  HP Active Health Scan (HPSA) =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPActiveHealth  ActiveHealth.exe [198696 2016-11-07] (HP Inc. -&gt; HP Inc.)\nTâche: 130F5CA5-8C3C-463D-8A72-447D87BD6E01 &#8211; System32  Tasks  Start SimplePass =&gt; C:  Program Files  Hewlett-Packard  SimplePass  ClientCore.exe [4716280 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: 196B8F02-98BF-41FB-B1A3-5F36DB0DE18D &#8211; System32  Tasks  Adobe Acrobat Update Task =&gt; C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -&gt; Adobe Systems)\nTâche: 2082FD68-9C15-4062-AC44-9424D96210B8 &#8211; pas de chemin de fichier\nTâche: 23DAD9CE-2053-4866-8F74-D0729C66989D &#8211; pas de chemin de fichier\nTâche: 2D6FC168-D4B7-4440-A3F6-FFF3E4F97500 &#8211; pas de chemin de fichier\nTâche: 2E6908D5-EFAB-4013-A5F8-C67EA3EB73E1 &#8211; System32  Tasks  G2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001 =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToM 17956  g2mupdate.exe [32424 2020-06-09] (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nTâche: 336DBD9A-B9BE-4A9D-8E7E-70DF4DD0C45C &#8211; System32  Tasks  G2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001 =&gt; C:  Users  XXXXXXZZZ  AppData  Local  Go 17956  g2mupload.exe [32424 2020-06-09] (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nTâche: 4676C5EC-11E4-46DB-A339-B05760EBFD33 &#8211; System32  Tasks  Antivirus Emergency Update =&gt; C:  Program Files (x86)  AVG  Antivirus  AvEmUpdate.exe [3387520 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nTâche: 480057E1-65C8-4672-B6EB-449337F4A059 &#8211; System32  Tasks  AVG TuneUp Update =&gt; C:  Program Files (x86)  AVG  AVG TuneUp  TUNEUpdate.exe [1706528 2019-09-20] (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nTâche: 482950C8-5BA7-4A9B-B305-736188A98CF5 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Assistant Quick Start =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF.exe [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: 4922F370-D891-4A1B-B13A-67F51EFA83AE &#8211; pas de chemin de fichier\nTâche: 506A236E-C8FC-491D-A1A7-2D971555245D &#8211; System32  Tasks  YCMServiceAgent =&gt; c:  Program Files (x86)  Cyberlink  YouCam  YouCamService.exe [267224 2015-02-11] (CyberLink Corp. -&gt; CyberLink Corp.)\nTâche: 71EB72E0-9D55-4AC5-BDF7-6B6F866DDCDE &#8211; System32  Tasks  npcapwatchdog =&gt; C:  Program Files  Npcap  CheckStatus.bat [862 2019-04-30] () [File not signed]\nTâche: 7A56FE0C-B693-4340-AEA0-D5C5C9067C4C &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Solutions Framework Updater =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  Modules  HPSSFUpdater.exe [662872 2020-04-30] (HP Inc. -&gt; HP Inc.)\nTâche: 8BF8C487-50E7-4763-9DD0-BEEB2C3856D5 &#8211; System32  Tasks  Avast SecureLine =&gt; C:  Program Files  AVAST Software  SecureLine  SecureLine.exe [3438680 2016-05-24] (Logiciel AVAST a.s. -&gt; Logiciel AVAST)\nTâche: 8F05A697-8454-4451-9D04-4F3843C4EC1A &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  WarrantyChecker =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPWarrantyCheck  HPWarrantyChecker.exe [1117048 2020-03-26] (HP Inc. -&gt; HP Inc.)\nTâche: 9594B004-459A-4105-BDB9-0686695F1DBC &#8211; System32  Tasks  BlueStacksHelper =&gt; C:  ProgramData  BlueStacks  Client  Helper  BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -&gt; BlueStack Systems, Inc.)\nTâche: A7A40B26-2C9E-4141-A5EF-3A3EB86182C4 &#8211; System32  Tasks  Start OPBHOBrokerDesktop =&gt; C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBrokerDsktop.exe [506104 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: AC2D90BD-03AB-4717-B91B-4ACD2D25A495 &#8211; System32  Tasks  HPCeeScheduleForXXXXXXZZZ =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Ceement  HPCEE.exe\nTâche: AC444CF5-C990-4BC8-8C8E-9F5B38F05A81 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  WarrantyChecker_DeviceScan =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPWarrantyCheck  HPWarrantyChecker.exe [1117048 2020-03-26] (HP Inc. -&gt; HP Inc.)\nTâche: B366A58C-E1F0-4F66-B965-EEE0E58ECF54 &#8211; System32  Tasks  Start OPBHOBroker =&gt; C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBroker.exe [506104 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: B8FFC866-248A-4176-AC9F-31F3B9144F13 &#8211; System32  Tasks  CCleanerSkipUAC =&gt; C:  Program Files  CCleaner  CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nTâche: B9781211-096A-4A59-B2CD-6631DAA6F92E &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  PC Health Analysis =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF. EXE [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: BDD8080F-6580-4439-B090-E1F0B8980028 &#8211; System32  Tasks  AVGPCTuneUp_Task_BkGndMaintenance =&gt; C:  Program Files (x86)  AVG  AVG PC TuneUp  tuscanx.exe\nTâche: BF84E17C-D1AA-4F8E-AD9C-9C3999F8CDD2 &#8211; System32  Tasks  Mozilla  Firefox Default Browser Agent E7CF176E110C211B =&gt; C:  Program Files (x86)  Mozilla Firefox  default-browser-agent.exe [124624 2020-06-05] (Mozilla Corporation -&gt; Fondation Mozilla)\nTâche: C045C518-0FA6-4A67-A3D5-151056E6C9D9 &#8211; System32  Tasks  Adobe Flash Player Updater =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashPlayerUpdateService.exe [335416 2020-05-13] (Adobe Inc. -&gt; Adobe)\nTâche: C2BDB807-0EE2-4A05-9C29-E0B43518E8DB &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  PC Health Analysis Restart =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF .EXE [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: C718E444-7E77-4374-9197-635B15CB8D22 &#8211; System32  Tasks  Avast SecureLine VPN Update =&gt; c:  program files  avast software  secureline  vpnupdate.exe [1390472 2019-10-24] (AVAST Software s.r.o. -&gt; AVAST Software)\nTâche: C9FF1DA6-EC0B-4F09-A9DB-B6A37A1F1374 &#8211; System32  Tasks  CCleaner Update =&gt; C:  Program Files  CCleaner  CCUpdate.exe [619416 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nTâche: CA139223-98A5-4E6F-9A90-3BD01B619423 &#8211; System32  Tasks  Driver Easy Scheduled Scan =&gt; C:  Program Files  Easeware  DriverEasy  DriverEasy.exe [3392368 2017-11-10] (Easeware Technology Limited -&gt; Easeware)\nTâche: CAB11F90-659D-4C59-8472-7217C7636690 &#8211; System32  Tasks  AVG  Overseer =&gt; C:  Program Files  Common Files  AVG  Overseer  overseer.exe [1692296 2020-03-03] (AVG Technologies USA, LLC -&gt; AVG Technologies)\nTâche: D7F26C8B-7EE3-4B58-971C-7ABBFDF75B19 &#8211; pas de chemin de fichier\nTâche: E1C5D3F6-C2CE-48AF-96F3-03D7E23B9A45 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  Product Configurator =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  ProductConfig .EXE [320856 2020-04-23] (HP Inc. -&gt; HP Inc.)\nTâche: E7333F8C-E08D-4FB6-84DC-694BB2775824 &#8211; System32  Tasks  Hewlett-Packard  HP CoolSense  HP CoolSense Start at Logon =&gt; C:  Program Files (x86)  Hewlett-Packard  HP CoolSense  CoolSense. EXE [1354552 2014-05-19] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nTâche: EB9B233E-D483-496B-8CD6-9C9CBAAE9007 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Solutions Framework Report =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  Modules  HPSFReport.exe [134008 2020-03-25] (HP Inc. -&gt; HP Inc.)\nTâche: EBCAD8C1-2F95-424A-87E3-ED87CF10A5D5 &#8211; pas de chemin de fichier\nTâche: EDE8E45E-2A78-41AD-8D66-72B614CF9C9E &#8211; System32  Tasks  GoogleUpdateTaskMachineCore =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [154440 2016-03-18] (Google Inc -&gt; Google Inc.)\nTâche: F173A769-3028-456B-B1A5-D1EC4B2ED322 &#8211; System32  Tasks  HPCustParticipation HP Deskjet 3050 J610 series =&gt; C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nTâche: F6005A55-D650-4ABA-99F1-795479106D2D &#8211; System32  Tasks  7A5E22F3-13A6-4040-B1C5-E4043B449990 =&gt; C:  Windows  system32  pcalua.exe -a C:  E20-II  unwcs21.EXE -c C:  E20-II  csi22  INSTALL.LOG\n\n(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)\n\nTâche: C:  Windows  Tasks  Driver Easy Scheduled Scan.job =&gt; C:  Program Files  Easeware  DriverEasy  DriverEasy.exe\nTâche: C:  Windows  Tasks  G2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToMeeting  17956  g2mupdate.exe\nTâche: C:  Windows  Tasks  G2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToMeeting  17956  g2mupload.exe\nTâche: C:  Windows  Tasks  HPCeeScheduleForXXXXXXZZZ.job =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Ceement  HPCEE.exe\n\n==================== Internet (liste blanche) ====================\n\n(Si un élément est inclus dans la liste de correctifs, s&#39;il s&#39;agit d&#39;un élément du registre, il sera supprimé ou restauré par défaut.)\n\nWinsock: Catalog5 07 C:  Program Files (x86)  Bonjour  mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -&gt; Apple Inc.)\nWinsock: Catalog9 12 C:  Windows  SysWOW64  vsocklib.dll [42376 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog9 13 C:  Windows  SysWOW64  vsocklib.dll [42376 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog5-x64 07 C:  Program Files  Bonjour  mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -&gt; Apple Inc.)\nWinsock: Catalog9-x64 12 C:  Windows  system32  vsocklib.dll [46472 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog9-x64 13 C:  Windows  system32  vsocklib.dll [46472 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nHôtes: il existe plusieurs entrées dans Hôtes. Voir la section Hôtes de Addition.txt\nTcpip  ..  Interfaces  9BE7CB1D-7D01-412C-87BA-0BF14F21DCFC: [NameServer] 192.168.175.1\nTcpip  ..  Interfaces  AE83C2A5-B32C-49E6-92F8-44E82B6BF54C: [DhcpNameServer] 192.168.1.1\nTcpip  ..  Interfaces  D7780C2A-6612-4825-B9AA-0AAAE7D9CBB1: [DhcpNameServer] 192.168.1.1\nTcpip  ..  Interfaces  F378EDC9-2002-40C5-A4FD-8D06037995AC: [NameServer] 192.168.56.1\nTcpip  ..  Interfaces  F9ED1E2C-E78F-4493-82DC-AA9A69316967: [NameServer] 192.168.6.1\n\nInternet Explorer:\n==================\nHKLM  Software  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKLM  Software  Wow6432Node  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKLM  Software  Wow6432Node  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nHKU  .DEFAULT  Software  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKU  .DEFAULT  Software  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  Software  Microsoft  Internet Explorer  Main, page de démarrage = hxxps: //mysearch.avg.com/? Cid = 0748ECFF-99FC-45F5- A9A9-AAA31FAD88FA &amp; mid = 2e2973733faf47cca1dda13ec7d56e85-0c260b95194f388f5d97415cd7ba6e43361199e3 &amp; lang = pt &amp; ds = AVG &amp; coid = avgtbavg &amp; cmpid = ipm180 &amp; v = 26 v &amp; d = 20 v\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  Software  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nSearchScopes: HKLM -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKLM -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKLM-x32 -&gt; C77A81B7-79DB-4F42-8F4C-3CEBC5863FB2 URL = hxxp: //www.amazon.co.uk/s/ref=azs_osd_ieauk? Ie = UTF-8 &amp; tag = hp-uk3-vsb- 21 &amp; link% 5Fcode = qs &amp; index = aps &amp; field-keywords = searchTerms\nSearchScopes: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 URL = hxxps: //mysearch.avg.com/search? Cid = 0748ECFF -99FC-45F5-A9A9-AAA31FAD88FA &amp; mid = 2e2973733faf47cca1dda13ec7d56e85-0c260b95194f388f5d97415cd7ba6e43361199e3 &amp; lang = pt &amp; ds = AVG &amp; COID = avgtbavg &amp; cmpid = ipm180716c &amp; pr = fr &amp; d = 2016-06-12 22: 27: 20 &amp; v = 4.3.9.626 &amp; pid = UMC &amp; sg = &amp; sap = dsp &amp; q = searchTerms\nSearchScopes: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; C77A81B7-79DB-4F42-8F4C-3CEBC5863FB2 URL = hxxp: //www.amazon.co.uk/s/ref= azs_osd_ieauk? ie = UTF-8 &amp; tag = hp-uk3-vsb-21 &amp; link% 5Fcode = qs &amp; index = aps &amp; field-keywords = searchTerms\nBHO: Groove GFS Browser Helper -&gt; 72853161-30C5-4D22-B7F9-0BBC1D38A37E -&gt; C:  Program Files  Microsoft Office  Office14  GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO: Java ™ Plug-In SSV Helper -&gt; 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -&gt; C:  Program Files  Java  jre1.8.0_241  bin  ssv.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO: AVG Web TuneUp -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 -&gt; C:  Program Files  AVG Web TuneUp  4.3.9.626  AVG Web TuneUp.dll [2019-01-28] (AVG Pays-Bas B.V. -&gt; AVG)\nBHO: Adobe Acrobat Create PDF Helper -&gt; AE7CD045-E861-484f-8273-0445EE161910 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO: Gestionnaire de cache de documents Office -&gt; B4F3A835-0E21-4959-BA22-42B3008E02FF -&gt; C:  Program Files  Microsoft Office  Office14  URLREDIR.DLL [2013-03-06] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO: Java ™ Plug-In 2 SSV Helper -&gt; DBC80044-A445-435b-BC74-9C25C1C588A9 -&gt; C:  Program Files  Java  jre1.8.0_241  bin  jp2ssv.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO: HP Network Check Helper -&gt; E76FD755-C1BA-4DCB-9F13-99BD91223ADE -&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPNetworkCheck  HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -&gt; HP Inc.)\nBHO: Adobe Acrobat Créer un fichier PDF à partir de la sélection -&gt; F4971EE7-DAA0-4053-9964-665D8EE6A077 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO-x32: Aide du navigateur Groove GFS -&gt; 72853161-30C5-4D22-B7F9-0BBC1D38A37E -&gt; C:  Program Files (x86)  Microsoft Office  Office14  GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO-x32: extension Evernote -&gt; 92EF2EAD-A7CE-4424-B0DB-499CF856608E -&gt; C:  Program Files (x86)  Evernote  Evernote  EvernoteIE.dll [2014-12-17] (EVERNOTE CORPORATION -&gt; Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)\nBHO-x32: AVG Web TuneUp -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 -&gt; C:  Program Files (x86)  AVG Web TuneUp  4.3.9.626  AVG Web TuneUp.dll [2019-01-28] (AVG Pays-Bas B.V. -&gt; AVG)\nBHO-x32: Adobe Acrobat Create PDF Helper -&gt; AE7CD045-E861-484f-8273-0445EE161910 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO-x32: Gestionnaire de cache de documents Office -&gt; B4F3A835-0E21-4959-BA22-42B3008E02FF -&gt; C:  Program Files (x86)  Microsoft Office  Office14  URLREDIR.DLL [2013-03-06] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO-x32: HP Network Check Helper -&gt; E76FD755-C1BA-4DCB-9F13-99BD91223ADE -&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPNetworkCheck  HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -&gt; HP Inc.)\nBHO-x32: Adobe Acrobat Créer un fichier PDF à partir de la sélection -&gt; F4971EE7-DAA0-4053-9964-665D8EE6A077 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKLM &#8211; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKLM-x32 &#8211; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nHandler-x32: asp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: ezstor &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: hsp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: jpip &#8211; B92DD248-E3D5-4A92-B311-C9B841681455 &#8211; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nHandler-x32: sidlet &#8211; B92DD248-E3D5-4A92-B311-C9B841681455 &#8211; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nHandler-x32: x-asp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-cnote &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-hsp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-mem1 &#8211; C3719F83-7EF8-4BA0-89B0-3360C7AFB7CC &#8211; C:WindowsSysWow64WowCtl2.dll [2006-10-13] (EzTools Software) [File not signed]\nHandler-x32: x-zip &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: zip &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\n\nFireFox:\n========\nFF DefaultProfile: t5l5e12d.default\nFF ProfilePath: C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.default [2020-06-09]\nFF Extension: (Disconnect) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions2.0@disconnect.me.xpi [2020-01-06]\nFF Extension: (AVG Web TuneUp) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsavg@toolbar.xpi [2019-04-11] [UpdateUrl:hxxps://firefoxext.avcdn.net/firefoxext/avg/wtu/update.json]\nFF Extension: (SerpClix ClickSense) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsdev@serpclix.com.xpi [2020-04-24] [UpdateUrl:hxxps://serpclix.com/downloads/addon/updates.json]\nFF Extension: (Ghostery – Privacy Ad Blocker) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsfirefox@ghostery.com.xpi [2020-05-21]\nFF Extension: (HTTPS Everywhere) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionshttps-everywhere-eff@eff.org.xpi [2020-05-22] [UpdateUrl:hxxps://www.eff.org/files/https-everywhere-updates.json]\nFF Extension: (Disable WebRTC) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-5Fs7iTLscUaZBgwr@jetpack.xpi [2020-06-02]\nFF Extension: (Para o Google Tradutor) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-93WyvpgvxzGATw@jetpack.xpi [2020-02-06]\nFF Extension: (Decentraleyes) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-BoFifL9Vbdl2zQ@jetpack.xpi [2020-04-01]\nFF Extension: (DuckDuckGo Privacy Essentials) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-ZAdIEUB7XOzOJw@jetpack.xpi [2020-06-03]\nFF Extension: (Lazarus: Form Recovery) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionslazarus@interclue.com.xpi [2016-07-12] [Legacy]\nFF Extension: (Avast SafePrice | Comparação, ofertas, cupões) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionssp@avast.com.xpi [2020-05-02]\nFF Extension: (Google Translator for Firefox) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionstranslator@zoli.bod.xpi [2020-02-05]\nFF Extension: (uBlock Origin) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsuBlock0@raymondhill.net.xpi [2020-05-28]\nFF Extension: (uMatrix) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsuMatrix@raymondhill.net.xpi [2020-01-06]\nFF Extension: (Startpage.com: pesquisa privada) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions20fc2e06-e3e4-4b2b-812b-ab431220cada.xpi [2020-01-07]\nFF Extension: (Cookie Quick Manager) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions60f82f00-9ad5-4de5-b31c-b16a47c51558.xpi [2020-05-15]\nFF Extension: (Flash and Video Download) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsadeadebb-fedc-4180-a7f4-cfdd87496551.xpi [2020-05-24]\nFF Extension: (Video DownloadHelper) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsb9db16a4-6edc-47ec-a1f4-b86292ed211d.xpi [2020-03-31]\nFF SearchPlugin: C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultsearchpluginsavg-secure-search.xml [2019-01-28]\nFF HKLM-x32&#8230;FirefoxExtensions: [firefox@bho.com] &#8211; C:Program FilesHewlett-PackardSimplePassFFBHOExt =&gt; not found\nFF HKLM-x32&#8230;FirefoxExtensions: [web2pdfextension@web2pdf.adobedotcom] &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtn\nFF Extension: (Adobe Acrobat &#8211; Create PDF) &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtn [2016-04-30] [Legacy] [not signed]\nFF Plugin: @adobe.com/FlashPlayer -&gt; C:Windowssystem32MacromedFlashNPSWF64_32_0_0_371.dll [2020-05-13] (Adobe Inc. -&gt; )\nFF Plugin: @java.com/DTPlugin,version=11.241.2 -&gt; C:Program FilesJavajre1.8.0_241bindtpluginnpDeployJava1.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin: @java.com/JavaPlugin,version=11.241.2 -&gt; C:Program FilesJavajre1.8.0_241binplugin2npjp2.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:Program FilesMicrosoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -&gt;  Microsoft Corporation)\nFF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:PROGRA~1MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin: adobe.com/AdobeAAMDetect -&gt; C:Program Files (x86)Common FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems Incorporated -&gt; Adobe Systems)\nFF Plugin-x32: @adobe.com/FlashPlayer -&gt; C:WindowsSysWOW64MacromedFlashNPSWF32_32_0_0_371.dll [2020-05-13] (Adobe Inc. -&gt; )\nFF Plugin-x32: @adobe.com/ShockwavePlayer -&gt; C:windowsSysWOW64AdobeDirectornp32dsw_1217157.dll [2015-02-05] (Adobe Systems, Inc.) [File not signed]\nFF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -&gt; C:Program Files (x86)Common FilesAVG Secure SearchSiteSafetyInstaller40.3.8\\npsitesafety.dll [No File]\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -&gt; C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIIPT.dll [2014-11-10] (Intel® Identity Protection Technology Software -&gt; Intel Corporation)\nFF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -&gt; C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIUpdater.dll [2014-11-10] (Intel® Identity Protection Technology Software -&gt; Intel Corporation)\nFF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:Program Files (x86)Microsoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -&gt;  Microsoft Corporation)\nFF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:PROGRA~2MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -&gt; C:PROGRA~2MICROS~1Office14NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.2 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.4 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.6 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=3.0.3 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=3.0.8 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -&gt; C:Program Files (x86)WildTangent GamesAppBrowserIntegrationRegisteredNP_wtapp.dll [2014-11-15] (WildTangent Inc -&gt; )\nFF Plugin-x32: Adobe Acrobat -&gt; C:Program Files (x86)AdobeAcrobat 11.0AcrobatAirnppdf32.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nFF Plugin-x32: Adobe Reader -&gt; C:Program Files (x86)AdobeAcrobat Reader DCReaderAIRnppdf32.dll [2020-05-04] (Adobe Inc. -&gt; Adobe Systems Inc.)\nFF Plugin-x32: adobe.com/AdobeAAMDetect -&gt; C:Program Files (x86)Common FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems Incorporated -&gt; Adobe Systems)\nFF Plugin-x32: Lizardtech ExpressViewPlugin -&gt; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nFF Plugin HKUS-1-5-21-3751382696-3894377064-3631472648-1001: @zoom.us/ZoomVideoPlugin -&gt; C:UsersXXXXXXZZZAppDataRoamingZoombin_00npzoomplugin.dll [2020-05-14] (Zoom Video Communications, Inc. -&gt; Zoom Video Communications, Inc.)\n\nChrome: \n=======\nCHR Profile: C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefault [2020-06-07]\nCHR Notifications: Default -&gt; hxxps://web.skype.com\nCHR HomePage: Default -&gt; mysearch.avg.com\nCHR StartupUrls: Default -&gt; &quot;hxxp://google.pt/&quot;\nCHR DefaultSearchURL: Default -&gt; hxxps://mysearch.avg.com/search?rvt=1&amp;sap=dsp&amp;q=searchTerms\nCHR DefaultSearchKeyword: Default -&gt; hxxps://mysearch.avg.com\nCHR Extension: (Slides) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]\nCHR Extension: (Seedr) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsabfimpkhacgimamjbiegeoponlepcbob [2018-08-20]\nCHR Extension: (Flash Video Downloader) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaiimdkdngfcipjohbjenkahhlhccpdbc [2019-05-14]\nCHR Extension: (Docs) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-10-14]\nCHR Extension: (Google Drive) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2018-10-17]\nCHR Extension: (YouTube) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-18]\nCHR Extension: (Adblock Plus &#8211; free ad blocker) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionscfhdojbkjhnklbpkdaibdccddilifddb [2020-04-06]\nCHR Extension: (AVG Secure Search) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionschfdnecihphmhljaaejmgoiahnihplgn [2020-01-11]\nCHR Extension: (Tampermonkey) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsdhdgffkkebhmkfjojejmpbldmpobfkfo [2020-06-07]\nCHR Extension: (Email Exporter) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsecnfbegpagpeocjegnecbifjepfcpnhe [2020-06-07]\nCHR Extension: (Toolkit For FB) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsfcachklhcihfinmagjnlomehfdhndhep [2019-07-04]\nCHR Extension: (Sheets) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-10-14]\nCHR Extension: (Google Docs Offline) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-06-07]\nCHR Extension: (Social Fixer for Facebook) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsifmhoabcaeehkljcfclfiieohkohdgbb [2019-10-08]\nCHR Extension: (Email Extractor) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsjdianbbpnakhcmfkcckaboohfgnngfcc [2020-06-07]\nCHR Extension: (Unseen for Facebook) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsjiomcgpfgkeefipihnplhadgdoollmap [2019-09-23]\nCHR Extension: (Application Launcher for Drive (by Google)) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionslmjegmlicamnimmfhcmpkclmigmmcbeh [2017-04-03]\nCHR Extension: (Video DownloadHelper) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionslmjnegcaeklhafolokijcfjliaokphfk [2020-04-01]\nCHR Extension: (Lazarus: Form Recovery) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsloljledaigphbcpfhfmgopdkppkifgno [2016-07-12]\nCHR Extension: (Buster: Captcha Solver for Humans) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsmpbjkejclgfgadiemmefgebjfooflfhl [2020-06-07]\nCHR Extension: (Chrome Web Store Payments) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]\nCHR Extension: (Social Revealer) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsnmnnjcmpjlbbobehaikglfgpbjclcoeg [2019-01-30]\nCHR Extension: (Unfriend Finder) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsolljnkilmblncgcghhaodkpdcnokhpah [2020-03-29]\nCHR Extension: (Social Profile view notification) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspegkceflonohbcefcbflfpficfkmpeod [2019-10-28]\nCHR Extension: (Gmail) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-05-14]\nCHR Extension: (Chrome Media Router) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-06-07]\nCHR Profile: C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataSystem Profile [2019-07-26]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [chfdnecihphmhljaaejmgoiahnihplgn]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [dhdgffkkebhmkfjojejmpbldmpobfkfo]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]\nCHR HKLM-x32&#8230;ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj] &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCChromeExtnWCChromeExtn.crx [2015-06-29]\nCHR HKLM-x32&#8230;ChromeExtension: [eofcbnmajmjmplflapaojjnihcjkigck]\n\n==================== Services (Whitelisted) ===================\n\n(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)\n\nS4 AdAppMgrSvc; C:Program Files (x86)AutodeskAutodesk Desktop AppAdAppMgrSvc.exe [1374072 2018-03-10] (Autodesk, Inc. -&gt; Autodesk Inc.)\nR2 AVG Antivirus; C:Program Files (x86)AVGAntivirusAVGSvc.exe [349552 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR3 avgbIDSAgent; C:Program Files (x86)AVGAntivirusaswidsagent.exe [6397888 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 BTDevManager; C:Program Files (x86)REALTEKRealtek BluetoothBTDevMgr.exe [125656 2015-09-18] (Realtek Semiconductor Corp -&gt; )\nR2 CleanupPSvc; C:Program Files (x86)AVGAVG TuneUpTuneupSvc.exe [10301176 2019-07-24] (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nR2 DBJobServer; C:Program Files (x86)DesignBuilderJobServerDBJobServer.exe [672168 2018-03-22] (DesignBuilder Software Ltd -&gt; DesignBuilder Software Ltd.)\nR2 DBSimLServer; C:Program Files (x86)DesignBuilderLibDBSimLServer.exe [23464 2018-03-22] (DesignBuilder Software Ltd -&gt; DesignBuilder)\nS3 DialComService; C:Program Files (x86)DIAL GmbHDIAL Communication FrameworkDialComService.exe [2184192 2017-05-29] (DIAL GmbH) [File not signed]\nS3 Disc Soft Lite Bus Service; C:Program FilesDAEMON Tools LiteDiscSoftBusService.exe [1443520 2016-04-04] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR2 DraftSight API Service; C:Program FilesDassault SystemesDraftSightbindsHttpApiService.exe [121344 2016-11-10] (Dassault Systèmes) [File not signed]\nR2 esifsvc; C:WindowsSysWOW64esif_uf.exe [1037568 2015-03-04] (Intel® Software -&gt; Intel Corporation)\nR2 GamesAppIntegrationService; C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [347200 2015-02-09] (WildTangent Inc -&gt; WildTangent)\nR2 HPSupportSolutionsFrameworkService; C:Program Files (x86)Hewlett-PackardHP Support SolutionsHPSupportSolutionsFrameworkService.exe [379224 2020-05-20] (HP Inc. -&gt; HP Inc.)\nR2 HPWMISVC; c:Program Files (x86)Hewlett-PackardHP System EventHPWMISVC.exe [573704 2014-12-01] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nR2 igfxCUIService1.0.0.0; C:Windowssystem32igfxCUIService.exe [344168 2015-04-28] (Intel Corporation &#8211; pGFX -&gt; Intel Corporation)\nR2 jhi_service; C:Program Files (x86)IntelIntel® Management Engine ComponentsDALjhi_service.exe [158496 2014-11-10] (Intel Corporation &#8211; Embedded Subsystems and IP Blocks Group -&gt; Intel Corporation)\nR2 jswpbapi; C:Program Files (x86)Jumpstartjswpbapi.exe [265216 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nS3 jswpsapi; C:Program Files (x86)Jumpstartjswpsapi.exe [954368 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nR2 MBAMService; C:Program FilesMalwarebytesAnti-MalwareMBAMService.exe [6933272 2020-03-19] (Malwarebytes Inc -&gt; Malwarebytes)\nR2 NvNetworkService; C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe [1795912 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR2 NvStreamSvc; C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe [19819848 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR2 omniserv; C:Program FilesHewlett-PackardSimplePassOmniServ.exe [103424 2015-01-30] (Softex Inc.) [File not signed]\nS3 ProtonVPN Service; C:Program Files (x86)Proton TechnologiesProtonVPNProtonVPNService.exe [101096 2020-02-17] (ProtonVPN AG -&gt; )\nS3 ProtonVPN Update Service; C:Program Files (x86)Proton TechnologiesProtonVPNProtonVPN.UpdateService.exe [60136 2020-02-17] (ProtonVPN AG -&gt; )\nR2 RichVideo64; C:Program FilesCyberLinkShared filesRichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -&gt; )\nS3 rpcapd; C:Program Files (x86)WinPcaprpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nR2 RtkAudioService; C:Program FilesRealtekAudioHDARtkAudioService64.exe [293080 2015-03-04] (Realtek Semiconductor Corp -&gt; Realtek Semiconductor)\nR2 SecureLine; C:Program FilesAVAST SoftwareSecureLineVpnSvc.exe [6828424 2019-10-23] (AVAST Software s.r.o. -&gt; AVAST Software)\nR2 ss_conn_service; C:Program FilesSAMSUNGUSB Drivers25_escapeconnss_conn_service.exe [743688 2014-12-03] (DEVGURU CO LTD -&gt; DEVGURU Co., LTD.)\nR2 ss_conn_service2; C:Program FilesSamsungUSB Drivers28_ssconn2connss_conn_service2.exe [780328 2019-09-24] (DEVGURU Co., Ltd. -&gt; DEVGURU Co., LTD.)\nR2 SynTPEnhService; C:Program FilesSynapticsSynTPSynTPEnhService.exe [220840 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nS3 VBoxSDS; C:Program FilesOracleVirtualBoxVBoxSDS.exe [690424 2019-01-25] (Oracle Corporation -&gt; Oracle Corporation)\nR2 vToolbarUpdater40.3.8; C:Program Files (x86)Common FilesAVG Secure SearchvToolbarUpdater40.3.8ToolbarUpdater.exe [1371136 2019-01-28] (AVG Netherlands B.V. -&gt; AVG Secure Search)\nS3 WdNisSvc; C:Program FilesWindows DefenderNisSrv.exe [361824 2017-01-12] (Microsoft Corporation -&gt; Microsoft Corporation)\nS3 WinDefend; C:Program FilesWindows DefenderMsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -&gt; Microsoft Corporation)\nR2 WtuSystemSupport; C:Program Files (x86)AVG Web TuneUpWtuSystemSupport.exe [811520 2019-01-28] (AVG Netherlands B.V. -&gt; )\nS2 KMSServerService; C:WindowsKMSServerServiceKMS Server Service.exe  [X]\n\n===================== Drivers (Whitelisted) ===================\n\n(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)\n\nR3 Accelerometer; C:Windowssystem32DRIVERSAccelerometer.sys [44680 2015-01-27] (Hewlett-Packard Company -&gt; Hewlett-Packard)\nS3 aftap0901; C:Windowssystem32DRIVERSaftap0901.sys [48624 2017-11-16] (AnchorFree Inc -&gt; The OpenVPN Project)\nS3 akshasp; C:Windowssystem32DRIVERSakshasp.sys [90240 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nS3 aksusb; C:WindowsSystem32driversaksusb.sys [18688 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nR0 avgArDisk; C:WindowsSystem32driversavgArDisk.sys [37208 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgArPot; C:WindowsSystem32driversavgArPot.sys [205952 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgbidsdriver; C:WindowsSystem32driversavgbidsdriver.sys [234632 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgbidsh; C:WindowsSystem32driversavgbidsh.sys [178832 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgbuniv; C:WindowsSystem32driversavgbuniv.sys [61072 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgKbd; C:WindowsSystem32driversavgKbd.sys [42856 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 avgMonFlt; C:WindowsSystem32driversavgMonFlt.sys [175776 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgRdr; C:WindowsSystem32driversavgRdr2.sys [109336 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgRvrt; C:WindowsSystem32driversavgRvrt.sys [84928 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgSnx; C:WindowsSystem32driversavgSnx.sys [851664 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgSP; C:WindowsSystem32driversavgSP.sys [461064 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 avgStm; C:WindowsSystem32driversavgStm.sys [235552 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgVmm; C:WindowsSystem32driversavgVmm.sys [319184 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nS3 BlueStacksDrv; C:Program FilesBlueStacksBstkDrv.sys [313112 2019-03-14] (Bluestack Systems, Inc. -&gt; Bluestack System Inc.)\nS3 dg_ssudbus; C:Windowssystem32DRIVERSssudbus.sys [136040 2019-09-26] (Samsung Electronics Co., Ltd. -&gt; Samsung Electronics Co., Ltd.)\nR3 dtlitescsibus; C:WindowsSystem32driversdtlitescsibus.sys [30264 2016-04-28] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR3 dtliteusbbus; C:WindowsSystem32driversdtliteusbbus.sys [47672 2016-04-28] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nS2 Hardlock; C:Windowssystem32drivershardlock.sys [314368 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nR0 hpdskflt; C:WindowsSystem32DRIVERShpdskflt.sys [31880 2015-01-27] (Hewlett-Packard Company -&gt; Hewlett-Packard)\nR0 IntelHSWPcc; C:WindowsSystem32driversIntelPcc.sys [79528 2014-12-22] (Intel® Software -&gt; Intel Corporation)\nR1 JSWPSLWF; C:Windowssystem32DRIVERSjswpslwfx.sys [26624 2008-05-15] (Microsoft Windows Hardware Compatibility Publisher -&gt; Atheros Communications, Inc.)\nR3 kmloop; C:Windowssystem32DRIVERSloop.sys [15360 2013-08-22] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 libusbK; C:WindowsSystem32driverslibusbK.sys [47200 2016-08-02] (Travis Lee Robinson -&gt; hxxp://libusb-win32.sourceforge.net)\nR2 MBAMChameleon; C:WindowsSystem32DriversMbamChameleon.sys [214496 2020-05-22] (Malwarebytes Inc -&gt; Malwarebytes)\nR3 MBAMSwissArmy; C:WindowsSystem32Driversmbamswissarmy.sys [248968 2020-06-02] (Malwarebytes Inc -&gt; Malwarebytes)\nS3 MEIx64; C:Windowssystem32DRIVERSTeeDriverx64.sys [129312 2014-11-10] (Intel Corporation &#8211; Embedded Subsystems and IP Blocks Group -&gt; Intel Corporation)\nR1 npcap; C:Windowssystem32DRIVERSnpcap.sys [70968 2019-07-30] (Insecure.Com LLC -&gt; Insecure.Com LLC.)\nS4 npcap_wifi; C:Windowssystem32DRIVERSnpcap.sys [70968 2019-07-30] (Insecure.Com LLC -&gt; Insecure.Com LLC.)\nR2 NPF; C:WindowsSystem32driversnpf.sys [35344 2010-06-25] (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nR3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [19784 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvad_WaveExtensible; C:Windowssystem32driversnvvad64v.sys [38216 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS3 OXSDIDRV_x64; C:Windowssystem32DRIVERSOXSDIDRV_x64.sys [52384 2011-08-23] (PLX Technology, Inc. -&gt; )\nS3 OXUDIDRV; C:Windowssystem32DriversOXUDIDRV_X64.sys [31280 2010-05-25] (Oxford Semiconductor Ltd -&gt; )\nU5 PROCMON24; C:WindowsSystem32DriversPROCMON24.sys [90168 2020-06-02] (Microsoft Windows Hardware Compatibility Publisher -&gt; Sysinternals &#8211; www.sysinternals.com)\nU5 RTSUER; C:WindowsSystem32DriversRTSUER.sys [377048 2015-03-03] (Realtek Semiconductor Corp -&gt; Realsil Semiconductor Corporation)\nR3 ScpVBus; C:WindowsSystem32driversScpVBus.sys [39168 2013-05-19] (Bruce James -&gt; Scarlet.Crush Productions)\nS3 SmbDrv; C:WindowsSystem32driversSmb_driver_AMDASF.sys [33448 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nR3 SmbDrvI; C:Windowssystem32DRIVERSSmb_driver_Intel.sys [33448 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nS3 ssudmdm; C:Windowssystem32DRIVERSssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -&gt; Samsung Electronics Co., Ltd.)\nS3 tapprotonvpn; C:Windowssystem32DRIVERStapprotonvpn.sys [35768 2020-01-15] (ProtonVPN AG -&gt; The OpenVPN Project)\nS3 TIEHDUSB; C:WindowsSystem32driverstiehdusb.sys [128512 2012-03-07] (Microsoft Windows Hardware Compatibility Publisher -&gt; Texas Instruments)\nR3 USBPcap; C:Windowssystem32DRIVERSUSBPcap.sys [40888 2017-08-20] (Tomasz Moń -&gt; USBPcap)\nR3 VBoxNetAdp; C:Windowssystem32DRIVERSVBoxNetAdp6.sys [235832 2019-01-28] (Oracle Corporation -&gt; Oracle Corporation)\nR1 VBoxNetLwf; C:Windowssystem32DRIVERSVBoxNetLwf.sys [247216 2019-01-28] (Oracle Corporation -&gt; Oracle Corporation)\nS3 vjoy; C:WindowsSystem32driversvjoy.sys [56440 2016-02-03] (Shaul Eizikovich -&gt; Shaul Eizikovich)\nR0 vsock; C:WindowsSystem32DRIVERSvsock.sys [92040 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nS3 WdBoot; C:Windowssystem32driversWdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -&gt; Microsoft Corporation)\nS3 WdFilter; C:Windowssystem32driversWdFilter.sys [274776 2017-01-12] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 WdNisDrv; C:WindowsSystem32DriversWdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -&gt; Microsoft Corporation)\nR3 WirelessButtonDriver; C:WindowsSystem32driversWirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nU3 aswbdisk; no ImagePath\nS3 cpuz140; ??C:UsersXXXXXXZZZ~1AppDataLocalTempcpuz140cpuz140_x64.sys [X] &lt;==== ATTENTION\nS3 esihdrv; ??C:UsersXXXXXXZZZ~1AppDataLocalTempesihdrv.sys [X] &lt;==== ATTENTION\n\n==================== NetSvcs (Whitelisted) ===================\n\n(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)\n\n==================== One month (created) ===================\n\n(If an entry is included in the fixlist, the file/folder will be moved.)\n\n2020-06-09 11:52 &#8211; 2020-06-09 11:54 &#8211; 000063509 _____ C:UsersXXXXXXZZZDownloadsFRST.txt\n2020-06-09 11:51 &#8211; 2020-06-09 11:51 &#8211; 002289152 _____ (Farbar) C:UsersXXXXXXZZZDownloadsFRST64.exe\n2020-06-07 23:48 &#8211; 2020-06-08 01:26 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsMobile ETH\n2020-06-07 16:57 &#8211; 2020-06-07 16:57 &#8211; 000226879 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; Reflexões Masculinas (Ed. 2008).pdf\n2020-06-07 16:56 &#8211; 2020-06-07 16:56 &#8211; 000393633 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; A Guerra da Paixão (Ed. 2005).pdf\n2020-06-07 16:56 &#8211; 2020-06-07 16:56 &#8211; 000321820 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; O Profano Feminino (Ed. 2008).pdf\n2020-06-07 16:55 &#8211; 2020-06-07 16:55 &#8211; 001413718 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; Como lidar com mulheres (Ed. 2008).pdf\n2020-06-05 14:57 &#8211; 2020-06-05 14:57 &#8211; 000000000 ____D C:Windowssystem32TasksMozilla\n2020-06-05 10:16 &#8211; 2020-06-05 10:17 &#8211; 169944728 _____ (Oracle Corporation) C:UsersXXXXXXZZZDownloadsjdk-14.0.1_windows-x64_bin.exe\n2020-06-05 10:12 &#8211; 2020-06-09 09:09 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Firefox\n2020-06-02 20:38 &#8211; 2020-06-02 20:38 &#8211; 000001505 _____ C:UsersXXXXXXZZZDesktopNetworkMiner.exe &#8211; Atalho.lnk\n2020-06-02 20:28 &#8211; 2020-06-02 20:28 &#8211; 000090168 ____H (Sysinternals &#8211; www.sysinternals.com) C:Windowssystem32DriversPROCMON24.SYS\n2020-06-02 20:18 &#8211; 2020-06-02 20:18 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadspowershell mtsploit 2\n2020-06-02 17:17 &#8211; 2020-06-02 17:17 &#8211; 000001208 _____ C:UsersXXXXXXZZZDesktopLegislação &#8211; Atalho.lnk\n2020-06-02 14:34 &#8211; 2020-06-02 14:34 &#8211; 000248968 _____ (Malwarebytes) C:Windowssystem32Driversmbamswissarmy.sys\n2020-06-02 11:16 &#8211; 2020-06-02 11:16 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalOsram_Lamp\n2020-06-02 10:08 &#8211; 2020-06-02 10:09 &#8211; 004189296 _____ C:UsersXXXXXXZZZDownloadsultrasurf.exe\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000002019 _____ C:UsersPublicDesktopPhilips_Cat.lnk\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000002019 _____ C:ProgramDataDesktopPhilips_Cat.lnk\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsPhilips Lighting\n2020-06-01 21:19 &#8211; 2020-06-01 21:21 &#8211; 000000000 ____D C:Program Files (x86)Philips Lighting\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000002048 _____ C:UsersPublicDesktopOSRAM Lamp PlugIn.lnk\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000002048 _____ C:ProgramDataDesktopOSRAM Lamp PlugIn.lnk\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsDIALux PlugIns\n2020-06-01 18:22 &#8211; 2020-06-01 18:23 &#8211; 000000000 ____D C:ProgramDataDIALux\n2020-06-01 18:22 &#8211; 2020-06-01 18:22 &#8211; 000000000 ____D C:ProgramDataDIALux PlugIns\n2020-06-01 18:17 &#8211; 2020-06-01 21:00 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsPHILIPS\n2020-06-01 18:17 &#8211; 2020-06-01 18:18 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsOSRAM\n2020-06-01 18:15 &#8211; 2020-06-01 18:15 &#8211; 001751775 _____ C:UsersXXXXXXZZZDownloads20190926-philips-truefashion-2-compact-st715t.zip\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsDIAL GmbH\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalStimulsoft\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalDIAL GmbH\n2020-06-01 12:15 &#8211; 2020-06-01 12:16 &#8211; 000038155 _____ C:DIALux Setup Information.txt\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000005721 _____ C:DIAL Communication Framework Setup Log.txt\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000001783 _____ C:UsersPublicDesktopDIALux evo.lnk\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000001783 _____ C:ProgramDataDesktopDIALux evo.lnk\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalSafeNet Sentinel\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:ProgramDataSafeNet Sentinel\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsDIALux evo\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:Program Files (x86)DIAL GmbH\n2020-06-01 12:13 &#8211; 2020-06-01 12:20 &#8211; 000656059 _____ C:WindowsDIALux Setup Log.txt\n2020-06-01 12:13 &#8211; 2020-06-01 12:14 &#8211; 000000000 ____D C:ProgramDataDIAL GmbH\n2020-06-01 12:13 &#8211; 2020-06-01 12:13 &#8211; 000000000 ____D C:Program FilesDIAL GmbH\n2020-06-01 12:02 &#8211; 2020-06-01 12:04 &#8211; 486796896 _____ (DIAL GmbH) C:UsersXXXXXXZZZDownloadsDIALux_evo_9.0.exe\n2020-05-28 14:18 &#8211; 2020-05-28 14:18 &#8211; 000090112 _____ C:UsersXXXXXXZZZDownloadsamipinkc2.exe\n2020-05-28 13:07 &#8211; 2020-05-28 13:07 &#8211; 000002391 _____ C:UsersXXXXXXZZZAppDataLocalrecently-used.xbel\n2020-05-28 12:56 &#8211; 2020-05-28 12:56 &#8211; 011226820 _____ C:UsersXXXXXXZZZDownloadsvulscan-master.zip\n2020-05-27 15:28 &#8211; 2020-05-27 15:28 &#8211; 000030719 _____ C:UsersXXXXXXZZZDownloadsc2 metasploit powershel.zip\n2020-05-24 14:46 &#8211; 2020-05-24 14:46 &#8211; 001227102 _____ C:UsersXXXXXXZZZDownloadsSGA10.zip\n2020-05-23 00:22 &#8211; 2020-05-23 00:22 &#8211; 000000018 _____ C:UsersXXXXXXZZZDesktopSerpentine Similar.txt\n2020-05-22 20:08 &#8211; 2020-05-22 20:09 &#8211; 000325072 _____ C:WindowsMinidump52220-169750-01.dmp\n2020-05-22 16:03 &#8211; 2020-05-22 16:03 &#8211; 000214496 _____ (Malwarebytes) C:Windowssystem32DriversMbamChameleon.sys\n2020-05-21 22:30 &#8211; 2020-05-21 22:30 &#8211; 000000083 _____ C:UsersXXXXXXZZZDesktopnmap.txt\n2020-05-21 10:47 &#8211; 2020-05-28 13:07 &#8211; 000000000 ____D C:UsersXXXXXXZZZ.zenmap\n2020-05-21 10:47 &#8211; 2020-05-21 10:47 &#8211; 000000986 _____ C:UsersXXXXXXZZZDesktopNmap &#8211; Zenmap GUI.lnk\n2020-05-21 10:47 &#8211; 2020-05-21 10:47 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsNmap\n2020-05-21 10:45 &#8211; 2020-05-24 17:36 &#8211; 000003112 _____ C:Windowssystem32Tasksnpcapwatchdog\n2020-05-21 10:43 &#8211; 2020-05-21 10:43 &#8211; 000000000 ____D C:WindowsSysWOW64Npcap\n2020-05-21 10:43 &#8211; 2020-05-21 10:43 &#8211; 000000000 ____D C:Windowssystem32Npcap\n2020-05-21 10:42 &#8211; 2020-05-28 13:00 &#8211; 000000000 ____D C:Program Files (x86)Nmap\n2020-05-21 00:50 &#8211; 2020-05-21 10:13 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsSGA10\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002203 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Earth Pro.lnk\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002191 _____ C:UsersPublicDesktopGoogle Earth Pro.lnk\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002191 _____ C:ProgramDataDesktopGoogle Earth Pro.lnk\n2020-05-17 13:58 &#8211; 2020-05-17 13:59 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsFotos Belém\n2020-05-16 22:15 &#8211; 2020-05-16 22:24 &#8211; 000002368 _____ C:UsersXXXXXXZZZDesktopRkill.txt\n2020-05-16 22:14 &#8211; 2020-05-16 22:14 &#8211; 001802704 _____ (Bleeping Computer, LLC) C:UsersXXXXXXZZZDownloadsrkill.exe\n2020-05-16 21:34 &#8211; 2020-05-16 21:34 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalclink\n2020-05-16 20:34 &#8211; 2020-05-16 20:40 &#8211; 000000000 ____D C:Appie\n2020-05-15 23:38 &#8211; 2020-05-15 23:38 &#8211; 000000193 _____ C:UsersXXXXXXZZZDesktopbiblio.txt\n2020-05-14 11:27 &#8211; 2020-05-14 11:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsZoom\n2020-05-14 11:20 &#8211; 2020-05-14 11:20 &#8211; 000001947 _____ C:UsersXXXXXXZZZDesktopZoom.lnk\n2020-05-14 11:19 &#8211; 2020-05-14 11:19 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsZoom\n2020-05-14 10:28 &#8211; 2020-04-30 04:49 &#8211; 000308736 _____ (Microsoft Corporation) C:Windowssystem32usbmon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 04:22 &#8211; 000881664 _____ (Microsoft Corporation) C:Windowssystem32printfilterpipelinesvc.exe\n2020-05-14 10:28 &#8211; 2020-04-30 03:55 &#8211; 001756672 _____ (Microsoft Corporation) C:Windowssystem32GdiPlus.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:43 &#8211; 001495040 _____ (Microsoft Corporation) C:WindowsSysWOW64GdiPlus.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:40 &#8211; 000309760 _____ (Microsoft Corporation) C:Windowssystem32WSDMon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:37 &#8211; 000216576 _____ (Microsoft Corporation) C:Windowssystem32tcpmon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:33 &#8211; 001096704 _____ (Microsoft Corporation) C:Windowssystem32localspl.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 022365896 _____ (Microsoft Corporation) C:Windowssystem32shell32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 003118032 _____ (Microsoft Corporation) C:Windowssystem32WpcMon.exe\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 001368592 _____ (Microsoft Corporation) C:Windowssystem32gdi32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 000722496 _____ (Microsoft Corporation) C:Windowssystem32SHCore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 000642488 _____ (Microsoft Corporation) C:Windowssystem32twinapi.appcore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:00 &#8211; 000374024 _____ (Adobe Systems Incorporated) C:Windowssystem32atmfd.dll\n2020-05-14 10:28 &#8211; 2020-04-16 06:15 &#8211; 025755136 _____ (Microsoft Corporation) C:Windowssystem32mshtml.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:30 &#8211; 019795840 _____ (Microsoft Corporation) C:WindowsSysWOW64shell32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:29 &#8211; 000561400 _____ (Microsoft Corporation) C:WindowsSysWOW64SHCore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:29 &#8211; 000493736 _____ (Microsoft Corporation) C:WindowsSysWOW64twinapi.appcore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:25 &#8211; 000316368 _____ (Adobe Systems Incorporated) C:WindowsSysWOW64atmfd.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:40 &#8211; 002911744 _____ (Microsoft Corporation) C:Windowssystem32iertutil.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:38 &#8211; 000581120 _____ (Microsoft Corporation) C:Windowssystem32vbscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:31 &#8211; 020291072 _____ (Microsoft Corporation) C:WindowsSysWOW64mshtml.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:31 &#8211; 000113152 _____ (Microsoft Corporation) C:Windowssystem32Windows.Security.Credentials.UI.UserConsentVerifier.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:28 &#8211; 000186880 _____ (Microsoft Corporation) C:Windowssystem32easwrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:27 &#8211; 005498880 _____ (Microsoft Corporation) C:Windowssystem32jscript9.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:27 &#8211; 000785408 _____ (Microsoft Corporation) C:Windowssystem32jscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:25 &#8211; 000546816 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.PointOfService.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:14 &#8211; 000497664 _____ (Microsoft Corporation) C:WindowsSysWOW64vbscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:11 &#8211; 002304000 _____ (Microsoft Corporation) C:WindowsSysWOW64iertutil.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:07 &#8211; 000084992 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Security.Credentials.UI.UserConsentVerifier.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:06 &#8211; 000463872 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.Usb.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:05 &#8211; 000147968 _____ (Microsoft Corporation) C:WindowsSysWOW64easwrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:04 &#8211; 000654336 _____ (Microsoft Corporation) C:WindowsSysWOW64jscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:03 &#8211; 000365568 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.PointOfService.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:59 &#8211; 001994240 _____ (Microsoft Corporation) C:Windowssystem32DWrite.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:59 &#8211; 001033216 _____ (Microsoft Corporation) C:Windowssystem32inetcomm.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:54 &#8211; 015478272 _____ (Microsoft Corporation) C:Windowssystem32ieframe.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:53 &#8211; 003258368 _____ (Microsoft Corporation) C:Windowssystem32Wpc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:53 &#8211; 000262144 _____ (Microsoft Corporation) C:Windowssystem32webcheck.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:51 &#8211; 000809472 _____ (Microsoft Corporation) C:Windowssystem32msfeeds.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:50 &#8211; 001384960 _____ (Microsoft Corporation) C:Windowssystem32FntCache.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:49 &#8211; 002942464 _____ (Microsoft Corporation) C:Windowssystem32WpcWebSync.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:49 &#8211; 002132992 _____ (Microsoft Corporation) C:Windowssystem32inetcpl.cpl\n2020-05-14 10:28 &#8211; 2020-04-16 03:48 &#8211; 000310784 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.Usb.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:43 &#8211; 000880640 _____ (Microsoft Corporation) C:WindowsSysWOW64inetcomm.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:41 &#8211; 004112384 _____ (Microsoft Corporation) C:WindowsSysWOW64jscript9.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:41 &#8211; 002471424 _____ (Microsoft Corporation) C:WindowsSysWOW64Wpc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:40 &#8211; 001085440 _____ (Microsoft Corporation) C:WindowsSysWOW64gdi32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:39 &#8211; 001560064 _____ (Microsoft Corporation) C:WindowsSysWOW64DWrite.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:39 &#8211; 000696320 _____ (Microsoft Corporation) C:WindowsSysWOW64msfeeds.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:38 &#8211; 002058752 _____ (Microsoft Corporation) C:WindowsSysWOW64inetcpl.cpl\n2020-05-14 10:28 &#8211; 2020-04-16 03:38 &#8211; 000333312 _____ (Microsoft Corporation) C:WindowsSysWOW64iedkcs32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:37 &#8211; 004859392 _____ (Microsoft Corporation) C:Windowssystem32wininet.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:35 &#8211; 013861376 _____ (Microsoft Corporation) C:WindowsSysWOW64ieframe.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:35 &#8211; 000254976 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.HumanInterfaceDevice.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:32 &#8211; 000689152 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.Bluetooth.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:30 &#8211; 014533632 _____ (Microsoft Corporation) C:Windowssystem32twinui.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:28 &#8211; 000902656 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.SmartCards.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:27 &#8211; 000173056 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.HumanInterfaceDevice.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 012880384 _____ (Microsoft Corporation) C:WindowsSysWOW64twinui.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 001566720 _____ (Microsoft Corporation) C:Windowssystem32urlmon.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 000466432 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.Bluetooth.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:24 &#8211; 007799296 _____ (Microsoft Corporation) C:Windowssystem32Windows.Data.Pdf.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:23 &#8211; 000626688 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.SmartCards.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:22 &#8211; 000068096 _____ (Microsoft Corporation) C:Windowssystem32ConfigureExpandedStorage.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:20 &#8211; 004387328 _____ (Microsoft Corporation) C:WindowsSysWOW64wininet.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:20 &#8211; 000052736 _____ (Microsoft Corporation) C:WindowsSysWOW64ConfigureExpandedStorage.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:19 &#8211; 001265152 _____ (Microsoft Corporation) C:Windowssystem32schedsvc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:18 &#8211; 005271552 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Data.Pdf.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:16 &#8211; 001341952 _____ (Microsoft Corporation) C:WindowsSysWOW64urlmon.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:15 &#8211; 000800768 _____ (Microsoft Corporation) C:Windowssystem32ieapfltr.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:15 &#8211; 000710144 _____ (Microsoft Corporation) C:WindowsSysWOW64ieapfltr.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:14 &#8211; 001727488 _____ (Microsoft Corporation) C:Windowssystem32Windows.UI.Immersive.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 001546752 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.UI.Immersive.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 000140288 _____ (Microsoft Corporation) C:Windowssystem32efswrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 000104448 _____ (Microsoft Corporation) C:WindowsSysWOW64efswrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:07 &#8211; 000156160 _____ (Microsoft Corporation) C:WindowsSysWOW64PlayToManager.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:05 &#8211; 000229888 _____ (Microsoft Corporation) C:Windowssystem32PlayToManager.dll\n2020-05-14 10:28 &#8211; 2020-04-14 08:33 &#8211; 000205824 _____ (Microsoft Corporation) C:Windowssystem32scrrun.dll\n2020-05-14 10:28 &#8211; 2020-04-14 08:03 &#8211; 000168448 _____ (Microsoft Corporation) C:WindowsSysWOW64scrrun.dll\n2020-05-14 10:28 &#8211; 2020-04-11 19:42 &#8211; 007362296 _____ (Microsoft Corporation) C:Windowssystem32ntoskrnl.exe\n2020-05-14 10:28 &#8211; 2020-04-11 19:41 &#8211; 000376568 _____ (Microsoft Corporation) C:Windowssystem32Driversclfs.sys\n2020-05-14 10:28 &#8211; 2020-04-11 19:39 &#8211; 001542696 _____ (Microsoft Corporation) C:Windowssystem32user32.dll\n2020-05-14 10:28 &#8211; 2020-04-11 19:29 &#8211; 001737720 _____ (Microsoft Corporation) C:Windowssystem32ntdll.dll\n2020-05-14 10:28 &#8211; 2020-04-11 18:31 &#8211; 001501096 _____ (Microsoft Corporation) C:WindowsSysWOW64ntdll.dll\n2020-05-14 10:28 &#8211; 2020-04-11 18:04 &#8211; 004168704 _____ (Microsoft Corporation) C:Windowssystem32win32k.sys\n2020-05-14 10:28 &#8211; 2020-04-11 16:55 &#8211; 000194560 _____ (Microsoft Corporation) C:Windowssystem32winsrv.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:53 &#8211; 000112128 _____ (Microsoft Corporation) C:Windowssystem32vaultcli.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:48 &#8211; 001377792 _____ (Microsoft Corporation) C:WindowsSysWOW64user32.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:47 &#8211; 000260608 _____ (Microsoft Corporation) C:Windowssystem32vaultsvc.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:23 &#8211; 001317888 _____ (Microsoft Corporation) C:Windowssystem32Windows.Media.Streaming.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:22 &#8211; 001103872 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Media.Streaming.dll\n2020-05-14 10:28 &#8211; 2020-04-11 01:12 &#8211; 002446576 _____ (Microsoft Corporation) C:Windowssystem32Driverstcpip.sys\n2020-05-14 10:28 &#8211; 2020-04-11 01:12 &#8211; 000428784 _____ (Microsoft Corporation) C:Windowssystem32DriversFWPKCLNT.SYS\n2020-05-14 10:28 &#8211; 2020-04-09 14:36 &#8211; 001311744 _____ (Microsoft Corporation) C:WindowsSysWOW64msjet40.dll\n2020-05-14 10:28 &#8211; 2020-04-07 20:30 &#8211; 000988472 _____ (Microsoft Corporation) C:Windowssystem32mfsrcsnk.dll\n2020-05-14 10:28 &#8211; 2020-04-07 20:28 &#8211; 000857320 _____ (Microsoft Corporation) C:WindowsSysWOW64mfsrcsnk.dll\n2020-05-14 10:28 &#8211; 2020-04-07 14:55 &#8211; 003330048 _____ (Microsoft Corporation) C:Windowssystem32msi.dll\n2020-05-14 10:28 &#8211; 2020-04-07 14:51 &#8211; 003636224 _____ (Microsoft Corporation) C:WindowsSysWOW64msi.dll\n2020-05-14 10:28 &#8211; 2020-04-04 17:06 &#8211; 000879616 _____ (Microsoft Corporation) C:Windowssystem32rasdlg.dll\n2020-05-14 10:28 &#8211; 2020-04-04 17:01 &#8211; 001572864 _____ (Microsoft Corporation) C:Windowssystem32wbengine.exe\n2020-05-14 10:28 &#8211; 2020-04-04 16:50 &#8211; 000795136 _____ (Microsoft Corporation) C:WindowsSysWOW64rasdlg.dll\n2020-05-14 10:13 &#8211; 2020-05-13 09:42 &#8211; 000338104 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32avgBoot.exe\n2020-05-13 16:42 &#8211; 2020-05-13 16:43 &#8211; 140053773 _____ C:UsersXXXXXXZZZDownloadsHAPv5.11.zip\n2020-05-13 09:43 &#8211; 2020-05-13 09:42 &#8211; 000235552 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgStm.sys\n2020-05-13 09:43 &#8211; 2020-05-13 09:42 &#8211; 000175776 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgMonFlt.sys\n2020-05-11 16:42 &#8211; 2020-06-08 02:05 &#8211; 000000000 ____D C:Windowssystem32TasksAVAST Software\n2020-05-10 21:06 &#8211; 2020-05-10 21:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingQtProject\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000001201 _____ C:UsersPublicDesktopMiniTool Power Data Recovery 8.8.lnk\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000001201 _____ C:ProgramDataDesktopMiniTool Power Data Recovery 8.8.lnk\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsMiniTool Power Data Recovery\n2020-05-10 20:58 &#8211; 2020-05-10 22:38 &#8211; 000000000 ____D C:Program Files (x86)MiniTool PowerDataRecovery\n2020-05-10 20:51 &#8211; 2020-05-10 20:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsDiskInternals\n2020-05-10 20:51 &#8211; 2020-05-10 20:51 &#8211; 000000000 ____D C:Program Files (x86)DiskInternals\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000001677 _____ C:UsersPublicDesktopRecuva.lnk\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000001677 _____ C:ProgramDataDesktopRecuva.lnk\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsRecuva\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000000000 ____D C:Program FilesRecuva\n\n==================== One month (modified) ==================\n\n(If an entry is included in the fixlist, the file/folder will be moved.)\n\n2020-06-09 11:59 &#8211; 2018-07-01 02:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalLowMozilla\n2020-06-09 11:53 &#8211; 2020-04-22 15:26 &#8211; 000000000 ____D C:FRST\n2020-06-09 11:52 &#8211; 2019-09-18 14:54 &#8211; 000000594 _____ C:WindowsTasksG2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job\n2020-06-09 11:39 &#8211; 2020-04-22 15:39 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsSMsec\n2020-06-09 11:31 &#8211; 2020-04-24 12:21 &#8211; 000000000 ___RD C:UsersXXXXXXZZZDocumentsMEGAsync uploads\n2020-06-09 11:22 &#8211; 2019-09-18 14:54 &#8211; 000000690 _____ C:WindowsTasksG2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job\n2020-06-09 11:16 &#8211; 2015-05-05 05:06 &#8211; 000818068 _____ C:Windowssystem32prfh0816.dat\n2020-06-09 11:16 &#8211; 2015-05-05 05:06 &#8211; 000175394 _____ C:Windowssystem32prfc0816.dat\n2020-06-09 11:16 &#8211; 2014-11-21 05:42 &#8211; 001956190 _____ C:Windowssystem32PerfStringBackup.INI\n2020-06-09 11:16 &#8211; 2013-08-22 14:36 &#8211; 000000000 ____D C:WindowsInf\n2020-06-09 10:45 &#8211; 2020-05-02 10:45 &#8211; 000000374 _____ C:WindowsTasksHPCeeScheduleForXXXXXXZZZ.job\n2020-06-09 09:34 &#8211; 2016-03-18 21:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsYoucam\n2020-06-09 09:33 &#8211; 2018-07-27 23:43 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalCrashDumps\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000003700 _____ C:Windowssystem32TasksG2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000003604 _____ C:Windowssystem32TasksG2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalGoToMeeting\n2020-06-09 09:24 &#8211; 2020-03-19 19:44 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalAVAST Software\n2020-06-09 09:21 &#8211; 2020-03-16 11:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingSpotify\n2020-06-09 09:21 &#8211; 2016-04-23 21:50 &#8211; 000000000 ____D C:ProgramDataAvg\n2020-06-09 09:17 &#8211; 2016-03-18 21:20 &#8211; 000000000 __RDO C:UsersXXXXXXZZZOneDrive\n2020-06-09 09:17 &#8211; 2016-03-18 21:14 &#8211; 000000000 __SHD C:UsersXXXXXXZZZIntelGraphicsProfiles\n2020-06-09 09:10 &#8211; 2019-04-05 12:40 &#8211; 000000000 ____D C:ProgramDataVMware\n2020-06-09 09:10 &#8211; 2017-11-30 18:27 &#8211; 000000434 _____ C:WindowsTasksDriver Easy Scheduled Scan.job\n2020-06-09 09:10 &#8211; 2013-08-22 15:45 &#8211; 000000006 ____H C:WindowsTasksSA.DAT\n2020-06-09 09:10 &#8211; 2013-08-22 15:44 &#8211; 001175584 _____ C:Windowssystem32FNTCACHE.DAT\n2020-06-09 09:09 &#8211; 2016-05-02 18:14 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service\n2020-06-08 02:12 &#8211; 2013-08-22 14:25 &#8211; 000524288 ___SH C:Windowssystem32configBBI\n2020-06-08 02:05 &#8211; 2020-05-02 10:45 &#8211; 000003202 _____ C:Windowssystem32TasksHPCeeScheduleForXXXXXXZZZ\n2020-06-08 02:05 &#8211; 2019-06-24 09:55 &#8211; 000004188 _____ C:Windowssystem32TasksAvast SecureLine VPN Update\n2020-06-08 02:05 &#8211; 2019-03-27 15:39 &#8211; 000003874 _____ C:Windowssystem32TasksBlueStacksHelper\n2020-06-08 02:05 &#8211; 2019-03-14 12:51 &#8211; 000004128 _____ C:Windowssystem32TasksCCleaner Update\n2020-06-08 02:05 &#8211; 2019-03-14 12:51 &#8211; 000002818 _____ C:Windowssystem32TasksCCleanerSkipUAC\n2020-06-08 02:05 &#8211; 2018-03-13 10:37 &#8211; 000004472 _____ C:Windowssystem32TasksAdobe Flash Player NPAPI Notifier\n2020-06-08 02:05 &#8211; 2018-01-19 14:55 &#8211; 000003108 _____ C:Windowssystem32Tasks7A5E22F3-13A6-4040-B1C5-E4043B449990\n2020-06-08 02:05 &#8211; 2017-11-30 18:27 &#8211; 000003832 _____ C:Windowssystem32TasksDriver Easy Scheduled Scan\n2020-06-08 02:05 &#8211; 2017-06-28 03:34 &#8211; 000004324 _____ C:Windowssystem32TasksAdobe Flash Player Updater\n2020-06-08 02:05 &#8211; 2017-04-06 22:46 &#8211; 000004174 _____ C:Windowssystem32TasksAntivirus Emergency Update\n2020-06-08 02:05 &#8211; 2016-04-18 20:31 &#8211; 000003646 _____ C:Windowssystem32TasksHPCustParticipation HP Deskjet 3050 J610 series\n2020-06-08 02:05 &#8211; 2016-03-31 20:06 &#8211; 000004476 _____ C:Windowssystem32TasksAdobe Acrobat Update Task\n2020-06-08 02:05 &#8211; 2016-03-18 21:26 &#8211; 000003444 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineUA\n2020-06-08 02:05 &#8211; 2016-03-18 21:26 &#8211; 000003316 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineCore\n2020-06-08 02:05 &#8211; 2015-06-04 18:43 &#8211; 000002118 _____ C:Windowssystem32TasksAvast SecureLine\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002986 _____ C:Windowssystem32TasksStart SimplePass\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002924 _____ C:Windowssystem32TasksStart OPBHOBrokerDesktop\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002912 _____ C:Windowssystem32TasksStart OPBHOBroker\n2020-06-07 17:15 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32NDF\n2020-06-07 14:53 &#8211; 2016-04-28 13:32 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsDepesas anuais\n2020-06-07 14:09 &#8211; 2019-07-18 11:12 &#8211; 000000000 ____D C:UsersXXXXXXZZZ.VirtualBox\n2020-06-07 13:56 &#8211; 2019-07-18 11:12 &#8211; 000000000 ____D C:ProgramDataVirtualBox\n2020-06-05 15:12 &#8211; 2016-03-18 21:21 &#8211; 000003600 _____ C:Windowssystem32TasksOptimize Start Menu Cache Files-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-05 14:57 &#8211; 2016-05-02 18:14 &#8211; 000001182 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsFirefox.lnk\n2020-06-05 09:41 &#8211; 2016-03-18 21:27 &#8211; 000002247 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk\n2020-06-04 18:33 &#8211; 2020-05-04 21:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingxarp-XXXXXXZZZ\n2020-06-04 13:20 &#8211; 2016-03-31 20:06 &#8211; 000002086 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk\n2020-06-02 19:55 &#8211; 2018-06-24 15:52 &#8211; 000001277 _____ C:UsersXXXXXXZZZDesktopMUSICA.txt &#8211; Atalho.lnk\n2020-06-02 19:27 &#8211; 2016-03-18 21:12 &#8211; 000000000 ____D C:UsersXXXXXXZZZ\n2020-06-02 11:21 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowstracing\n2020-06-01 21:21 &#8211; 2015-05-04 20:52 &#8211; 000000000 ___HD C:Program Files (x86)InstallShield Installation Information\n2020-05-29 08:53 &#8211; 2015-06-04 18:15 &#8211; 000000000 ____D C:ProgramDataRealtek\n2020-05-28 23:50 &#8211; 2016-04-25 18:02 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingvlc\n2020-05-28 00:58 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:WindowsAppReadiness\n2020-05-28 00:46 &#8211; 2017-12-10 17:58 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsFacebook\n2020-05-28 00:38 &#8211; 2020-04-22 15:36 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsJogos\n2020-05-28 00:14 &#8211; 2017-03-04 00:04 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsXadrez\n2020-05-28 00:12 &#8211; 2016-12-17 17:46 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsSegurança Social\n2020-05-28 00:11 &#8211; 2018-06-24 15:40 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsProgramas\n2020-05-28 00:11 &#8211; 2016-04-30 18:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsProgramas instalados\n2020-05-28 00:10 &#8211; 2016-05-12 20:08 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsOutros\n2020-05-28 00:09 &#8211; 2018-05-06 16:14 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsLivros\n2020-05-27 13:56 &#8211; 2019-11-04 15:58 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsNetworkMiner_2-5\n2020-05-27 10:01 &#8211; 2015-05-04 20:48 &#8211; 000000000 ____D C:Program Files (x86)Hewlett-Packard\n2020-05-26 18:00 &#8211; 2016-04-28 01:41 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalMicrosoft Help\n2020-05-26 12:34 &#8211; 2020-03-16 11:07 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalSpotify\n2020-05-25 09:55 &#8211; 2020-04-30 19:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsETH\n2020-05-22 20:08 &#8211; 2016-05-24 22:12 &#8211; 000000000 ____D C:WindowsMinidump\n2020-05-22 20:00 &#8211; 2017-04-03 19:15 &#8211; 000000000 ___RD C:UsersXXXXXXZZZGoogle Drive\n2020-05-22 12:21 &#8211; 2019-02-07 10:56 &#8211; 000000000 ___RD C:UsersXXXXXXZZZDocumentsMEGA\n2020-05-21 10:45 &#8211; 2020-03-31 18:09 &#8211; 000000000 ____D C:Program FilesNpcap\n2020-05-21 01:37 &#8211; 2016-04-23 21:45 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsPasses\n2020-05-19 10:20 &#8211; 2018-03-22 22:48 &#8211; 000000000 ____D C:Program FilesGoogle\n2020-05-18 22:34 &#8211; 2013-08-22 16:20 &#8211; 000000000 ____D C:WindowsCbsTemp\n2020-05-18 12:33 &#8211; 2016-03-18 21:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalPackages\n2020-05-18 12:32 &#8211; 2013-08-22 16:36 &#8211; 000000000 ___HD C:Program FilesWindowsApps\n2020-05-17 15:20 &#8211; 2019-07-18 11:13 &#8211; 000000000 ____D C:UsersXXXXXXZZZVirtualBox VMs\n2020-05-17 13:12 &#8211; 2019-04-24 01:38 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingTelegram Desktop\n2020-05-16 21:57 &#8211; 2015-06-04 18:43 &#8211; 000000000 ____D C:ProgramDataAVAST Software\n2020-05-16 21:48 &#8211; 2016-06-27 16:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingACEStream\n2020-05-16 21:48 &#8211; 2016-06-27 16:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoaming.ACEStream\n2020-05-16 04:27 &#8211; 2016-03-31 22:45 &#8211; 000000000 ____D C:Windowssystem32MRT\n2020-05-16 04:22 &#8211; 2013-08-22 16:36 &#8211; 000000000 ___RD C:WindowsToastData\n2020-05-16 04:22 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32inetsrv\n2020-05-15 23:46 &#8211; 2018-04-26 15:42 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalDesignBuilder\n2020-05-15 23:46 &#8211; 2018-04-26 15:36 &#8211; 000000000 ____D C:ProgramDataDesignBuilder\n2020-05-15 23:43 &#8211; 2020-04-18 19:52 &#8211; 000000000 ____D C:Program Files (x86)TeamViewer\n2020-05-15 23:42 &#8211; 2019-12-08 18:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsWugFresh Development\n2020-05-15 23:41 &#8211; 2020-01-11 03:43 &#8211; 000000000 ____D C:Program Files (x86)Kingo ROOT\n2020-05-15 23:41 &#8211; 2018-05-20 03:24 &#8211; 000000000 ____D C:Program Files (x86)Facebook Friend Mapper\n2020-05-15 23:41 &#8211; 2016-03-29 22:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingDropboxOEM\n2020-05-15 11:41 &#8211; 2016-03-31 22:45 &#8211; 120636720 ____C (Microsoft Corporation) C:Windowssystem32MRT.exe\n2020-05-14 11:19 &#8211; 2020-04-09 12:17 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingZoom\n2020-05-13 23:42 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:WindowsSysWOW64Macromed\n2020-05-13 23:42 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32Macromed\n2020-05-13 22:38 &#8211; 2016-04-18 20:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalHP\n2020-05-13 10:44 &#8211; 2020-04-28 14:25 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalLowIGDump\n2020-05-13 09:42 &#8211; 2019-01-07 00:31 &#8211; 000061072 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbuniv.sys\n2020-05-13 09:42 &#8211; 2019-01-07 00:31 &#8211; 000037208 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgArDisk.sys\n2020-05-13 09:42 &#8211; 2018-10-20 20:56 &#8211; 000042856 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgKbd.sys\n2020-05-13 09:42 &#8211; 2017-11-30 14:52 &#8211; 000205952 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgArPot.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000851664 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgSnx.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000461064 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgSP.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000319184 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgVmm.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000109336 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgRdr2.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000084928 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgRvrt.sys\n2020-05-13 09:41 &#8211; 2019-01-14 16:33 &#8211; 000234632 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbidsdriver.sys\n2020-05-13 09:41 &#8211; 2019-01-07 00:31 &#8211; 000178832 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbidsh.sys\n2020-05-12 17:41 &#8211; 2020-03-07 21:03 &#8211; 000000000 ____D C:ProgramDataProtonVPN\n2020-05-12 00:18 &#8211; 2018-02-25 20:28 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingWireshark\n2020-05-11 22:49 &#8211; 2020-03-24 22:50 &#8211; 000000000 ____D C:fakenet1.4.11\n2020-05-10 17:51 &#8211; 2016-04-10 14:24 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingAVAST Software\n2020-05-10 17:51 &#8211; 2015-06-04 18:43 &#8211; 000000000 ____D C:Program FilesAVAST Software\n\n==================== Files in the root of some directories ========\n\n2020-01-03 14:39 &#8211; 2020-01-03 14:39 &#8211; 003185243 _____ () C:Program FilesHxDSetup.zip\n2020-02-26 13:17 &#8211; 2020-02-26 13:17 &#8211; 003341981 _____ () C:Program FilesSnort_2_9_15_1_Installer.exe\n2017-11-28 12:01 &#8211; 2017-11-28 12:03 &#8211; 007649280 _____ () C:Program Files (x86)GUTAEE6.tmp\n2020-05-28 13:07 &#8211; 2020-05-28 13:07 &#8211; 000002391 _____ () C:UsersXXXXXXZZZAppDataLocalrecently-used.xbel\n2020-01-11 03:44 &#8211; 2020-01-11 03:59 &#8211; 000000068 _____ () C:UsersXXXXXXZZZAppDataLocaluts.ini\n2020-05-21 10:47 &#8211; 2020-05-28 11:12 &#8211; 000000286 _____ () C:UsersXXXXXXZZZAppDataLocalzenmap.exe.log\n\n==================== SigCheck ============================\n\n(There is no automatic fix for files that do not pass verification.)\n\nLastRegBack: 2020-04-08 11:59\n==================== End of FRST.txt ========================\nAlso, the Addition.txt:\n\nAdditional scan result of Farbar Recovery Scan Tool (x64) Version: 06-06-2020\nRan by XXXXXXZZZ (09-06-2020 12:01:08)\nRunning from C:UsersXXXXXXZZZDownloads\nWindows 8.1 (Update) (X64) (2016-03-18 20:13:59)\nBoot Mode: Normal\n==========================================================\n\n==================== Accounts: =============================\n\nAdministrador (S-1-5-21-3751382696-3894377064-3631472648-500 &#8211; Administrator &#8211; Disabled)\nConvidado (S-1-5-21-3751382696-3894377064-3631472648-501 &#8211; Limited &#8211; Disabled)\nXXXXXXZZZ (S-1-5-21-3751382696-3894377064-3631472648-1001 &#8211; Administrator &#8211; Enabled) =&gt; C:UsersXXXXXXZZZ\n\n==================== Security Center ========================\n\n(If an entry is included in the fixlist, it will be removed.)\n\nAV: Windows Defender (Disabled &#8211; Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46\nAV: AVG Antivirus (Enabled &#8211; Up to date) 18A975F9-A60C-37D8-E30B-4BEF31AD3411\nAS: AVG Antivirus (Enabled &#8211; Up to date) A3C8941D-8036-3856-D9BB-709D4A2A7EAC\nAS: Windows Defender (Disabled &#8211; Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46\n\n==================== Installed Programs ======================\n\n(Only the adware programs with &quot;Hidden&quot; flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)\n\n[PS3]  Save Resigner (HKLM-x32&#8230;[PS3] Save Resigner 2.0.2) (Version: 2.0.2 &#8211; The Prince of Codes)\n[PS3]  Save Resigner (HKLM-x32&#8230;96CF2F0B-EBB0-4D7F-852F-C54A30C8E5CF) (Version: 2.0.2 &#8211; The Prince of Codes) Hidden\nµTorrent (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;uTorrent) (Version: 3.5.5.45505 &#8211; BitTorrent Inc.)\n7-Zip 9.20 (x64 edition) (HKLM&#8230;23170F69-40C1-2702-0920-000001000000) (Version: 9.20.00.0 &#8211; Igor Pavlov)\nA360 Desktop (HKLM&#8230;7758802D-9486-4883-9927-CCAC366A3BA4) (Version: 7.2.3.1800 &#8211; Autodesk)\nACA &amp; MEP 2017 Object Enabler (HKLM&#8230;28B89EEF-0004-0000-5102-CF3F3A09B77D) (Version: 7.9.45.0 &#8211; Autodesk) Hidden\nACAD Private (HKLM&#8230;28B89EEF-0001-0000-3102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nActualizações da NVIDIA 16.13.65 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Update) (Version: 16.13.65 &#8211; NVIDIA Corporation) Hidden\nAdobe Acrobat Reader DC &#8211; Português (HKLM-x32&#8230;AC76BA86-7AD7-1046-7B44-AC0F074E4100) (Version: 20.009.20067 &#8211; Adobe Systems Incorporated)\nAdobe Acrobat XI Pro (HKLM-x32&#8230;AC76BA86-1033-FFFF-7760-000000000006) (Version: 11.0.12 &#8211; Adobe Systems)\nAdobe Flash Player 32 NPAPI (HKLM-x32&#8230;Adobe Flash Player NPAPI) (Version: 32.0.0.371 &#8211; Adobe)\nAdobe Shockwave Player 12.1 (HKLM-x32&#8230;Adobe Shockwave Player) (Version: 12.1.7.157 &#8211; Adobe Systems, Inc.)\nAimersoft Helper Compact 2.5.2 (HKLM-x32&#8230;405147F7-FCC5-499B-A27E-EA6BD4A80435_is1) (Version: 2.5.2 &#8211; Aimersoft)\nAndroid Rom Dumper version 1.3.5 (HKLM-x32&#8230;595D7D79-D70F-4930-A450-BF06B628EE2D_is1) (Version: 1.3.5 &#8211; BoxWares Team)\nAndroid Studio (HKLM&#8230;Android Studio) (Version: 3.6 &#8211; Google LLC)\nAndroid Toolkit 2.0.30 (HKLM-x32&#8230;F9441FCC-1C08-4933-939F-0E8A27D6C0CE_is1) (Version: 2.0.30 &#8211; Apeaksoft Studio)\nAny DGN to DWG Converter 2018 (HKLM-x32&#8230;Any DGN to DWG Converter_is1) (Version:  &#8211; AnyDWG Software, Inc.)\nAny DWF to DWG Converter 2017 (HKLM-x32&#8230;Any DWF to DWG Converter_is1) (Version:  &#8211; AnyDWG Software, Inc.)\nAplicação de ambiente de trabalho Autodesk (HKLM-x32&#8230;Autodesk Desktop App) (Version: 7.0.9.191 &#8211; Autodesk)\nAplicativos da Autodesk em destaque 2016-2017 (HKLM-x32&#8230;27C15055-713B-4D0E-881F-19598A2DFD59) (Version: 2.2.0 &#8211; Autodesk)\nApplication Verifier x64 External Package (HKLM&#8230;10CA1677-8F02-3131-F25C-780BAB52E468) (Version: 10.1.18362.1 &#8211; Microsoft) Hidden\nAssistente de gestor de conteúdo para PlayStation® (HKLM-x32&#8230;E5C1C342-5E78-4D91-85BE-40C716B09391) (Version: 3.55.7671.0901 &#8211; Sony Computer Entertainment Inc.)\nAutoCAD 2017 &#8211; English (HKLM&#8230;28B89EEF-0001-0409-2102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutoCAD 2017 (HKLM&#8230;28B89EEF-0001-0000-0102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutoCAD 2017 Language Pack &#8211; English (HKLM&#8230;28B89EEF-0001-0409-1102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutodesk Advanced Material Library Image Library 2017 (HKLM-x32&#8230;8ED2ED41-4455-449D-993C-751C039089B9) (Version: 15.11.3.0 &#8211; Autodesk)\nAutodesk App Manager 2016-2017 (HKLM-x32&#8230;C0954809-F5DC-426C-847E-8409DE14E4C0) (Version: 2.2.0 &#8211; Autodesk)\nAutodesk AutoCAD 2017 &#8211; English (HKLM&#8230;AutoCAD 2017 &#8211; English) (Version: 21.0.52.0 &#8211; Autodesk)\nAutodesk AutoCAD Performance Feedback Tool 1.2.5 (HKLM-x32&#8230;8600F844-9AA5-412E-B6F2-F9C6CBCFD268) (Version: 1.2.5.0 &#8211; Autodesk)\nAutodesk BIM 360 Glue AutoCAD 2017 Add-in 64 bit (HKLM&#8230;276A67E0-71EB-4827-B5F7-2ACF02BC1A5B) (Version: 4.37.6853 &#8211; Autodesk)\nAutodesk Design Review (HKLM-x32&#8230;139C013B-5BAC-4101-BC6C-B2A78C0125A4) (Version: 14.0.0.177 &#8211; Autodesk) Hidden\nAutodesk Design Review (HKLM-x32&#8230;Autodesk Design Review) (Version: 14.0.0.177 &#8211; Autodesk)\nAutodesk DWG TrueView 2018 &#8211; English (HKLM&#8230;DWG TrueView 2018 &#8211; English) (Version: 22.0.50.0 &#8211; Autodesk)\nAutodesk License Service (x64) &#8211; 3.1 (HKLM&#8230;EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D) (Version: 3.1.26.0 &#8211; Autodesk)\nAutodesk Material Library 2017 (HKLM-x32&#8230;8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE) (Version: 15.11.3.0 &#8211; Autodesk)\nAutodesk Material Library Base Resolution Image Library 2017 (HKLM-x32&#8230;3FBFBC43-9882-43FA-B979-2D53896747B3) (Version: 15.11.3.0 &#8211; Autodesk)\nAutoDWG DWG DXF Converter 2019 (HKLM-x32&#8230;98D8413-1812-41BC-8AD5-2192A80AC23F) (Version:  &#8211; )\nAutoHotkey 1.1.24.01 (HKLM&#8230;AutoHotkey) (Version: 1.1.24.01 &#8211; Lexikos)\nAutopsy (HKLM&#8230;274E8015-93B6-470C-943B-5FDD6E803462) (Version: 4.13.0 &#8211; The Sleuth Kit)\nAvast SecureLine (HKLM&#8230;2CD3C92F-EDC5-4B02-9B0A-9C1D37C58EF5_is1) (Version: 1.0.220.2 &#8211; AVAST Software)\nAVG AntiVirus FREE (HKLM-x32&#8230;AVG Antivirus) (Version: 20.3.3120 &#8211; AVG Technologies)\nAVG TuneUp (HKLM-x32&#8230;949BE04F-D7E8-4C19-9F89-8B304AB4308A_is1) (Version: 19.1.1209 &#8211; AVG Technologies)\nAVG Web TuneUp (HKLM-x32&#8230;AVG Web TuneUp) (Version: 4.3.9.626 &#8211; AVG Technologies)\nBackup and Sync from Google (HKLM&#8230;FE296942-D2D3-4149-8895-60655FE4CFDE) (Version: 3.49.9800.0000 &#8211; Google, Inc.)\nBejeweled 3 (HKLM-x32&#8230;WTA-8fc518d5-0776-414b-8c35-d47a24361589) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nBlueStacks App Player (HKLM&#8230;BlueStacks) (Version: 4.60.3.1001 &#8211; BlueStack Systems, Inc.)\nBonjour (HKLM&#8230;6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D) (Version: 3.0.0.10 &#8211; Apple Inc.)\nBruteforce Save Data (HKLM-x32&#8230;Bruteforce Save Data) (Version:  &#8211; )\nBuild-a-lot (HKLM-x32&#8230;WTA-1122e411-4a7b-46f0-8a81-a325b319b16e) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nBuilding the Great Wall of China Collector&#39;s Edition (HKLM-x32&#8230;WTA-460b63ee-3e7e-405f-8860-c7ef48fb3a7e) (Version: 3.0.2.48 &#8211; WildTangent) Hidden\nCain &amp; Abel 4.9.56 (HKLM-x32&#8230;Cain &amp; Abel 4.9.56) (Version:  &#8211; )\nCCleaner (HKLM&#8230;CCleaner) (Version: 5.55 &#8211; Piriform)\nCisco EAP-FAST Module (HKLM-x32&#8230;64BF0187-F3D2-498B-99EA-163AF9AE6EC9) (Version: 2.2.14 &#8211; Cisco Systems, Inc.)\nCisco LEAP Module (HKLM-x32&#8230;AF312B06-5C5C-468E-89B3-BE6DE2645722) (Version: 1.0.19 &#8211; Cisco Systems, Inc.)\nCisco PEAP Module (HKLM-x32&#8230;A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F) (Version: 1.1.6 &#8211; Cisco Systems, Inc.)\nCrazy Chicken Soccer (HKLM-x32&#8230;WTA-ee1c9a77-df4c-46ab-a6b3-85ad880357a3) (Version: 2.2.0.110 &#8211; WildTangent) Hidden\nCyberLink Media Suite 10 (HKLM-x32&#8230;InstallShield_1FBF6C24-C1fD-4101-A42B-0C564F9E8E79) (Version: 10.0.9.4928 &#8211; CyberLink Corp.)\nCyberlink PhotoDirector (HKLM&#8230;5A454EC5-217A-42a5-8CE1-2DDEC4E70E01) (Version: 5.0.4.6303 &#8211; Nome da empresa:) Hidden\nCyberlink PhotoDirector (HKLM-x32&#8230;InstallShield_5A454EC5-217A-42a5-8CE1-2DDEC4E70E01) (Version: 5.0.4.6303 &#8211; CyberLink Corp.)\nCyberLink Power2Go 8 (HKLM-x32&#8230;InstallShield_2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2) (Version: 8.0.9.5009 &#8211; CyberLink Corp.)\nCyberLink PowerBackup 2.6 (HKLM-x32&#8230;InstallShield_ADD5DB49-72CF-11D8-9D75-000129760D75) (Version: 2.6.2.1307 &#8211; CyberLink Corp.)\nCyberLink PowerDirector 12 (HKLM&#8230;E1646825-D391-42A0-93AA-27FA810DA093) (Version: 12.0.3.3812 &#8211; Nome da empresa:) Hidden\nCyberLink PowerDirector 12 (HKLM-x32&#8230;InstallShield_E1646825-D391-42A0-93AA-27FA810DA093) (Version: 12.0.3.3812 &#8211; CyberLink Corp.)\nCyberLink YouCam (HKLM-x32&#8230;InstallShield_01FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 5.0.6.5011 &#8211; CyberLink Corp.)\nDAEMON Tools Lite (HKLM&#8230;DAEMON Tools Lite) (Version: 10.3.0.0154 &#8211; Disc Soft Ltd)\nDelicious: Emily&#39;s Wonder Wedding Premium Edition (HKLM-x32&#8230;WTA-ab833d9b-3665-402d-b993-c99a471eeb10) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nDesignBuilder (HKLM-x32&#8230;9C306D70-8A6C-11D5-8CDF-00D0B78FC575) (Version: 5.3.0.014 &#8211; DesignBuilder Software Ltd.)\nDIAL Communication Framework (HKLM-x32&#8230;562D0D31-FBAF-4505-8B27-4EC92EEA91D6) (Version: 1.3.2.258 &#8211; DIAL GmbH)\nDIAL Data Dispatcher (HKLM-x32&#8230;DIAL Data Dispatcher1.0) (Version: 2.0.24.0 &#8211; DIAL GmbH)\nDIALux evo (x64) (HKLM-x32&#8230;5FF70775-5D3A-4A26-B9ED-1BF642E9987C) (Version: 5.9.0.49107 &#8211; DIAL GmbH)\nDisableMSDefender (HKLM&#8230;74FE39A0-FB76-47CD-84BA-91E2BBB17EF2) (Version: 1.0.0 &#8211; Hewlett-Packard Company) Hidden\nDiskInternals Partition Recovery (HKLM-x32&#8230;DiskInternals Partition Recovery) (Version: 7.6.2 &#8211; DiskInternals Research)\nDolphin (HKLM-x32&#8230;Dolphin) (Version: 4.0.2 &#8211; Dolphin Development Team)\nDraftSight 2017 SP0 x64 (HKLM&#8230;E78A1C28-8E3C-4CFB-82A4-077E7104F993) (Version: 17.0.2086 &#8211; Dassault Systemes)\nDriver Easy 5.5.5 (HKLM&#8230;DriverEasy_is1) (Version: 5.5.5 &#8211; Easeware)\nDWF to DWG Converter (HKLM-x32&#8230;909F0ECA-1A61-43F3-B2F2-D1A7AE79A444) (Version:  &#8211; )\nDWG TrueView 2018 &#8211; English (HKLM&#8230;28B89EEF-1028-0409-0100-CF3F3A09B77D) (Version: 22.0.50.0 &#8211; Autodesk) Hidden\nEaseUS Data Recovery Wizard (HKLM&#8230;EaseUS Data Recovery Wizard_is1) (Version:  &#8211; EaseUS)\nE-CAT / E20-II Configuration Services 2.21 (HKLM-x32&#8230;E-CAT / E20-II Configuration Services 2.21) (Version:  &#8211; )\nE-CAT Enable 2.11 (HKLM-x32&#8230;E-CAT Enable 2.11) (Version:  &#8211; )\nEnergy Star (HKLM&#8230;465CA2B6-98AF-4E77-BE22-A908C34BB9EC) (Version: 1.0.9 &#8211; Hewlett-Packard Company)\nEPSON Scan (HKLM-x32&#8230;EPSON Scanner) (Version:  &#8211; )\nEvernote v. 5.8.1 (HKLM-x32&#8230;4FD2D1C8-8636-11E4-9D21-00163E98E7D6) (Version: 5.8.1.6061 &#8211; Evernote Corp.)\nFoxit PhantomPDF (HKLM-x32&#8230;4E32271C-B55A-4CDF-8DB7-88FD1C45927C) (Version: 7.0.310.226 &#8211; Foxit Software Inc.)\nGenymotion version 3.1.0 (HKLM&#8230;6D180286-D4DF-40EF-9227-923B9C07C08A_is1) (Version: 3.1.0 &#8211; Genymobile)\nGit version 2.26.0 (HKLM&#8230;Git_is1) (Version: 2.26.0 &#8211; The Git Development Community)\nGoogle Chrome (HKLM-x32&#8230;Google Chrome) (Version: 83.0.4103.97 &#8211; Google LLC)\nGoogle Earth Pro (HKLM&#8230;B6EAFE41-5723-40EB-869B-4AF44CA17B35) (Version: 7.3.3.7699 &#8211; Google)\nGoogle Update Helper (HKLM-x32&#8230;60EC980A-BDA2-4CB6-A427-B07A5498B4CA) (Version: 1.3.35.451 &#8211; Google LLC) Hidden\nGoTo Opener (HKLM-x32&#8230;C0F33C38-345C-4C02-B161-11389350C2A5) (Version: 1.0.533 &#8211; LogMeIn, Inc.)\nGoToMeeting 10.10.1.17956 (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;GoToMeeting) (Version: 10.10.1.17956 &#8211; LogMeIn, Inc.)\nHardlock Device Drivers (HKLM-x32&#8230;Hardlock Device Drivers) (Version:  &#8211; )\nHewlett-Packard ACLM.NET v1.2.2.3 (HKLM-x32&#8230;6F340107-F9AA-47C6-B54C-C3A19F11553F) (Version: 1.00.0000 &#8211; Hewlett-Packard Company) Hidden\nHijack Hunter 1.8.4.1 (HKLM-x32&#8230;616A9B24-448B-4DF3-926A-C4141FCD692C_is1) (Version:  &#8211; NoVirusThanks Company Srl)\nHourly Analysis Program 4.91 (HKLM-x32&#8230;Hourly Analysis Program 4.91) (Version:  &#8211; Carrier Corporation)\nHP 3D DriveGuard (HKLM-x32&#8230;D817481A-193E-4332-A4F3-E19132F744F0) (Version: 6.0.24.1 &#8211; Hewlett-Packard Company)\nHP CoolSense (HKLM-x32&#8230;ADE2F6A7-E7BD-4955-BD66-30903B223DDF) (Version: 2.20.41 &#8211; Hewlett-Packard Company)\nHP Deskjet 3050 J610 series Ajuda (HKLM-x32&#8230;F7632A9B-661E-4FD9-B1A4-3B86BC99847F) (Version: 140.0.63.63 &#8211; Hewlett Packard)\nHP Deskjet 3050 J610 series Estudo de aprimoramento de produtos (HKLM&#8230;A954C7EA-DDD9-4055-BC48-E816F174F397) (Version: 28.0.1315.0 &#8211; Hewlett-Packard Co.)\nHP Deskjet 3050 J610 series Software básico do dispositivo (HKLM&#8230;E6E28DE7-446E-4E27-BE37-4B6D925A385B) (Version: 28.0.1315.0 &#8211; Hewlett-Packard Co.)\nHP Documentation (HKLM-x32&#8230;915AE95A-9009-41DB-9D9D-D57E17AAB48F) (Version: 1.1.0.0 &#8211; Hewlett-Packard)\nHP Photo Creations (HKLM-x32&#8230;HP Photo Creations) (Version: 1.0.0.7702 &#8211; HP)\nHP Registration Service (HKLM&#8230;D1E8F2D7-7794-4245-B286-87ED86C1893C) (Version: 1.2.7960.5089 &#8211; Hewlett-Packard)\nHP SimplePass (HKLM-x32&#8230;InstallShield_314FAD12-F785-4471-BCE8-AB506642B9A1) (Version: 8.01.39 &#8211; Hewlett-Packard)\nHP Support Assistant (HKLM-x32&#8230;E959FD01-BD01-4CC4-9BB8-4EBE8309BF37) (Version: 8.8.26.13 &#8211; HP)\nHP Support Solutions Framework (HKLM-x32&#8230;7463C61B-A36C-47BC-8E16-701EBC34C26F) (Version: 12.16.22.11 &#8211; HP)\nHP System Event Utility (HKLM-x32&#8230;3EDAF5B5-0CA9-4967-B103-FBFF1162C336) (Version: 1.2.10 &#8211; Hewlett-Packard Company)\nHP Update (HKLM-x32&#8230;912D30CF-F39E-4B31-AD9A-123C6B794EE2) (Version: 5.005.002.002 &#8211; Hewlett-Packard)\nHP Wireless Button Driver (HKLM-x32&#8230;30B2D1D8-0A07-4B71-9553-0710C5D31E35) (Version: 1.1.2.1 &#8211; Hewlett-Packard Company)\nHPDiagnosticAlert (HKLM-x32&#8230;B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D) (Version: 1.00.0001 &#8211; Microsoft) Hidden\nHxD Hex Editor 2.3 (HKLM&#8230;HxD_is1) (Version: 2.3 &#8211; Maël Hörz)\nHxD Hex Editor version 1.7.7.0 (HKLM-x32&#8230;HxD Hex Editor_is1) (Version: 1.7.7.0 &#8211; Maël Hörz)\nImgBurn (HKLM-x32&#8230;ImgBurn) (Version: 2.5.8.0 &#8211; LIGHTNING UK!)\nImportação do SketchUp 2016-2017 (HKLM-x32&#8230;63925DB-9D8C-48E2-8F04-1B7038B6C783) (Version: 2.2.0 &#8211; Autodesk)\niMyFone AnyRecover 2.0.0.16 (HKLM-x32&#8230;89DFCC5A-39CC-4AE7-8313-1ED6553E1ADD_is1) (Version: 2.0.0.16 &#8211; Shenzhen iMyFone Technology Co., Ltd.)\nInst5675 (HKLM&#8230;2DE6247C-7077-451B-8BA7-FFD1A2ABBB47) (Version: 8.01.39 &#8211; Softex Inc.) Hidden\nInst5676 (HKLM&#8230;878F6913-7421-4713-97F7-0A736EE2A188) (Version: 8.01.39 &#8211; Softex Inc.) Hidden\nIntel Collaborative Processor Performance Control (HKLM-x32&#8230;E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1018 &#8211; Intel Corporation)\nIntel® Dynamic Platform and Thermal Framework (HKLM-x32&#8230;654EE65D-FAA4-4EA6-8C07-DC94E6A304D4) (Version: 8.0.10100.71 &#8211; Intel Corporation)\nIntel® Management Engine Components (HKLM&#8230;1CEAC85D-2590-4760-800F-8DE5E91F3700) (Version: 10.0.31.1000 &#8211; Intel Corporation)\nIntel® Processor Graphics (HKLM-x32&#8230;F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA) (Version: 10.18.14.4139 &#8211; Intel Corporation)\nIntel® Rapid Storage Technology (HKLM&#8230;409CB30E-E457-4008-9B1A-ED1B9EA21140) (Version: 14.5.2.1088 &#8211; Intel Corporation)\nIntel® Hardware Accelerated Execution Manager (HKLM&#8230;754CC9DC-3DB4-4FB2-B71E-87331DB9EA17) (Version: 7.5.4 &#8211; Intel Corporation)\nIomega Encryption (HKLM&#8230;634B56F2-09FF-407B-B9FB-3611DDC52773) (Version: 1.03.0003 &#8211; Iomega an EMC Company)\nIomega Encryption 3.1.0 (HKLM&#8230;2A5534DE-30C7-429C-976A-132E89549180) (Version: 3.1.0 &#8211; Iomega)\nIRS &#8211; Modelo 3 Impressos 2016 (HKLM&#8230;pt.at.DM3IRSCLIv2016) (Version: 2016.2.1.0124 &#8211; AT)\niTube Studio(Build 7.4.7.3) (HKLM-x32&#8230;iTube Studio_is1) (Version: 7.4.7.3 &#8211; iTube Studio)\nJava 8 Update 241 (64-bit) (HKLM&#8230;26A24AE4-039D-4CA4-87B4-2F64180241F0) (Version: 8.0.2410.7 &#8211; Oracle Corporation)\nJava™ SE Development Kit 14 (64-bit) (HKLM&#8230;3552AC04-4EFC-51F1-AA92-9D1A99E02C95) (Version: 14.0.0.0 &#8211; Oracle Corporation)\nJetBrains PyCharm Community Edition 2018.2.1 (HKLM-x32&#8230;PyCharm Community Edition 2018.2.1) (Version: 182.3911.33 &#8211; JetBrains s.r.o.)\nJewel Match 3 (HKLM-x32&#8230;WTA-fced6a73-fdd6-4324-9ec6-d4a9ddcc449c) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nJill of the Jungle (HKLM-x32&#8230;1129701343_is1) (Version: 1.0 CS &#8211; GOG.com)\nJogos da WildTangent (HKLM-x32&#8230;WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 &#8211; WildTangent)\nJumpstart Installation Program (HKLM-x32&#8230;B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13) (Version:  &#8211; Atheros)\nKits Configuration Installer (HKLM-x32&#8230;63AAA877-5536-9481-2385-28A082100D78) (Version: 10.1.18362.1 &#8211; Microsoft) Hidden\nLAV Filters 0.74.1 (HKLM-x32&#8230;lavfilters_is1) (Version: 0.74.1 &#8211; Hendrik Leppkes)\nLizardTech ExpressView Browser Plug-in (HKLM-x32&#8230;4EFFB6FD-C0D3-43AF-AABB-BC0DCDBF2F34) (Version: 6.5.1 &#8211; LizardTech)\nLocal_Monitor 4.1 (HKLM-x32&#8230;DED1CF45-A68B-40A9-AF54-7447D6D0CFDD_is1) (Version:  &#8211; Insecuritynet, Inc.)\nMagic ISO Maker v5.5 (build 0281) (HKLM-x32&#8230;Magic ISO Maker v5.5 (build 0281)) (Version:  &#8211; )\nMalwarebytes version 4.1.0.56 (HKLM&#8230;35065F43-4BB2-439A-BFF7-0F1014F2E0CD_is1) (Version: 4.1.0.56 &#8211; Malwarebytes)\nMEGAsync (HKLM-x32&#8230;MEGAsync) (Version:  &#8211; Mega Limited)\nMicrosoft .NET Core SDK 3.1.201 (x64) (HKLM-x32&#8230;5e0a0ca7-8d37-4573-8d5b-03416809a484) (Version: 3.1.201.15034 &#8211; Microsoft Corporation)\nMicrosoft Office (HKLM-x32&#8230;90150000-0138-0409-0000-0000000FF1CE) (Version: 15.0.4641.1005 &#8211; Microsoft Corporation)\nMicrosoft Office Professional Plus 2010 (HKLM-x32&#8230;Office14.PROPLUS) (Version: 14.0.7015.1000 &#8211; Microsoft Corporation)\nMicrosoft Silverlight (HKLM&#8230;89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50907.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;837b34e3-7c30-493c-8f6a-2b0f04e2912c) (Version: 8.0.59193 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17 (HKLM&#8230;8220EEFE-38CD-377E-8595-13398D740ACE) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.4148 (HKLM&#8230;4B6C7001-C7D6-3710-913E-5BC23FCE91E6) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17 (HKLM-x32&#8230;9A25302D-30C0-39D9-BD6F-21E6EC160475) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148 (HKLM-x32&#8230;1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161 (HKLM-x32&#8230;9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x64 Redistributable &#8211; 10.0.40219 (HKLM&#8230;1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x86 Redistributable &#8211; 10.0.40219 (HKLM-x32&#8230;F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x64) &#8211; 11.0.61030 (HKLM-x32&#8230;ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x86) &#8211; 11.0.61030 (HKLM-x32&#8230;33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x64) &#8211; 12.0.30501 (HKLM-x32&#8230;50d4fc8-5d48-4b8f-8972-47c82c46020f) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x86) &#8211; 12.0.30501 (HKLM-x32&#8230;f65db027-aff3-4070-886a-0d87064aabb1) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015-2019 Redistributable (x64) &#8211; 14.25.28508 (HKLM-x32&#8230;6913e92a-b64e-41c9-a5e6-cef39207fe89) (Version: 14.25.28508.3 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015-2019 Redistributable (x86) &#8211; 14.25.28508 (HKLM-x32&#8230;65e650ff-30be-469d-b63a-418d71ea1765) (Version: 14.25.28508.3 &#8211; Microsoft Corporation)\nMicrosoft Visual F# 2.0 Runtime (HKLM-x32&#8230;729A3000-BC8A-3B74-BA5D-5068FE12D70C) (Version: 10.0.30319 &#8211; Microsoft Corporation)\nMicrosoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM&#8230;Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.60724 &#8211; Microsoft Corporation)\nMicrosoft Visual Studio Installer (HKLM&#8230;6F320B93-EE3C-4826-85E0-ADF79F8D4C61) (Version: 2.5.2059.317 &#8211; Microsoft Corporation)\nMiniTool Power Data Recovery 8.8 (HKLM&#8230;E1BCD081-4BF4-4E2F-832A-911EC42EF3C5_is1) (Version: 8.8 &#8211; MiniTool Software Limited)\nMozilla Firefox 77.0.1 (x64 pt-PT) (HKLM&#8230;Mozilla Firefox 77.0.1 (x64 pt-PT)) (Version: 77.0.1 &#8211; Mozilla)\nMozilla Maintenance Service (HKLM-x32&#8230;MozillaMaintenanceService) (Version: 77.0.1.7458 &#8211; Mozilla)\nMSI Development Tools (HKLM-x32&#8230;DB4DB790-64DD-1902-4BF2-833B3B6DBCA1) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nNmap 7.80 (HKLM-x32&#8230;Nmap) (Version: 7.80 &#8211; Nmap Project)\nNoVirusThanks Anti-Rootkit (Free Edition) v1.2 (HKLM-x32&#8230;NoVirusThanks Anti-Rootkit (Free Edition)_is1) (Version: 1.2.0.0 &#8211; NoVirusThanks Company Srl)\nNpcap 0.9982 (HKLM-x32&#8230;NpcapInst) (Version: 0.9982 &#8211; Nmap Project)\nNVIDIA Controlador gráfico 347.26 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Driver) (Version: 347.26 &#8211; NVIDIA Corporation)\nNVIDIA GeForce Experience 2.1.4 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.GFExperience) (Version: 2.1.4 &#8211; NVIDIA Corporation)\nNVIDIA O software do sistema PhysX 9.14.0702 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.PhysX) (Version: 9.14.0702 &#8211; NVIDIA Corporation)\nOpenSSL 1.1.1f Light (64-bit) (HKLM&#8230;OpenSSL Light (64-bit)_is1) (Version:  &#8211; OpenSSL Win64 Installer Team)\nOracle VM VirtualBox 6.0.4 (HKLM&#8230;79366295-CD6A-4467-9901-4A7DFCF90F40) (Version: 6.0.4 &#8211; Oracle Corporation)\nOSRAM Lamp PlugIn 1.8.3.1 (HKLM-x32&#8230;567EA4E4-B799-4F1C-BFE0-D0381BD8651A) (Version: 1.83.1000 &#8211; OSRAM)\nPainel de controlo da NVIDIA 347.26 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.ControlPanel) (Version: 347.26 &#8211; NVIDIA Corporation) Hidden\nPanda Cloud Cleaner (HKLM-x32&#8230;92B2B132-C7F0-43DC-921A-4493C04F78A4_is1) (Version: 1.1.10 &#8211; Panda Security)\nPEStudio (HKLM-x32&#8230;PEStudio) (Version: 1.0.0.27 &#8211; Elcontrol Enegy Net SpA)\nPhilips Product Selector 5.2.12.2 (HKLM-x32&#8230;81AD9228-21AC-4DBD-AE33-98146A88BAA8) (Version: 5.2.12.2 &#8211; Signify) Hidden\nPhilips Product Selector 5.2.12.2 (HKLM-x32&#8230;InstallShield_81AD9228-21AC-4DBD-AE33-98146A88BAA8) (Version: 5.2.12.2 &#8211; Signify)\nplugin Autenticação.Gov (HKLM-x32&#8230;DA5C6D6B-C160-4732-9A6D-CB0B58387A84) (Version: 2.0.46 &#8211; Agência para a Modernização Administrativa)\nPolar Bowler 1st Frame (HKLM-x32&#8230;WTA-7427884d-05c8-4a08-baa0-d130eb2faeef) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nPPS max plugin 1.7.0 (HKLM-x32&#8230;PPS max plugin_is1) (Version: 1.7.0.0 &#8211; Tree C Technology B.V.)\nProject64 1.6 (HKLM-x32&#8230;9559F7CA-5E34-4237-A2D9-D856464AD727) (Version: 1.6 &#8211; Project64)\nProtonVPN (HKLM-x32&#8230;6766D7C7-E034-49EA-82AC-0FE614B7F1DF) (Version: 1.13.3 &#8211; Proton Technologies AG) Hidden\nProtonVPN (HKLM-x32&#8230;ProtonVPN 1.13.3) (Version: 1.13.3 &#8211; Proton Technologies AG)\nPython 3.7.0 (64-bit) (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;f684de81-73c2-4924-ad43-e7ae400d47b5) (Version: 3.7.150.0 &#8211; Python Software Foundation)\nPython 3.7.0 Core Interpreter (64-bit) (HKLM&#8230;F046BD5A-33F4-4ABA-BD2D-0227F6291EC9) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Development Libraries (64-bit) (HKLM&#8230;61246987-8D99-44A9-8FF5-E2E3F503B72D) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Documentation (64-bit) (HKLM&#8230;E7C56E72-C80E-453B-9345-FAEAE5DB51A4) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Executables (64-bit) (HKLM&#8230;84B7971A-F59F-4247-AD34-BEC02CF85FBD) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 pip Bootstrap (64-bit) (HKLM&#8230;8A6F7991-1955-4C46-8C0C-8D7C6F7042FA) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Standard Library (64-bit) (HKLM&#8230;18D93BBC-06F6-449D-96FB-CD473CFC6A6D) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Tcl/Tk Support (64-bit) (HKLM&#8230;A2FC01E0-059E-4D21-AFD2-B63A7E1EF3CD) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Test Suite (64-bit) (HKLM&#8230;E4266358-1C9B-4AF0-ABF7-72BE136904CF) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Utility Scripts (64-bit) (HKLM&#8230;9E24E01B-CBD8-4558-A56D-6188F1A3C822) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 (64-bit) (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;13ee6ab9-4dca-406c-bc3b-5d86391d39a1) (Version: 3.8.2150.0 &#8211; Python Software Foundation)\nPython 3.8.2 Add to Path (64-bit) (HKLM&#8230;88AF4D20-BE9D-4CA6-8BD4-5DB380A41CC8) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Core Interpreter (64-bit) (HKLM&#8230;AD923240-0ACE-45C9-8749-05BF77AAE101) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Development Libraries (64-bit) (HKLM&#8230;BDFB7011-0AB2-440F-8F00-32AF7A9ED1ED) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Documentation (64-bit) (HKLM&#8230;65B0F976-5151-427E-95B4-2320DC64F91E) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Executables (64-bit) (HKLM&#8230;A36C1168-60E6-42E4-93DB-6BE8C6DD9DD6) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 pip Bootstrap (64-bit) (HKLM&#8230;8EEE042B-6EAF-4171-BA6E-01319ED99DA8) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Standard Library (64-bit) (HKLM&#8230;33F9B46C-EB19-4BB7-ABFA-F8C71B73E9A4) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Tcl/Tk Support (64-bit) (HKLM&#8230;FCA1EB7D-2F62-4659-AA5F-42C37CE5D3CB) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Test Suite (64-bit) (HKLM&#8230;F6DA05CF-67B5-47D0-ABD4-371C80BA0717) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Utility Scripts (64-bit) (HKLM&#8230;52AB506A-EC3C-4060-9EBF-6A975994CB35) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython Launcher (HKLM-x32&#8230;AF12A465-EA47-447D-B6BF-2A82CDBE2F0E) (Version: 3.8.6994.0 &#8211; Python Software Foundation)\nQCAD Trial 3.19.1 (HKLM&#8230;438D0F39-554F-40A4-BA3F-04809892FB96) (Version: 3.19.1 &#8211; RibbonSoft GmbH)\nRanch Rush 2 &#8211; Premium Edition (HKLM-x32&#8230;WTA-7396ad2b-d565-43cb-89bb-20ab60c8fe9f) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nREALTEK Bluetooth Driver (HKLM-x32&#8230;9D3D8C60-A5EF-4123-B2B9-172095903AB) (Version: 1.0.0.46 &#8211; REALTEK Semiconductor Corp.)\nRealtek Card Reader (HKLM-x32&#8230;5BC2B5AB-80DE-4E83-B8CF-426902051D0A) (Version: 6.3.370.68 &#8211; Realtek Semiconductor Corp.)\nRealtek Ethernet Controller Driver (HKLM-x32&#8230;8833FFB6-5B0C-4764-81AA-06DFEED9A476) (Version: 8.37.1119.2014 &#8211; Realtek)\nRealtek High Definition Audio Driver (HKLM-x32&#8230;F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC) (Version: 6.0.1.7457 &#8211; Realtek Semiconductor Corp.)\nREALTEK Wireless LAN Driver (HKLM-x32&#8230;A5107464-AA9B-4177-8129-5FF2F42DD322) (Version: 1.0.0.46 &#8211; REALTEK Semiconductor Corp.)\nRecuva (HKLM&#8230;Recuva) (Version: 1.53 &#8211; Piriform)\nRemoteComms driver (HKLM-x32&#8230;89B4CA50-3F94-451F-B93A-22608DF45FF9) (Version: 1.30.0002 &#8211; PLX Technology)\nRunefall (HKLM-x32&#8230;WTA-7be9cc5b-65c3-4233-9f92-6fbda3316c00) (Version: 3.0.2.126 &#8211; WildTangent) Hidden\nSamsung Kies (HKLM-x32&#8230;758C8301-2696-4855-AF45-534B1200980A) (Version: 2.6.4.17113.1 &#8211; Samsung Electronics Co., Ltd.) Hidden\nSamsung Kies (HKLM-x32&#8230;InstallShield_758C8301-2696-4855-AF45-534B1200980A) (Version: 2.6.4.17113.1 &#8211; Samsung Electronics Co., Ltd.)\nSAMSUNG USB Driver for Mobile Phones (HKLM&#8230;D0795B21-0CDA-4a92-AB9E-6E92D8111E44) (Version: 1.5.51.0 &#8211; SAMSUNG Electronics Co., Ltd.)\nSDK ARM Additions (HKLM-x32&#8230;73681F86-CD86-4208-572F-959B45430B04) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nSDK ARM Redistributables (HKLM-x32&#8230;67EE3804-9642-62BA-EBF1-B1561FB4ECBE) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nService Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32&#8230;90140000-0011-0000-0000-0000000FF1CE_Office14.PROPLUS_DE28B448-32E8-4E8F-84F0-A52B21A49B5B) (Version:  &#8211; Microsoft)\nSHIELD Streaming (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_GFExperience.NvStreamSrv) (Version: 3.1.2000 &#8211; NVIDIA Corporation) Hidden\nSkype versão 8.58 (HKLM-x32&#8230;Skype_is1) (Version: 8.58 &#8211; Skype Technologies S.A.)\nSMath Studio (HKLM-x32&#8230;7003EC5C-E484-4C85-BFCE-8EA508C9B3F0) (Version: 0.98.6179 &#8211; Andrey Ivashov)\nSoftware de Dispositivos Chipset Intel® (HKLM-x32&#8230;e3d22965-5c2d-48c8-acec-c2ba2d50b275) (Version: 10.0.22 &#8211; Intel® Corporation) Hidden\nSoulseekQt (HKLM-x32&#8230;SoulseekQt) (Version:  &#8211; )\nSpotify (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;Spotify) (Version: 1.1.33.569.gced9e0f5 &#8211; Spotify AB)\nSpybot Identity Monitor (HKLM-x32&#8230;DEE2C8BC-083E-48D8-A934-7B547D87E85C_is1) (Version: 3.0 &#8211; Safer-Networking Ltd.)\nSteam (HKLM-x32&#8230;Steam) (Version: 2.10.91.91 &#8211; Valve Corporation)\nswMSM (HKLM-x32&#8230;612C34C7-5E90-47D8-9B5C-0F717DD82726) (Version: 12.0.0.1 &#8211; Adobe Systems, Inc) Hidden\nSynaptics Pointing Device Driver (HKLM&#8230;SynTPDeinstKey) (Version: 18.1.48.54 &#8211; Synaptics Incorporated)\nTelegram Desktop version 1.7.10 (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;53F49750-6209-4FBF-9CA8-7A333C87D1ED_is1) (Version: 1.7.10 &#8211; Telegram Messenger LLP)\nTI Connect™ (HKLM-x32&#8230;D06BA64C-4447-49B4-B99D-E85BEA9E1035) (Version: 4.0.0.218 &#8211; Texas Instruments Inc.)\nTomb Raider Level Editor XP (HKLM-x32&#8230;Tomb Raider Level Editor) (Version:  &#8211; )\nTrinklit Supreme (HKLM-x32&#8230;WTA-c985ff2e-3479-4327-ae3b-b151a4c8a0d4) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nUltData &#8211; Android Data Recovery 5.3.1.4 (HKLM-x32&#8230;UltData &#8211; Android Data Recovery_is1) (Version: 5.3.1.4 &#8211; Tenorshare, Inc.)\nUniversal CRT Extension SDK (HKLM-x32&#8230;13952D7A-B7B3-F4F8-5F29-5CD18E8168B7) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Headers Libraries and Sources (HKLM-x32&#8230;74CBC330-ED16-31B9-E8BE-0C6A8E67DE32) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Redistributable (HKLM-x32&#8230;460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9) (Version: 10.0.26624 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Redistributable (HKLM-x32&#8230;847D4DAF-0182-265B-324F-406462E8A90D) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Tools x64 (HKLM&#8230;54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Tools x86 (HKLM-x32&#8230;9F7B0D96-881D-8850-C303-43F3A08E6902) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal General MIDI DLS Extension SDK (HKLM-x32&#8230;6F54BF87-2EE6-FA6D-431D-33A665992D49) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUpdate Installer for WildTangent Games App (HKLM-x32&#8230;2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2.WildTangent Games App) (Version:  &#8211; WildTangent) Hidden\nUSBPcap 1.2.0.3 (HKLM&#8230;USBPcap) (Version: 1.2.0.3 &#8211; Tomasz Mon)\nvcpp_crt.redist.clickonce (HKLM-x32&#8230;6B25D94A-4B50-45E2-BBD3-54E68700E1BC) (Version: 14.25.28508 &#8211; Microsoft Corporation) Hidden\nVirtualCloneDrive (HKLM-x32&#8230;VirtualCloneDrive) (Version: 5.5.0.0 &#8211; Elaborate Bytes)\nVisual Studio 2012 x64 Redistributables (HKLM&#8230;8C775E70-A791-4DA8-BCC3-6AB7136F4484) (Version: 14.0.0.1 &#8211; AVG Technologies)\nVisual Studio 2012 x86 Redistributables (HKLM-x32&#8230;98EFF19A-30AB-4E4B-B943-F06B1C63EBF8) (Version: 14.0.0.1 &#8211; AVG Technologies CZ, s.r.o.)\nVisual Studio Build Tools 2019 (HKLM-x32&#8230;43108e7a) (Version: 16.5.30002.166 &#8211; Microsoft Corporation)\nvJoy Device Driver 2.1.6.20 (HKLM&#8230;8E31F76F-74C3-47F1-9550-E041EEDC5FBB_is1) (Version: 2.1.6.20 &#8211; Shaul Eizikovich)\nVLC media player (HKLM-x32&#8230;VLC media player) (Version: 3.0.8 &#8211; VideoLAN)\nVMware Player (HKLM&#8230;DDDE2FEC-464C-4D0D-BCBC-9F4B4A06209B) (Version: 15.0.2 &#8211; VMware, Inc.)\nvs_FileTracker_Singleton (HKLM-x32&#8230;692A0FB3-E6A2-4D41-AC03-4136B4312DC0) (Version: 16.3.29209 &#8211; Microsoft Corporation) Hidden\nWedding Dash (HKLM-x32&#8230;WTA-bcbcc6be-1055-406f-90e0-31082ecf66fa) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nWhatsApp (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;WhatsApp) (Version: 0.3.1847 &#8211; WhatsApp)\nWildTangent Games App para HP (HKLM-x32&#8230;70B446D1-E03B-4ab0-9B3C-0832142C9AA8.WildTangent Games App-hp) (Version: 4.0.11.14 &#8211; WildTangent) Hidden\nWinAppDeploy (HKLM-x32&#8230;8E3AE0EF-D067-700C-BDB4-10D5552155DC) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinDjView 2.1 (HKLM&#8230;WinDjView) (Version: 2.1 &#8211; Andrew Zhezherun)\nWindows Driver Package &#8211; Texas Instruments Inc. (SilvrLnk) USB  (06/11/2009 1.0.0.0) (HKLM&#8230;EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 &#8211; Texas Instruments Inc.)\nWindows Driver Package &#8211; Texas Instruments Inc. (TIEHDUSB) USB  (09/02/2009 1.0.0.1) (HKLM&#8230;7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 &#8211; Texas Instruments Inc.)\nWindows SDK AddOn (HKLM-x32&#8230;E6F877A1-2F65-4BF0-87B6-A4071B7663D3) (Version: 10.1.0.0 &#8211; Microsoft Corporation)\nWindows Software Development Kit &#8211; Windows 10.0.18362.1 (HKLM-x32&#8230;126dedf0-cc0e-4b48-9ece-806b0e437195) (Version: 10.1.18362.1 &#8211; Microsoft Corporation)\nWinPcap 4.1.2 (HKLM-x32&#8230;WinPcapInst) (Version: 4.1.0.2001 &#8211; CACE Technologies)\nWinRT Intellisense Desktop &#8211; en-us (HKLM-x32&#8230;E67F1F03-FB4A-3D61-8999-E6A4C4B26F34) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense Desktop &#8211; Other Languages (HKLM-x32&#8230;7EF010FF-7800-28BA-FF49-2D219EC7BA82) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense IoT &#8211; en-us (HKLM-x32&#8230;36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense IoT &#8211; Other Languages (HKLM-x32&#8230;6B03A6A4-643C-57CE-CA6F-4E19BF47497A) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense Mobile &#8211; en-us (HKLM-x32&#8230;918A448F-59E8-FBF5-B087-D3F07160C7E0) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense PPI &#8211; en-us (HKLM-x32&#8230;66483041-F590-EC46-4AF0-EE39C62FB680) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense PPI &#8211; Other Languages (HKLM-x32&#8230;9C61E6D2-C43E-6746-B519-6185558C4A24) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense UAP &#8211; en-us (HKLM-x32&#8230;6B37CC5B-78DF-5050-2215-68479716A587) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense UAP &#8211; Other Languages (HKLM-x32&#8230;250D5341-0879-4016-399C-BBCD87B80E95) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWireshark 3.2.3 64-bit (HKLM-x32&#8230;Wireshark) (Version: 3.2.3 &#8211; The Wireshark developer community, hxxps://www.wireshark.org)\nwkhtmltox 0.12.5-1 (HKLM&#8230;wkhtmltopdf) (Version:  &#8211; )\nWondershare Helper Compact 2.5.3 (HKLM-x32&#8230;5363CE84-5F09-48A1-8B6C-6BB590FFEDF2_is1) (Version: 2.5.3 &#8211; Wondershare)\nWondershare PDFelement 6 Pro(Build 6.3.5) (HKLM-x32&#8230;B026557A-EF19-4812-8A79-B30F94AA0A78_is1) (Version: 6.3.5.2806 &#8211; Wondershare Software Co.,Ltd.)\nWondershare Recoverit(Build 8.5.7.16) (HKLM-x32&#8230;829555DC-31E5-4FEA-B350-8FCF24CECD95_is1) (Version: 8.5.7.16 &#8211; Wondershare Software Co.,Ltd.)\nX Builder Framework 1.05x (HKLM-x32&#8230;X Builder Framework 1.05x) (Version:  &#8211; )\nXArp 2.2.2 (HKLM-x32&#8230;XArp) (Version: 2.2.2 &#8211; Christoph Mayer)\nXBuilder Tag Grid 1.0 (HKLM-x32&#8230;8814F01A-66A3-4A5F-899A-FFEA12633963) (Version: 1.0.18 &#8211; Carrier Corporation)\nYouda Jewel Shop (HKLM-x32&#8230;WTA-0f2ac400-5236-4aa4-a9fa-2d97068ccbc9) (Version: 3.0.2.51 &#8211; WildTangent) Hidden\nZoom (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;ZoomUMX) (Version: 5.0 &#8211; Zoom Video Communications, Inc.)\n\nPackages:\n=========\n&#8211; Games App &#8211; -&gt; C:Program FilesWindowsAppsWildTangentGames.-GamesApp-_1.0.3.28_x86__qt5r5pa5dyg8m [2016-03-29] (WildTangent Games)\nGuia de introdução ao Windows 8 -&gt; C:Program FilesWindowsAppsAD2F1837.GettingStartedwithWindows8_1.6.0.0_neutral__v10z8vjag6ke6 [2016-03-29] (Hewlett-Packard Company)\nHP All-in-One Printer Remote -&gt; C:Program FilesWindowsAppsAD2F1837.HPPrinterControl_55.1.43.0_x86__v10z8vjag6ke6 [2016-04-18] (Hewlett-Packard Company)\nHP Connected Music -&gt; C:Program FilesWindowsAppsAD2F1837.HPConnectedMusic_1.5.0.253_x86__v10z8vjag6ke6 [2016-03-29] (Hewlett-Packard Company)\nHP Registration -&gt; C:Program FilesWindowsAppsAD2F1837.HPRegistration_1.2.1.166_neutral__v10z8vjag6ke6 [2015-06-04] (Hewlett-Packard Company)\nJogos -&gt; C:Program FilesWindowsAppsMicrosoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2015-06-04] (Microsoft Corporation) [MS Ad]\nKYOCERA Print Center -&gt; C:Program FilesWindowsAppsA97ECD55.KYOCERAPrintCenter_1.7.11126.0_x86__kqmhh0ktdt7dg [2019-12-05] (KYOCERA Document Solutions Inc)\nMcAfee® Central for HP -&gt; C:Program FilesWindowsApps2703103D.McAfeeCentral_5.0.177.1_x64__4ehj4w4frejdr [2018-04-02] (.-McAfee Inc-.)\nMicrosoft Mahjong -&gt; C:Program FilesWindowsAppsMicrosoft.MicrosoftMahjong_2.10.1812.2002_x86__8wekyb3d8bbwe [2019-02-04] (Microsoft Studios) [MS Ad]\nMSN Desporto -&gt; C:Program FilesWindowsAppsMicrosoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2016-04-29] (Microsoft Corporation) [MS Ad]\nMSN Finanças -&gt; C:Program FilesWindowsAppsMicrosoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-28] (Microsoft Corporation) [MS Ad]\nMSN Meteorologia -&gt; C:Program FilesWindowsAppsMicrosoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2016-11-23] (Microsoft Corporation) [MS Ad]\nMSN Notícias -&gt; C:Program FilesWindowsAppsMicrosoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-28] (Microsoft Corporation) [MS Ad]\nMSN Receitas -&gt; C:Program FilesWindowsAppsMicrosoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMSN Saúde e Bem-Estar -&gt; C:Program FilesWindowsAppsMicrosoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMSN Viagens -&gt; C:Program FilesWindowsAppsMicrosoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMúsica -&gt; C:Program FilesWindowsAppsMicrosoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nmysms &#8211; Text from Computer, Messaging -&gt; C:Program FilesWindowsAppsUptoElevenDigitalSolution.mysms-Textanywhere_2.8.0.0_x64__c9d6r4qvva5x8 [2016-03-29] (Up to Eleven Digital Solutions GmbH)\nPaciência -&gt; C:Program FilesWindowsApps26720RandomSaladGamesLLC.SimpleSolitaire_5.4.0.40_x64__kx24dqmazqk8j [2016-12-15] (Random Salad Games LLC) [MS Ad]\nSidekick Private Browser -&gt; C:Program FilesWindowsAppsSaferWebSoftware.SidekickWeb_1.1.0.7_neutral__aad3gkxz4ewf0 [2020-05-18] (SaferWeb Software)\nSkype -&gt; C:Program FilesWindowsAppsMicrosoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2016-03-29] (Skype) [MS Ad]\nSnapfish -&gt; C:Program FilesWindowsAppsAD2F1837.HPConnectedPhotopoweredbySnapfish_5.5.0.8_x86__v10z8vjag6ke6 [2016-05-04] (HP Inc.)\nThe Weather Channel for HP -&gt; C:Program FilesWindowsAppsWeather.TheWeatherChannelforHP_2.1.20.0_x64__t3yemqpq4kp7p [2016-03-29] (The Weather Channel.)\nTradutor -&gt; C:Program FilesWindowsAppsMicrosoft.BingTranslator_1.18.3.0_x64__8wekyb3d8bbwe [2017-04-07] (Microsoft Corporation)\nTripAdvisor Hotels Flights Restaurants -&gt; C:Program FilesWindowsAppsTripAdvisorLLC.TripAdvisorHotelsFlightsRestaurants_1.2.0.24_neutral__qj0v5chwq8f2g [2015-06-04] (TripAdvisor LLC)\nVídeo -&gt; C:Program FilesWindowsAppsMicrosoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\n\n==================== Custom CLSID (Whitelisted): ==============\n\n(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)\n\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDD327DA6-B4DF-4842-B833-2CFF84F0948Flocalserver32 -&gt; C:Program FilesAutodeskAutoCAD 2017acad.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID19A6E644-14E6-4A60-B8D7-DD20610A871DInprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalMicrosoftTeamsMeetingAddin1.0.20031.2x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID3faa4380-a399-11cf-a466-00805fe418f6InprocServer32 -&gt; C:Program FilesAutodeskDWG TrueView 2018 &#8211; Englishen-USdwgviewrficn.dll (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID720DB9AF-D62C-4ED0-A377-429C22312852localserver32 -&gt; C:Program FilesAutodeskAutoCAD 2017acad.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID84B5A313-CD5D-4904-8BA2-AFDC81C1B309InprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalGoToMeeting17359G2MOutlookAddin64.dll (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDB6EB585B-B467-4E46-A9C7-48D7D6FD26CBlocalserver32 -&gt; C:Program FilesAutodeskDWG TrueView 2018 &#8211; Englishdwgviewr.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDC591CFEA-E432-495d-A0BE-58E4CCD87B17ShellOpenCommand -&gt; C:Program FilesSynapticsSynTPSynTPCpl.dll (Synaptics Incorporated -&gt; Synaptics Incorporated)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDCB965DF1-B8EA-49C7-BDAD-5457FDC1BF92InprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalMicrosoftTeamsMeetingAddin1.0.20031.2x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDE2C40589-DE61-11ce-BAE0-0020AF6D7005InprocServer32 -&gt; C:Program FilesAutodeskAutoCAD 2017en-USacadficn.dll (Autodesk, Inc -&gt; Autodesk, Inc.)\nShellExecuteHooks: Groove GFS Stub Execution Hook &#8211; B5A7F190-DDA6-4420-B3BA-52453494E6CD &#8211; C:Program FilesMicrosoft OfficeOffice14GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nShellExecuteHooks-x32: Groove GFS Stub Execution Hook &#8211; B5A7F190-DDA6-4420-B3BA-52453494E6CD &#8211; C:Program Files (x86)Microsoft OfficeOffice14GROOVEEX.DLL [4171480 2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nShellIconOverlayIdentifiers: [ MEGA (Pending)] -&gt; 056D528D-CE28-4194-9BA3-BA2E9197FF8C =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [ MEGA (Synced)] -&gt; 05B38830-F4E9-4329-978B-1DD28605D202 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [ MEGA (Syncing)] -&gt; 0596C850-7BDD-4C9D-AFDF-873BE6890637 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [  GoogleDriveSynced] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [00asw] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nShellIconOverlayIdentifiers: [00avg] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -&gt; 36A21736-36C2-4C11-8ACB-D4136F2B57BD =&gt; C:Windowssystem32AcSignIcon.dll [2017-02-15] (Autodesk, Inc -&gt; Autodesk, Inc.)\nShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -&gt; 056D528D-CE28-4194-9BA3-BA2E9197FF8C =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -&gt; 05B38830-F4E9-4329-978B-1DD28605D202 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -&gt; 0596C850-7BDD-4C9D-AFDF-873BE6890637 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers1: [7-Zip] -&gt; 23170F69-40C1-278A-1000-000100020000 =&gt; C:Program Files7-Zip7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]\nContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -&gt; 2E7A2C6C-B938-40a4-BA1C-C7EC982DC202 =&gt; C:Program FilesCommon FilesAutodesk SharedAcShellExAcShellExtension.dll [2017-02-15] (Autodesk, Inc -&gt; Autodesk)\nContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -&gt; A6595CD1-BF77-430A-A452-18696685F7C7 =&gt; C:Program Files (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nContextMenuHandlers1: [ANotepad++64] -&gt; B298D29A-A6ED-11DE-BA8C-A68E55D89593 =&gt; C:Program Files (x86)Notepad++NppShell_06.dll -&gt; No File\nContextMenuHandlers1-x32: [Autodesk.DWF.ContextMenu] -&gt; 6C18531F-CA85-45F7-8278-FF33CF0A5964 =&gt; C:Program Files (x86)Common FilesAutodesk SharedDWF CommonDWFShellExtension.dll [2017-03-09] (Autodesk, Inc.) [File not signed]\nContextMenuHandlers1: [AVG] -&gt; 472083B1-C522-11CF-8763-00608CC02F24 =&gt; C:Program Files (x86)AVGAntivirusashShell.dll [2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nContextMenuHandlers1: [CLVDShellExt] -&gt; 3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2 =&gt; C:Program Files (x86)Common FilesCyberLinkShellExtComponentCLVDShellExt.dll [2015-02-09] (CyberLink Corp. -&gt; Cyberlink)\nContextMenuHandlers1: [DIALuxShellExtension] -&gt; F23E3460-D1B1-4F51-8C3D-E5D91E3C71C8 =&gt; C:Program FilesDIAL GmbHDIALuxDial.ShellExtension.x64.dll [2017-12-05] (DIAL GmbH) [File not signed]\nContextMenuHandlers1: [Foxit_ConvertToPDF] -&gt; C5269811-4A29-4818-A4BB-111F9FC63A5F =&gt; C:Program Files (x86)Foxit PhantomPDFpluginsConvertToPDFShellExtension_x64.dll [2015-03-03] (Foxit Software Incorporated -&gt; Foxit Software Inc.)\nContextMenuHandlers1: [GDContextMenu] -&gt; BB02B294-8425-42E5-983F-41A1FA970CD6 =&gt; C:Program FilesGoogleDrivecontextmenu64.dll [2020-04-06] (Google LLC -&gt; Google)\nContextMenuHandlers1: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers1: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers1: [VirtualCloneDrive] -&gt; B7056B8E-4F99-44f8-8CBD-282390FE5428 =&gt; C:Program Files (x86)Elaborate BytesVirtualCloneDriveElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nContextMenuHandlers2: [CLVDShellExt] -&gt; 3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2 =&gt; C:Program Files (x86)Common FilesCyberLinkShellExtComponentCLVDShellExt.dll [2015-02-09] (CyberLink Corp. -&gt; Cyberlink)\nContextMenuHandlers2: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers2: [VirtualCloneDrive] -&gt; B7056B8E-4F99-44f8-8CBD-282390FE5428 =&gt; C:Program Files (x86)Elaborate BytesVirtualCloneDriveElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nContextMenuHandlers2-x32: [VMDiskMenuHandler] -&gt; 271DC252-6FE1-4D59-9053-E4CF50AB99DE =&gt; C:Program Files (x86)VMwareVMware PlayervmdkShellExt.dll [2018-11-21] (VMware, Inc. -&gt; VMware, Inc.)\nContextMenuHandlers2: [VMDiskMenuHandler64] -&gt; E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC =&gt; C:Program Files (x86)VMwareVMware Playerx64vmdkShellExt64.dll [2018-11-21] (VMware, Inc. -&gt; VMware, Inc.)\nContextMenuHandlers3: [00avg] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nContextMenuHandlers3: [MBAMShlExt] -&gt; 57CE581A-0CB6-4266-9CA0-19364C90A0B3 =&gt; C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -&gt; Malwarebytes)\nContextMenuHandlers3: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers4: [7-Zip] -&gt; 23170F69-40C1-278A-1000-000100020000 =&gt; C:Program Files7-Zip7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]\nContextMenuHandlers4: [GDContextMenu] -&gt; BB02B294-8425-42E5-983F-41A1FA970CD6 =&gt; C:Program FilesGoogleDrivecontextmenu64.dll [2020-04-06] (Google LLC -&gt; Google)\nContextMenuHandlers4: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers4: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers4: [RecuvaShellExt] -&gt; 435E5DF5-2510-463C-B223-BDA47006D002 =&gt; C:Program FilesRecuvaRecuvaShell64.dll [2016-06-06] (Piriform Ltd -&gt; Piriform Ltd)\nContextMenuHandlers5: [igfxcui] -&gt; 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 =&gt;  -&gt; No File\nContextMenuHandlers5: [igfxDTCM] -&gt; 9B5F5829-A529-4B12-814A-E81BCB8D93FC =&gt; C:Windowssystem32igfxDTCM.dll [2015-04-28] (Microsoft Windows Hardware Compatibility Publisher -&gt; Intel Corporation)\nContextMenuHandlers5: [NvCplDesktopContext] -&gt; 3D1975AF-48C6-4f8e-A182-BE0E08FA86A9 =&gt; C:Windowssystem32nvshext.dll [2015-01-11] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -&gt; A6595CD1-BF77-430A-A452-18696685F7C7 =&gt; C:Program Files (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nContextMenuHandlers6: [AVG] -&gt; 472083B1-C522-11CF-8763-00608CC02F24 =&gt; C:Program Files (x86)AVGAntivirusashShell.dll [2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nContextMenuHandlers6: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers6: [MBAMShlExt] -&gt; 57CE581A-0CB6-4266-9CA0-19364C90A0B3 =&gt; C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -&gt; Malwarebytes)\nContextMenuHandlers6: [RecuvaShellExt] -&gt; 435E5DF5-2510-463C-B223-BDA47006D002 =&gt; C:Program FilesRecuvaRecuvaShell64.dll [2016-06-06] (Piriform Ltd -&gt; Piriform Ltd)\n\n==================== Codecs (Whitelisted) ====================\n\n==================== Shortcuts &amp; WMI ========================\n\n==================== Loaded Modules (Whitelisted) =============\n\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000864768 _____ (%CFullName%) [File not signed] C:Program FilesHewlett-PackardSimplePassOpBHO64.dll\n2019-09-20 15:20 &#8211; 2016-09-12 15:53 &#8211; 048936448 _____ () [File not signed] C:Program Files (x86)AVGAVG TuneUplibcef.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000226304 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionContent.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000227840 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionDeviceAccess.dll\n2011-09-16 10:04 &#8211; 2011-09-16 10:04 &#8211; 000364544 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionDeviceManagement.dll\n2011-09-16 10:06 &#8211; 2011-09-16 10:06 &#8211; 000658432 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionGatewayCore.dll\n2011-09-16 10:05 &#8211; 2011-09-16 10:05 &#8211; 000335872 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionPlxTech.Das.DotNetApi.dll\n2011-09-16 10:07 &#8211; 2011-09-16 10:07 &#8211; 000422400 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionPlxTech.Das.Gateway.Core.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000245248 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionStorage.dll\n2011-09-16 10:02 &#8211; 2011-09-16 10:02 &#8211; 000045056 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionUtils_ISIS.dll\n2011-09-16 10:02 &#8211; 2011-09-16 10:02 &#8211; 000078848 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionXML.dll\n2015-01-30 19:07 &#8211; 2015-01-30 19:07 &#8211; 002169344 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassautheng.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000021504 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePasscryptodll.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000055296 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassRandomPass.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000035840 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassssplogon.dll\n2020-05-08 08:50 &#8211; 2017-12-05 13:42 &#8211; 001442816 _____ (DIAL GmbH) [File not signed] C:Program FilesDIAL GmbHDIALuxDial.ShellExtension.x64.dll\n2015-01-30 19:06 &#8211; 2015-01-30 19:06 &#8211; 000715264 _____ (Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassstoreng.dll\n2015-01-30 19:07 &#8211; 2015-01-30 19:07 &#8211; 001134080 _____ (Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassuserdata.dll\n2010-11-18 21:08 &#8211; 2010-11-18 21:08 &#8211; 000086016 _____ (Igor Pavlov) [File not signed] C:Program Files7-Zip7-zip.dll\n2015-07-22 10:44 &#8211; 2015-07-22 10:44 &#8211; 000562688 _____ (Intel Corporation) [File not signed] C:Program FilesIntelIntel® Rapid Storage TechnologyISDI2.dll\n2015-07-22 10:44 &#8211; 2015-07-22 10:44 &#8211; 000285184 _____ (Intel Corporation) [File not signed] C:Program FilesIntelIntel® Rapid Storage TechnologyPsiData.dll\n2016-03-29 22:31 &#8211; 2008-05-22 23:25 &#8211; 000043520 _____ (MagicISO, Inc.) [File not signed] C:Program Files (x86)MagicISOmisosh64.dll\n2015-06-04 18:46 &#8211; 2015-06-04 18:46 &#8211; 001093120 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80U.DLL\n2015-06-04 18:12 &#8211; 2013-04-01 23:19 &#8211; 000574464 _____ (Realtek Semiconductor Corp.) [File not signed] C:Windowssystem32Rtlihvs.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000746064 _____ (Softex Incorporated -&gt; ) [File not signed] C:Program FilesHewlett-PackardSimplePassGraphicalPwd.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000431696 _____ (Softex Incorporated -&gt; ) [File not signed] C:Program FilesHewlett-PackardSimplePassmstrpwd.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000760912 _____ (Softex Incorporated -&gt; Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePasshdddrv.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 001384528 _____ (Softex Incorporated -&gt; Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassWbf.dll\n2019-06-25 10:37 &#8211; 2019-06-25 10:32 &#8211; 002095104 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:Program FilesAVAST SoftwareSecureLinelibcrypto-1_1.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 005458432 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Core.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 001065984 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Network.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 000195072 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Xml.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000026112 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqgif.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000033280 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqicns.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000027648 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqico.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000245760 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqjpeg.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000021504 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqsvg.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000020992 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqtga.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000316416 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqtiff.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000019968 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqwbmp.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000322560 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqwebp.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 001010688 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncplatformsqwindows.dll\n2019-04-09 10:32 &#8211; 2017-10-19 10:17 &#8211; 000271360 _____ (Wondershare Software) [File not signed] C:WindowsSystem32WSPDFelementMonitor.dll\n\n==================== Alternate Data Streams (Whitelisted) ========\n\n==================== Safe Mode (Whitelisted) ==================\n\n(If an entry is included in the fixlist, it will be removed from the registry. The &quot;AlternateShell&quot; will be restored.)\n\nHKLMSYSTEMCurrentControlSetControlSafeBootMinimalMBAMService =&gt; &quot;&quot;=&quot;Service&quot;\nHKLMSYSTEMCurrentControlSetControlSafeBootNetworkMBAMService =&gt; &quot;&quot;=&quot;Service&quot;\nHKLMSYSTEMCurrentControlSetControlSafeBootNetworkMcMPFSvc =&gt; &quot;&quot;=&quot;Service&quot;\n\n==================== Association (Whitelisted) =================\n\n(If an entry is included in the fixlist, the registry item will be restored to default or removed.)\n\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001SoftwareClasses.scr: AutoCADScriptFile =&gt; C:Windowssystem32notepad.exe &quot;%1&quot;\n\n==================== Internet Explorer trusted/restricted ==========\n\n==================== Hosts content: =========================\n\n(If needed Hosts: directive could be included in the fixlist to reset Hosts.)\n\n2013-08-22 14:25 &#8211; 2019-01-01 03:44 &#8211; 000000132 _____ C:Windowssystem32driversetchosts\n127.0.0.1 activate.adobe.com\n127.0.0.1 practivate.adobe.com\n127.0.0.1 lmlicenses.wip4.adobe.com\n127.0.0.1 lm.licenses.adobe.com\n\n==================== Other Areas ===========================\n\n(Currently there is no automatic fix for this section.)\n\nHKLMSystemCurrentControlSetControlSession ManagerEnvironment\\Path -&gt; C:Program Fileswkhtmltopdfbin;C:Program FilesOpenSSL-Win64bin;C:Program FilesJavajdk-14bin;C:Python37Scripts;C:Program Files (x86)Common FilesOracleJavajavapath;C:platform-tools;C:Windowssystem32;C:ProgramDataOracleJavajavapath;C:Program Files (x86)InteliCLS Client;C:Program FilesInteliCLS Client;C:Program Files (x86)NVIDIA CorporationPhysXCommon;%SystemRoot%system32;%SystemRoot%;%SystemRoot%System32Wbem;%SYSTEMROOT%System32WindowsPowerShellv1.0;C:Program FilesHewlett-PackardSimplePass;C:Program FilesIntelIntel® Management Engine ComponentsDAL;C:Program Files (x86)IntelIntel® Management Engine ComponentsDAL;C:Program FilesIntelIntel® Management Engine ComponentsIPT;C:Program Files (x86)IntelIntel® Management Engine ComponentsIPT;C:E20-IIEnviro;C:Program Filesdotnet;C:Program FilesGitcmd\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001Control PanelDesktop\\Wallpaper -&gt; C:WindowswebwallpaperHewlett-Packard BackgroundsbackgroundDefault.jpg\nDNS Servers: 192.168.1.1 &#8211; 192.168.175.1\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorer =&gt; (SmartScreenEnabled: RequireAdmin)\nWindows Firewall is enabled.\n\nNetwork Binding:\n=============\nEthernet: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nEthernet: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nEthernet: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nEthernet: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nEthernet: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nWi-Fi: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nWi-Fi: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nWi-Fi: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nWi-Fi: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nWi-Fi: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nVMware Network Adapter VMnet8: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVMware Network Adapter VMnet8: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVMware Network Adapter VMnet8: VMware Bridge Protocol -&gt; vmware_bridge (disabled) \nVMware Network Adapter VMnet1: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVMware Network Adapter VMnet1: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVMware Network Adapter VMnet1: VMware Bridge Protocol -&gt; vmware_bridge (disabled) \nVirtualBox Host-Only Network: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVirtualBox Host-Only Network: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVirtualBox Host-Only Network: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nVirtualBox Host-Only Network: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nVirtualBox Host-Only Network: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nNpcap Loopback Adapter: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nNpcap Loopback Adapter: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nNpcap Loopback Adapter: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nNpcap Loopback Adapter: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nNpcap Loopback Adapter: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \n\n==================== MSCONFIG/TASK MANAGER disabled items ==\n\n(If an entry is included in the fixlist, it will be removed.)\n\nMSCONFIGServices: AdAppMgrSvc =&gt; 2\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;Assistente de gestor de conteúdo para PlayStation®.lnk&quot;\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;ScpToolkit Tray Notifications.lnk&quot;\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;Avast SecureLine VPN.lnk&quot;\nHKLM&#8230;StartupApprovedRun: =&gt; &quot;NvBackend&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;AccelerometerSysTrayApplet&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;HPMessageService&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;HP Software Update&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;BCSSync&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;AVG_UI&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Acrobat Assistant 8.0&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;SunJavaUpdateSched&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;vProt&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;VirtualCloneDrive&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Autodesk Desktop App&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;jswtrayutil&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;PSUAMain&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Wondershare Helper Compact.exe&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;KiesTrayAgent&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Aimersoft Helper Compact.exe&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;XArp&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedStartupFolder: =&gt; &quot;OneNote 2010 Screen Clipper and Launcher.lnk&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedStartupFolder: =&gt; &quot;Autenticacao.gov.pt.lnk&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;DAEMON Tools Lite Automount&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;GoogleDriveSync&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;Autodesk Sync&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;Steam&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;CCleaner Smart Cleaning&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;AvastBrowserAutoLaunch_8E2202057F0AAA05DFC4AE202AF0EABB&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;com.squirrel.Teams.Teams&quot;\n\n==================== FirewallRules (Whitelisted) ================\n\n(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)\n\nFirewallRules: [582A6683-D72A-46B6-ACE3-5DDF801194EF] =&gt; (Allow) C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [BCEFEFB2-60E2-49CB-867A-17284DF5084E] =&gt; (Allow) C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [6F2F07DD-A742-44EC-994D-0154FFCB01B5] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [AFFCD9A6-C298-4963-AB51-C30E247AFBB1] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [7808A858-FCAB-4CBE-8379-522C54F4E6B0] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [B186DA8C-5846-4184-A738-92C3AA9F2AC1] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [B7FF1360-33D9-4C8D-8781-A64CC9E443D3] =&gt; (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [992F1852-2433-4440-8DE4-D9B1246F35FC] =&gt; (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [ADCDF42B-282C-4832-85E0-FA81E4E51183] =&gt; (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [4979BC6A-1279-4FA3-9F8F-35D9CD55B21F] =&gt; (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [B47007A9-2898-4F03-BF02-FED19537847B] =&gt; (Allow) C:Program Files (x86)Hewlett-PackardHP System EventHPSOCKSVC.exe (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nFirewallRules: [39D2D09C-F5A7-49C3-A51B-7C3A63B6092F] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12PowerDVD12.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [E17FE3D7-439C-46AC-8654-AE3E8CF5BAB3] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12KernelDMSCLMSServerPDVD12.exe =&gt; No File\nFirewallRules: [C7F3A161-5DEC-4FE3-98B3-D3AE8FBAC944] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12PowerDVD12ML.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [17D8CE27-9FB3-43FC-A66E-A7C41F14EB1B] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12MoviePowerDVD.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [BAC676D9-D48D-4B1F-9D48-D916649D3BED] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinDeviceSetup.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [1E3A958A-DBF9-4792-BA75-66CDD5B97F81] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinHPNetworkCommunicator.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [94AEC018-D89F-44D8-BE94-CB30F928F3D5] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinHPNetworkCommunicatorCom.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [3CC6A172-6CFC-4C96-94F1-FEA79C8C66DC] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [A319A1AD-CD39-4B0E-AD31-FA83D3D78242] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [C8947CEF-1C24-4CC9-90B0-3D548221606C] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [FC78FDD5-0FE6-4B5C-B0B2-7BA1E5E56122] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [A835927B-3BA1-4345-868E-B80FDF3DFE6B] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [59D701D2-D615-4312-ABB5-8CC133C606A7] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [TCP Query User1D930BCB-2B04-4333-8EF9-C057EC9E6BAFC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Allow) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [UDP Query UserA39DAA6C-B810-4FC1-8EDD-8DD8AF086F6FC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Allow) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [25B196BB-0691-4DDC-BB61-C324E536385D] =&gt; (Allow) C:Program Files (x86)AVGAvavgmfapx.exe =&gt; No File\nFirewallRules: [68830A77-7703-4DCD-B1D4-2BDF8413B333] =&gt; (Allow) C:Program Files (x86)AVGAvavgmfapx.exe =&gt; No File\nFirewallRules: [AC06ADD7-2F7A-438B-806C-A4154DFC73F1] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [D4AD2E35-4E6E-4D00-B9D8-A5EB21B85B30] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [TCP Query User9CF8F516-A810-4B68-B577-6D76ADBD6979C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Block) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [UDP Query User1C042E6F-79B1-4354-945A-103696EB9945C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Block) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [TCP Query User16E10655-99C6-4050-8E89-D57F6F18A920C:program files (x86)skypephoneskype.exe] =&gt; (Allow) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [UDP Query User052989CE-193D-439A-ABF6-6C5A57B97CBCC:program files (x86)skypephoneskype.exe] =&gt; (Allow) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [TCP Query UserD9402F64-6C5B-43AE-9415-C52306CD3465C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [UDP Query UserD68E4CDB-5539-4A54-B66A-E9E07FB4DA19C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [TCP Query User70E94656-89AD-4D48-8485-5C61A98E5D7DC:program filesnefarius software solutionsscptoolkitscpserver.exe] =&gt; (Allow) C:program filesnefarius software solutionsscptoolkitscpserver.exe =&gt; No File\nFirewallRules: [UDP Query User08EA37E1-5D9D-44D9-B1B5-D00E1E46864FC:program filesnefarius software solutionsscptoolkitscpserver.exe] =&gt; (Allow) C:program filesnefarius software solutionsscptoolkitscpserver.exe =&gt; No File\nFirewallRules: [TCP Query User9DB2D3EB-A419-40A9-8B7F-02B5F54F0ED6C:program files (x86)airdroidairdroid.exe] =&gt; (Allow) C:program files (x86)airdroidairdroid.exe =&gt; No File\nFirewallRules: [UDP Query User0C64B981-176C-43C7-AC23-DCDFE020FD7CC:program files (x86)airdroidairdroid.exe] =&gt; (Allow) C:program files (x86)airdroidairdroid.exe =&gt; No File\nFirewallRules: [999E8B30-A3CC-4CFC-82E9-BE529C851F3E] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS1A27HPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [4C9EB99C-5BB1-4E5A-9383-0E808C25D152] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS1A27HPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [TCP Query UserB4B18508-AD74-4D0F-91E0-A0A25EB96CECC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Block) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [UDP Query User791C7AA4-28C9-4307-BFD5-93EFF7A53417C:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Block) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [TCP Query UserBFE9BE95-C491-45D5-97F0-1F91C2DCCBDEC:program files (x86)skypephoneskype.exe] =&gt; (Block) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [2A3B511F-88A9-434F-851F-8323C7B84A61] =&gt; (Allow) C:Program FilesEasewareDriverEasyDriverEasy.exe (Easeware Technology Limited -&gt; Easeware)\nFirewallRules: [F58757DD-5309-4BAC-8672-3228BB5C0926] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS5F1AHPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [E6751800-8FD6-446B-859E-0C8AD3D2993C] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS5F1AHPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [A7E1E8CF-3332-4C3B-B2F2-4D0513F85CF2] =&gt; (Allow) LPort=9422\nFirewallRules: [03ADEAC4-2838-478C-B592-ED07458E4C1E] =&gt; (Allow) LPort=9245\nFirewallRules: [F59BA0EC-D15A-450E-A3B5-3CD06B04642D] =&gt; (Allow) LPort=9246\nFirewallRules: [091F67FF-828D-40B1-BF39-95961341573C] =&gt; (Allow) LPort=9247\nFirewallRules: [TCP Query UserE248A19E-99A2-4804-B6BC-5ACD8565160BC:program files (x86)caincain.exe] =&gt; (Allow) C:program files (x86)caincain.exe =&gt; No File\nFirewallRules: [UDP Query User4D5623CB-FB3B-4213-8FD5-8A30C84E8FA2C:program files (x86)caincain.exe] =&gt; (Allow) C:program files (x86)caincain.exe =&gt; No File\nFirewallRules: [7C5AB3F8-67AF-44F7-8597-902CC0D24BD9] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [479750AD-D7FF-40D1-BBF8-C2E1B082AF6E] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [66A28919-DA35-4E6F-A3A3-A57E77F7746B] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [F876F68F-A0AF-4E72-A14C-7D600645599A] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [TCP Query User50979378-03F8-44E0-90DB-5D6959D70469C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Allow) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [UDP Query UserC833F1CD-6066-403C-98CA-92840F4DEE3DC:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Allow) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [TCP Query User973BD09C-F2D6-428F-AA51-398E84385F98C:program files (x86)facebook friend mapperphantomjs.exe] =&gt; (Block) C:program files (x86)facebook friend mapperphantomjs.exe =&gt; No File\nFirewallRules: [UDP Query UserFC808989-45B7-4EA6-9D7B-17B90191BD9FC:program files (x86)facebook friend mapperphantomjs.exe] =&gt; (Block) C:program files (x86)facebook friend mapperphantomjs.exe =&gt; No File\nFirewallRules: [TCP Query User1C96D305-E77E-4FB0-882C-E011AEDE7B98C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [UDP Query User92E6F78F-1558-4A1E-89BD-C9718E9F0025C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [TCP Query User9EBAD4BE-25CB-4D18-B75E-7A6CDE9BB797C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [UDP Query User14DF02A4-E03D-4848-9B20-5E4BF53829F9C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [TCP Query UserAE9277F6-2BA5-48AD-989C-910019969FDCC:program files (x86)winpcaprpcapd.exe] =&gt; (Block) C:program files (x86)winpcaprpcapd.exe (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nFirewallRules: [UDP Query User35D83A15-0FB0-43D7-BCF5-C0B8D94CB1C3C:program files (x86)winpcaprpcapd.exe] =&gt; (Block) C:program files (x86)winpcaprpcapd.exe (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nFirewallRules: [TCP Query User24BEA927-D042-4EBC-A3B5-4274B8538946C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe] =&gt; (Allow) C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe =&gt; No File\nFirewallRules: [UDP Query UserB3EDB2D5-3563-4F56-8092-946663BDE464C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe] =&gt; (Allow) C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe =&gt; No File\nFirewallRules: [8EA1455A-A080-426A-8D2D-5335EB3D8E34] =&gt; (Allow) C:Program FilesBlueStacksHD-Player.exe (BlueStack Systems, Inc. -&gt; BlueStack Systems, Inc.)\nFirewallRules: [A921AD6F-18C4-4A87-94B3-B778404C4912] =&gt; (Allow) C:Program Files (x86)VMwareVMware Playervmware-authd.exe (VMware, Inc. -&gt; VMware, Inc.)\nFirewallRules: [45CAEAFE-406C-4630-B965-2E046F854716] =&gt; (Allow) C:Program Files (x86)VMwareVMware Playervmware-authd.exe (VMware, Inc. -&gt; VMware, Inc.)\nFirewallRules: [1DF90E31-1041-4093-A46F-530835B973A6] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [37D7A423-4F11-48BC-A63A-D606409F3905] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [A68B9487-DE2A-42D4-8F65-7AD1BE4FF56E] =&gt; (Allow) C:UsersXXXXXXZZZDownloadsultdata-android.exe =&gt; No File\nFirewallRules: [0502B751-C5CB-4DD2-8CF9-5CB89E5FC85C] =&gt; (Allow) C:UsersXXXXXXZZZDownloadsultdata-android.exe =&gt; No File\nFirewallRules: [TCP Query UserDDB5E758-E868-4317-B733-0FE13C15E18BC:program filesandroidandroid studiojrebinjava.exe] =&gt; (Allow) C:program filesandroidandroid studiojrebinjava.exe\nFirewallRules: [UDP Query User6098E9AC-3E8B-4C11-AE5E-5D77E65F248AC:program filesandroidandroid studiojrebinjava.exe] =&gt; (Allow) C:program filesandroidandroid studiojrebinjava.exe\nFirewallRules: [TCP Query UserD16594A1-06E4-4EDD-85AC-3AB7A8523C48C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [UDP Query User347E955D-D687-412B-B652-2E7BE3FB0FE3C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [TCP Query User9318684D-7351-437E-AA4B-38CDAB311CC5C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Block) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [UDP Query User2B2AEEDB-7C5F-4179-BE80-649DD55B4518C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Block) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [TCP Query User2E858FE0-9142-4312-8E70-C21A0FA30D53C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe] =&gt; (Allow) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [UDP Query UserFD2327B3-3575-4FFD-8CD6-110255058609C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe] =&gt; (Allow) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [663C67BD-E556-4C15-B443-0198A336ACCE] =&gt; (Block) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [37553DE9-4D90-4CE3-AFEA-CD53619A5F61] =&gt; (Block) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [F3A0DD59-0075-44DB-833D-668479A84900] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoamingZoombinZoom.exe =&gt; No File\nFirewallRules: [8B730F98-3968-42A3-AB7B-001BD1618A58] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoamingZoombinairhost.exe =&gt; No File\nFirewallRules: [F0045ADC-AEA7-406F-8C15-26BA696126A9] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [4B943EEA-FFAE-48AC-83AB-470A55A8022B] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [4C2E7AE0-A446-4C94-A73B-E6FAA3E4EA66] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [467134C1-8DBE-4139-8EDE-D7E61A286F65] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [TCP Query UserD8ED4101-A5CE-4C62-A166-C94C7B8A673FC:fakenet1.4.11fakenet.exe] =&gt; (Allow) C:fakenet1.4.11fakenet.exe () [File not signed]\nFirewallRules: [UDP Query UserCBCE98D5-763A-4A0E-AD25-A01A11150B65C:fakenet1.4.11fakenet.exe] =&gt; (Allow) C:fakenet1.4.11fakenet.exe () [File not signed]\nFirewallRules: [TCP Query User44C0B41F-120E-44CA-BCA9-6654375A0B78C:program files (x86)microsoftskype for desktopskype.exe] =&gt; (Allow) C:program files (x86)microsoftskype for desktopskype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [UDP Query UserC842BD42-262C-4277-96CD-376902CDA081C:program files (x86)microsoftskype for desktopskype.exe] =&gt; (Allow) C:program files (x86)microsoftskype for desktopskype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [TCP Query UserEF992F2B-0A05-4B7D-8D80-0960EDE2BE96C:program files (x86)nmapnmap.exe] =&gt; (Allow) C:program files (x86)nmapnmap.exe (Insecure.Com LLC -&gt; Insecure.Org)\nFirewallRules: [UDP Query UserED9C07AC-142E-4AF4-B911-F0430B82B0ADC:program files (x86)nmapnmap.exe] =&gt; (Allow) C:program files (x86)nmapnmap.exe (Insecure.Com LLC -&gt; Insecure.Org)\nFirewallRules: [TCP Query UserDB6B9E30-A92D-4FAA-B83C-534A9DB88096C:program files (x86)microsoft officeoffice14groove.exe] =&gt; (Block) C:program files (x86)microsoft officeoffice14groove.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [UDP Query User5E059811-A8BA-4348-A5EE-8024A24393C9C:program files (x86)microsoft officeoffice14groove.exe] =&gt; (Block) C:program files (x86)microsoft officeoffice14groove.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [FABFAEEE-3FF4-421B-A30B-818CDC15DD55] =&gt; (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -&gt; Google LLC)\n\n==================== Restore Points =========================\n\n01-06-2020 18:20:41 Installed OSRAM\n\n==================== Faulty Device Manager Devices ============\n\nName: WAN Miniport (SSTP) #3\nDescription: WAN Miniport (SSTP)\nClass Guid: 4d36e972-e325-11ce-bfc1-08002be10318\nManufacturer: Microsoft\nService: RasSstp\nProblem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)\nResolution: Update the driver\n\nName: vJoy Device\nDescription: vJoy Device\nClass Guid: 745a17a0-74d3-11d0-b6fe-00a0c90f57da\nManufacturer: Shaul Eizikovich\nService: vjoy\nProblem: : This device is disabled. (Code 22)\nResolution: In Device Manager, click &quot;Action&quot;, and then click &quot;Enable Device&quot;. This starts the Enable Device wizard. Follow the instructions.\n\n==================== Event log errors: ========================\n\nApplication errors:\n==================\nError: (06/09/2020 09:32:39 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome da aplicação com falha: SecureLine.exe, versão: 1.0.289.0, carimbo de data/hora: 0x5720feec\nNome do módulo com falha: HTMLayout.dll, versão: 6.3.9600.19697, carimbo de data/hora: 0x5e91f218\nCódigo de exceção: 0xc0000135\nDesvio de falha: 0x0009d452\nID do processo com falha: 0x1294\nHora de início da aplicação com falha: 0x01d63e367fe5e91f\nCaminho da aplicação com falha: C:Program FilesAVAST SoftwareSecureLineSecureLine.exe\nCaminho do módulo com falha: HTMLayout.dll\nID do Relatório: c6e5238e-aa2b-11ea-8303-3ca82aab1c8a\nNome completo do pacote com falha: \nID da aplicação relativa ao pacote com falha:\n\nError: (06/09/2020 09:30:46 AM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: O programa LiveComm.exe versão 17.5.9600.22013 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.\n\nID do Processo: 1d24\n\nHora de Início: 01d63e378eedd1c5\n\nHora de Cessação: 4294967295\n\nCaminho da Aplicação: C:Program FilesWindowsAppsmicrosoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbweLiveComm.exe\n\nID do Relatório: 8290376b-aa2b-11ea-8303-3ca82aab1c8a\n\nNome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe\n\nID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1\n\nError: (06/09/2020 09:21:41 AM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: O programa LiveComm.exe versão 17.5.9600.22013 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.\n\nID do Processo: 1be8\n\nHora de Início: 01d63e36410c1675\n\nHora de Cessação: 4294967295\n\nCaminho da Aplicação: C:Program FilesWindowsAppsmicrosoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbweLiveComm.exe\n\nID do Relatório: 35f199e1-aa2a-11ea-8303-3ca82aab1c8a\n\nNome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe\n\nID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1\n\nError: (06/09/2020 09:10:41 AM) (Source: DPTF) (EventID: 256) (User: )\nDescription: Intel® Dynamic Platform and Thermal Framework : ESIF(8.0.10100.71) TYPE: ERROR\n\nDPTF Build Version:  8.0.10100.71\nDPTF Build Date:  Sep 18 2014 11:16:17\nSource File:  &#8230;&#8230;..SourcesPoliciesPolicyLibPolicyBase.cpp @ line 553\nExecuting Function:  PolicyBase::takeControlOfOsc\nMessage:  Failed to acquire OSC.\nPolicy:   [0]\n\nError: (06/08/2020 02:11:58 AM) (Source: NvStreamSvc) (EventID: 1) (User: )\nDescription: Event-ID 1\n\nError: (06/08/2020 02:11:57 AM) (Source: NvStreamSvc) (EventID: 1) (User: )\nDescription: Event-ID 1\n\nError: (06/07/2020 05:15:29 PM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome da aplicação com falha: rundll32.exe_winethc.dll, versão: 6.3.9600.17415, carimbo de data/hora: 0x54504eb8\nNome do módulo com falha: USER32.dll, versão: 6.3.9600.19697, carimbo de data/hora: 0x5e91f8a1\nCódigo de exceção: 0xc0000142\nDesvio de falha: 0x00000000000ecf40\nID do processo com falha: 0xfe20\nHora de início da aplicação com falha: 0x01d63ce6dc383106\nCaminho da aplicação com falha: C:WindowsSystem32rundll32.exe\nCaminho do módulo com falha: USER32.dll\nID do Relatório: 1a146bd8-a8da-11ea-8302-3ca82aab1c8a\nNome completo do pacote com falha: \nID da aplicação relativa ao pacote com falha:\n\nError: (06/07/2020 11:52:54 AM) (Source: Perflib) (EventID: 1008) (User: )\nDescription: O procedimento Open para o serviço &quot;WmiApRpl&quot; na DLL &quot;C:Windowssystem32wbemwmiaprpl.dll&quot; falhou. Os dados de desempenho para este serviço não estarão disponíveis. Os primeiros quatro bytes (DWORD) da secção Data contêm o código de erro.\n\nSystem errors:\n=============\nError: (06/09/2020 10:13:02 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.\n\nError: (06/09/2020 10:13:02 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.\n\nError: (06/09/2020 09:43:42 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.\n\nError: (06/09/2020 09:43:42 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.\n\nError: (06/09/2020 09:41:40 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.\n\nError: (06/09/2020 09:41:40 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.\n\nError: (06/09/2020 09:21:28 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.\n\nError: (06/09/2020 09:21:27 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.\n\nWindows Defender:\n===================================\nDate: 2016-04-30 16:06:04.685\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 0F93CF3B-A2A0-4700-9D62-D626C4F6BC00\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM\n\nDate: 2016-04-30 14:18:37.297\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 30B6151F-CD35-4918-8EBA-47223CB0EE9A\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM\n\nDate: 2016-04-28 23:46:49.814\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: BBE65ED8-605F-4130-9BD3-D58DD3640E3B\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM\n\nDate: 2016-04-28 22:11:50.407\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: D556AB88-19BC-4270-979C-58941438DC75\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM\n\nDate: 2016-04-28 21:58:02.035\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 20BA1FA2-3A89-4648-8CC9-3D9F0804C803\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM\n\nDate: 2016-04-28 02:40:09.940\nDescription: \nWindows Defender encontrou um erro ao tentar carregar assinaturas e irá tentar reverter para um conjunto de assinaturas em condições conhecido.\nAssinaturas Tentadas: Atual\nCódigo de Erro: 0x80073aba\nDescrição do Erro: O recurso é demasiado velho para ser compatível. \nVersão de Assinatura: 1.191.2881.0;1.191.2881.0\nVersão de Motor: 1.1.11302.0\n\nDate: 2014-12-10 04:48:25.704\nDescription: \nA funcionalidade de Proteção em Tempo Real de Windows Defender encontrou um erro e falhou.\nFuncionalidade: Sistema de Inspeção de Rede\nCódigo de Erro: 0x80070002\nDescrição do Erro: The system cannot find the file specified. \nRazão: Faltam atualizações no sistema que são necessárias à execução do Sistema de Inspeção de Rede. Instale as atualizações necessárias e reinicie o computador.\n\nDate: 2014-12-10 04:46:18.485\nDescription: \nA funcionalidade de Proteção em Tempo Real de Windows Defender encontrou um erro e falhou.\nFuncionalidade: Sistema de Inspeção de Rede\nCódigo de Erro: 0x80070002\nDescrição do Erro: The system cannot find the file specified. \nRazão: Faltam atualizações no sistema que são necessárias à execução do Sistema de Inspeção de Rede. Instale as atualizações necessárias e reinicie o computador.\n\nCodeIntegrity:\n===================================\n\nDate: 2018-11-13 09:54:06.045\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.\n\nDate: 2018-11-13 09:54:05.586\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.\n\nDate: 2018-11-13 09:54:04.899\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.\n\nDate: 2018-11-13 09:54:04.297\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.\n\nDate: 2018-11-13 09:54:03.799\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.\n\nDate: 2018-11-13 09:54:03.416\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.\n\nDate: 2018-11-13 09:54:03.150\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.\n\nDate: 2018-11-13 09:54:02.801\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.\n\n==================== Memory info =========================== \n\nBIOS: Insyde F.03 03/31/2015\nMotherboard: Hewlett-Packard 8096\nProcessor: Intel® Core™ i5-5200U CPU @ 2.20GHz\nPercentage of memory in use: 41%\nTotal physical RAM: 8130.26 MB\nAvailable physical RAM: 4745.97 MB\nTotal Virtual: 16834.26 MB\nAvailable Virtual: 13268.11 MB\n\n==================== Drives ================================\n\nDrive c: (Windows) (Fixed) (Total:441.62 GB) (Free:56.1 GB) NTFS\nDrive d: (RECOVERY) (Fixed) (Total:23.12 GB) (Free:2.56 GB) NTFS ==&gt;[system with boot components (obtained from drive)]\n\n\\?Volume320a96b5-9680-4cfd-94e7-147030d64aeb (WINRE) (Fixed) (Total:0.63 GB) (Free:0.34 GB) NTFS\n\n==================== MBR &amp; Partition Table ====================\n\n==========================================================\nDisk: 0 (Size: 465.8 GB) (Disk ID: 4199D061)\n\nPartition: GPT.\n\n==================== End of Addition.txt =======================\n\n\n\nClick to rate this post!\r\n                                   \r\n                               [Total: 0  Average: 0]","paragraphs":["Donc, nouveau scan (09-06-2020):","Résultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2020\nExécuté par XXXXXXZZZ (administrateur) sur XXXXXXZZZ (Hewlett-Packard HP Pavilion Notebook) (09-06-2020 11:52:22)\nExécution à partir de C:  Users  XXXXXXZZZ  Downloads\nProfils chargés: XXXXXXZZZ\nPlateforme: Windows 8.1 (mise à jour) (X64) Langue: Português (Portugal)\nNavigateur par défaut: Chrome\nMode de démarrage: Normal","==================== Processus (liste blanche) =================","(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé. Le fichier ne sera pas déplacé.)","() [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  opvapp.exe\n(Adobe Inc. -&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Apple Inc. -&gt; Apple Inc.) C:  Program Files  Bonjour  mDNSResponder.exe\n(Atheros Communications, Inc.) [File not signed] C:  Program Files (x86)  Jumpstart  jswpbapi.exe\n(AVAST Software s.r.o. -&gt; AVAST Software) C:  Program Files  AVAST Software  SecureLine  VpnSvc.exe\n(AVG Netherlands B.V. -&gt;) C:  Program Files (x86)  AVG Web TuneUp  WtuSystemSupport.exe\n(AVG Netherlands B.V. -&gt; AVG Secure Search) C:  Program Files (x86)  Common Files  AVG Secure Search  vToolbarUpdater  40.3.8  ToolbarUpdater.exe\n(AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  AVG TuneUp  TuneupSvc.exe\n(AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  AVG TuneUp  TuneupUI.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  aswEngSrv.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  aswidsagent.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  AVGSvc.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  AVGUI.exe \n(CyberLink Corp. -&gt;) C:  Program Files  CyberLink  Shared files  RichVideo64.exe\n(CyberLink Corp. -&gt; CyberLink Corp.) C:  Program Files (x86)  Cyberlink  YouCam  YouCamService.exe\n(Dassault Systèmes) [File not signed] C:  Program Files  Dassault Systemes  DraftSight  bin  dsHttpApiService.exe\n(DesignBuilder Software Ltd -&gt; DesignBuilder Software Ltd.) C:  Program Files (x86)  DesignBuilder  JobServer  DBJobServer.exe\n(DesignBuilder Software Ltd -&gt; DesignBuilder) C:  Program Files (x86)  DesignBuilder  Lib  DBSimLServer.exe\n(DEVGURU CO LTD -&gt; DEVGURU Co., LTD.) C:  Program Files  Samsung  USB Drivers  25_escape  conn  ss_conn_service.exe\n(DEVGURU Co., Ltd. -&gt; DEVGURU Co., LTD.) C:  Program Files  Samsung  USB Drivers  28_ssconn2  conn  ss_conn_service2.exe\n(Hewlett Packard -&gt; Hewlett-Packard Co.) C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  ScanToPCActivationApp.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Company) C:  Program Files (x86)  Hewlett-Packard  Shared  hpqwmiex.exe\n(Société Hewlett-Packard -&gt; Société Hewlett-Packard) C:  Windows  System32  hpservice.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.) C:  Program Files (x86)  Hewlett-Packard  HP CoolSense  CoolSense.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.) C:  Program Files (x86)  Hewlett-Packard  HP System Event  HPWMISVC.exe\n(HP Inc. -&gt; HP Inc.) C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  HPSupportSolutionsFrameworkService.exe\n(Intel Corporation &#8211; Groupe des sous-systèmes intégrés et blocs IP -&gt; Intel Corporation) C:  Program Files (x86)  Intel  Intel® Management Engine Components  DAL  jhi_service.exe\n(Intel Corporation &#8211; Groupe des sous-systèmes intégrés et blocs IP -&gt; Intel Corporation) C:  Program Files (x86)  Intel  Intel® Management Engine Components  LMS  LMS.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxCUIService.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxEM.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxHK.exe\n(Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation) C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorDataMgrSvc.exe\n(Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation) C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorIcon.exe\n(Logiciel Intel® -&gt; Intel Corporation) C:  Windows  SysWOW64  esif_uf.exe\n(Logiciel Intel® -&gt; Intel Corporation) C:  Windows  Temp  DPTF  esif_assist.exe\n(Malwarebytes Inc -&gt; Malwarebytes) C:  Program Files  Malwarebytes  Anti-Malware  MBAMService.exe\n(Malwarebytes Inc -&gt; Malwarebytes) C:  Program Files  Malwarebytes  Anti-Malware  mbamtray.exe\n(Mega Limited -&gt; Mega Limited) C:  Users  XXXXXXZZZ  AppData  Local  MEGAsync  MEGAsync.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Office  Office14  MSOSYNC.EXE\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Windows  Microsoft.NET  Framework64  v3.0  WPF  PresentationFontCache.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  dllhost.exe \n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  SkyDrive.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  wlanext.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  NetService  NvNetworkService.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvBackend.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display  nvtray.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display  nvxdsync.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  NvStreamSrv  nvstreamsvc.exe \n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Windows  System32  nvvsvc.exe \n(Technologie PLX) [File not signed] C:  Program Files (x86)  Iomega  Iomega Encryption  Iomega Encryption.exe\n(Realtek Semiconductor Corp -&gt;) C:  Program Files (x86)  Realtek  REALTEK Bluetooth  BTDevMgr.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RAVBg64.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RtkAudioService64.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RtkNGUI64.exe\n(Softex Inc.) [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  OmniServ.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  ClientCore.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBroker.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBrokerDsktop.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnh.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnhService.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPHelper.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Program Files (x86)  Common Files  VMware  USB  vmware-usbarbitrator64.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Program Files (x86)  VMware  VMware Player  vmware-authd.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Windows  SysWOW64  vmnat.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Windows  SysWOW64  vmnetdhcp.exe\n(WildTangent Inc -&gt; WildTangent) C:  Program Files (x86)  WildTangent Games  App  GamesAppIntegrationService.exe\n(WildTangent Inc -&gt; WildTangent, Inc.) C:  Program Files (x86)  WildTangent Games  App  GamesAppService.exe","==================== Registre (liste blanche) ===================","(Si une entrée est incluse dans la liste de correctifs, l&#39;élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)","HKLM  &#8230;  Run: [RTHDVCPL] =&gt; C:  Program Files  Realtek  Audio  HDA  RtkNGUI64.exe [8459480 2015-03-04] (Realtek Semiconductor Corp -&gt; Realtek Semiconductor)\nHKLM  &#8230;  Run: [NvBackend] =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvBackend.exe [2464072 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nHKLM  &#8230;  Run: [ShadowPlay] =&gt; C:  Windows  system32  nvspcap64.dll [2800296 2015-02-09] (NVIDIA Corporation PE Sign v2014 -&gt; NVIDIA Corporation) [File not signed]\nHKLM  &#8230;  Run: [AdobeAAMUpdater-1.0] =&gt; C:  Program Files (x86)  Common Files  Adobe  OOBE  PDApp  UWA  UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated -&gt; Adobe Systems Incorporated)\nHKLM  &#8230;  Run: [IAStorIcon] =&gt; C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorIcon.exe [322472 2015-07-22] (Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation)\nHKLM  &#8230;  Run: [AVGUI.exe] =&gt; C:  Program Files (x86)  AVG  Antivirus  AvLaunch.exe [156776 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nHKLM-x32  &#8230;  Exécuter: [AccelerometerSysTrayApplet] =&gt; C:  Program Files (x86)  Hewlett-Packard  HP 3D DriveGuard  AccelerometerST.exe [127624 2015-01-30] (Société Hewlett-Packard -&gt; Société Hewlett-Packard)\nHKLM-x32  &#8230;  Exécuter: [HPMessageService] =&gt; C:  Program Files (x86)  Hewlett-Packard  HP System Event  HPMSGSVC.exe [509192 2014-12-01] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nHKLM-x32  &#8230;  Exécuter: [HP Software Update] =&gt; C:  Program Files (x86)  Hp  HP Software Update  HPWuSchd2.exe [96056 2013-05-30] (Société Hewlett-Packard -&gt; Hewlett-Packard)\nHKLM-x32  &#8230;  Exécuter: [BCSSync] =&gt; C:  Program Files (x86)  Microsoft Office  Office14  BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKLM-x32  &#8230;  Exécuter: [] =&gt; [X]\nHKLM-x32  &#8230;  Exécuter: [Acrobat Assistant 8.0] =&gt; C:  Program Files (x86)  Adobe  Acrobat 11.0  Acrobat  Acrotray.exe [3498728 2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nHKLM-x32  &#8230;  Exécuter: [vProt] =&gt; C:  Program Files (x86)  AVG Web TuneUp  vprot.exe [2195968 2019-01-28] (AVG Netherlands B.V. -&gt;)\nHKLM-x32  &#8230;  Exécuter: [VirtualCloneDrive] =&gt; C:  Program Files (x86)  Elaborate Bytes  VirtualCloneDrive  VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nHKLM-x32  &#8230;  Exécuter: [Autodesk Desktop App] =&gt; C:  Program Files (x86)  Autodesk  Autodesk Desktop App  AutodeskDesktopApp.exe [709416 2018-03-10] (Autodesk, Inc. -&gt; Autodesk, Inc.)\nHKLM-x32  &#8230;  Exécuter: [jswtrayutil] =&gt; C:  Program Files (x86)  Jumpstart  jswtrayutil.exe [528384 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nHKLM-x32  &#8230;  Exécuter: [KiesTrayAgent] =&gt; C:  Program Files (x86)  Samsung  Kies  KiesTrayAgent.exe [318112 2017-11-15] (Samsung Electronics CO., LTD. -&gt; Samsung Electronics Co., Ltd.)\nHKLM-x32  &#8230;  Exécuter: [Aimersoft Helper Compact.exe] =&gt; C:  Program Files (x86)  Fichiers communs  Aimersoft  Aimersoft Helper Compact  ASHelper.exe [2138272 2016-10-08] (Shenzhen Jia Xing Investment Co., Ltd. -&gt; AimerSoft)\nHKLM-x32  &#8230;  Exécuter: [SunJavaUpdateSched] =&gt; C:  Program Files (x86)  Fichiers communs  Java  Java Update  jusched.exe [646160 2019-12-11] (Oracle America, Inc. -&gt; Oracle Corporation)\nHKLM-x32  &#8230;  Exécuter: [XArp] =&gt; C:  Program Files (x86)  XArp  xarp.exe [10413568 2011-04-01] (www.chrismc.de) [File not signed]\nHKLM  &#8230;  Winlogon: [Userinit] C:  Windows  SysWOW64  userinit.exe, &lt;==== ATTENTION\nHKLM  &#8230;  Policies  Explorer: [AllowLegacyWebView] 1\nHKLM  &#8230;  Policies  Explorer: [AllowUnhashedWebView] 1\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [HP Deskjet 3050 J610 series (NET)] =&gt; C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [IomegaEncryption] =&gt; C:  Program Files (x86)  Iomega  Iomega Encryption  Iomega Encryption.exe [455168 2011-09-16] (Technologie PLX) [File not signed]\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [DAEMON Tools Lite Automount] =&gt; C:  Program Files  DAEMON Tools Lite  DTAgent.exe [4289728 2016-04-04] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [GoogleDriveSync] =&gt; C:  Program Files  Google  Drive  googledrivesync.exe [48214752 2020-04-06] (Google LLC -&gt;)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Autodesk Sync] =&gt; C:  Program Files  Autodesk  Autodesk Sync  AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -&gt; Autodesk, Inc.)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Steam] =&gt; C:  Program Files (x86)  Steam  steam.exe [3200800 2018-05-19] (Valve -&gt; Valve Corporation)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [CCleaner Smart Cleaning] =&gt; C:  Program Files  CCleaner  CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Spotify] =&gt; C:  Users  XXXXXXZZZ  AppData  Roaming  Spotify  Spotify.exe [22824680 2020-05-19] (Spotify AB -&gt; Spotify Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [OfficeSyncProcess] =&gt; C:  Program Files (x86)  Microsoft Office  Office14  MSOSYNC.EXE [721504 2015-09-02] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Policies  Explorer: [] \nHKU  S-1-5-18  &#8230;  Run: [Autodesk Sync] =&gt; C:  Program Files  Autodesk  Autodesk Sync  AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -&gt; Autodesk, Inc.)\nHKLM  &#8230;  Print  Monitors  Adobe PDF Port Monitor: C:  Windows  system32  AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc)\nHKLM  &#8230;  Print  Monitors  HP 9311 Status Monitor: C:  Windows  system32  hpinksts9311LM.dll [332176 2012-09-12] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  Moniteur d&#39;état HP C611: C:  Windows  system32  hpinkstsC611LM.dll [333344 2013-05-06] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  HP Discovery Port Monitor (HP Deskjet 3050 J610 series): C:  Windows  system32  HPDiscoPM9311.dll [741480 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  HP Universal Port Monitor: C:  Windows  system32  hpbprtmon.dll [423936 2014-06-11] (Éditeur de compatibilité matérielle Microsoft Windows -&gt; Hewlett-Packard)\nHKLM  &#8230;  Print  Monitors  KM Language Monitor: C:  Windows  system32  KMPJL64.DLL [124560 2017-07-31] (Éditeur de compatibilité matérielle Microsoft Windows -&gt; KYOCERA Document Solutions Inc.)\nHKLM  &#8230;  Print  Monitors  Wondershare PDFelement Monitor: C:  Windows  system32  WSPDFelementMonitor.dll [271360 2017-10-19] (Logiciel Wondershare) [File not signed]\nHKLM  Software  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; C:  Program Files (x86)  Google  Chrome  Application  83.0.4103.97  Installer  chrmstp.exe [2020-06-05] (Google LLC -&gt; Google LLC)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [538C240D-3DEE-4032-AB4C-08A3A6EB0861] -&gt; c:  Program Files (x86)  CyberLink  YouCam  CLCredProv  x64  CLCredProv.dll [2015-02-11] (CyberLink Corp. -&gt; CyberLink)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [F3F1B0FA-4775-41d8-8578-436772D93FB4] -&gt; C:  Program Files  Hewlett-Packard  SimplePass  OmniPassCredProv.dll [2015-03-04] (Softex Inc.) [File not signed]\nHKLM  Software  &#8230;  Authentication  Credential Provider Filters: [F3F1B0FA-4775-41d8-8578-436772D93FB4] -&gt; C:  Program Files  Hewlett-Packard  SimplePass  OmniPassCredProv.dll [2015-03-04] (Softex Inc.) [File not signed]\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  Assistante de gestor de conteúdo pour PlayStation®.lnk [2016-04-23]\nShortcutTarget: Assistente de gestor de conteúdo for PlayStation®.lnk -&gt; C:  Program Files (x86)  Sony  Content Manager Assistant  CMA.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  Avast SecureLine VPN.lnk [2019-07-16]\nShortcutTarget: Avast SecureLine VPN.lnk -&gt; C:  Program Files  AVAST Software  SecureLine  Vpn.exe (AVAST Software s.r.o. -&gt; AVAST Software)\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  AVG TuneUp.lnk [2019-09-20]\nShortcutTarget: AVG TuneUp.lnk -&gt; C:  Program Files (x86)  AVG  AVG TuneUp  TuneupUI.exe (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  Autenticacao.gov.pt.lnk [2020-04-24]\nShortcutTarget: Autenticacao.gov.pt.lnk -&gt; C:  Program Files (x86)  plugin Autenticacao.Gov  Autenticacao.gov.pt.exe (Agência para a Modernização Administrativa, I.P. -&gt; Agência para a Modernização Administrativa, IP)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  MEGAsync.lnk [2019-02-07]\nShortcutTarget: MEGAsync.lnk -&gt; C:  Users  XXXXXXZZZ  AppData  Local  MEGAsync  MEGAsync.exe (Mega Limited -&gt; Mega Limited)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  OneNote 2010 Screen Clipper and Launcher.lnk [2018-05-18]\nShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -&gt; C:  Program Files (x86)  Microsoft Office  Office14  ONENOTEM.EXE (Microsoft Corporation -&gt; Microsoft Corporation)\nBootExecute: autocheck autochk / m / P  Device  HarddiskVolume13autocheck autochk * \nGroupPolicy: Restriction? &lt;==== ATTENTION\nFF HKLM  SOFTWARE  Policies  Mozilla  Firefox: Restriction &lt;==== ATTENTION\nCHR HKLM  SOFTWARE  Policies  Google: Restriction &lt;==== ATTENTION","==================== Tâches planifiées (liste blanche) ============","(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé sauf s&#39;il est répertorié séparément.)","Tâche: 019EFCA7-800A-45BD-B5D4-E7BC04A47010 &#8211; System32  Tasks  Adobe Flash Player NPAPI Notifier =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_371_Plugin.exe [1458232 2020-05-13] (Adobe Inc. -&gt; Adobe)\nTâche: 035A9236-3D0D-4CEC-88E7-316A88A60D57 &#8211; System32  Tasks  AutoKMS =&gt; C:  Windows  AutoKMS  AutoKMS.exe [5046784 2018-01-30] () [File not signed]\nTâche: 0B7F76E1-EE25-416A-B69A-E967896AD3B6 &#8211; System32  Tasks  GoogleUpdateTaskMachineUA =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [154440 2016-03-18] (Google Inc -&gt; Google Inc.)\nTâche: 0CE47549-B8CB-4819-ABF3-3FA3A57AB0D4 &#8211; System32  Tasks  Hewlett-Packard  HP Active Health  HP Active Health Scan (HPSA) =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPActiveHealth  ActiveHealth.exe [198696 2016-11-07] (HP Inc. -&gt; HP Inc.)\nTâche: 130F5CA5-8C3C-463D-8A72-447D87BD6E01 &#8211; System32  Tasks  Start SimplePass =&gt; C:  Program Files  Hewlett-Packard  SimplePass  ClientCore.exe [4716280 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: 196B8F02-98BF-41FB-B1A3-5F36DB0DE18D &#8211; System32  Tasks  Adobe Acrobat Update Task =&gt; C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -&gt; Adobe Systems)\nTâche: 2082FD68-9C15-4062-AC44-9424D96210B8 &#8211; pas de chemin de fichier\nTâche: 23DAD9CE-2053-4866-8F74-D0729C66989D &#8211; pas de chemin de fichier\nTâche: 2D6FC168-D4B7-4440-A3F6-FFF3E4F97500 &#8211; pas de chemin de fichier\nTâche: 2E6908D5-EFAB-4013-A5F8-C67EA3EB73E1 &#8211; System32  Tasks  G2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001 =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToM 17956  g2mupdate.exe [32424 2020-06-09] (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nTâche: 336DBD9A-B9BE-4A9D-8E7E-70DF4DD0C45C &#8211; System32  Tasks  G2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001 =&gt; C:  Users  XXXXXXZZZ  AppData  Local  Go 17956  g2mupload.exe [32424 2020-06-09] (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nTâche: 4676C5EC-11E4-46DB-A339-B05760EBFD33 &#8211; System32  Tasks  Antivirus Emergency Update =&gt; C:  Program Files (x86)  AVG  Antivirus  AvEmUpdate.exe [3387520 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nTâche: 480057E1-65C8-4672-B6EB-449337F4A059 &#8211; System32  Tasks  AVG TuneUp Update =&gt; C:  Program Files (x86)  AVG  AVG TuneUp  TUNEUpdate.exe [1706528 2019-09-20] (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nTâche: 482950C8-5BA7-4A9B-B305-736188A98CF5 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Assistant Quick Start =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF.exe [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: 4922F370-D891-4A1B-B13A-67F51EFA83AE &#8211; pas de chemin de fichier\nTâche: 506A236E-C8FC-491D-A1A7-2D971555245D &#8211; System32  Tasks  YCMServiceAgent =&gt; c:  Program Files (x86)  Cyberlink  YouCam  YouCamService.exe [267224 2015-02-11] (CyberLink Corp. -&gt; CyberLink Corp.)\nTâche: 71EB72E0-9D55-4AC5-BDF7-6B6F866DDCDE &#8211; System32  Tasks  npcapwatchdog =&gt; C:  Program Files  Npcap  CheckStatus.bat [862 2019-04-30] () [File not signed]\nTâche: 7A56FE0C-B693-4340-AEA0-D5C5C9067C4C &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Solutions Framework Updater =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  Modules  HPSSFUpdater.exe [662872 2020-04-30] (HP Inc. -&gt; HP Inc.)\nTâche: 8BF8C487-50E7-4763-9DD0-BEEB2C3856D5 &#8211; System32  Tasks  Avast SecureLine =&gt; C:  Program Files  AVAST Software  SecureLine  SecureLine.exe [3438680 2016-05-24] (Logiciel AVAST a.s. -&gt; Logiciel AVAST)\nTâche: 8F05A697-8454-4451-9D04-4F3843C4EC1A &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  WarrantyChecker =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPWarrantyCheck  HPWarrantyChecker.exe [1117048 2020-03-26] (HP Inc. -&gt; HP Inc.)\nTâche: 9594B004-459A-4105-BDB9-0686695F1DBC &#8211; System32  Tasks  BlueStacksHelper =&gt; C:  ProgramData  BlueStacks  Client  Helper  BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -&gt; BlueStack Systems, Inc.)\nTâche: A7A40B26-2C9E-4141-A5EF-3A3EB86182C4 &#8211; System32  Tasks  Start OPBHOBrokerDesktop =&gt; C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBrokerDsktop.exe [506104 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: AC2D90BD-03AB-4717-B91B-4ACD2D25A495 &#8211; System32  Tasks  HPCeeScheduleForXXXXXXZZZ =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Ceement  HPCEE.exe\nTâche: AC444CF5-C990-4BC8-8C8E-9F5B38F05A81 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  WarrantyChecker_DeviceScan =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPWarrantyCheck  HPWarrantyChecker.exe [1117048 2020-03-26] (HP Inc. -&gt; HP Inc.)\nTâche: B366A58C-E1F0-4F66-B965-EEE0E58ECF54 &#8211; System32  Tasks  Start OPBHOBroker =&gt; C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBroker.exe [506104 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: B8FFC866-248A-4176-AC9F-31F3B9144F13 &#8211; System32  Tasks  CCleanerSkipUAC =&gt; C:  Program Files  CCleaner  CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nTâche: B9781211-096A-4A59-B2CD-6631DAA6F92E &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  PC Health Analysis =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF. EXE [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: BDD8080F-6580-4439-B090-E1F0B8980028 &#8211; System32  Tasks  AVGPCTuneUp_Task_BkGndMaintenance =&gt; C:  Program Files (x86)  AVG  AVG PC TuneUp  tuscanx.exe\nTâche: BF84E17C-D1AA-4F8E-AD9C-9C3999F8CDD2 &#8211; System32  Tasks  Mozilla  Firefox Default Browser Agent E7CF176E110C211B =&gt; C:  Program Files (x86)  Mozilla Firefox  default-browser-agent.exe [124624 2020-06-05] (Mozilla Corporation -&gt; Fondation Mozilla)\nTâche: C045C518-0FA6-4A67-A3D5-151056E6C9D9 &#8211; System32  Tasks  Adobe Flash Player Updater =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashPlayerUpdateService.exe [335416 2020-05-13] (Adobe Inc. -&gt; Adobe)\nTâche: C2BDB807-0EE2-4A05-9C29-E0B43518E8DB &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  PC Health Analysis Restart =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF .EXE [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: C718E444-7E77-4374-9197-635B15CB8D22 &#8211; System32  Tasks  Avast SecureLine VPN Update =&gt; c:  program files  avast software  secureline  vpnupdate.exe [1390472 2019-10-24] (AVAST Software s.r.o. -&gt; AVAST Software)\nTâche: C9FF1DA6-EC0B-4F09-A9DB-B6A37A1F1374 &#8211; System32  Tasks  CCleaner Update =&gt; C:  Program Files  CCleaner  CCUpdate.exe [619416 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nTâche: CA139223-98A5-4E6F-9A90-3BD01B619423 &#8211; System32  Tasks  Driver Easy Scheduled Scan =&gt; C:  Program Files  Easeware  DriverEasy  DriverEasy.exe [3392368 2017-11-10] (Easeware Technology Limited -&gt; Easeware)\nTâche: CAB11F90-659D-4C59-8472-7217C7636690 &#8211; System32  Tasks  AVG  Overseer =&gt; C:  Program Files  Common Files  AVG  Overseer  overseer.exe [1692296 2020-03-03] (AVG Technologies USA, LLC -&gt; AVG Technologies)\nTâche: D7F26C8B-7EE3-4B58-971C-7ABBFDF75B19 &#8211; pas de chemin de fichier\nTâche: E1C5D3F6-C2CE-48AF-96F3-03D7E23B9A45 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  Product Configurator =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  ProductConfig .EXE [320856 2020-04-23] (HP Inc. -&gt; HP Inc.)\nTâche: E7333F8C-E08D-4FB6-84DC-694BB2775824 &#8211; System32  Tasks  Hewlett-Packard  HP CoolSense  HP CoolSense Start at Logon =&gt; C:  Program Files (x86)  Hewlett-Packard  HP CoolSense  CoolSense. EXE [1354552 2014-05-19] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nTâche: EB9B233E-D483-496B-8CD6-9C9CBAAE9007 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Solutions Framework Report =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  Modules  HPSFReport.exe [134008 2020-03-25] (HP Inc. -&gt; HP Inc.)\nTâche: EBCAD8C1-2F95-424A-87E3-ED87CF10A5D5 &#8211; pas de chemin de fichier\nTâche: EDE8E45E-2A78-41AD-8D66-72B614CF9C9E &#8211; System32  Tasks  GoogleUpdateTaskMachineCore =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [154440 2016-03-18] (Google Inc -&gt; Google Inc.)\nTâche: F173A769-3028-456B-B1A5-D1EC4B2ED322 &#8211; System32  Tasks  HPCustParticipation HP Deskjet 3050 J610 series =&gt; C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nTâche: F6005A55-D650-4ABA-99F1-795479106D2D &#8211; System32  Tasks  7A5E22F3-13A6-4040-B1C5-E4043B449990 =&gt; C:  Windows  system32  pcalua.exe -a C:  E20-II  unwcs21.EXE -c C:  E20-II  csi22  INSTALL.LOG","(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)","Tâche: C:  Windows  Tasks  Driver Easy Scheduled Scan.job =&gt; C:  Program Files  Easeware  DriverEasy  DriverEasy.exe\nTâche: C:  Windows  Tasks  G2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToMeeting  17956  g2mupdate.exe\nTâche: C:  Windows  Tasks  G2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToMeeting  17956  g2mupload.exe\nTâche: C:  Windows  Tasks  HPCeeScheduleForXXXXXXZZZ.job =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Ceement  HPCEE.exe","==================== Internet (liste blanche) ====================","(Si un élément est inclus dans la liste de correctifs, s&#39;il s&#39;agit d&#39;un élément du registre, il sera supprimé ou restauré par défaut.)","Winsock: Catalog5 07 C:  Program Files (x86)  Bonjour  mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -&gt; Apple Inc.)\nWinsock: Catalog9 12 C:  Windows  SysWOW64  vsocklib.dll [42376 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog9 13 C:  Windows  SysWOW64  vsocklib.dll [42376 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog5-x64 07 C:  Program Files  Bonjour  mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -&gt; Apple Inc.)\nWinsock: Catalog9-x64 12 C:  Windows  system32  vsocklib.dll [46472 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog9-x64 13 C:  Windows  system32  vsocklib.dll [46472 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nHôtes: il existe plusieurs entrées dans Hôtes. Voir la section Hôtes de Addition.txt\nTcpip  ..  Interfaces  9BE7CB1D-7D01-412C-87BA-0BF14F21DCFC: [NameServer] 192.168.175.1\nTcpip  ..  Interfaces  AE83C2A5-B32C-49E6-92F8-44E82B6BF54C: [DhcpNameServer] 192.168.1.1\nTcpip  ..  Interfaces  D7780C2A-6612-4825-B9AA-0AAAE7D9CBB1: [DhcpNameServer] 192.168.1.1\nTcpip  ..  Interfaces  F378EDC9-2002-40C5-A4FD-8D06037995AC: [NameServer] 192.168.56.1\nTcpip  ..  Interfaces  F9ED1E2C-E78F-4493-82DC-AA9A69316967: [NameServer] 192.168.6.1","Internet Explorer:\n==================\nHKLM  Software  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKLM  Software  Wow6432Node  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKLM  Software  Wow6432Node  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nHKU  .DEFAULT  Software  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKU  .DEFAULT  Software  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  Software  Microsoft  Internet Explorer  Main, page de démarrage = hxxps: //mysearch.avg.com/? Cid = 0748ECFF-99FC-45F5- A9A9-AAA31FAD88FA &amp; mid = 2e2973733faf47cca1dda13ec7d56e85-0c260b95194f388f5d97415cd7ba6e43361199e3 &amp; lang = pt &amp; ds = AVG &amp; coid = avgtbavg &amp; cmpid = ipm180 &amp; v = 26 v &amp; d = 20 v\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  Software  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nSearchScopes: HKLM -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKLM -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKLM-x32 -&gt; C77A81B7-79DB-4F42-8F4C-3CEBC5863FB2 URL = hxxp: //www.amazon.co.uk/s/ref=azs_osd_ieauk? Ie = UTF-8 &amp; tag = hp-uk3-vsb- 21 &amp; link% 5Fcode = qs &amp; index = aps &amp; field-keywords = searchTerms\nSearchScopes: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 URL = hxxps: //mysearch.avg.com/search? Cid = 0748ECFF -99FC-45F5-A9A9-AAA31FAD88FA &amp; mid = 2e2973733faf47cca1dda13ec7d56e85-0c260b95194f388f5d97415cd7ba6e43361199e3 &amp; lang = pt &amp; ds = AVG &amp; COID = avgtbavg &amp; cmpid = ipm180716c &amp; pr = fr &amp; d = 2016-06-12 22: 27: 20 &amp; v = 4.3.9.626 &amp; pid = UMC &amp; sg = &amp; sap = dsp &amp; q = searchTerms\nSearchScopes: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; C77A81B7-79DB-4F42-8F4C-3CEBC5863FB2 URL = hxxp: //www.amazon.co.uk/s/ref= azs_osd_ieauk? ie = UTF-8 &amp; tag = hp-uk3-vsb-21 &amp; link% 5Fcode = qs &amp; index = aps &amp; field-keywords = searchTerms\nBHO: Groove GFS Browser Helper -&gt; 72853161-30C5-4D22-B7F9-0BBC1D38A37E -&gt; C:  Program Files  Microsoft Office  Office14  GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO: Java ™ Plug-In SSV Helper -&gt; 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -&gt; C:  Program Files  Java  jre1.8.0_241  bin  ssv.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO: AVG Web TuneUp -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 -&gt; C:  Program Files  AVG Web TuneUp  4.3.9.626  AVG Web TuneUp.dll [2019-01-28] (AVG Pays-Bas B.V. -&gt; AVG)\nBHO: Adobe Acrobat Create PDF Helper -&gt; AE7CD045-E861-484f-8273-0445EE161910 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO: Gestionnaire de cache de documents Office -&gt; B4F3A835-0E21-4959-BA22-42B3008E02FF -&gt; C:  Program Files  Microsoft Office  Office14  URLREDIR.DLL [2013-03-06] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO: Java ™ Plug-In 2 SSV Helper -&gt; DBC80044-A445-435b-BC74-9C25C1C588A9 -&gt; C:  Program Files  Java  jre1.8.0_241  bin  jp2ssv.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO: HP Network Check Helper -&gt; E76FD755-C1BA-4DCB-9F13-99BD91223ADE -&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPNetworkCheck  HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -&gt; HP Inc.)\nBHO: Adobe Acrobat Créer un fichier PDF à partir de la sélection -&gt; F4971EE7-DAA0-4053-9964-665D8EE6A077 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO-x32: Aide du navigateur Groove GFS -&gt; 72853161-30C5-4D22-B7F9-0BBC1D38A37E -&gt; C:  Program Files (x86)  Microsoft Office  Office14  GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO-x32: extension Evernote -&gt; 92EF2EAD-A7CE-4424-B0DB-499CF856608E -&gt; C:  Program Files (x86)  Evernote  Evernote  EvernoteIE.dll [2014-12-17] (EVERNOTE CORPORATION -&gt; Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)\nBHO-x32: AVG Web TuneUp -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 -&gt; C:  Program Files (x86)  AVG Web TuneUp  4.3.9.626  AVG Web TuneUp.dll [2019-01-28] (AVG Pays-Bas B.V. -&gt; AVG)\nBHO-x32: Adobe Acrobat Create PDF Helper -&gt; AE7CD045-E861-484f-8273-0445EE161910 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO-x32: Gestionnaire de cache de documents Office -&gt; B4F3A835-0E21-4959-BA22-42B3008E02FF -&gt; C:  Program Files (x86)  Microsoft Office  Office14  URLREDIR.DLL [2013-03-06] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO-x32: HP Network Check Helper -&gt; E76FD755-C1BA-4DCB-9F13-99BD91223ADE -&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPNetworkCheck  HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -&gt; HP Inc.)\nBHO-x32: Adobe Acrobat Créer un fichier PDF à partir de la sélection -&gt; F4971EE7-DAA0-4053-9964-665D8EE6A077 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKLM &#8211; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKLM-x32 &#8211; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nHandler-x32: asp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: ezstor &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: hsp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: jpip &#8211; B92DD248-E3D5-4A92-B311-C9B841681455 &#8211; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nHandler-x32: sidlet &#8211; B92DD248-E3D5-4A92-B311-C9B841681455 &#8211; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nHandler-x32: x-asp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-cnote &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-hsp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-mem1 &#8211; C3719F83-7EF8-4BA0-89B0-3360C7AFB7CC &#8211; C:WindowsSysWow64WowCtl2.dll [2006-10-13] (EzTools Software) [File not signed]\nHandler-x32: x-zip &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: zip &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]","FireFox:\n========\nFF DefaultProfile: t5l5e12d.default\nFF ProfilePath: C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.default [2020-06-09]\nFF Extension: (Disconnect) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions2.0@disconnect.me.xpi [2020-01-06]\nFF Extension: (AVG Web TuneUp) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsavg@toolbar.xpi [2019-04-11] [UpdateUrl:hxxps://firefoxext.avcdn.net/firefoxext/avg/wtu/update.json]\nFF Extension: (SerpClix ClickSense) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsdev@serpclix.com.xpi [2020-04-24] [UpdateUrl:hxxps://serpclix.com/downloads/addon/updates.json]\nFF Extension: (Ghostery – Privacy Ad Blocker) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsfirefox@ghostery.com.xpi [2020-05-21]\nFF Extension: (HTTPS Everywhere) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionshttps-everywhere-eff@eff.org.xpi [2020-05-22] [UpdateUrl:hxxps://www.eff.org/files/https-everywhere-updates.json]\nFF Extension: (Disable WebRTC) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-5Fs7iTLscUaZBgwr@jetpack.xpi [2020-06-02]\nFF Extension: (Para o Google Tradutor) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-93WyvpgvxzGATw@jetpack.xpi [2020-02-06]\nFF Extension: (Decentraleyes) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-BoFifL9Vbdl2zQ@jetpack.xpi [2020-04-01]\nFF Extension: (DuckDuckGo Privacy Essentials) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-ZAdIEUB7XOzOJw@jetpack.xpi [2020-06-03]\nFF Extension: (Lazarus: Form Recovery) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionslazarus@interclue.com.xpi [2016-07-12] [Legacy]\nFF Extension: (Avast SafePrice | Comparação, ofertas, cupões) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionssp@avast.com.xpi [2020-05-02]\nFF Extension: (Google Translator for Firefox) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionstranslator@zoli.bod.xpi [2020-02-05]\nFF Extension: (uBlock Origin) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsuBlock0@raymondhill.net.xpi [2020-05-28]\nFF Extension: (uMatrix) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsuMatrix@raymondhill.net.xpi [2020-01-06]\nFF Extension: (Startpage.com: pesquisa privada) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions20fc2e06-e3e4-4b2b-812b-ab431220cada.xpi [2020-01-07]\nFF Extension: (Cookie Quick Manager) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions60f82f00-9ad5-4de5-b31c-b16a47c51558.xpi [2020-05-15]\nFF Extension: (Flash and Video Download) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsadeadebb-fedc-4180-a7f4-cfdd87496551.xpi [2020-05-24]\nFF Extension: (Video DownloadHelper) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsb9db16a4-6edc-47ec-a1f4-b86292ed211d.xpi [2020-03-31]\nFF SearchPlugin: C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultsearchpluginsavg-secure-search.xml [2019-01-28]\nFF HKLM-x32&#8230;FirefoxExtensions: [firefox@bho.com] &#8211; C:Program FilesHewlett-PackardSimplePassFFBHOExt =&gt; not found\nFF HKLM-x32&#8230;FirefoxExtensions: [web2pdfextension@web2pdf.adobedotcom] &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtn\nFF Extension: (Adobe Acrobat &#8211; Create PDF) &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtn [2016-04-30] [Legacy] [not signed]\nFF Plugin: @adobe.com/FlashPlayer -&gt; C:Windowssystem32MacromedFlashNPSWF64_32_0_0_371.dll [2020-05-13] (Adobe Inc. -&gt; )\nFF Plugin: @java.com/DTPlugin,version=11.241.2 -&gt; C:Program FilesJavajre1.8.0_241bindtpluginnpDeployJava1.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin: @java.com/JavaPlugin,version=11.241.2 -&gt; C:Program FilesJavajre1.8.0_241binplugin2npjp2.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:Program FilesMicrosoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -&gt;  Microsoft Corporation)\nFF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:PROGRA~1MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin: adobe.com/AdobeAAMDetect -&gt; C:Program Files (x86)Common FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems Incorporated -&gt; Adobe Systems)\nFF Plugin-x32: @adobe.com/FlashPlayer -&gt; C:WindowsSysWOW64MacromedFlashNPSWF32_32_0_0_371.dll [2020-05-13] (Adobe Inc. -&gt; )\nFF Plugin-x32: @adobe.com/ShockwavePlayer -&gt; C:windowsSysWOW64AdobeDirectornp32dsw_1217157.dll [2015-02-05] (Adobe Systems, Inc.) [File not signed]\nFF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -&gt; C:Program Files (x86)Common FilesAVG Secure SearchSiteSafetyInstaller40.3.8\\npsitesafety.dll [No File]\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -&gt; C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIIPT.dll [2014-11-10] (Intel® Identity Protection Technology Software -&gt; Intel Corporation)\nFF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -&gt; C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIUpdater.dll [2014-11-10] (Intel® Identity Protection Technology Software -&gt; Intel Corporation)\nFF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:Program Files (x86)Microsoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -&gt;  Microsoft Corporation)\nFF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:PROGRA~2MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -&gt; C:PROGRA~2MICROS~1Office14NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.2 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.4 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.6 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=3.0.3 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=3.0.8 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -&gt; C:Program Files (x86)WildTangent GamesAppBrowserIntegrationRegisteredNP_wtapp.dll [2014-11-15] (WildTangent Inc -&gt; )\nFF Plugin-x32: Adobe Acrobat -&gt; C:Program Files (x86)AdobeAcrobat 11.0AcrobatAirnppdf32.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nFF Plugin-x32: Adobe Reader -&gt; C:Program Files (x86)AdobeAcrobat Reader DCReaderAIRnppdf32.dll [2020-05-04] (Adobe Inc. -&gt; Adobe Systems Inc.)\nFF Plugin-x32: adobe.com/AdobeAAMDetect -&gt; C:Program Files (x86)Common FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems Incorporated -&gt; Adobe Systems)\nFF Plugin-x32: Lizardtech ExpressViewPlugin -&gt; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nFF Plugin HKUS-1-5-21-3751382696-3894377064-3631472648-1001: @zoom.us/ZoomVideoPlugin -&gt; C:UsersXXXXXXZZZAppDataRoamingZoombin_00npzoomplugin.dll [2020-05-14] (Zoom Video Communications, Inc. -&gt; Zoom Video Communications, Inc.)","Chrome: \n=======\nCHR Profile: C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefault [2020-06-07]\nCHR Notifications: Default -&gt; hxxps://web.skype.com\nCHR HomePage: Default -&gt; mysearch.avg.com\nCHR StartupUrls: Default -&gt; &quot;hxxp://google.pt/&quot;\nCHR DefaultSearchURL: Default -&gt; hxxps://mysearch.avg.com/search?rvt=1&amp;sap=dsp&amp;q=searchTerms\nCHR DefaultSearchKeyword: Default -&gt; hxxps://mysearch.avg.com\nCHR Extension: (Slides) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]\nCHR Extension: (Seedr) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsabfimpkhacgimamjbiegeoponlepcbob [2018-08-20]\nCHR Extension: (Flash Video Downloader) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaiimdkdngfcipjohbjenkahhlhccpdbc [2019-05-14]\nCHR Extension: (Docs) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-10-14]\nCHR Extension: (Google Drive) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2018-10-17]\nCHR Extension: (YouTube) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-18]\nCHR Extension: (Adblock Plus &#8211; free ad blocker) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionscfhdojbkjhnklbpkdaibdccddilifddb [2020-04-06]\nCHR Extension: (AVG Secure Search) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionschfdnecihphmhljaaejmgoiahnihplgn [2020-01-11]\nCHR Extension: (Tampermonkey) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsdhdgffkkebhmkfjojejmpbldmpobfkfo [2020-06-07]\nCHR Extension: (Email Exporter) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsecnfbegpagpeocjegnecbifjepfcpnhe [2020-06-07]\nCHR Extension: (Toolkit For FB) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsfcachklhcihfinmagjnlomehfdhndhep [2019-07-04]\nCHR Extension: (Sheets) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-10-14]\nCHR Extension: (Google Docs Offline) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-06-07]\nCHR Extension: (Social Fixer for Facebook) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsifmhoabcaeehkljcfclfiieohkohdgbb [2019-10-08]\nCHR Extension: (Email Extractor) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsjdianbbpnakhcmfkcckaboohfgnngfcc [2020-06-07]\nCHR Extension: (Unseen for Facebook) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsjiomcgpfgkeefipihnplhadgdoollmap [2019-09-23]\nCHR Extension: (Application Launcher for Drive (by Google)) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionslmjegmlicamnimmfhcmpkclmigmmcbeh [2017-04-03]\nCHR Extension: (Video DownloadHelper) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionslmjnegcaeklhafolokijcfjliaokphfk [2020-04-01]\nCHR Extension: (Lazarus: Form Recovery) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsloljledaigphbcpfhfmgopdkppkifgno [2016-07-12]\nCHR Extension: (Buster: Captcha Solver for Humans) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsmpbjkejclgfgadiemmefgebjfooflfhl [2020-06-07]\nCHR Extension: (Chrome Web Store Payments) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]\nCHR Extension: (Social Revealer) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsnmnnjcmpjlbbobehaikglfgpbjclcoeg [2019-01-30]\nCHR Extension: (Unfriend Finder) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsolljnkilmblncgcghhaodkpdcnokhpah [2020-03-29]\nCHR Extension: (Social Profile view notification) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspegkceflonohbcefcbflfpficfkmpeod [2019-10-28]\nCHR Extension: (Gmail) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-05-14]\nCHR Extension: (Chrome Media Router) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-06-07]\nCHR Profile: C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataSystem Profile [2019-07-26]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [chfdnecihphmhljaaejmgoiahnihplgn]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [dhdgffkkebhmkfjojejmpbldmpobfkfo]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]\nCHR HKLM-x32&#8230;ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj] &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCChromeExtnWCChromeExtn.crx [2015-06-29]\nCHR HKLM-x32&#8230;ChromeExtension: [eofcbnmajmjmplflapaojjnihcjkigck]","==================== Services (Whitelisted) ===================","(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","S4 AdAppMgrSvc; C:Program Files (x86)AutodeskAutodesk Desktop AppAdAppMgrSvc.exe [1374072 2018-03-10] (Autodesk, Inc. -&gt; Autodesk Inc.)\nR2 AVG Antivirus; C:Program Files (x86)AVGAntivirusAVGSvc.exe [349552 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR3 avgbIDSAgent; C:Program Files (x86)AVGAntivirusaswidsagent.exe [6397888 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 BTDevManager; C:Program Files (x86)REALTEKRealtek BluetoothBTDevMgr.exe [125656 2015-09-18] (Realtek Semiconductor Corp -&gt; )\nR2 CleanupPSvc; C:Program Files (x86)AVGAVG TuneUpTuneupSvc.exe [10301176 2019-07-24] (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nR2 DBJobServer; C:Program Files (x86)DesignBuilderJobServerDBJobServer.exe [672168 2018-03-22] (DesignBuilder Software Ltd -&gt; DesignBuilder Software Ltd.)\nR2 DBSimLServer; C:Program Files (x86)DesignBuilderLibDBSimLServer.exe [23464 2018-03-22] (DesignBuilder Software Ltd -&gt; DesignBuilder)\nS3 DialComService; C:Program Files (x86)DIAL GmbHDIAL Communication FrameworkDialComService.exe [2184192 2017-05-29] (DIAL GmbH) [File not signed]\nS3 Disc Soft Lite Bus Service; C:Program FilesDAEMON Tools LiteDiscSoftBusService.exe [1443520 2016-04-04] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR2 DraftSight API Service; C:Program FilesDassault SystemesDraftSightbindsHttpApiService.exe [121344 2016-11-10] (Dassault Systèmes) [File not signed]\nR2 esifsvc; C:WindowsSysWOW64esif_uf.exe [1037568 2015-03-04] (Intel® Software -&gt; Intel Corporation)\nR2 GamesAppIntegrationService; C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [347200 2015-02-09] (WildTangent Inc -&gt; WildTangent)\nR2 HPSupportSolutionsFrameworkService; C:Program Files (x86)Hewlett-PackardHP Support SolutionsHPSupportSolutionsFrameworkService.exe [379224 2020-05-20] (HP Inc. -&gt; HP Inc.)\nR2 HPWMISVC; c:Program Files (x86)Hewlett-PackardHP System EventHPWMISVC.exe [573704 2014-12-01] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nR2 igfxCUIService1.0.0.0; C:Windowssystem32igfxCUIService.exe [344168 2015-04-28] (Intel Corporation &#8211; pGFX -&gt; Intel Corporation)\nR2 jhi_service; C:Program Files (x86)IntelIntel® Management Engine ComponentsDALjhi_service.exe [158496 2014-11-10] (Intel Corporation &#8211; Embedded Subsystems and IP Blocks Group -&gt; Intel Corporation)\nR2 jswpbapi; C:Program Files (x86)Jumpstartjswpbapi.exe [265216 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nS3 jswpsapi; C:Program Files (x86)Jumpstartjswpsapi.exe [954368 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nR2 MBAMService; C:Program FilesMalwarebytesAnti-MalwareMBAMService.exe [6933272 2020-03-19] (Malwarebytes Inc -&gt; Malwarebytes)\nR2 NvNetworkService; C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe [1795912 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR2 NvStreamSvc; C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe [19819848 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR2 omniserv; C:Program FilesHewlett-PackardSimplePassOmniServ.exe [103424 2015-01-30] (Softex Inc.) [File not signed]\nS3 ProtonVPN Service; C:Program Files (x86)Proton TechnologiesProtonVPNProtonVPNService.exe [101096 2020-02-17] (ProtonVPN AG -&gt; )\nS3 ProtonVPN Update Service; C:Program Files (x86)Proton TechnologiesProtonVPNProtonVPN.UpdateService.exe [60136 2020-02-17] (ProtonVPN AG -&gt; )\nR2 RichVideo64; C:Program FilesCyberLinkShared filesRichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -&gt; )\nS3 rpcapd; C:Program Files (x86)WinPcaprpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nR2 RtkAudioService; C:Program FilesRealtekAudioHDARtkAudioService64.exe [293080 2015-03-04] (Realtek Semiconductor Corp -&gt; Realtek Semiconductor)\nR2 SecureLine; C:Program FilesAVAST SoftwareSecureLineVpnSvc.exe [6828424 2019-10-23] (AVAST Software s.r.o. -&gt; AVAST Software)\nR2 ss_conn_service; C:Program FilesSAMSUNGUSB Drivers25_escapeconnss_conn_service.exe [743688 2014-12-03] (DEVGURU CO LTD -&gt; DEVGURU Co., LTD.)\nR2 ss_conn_service2; C:Program FilesSamsungUSB Drivers28_ssconn2connss_conn_service2.exe [780328 2019-09-24] (DEVGURU Co., Ltd. -&gt; DEVGURU Co., LTD.)\nR2 SynTPEnhService; C:Program FilesSynapticsSynTPSynTPEnhService.exe [220840 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nS3 VBoxSDS; C:Program FilesOracleVirtualBoxVBoxSDS.exe [690424 2019-01-25] (Oracle Corporation -&gt; Oracle Corporation)\nR2 vToolbarUpdater40.3.8; C:Program Files (x86)Common FilesAVG Secure SearchvToolbarUpdater40.3.8ToolbarUpdater.exe [1371136 2019-01-28] (AVG Netherlands B.V. -&gt; AVG Secure Search)\nS3 WdNisSvc; C:Program FilesWindows DefenderNisSrv.exe [361824 2017-01-12] (Microsoft Corporation -&gt; Microsoft Corporation)\nS3 WinDefend; C:Program FilesWindows DefenderMsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -&gt; Microsoft Corporation)\nR2 WtuSystemSupport; C:Program Files (x86)AVG Web TuneUpWtuSystemSupport.exe [811520 2019-01-28] (AVG Netherlands B.V. -&gt; )\nS2 KMSServerService; C:WindowsKMSServerServiceKMS Server Service.exe  [X]","===================== Drivers (Whitelisted) ===================","(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","R3 Accelerometer; C:Windowssystem32DRIVERSAccelerometer.sys [44680 2015-01-27] (Hewlett-Packard Company -&gt; Hewlett-Packard)\nS3 aftap0901; C:Windowssystem32DRIVERSaftap0901.sys [48624 2017-11-16] (AnchorFree Inc -&gt; The OpenVPN Project)\nS3 akshasp; C:Windowssystem32DRIVERSakshasp.sys [90240 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nS3 aksusb; C:WindowsSystem32driversaksusb.sys [18688 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nR0 avgArDisk; C:WindowsSystem32driversavgArDisk.sys [37208 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgArPot; C:WindowsSystem32driversavgArPot.sys [205952 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgbidsdriver; C:WindowsSystem32driversavgbidsdriver.sys [234632 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgbidsh; C:WindowsSystem32driversavgbidsh.sys [178832 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgbuniv; C:WindowsSystem32driversavgbuniv.sys [61072 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgKbd; C:WindowsSystem32driversavgKbd.sys [42856 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 avgMonFlt; C:WindowsSystem32driversavgMonFlt.sys [175776 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgRdr; C:WindowsSystem32driversavgRdr2.sys [109336 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgRvrt; C:WindowsSystem32driversavgRvrt.sys [84928 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgSnx; C:WindowsSystem32driversavgSnx.sys [851664 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgSP; C:WindowsSystem32driversavgSP.sys [461064 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 avgStm; C:WindowsSystem32driversavgStm.sys [235552 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgVmm; C:WindowsSystem32driversavgVmm.sys [319184 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nS3 BlueStacksDrv; C:Program FilesBlueStacksBstkDrv.sys [313112 2019-03-14] (Bluestack Systems, Inc. -&gt; Bluestack System Inc.)\nS3 dg_ssudbus; C:Windowssystem32DRIVERSssudbus.sys [136040 2019-09-26] (Samsung Electronics Co., Ltd. -&gt; Samsung Electronics Co., Ltd.)\nR3 dtlitescsibus; C:WindowsSystem32driversdtlitescsibus.sys [30264 2016-04-28] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR3 dtliteusbbus; C:WindowsSystem32driversdtliteusbbus.sys [47672 2016-04-28] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nS2 Hardlock; C:Windowssystem32drivershardlock.sys [314368 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nR0 hpdskflt; C:WindowsSystem32DRIVERShpdskflt.sys [31880 2015-01-27] (Hewlett-Packard Company -&gt; Hewlett-Packard)\nR0 IntelHSWPcc; C:WindowsSystem32driversIntelPcc.sys [79528 2014-12-22] (Intel® Software -&gt; Intel Corporation)\nR1 JSWPSLWF; C:Windowssystem32DRIVERSjswpslwfx.sys [26624 2008-05-15] (Microsoft Windows Hardware Compatibility Publisher -&gt; Atheros Communications, Inc.)\nR3 kmloop; C:Windowssystem32DRIVERSloop.sys [15360 2013-08-22] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 libusbK; C:WindowsSystem32driverslibusbK.sys [47200 2016-08-02] (Travis Lee Robinson -&gt; hxxp://libusb-win32.sourceforge.net)\nR2 MBAMChameleon; C:WindowsSystem32DriversMbamChameleon.sys [214496 2020-05-22] (Malwarebytes Inc -&gt; Malwarebytes)\nR3 MBAMSwissArmy; C:WindowsSystem32Driversmbamswissarmy.sys [248968 2020-06-02] (Malwarebytes Inc -&gt; Malwarebytes)\nS3 MEIx64; C:Windowssystem32DRIVERSTeeDriverx64.sys [129312 2014-11-10] (Intel Corporation &#8211; Embedded Subsystems and IP Blocks Group -&gt; Intel Corporation)\nR1 npcap; C:Windowssystem32DRIVERSnpcap.sys [70968 2019-07-30] (Insecure.Com LLC -&gt; Insecure.Com LLC.)\nS4 npcap_wifi; C:Windowssystem32DRIVERSnpcap.sys [70968 2019-07-30] (Insecure.Com LLC -&gt; Insecure.Com LLC.)\nR2 NPF; C:WindowsSystem32driversnpf.sys [35344 2010-06-25] (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nR3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [19784 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvad_WaveExtensible; C:Windowssystem32driversnvvad64v.sys [38216 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS3 OXSDIDRV_x64; C:Windowssystem32DRIVERSOXSDIDRV_x64.sys [52384 2011-08-23] (PLX Technology, Inc. -&gt; )\nS3 OXUDIDRV; C:Windowssystem32DriversOXUDIDRV_X64.sys [31280 2010-05-25] (Oxford Semiconductor Ltd -&gt; )\nU5 PROCMON24; C:WindowsSystem32DriversPROCMON24.sys [90168 2020-06-02] (Microsoft Windows Hardware Compatibility Publisher -&gt; Sysinternals &#8211; www.sysinternals.com)\nU5 RTSUER; C:WindowsSystem32DriversRTSUER.sys [377048 2015-03-03] (Realtek Semiconductor Corp -&gt; Realsil Semiconductor Corporation)\nR3 ScpVBus; C:WindowsSystem32driversScpVBus.sys [39168 2013-05-19] (Bruce James -&gt; Scarlet.Crush Productions)\nS3 SmbDrv; C:WindowsSystem32driversSmb_driver_AMDASF.sys [33448 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nR3 SmbDrvI; C:Windowssystem32DRIVERSSmb_driver_Intel.sys [33448 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nS3 ssudmdm; C:Windowssystem32DRIVERSssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -&gt; Samsung Electronics Co., Ltd.)\nS3 tapprotonvpn; C:Windowssystem32DRIVERStapprotonvpn.sys [35768 2020-01-15] (ProtonVPN AG -&gt; The OpenVPN Project)\nS3 TIEHDUSB; C:WindowsSystem32driverstiehdusb.sys [128512 2012-03-07] (Microsoft Windows Hardware Compatibility Publisher -&gt; Texas Instruments)\nR3 USBPcap; C:Windowssystem32DRIVERSUSBPcap.sys [40888 2017-08-20] (Tomasz Moń -&gt; USBPcap)\nR3 VBoxNetAdp; C:Windowssystem32DRIVERSVBoxNetAdp6.sys [235832 2019-01-28] (Oracle Corporation -&gt; Oracle Corporation)\nR1 VBoxNetLwf; C:Windowssystem32DRIVERSVBoxNetLwf.sys [247216 2019-01-28] (Oracle Corporation -&gt; Oracle Corporation)\nS3 vjoy; C:WindowsSystem32driversvjoy.sys [56440 2016-02-03] (Shaul Eizikovich -&gt; Shaul Eizikovich)\nR0 vsock; C:WindowsSystem32DRIVERSvsock.sys [92040 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nS3 WdBoot; C:Windowssystem32driversWdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -&gt; Microsoft Corporation)\nS3 WdFilter; C:Windowssystem32driversWdFilter.sys [274776 2017-01-12] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 WdNisDrv; C:WindowsSystem32DriversWdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -&gt; Microsoft Corporation)\nR3 WirelessButtonDriver; C:WindowsSystem32driversWirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nU3 aswbdisk; no ImagePath\nS3 cpuz140; ??C:UsersXXXXXXZZZ~1AppDataLocalTempcpuz140cpuz140_x64.sys [X] &lt;==== ATTENTION\nS3 esihdrv; ??C:UsersXXXXXXZZZ~1AppDataLocalTempesihdrv.sys [X] &lt;==== ATTENTION","==================== NetSvcs (Whitelisted) ===================","(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","==================== One month (created) ===================","(If an entry is included in the fixlist, the file/folder will be moved.)","2020-06-09 11:52 &#8211; 2020-06-09 11:54 &#8211; 000063509 _____ C:UsersXXXXXXZZZDownloadsFRST.txt\n2020-06-09 11:51 &#8211; 2020-06-09 11:51 &#8211; 002289152 _____ (Farbar) C:UsersXXXXXXZZZDownloadsFRST64.exe\n2020-06-07 23:48 &#8211; 2020-06-08 01:26 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsMobile ETH\n2020-06-07 16:57 &#8211; 2020-06-07 16:57 &#8211; 000226879 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; Reflexões Masculinas (Ed. 2008).pdf\n2020-06-07 16:56 &#8211; 2020-06-07 16:56 &#8211; 000393633 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; A Guerra da Paixão (Ed. 2005).pdf\n2020-06-07 16:56 &#8211; 2020-06-07 16:56 &#8211; 000321820 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; O Profano Feminino (Ed. 2008).pdf\n2020-06-07 16:55 &#8211; 2020-06-07 16:55 &#8211; 001413718 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; Como lidar com mulheres (Ed. 2008).pdf\n2020-06-05 14:57 &#8211; 2020-06-05 14:57 &#8211; 000000000 ____D C:Windowssystem32TasksMozilla\n2020-06-05 10:16 &#8211; 2020-06-05 10:17 &#8211; 169944728 _____ (Oracle Corporation) C:UsersXXXXXXZZZDownloadsjdk-14.0.1_windows-x64_bin.exe\n2020-06-05 10:12 &#8211; 2020-06-09 09:09 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Firefox\n2020-06-02 20:38 &#8211; 2020-06-02 20:38 &#8211; 000001505 _____ C:UsersXXXXXXZZZDesktopNetworkMiner.exe &#8211; Atalho.lnk\n2020-06-02 20:28 &#8211; 2020-06-02 20:28 &#8211; 000090168 ____H (Sysinternals &#8211; www.sysinternals.com) C:Windowssystem32DriversPROCMON24.SYS\n2020-06-02 20:18 &#8211; 2020-06-02 20:18 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadspowershell mtsploit 2\n2020-06-02 17:17 &#8211; 2020-06-02 17:17 &#8211; 000001208 _____ C:UsersXXXXXXZZZDesktopLegislação &#8211; Atalho.lnk\n2020-06-02 14:34 &#8211; 2020-06-02 14:34 &#8211; 000248968 _____ (Malwarebytes) C:Windowssystem32Driversmbamswissarmy.sys\n2020-06-02 11:16 &#8211; 2020-06-02 11:16 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalOsram_Lamp\n2020-06-02 10:08 &#8211; 2020-06-02 10:09 &#8211; 004189296 _____ C:UsersXXXXXXZZZDownloadsultrasurf.exe\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000002019 _____ C:UsersPublicDesktopPhilips_Cat.lnk\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000002019 _____ C:ProgramDataDesktopPhilips_Cat.lnk\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsPhilips Lighting\n2020-06-01 21:19 &#8211; 2020-06-01 21:21 &#8211; 000000000 ____D C:Program Files (x86)Philips Lighting\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000002048 _____ C:UsersPublicDesktopOSRAM Lamp PlugIn.lnk\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000002048 _____ C:ProgramDataDesktopOSRAM Lamp PlugIn.lnk\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsDIALux PlugIns\n2020-06-01 18:22 &#8211; 2020-06-01 18:23 &#8211; 000000000 ____D C:ProgramDataDIALux\n2020-06-01 18:22 &#8211; 2020-06-01 18:22 &#8211; 000000000 ____D C:ProgramDataDIALux PlugIns\n2020-06-01 18:17 &#8211; 2020-06-01 21:00 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsPHILIPS\n2020-06-01 18:17 &#8211; 2020-06-01 18:18 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsOSRAM\n2020-06-01 18:15 &#8211; 2020-06-01 18:15 &#8211; 001751775 _____ C:UsersXXXXXXZZZDownloads20190926-philips-truefashion-2-compact-st715t.zip\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsDIAL GmbH\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalStimulsoft\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalDIAL GmbH\n2020-06-01 12:15 &#8211; 2020-06-01 12:16 &#8211; 000038155 _____ C:DIALux Setup Information.txt\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000005721 _____ C:DIAL Communication Framework Setup Log.txt\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000001783 _____ C:UsersPublicDesktopDIALux evo.lnk\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000001783 _____ C:ProgramDataDesktopDIALux evo.lnk\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalSafeNet Sentinel\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:ProgramDataSafeNet Sentinel\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsDIALux evo\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:Program Files (x86)DIAL GmbH\n2020-06-01 12:13 &#8211; 2020-06-01 12:20 &#8211; 000656059 _____ C:WindowsDIALux Setup Log.txt\n2020-06-01 12:13 &#8211; 2020-06-01 12:14 &#8211; 000000000 ____D C:ProgramDataDIAL GmbH\n2020-06-01 12:13 &#8211; 2020-06-01 12:13 &#8211; 000000000 ____D C:Program FilesDIAL GmbH\n2020-06-01 12:02 &#8211; 2020-06-01 12:04 &#8211; 486796896 _____ (DIAL GmbH) C:UsersXXXXXXZZZDownloadsDIALux_evo_9.0.exe\n2020-05-28 14:18 &#8211; 2020-05-28 14:18 &#8211; 000090112 _____ C:UsersXXXXXXZZZDownloadsamipinkc2.exe\n2020-05-28 13:07 &#8211; 2020-05-28 13:07 &#8211; 000002391 _____ C:UsersXXXXXXZZZAppDataLocalrecently-used.xbel\n2020-05-28 12:56 &#8211; 2020-05-28 12:56 &#8211; 011226820 _____ C:UsersXXXXXXZZZDownloadsvulscan-master.zip\n2020-05-27 15:28 &#8211; 2020-05-27 15:28 &#8211; 000030719 _____ C:UsersXXXXXXZZZDownloadsc2 metasploit powershel.zip\n2020-05-24 14:46 &#8211; 2020-05-24 14:46 &#8211; 001227102 _____ C:UsersXXXXXXZZZDownloadsSGA10.zip\n2020-05-23 00:22 &#8211; 2020-05-23 00:22 &#8211; 000000018 _____ C:UsersXXXXXXZZZDesktopSerpentine Similar.txt\n2020-05-22 20:08 &#8211; 2020-05-22 20:09 &#8211; 000325072 _____ C:WindowsMinidump52220-169750-01.dmp\n2020-05-22 16:03 &#8211; 2020-05-22 16:03 &#8211; 000214496 _____ (Malwarebytes) C:Windowssystem32DriversMbamChameleon.sys\n2020-05-21 22:30 &#8211; 2020-05-21 22:30 &#8211; 000000083 _____ C:UsersXXXXXXZZZDesktopnmap.txt\n2020-05-21 10:47 &#8211; 2020-05-28 13:07 &#8211; 000000000 ____D C:UsersXXXXXXZZZ.zenmap\n2020-05-21 10:47 &#8211; 2020-05-21 10:47 &#8211; 000000986 _____ C:UsersXXXXXXZZZDesktopNmap &#8211; Zenmap GUI.lnk\n2020-05-21 10:47 &#8211; 2020-05-21 10:47 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsNmap\n2020-05-21 10:45 &#8211; 2020-05-24 17:36 &#8211; 000003112 _____ C:Windowssystem32Tasksnpcapwatchdog\n2020-05-21 10:43 &#8211; 2020-05-21 10:43 &#8211; 000000000 ____D C:WindowsSysWOW64Npcap\n2020-05-21 10:43 &#8211; 2020-05-21 10:43 &#8211; 000000000 ____D C:Windowssystem32Npcap\n2020-05-21 10:42 &#8211; 2020-05-28 13:00 &#8211; 000000000 ____D C:Program Files (x86)Nmap\n2020-05-21 00:50 &#8211; 2020-05-21 10:13 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsSGA10\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002203 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Earth Pro.lnk\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002191 _____ C:UsersPublicDesktopGoogle Earth Pro.lnk\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002191 _____ C:ProgramDataDesktopGoogle Earth Pro.lnk\n2020-05-17 13:58 &#8211; 2020-05-17 13:59 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsFotos Belém\n2020-05-16 22:15 &#8211; 2020-05-16 22:24 &#8211; 000002368 _____ C:UsersXXXXXXZZZDesktopRkill.txt\n2020-05-16 22:14 &#8211; 2020-05-16 22:14 &#8211; 001802704 _____ (Bleeping Computer, LLC) C:UsersXXXXXXZZZDownloadsrkill.exe\n2020-05-16 21:34 &#8211; 2020-05-16 21:34 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalclink\n2020-05-16 20:34 &#8211; 2020-05-16 20:40 &#8211; 000000000 ____D C:Appie\n2020-05-15 23:38 &#8211; 2020-05-15 23:38 &#8211; 000000193 _____ C:UsersXXXXXXZZZDesktopbiblio.txt\n2020-05-14 11:27 &#8211; 2020-05-14 11:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsZoom\n2020-05-14 11:20 &#8211; 2020-05-14 11:20 &#8211; 000001947 _____ C:UsersXXXXXXZZZDesktopZoom.lnk\n2020-05-14 11:19 &#8211; 2020-05-14 11:19 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsZoom\n2020-05-14 10:28 &#8211; 2020-04-30 04:49 &#8211; 000308736 _____ (Microsoft Corporation) C:Windowssystem32usbmon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 04:22 &#8211; 000881664 _____ (Microsoft Corporation) C:Windowssystem32printfilterpipelinesvc.exe\n2020-05-14 10:28 &#8211; 2020-04-30 03:55 &#8211; 001756672 _____ (Microsoft Corporation) C:Windowssystem32GdiPlus.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:43 &#8211; 001495040 _____ (Microsoft Corporation) C:WindowsSysWOW64GdiPlus.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:40 &#8211; 000309760 _____ (Microsoft Corporation) C:Windowssystem32WSDMon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:37 &#8211; 000216576 _____ (Microsoft Corporation) C:Windowssystem32tcpmon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:33 &#8211; 001096704 _____ (Microsoft Corporation) C:Windowssystem32localspl.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 022365896 _____ (Microsoft Corporation) C:Windowssystem32shell32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 003118032 _____ (Microsoft Corporation) C:Windowssystem32WpcMon.exe\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 001368592 _____ (Microsoft Corporation) C:Windowssystem32gdi32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 000722496 _____ (Microsoft Corporation) C:Windowssystem32SHCore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 000642488 _____ (Microsoft Corporation) C:Windowssystem32twinapi.appcore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:00 &#8211; 000374024 _____ (Adobe Systems Incorporated) C:Windowssystem32atmfd.dll\n2020-05-14 10:28 &#8211; 2020-04-16 06:15 &#8211; 025755136 _____ (Microsoft Corporation) C:Windowssystem32mshtml.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:30 &#8211; 019795840 _____ (Microsoft Corporation) C:WindowsSysWOW64shell32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:29 &#8211; 000561400 _____ (Microsoft Corporation) C:WindowsSysWOW64SHCore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:29 &#8211; 000493736 _____ (Microsoft Corporation) C:WindowsSysWOW64twinapi.appcore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:25 &#8211; 000316368 _____ (Adobe Systems Incorporated) C:WindowsSysWOW64atmfd.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:40 &#8211; 002911744 _____ (Microsoft Corporation) C:Windowssystem32iertutil.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:38 &#8211; 000581120 _____ (Microsoft Corporation) C:Windowssystem32vbscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:31 &#8211; 020291072 _____ (Microsoft Corporation) C:WindowsSysWOW64mshtml.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:31 &#8211; 000113152 _____ (Microsoft Corporation) C:Windowssystem32Windows.Security.Credentials.UI.UserConsentVerifier.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:28 &#8211; 000186880 _____ (Microsoft Corporation) C:Windowssystem32easwrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:27 &#8211; 005498880 _____ (Microsoft Corporation) C:Windowssystem32jscript9.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:27 &#8211; 000785408 _____ (Microsoft Corporation) C:Windowssystem32jscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:25 &#8211; 000546816 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.PointOfService.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:14 &#8211; 000497664 _____ (Microsoft Corporation) C:WindowsSysWOW64vbscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:11 &#8211; 002304000 _____ (Microsoft Corporation) C:WindowsSysWOW64iertutil.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:07 &#8211; 000084992 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Security.Credentials.UI.UserConsentVerifier.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:06 &#8211; 000463872 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.Usb.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:05 &#8211; 000147968 _____ (Microsoft Corporation) C:WindowsSysWOW64easwrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:04 &#8211; 000654336 _____ (Microsoft Corporation) C:WindowsSysWOW64jscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:03 &#8211; 000365568 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.PointOfService.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:59 &#8211; 001994240 _____ (Microsoft Corporation) C:Windowssystem32DWrite.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:59 &#8211; 001033216 _____ (Microsoft Corporation) C:Windowssystem32inetcomm.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:54 &#8211; 015478272 _____ (Microsoft Corporation) C:Windowssystem32ieframe.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:53 &#8211; 003258368 _____ (Microsoft Corporation) C:Windowssystem32Wpc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:53 &#8211; 000262144 _____ (Microsoft Corporation) C:Windowssystem32webcheck.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:51 &#8211; 000809472 _____ (Microsoft Corporation) C:Windowssystem32msfeeds.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:50 &#8211; 001384960 _____ (Microsoft Corporation) C:Windowssystem32FntCache.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:49 &#8211; 002942464 _____ (Microsoft Corporation) C:Windowssystem32WpcWebSync.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:49 &#8211; 002132992 _____ (Microsoft Corporation) C:Windowssystem32inetcpl.cpl\n2020-05-14 10:28 &#8211; 2020-04-16 03:48 &#8211; 000310784 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.Usb.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:43 &#8211; 000880640 _____ (Microsoft Corporation) C:WindowsSysWOW64inetcomm.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:41 &#8211; 004112384 _____ (Microsoft Corporation) C:WindowsSysWOW64jscript9.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:41 &#8211; 002471424 _____ (Microsoft Corporation) C:WindowsSysWOW64Wpc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:40 &#8211; 001085440 _____ (Microsoft Corporation) C:WindowsSysWOW64gdi32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:39 &#8211; 001560064 _____ (Microsoft Corporation) C:WindowsSysWOW64DWrite.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:39 &#8211; 000696320 _____ (Microsoft Corporation) C:WindowsSysWOW64msfeeds.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:38 &#8211; 002058752 _____ (Microsoft Corporation) C:WindowsSysWOW64inetcpl.cpl\n2020-05-14 10:28 &#8211; 2020-04-16 03:38 &#8211; 000333312 _____ (Microsoft Corporation) C:WindowsSysWOW64iedkcs32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:37 &#8211; 004859392 _____ (Microsoft Corporation) C:Windowssystem32wininet.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:35 &#8211; 013861376 _____ (Microsoft Corporation) C:WindowsSysWOW64ieframe.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:35 &#8211; 000254976 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.HumanInterfaceDevice.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:32 &#8211; 000689152 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.Bluetooth.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:30 &#8211; 014533632 _____ (Microsoft Corporation) C:Windowssystem32twinui.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:28 &#8211; 000902656 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.SmartCards.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:27 &#8211; 000173056 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.HumanInterfaceDevice.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 012880384 _____ (Microsoft Corporation) C:WindowsSysWOW64twinui.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 001566720 _____ (Microsoft Corporation) C:Windowssystem32urlmon.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 000466432 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.Bluetooth.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:24 &#8211; 007799296 _____ (Microsoft Corporation) C:Windowssystem32Windows.Data.Pdf.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:23 &#8211; 000626688 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.SmartCards.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:22 &#8211; 000068096 _____ (Microsoft Corporation) C:Windowssystem32ConfigureExpandedStorage.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:20 &#8211; 004387328 _____ (Microsoft Corporation) C:WindowsSysWOW64wininet.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:20 &#8211; 000052736 _____ (Microsoft Corporation) C:WindowsSysWOW64ConfigureExpandedStorage.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:19 &#8211; 001265152 _____ (Microsoft Corporation) C:Windowssystem32schedsvc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:18 &#8211; 005271552 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Data.Pdf.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:16 &#8211; 001341952 _____ (Microsoft Corporation) C:WindowsSysWOW64urlmon.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:15 &#8211; 000800768 _____ (Microsoft Corporation) C:Windowssystem32ieapfltr.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:15 &#8211; 000710144 _____ (Microsoft Corporation) C:WindowsSysWOW64ieapfltr.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:14 &#8211; 001727488 _____ (Microsoft Corporation) C:Windowssystem32Windows.UI.Immersive.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 001546752 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.UI.Immersive.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 000140288 _____ (Microsoft Corporation) C:Windowssystem32efswrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 000104448 _____ (Microsoft Corporation) C:WindowsSysWOW64efswrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:07 &#8211; 000156160 _____ (Microsoft Corporation) C:WindowsSysWOW64PlayToManager.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:05 &#8211; 000229888 _____ (Microsoft Corporation) C:Windowssystem32PlayToManager.dll\n2020-05-14 10:28 &#8211; 2020-04-14 08:33 &#8211; 000205824 _____ (Microsoft Corporation) C:Windowssystem32scrrun.dll\n2020-05-14 10:28 &#8211; 2020-04-14 08:03 &#8211; 000168448 _____ (Microsoft Corporation) C:WindowsSysWOW64scrrun.dll\n2020-05-14 10:28 &#8211; 2020-04-11 19:42 &#8211; 007362296 _____ (Microsoft Corporation) C:Windowssystem32ntoskrnl.exe\n2020-05-14 10:28 &#8211; 2020-04-11 19:41 &#8211; 000376568 _____ (Microsoft Corporation) C:Windowssystem32Driversclfs.sys\n2020-05-14 10:28 &#8211; 2020-04-11 19:39 &#8211; 001542696 _____ (Microsoft Corporation) C:Windowssystem32user32.dll\n2020-05-14 10:28 &#8211; 2020-04-11 19:29 &#8211; 001737720 _____ (Microsoft Corporation) C:Windowssystem32ntdll.dll\n2020-05-14 10:28 &#8211; 2020-04-11 18:31 &#8211; 001501096 _____ (Microsoft Corporation) C:WindowsSysWOW64ntdll.dll\n2020-05-14 10:28 &#8211; 2020-04-11 18:04 &#8211; 004168704 _____ (Microsoft Corporation) C:Windowssystem32win32k.sys\n2020-05-14 10:28 &#8211; 2020-04-11 16:55 &#8211; 000194560 _____ (Microsoft Corporation) C:Windowssystem32winsrv.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:53 &#8211; 000112128 _____ (Microsoft Corporation) C:Windowssystem32vaultcli.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:48 &#8211; 001377792 _____ (Microsoft Corporation) C:WindowsSysWOW64user32.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:47 &#8211; 000260608 _____ (Microsoft Corporation) C:Windowssystem32vaultsvc.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:23 &#8211; 001317888 _____ (Microsoft Corporation) C:Windowssystem32Windows.Media.Streaming.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:22 &#8211; 001103872 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Media.Streaming.dll\n2020-05-14 10:28 &#8211; 2020-04-11 01:12 &#8211; 002446576 _____ (Microsoft Corporation) C:Windowssystem32Driverstcpip.sys\n2020-05-14 10:28 &#8211; 2020-04-11 01:12 &#8211; 000428784 _____ (Microsoft Corporation) C:Windowssystem32DriversFWPKCLNT.SYS\n2020-05-14 10:28 &#8211; 2020-04-09 14:36 &#8211; 001311744 _____ (Microsoft Corporation) C:WindowsSysWOW64msjet40.dll\n2020-05-14 10:28 &#8211; 2020-04-07 20:30 &#8211; 000988472 _____ (Microsoft Corporation) C:Windowssystem32mfsrcsnk.dll\n2020-05-14 10:28 &#8211; 2020-04-07 20:28 &#8211; 000857320 _____ (Microsoft Corporation) C:WindowsSysWOW64mfsrcsnk.dll\n2020-05-14 10:28 &#8211; 2020-04-07 14:55 &#8211; 003330048 _____ (Microsoft Corporation) C:Windowssystem32msi.dll\n2020-05-14 10:28 &#8211; 2020-04-07 14:51 &#8211; 003636224 _____ (Microsoft Corporation) C:WindowsSysWOW64msi.dll\n2020-05-14 10:28 &#8211; 2020-04-04 17:06 &#8211; 000879616 _____ (Microsoft Corporation) C:Windowssystem32rasdlg.dll\n2020-05-14 10:28 &#8211; 2020-04-04 17:01 &#8211; 001572864 _____ (Microsoft Corporation) C:Windowssystem32wbengine.exe\n2020-05-14 10:28 &#8211; 2020-04-04 16:50 &#8211; 000795136 _____ (Microsoft Corporation) C:WindowsSysWOW64rasdlg.dll\n2020-05-14 10:13 &#8211; 2020-05-13 09:42 &#8211; 000338104 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32avgBoot.exe\n2020-05-13 16:42 &#8211; 2020-05-13 16:43 &#8211; 140053773 _____ C:UsersXXXXXXZZZDownloadsHAPv5.11.zip\n2020-05-13 09:43 &#8211; 2020-05-13 09:42 &#8211; 000235552 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgStm.sys\n2020-05-13 09:43 &#8211; 2020-05-13 09:42 &#8211; 000175776 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgMonFlt.sys\n2020-05-11 16:42 &#8211; 2020-06-08 02:05 &#8211; 000000000 ____D C:Windowssystem32TasksAVAST Software\n2020-05-10 21:06 &#8211; 2020-05-10 21:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingQtProject\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000001201 _____ C:UsersPublicDesktopMiniTool Power Data Recovery 8.8.lnk\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000001201 _____ C:ProgramDataDesktopMiniTool Power Data Recovery 8.8.lnk\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsMiniTool Power Data Recovery\n2020-05-10 20:58 &#8211; 2020-05-10 22:38 &#8211; 000000000 ____D C:Program Files (x86)MiniTool PowerDataRecovery\n2020-05-10 20:51 &#8211; 2020-05-10 20:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsDiskInternals\n2020-05-10 20:51 &#8211; 2020-05-10 20:51 &#8211; 000000000 ____D C:Program Files (x86)DiskInternals\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000001677 _____ C:UsersPublicDesktopRecuva.lnk\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000001677 _____ C:ProgramDataDesktopRecuva.lnk\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsRecuva\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000000000 ____D C:Program FilesRecuva","==================== One month (modified) ==================","(If an entry is included in the fixlist, the file/folder will be moved.)","2020-06-09 11:59 &#8211; 2018-07-01 02:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalLowMozilla\n2020-06-09 11:53 &#8211; 2020-04-22 15:26 &#8211; 000000000 ____D C:FRST\n2020-06-09 11:52 &#8211; 2019-09-18 14:54 &#8211; 000000594 _____ C:WindowsTasksG2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job\n2020-06-09 11:39 &#8211; 2020-04-22 15:39 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsSMsec\n2020-06-09 11:31 &#8211; 2020-04-24 12:21 &#8211; 000000000 ___RD C:UsersXXXXXXZZZDocumentsMEGAsync uploads\n2020-06-09 11:22 &#8211; 2019-09-18 14:54 &#8211; 000000690 _____ C:WindowsTasksG2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job\n2020-06-09 11:16 &#8211; 2015-05-05 05:06 &#8211; 000818068 _____ C:Windowssystem32prfh0816.dat\n2020-06-09 11:16 &#8211; 2015-05-05 05:06 &#8211; 000175394 _____ C:Windowssystem32prfc0816.dat\n2020-06-09 11:16 &#8211; 2014-11-21 05:42 &#8211; 001956190 _____ C:Windowssystem32PerfStringBackup.INI\n2020-06-09 11:16 &#8211; 2013-08-22 14:36 &#8211; 000000000 ____D C:WindowsInf\n2020-06-09 10:45 &#8211; 2020-05-02 10:45 &#8211; 000000374 _____ C:WindowsTasksHPCeeScheduleForXXXXXXZZZ.job\n2020-06-09 09:34 &#8211; 2016-03-18 21:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsYoucam\n2020-06-09 09:33 &#8211; 2018-07-27 23:43 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalCrashDumps\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000003700 _____ C:Windowssystem32TasksG2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000003604 _____ C:Windowssystem32TasksG2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalGoToMeeting\n2020-06-09 09:24 &#8211; 2020-03-19 19:44 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalAVAST Software\n2020-06-09 09:21 &#8211; 2020-03-16 11:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingSpotify\n2020-06-09 09:21 &#8211; 2016-04-23 21:50 &#8211; 000000000 ____D C:ProgramDataAvg\n2020-06-09 09:17 &#8211; 2016-03-18 21:20 &#8211; 000000000 __RDO C:UsersXXXXXXZZZOneDrive\n2020-06-09 09:17 &#8211; 2016-03-18 21:14 &#8211; 000000000 __SHD C:UsersXXXXXXZZZIntelGraphicsProfiles\n2020-06-09 09:10 &#8211; 2019-04-05 12:40 &#8211; 000000000 ____D C:ProgramDataVMware\n2020-06-09 09:10 &#8211; 2017-11-30 18:27 &#8211; 000000434 _____ C:WindowsTasksDriver Easy Scheduled Scan.job\n2020-06-09 09:10 &#8211; 2013-08-22 15:45 &#8211; 000000006 ____H C:WindowsTasksSA.DAT\n2020-06-09 09:10 &#8211; 2013-08-22 15:44 &#8211; 001175584 _____ C:Windowssystem32FNTCACHE.DAT\n2020-06-09 09:09 &#8211; 2016-05-02 18:14 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service\n2020-06-08 02:12 &#8211; 2013-08-22 14:25 &#8211; 000524288 ___SH C:Windowssystem32configBBI\n2020-06-08 02:05 &#8211; 2020-05-02 10:45 &#8211; 000003202 _____ C:Windowssystem32TasksHPCeeScheduleForXXXXXXZZZ\n2020-06-08 02:05 &#8211; 2019-06-24 09:55 &#8211; 000004188 _____ C:Windowssystem32TasksAvast SecureLine VPN Update\n2020-06-08 02:05 &#8211; 2019-03-27 15:39 &#8211; 000003874 _____ C:Windowssystem32TasksBlueStacksHelper\n2020-06-08 02:05 &#8211; 2019-03-14 12:51 &#8211; 000004128 _____ C:Windowssystem32TasksCCleaner Update\n2020-06-08 02:05 &#8211; 2019-03-14 12:51 &#8211; 000002818 _____ C:Windowssystem32TasksCCleanerSkipUAC\n2020-06-08 02:05 &#8211; 2018-03-13 10:37 &#8211; 000004472 _____ C:Windowssystem32TasksAdobe Flash Player NPAPI Notifier\n2020-06-08 02:05 &#8211; 2018-01-19 14:55 &#8211; 000003108 _____ C:Windowssystem32Tasks7A5E22F3-13A6-4040-B1C5-E4043B449990\n2020-06-08 02:05 &#8211; 2017-11-30 18:27 &#8211; 000003832 _____ C:Windowssystem32TasksDriver Easy Scheduled Scan\n2020-06-08 02:05 &#8211; 2017-06-28 03:34 &#8211; 000004324 _____ C:Windowssystem32TasksAdobe Flash Player Updater\n2020-06-08 02:05 &#8211; 2017-04-06 22:46 &#8211; 000004174 _____ C:Windowssystem32TasksAntivirus Emergency Update\n2020-06-08 02:05 &#8211; 2016-04-18 20:31 &#8211; 000003646 _____ C:Windowssystem32TasksHPCustParticipation HP Deskjet 3050 J610 series\n2020-06-08 02:05 &#8211; 2016-03-31 20:06 &#8211; 000004476 _____ C:Windowssystem32TasksAdobe Acrobat Update Task\n2020-06-08 02:05 &#8211; 2016-03-18 21:26 &#8211; 000003444 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineUA\n2020-06-08 02:05 &#8211; 2016-03-18 21:26 &#8211; 000003316 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineCore\n2020-06-08 02:05 &#8211; 2015-06-04 18:43 &#8211; 000002118 _____ C:Windowssystem32TasksAvast SecureLine\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002986 _____ C:Windowssystem32TasksStart SimplePass\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002924 _____ C:Windowssystem32TasksStart OPBHOBrokerDesktop\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002912 _____ C:Windowssystem32TasksStart OPBHOBroker\n2020-06-07 17:15 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32NDF\n2020-06-07 14:53 &#8211; 2016-04-28 13:32 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsDepesas anuais\n2020-06-07 14:09 &#8211; 2019-07-18 11:12 &#8211; 000000000 ____D C:UsersXXXXXXZZZ.VirtualBox\n2020-06-07 13:56 &#8211; 2019-07-18 11:12 &#8211; 000000000 ____D C:ProgramDataVirtualBox\n2020-06-05 15:12 &#8211; 2016-03-18 21:21 &#8211; 000003600 _____ C:Windowssystem32TasksOptimize Start Menu Cache Files-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-05 14:57 &#8211; 2016-05-02 18:14 &#8211; 000001182 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsFirefox.lnk\n2020-06-05 09:41 &#8211; 2016-03-18 21:27 &#8211; 000002247 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk\n2020-06-04 18:33 &#8211; 2020-05-04 21:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingxarp-XXXXXXZZZ\n2020-06-04 13:20 &#8211; 2016-03-31 20:06 &#8211; 000002086 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk\n2020-06-02 19:55 &#8211; 2018-06-24 15:52 &#8211; 000001277 _____ C:UsersXXXXXXZZZDesktopMUSICA.txt &#8211; Atalho.lnk\n2020-06-02 19:27 &#8211; 2016-03-18 21:12 &#8211; 000000000 ____D C:UsersXXXXXXZZZ\n2020-06-02 11:21 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowstracing\n2020-06-01 21:21 &#8211; 2015-05-04 20:52 &#8211; 000000000 ___HD C:Program Files (x86)InstallShield Installation Information\n2020-05-29 08:53 &#8211; 2015-06-04 18:15 &#8211; 000000000 ____D C:ProgramDataRealtek\n2020-05-28 23:50 &#8211; 2016-04-25 18:02 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingvlc\n2020-05-28 00:58 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:WindowsAppReadiness\n2020-05-28 00:46 &#8211; 2017-12-10 17:58 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsFacebook\n2020-05-28 00:38 &#8211; 2020-04-22 15:36 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsJogos\n2020-05-28 00:14 &#8211; 2017-03-04 00:04 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsXadrez\n2020-05-28 00:12 &#8211; 2016-12-17 17:46 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsSegurança Social\n2020-05-28 00:11 &#8211; 2018-06-24 15:40 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsProgramas\n2020-05-28 00:11 &#8211; 2016-04-30 18:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsProgramas instalados\n2020-05-28 00:10 &#8211; 2016-05-12 20:08 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsOutros\n2020-05-28 00:09 &#8211; 2018-05-06 16:14 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsLivros\n2020-05-27 13:56 &#8211; 2019-11-04 15:58 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsNetworkMiner_2-5\n2020-05-27 10:01 &#8211; 2015-05-04 20:48 &#8211; 000000000 ____D C:Program Files (x86)Hewlett-Packard\n2020-05-26 18:00 &#8211; 2016-04-28 01:41 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalMicrosoft Help\n2020-05-26 12:34 &#8211; 2020-03-16 11:07 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalSpotify\n2020-05-25 09:55 &#8211; 2020-04-30 19:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsETH\n2020-05-22 20:08 &#8211; 2016-05-24 22:12 &#8211; 000000000 ____D C:WindowsMinidump\n2020-05-22 20:00 &#8211; 2017-04-03 19:15 &#8211; 000000000 ___RD C:UsersXXXXXXZZZGoogle Drive\n2020-05-22 12:21 &#8211; 2019-02-07 10:56 &#8211; 000000000 ___RD C:UsersXXXXXXZZZDocumentsMEGA\n2020-05-21 10:45 &#8211; 2020-03-31 18:09 &#8211; 000000000 ____D C:Program FilesNpcap\n2020-05-21 01:37 &#8211; 2016-04-23 21:45 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsPasses\n2020-05-19 10:20 &#8211; 2018-03-22 22:48 &#8211; 000000000 ____D C:Program FilesGoogle\n2020-05-18 22:34 &#8211; 2013-08-22 16:20 &#8211; 000000000 ____D C:WindowsCbsTemp\n2020-05-18 12:33 &#8211; 2016-03-18 21:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalPackages\n2020-05-18 12:32 &#8211; 2013-08-22 16:36 &#8211; 000000000 ___HD C:Program FilesWindowsApps\n2020-05-17 15:20 &#8211; 2019-07-18 11:13 &#8211; 000000000 ____D C:UsersXXXXXXZZZVirtualBox VMs\n2020-05-17 13:12 &#8211; 2019-04-24 01:38 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingTelegram Desktop\n2020-05-16 21:57 &#8211; 2015-06-04 18:43 &#8211; 000000000 ____D C:ProgramDataAVAST Software\n2020-05-16 21:48 &#8211; 2016-06-27 16:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingACEStream\n2020-05-16 21:48 &#8211; 2016-06-27 16:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoaming.ACEStream\n2020-05-16 04:27 &#8211; 2016-03-31 22:45 &#8211; 000000000 ____D C:Windowssystem32MRT\n2020-05-16 04:22 &#8211; 2013-08-22 16:36 &#8211; 000000000 ___RD C:WindowsToastData\n2020-05-16 04:22 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32inetsrv\n2020-05-15 23:46 &#8211; 2018-04-26 15:42 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalDesignBuilder\n2020-05-15 23:46 &#8211; 2018-04-26 15:36 &#8211; 000000000 ____D C:ProgramDataDesignBuilder\n2020-05-15 23:43 &#8211; 2020-04-18 19:52 &#8211; 000000000 ____D C:Program Files (x86)TeamViewer\n2020-05-15 23:42 &#8211; 2019-12-08 18:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsWugFresh Development\n2020-05-15 23:41 &#8211; 2020-01-11 03:43 &#8211; 000000000 ____D C:Program Files (x86)Kingo ROOT\n2020-05-15 23:41 &#8211; 2018-05-20 03:24 &#8211; 000000000 ____D C:Program Files (x86)Facebook Friend Mapper\n2020-05-15 23:41 &#8211; 2016-03-29 22:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingDropboxOEM\n2020-05-15 11:41 &#8211; 2016-03-31 22:45 &#8211; 120636720 ____C (Microsoft Corporation) C:Windowssystem32MRT.exe\n2020-05-14 11:19 &#8211; 2020-04-09 12:17 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingZoom\n2020-05-13 23:42 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:WindowsSysWOW64Macromed\n2020-05-13 23:42 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32Macromed\n2020-05-13 22:38 &#8211; 2016-04-18 20:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalHP\n2020-05-13 10:44 &#8211; 2020-04-28 14:25 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalLowIGDump\n2020-05-13 09:42 &#8211; 2019-01-07 00:31 &#8211; 000061072 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbuniv.sys\n2020-05-13 09:42 &#8211; 2019-01-07 00:31 &#8211; 000037208 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgArDisk.sys\n2020-05-13 09:42 &#8211; 2018-10-20 20:56 &#8211; 000042856 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgKbd.sys\n2020-05-13 09:42 &#8211; 2017-11-30 14:52 &#8211; 000205952 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgArPot.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000851664 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgSnx.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000461064 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgSP.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000319184 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgVmm.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000109336 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgRdr2.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000084928 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgRvrt.sys\n2020-05-13 09:41 &#8211; 2019-01-14 16:33 &#8211; 000234632 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbidsdriver.sys\n2020-05-13 09:41 &#8211; 2019-01-07 00:31 &#8211; 000178832 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbidsh.sys\n2020-05-12 17:41 &#8211; 2020-03-07 21:03 &#8211; 000000000 ____D C:ProgramDataProtonVPN\n2020-05-12 00:18 &#8211; 2018-02-25 20:28 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingWireshark\n2020-05-11 22:49 &#8211; 2020-03-24 22:50 &#8211; 000000000 ____D C:fakenet1.4.11\n2020-05-10 17:51 &#8211; 2016-04-10 14:24 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingAVAST Software\n2020-05-10 17:51 &#8211; 2015-06-04 18:43 &#8211; 000000000 ____D C:Program FilesAVAST Software","==================== Files in the root of some directories ========","2020-01-03 14:39 &#8211; 2020-01-03 14:39 &#8211; 003185243 _____ () C:Program FilesHxDSetup.zip\n2020-02-26 13:17 &#8211; 2020-02-26 13:17 &#8211; 003341981 _____ () C:Program FilesSnort_2_9_15_1_Installer.exe\n2017-11-28 12:01 &#8211; 2017-11-28 12:03 &#8211; 007649280 _____ () C:Program Files (x86)GUTAEE6.tmp\n2020-05-28 13:07 &#8211; 2020-05-28 13:07 &#8211; 000002391 _____ () C:UsersXXXXXXZZZAppDataLocalrecently-used.xbel\n2020-01-11 03:44 &#8211; 2020-01-11 03:59 &#8211; 000000068 _____ () C:UsersXXXXXXZZZAppDataLocaluts.ini\n2020-05-21 10:47 &#8211; 2020-05-28 11:12 &#8211; 000000286 _____ () C:UsersXXXXXXZZZAppDataLocalzenmap.exe.log","==================== SigCheck ============================","(There is no automatic fix for files that do not pass verification.)","LastRegBack: 2020-04-08 11:59\n==================== End of FRST.txt ========================\nAlso, the Addition.txt:","Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-06-2020\nRan by XXXXXXZZZ (09-06-2020 12:01:08)\nRunning from C:UsersXXXXXXZZZDownloads\nWindows 8.1 (Update) (X64) (2016-03-18 20:13:59)\nBoot Mode: Normal\n==========================================================","==================== Accounts: =============================","Administrador (S-1-5-21-3751382696-3894377064-3631472648-500 &#8211; Administrator &#8211; Disabled)\nConvidado (S-1-5-21-3751382696-3894377064-3631472648-501 &#8211; Limited &#8211; Disabled)\nXXXXXXZZZ (S-1-5-21-3751382696-3894377064-3631472648-1001 &#8211; Administrator &#8211; Enabled) =&gt; C:UsersXXXXXXZZZ","==================== Security Center ========================","(If an entry is included in the fixlist, it will be removed.)","AV: Windows Defender (Disabled &#8211; Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46\nAV: AVG Antivirus (Enabled &#8211; Up to date) 18A975F9-A60C-37D8-E30B-4BEF31AD3411\nAS: AVG Antivirus (Enabled &#8211; Up to date) A3C8941D-8036-3856-D9BB-709D4A2A7EAC\nAS: Windows Defender (Disabled &#8211; Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46","==================== Installed Programs ======================","(Only the adware programs with &quot;Hidden&quot; flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)","[PS3]  Save Resigner (HKLM-x32&#8230;[PS3] Save Resigner 2.0.2) (Version: 2.0.2 &#8211; The Prince of Codes)\n[PS3]  Save Resigner (HKLM-x32&#8230;96CF2F0B-EBB0-4D7F-852F-C54A30C8E5CF) (Version: 2.0.2 &#8211; The Prince of Codes) Hidden\nµTorrent (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;uTorrent) (Version: 3.5.5.45505 &#8211; BitTorrent Inc.)\n7-Zip 9.20 (x64 edition) (HKLM&#8230;23170F69-40C1-2702-0920-000001000000) (Version: 9.20.00.0 &#8211; Igor Pavlov)\nA360 Desktop (HKLM&#8230;7758802D-9486-4883-9927-CCAC366A3BA4) (Version: 7.2.3.1800 &#8211; Autodesk)\nACA &amp; MEP 2017 Object Enabler (HKLM&#8230;28B89EEF-0004-0000-5102-CF3F3A09B77D) (Version: 7.9.45.0 &#8211; Autodesk) Hidden\nACAD Private (HKLM&#8230;28B89EEF-0001-0000-3102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nActualizações da NVIDIA 16.13.65 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Update) (Version: 16.13.65 &#8211; NVIDIA Corporation) Hidden\nAdobe Acrobat Reader DC &#8211; Português (HKLM-x32&#8230;AC76BA86-7AD7-1046-7B44-AC0F074E4100) (Version: 20.009.20067 &#8211; Adobe Systems Incorporated)\nAdobe Acrobat XI Pro (HKLM-x32&#8230;AC76BA86-1033-FFFF-7760-000000000006) (Version: 11.0.12 &#8211; Adobe Systems)\nAdobe Flash Player 32 NPAPI (HKLM-x32&#8230;Adobe Flash Player NPAPI) (Version: 32.0.0.371 &#8211; Adobe)\nAdobe Shockwave Player 12.1 (HKLM-x32&#8230;Adobe Shockwave Player) (Version: 12.1.7.157 &#8211; Adobe Systems, Inc.)\nAimersoft Helper Compact 2.5.2 (HKLM-x32&#8230;405147F7-FCC5-499B-A27E-EA6BD4A80435_is1) (Version: 2.5.2 &#8211; Aimersoft)\nAndroid Rom Dumper version 1.3.5 (HKLM-x32&#8230;595D7D79-D70F-4930-A450-BF06B628EE2D_is1) (Version: 1.3.5 &#8211; BoxWares Team)\nAndroid Studio (HKLM&#8230;Android Studio) (Version: 3.6 &#8211; Google LLC)\nAndroid Toolkit 2.0.30 (HKLM-x32&#8230;F9441FCC-1C08-4933-939F-0E8A27D6C0CE_is1) (Version: 2.0.30 &#8211; Apeaksoft Studio)\nAny DGN to DWG Converter 2018 (HKLM-x32&#8230;Any DGN to DWG Converter_is1) (Version:  &#8211; AnyDWG Software, Inc.)\nAny DWF to DWG Converter 2017 (HKLM-x32&#8230;Any DWF to DWG Converter_is1) (Version:  &#8211; AnyDWG Software, Inc.)\nAplicação de ambiente de trabalho Autodesk (HKLM-x32&#8230;Autodesk Desktop App) (Version: 7.0.9.191 &#8211; Autodesk)\nAplicativos da Autodesk em destaque 2016-2017 (HKLM-x32&#8230;27C15055-713B-4D0E-881F-19598A2DFD59) (Version: 2.2.0 &#8211; Autodesk)\nApplication Verifier x64 External Package (HKLM&#8230;10CA1677-8F02-3131-F25C-780BAB52E468) (Version: 10.1.18362.1 &#8211; Microsoft) Hidden\nAssistente de gestor de conteúdo para PlayStation® (HKLM-x32&#8230;E5C1C342-5E78-4D91-85BE-40C716B09391) (Version: 3.55.7671.0901 &#8211; Sony Computer Entertainment Inc.)\nAutoCAD 2017 &#8211; English (HKLM&#8230;28B89EEF-0001-0409-2102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutoCAD 2017 (HKLM&#8230;28B89EEF-0001-0000-0102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutoCAD 2017 Language Pack &#8211; English (HKLM&#8230;28B89EEF-0001-0409-1102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutodesk Advanced Material Library Image Library 2017 (HKLM-x32&#8230;8ED2ED41-4455-449D-993C-751C039089B9) (Version: 15.11.3.0 &#8211; Autodesk)\nAutodesk App Manager 2016-2017 (HKLM-x32&#8230;C0954809-F5DC-426C-847E-8409DE14E4C0) (Version: 2.2.0 &#8211; Autodesk)\nAutodesk AutoCAD 2017 &#8211; English (HKLM&#8230;AutoCAD 2017 &#8211; English) (Version: 21.0.52.0 &#8211; Autodesk)\nAutodesk AutoCAD Performance Feedback Tool 1.2.5 (HKLM-x32&#8230;8600F844-9AA5-412E-B6F2-F9C6CBCFD268) (Version: 1.2.5.0 &#8211; Autodesk)\nAutodesk BIM 360 Glue AutoCAD 2017 Add-in 64 bit (HKLM&#8230;276A67E0-71EB-4827-B5F7-2ACF02BC1A5B) (Version: 4.37.6853 &#8211; Autodesk)\nAutodesk Design Review (HKLM-x32&#8230;139C013B-5BAC-4101-BC6C-B2A78C0125A4) (Version: 14.0.0.177 &#8211; Autodesk) Hidden\nAutodesk Design Review (HKLM-x32&#8230;Autodesk Design Review) (Version: 14.0.0.177 &#8211; Autodesk)\nAutodesk DWG TrueView 2018 &#8211; English (HKLM&#8230;DWG TrueView 2018 &#8211; English) (Version: 22.0.50.0 &#8211; Autodesk)\nAutodesk License Service (x64) &#8211; 3.1 (HKLM&#8230;EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D) (Version: 3.1.26.0 &#8211; Autodesk)\nAutodesk Material Library 2017 (HKLM-x32&#8230;8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE) (Version: 15.11.3.0 &#8211; Autodesk)\nAutodesk Material Library Base Resolution Image Library 2017 (HKLM-x32&#8230;3FBFBC43-9882-43FA-B979-2D53896747B3) (Version: 15.11.3.0 &#8211; Autodesk)\nAutoDWG DWG DXF Converter 2019 (HKLM-x32&#8230;98D8413-1812-41BC-8AD5-2192A80AC23F) (Version:  &#8211; )\nAutoHotkey 1.1.24.01 (HKLM&#8230;AutoHotkey) (Version: 1.1.24.01 &#8211; Lexikos)\nAutopsy (HKLM&#8230;274E8015-93B6-470C-943B-5FDD6E803462) (Version: 4.13.0 &#8211; The Sleuth Kit)\nAvast SecureLine (HKLM&#8230;2CD3C92F-EDC5-4B02-9B0A-9C1D37C58EF5_is1) (Version: 1.0.220.2 &#8211; AVAST Software)\nAVG AntiVirus FREE (HKLM-x32&#8230;AVG Antivirus) (Version: 20.3.3120 &#8211; AVG Technologies)\nAVG TuneUp (HKLM-x32&#8230;949BE04F-D7E8-4C19-9F89-8B304AB4308A_is1) (Version: 19.1.1209 &#8211; AVG Technologies)\nAVG Web TuneUp (HKLM-x32&#8230;AVG Web TuneUp) (Version: 4.3.9.626 &#8211; AVG Technologies)\nBackup and Sync from Google (HKLM&#8230;FE296942-D2D3-4149-8895-60655FE4CFDE) (Version: 3.49.9800.0000 &#8211; Google, Inc.)\nBejeweled 3 (HKLM-x32&#8230;WTA-8fc518d5-0776-414b-8c35-d47a24361589) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nBlueStacks App Player (HKLM&#8230;BlueStacks) (Version: 4.60.3.1001 &#8211; BlueStack Systems, Inc.)\nBonjour (HKLM&#8230;6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D) (Version: 3.0.0.10 &#8211; Apple Inc.)\nBruteforce Save Data (HKLM-x32&#8230;Bruteforce Save Data) (Version:  &#8211; )\nBuild-a-lot (HKLM-x32&#8230;WTA-1122e411-4a7b-46f0-8a81-a325b319b16e) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nBuilding the Great Wall of China Collector&#39;s Edition (HKLM-x32&#8230;WTA-460b63ee-3e7e-405f-8860-c7ef48fb3a7e) (Version: 3.0.2.48 &#8211; WildTangent) Hidden\nCain &amp; Abel 4.9.56 (HKLM-x32&#8230;Cain &amp; Abel 4.9.56) (Version:  &#8211; )\nCCleaner (HKLM&#8230;CCleaner) (Version: 5.55 &#8211; Piriform)\nCisco EAP-FAST Module (HKLM-x32&#8230;64BF0187-F3D2-498B-99EA-163AF9AE6EC9) (Version: 2.2.14 &#8211; Cisco Systems, Inc.)\nCisco LEAP Module (HKLM-x32&#8230;AF312B06-5C5C-468E-89B3-BE6DE2645722) (Version: 1.0.19 &#8211; Cisco Systems, Inc.)\nCisco PEAP Module (HKLM-x32&#8230;A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F) (Version: 1.1.6 &#8211; Cisco Systems, Inc.)\nCrazy Chicken Soccer (HKLM-x32&#8230;WTA-ee1c9a77-df4c-46ab-a6b3-85ad880357a3) (Version: 2.2.0.110 &#8211; WildTangent) Hidden\nCyberLink Media Suite 10 (HKLM-x32&#8230;InstallShield_1FBF6C24-C1fD-4101-A42B-0C564F9E8E79) (Version: 10.0.9.4928 &#8211; CyberLink Corp.)\nCyberlink PhotoDirector (HKLM&#8230;5A454EC5-217A-42a5-8CE1-2DDEC4E70E01) (Version: 5.0.4.6303 &#8211; Nome da empresa:) Hidden\nCyberlink PhotoDirector (HKLM-x32&#8230;InstallShield_5A454EC5-217A-42a5-8CE1-2DDEC4E70E01) (Version: 5.0.4.6303 &#8211; CyberLink Corp.)\nCyberLink Power2Go 8 (HKLM-x32&#8230;InstallShield_2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2) (Version: 8.0.9.5009 &#8211; CyberLink Corp.)\nCyberLink PowerBackup 2.6 (HKLM-x32&#8230;InstallShield_ADD5DB49-72CF-11D8-9D75-000129760D75) (Version: 2.6.2.1307 &#8211; CyberLink Corp.)\nCyberLink PowerDirector 12 (HKLM&#8230;E1646825-D391-42A0-93AA-27FA810DA093) (Version: 12.0.3.3812 &#8211; Nome da empresa:) Hidden\nCyberLink PowerDirector 12 (HKLM-x32&#8230;InstallShield_E1646825-D391-42A0-93AA-27FA810DA093) (Version: 12.0.3.3812 &#8211; CyberLink Corp.)\nCyberLink YouCam (HKLM-x32&#8230;InstallShield_01FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 5.0.6.5011 &#8211; CyberLink Corp.)\nDAEMON Tools Lite (HKLM&#8230;DAEMON Tools Lite) (Version: 10.3.0.0154 &#8211; Disc Soft Ltd)\nDelicious: Emily&#39;s Wonder Wedding Premium Edition (HKLM-x32&#8230;WTA-ab833d9b-3665-402d-b993-c99a471eeb10) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nDesignBuilder (HKLM-x32&#8230;9C306D70-8A6C-11D5-8CDF-00D0B78FC575) (Version: 5.3.0.014 &#8211; DesignBuilder Software Ltd.)\nDIAL Communication Framework (HKLM-x32&#8230;562D0D31-FBAF-4505-8B27-4EC92EEA91D6) (Version: 1.3.2.258 &#8211; DIAL GmbH)\nDIAL Data Dispatcher (HKLM-x32&#8230;DIAL Data Dispatcher1.0) (Version: 2.0.24.0 &#8211; DIAL GmbH)\nDIALux evo (x64) (HKLM-x32&#8230;5FF70775-5D3A-4A26-B9ED-1BF642E9987C) (Version: 5.9.0.49107 &#8211; DIAL GmbH)\nDisableMSDefender (HKLM&#8230;74FE39A0-FB76-47CD-84BA-91E2BBB17EF2) (Version: 1.0.0 &#8211; Hewlett-Packard Company) Hidden\nDiskInternals Partition Recovery (HKLM-x32&#8230;DiskInternals Partition Recovery) (Version: 7.6.2 &#8211; DiskInternals Research)\nDolphin (HKLM-x32&#8230;Dolphin) (Version: 4.0.2 &#8211; Dolphin Development Team)\nDraftSight 2017 SP0 x64 (HKLM&#8230;E78A1C28-8E3C-4CFB-82A4-077E7104F993) (Version: 17.0.2086 &#8211; Dassault Systemes)\nDriver Easy 5.5.5 (HKLM&#8230;DriverEasy_is1) (Version: 5.5.5 &#8211; Easeware)\nDWF to DWG Converter (HKLM-x32&#8230;909F0ECA-1A61-43F3-B2F2-D1A7AE79A444) (Version:  &#8211; )\nDWG TrueView 2018 &#8211; English (HKLM&#8230;28B89EEF-1028-0409-0100-CF3F3A09B77D) (Version: 22.0.50.0 &#8211; Autodesk) Hidden\nEaseUS Data Recovery Wizard (HKLM&#8230;EaseUS Data Recovery Wizard_is1) (Version:  &#8211; EaseUS)\nE-CAT / E20-II Configuration Services 2.21 (HKLM-x32&#8230;E-CAT / E20-II Configuration Services 2.21) (Version:  &#8211; )\nE-CAT Enable 2.11 (HKLM-x32&#8230;E-CAT Enable 2.11) (Version:  &#8211; )\nEnergy Star (HKLM&#8230;465CA2B6-98AF-4E77-BE22-A908C34BB9EC) (Version: 1.0.9 &#8211; Hewlett-Packard Company)\nEPSON Scan (HKLM-x32&#8230;EPSON Scanner) (Version:  &#8211; )\nEvernote v. 5.8.1 (HKLM-x32&#8230;4FD2D1C8-8636-11E4-9D21-00163E98E7D6) (Version: 5.8.1.6061 &#8211; Evernote Corp.)\nFoxit PhantomPDF (HKLM-x32&#8230;4E32271C-B55A-4CDF-8DB7-88FD1C45927C) (Version: 7.0.310.226 &#8211; Foxit Software Inc.)\nGenymotion version 3.1.0 (HKLM&#8230;6D180286-D4DF-40EF-9227-923B9C07C08A_is1) (Version: 3.1.0 &#8211; Genymobile)\nGit version 2.26.0 (HKLM&#8230;Git_is1) (Version: 2.26.0 &#8211; The Git Development Community)\nGoogle Chrome (HKLM-x32&#8230;Google Chrome) (Version: 83.0.4103.97 &#8211; Google LLC)\nGoogle Earth Pro (HKLM&#8230;B6EAFE41-5723-40EB-869B-4AF44CA17B35) (Version: 7.3.3.7699 &#8211; Google)\nGoogle Update Helper (HKLM-x32&#8230;60EC980A-BDA2-4CB6-A427-B07A5498B4CA) (Version: 1.3.35.451 &#8211; Google LLC) Hidden\nGoTo Opener (HKLM-x32&#8230;C0F33C38-345C-4C02-B161-11389350C2A5) (Version: 1.0.533 &#8211; LogMeIn, Inc.)\nGoToMeeting 10.10.1.17956 (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;GoToMeeting) (Version: 10.10.1.17956 &#8211; LogMeIn, Inc.)\nHardlock Device Drivers (HKLM-x32&#8230;Hardlock Device Drivers) (Version:  &#8211; )\nHewlett-Packard ACLM.NET v1.2.2.3 (HKLM-x32&#8230;6F340107-F9AA-47C6-B54C-C3A19F11553F) (Version: 1.00.0000 &#8211; Hewlett-Packard Company) Hidden\nHijack Hunter 1.8.4.1 (HKLM-x32&#8230;616A9B24-448B-4DF3-926A-C4141FCD692C_is1) (Version:  &#8211; NoVirusThanks Company Srl)\nHourly Analysis Program 4.91 (HKLM-x32&#8230;Hourly Analysis Program 4.91) (Version:  &#8211; Carrier Corporation)\nHP 3D DriveGuard (HKLM-x32&#8230;D817481A-193E-4332-A4F3-E19132F744F0) (Version: 6.0.24.1 &#8211; Hewlett-Packard Company)\nHP CoolSense (HKLM-x32&#8230;ADE2F6A7-E7BD-4955-BD66-30903B223DDF) (Version: 2.20.41 &#8211; Hewlett-Packard Company)\nHP Deskjet 3050 J610 series Ajuda (HKLM-x32&#8230;F7632A9B-661E-4FD9-B1A4-3B86BC99847F) (Version: 140.0.63.63 &#8211; Hewlett Packard)\nHP Deskjet 3050 J610 series Estudo de aprimoramento de produtos (HKLM&#8230;A954C7EA-DDD9-4055-BC48-E816F174F397) (Version: 28.0.1315.0 &#8211; Hewlett-Packard Co.)\nHP Deskjet 3050 J610 series Software básico do dispositivo (HKLM&#8230;E6E28DE7-446E-4E27-BE37-4B6D925A385B) (Version: 28.0.1315.0 &#8211; Hewlett-Packard Co.)\nHP Documentation (HKLM-x32&#8230;915AE95A-9009-41DB-9D9D-D57E17AAB48F) (Version: 1.1.0.0 &#8211; Hewlett-Packard)\nHP Photo Creations (HKLM-x32&#8230;HP Photo Creations) (Version: 1.0.0.7702 &#8211; HP)\nHP Registration Service (HKLM&#8230;D1E8F2D7-7794-4245-B286-87ED86C1893C) (Version: 1.2.7960.5089 &#8211; Hewlett-Packard)\nHP SimplePass (HKLM-x32&#8230;InstallShield_314FAD12-F785-4471-BCE8-AB506642B9A1) (Version: 8.01.39 &#8211; Hewlett-Packard)\nHP Support Assistant (HKLM-x32&#8230;E959FD01-BD01-4CC4-9BB8-4EBE8309BF37) (Version: 8.8.26.13 &#8211; HP)\nHP Support Solutions Framework (HKLM-x32&#8230;7463C61B-A36C-47BC-8E16-701EBC34C26F) (Version: 12.16.22.11 &#8211; HP)\nHP System Event Utility (HKLM-x32&#8230;3EDAF5B5-0CA9-4967-B103-FBFF1162C336) (Version: 1.2.10 &#8211; Hewlett-Packard Company)\nHP Update (HKLM-x32&#8230;912D30CF-F39E-4B31-AD9A-123C6B794EE2) (Version: 5.005.002.002 &#8211; Hewlett-Packard)\nHP Wireless Button Driver (HKLM-x32&#8230;30B2D1D8-0A07-4B71-9553-0710C5D31E35) (Version: 1.1.2.1 &#8211; Hewlett-Packard Company)\nHPDiagnosticAlert (HKLM-x32&#8230;B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D) (Version: 1.00.0001 &#8211; Microsoft) Hidden\nHxD Hex Editor 2.3 (HKLM&#8230;HxD_is1) (Version: 2.3 &#8211; Maël Hörz)\nHxD Hex Editor version 1.7.7.0 (HKLM-x32&#8230;HxD Hex Editor_is1) (Version: 1.7.7.0 &#8211; Maël Hörz)\nImgBurn (HKLM-x32&#8230;ImgBurn) (Version: 2.5.8.0 &#8211; LIGHTNING UK!)\nImportação do SketchUp 2016-2017 (HKLM-x32&#8230;63925DB-9D8C-48E2-8F04-1B7038B6C783) (Version: 2.2.0 &#8211; Autodesk)\niMyFone AnyRecover 2.0.0.16 (HKLM-x32&#8230;89DFCC5A-39CC-4AE7-8313-1ED6553E1ADD_is1) (Version: 2.0.0.16 &#8211; Shenzhen iMyFone Technology Co., Ltd.)\nInst5675 (HKLM&#8230;2DE6247C-7077-451B-8BA7-FFD1A2ABBB47) (Version: 8.01.39 &#8211; Softex Inc.) Hidden\nInst5676 (HKLM&#8230;878F6913-7421-4713-97F7-0A736EE2A188) (Version: 8.01.39 &#8211; Softex Inc.) Hidden\nIntel Collaborative Processor Performance Control (HKLM-x32&#8230;E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1018 &#8211; Intel Corporation)\nIntel® Dynamic Platform and Thermal Framework (HKLM-x32&#8230;654EE65D-FAA4-4EA6-8C07-DC94E6A304D4) (Version: 8.0.10100.71 &#8211; Intel Corporation)\nIntel® Management Engine Components (HKLM&#8230;1CEAC85D-2590-4760-800F-8DE5E91F3700) (Version: 10.0.31.1000 &#8211; Intel Corporation)\nIntel® Processor Graphics (HKLM-x32&#8230;F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA) (Version: 10.18.14.4139 &#8211; Intel Corporation)\nIntel® Rapid Storage Technology (HKLM&#8230;409CB30E-E457-4008-9B1A-ED1B9EA21140) (Version: 14.5.2.1088 &#8211; Intel Corporation)\nIntel® Hardware Accelerated Execution Manager (HKLM&#8230;754CC9DC-3DB4-4FB2-B71E-87331DB9EA17) (Version: 7.5.4 &#8211; Intel Corporation)\nIomega Encryption (HKLM&#8230;634B56F2-09FF-407B-B9FB-3611DDC52773) (Version: 1.03.0003 &#8211; Iomega an EMC Company)\nIomega Encryption 3.1.0 (HKLM&#8230;2A5534DE-30C7-429C-976A-132E89549180) (Version: 3.1.0 &#8211; Iomega)\nIRS &#8211; Modelo 3 Impressos 2016 (HKLM&#8230;pt.at.DM3IRSCLIv2016) (Version: 2016.2.1.0124 &#8211; AT)\niTube Studio(Build 7.4.7.3) (HKLM-x32&#8230;iTube Studio_is1) (Version: 7.4.7.3 &#8211; iTube Studio)\nJava 8 Update 241 (64-bit) (HKLM&#8230;26A24AE4-039D-4CA4-87B4-2F64180241F0) (Version: 8.0.2410.7 &#8211; Oracle Corporation)\nJava™ SE Development Kit 14 (64-bit) (HKLM&#8230;3552AC04-4EFC-51F1-AA92-9D1A99E02C95) (Version: 14.0.0.0 &#8211; Oracle Corporation)\nJetBrains PyCharm Community Edition 2018.2.1 (HKLM-x32&#8230;PyCharm Community Edition 2018.2.1) (Version: 182.3911.33 &#8211; JetBrains s.r.o.)\nJewel Match 3 (HKLM-x32&#8230;WTA-fced6a73-fdd6-4324-9ec6-d4a9ddcc449c) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nJill of the Jungle (HKLM-x32&#8230;1129701343_is1) (Version: 1.0 CS &#8211; GOG.com)\nJogos da WildTangent (HKLM-x32&#8230;WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 &#8211; WildTangent)\nJumpstart Installation Program (HKLM-x32&#8230;B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13) (Version:  &#8211; Atheros)\nKits Configuration Installer (HKLM-x32&#8230;63AAA877-5536-9481-2385-28A082100D78) (Version: 10.1.18362.1 &#8211; Microsoft) Hidden\nLAV Filters 0.74.1 (HKLM-x32&#8230;lavfilters_is1) (Version: 0.74.1 &#8211; Hendrik Leppkes)\nLizardTech ExpressView Browser Plug-in (HKLM-x32&#8230;4EFFB6FD-C0D3-43AF-AABB-BC0DCDBF2F34) (Version: 6.5.1 &#8211; LizardTech)\nLocal_Monitor 4.1 (HKLM-x32&#8230;DED1CF45-A68B-40A9-AF54-7447D6D0CFDD_is1) (Version:  &#8211; Insecuritynet, Inc.)\nMagic ISO Maker v5.5 (build 0281) (HKLM-x32&#8230;Magic ISO Maker v5.5 (build 0281)) (Version:  &#8211; )\nMalwarebytes version 4.1.0.56 (HKLM&#8230;35065F43-4BB2-439A-BFF7-0F1014F2E0CD_is1) (Version: 4.1.0.56 &#8211; Malwarebytes)\nMEGAsync (HKLM-x32&#8230;MEGAsync) (Version:  &#8211; Mega Limited)\nMicrosoft .NET Core SDK 3.1.201 (x64) (HKLM-x32&#8230;5e0a0ca7-8d37-4573-8d5b-03416809a484) (Version: 3.1.201.15034 &#8211; Microsoft Corporation)\nMicrosoft Office (HKLM-x32&#8230;90150000-0138-0409-0000-0000000FF1CE) (Version: 15.0.4641.1005 &#8211; Microsoft Corporation)\nMicrosoft Office Professional Plus 2010 (HKLM-x32&#8230;Office14.PROPLUS) (Version: 14.0.7015.1000 &#8211; Microsoft Corporation)\nMicrosoft Silverlight (HKLM&#8230;89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50907.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;837b34e3-7c30-493c-8f6a-2b0f04e2912c) (Version: 8.0.59193 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17 (HKLM&#8230;8220EEFE-38CD-377E-8595-13398D740ACE) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.4148 (HKLM&#8230;4B6C7001-C7D6-3710-913E-5BC23FCE91E6) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17 (HKLM-x32&#8230;9A25302D-30C0-39D9-BD6F-21E6EC160475) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148 (HKLM-x32&#8230;1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161 (HKLM-x32&#8230;9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x64 Redistributable &#8211; 10.0.40219 (HKLM&#8230;1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x86 Redistributable &#8211; 10.0.40219 (HKLM-x32&#8230;F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x64) &#8211; 11.0.61030 (HKLM-x32&#8230;ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x86) &#8211; 11.0.61030 (HKLM-x32&#8230;33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x64) &#8211; 12.0.30501 (HKLM-x32&#8230;50d4fc8-5d48-4b8f-8972-47c82c46020f) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x86) &#8211; 12.0.30501 (HKLM-x32&#8230;f65db027-aff3-4070-886a-0d87064aabb1) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015-2019 Redistributable (x64) &#8211; 14.25.28508 (HKLM-x32&#8230;6913e92a-b64e-41c9-a5e6-cef39207fe89) (Version: 14.25.28508.3 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015-2019 Redistributable (x86) &#8211; 14.25.28508 (HKLM-x32&#8230;65e650ff-30be-469d-b63a-418d71ea1765) (Version: 14.25.28508.3 &#8211; Microsoft Corporation)\nMicrosoft Visual F# 2.0 Runtime (HKLM-x32&#8230;729A3000-BC8A-3B74-BA5D-5068FE12D70C) (Version: 10.0.30319 &#8211; Microsoft Corporation)\nMicrosoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM&#8230;Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.60724 &#8211; Microsoft Corporation)\nMicrosoft Visual Studio Installer (HKLM&#8230;6F320B93-EE3C-4826-85E0-ADF79F8D4C61) (Version: 2.5.2059.317 &#8211; Microsoft Corporation)\nMiniTool Power Data Recovery 8.8 (HKLM&#8230;E1BCD081-4BF4-4E2F-832A-911EC42EF3C5_is1) (Version: 8.8 &#8211; MiniTool Software Limited)\nMozilla Firefox 77.0.1 (x64 pt-PT) (HKLM&#8230;Mozilla Firefox 77.0.1 (x64 pt-PT)) (Version: 77.0.1 &#8211; Mozilla)\nMozilla Maintenance Service (HKLM-x32&#8230;MozillaMaintenanceService) (Version: 77.0.1.7458 &#8211; Mozilla)\nMSI Development Tools (HKLM-x32&#8230;DB4DB790-64DD-1902-4BF2-833B3B6DBCA1) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nNmap 7.80 (HKLM-x32&#8230;Nmap) (Version: 7.80 &#8211; Nmap Project)\nNoVirusThanks Anti-Rootkit (Free Edition) v1.2 (HKLM-x32&#8230;NoVirusThanks Anti-Rootkit (Free Edition)_is1) (Version: 1.2.0.0 &#8211; NoVirusThanks Company Srl)\nNpcap 0.9982 (HKLM-x32&#8230;NpcapInst) (Version: 0.9982 &#8211; Nmap Project)\nNVIDIA Controlador gráfico 347.26 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Driver) (Version: 347.26 &#8211; NVIDIA Corporation)\nNVIDIA GeForce Experience 2.1.4 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.GFExperience) (Version: 2.1.4 &#8211; NVIDIA Corporation)\nNVIDIA O software do sistema PhysX 9.14.0702 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.PhysX) (Version: 9.14.0702 &#8211; NVIDIA Corporation)\nOpenSSL 1.1.1f Light (64-bit) (HKLM&#8230;OpenSSL Light (64-bit)_is1) (Version:  &#8211; OpenSSL Win64 Installer Team)\nOracle VM VirtualBox 6.0.4 (HKLM&#8230;79366295-CD6A-4467-9901-4A7DFCF90F40) (Version: 6.0.4 &#8211; Oracle Corporation)\nOSRAM Lamp PlugIn 1.8.3.1 (HKLM-x32&#8230;567EA4E4-B799-4F1C-BFE0-D0381BD8651A) (Version: 1.83.1000 &#8211; OSRAM)\nPainel de controlo da NVIDIA 347.26 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.ControlPanel) (Version: 347.26 &#8211; NVIDIA Corporation) Hidden\nPanda Cloud Cleaner (HKLM-x32&#8230;92B2B132-C7F0-43DC-921A-4493C04F78A4_is1) (Version: 1.1.10 &#8211; Panda Security)\nPEStudio (HKLM-x32&#8230;PEStudio) (Version: 1.0.0.27 &#8211; Elcontrol Enegy Net SpA)\nPhilips Product Selector 5.2.12.2 (HKLM-x32&#8230;81AD9228-21AC-4DBD-AE33-98146A88BAA8) (Version: 5.2.12.2 &#8211; Signify) Hidden\nPhilips Product Selector 5.2.12.2 (HKLM-x32&#8230;InstallShield_81AD9228-21AC-4DBD-AE33-98146A88BAA8) (Version: 5.2.12.2 &#8211; Signify)\nplugin Autenticação.Gov (HKLM-x32&#8230;DA5C6D6B-C160-4732-9A6D-CB0B58387A84) (Version: 2.0.46 &#8211; Agência para a Modernização Administrativa)\nPolar Bowler 1st Frame (HKLM-x32&#8230;WTA-7427884d-05c8-4a08-baa0-d130eb2faeef) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nPPS max plugin 1.7.0 (HKLM-x32&#8230;PPS max plugin_is1) (Version: 1.7.0.0 &#8211; Tree C Technology B.V.)\nProject64 1.6 (HKLM-x32&#8230;9559F7CA-5E34-4237-A2D9-D856464AD727) (Version: 1.6 &#8211; Project64)\nProtonVPN (HKLM-x32&#8230;6766D7C7-E034-49EA-82AC-0FE614B7F1DF) (Version: 1.13.3 &#8211; Proton Technologies AG) Hidden\nProtonVPN (HKLM-x32&#8230;ProtonVPN 1.13.3) (Version: 1.13.3 &#8211; Proton Technologies AG)\nPython 3.7.0 (64-bit) (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;f684de81-73c2-4924-ad43-e7ae400d47b5) (Version: 3.7.150.0 &#8211; Python Software Foundation)\nPython 3.7.0 Core Interpreter (64-bit) (HKLM&#8230;F046BD5A-33F4-4ABA-BD2D-0227F6291EC9) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Development Libraries (64-bit) (HKLM&#8230;61246987-8D99-44A9-8FF5-E2E3F503B72D) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Documentation (64-bit) (HKLM&#8230;E7C56E72-C80E-453B-9345-FAEAE5DB51A4) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Executables (64-bit) (HKLM&#8230;84B7971A-F59F-4247-AD34-BEC02CF85FBD) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 pip Bootstrap (64-bit) (HKLM&#8230;8A6F7991-1955-4C46-8C0C-8D7C6F7042FA) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Standard Library (64-bit) (HKLM&#8230;18D93BBC-06F6-449D-96FB-CD473CFC6A6D) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Tcl/Tk Support (64-bit) (HKLM&#8230;A2FC01E0-059E-4D21-AFD2-B63A7E1EF3CD) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Test Suite (64-bit) (HKLM&#8230;E4266358-1C9B-4AF0-ABF7-72BE136904CF) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Utility Scripts (64-bit) (HKLM&#8230;9E24E01B-CBD8-4558-A56D-6188F1A3C822) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 (64-bit) (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;13ee6ab9-4dca-406c-bc3b-5d86391d39a1) (Version: 3.8.2150.0 &#8211; Python Software Foundation)\nPython 3.8.2 Add to Path (64-bit) (HKLM&#8230;88AF4D20-BE9D-4CA6-8BD4-5DB380A41CC8) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Core Interpreter (64-bit) (HKLM&#8230;AD923240-0ACE-45C9-8749-05BF77AAE101) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Development Libraries (64-bit) (HKLM&#8230;BDFB7011-0AB2-440F-8F00-32AF7A9ED1ED) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Documentation (64-bit) (HKLM&#8230;65B0F976-5151-427E-95B4-2320DC64F91E) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Executables (64-bit) (HKLM&#8230;A36C1168-60E6-42E4-93DB-6BE8C6DD9DD6) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 pip Bootstrap (64-bit) (HKLM&#8230;8EEE042B-6EAF-4171-BA6E-01319ED99DA8) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Standard Library (64-bit) (HKLM&#8230;33F9B46C-EB19-4BB7-ABFA-F8C71B73E9A4) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Tcl/Tk Support (64-bit) (HKLM&#8230;FCA1EB7D-2F62-4659-AA5F-42C37CE5D3CB) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Test Suite (64-bit) (HKLM&#8230;F6DA05CF-67B5-47D0-ABD4-371C80BA0717) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Utility Scripts (64-bit) (HKLM&#8230;52AB506A-EC3C-4060-9EBF-6A975994CB35) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython Launcher (HKLM-x32&#8230;AF12A465-EA47-447D-B6BF-2A82CDBE2F0E) (Version: 3.8.6994.0 &#8211; Python Software Foundation)\nQCAD Trial 3.19.1 (HKLM&#8230;438D0F39-554F-40A4-BA3F-04809892FB96) (Version: 3.19.1 &#8211; RibbonSoft GmbH)\nRanch Rush 2 &#8211; Premium Edition (HKLM-x32&#8230;WTA-7396ad2b-d565-43cb-89bb-20ab60c8fe9f) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nREALTEK Bluetooth Driver (HKLM-x32&#8230;9D3D8C60-A5EF-4123-B2B9-172095903AB) (Version: 1.0.0.46 &#8211; REALTEK Semiconductor Corp.)\nRealtek Card Reader (HKLM-x32&#8230;5BC2B5AB-80DE-4E83-B8CF-426902051D0A) (Version: 6.3.370.68 &#8211; Realtek Semiconductor Corp.)\nRealtek Ethernet Controller Driver (HKLM-x32&#8230;8833FFB6-5B0C-4764-81AA-06DFEED9A476) (Version: 8.37.1119.2014 &#8211; Realtek)\nRealtek High Definition Audio Driver (HKLM-x32&#8230;F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC) (Version: 6.0.1.7457 &#8211; Realtek Semiconductor Corp.)\nREALTEK Wireless LAN Driver (HKLM-x32&#8230;A5107464-AA9B-4177-8129-5FF2F42DD322) (Version: 1.0.0.46 &#8211; REALTEK Semiconductor Corp.)\nRecuva (HKLM&#8230;Recuva) (Version: 1.53 &#8211; Piriform)\nRemoteComms driver (HKLM-x32&#8230;89B4CA50-3F94-451F-B93A-22608DF45FF9) (Version: 1.30.0002 &#8211; PLX Technology)\nRunefall (HKLM-x32&#8230;WTA-7be9cc5b-65c3-4233-9f92-6fbda3316c00) (Version: 3.0.2.126 &#8211; WildTangent) Hidden\nSamsung Kies (HKLM-x32&#8230;758C8301-2696-4855-AF45-534B1200980A) (Version: 2.6.4.17113.1 &#8211; Samsung Electronics Co., Ltd.) Hidden\nSamsung Kies (HKLM-x32&#8230;InstallShield_758C8301-2696-4855-AF45-534B1200980A) (Version: 2.6.4.17113.1 &#8211; Samsung Electronics Co., Ltd.)\nSAMSUNG USB Driver for Mobile Phones (HKLM&#8230;D0795B21-0CDA-4a92-AB9E-6E92D8111E44) (Version: 1.5.51.0 &#8211; SAMSUNG Electronics Co., Ltd.)\nSDK ARM Additions (HKLM-x32&#8230;73681F86-CD86-4208-572F-959B45430B04) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nSDK ARM Redistributables (HKLM-x32&#8230;67EE3804-9642-62BA-EBF1-B1561FB4ECBE) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nService Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32&#8230;90140000-0011-0000-0000-0000000FF1CE_Office14.PROPLUS_DE28B448-32E8-4E8F-84F0-A52B21A49B5B) (Version:  &#8211; Microsoft)\nSHIELD Streaming (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_GFExperience.NvStreamSrv) (Version: 3.1.2000 &#8211; NVIDIA Corporation) Hidden\nSkype versão 8.58 (HKLM-x32&#8230;Skype_is1) (Version: 8.58 &#8211; Skype Technologies S.A.)\nSMath Studio (HKLM-x32&#8230;7003EC5C-E484-4C85-BFCE-8EA508C9B3F0) (Version: 0.98.6179 &#8211; Andrey Ivashov)\nSoftware de Dispositivos Chipset Intel® (HKLM-x32&#8230;e3d22965-5c2d-48c8-acec-c2ba2d50b275) (Version: 10.0.22 &#8211; Intel® Corporation) Hidden\nSoulseekQt (HKLM-x32&#8230;SoulseekQt) (Version:  &#8211; )\nSpotify (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;Spotify) (Version: 1.1.33.569.gced9e0f5 &#8211; Spotify AB)\nSpybot Identity Monitor (HKLM-x32&#8230;DEE2C8BC-083E-48D8-A934-7B547D87E85C_is1) (Version: 3.0 &#8211; Safer-Networking Ltd.)\nSteam (HKLM-x32&#8230;Steam) (Version: 2.10.91.91 &#8211; Valve Corporation)\nswMSM (HKLM-x32&#8230;612C34C7-5E90-47D8-9B5C-0F717DD82726) (Version: 12.0.0.1 &#8211; Adobe Systems, Inc) Hidden\nSynaptics Pointing Device Driver (HKLM&#8230;SynTPDeinstKey) (Version: 18.1.48.54 &#8211; Synaptics Incorporated)\nTelegram Desktop version 1.7.10 (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;53F49750-6209-4FBF-9CA8-7A333C87D1ED_is1) (Version: 1.7.10 &#8211; Telegram Messenger LLP)\nTI Connect™ (HKLM-x32&#8230;D06BA64C-4447-49B4-B99D-E85BEA9E1035) (Version: 4.0.0.218 &#8211; Texas Instruments Inc.)\nTomb Raider Level Editor XP (HKLM-x32&#8230;Tomb Raider Level Editor) (Version:  &#8211; )\nTrinklit Supreme (HKLM-x32&#8230;WTA-c985ff2e-3479-4327-ae3b-b151a4c8a0d4) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nUltData &#8211; Android Data Recovery 5.3.1.4 (HKLM-x32&#8230;UltData &#8211; Android Data Recovery_is1) (Version: 5.3.1.4 &#8211; Tenorshare, Inc.)\nUniversal CRT Extension SDK (HKLM-x32&#8230;13952D7A-B7B3-F4F8-5F29-5CD18E8168B7) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Headers Libraries and Sources (HKLM-x32&#8230;74CBC330-ED16-31B9-E8BE-0C6A8E67DE32) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Redistributable (HKLM-x32&#8230;460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9) (Version: 10.0.26624 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Redistributable (HKLM-x32&#8230;847D4DAF-0182-265B-324F-406462E8A90D) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Tools x64 (HKLM&#8230;54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Tools x86 (HKLM-x32&#8230;9F7B0D96-881D-8850-C303-43F3A08E6902) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal General MIDI DLS Extension SDK (HKLM-x32&#8230;6F54BF87-2EE6-FA6D-431D-33A665992D49) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUpdate Installer for WildTangent Games App (HKLM-x32&#8230;2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2.WildTangent Games App) (Version:  &#8211; WildTangent) Hidden\nUSBPcap 1.2.0.3 (HKLM&#8230;USBPcap) (Version: 1.2.0.3 &#8211; Tomasz Mon)\nvcpp_crt.redist.clickonce (HKLM-x32&#8230;6B25D94A-4B50-45E2-BBD3-54E68700E1BC) (Version: 14.25.28508 &#8211; Microsoft Corporation) Hidden\nVirtualCloneDrive (HKLM-x32&#8230;VirtualCloneDrive) (Version: 5.5.0.0 &#8211; Elaborate Bytes)\nVisual Studio 2012 x64 Redistributables (HKLM&#8230;8C775E70-A791-4DA8-BCC3-6AB7136F4484) (Version: 14.0.0.1 &#8211; AVG Technologies)\nVisual Studio 2012 x86 Redistributables (HKLM-x32&#8230;98EFF19A-30AB-4E4B-B943-F06B1C63EBF8) (Version: 14.0.0.1 &#8211; AVG Technologies CZ, s.r.o.)\nVisual Studio Build Tools 2019 (HKLM-x32&#8230;43108e7a) (Version: 16.5.30002.166 &#8211; Microsoft Corporation)\nvJoy Device Driver 2.1.6.20 (HKLM&#8230;8E31F76F-74C3-47F1-9550-E041EEDC5FBB_is1) (Version: 2.1.6.20 &#8211; Shaul Eizikovich)\nVLC media player (HKLM-x32&#8230;VLC media player) (Version: 3.0.8 &#8211; VideoLAN)\nVMware Player (HKLM&#8230;DDDE2FEC-464C-4D0D-BCBC-9F4B4A06209B) (Version: 15.0.2 &#8211; VMware, Inc.)\nvs_FileTracker_Singleton (HKLM-x32&#8230;692A0FB3-E6A2-4D41-AC03-4136B4312DC0) (Version: 16.3.29209 &#8211; Microsoft Corporation) Hidden\nWedding Dash (HKLM-x32&#8230;WTA-bcbcc6be-1055-406f-90e0-31082ecf66fa) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nWhatsApp (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;WhatsApp) (Version: 0.3.1847 &#8211; WhatsApp)\nWildTangent Games App para HP (HKLM-x32&#8230;70B446D1-E03B-4ab0-9B3C-0832142C9AA8.WildTangent Games App-hp) (Version: 4.0.11.14 &#8211; WildTangent) Hidden\nWinAppDeploy (HKLM-x32&#8230;8E3AE0EF-D067-700C-BDB4-10D5552155DC) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinDjView 2.1 (HKLM&#8230;WinDjView) (Version: 2.1 &#8211; Andrew Zhezherun)\nWindows Driver Package &#8211; Texas Instruments Inc. (SilvrLnk) USB  (06/11/2009 1.0.0.0) (HKLM&#8230;EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 &#8211; Texas Instruments Inc.)\nWindows Driver Package &#8211; Texas Instruments Inc. (TIEHDUSB) USB  (09/02/2009 1.0.0.1) (HKLM&#8230;7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 &#8211; Texas Instruments Inc.)\nWindows SDK AddOn (HKLM-x32&#8230;E6F877A1-2F65-4BF0-87B6-A4071B7663D3) (Version: 10.1.0.0 &#8211; Microsoft Corporation)\nWindows Software Development Kit &#8211; Windows 10.0.18362.1 (HKLM-x32&#8230;126dedf0-cc0e-4b48-9ece-806b0e437195) (Version: 10.1.18362.1 &#8211; Microsoft Corporation)\nWinPcap 4.1.2 (HKLM-x32&#8230;WinPcapInst) (Version: 4.1.0.2001 &#8211; CACE Technologies)\nWinRT Intellisense Desktop &#8211; en-us (HKLM-x32&#8230;E67F1F03-FB4A-3D61-8999-E6A4C4B26F34) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense Desktop &#8211; Other Languages (HKLM-x32&#8230;7EF010FF-7800-28BA-FF49-2D219EC7BA82) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense IoT &#8211; en-us (HKLM-x32&#8230;36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense IoT &#8211; Other Languages (HKLM-x32&#8230;6B03A6A4-643C-57CE-CA6F-4E19BF47497A) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense Mobile &#8211; en-us (HKLM-x32&#8230;918A448F-59E8-FBF5-B087-D3F07160C7E0) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense PPI &#8211; en-us (HKLM-x32&#8230;66483041-F590-EC46-4AF0-EE39C62FB680) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense PPI &#8211; Other Languages (HKLM-x32&#8230;9C61E6D2-C43E-6746-B519-6185558C4A24) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense UAP &#8211; en-us (HKLM-x32&#8230;6B37CC5B-78DF-5050-2215-68479716A587) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense UAP &#8211; Other Languages (HKLM-x32&#8230;250D5341-0879-4016-399C-BBCD87B80E95) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWireshark 3.2.3 64-bit (HKLM-x32&#8230;Wireshark) (Version: 3.2.3 &#8211; The Wireshark developer community, hxxps://www.wireshark.org)\nwkhtmltox 0.12.5-1 (HKLM&#8230;wkhtmltopdf) (Version:  &#8211; )\nWondershare Helper Compact 2.5.3 (HKLM-x32&#8230;5363CE84-5F09-48A1-8B6C-6BB590FFEDF2_is1) (Version: 2.5.3 &#8211; Wondershare)\nWondershare PDFelement 6 Pro(Build 6.3.5) (HKLM-x32&#8230;B026557A-EF19-4812-8A79-B30F94AA0A78_is1) (Version: 6.3.5.2806 &#8211; Wondershare Software Co.,Ltd.)\nWondershare Recoverit(Build 8.5.7.16) (HKLM-x32&#8230;829555DC-31E5-4FEA-B350-8FCF24CECD95_is1) (Version: 8.5.7.16 &#8211; Wondershare Software Co.,Ltd.)\nX Builder Framework 1.05x (HKLM-x32&#8230;X Builder Framework 1.05x) (Version:  &#8211; )\nXArp 2.2.2 (HKLM-x32&#8230;XArp) (Version: 2.2.2 &#8211; Christoph Mayer)\nXBuilder Tag Grid 1.0 (HKLM-x32&#8230;8814F01A-66A3-4A5F-899A-FFEA12633963) (Version: 1.0.18 &#8211; Carrier Corporation)\nYouda Jewel Shop (HKLM-x32&#8230;WTA-0f2ac400-5236-4aa4-a9fa-2d97068ccbc9) (Version: 3.0.2.51 &#8211; WildTangent) Hidden\nZoom (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;ZoomUMX) (Version: 5.0 &#8211; Zoom Video Communications, Inc.)","Packages:\n=========\n&#8211; Games App &#8211; -&gt; C:Program FilesWindowsAppsWildTangentGames.-GamesApp-_1.0.3.28_x86__qt5r5pa5dyg8m [2016-03-29] (WildTangent Games)\nGuia de introdução ao Windows 8 -&gt; C:Program FilesWindowsAppsAD2F1837.GettingStartedwithWindows8_1.6.0.0_neutral__v10z8vjag6ke6 [2016-03-29] (Hewlett-Packard Company)\nHP All-in-One Printer Remote -&gt; C:Program FilesWindowsAppsAD2F1837.HPPrinterControl_55.1.43.0_x86__v10z8vjag6ke6 [2016-04-18] (Hewlett-Packard Company)\nHP Connected Music -&gt; C:Program FilesWindowsAppsAD2F1837.HPConnectedMusic_1.5.0.253_x86__v10z8vjag6ke6 [2016-03-29] (Hewlett-Packard Company)\nHP Registration -&gt; C:Program FilesWindowsAppsAD2F1837.HPRegistration_1.2.1.166_neutral__v10z8vjag6ke6 [2015-06-04] (Hewlett-Packard Company)\nJogos -&gt; C:Program FilesWindowsAppsMicrosoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2015-06-04] (Microsoft Corporation) [MS Ad]\nKYOCERA Print Center -&gt; C:Program FilesWindowsAppsA97ECD55.KYOCERAPrintCenter_1.7.11126.0_x86__kqmhh0ktdt7dg [2019-12-05] (KYOCERA Document Solutions Inc)\nMcAfee® Central for HP -&gt; C:Program FilesWindowsApps2703103D.McAfeeCentral_5.0.177.1_x64__4ehj4w4frejdr [2018-04-02] (.-McAfee Inc-.)\nMicrosoft Mahjong -&gt; C:Program FilesWindowsAppsMicrosoft.MicrosoftMahjong_2.10.1812.2002_x86__8wekyb3d8bbwe [2019-02-04] (Microsoft Studios) [MS Ad]\nMSN Desporto -&gt; C:Program FilesWindowsAppsMicrosoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2016-04-29] (Microsoft Corporation) [MS Ad]\nMSN Finanças -&gt; C:Program FilesWindowsAppsMicrosoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-28] (Microsoft Corporation) [MS Ad]\nMSN Meteorologia -&gt; C:Program FilesWindowsAppsMicrosoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2016-11-23] (Microsoft Corporation) [MS Ad]\nMSN Notícias -&gt; C:Program FilesWindowsAppsMicrosoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-28] (Microsoft Corporation) [MS Ad]\nMSN Receitas -&gt; C:Program FilesWindowsAppsMicrosoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMSN Saúde e Bem-Estar -&gt; C:Program FilesWindowsAppsMicrosoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMSN Viagens -&gt; C:Program FilesWindowsAppsMicrosoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMúsica -&gt; C:Program FilesWindowsAppsMicrosoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nmysms &#8211; Text from Computer, Messaging -&gt; C:Program FilesWindowsAppsUptoElevenDigitalSolution.mysms-Textanywhere_2.8.0.0_x64__c9d6r4qvva5x8 [2016-03-29] (Up to Eleven Digital Solutions GmbH)\nPaciência -&gt; C:Program FilesWindowsApps26720RandomSaladGamesLLC.SimpleSolitaire_5.4.0.40_x64__kx24dqmazqk8j [2016-12-15] (Random Salad Games LLC) [MS Ad]\nSidekick Private Browser -&gt; C:Program FilesWindowsAppsSaferWebSoftware.SidekickWeb_1.1.0.7_neutral__aad3gkxz4ewf0 [2020-05-18] (SaferWeb Software)\nSkype -&gt; C:Program FilesWindowsAppsMicrosoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2016-03-29] (Skype) [MS Ad]\nSnapfish -&gt; C:Program FilesWindowsAppsAD2F1837.HPConnectedPhotopoweredbySnapfish_5.5.0.8_x86__v10z8vjag6ke6 [2016-05-04] (HP Inc.)\nThe Weather Channel for HP -&gt; C:Program FilesWindowsAppsWeather.TheWeatherChannelforHP_2.1.20.0_x64__t3yemqpq4kp7p [2016-03-29] (The Weather Channel.)\nTradutor -&gt; C:Program FilesWindowsAppsMicrosoft.BingTranslator_1.18.3.0_x64__8wekyb3d8bbwe [2017-04-07] (Microsoft Corporation)\nTripAdvisor Hotels Flights Restaurants -&gt; C:Program FilesWindowsAppsTripAdvisorLLC.TripAdvisorHotelsFlightsRestaurants_1.2.0.24_neutral__qj0v5chwq8f2g [2015-06-04] (TripAdvisor LLC)\nVídeo -&gt; C:Program FilesWindowsAppsMicrosoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]","==================== Custom CLSID (Whitelisted): ==============","(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","CustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDD327DA6-B4DF-4842-B833-2CFF84F0948Flocalserver32 -&gt; C:Program FilesAutodeskAutoCAD 2017acad.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID19A6E644-14E6-4A60-B8D7-DD20610A871DInprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalMicrosoftTeamsMeetingAddin1.0.20031.2x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID3faa4380-a399-11cf-a466-00805fe418f6InprocServer32 -&gt; C:Program FilesAutodeskDWG TrueView 2018 &#8211; Englishen-USdwgviewrficn.dll (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID720DB9AF-D62C-4ED0-A377-429C22312852localserver32 -&gt; C:Program FilesAutodeskAutoCAD 2017acad.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID84B5A313-CD5D-4904-8BA2-AFDC81C1B309InprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalGoToMeeting17359G2MOutlookAddin64.dll (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDB6EB585B-B467-4E46-A9C7-48D7D6FD26CBlocalserver32 -&gt; C:Program FilesAutodeskDWG TrueView 2018 &#8211; Englishdwgviewr.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDC591CFEA-E432-495d-A0BE-58E4CCD87B17ShellOpenCommand -&gt; C:Program FilesSynapticsSynTPSynTPCpl.dll (Synaptics Incorporated -&gt; Synaptics Incorporated)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDCB965DF1-B8EA-49C7-BDAD-5457FDC1BF92InprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalMicrosoftTeamsMeetingAddin1.0.20031.2x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDE2C40589-DE61-11ce-BAE0-0020AF6D7005InprocServer32 -&gt; C:Program FilesAutodeskAutoCAD 2017en-USacadficn.dll (Autodesk, Inc -&gt; Autodesk, Inc.)\nShellExecuteHooks: Groove GFS Stub Execution Hook &#8211; B5A7F190-DDA6-4420-B3BA-52453494E6CD &#8211; C:Program FilesMicrosoft OfficeOffice14GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nShellExecuteHooks-x32: Groove GFS Stub Execution Hook &#8211; B5A7F190-DDA6-4420-B3BA-52453494E6CD &#8211; C:Program Files (x86)Microsoft OfficeOffice14GROOVEEX.DLL [4171480 2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nShellIconOverlayIdentifiers: [ MEGA (Pending)] -&gt; 056D528D-CE28-4194-9BA3-BA2E9197FF8C =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [ MEGA (Synced)] -&gt; 05B38830-F4E9-4329-978B-1DD28605D202 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [ MEGA (Syncing)] -&gt; 0596C850-7BDD-4C9D-AFDF-873BE6890637 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [  GoogleDriveSynced] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [00asw] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nShellIconOverlayIdentifiers: [00avg] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -&gt; 36A21736-36C2-4C11-8ACB-D4136F2B57BD =&gt; C:Windowssystem32AcSignIcon.dll [2017-02-15] (Autodesk, Inc -&gt; Autodesk, Inc.)\nShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -&gt; 056D528D-CE28-4194-9BA3-BA2E9197FF8C =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -&gt; 05B38830-F4E9-4329-978B-1DD28605D202 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -&gt; 0596C850-7BDD-4C9D-AFDF-873BE6890637 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers1: [7-Zip] -&gt; 23170F69-40C1-278A-1000-000100020000 =&gt; C:Program Files7-Zip7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]\nContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -&gt; 2E7A2C6C-B938-40a4-BA1C-C7EC982DC202 =&gt; C:Program FilesCommon FilesAutodesk SharedAcShellExAcShellExtension.dll [2017-02-15] (Autodesk, Inc -&gt; Autodesk)\nContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -&gt; A6595CD1-BF77-430A-A452-18696685F7C7 =&gt; C:Program Files (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nContextMenuHandlers1: [ANotepad++64] -&gt; B298D29A-A6ED-11DE-BA8C-A68E55D89593 =&gt; C:Program Files (x86)Notepad++NppShell_06.dll -&gt; No File\nContextMenuHandlers1-x32: [Autodesk.DWF.ContextMenu] -&gt; 6C18531F-CA85-45F7-8278-FF33CF0A5964 =&gt; C:Program Files (x86)Common FilesAutodesk SharedDWF CommonDWFShellExtension.dll [2017-03-09] (Autodesk, Inc.) [File not signed]\nContextMenuHandlers1: [AVG] -&gt; 472083B1-C522-11CF-8763-00608CC02F24 =&gt; C:Program Files (x86)AVGAntivirusashShell.dll [2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nContextMenuHandlers1: [CLVDShellExt] -&gt; 3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2 =&gt; C:Program Files (x86)Common FilesCyberLinkShellExtComponentCLVDShellExt.dll [2015-02-09] (CyberLink Corp. -&gt; Cyberlink)\nContextMenuHandlers1: [DIALuxShellExtension] -&gt; F23E3460-D1B1-4F51-8C3D-E5D91E3C71C8 =&gt; C:Program FilesDIAL GmbHDIALuxDial.ShellExtension.x64.dll [2017-12-05] (DIAL GmbH) [File not signed]\nContextMenuHandlers1: [Foxit_ConvertToPDF] -&gt; C5269811-4A29-4818-A4BB-111F9FC63A5F =&gt; C:Program Files (x86)Foxit PhantomPDFpluginsConvertToPDFShellExtension_x64.dll [2015-03-03] (Foxit Software Incorporated -&gt; Foxit Software Inc.)\nContextMenuHandlers1: [GDContextMenu] -&gt; BB02B294-8425-42E5-983F-41A1FA970CD6 =&gt; C:Program FilesGoogleDrivecontextmenu64.dll [2020-04-06] (Google LLC -&gt; Google)\nContextMenuHandlers1: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers1: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers1: [VirtualCloneDrive] -&gt; B7056B8E-4F99-44f8-8CBD-282390FE5428 =&gt; C:Program Files (x86)Elaborate BytesVirtualCloneDriveElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nContextMenuHandlers2: [CLVDShellExt] -&gt; 3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2 =&gt; C:Program Files (x86)Common FilesCyberLinkShellExtComponentCLVDShellExt.dll [2015-02-09] (CyberLink Corp. -&gt; Cyberlink)\nContextMenuHandlers2: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers2: [VirtualCloneDrive] -&gt; B7056B8E-4F99-44f8-8CBD-282390FE5428 =&gt; C:Program Files (x86)Elaborate BytesVirtualCloneDriveElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nContextMenuHandlers2-x32: [VMDiskMenuHandler] -&gt; 271DC252-6FE1-4D59-9053-E4CF50AB99DE =&gt; C:Program Files (x86)VMwareVMware PlayervmdkShellExt.dll [2018-11-21] (VMware, Inc. -&gt; VMware, Inc.)\nContextMenuHandlers2: [VMDiskMenuHandler64] -&gt; E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC =&gt; C:Program Files (x86)VMwareVMware Playerx64vmdkShellExt64.dll [2018-11-21] (VMware, Inc. -&gt; VMware, Inc.)\nContextMenuHandlers3: [00avg] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nContextMenuHandlers3: [MBAMShlExt] -&gt; 57CE581A-0CB6-4266-9CA0-19364C90A0B3 =&gt; C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -&gt; Malwarebytes)\nContextMenuHandlers3: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers4: [7-Zip] -&gt; 23170F69-40C1-278A-1000-000100020000 =&gt; C:Program Files7-Zip7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]\nContextMenuHandlers4: [GDContextMenu] -&gt; BB02B294-8425-42E5-983F-41A1FA970CD6 =&gt; C:Program FilesGoogleDrivecontextmenu64.dll [2020-04-06] (Google LLC -&gt; Google)\nContextMenuHandlers4: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers4: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers4: [RecuvaShellExt] -&gt; 435E5DF5-2510-463C-B223-BDA47006D002 =&gt; C:Program FilesRecuvaRecuvaShell64.dll [2016-06-06] (Piriform Ltd -&gt; Piriform Ltd)\nContextMenuHandlers5: [igfxcui] -&gt; 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 =&gt;  -&gt; No File\nContextMenuHandlers5: [igfxDTCM] -&gt; 9B5F5829-A529-4B12-814A-E81BCB8D93FC =&gt; C:Windowssystem32igfxDTCM.dll [2015-04-28] (Microsoft Windows Hardware Compatibility Publisher -&gt; Intel Corporation)\nContextMenuHandlers5: [NvCplDesktopContext] -&gt; 3D1975AF-48C6-4f8e-A182-BE0E08FA86A9 =&gt; C:Windowssystem32nvshext.dll [2015-01-11] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -&gt; A6595CD1-BF77-430A-A452-18696685F7C7 =&gt; C:Program Files (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nContextMenuHandlers6: [AVG] -&gt; 472083B1-C522-11CF-8763-00608CC02F24 =&gt; C:Program Files (x86)AVGAntivirusashShell.dll [2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nContextMenuHandlers6: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers6: [MBAMShlExt] -&gt; 57CE581A-0CB6-4266-9CA0-19364C90A0B3 =&gt; C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -&gt; Malwarebytes)\nContextMenuHandlers6: [RecuvaShellExt] -&gt; 435E5DF5-2510-463C-B223-BDA47006D002 =&gt; C:Program FilesRecuvaRecuvaShell64.dll [2016-06-06] (Piriform Ltd -&gt; Piriform Ltd)","==================== Codecs (Whitelisted) ====================","==================== Shortcuts &amp; WMI ========================","==================== Loaded Modules (Whitelisted) =============","2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000864768 _____ (%CFullName%) [File not signed] C:Program FilesHewlett-PackardSimplePassOpBHO64.dll\n2019-09-20 15:20 &#8211; 2016-09-12 15:53 &#8211; 048936448 _____ () [File not signed] C:Program Files (x86)AVGAVG TuneUplibcef.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000226304 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionContent.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000227840 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionDeviceAccess.dll\n2011-09-16 10:04 &#8211; 2011-09-16 10:04 &#8211; 000364544 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionDeviceManagement.dll\n2011-09-16 10:06 &#8211; 2011-09-16 10:06 &#8211; 000658432 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionGatewayCore.dll\n2011-09-16 10:05 &#8211; 2011-09-16 10:05 &#8211; 000335872 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionPlxTech.Das.DotNetApi.dll\n2011-09-16 10:07 &#8211; 2011-09-16 10:07 &#8211; 000422400 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionPlxTech.Das.Gateway.Core.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000245248 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionStorage.dll\n2011-09-16 10:02 &#8211; 2011-09-16 10:02 &#8211; 000045056 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionUtils_ISIS.dll\n2011-09-16 10:02 &#8211; 2011-09-16 10:02 &#8211; 000078848 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionXML.dll\n2015-01-30 19:07 &#8211; 2015-01-30 19:07 &#8211; 002169344 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassautheng.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000021504 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePasscryptodll.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000055296 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassRandomPass.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000035840 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassssplogon.dll\n2020-05-08 08:50 &#8211; 2017-12-05 13:42 &#8211; 001442816 _____ (DIAL GmbH) [File not signed] C:Program FilesDIAL GmbHDIALuxDial.ShellExtension.x64.dll\n2015-01-30 19:06 &#8211; 2015-01-30 19:06 &#8211; 000715264 _____ (Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassstoreng.dll\n2015-01-30 19:07 &#8211; 2015-01-30 19:07 &#8211; 001134080 _____ (Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassuserdata.dll\n2010-11-18 21:08 &#8211; 2010-11-18 21:08 &#8211; 000086016 _____ (Igor Pavlov) [File not signed] C:Program Files7-Zip7-zip.dll\n2015-07-22 10:44 &#8211; 2015-07-22 10:44 &#8211; 000562688 _____ (Intel Corporation) [File not signed] C:Program FilesIntelIntel® Rapid Storage TechnologyISDI2.dll\n2015-07-22 10:44 &#8211; 2015-07-22 10:44 &#8211; 000285184 _____ (Intel Corporation) [File not signed] C:Program FilesIntelIntel® Rapid Storage TechnologyPsiData.dll\n2016-03-29 22:31 &#8211; 2008-05-22 23:25 &#8211; 000043520 _____ (MagicISO, Inc.) [File not signed] C:Program Files (x86)MagicISOmisosh64.dll\n2015-06-04 18:46 &#8211; 2015-06-04 18:46 &#8211; 001093120 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80U.DLL\n2015-06-04 18:12 &#8211; 2013-04-01 23:19 &#8211; 000574464 _____ (Realtek Semiconductor Corp.) [File not signed] C:Windowssystem32Rtlihvs.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000746064 _____ (Softex Incorporated -&gt; ) [File not signed] C:Program FilesHewlett-PackardSimplePassGraphicalPwd.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000431696 _____ (Softex Incorporated -&gt; ) [File not signed] C:Program FilesHewlett-PackardSimplePassmstrpwd.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000760912 _____ (Softex Incorporated -&gt; Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePasshdddrv.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 001384528 _____ (Softex Incorporated -&gt; Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassWbf.dll\n2019-06-25 10:37 &#8211; 2019-06-25 10:32 &#8211; 002095104 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:Program FilesAVAST SoftwareSecureLinelibcrypto-1_1.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 005458432 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Core.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 001065984 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Network.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 000195072 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Xml.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000026112 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqgif.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000033280 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqicns.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000027648 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqico.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000245760 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqjpeg.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000021504 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqsvg.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000020992 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqtga.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000316416 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqtiff.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000019968 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqwbmp.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000322560 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqwebp.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 001010688 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncplatformsqwindows.dll\n2019-04-09 10:32 &#8211; 2017-10-19 10:17 &#8211; 000271360 _____ (Wondershare Software) [File not signed] C:WindowsSystem32WSPDFelementMonitor.dll","==================== Alternate Data Streams (Whitelisted) ========","==================== Safe Mode (Whitelisted) ==================","(If an entry is included in the fixlist, it will be removed from the registry. The &quot;AlternateShell&quot; will be restored.)","HKLMSYSTEMCurrentControlSetControlSafeBootMinimalMBAMService =&gt; &quot;&quot;=&quot;Service&quot;\nHKLMSYSTEMCurrentControlSetControlSafeBootNetworkMBAMService =&gt; &quot;&quot;=&quot;Service&quot;\nHKLMSYSTEMCurrentControlSetControlSafeBootNetworkMcMPFSvc =&gt; &quot;&quot;=&quot;Service&quot;","==================== Association (Whitelisted) =================","(If an entry is included in the fixlist, the registry item will be restored to default or removed.)","HKUS-1-5-21-3751382696-3894377064-3631472648-1001SoftwareClasses.scr: AutoCADScriptFile =&gt; C:Windowssystem32notepad.exe &quot;%1&quot;","==================== Internet Explorer trusted/restricted ==========","==================== Hosts content: =========================","(If needed Hosts: directive could be included in the fixlist to reset Hosts.)","2013-08-22 14:25 &#8211; 2019-01-01 03:44 &#8211; 000000132 _____ C:Windowssystem32driversetchosts\n127.0.0.1 activate.adobe.com\n127.0.0.1 practivate.adobe.com\n127.0.0.1 lmlicenses.wip4.adobe.com\n127.0.0.1 lm.licenses.adobe.com","==================== Other Areas ===========================","(Currently there is no automatic fix for this section.)","HKLMSystemCurrentControlSetControlSession ManagerEnvironment\\Path -&gt; C:Program Fileswkhtmltopdfbin;C:Program FilesOpenSSL-Win64bin;C:Program FilesJavajdk-14bin;C:Python37Scripts;C:Program Files (x86)Common FilesOracleJavajavapath;C:platform-tools;C:Windowssystem32;C:ProgramDataOracleJavajavapath;C:Program Files (x86)InteliCLS Client;C:Program FilesInteliCLS Client;C:Program Files (x86)NVIDIA CorporationPhysXCommon;%SystemRoot%system32;%SystemRoot%;%SystemRoot%System32Wbem;%SYSTEMROOT%System32WindowsPowerShellv1.0;C:Program FilesHewlett-PackardSimplePass;C:Program FilesIntelIntel® Management Engine ComponentsDAL;C:Program Files (x86)IntelIntel® Management Engine ComponentsDAL;C:Program FilesIntelIntel® Management Engine ComponentsIPT;C:Program Files (x86)IntelIntel® Management Engine ComponentsIPT;C:E20-IIEnviro;C:Program Filesdotnet;C:Program FilesGitcmd\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001Control PanelDesktop\\Wallpaper -&gt; C:WindowswebwallpaperHewlett-Packard BackgroundsbackgroundDefault.jpg\nDNS Servers: 192.168.1.1 &#8211; 192.168.175.1\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorer =&gt; (SmartScreenEnabled: RequireAdmin)\nWindows Firewall is enabled.","Network Binding:\n=============\nEthernet: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nEthernet: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nEthernet: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nEthernet: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nEthernet: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nWi-Fi: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nWi-Fi: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nWi-Fi: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nWi-Fi: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nWi-Fi: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nVMware Network Adapter VMnet8: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVMware Network Adapter VMnet8: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVMware Network Adapter VMnet8: VMware Bridge Protocol -&gt; vmware_bridge (disabled) \nVMware Network Adapter VMnet1: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVMware Network Adapter VMnet1: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVMware Network Adapter VMnet1: VMware Bridge Protocol -&gt; vmware_bridge (disabled) \nVirtualBox Host-Only Network: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVirtualBox Host-Only Network: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVirtualBox Host-Only Network: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nVirtualBox Host-Only Network: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nVirtualBox Host-Only Network: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nNpcap Loopback Adapter: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nNpcap Loopback Adapter: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nNpcap Loopback Adapter: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nNpcap Loopback Adapter: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nNpcap Loopback Adapter: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled)","==================== MSCONFIG/TASK MANAGER disabled items ==","(If an entry is included in the fixlist, it will be removed.)","MSCONFIGServices: AdAppMgrSvc =&gt; 2\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;Assistente de gestor de conteúdo para PlayStation®.lnk&quot;\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;ScpToolkit Tray Notifications.lnk&quot;\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;Avast SecureLine VPN.lnk&quot;\nHKLM&#8230;StartupApprovedRun: =&gt; &quot;NvBackend&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;AccelerometerSysTrayApplet&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;HPMessageService&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;HP Software Update&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;BCSSync&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;AVG_UI&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Acrobat Assistant 8.0&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;SunJavaUpdateSched&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;vProt&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;VirtualCloneDrive&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Autodesk Desktop App&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;jswtrayutil&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;PSUAMain&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Wondershare Helper Compact.exe&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;KiesTrayAgent&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Aimersoft Helper Compact.exe&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;XArp&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedStartupFolder: =&gt; &quot;OneNote 2010 Screen Clipper and Launcher.lnk&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedStartupFolder: =&gt; &quot;Autenticacao.gov.pt.lnk&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;DAEMON Tools Lite Automount&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;GoogleDriveSync&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;Autodesk Sync&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;Steam&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;CCleaner Smart Cleaning&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;AvastBrowserAutoLaunch_8E2202057F0AAA05DFC4AE202AF0EABB&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;com.squirrel.Teams.Teams&quot;","==================== FirewallRules (Whitelisted) ================","(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","FirewallRules: [582A6683-D72A-46B6-ACE3-5DDF801194EF] =&gt; (Allow) C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [BCEFEFB2-60E2-49CB-867A-17284DF5084E] =&gt; (Allow) C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [6F2F07DD-A742-44EC-994D-0154FFCB01B5] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [AFFCD9A6-C298-4963-AB51-C30E247AFBB1] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [7808A858-FCAB-4CBE-8379-522C54F4E6B0] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [B186DA8C-5846-4184-A738-92C3AA9F2AC1] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [B7FF1360-33D9-4C8D-8781-A64CC9E443D3] =&gt; (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [992F1852-2433-4440-8DE4-D9B1246F35FC] =&gt; (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [ADCDF42B-282C-4832-85E0-FA81E4E51183] =&gt; (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [4979BC6A-1279-4FA3-9F8F-35D9CD55B21F] =&gt; (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [B47007A9-2898-4F03-BF02-FED19537847B] =&gt; (Allow) C:Program Files (x86)Hewlett-PackardHP System EventHPSOCKSVC.exe (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nFirewallRules: [39D2D09C-F5A7-49C3-A51B-7C3A63B6092F] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12PowerDVD12.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [E17FE3D7-439C-46AC-8654-AE3E8CF5BAB3] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12KernelDMSCLMSServerPDVD12.exe =&gt; No File\nFirewallRules: [C7F3A161-5DEC-4FE3-98B3-D3AE8FBAC944] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12PowerDVD12ML.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [17D8CE27-9FB3-43FC-A66E-A7C41F14EB1B] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12MoviePowerDVD.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [BAC676D9-D48D-4B1F-9D48-D916649D3BED] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinDeviceSetup.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [1E3A958A-DBF9-4792-BA75-66CDD5B97F81] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinHPNetworkCommunicator.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [94AEC018-D89F-44D8-BE94-CB30F928F3D5] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinHPNetworkCommunicatorCom.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [3CC6A172-6CFC-4C96-94F1-FEA79C8C66DC] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [A319A1AD-CD39-4B0E-AD31-FA83D3D78242] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [C8947CEF-1C24-4CC9-90B0-3D548221606C] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [FC78FDD5-0FE6-4B5C-B0B2-7BA1E5E56122] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [A835927B-3BA1-4345-868E-B80FDF3DFE6B] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [59D701D2-D615-4312-ABB5-8CC133C606A7] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [TCP Query User1D930BCB-2B04-4333-8EF9-C057EC9E6BAFC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Allow) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [UDP Query UserA39DAA6C-B810-4FC1-8EDD-8DD8AF086F6FC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Allow) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [25B196BB-0691-4DDC-BB61-C324E536385D] =&gt; (Allow) C:Program Files (x86)AVGAvavgmfapx.exe =&gt; No File\nFirewallRules: [68830A77-7703-4DCD-B1D4-2BDF8413B333] =&gt; (Allow) C:Program Files (x86)AVGAvavgmfapx.exe =&gt; No File\nFirewallRules: [AC06ADD7-2F7A-438B-806C-A4154DFC73F1] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [D4AD2E35-4E6E-4D00-B9D8-A5EB21B85B30] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [TCP Query User9CF8F516-A810-4B68-B577-6D76ADBD6979C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Block) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [UDP Query User1C042E6F-79B1-4354-945A-103696EB9945C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Block) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [TCP Query User16E10655-99C6-4050-8E89-D57F6F18A920C:program files (x86)skypephoneskype.exe] =&gt; (Allow) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [UDP Query User052989CE-193D-439A-ABF6-6C5A57B97CBCC:program files (x86)skypephoneskype.exe] =&gt; (Allow) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [TCP Query UserD9402F64-6C5B-43AE-9415-C52306CD3465C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [UDP Query UserD68E4CDB-5539-4A54-B66A-E9E07FB4DA19C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [TCP Query User70E94656-89AD-4D48-8485-5C61A98E5D7DC:program filesnefarius software solutionsscptoolkitscpserver.exe] =&gt; (Allow) C:program filesnefarius software solutionsscptoolkitscpserver.exe =&gt; No File\nFirewallRules: [UDP Query User08EA37E1-5D9D-44D9-B1B5-D00E1E46864FC:program filesnefarius software solutionsscptoolkitscpserver.exe] =&gt; (Allow) C:program filesnefarius software solutionsscptoolkitscpserver.exe =&gt; No File\nFirewallRules: [TCP Query User9DB2D3EB-A419-40A9-8B7F-02B5F54F0ED6C:program files (x86)airdroidairdroid.exe] =&gt; (Allow) C:program files (x86)airdroidairdroid.exe =&gt; No File\nFirewallRules: [UDP Query User0C64B981-176C-43C7-AC23-DCDFE020FD7CC:program files (x86)airdroidairdroid.exe] =&gt; (Allow) C:program files (x86)airdroidairdroid.exe =&gt; No File\nFirewallRules: [999E8B30-A3CC-4CFC-82E9-BE529C851F3E] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS1A27HPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [4C9EB99C-5BB1-4E5A-9383-0E808C25D152] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS1A27HPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [TCP Query UserB4B18508-AD74-4D0F-91E0-A0A25EB96CECC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Block) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [UDP Query User791C7AA4-28C9-4307-BFD5-93EFF7A53417C:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Block) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [TCP Query UserBFE9BE95-C491-45D5-97F0-1F91C2DCCBDEC:program files (x86)skypephoneskype.exe] =&gt; (Block) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [2A3B511F-88A9-434F-851F-8323C7B84A61] =&gt; (Allow) C:Program FilesEasewareDriverEasyDriverEasy.exe (Easeware Technology Limited -&gt; Easeware)\nFirewallRules: [F58757DD-5309-4BAC-8672-3228BB5C0926] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS5F1AHPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [E6751800-8FD6-446B-859E-0C8AD3D2993C] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS5F1AHPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [A7E1E8CF-3332-4C3B-B2F2-4D0513F85CF2] =&gt; (Allow) LPort=9422\nFirewallRules: [03ADEAC4-2838-478C-B592-ED07458E4C1E] =&gt; (Allow) LPort=9245\nFirewallRules: [F59BA0EC-D15A-450E-A3B5-3CD06B04642D] =&gt; (Allow) LPort=9246\nFirewallRules: [091F67FF-828D-40B1-BF39-95961341573C] =&gt; (Allow) LPort=9247\nFirewallRules: [TCP Query UserE248A19E-99A2-4804-B6BC-5ACD8565160BC:program files (x86)caincain.exe] =&gt; (Allow) C:program files (x86)caincain.exe =&gt; No File\nFirewallRules: [UDP Query User4D5623CB-FB3B-4213-8FD5-8A30C84E8FA2C:program files (x86)caincain.exe] =&gt; (Allow) C:program files (x86)caincain.exe =&gt; No File\nFirewallRules: [7C5AB3F8-67AF-44F7-8597-902CC0D24BD9] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [479750AD-D7FF-40D1-BBF8-C2E1B082AF6E] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [66A28919-DA35-4E6F-A3A3-A57E77F7746B] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [F876F68F-A0AF-4E72-A14C-7D600645599A] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [TCP Query User50979378-03F8-44E0-90DB-5D6959D70469C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Allow) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [UDP Query UserC833F1CD-6066-403C-98CA-92840F4DEE3DC:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Allow) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [TCP Query User973BD09C-F2D6-428F-AA51-398E84385F98C:program files (x86)facebook friend mapperphantomjs.exe] =&gt; (Block) C:program files (x86)facebook friend mapperphantomjs.exe =&gt; No File\nFirewallRules: [UDP Query UserFC808989-45B7-4EA6-9D7B-17B90191BD9FC:program files (x86)facebook friend mapperphantomjs.exe] =&gt; (Block) C:program files (x86)facebook friend mapperphantomjs.exe =&gt; No File\nFirewallRules: [TCP Query User1C96D305-E77E-4FB0-882C-E011AEDE7B98C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [UDP Query User92E6F78F-1558-4A1E-89BD-C9718E9F0025C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [TCP Query User9EBAD4BE-25CB-4D18-B75E-7A6CDE9BB797C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [UDP Query User14DF02A4-E03D-4848-9B20-5E4BF53829F9C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [TCP Query UserAE9277F6-2BA5-48AD-989C-910019969FDCC:program files (x86)winpcaprpcapd.exe] =&gt; (Block) C:program files (x86)winpcaprpcapd.exe (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nFirewallRules: [UDP Query User35D83A15-0FB0-43D7-BCF5-C0B8D94CB1C3C:program files (x86)winpcaprpcapd.exe] =&gt; (Block) C:program files (x86)winpcaprpcapd.exe (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nFirewallRules: [TCP Query User24BEA927-D042-4EBC-A3B5-4274B8538946C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe] =&gt; (Allow) C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe =&gt; No File\nFirewallRules: [UDP Query UserB3EDB2D5-3563-4F56-8092-946663BDE464C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe] =&gt; (Allow) C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe =&gt; No File\nFirewallRules: [8EA1455A-A080-426A-8D2D-5335EB3D8E34] =&gt; (Allow) C:Program FilesBlueStacksHD-Player.exe (BlueStack Systems, Inc. -&gt; BlueStack Systems, Inc.)\nFirewallRules: [A921AD6F-18C4-4A87-94B3-B778404C4912] =&gt; (Allow) C:Program Files (x86)VMwareVMware Playervmware-authd.exe (VMware, Inc. -&gt; VMware, Inc.)\nFirewallRules: [45CAEAFE-406C-4630-B965-2E046F854716] =&gt; (Allow) C:Program Files (x86)VMwareVMware Playervmware-authd.exe (VMware, Inc. -&gt; VMware, Inc.)\nFirewallRules: [1DF90E31-1041-4093-A46F-530835B973A6] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [37D7A423-4F11-48BC-A63A-D606409F3905] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [A68B9487-DE2A-42D4-8F65-7AD1BE4FF56E] =&gt; (Allow) C:UsersXXXXXXZZZDownloadsultdata-android.exe =&gt; No File\nFirewallRules: [0502B751-C5CB-4DD2-8CF9-5CB89E5FC85C] =&gt; (Allow) C:UsersXXXXXXZZZDownloadsultdata-android.exe =&gt; No File\nFirewallRules: [TCP Query UserDDB5E758-E868-4317-B733-0FE13C15E18BC:program filesandroidandroid studiojrebinjava.exe] =&gt; (Allow) C:program filesandroidandroid studiojrebinjava.exe\nFirewallRules: [UDP Query User6098E9AC-3E8B-4C11-AE5E-5D77E65F248AC:program filesandroidandroid studiojrebinjava.exe] =&gt; (Allow) C:program filesandroidandroid studiojrebinjava.exe\nFirewallRules: [TCP Query UserD16594A1-06E4-4EDD-85AC-3AB7A8523C48C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [UDP Query User347E955D-D687-412B-B652-2E7BE3FB0FE3C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [TCP Query User9318684D-7351-437E-AA4B-38CDAB311CC5C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Block) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [UDP Query User2B2AEEDB-7C5F-4179-BE80-649DD55B4518C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Block) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [TCP Query User2E858FE0-9142-4312-8E70-C21A0FA30D53C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe] =&gt; (Allow) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [UDP Query UserFD2327B3-3575-4FFD-8CD6-110255058609C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe] =&gt; (Allow) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [663C67BD-E556-4C15-B443-0198A336ACCE] =&gt; (Block) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [37553DE9-4D90-4CE3-AFEA-CD53619A5F61] =&gt; (Block) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [F3A0DD59-0075-44DB-833D-668479A84900] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoamingZoombinZoom.exe =&gt; No File\nFirewallRules: [8B730F98-3968-42A3-AB7B-001BD1618A58] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoamingZoombinairhost.exe =&gt; No File\nFirewallRules: [F0045ADC-AEA7-406F-8C15-26BA696126A9] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [4B943EEA-FFAE-48AC-83AB-470A55A8022B] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [4C2E7AE0-A446-4C94-A73B-E6FAA3E4EA66] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [467134C1-8DBE-4139-8EDE-D7E61A286F65] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [TCP Query UserD8ED4101-A5CE-4C62-A166-C94C7B8A673FC:fakenet1.4.11fakenet.exe] =&gt; (Allow) C:fakenet1.4.11fakenet.exe () [File not signed]\nFirewallRules: [UDP Query UserCBCE98D5-763A-4A0E-AD25-A01A11150B65C:fakenet1.4.11fakenet.exe] =&gt; (Allow) C:fakenet1.4.11fakenet.exe () [File not signed]\nFirewallRules: [TCP Query User44C0B41F-120E-44CA-BCA9-6654375A0B78C:program files (x86)microsoftskype for desktopskype.exe] =&gt; (Allow) C:program files (x86)microsoftskype for desktopskype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [UDP Query UserC842BD42-262C-4277-96CD-376902CDA081C:program files (x86)microsoftskype for desktopskype.exe] =&gt; (Allow) C:program files (x86)microsoftskype for desktopskype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [TCP Query UserEF992F2B-0A05-4B7D-8D80-0960EDE2BE96C:program files (x86)nmapnmap.exe] =&gt; (Allow) C:program files (x86)nmapnmap.exe (Insecure.Com LLC -&gt; Insecure.Org)\nFirewallRules: [UDP Query UserED9C07AC-142E-4AF4-B911-F0430B82B0ADC:program files (x86)nmapnmap.exe] =&gt; (Allow) C:program files (x86)nmapnmap.exe (Insecure.Com LLC -&gt; Insecure.Org)\nFirewallRules: [TCP Query UserDB6B9E30-A92D-4FAA-B83C-534A9DB88096C:program files (x86)microsoft officeoffice14groove.exe] =&gt; (Block) C:program files (x86)microsoft officeoffice14groove.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [UDP Query User5E059811-A8BA-4348-A5EE-8024A24393C9C:program files (x86)microsoft officeoffice14groove.exe] =&gt; (Block) C:program files (x86)microsoft officeoffice14groove.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [FABFAEEE-3FF4-421B-A30B-818CDC15DD55] =&gt; (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -&gt; Google LLC)","==================== Restore Points =========================","01-06-2020 18:20:41 Installed OSRAM","==================== Faulty Device Manager Devices ============","Name: WAN Miniport (SSTP) #3\nDescription: WAN Miniport (SSTP)\nClass Guid: 4d36e972-e325-11ce-bfc1-08002be10318\nManufacturer: Microsoft\nService: RasSstp\nProblem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)\nResolution: Update the driver","Name: vJoy Device\nDescription: vJoy Device\nClass Guid: 745a17a0-74d3-11d0-b6fe-00a0c90f57da\nManufacturer: Shaul Eizikovich\nService: vjoy\nProblem: : This device is disabled. (Code 22)\nResolution: In Device Manager, click &quot;Action&quot;, and then click &quot;Enable Device&quot;. This starts the Enable Device wizard. Follow the instructions.","==================== Event log errors: ========================","Application errors:\n==================\nError: (06/09/2020 09:32:39 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome da aplicação com falha: SecureLine.exe, versão: 1.0.289.0, carimbo de data/hora: 0x5720feec\nNome do módulo com falha: HTMLayout.dll, versão: 6.3.9600.19697, carimbo de data/hora: 0x5e91f218\nCódigo de exceção: 0xc0000135\nDesvio de falha: 0x0009d452\nID do processo com falha: 0x1294\nHora de início da aplicação com falha: 0x01d63e367fe5e91f\nCaminho da aplicação com falha: C:Program FilesAVAST SoftwareSecureLineSecureLine.exe\nCaminho do módulo com falha: HTMLayout.dll\nID do Relatório: c6e5238e-aa2b-11ea-8303-3ca82aab1c8a\nNome completo do pacote com falha: \nID da aplicação relativa ao pacote com falha:","Error: (06/09/2020 09:30:46 AM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: O programa LiveComm.exe versão 17.5.9600.22013 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.","ID do Processo: 1d24","Hora de Início: 01d63e378eedd1c5","Hora de Cessação: 4294967295","Caminho da Aplicação: C:Program FilesWindowsAppsmicrosoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbweLiveComm.exe","ID do Relatório: 8290376b-aa2b-11ea-8303-3ca82aab1c8a","Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe","ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1","Error: (06/09/2020 09:21:41 AM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: O programa LiveComm.exe versão 17.5.9600.22013 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.","ID do Processo: 1be8","Hora de Início: 01d63e36410c1675","Hora de Cessação: 4294967295","Caminho da Aplicação: C:Program FilesWindowsAppsmicrosoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbweLiveComm.exe","ID do Relatório: 35f199e1-aa2a-11ea-8303-3ca82aab1c8a","Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe","ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1","Error: (06/09/2020 09:10:41 AM) (Source: DPTF) (EventID: 256) (User: )\nDescription: Intel® Dynamic Platform and Thermal Framework : ESIF(8.0.10100.71) TYPE: ERROR","DPTF Build Version:  8.0.10100.71\nDPTF Build Date:  Sep 18 2014 11:16:17\nSource File:  &#8230;&#8230;..SourcesPoliciesPolicyLibPolicyBase.cpp @ line 553\nExecuting Function:  PolicyBase::takeControlOfOsc\nMessage:  Failed to acquire OSC.\nPolicy:   [0]","Error: (06/08/2020 02:11:58 AM) (Source: NvStreamSvc) (EventID: 1) (User: )\nDescription: Event-ID 1","Error: (06/08/2020 02:11:57 AM) (Source: NvStreamSvc) (EventID: 1) (User: )\nDescription: Event-ID 1","Error: (06/07/2020 05:15:29 PM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome da aplicação com falha: rundll32.exe_winethc.dll, versão: 6.3.9600.17415, carimbo de data/hora: 0x54504eb8\nNome do módulo com falha: USER32.dll, versão: 6.3.9600.19697, carimbo de data/hora: 0x5e91f8a1\nCódigo de exceção: 0xc0000142\nDesvio de falha: 0x00000000000ecf40\nID do processo com falha: 0xfe20\nHora de início da aplicação com falha: 0x01d63ce6dc383106\nCaminho da aplicação com falha: C:WindowsSystem32rundll32.exe\nCaminho do módulo com falha: USER32.dll\nID do Relatório: 1a146bd8-a8da-11ea-8302-3ca82aab1c8a\nNome completo do pacote com falha: \nID da aplicação relativa ao pacote com falha:","Error: (06/07/2020 11:52:54 AM) (Source: Perflib) (EventID: 1008) (User: )\nDescription: O procedimento Open para o serviço &quot;WmiApRpl&quot; na DLL &quot;C:Windowssystem32wbemwmiaprpl.dll&quot; falhou. Os dados de desempenho para este serviço não estarão disponíveis. Os primeiros quatro bytes (DWORD) da secção Data contêm o código de erro.","System errors:\n=============\nError: (06/09/2020 10:13:02 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.","Error: (06/09/2020 10:13:02 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.","Error: (06/09/2020 09:43:42 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.","Error: (06/09/2020 09:43:42 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.","Error: (06/09/2020 09:41:40 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.","Error: (06/09/2020 09:41:40 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.","Error: (06/09/2020 09:21:28 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.","Error: (06/09/2020 09:21:27 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.","Windows Defender:\n===================================\nDate: 2016-04-30 16:06:04.685\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 0F93CF3B-A2A0-4700-9D62-D626C4F6BC00\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM","Date: 2016-04-30 14:18:37.297\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 30B6151F-CD35-4918-8EBA-47223CB0EE9A\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM","Date: 2016-04-28 23:46:49.814\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: BBE65ED8-605F-4130-9BD3-D58DD3640E3B\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM","Date: 2016-04-28 22:11:50.407\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: D556AB88-19BC-4270-979C-58941438DC75\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM","Date: 2016-04-28 21:58:02.035\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 20BA1FA2-3A89-4648-8CC9-3D9F0804C803\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM","Date: 2016-04-28 02:40:09.940\nDescription: \nWindows Defender encontrou um erro ao tentar carregar assinaturas e irá tentar reverter para um conjunto de assinaturas em condições conhecido.\nAssinaturas Tentadas: Atual\nCódigo de Erro: 0x80073aba\nDescrição do Erro: O recurso é demasiado velho para ser compatível. \nVersão de Assinatura: 1.191.2881.0;1.191.2881.0\nVersão de Motor: 1.1.11302.0","Date: 2014-12-10 04:48:25.704\nDescription: \nA funcionalidade de Proteção em Tempo Real de Windows Defender encontrou um erro e falhou.\nFuncionalidade: Sistema de Inspeção de Rede\nCódigo de Erro: 0x80070002\nDescrição do Erro: The system cannot find the file specified. \nRazão: Faltam atualizações no sistema que são necessárias à execução do Sistema de Inspeção de Rede. Instale as atualizações necessárias e reinicie o computador.","Date: 2014-12-10 04:46:18.485\nDescription: \nA funcionalidade de Proteção em Tempo Real de Windows Defender encontrou um erro e falhou.\nFuncionalidade: Sistema de Inspeção de Rede\nCódigo de Erro: 0x80070002\nDescrição do Erro: The system cannot find the file specified. \nRazão: Faltam atualizações no sistema que são necessárias à execução do Sistema de Inspeção de Rede. Instale as atualizações necessárias e reinicie o computador.","CodeIntegrity:\n===================================","Date: 2018-11-13 09:54:06.045\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","Date: 2018-11-13 09:54:05.586\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","Date: 2018-11-13 09:54:04.899\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","Date: 2018-11-13 09:54:04.297\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","Date: 2018-11-13 09:54:03.799\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","Date: 2018-11-13 09:54:03.416\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","Date: 2018-11-13 09:54:03.150\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","Date: 2018-11-13 09:54:02.801\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","==================== Memory info ===========================","BIOS: Insyde F.03 03/31/2015\nMotherboard: Hewlett-Packard 8096\nProcessor: Intel® Core™ i5-5200U CPU @ 2.20GHz\nPercentage of memory in use: 41%\nTotal physical RAM: 8130.26 MB\nAvailable physical RAM: 4745.97 MB\nTotal Virtual: 16834.26 MB\nAvailable Virtual: 13268.11 MB","==================== Drives ================================","Drive c: (Windows) (Fixed) (Total:441.62 GB) (Free:56.1 GB) NTFS\nDrive d: (RECOVERY) (Fixed) (Total:23.12 GB) (Free:2.56 GB) NTFS ==&gt;[system with boot components (obtained from drive)]","\\?Volume320a96b5-9680-4cfd-94e7-147030d64aeb (WINRE) (Fixed) (Total:0.63 GB) (Free:0.34 GB) NTFS","==================== MBR &amp; Partition Table ====================","==========================================================\nDisk: 0 (Size: 465.8 GB) (Disk ID: 4199D061)","Partition: GPT.","==================== End of Addition.txt =======================","Click to rate this post!\n                                   \n                               [Total: 0  Average: 0]"],"content_blocks":[{"id":"text-1","type":"text","heading":"","plain_text":"Donc, nouveau scan (09-06-2020):","html":"<p>Donc, nouveau scan (09-06-2020):</p>"},{"id":"text-2","type":"text","heading":"","plain_text":"Résultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2020\nExécuté par XXXXXXZZZ (administrateur) sur XXXXXXZZZ (Hewlett-Packard HP Pavilion Notebook) (09-06-2020 11:52:22)\nExécution à partir de C:  Users  XXXXXXZZZ  Downloads\nProfils chargés: XXXXXXZZZ\nPlateforme: Windows 8.1 (mise à jour) (X64) Langue: Português (Portugal)\nNavigateur par défaut: Chrome\nMode de démarrage: Normal","html":"<p>Résultat de l&#039;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2020\nExécuté par XXXXXXZZZ (administrateur) sur XXXXXXZZZ (Hewlett-Packard HP Pavilion Notebook) (09-06-2020 11:52:22)\nExécution à partir de C:  Users  XXXXXXZZZ  Downloads\nProfils chargés: XXXXXXZZZ\nPlateforme: Windows 8.1 (mise à jour) (X64) Langue: Português (Portugal)\nNavigateur par défaut: Chrome\nMode de démarrage: Normal</p>"},{"id":"text-3","type":"text","heading":"","plain_text":"==================== Processus (liste blanche) =================","html":"<p>==================== Processus (liste blanche) =================</p>"},{"id":"text-4","type":"text","heading":"","plain_text":"(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé. Le fichier ne sera pas déplacé.)","html":"<p>(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé. Le fichier ne sera pas déplacé.)</p>"},{"id":"text-5","type":"text","heading":"","plain_text":"() [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  opvapp.exe\n(Adobe Inc. -&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Apple Inc. -&gt; Apple Inc.) C:  Program Files  Bonjour  mDNSResponder.exe\n(Atheros Communications, Inc.) [File not signed] C:  Program Files (x86)  Jumpstart  jswpbapi.exe\n(AVAST Software s.r.o. -&gt; AVAST Software) C:  Program Files  AVAST Software  SecureLine  VpnSvc.exe\n(AVG Netherlands B.V. -&gt;) C:  Program Files (x86)  AVG Web TuneUp  WtuSystemSupport.exe\n(AVG Netherlands B.V. -&gt; AVG Secure Search) C:  Program Files (x86)  Common Files  AVG Secure Search  vToolbarUpdater  40.3.8  ToolbarUpdater.exe\n(AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  AVG TuneUp  TuneupSvc.exe\n(AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  AVG TuneUp  TuneupUI.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  aswEngSrv.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  aswidsagent.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  AVGSvc.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  AVGUI.exe \n(CyberLink Corp. -&gt;) C:  Program Files  CyberLink  Shared files  RichVideo64.exe\n(CyberLink Corp. -&gt; CyberLink Corp.) C:  Program Files (x86)  Cyberlink  YouCam  YouCamService.exe\n(Dassault Systèmes) [File not signed] C:  Program Files  Dassault Systemes  DraftSight  bin  dsHttpApiService.exe\n(DesignBuilder Software Ltd -&gt; DesignBuilder Software Ltd.) C:  Program Files (x86)  DesignBuilder  JobServer  DBJobServer.exe\n(DesignBuilder Software Ltd -&gt; DesignBuilder) C:  Program Files (x86)  DesignBuilder  Lib  DBSimLServer.exe\n(DEVGURU CO LTD -&gt; DEVGURU Co., LTD.) C:  Program Files  Samsung  USB Drivers  25_escape  conn  ss_conn_service.exe\n(DEVGURU Co., Ltd. -&gt; DEVGURU Co., LTD.) C:  Program Files  Samsung  USB Drivers  28_ssconn2  conn  ss_conn_service2.exe\n(Hewlett Packard -&gt; Hewlett-Packard Co.) C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  ScanToPCActivationApp.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Company) C:  Program Files (x86)  Hewlett-Packard  Shared  hpqwmiex.exe\n(Société Hewlett-Packard -&gt; Société Hewlett-Packard) C:  Windows  System32  hpservice.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.) C:  Program Files (x86)  Hewlett-Packard  HP CoolSense  CoolSense.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.) C:  Program Files (x86)  Hewlett-Packard  HP System Event  HPWMISVC.exe\n(HP Inc. -&gt; HP Inc.) C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  HPSupportSolutionsFrameworkService.exe\n(Intel Corporation &#8211; Groupe des sous-systèmes intégrés et blocs IP -&gt; Intel Corporation) C:  Program Files (x86)  Intel  Intel® Management Engine Components  DAL  jhi_service.exe\n(Intel Corporation &#8211; Groupe des sous-systèmes intégrés et blocs IP -&gt; Intel Corporation) C:  Program Files (x86)  Intel  Intel® Management Engine Components  LMS  LMS.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxCUIService.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxEM.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxHK.exe\n(Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation) C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorDataMgrSvc.exe\n(Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation) C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorIcon.exe\n(Logiciel Intel® -&gt; Intel Corporation) C:  Windows  SysWOW64  esif_uf.exe\n(Logiciel Intel® -&gt; Intel Corporation) C:  Windows  Temp  DPTF  esif_assist.exe\n(Malwarebytes Inc -&gt; Malwarebytes) C:  Program Files  Malwarebytes  Anti-Malware  MBAMService.exe\n(Malwarebytes Inc -&gt; Malwarebytes) C:  Program Files  Malwarebytes  Anti-Malware  mbamtray.exe\n(Mega Limited -&gt; Mega Limited) C:  Users  XXXXXXZZZ  AppData  Local  MEGAsync  MEGAsync.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Office  Office14  MSOSYNC.EXE\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Windows  Microsoft.NET  Framework64  v3.0  WPF  PresentationFontCache.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  dllhost.exe \n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  SkyDrive.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  wlanext.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  NetService  NvNetworkService.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvBackend.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display  nvtray.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display  nvxdsync.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  NvStreamSrv  nvstreamsvc.exe \n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Windows  System32  nvvsvc.exe \n(Technologie PLX) [File not signed] C:  Program Files (x86)  Iomega  Iomega Encryption  Iomega Encryption.exe\n(Realtek Semiconductor Corp -&gt;) C:  Program Files (x86)  Realtek  REALTEK Bluetooth  BTDevMgr.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RAVBg64.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RtkAudioService64.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RtkNGUI64.exe\n(Softex Inc.) [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  OmniServ.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  ClientCore.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBroker.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBrokerDsktop.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnh.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnhService.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPHelper.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Program Files (x86)  Common Files  VMware  USB  vmware-usbarbitrator64.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Program Files (x86)  VMware  VMware Player  vmware-authd.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Windows  SysWOW64  vmnat.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Windows  SysWOW64  vmnetdhcp.exe\n(WildTangent Inc -&gt; WildTangent) C:  Program Files (x86)  WildTangent Games  App  GamesAppIntegrationService.exe\n(WildTangent Inc -&gt; WildTangent, Inc.) C:  Program Files (x86)  WildTangent Games  App  GamesAppService.exe","html":"<p>() [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  opvapp.exe\n(Adobe Inc. -&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Apple Inc. -&gt; Apple Inc.) C:  Program Files  Bonjour  mDNSResponder.exe\n(Atheros Communications, Inc.) [File not signed] C:  Program Files (x86)  Jumpstart  jswpbapi.exe\n(AVAST Software s.r.o. -&gt; AVAST Software) C:  Program Files  AVAST Software  SecureLine  VpnSvc.exe\n(AVG Netherlands B.V. -&gt;) C:  Program Files (x86)  AVG Web TuneUp  WtuSystemSupport.exe\n(AVG Netherlands B.V. -&gt; AVG Secure Search) C:  Program Files (x86)  Common Files  AVG Secure Search  vToolbarUpdater  40.3.8  ToolbarUpdater.exe\n(AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  AVG TuneUp  TuneupSvc.exe\n(AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  AVG TuneUp  TuneupUI.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  aswEngSrv.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  aswidsagent.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  AVGSvc.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  AVGUI.exe \n(CyberLink Corp. -&gt;) C:  Program Files  CyberLink  Shared files  RichVideo64.exe\n(CyberLink Corp. -&gt; CyberLink Corp.) C:  Program Files (x86)  Cyberlink  YouCam  YouCamService.exe\n(Dassault Systèmes) [File not signed] C:  Program Files  Dassault Systemes  DraftSight  bin  dsHttpApiService.exe\n(DesignBuilder Software Ltd -&gt; DesignBuilder Software Ltd.) C:  Program Files (x86)  DesignBuilder  JobServer  DBJobServer.exe\n(DesignBuilder Software Ltd -&gt; DesignBuilder) C:  Program Files (x86)  DesignBuilder  Lib  DBSimLServer.exe\n(DEVGURU CO LTD -&gt; DEVGURU Co., LTD.) C:  Program Files  Samsung  USB Drivers  25_escape  conn  ss_conn_service.exe\n(DEVGURU Co., Ltd. -&gt; DEVGURU Co., LTD.) C:  Program Files  Samsung  USB Drivers  28_ssconn2  conn  ss_conn_service2.exe\n(Hewlett Packard -&gt; Hewlett-Packard Co.) C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  ScanToPCActivationApp.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Company) C:  Program Files (x86)  Hewlett-Packard  Shared  hpqwmiex.exe\n(Société Hewlett-Packard -&gt; Société Hewlett-Packard) C:  Windows  System32  hpservice.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.) C:  Program Files (x86)  Hewlett-Packard  HP CoolSense  CoolSense.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.) C:  Program Files (x86)  Hewlett-Packard  HP System Event  HPWMISVC.exe\n(HP Inc. -&gt; HP Inc.) C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  HPSupportSolutionsFrameworkService.exe\n(Intel Corporation &#8211; Groupe des sous-systèmes intégrés et blocs IP -&gt; Intel Corporation) C:  Program Files (x86)  Intel  Intel® Management Engine Components  DAL  jhi_service.exe\n(Intel Corporation &#8211; Groupe des sous-systèmes intégrés et blocs IP -&gt; Intel Corporation) C:  Program Files (x86)  Intel  Intel® Management Engine Components  LMS  LMS.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxCUIService.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxEM.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxHK.exe\n(Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation) C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorDataMgrSvc.exe\n(Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation) C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorIcon.exe\n(Logiciel Intel® -&gt; Intel Corporation) C:  Windows  SysWOW64  esif_uf.exe\n(Logiciel Intel® -&gt; Intel Corporation) C:  Windows  Temp  DPTF  esif_assist.exe\n(Malwarebytes Inc -&gt; Malwarebytes) C:  Program Files  Malwarebytes  Anti-Malware  MBAMService.exe\n(Malwarebytes Inc -&gt; Malwarebytes) C:  Program Files  Malwarebytes  Anti-Malware  mbamtray.exe\n(Mega Limited -&gt; Mega Limited) C:  Users  XXXXXXZZZ  AppData  Local  MEGAsync  MEGAsync.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Office  Office14  MSOSYNC.EXE\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Windows  Microsoft.NET  Framework64  v3.0  WPF  PresentationFontCache.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  dllhost.exe \n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  SkyDrive.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  wlanext.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  NetService  NvNetworkService.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvBackend.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display  nvtray.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display  nvxdsync.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  NvStreamSrv  nvstreamsvc.exe \n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Windows  System32  nvvsvc.exe \n(Technologie PLX) [File not signed] C:  Program Files (x86)  Iomega  Iomega Encryption  Iomega Encryption.exe\n(Realtek Semiconductor Corp -&gt;) C:  Program Files (x86)  Realtek  REALTEK Bluetooth  BTDevMgr.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RAVBg64.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RtkAudioService64.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RtkNGUI64.exe\n(Softex Inc.) [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  OmniServ.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  ClientCore.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBroker.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBrokerDsktop.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnh.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnhService.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPHelper.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Program Files (x86)  Common Files  VMware  USB  vmware-usbarbitrator64.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Program Files (x86)  VMware  VMware Player  vmware-authd.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Windows  SysWOW64  vmnat.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Windows  SysWOW64  vmnetdhcp.exe\n(WildTangent Inc -&gt; WildTangent) C:  Program Files (x86)  WildTangent Games  App  GamesAppIntegrationService.exe\n(WildTangent Inc -&gt; WildTangent, Inc.) C:  Program Files (x86)  WildTangent Games  App  GamesAppService.exe</p>"},{"id":"text-6","type":"text","heading":"","plain_text":"==================== Registre (liste blanche) ===================","html":"<p>==================== Registre (liste blanche) ===================</p>"},{"id":"text-7","type":"text","heading":"","plain_text":"(Si une entrée est incluse dans la liste de correctifs, l&#39;élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)","html":"<p>(Si une entrée est incluse dans la liste de correctifs, l&#039;élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)</p>"},{"id":"text-8","type":"text","heading":"","plain_text":"HKLM  &#8230;  Run: [RTHDVCPL] =&gt; C:  Program Files  Realtek  Audio  HDA  RtkNGUI64.exe [8459480 2015-03-04] (Realtek Semiconductor Corp -&gt; Realtek Semiconductor)\nHKLM  &#8230;  Run: [NvBackend] =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvBackend.exe [2464072 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nHKLM  &#8230;  Run: [ShadowPlay] =&gt; C:  Windows  system32  nvspcap64.dll [2800296 2015-02-09] (NVIDIA Corporation PE Sign v2014 -&gt; NVIDIA Corporation) [File not signed]\nHKLM  &#8230;  Run: [AdobeAAMUpdater-1.0] =&gt; C:  Program Files (x86)  Common Files  Adobe  OOBE  PDApp  UWA  UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated -&gt; Adobe Systems Incorporated)\nHKLM  &#8230;  Run: [IAStorIcon] =&gt; C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorIcon.exe [322472 2015-07-22] (Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation)\nHKLM  &#8230;  Run: [AVGUI.exe] =&gt; C:  Program Files (x86)  AVG  Antivirus  AvLaunch.exe [156776 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nHKLM-x32  &#8230;  Exécuter: [AccelerometerSysTrayApplet] =&gt; C:  Program Files (x86)  Hewlett-Packard  HP 3D DriveGuard  AccelerometerST.exe [127624 2015-01-30] (Société Hewlett-Packard -&gt; Société Hewlett-Packard)\nHKLM-x32  &#8230;  Exécuter: [HPMessageService] =&gt; C:  Program Files (x86)  Hewlett-Packard  HP System Event  HPMSGSVC.exe [509192 2014-12-01] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nHKLM-x32  &#8230;  Exécuter: [HP Software Update] =&gt; C:  Program Files (x86)  Hp  HP Software Update  HPWuSchd2.exe [96056 2013-05-30] (Société Hewlett-Packard -&gt; Hewlett-Packard)\nHKLM-x32  &#8230;  Exécuter: [BCSSync] =&gt; C:  Program Files (x86)  Microsoft Office  Office14  BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKLM-x32  &#8230;  Exécuter: [] =&gt; [X]\nHKLM-x32  &#8230;  Exécuter: [Acrobat Assistant 8.0] =&gt; C:  Program Files (x86)  Adobe  Acrobat 11.0  Acrobat  Acrotray.exe [3498728 2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nHKLM-x32  &#8230;  Exécuter: [vProt] =&gt; C:  Program Files (x86)  AVG Web TuneUp  vprot.exe [2195968 2019-01-28] (AVG Netherlands B.V. -&gt;)\nHKLM-x32  &#8230;  Exécuter: [VirtualCloneDrive] =&gt; C:  Program Files (x86)  Elaborate Bytes  VirtualCloneDrive  VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nHKLM-x32  &#8230;  Exécuter: [Autodesk Desktop App] =&gt; C:  Program Files (x86)  Autodesk  Autodesk Desktop App  AutodeskDesktopApp.exe [709416 2018-03-10] (Autodesk, Inc. -&gt; Autodesk, Inc.)\nHKLM-x32  &#8230;  Exécuter: [jswtrayutil] =&gt; C:  Program Files (x86)  Jumpstart  jswtrayutil.exe [528384 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nHKLM-x32  &#8230;  Exécuter: [KiesTrayAgent] =&gt; C:  Program Files (x86)  Samsung  Kies  KiesTrayAgent.exe [318112 2017-11-15] (Samsung Electronics CO., LTD. -&gt; Samsung Electronics Co., Ltd.)\nHKLM-x32  &#8230;  Exécuter: [Aimersoft Helper Compact.exe] =&gt; C:  Program Files (x86)  Fichiers communs  Aimersoft  Aimersoft Helper Compact  ASHelper.exe [2138272 2016-10-08] (Shenzhen Jia Xing Investment Co., Ltd. -&gt; AimerSoft)\nHKLM-x32  &#8230;  Exécuter: [SunJavaUpdateSched] =&gt; C:  Program Files (x86)  Fichiers communs  Java  Java Update  jusched.exe [646160 2019-12-11] (Oracle America, Inc. -&gt; Oracle Corporation)\nHKLM-x32  &#8230;  Exécuter: [XArp] =&gt; C:  Program Files (x86)  XArp  xarp.exe [10413568 2011-04-01] (www.chrismc.de) [File not signed]\nHKLM  &#8230;  Winlogon: [Userinit] C:  Windows  SysWOW64  userinit.exe, &lt;==== ATTENTION\nHKLM  &#8230;  Policies  Explorer: [AllowLegacyWebView] 1\nHKLM  &#8230;  Policies  Explorer: [AllowUnhashedWebView] 1\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [HP Deskjet 3050 J610 series (NET)] =&gt; C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [IomegaEncryption] =&gt; C:  Program Files (x86)  Iomega  Iomega Encryption  Iomega Encryption.exe [455168 2011-09-16] (Technologie PLX) [File not signed]\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [DAEMON Tools Lite Automount] =&gt; C:  Program Files  DAEMON Tools Lite  DTAgent.exe [4289728 2016-04-04] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [GoogleDriveSync] =&gt; C:  Program Files  Google  Drive  googledrivesync.exe [48214752 2020-04-06] (Google LLC -&gt;)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Autodesk Sync] =&gt; C:  Program Files  Autodesk  Autodesk Sync  AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -&gt; Autodesk, Inc.)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Steam] =&gt; C:  Program Files (x86)  Steam  steam.exe [3200800 2018-05-19] (Valve -&gt; Valve Corporation)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [CCleaner Smart Cleaning] =&gt; C:  Program Files  CCleaner  CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Spotify] =&gt; C:  Users  XXXXXXZZZ  AppData  Roaming  Spotify  Spotify.exe [22824680 2020-05-19] (Spotify AB -&gt; Spotify Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [OfficeSyncProcess] =&gt; C:  Program Files (x86)  Microsoft Office  Office14  MSOSYNC.EXE [721504 2015-09-02] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Policies  Explorer: [] \nHKU  S-1-5-18  &#8230;  Run: [Autodesk Sync] =&gt; C:  Program Files  Autodesk  Autodesk Sync  AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -&gt; Autodesk, Inc.)\nHKLM  &#8230;  Print  Monitors  Adobe PDF Port Monitor: C:  Windows  system32  AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc)\nHKLM  &#8230;  Print  Monitors  HP 9311 Status Monitor: C:  Windows  system32  hpinksts9311LM.dll [332176 2012-09-12] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  Moniteur d&#39;état HP C611: C:  Windows  system32  hpinkstsC611LM.dll [333344 2013-05-06] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  HP Discovery Port Monitor (HP Deskjet 3050 J610 series): C:  Windows  system32  HPDiscoPM9311.dll [741480 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  HP Universal Port Monitor: C:  Windows  system32  hpbprtmon.dll [423936 2014-06-11] (Éditeur de compatibilité matérielle Microsoft Windows -&gt; Hewlett-Packard)\nHKLM  &#8230;  Print  Monitors  KM Language Monitor: C:  Windows  system32  KMPJL64.DLL [124560 2017-07-31] (Éditeur de compatibilité matérielle Microsoft Windows -&gt; KYOCERA Document Solutions Inc.)\nHKLM  &#8230;  Print  Monitors  Wondershare PDFelement Monitor: C:  Windows  system32  WSPDFelementMonitor.dll [271360 2017-10-19] (Logiciel Wondershare) [File not signed]\nHKLM  Software  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; C:  Program Files (x86)  Google  Chrome  Application  83.0.4103.97  Installer  chrmstp.exe [2020-06-05] (Google LLC -&gt; Google LLC)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [538C240D-3DEE-4032-AB4C-08A3A6EB0861] -&gt; c:  Program Files (x86)  CyberLink  YouCam  CLCredProv  x64  CLCredProv.dll [2015-02-11] (CyberLink Corp. -&gt; CyberLink)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [F3F1B0FA-4775-41d8-8578-436772D93FB4] -&gt; C:  Program Files  Hewlett-Packard  SimplePass  OmniPassCredProv.dll [2015-03-04] (Softex Inc.) [File not signed]\nHKLM  Software  &#8230;  Authentication  Credential Provider Filters: [F3F1B0FA-4775-41d8-8578-436772D93FB4] -&gt; C:  Program Files  Hewlett-Packard  SimplePass  OmniPassCredProv.dll [2015-03-04] (Softex Inc.) [File not signed]\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  Assistante de gestor de conteúdo pour PlayStation®.lnk [2016-04-23]\nShortcutTarget: Assistente de gestor de conteúdo for PlayStation®.lnk -&gt; C:  Program Files (x86)  Sony  Content Manager Assistant  CMA.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  Avast SecureLine VPN.lnk [2019-07-16]\nShortcutTarget: Avast SecureLine VPN.lnk -&gt; C:  Program Files  AVAST Software  SecureLine  Vpn.exe (AVAST Software s.r.o. -&gt; AVAST Software)\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  AVG TuneUp.lnk [2019-09-20]\nShortcutTarget: AVG TuneUp.lnk -&gt; C:  Program Files (x86)  AVG  AVG TuneUp  TuneupUI.exe (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  Autenticacao.gov.pt.lnk [2020-04-24]\nShortcutTarget: Autenticacao.gov.pt.lnk -&gt; C:  Program Files (x86)  plugin Autenticacao.Gov  Autenticacao.gov.pt.exe (Agência para a Modernização Administrativa, I.P. -&gt; Agência para a Modernização Administrativa, IP)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  MEGAsync.lnk [2019-02-07]\nShortcutTarget: MEGAsync.lnk -&gt; C:  Users  XXXXXXZZZ  AppData  Local  MEGAsync  MEGAsync.exe (Mega Limited -&gt; Mega Limited)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  OneNote 2010 Screen Clipper and Launcher.lnk [2018-05-18]\nShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -&gt; C:  Program Files (x86)  Microsoft Office  Office14  ONENOTEM.EXE (Microsoft Corporation -&gt; Microsoft Corporation)\nBootExecute: autocheck autochk / m / P  Device  HarddiskVolume13autocheck autochk * \nGroupPolicy: Restriction? &lt;==== ATTENTION\nFF HKLM  SOFTWARE  Policies  Mozilla  Firefox: Restriction &lt;==== ATTENTION\nCHR HKLM  SOFTWARE  Policies  Google: Restriction &lt;==== ATTENTION","html":"<p>HKLM  &#8230;  Run: [RTHDVCPL] =&gt; C:  Program Files  Realtek  Audio  HDA  RtkNGUI64.exe [8459480 2015-03-04] (Realtek Semiconductor Corp -&gt; Realtek Semiconductor)\nHKLM  &#8230;  Run: [NvBackend] =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvBackend.exe [2464072 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nHKLM  &#8230;  Run: [ShadowPlay] =&gt; C:  Windows  system32  nvspcap64.dll [2800296 2015-02-09] (NVIDIA Corporation PE Sign v2014 -&gt; NVIDIA Corporation) [File not signed]\nHKLM  &#8230;  Run: [AdobeAAMUpdater-1.0] =&gt; C:  Program Files (x86)  Common Files  Adobe  OOBE  PDApp  UWA  UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated -&gt; Adobe Systems Incorporated)\nHKLM  &#8230;  Run: [IAStorIcon] =&gt; C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorIcon.exe [322472 2015-07-22] (Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation)\nHKLM  &#8230;  Run: [AVGUI.exe] =&gt; C:  Program Files (x86)  AVG  Antivirus  AvLaunch.exe [156776 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nHKLM-x32  &#8230;  Exécuter: [AccelerometerSysTrayApplet] =&gt; C:  Program Files (x86)  Hewlett-Packard  HP 3D DriveGuard  AccelerometerST.exe [127624 2015-01-30] (Société Hewlett-Packard -&gt; Société Hewlett-Packard)\nHKLM-x32  &#8230;  Exécuter: [HPMessageService] =&gt; C:  Program Files (x86)  Hewlett-Packard  HP System Event  HPMSGSVC.exe [509192 2014-12-01] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nHKLM-x32  &#8230;  Exécuter: [HP Software Update] =&gt; C:  Program Files (x86)  Hp  HP Software Update  HPWuSchd2.exe [96056 2013-05-30] (Société Hewlett-Packard -&gt; Hewlett-Packard)\nHKLM-x32  &#8230;  Exécuter: [BCSSync] =&gt; C:  Program Files (x86)  Microsoft Office  Office14  BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKLM-x32  &#8230;  Exécuter: [] =&gt; [X]\nHKLM-x32  &#8230;  Exécuter: [Acrobat Assistant 8.0] =&gt; C:  Program Files (x86)  Adobe  Acrobat 11.0  Acrobat  Acrotray.exe [3498728 2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nHKLM-x32  &#8230;  Exécuter: [vProt] =&gt; C:  Program Files (x86)  AVG Web TuneUp  vprot.exe [2195968 2019-01-28] (AVG Netherlands B.V. -&gt;)\nHKLM-x32  &#8230;  Exécuter: [VirtualCloneDrive] =&gt; C:  Program Files (x86)  Elaborate Bytes  VirtualCloneDrive  VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nHKLM-x32  &#8230;  Exécuter: [Autodesk Desktop App] =&gt; C:  Program Files (x86)  Autodesk  Autodesk Desktop App  AutodeskDesktopApp.exe [709416 2018-03-10] (Autodesk, Inc. -&gt; Autodesk, Inc.)\nHKLM-x32  &#8230;  Exécuter: [jswtrayutil] =&gt; C:  Program Files (x86)  Jumpstart  jswtrayutil.exe [528384 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nHKLM-x32  &#8230;  Exécuter: [KiesTrayAgent] =&gt; C:  Program Files (x86)  Samsung  Kies  KiesTrayAgent.exe [318112 2017-11-15] (Samsung Electronics CO., LTD. -&gt; Samsung Electronics Co., Ltd.)\nHKLM-x32  &#8230;  Exécuter: [Aimersoft Helper Compact.exe] =&gt; C:  Program Files (x86)  Fichiers communs  Aimersoft  Aimersoft Helper Compact  ASHelper.exe [2138272 2016-10-08] (Shenzhen Jia Xing Investment Co., Ltd. -&gt; AimerSoft)\nHKLM-x32  &#8230;  Exécuter: [SunJavaUpdateSched] =&gt; C:  Program Files (x86)  Fichiers communs  Java  Java Update  jusched.exe [646160 2019-12-11] (Oracle America, Inc. -&gt; Oracle Corporation)\nHKLM-x32  &#8230;  Exécuter: [XArp] =&gt; C:  Program Files (x86)  XArp  xarp.exe [10413568 2011-04-01] (www.chrismc.de) [File not signed]\nHKLM  &#8230;  Winlogon: [Userinit] C:  Windows  SysWOW64  userinit.exe, &lt;==== ATTENTION\nHKLM  &#8230;  Policies  Explorer: [AllowLegacyWebView] 1\nHKLM  &#8230;  Policies  Explorer: [AllowUnhashedWebView] 1\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [HP Deskjet 3050 J610 series (NET)] =&gt; C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [IomegaEncryption] =&gt; C:  Program Files (x86)  Iomega  Iomega Encryption  Iomega Encryption.exe [455168 2011-09-16] (Technologie PLX) [File not signed]\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [DAEMON Tools Lite Automount] =&gt; C:  Program Files  DAEMON Tools Lite  DTAgent.exe [4289728 2016-04-04] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [GoogleDriveSync] =&gt; C:  Program Files  Google  Drive  googledrivesync.exe [48214752 2020-04-06] (Google LLC -&gt;)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Autodesk Sync] =&gt; C:  Program Files  Autodesk  Autodesk Sync  AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -&gt; Autodesk, Inc.)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Steam] =&gt; C:  Program Files (x86)  Steam  steam.exe [3200800 2018-05-19] (Valve -&gt; Valve Corporation)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [CCleaner Smart Cleaning] =&gt; C:  Program Files  CCleaner  CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Spotify] =&gt; C:  Users  XXXXXXZZZ  AppData  Roaming  Spotify  Spotify.exe [22824680 2020-05-19] (Spotify AB -&gt; Spotify Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [OfficeSyncProcess] =&gt; C:  Program Files (x86)  Microsoft Office  Office14  MSOSYNC.EXE [721504 2015-09-02] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Policies  Explorer: [] \nHKU  S-1-5-18  &#8230;  Run: [Autodesk Sync] =&gt; C:  Program Files  Autodesk  Autodesk Sync  AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -&gt; Autodesk, Inc.)\nHKLM  &#8230;  Print  Monitors  Adobe PDF Port Monitor: C:  Windows  system32  AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc)\nHKLM  &#8230;  Print  Monitors  HP 9311 Status Monitor: C:  Windows  system32  hpinksts9311LM.dll [332176 2012-09-12] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  Moniteur d&#039;état HP C611: C:  Windows  system32  hpinkstsC611LM.dll [333344 2013-05-06] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  HP Discovery Port Monitor (HP Deskjet 3050 J610 series): C:  Windows  system32  HPDiscoPM9311.dll [741480 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  HP Universal Port Monitor: C:  Windows  system32  hpbprtmon.dll [423936 2014-06-11] (Éditeur de compatibilité matérielle Microsoft Windows -&gt; Hewlett-Packard)\nHKLM  &#8230;  Print  Monitors  KM Language Monitor: C:  Windows  system32  KMPJL64.DLL [124560 2017-07-31] (Éditeur de compatibilité matérielle Microsoft Windows -&gt; KYOCERA Document Solutions Inc.)\nHKLM  &#8230;  Print  Monitors  Wondershare PDFelement Monitor: C:  Windows  system32  WSPDFelementMonitor.dll [271360 2017-10-19] (Logiciel Wondershare) [File not signed]\nHKLM  Software  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; C:  Program Files (x86)  Google  Chrome  Application  83.0.4103.97  Installer  chrmstp.exe [2020-06-05] (Google LLC -&gt; Google LLC)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [538C240D-3DEE-4032-AB4C-08A3A6EB0861] -&gt; c:  Program Files (x86)  CyberLink  YouCam  CLCredProv  x64  CLCredProv.dll [2015-02-11] (CyberLink Corp. -&gt; CyberLink)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [F3F1B0FA-4775-41d8-8578-436772D93FB4] -&gt; C:  Program Files  Hewlett-Packard  SimplePass  OmniPassCredProv.dll [2015-03-04] (Softex Inc.) [File not signed]\nHKLM  Software  &#8230;  Authentication  Credential Provider Filters: [F3F1B0FA-4775-41d8-8578-436772D93FB4] -&gt; C:  Program Files  Hewlett-Packard  SimplePass  OmniPassCredProv.dll [2015-03-04] (Softex Inc.) [File not signed]\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  Assistante de gestor de conteúdo pour PlayStation®.lnk [2016-04-23]\nShortcutTarget: Assistente de gestor de conteúdo for PlayStation®.lnk -&gt; C:  Program Files (x86)  Sony  Content Manager Assistant  CMA.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  Avast SecureLine VPN.lnk [2019-07-16]\nShortcutTarget: Avast SecureLine VPN.lnk -&gt; C:  Program Files  AVAST Software  SecureLine  Vpn.exe (AVAST Software s.r.o. -&gt; AVAST Software)\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  AVG TuneUp.lnk [2019-09-20]\nShortcutTarget: AVG TuneUp.lnk -&gt; C:  Program Files (x86)  AVG  AVG TuneUp  TuneupUI.exe (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  Autenticacao.gov.pt.lnk [2020-04-24]\nShortcutTarget: Autenticacao.gov.pt.lnk -&gt; C:  Program Files (x86)  plugin Autenticacao.Gov  Autenticacao.gov.pt.exe (Agência para a Modernização Administrativa, I.P. -&gt; Agência para a Modernização Administrativa, IP)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  MEGAsync.lnk [2019-02-07]\nShortcutTarget: MEGAsync.lnk -&gt; C:  Users  XXXXXXZZZ  AppData  Local  MEGAsync  MEGAsync.exe (Mega Limited -&gt; Mega Limited)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  OneNote 2010 Screen Clipper and Launcher.lnk [2018-05-18]\nShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -&gt; C:  Program Files (x86)  Microsoft Office  Office14  ONENOTEM.EXE (Microsoft Corporation -&gt; Microsoft Corporation)\nBootExecute: autocheck autochk / m / P  Device  HarddiskVolume13autocheck autochk * \nGroupPolicy: Restriction? &lt;==== ATTENTION\nFF HKLM  SOFTWARE  Policies  Mozilla  Firefox: Restriction &lt;==== ATTENTION\nCHR HKLM  SOFTWARE  Policies  Google: Restriction &lt;==== ATTENTION</p>"},{"id":"text-9","type":"text","heading":"","plain_text":"==================== Tâches planifiées (liste blanche) ============","html":"<p>==================== Tâches planifiées (liste blanche) ============</p>"},{"id":"text-10","type":"text","heading":"","plain_text":"(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé sauf s&#39;il est répertorié séparément.)","html":"<p>(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé sauf s&#039;il est répertorié séparément.)</p>"},{"id":"text-11","type":"text","heading":"","plain_text":"Tâche: 019EFCA7-800A-45BD-B5D4-E7BC04A47010 &#8211; System32  Tasks  Adobe Flash Player NPAPI Notifier =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_371_Plugin.exe [1458232 2020-05-13] (Adobe Inc. -&gt; Adobe)\nTâche: 035A9236-3D0D-4CEC-88E7-316A88A60D57 &#8211; System32  Tasks  AutoKMS =&gt; C:  Windows  AutoKMS  AutoKMS.exe [5046784 2018-01-30] () [File not signed]\nTâche: 0B7F76E1-EE25-416A-B69A-E967896AD3B6 &#8211; System32  Tasks  GoogleUpdateTaskMachineUA =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [154440 2016-03-18] (Google Inc -&gt; Google Inc.)\nTâche: 0CE47549-B8CB-4819-ABF3-3FA3A57AB0D4 &#8211; System32  Tasks  Hewlett-Packard  HP Active Health  HP Active Health Scan (HPSA) =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPActiveHealth  ActiveHealth.exe [198696 2016-11-07] (HP Inc. -&gt; HP Inc.)\nTâche: 130F5CA5-8C3C-463D-8A72-447D87BD6E01 &#8211; System32  Tasks  Start SimplePass =&gt; C:  Program Files  Hewlett-Packard  SimplePass  ClientCore.exe [4716280 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: 196B8F02-98BF-41FB-B1A3-5F36DB0DE18D &#8211; System32  Tasks  Adobe Acrobat Update Task =&gt; C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -&gt; Adobe Systems)\nTâche: 2082FD68-9C15-4062-AC44-9424D96210B8 &#8211; pas de chemin de fichier\nTâche: 23DAD9CE-2053-4866-8F74-D0729C66989D &#8211; pas de chemin de fichier\nTâche: 2D6FC168-D4B7-4440-A3F6-FFF3E4F97500 &#8211; pas de chemin de fichier\nTâche: 2E6908D5-EFAB-4013-A5F8-C67EA3EB73E1 &#8211; System32  Tasks  G2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001 =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToM 17956  g2mupdate.exe [32424 2020-06-09] (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nTâche: 336DBD9A-B9BE-4A9D-8E7E-70DF4DD0C45C &#8211; System32  Tasks  G2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001 =&gt; C:  Users  XXXXXXZZZ  AppData  Local  Go 17956  g2mupload.exe [32424 2020-06-09] (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nTâche: 4676C5EC-11E4-46DB-A339-B05760EBFD33 &#8211; System32  Tasks  Antivirus Emergency Update =&gt; C:  Program Files (x86)  AVG  Antivirus  AvEmUpdate.exe [3387520 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nTâche: 480057E1-65C8-4672-B6EB-449337F4A059 &#8211; System32  Tasks  AVG TuneUp Update =&gt; C:  Program Files (x86)  AVG  AVG TuneUp  TUNEUpdate.exe [1706528 2019-09-20] (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nTâche: 482950C8-5BA7-4A9B-B305-736188A98CF5 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Assistant Quick Start =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF.exe [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: 4922F370-D891-4A1B-B13A-67F51EFA83AE &#8211; pas de chemin de fichier\nTâche: 506A236E-C8FC-491D-A1A7-2D971555245D &#8211; System32  Tasks  YCMServiceAgent =&gt; c:  Program Files (x86)  Cyberlink  YouCam  YouCamService.exe [267224 2015-02-11] (CyberLink Corp. -&gt; CyberLink Corp.)\nTâche: 71EB72E0-9D55-4AC5-BDF7-6B6F866DDCDE &#8211; System32  Tasks  npcapwatchdog =&gt; C:  Program Files  Npcap  CheckStatus.bat [862 2019-04-30] () [File not signed]\nTâche: 7A56FE0C-B693-4340-AEA0-D5C5C9067C4C &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Solutions Framework Updater =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  Modules  HPSSFUpdater.exe [662872 2020-04-30] (HP Inc. -&gt; HP Inc.)\nTâche: 8BF8C487-50E7-4763-9DD0-BEEB2C3856D5 &#8211; System32  Tasks  Avast SecureLine =&gt; C:  Program Files  AVAST Software  SecureLine  SecureLine.exe [3438680 2016-05-24] (Logiciel AVAST a.s. -&gt; Logiciel AVAST)\nTâche: 8F05A697-8454-4451-9D04-4F3843C4EC1A &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  WarrantyChecker =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPWarrantyCheck  HPWarrantyChecker.exe [1117048 2020-03-26] (HP Inc. -&gt; HP Inc.)\nTâche: 9594B004-459A-4105-BDB9-0686695F1DBC &#8211; System32  Tasks  BlueStacksHelper =&gt; C:  ProgramData  BlueStacks  Client  Helper  BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -&gt; BlueStack Systems, Inc.)\nTâche: A7A40B26-2C9E-4141-A5EF-3A3EB86182C4 &#8211; System32  Tasks  Start OPBHOBrokerDesktop =&gt; C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBrokerDsktop.exe [506104 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: AC2D90BD-03AB-4717-B91B-4ACD2D25A495 &#8211; System32  Tasks  HPCeeScheduleForXXXXXXZZZ =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Ceement  HPCEE.exe\nTâche: AC444CF5-C990-4BC8-8C8E-9F5B38F05A81 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  WarrantyChecker_DeviceScan =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPWarrantyCheck  HPWarrantyChecker.exe [1117048 2020-03-26] (HP Inc. -&gt; HP Inc.)\nTâche: B366A58C-E1F0-4F66-B965-EEE0E58ECF54 &#8211; System32  Tasks  Start OPBHOBroker =&gt; C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBroker.exe [506104 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: B8FFC866-248A-4176-AC9F-31F3B9144F13 &#8211; System32  Tasks  CCleanerSkipUAC =&gt; C:  Program Files  CCleaner  CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nTâche: B9781211-096A-4A59-B2CD-6631DAA6F92E &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  PC Health Analysis =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF. EXE [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: BDD8080F-6580-4439-B090-E1F0B8980028 &#8211; System32  Tasks  AVGPCTuneUp_Task_BkGndMaintenance =&gt; C:  Program Files (x86)  AVG  AVG PC TuneUp  tuscanx.exe\nTâche: BF84E17C-D1AA-4F8E-AD9C-9C3999F8CDD2 &#8211; System32  Tasks  Mozilla  Firefox Default Browser Agent E7CF176E110C211B =&gt; C:  Program Files (x86)  Mozilla Firefox  default-browser-agent.exe [124624 2020-06-05] (Mozilla Corporation -&gt; Fondation Mozilla)\nTâche: C045C518-0FA6-4A67-A3D5-151056E6C9D9 &#8211; System32  Tasks  Adobe Flash Player Updater =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashPlayerUpdateService.exe [335416 2020-05-13] (Adobe Inc. -&gt; Adobe)\nTâche: C2BDB807-0EE2-4A05-9C29-E0B43518E8DB &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  PC Health Analysis Restart =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF .EXE [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: C718E444-7E77-4374-9197-635B15CB8D22 &#8211; System32  Tasks  Avast SecureLine VPN Update =&gt; c:  program files  avast software  secureline  vpnupdate.exe [1390472 2019-10-24] (AVAST Software s.r.o. -&gt; AVAST Software)\nTâche: C9FF1DA6-EC0B-4F09-A9DB-B6A37A1F1374 &#8211; System32  Tasks  CCleaner Update =&gt; C:  Program Files  CCleaner  CCUpdate.exe [619416 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nTâche: CA139223-98A5-4E6F-9A90-3BD01B619423 &#8211; System32  Tasks  Driver Easy Scheduled Scan =&gt; C:  Program Files  Easeware  DriverEasy  DriverEasy.exe [3392368 2017-11-10] (Easeware Technology Limited -&gt; Easeware)\nTâche: CAB11F90-659D-4C59-8472-7217C7636690 &#8211; System32  Tasks  AVG  Overseer =&gt; C:  Program Files  Common Files  AVG  Overseer  overseer.exe [1692296 2020-03-03] (AVG Technologies USA, LLC -&gt; AVG Technologies)\nTâche: D7F26C8B-7EE3-4B58-971C-7ABBFDF75B19 &#8211; pas de chemin de fichier\nTâche: E1C5D3F6-C2CE-48AF-96F3-03D7E23B9A45 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  Product Configurator =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  ProductConfig .EXE [320856 2020-04-23] (HP Inc. -&gt; HP Inc.)\nTâche: E7333F8C-E08D-4FB6-84DC-694BB2775824 &#8211; System32  Tasks  Hewlett-Packard  HP CoolSense  HP CoolSense Start at Logon =&gt; C:  Program Files (x86)  Hewlett-Packard  HP CoolSense  CoolSense. EXE [1354552 2014-05-19] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nTâche: EB9B233E-D483-496B-8CD6-9C9CBAAE9007 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Solutions Framework Report =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  Modules  HPSFReport.exe [134008 2020-03-25] (HP Inc. -&gt; HP Inc.)\nTâche: EBCAD8C1-2F95-424A-87E3-ED87CF10A5D5 &#8211; pas de chemin de fichier\nTâche: EDE8E45E-2A78-41AD-8D66-72B614CF9C9E &#8211; System32  Tasks  GoogleUpdateTaskMachineCore =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [154440 2016-03-18] (Google Inc -&gt; Google Inc.)\nTâche: F173A769-3028-456B-B1A5-D1EC4B2ED322 &#8211; System32  Tasks  HPCustParticipation HP Deskjet 3050 J610 series =&gt; C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nTâche: F6005A55-D650-4ABA-99F1-795479106D2D &#8211; System32  Tasks  7A5E22F3-13A6-4040-B1C5-E4043B449990 =&gt; C:  Windows  system32  pcalua.exe -a C:  E20-II  unwcs21.EXE -c C:  E20-II  csi22  INSTALL.LOG","html":"<p>Tâche: 019EFCA7-800A-45BD-B5D4-E7BC04A47010 &#8211; System32  Tasks  Adobe Flash Player NPAPI Notifier =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_371_Plugin.exe [1458232 2020-05-13] (Adobe Inc. -&gt; Adobe)\nTâche: 035A9236-3D0D-4CEC-88E7-316A88A60D57 &#8211; System32  Tasks  AutoKMS =&gt; C:  Windows  AutoKMS  AutoKMS.exe [5046784 2018-01-30] () [File not signed]\nTâche: 0B7F76E1-EE25-416A-B69A-E967896AD3B6 &#8211; System32  Tasks  GoogleUpdateTaskMachineUA =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [154440 2016-03-18] (Google Inc -&gt; Google Inc.)\nTâche: 0CE47549-B8CB-4819-ABF3-3FA3A57AB0D4 &#8211; System32  Tasks  Hewlett-Packard  HP Active Health  HP Active Health Scan (HPSA) =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPActiveHealth  ActiveHealth.exe [198696 2016-11-07] (HP Inc. -&gt; HP Inc.)\nTâche: 130F5CA5-8C3C-463D-8A72-447D87BD6E01 &#8211; System32  Tasks  Start SimplePass =&gt; C:  Program Files  Hewlett-Packard  SimplePass  ClientCore.exe [4716280 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: 196B8F02-98BF-41FB-B1A3-5F36DB0DE18D &#8211; System32  Tasks  Adobe Acrobat Update Task =&gt; C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -&gt; Adobe Systems)\nTâche: 2082FD68-9C15-4062-AC44-9424D96210B8 &#8211; pas de chemin de fichier\nTâche: 23DAD9CE-2053-4866-8F74-D0729C66989D &#8211; pas de chemin de fichier\nTâche: 2D6FC168-D4B7-4440-A3F6-FFF3E4F97500 &#8211; pas de chemin de fichier\nTâche: 2E6908D5-EFAB-4013-A5F8-C67EA3EB73E1 &#8211; System32  Tasks  G2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001 =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToM 17956  g2mupdate.exe [32424 2020-06-09] (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nTâche: 336DBD9A-B9BE-4A9D-8E7E-70DF4DD0C45C &#8211; System32  Tasks  G2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001 =&gt; C:  Users  XXXXXXZZZ  AppData  Local  Go 17956  g2mupload.exe [32424 2020-06-09] (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nTâche: 4676C5EC-11E4-46DB-A339-B05760EBFD33 &#8211; System32  Tasks  Antivirus Emergency Update =&gt; C:  Program Files (x86)  AVG  Antivirus  AvEmUpdate.exe [3387520 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nTâche: 480057E1-65C8-4672-B6EB-449337F4A059 &#8211; System32  Tasks  AVG TuneUp Update =&gt; C:  Program Files (x86)  AVG  AVG TuneUp  TUNEUpdate.exe [1706528 2019-09-20] (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nTâche: 482950C8-5BA7-4A9B-B305-736188A98CF5 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Assistant Quick Start =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF.exe [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: 4922F370-D891-4A1B-B13A-67F51EFA83AE &#8211; pas de chemin de fichier\nTâche: 506A236E-C8FC-491D-A1A7-2D971555245D &#8211; System32  Tasks  YCMServiceAgent =&gt; c:  Program Files (x86)  Cyberlink  YouCam  YouCamService.exe [267224 2015-02-11] (CyberLink Corp. -&gt; CyberLink Corp.)\nTâche: 71EB72E0-9D55-4AC5-BDF7-6B6F866DDCDE &#8211; System32  Tasks  npcapwatchdog =&gt; C:  Program Files  Npcap  CheckStatus.bat [862 2019-04-30] () [File not signed]\nTâche: 7A56FE0C-B693-4340-AEA0-D5C5C9067C4C &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Solutions Framework Updater =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  Modules  HPSSFUpdater.exe [662872 2020-04-30] (HP Inc. -&gt; HP Inc.)\nTâche: 8BF8C487-50E7-4763-9DD0-BEEB2C3856D5 &#8211; System32  Tasks  Avast SecureLine =&gt; C:  Program Files  AVAST Software  SecureLine  SecureLine.exe [3438680 2016-05-24] (Logiciel AVAST a.s. -&gt; Logiciel AVAST)\nTâche: 8F05A697-8454-4451-9D04-4F3843C4EC1A &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  WarrantyChecker =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPWarrantyCheck  HPWarrantyChecker.exe [1117048 2020-03-26] (HP Inc. -&gt; HP Inc.)\nTâche: 9594B004-459A-4105-BDB9-0686695F1DBC &#8211; System32  Tasks  BlueStacksHelper =&gt; C:  ProgramData  BlueStacks  Client  Helper  BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -&gt; BlueStack Systems, Inc.)\nTâche: A7A40B26-2C9E-4141-A5EF-3A3EB86182C4 &#8211; System32  Tasks  Start OPBHOBrokerDesktop =&gt; C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBrokerDsktop.exe [506104 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: AC2D90BD-03AB-4717-B91B-4ACD2D25A495 &#8211; System32  Tasks  HPCeeScheduleForXXXXXXZZZ =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Ceement  HPCEE.exe\nTâche: AC444CF5-C990-4BC8-8C8E-9F5B38F05A81 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  WarrantyChecker_DeviceScan =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPWarrantyCheck  HPWarrantyChecker.exe [1117048 2020-03-26] (HP Inc. -&gt; HP Inc.)\nTâche: B366A58C-E1F0-4F66-B965-EEE0E58ECF54 &#8211; System32  Tasks  Start OPBHOBroker =&gt; C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBroker.exe [506104 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: B8FFC866-248A-4176-AC9F-31F3B9144F13 &#8211; System32  Tasks  CCleanerSkipUAC =&gt; C:  Program Files  CCleaner  CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nTâche: B9781211-096A-4A59-B2CD-6631DAA6F92E &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  PC Health Analysis =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF. EXE [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: BDD8080F-6580-4439-B090-E1F0B8980028 &#8211; System32  Tasks  AVGPCTuneUp_Task_BkGndMaintenance =&gt; C:  Program Files (x86)  AVG  AVG PC TuneUp  tuscanx.exe\nTâche: BF84E17C-D1AA-4F8E-AD9C-9C3999F8CDD2 &#8211; System32  Tasks  Mozilla  Firefox Default Browser Agent E7CF176E110C211B =&gt; C:  Program Files (x86)  Mozilla Firefox  default-browser-agent.exe [124624 2020-06-05] (Mozilla Corporation -&gt; Fondation Mozilla)\nTâche: C045C518-0FA6-4A67-A3D5-151056E6C9D9 &#8211; System32  Tasks  Adobe Flash Player Updater =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashPlayerUpdateService.exe [335416 2020-05-13] (Adobe Inc. -&gt; Adobe)\nTâche: C2BDB807-0EE2-4A05-9C29-E0B43518E8DB &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  PC Health Analysis Restart =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF .EXE [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: C718E444-7E77-4374-9197-635B15CB8D22 &#8211; System32  Tasks  Avast SecureLine VPN Update =&gt; c:  program files  avast software  secureline  vpnupdate.exe [1390472 2019-10-24] (AVAST Software s.r.o. -&gt; AVAST Software)\nTâche: C9FF1DA6-EC0B-4F09-A9DB-B6A37A1F1374 &#8211; System32  Tasks  CCleaner Update =&gt; C:  Program Files  CCleaner  CCUpdate.exe [619416 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nTâche: CA139223-98A5-4E6F-9A90-3BD01B619423 &#8211; System32  Tasks  Driver Easy Scheduled Scan =&gt; C:  Program Files  Easeware  DriverEasy  DriverEasy.exe [3392368 2017-11-10] (Easeware Technology Limited -&gt; Easeware)\nTâche: CAB11F90-659D-4C59-8472-7217C7636690 &#8211; System32  Tasks  AVG  Overseer =&gt; C:  Program Files  Common Files  AVG  Overseer  overseer.exe [1692296 2020-03-03] (AVG Technologies USA, LLC -&gt; AVG Technologies)\nTâche: D7F26C8B-7EE3-4B58-971C-7ABBFDF75B19 &#8211; pas de chemin de fichier\nTâche: E1C5D3F6-C2CE-48AF-96F3-03D7E23B9A45 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  Product Configurator =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  ProductConfig .EXE [320856 2020-04-23] (HP Inc. -&gt; HP Inc.)\nTâche: E7333F8C-E08D-4FB6-84DC-694BB2775824 &#8211; System32  Tasks  Hewlett-Packard  HP CoolSense  HP CoolSense Start at Logon =&gt; C:  Program Files (x86)  Hewlett-Packard  HP CoolSense  CoolSense. EXE [1354552 2014-05-19] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nTâche: EB9B233E-D483-496B-8CD6-9C9CBAAE9007 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Solutions Framework Report =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  Modules  HPSFReport.exe [134008 2020-03-25] (HP Inc. -&gt; HP Inc.)\nTâche: EBCAD8C1-2F95-424A-87E3-ED87CF10A5D5 &#8211; pas de chemin de fichier\nTâche: EDE8E45E-2A78-41AD-8D66-72B614CF9C9E &#8211; System32  Tasks  GoogleUpdateTaskMachineCore =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [154440 2016-03-18] (Google Inc -&gt; Google Inc.)\nTâche: F173A769-3028-456B-B1A5-D1EC4B2ED322 &#8211; System32  Tasks  HPCustParticipation HP Deskjet 3050 J610 series =&gt; C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nTâche: F6005A55-D650-4ABA-99F1-795479106D2D &#8211; System32  Tasks  7A5E22F3-13A6-4040-B1C5-E4043B449990 =&gt; C:  Windows  system32  pcalua.exe -a C:  E20-II  unwcs21.EXE -c C:  E20-II  csi22  INSTALL.LOG</p>"},{"id":"text-12","type":"text","heading":"","plain_text":"(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)","html":"<p>(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)</p>"},{"id":"text-13","type":"text","heading":"","plain_text":"Tâche: C:  Windows  Tasks  Driver Easy Scheduled Scan.job =&gt; C:  Program Files  Easeware  DriverEasy  DriverEasy.exe\nTâche: C:  Windows  Tasks  G2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToMeeting  17956  g2mupdate.exe\nTâche: C:  Windows  Tasks  G2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToMeeting  17956  g2mupload.exe\nTâche: C:  Windows  Tasks  HPCeeScheduleForXXXXXXZZZ.job =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Ceement  HPCEE.exe","html":"<p>Tâche: C:  Windows  Tasks  Driver Easy Scheduled Scan.job =&gt; C:  Program Files  Easeware  DriverEasy  DriverEasy.exe\nTâche: C:  Windows  Tasks  G2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToMeeting  17956  g2mupdate.exe\nTâche: C:  Windows  Tasks  G2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToMeeting  17956  g2mupload.exe\nTâche: C:  Windows  Tasks  HPCeeScheduleForXXXXXXZZZ.job =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Ceement  HPCEE.exe</p>"},{"id":"text-14","type":"text","heading":"","plain_text":"==================== Internet (liste blanche) ====================","html":"<p>==================== Internet (liste blanche) ====================</p>"},{"id":"text-15","type":"text","heading":"","plain_text":"(Si un élément est inclus dans la liste de correctifs, s&#39;il s&#39;agit d&#39;un élément du registre, il sera supprimé ou restauré par défaut.)","html":"<p>(Si un élément est inclus dans la liste de correctifs, s&#039;il s&#039;agit d&#039;un élément du registre, il sera supprimé ou restauré par défaut.)</p>"},{"id":"text-16","type":"text","heading":"","plain_text":"Winsock: Catalog5 07 C:  Program Files (x86)  Bonjour  mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -&gt; Apple Inc.)\nWinsock: Catalog9 12 C:  Windows  SysWOW64  vsocklib.dll [42376 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog9 13 C:  Windows  SysWOW64  vsocklib.dll [42376 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog5-x64 07 C:  Program Files  Bonjour  mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -&gt; Apple Inc.)\nWinsock: Catalog9-x64 12 C:  Windows  system32  vsocklib.dll [46472 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog9-x64 13 C:  Windows  system32  vsocklib.dll [46472 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nHôtes: il existe plusieurs entrées dans Hôtes. Voir la section Hôtes de Addition.txt\nTcpip  ..  Interfaces  9BE7CB1D-7D01-412C-87BA-0BF14F21DCFC: [NameServer] 192.168.175.1\nTcpip  ..  Interfaces  AE83C2A5-B32C-49E6-92F8-44E82B6BF54C: [DhcpNameServer] 192.168.1.1\nTcpip  ..  Interfaces  D7780C2A-6612-4825-B9AA-0AAAE7D9CBB1: [DhcpNameServer] 192.168.1.1\nTcpip  ..  Interfaces  F378EDC9-2002-40C5-A4FD-8D06037995AC: [NameServer] 192.168.56.1\nTcpip  ..  Interfaces  F9ED1E2C-E78F-4493-82DC-AA9A69316967: [NameServer] 192.168.6.1","html":"<p>Winsock: Catalog5 07 C:  Program Files (x86)  Bonjour  mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -&gt; Apple Inc.)\nWinsock: Catalog9 12 C:  Windows  SysWOW64  vsocklib.dll [42376 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog9 13 C:  Windows  SysWOW64  vsocklib.dll [42376 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog5-x64 07 C:  Program Files  Bonjour  mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -&gt; Apple Inc.)\nWinsock: Catalog9-x64 12 C:  Windows  system32  vsocklib.dll [46472 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog9-x64 13 C:  Windows  system32  vsocklib.dll [46472 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nHôtes: il existe plusieurs entrées dans Hôtes. Voir la section Hôtes de Addition.txt\nTcpip  ..  Interfaces  9BE7CB1D-7D01-412C-87BA-0BF14F21DCFC: [NameServer] 192.168.175.1\nTcpip  ..  Interfaces  AE83C2A5-B32C-49E6-92F8-44E82B6BF54C: [DhcpNameServer] 192.168.1.1\nTcpip  ..  Interfaces  D7780C2A-6612-4825-B9AA-0AAAE7D9CBB1: [DhcpNameServer] 192.168.1.1\nTcpip  ..  Interfaces  F378EDC9-2002-40C5-A4FD-8D06037995AC: [NameServer] 192.168.56.1\nTcpip  ..  Interfaces  F9ED1E2C-E78F-4493-82DC-AA9A69316967: [NameServer] 192.168.6.1</p>"},{"id":"text-17","type":"text","heading":"","plain_text":"Internet Explorer:\n==================\nHKLM  Software  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKLM  Software  Wow6432Node  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKLM  Software  Wow6432Node  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nHKU  .DEFAULT  Software  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKU  .DEFAULT  Software  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  Software  Microsoft  Internet Explorer  Main, page de démarrage = hxxps: //mysearch.avg.com/? Cid = 0748ECFF-99FC-45F5- A9A9-AAA31FAD88FA &amp; mid = 2e2973733faf47cca1dda13ec7d56e85-0c260b95194f388f5d97415cd7ba6e43361199e3 &amp; lang = pt &amp; ds = AVG &amp; coid = avgtbavg &amp; cmpid = ipm180 &amp; v = 26 v &amp; d = 20 v\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  Software  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nSearchScopes: HKLM -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKLM -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKLM-x32 -&gt; C77A81B7-79DB-4F42-8F4C-3CEBC5863FB2 URL = hxxp: //www.amazon.co.uk/s/ref=azs_osd_ieauk? Ie = UTF-8 &amp; tag = hp-uk3-vsb- 21 &amp; link% 5Fcode = qs &amp; index = aps &amp; field-keywords = searchTerms\nSearchScopes: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 URL = hxxps: //mysearch.avg.com/search? Cid = 0748ECFF -99FC-45F5-A9A9-AAA31FAD88FA &amp; mid = 2e2973733faf47cca1dda13ec7d56e85-0c260b95194f388f5d97415cd7ba6e43361199e3 &amp; lang = pt &amp; ds = AVG &amp; COID = avgtbavg &amp; cmpid = ipm180716c &amp; pr = fr &amp; d = 2016-06-12 22: 27: 20 &amp; v = 4.3.9.626 &amp; pid = UMC &amp; sg = &amp; sap = dsp &amp; q = searchTerms\nSearchScopes: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; C77A81B7-79DB-4F42-8F4C-3CEBC5863FB2 URL = hxxp: //www.amazon.co.uk/s/ref= azs_osd_ieauk? ie = UTF-8 &amp; tag = hp-uk3-vsb-21 &amp; link% 5Fcode = qs &amp; index = aps &amp; field-keywords = searchTerms\nBHO: Groove GFS Browser Helper -&gt; 72853161-30C5-4D22-B7F9-0BBC1D38A37E -&gt; C:  Program Files  Microsoft Office  Office14  GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO: Java ™ Plug-In SSV Helper -&gt; 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -&gt; C:  Program Files  Java  jre1.8.0_241  bin  ssv.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO: AVG Web TuneUp -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 -&gt; C:  Program Files  AVG Web TuneUp  4.3.9.626  AVG Web TuneUp.dll [2019-01-28] (AVG Pays-Bas B.V. -&gt; AVG)\nBHO: Adobe Acrobat Create PDF Helper -&gt; AE7CD045-E861-484f-8273-0445EE161910 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO: Gestionnaire de cache de documents Office -&gt; B4F3A835-0E21-4959-BA22-42B3008E02FF -&gt; C:  Program Files  Microsoft Office  Office14  URLREDIR.DLL [2013-03-06] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO: Java ™ Plug-In 2 SSV Helper -&gt; DBC80044-A445-435b-BC74-9C25C1C588A9 -&gt; C:  Program Files  Java  jre1.8.0_241  bin  jp2ssv.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO: HP Network Check Helper -&gt; E76FD755-C1BA-4DCB-9F13-99BD91223ADE -&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPNetworkCheck  HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -&gt; HP Inc.)\nBHO: Adobe Acrobat Créer un fichier PDF à partir de la sélection -&gt; F4971EE7-DAA0-4053-9964-665D8EE6A077 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO-x32: Aide du navigateur Groove GFS -&gt; 72853161-30C5-4D22-B7F9-0BBC1D38A37E -&gt; C:  Program Files (x86)  Microsoft Office  Office14  GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO-x32: extension Evernote -&gt; 92EF2EAD-A7CE-4424-B0DB-499CF856608E -&gt; C:  Program Files (x86)  Evernote  Evernote  EvernoteIE.dll [2014-12-17] (EVERNOTE CORPORATION -&gt; Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)\nBHO-x32: AVG Web TuneUp -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 -&gt; C:  Program Files (x86)  AVG Web TuneUp  4.3.9.626  AVG Web TuneUp.dll [2019-01-28] (AVG Pays-Bas B.V. -&gt; AVG)\nBHO-x32: Adobe Acrobat Create PDF Helper -&gt; AE7CD045-E861-484f-8273-0445EE161910 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO-x32: Gestionnaire de cache de documents Office -&gt; B4F3A835-0E21-4959-BA22-42B3008E02FF -&gt; C:  Program Files (x86)  Microsoft Office  Office14  URLREDIR.DLL [2013-03-06] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO-x32: HP Network Check Helper -&gt; E76FD755-C1BA-4DCB-9F13-99BD91223ADE -&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPNetworkCheck  HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -&gt; HP Inc.)\nBHO-x32: Adobe Acrobat Créer un fichier PDF à partir de la sélection -&gt; F4971EE7-DAA0-4053-9964-665D8EE6A077 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKLM &#8211; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKLM-x32 &#8211; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nHandler-x32: asp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: ezstor &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: hsp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: jpip &#8211; B92DD248-E3D5-4A92-B311-C9B841681455 &#8211; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nHandler-x32: sidlet &#8211; B92DD248-E3D5-4A92-B311-C9B841681455 &#8211; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nHandler-x32: x-asp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-cnote &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-hsp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-mem1 &#8211; C3719F83-7EF8-4BA0-89B0-3360C7AFB7CC &#8211; C:WindowsSysWow64WowCtl2.dll [2006-10-13] (EzTools Software) [File not signed]\nHandler-x32: x-zip &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: zip &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]","html":"<p>Internet Explorer:\n==================\nHKLM  Software  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKLM  Software  Wow6432Node  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKLM  Software  Wow6432Node  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nHKU  .DEFAULT  Software  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKU  .DEFAULT  Software  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  Software  Microsoft  Internet Explorer  Main, page de démarrage = hxxps: //mysearch.avg.com/? Cid = 0748ECFF-99FC-45F5- A9A9-AAA31FAD88FA &amp; mid = 2e2973733faf47cca1dda13ec7d56e85-0c260b95194f388f5d97415cd7ba6e43361199e3 &amp; lang = pt &amp; ds = AVG &amp; coid = avgtbavg &amp; cmpid = ipm180 &amp; v = 26 v &amp; d = 20 v\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  Software  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nSearchScopes: HKLM -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKLM -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKLM-x32 -&gt; C77A81B7-79DB-4F42-8F4C-3CEBC5863FB2 URL = hxxp: //www.amazon.co.uk/s/ref=azs_osd_ieauk? Ie = UTF-8 &amp; tag = hp-uk3-vsb- 21 &amp; link% 5Fcode = qs &amp; index = aps &amp; field-keywords = searchTerms\nSearchScopes: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 URL = hxxps: //mysearch.avg.com/search? Cid = 0748ECFF -99FC-45F5-A9A9-AAA31FAD88FA &amp; mid = 2e2973733faf47cca1dda13ec7d56e85-0c260b95194f388f5d97415cd7ba6e43361199e3 &amp; lang = pt &amp; ds = AVG &amp; COID = avgtbavg &amp; cmpid = ipm180716c &amp; pr = fr &amp; d = 2016-06-12 22: 27: 20 &amp; v = 4.3.9.626 &amp; pid = UMC &amp; sg = &amp; sap = dsp &amp; q = searchTerms\nSearchScopes: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; C77A81B7-79DB-4F42-8F4C-3CEBC5863FB2 URL = hxxp: //www.amazon.co.uk/s/ref= azs_osd_ieauk? ie = UTF-8 &amp; tag = hp-uk3-vsb-21 &amp; link% 5Fcode = qs &amp; index = aps &amp; field-keywords = searchTerms\nBHO: Groove GFS Browser Helper -&gt; 72853161-30C5-4D22-B7F9-0BBC1D38A37E -&gt; C:  Program Files  Microsoft Office  Office14  GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO: Java ™ Plug-In SSV Helper -&gt; 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -&gt; C:  Program Files  Java  jre1.8.0_241  bin  ssv.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO: AVG Web TuneUp -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 -&gt; C:  Program Files  AVG Web TuneUp  4.3.9.626  AVG Web TuneUp.dll [2019-01-28] (AVG Pays-Bas B.V. -&gt; AVG)\nBHO: Adobe Acrobat Create PDF Helper -&gt; AE7CD045-E861-484f-8273-0445EE161910 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO: Gestionnaire de cache de documents Office -&gt; B4F3A835-0E21-4959-BA22-42B3008E02FF -&gt; C:  Program Files  Microsoft Office  Office14  URLREDIR.DLL [2013-03-06] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO: Java ™ Plug-In 2 SSV Helper -&gt; DBC80044-A445-435b-BC74-9C25C1C588A9 -&gt; C:  Program Files  Java  jre1.8.0_241  bin  jp2ssv.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO: HP Network Check Helper -&gt; E76FD755-C1BA-4DCB-9F13-99BD91223ADE -&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPNetworkCheck  HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -&gt; HP Inc.)\nBHO: Adobe Acrobat Créer un fichier PDF à partir de la sélection -&gt; F4971EE7-DAA0-4053-9964-665D8EE6A077 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO-x32: Aide du navigateur Groove GFS -&gt; 72853161-30C5-4D22-B7F9-0BBC1D38A37E -&gt; C:  Program Files (x86)  Microsoft Office  Office14  GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO-x32: extension Evernote -&gt; 92EF2EAD-A7CE-4424-B0DB-499CF856608E -&gt; C:  Program Files (x86)  Evernote  Evernote  EvernoteIE.dll [2014-12-17] (EVERNOTE CORPORATION -&gt; Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)\nBHO-x32: AVG Web TuneUp -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 -&gt; C:  Program Files (x86)  AVG Web TuneUp  4.3.9.626  AVG Web TuneUp.dll [2019-01-28] (AVG Pays-Bas B.V. -&gt; AVG)\nBHO-x32: Adobe Acrobat Create PDF Helper -&gt; AE7CD045-E861-484f-8273-0445EE161910 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO-x32: Gestionnaire de cache de documents Office -&gt; B4F3A835-0E21-4959-BA22-42B3008E02FF -&gt; C:  Program Files (x86)  Microsoft Office  Office14  URLREDIR.DLL [2013-03-06] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO-x32: HP Network Check Helper -&gt; E76FD755-C1BA-4DCB-9F13-99BD91223ADE -&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPNetworkCheck  HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -&gt; HP Inc.)\nBHO-x32: Adobe Acrobat Créer un fichier PDF à partir de la sélection -&gt; F4971EE7-DAA0-4053-9964-665D8EE6A077 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#039;outils: HKLM &#8211; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#039;outils: HKLM-x32 &#8211; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#039;outils: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nHandler-x32: asp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: ezstor &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: hsp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: jpip &#8211; B92DD248-E3D5-4A92-B311-C9B841681455 &#8211; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nHandler-x32: sidlet &#8211; B92DD248-E3D5-4A92-B311-C9B841681455 &#8211; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nHandler-x32: x-asp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-cnote &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-hsp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-mem1 &#8211; C3719F83-7EF8-4BA0-89B0-3360C7AFB7CC &#8211; C:WindowsSysWow64WowCtl2.dll [2006-10-13] (EzTools Software) [File not signed]\nHandler-x32: x-zip &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: zip &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]</p>"},{"id":"text-18","type":"text","heading":"","plain_text":"FireFox:\n========\nFF DefaultProfile: t5l5e12d.default\nFF ProfilePath: C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.default [2020-06-09]\nFF Extension: (Disconnect) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions2.0@disconnect.me.xpi [2020-01-06]\nFF Extension: (AVG Web TuneUp) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsavg@toolbar.xpi [2019-04-11] [UpdateUrl:hxxps://firefoxext.avcdn.net/firefoxext/avg/wtu/update.json]\nFF Extension: (SerpClix ClickSense) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsdev@serpclix.com.xpi [2020-04-24] [UpdateUrl:hxxps://serpclix.com/downloads/addon/updates.json]\nFF Extension: (Ghostery – Privacy Ad Blocker) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsfirefox@ghostery.com.xpi [2020-05-21]\nFF Extension: (HTTPS Everywhere) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionshttps-everywhere-eff@eff.org.xpi [2020-05-22] [UpdateUrl:hxxps://www.eff.org/files/https-everywhere-updates.json]\nFF Extension: (Disable WebRTC) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-5Fs7iTLscUaZBgwr@jetpack.xpi [2020-06-02]\nFF Extension: (Para o Google Tradutor) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-93WyvpgvxzGATw@jetpack.xpi [2020-02-06]\nFF Extension: (Decentraleyes) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-BoFifL9Vbdl2zQ@jetpack.xpi [2020-04-01]\nFF Extension: (DuckDuckGo Privacy Essentials) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-ZAdIEUB7XOzOJw@jetpack.xpi [2020-06-03]\nFF Extension: (Lazarus: Form Recovery) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionslazarus@interclue.com.xpi [2016-07-12] [Legacy]\nFF Extension: (Avast SafePrice | Comparação, ofertas, cupões) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionssp@avast.com.xpi [2020-05-02]\nFF Extension: (Google Translator for Firefox) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionstranslator@zoli.bod.xpi [2020-02-05]\nFF Extension: (uBlock Origin) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsuBlock0@raymondhill.net.xpi [2020-05-28]\nFF Extension: (uMatrix) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsuMatrix@raymondhill.net.xpi [2020-01-06]\nFF Extension: (Startpage.com: pesquisa privada) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions20fc2e06-e3e4-4b2b-812b-ab431220cada.xpi [2020-01-07]\nFF Extension: (Cookie Quick Manager) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions60f82f00-9ad5-4de5-b31c-b16a47c51558.xpi [2020-05-15]\nFF Extension: (Flash and Video Download) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsadeadebb-fedc-4180-a7f4-cfdd87496551.xpi [2020-05-24]\nFF Extension: (Video DownloadHelper) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsb9db16a4-6edc-47ec-a1f4-b86292ed211d.xpi [2020-03-31]\nFF SearchPlugin: C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultsearchpluginsavg-secure-search.xml [2019-01-28]\nFF HKLM-x32&#8230;FirefoxExtensions: [firefox@bho.com] &#8211; C:Program FilesHewlett-PackardSimplePassFFBHOExt =&gt; not found\nFF HKLM-x32&#8230;FirefoxExtensions: [web2pdfextension@web2pdf.adobedotcom] &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtn\nFF Extension: (Adobe Acrobat &#8211; Create PDF) &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtn [2016-04-30] [Legacy] [not signed]\nFF Plugin: @adobe.com/FlashPlayer -&gt; C:Windowssystem32MacromedFlashNPSWF64_32_0_0_371.dll [2020-05-13] (Adobe Inc. -&gt; )\nFF Plugin: @java.com/DTPlugin,version=11.241.2 -&gt; C:Program FilesJavajre1.8.0_241bindtpluginnpDeployJava1.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin: @java.com/JavaPlugin,version=11.241.2 -&gt; C:Program FilesJavajre1.8.0_241binplugin2npjp2.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:Program FilesMicrosoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -&gt;  Microsoft Corporation)\nFF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:PROGRA~1MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin: adobe.com/AdobeAAMDetect -&gt; C:Program Files (x86)Common FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems Incorporated -&gt; Adobe Systems)\nFF Plugin-x32: @adobe.com/FlashPlayer -&gt; C:WindowsSysWOW64MacromedFlashNPSWF32_32_0_0_371.dll [2020-05-13] (Adobe Inc. -&gt; )\nFF Plugin-x32: @adobe.com/ShockwavePlayer -&gt; C:windowsSysWOW64AdobeDirectornp32dsw_1217157.dll [2015-02-05] (Adobe Systems, Inc.) [File not signed]\nFF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -&gt; C:Program Files (x86)Common FilesAVG Secure SearchSiteSafetyInstaller40.3.8\\npsitesafety.dll [No File]\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -&gt; C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIIPT.dll [2014-11-10] (Intel® Identity Protection Technology Software -&gt; Intel Corporation)\nFF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -&gt; C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIUpdater.dll [2014-11-10] (Intel® Identity Protection Technology Software -&gt; Intel Corporation)\nFF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:Program Files (x86)Microsoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -&gt;  Microsoft Corporation)\nFF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:PROGRA~2MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -&gt; C:PROGRA~2MICROS~1Office14NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.2 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.4 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.6 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=3.0.3 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=3.0.8 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -&gt; C:Program Files (x86)WildTangent GamesAppBrowserIntegrationRegisteredNP_wtapp.dll [2014-11-15] (WildTangent Inc -&gt; )\nFF Plugin-x32: Adobe Acrobat -&gt; C:Program Files (x86)AdobeAcrobat 11.0AcrobatAirnppdf32.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nFF Plugin-x32: Adobe Reader -&gt; C:Program Files (x86)AdobeAcrobat Reader DCReaderAIRnppdf32.dll [2020-05-04] (Adobe Inc. -&gt; Adobe Systems Inc.)\nFF Plugin-x32: adobe.com/AdobeAAMDetect -&gt; C:Program Files (x86)Common FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems Incorporated -&gt; Adobe Systems)\nFF Plugin-x32: Lizardtech ExpressViewPlugin -&gt; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nFF Plugin HKUS-1-5-21-3751382696-3894377064-3631472648-1001: @zoom.us/ZoomVideoPlugin -&gt; C:UsersXXXXXXZZZAppDataRoamingZoombin_00npzoomplugin.dll [2020-05-14] (Zoom Video Communications, Inc. -&gt; Zoom Video Communications, Inc.)","html":"<p>FireFox:\n========\nFF DefaultProfile: t5l5e12d.default\nFF ProfilePath: C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.default [2020-06-09]\nFF Extension: (Disconnect) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions2.0@disconnect.me.xpi [2020-01-06]\nFF Extension: (AVG Web TuneUp) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsavg@toolbar.xpi [2019-04-11] [UpdateUrl:hxxps://firefoxext.avcdn.net/firefoxext/avg/wtu/update.json]\nFF Extension: (SerpClix ClickSense) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsdev@serpclix.com.xpi [2020-04-24] [UpdateUrl:hxxps://serpclix.com/downloads/addon/updates.json]\nFF Extension: (Ghostery – Privacy Ad Blocker) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsfirefox@ghostery.com.xpi [2020-05-21]\nFF Extension: (HTTPS Everywhere) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionshttps-everywhere-eff@eff.org.xpi [2020-05-22] [UpdateUrl:hxxps://www.eff.org/files/https-everywhere-updates.json]\nFF Extension: (Disable WebRTC) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-5Fs7iTLscUaZBgwr@jetpack.xpi [2020-06-02]\nFF Extension: (Para o Google Tradutor) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-93WyvpgvxzGATw@jetpack.xpi [2020-02-06]\nFF Extension: (Decentraleyes) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-BoFifL9Vbdl2zQ@jetpack.xpi [2020-04-01]\nFF Extension: (DuckDuckGo Privacy Essentials) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-ZAdIEUB7XOzOJw@jetpack.xpi [2020-06-03]\nFF Extension: (Lazarus: Form Recovery) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionslazarus@interclue.com.xpi [2016-07-12] [Legacy]\nFF Extension: (Avast SafePrice | Comparação, ofertas, cupões) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionssp@avast.com.xpi [2020-05-02]\nFF Extension: (Google Translator for Firefox) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionstranslator@zoli.bod.xpi [2020-02-05]\nFF Extension: (uBlock Origin) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsuBlock0@raymondhill.net.xpi [2020-05-28]\nFF Extension: (uMatrix) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsuMatrix@raymondhill.net.xpi [2020-01-06]\nFF Extension: (Startpage.com: pesquisa privada) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions20fc2e06-e3e4-4b2b-812b-ab431220cada.xpi [2020-01-07]\nFF Extension: (Cookie Quick Manager) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions60f82f00-9ad5-4de5-b31c-b16a47c51558.xpi [2020-05-15]\nFF Extension: (Flash and Video Download) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsadeadebb-fedc-4180-a7f4-cfdd87496551.xpi [2020-05-24]\nFF Extension: (Video DownloadHelper) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsb9db16a4-6edc-47ec-a1f4-b86292ed211d.xpi [2020-03-31]\nFF SearchPlugin: C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultsearchpluginsavg-secure-search.xml [2019-01-28]\nFF HKLM-x32&#8230;FirefoxExtensions: [firefox@bho.com] &#8211; C:Program FilesHewlett-PackardSimplePassFFBHOExt =&gt; not found\nFF HKLM-x32&#8230;FirefoxExtensions: [web2pdfextension@web2pdf.adobedotcom] &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtn\nFF Extension: (Adobe Acrobat &#8211; Create PDF) &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtn [2016-04-30] [Legacy] [not signed]\nFF Plugin: @adobe.com/FlashPlayer -&gt; C:Windowssystem32MacromedFlashNPSWF64_32_0_0_371.dll [2020-05-13] (Adobe Inc. -&gt; )\nFF Plugin: @java.com/DTPlugin,version=11.241.2 -&gt; C:Program FilesJavajre1.8.0_241bindtpluginnpDeployJava1.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin: @java.com/JavaPlugin,version=11.241.2 -&gt; C:Program FilesJavajre1.8.0_241binplugin2npjp2.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:Program FilesMicrosoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -&gt;  Microsoft Corporation)\nFF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:PROGRA~1MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin: adobe.com/AdobeAAMDetect -&gt; C:Program Files (x86)Common FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems Incorporated -&gt; Adobe Systems)\nFF Plugin-x32: @adobe.com/FlashPlayer -&gt; C:WindowsSysWOW64MacromedFlashNPSWF32_32_0_0_371.dll [2020-05-13] (Adobe Inc. -&gt; )\nFF Plugin-x32: @adobe.com/ShockwavePlayer -&gt; C:windowsSysWOW64AdobeDirectornp32dsw_1217157.dll [2015-02-05] (Adobe Systems, Inc.) [File not signed]\nFF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -&gt; C:Program Files (x86)Common FilesAVG Secure SearchSiteSafetyInstaller40.3.8\\npsitesafety.dll [No File]\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -&gt; C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIIPT.dll [2014-11-10] (Intel® Identity Protection Technology Software -&gt; Intel Corporation)\nFF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -&gt; C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIUpdater.dll [2014-11-10] (Intel® Identity Protection Technology Software -&gt; Intel Corporation)\nFF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:Program Files (x86)Microsoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -&gt;  Microsoft Corporation)\nFF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:PROGRA~2MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -&gt; C:PROGRA~2MICROS~1Office14NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.2 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.4 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.6 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=3.0.3 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=3.0.8 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -&gt; C:Program Files (x86)WildTangent GamesAppBrowserIntegrationRegisteredNP_wtapp.dll [2014-11-15] (WildTangent Inc -&gt; )\nFF Plugin-x32: Adobe Acrobat -&gt; C:Program Files (x86)AdobeAcrobat 11.0AcrobatAirnppdf32.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nFF Plugin-x32: Adobe Reader -&gt; C:Program Files (x86)AdobeAcrobat Reader DCReaderAIRnppdf32.dll [2020-05-04] (Adobe Inc. -&gt; Adobe Systems Inc.)\nFF Plugin-x32: adobe.com/AdobeAAMDetect -&gt; C:Program Files (x86)Common FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems Incorporated -&gt; Adobe Systems)\nFF Plugin-x32: Lizardtech ExpressViewPlugin -&gt; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nFF Plugin HKUS-1-5-21-3751382696-3894377064-3631472648-1001: @zoom.us/ZoomVideoPlugin -&gt; C:UsersXXXXXXZZZAppDataRoamingZoombin_00npzoomplugin.dll [2020-05-14] (Zoom Video Communications, Inc. -&gt; Zoom Video Communications, Inc.)</p>"},{"id":"text-19","type":"text","heading":"","plain_text":"Chrome: \n=======\nCHR Profile: C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefault [2020-06-07]\nCHR Notifications: Default -&gt; hxxps://web.skype.com\nCHR HomePage: Default -&gt; mysearch.avg.com\nCHR StartupUrls: Default -&gt; &quot;hxxp://google.pt/&quot;\nCHR DefaultSearchURL: Default -&gt; hxxps://mysearch.avg.com/search?rvt=1&amp;sap=dsp&amp;q=searchTerms\nCHR DefaultSearchKeyword: Default -&gt; hxxps://mysearch.avg.com\nCHR Extension: (Slides) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]\nCHR Extension: (Seedr) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsabfimpkhacgimamjbiegeoponlepcbob [2018-08-20]\nCHR Extension: (Flash Video Downloader) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaiimdkdngfcipjohbjenkahhlhccpdbc [2019-05-14]\nCHR Extension: (Docs) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-10-14]\nCHR Extension: (Google Drive) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2018-10-17]\nCHR Extension: (YouTube) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-18]\nCHR Extension: (Adblock Plus &#8211; free ad blocker) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionscfhdojbkjhnklbpkdaibdccddilifddb [2020-04-06]\nCHR Extension: (AVG Secure Search) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionschfdnecihphmhljaaejmgoiahnihplgn [2020-01-11]\nCHR Extension: (Tampermonkey) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsdhdgffkkebhmkfjojejmpbldmpobfkfo [2020-06-07]\nCHR Extension: (Email Exporter) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsecnfbegpagpeocjegnecbifjepfcpnhe [2020-06-07]\nCHR Extension: (Toolkit For FB) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsfcachklhcihfinmagjnlomehfdhndhep [2019-07-04]\nCHR Extension: (Sheets) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-10-14]\nCHR Extension: (Google Docs Offline) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-06-07]\nCHR Extension: (Social Fixer for Facebook) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsifmhoabcaeehkljcfclfiieohkohdgbb [2019-10-08]\nCHR Extension: (Email Extractor) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsjdianbbpnakhcmfkcckaboohfgnngfcc [2020-06-07]\nCHR Extension: (Unseen for Facebook) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsjiomcgpfgkeefipihnplhadgdoollmap [2019-09-23]\nCHR Extension: (Application Launcher for Drive (by Google)) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionslmjegmlicamnimmfhcmpkclmigmmcbeh [2017-04-03]\nCHR Extension: (Video DownloadHelper) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionslmjnegcaeklhafolokijcfjliaokphfk [2020-04-01]\nCHR Extension: (Lazarus: Form Recovery) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsloljledaigphbcpfhfmgopdkppkifgno [2016-07-12]\nCHR Extension: (Buster: Captcha Solver for Humans) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsmpbjkejclgfgadiemmefgebjfooflfhl [2020-06-07]\nCHR Extension: (Chrome Web Store Payments) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]\nCHR Extension: (Social Revealer) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsnmnnjcmpjlbbobehaikglfgpbjclcoeg [2019-01-30]\nCHR Extension: (Unfriend Finder) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsolljnkilmblncgcghhaodkpdcnokhpah [2020-03-29]\nCHR Extension: (Social Profile view notification) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspegkceflonohbcefcbflfpficfkmpeod [2019-10-28]\nCHR Extension: (Gmail) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-05-14]\nCHR Extension: (Chrome Media Router) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-06-07]\nCHR Profile: C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataSystem Profile [2019-07-26]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [chfdnecihphmhljaaejmgoiahnihplgn]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [dhdgffkkebhmkfjojejmpbldmpobfkfo]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]\nCHR HKLM-x32&#8230;ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj] &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCChromeExtnWCChromeExtn.crx [2015-06-29]\nCHR HKLM-x32&#8230;ChromeExtension: [eofcbnmajmjmplflapaojjnihcjkigck]","html":"<p>Chrome: \n=======\nCHR Profile: C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefault [2020-06-07]\nCHR Notifications: Default -&gt; hxxps://web.skype.com\nCHR HomePage: Default -&gt; mysearch.avg.com\nCHR StartupUrls: Default -&gt; &quot;hxxp://google.pt/&quot;\nCHR DefaultSearchURL: Default -&gt; hxxps://mysearch.avg.com/search?rvt=1&amp;sap=dsp&amp;q=searchTerms\nCHR DefaultSearchKeyword: Default -&gt; hxxps://mysearch.avg.com\nCHR Extension: (Slides) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]\nCHR Extension: (Seedr) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsabfimpkhacgimamjbiegeoponlepcbob [2018-08-20]\nCHR Extension: (Flash Video Downloader) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaiimdkdngfcipjohbjenkahhlhccpdbc [2019-05-14]\nCHR Extension: (Docs) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-10-14]\nCHR Extension: (Google Drive) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2018-10-17]\nCHR Extension: (YouTube) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-18]\nCHR Extension: (Adblock Plus &#8211; free ad blocker) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionscfhdojbkjhnklbpkdaibdccddilifddb [2020-04-06]\nCHR Extension: (AVG Secure Search) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionschfdnecihphmhljaaejmgoiahnihplgn [2020-01-11]\nCHR Extension: (Tampermonkey) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsdhdgffkkebhmkfjojejmpbldmpobfkfo [2020-06-07]\nCHR Extension: (Email Exporter) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsecnfbegpagpeocjegnecbifjepfcpnhe [2020-06-07]\nCHR Extension: (Toolkit For FB) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsfcachklhcihfinmagjnlomehfdhndhep [2019-07-04]\nCHR Extension: (Sheets) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-10-14]\nCHR Extension: (Google Docs Offline) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-06-07]\nCHR Extension: (Social Fixer for Facebook) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsifmhoabcaeehkljcfclfiieohkohdgbb [2019-10-08]\nCHR Extension: (Email Extractor) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsjdianbbpnakhcmfkcckaboohfgnngfcc [2020-06-07]\nCHR Extension: (Unseen for Facebook) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsjiomcgpfgkeefipihnplhadgdoollmap [2019-09-23]\nCHR Extension: (Application Launcher for Drive (by Google)) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionslmjegmlicamnimmfhcmpkclmigmmcbeh [2017-04-03]\nCHR Extension: (Video DownloadHelper) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionslmjnegcaeklhafolokijcfjliaokphfk [2020-04-01]\nCHR Extension: (Lazarus: Form Recovery) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsloljledaigphbcpfhfmgopdkppkifgno [2016-07-12]\nCHR Extension: (Buster: Captcha Solver for Humans) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsmpbjkejclgfgadiemmefgebjfooflfhl [2020-06-07]\nCHR Extension: (Chrome Web Store Payments) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]\nCHR Extension: (Social Revealer) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsnmnnjcmpjlbbobehaikglfgpbjclcoeg [2019-01-30]\nCHR Extension: (Unfriend Finder) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsolljnkilmblncgcghhaodkpdcnokhpah [2020-03-29]\nCHR Extension: (Social Profile view notification) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspegkceflonohbcefcbflfpficfkmpeod [2019-10-28]\nCHR Extension: (Gmail) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-05-14]\nCHR Extension: (Chrome Media Router) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-06-07]\nCHR Profile: C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataSystem Profile [2019-07-26]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [chfdnecihphmhljaaejmgoiahnihplgn]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [dhdgffkkebhmkfjojejmpbldmpobfkfo]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]\nCHR HKLM-x32&#8230;ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj] &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCChromeExtnWCChromeExtn.crx [2015-06-29]\nCHR HKLM-x32&#8230;ChromeExtension: [eofcbnmajmjmplflapaojjnihcjkigck]</p>"},{"id":"text-20","type":"text","heading":"","plain_text":"==================== Services (Whitelisted) ===================","html":"<p>==================== Services (Whitelisted) ===================</p>"},{"id":"text-21","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)</p>"},{"id":"text-22","type":"text","heading":"","plain_text":"S4 AdAppMgrSvc; C:Program Files (x86)AutodeskAutodesk Desktop AppAdAppMgrSvc.exe [1374072 2018-03-10] (Autodesk, Inc. -&gt; Autodesk Inc.)\nR2 AVG Antivirus; C:Program Files (x86)AVGAntivirusAVGSvc.exe [349552 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR3 avgbIDSAgent; C:Program Files (x86)AVGAntivirusaswidsagent.exe [6397888 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 BTDevManager; C:Program Files (x86)REALTEKRealtek BluetoothBTDevMgr.exe [125656 2015-09-18] (Realtek Semiconductor Corp -&gt; )\nR2 CleanupPSvc; C:Program Files (x86)AVGAVG TuneUpTuneupSvc.exe [10301176 2019-07-24] (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nR2 DBJobServer; C:Program Files (x86)DesignBuilderJobServerDBJobServer.exe [672168 2018-03-22] (DesignBuilder Software Ltd -&gt; DesignBuilder Software Ltd.)\nR2 DBSimLServer; C:Program Files (x86)DesignBuilderLibDBSimLServer.exe [23464 2018-03-22] (DesignBuilder Software Ltd -&gt; DesignBuilder)\nS3 DialComService; C:Program Files (x86)DIAL GmbHDIAL Communication FrameworkDialComService.exe [2184192 2017-05-29] (DIAL GmbH) [File not signed]\nS3 Disc Soft Lite Bus Service; C:Program FilesDAEMON Tools LiteDiscSoftBusService.exe [1443520 2016-04-04] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR2 DraftSight API Service; C:Program FilesDassault SystemesDraftSightbindsHttpApiService.exe [121344 2016-11-10] (Dassault Systèmes) [File not signed]\nR2 esifsvc; C:WindowsSysWOW64esif_uf.exe [1037568 2015-03-04] (Intel® Software -&gt; Intel Corporation)\nR2 GamesAppIntegrationService; C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [347200 2015-02-09] (WildTangent Inc -&gt; WildTangent)\nR2 HPSupportSolutionsFrameworkService; C:Program Files (x86)Hewlett-PackardHP Support SolutionsHPSupportSolutionsFrameworkService.exe [379224 2020-05-20] (HP Inc. -&gt; HP Inc.)\nR2 HPWMISVC; c:Program Files (x86)Hewlett-PackardHP System EventHPWMISVC.exe [573704 2014-12-01] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nR2 igfxCUIService1.0.0.0; C:Windowssystem32igfxCUIService.exe [344168 2015-04-28] (Intel Corporation &#8211; pGFX -&gt; Intel Corporation)\nR2 jhi_service; C:Program Files (x86)IntelIntel® Management Engine ComponentsDALjhi_service.exe [158496 2014-11-10] (Intel Corporation &#8211; Embedded Subsystems and IP Blocks Group -&gt; Intel Corporation)\nR2 jswpbapi; C:Program Files (x86)Jumpstartjswpbapi.exe [265216 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nS3 jswpsapi; C:Program Files (x86)Jumpstartjswpsapi.exe [954368 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nR2 MBAMService; C:Program FilesMalwarebytesAnti-MalwareMBAMService.exe [6933272 2020-03-19] (Malwarebytes Inc -&gt; Malwarebytes)\nR2 NvNetworkService; C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe [1795912 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR2 NvStreamSvc; C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe [19819848 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR2 omniserv; C:Program FilesHewlett-PackardSimplePassOmniServ.exe [103424 2015-01-30] (Softex Inc.) [File not signed]\nS3 ProtonVPN Service; C:Program Files (x86)Proton TechnologiesProtonVPNProtonVPNService.exe [101096 2020-02-17] (ProtonVPN AG -&gt; )\nS3 ProtonVPN Update Service; C:Program Files (x86)Proton TechnologiesProtonVPNProtonVPN.UpdateService.exe [60136 2020-02-17] (ProtonVPN AG -&gt; )\nR2 RichVideo64; C:Program FilesCyberLinkShared filesRichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -&gt; )\nS3 rpcapd; C:Program Files (x86)WinPcaprpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nR2 RtkAudioService; C:Program FilesRealtekAudioHDARtkAudioService64.exe [293080 2015-03-04] (Realtek Semiconductor Corp -&gt; Realtek Semiconductor)\nR2 SecureLine; C:Program FilesAVAST SoftwareSecureLineVpnSvc.exe [6828424 2019-10-23] (AVAST Software s.r.o. -&gt; AVAST Software)\nR2 ss_conn_service; C:Program FilesSAMSUNGUSB Drivers25_escapeconnss_conn_service.exe [743688 2014-12-03] (DEVGURU CO LTD -&gt; DEVGURU Co., LTD.)\nR2 ss_conn_service2; C:Program FilesSamsungUSB Drivers28_ssconn2connss_conn_service2.exe [780328 2019-09-24] (DEVGURU Co., Ltd. -&gt; DEVGURU Co., LTD.)\nR2 SynTPEnhService; C:Program FilesSynapticsSynTPSynTPEnhService.exe [220840 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nS3 VBoxSDS; C:Program FilesOracleVirtualBoxVBoxSDS.exe [690424 2019-01-25] (Oracle Corporation -&gt; Oracle Corporation)\nR2 vToolbarUpdater40.3.8; C:Program Files (x86)Common FilesAVG Secure SearchvToolbarUpdater40.3.8ToolbarUpdater.exe [1371136 2019-01-28] (AVG Netherlands B.V. -&gt; AVG Secure Search)\nS3 WdNisSvc; C:Program FilesWindows DefenderNisSrv.exe [361824 2017-01-12] (Microsoft Corporation -&gt; Microsoft Corporation)\nS3 WinDefend; C:Program FilesWindows DefenderMsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -&gt; Microsoft Corporation)\nR2 WtuSystemSupport; C:Program Files (x86)AVG Web TuneUpWtuSystemSupport.exe [811520 2019-01-28] (AVG Netherlands B.V. -&gt; )\nS2 KMSServerService; C:WindowsKMSServerServiceKMS Server Service.exe  [X]","html":"<p>S4 AdAppMgrSvc; C:Program Files (x86)AutodeskAutodesk Desktop AppAdAppMgrSvc.exe [1374072 2018-03-10] (Autodesk, Inc. -&gt; Autodesk Inc.)\nR2 AVG Antivirus; C:Program Files (x86)AVGAntivirusAVGSvc.exe [349552 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR3 avgbIDSAgent; C:Program Files (x86)AVGAntivirusaswidsagent.exe [6397888 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 BTDevManager; C:Program Files (x86)REALTEKRealtek BluetoothBTDevMgr.exe [125656 2015-09-18] (Realtek Semiconductor Corp -&gt; )\nR2 CleanupPSvc; C:Program Files (x86)AVGAVG TuneUpTuneupSvc.exe [10301176 2019-07-24] (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nR2 DBJobServer; C:Program Files (x86)DesignBuilderJobServerDBJobServer.exe [672168 2018-03-22] (DesignBuilder Software Ltd -&gt; DesignBuilder Software Ltd.)\nR2 DBSimLServer; C:Program Files (x86)DesignBuilderLibDBSimLServer.exe [23464 2018-03-22] (DesignBuilder Software Ltd -&gt; DesignBuilder)\nS3 DialComService; C:Program Files (x86)DIAL GmbHDIAL Communication FrameworkDialComService.exe [2184192 2017-05-29] (DIAL GmbH) [File not signed]\nS3 Disc Soft Lite Bus Service; C:Program FilesDAEMON Tools LiteDiscSoftBusService.exe [1443520 2016-04-04] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR2 DraftSight API Service; C:Program FilesDassault SystemesDraftSightbindsHttpApiService.exe [121344 2016-11-10] (Dassault Systèmes) [File not signed]\nR2 esifsvc; C:WindowsSysWOW64esif_uf.exe [1037568 2015-03-04] (Intel® Software -&gt; Intel Corporation)\nR2 GamesAppIntegrationService; C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [347200 2015-02-09] (WildTangent Inc -&gt; WildTangent)\nR2 HPSupportSolutionsFrameworkService; C:Program Files (x86)Hewlett-PackardHP Support SolutionsHPSupportSolutionsFrameworkService.exe [379224 2020-05-20] (HP Inc. -&gt; HP Inc.)\nR2 HPWMISVC; c:Program Files (x86)Hewlett-PackardHP System EventHPWMISVC.exe [573704 2014-12-01] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nR2 igfxCUIService1.0.0.0; C:Windowssystem32igfxCUIService.exe [344168 2015-04-28] (Intel Corporation &#8211; pGFX -&gt; Intel Corporation)\nR2 jhi_service; C:Program Files (x86)IntelIntel® Management Engine ComponentsDALjhi_service.exe [158496 2014-11-10] (Intel Corporation &#8211; Embedded Subsystems and IP Blocks Group -&gt; Intel Corporation)\nR2 jswpbapi; C:Program Files (x86)Jumpstartjswpbapi.exe [265216 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nS3 jswpsapi; C:Program Files (x86)Jumpstartjswpsapi.exe [954368 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nR2 MBAMService; C:Program FilesMalwarebytesAnti-MalwareMBAMService.exe [6933272 2020-03-19] (Malwarebytes Inc -&gt; Malwarebytes)\nR2 NvNetworkService; C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe [1795912 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR2 NvStreamSvc; C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe [19819848 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR2 omniserv; C:Program FilesHewlett-PackardSimplePassOmniServ.exe [103424 2015-01-30] (Softex Inc.) [File not signed]\nS3 ProtonVPN Service; C:Program Files (x86)Proton TechnologiesProtonVPNProtonVPNService.exe [101096 2020-02-17] (ProtonVPN AG -&gt; )\nS3 ProtonVPN Update Service; C:Program Files (x86)Proton TechnologiesProtonVPNProtonVPN.UpdateService.exe [60136 2020-02-17] (ProtonVPN AG -&gt; )\nR2 RichVideo64; C:Program FilesCyberLinkShared filesRichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -&gt; )\nS3 rpcapd; C:Program Files (x86)WinPcaprpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nR2 RtkAudioService; C:Program FilesRealtekAudioHDARtkAudioService64.exe [293080 2015-03-04] (Realtek Semiconductor Corp -&gt; Realtek Semiconductor)\nR2 SecureLine; C:Program FilesAVAST SoftwareSecureLineVpnSvc.exe [6828424 2019-10-23] (AVAST Software s.r.o. -&gt; AVAST Software)\nR2 ss_conn_service; C:Program FilesSAMSUNGUSB Drivers25_escapeconnss_conn_service.exe [743688 2014-12-03] (DEVGURU CO LTD -&gt; DEVGURU Co., LTD.)\nR2 ss_conn_service2; C:Program FilesSamsungUSB Drivers28_ssconn2connss_conn_service2.exe [780328 2019-09-24] (DEVGURU Co., Ltd. -&gt; DEVGURU Co., LTD.)\nR2 SynTPEnhService; C:Program FilesSynapticsSynTPSynTPEnhService.exe [220840 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nS3 VBoxSDS; C:Program FilesOracleVirtualBoxVBoxSDS.exe [690424 2019-01-25] (Oracle Corporation -&gt; Oracle Corporation)\nR2 vToolbarUpdater40.3.8; C:Program Files (x86)Common FilesAVG Secure SearchvToolbarUpdater40.3.8ToolbarUpdater.exe [1371136 2019-01-28] (AVG Netherlands B.V. -&gt; AVG Secure Search)\nS3 WdNisSvc; C:Program FilesWindows DefenderNisSrv.exe [361824 2017-01-12] (Microsoft Corporation -&gt; Microsoft Corporation)\nS3 WinDefend; C:Program FilesWindows DefenderMsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -&gt; Microsoft Corporation)\nR2 WtuSystemSupport; C:Program Files (x86)AVG Web TuneUpWtuSystemSupport.exe [811520 2019-01-28] (AVG Netherlands B.V. -&gt; )\nS2 KMSServerService; C:WindowsKMSServerServiceKMS Server Service.exe  [X]</p>"},{"id":"text-23","type":"text","heading":"","plain_text":"===================== Drivers (Whitelisted) ===================","html":"<p>===================== Drivers (Whitelisted) ===================</p>"},{"id":"text-24","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)</p>"},{"id":"text-25","type":"text","heading":"","plain_text":"R3 Accelerometer; C:Windowssystem32DRIVERSAccelerometer.sys [44680 2015-01-27] (Hewlett-Packard Company -&gt; Hewlett-Packard)\nS3 aftap0901; C:Windowssystem32DRIVERSaftap0901.sys [48624 2017-11-16] (AnchorFree Inc -&gt; The OpenVPN Project)\nS3 akshasp; C:Windowssystem32DRIVERSakshasp.sys [90240 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nS3 aksusb; C:WindowsSystem32driversaksusb.sys [18688 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nR0 avgArDisk; C:WindowsSystem32driversavgArDisk.sys [37208 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgArPot; C:WindowsSystem32driversavgArPot.sys [205952 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgbidsdriver; C:WindowsSystem32driversavgbidsdriver.sys [234632 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgbidsh; C:WindowsSystem32driversavgbidsh.sys [178832 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgbuniv; C:WindowsSystem32driversavgbuniv.sys [61072 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgKbd; C:WindowsSystem32driversavgKbd.sys [42856 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 avgMonFlt; C:WindowsSystem32driversavgMonFlt.sys [175776 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgRdr; C:WindowsSystem32driversavgRdr2.sys [109336 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgRvrt; C:WindowsSystem32driversavgRvrt.sys [84928 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgSnx; C:WindowsSystem32driversavgSnx.sys [851664 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgSP; C:WindowsSystem32driversavgSP.sys [461064 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 avgStm; C:WindowsSystem32driversavgStm.sys [235552 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgVmm; C:WindowsSystem32driversavgVmm.sys [319184 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nS3 BlueStacksDrv; C:Program FilesBlueStacksBstkDrv.sys [313112 2019-03-14] (Bluestack Systems, Inc. -&gt; Bluestack System Inc.)\nS3 dg_ssudbus; C:Windowssystem32DRIVERSssudbus.sys [136040 2019-09-26] (Samsung Electronics Co., Ltd. -&gt; Samsung Electronics Co., Ltd.)\nR3 dtlitescsibus; C:WindowsSystem32driversdtlitescsibus.sys [30264 2016-04-28] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR3 dtliteusbbus; C:WindowsSystem32driversdtliteusbbus.sys [47672 2016-04-28] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nS2 Hardlock; C:Windowssystem32drivershardlock.sys [314368 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nR0 hpdskflt; C:WindowsSystem32DRIVERShpdskflt.sys [31880 2015-01-27] (Hewlett-Packard Company -&gt; Hewlett-Packard)\nR0 IntelHSWPcc; C:WindowsSystem32driversIntelPcc.sys [79528 2014-12-22] (Intel® Software -&gt; Intel Corporation)\nR1 JSWPSLWF; C:Windowssystem32DRIVERSjswpslwfx.sys [26624 2008-05-15] (Microsoft Windows Hardware Compatibility Publisher -&gt; Atheros Communications, Inc.)\nR3 kmloop; C:Windowssystem32DRIVERSloop.sys [15360 2013-08-22] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 libusbK; C:WindowsSystem32driverslibusbK.sys [47200 2016-08-02] (Travis Lee Robinson -&gt; hxxp://libusb-win32.sourceforge.net)\nR2 MBAMChameleon; C:WindowsSystem32DriversMbamChameleon.sys [214496 2020-05-22] (Malwarebytes Inc -&gt; Malwarebytes)\nR3 MBAMSwissArmy; C:WindowsSystem32Driversmbamswissarmy.sys [248968 2020-06-02] (Malwarebytes Inc -&gt; Malwarebytes)\nS3 MEIx64; C:Windowssystem32DRIVERSTeeDriverx64.sys [129312 2014-11-10] (Intel Corporation &#8211; Embedded Subsystems and IP Blocks Group -&gt; Intel Corporation)\nR1 npcap; C:Windowssystem32DRIVERSnpcap.sys [70968 2019-07-30] (Insecure.Com LLC -&gt; Insecure.Com LLC.)\nS4 npcap_wifi; C:Windowssystem32DRIVERSnpcap.sys [70968 2019-07-30] (Insecure.Com LLC -&gt; Insecure.Com LLC.)\nR2 NPF; C:WindowsSystem32driversnpf.sys [35344 2010-06-25] (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nR3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [19784 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvad_WaveExtensible; C:Windowssystem32driversnvvad64v.sys [38216 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS3 OXSDIDRV_x64; C:Windowssystem32DRIVERSOXSDIDRV_x64.sys [52384 2011-08-23] (PLX Technology, Inc. -&gt; )\nS3 OXUDIDRV; C:Windowssystem32DriversOXUDIDRV_X64.sys [31280 2010-05-25] (Oxford Semiconductor Ltd -&gt; )\nU5 PROCMON24; C:WindowsSystem32DriversPROCMON24.sys [90168 2020-06-02] (Microsoft Windows Hardware Compatibility Publisher -&gt; Sysinternals &#8211; www.sysinternals.com)\nU5 RTSUER; C:WindowsSystem32DriversRTSUER.sys [377048 2015-03-03] (Realtek Semiconductor Corp -&gt; Realsil Semiconductor Corporation)\nR3 ScpVBus; C:WindowsSystem32driversScpVBus.sys [39168 2013-05-19] (Bruce James -&gt; Scarlet.Crush Productions)\nS3 SmbDrv; C:WindowsSystem32driversSmb_driver_AMDASF.sys [33448 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nR3 SmbDrvI; C:Windowssystem32DRIVERSSmb_driver_Intel.sys [33448 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nS3 ssudmdm; C:Windowssystem32DRIVERSssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -&gt; Samsung Electronics Co., Ltd.)\nS3 tapprotonvpn; C:Windowssystem32DRIVERStapprotonvpn.sys [35768 2020-01-15] (ProtonVPN AG -&gt; The OpenVPN Project)\nS3 TIEHDUSB; C:WindowsSystem32driverstiehdusb.sys [128512 2012-03-07] (Microsoft Windows Hardware Compatibility Publisher -&gt; Texas Instruments)\nR3 USBPcap; C:Windowssystem32DRIVERSUSBPcap.sys [40888 2017-08-20] (Tomasz Moń -&gt; USBPcap)\nR3 VBoxNetAdp; C:Windowssystem32DRIVERSVBoxNetAdp6.sys [235832 2019-01-28] (Oracle Corporation -&gt; Oracle Corporation)\nR1 VBoxNetLwf; C:Windowssystem32DRIVERSVBoxNetLwf.sys [247216 2019-01-28] (Oracle Corporation -&gt; Oracle Corporation)\nS3 vjoy; C:WindowsSystem32driversvjoy.sys [56440 2016-02-03] (Shaul Eizikovich -&gt; Shaul Eizikovich)\nR0 vsock; C:WindowsSystem32DRIVERSvsock.sys [92040 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nS3 WdBoot; C:Windowssystem32driversWdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -&gt; Microsoft Corporation)\nS3 WdFilter; C:Windowssystem32driversWdFilter.sys [274776 2017-01-12] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 WdNisDrv; C:WindowsSystem32DriversWdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -&gt; Microsoft Corporation)\nR3 WirelessButtonDriver; C:WindowsSystem32driversWirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nU3 aswbdisk; no ImagePath\nS3 cpuz140; ??C:UsersXXXXXXZZZ~1AppDataLocalTempcpuz140cpuz140_x64.sys [X] &lt;==== ATTENTION\nS3 esihdrv; ??C:UsersXXXXXXZZZ~1AppDataLocalTempesihdrv.sys [X] &lt;==== ATTENTION","html":"<p>R3 Accelerometer; C:Windowssystem32DRIVERSAccelerometer.sys [44680 2015-01-27] (Hewlett-Packard Company -&gt; Hewlett-Packard)\nS3 aftap0901; C:Windowssystem32DRIVERSaftap0901.sys [48624 2017-11-16] (AnchorFree Inc -&gt; The OpenVPN Project)\nS3 akshasp; C:Windowssystem32DRIVERSakshasp.sys [90240 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nS3 aksusb; C:WindowsSystem32driversaksusb.sys [18688 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nR0 avgArDisk; C:WindowsSystem32driversavgArDisk.sys [37208 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgArPot; C:WindowsSystem32driversavgArPot.sys [205952 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgbidsdriver; C:WindowsSystem32driversavgbidsdriver.sys [234632 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgbidsh; C:WindowsSystem32driversavgbidsh.sys [178832 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgbuniv; C:WindowsSystem32driversavgbuniv.sys [61072 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgKbd; C:WindowsSystem32driversavgKbd.sys [42856 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 avgMonFlt; C:WindowsSystem32driversavgMonFlt.sys [175776 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgRdr; C:WindowsSystem32driversavgRdr2.sys [109336 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgRvrt; C:WindowsSystem32driversavgRvrt.sys [84928 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgSnx; C:WindowsSystem32driversavgSnx.sys [851664 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgSP; C:WindowsSystem32driversavgSP.sys [461064 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 avgStm; C:WindowsSystem32driversavgStm.sys [235552 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgVmm; C:WindowsSystem32driversavgVmm.sys [319184 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nS3 BlueStacksDrv; C:Program FilesBlueStacksBstkDrv.sys [313112 2019-03-14] (Bluestack Systems, Inc. -&gt; Bluestack System Inc.)\nS3 dg_ssudbus; C:Windowssystem32DRIVERSssudbus.sys [136040 2019-09-26] (Samsung Electronics Co., Ltd. -&gt; Samsung Electronics Co., Ltd.)\nR3 dtlitescsibus; C:WindowsSystem32driversdtlitescsibus.sys [30264 2016-04-28] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR3 dtliteusbbus; C:WindowsSystem32driversdtliteusbbus.sys [47672 2016-04-28] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nS2 Hardlock; C:Windowssystem32drivershardlock.sys [314368 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nR0 hpdskflt; C:WindowsSystem32DRIVERShpdskflt.sys [31880 2015-01-27] (Hewlett-Packard Company -&gt; Hewlett-Packard)\nR0 IntelHSWPcc; C:WindowsSystem32driversIntelPcc.sys [79528 2014-12-22] (Intel® Software -&gt; Intel Corporation)\nR1 JSWPSLWF; C:Windowssystem32DRIVERSjswpslwfx.sys [26624 2008-05-15] (Microsoft Windows Hardware Compatibility Publisher -&gt; Atheros Communications, Inc.)\nR3 kmloop; C:Windowssystem32DRIVERSloop.sys [15360 2013-08-22] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 libusbK; C:WindowsSystem32driverslibusbK.sys [47200 2016-08-02] (Travis Lee Robinson -&gt; hxxp://libusb-win32.sourceforge.net)\nR2 MBAMChameleon; C:WindowsSystem32DriversMbamChameleon.sys [214496 2020-05-22] (Malwarebytes Inc -&gt; Malwarebytes)\nR3 MBAMSwissArmy; C:WindowsSystem32Driversmbamswissarmy.sys [248968 2020-06-02] (Malwarebytes Inc -&gt; Malwarebytes)\nS3 MEIx64; C:Windowssystem32DRIVERSTeeDriverx64.sys [129312 2014-11-10] (Intel Corporation &#8211; Embedded Subsystems and IP Blocks Group -&gt; Intel Corporation)\nR1 npcap; C:Windowssystem32DRIVERSnpcap.sys [70968 2019-07-30] (Insecure.Com LLC -&gt; Insecure.Com LLC.)\nS4 npcap_wifi; C:Windowssystem32DRIVERSnpcap.sys [70968 2019-07-30] (Insecure.Com LLC -&gt; Insecure.Com LLC.)\nR2 NPF; C:WindowsSystem32driversnpf.sys [35344 2010-06-25] (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nR3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [19784 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvad_WaveExtensible; C:Windowssystem32driversnvvad64v.sys [38216 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS3 OXSDIDRV_x64; C:Windowssystem32DRIVERSOXSDIDRV_x64.sys [52384 2011-08-23] (PLX Technology, Inc. -&gt; )\nS3 OXUDIDRV; C:Windowssystem32DriversOXUDIDRV_X64.sys [31280 2010-05-25] (Oxford Semiconductor Ltd -&gt; )\nU5 PROCMON24; C:WindowsSystem32DriversPROCMON24.sys [90168 2020-06-02] (Microsoft Windows Hardware Compatibility Publisher -&gt; Sysinternals &#8211; www.sysinternals.com)\nU5 RTSUER; C:WindowsSystem32DriversRTSUER.sys [377048 2015-03-03] (Realtek Semiconductor Corp -&gt; Realsil Semiconductor Corporation)\nR3 ScpVBus; C:WindowsSystem32driversScpVBus.sys [39168 2013-05-19] (Bruce James -&gt; Scarlet.Crush Productions)\nS3 SmbDrv; C:WindowsSystem32driversSmb_driver_AMDASF.sys [33448 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nR3 SmbDrvI; C:Windowssystem32DRIVERSSmb_driver_Intel.sys [33448 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nS3 ssudmdm; C:Windowssystem32DRIVERSssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -&gt; Samsung Electronics Co., Ltd.)\nS3 tapprotonvpn; C:Windowssystem32DRIVERStapprotonvpn.sys [35768 2020-01-15] (ProtonVPN AG -&gt; The OpenVPN Project)\nS3 TIEHDUSB; C:WindowsSystem32driverstiehdusb.sys [128512 2012-03-07] (Microsoft Windows Hardware Compatibility Publisher -&gt; Texas Instruments)\nR3 USBPcap; C:Windowssystem32DRIVERSUSBPcap.sys [40888 2017-08-20] (Tomasz Moń -&gt; USBPcap)\nR3 VBoxNetAdp; C:Windowssystem32DRIVERSVBoxNetAdp6.sys [235832 2019-01-28] (Oracle Corporation -&gt; Oracle Corporation)\nR1 VBoxNetLwf; C:Windowssystem32DRIVERSVBoxNetLwf.sys [247216 2019-01-28] (Oracle Corporation -&gt; Oracle Corporation)\nS3 vjoy; C:WindowsSystem32driversvjoy.sys [56440 2016-02-03] (Shaul Eizikovich -&gt; Shaul Eizikovich)\nR0 vsock; C:WindowsSystem32DRIVERSvsock.sys [92040 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nS3 WdBoot; C:Windowssystem32driversWdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -&gt; Microsoft Corporation)\nS3 WdFilter; C:Windowssystem32driversWdFilter.sys [274776 2017-01-12] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 WdNisDrv; C:WindowsSystem32DriversWdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -&gt; Microsoft Corporation)\nR3 WirelessButtonDriver; C:WindowsSystem32driversWirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nU3 aswbdisk; no ImagePath\nS3 cpuz140; ??C:UsersXXXXXXZZZ~1AppDataLocalTempcpuz140cpuz140_x64.sys [X] &lt;==== ATTENTION\nS3 esihdrv; ??C:UsersXXXXXXZZZ~1AppDataLocalTempesihdrv.sys [X] &lt;==== ATTENTION</p>"},{"id":"text-26","type":"text","heading":"","plain_text":"==================== NetSvcs (Whitelisted) ===================","html":"<p>==================== NetSvcs (Whitelisted) ===================</p>"},{"id":"text-27","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)</p>"},{"id":"text-28","type":"text","heading":"","plain_text":"==================== One month (created) ===================","html":"<p>==================== One month (created) ===================</p>"},{"id":"text-29","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, the file/folder will be moved.)","html":"<p>(If an entry is included in the fixlist, the file/folder will be moved.)</p>"},{"id":"text-30","type":"text","heading":"","plain_text":"2020-06-09 11:52 &#8211; 2020-06-09 11:54 &#8211; 000063509 _____ C:UsersXXXXXXZZZDownloadsFRST.txt\n2020-06-09 11:51 &#8211; 2020-06-09 11:51 &#8211; 002289152 _____ (Farbar) C:UsersXXXXXXZZZDownloadsFRST64.exe\n2020-06-07 23:48 &#8211; 2020-06-08 01:26 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsMobile ETH\n2020-06-07 16:57 &#8211; 2020-06-07 16:57 &#8211; 000226879 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; Reflexões Masculinas (Ed. 2008).pdf\n2020-06-07 16:56 &#8211; 2020-06-07 16:56 &#8211; 000393633 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; A Guerra da Paixão (Ed. 2005).pdf\n2020-06-07 16:56 &#8211; 2020-06-07 16:56 &#8211; 000321820 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; O Profano Feminino (Ed. 2008).pdf\n2020-06-07 16:55 &#8211; 2020-06-07 16:55 &#8211; 001413718 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; Como lidar com mulheres (Ed. 2008).pdf\n2020-06-05 14:57 &#8211; 2020-06-05 14:57 &#8211; 000000000 ____D C:Windowssystem32TasksMozilla\n2020-06-05 10:16 &#8211; 2020-06-05 10:17 &#8211; 169944728 _____ (Oracle Corporation) C:UsersXXXXXXZZZDownloadsjdk-14.0.1_windows-x64_bin.exe\n2020-06-05 10:12 &#8211; 2020-06-09 09:09 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Firefox\n2020-06-02 20:38 &#8211; 2020-06-02 20:38 &#8211; 000001505 _____ C:UsersXXXXXXZZZDesktopNetworkMiner.exe &#8211; Atalho.lnk\n2020-06-02 20:28 &#8211; 2020-06-02 20:28 &#8211; 000090168 ____H (Sysinternals &#8211; www.sysinternals.com) C:Windowssystem32DriversPROCMON24.SYS\n2020-06-02 20:18 &#8211; 2020-06-02 20:18 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadspowershell mtsploit 2\n2020-06-02 17:17 &#8211; 2020-06-02 17:17 &#8211; 000001208 _____ C:UsersXXXXXXZZZDesktopLegislação &#8211; Atalho.lnk\n2020-06-02 14:34 &#8211; 2020-06-02 14:34 &#8211; 000248968 _____ (Malwarebytes) C:Windowssystem32Driversmbamswissarmy.sys\n2020-06-02 11:16 &#8211; 2020-06-02 11:16 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalOsram_Lamp\n2020-06-02 10:08 &#8211; 2020-06-02 10:09 &#8211; 004189296 _____ C:UsersXXXXXXZZZDownloadsultrasurf.exe\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000002019 _____ C:UsersPublicDesktopPhilips_Cat.lnk\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000002019 _____ C:ProgramDataDesktopPhilips_Cat.lnk\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsPhilips Lighting\n2020-06-01 21:19 &#8211; 2020-06-01 21:21 &#8211; 000000000 ____D C:Program Files (x86)Philips Lighting\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000002048 _____ C:UsersPublicDesktopOSRAM Lamp PlugIn.lnk\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000002048 _____ C:ProgramDataDesktopOSRAM Lamp PlugIn.lnk\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsDIALux PlugIns\n2020-06-01 18:22 &#8211; 2020-06-01 18:23 &#8211; 000000000 ____D C:ProgramDataDIALux\n2020-06-01 18:22 &#8211; 2020-06-01 18:22 &#8211; 000000000 ____D C:ProgramDataDIALux PlugIns\n2020-06-01 18:17 &#8211; 2020-06-01 21:00 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsPHILIPS\n2020-06-01 18:17 &#8211; 2020-06-01 18:18 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsOSRAM\n2020-06-01 18:15 &#8211; 2020-06-01 18:15 &#8211; 001751775 _____ C:UsersXXXXXXZZZDownloads20190926-philips-truefashion-2-compact-st715t.zip\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsDIAL GmbH\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalStimulsoft\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalDIAL GmbH\n2020-06-01 12:15 &#8211; 2020-06-01 12:16 &#8211; 000038155 _____ C:DIALux Setup Information.txt\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000005721 _____ C:DIAL Communication Framework Setup Log.txt\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000001783 _____ C:UsersPublicDesktopDIALux evo.lnk\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000001783 _____ C:ProgramDataDesktopDIALux evo.lnk\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalSafeNet Sentinel\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:ProgramDataSafeNet Sentinel\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsDIALux evo\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:Program Files (x86)DIAL GmbH\n2020-06-01 12:13 &#8211; 2020-06-01 12:20 &#8211; 000656059 _____ C:WindowsDIALux Setup Log.txt\n2020-06-01 12:13 &#8211; 2020-06-01 12:14 &#8211; 000000000 ____D C:ProgramDataDIAL GmbH\n2020-06-01 12:13 &#8211; 2020-06-01 12:13 &#8211; 000000000 ____D C:Program FilesDIAL GmbH\n2020-06-01 12:02 &#8211; 2020-06-01 12:04 &#8211; 486796896 _____ (DIAL GmbH) C:UsersXXXXXXZZZDownloadsDIALux_evo_9.0.exe\n2020-05-28 14:18 &#8211; 2020-05-28 14:18 &#8211; 000090112 _____ C:UsersXXXXXXZZZDownloadsamipinkc2.exe\n2020-05-28 13:07 &#8211; 2020-05-28 13:07 &#8211; 000002391 _____ C:UsersXXXXXXZZZAppDataLocalrecently-used.xbel\n2020-05-28 12:56 &#8211; 2020-05-28 12:56 &#8211; 011226820 _____ C:UsersXXXXXXZZZDownloadsvulscan-master.zip\n2020-05-27 15:28 &#8211; 2020-05-27 15:28 &#8211; 000030719 _____ C:UsersXXXXXXZZZDownloadsc2 metasploit powershel.zip\n2020-05-24 14:46 &#8211; 2020-05-24 14:46 &#8211; 001227102 _____ C:UsersXXXXXXZZZDownloadsSGA10.zip\n2020-05-23 00:22 &#8211; 2020-05-23 00:22 &#8211; 000000018 _____ C:UsersXXXXXXZZZDesktopSerpentine Similar.txt\n2020-05-22 20:08 &#8211; 2020-05-22 20:09 &#8211; 000325072 _____ C:WindowsMinidump52220-169750-01.dmp\n2020-05-22 16:03 &#8211; 2020-05-22 16:03 &#8211; 000214496 _____ (Malwarebytes) C:Windowssystem32DriversMbamChameleon.sys\n2020-05-21 22:30 &#8211; 2020-05-21 22:30 &#8211; 000000083 _____ C:UsersXXXXXXZZZDesktopnmap.txt\n2020-05-21 10:47 &#8211; 2020-05-28 13:07 &#8211; 000000000 ____D C:UsersXXXXXXZZZ.zenmap\n2020-05-21 10:47 &#8211; 2020-05-21 10:47 &#8211; 000000986 _____ C:UsersXXXXXXZZZDesktopNmap &#8211; Zenmap GUI.lnk\n2020-05-21 10:47 &#8211; 2020-05-21 10:47 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsNmap\n2020-05-21 10:45 &#8211; 2020-05-24 17:36 &#8211; 000003112 _____ C:Windowssystem32Tasksnpcapwatchdog\n2020-05-21 10:43 &#8211; 2020-05-21 10:43 &#8211; 000000000 ____D C:WindowsSysWOW64Npcap\n2020-05-21 10:43 &#8211; 2020-05-21 10:43 &#8211; 000000000 ____D C:Windowssystem32Npcap\n2020-05-21 10:42 &#8211; 2020-05-28 13:00 &#8211; 000000000 ____D C:Program Files (x86)Nmap\n2020-05-21 00:50 &#8211; 2020-05-21 10:13 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsSGA10\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002203 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Earth Pro.lnk\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002191 _____ C:UsersPublicDesktopGoogle Earth Pro.lnk\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002191 _____ C:ProgramDataDesktopGoogle Earth Pro.lnk\n2020-05-17 13:58 &#8211; 2020-05-17 13:59 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsFotos Belém\n2020-05-16 22:15 &#8211; 2020-05-16 22:24 &#8211; 000002368 _____ C:UsersXXXXXXZZZDesktopRkill.txt\n2020-05-16 22:14 &#8211; 2020-05-16 22:14 &#8211; 001802704 _____ (Bleeping Computer, LLC) C:UsersXXXXXXZZZDownloadsrkill.exe\n2020-05-16 21:34 &#8211; 2020-05-16 21:34 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalclink\n2020-05-16 20:34 &#8211; 2020-05-16 20:40 &#8211; 000000000 ____D C:Appie\n2020-05-15 23:38 &#8211; 2020-05-15 23:38 &#8211; 000000193 _____ C:UsersXXXXXXZZZDesktopbiblio.txt\n2020-05-14 11:27 &#8211; 2020-05-14 11:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsZoom\n2020-05-14 11:20 &#8211; 2020-05-14 11:20 &#8211; 000001947 _____ C:UsersXXXXXXZZZDesktopZoom.lnk\n2020-05-14 11:19 &#8211; 2020-05-14 11:19 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsZoom\n2020-05-14 10:28 &#8211; 2020-04-30 04:49 &#8211; 000308736 _____ (Microsoft Corporation) C:Windowssystem32usbmon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 04:22 &#8211; 000881664 _____ (Microsoft Corporation) C:Windowssystem32printfilterpipelinesvc.exe\n2020-05-14 10:28 &#8211; 2020-04-30 03:55 &#8211; 001756672 _____ (Microsoft Corporation) C:Windowssystem32GdiPlus.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:43 &#8211; 001495040 _____ (Microsoft Corporation) C:WindowsSysWOW64GdiPlus.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:40 &#8211; 000309760 _____ (Microsoft Corporation) C:Windowssystem32WSDMon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:37 &#8211; 000216576 _____ (Microsoft Corporation) C:Windowssystem32tcpmon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:33 &#8211; 001096704 _____ (Microsoft Corporation) C:Windowssystem32localspl.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 022365896 _____ (Microsoft Corporation) C:Windowssystem32shell32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 003118032 _____ (Microsoft Corporation) C:Windowssystem32WpcMon.exe\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 001368592 _____ (Microsoft Corporation) C:Windowssystem32gdi32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 000722496 _____ (Microsoft Corporation) C:Windowssystem32SHCore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 000642488 _____ (Microsoft Corporation) C:Windowssystem32twinapi.appcore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:00 &#8211; 000374024 _____ (Adobe Systems Incorporated) C:Windowssystem32atmfd.dll\n2020-05-14 10:28 &#8211; 2020-04-16 06:15 &#8211; 025755136 _____ (Microsoft Corporation) C:Windowssystem32mshtml.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:30 &#8211; 019795840 _____ (Microsoft Corporation) C:WindowsSysWOW64shell32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:29 &#8211; 000561400 _____ (Microsoft Corporation) C:WindowsSysWOW64SHCore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:29 &#8211; 000493736 _____ (Microsoft Corporation) C:WindowsSysWOW64twinapi.appcore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:25 &#8211; 000316368 _____ (Adobe Systems Incorporated) C:WindowsSysWOW64atmfd.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:40 &#8211; 002911744 _____ (Microsoft Corporation) C:Windowssystem32iertutil.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:38 &#8211; 000581120 _____ (Microsoft Corporation) C:Windowssystem32vbscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:31 &#8211; 020291072 _____ (Microsoft Corporation) C:WindowsSysWOW64mshtml.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:31 &#8211; 000113152 _____ (Microsoft Corporation) C:Windowssystem32Windows.Security.Credentials.UI.UserConsentVerifier.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:28 &#8211; 000186880 _____ (Microsoft Corporation) C:Windowssystem32easwrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:27 &#8211; 005498880 _____ (Microsoft Corporation) C:Windowssystem32jscript9.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:27 &#8211; 000785408 _____ (Microsoft Corporation) C:Windowssystem32jscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:25 &#8211; 000546816 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.PointOfService.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:14 &#8211; 000497664 _____ (Microsoft Corporation) C:WindowsSysWOW64vbscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:11 &#8211; 002304000 _____ (Microsoft Corporation) C:WindowsSysWOW64iertutil.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:07 &#8211; 000084992 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Security.Credentials.UI.UserConsentVerifier.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:06 &#8211; 000463872 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.Usb.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:05 &#8211; 000147968 _____ (Microsoft Corporation) C:WindowsSysWOW64easwrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:04 &#8211; 000654336 _____ (Microsoft Corporation) C:WindowsSysWOW64jscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:03 &#8211; 000365568 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.PointOfService.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:59 &#8211; 001994240 _____ (Microsoft Corporation) C:Windowssystem32DWrite.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:59 &#8211; 001033216 _____ (Microsoft Corporation) C:Windowssystem32inetcomm.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:54 &#8211; 015478272 _____ (Microsoft Corporation) C:Windowssystem32ieframe.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:53 &#8211; 003258368 _____ (Microsoft Corporation) C:Windowssystem32Wpc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:53 &#8211; 000262144 _____ (Microsoft Corporation) C:Windowssystem32webcheck.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:51 &#8211; 000809472 _____ (Microsoft Corporation) C:Windowssystem32msfeeds.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:50 &#8211; 001384960 _____ (Microsoft Corporation) C:Windowssystem32FntCache.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:49 &#8211; 002942464 _____ (Microsoft Corporation) C:Windowssystem32WpcWebSync.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:49 &#8211; 002132992 _____ (Microsoft Corporation) C:Windowssystem32inetcpl.cpl\n2020-05-14 10:28 &#8211; 2020-04-16 03:48 &#8211; 000310784 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.Usb.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:43 &#8211; 000880640 _____ (Microsoft Corporation) C:WindowsSysWOW64inetcomm.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:41 &#8211; 004112384 _____ (Microsoft Corporation) C:WindowsSysWOW64jscript9.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:41 &#8211; 002471424 _____ (Microsoft Corporation) C:WindowsSysWOW64Wpc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:40 &#8211; 001085440 _____ (Microsoft Corporation) C:WindowsSysWOW64gdi32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:39 &#8211; 001560064 _____ (Microsoft Corporation) C:WindowsSysWOW64DWrite.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:39 &#8211; 000696320 _____ (Microsoft Corporation) C:WindowsSysWOW64msfeeds.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:38 &#8211; 002058752 _____ (Microsoft Corporation) C:WindowsSysWOW64inetcpl.cpl\n2020-05-14 10:28 &#8211; 2020-04-16 03:38 &#8211; 000333312 _____ (Microsoft Corporation) C:WindowsSysWOW64iedkcs32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:37 &#8211; 004859392 _____ (Microsoft Corporation) C:Windowssystem32wininet.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:35 &#8211; 013861376 _____ (Microsoft Corporation) C:WindowsSysWOW64ieframe.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:35 &#8211; 000254976 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.HumanInterfaceDevice.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:32 &#8211; 000689152 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.Bluetooth.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:30 &#8211; 014533632 _____ (Microsoft Corporation) C:Windowssystem32twinui.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:28 &#8211; 000902656 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.SmartCards.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:27 &#8211; 000173056 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.HumanInterfaceDevice.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 012880384 _____ (Microsoft Corporation) C:WindowsSysWOW64twinui.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 001566720 _____ (Microsoft Corporation) C:Windowssystem32urlmon.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 000466432 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.Bluetooth.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:24 &#8211; 007799296 _____ (Microsoft Corporation) C:Windowssystem32Windows.Data.Pdf.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:23 &#8211; 000626688 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.SmartCards.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:22 &#8211; 000068096 _____ (Microsoft Corporation) C:Windowssystem32ConfigureExpandedStorage.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:20 &#8211; 004387328 _____ (Microsoft Corporation) C:WindowsSysWOW64wininet.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:20 &#8211; 000052736 _____ (Microsoft Corporation) C:WindowsSysWOW64ConfigureExpandedStorage.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:19 &#8211; 001265152 _____ (Microsoft Corporation) C:Windowssystem32schedsvc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:18 &#8211; 005271552 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Data.Pdf.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:16 &#8211; 001341952 _____ (Microsoft Corporation) C:WindowsSysWOW64urlmon.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:15 &#8211; 000800768 _____ (Microsoft Corporation) C:Windowssystem32ieapfltr.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:15 &#8211; 000710144 _____ (Microsoft Corporation) C:WindowsSysWOW64ieapfltr.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:14 &#8211; 001727488 _____ (Microsoft Corporation) C:Windowssystem32Windows.UI.Immersive.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 001546752 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.UI.Immersive.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 000140288 _____ (Microsoft Corporation) C:Windowssystem32efswrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 000104448 _____ (Microsoft Corporation) C:WindowsSysWOW64efswrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:07 &#8211; 000156160 _____ (Microsoft Corporation) C:WindowsSysWOW64PlayToManager.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:05 &#8211; 000229888 _____ (Microsoft Corporation) C:Windowssystem32PlayToManager.dll\n2020-05-14 10:28 &#8211; 2020-04-14 08:33 &#8211; 000205824 _____ (Microsoft Corporation) C:Windowssystem32scrrun.dll\n2020-05-14 10:28 &#8211; 2020-04-14 08:03 &#8211; 000168448 _____ (Microsoft Corporation) C:WindowsSysWOW64scrrun.dll\n2020-05-14 10:28 &#8211; 2020-04-11 19:42 &#8211; 007362296 _____ (Microsoft Corporation) C:Windowssystem32ntoskrnl.exe\n2020-05-14 10:28 &#8211; 2020-04-11 19:41 &#8211; 000376568 _____ (Microsoft Corporation) C:Windowssystem32Driversclfs.sys\n2020-05-14 10:28 &#8211; 2020-04-11 19:39 &#8211; 001542696 _____ (Microsoft Corporation) C:Windowssystem32user32.dll\n2020-05-14 10:28 &#8211; 2020-04-11 19:29 &#8211; 001737720 _____ (Microsoft Corporation) C:Windowssystem32ntdll.dll\n2020-05-14 10:28 &#8211; 2020-04-11 18:31 &#8211; 001501096 _____ (Microsoft Corporation) C:WindowsSysWOW64ntdll.dll\n2020-05-14 10:28 &#8211; 2020-04-11 18:04 &#8211; 004168704 _____ (Microsoft Corporation) C:Windowssystem32win32k.sys\n2020-05-14 10:28 &#8211; 2020-04-11 16:55 &#8211; 000194560 _____ (Microsoft Corporation) C:Windowssystem32winsrv.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:53 &#8211; 000112128 _____ (Microsoft Corporation) C:Windowssystem32vaultcli.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:48 &#8211; 001377792 _____ (Microsoft Corporation) C:WindowsSysWOW64user32.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:47 &#8211; 000260608 _____ (Microsoft Corporation) C:Windowssystem32vaultsvc.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:23 &#8211; 001317888 _____ (Microsoft Corporation) C:Windowssystem32Windows.Media.Streaming.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:22 &#8211; 001103872 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Media.Streaming.dll\n2020-05-14 10:28 &#8211; 2020-04-11 01:12 &#8211; 002446576 _____ (Microsoft Corporation) C:Windowssystem32Driverstcpip.sys\n2020-05-14 10:28 &#8211; 2020-04-11 01:12 &#8211; 000428784 _____ (Microsoft Corporation) C:Windowssystem32DriversFWPKCLNT.SYS\n2020-05-14 10:28 &#8211; 2020-04-09 14:36 &#8211; 001311744 _____ (Microsoft Corporation) C:WindowsSysWOW64msjet40.dll\n2020-05-14 10:28 &#8211; 2020-04-07 20:30 &#8211; 000988472 _____ (Microsoft Corporation) C:Windowssystem32mfsrcsnk.dll\n2020-05-14 10:28 &#8211; 2020-04-07 20:28 &#8211; 000857320 _____ (Microsoft Corporation) C:WindowsSysWOW64mfsrcsnk.dll\n2020-05-14 10:28 &#8211; 2020-04-07 14:55 &#8211; 003330048 _____ (Microsoft Corporation) C:Windowssystem32msi.dll\n2020-05-14 10:28 &#8211; 2020-04-07 14:51 &#8211; 003636224 _____ (Microsoft Corporation) C:WindowsSysWOW64msi.dll\n2020-05-14 10:28 &#8211; 2020-04-04 17:06 &#8211; 000879616 _____ (Microsoft Corporation) C:Windowssystem32rasdlg.dll\n2020-05-14 10:28 &#8211; 2020-04-04 17:01 &#8211; 001572864 _____ (Microsoft Corporation) C:Windowssystem32wbengine.exe\n2020-05-14 10:28 &#8211; 2020-04-04 16:50 &#8211; 000795136 _____ (Microsoft Corporation) C:WindowsSysWOW64rasdlg.dll\n2020-05-14 10:13 &#8211; 2020-05-13 09:42 &#8211; 000338104 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32avgBoot.exe\n2020-05-13 16:42 &#8211; 2020-05-13 16:43 &#8211; 140053773 _____ C:UsersXXXXXXZZZDownloadsHAPv5.11.zip\n2020-05-13 09:43 &#8211; 2020-05-13 09:42 &#8211; 000235552 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgStm.sys\n2020-05-13 09:43 &#8211; 2020-05-13 09:42 &#8211; 000175776 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgMonFlt.sys\n2020-05-11 16:42 &#8211; 2020-06-08 02:05 &#8211; 000000000 ____D C:Windowssystem32TasksAVAST Software\n2020-05-10 21:06 &#8211; 2020-05-10 21:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingQtProject\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000001201 _____ C:UsersPublicDesktopMiniTool Power Data Recovery 8.8.lnk\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000001201 _____ C:ProgramDataDesktopMiniTool Power Data Recovery 8.8.lnk\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsMiniTool Power Data Recovery\n2020-05-10 20:58 &#8211; 2020-05-10 22:38 &#8211; 000000000 ____D C:Program Files (x86)MiniTool PowerDataRecovery\n2020-05-10 20:51 &#8211; 2020-05-10 20:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsDiskInternals\n2020-05-10 20:51 &#8211; 2020-05-10 20:51 &#8211; 000000000 ____D C:Program Files (x86)DiskInternals\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000001677 _____ C:UsersPublicDesktopRecuva.lnk\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000001677 _____ C:ProgramDataDesktopRecuva.lnk\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsRecuva\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000000000 ____D C:Program FilesRecuva","html":"<p>2020-06-09 11:52 &#8211; 2020-06-09 11:54 &#8211; 000063509 _____ C:UsersXXXXXXZZZDownloadsFRST.txt\n2020-06-09 11:51 &#8211; 2020-06-09 11:51 &#8211; 002289152 _____ (Farbar) C:UsersXXXXXXZZZDownloadsFRST64.exe\n2020-06-07 23:48 &#8211; 2020-06-08 01:26 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsMobile ETH\n2020-06-07 16:57 &#8211; 2020-06-07 16:57 &#8211; 000226879 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; Reflexões Masculinas (Ed. 2008).pdf\n2020-06-07 16:56 &#8211; 2020-06-07 16:56 &#8211; 000393633 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; A Guerra da Paixão (Ed. 2005).pdf\n2020-06-07 16:56 &#8211; 2020-06-07 16:56 &#8211; 000321820 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; O Profano Feminino (Ed. 2008).pdf\n2020-06-07 16:55 &#8211; 2020-06-07 16:55 &#8211; 001413718 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; Como lidar com mulheres (Ed. 2008).pdf\n2020-06-05 14:57 &#8211; 2020-06-05 14:57 &#8211; 000000000 ____D C:Windowssystem32TasksMozilla\n2020-06-05 10:16 &#8211; 2020-06-05 10:17 &#8211; 169944728 _____ (Oracle Corporation) C:UsersXXXXXXZZZDownloadsjdk-14.0.1_windows-x64_bin.exe\n2020-06-05 10:12 &#8211; 2020-06-09 09:09 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Firefox\n2020-06-02 20:38 &#8211; 2020-06-02 20:38 &#8211; 000001505 _____ C:UsersXXXXXXZZZDesktopNetworkMiner.exe &#8211; Atalho.lnk\n2020-06-02 20:28 &#8211; 2020-06-02 20:28 &#8211; 000090168 ____H (Sysinternals &#8211; www.sysinternals.com) C:Windowssystem32DriversPROCMON24.SYS\n2020-06-02 20:18 &#8211; 2020-06-02 20:18 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadspowershell mtsploit 2\n2020-06-02 17:17 &#8211; 2020-06-02 17:17 &#8211; 000001208 _____ C:UsersXXXXXXZZZDesktopLegislação &#8211; Atalho.lnk\n2020-06-02 14:34 &#8211; 2020-06-02 14:34 &#8211; 000248968 _____ (Malwarebytes) C:Windowssystem32Driversmbamswissarmy.sys\n2020-06-02 11:16 &#8211; 2020-06-02 11:16 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalOsram_Lamp\n2020-06-02 10:08 &#8211; 2020-06-02 10:09 &#8211; 004189296 _____ C:UsersXXXXXXZZZDownloadsultrasurf.exe\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000002019 _____ C:UsersPublicDesktopPhilips_Cat.lnk\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000002019 _____ C:ProgramDataDesktopPhilips_Cat.lnk\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsPhilips Lighting\n2020-06-01 21:19 &#8211; 2020-06-01 21:21 &#8211; 000000000 ____D C:Program Files (x86)Philips Lighting\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000002048 _____ C:UsersPublicDesktopOSRAM Lamp PlugIn.lnk\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000002048 _____ C:ProgramDataDesktopOSRAM Lamp PlugIn.lnk\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsDIALux PlugIns\n2020-06-01 18:22 &#8211; 2020-06-01 18:23 &#8211; 000000000 ____D C:ProgramDataDIALux\n2020-06-01 18:22 &#8211; 2020-06-01 18:22 &#8211; 000000000 ____D C:ProgramDataDIALux PlugIns\n2020-06-01 18:17 &#8211; 2020-06-01 21:00 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsPHILIPS\n2020-06-01 18:17 &#8211; 2020-06-01 18:18 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsOSRAM\n2020-06-01 18:15 &#8211; 2020-06-01 18:15 &#8211; 001751775 _____ C:UsersXXXXXXZZZDownloads20190926-philips-truefashion-2-compact-st715t.zip\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsDIAL GmbH\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalStimulsoft\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalDIAL GmbH\n2020-06-01 12:15 &#8211; 2020-06-01 12:16 &#8211; 000038155 _____ C:DIALux Setup Information.txt\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000005721 _____ C:DIAL Communication Framework Setup Log.txt\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000001783 _____ C:UsersPublicDesktopDIALux evo.lnk\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000001783 _____ C:ProgramDataDesktopDIALux evo.lnk\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalSafeNet Sentinel\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:ProgramDataSafeNet Sentinel\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsDIALux evo\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:Program Files (x86)DIAL GmbH\n2020-06-01 12:13 &#8211; 2020-06-01 12:20 &#8211; 000656059 _____ C:WindowsDIALux Setup Log.txt\n2020-06-01 12:13 &#8211; 2020-06-01 12:14 &#8211; 000000000 ____D C:ProgramDataDIAL GmbH\n2020-06-01 12:13 &#8211; 2020-06-01 12:13 &#8211; 000000000 ____D C:Program FilesDIAL GmbH\n2020-06-01 12:02 &#8211; 2020-06-01 12:04 &#8211; 486796896 _____ (DIAL GmbH) C:UsersXXXXXXZZZDownloadsDIALux_evo_9.0.exe\n2020-05-28 14:18 &#8211; 2020-05-28 14:18 &#8211; 000090112 _____ C:UsersXXXXXXZZZDownloadsamipinkc2.exe\n2020-05-28 13:07 &#8211; 2020-05-28 13:07 &#8211; 000002391 _____ C:UsersXXXXXXZZZAppDataLocalrecently-used.xbel\n2020-05-28 12:56 &#8211; 2020-05-28 12:56 &#8211; 011226820 _____ C:UsersXXXXXXZZZDownloadsvulscan-master.zip\n2020-05-27 15:28 &#8211; 2020-05-27 15:28 &#8211; 000030719 _____ C:UsersXXXXXXZZZDownloadsc2 metasploit powershel.zip\n2020-05-24 14:46 &#8211; 2020-05-24 14:46 &#8211; 001227102 _____ C:UsersXXXXXXZZZDownloadsSGA10.zip\n2020-05-23 00:22 &#8211; 2020-05-23 00:22 &#8211; 000000018 _____ C:UsersXXXXXXZZZDesktopSerpentine Similar.txt\n2020-05-22 20:08 &#8211; 2020-05-22 20:09 &#8211; 000325072 _____ C:WindowsMinidump52220-169750-01.dmp\n2020-05-22 16:03 &#8211; 2020-05-22 16:03 &#8211; 000214496 _____ (Malwarebytes) C:Windowssystem32DriversMbamChameleon.sys\n2020-05-21 22:30 &#8211; 2020-05-21 22:30 &#8211; 000000083 _____ C:UsersXXXXXXZZZDesktopnmap.txt\n2020-05-21 10:47 &#8211; 2020-05-28 13:07 &#8211; 000000000 ____D C:UsersXXXXXXZZZ.zenmap\n2020-05-21 10:47 &#8211; 2020-05-21 10:47 &#8211; 000000986 _____ C:UsersXXXXXXZZZDesktopNmap &#8211; Zenmap GUI.lnk\n2020-05-21 10:47 &#8211; 2020-05-21 10:47 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsNmap\n2020-05-21 10:45 &#8211; 2020-05-24 17:36 &#8211; 000003112 _____ C:Windowssystem32Tasksnpcapwatchdog\n2020-05-21 10:43 &#8211; 2020-05-21 10:43 &#8211; 000000000 ____D C:WindowsSysWOW64Npcap\n2020-05-21 10:43 &#8211; 2020-05-21 10:43 &#8211; 000000000 ____D C:Windowssystem32Npcap\n2020-05-21 10:42 &#8211; 2020-05-28 13:00 &#8211; 000000000 ____D C:Program Files (x86)Nmap\n2020-05-21 00:50 &#8211; 2020-05-21 10:13 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsSGA10\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002203 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Earth Pro.lnk\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002191 _____ C:UsersPublicDesktopGoogle Earth Pro.lnk\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002191 _____ C:ProgramDataDesktopGoogle Earth Pro.lnk\n2020-05-17 13:58 &#8211; 2020-05-17 13:59 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsFotos Belém\n2020-05-16 22:15 &#8211; 2020-05-16 22:24 &#8211; 000002368 _____ C:UsersXXXXXXZZZDesktopRkill.txt\n2020-05-16 22:14 &#8211; 2020-05-16 22:14 &#8211; 001802704 _____ (Bleeping Computer, LLC) C:UsersXXXXXXZZZDownloadsrkill.exe\n2020-05-16 21:34 &#8211; 2020-05-16 21:34 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalclink\n2020-05-16 20:34 &#8211; 2020-05-16 20:40 &#8211; 000000000 ____D C:Appie\n2020-05-15 23:38 &#8211; 2020-05-15 23:38 &#8211; 000000193 _____ C:UsersXXXXXXZZZDesktopbiblio.txt\n2020-05-14 11:27 &#8211; 2020-05-14 11:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsZoom\n2020-05-14 11:20 &#8211; 2020-05-14 11:20 &#8211; 000001947 _____ C:UsersXXXXXXZZZDesktopZoom.lnk\n2020-05-14 11:19 &#8211; 2020-05-14 11:19 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsZoom\n2020-05-14 10:28 &#8211; 2020-04-30 04:49 &#8211; 000308736 _____ (Microsoft Corporation) C:Windowssystem32usbmon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 04:22 &#8211; 000881664 _____ (Microsoft Corporation) C:Windowssystem32printfilterpipelinesvc.exe\n2020-05-14 10:28 &#8211; 2020-04-30 03:55 &#8211; 001756672 _____ (Microsoft Corporation) C:Windowssystem32GdiPlus.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:43 &#8211; 001495040 _____ (Microsoft Corporation) C:WindowsSysWOW64GdiPlus.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:40 &#8211; 000309760 _____ (Microsoft Corporation) C:Windowssystem32WSDMon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:37 &#8211; 000216576 _____ (Microsoft Corporation) C:Windowssystem32tcpmon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:33 &#8211; 001096704 _____ (Microsoft Corporation) C:Windowssystem32localspl.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 022365896 _____ (Microsoft Corporation) C:Windowssystem32shell32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 003118032 _____ (Microsoft Corporation) C:Windowssystem32WpcMon.exe\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 001368592 _____ (Microsoft Corporation) C:Windowssystem32gdi32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 000722496 _____ (Microsoft Corporation) C:Windowssystem32SHCore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 000642488 _____ (Microsoft Corporation) C:Windowssystem32twinapi.appcore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:00 &#8211; 000374024 _____ (Adobe Systems Incorporated) C:Windowssystem32atmfd.dll\n2020-05-14 10:28 &#8211; 2020-04-16 06:15 &#8211; 025755136 _____ (Microsoft Corporation) C:Windowssystem32mshtml.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:30 &#8211; 019795840 _____ (Microsoft Corporation) C:WindowsSysWOW64shell32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:29 &#8211; 000561400 _____ (Microsoft Corporation) C:WindowsSysWOW64SHCore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:29 &#8211; 000493736 _____ (Microsoft Corporation) C:WindowsSysWOW64twinapi.appcore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:25 &#8211; 000316368 _____ (Adobe Systems Incorporated) C:WindowsSysWOW64atmfd.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:40 &#8211; 002911744 _____ (Microsoft Corporation) C:Windowssystem32iertutil.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:38 &#8211; 000581120 _____ (Microsoft Corporation) C:Windowssystem32vbscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:31 &#8211; 020291072 _____ (Microsoft Corporation) C:WindowsSysWOW64mshtml.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:31 &#8211; 000113152 _____ (Microsoft Corporation) C:Windowssystem32Windows.Security.Credentials.UI.UserConsentVerifier.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:28 &#8211; 000186880 _____ (Microsoft Corporation) C:Windowssystem32easwrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:27 &#8211; 005498880 _____ (Microsoft Corporation) C:Windowssystem32jscript9.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:27 &#8211; 000785408 _____ (Microsoft Corporation) C:Windowssystem32jscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:25 &#8211; 000546816 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.PointOfService.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:14 &#8211; 000497664 _____ (Microsoft Corporation) C:WindowsSysWOW64vbscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:11 &#8211; 002304000 _____ (Microsoft Corporation) C:WindowsSysWOW64iertutil.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:07 &#8211; 000084992 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Security.Credentials.UI.UserConsentVerifier.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:06 &#8211; 000463872 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.Usb.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:05 &#8211; 000147968 _____ (Microsoft Corporation) C:WindowsSysWOW64easwrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:04 &#8211; 000654336 _____ (Microsoft Corporation) C:WindowsSysWOW64jscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:03 &#8211; 000365568 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.PointOfService.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:59 &#8211; 001994240 _____ (Microsoft Corporation) C:Windowssystem32DWrite.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:59 &#8211; 001033216 _____ (Microsoft Corporation) C:Windowssystem32inetcomm.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:54 &#8211; 015478272 _____ (Microsoft Corporation) C:Windowssystem32ieframe.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:53 &#8211; 003258368 _____ (Microsoft Corporation) C:Windowssystem32Wpc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:53 &#8211; 000262144 _____ (Microsoft Corporation) C:Windowssystem32webcheck.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:51 &#8211; 000809472 _____ (Microsoft Corporation) C:Windowssystem32msfeeds.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:50 &#8211; 001384960 _____ (Microsoft Corporation) C:Windowssystem32FntCache.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:49 &#8211; 002942464 _____ (Microsoft Corporation) C:Windowssystem32WpcWebSync.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:49 &#8211; 002132992 _____ (Microsoft Corporation) C:Windowssystem32inetcpl.cpl\n2020-05-14 10:28 &#8211; 2020-04-16 03:48 &#8211; 000310784 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.Usb.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:43 &#8211; 000880640 _____ (Microsoft Corporation) C:WindowsSysWOW64inetcomm.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:41 &#8211; 004112384 _____ (Microsoft Corporation) C:WindowsSysWOW64jscript9.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:41 &#8211; 002471424 _____ (Microsoft Corporation) C:WindowsSysWOW64Wpc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:40 &#8211; 001085440 _____ (Microsoft Corporation) C:WindowsSysWOW64gdi32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:39 &#8211; 001560064 _____ (Microsoft Corporation) C:WindowsSysWOW64DWrite.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:39 &#8211; 000696320 _____ (Microsoft Corporation) C:WindowsSysWOW64msfeeds.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:38 &#8211; 002058752 _____ (Microsoft Corporation) C:WindowsSysWOW64inetcpl.cpl\n2020-05-14 10:28 &#8211; 2020-04-16 03:38 &#8211; 000333312 _____ (Microsoft Corporation) C:WindowsSysWOW64iedkcs32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:37 &#8211; 004859392 _____ (Microsoft Corporation) C:Windowssystem32wininet.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:35 &#8211; 013861376 _____ (Microsoft Corporation) C:WindowsSysWOW64ieframe.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:35 &#8211; 000254976 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.HumanInterfaceDevice.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:32 &#8211; 000689152 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.Bluetooth.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:30 &#8211; 014533632 _____ (Microsoft Corporation) C:Windowssystem32twinui.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:28 &#8211; 000902656 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.SmartCards.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:27 &#8211; 000173056 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.HumanInterfaceDevice.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 012880384 _____ (Microsoft Corporation) C:WindowsSysWOW64twinui.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 001566720 _____ (Microsoft Corporation) C:Windowssystem32urlmon.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 000466432 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.Bluetooth.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:24 &#8211; 007799296 _____ (Microsoft Corporation) C:Windowssystem32Windows.Data.Pdf.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:23 &#8211; 000626688 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.SmartCards.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:22 &#8211; 000068096 _____ (Microsoft Corporation) C:Windowssystem32ConfigureExpandedStorage.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:20 &#8211; 004387328 _____ (Microsoft Corporation) C:WindowsSysWOW64wininet.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:20 &#8211; 000052736 _____ (Microsoft Corporation) C:WindowsSysWOW64ConfigureExpandedStorage.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:19 &#8211; 001265152 _____ (Microsoft Corporation) C:Windowssystem32schedsvc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:18 &#8211; 005271552 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Data.Pdf.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:16 &#8211; 001341952 _____ (Microsoft Corporation) C:WindowsSysWOW64urlmon.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:15 &#8211; 000800768 _____ (Microsoft Corporation) C:Windowssystem32ieapfltr.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:15 &#8211; 000710144 _____ (Microsoft Corporation) C:WindowsSysWOW64ieapfltr.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:14 &#8211; 001727488 _____ (Microsoft Corporation) C:Windowssystem32Windows.UI.Immersive.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 001546752 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.UI.Immersive.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 000140288 _____ (Microsoft Corporation) C:Windowssystem32efswrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 000104448 _____ (Microsoft Corporation) C:WindowsSysWOW64efswrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:07 &#8211; 000156160 _____ (Microsoft Corporation) C:WindowsSysWOW64PlayToManager.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:05 &#8211; 000229888 _____ (Microsoft Corporation) C:Windowssystem32PlayToManager.dll\n2020-05-14 10:28 &#8211; 2020-04-14 08:33 &#8211; 000205824 _____ (Microsoft Corporation) C:Windowssystem32scrrun.dll\n2020-05-14 10:28 &#8211; 2020-04-14 08:03 &#8211; 000168448 _____ (Microsoft Corporation) C:WindowsSysWOW64scrrun.dll\n2020-05-14 10:28 &#8211; 2020-04-11 19:42 &#8211; 007362296 _____ (Microsoft Corporation) C:Windowssystem32ntoskrnl.exe\n2020-05-14 10:28 &#8211; 2020-04-11 19:41 &#8211; 000376568 _____ (Microsoft Corporation) C:Windowssystem32Driversclfs.sys\n2020-05-14 10:28 &#8211; 2020-04-11 19:39 &#8211; 001542696 _____ (Microsoft Corporation) C:Windowssystem32user32.dll\n2020-05-14 10:28 &#8211; 2020-04-11 19:29 &#8211; 001737720 _____ (Microsoft Corporation) C:Windowssystem32ntdll.dll\n2020-05-14 10:28 &#8211; 2020-04-11 18:31 &#8211; 001501096 _____ (Microsoft Corporation) C:WindowsSysWOW64ntdll.dll\n2020-05-14 10:28 &#8211; 2020-04-11 18:04 &#8211; 004168704 _____ (Microsoft Corporation) C:Windowssystem32win32k.sys\n2020-05-14 10:28 &#8211; 2020-04-11 16:55 &#8211; 000194560 _____ (Microsoft Corporation) C:Windowssystem32winsrv.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:53 &#8211; 000112128 _____ (Microsoft Corporation) C:Windowssystem32vaultcli.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:48 &#8211; 001377792 _____ (Microsoft Corporation) C:WindowsSysWOW64user32.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:47 &#8211; 000260608 _____ (Microsoft Corporation) C:Windowssystem32vaultsvc.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:23 &#8211; 001317888 _____ (Microsoft Corporation) C:Windowssystem32Windows.Media.Streaming.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:22 &#8211; 001103872 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Media.Streaming.dll\n2020-05-14 10:28 &#8211; 2020-04-11 01:12 &#8211; 002446576 _____ (Microsoft Corporation) C:Windowssystem32Driverstcpip.sys\n2020-05-14 10:28 &#8211; 2020-04-11 01:12 &#8211; 000428784 _____ (Microsoft Corporation) C:Windowssystem32DriversFWPKCLNT.SYS\n2020-05-14 10:28 &#8211; 2020-04-09 14:36 &#8211; 001311744 _____ (Microsoft Corporation) C:WindowsSysWOW64msjet40.dll\n2020-05-14 10:28 &#8211; 2020-04-07 20:30 &#8211; 000988472 _____ (Microsoft Corporation) C:Windowssystem32mfsrcsnk.dll\n2020-05-14 10:28 &#8211; 2020-04-07 20:28 &#8211; 000857320 _____ (Microsoft Corporation) C:WindowsSysWOW64mfsrcsnk.dll\n2020-05-14 10:28 &#8211; 2020-04-07 14:55 &#8211; 003330048 _____ (Microsoft Corporation) C:Windowssystem32msi.dll\n2020-05-14 10:28 &#8211; 2020-04-07 14:51 &#8211; 003636224 _____ (Microsoft Corporation) C:WindowsSysWOW64msi.dll\n2020-05-14 10:28 &#8211; 2020-04-04 17:06 &#8211; 000879616 _____ (Microsoft Corporation) C:Windowssystem32rasdlg.dll\n2020-05-14 10:28 &#8211; 2020-04-04 17:01 &#8211; 001572864 _____ (Microsoft Corporation) C:Windowssystem32wbengine.exe\n2020-05-14 10:28 &#8211; 2020-04-04 16:50 &#8211; 000795136 _____ (Microsoft Corporation) C:WindowsSysWOW64rasdlg.dll\n2020-05-14 10:13 &#8211; 2020-05-13 09:42 &#8211; 000338104 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32avgBoot.exe\n2020-05-13 16:42 &#8211; 2020-05-13 16:43 &#8211; 140053773 _____ C:UsersXXXXXXZZZDownloadsHAPv5.11.zip\n2020-05-13 09:43 &#8211; 2020-05-13 09:42 &#8211; 000235552 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgStm.sys\n2020-05-13 09:43 &#8211; 2020-05-13 09:42 &#8211; 000175776 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgMonFlt.sys\n2020-05-11 16:42 &#8211; 2020-06-08 02:05 &#8211; 000000000 ____D C:Windowssystem32TasksAVAST Software\n2020-05-10 21:06 &#8211; 2020-05-10 21:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingQtProject\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000001201 _____ C:UsersPublicDesktopMiniTool Power Data Recovery 8.8.lnk\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000001201 _____ C:ProgramDataDesktopMiniTool Power Data Recovery 8.8.lnk\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsMiniTool Power Data Recovery\n2020-05-10 20:58 &#8211; 2020-05-10 22:38 &#8211; 000000000 ____D C:Program Files (x86)MiniTool PowerDataRecovery\n2020-05-10 20:51 &#8211; 2020-05-10 20:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsDiskInternals\n2020-05-10 20:51 &#8211; 2020-05-10 20:51 &#8211; 000000000 ____D C:Program Files (x86)DiskInternals\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000001677 _____ C:UsersPublicDesktopRecuva.lnk\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000001677 _____ C:ProgramDataDesktopRecuva.lnk\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsRecuva\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000000000 ____D C:Program FilesRecuva</p>"},{"id":"text-31","type":"text","heading":"","plain_text":"==================== One month (modified) ==================","html":"<p>==================== One month (modified) ==================</p>"},{"id":"text-32","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, the file/folder will be moved.)","html":"<p>(If an entry is included in the fixlist, the file/folder will be moved.)</p>"},{"id":"text-33","type":"text","heading":"","plain_text":"2020-06-09 11:59 &#8211; 2018-07-01 02:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalLowMozilla\n2020-06-09 11:53 &#8211; 2020-04-22 15:26 &#8211; 000000000 ____D C:FRST\n2020-06-09 11:52 &#8211; 2019-09-18 14:54 &#8211; 000000594 _____ C:WindowsTasksG2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job\n2020-06-09 11:39 &#8211; 2020-04-22 15:39 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsSMsec\n2020-06-09 11:31 &#8211; 2020-04-24 12:21 &#8211; 000000000 ___RD C:UsersXXXXXXZZZDocumentsMEGAsync uploads\n2020-06-09 11:22 &#8211; 2019-09-18 14:54 &#8211; 000000690 _____ C:WindowsTasksG2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job\n2020-06-09 11:16 &#8211; 2015-05-05 05:06 &#8211; 000818068 _____ C:Windowssystem32prfh0816.dat\n2020-06-09 11:16 &#8211; 2015-05-05 05:06 &#8211; 000175394 _____ C:Windowssystem32prfc0816.dat\n2020-06-09 11:16 &#8211; 2014-11-21 05:42 &#8211; 001956190 _____ C:Windowssystem32PerfStringBackup.INI\n2020-06-09 11:16 &#8211; 2013-08-22 14:36 &#8211; 000000000 ____D C:WindowsInf\n2020-06-09 10:45 &#8211; 2020-05-02 10:45 &#8211; 000000374 _____ C:WindowsTasksHPCeeScheduleForXXXXXXZZZ.job\n2020-06-09 09:34 &#8211; 2016-03-18 21:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsYoucam\n2020-06-09 09:33 &#8211; 2018-07-27 23:43 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalCrashDumps\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000003700 _____ C:Windowssystem32TasksG2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000003604 _____ C:Windowssystem32TasksG2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalGoToMeeting\n2020-06-09 09:24 &#8211; 2020-03-19 19:44 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalAVAST Software\n2020-06-09 09:21 &#8211; 2020-03-16 11:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingSpotify\n2020-06-09 09:21 &#8211; 2016-04-23 21:50 &#8211; 000000000 ____D C:ProgramDataAvg\n2020-06-09 09:17 &#8211; 2016-03-18 21:20 &#8211; 000000000 __RDO C:UsersXXXXXXZZZOneDrive\n2020-06-09 09:17 &#8211; 2016-03-18 21:14 &#8211; 000000000 __SHD C:UsersXXXXXXZZZIntelGraphicsProfiles\n2020-06-09 09:10 &#8211; 2019-04-05 12:40 &#8211; 000000000 ____D C:ProgramDataVMware\n2020-06-09 09:10 &#8211; 2017-11-30 18:27 &#8211; 000000434 _____ C:WindowsTasksDriver Easy Scheduled Scan.job\n2020-06-09 09:10 &#8211; 2013-08-22 15:45 &#8211; 000000006 ____H C:WindowsTasksSA.DAT\n2020-06-09 09:10 &#8211; 2013-08-22 15:44 &#8211; 001175584 _____ C:Windowssystem32FNTCACHE.DAT\n2020-06-09 09:09 &#8211; 2016-05-02 18:14 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service\n2020-06-08 02:12 &#8211; 2013-08-22 14:25 &#8211; 000524288 ___SH C:Windowssystem32configBBI\n2020-06-08 02:05 &#8211; 2020-05-02 10:45 &#8211; 000003202 _____ C:Windowssystem32TasksHPCeeScheduleForXXXXXXZZZ\n2020-06-08 02:05 &#8211; 2019-06-24 09:55 &#8211; 000004188 _____ C:Windowssystem32TasksAvast SecureLine VPN Update\n2020-06-08 02:05 &#8211; 2019-03-27 15:39 &#8211; 000003874 _____ C:Windowssystem32TasksBlueStacksHelper\n2020-06-08 02:05 &#8211; 2019-03-14 12:51 &#8211; 000004128 _____ C:Windowssystem32TasksCCleaner Update\n2020-06-08 02:05 &#8211; 2019-03-14 12:51 &#8211; 000002818 _____ C:Windowssystem32TasksCCleanerSkipUAC\n2020-06-08 02:05 &#8211; 2018-03-13 10:37 &#8211; 000004472 _____ C:Windowssystem32TasksAdobe Flash Player NPAPI Notifier\n2020-06-08 02:05 &#8211; 2018-01-19 14:55 &#8211; 000003108 _____ C:Windowssystem32Tasks7A5E22F3-13A6-4040-B1C5-E4043B449990\n2020-06-08 02:05 &#8211; 2017-11-30 18:27 &#8211; 000003832 _____ C:Windowssystem32TasksDriver Easy Scheduled Scan\n2020-06-08 02:05 &#8211; 2017-06-28 03:34 &#8211; 000004324 _____ C:Windowssystem32TasksAdobe Flash Player Updater\n2020-06-08 02:05 &#8211; 2017-04-06 22:46 &#8211; 000004174 _____ C:Windowssystem32TasksAntivirus Emergency Update\n2020-06-08 02:05 &#8211; 2016-04-18 20:31 &#8211; 000003646 _____ C:Windowssystem32TasksHPCustParticipation HP Deskjet 3050 J610 series\n2020-06-08 02:05 &#8211; 2016-03-31 20:06 &#8211; 000004476 _____ C:Windowssystem32TasksAdobe Acrobat Update Task\n2020-06-08 02:05 &#8211; 2016-03-18 21:26 &#8211; 000003444 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineUA\n2020-06-08 02:05 &#8211; 2016-03-18 21:26 &#8211; 000003316 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineCore\n2020-06-08 02:05 &#8211; 2015-06-04 18:43 &#8211; 000002118 _____ C:Windowssystem32TasksAvast SecureLine\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002986 _____ C:Windowssystem32TasksStart SimplePass\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002924 _____ C:Windowssystem32TasksStart OPBHOBrokerDesktop\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002912 _____ C:Windowssystem32TasksStart OPBHOBroker\n2020-06-07 17:15 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32NDF\n2020-06-07 14:53 &#8211; 2016-04-28 13:32 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsDepesas anuais\n2020-06-07 14:09 &#8211; 2019-07-18 11:12 &#8211; 000000000 ____D C:UsersXXXXXXZZZ.VirtualBox\n2020-06-07 13:56 &#8211; 2019-07-18 11:12 &#8211; 000000000 ____D C:ProgramDataVirtualBox\n2020-06-05 15:12 &#8211; 2016-03-18 21:21 &#8211; 000003600 _____ C:Windowssystem32TasksOptimize Start Menu Cache Files-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-05 14:57 &#8211; 2016-05-02 18:14 &#8211; 000001182 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsFirefox.lnk\n2020-06-05 09:41 &#8211; 2016-03-18 21:27 &#8211; 000002247 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk\n2020-06-04 18:33 &#8211; 2020-05-04 21:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingxarp-XXXXXXZZZ\n2020-06-04 13:20 &#8211; 2016-03-31 20:06 &#8211; 000002086 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk\n2020-06-02 19:55 &#8211; 2018-06-24 15:52 &#8211; 000001277 _____ C:UsersXXXXXXZZZDesktopMUSICA.txt &#8211; Atalho.lnk\n2020-06-02 19:27 &#8211; 2016-03-18 21:12 &#8211; 000000000 ____D C:UsersXXXXXXZZZ\n2020-06-02 11:21 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowstracing\n2020-06-01 21:21 &#8211; 2015-05-04 20:52 &#8211; 000000000 ___HD C:Program Files (x86)InstallShield Installation Information\n2020-05-29 08:53 &#8211; 2015-06-04 18:15 &#8211; 000000000 ____D C:ProgramDataRealtek\n2020-05-28 23:50 &#8211; 2016-04-25 18:02 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingvlc\n2020-05-28 00:58 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:WindowsAppReadiness\n2020-05-28 00:46 &#8211; 2017-12-10 17:58 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsFacebook\n2020-05-28 00:38 &#8211; 2020-04-22 15:36 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsJogos\n2020-05-28 00:14 &#8211; 2017-03-04 00:04 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsXadrez\n2020-05-28 00:12 &#8211; 2016-12-17 17:46 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsSegurança Social\n2020-05-28 00:11 &#8211; 2018-06-24 15:40 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsProgramas\n2020-05-28 00:11 &#8211; 2016-04-30 18:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsProgramas instalados\n2020-05-28 00:10 &#8211; 2016-05-12 20:08 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsOutros\n2020-05-28 00:09 &#8211; 2018-05-06 16:14 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsLivros\n2020-05-27 13:56 &#8211; 2019-11-04 15:58 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsNetworkMiner_2-5\n2020-05-27 10:01 &#8211; 2015-05-04 20:48 &#8211; 000000000 ____D C:Program Files (x86)Hewlett-Packard\n2020-05-26 18:00 &#8211; 2016-04-28 01:41 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalMicrosoft Help\n2020-05-26 12:34 &#8211; 2020-03-16 11:07 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalSpotify\n2020-05-25 09:55 &#8211; 2020-04-30 19:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsETH\n2020-05-22 20:08 &#8211; 2016-05-24 22:12 &#8211; 000000000 ____D C:WindowsMinidump\n2020-05-22 20:00 &#8211; 2017-04-03 19:15 &#8211; 000000000 ___RD C:UsersXXXXXXZZZGoogle Drive\n2020-05-22 12:21 &#8211; 2019-02-07 10:56 &#8211; 000000000 ___RD C:UsersXXXXXXZZZDocumentsMEGA\n2020-05-21 10:45 &#8211; 2020-03-31 18:09 &#8211; 000000000 ____D C:Program FilesNpcap\n2020-05-21 01:37 &#8211; 2016-04-23 21:45 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsPasses\n2020-05-19 10:20 &#8211; 2018-03-22 22:48 &#8211; 000000000 ____D C:Program FilesGoogle\n2020-05-18 22:34 &#8211; 2013-08-22 16:20 &#8211; 000000000 ____D C:WindowsCbsTemp\n2020-05-18 12:33 &#8211; 2016-03-18 21:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalPackages\n2020-05-18 12:32 &#8211; 2013-08-22 16:36 &#8211; 000000000 ___HD C:Program FilesWindowsApps\n2020-05-17 15:20 &#8211; 2019-07-18 11:13 &#8211; 000000000 ____D C:UsersXXXXXXZZZVirtualBox VMs\n2020-05-17 13:12 &#8211; 2019-04-24 01:38 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingTelegram Desktop\n2020-05-16 21:57 &#8211; 2015-06-04 18:43 &#8211; 000000000 ____D C:ProgramDataAVAST Software\n2020-05-16 21:48 &#8211; 2016-06-27 16:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingACEStream\n2020-05-16 21:48 &#8211; 2016-06-27 16:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoaming.ACEStream\n2020-05-16 04:27 &#8211; 2016-03-31 22:45 &#8211; 000000000 ____D C:Windowssystem32MRT\n2020-05-16 04:22 &#8211; 2013-08-22 16:36 &#8211; 000000000 ___RD C:WindowsToastData\n2020-05-16 04:22 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32inetsrv\n2020-05-15 23:46 &#8211; 2018-04-26 15:42 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalDesignBuilder\n2020-05-15 23:46 &#8211; 2018-04-26 15:36 &#8211; 000000000 ____D C:ProgramDataDesignBuilder\n2020-05-15 23:43 &#8211; 2020-04-18 19:52 &#8211; 000000000 ____D C:Program Files (x86)TeamViewer\n2020-05-15 23:42 &#8211; 2019-12-08 18:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsWugFresh Development\n2020-05-15 23:41 &#8211; 2020-01-11 03:43 &#8211; 000000000 ____D C:Program Files (x86)Kingo ROOT\n2020-05-15 23:41 &#8211; 2018-05-20 03:24 &#8211; 000000000 ____D C:Program Files (x86)Facebook Friend Mapper\n2020-05-15 23:41 &#8211; 2016-03-29 22:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingDropboxOEM\n2020-05-15 11:41 &#8211; 2016-03-31 22:45 &#8211; 120636720 ____C (Microsoft Corporation) C:Windowssystem32MRT.exe\n2020-05-14 11:19 &#8211; 2020-04-09 12:17 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingZoom\n2020-05-13 23:42 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:WindowsSysWOW64Macromed\n2020-05-13 23:42 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32Macromed\n2020-05-13 22:38 &#8211; 2016-04-18 20:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalHP\n2020-05-13 10:44 &#8211; 2020-04-28 14:25 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalLowIGDump\n2020-05-13 09:42 &#8211; 2019-01-07 00:31 &#8211; 000061072 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbuniv.sys\n2020-05-13 09:42 &#8211; 2019-01-07 00:31 &#8211; 000037208 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgArDisk.sys\n2020-05-13 09:42 &#8211; 2018-10-20 20:56 &#8211; 000042856 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgKbd.sys\n2020-05-13 09:42 &#8211; 2017-11-30 14:52 &#8211; 000205952 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgArPot.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000851664 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgSnx.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000461064 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgSP.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000319184 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgVmm.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000109336 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgRdr2.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000084928 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgRvrt.sys\n2020-05-13 09:41 &#8211; 2019-01-14 16:33 &#8211; 000234632 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbidsdriver.sys\n2020-05-13 09:41 &#8211; 2019-01-07 00:31 &#8211; 000178832 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbidsh.sys\n2020-05-12 17:41 &#8211; 2020-03-07 21:03 &#8211; 000000000 ____D C:ProgramDataProtonVPN\n2020-05-12 00:18 &#8211; 2018-02-25 20:28 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingWireshark\n2020-05-11 22:49 &#8211; 2020-03-24 22:50 &#8211; 000000000 ____D C:fakenet1.4.11\n2020-05-10 17:51 &#8211; 2016-04-10 14:24 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingAVAST Software\n2020-05-10 17:51 &#8211; 2015-06-04 18:43 &#8211; 000000000 ____D C:Program FilesAVAST Software","html":"<p>2020-06-09 11:59 &#8211; 2018-07-01 02:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalLowMozilla\n2020-06-09 11:53 &#8211; 2020-04-22 15:26 &#8211; 000000000 ____D C:FRST\n2020-06-09 11:52 &#8211; 2019-09-18 14:54 &#8211; 000000594 _____ C:WindowsTasksG2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job\n2020-06-09 11:39 &#8211; 2020-04-22 15:39 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsSMsec\n2020-06-09 11:31 &#8211; 2020-04-24 12:21 &#8211; 000000000 ___RD C:UsersXXXXXXZZZDocumentsMEGAsync uploads\n2020-06-09 11:22 &#8211; 2019-09-18 14:54 &#8211; 000000690 _____ C:WindowsTasksG2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job\n2020-06-09 11:16 &#8211; 2015-05-05 05:06 &#8211; 000818068 _____ C:Windowssystem32prfh0816.dat\n2020-06-09 11:16 &#8211; 2015-05-05 05:06 &#8211; 000175394 _____ C:Windowssystem32prfc0816.dat\n2020-06-09 11:16 &#8211; 2014-11-21 05:42 &#8211; 001956190 _____ C:Windowssystem32PerfStringBackup.INI\n2020-06-09 11:16 &#8211; 2013-08-22 14:36 &#8211; 000000000 ____D C:WindowsInf\n2020-06-09 10:45 &#8211; 2020-05-02 10:45 &#8211; 000000374 _____ C:WindowsTasksHPCeeScheduleForXXXXXXZZZ.job\n2020-06-09 09:34 &#8211; 2016-03-18 21:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsYoucam\n2020-06-09 09:33 &#8211; 2018-07-27 23:43 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalCrashDumps\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000003700 _____ C:Windowssystem32TasksG2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000003604 _____ C:Windowssystem32TasksG2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalGoToMeeting\n2020-06-09 09:24 &#8211; 2020-03-19 19:44 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalAVAST Software\n2020-06-09 09:21 &#8211; 2020-03-16 11:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingSpotify\n2020-06-09 09:21 &#8211; 2016-04-23 21:50 &#8211; 000000000 ____D C:ProgramDataAvg\n2020-06-09 09:17 &#8211; 2016-03-18 21:20 &#8211; 000000000 __RDO C:UsersXXXXXXZZZOneDrive\n2020-06-09 09:17 &#8211; 2016-03-18 21:14 &#8211; 000000000 __SHD C:UsersXXXXXXZZZIntelGraphicsProfiles\n2020-06-09 09:10 &#8211; 2019-04-05 12:40 &#8211; 000000000 ____D C:ProgramDataVMware\n2020-06-09 09:10 &#8211; 2017-11-30 18:27 &#8211; 000000434 _____ C:WindowsTasksDriver Easy Scheduled Scan.job\n2020-06-09 09:10 &#8211; 2013-08-22 15:45 &#8211; 000000006 ____H C:WindowsTasksSA.DAT\n2020-06-09 09:10 &#8211; 2013-08-22 15:44 &#8211; 001175584 _____ C:Windowssystem32FNTCACHE.DAT\n2020-06-09 09:09 &#8211; 2016-05-02 18:14 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service\n2020-06-08 02:12 &#8211; 2013-08-22 14:25 &#8211; 000524288 ___SH C:Windowssystem32configBBI\n2020-06-08 02:05 &#8211; 2020-05-02 10:45 &#8211; 000003202 _____ C:Windowssystem32TasksHPCeeScheduleForXXXXXXZZZ\n2020-06-08 02:05 &#8211; 2019-06-24 09:55 &#8211; 000004188 _____ C:Windowssystem32TasksAvast SecureLine VPN Update\n2020-06-08 02:05 &#8211; 2019-03-27 15:39 &#8211; 000003874 _____ C:Windowssystem32TasksBlueStacksHelper\n2020-06-08 02:05 &#8211; 2019-03-14 12:51 &#8211; 000004128 _____ C:Windowssystem32TasksCCleaner Update\n2020-06-08 02:05 &#8211; 2019-03-14 12:51 &#8211; 000002818 _____ C:Windowssystem32TasksCCleanerSkipUAC\n2020-06-08 02:05 &#8211; 2018-03-13 10:37 &#8211; 000004472 _____ C:Windowssystem32TasksAdobe Flash Player NPAPI Notifier\n2020-06-08 02:05 &#8211; 2018-01-19 14:55 &#8211; 000003108 _____ C:Windowssystem32Tasks7A5E22F3-13A6-4040-B1C5-E4043B449990\n2020-06-08 02:05 &#8211; 2017-11-30 18:27 &#8211; 000003832 _____ C:Windowssystem32TasksDriver Easy Scheduled Scan\n2020-06-08 02:05 &#8211; 2017-06-28 03:34 &#8211; 000004324 _____ C:Windowssystem32TasksAdobe Flash Player Updater\n2020-06-08 02:05 &#8211; 2017-04-06 22:46 &#8211; 000004174 _____ C:Windowssystem32TasksAntivirus Emergency Update\n2020-06-08 02:05 &#8211; 2016-04-18 20:31 &#8211; 000003646 _____ C:Windowssystem32TasksHPCustParticipation HP Deskjet 3050 J610 series\n2020-06-08 02:05 &#8211; 2016-03-31 20:06 &#8211; 000004476 _____ C:Windowssystem32TasksAdobe Acrobat Update Task\n2020-06-08 02:05 &#8211; 2016-03-18 21:26 &#8211; 000003444 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineUA\n2020-06-08 02:05 &#8211; 2016-03-18 21:26 &#8211; 000003316 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineCore\n2020-06-08 02:05 &#8211; 2015-06-04 18:43 &#8211; 000002118 _____ C:Windowssystem32TasksAvast SecureLine\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002986 _____ C:Windowssystem32TasksStart SimplePass\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002924 _____ C:Windowssystem32TasksStart OPBHOBrokerDesktop\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002912 _____ C:Windowssystem32TasksStart OPBHOBroker\n2020-06-07 17:15 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32NDF\n2020-06-07 14:53 &#8211; 2016-04-28 13:32 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsDepesas anuais\n2020-06-07 14:09 &#8211; 2019-07-18 11:12 &#8211; 000000000 ____D C:UsersXXXXXXZZZ.VirtualBox\n2020-06-07 13:56 &#8211; 2019-07-18 11:12 &#8211; 000000000 ____D C:ProgramDataVirtualBox\n2020-06-05 15:12 &#8211; 2016-03-18 21:21 &#8211; 000003600 _____ C:Windowssystem32TasksOptimize Start Menu Cache Files-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-05 14:57 &#8211; 2016-05-02 18:14 &#8211; 000001182 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsFirefox.lnk\n2020-06-05 09:41 &#8211; 2016-03-18 21:27 &#8211; 000002247 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk\n2020-06-04 18:33 &#8211; 2020-05-04 21:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingxarp-XXXXXXZZZ\n2020-06-04 13:20 &#8211; 2016-03-31 20:06 &#8211; 000002086 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk\n2020-06-02 19:55 &#8211; 2018-06-24 15:52 &#8211; 000001277 _____ C:UsersXXXXXXZZZDesktopMUSICA.txt &#8211; Atalho.lnk\n2020-06-02 19:27 &#8211; 2016-03-18 21:12 &#8211; 000000000 ____D C:UsersXXXXXXZZZ\n2020-06-02 11:21 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowstracing\n2020-06-01 21:21 &#8211; 2015-05-04 20:52 &#8211; 000000000 ___HD C:Program Files (x86)InstallShield Installation Information\n2020-05-29 08:53 &#8211; 2015-06-04 18:15 &#8211; 000000000 ____D C:ProgramDataRealtek\n2020-05-28 23:50 &#8211; 2016-04-25 18:02 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingvlc\n2020-05-28 00:58 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:WindowsAppReadiness\n2020-05-28 00:46 &#8211; 2017-12-10 17:58 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsFacebook\n2020-05-28 00:38 &#8211; 2020-04-22 15:36 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsJogos\n2020-05-28 00:14 &#8211; 2017-03-04 00:04 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsXadrez\n2020-05-28 00:12 &#8211; 2016-12-17 17:46 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsSegurança Social\n2020-05-28 00:11 &#8211; 2018-06-24 15:40 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsProgramas\n2020-05-28 00:11 &#8211; 2016-04-30 18:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsProgramas instalados\n2020-05-28 00:10 &#8211; 2016-05-12 20:08 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsOutros\n2020-05-28 00:09 &#8211; 2018-05-06 16:14 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsLivros\n2020-05-27 13:56 &#8211; 2019-11-04 15:58 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsNetworkMiner_2-5\n2020-05-27 10:01 &#8211; 2015-05-04 20:48 &#8211; 000000000 ____D C:Program Files (x86)Hewlett-Packard\n2020-05-26 18:00 &#8211; 2016-04-28 01:41 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalMicrosoft Help\n2020-05-26 12:34 &#8211; 2020-03-16 11:07 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalSpotify\n2020-05-25 09:55 &#8211; 2020-04-30 19:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsETH\n2020-05-22 20:08 &#8211; 2016-05-24 22:12 &#8211; 000000000 ____D C:WindowsMinidump\n2020-05-22 20:00 &#8211; 2017-04-03 19:15 &#8211; 000000000 ___RD C:UsersXXXXXXZZZGoogle Drive\n2020-05-22 12:21 &#8211; 2019-02-07 10:56 &#8211; 000000000 ___RD C:UsersXXXXXXZZZDocumentsMEGA\n2020-05-21 10:45 &#8211; 2020-03-31 18:09 &#8211; 000000000 ____D C:Program FilesNpcap\n2020-05-21 01:37 &#8211; 2016-04-23 21:45 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsPasses\n2020-05-19 10:20 &#8211; 2018-03-22 22:48 &#8211; 000000000 ____D C:Program FilesGoogle\n2020-05-18 22:34 &#8211; 2013-08-22 16:20 &#8211; 000000000 ____D C:WindowsCbsTemp\n2020-05-18 12:33 &#8211; 2016-03-18 21:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalPackages\n2020-05-18 12:32 &#8211; 2013-08-22 16:36 &#8211; 000000000 ___HD C:Program FilesWindowsApps\n2020-05-17 15:20 &#8211; 2019-07-18 11:13 &#8211; 000000000 ____D C:UsersXXXXXXZZZVirtualBox VMs\n2020-05-17 13:12 &#8211; 2019-04-24 01:38 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingTelegram Desktop\n2020-05-16 21:57 &#8211; 2015-06-04 18:43 &#8211; 000000000 ____D C:ProgramDataAVAST Software\n2020-05-16 21:48 &#8211; 2016-06-27 16:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingACEStream\n2020-05-16 21:48 &#8211; 2016-06-27 16:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoaming.ACEStream\n2020-05-16 04:27 &#8211; 2016-03-31 22:45 &#8211; 000000000 ____D C:Windowssystem32MRT\n2020-05-16 04:22 &#8211; 2013-08-22 16:36 &#8211; 000000000 ___RD C:WindowsToastData\n2020-05-16 04:22 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32inetsrv\n2020-05-15 23:46 &#8211; 2018-04-26 15:42 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalDesignBuilder\n2020-05-15 23:46 &#8211; 2018-04-26 15:36 &#8211; 000000000 ____D C:ProgramDataDesignBuilder\n2020-05-15 23:43 &#8211; 2020-04-18 19:52 &#8211; 000000000 ____D C:Program Files (x86)TeamViewer\n2020-05-15 23:42 &#8211; 2019-12-08 18:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsWugFresh Development\n2020-05-15 23:41 &#8211; 2020-01-11 03:43 &#8211; 000000000 ____D C:Program Files (x86)Kingo ROOT\n2020-05-15 23:41 &#8211; 2018-05-20 03:24 &#8211; 000000000 ____D C:Program Files (x86)Facebook Friend Mapper\n2020-05-15 23:41 &#8211; 2016-03-29 22:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingDropboxOEM\n2020-05-15 11:41 &#8211; 2016-03-31 22:45 &#8211; 120636720 ____C (Microsoft Corporation) C:Windowssystem32MRT.exe\n2020-05-14 11:19 &#8211; 2020-04-09 12:17 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingZoom\n2020-05-13 23:42 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:WindowsSysWOW64Macromed\n2020-05-13 23:42 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32Macromed\n2020-05-13 22:38 &#8211; 2016-04-18 20:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalHP\n2020-05-13 10:44 &#8211; 2020-04-28 14:25 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalLowIGDump\n2020-05-13 09:42 &#8211; 2019-01-07 00:31 &#8211; 000061072 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbuniv.sys\n2020-05-13 09:42 &#8211; 2019-01-07 00:31 &#8211; 000037208 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgArDisk.sys\n2020-05-13 09:42 &#8211; 2018-10-20 20:56 &#8211; 000042856 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgKbd.sys\n2020-05-13 09:42 &#8211; 2017-11-30 14:52 &#8211; 000205952 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgArPot.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000851664 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgSnx.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000461064 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgSP.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000319184 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgVmm.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000109336 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgRdr2.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000084928 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgRvrt.sys\n2020-05-13 09:41 &#8211; 2019-01-14 16:33 &#8211; 000234632 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbidsdriver.sys\n2020-05-13 09:41 &#8211; 2019-01-07 00:31 &#8211; 000178832 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbidsh.sys\n2020-05-12 17:41 &#8211; 2020-03-07 21:03 &#8211; 000000000 ____D C:ProgramDataProtonVPN\n2020-05-12 00:18 &#8211; 2018-02-25 20:28 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingWireshark\n2020-05-11 22:49 &#8211; 2020-03-24 22:50 &#8211; 000000000 ____D C:fakenet1.4.11\n2020-05-10 17:51 &#8211; 2016-04-10 14:24 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingAVAST Software\n2020-05-10 17:51 &#8211; 2015-06-04 18:43 &#8211; 000000000 ____D C:Program FilesAVAST Software</p>"},{"id":"text-34","type":"text","heading":"","plain_text":"==================== Files in the root of some directories ========","html":"<p>==================== Files in the root of some directories ========</p>"},{"id":"text-35","type":"text","heading":"","plain_text":"2020-01-03 14:39 &#8211; 2020-01-03 14:39 &#8211; 003185243 _____ () C:Program FilesHxDSetup.zip\n2020-02-26 13:17 &#8211; 2020-02-26 13:17 &#8211; 003341981 _____ () C:Program FilesSnort_2_9_15_1_Installer.exe\n2017-11-28 12:01 &#8211; 2017-11-28 12:03 &#8211; 007649280 _____ () C:Program Files (x86)GUTAEE6.tmp\n2020-05-28 13:07 &#8211; 2020-05-28 13:07 &#8211; 000002391 _____ () C:UsersXXXXXXZZZAppDataLocalrecently-used.xbel\n2020-01-11 03:44 &#8211; 2020-01-11 03:59 &#8211; 000000068 _____ () C:UsersXXXXXXZZZAppDataLocaluts.ini\n2020-05-21 10:47 &#8211; 2020-05-28 11:12 &#8211; 000000286 _____ () C:UsersXXXXXXZZZAppDataLocalzenmap.exe.log","html":"<p>2020-01-03 14:39 &#8211; 2020-01-03 14:39 &#8211; 003185243 _____ () C:Program FilesHxDSetup.zip\n2020-02-26 13:17 &#8211; 2020-02-26 13:17 &#8211; 003341981 _____ () C:Program FilesSnort_2_9_15_1_Installer.exe\n2017-11-28 12:01 &#8211; 2017-11-28 12:03 &#8211; 007649280 _____ () C:Program Files (x86)GUTAEE6.tmp\n2020-05-28 13:07 &#8211; 2020-05-28 13:07 &#8211; 000002391 _____ () C:UsersXXXXXXZZZAppDataLocalrecently-used.xbel\n2020-01-11 03:44 &#8211; 2020-01-11 03:59 &#8211; 000000068 _____ () C:UsersXXXXXXZZZAppDataLocaluts.ini\n2020-05-21 10:47 &#8211; 2020-05-28 11:12 &#8211; 000000286 _____ () C:UsersXXXXXXZZZAppDataLocalzenmap.exe.log</p>"},{"id":"text-36","type":"text","heading":"","plain_text":"==================== SigCheck ============================","html":"<p>==================== SigCheck ============================</p>"},{"id":"text-37","type":"text","heading":"","plain_text":"(There is no automatic fix for files that do not pass verification.)","html":"<p>(There is no automatic fix for files that do not pass verification.)</p>"},{"id":"text-38","type":"text","heading":"","plain_text":"LastRegBack: 2020-04-08 11:59\n==================== End of FRST.txt ========================\nAlso, the Addition.txt:","html":"<p>LastRegBack: 2020-04-08 11:59\n==================== End of FRST.txt ========================\nAlso, the Addition.txt:</p>"},{"id":"text-39","type":"text","heading":"","plain_text":"Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-06-2020\nRan by XXXXXXZZZ (09-06-2020 12:01:08)\nRunning from C:UsersXXXXXXZZZDownloads\nWindows 8.1 (Update) (X64) (2016-03-18 20:13:59)\nBoot Mode: Normal\n==========================================================","html":"<p>Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-06-2020\nRan by XXXXXXZZZ (09-06-2020 12:01:08)\nRunning from C:UsersXXXXXXZZZDownloads\nWindows 8.1 (Update) (X64) (2016-03-18 20:13:59)\nBoot Mode: Normal\n==========================================================</p>"},{"id":"text-40","type":"text","heading":"","plain_text":"==================== Accounts: =============================","html":"<p>==================== Accounts: =============================</p>"},{"id":"text-41","type":"text","heading":"","plain_text":"Administrador (S-1-5-21-3751382696-3894377064-3631472648-500 &#8211; Administrator &#8211; Disabled)\nConvidado (S-1-5-21-3751382696-3894377064-3631472648-501 &#8211; Limited &#8211; Disabled)\nXXXXXXZZZ (S-1-5-21-3751382696-3894377064-3631472648-1001 &#8211; Administrator &#8211; Enabled) =&gt; C:UsersXXXXXXZZZ","html":"<p>Administrador (S-1-5-21-3751382696-3894377064-3631472648-500 &#8211; Administrator &#8211; Disabled)\nConvidado (S-1-5-21-3751382696-3894377064-3631472648-501 &#8211; Limited &#8211; Disabled)\nXXXXXXZZZ (S-1-5-21-3751382696-3894377064-3631472648-1001 &#8211; Administrator &#8211; Enabled) =&gt; C:UsersXXXXXXZZZ</p>"},{"id":"text-42","type":"text","heading":"","plain_text":"==================== Security Center ========================","html":"<p>==================== Security Center ========================</p>"},{"id":"text-43","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed.)","html":"<p>(If an entry is included in the fixlist, it will be removed.)</p>"},{"id":"text-44","type":"text","heading":"","plain_text":"AV: Windows Defender (Disabled &#8211; Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46\nAV: AVG Antivirus (Enabled &#8211; Up to date) 18A975F9-A60C-37D8-E30B-4BEF31AD3411\nAS: AVG Antivirus (Enabled &#8211; Up to date) A3C8941D-8036-3856-D9BB-709D4A2A7EAC\nAS: Windows Defender (Disabled &#8211; Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46","html":"<p>AV: Windows Defender (Disabled &#8211; Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46\nAV: AVG Antivirus (Enabled &#8211; Up to date) 18A975F9-A60C-37D8-E30B-4BEF31AD3411\nAS: AVG Antivirus (Enabled &#8211; Up to date) A3C8941D-8036-3856-D9BB-709D4A2A7EAC\nAS: Windows Defender (Disabled &#8211; Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46</p>"},{"id":"text-45","type":"text","heading":"","plain_text":"==================== Installed Programs ======================","html":"<p>==================== Installed Programs ======================</p>"},{"id":"text-46","type":"text","heading":"","plain_text":"(Only the adware programs with &quot;Hidden&quot; flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)","html":"<p>(Only the adware programs with &quot;Hidden&quot; flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)</p>"},{"id":"text-47","type":"text","heading":"","plain_text":"[PS3]  Save Resigner (HKLM-x32&#8230;[PS3] Save Resigner 2.0.2) (Version: 2.0.2 &#8211; The Prince of Codes)\n[PS3]  Save Resigner (HKLM-x32&#8230;96CF2F0B-EBB0-4D7F-852F-C54A30C8E5CF) (Version: 2.0.2 &#8211; The Prince of Codes) Hidden\nµTorrent (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;uTorrent) (Version: 3.5.5.45505 &#8211; BitTorrent Inc.)\n7-Zip 9.20 (x64 edition) (HKLM&#8230;23170F69-40C1-2702-0920-000001000000) (Version: 9.20.00.0 &#8211; Igor Pavlov)\nA360 Desktop (HKLM&#8230;7758802D-9486-4883-9927-CCAC366A3BA4) (Version: 7.2.3.1800 &#8211; Autodesk)\nACA &amp; MEP 2017 Object Enabler (HKLM&#8230;28B89EEF-0004-0000-5102-CF3F3A09B77D) (Version: 7.9.45.0 &#8211; Autodesk) Hidden\nACAD Private (HKLM&#8230;28B89EEF-0001-0000-3102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nActualizações da NVIDIA 16.13.65 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Update) (Version: 16.13.65 &#8211; NVIDIA Corporation) Hidden\nAdobe Acrobat Reader DC &#8211; Português (HKLM-x32&#8230;AC76BA86-7AD7-1046-7B44-AC0F074E4100) (Version: 20.009.20067 &#8211; Adobe Systems Incorporated)\nAdobe Acrobat XI Pro (HKLM-x32&#8230;AC76BA86-1033-FFFF-7760-000000000006) (Version: 11.0.12 &#8211; Adobe Systems)\nAdobe Flash Player 32 NPAPI (HKLM-x32&#8230;Adobe Flash Player NPAPI) (Version: 32.0.0.371 &#8211; Adobe)\nAdobe Shockwave Player 12.1 (HKLM-x32&#8230;Adobe Shockwave Player) (Version: 12.1.7.157 &#8211; Adobe Systems, Inc.)\nAimersoft Helper Compact 2.5.2 (HKLM-x32&#8230;405147F7-FCC5-499B-A27E-EA6BD4A80435_is1) (Version: 2.5.2 &#8211; Aimersoft)\nAndroid Rom Dumper version 1.3.5 (HKLM-x32&#8230;595D7D79-D70F-4930-A450-BF06B628EE2D_is1) (Version: 1.3.5 &#8211; BoxWares Team)\nAndroid Studio (HKLM&#8230;Android Studio) (Version: 3.6 &#8211; Google LLC)\nAndroid Toolkit 2.0.30 (HKLM-x32&#8230;F9441FCC-1C08-4933-939F-0E8A27D6C0CE_is1) (Version: 2.0.30 &#8211; Apeaksoft Studio)\nAny DGN to DWG Converter 2018 (HKLM-x32&#8230;Any DGN to DWG Converter_is1) (Version:  &#8211; AnyDWG Software, Inc.)\nAny DWF to DWG Converter 2017 (HKLM-x32&#8230;Any DWF to DWG Converter_is1) (Version:  &#8211; AnyDWG Software, Inc.)\nAplicação de ambiente de trabalho Autodesk (HKLM-x32&#8230;Autodesk Desktop App) (Version: 7.0.9.191 &#8211; Autodesk)\nAplicativos da Autodesk em destaque 2016-2017 (HKLM-x32&#8230;27C15055-713B-4D0E-881F-19598A2DFD59) (Version: 2.2.0 &#8211; Autodesk)\nApplication Verifier x64 External Package (HKLM&#8230;10CA1677-8F02-3131-F25C-780BAB52E468) (Version: 10.1.18362.1 &#8211; Microsoft) Hidden\nAssistente de gestor de conteúdo para PlayStation® (HKLM-x32&#8230;E5C1C342-5E78-4D91-85BE-40C716B09391) (Version: 3.55.7671.0901 &#8211; Sony Computer Entertainment Inc.)\nAutoCAD 2017 &#8211; English (HKLM&#8230;28B89EEF-0001-0409-2102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutoCAD 2017 (HKLM&#8230;28B89EEF-0001-0000-0102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutoCAD 2017 Language Pack &#8211; English (HKLM&#8230;28B89EEF-0001-0409-1102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutodesk Advanced Material Library Image Library 2017 (HKLM-x32&#8230;8ED2ED41-4455-449D-993C-751C039089B9) (Version: 15.11.3.0 &#8211; Autodesk)\nAutodesk App Manager 2016-2017 (HKLM-x32&#8230;C0954809-F5DC-426C-847E-8409DE14E4C0) (Version: 2.2.0 &#8211; Autodesk)\nAutodesk AutoCAD 2017 &#8211; English (HKLM&#8230;AutoCAD 2017 &#8211; English) (Version: 21.0.52.0 &#8211; Autodesk)\nAutodesk AutoCAD Performance Feedback Tool 1.2.5 (HKLM-x32&#8230;8600F844-9AA5-412E-B6F2-F9C6CBCFD268) (Version: 1.2.5.0 &#8211; Autodesk)\nAutodesk BIM 360 Glue AutoCAD 2017 Add-in 64 bit (HKLM&#8230;276A67E0-71EB-4827-B5F7-2ACF02BC1A5B) (Version: 4.37.6853 &#8211; Autodesk)\nAutodesk Design Review (HKLM-x32&#8230;139C013B-5BAC-4101-BC6C-B2A78C0125A4) (Version: 14.0.0.177 &#8211; Autodesk) Hidden\nAutodesk Design Review (HKLM-x32&#8230;Autodesk Design Review) (Version: 14.0.0.177 &#8211; Autodesk)\nAutodesk DWG TrueView 2018 &#8211; English (HKLM&#8230;DWG TrueView 2018 &#8211; English) (Version: 22.0.50.0 &#8211; Autodesk)\nAutodesk License Service (x64) &#8211; 3.1 (HKLM&#8230;EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D) (Version: 3.1.26.0 &#8211; Autodesk)\nAutodesk Material Library 2017 (HKLM-x32&#8230;8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE) (Version: 15.11.3.0 &#8211; Autodesk)\nAutodesk Material Library Base Resolution Image Library 2017 (HKLM-x32&#8230;3FBFBC43-9882-43FA-B979-2D53896747B3) (Version: 15.11.3.0 &#8211; Autodesk)\nAutoDWG DWG DXF Converter 2019 (HKLM-x32&#8230;98D8413-1812-41BC-8AD5-2192A80AC23F) (Version:  &#8211; )\nAutoHotkey 1.1.24.01 (HKLM&#8230;AutoHotkey) (Version: 1.1.24.01 &#8211; Lexikos)\nAutopsy (HKLM&#8230;274E8015-93B6-470C-943B-5FDD6E803462) (Version: 4.13.0 &#8211; The Sleuth Kit)\nAvast SecureLine (HKLM&#8230;2CD3C92F-EDC5-4B02-9B0A-9C1D37C58EF5_is1) (Version: 1.0.220.2 &#8211; AVAST Software)\nAVG AntiVirus FREE (HKLM-x32&#8230;AVG Antivirus) (Version: 20.3.3120 &#8211; AVG Technologies)\nAVG TuneUp (HKLM-x32&#8230;949BE04F-D7E8-4C19-9F89-8B304AB4308A_is1) (Version: 19.1.1209 &#8211; AVG Technologies)\nAVG Web TuneUp (HKLM-x32&#8230;AVG Web TuneUp) (Version: 4.3.9.626 &#8211; AVG Technologies)\nBackup and Sync from Google (HKLM&#8230;FE296942-D2D3-4149-8895-60655FE4CFDE) (Version: 3.49.9800.0000 &#8211; Google, Inc.)\nBejeweled 3 (HKLM-x32&#8230;WTA-8fc518d5-0776-414b-8c35-d47a24361589) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nBlueStacks App Player (HKLM&#8230;BlueStacks) (Version: 4.60.3.1001 &#8211; BlueStack Systems, Inc.)\nBonjour (HKLM&#8230;6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D) (Version: 3.0.0.10 &#8211; Apple Inc.)\nBruteforce Save Data (HKLM-x32&#8230;Bruteforce Save Data) (Version:  &#8211; )\nBuild-a-lot (HKLM-x32&#8230;WTA-1122e411-4a7b-46f0-8a81-a325b319b16e) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nBuilding the Great Wall of China Collector&#39;s Edition (HKLM-x32&#8230;WTA-460b63ee-3e7e-405f-8860-c7ef48fb3a7e) (Version: 3.0.2.48 &#8211; WildTangent) Hidden\nCain &amp; Abel 4.9.56 (HKLM-x32&#8230;Cain &amp; Abel 4.9.56) (Version:  &#8211; )\nCCleaner (HKLM&#8230;CCleaner) (Version: 5.55 &#8211; Piriform)\nCisco EAP-FAST Module (HKLM-x32&#8230;64BF0187-F3D2-498B-99EA-163AF9AE6EC9) (Version: 2.2.14 &#8211; Cisco Systems, Inc.)\nCisco LEAP Module (HKLM-x32&#8230;AF312B06-5C5C-468E-89B3-BE6DE2645722) (Version: 1.0.19 &#8211; Cisco Systems, Inc.)\nCisco PEAP Module (HKLM-x32&#8230;A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F) (Version: 1.1.6 &#8211; Cisco Systems, Inc.)\nCrazy Chicken Soccer (HKLM-x32&#8230;WTA-ee1c9a77-df4c-46ab-a6b3-85ad880357a3) (Version: 2.2.0.110 &#8211; WildTangent) Hidden\nCyberLink Media Suite 10 (HKLM-x32&#8230;InstallShield_1FBF6C24-C1fD-4101-A42B-0C564F9E8E79) (Version: 10.0.9.4928 &#8211; CyberLink Corp.)\nCyberlink PhotoDirector (HKLM&#8230;5A454EC5-217A-42a5-8CE1-2DDEC4E70E01) (Version: 5.0.4.6303 &#8211; Nome da empresa:) Hidden\nCyberlink PhotoDirector (HKLM-x32&#8230;InstallShield_5A454EC5-217A-42a5-8CE1-2DDEC4E70E01) (Version: 5.0.4.6303 &#8211; CyberLink Corp.)\nCyberLink Power2Go 8 (HKLM-x32&#8230;InstallShield_2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2) (Version: 8.0.9.5009 &#8211; CyberLink Corp.)\nCyberLink PowerBackup 2.6 (HKLM-x32&#8230;InstallShield_ADD5DB49-72CF-11D8-9D75-000129760D75) (Version: 2.6.2.1307 &#8211; CyberLink Corp.)\nCyberLink PowerDirector 12 (HKLM&#8230;E1646825-D391-42A0-93AA-27FA810DA093) (Version: 12.0.3.3812 &#8211; Nome da empresa:) Hidden\nCyberLink PowerDirector 12 (HKLM-x32&#8230;InstallShield_E1646825-D391-42A0-93AA-27FA810DA093) (Version: 12.0.3.3812 &#8211; CyberLink Corp.)\nCyberLink YouCam (HKLM-x32&#8230;InstallShield_01FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 5.0.6.5011 &#8211; CyberLink Corp.)\nDAEMON Tools Lite (HKLM&#8230;DAEMON Tools Lite) (Version: 10.3.0.0154 &#8211; Disc Soft Ltd)\nDelicious: Emily&#39;s Wonder Wedding Premium Edition (HKLM-x32&#8230;WTA-ab833d9b-3665-402d-b993-c99a471eeb10) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nDesignBuilder (HKLM-x32&#8230;9C306D70-8A6C-11D5-8CDF-00D0B78FC575) (Version: 5.3.0.014 &#8211; DesignBuilder Software Ltd.)\nDIAL Communication Framework (HKLM-x32&#8230;562D0D31-FBAF-4505-8B27-4EC92EEA91D6) (Version: 1.3.2.258 &#8211; DIAL GmbH)\nDIAL Data Dispatcher (HKLM-x32&#8230;DIAL Data Dispatcher1.0) (Version: 2.0.24.0 &#8211; DIAL GmbH)\nDIALux evo (x64) (HKLM-x32&#8230;5FF70775-5D3A-4A26-B9ED-1BF642E9987C) (Version: 5.9.0.49107 &#8211; DIAL GmbH)\nDisableMSDefender (HKLM&#8230;74FE39A0-FB76-47CD-84BA-91E2BBB17EF2) (Version: 1.0.0 &#8211; Hewlett-Packard Company) Hidden\nDiskInternals Partition Recovery (HKLM-x32&#8230;DiskInternals Partition Recovery) (Version: 7.6.2 &#8211; DiskInternals Research)\nDolphin (HKLM-x32&#8230;Dolphin) (Version: 4.0.2 &#8211; Dolphin Development Team)\nDraftSight 2017 SP0 x64 (HKLM&#8230;E78A1C28-8E3C-4CFB-82A4-077E7104F993) (Version: 17.0.2086 &#8211; Dassault Systemes)\nDriver Easy 5.5.5 (HKLM&#8230;DriverEasy_is1) (Version: 5.5.5 &#8211; Easeware)\nDWF to DWG Converter (HKLM-x32&#8230;909F0ECA-1A61-43F3-B2F2-D1A7AE79A444) (Version:  &#8211; )\nDWG TrueView 2018 &#8211; English (HKLM&#8230;28B89EEF-1028-0409-0100-CF3F3A09B77D) (Version: 22.0.50.0 &#8211; Autodesk) Hidden\nEaseUS Data Recovery Wizard (HKLM&#8230;EaseUS Data Recovery Wizard_is1) (Version:  &#8211; EaseUS)\nE-CAT / E20-II Configuration Services 2.21 (HKLM-x32&#8230;E-CAT / E20-II Configuration Services 2.21) (Version:  &#8211; )\nE-CAT Enable 2.11 (HKLM-x32&#8230;E-CAT Enable 2.11) (Version:  &#8211; )\nEnergy Star (HKLM&#8230;465CA2B6-98AF-4E77-BE22-A908C34BB9EC) (Version: 1.0.9 &#8211; Hewlett-Packard Company)\nEPSON Scan (HKLM-x32&#8230;EPSON Scanner) (Version:  &#8211; )\nEvernote v. 5.8.1 (HKLM-x32&#8230;4FD2D1C8-8636-11E4-9D21-00163E98E7D6) (Version: 5.8.1.6061 &#8211; Evernote Corp.)\nFoxit PhantomPDF (HKLM-x32&#8230;4E32271C-B55A-4CDF-8DB7-88FD1C45927C) (Version: 7.0.310.226 &#8211; Foxit Software Inc.)\nGenymotion version 3.1.0 (HKLM&#8230;6D180286-D4DF-40EF-9227-923B9C07C08A_is1) (Version: 3.1.0 &#8211; Genymobile)\nGit version 2.26.0 (HKLM&#8230;Git_is1) (Version: 2.26.0 &#8211; The Git Development Community)\nGoogle Chrome (HKLM-x32&#8230;Google Chrome) (Version: 83.0.4103.97 &#8211; Google LLC)\nGoogle Earth Pro (HKLM&#8230;B6EAFE41-5723-40EB-869B-4AF44CA17B35) (Version: 7.3.3.7699 &#8211; Google)\nGoogle Update Helper (HKLM-x32&#8230;60EC980A-BDA2-4CB6-A427-B07A5498B4CA) (Version: 1.3.35.451 &#8211; Google LLC) Hidden\nGoTo Opener (HKLM-x32&#8230;C0F33C38-345C-4C02-B161-11389350C2A5) (Version: 1.0.533 &#8211; LogMeIn, Inc.)\nGoToMeeting 10.10.1.17956 (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;GoToMeeting) (Version: 10.10.1.17956 &#8211; LogMeIn, Inc.)\nHardlock Device Drivers (HKLM-x32&#8230;Hardlock Device Drivers) (Version:  &#8211; )\nHewlett-Packard ACLM.NET v1.2.2.3 (HKLM-x32&#8230;6F340107-F9AA-47C6-B54C-C3A19F11553F) (Version: 1.00.0000 &#8211; Hewlett-Packard Company) Hidden\nHijack Hunter 1.8.4.1 (HKLM-x32&#8230;616A9B24-448B-4DF3-926A-C4141FCD692C_is1) (Version:  &#8211; NoVirusThanks Company Srl)\nHourly Analysis Program 4.91 (HKLM-x32&#8230;Hourly Analysis Program 4.91) (Version:  &#8211; Carrier Corporation)\nHP 3D DriveGuard (HKLM-x32&#8230;D817481A-193E-4332-A4F3-E19132F744F0) (Version: 6.0.24.1 &#8211; Hewlett-Packard Company)\nHP CoolSense (HKLM-x32&#8230;ADE2F6A7-E7BD-4955-BD66-30903B223DDF) (Version: 2.20.41 &#8211; Hewlett-Packard Company)\nHP Deskjet 3050 J610 series Ajuda (HKLM-x32&#8230;F7632A9B-661E-4FD9-B1A4-3B86BC99847F) (Version: 140.0.63.63 &#8211; Hewlett Packard)\nHP Deskjet 3050 J610 series Estudo de aprimoramento de produtos (HKLM&#8230;A954C7EA-DDD9-4055-BC48-E816F174F397) (Version: 28.0.1315.0 &#8211; Hewlett-Packard Co.)\nHP Deskjet 3050 J610 series Software básico do dispositivo (HKLM&#8230;E6E28DE7-446E-4E27-BE37-4B6D925A385B) (Version: 28.0.1315.0 &#8211; Hewlett-Packard Co.)\nHP Documentation (HKLM-x32&#8230;915AE95A-9009-41DB-9D9D-D57E17AAB48F) (Version: 1.1.0.0 &#8211; Hewlett-Packard)\nHP Photo Creations (HKLM-x32&#8230;HP Photo Creations) (Version: 1.0.0.7702 &#8211; HP)\nHP Registration Service (HKLM&#8230;D1E8F2D7-7794-4245-B286-87ED86C1893C) (Version: 1.2.7960.5089 &#8211; Hewlett-Packard)\nHP SimplePass (HKLM-x32&#8230;InstallShield_314FAD12-F785-4471-BCE8-AB506642B9A1) (Version: 8.01.39 &#8211; Hewlett-Packard)\nHP Support Assistant (HKLM-x32&#8230;E959FD01-BD01-4CC4-9BB8-4EBE8309BF37) (Version: 8.8.26.13 &#8211; HP)\nHP Support Solutions Framework (HKLM-x32&#8230;7463C61B-A36C-47BC-8E16-701EBC34C26F) (Version: 12.16.22.11 &#8211; HP)\nHP System Event Utility (HKLM-x32&#8230;3EDAF5B5-0CA9-4967-B103-FBFF1162C336) (Version: 1.2.10 &#8211; Hewlett-Packard Company)\nHP Update (HKLM-x32&#8230;912D30CF-F39E-4B31-AD9A-123C6B794EE2) (Version: 5.005.002.002 &#8211; Hewlett-Packard)\nHP Wireless Button Driver (HKLM-x32&#8230;30B2D1D8-0A07-4B71-9553-0710C5D31E35) (Version: 1.1.2.1 &#8211; Hewlett-Packard Company)\nHPDiagnosticAlert (HKLM-x32&#8230;B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D) (Version: 1.00.0001 &#8211; Microsoft) Hidden\nHxD Hex Editor 2.3 (HKLM&#8230;HxD_is1) (Version: 2.3 &#8211; Maël Hörz)\nHxD Hex Editor version 1.7.7.0 (HKLM-x32&#8230;HxD Hex Editor_is1) (Version: 1.7.7.0 &#8211; Maël Hörz)\nImgBurn (HKLM-x32&#8230;ImgBurn) (Version: 2.5.8.0 &#8211; LIGHTNING UK!)\nImportação do SketchUp 2016-2017 (HKLM-x32&#8230;63925DB-9D8C-48E2-8F04-1B7038B6C783) (Version: 2.2.0 &#8211; Autodesk)\niMyFone AnyRecover 2.0.0.16 (HKLM-x32&#8230;89DFCC5A-39CC-4AE7-8313-1ED6553E1ADD_is1) (Version: 2.0.0.16 &#8211; Shenzhen iMyFone Technology Co., Ltd.)\nInst5675 (HKLM&#8230;2DE6247C-7077-451B-8BA7-FFD1A2ABBB47) (Version: 8.01.39 &#8211; Softex Inc.) Hidden\nInst5676 (HKLM&#8230;878F6913-7421-4713-97F7-0A736EE2A188) (Version: 8.01.39 &#8211; Softex Inc.) Hidden\nIntel Collaborative Processor Performance Control (HKLM-x32&#8230;E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1018 &#8211; Intel Corporation)\nIntel® Dynamic Platform and Thermal Framework (HKLM-x32&#8230;654EE65D-FAA4-4EA6-8C07-DC94E6A304D4) (Version: 8.0.10100.71 &#8211; Intel Corporation)\nIntel® Management Engine Components (HKLM&#8230;1CEAC85D-2590-4760-800F-8DE5E91F3700) (Version: 10.0.31.1000 &#8211; Intel Corporation)\nIntel® Processor Graphics (HKLM-x32&#8230;F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA) (Version: 10.18.14.4139 &#8211; Intel Corporation)\nIntel® Rapid Storage Technology (HKLM&#8230;409CB30E-E457-4008-9B1A-ED1B9EA21140) (Version: 14.5.2.1088 &#8211; Intel Corporation)\nIntel® Hardware Accelerated Execution Manager (HKLM&#8230;754CC9DC-3DB4-4FB2-B71E-87331DB9EA17) (Version: 7.5.4 &#8211; Intel Corporation)\nIomega Encryption (HKLM&#8230;634B56F2-09FF-407B-B9FB-3611DDC52773) (Version: 1.03.0003 &#8211; Iomega an EMC Company)\nIomega Encryption 3.1.0 (HKLM&#8230;2A5534DE-30C7-429C-976A-132E89549180) (Version: 3.1.0 &#8211; Iomega)\nIRS &#8211; Modelo 3 Impressos 2016 (HKLM&#8230;pt.at.DM3IRSCLIv2016) (Version: 2016.2.1.0124 &#8211; AT)\niTube Studio(Build 7.4.7.3) (HKLM-x32&#8230;iTube Studio_is1) (Version: 7.4.7.3 &#8211; iTube Studio)\nJava 8 Update 241 (64-bit) (HKLM&#8230;26A24AE4-039D-4CA4-87B4-2F64180241F0) (Version: 8.0.2410.7 &#8211; Oracle Corporation)\nJava™ SE Development Kit 14 (64-bit) (HKLM&#8230;3552AC04-4EFC-51F1-AA92-9D1A99E02C95) (Version: 14.0.0.0 &#8211; Oracle Corporation)\nJetBrains PyCharm Community Edition 2018.2.1 (HKLM-x32&#8230;PyCharm Community Edition 2018.2.1) (Version: 182.3911.33 &#8211; JetBrains s.r.o.)\nJewel Match 3 (HKLM-x32&#8230;WTA-fced6a73-fdd6-4324-9ec6-d4a9ddcc449c) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nJill of the Jungle (HKLM-x32&#8230;1129701343_is1) (Version: 1.0 CS &#8211; GOG.com)\nJogos da WildTangent (HKLM-x32&#8230;WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 &#8211; WildTangent)\nJumpstart Installation Program (HKLM-x32&#8230;B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13) (Version:  &#8211; Atheros)\nKits Configuration Installer (HKLM-x32&#8230;63AAA877-5536-9481-2385-28A082100D78) (Version: 10.1.18362.1 &#8211; Microsoft) Hidden\nLAV Filters 0.74.1 (HKLM-x32&#8230;lavfilters_is1) (Version: 0.74.1 &#8211; Hendrik Leppkes)\nLizardTech ExpressView Browser Plug-in (HKLM-x32&#8230;4EFFB6FD-C0D3-43AF-AABB-BC0DCDBF2F34) (Version: 6.5.1 &#8211; LizardTech)\nLocal_Monitor 4.1 (HKLM-x32&#8230;DED1CF45-A68B-40A9-AF54-7447D6D0CFDD_is1) (Version:  &#8211; Insecuritynet, Inc.)\nMagic ISO Maker v5.5 (build 0281) (HKLM-x32&#8230;Magic ISO Maker v5.5 (build 0281)) (Version:  &#8211; )\nMalwarebytes version 4.1.0.56 (HKLM&#8230;35065F43-4BB2-439A-BFF7-0F1014F2E0CD_is1) (Version: 4.1.0.56 &#8211; Malwarebytes)\nMEGAsync (HKLM-x32&#8230;MEGAsync) (Version:  &#8211; Mega Limited)\nMicrosoft .NET Core SDK 3.1.201 (x64) (HKLM-x32&#8230;5e0a0ca7-8d37-4573-8d5b-03416809a484) (Version: 3.1.201.15034 &#8211; Microsoft Corporation)\nMicrosoft Office (HKLM-x32&#8230;90150000-0138-0409-0000-0000000FF1CE) (Version: 15.0.4641.1005 &#8211; Microsoft Corporation)\nMicrosoft Office Professional Plus 2010 (HKLM-x32&#8230;Office14.PROPLUS) (Version: 14.0.7015.1000 &#8211; Microsoft Corporation)\nMicrosoft Silverlight (HKLM&#8230;89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50907.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;837b34e3-7c30-493c-8f6a-2b0f04e2912c) (Version: 8.0.59193 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17 (HKLM&#8230;8220EEFE-38CD-377E-8595-13398D740ACE) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.4148 (HKLM&#8230;4B6C7001-C7D6-3710-913E-5BC23FCE91E6) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17 (HKLM-x32&#8230;9A25302D-30C0-39D9-BD6F-21E6EC160475) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148 (HKLM-x32&#8230;1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161 (HKLM-x32&#8230;9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x64 Redistributable &#8211; 10.0.40219 (HKLM&#8230;1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x86 Redistributable &#8211; 10.0.40219 (HKLM-x32&#8230;F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x64) &#8211; 11.0.61030 (HKLM-x32&#8230;ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x86) &#8211; 11.0.61030 (HKLM-x32&#8230;33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x64) &#8211; 12.0.30501 (HKLM-x32&#8230;50d4fc8-5d48-4b8f-8972-47c82c46020f) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x86) &#8211; 12.0.30501 (HKLM-x32&#8230;f65db027-aff3-4070-886a-0d87064aabb1) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015-2019 Redistributable (x64) &#8211; 14.25.28508 (HKLM-x32&#8230;6913e92a-b64e-41c9-a5e6-cef39207fe89) (Version: 14.25.28508.3 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015-2019 Redistributable (x86) &#8211; 14.25.28508 (HKLM-x32&#8230;65e650ff-30be-469d-b63a-418d71ea1765) (Version: 14.25.28508.3 &#8211; Microsoft Corporation)\nMicrosoft Visual F# 2.0 Runtime (HKLM-x32&#8230;729A3000-BC8A-3B74-BA5D-5068FE12D70C) (Version: 10.0.30319 &#8211; Microsoft Corporation)\nMicrosoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM&#8230;Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.60724 &#8211; Microsoft Corporation)\nMicrosoft Visual Studio Installer (HKLM&#8230;6F320B93-EE3C-4826-85E0-ADF79F8D4C61) (Version: 2.5.2059.317 &#8211; Microsoft Corporation)\nMiniTool Power Data Recovery 8.8 (HKLM&#8230;E1BCD081-4BF4-4E2F-832A-911EC42EF3C5_is1) (Version: 8.8 &#8211; MiniTool Software Limited)\nMozilla Firefox 77.0.1 (x64 pt-PT) (HKLM&#8230;Mozilla Firefox 77.0.1 (x64 pt-PT)) (Version: 77.0.1 &#8211; Mozilla)\nMozilla Maintenance Service (HKLM-x32&#8230;MozillaMaintenanceService) (Version: 77.0.1.7458 &#8211; Mozilla)\nMSI Development Tools (HKLM-x32&#8230;DB4DB790-64DD-1902-4BF2-833B3B6DBCA1) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nNmap 7.80 (HKLM-x32&#8230;Nmap) (Version: 7.80 &#8211; Nmap Project)\nNoVirusThanks Anti-Rootkit (Free Edition) v1.2 (HKLM-x32&#8230;NoVirusThanks Anti-Rootkit (Free Edition)_is1) (Version: 1.2.0.0 &#8211; NoVirusThanks Company Srl)\nNpcap 0.9982 (HKLM-x32&#8230;NpcapInst) (Version: 0.9982 &#8211; Nmap Project)\nNVIDIA Controlador gráfico 347.26 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Driver) (Version: 347.26 &#8211; NVIDIA Corporation)\nNVIDIA GeForce Experience 2.1.4 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.GFExperience) (Version: 2.1.4 &#8211; NVIDIA Corporation)\nNVIDIA O software do sistema PhysX 9.14.0702 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.PhysX) (Version: 9.14.0702 &#8211; NVIDIA Corporation)\nOpenSSL 1.1.1f Light (64-bit) (HKLM&#8230;OpenSSL Light (64-bit)_is1) (Version:  &#8211; OpenSSL Win64 Installer Team)\nOracle VM VirtualBox 6.0.4 (HKLM&#8230;79366295-CD6A-4467-9901-4A7DFCF90F40) (Version: 6.0.4 &#8211; Oracle Corporation)\nOSRAM Lamp PlugIn 1.8.3.1 (HKLM-x32&#8230;567EA4E4-B799-4F1C-BFE0-D0381BD8651A) (Version: 1.83.1000 &#8211; OSRAM)\nPainel de controlo da NVIDIA 347.26 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.ControlPanel) (Version: 347.26 &#8211; NVIDIA Corporation) Hidden\nPanda Cloud Cleaner (HKLM-x32&#8230;92B2B132-C7F0-43DC-921A-4493C04F78A4_is1) (Version: 1.1.10 &#8211; Panda Security)\nPEStudio (HKLM-x32&#8230;PEStudio) (Version: 1.0.0.27 &#8211; Elcontrol Enegy Net SpA)\nPhilips Product Selector 5.2.12.2 (HKLM-x32&#8230;81AD9228-21AC-4DBD-AE33-98146A88BAA8) (Version: 5.2.12.2 &#8211; Signify) Hidden\nPhilips Product Selector 5.2.12.2 (HKLM-x32&#8230;InstallShield_81AD9228-21AC-4DBD-AE33-98146A88BAA8) (Version: 5.2.12.2 &#8211; Signify)\nplugin Autenticação.Gov (HKLM-x32&#8230;DA5C6D6B-C160-4732-9A6D-CB0B58387A84) (Version: 2.0.46 &#8211; Agência para a Modernização Administrativa)\nPolar Bowler 1st Frame (HKLM-x32&#8230;WTA-7427884d-05c8-4a08-baa0-d130eb2faeef) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nPPS max plugin 1.7.0 (HKLM-x32&#8230;PPS max plugin_is1) (Version: 1.7.0.0 &#8211; Tree C Technology B.V.)\nProject64 1.6 (HKLM-x32&#8230;9559F7CA-5E34-4237-A2D9-D856464AD727) (Version: 1.6 &#8211; Project64)\nProtonVPN (HKLM-x32&#8230;6766D7C7-E034-49EA-82AC-0FE614B7F1DF) (Version: 1.13.3 &#8211; Proton Technologies AG) Hidden\nProtonVPN (HKLM-x32&#8230;ProtonVPN 1.13.3) (Version: 1.13.3 &#8211; Proton Technologies AG)\nPython 3.7.0 (64-bit) (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;f684de81-73c2-4924-ad43-e7ae400d47b5) (Version: 3.7.150.0 &#8211; Python Software Foundation)\nPython 3.7.0 Core Interpreter (64-bit) (HKLM&#8230;F046BD5A-33F4-4ABA-BD2D-0227F6291EC9) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Development Libraries (64-bit) (HKLM&#8230;61246987-8D99-44A9-8FF5-E2E3F503B72D) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Documentation (64-bit) (HKLM&#8230;E7C56E72-C80E-453B-9345-FAEAE5DB51A4) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Executables (64-bit) (HKLM&#8230;84B7971A-F59F-4247-AD34-BEC02CF85FBD) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 pip Bootstrap (64-bit) (HKLM&#8230;8A6F7991-1955-4C46-8C0C-8D7C6F7042FA) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Standard Library (64-bit) (HKLM&#8230;18D93BBC-06F6-449D-96FB-CD473CFC6A6D) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Tcl/Tk Support (64-bit) (HKLM&#8230;A2FC01E0-059E-4D21-AFD2-B63A7E1EF3CD) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Test Suite (64-bit) (HKLM&#8230;E4266358-1C9B-4AF0-ABF7-72BE136904CF) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Utility Scripts (64-bit) (HKLM&#8230;9E24E01B-CBD8-4558-A56D-6188F1A3C822) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 (64-bit) (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;13ee6ab9-4dca-406c-bc3b-5d86391d39a1) (Version: 3.8.2150.0 &#8211; Python Software Foundation)\nPython 3.8.2 Add to Path (64-bit) (HKLM&#8230;88AF4D20-BE9D-4CA6-8BD4-5DB380A41CC8) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Core Interpreter (64-bit) (HKLM&#8230;AD923240-0ACE-45C9-8749-05BF77AAE101) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Development Libraries (64-bit) (HKLM&#8230;BDFB7011-0AB2-440F-8F00-32AF7A9ED1ED) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Documentation (64-bit) (HKLM&#8230;65B0F976-5151-427E-95B4-2320DC64F91E) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Executables (64-bit) (HKLM&#8230;A36C1168-60E6-42E4-93DB-6BE8C6DD9DD6) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 pip Bootstrap (64-bit) (HKLM&#8230;8EEE042B-6EAF-4171-BA6E-01319ED99DA8) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Standard Library (64-bit) (HKLM&#8230;33F9B46C-EB19-4BB7-ABFA-F8C71B73E9A4) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Tcl/Tk Support (64-bit) (HKLM&#8230;FCA1EB7D-2F62-4659-AA5F-42C37CE5D3CB) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Test Suite (64-bit) (HKLM&#8230;F6DA05CF-67B5-47D0-ABD4-371C80BA0717) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Utility Scripts (64-bit) (HKLM&#8230;52AB506A-EC3C-4060-9EBF-6A975994CB35) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython Launcher (HKLM-x32&#8230;AF12A465-EA47-447D-B6BF-2A82CDBE2F0E) (Version: 3.8.6994.0 &#8211; Python Software Foundation)\nQCAD Trial 3.19.1 (HKLM&#8230;438D0F39-554F-40A4-BA3F-04809892FB96) (Version: 3.19.1 &#8211; RibbonSoft GmbH)\nRanch Rush 2 &#8211; Premium Edition (HKLM-x32&#8230;WTA-7396ad2b-d565-43cb-89bb-20ab60c8fe9f) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nREALTEK Bluetooth Driver (HKLM-x32&#8230;9D3D8C60-A5EF-4123-B2B9-172095903AB) (Version: 1.0.0.46 &#8211; REALTEK Semiconductor Corp.)\nRealtek Card Reader (HKLM-x32&#8230;5BC2B5AB-80DE-4E83-B8CF-426902051D0A) (Version: 6.3.370.68 &#8211; Realtek Semiconductor Corp.)\nRealtek Ethernet Controller Driver (HKLM-x32&#8230;8833FFB6-5B0C-4764-81AA-06DFEED9A476) (Version: 8.37.1119.2014 &#8211; Realtek)\nRealtek High Definition Audio Driver (HKLM-x32&#8230;F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC) (Version: 6.0.1.7457 &#8211; Realtek Semiconductor Corp.)\nREALTEK Wireless LAN Driver (HKLM-x32&#8230;A5107464-AA9B-4177-8129-5FF2F42DD322) (Version: 1.0.0.46 &#8211; REALTEK Semiconductor Corp.)\nRecuva (HKLM&#8230;Recuva) (Version: 1.53 &#8211; Piriform)\nRemoteComms driver (HKLM-x32&#8230;89B4CA50-3F94-451F-B93A-22608DF45FF9) (Version: 1.30.0002 &#8211; PLX Technology)\nRunefall (HKLM-x32&#8230;WTA-7be9cc5b-65c3-4233-9f92-6fbda3316c00) (Version: 3.0.2.126 &#8211; WildTangent) Hidden\nSamsung Kies (HKLM-x32&#8230;758C8301-2696-4855-AF45-534B1200980A) (Version: 2.6.4.17113.1 &#8211; Samsung Electronics Co., Ltd.) Hidden\nSamsung Kies (HKLM-x32&#8230;InstallShield_758C8301-2696-4855-AF45-534B1200980A) (Version: 2.6.4.17113.1 &#8211; Samsung Electronics Co., Ltd.)\nSAMSUNG USB Driver for Mobile Phones (HKLM&#8230;D0795B21-0CDA-4a92-AB9E-6E92D8111E44) (Version: 1.5.51.0 &#8211; SAMSUNG Electronics Co., Ltd.)\nSDK ARM Additions (HKLM-x32&#8230;73681F86-CD86-4208-572F-959B45430B04) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nSDK ARM Redistributables (HKLM-x32&#8230;67EE3804-9642-62BA-EBF1-B1561FB4ECBE) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nService Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32&#8230;90140000-0011-0000-0000-0000000FF1CE_Office14.PROPLUS_DE28B448-32E8-4E8F-84F0-A52B21A49B5B) (Version:  &#8211; Microsoft)\nSHIELD Streaming (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_GFExperience.NvStreamSrv) (Version: 3.1.2000 &#8211; NVIDIA Corporation) Hidden\nSkype versão 8.58 (HKLM-x32&#8230;Skype_is1) (Version: 8.58 &#8211; Skype Technologies S.A.)\nSMath Studio (HKLM-x32&#8230;7003EC5C-E484-4C85-BFCE-8EA508C9B3F0) (Version: 0.98.6179 &#8211; Andrey Ivashov)\nSoftware de Dispositivos Chipset Intel® (HKLM-x32&#8230;e3d22965-5c2d-48c8-acec-c2ba2d50b275) (Version: 10.0.22 &#8211; Intel® Corporation) Hidden\nSoulseekQt (HKLM-x32&#8230;SoulseekQt) (Version:  &#8211; )\nSpotify (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;Spotify) (Version: 1.1.33.569.gced9e0f5 &#8211; Spotify AB)\nSpybot Identity Monitor (HKLM-x32&#8230;DEE2C8BC-083E-48D8-A934-7B547D87E85C_is1) (Version: 3.0 &#8211; Safer-Networking Ltd.)\nSteam (HKLM-x32&#8230;Steam) (Version: 2.10.91.91 &#8211; Valve Corporation)\nswMSM (HKLM-x32&#8230;612C34C7-5E90-47D8-9B5C-0F717DD82726) (Version: 12.0.0.1 &#8211; Adobe Systems, Inc) Hidden\nSynaptics Pointing Device Driver (HKLM&#8230;SynTPDeinstKey) (Version: 18.1.48.54 &#8211; Synaptics Incorporated)\nTelegram Desktop version 1.7.10 (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;53F49750-6209-4FBF-9CA8-7A333C87D1ED_is1) (Version: 1.7.10 &#8211; Telegram Messenger LLP)\nTI Connect™ (HKLM-x32&#8230;D06BA64C-4447-49B4-B99D-E85BEA9E1035) (Version: 4.0.0.218 &#8211; Texas Instruments Inc.)\nTomb Raider Level Editor XP (HKLM-x32&#8230;Tomb Raider Level Editor) (Version:  &#8211; )\nTrinklit Supreme (HKLM-x32&#8230;WTA-c985ff2e-3479-4327-ae3b-b151a4c8a0d4) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nUltData &#8211; Android Data Recovery 5.3.1.4 (HKLM-x32&#8230;UltData &#8211; Android Data Recovery_is1) (Version: 5.3.1.4 &#8211; Tenorshare, Inc.)\nUniversal CRT Extension SDK (HKLM-x32&#8230;13952D7A-B7B3-F4F8-5F29-5CD18E8168B7) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Headers Libraries and Sources (HKLM-x32&#8230;74CBC330-ED16-31B9-E8BE-0C6A8E67DE32) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Redistributable (HKLM-x32&#8230;460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9) (Version: 10.0.26624 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Redistributable (HKLM-x32&#8230;847D4DAF-0182-265B-324F-406462E8A90D) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Tools x64 (HKLM&#8230;54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Tools x86 (HKLM-x32&#8230;9F7B0D96-881D-8850-C303-43F3A08E6902) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal General MIDI DLS Extension SDK (HKLM-x32&#8230;6F54BF87-2EE6-FA6D-431D-33A665992D49) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUpdate Installer for WildTangent Games App (HKLM-x32&#8230;2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2.WildTangent Games App) (Version:  &#8211; WildTangent) Hidden\nUSBPcap 1.2.0.3 (HKLM&#8230;USBPcap) (Version: 1.2.0.3 &#8211; Tomasz Mon)\nvcpp_crt.redist.clickonce (HKLM-x32&#8230;6B25D94A-4B50-45E2-BBD3-54E68700E1BC) (Version: 14.25.28508 &#8211; Microsoft Corporation) Hidden\nVirtualCloneDrive (HKLM-x32&#8230;VirtualCloneDrive) (Version: 5.5.0.0 &#8211; Elaborate Bytes)\nVisual Studio 2012 x64 Redistributables (HKLM&#8230;8C775E70-A791-4DA8-BCC3-6AB7136F4484) (Version: 14.0.0.1 &#8211; AVG Technologies)\nVisual Studio 2012 x86 Redistributables (HKLM-x32&#8230;98EFF19A-30AB-4E4B-B943-F06B1C63EBF8) (Version: 14.0.0.1 &#8211; AVG Technologies CZ, s.r.o.)\nVisual Studio Build Tools 2019 (HKLM-x32&#8230;43108e7a) (Version: 16.5.30002.166 &#8211; Microsoft Corporation)\nvJoy Device Driver 2.1.6.20 (HKLM&#8230;8E31F76F-74C3-47F1-9550-E041EEDC5FBB_is1) (Version: 2.1.6.20 &#8211; Shaul Eizikovich)\nVLC media player (HKLM-x32&#8230;VLC media player) (Version: 3.0.8 &#8211; VideoLAN)\nVMware Player (HKLM&#8230;DDDE2FEC-464C-4D0D-BCBC-9F4B4A06209B) (Version: 15.0.2 &#8211; VMware, Inc.)\nvs_FileTracker_Singleton (HKLM-x32&#8230;692A0FB3-E6A2-4D41-AC03-4136B4312DC0) (Version: 16.3.29209 &#8211; Microsoft Corporation) Hidden\nWedding Dash (HKLM-x32&#8230;WTA-bcbcc6be-1055-406f-90e0-31082ecf66fa) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nWhatsApp (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;WhatsApp) (Version: 0.3.1847 &#8211; WhatsApp)\nWildTangent Games App para HP (HKLM-x32&#8230;70B446D1-E03B-4ab0-9B3C-0832142C9AA8.WildTangent Games App-hp) (Version: 4.0.11.14 &#8211; WildTangent) Hidden\nWinAppDeploy (HKLM-x32&#8230;8E3AE0EF-D067-700C-BDB4-10D5552155DC) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinDjView 2.1 (HKLM&#8230;WinDjView) (Version: 2.1 &#8211; Andrew Zhezherun)\nWindows Driver Package &#8211; Texas Instruments Inc. (SilvrLnk) USB  (06/11/2009 1.0.0.0) (HKLM&#8230;EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 &#8211; Texas Instruments Inc.)\nWindows Driver Package &#8211; Texas Instruments Inc. (TIEHDUSB) USB  (09/02/2009 1.0.0.1) (HKLM&#8230;7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 &#8211; Texas Instruments Inc.)\nWindows SDK AddOn (HKLM-x32&#8230;E6F877A1-2F65-4BF0-87B6-A4071B7663D3) (Version: 10.1.0.0 &#8211; Microsoft Corporation)\nWindows Software Development Kit &#8211; Windows 10.0.18362.1 (HKLM-x32&#8230;126dedf0-cc0e-4b48-9ece-806b0e437195) (Version: 10.1.18362.1 &#8211; Microsoft Corporation)\nWinPcap 4.1.2 (HKLM-x32&#8230;WinPcapInst) (Version: 4.1.0.2001 &#8211; CACE Technologies)\nWinRT Intellisense Desktop &#8211; en-us (HKLM-x32&#8230;E67F1F03-FB4A-3D61-8999-E6A4C4B26F34) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense Desktop &#8211; Other Languages (HKLM-x32&#8230;7EF010FF-7800-28BA-FF49-2D219EC7BA82) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense IoT &#8211; en-us (HKLM-x32&#8230;36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense IoT &#8211; Other Languages (HKLM-x32&#8230;6B03A6A4-643C-57CE-CA6F-4E19BF47497A) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense Mobile &#8211; en-us (HKLM-x32&#8230;918A448F-59E8-FBF5-B087-D3F07160C7E0) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense PPI &#8211; en-us (HKLM-x32&#8230;66483041-F590-EC46-4AF0-EE39C62FB680) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense PPI &#8211; Other Languages (HKLM-x32&#8230;9C61E6D2-C43E-6746-B519-6185558C4A24) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense UAP &#8211; en-us (HKLM-x32&#8230;6B37CC5B-78DF-5050-2215-68479716A587) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense UAP &#8211; Other Languages (HKLM-x32&#8230;250D5341-0879-4016-399C-BBCD87B80E95) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWireshark 3.2.3 64-bit (HKLM-x32&#8230;Wireshark) (Version: 3.2.3 &#8211; The Wireshark developer community, hxxps://www.wireshark.org)\nwkhtmltox 0.12.5-1 (HKLM&#8230;wkhtmltopdf) (Version:  &#8211; )\nWondershare Helper Compact 2.5.3 (HKLM-x32&#8230;5363CE84-5F09-48A1-8B6C-6BB590FFEDF2_is1) (Version: 2.5.3 &#8211; Wondershare)\nWondershare PDFelement 6 Pro(Build 6.3.5) (HKLM-x32&#8230;B026557A-EF19-4812-8A79-B30F94AA0A78_is1) (Version: 6.3.5.2806 &#8211; Wondershare Software Co.,Ltd.)\nWondershare Recoverit(Build 8.5.7.16) (HKLM-x32&#8230;829555DC-31E5-4FEA-B350-8FCF24CECD95_is1) (Version: 8.5.7.16 &#8211; Wondershare Software Co.,Ltd.)\nX Builder Framework 1.05x (HKLM-x32&#8230;X Builder Framework 1.05x) (Version:  &#8211; )\nXArp 2.2.2 (HKLM-x32&#8230;XArp) (Version: 2.2.2 &#8211; Christoph Mayer)\nXBuilder Tag Grid 1.0 (HKLM-x32&#8230;8814F01A-66A3-4A5F-899A-FFEA12633963) (Version: 1.0.18 &#8211; Carrier Corporation)\nYouda Jewel Shop (HKLM-x32&#8230;WTA-0f2ac400-5236-4aa4-a9fa-2d97068ccbc9) (Version: 3.0.2.51 &#8211; WildTangent) Hidden\nZoom (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;ZoomUMX) (Version: 5.0 &#8211; Zoom Video Communications, Inc.)","html":"<p>[PS3]  Save Resigner (HKLM-x32&#8230;[PS3] Save Resigner 2.0.2) (Version: 2.0.2 &#8211; The Prince of Codes)\n[PS3]  Save Resigner (HKLM-x32&#8230;96CF2F0B-EBB0-4D7F-852F-C54A30C8E5CF) (Version: 2.0.2 &#8211; The Prince of Codes) Hidden\nµTorrent (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;uTorrent) (Version: 3.5.5.45505 &#8211; BitTorrent Inc.)\n7-Zip 9.20 (x64 edition) (HKLM&#8230;23170F69-40C1-2702-0920-000001000000) (Version: 9.20.00.0 &#8211; Igor Pavlov)\nA360 Desktop (HKLM&#8230;7758802D-9486-4883-9927-CCAC366A3BA4) (Version: 7.2.3.1800 &#8211; Autodesk)\nACA &amp; MEP 2017 Object Enabler (HKLM&#8230;28B89EEF-0004-0000-5102-CF3F3A09B77D) (Version: 7.9.45.0 &#8211; Autodesk) Hidden\nACAD Private (HKLM&#8230;28B89EEF-0001-0000-3102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nActualizações da NVIDIA 16.13.65 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Update) (Version: 16.13.65 &#8211; NVIDIA Corporation) Hidden\nAdobe Acrobat Reader DC &#8211; Português (HKLM-x32&#8230;AC76BA86-7AD7-1046-7B44-AC0F074E4100) (Version: 20.009.20067 &#8211; Adobe Systems Incorporated)\nAdobe Acrobat XI Pro (HKLM-x32&#8230;AC76BA86-1033-FFFF-7760-000000000006) (Version: 11.0.12 &#8211; Adobe Systems)\nAdobe Flash Player 32 NPAPI (HKLM-x32&#8230;Adobe Flash Player NPAPI) (Version: 32.0.0.371 &#8211; Adobe)\nAdobe Shockwave Player 12.1 (HKLM-x32&#8230;Adobe Shockwave Player) (Version: 12.1.7.157 &#8211; Adobe Systems, Inc.)\nAimersoft Helper Compact 2.5.2 (HKLM-x32&#8230;405147F7-FCC5-499B-A27E-EA6BD4A80435_is1) (Version: 2.5.2 &#8211; Aimersoft)\nAndroid Rom Dumper version 1.3.5 (HKLM-x32&#8230;595D7D79-D70F-4930-A450-BF06B628EE2D_is1) (Version: 1.3.5 &#8211; BoxWares Team)\nAndroid Studio (HKLM&#8230;Android Studio) (Version: 3.6 &#8211; Google LLC)\nAndroid Toolkit 2.0.30 (HKLM-x32&#8230;F9441FCC-1C08-4933-939F-0E8A27D6C0CE_is1) (Version: 2.0.30 &#8211; Apeaksoft Studio)\nAny DGN to DWG Converter 2018 (HKLM-x32&#8230;Any DGN to DWG Converter_is1) (Version:  &#8211; AnyDWG Software, Inc.)\nAny DWF to DWG Converter 2017 (HKLM-x32&#8230;Any DWF to DWG Converter_is1) (Version:  &#8211; AnyDWG Software, Inc.)\nAplicação de ambiente de trabalho Autodesk (HKLM-x32&#8230;Autodesk Desktop App) (Version: 7.0.9.191 &#8211; Autodesk)\nAplicativos da Autodesk em destaque 2016-2017 (HKLM-x32&#8230;27C15055-713B-4D0E-881F-19598A2DFD59) (Version: 2.2.0 &#8211; Autodesk)\nApplication Verifier x64 External Package (HKLM&#8230;10CA1677-8F02-3131-F25C-780BAB52E468) (Version: 10.1.18362.1 &#8211; Microsoft) Hidden\nAssistente de gestor de conteúdo para PlayStation® (HKLM-x32&#8230;E5C1C342-5E78-4D91-85BE-40C716B09391) (Version: 3.55.7671.0901 &#8211; Sony Computer Entertainment Inc.)\nAutoCAD 2017 &#8211; English (HKLM&#8230;28B89EEF-0001-0409-2102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutoCAD 2017 (HKLM&#8230;28B89EEF-0001-0000-0102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutoCAD 2017 Language Pack &#8211; English (HKLM&#8230;28B89EEF-0001-0409-1102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutodesk Advanced Material Library Image Library 2017 (HKLM-x32&#8230;8ED2ED41-4455-449D-993C-751C039089B9) (Version: 15.11.3.0 &#8211; Autodesk)\nAutodesk App Manager 2016-2017 (HKLM-x32&#8230;C0954809-F5DC-426C-847E-8409DE14E4C0) (Version: 2.2.0 &#8211; Autodesk)\nAutodesk AutoCAD 2017 &#8211; English (HKLM&#8230;AutoCAD 2017 &#8211; English) (Version: 21.0.52.0 &#8211; Autodesk)\nAutodesk AutoCAD Performance Feedback Tool 1.2.5 (HKLM-x32&#8230;8600F844-9AA5-412E-B6F2-F9C6CBCFD268) (Version: 1.2.5.0 &#8211; Autodesk)\nAutodesk BIM 360 Glue AutoCAD 2017 Add-in 64 bit (HKLM&#8230;276A67E0-71EB-4827-B5F7-2ACF02BC1A5B) (Version: 4.37.6853 &#8211; Autodesk)\nAutodesk Design Review (HKLM-x32&#8230;139C013B-5BAC-4101-BC6C-B2A78C0125A4) (Version: 14.0.0.177 &#8211; Autodesk) Hidden\nAutodesk Design Review (HKLM-x32&#8230;Autodesk Design Review) (Version: 14.0.0.177 &#8211; Autodesk)\nAutodesk DWG TrueView 2018 &#8211; English (HKLM&#8230;DWG TrueView 2018 &#8211; English) (Version: 22.0.50.0 &#8211; Autodesk)\nAutodesk License Service (x64) &#8211; 3.1 (HKLM&#8230;EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D) (Version: 3.1.26.0 &#8211; Autodesk)\nAutodesk Material Library 2017 (HKLM-x32&#8230;8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE) (Version: 15.11.3.0 &#8211; Autodesk)\nAutodesk Material Library Base Resolution Image Library 2017 (HKLM-x32&#8230;3FBFBC43-9882-43FA-B979-2D53896747B3) (Version: 15.11.3.0 &#8211; Autodesk)\nAutoDWG DWG DXF Converter 2019 (HKLM-x32&#8230;98D8413-1812-41BC-8AD5-2192A80AC23F) (Version:  &#8211; )\nAutoHotkey 1.1.24.01 (HKLM&#8230;AutoHotkey) (Version: 1.1.24.01 &#8211; Lexikos)\nAutopsy (HKLM&#8230;274E8015-93B6-470C-943B-5FDD6E803462) (Version: 4.13.0 &#8211; The Sleuth Kit)\nAvast SecureLine (HKLM&#8230;2CD3C92F-EDC5-4B02-9B0A-9C1D37C58EF5_is1) (Version: 1.0.220.2 &#8211; AVAST Software)\nAVG AntiVirus FREE (HKLM-x32&#8230;AVG Antivirus) (Version: 20.3.3120 &#8211; AVG Technologies)\nAVG TuneUp (HKLM-x32&#8230;949BE04F-D7E8-4C19-9F89-8B304AB4308A_is1) (Version: 19.1.1209 &#8211; AVG Technologies)\nAVG Web TuneUp (HKLM-x32&#8230;AVG Web TuneUp) (Version: 4.3.9.626 &#8211; AVG Technologies)\nBackup and Sync from Google (HKLM&#8230;FE296942-D2D3-4149-8895-60655FE4CFDE) (Version: 3.49.9800.0000 &#8211; Google, Inc.)\nBejeweled 3 (HKLM-x32&#8230;WTA-8fc518d5-0776-414b-8c35-d47a24361589) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nBlueStacks App Player (HKLM&#8230;BlueStacks) (Version: 4.60.3.1001 &#8211; BlueStack Systems, Inc.)\nBonjour (HKLM&#8230;6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D) (Version: 3.0.0.10 &#8211; Apple Inc.)\nBruteforce Save Data (HKLM-x32&#8230;Bruteforce Save Data) (Version:  &#8211; )\nBuild-a-lot (HKLM-x32&#8230;WTA-1122e411-4a7b-46f0-8a81-a325b319b16e) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nBuilding the Great Wall of China Collector&#039;s Edition (HKLM-x32&#8230;WTA-460b63ee-3e7e-405f-8860-c7ef48fb3a7e) (Version: 3.0.2.48 &#8211; WildTangent) Hidden\nCain &amp; Abel 4.9.56 (HKLM-x32&#8230;Cain &amp; Abel 4.9.56) (Version:  &#8211; )\nCCleaner (HKLM&#8230;CCleaner) (Version: 5.55 &#8211; Piriform)\nCisco EAP-FAST Module (HKLM-x32&#8230;64BF0187-F3D2-498B-99EA-163AF9AE6EC9) (Version: 2.2.14 &#8211; Cisco Systems, Inc.)\nCisco LEAP Module (HKLM-x32&#8230;AF312B06-5C5C-468E-89B3-BE6DE2645722) (Version: 1.0.19 &#8211; Cisco Systems, Inc.)\nCisco PEAP Module (HKLM-x32&#8230;A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F) (Version: 1.1.6 &#8211; Cisco Systems, Inc.)\nCrazy Chicken Soccer (HKLM-x32&#8230;WTA-ee1c9a77-df4c-46ab-a6b3-85ad880357a3) (Version: 2.2.0.110 &#8211; WildTangent) Hidden\nCyberLink Media Suite 10 (HKLM-x32&#8230;InstallShield_1FBF6C24-C1fD-4101-A42B-0C564F9E8E79) (Version: 10.0.9.4928 &#8211; CyberLink Corp.)\nCyberlink PhotoDirector (HKLM&#8230;5A454EC5-217A-42a5-8CE1-2DDEC4E70E01) (Version: 5.0.4.6303 &#8211; Nome da empresa:) Hidden\nCyberlink PhotoDirector (HKLM-x32&#8230;InstallShield_5A454EC5-217A-42a5-8CE1-2DDEC4E70E01) (Version: 5.0.4.6303 &#8211; CyberLink Corp.)\nCyberLink Power2Go 8 (HKLM-x32&#8230;InstallShield_2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2) (Version: 8.0.9.5009 &#8211; CyberLink Corp.)\nCyberLink PowerBackup 2.6 (HKLM-x32&#8230;InstallShield_ADD5DB49-72CF-11D8-9D75-000129760D75) (Version: 2.6.2.1307 &#8211; CyberLink Corp.)\nCyberLink PowerDirector 12 (HKLM&#8230;E1646825-D391-42A0-93AA-27FA810DA093) (Version: 12.0.3.3812 &#8211; Nome da empresa:) Hidden\nCyberLink PowerDirector 12 (HKLM-x32&#8230;InstallShield_E1646825-D391-42A0-93AA-27FA810DA093) (Version: 12.0.3.3812 &#8211; CyberLink Corp.)\nCyberLink YouCam (HKLM-x32&#8230;InstallShield_01FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 5.0.6.5011 &#8211; CyberLink Corp.)\nDAEMON Tools Lite (HKLM&#8230;DAEMON Tools Lite) (Version: 10.3.0.0154 &#8211; Disc Soft Ltd)\nDelicious: Emily&#039;s Wonder Wedding Premium Edition (HKLM-x32&#8230;WTA-ab833d9b-3665-402d-b993-c99a471eeb10) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nDesignBuilder (HKLM-x32&#8230;9C306D70-8A6C-11D5-8CDF-00D0B78FC575) (Version: 5.3.0.014 &#8211; DesignBuilder Software Ltd.)\nDIAL Communication Framework (HKLM-x32&#8230;562D0D31-FBAF-4505-8B27-4EC92EEA91D6) (Version: 1.3.2.258 &#8211; DIAL GmbH)\nDIAL Data Dispatcher (HKLM-x32&#8230;DIAL Data Dispatcher1.0) (Version: 2.0.24.0 &#8211; DIAL GmbH)\nDIALux evo (x64) (HKLM-x32&#8230;5FF70775-5D3A-4A26-B9ED-1BF642E9987C) (Version: 5.9.0.49107 &#8211; DIAL GmbH)\nDisableMSDefender (HKLM&#8230;74FE39A0-FB76-47CD-84BA-91E2BBB17EF2) (Version: 1.0.0 &#8211; Hewlett-Packard Company) Hidden\nDiskInternals Partition Recovery (HKLM-x32&#8230;DiskInternals Partition Recovery) (Version: 7.6.2 &#8211; DiskInternals Research)\nDolphin (HKLM-x32&#8230;Dolphin) (Version: 4.0.2 &#8211; Dolphin Development Team)\nDraftSight 2017 SP0 x64 (HKLM&#8230;E78A1C28-8E3C-4CFB-82A4-077E7104F993) (Version: 17.0.2086 &#8211; Dassault Systemes)\nDriver Easy 5.5.5 (HKLM&#8230;DriverEasy_is1) (Version: 5.5.5 &#8211; Easeware)\nDWF to DWG Converter (HKLM-x32&#8230;909F0ECA-1A61-43F3-B2F2-D1A7AE79A444) (Version:  &#8211; )\nDWG TrueView 2018 &#8211; English (HKLM&#8230;28B89EEF-1028-0409-0100-CF3F3A09B77D) (Version: 22.0.50.0 &#8211; Autodesk) Hidden\nEaseUS Data Recovery Wizard (HKLM&#8230;EaseUS Data Recovery Wizard_is1) (Version:  &#8211; EaseUS)\nE-CAT / E20-II Configuration Services 2.21 (HKLM-x32&#8230;E-CAT / E20-II Configuration Services 2.21) (Version:  &#8211; )\nE-CAT Enable 2.11 (HKLM-x32&#8230;E-CAT Enable 2.11) (Version:  &#8211; )\nEnergy Star (HKLM&#8230;465CA2B6-98AF-4E77-BE22-A908C34BB9EC) (Version: 1.0.9 &#8211; Hewlett-Packard Company)\nEPSON Scan (HKLM-x32&#8230;EPSON Scanner) (Version:  &#8211; )\nEvernote v. 5.8.1 (HKLM-x32&#8230;4FD2D1C8-8636-11E4-9D21-00163E98E7D6) (Version: 5.8.1.6061 &#8211; Evernote Corp.)\nFoxit PhantomPDF (HKLM-x32&#8230;4E32271C-B55A-4CDF-8DB7-88FD1C45927C) (Version: 7.0.310.226 &#8211; Foxit Software Inc.)\nGenymotion version 3.1.0 (HKLM&#8230;6D180286-D4DF-40EF-9227-923B9C07C08A_is1) (Version: 3.1.0 &#8211; Genymobile)\nGit version 2.26.0 (HKLM&#8230;Git_is1) (Version: 2.26.0 &#8211; The Git Development Community)\nGoogle Chrome (HKLM-x32&#8230;Google Chrome) (Version: 83.0.4103.97 &#8211; Google LLC)\nGoogle Earth Pro (HKLM&#8230;B6EAFE41-5723-40EB-869B-4AF44CA17B35) (Version: 7.3.3.7699 &#8211; Google)\nGoogle Update Helper (HKLM-x32&#8230;60EC980A-BDA2-4CB6-A427-B07A5498B4CA) (Version: 1.3.35.451 &#8211; Google LLC) Hidden\nGoTo Opener (HKLM-x32&#8230;C0F33C38-345C-4C02-B161-11389350C2A5) (Version: 1.0.533 &#8211; LogMeIn, Inc.)\nGoToMeeting 10.10.1.17956 (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;GoToMeeting) (Version: 10.10.1.17956 &#8211; LogMeIn, Inc.)\nHardlock Device Drivers (HKLM-x32&#8230;Hardlock Device Drivers) (Version:  &#8211; )\nHewlett-Packard ACLM.NET v1.2.2.3 (HKLM-x32&#8230;6F340107-F9AA-47C6-B54C-C3A19F11553F) (Version: 1.00.0000 &#8211; Hewlett-Packard Company) Hidden\nHijack Hunter 1.8.4.1 (HKLM-x32&#8230;616A9B24-448B-4DF3-926A-C4141FCD692C_is1) (Version:  &#8211; NoVirusThanks Company Srl)\nHourly Analysis Program 4.91 (HKLM-x32&#8230;Hourly Analysis Program 4.91) (Version:  &#8211; Carrier Corporation)\nHP 3D DriveGuard (HKLM-x32&#8230;D817481A-193E-4332-A4F3-E19132F744F0) (Version: 6.0.24.1 &#8211; Hewlett-Packard Company)\nHP CoolSense (HKLM-x32&#8230;ADE2F6A7-E7BD-4955-BD66-30903B223DDF) (Version: 2.20.41 &#8211; Hewlett-Packard Company)\nHP Deskjet 3050 J610 series Ajuda (HKLM-x32&#8230;F7632A9B-661E-4FD9-B1A4-3B86BC99847F) (Version: 140.0.63.63 &#8211; Hewlett Packard)\nHP Deskjet 3050 J610 series Estudo de aprimoramento de produtos (HKLM&#8230;A954C7EA-DDD9-4055-BC48-E816F174F397) (Version: 28.0.1315.0 &#8211; Hewlett-Packard Co.)\nHP Deskjet 3050 J610 series Software básico do dispositivo (HKLM&#8230;E6E28DE7-446E-4E27-BE37-4B6D925A385B) (Version: 28.0.1315.0 &#8211; Hewlett-Packard Co.)\nHP Documentation (HKLM-x32&#8230;915AE95A-9009-41DB-9D9D-D57E17AAB48F) (Version: 1.1.0.0 &#8211; Hewlett-Packard)\nHP Photo Creations (HKLM-x32&#8230;HP Photo Creations) (Version: 1.0.0.7702 &#8211; HP)\nHP Registration Service (HKLM&#8230;D1E8F2D7-7794-4245-B286-87ED86C1893C) (Version: 1.2.7960.5089 &#8211; Hewlett-Packard)\nHP SimplePass (HKLM-x32&#8230;InstallShield_314FAD12-F785-4471-BCE8-AB506642B9A1) (Version: 8.01.39 &#8211; Hewlett-Packard)\nHP Support Assistant (HKLM-x32&#8230;E959FD01-BD01-4CC4-9BB8-4EBE8309BF37) (Version: 8.8.26.13 &#8211; HP)\nHP Support Solutions Framework (HKLM-x32&#8230;7463C61B-A36C-47BC-8E16-701EBC34C26F) (Version: 12.16.22.11 &#8211; HP)\nHP System Event Utility (HKLM-x32&#8230;3EDAF5B5-0CA9-4967-B103-FBFF1162C336) (Version: 1.2.10 &#8211; Hewlett-Packard Company)\nHP Update (HKLM-x32&#8230;912D30CF-F39E-4B31-AD9A-123C6B794EE2) (Version: 5.005.002.002 &#8211; Hewlett-Packard)\nHP Wireless Button Driver (HKLM-x32&#8230;30B2D1D8-0A07-4B71-9553-0710C5D31E35) (Version: 1.1.2.1 &#8211; Hewlett-Packard Company)\nHPDiagnosticAlert (HKLM-x32&#8230;B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D) (Version: 1.00.0001 &#8211; Microsoft) Hidden\nHxD Hex Editor 2.3 (HKLM&#8230;HxD_is1) (Version: 2.3 &#8211; Maël Hörz)\nHxD Hex Editor version 1.7.7.0 (HKLM-x32&#8230;HxD Hex Editor_is1) (Version: 1.7.7.0 &#8211; Maël Hörz)\nImgBurn (HKLM-x32&#8230;ImgBurn) (Version: 2.5.8.0 &#8211; LIGHTNING UK!)\nImportação do SketchUp 2016-2017 (HKLM-x32&#8230;63925DB-9D8C-48E2-8F04-1B7038B6C783) (Version: 2.2.0 &#8211; Autodesk)\niMyFone AnyRecover 2.0.0.16 (HKLM-x32&#8230;89DFCC5A-39CC-4AE7-8313-1ED6553E1ADD_is1) (Version: 2.0.0.16 &#8211; Shenzhen iMyFone Technology Co., Ltd.)\nInst5675 (HKLM&#8230;2DE6247C-7077-451B-8BA7-FFD1A2ABBB47) (Version: 8.01.39 &#8211; Softex Inc.) Hidden\nInst5676 (HKLM&#8230;878F6913-7421-4713-97F7-0A736EE2A188) (Version: 8.01.39 &#8211; Softex Inc.) Hidden\nIntel Collaborative Processor Performance Control (HKLM-x32&#8230;E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1018 &#8211; Intel Corporation)\nIntel® Dynamic Platform and Thermal Framework (HKLM-x32&#8230;654EE65D-FAA4-4EA6-8C07-DC94E6A304D4) (Version: 8.0.10100.71 &#8211; Intel Corporation)\nIntel® Management Engine Components (HKLM&#8230;1CEAC85D-2590-4760-800F-8DE5E91F3700) (Version: 10.0.31.1000 &#8211; Intel Corporation)\nIntel® Processor Graphics (HKLM-x32&#8230;F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA) (Version: 10.18.14.4139 &#8211; Intel Corporation)\nIntel® Rapid Storage Technology (HKLM&#8230;409CB30E-E457-4008-9B1A-ED1B9EA21140) (Version: 14.5.2.1088 &#8211; Intel Corporation)\nIntel® Hardware Accelerated Execution Manager (HKLM&#8230;754CC9DC-3DB4-4FB2-B71E-87331DB9EA17) (Version: 7.5.4 &#8211; Intel Corporation)\nIomega Encryption (HKLM&#8230;634B56F2-09FF-407B-B9FB-3611DDC52773) (Version: 1.03.0003 &#8211; Iomega an EMC Company)\nIomega Encryption 3.1.0 (HKLM&#8230;2A5534DE-30C7-429C-976A-132E89549180) (Version: 3.1.0 &#8211; Iomega)\nIRS &#8211; Modelo 3 Impressos 2016 (HKLM&#8230;pt.at.DM3IRSCLIv2016) (Version: 2016.2.1.0124 &#8211; AT)\niTube Studio(Build 7.4.7.3) (HKLM-x32&#8230;iTube Studio_is1) (Version: 7.4.7.3 &#8211; iTube Studio)\nJava 8 Update 241 (64-bit) (HKLM&#8230;26A24AE4-039D-4CA4-87B4-2F64180241F0) (Version: 8.0.2410.7 &#8211; Oracle Corporation)\nJava™ SE Development Kit 14 (64-bit) (HKLM&#8230;3552AC04-4EFC-51F1-AA92-9D1A99E02C95) (Version: 14.0.0.0 &#8211; Oracle Corporation)\nJetBrains PyCharm Community Edition 2018.2.1 (HKLM-x32&#8230;PyCharm Community Edition 2018.2.1) (Version: 182.3911.33 &#8211; JetBrains s.r.o.)\nJewel Match 3 (HKLM-x32&#8230;WTA-fced6a73-fdd6-4324-9ec6-d4a9ddcc449c) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nJill of the Jungle (HKLM-x32&#8230;1129701343_is1) (Version: 1.0 CS &#8211; GOG.com)\nJogos da WildTangent (HKLM-x32&#8230;WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 &#8211; WildTangent)\nJumpstart Installation Program (HKLM-x32&#8230;B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13) (Version:  &#8211; Atheros)\nKits Configuration Installer (HKLM-x32&#8230;63AAA877-5536-9481-2385-28A082100D78) (Version: 10.1.18362.1 &#8211; Microsoft) Hidden\nLAV Filters 0.74.1 (HKLM-x32&#8230;lavfilters_is1) (Version: 0.74.1 &#8211; Hendrik Leppkes)\nLizardTech ExpressView Browser Plug-in (HKLM-x32&#8230;4EFFB6FD-C0D3-43AF-AABB-BC0DCDBF2F34) (Version: 6.5.1 &#8211; LizardTech)\nLocal_Monitor 4.1 (HKLM-x32&#8230;DED1CF45-A68B-40A9-AF54-7447D6D0CFDD_is1) (Version:  &#8211; Insecuritynet, Inc.)\nMagic ISO Maker v5.5 (build 0281) (HKLM-x32&#8230;Magic ISO Maker v5.5 (build 0281)) (Version:  &#8211; )\nMalwarebytes version 4.1.0.56 (HKLM&#8230;35065F43-4BB2-439A-BFF7-0F1014F2E0CD_is1) (Version: 4.1.0.56 &#8211; Malwarebytes)\nMEGAsync (HKLM-x32&#8230;MEGAsync) (Version:  &#8211; Mega Limited)\nMicrosoft .NET Core SDK 3.1.201 (x64) (HKLM-x32&#8230;5e0a0ca7-8d37-4573-8d5b-03416809a484) (Version: 3.1.201.15034 &#8211; Microsoft Corporation)\nMicrosoft Office (HKLM-x32&#8230;90150000-0138-0409-0000-0000000FF1CE) (Version: 15.0.4641.1005 &#8211; Microsoft Corporation)\nMicrosoft Office Professional Plus 2010 (HKLM-x32&#8230;Office14.PROPLUS) (Version: 14.0.7015.1000 &#8211; Microsoft Corporation)\nMicrosoft Silverlight (HKLM&#8230;89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50907.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;837b34e3-7c30-493c-8f6a-2b0f04e2912c) (Version: 8.0.59193 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17 (HKLM&#8230;8220EEFE-38CD-377E-8595-13398D740ACE) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.4148 (HKLM&#8230;4B6C7001-C7D6-3710-913E-5BC23FCE91E6) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17 (HKLM-x32&#8230;9A25302D-30C0-39D9-BD6F-21E6EC160475) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148 (HKLM-x32&#8230;1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161 (HKLM-x32&#8230;9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x64 Redistributable &#8211; 10.0.40219 (HKLM&#8230;1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x86 Redistributable &#8211; 10.0.40219 (HKLM-x32&#8230;F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x64) &#8211; 11.0.61030 (HKLM-x32&#8230;ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x86) &#8211; 11.0.61030 (HKLM-x32&#8230;33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x64) &#8211; 12.0.30501 (HKLM-x32&#8230;50d4fc8-5d48-4b8f-8972-47c82c46020f) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x86) &#8211; 12.0.30501 (HKLM-x32&#8230;f65db027-aff3-4070-886a-0d87064aabb1) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015-2019 Redistributable (x64) &#8211; 14.25.28508 (HKLM-x32&#8230;6913e92a-b64e-41c9-a5e6-cef39207fe89) (Version: 14.25.28508.3 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015-2019 Redistributable (x86) &#8211; 14.25.28508 (HKLM-x32&#8230;65e650ff-30be-469d-b63a-418d71ea1765) (Version: 14.25.28508.3 &#8211; Microsoft Corporation)\nMicrosoft Visual F# 2.0 Runtime (HKLM-x32&#8230;729A3000-BC8A-3B74-BA5D-5068FE12D70C) (Version: 10.0.30319 &#8211; Microsoft Corporation)\nMicrosoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM&#8230;Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.60724 &#8211; Microsoft Corporation)\nMicrosoft Visual Studio Installer (HKLM&#8230;6F320B93-EE3C-4826-85E0-ADF79F8D4C61) (Version: 2.5.2059.317 &#8211; Microsoft Corporation)\nMiniTool Power Data Recovery 8.8 (HKLM&#8230;E1BCD081-4BF4-4E2F-832A-911EC42EF3C5_is1) (Version: 8.8 &#8211; MiniTool Software Limited)\nMozilla Firefox 77.0.1 (x64 pt-PT) (HKLM&#8230;Mozilla Firefox 77.0.1 (x64 pt-PT)) (Version: 77.0.1 &#8211; Mozilla)\nMozilla Maintenance Service (HKLM-x32&#8230;MozillaMaintenanceService) (Version: 77.0.1.7458 &#8211; Mozilla)\nMSI Development Tools (HKLM-x32&#8230;DB4DB790-64DD-1902-4BF2-833B3B6DBCA1) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nNmap 7.80 (HKLM-x32&#8230;Nmap) (Version: 7.80 &#8211; Nmap Project)\nNoVirusThanks Anti-Rootkit (Free Edition) v1.2 (HKLM-x32&#8230;NoVirusThanks Anti-Rootkit (Free Edition)_is1) (Version: 1.2.0.0 &#8211; NoVirusThanks Company Srl)\nNpcap 0.9982 (HKLM-x32&#8230;NpcapInst) (Version: 0.9982 &#8211; Nmap Project)\nNVIDIA Controlador gráfico 347.26 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Driver) (Version: 347.26 &#8211; NVIDIA Corporation)\nNVIDIA GeForce Experience 2.1.4 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.GFExperience) (Version: 2.1.4 &#8211; NVIDIA Corporation)\nNVIDIA O software do sistema PhysX 9.14.0702 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.PhysX) (Version: 9.14.0702 &#8211; NVIDIA Corporation)\nOpenSSL 1.1.1f Light (64-bit) (HKLM&#8230;OpenSSL Light (64-bit)_is1) (Version:  &#8211; OpenSSL Win64 Installer Team)\nOracle VM VirtualBox 6.0.4 (HKLM&#8230;79366295-CD6A-4467-9901-4A7DFCF90F40) (Version: 6.0.4 &#8211; Oracle Corporation)\nOSRAM Lamp PlugIn 1.8.3.1 (HKLM-x32&#8230;567EA4E4-B799-4F1C-BFE0-D0381BD8651A) (Version: 1.83.1000 &#8211; OSRAM)\nPainel de controlo da NVIDIA 347.26 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.ControlPanel) (Version: 347.26 &#8211; NVIDIA Corporation) Hidden\nPanda Cloud Cleaner (HKLM-x32&#8230;92B2B132-C7F0-43DC-921A-4493C04F78A4_is1) (Version: 1.1.10 &#8211; Panda Security)\nPEStudio (HKLM-x32&#8230;PEStudio) (Version: 1.0.0.27 &#8211; Elcontrol Enegy Net SpA)\nPhilips Product Selector 5.2.12.2 (HKLM-x32&#8230;81AD9228-21AC-4DBD-AE33-98146A88BAA8) (Version: 5.2.12.2 &#8211; Signify) Hidden\nPhilips Product Selector 5.2.12.2 (HKLM-x32&#8230;InstallShield_81AD9228-21AC-4DBD-AE33-98146A88BAA8) (Version: 5.2.12.2 &#8211; Signify)\nplugin Autenticação.Gov (HKLM-x32&#8230;DA5C6D6B-C160-4732-9A6D-CB0B58387A84) (Version: 2.0.46 &#8211; Agência para a Modernização Administrativa)\nPolar Bowler 1st Frame (HKLM-x32&#8230;WTA-7427884d-05c8-4a08-baa0-d130eb2faeef) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nPPS max plugin 1.7.0 (HKLM-x32&#8230;PPS max plugin_is1) (Version: 1.7.0.0 &#8211; Tree C Technology B.V.)\nProject64 1.6 (HKLM-x32&#8230;9559F7CA-5E34-4237-A2D9-D856464AD727) (Version: 1.6 &#8211; Project64)\nProtonVPN (HKLM-x32&#8230;6766D7C7-E034-49EA-82AC-0FE614B7F1DF) (Version: 1.13.3 &#8211; Proton Technologies AG) Hidden\nProtonVPN (HKLM-x32&#8230;ProtonVPN 1.13.3) (Version: 1.13.3 &#8211; Proton Technologies AG)\nPython 3.7.0 (64-bit) (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;f684de81-73c2-4924-ad43-e7ae400d47b5) (Version: 3.7.150.0 &#8211; Python Software Foundation)\nPython 3.7.0 Core Interpreter (64-bit) (HKLM&#8230;F046BD5A-33F4-4ABA-BD2D-0227F6291EC9) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Development Libraries (64-bit) (HKLM&#8230;61246987-8D99-44A9-8FF5-E2E3F503B72D) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Documentation (64-bit) (HKLM&#8230;E7C56E72-C80E-453B-9345-FAEAE5DB51A4) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Executables (64-bit) (HKLM&#8230;84B7971A-F59F-4247-AD34-BEC02CF85FBD) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 pip Bootstrap (64-bit) (HKLM&#8230;8A6F7991-1955-4C46-8C0C-8D7C6F7042FA) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Standard Library (64-bit) (HKLM&#8230;18D93BBC-06F6-449D-96FB-CD473CFC6A6D) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Tcl/Tk Support (64-bit) (HKLM&#8230;A2FC01E0-059E-4D21-AFD2-B63A7E1EF3CD) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Test Suite (64-bit) (HKLM&#8230;E4266358-1C9B-4AF0-ABF7-72BE136904CF) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Utility Scripts (64-bit) (HKLM&#8230;9E24E01B-CBD8-4558-A56D-6188F1A3C822) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 (64-bit) (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;13ee6ab9-4dca-406c-bc3b-5d86391d39a1) (Version: 3.8.2150.0 &#8211; Python Software Foundation)\nPython 3.8.2 Add to Path (64-bit) (HKLM&#8230;88AF4D20-BE9D-4CA6-8BD4-5DB380A41CC8) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Core Interpreter (64-bit) (HKLM&#8230;AD923240-0ACE-45C9-8749-05BF77AAE101) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Development Libraries (64-bit) (HKLM&#8230;BDFB7011-0AB2-440F-8F00-32AF7A9ED1ED) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Documentation (64-bit) (HKLM&#8230;65B0F976-5151-427E-95B4-2320DC64F91E) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Executables (64-bit) (HKLM&#8230;A36C1168-60E6-42E4-93DB-6BE8C6DD9DD6) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 pip Bootstrap (64-bit) (HKLM&#8230;8EEE042B-6EAF-4171-BA6E-01319ED99DA8) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Standard Library (64-bit) (HKLM&#8230;33F9B46C-EB19-4BB7-ABFA-F8C71B73E9A4) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Tcl/Tk Support (64-bit) (HKLM&#8230;FCA1EB7D-2F62-4659-AA5F-42C37CE5D3CB) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Test Suite (64-bit) (HKLM&#8230;F6DA05CF-67B5-47D0-ABD4-371C80BA0717) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Utility Scripts (64-bit) (HKLM&#8230;52AB506A-EC3C-4060-9EBF-6A975994CB35) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython Launcher (HKLM-x32&#8230;AF12A465-EA47-447D-B6BF-2A82CDBE2F0E) (Version: 3.8.6994.0 &#8211; Python Software Foundation)\nQCAD Trial 3.19.1 (HKLM&#8230;438D0F39-554F-40A4-BA3F-04809892FB96) (Version: 3.19.1 &#8211; RibbonSoft GmbH)\nRanch Rush 2 &#8211; Premium Edition (HKLM-x32&#8230;WTA-7396ad2b-d565-43cb-89bb-20ab60c8fe9f) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nREALTEK Bluetooth Driver (HKLM-x32&#8230;9D3D8C60-A5EF-4123-B2B9-172095903AB) (Version: 1.0.0.46 &#8211; REALTEK Semiconductor Corp.)\nRealtek Card Reader (HKLM-x32&#8230;5BC2B5AB-80DE-4E83-B8CF-426902051D0A) (Version: 6.3.370.68 &#8211; Realtek Semiconductor Corp.)\nRealtek Ethernet Controller Driver (HKLM-x32&#8230;8833FFB6-5B0C-4764-81AA-06DFEED9A476) (Version: 8.37.1119.2014 &#8211; Realtek)\nRealtek High Definition Audio Driver (HKLM-x32&#8230;F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC) (Version: 6.0.1.7457 &#8211; Realtek Semiconductor Corp.)\nREALTEK Wireless LAN Driver (HKLM-x32&#8230;A5107464-AA9B-4177-8129-5FF2F42DD322) (Version: 1.0.0.46 &#8211; REALTEK Semiconductor Corp.)\nRecuva (HKLM&#8230;Recuva) (Version: 1.53 &#8211; Piriform)\nRemoteComms driver (HKLM-x32&#8230;89B4CA50-3F94-451F-B93A-22608DF45FF9) (Version: 1.30.0002 &#8211; PLX Technology)\nRunefall (HKLM-x32&#8230;WTA-7be9cc5b-65c3-4233-9f92-6fbda3316c00) (Version: 3.0.2.126 &#8211; WildTangent) Hidden\nSamsung Kies (HKLM-x32&#8230;758C8301-2696-4855-AF45-534B1200980A) (Version: 2.6.4.17113.1 &#8211; Samsung Electronics Co., Ltd.) Hidden\nSamsung Kies (HKLM-x32&#8230;InstallShield_758C8301-2696-4855-AF45-534B1200980A) (Version: 2.6.4.17113.1 &#8211; Samsung Electronics Co., Ltd.)\nSAMSUNG USB Driver for Mobile Phones (HKLM&#8230;D0795B21-0CDA-4a92-AB9E-6E92D8111E44) (Version: 1.5.51.0 &#8211; SAMSUNG Electronics Co., Ltd.)\nSDK ARM Additions (HKLM-x32&#8230;73681F86-CD86-4208-572F-959B45430B04) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nSDK ARM Redistributables (HKLM-x32&#8230;67EE3804-9642-62BA-EBF1-B1561FB4ECBE) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nService Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32&#8230;90140000-0011-0000-0000-0000000FF1CE_Office14.PROPLUS_DE28B448-32E8-4E8F-84F0-A52B21A49B5B) (Version:  &#8211; Microsoft)\nSHIELD Streaming (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_GFExperience.NvStreamSrv) (Version: 3.1.2000 &#8211; NVIDIA Corporation) Hidden\nSkype versão 8.58 (HKLM-x32&#8230;Skype_is1) (Version: 8.58 &#8211; Skype Technologies S.A.)\nSMath Studio (HKLM-x32&#8230;7003EC5C-E484-4C85-BFCE-8EA508C9B3F0) (Version: 0.98.6179 &#8211; Andrey Ivashov)\nSoftware de Dispositivos Chipset Intel® (HKLM-x32&#8230;e3d22965-5c2d-48c8-acec-c2ba2d50b275) (Version: 10.0.22 &#8211; Intel® Corporation) Hidden\nSoulseekQt (HKLM-x32&#8230;SoulseekQt) (Version:  &#8211; )\nSpotify (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;Spotify) (Version: 1.1.33.569.gced9e0f5 &#8211; Spotify AB)\nSpybot Identity Monitor (HKLM-x32&#8230;DEE2C8BC-083E-48D8-A934-7B547D87E85C_is1) (Version: 3.0 &#8211; Safer-Networking Ltd.)\nSteam (HKLM-x32&#8230;Steam) (Version: 2.10.91.91 &#8211; Valve Corporation)\nswMSM (HKLM-x32&#8230;612C34C7-5E90-47D8-9B5C-0F717DD82726) (Version: 12.0.0.1 &#8211; Adobe Systems, Inc) Hidden\nSynaptics Pointing Device Driver (HKLM&#8230;SynTPDeinstKey) (Version: 18.1.48.54 &#8211; Synaptics Incorporated)\nTelegram Desktop version 1.7.10 (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;53F49750-6209-4FBF-9CA8-7A333C87D1ED_is1) (Version: 1.7.10 &#8211; Telegram Messenger LLP)\nTI Connect™ (HKLM-x32&#8230;D06BA64C-4447-49B4-B99D-E85BEA9E1035) (Version: 4.0.0.218 &#8211; Texas Instruments Inc.)\nTomb Raider Level Editor XP (HKLM-x32&#8230;Tomb Raider Level Editor) (Version:  &#8211; )\nTrinklit Supreme (HKLM-x32&#8230;WTA-c985ff2e-3479-4327-ae3b-b151a4c8a0d4) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nUltData &#8211; Android Data Recovery 5.3.1.4 (HKLM-x32&#8230;UltData &#8211; Android Data Recovery_is1) (Version: 5.3.1.4 &#8211; Tenorshare, Inc.)\nUniversal CRT Extension SDK (HKLM-x32&#8230;13952D7A-B7B3-F4F8-5F29-5CD18E8168B7) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Headers Libraries and Sources (HKLM-x32&#8230;74CBC330-ED16-31B9-E8BE-0C6A8E67DE32) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Redistributable (HKLM-x32&#8230;460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9) (Version: 10.0.26624 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Redistributable (HKLM-x32&#8230;847D4DAF-0182-265B-324F-406462E8A90D) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Tools x64 (HKLM&#8230;54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Tools x86 (HKLM-x32&#8230;9F7B0D96-881D-8850-C303-43F3A08E6902) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal General MIDI DLS Extension SDK (HKLM-x32&#8230;6F54BF87-2EE6-FA6D-431D-33A665992D49) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUpdate Installer for WildTangent Games App (HKLM-x32&#8230;2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2.WildTangent Games App) (Version:  &#8211; WildTangent) Hidden\nUSBPcap 1.2.0.3 (HKLM&#8230;USBPcap) (Version: 1.2.0.3 &#8211; Tomasz Mon)\nvcpp_crt.redist.clickonce (HKLM-x32&#8230;6B25D94A-4B50-45E2-BBD3-54E68700E1BC) (Version: 14.25.28508 &#8211; Microsoft Corporation) Hidden\nVirtualCloneDrive (HKLM-x32&#8230;VirtualCloneDrive) (Version: 5.5.0.0 &#8211; Elaborate Bytes)\nVisual Studio 2012 x64 Redistributables (HKLM&#8230;8C775E70-A791-4DA8-BCC3-6AB7136F4484) (Version: 14.0.0.1 &#8211; AVG Technologies)\nVisual Studio 2012 x86 Redistributables (HKLM-x32&#8230;98EFF19A-30AB-4E4B-B943-F06B1C63EBF8) (Version: 14.0.0.1 &#8211; AVG Technologies CZ, s.r.o.)\nVisual Studio Build Tools 2019 (HKLM-x32&#8230;43108e7a) (Version: 16.5.30002.166 &#8211; Microsoft Corporation)\nvJoy Device Driver 2.1.6.20 (HKLM&#8230;8E31F76F-74C3-47F1-9550-E041EEDC5FBB_is1) (Version: 2.1.6.20 &#8211; Shaul Eizikovich)\nVLC media player (HKLM-x32&#8230;VLC media player) (Version: 3.0.8 &#8211; VideoLAN)\nVMware Player (HKLM&#8230;DDDE2FEC-464C-4D0D-BCBC-9F4B4A06209B) (Version: 15.0.2 &#8211; VMware, Inc.)\nvs_FileTracker_Singleton (HKLM-x32&#8230;692A0FB3-E6A2-4D41-AC03-4136B4312DC0) (Version: 16.3.29209 &#8211; Microsoft Corporation) Hidden\nWedding Dash (HKLM-x32&#8230;WTA-bcbcc6be-1055-406f-90e0-31082ecf66fa) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nWhatsApp (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;WhatsApp) (Version: 0.3.1847 &#8211; WhatsApp)\nWildTangent Games App para HP (HKLM-x32&#8230;70B446D1-E03B-4ab0-9B3C-0832142C9AA8.WildTangent Games App-hp) (Version: 4.0.11.14 &#8211; WildTangent) Hidden\nWinAppDeploy (HKLM-x32&#8230;8E3AE0EF-D067-700C-BDB4-10D5552155DC) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinDjView 2.1 (HKLM&#8230;WinDjView) (Version: 2.1 &#8211; Andrew Zhezherun)\nWindows Driver Package &#8211; Texas Instruments Inc. (SilvrLnk) USB  (06/11/2009 1.0.0.0) (HKLM&#8230;EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 &#8211; Texas Instruments Inc.)\nWindows Driver Package &#8211; Texas Instruments Inc. (TIEHDUSB) USB  (09/02/2009 1.0.0.1) (HKLM&#8230;7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 &#8211; Texas Instruments Inc.)\nWindows SDK AddOn (HKLM-x32&#8230;E6F877A1-2F65-4BF0-87B6-A4071B7663D3) (Version: 10.1.0.0 &#8211; Microsoft Corporation)\nWindows Software Development Kit &#8211; Windows 10.0.18362.1 (HKLM-x32&#8230;126dedf0-cc0e-4b48-9ece-806b0e437195) (Version: 10.1.18362.1 &#8211; Microsoft Corporation)\nWinPcap 4.1.2 (HKLM-x32&#8230;WinPcapInst) (Version: 4.1.0.2001 &#8211; CACE Technologies)\nWinRT Intellisense Desktop &#8211; en-us (HKLM-x32&#8230;E67F1F03-FB4A-3D61-8999-E6A4C4B26F34) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense Desktop &#8211; Other Languages (HKLM-x32&#8230;7EF010FF-7800-28BA-FF49-2D219EC7BA82) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense IoT &#8211; en-us (HKLM-x32&#8230;36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense IoT &#8211; Other Languages (HKLM-x32&#8230;6B03A6A4-643C-57CE-CA6F-4E19BF47497A) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense Mobile &#8211; en-us (HKLM-x32&#8230;918A448F-59E8-FBF5-B087-D3F07160C7E0) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense PPI &#8211; en-us (HKLM-x32&#8230;66483041-F590-EC46-4AF0-EE39C62FB680) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense PPI &#8211; Other Languages (HKLM-x32&#8230;9C61E6D2-C43E-6746-B519-6185558C4A24) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense UAP &#8211; en-us (HKLM-x32&#8230;6B37CC5B-78DF-5050-2215-68479716A587) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense UAP &#8211; Other Languages (HKLM-x32&#8230;250D5341-0879-4016-399C-BBCD87B80E95) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWireshark 3.2.3 64-bit (HKLM-x32&#8230;Wireshark) (Version: 3.2.3 &#8211; The Wireshark developer community, hxxps://www.wireshark.org)\nwkhtmltox 0.12.5-1 (HKLM&#8230;wkhtmltopdf) (Version:  &#8211; )\nWondershare Helper Compact 2.5.3 (HKLM-x32&#8230;5363CE84-5F09-48A1-8B6C-6BB590FFEDF2_is1) (Version: 2.5.3 &#8211; Wondershare)\nWondershare PDFelement 6 Pro(Build 6.3.5) (HKLM-x32&#8230;B026557A-EF19-4812-8A79-B30F94AA0A78_is1) (Version: 6.3.5.2806 &#8211; Wondershare Software Co.,Ltd.)\nWondershare Recoverit(Build 8.5.7.16) (HKLM-x32&#8230;829555DC-31E5-4FEA-B350-8FCF24CECD95_is1) (Version: 8.5.7.16 &#8211; Wondershare Software Co.,Ltd.)\nX Builder Framework 1.05x (HKLM-x32&#8230;X Builder Framework 1.05x) (Version:  &#8211; )\nXArp 2.2.2 (HKLM-x32&#8230;XArp) (Version: 2.2.2 &#8211; Christoph Mayer)\nXBuilder Tag Grid 1.0 (HKLM-x32&#8230;8814F01A-66A3-4A5F-899A-FFEA12633963) (Version: 1.0.18 &#8211; Carrier Corporation)\nYouda Jewel Shop (HKLM-x32&#8230;WTA-0f2ac400-5236-4aa4-a9fa-2d97068ccbc9) (Version: 3.0.2.51 &#8211; WildTangent) Hidden\nZoom (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;ZoomUMX) (Version: 5.0 &#8211; Zoom Video Communications, Inc.)</p>"},{"id":"text-48","type":"text","heading":"","plain_text":"Packages:\n=========\n&#8211; Games App &#8211; -&gt; C:Program FilesWindowsAppsWildTangentGames.-GamesApp-_1.0.3.28_x86__qt5r5pa5dyg8m [2016-03-29] (WildTangent Games)\nGuia de introdução ao Windows 8 -&gt; C:Program FilesWindowsAppsAD2F1837.GettingStartedwithWindows8_1.6.0.0_neutral__v10z8vjag6ke6 [2016-03-29] (Hewlett-Packard Company)\nHP All-in-One Printer Remote -&gt; C:Program FilesWindowsAppsAD2F1837.HPPrinterControl_55.1.43.0_x86__v10z8vjag6ke6 [2016-04-18] (Hewlett-Packard Company)\nHP Connected Music -&gt; C:Program FilesWindowsAppsAD2F1837.HPConnectedMusic_1.5.0.253_x86__v10z8vjag6ke6 [2016-03-29] (Hewlett-Packard Company)\nHP Registration -&gt; C:Program FilesWindowsAppsAD2F1837.HPRegistration_1.2.1.166_neutral__v10z8vjag6ke6 [2015-06-04] (Hewlett-Packard Company)\nJogos -&gt; C:Program FilesWindowsAppsMicrosoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2015-06-04] (Microsoft Corporation) [MS Ad]\nKYOCERA Print Center -&gt; C:Program FilesWindowsAppsA97ECD55.KYOCERAPrintCenter_1.7.11126.0_x86__kqmhh0ktdt7dg [2019-12-05] (KYOCERA Document Solutions Inc)\nMcAfee® Central for HP -&gt; C:Program FilesWindowsApps2703103D.McAfeeCentral_5.0.177.1_x64__4ehj4w4frejdr [2018-04-02] (.-McAfee Inc-.)\nMicrosoft Mahjong -&gt; C:Program FilesWindowsAppsMicrosoft.MicrosoftMahjong_2.10.1812.2002_x86__8wekyb3d8bbwe [2019-02-04] (Microsoft Studios) [MS Ad]\nMSN Desporto -&gt; C:Program FilesWindowsAppsMicrosoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2016-04-29] (Microsoft Corporation) [MS Ad]\nMSN Finanças -&gt; C:Program FilesWindowsAppsMicrosoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-28] (Microsoft Corporation) [MS Ad]\nMSN Meteorologia -&gt; C:Program FilesWindowsAppsMicrosoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2016-11-23] (Microsoft Corporation) [MS Ad]\nMSN Notícias -&gt; C:Program FilesWindowsAppsMicrosoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-28] (Microsoft Corporation) [MS Ad]\nMSN Receitas -&gt; C:Program FilesWindowsAppsMicrosoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMSN Saúde e Bem-Estar -&gt; C:Program FilesWindowsAppsMicrosoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMSN Viagens -&gt; C:Program FilesWindowsAppsMicrosoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMúsica -&gt; C:Program FilesWindowsAppsMicrosoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nmysms &#8211; Text from Computer, Messaging -&gt; C:Program FilesWindowsAppsUptoElevenDigitalSolution.mysms-Textanywhere_2.8.0.0_x64__c9d6r4qvva5x8 [2016-03-29] (Up to Eleven Digital Solutions GmbH)\nPaciência -&gt; C:Program FilesWindowsApps26720RandomSaladGamesLLC.SimpleSolitaire_5.4.0.40_x64__kx24dqmazqk8j [2016-12-15] (Random Salad Games LLC) [MS Ad]\nSidekick Private Browser -&gt; C:Program FilesWindowsAppsSaferWebSoftware.SidekickWeb_1.1.0.7_neutral__aad3gkxz4ewf0 [2020-05-18] (SaferWeb Software)\nSkype -&gt; C:Program FilesWindowsAppsMicrosoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2016-03-29] (Skype) [MS Ad]\nSnapfish -&gt; C:Program FilesWindowsAppsAD2F1837.HPConnectedPhotopoweredbySnapfish_5.5.0.8_x86__v10z8vjag6ke6 [2016-05-04] (HP Inc.)\nThe Weather Channel for HP -&gt; C:Program FilesWindowsAppsWeather.TheWeatherChannelforHP_2.1.20.0_x64__t3yemqpq4kp7p [2016-03-29] (The Weather Channel.)\nTradutor -&gt; C:Program FilesWindowsAppsMicrosoft.BingTranslator_1.18.3.0_x64__8wekyb3d8bbwe [2017-04-07] (Microsoft Corporation)\nTripAdvisor Hotels Flights Restaurants -&gt; C:Program FilesWindowsAppsTripAdvisorLLC.TripAdvisorHotelsFlightsRestaurants_1.2.0.24_neutral__qj0v5chwq8f2g [2015-06-04] (TripAdvisor LLC)\nVídeo -&gt; C:Program FilesWindowsAppsMicrosoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]","html":"<p>Packages:\n=========\n&#8211; Games App &#8211; -&gt; C:Program FilesWindowsAppsWildTangentGames.-GamesApp-_1.0.3.28_x86__qt5r5pa5dyg8m [2016-03-29] (WildTangent Games)\nGuia de introdução ao Windows 8 -&gt; C:Program FilesWindowsAppsAD2F1837.GettingStartedwithWindows8_1.6.0.0_neutral__v10z8vjag6ke6 [2016-03-29] (Hewlett-Packard Company)\nHP All-in-One Printer Remote -&gt; C:Program FilesWindowsAppsAD2F1837.HPPrinterControl_55.1.43.0_x86__v10z8vjag6ke6 [2016-04-18] (Hewlett-Packard Company)\nHP Connected Music -&gt; C:Program FilesWindowsAppsAD2F1837.HPConnectedMusic_1.5.0.253_x86__v10z8vjag6ke6 [2016-03-29] (Hewlett-Packard Company)\nHP Registration -&gt; C:Program FilesWindowsAppsAD2F1837.HPRegistration_1.2.1.166_neutral__v10z8vjag6ke6 [2015-06-04] (Hewlett-Packard Company)\nJogos -&gt; C:Program FilesWindowsAppsMicrosoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2015-06-04] (Microsoft Corporation) [MS Ad]\nKYOCERA Print Center -&gt; C:Program FilesWindowsAppsA97ECD55.KYOCERAPrintCenter_1.7.11126.0_x86__kqmhh0ktdt7dg [2019-12-05] (KYOCERA Document Solutions Inc)\nMcAfee® Central for HP -&gt; C:Program FilesWindowsApps2703103D.McAfeeCentral_5.0.177.1_x64__4ehj4w4frejdr [2018-04-02] (.-McAfee Inc-.)\nMicrosoft Mahjong -&gt; C:Program FilesWindowsAppsMicrosoft.MicrosoftMahjong_2.10.1812.2002_x86__8wekyb3d8bbwe [2019-02-04] (Microsoft Studios) [MS Ad]\nMSN Desporto -&gt; C:Program FilesWindowsAppsMicrosoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2016-04-29] (Microsoft Corporation) [MS Ad]\nMSN Finanças -&gt; C:Program FilesWindowsAppsMicrosoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-28] (Microsoft Corporation) [MS Ad]\nMSN Meteorologia -&gt; C:Program FilesWindowsAppsMicrosoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2016-11-23] (Microsoft Corporation) [MS Ad]\nMSN Notícias -&gt; C:Program FilesWindowsAppsMicrosoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-28] (Microsoft Corporation) [MS Ad]\nMSN Receitas -&gt; C:Program FilesWindowsAppsMicrosoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMSN Saúde e Bem-Estar -&gt; C:Program FilesWindowsAppsMicrosoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMSN Viagens -&gt; C:Program FilesWindowsAppsMicrosoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMúsica -&gt; C:Program FilesWindowsAppsMicrosoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nmysms &#8211; Text from Computer, Messaging -&gt; C:Program FilesWindowsAppsUptoElevenDigitalSolution.mysms-Textanywhere_2.8.0.0_x64__c9d6r4qvva5x8 [2016-03-29] (Up to Eleven Digital Solutions GmbH)\nPaciência -&gt; C:Program FilesWindowsApps26720RandomSaladGamesLLC.SimpleSolitaire_5.4.0.40_x64__kx24dqmazqk8j [2016-12-15] (Random Salad Games LLC) [MS Ad]\nSidekick Private Browser -&gt; C:Program FilesWindowsAppsSaferWebSoftware.SidekickWeb_1.1.0.7_neutral__aad3gkxz4ewf0 [2020-05-18] (SaferWeb Software)\nSkype -&gt; C:Program FilesWindowsAppsMicrosoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2016-03-29] (Skype) [MS Ad]\nSnapfish -&gt; C:Program FilesWindowsAppsAD2F1837.HPConnectedPhotopoweredbySnapfish_5.5.0.8_x86__v10z8vjag6ke6 [2016-05-04] (HP Inc.)\nThe Weather Channel for HP -&gt; C:Program FilesWindowsAppsWeather.TheWeatherChannelforHP_2.1.20.0_x64__t3yemqpq4kp7p [2016-03-29] (The Weather Channel.)\nTradutor -&gt; C:Program FilesWindowsAppsMicrosoft.BingTranslator_1.18.3.0_x64__8wekyb3d8bbwe [2017-04-07] (Microsoft Corporation)\nTripAdvisor Hotels Flights Restaurants -&gt; C:Program FilesWindowsAppsTripAdvisorLLC.TripAdvisorHotelsFlightsRestaurants_1.2.0.24_neutral__qj0v5chwq8f2g [2015-06-04] (TripAdvisor LLC)\nVídeo -&gt; C:Program FilesWindowsAppsMicrosoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]</p>"},{"id":"text-49","type":"text","heading":"","plain_text":"==================== Custom CLSID (Whitelisted): ==============","html":"<p>==================== Custom CLSID (Whitelisted): ==============</p>"},{"id":"text-50","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)</p>"},{"id":"text-51","type":"text","heading":"","plain_text":"CustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDD327DA6-B4DF-4842-B833-2CFF84F0948Flocalserver32 -&gt; C:Program FilesAutodeskAutoCAD 2017acad.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID19A6E644-14E6-4A60-B8D7-DD20610A871DInprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalMicrosoftTeamsMeetingAddin1.0.20031.2x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID3faa4380-a399-11cf-a466-00805fe418f6InprocServer32 -&gt; C:Program FilesAutodeskDWG TrueView 2018 &#8211; Englishen-USdwgviewrficn.dll (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID720DB9AF-D62C-4ED0-A377-429C22312852localserver32 -&gt; C:Program FilesAutodeskAutoCAD 2017acad.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID84B5A313-CD5D-4904-8BA2-AFDC81C1B309InprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalGoToMeeting17359G2MOutlookAddin64.dll (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDB6EB585B-B467-4E46-A9C7-48D7D6FD26CBlocalserver32 -&gt; C:Program FilesAutodeskDWG TrueView 2018 &#8211; Englishdwgviewr.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDC591CFEA-E432-495d-A0BE-58E4CCD87B17ShellOpenCommand -&gt; C:Program FilesSynapticsSynTPSynTPCpl.dll (Synaptics Incorporated -&gt; Synaptics Incorporated)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDCB965DF1-B8EA-49C7-BDAD-5457FDC1BF92InprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalMicrosoftTeamsMeetingAddin1.0.20031.2x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDE2C40589-DE61-11ce-BAE0-0020AF6D7005InprocServer32 -&gt; C:Program FilesAutodeskAutoCAD 2017en-USacadficn.dll (Autodesk, Inc -&gt; Autodesk, Inc.)\nShellExecuteHooks: Groove GFS Stub Execution Hook &#8211; B5A7F190-DDA6-4420-B3BA-52453494E6CD &#8211; C:Program FilesMicrosoft OfficeOffice14GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nShellExecuteHooks-x32: Groove GFS Stub Execution Hook &#8211; B5A7F190-DDA6-4420-B3BA-52453494E6CD &#8211; C:Program Files (x86)Microsoft OfficeOffice14GROOVEEX.DLL [4171480 2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nShellIconOverlayIdentifiers: [ MEGA (Pending)] -&gt; 056D528D-CE28-4194-9BA3-BA2E9197FF8C =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [ MEGA (Synced)] -&gt; 05B38830-F4E9-4329-978B-1DD28605D202 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [ MEGA (Syncing)] -&gt; 0596C850-7BDD-4C9D-AFDF-873BE6890637 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [  GoogleDriveSynced] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [00asw] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nShellIconOverlayIdentifiers: [00avg] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -&gt; 36A21736-36C2-4C11-8ACB-D4136F2B57BD =&gt; C:Windowssystem32AcSignIcon.dll [2017-02-15] (Autodesk, Inc -&gt; Autodesk, Inc.)\nShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -&gt; 056D528D-CE28-4194-9BA3-BA2E9197FF8C =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -&gt; 05B38830-F4E9-4329-978B-1DD28605D202 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -&gt; 0596C850-7BDD-4C9D-AFDF-873BE6890637 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers1: [7-Zip] -&gt; 23170F69-40C1-278A-1000-000100020000 =&gt; C:Program Files7-Zip7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]\nContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -&gt; 2E7A2C6C-B938-40a4-BA1C-C7EC982DC202 =&gt; C:Program FilesCommon FilesAutodesk SharedAcShellExAcShellExtension.dll [2017-02-15] (Autodesk, Inc -&gt; Autodesk)\nContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -&gt; A6595CD1-BF77-430A-A452-18696685F7C7 =&gt; C:Program Files (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nContextMenuHandlers1: [ANotepad++64] -&gt; B298D29A-A6ED-11DE-BA8C-A68E55D89593 =&gt; C:Program Files (x86)Notepad++NppShell_06.dll -&gt; No File\nContextMenuHandlers1-x32: [Autodesk.DWF.ContextMenu] -&gt; 6C18531F-CA85-45F7-8278-FF33CF0A5964 =&gt; C:Program Files (x86)Common FilesAutodesk SharedDWF CommonDWFShellExtension.dll [2017-03-09] (Autodesk, Inc.) [File not signed]\nContextMenuHandlers1: [AVG] -&gt; 472083B1-C522-11CF-8763-00608CC02F24 =&gt; C:Program Files (x86)AVGAntivirusashShell.dll [2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nContextMenuHandlers1: [CLVDShellExt] -&gt; 3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2 =&gt; C:Program Files (x86)Common FilesCyberLinkShellExtComponentCLVDShellExt.dll [2015-02-09] (CyberLink Corp. -&gt; Cyberlink)\nContextMenuHandlers1: [DIALuxShellExtension] -&gt; F23E3460-D1B1-4F51-8C3D-E5D91E3C71C8 =&gt; C:Program FilesDIAL GmbHDIALuxDial.ShellExtension.x64.dll [2017-12-05] (DIAL GmbH) [File not signed]\nContextMenuHandlers1: [Foxit_ConvertToPDF] -&gt; C5269811-4A29-4818-A4BB-111F9FC63A5F =&gt; C:Program Files (x86)Foxit PhantomPDFpluginsConvertToPDFShellExtension_x64.dll [2015-03-03] (Foxit Software Incorporated -&gt; Foxit Software Inc.)\nContextMenuHandlers1: [GDContextMenu] -&gt; BB02B294-8425-42E5-983F-41A1FA970CD6 =&gt; C:Program FilesGoogleDrivecontextmenu64.dll [2020-04-06] (Google LLC -&gt; Google)\nContextMenuHandlers1: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers1: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers1: [VirtualCloneDrive] -&gt; B7056B8E-4F99-44f8-8CBD-282390FE5428 =&gt; C:Program Files (x86)Elaborate BytesVirtualCloneDriveElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nContextMenuHandlers2: [CLVDShellExt] -&gt; 3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2 =&gt; C:Program Files (x86)Common FilesCyberLinkShellExtComponentCLVDShellExt.dll [2015-02-09] (CyberLink Corp. -&gt; Cyberlink)\nContextMenuHandlers2: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers2: [VirtualCloneDrive] -&gt; B7056B8E-4F99-44f8-8CBD-282390FE5428 =&gt; C:Program Files (x86)Elaborate BytesVirtualCloneDriveElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nContextMenuHandlers2-x32: [VMDiskMenuHandler] -&gt; 271DC252-6FE1-4D59-9053-E4CF50AB99DE =&gt; C:Program Files (x86)VMwareVMware PlayervmdkShellExt.dll [2018-11-21] (VMware, Inc. -&gt; VMware, Inc.)\nContextMenuHandlers2: [VMDiskMenuHandler64] -&gt; E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC =&gt; C:Program Files (x86)VMwareVMware Playerx64vmdkShellExt64.dll [2018-11-21] (VMware, Inc. -&gt; VMware, Inc.)\nContextMenuHandlers3: [00avg] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nContextMenuHandlers3: [MBAMShlExt] -&gt; 57CE581A-0CB6-4266-9CA0-19364C90A0B3 =&gt; C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -&gt; Malwarebytes)\nContextMenuHandlers3: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers4: [7-Zip] -&gt; 23170F69-40C1-278A-1000-000100020000 =&gt; C:Program Files7-Zip7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]\nContextMenuHandlers4: [GDContextMenu] -&gt; BB02B294-8425-42E5-983F-41A1FA970CD6 =&gt; C:Program FilesGoogleDrivecontextmenu64.dll [2020-04-06] (Google LLC -&gt; Google)\nContextMenuHandlers4: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers4: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers4: [RecuvaShellExt] -&gt; 435E5DF5-2510-463C-B223-BDA47006D002 =&gt; C:Program FilesRecuvaRecuvaShell64.dll [2016-06-06] (Piriform Ltd -&gt; Piriform Ltd)\nContextMenuHandlers5: [igfxcui] -&gt; 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 =&gt;  -&gt; No File\nContextMenuHandlers5: [igfxDTCM] -&gt; 9B5F5829-A529-4B12-814A-E81BCB8D93FC =&gt; C:Windowssystem32igfxDTCM.dll [2015-04-28] (Microsoft Windows Hardware Compatibility Publisher -&gt; Intel Corporation)\nContextMenuHandlers5: [NvCplDesktopContext] -&gt; 3D1975AF-48C6-4f8e-A182-BE0E08FA86A9 =&gt; C:Windowssystem32nvshext.dll [2015-01-11] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -&gt; A6595CD1-BF77-430A-A452-18696685F7C7 =&gt; C:Program Files (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nContextMenuHandlers6: [AVG] -&gt; 472083B1-C522-11CF-8763-00608CC02F24 =&gt; C:Program Files (x86)AVGAntivirusashShell.dll [2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nContextMenuHandlers6: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers6: [MBAMShlExt] -&gt; 57CE581A-0CB6-4266-9CA0-19364C90A0B3 =&gt; C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -&gt; Malwarebytes)\nContextMenuHandlers6: [RecuvaShellExt] -&gt; 435E5DF5-2510-463C-B223-BDA47006D002 =&gt; C:Program FilesRecuvaRecuvaShell64.dll [2016-06-06] (Piriform Ltd -&gt; Piriform Ltd)","html":"<p>CustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDD327DA6-B4DF-4842-B833-2CFF84F0948Flocalserver32 -&gt; C:Program FilesAutodeskAutoCAD 2017acad.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID19A6E644-14E6-4A60-B8D7-DD20610A871DInprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalMicrosoftTeamsMeetingAddin1.0.20031.2x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID3faa4380-a399-11cf-a466-00805fe418f6InprocServer32 -&gt; C:Program FilesAutodeskDWG TrueView 2018 &#8211; Englishen-USdwgviewrficn.dll (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID720DB9AF-D62C-4ED0-A377-429C22312852localserver32 -&gt; C:Program FilesAutodeskAutoCAD 2017acad.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID84B5A313-CD5D-4904-8BA2-AFDC81C1B309InprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalGoToMeeting17359G2MOutlookAddin64.dll (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDB6EB585B-B467-4E46-A9C7-48D7D6FD26CBlocalserver32 -&gt; C:Program FilesAutodeskDWG TrueView 2018 &#8211; Englishdwgviewr.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDC591CFEA-E432-495d-A0BE-58E4CCD87B17ShellOpenCommand -&gt; C:Program FilesSynapticsSynTPSynTPCpl.dll (Synaptics Incorporated -&gt; Synaptics Incorporated)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDCB965DF1-B8EA-49C7-BDAD-5457FDC1BF92InprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalMicrosoftTeamsMeetingAddin1.0.20031.2x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDE2C40589-DE61-11ce-BAE0-0020AF6D7005InprocServer32 -&gt; C:Program FilesAutodeskAutoCAD 2017en-USacadficn.dll (Autodesk, Inc -&gt; Autodesk, Inc.)\nShellExecuteHooks: Groove GFS Stub Execution Hook &#8211; B5A7F190-DDA6-4420-B3BA-52453494E6CD &#8211; C:Program FilesMicrosoft OfficeOffice14GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nShellExecuteHooks-x32: Groove GFS Stub Execution Hook &#8211; B5A7F190-DDA6-4420-B3BA-52453494E6CD &#8211; C:Program Files (x86)Microsoft OfficeOffice14GROOVEEX.DLL [4171480 2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nShellIconOverlayIdentifiers: [ MEGA (Pending)] -&gt; 056D528D-CE28-4194-9BA3-BA2E9197FF8C =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [ MEGA (Synced)] -&gt; 05B38830-F4E9-4329-978B-1DD28605D202 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [ MEGA (Syncing)] -&gt; 0596C850-7BDD-4C9D-AFDF-873BE6890637 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [  GoogleDriveSynced] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [00asw] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nShellIconOverlayIdentifiers: [00avg] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -&gt; 36A21736-36C2-4C11-8ACB-D4136F2B57BD =&gt; C:Windowssystem32AcSignIcon.dll [2017-02-15] (Autodesk, Inc -&gt; Autodesk, Inc.)\nShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -&gt; 056D528D-CE28-4194-9BA3-BA2E9197FF8C =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -&gt; 05B38830-F4E9-4329-978B-1DD28605D202 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -&gt; 0596C850-7BDD-4C9D-AFDF-873BE6890637 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers1: [7-Zip] -&gt; 23170F69-40C1-278A-1000-000100020000 =&gt; C:Program Files7-Zip7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]\nContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -&gt; 2E7A2C6C-B938-40a4-BA1C-C7EC982DC202 =&gt; C:Program FilesCommon FilesAutodesk SharedAcShellExAcShellExtension.dll [2017-02-15] (Autodesk, Inc -&gt; Autodesk)\nContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -&gt; A6595CD1-BF77-430A-A452-18696685F7C7 =&gt; C:Program Files (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nContextMenuHandlers1: [ANotepad++64] -&gt; B298D29A-A6ED-11DE-BA8C-A68E55D89593 =&gt; C:Program Files (x86)Notepad++NppShell_06.dll -&gt; No File\nContextMenuHandlers1-x32: [Autodesk.DWF.ContextMenu] -&gt; 6C18531F-CA85-45F7-8278-FF33CF0A5964 =&gt; C:Program Files (x86)Common FilesAutodesk SharedDWF CommonDWFShellExtension.dll [2017-03-09] (Autodesk, Inc.) [File not signed]\nContextMenuHandlers1: [AVG] -&gt; 472083B1-C522-11CF-8763-00608CC02F24 =&gt; C:Program Files (x86)AVGAntivirusashShell.dll [2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nContextMenuHandlers1: [CLVDShellExt] -&gt; 3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2 =&gt; C:Program Files (x86)Common FilesCyberLinkShellExtComponentCLVDShellExt.dll [2015-02-09] (CyberLink Corp. -&gt; Cyberlink)\nContextMenuHandlers1: [DIALuxShellExtension] -&gt; F23E3460-D1B1-4F51-8C3D-E5D91E3C71C8 =&gt; C:Program FilesDIAL GmbHDIALuxDial.ShellExtension.x64.dll [2017-12-05] (DIAL GmbH) [File not signed]\nContextMenuHandlers1: [Foxit_ConvertToPDF] -&gt; C5269811-4A29-4818-A4BB-111F9FC63A5F =&gt; C:Program Files (x86)Foxit PhantomPDFpluginsConvertToPDFShellExtension_x64.dll [2015-03-03] (Foxit Software Incorporated -&gt; Foxit Software Inc.)\nContextMenuHandlers1: [GDContextMenu] -&gt; BB02B294-8425-42E5-983F-41A1FA970CD6 =&gt; C:Program FilesGoogleDrivecontextmenu64.dll [2020-04-06] (Google LLC -&gt; Google)\nContextMenuHandlers1: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers1: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers1: [VirtualCloneDrive] -&gt; B7056B8E-4F99-44f8-8CBD-282390FE5428 =&gt; C:Program Files (x86)Elaborate BytesVirtualCloneDriveElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nContextMenuHandlers2: [CLVDShellExt] -&gt; 3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2 =&gt; C:Program Files (x86)Common FilesCyberLinkShellExtComponentCLVDShellExt.dll [2015-02-09] (CyberLink Corp. -&gt; Cyberlink)\nContextMenuHandlers2: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers2: [VirtualCloneDrive] -&gt; B7056B8E-4F99-44f8-8CBD-282390FE5428 =&gt; C:Program Files (x86)Elaborate BytesVirtualCloneDriveElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nContextMenuHandlers2-x32: [VMDiskMenuHandler] -&gt; 271DC252-6FE1-4D59-9053-E4CF50AB99DE =&gt; C:Program Files (x86)VMwareVMware PlayervmdkShellExt.dll [2018-11-21] (VMware, Inc. -&gt; VMware, Inc.)\nContextMenuHandlers2: [VMDiskMenuHandler64] -&gt; E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC =&gt; C:Program Files (x86)VMwareVMware Playerx64vmdkShellExt64.dll [2018-11-21] (VMware, Inc. -&gt; VMware, Inc.)\nContextMenuHandlers3: [00avg] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nContextMenuHandlers3: [MBAMShlExt] -&gt; 57CE581A-0CB6-4266-9CA0-19364C90A0B3 =&gt; C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -&gt; Malwarebytes)\nContextMenuHandlers3: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers4: [7-Zip] -&gt; 23170F69-40C1-278A-1000-000100020000 =&gt; C:Program Files7-Zip7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]\nContextMenuHandlers4: [GDContextMenu] -&gt; BB02B294-8425-42E5-983F-41A1FA970CD6 =&gt; C:Program FilesGoogleDrivecontextmenu64.dll [2020-04-06] (Google LLC -&gt; Google)\nContextMenuHandlers4: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers4: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers4: [RecuvaShellExt] -&gt; 435E5DF5-2510-463C-B223-BDA47006D002 =&gt; C:Program FilesRecuvaRecuvaShell64.dll [2016-06-06] (Piriform Ltd -&gt; Piriform Ltd)\nContextMenuHandlers5: [igfxcui] -&gt; 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 =&gt;  -&gt; No File\nContextMenuHandlers5: [igfxDTCM] -&gt; 9B5F5829-A529-4B12-814A-E81BCB8D93FC =&gt; C:Windowssystem32igfxDTCM.dll [2015-04-28] (Microsoft Windows Hardware Compatibility Publisher -&gt; Intel Corporation)\nContextMenuHandlers5: [NvCplDesktopContext] -&gt; 3D1975AF-48C6-4f8e-A182-BE0E08FA86A9 =&gt; C:Windowssystem32nvshext.dll [2015-01-11] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -&gt; A6595CD1-BF77-430A-A452-18696685F7C7 =&gt; C:Program Files (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nContextMenuHandlers6: [AVG] -&gt; 472083B1-C522-11CF-8763-00608CC02F24 =&gt; C:Program Files (x86)AVGAntivirusashShell.dll [2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nContextMenuHandlers6: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers6: [MBAMShlExt] -&gt; 57CE581A-0CB6-4266-9CA0-19364C90A0B3 =&gt; C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -&gt; Malwarebytes)\nContextMenuHandlers6: [RecuvaShellExt] -&gt; 435E5DF5-2510-463C-B223-BDA47006D002 =&gt; C:Program FilesRecuvaRecuvaShell64.dll [2016-06-06] (Piriform Ltd -&gt; Piriform Ltd)</p>"},{"id":"text-52","type":"text","heading":"","plain_text":"==================== Codecs (Whitelisted) ====================","html":"<p>==================== Codecs (Whitelisted) ====================</p>"},{"id":"text-53","type":"text","heading":"","plain_text":"==================== Shortcuts &amp; WMI ========================","html":"<p>==================== Shortcuts &amp; WMI ========================</p>"},{"id":"text-54","type":"text","heading":"","plain_text":"==================== Loaded Modules (Whitelisted) =============","html":"<p>==================== Loaded Modules (Whitelisted) =============</p>"},{"id":"text-55","type":"text","heading":"","plain_text":"2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000864768 _____ (%CFullName%) [File not signed] C:Program FilesHewlett-PackardSimplePassOpBHO64.dll\n2019-09-20 15:20 &#8211; 2016-09-12 15:53 &#8211; 048936448 _____ () [File not signed] C:Program Files (x86)AVGAVG TuneUplibcef.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000226304 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionContent.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000227840 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionDeviceAccess.dll\n2011-09-16 10:04 &#8211; 2011-09-16 10:04 &#8211; 000364544 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionDeviceManagement.dll\n2011-09-16 10:06 &#8211; 2011-09-16 10:06 &#8211; 000658432 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionGatewayCore.dll\n2011-09-16 10:05 &#8211; 2011-09-16 10:05 &#8211; 000335872 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionPlxTech.Das.DotNetApi.dll\n2011-09-16 10:07 &#8211; 2011-09-16 10:07 &#8211; 000422400 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionPlxTech.Das.Gateway.Core.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000245248 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionStorage.dll\n2011-09-16 10:02 &#8211; 2011-09-16 10:02 &#8211; 000045056 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionUtils_ISIS.dll\n2011-09-16 10:02 &#8211; 2011-09-16 10:02 &#8211; 000078848 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionXML.dll\n2015-01-30 19:07 &#8211; 2015-01-30 19:07 &#8211; 002169344 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassautheng.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000021504 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePasscryptodll.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000055296 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassRandomPass.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000035840 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassssplogon.dll\n2020-05-08 08:50 &#8211; 2017-12-05 13:42 &#8211; 001442816 _____ (DIAL GmbH) [File not signed] C:Program FilesDIAL GmbHDIALuxDial.ShellExtension.x64.dll\n2015-01-30 19:06 &#8211; 2015-01-30 19:06 &#8211; 000715264 _____ (Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassstoreng.dll\n2015-01-30 19:07 &#8211; 2015-01-30 19:07 &#8211; 001134080 _____ (Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassuserdata.dll\n2010-11-18 21:08 &#8211; 2010-11-18 21:08 &#8211; 000086016 _____ (Igor Pavlov) [File not signed] C:Program Files7-Zip7-zip.dll\n2015-07-22 10:44 &#8211; 2015-07-22 10:44 &#8211; 000562688 _____ (Intel Corporation) [File not signed] C:Program FilesIntelIntel® Rapid Storage TechnologyISDI2.dll\n2015-07-22 10:44 &#8211; 2015-07-22 10:44 &#8211; 000285184 _____ (Intel Corporation) [File not signed] C:Program FilesIntelIntel® Rapid Storage TechnologyPsiData.dll\n2016-03-29 22:31 &#8211; 2008-05-22 23:25 &#8211; 000043520 _____ (MagicISO, Inc.) [File not signed] C:Program Files (x86)MagicISOmisosh64.dll\n2015-06-04 18:46 &#8211; 2015-06-04 18:46 &#8211; 001093120 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80U.DLL\n2015-06-04 18:12 &#8211; 2013-04-01 23:19 &#8211; 000574464 _____ (Realtek Semiconductor Corp.) [File not signed] C:Windowssystem32Rtlihvs.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000746064 _____ (Softex Incorporated -&gt; ) [File not signed] C:Program FilesHewlett-PackardSimplePassGraphicalPwd.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000431696 _____ (Softex Incorporated -&gt; ) [File not signed] C:Program FilesHewlett-PackardSimplePassmstrpwd.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000760912 _____ (Softex Incorporated -&gt; Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePasshdddrv.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 001384528 _____ (Softex Incorporated -&gt; Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassWbf.dll\n2019-06-25 10:37 &#8211; 2019-06-25 10:32 &#8211; 002095104 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:Program FilesAVAST SoftwareSecureLinelibcrypto-1_1.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 005458432 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Core.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 001065984 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Network.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 000195072 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Xml.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000026112 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqgif.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000033280 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqicns.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000027648 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqico.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000245760 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqjpeg.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000021504 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqsvg.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000020992 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqtga.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000316416 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqtiff.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000019968 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqwbmp.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000322560 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqwebp.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 001010688 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncplatformsqwindows.dll\n2019-04-09 10:32 &#8211; 2017-10-19 10:17 &#8211; 000271360 _____ (Wondershare Software) [File not signed] C:WindowsSystem32WSPDFelementMonitor.dll","html":"<p>2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000864768 _____ (%CFullName%) [File not signed] C:Program FilesHewlett-PackardSimplePassOpBHO64.dll\n2019-09-20 15:20 &#8211; 2016-09-12 15:53 &#8211; 048936448 _____ () [File not signed] C:Program Files (x86)AVGAVG TuneUplibcef.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000226304 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionContent.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000227840 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionDeviceAccess.dll\n2011-09-16 10:04 &#8211; 2011-09-16 10:04 &#8211; 000364544 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionDeviceManagement.dll\n2011-09-16 10:06 &#8211; 2011-09-16 10:06 &#8211; 000658432 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionGatewayCore.dll\n2011-09-16 10:05 &#8211; 2011-09-16 10:05 &#8211; 000335872 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionPlxTech.Das.DotNetApi.dll\n2011-09-16 10:07 &#8211; 2011-09-16 10:07 &#8211; 000422400 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionPlxTech.Das.Gateway.Core.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000245248 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionStorage.dll\n2011-09-16 10:02 &#8211; 2011-09-16 10:02 &#8211; 000045056 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionUtils_ISIS.dll\n2011-09-16 10:02 &#8211; 2011-09-16 10:02 &#8211; 000078848 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionXML.dll\n2015-01-30 19:07 &#8211; 2015-01-30 19:07 &#8211; 002169344 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassautheng.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000021504 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePasscryptodll.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000055296 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassRandomPass.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000035840 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassssplogon.dll\n2020-05-08 08:50 &#8211; 2017-12-05 13:42 &#8211; 001442816 _____ (DIAL GmbH) [File not signed] C:Program FilesDIAL GmbHDIALuxDial.ShellExtension.x64.dll\n2015-01-30 19:06 &#8211; 2015-01-30 19:06 &#8211; 000715264 _____ (Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassstoreng.dll\n2015-01-30 19:07 &#8211; 2015-01-30 19:07 &#8211; 001134080 _____ (Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassuserdata.dll\n2010-11-18 21:08 &#8211; 2010-11-18 21:08 &#8211; 000086016 _____ (Igor Pavlov) [File not signed] C:Program Files7-Zip7-zip.dll\n2015-07-22 10:44 &#8211; 2015-07-22 10:44 &#8211; 000562688 _____ (Intel Corporation) [File not signed] C:Program FilesIntelIntel® Rapid Storage TechnologyISDI2.dll\n2015-07-22 10:44 &#8211; 2015-07-22 10:44 &#8211; 000285184 _____ (Intel Corporation) [File not signed] C:Program FilesIntelIntel® Rapid Storage TechnologyPsiData.dll\n2016-03-29 22:31 &#8211; 2008-05-22 23:25 &#8211; 000043520 _____ (MagicISO, Inc.) [File not signed] C:Program Files (x86)MagicISOmisosh64.dll\n2015-06-04 18:46 &#8211; 2015-06-04 18:46 &#8211; 001093120 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80U.DLL\n2015-06-04 18:12 &#8211; 2013-04-01 23:19 &#8211; 000574464 _____ (Realtek Semiconductor Corp.) [File not signed] C:Windowssystem32Rtlihvs.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000746064 _____ (Softex Incorporated -&gt; ) [File not signed] C:Program FilesHewlett-PackardSimplePassGraphicalPwd.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000431696 _____ (Softex Incorporated -&gt; ) [File not signed] C:Program FilesHewlett-PackardSimplePassmstrpwd.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000760912 _____ (Softex Incorporated -&gt; Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePasshdddrv.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 001384528 _____ (Softex Incorporated -&gt; Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassWbf.dll\n2019-06-25 10:37 &#8211; 2019-06-25 10:32 &#8211; 002095104 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:Program FilesAVAST SoftwareSecureLinelibcrypto-1_1.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 005458432 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Core.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 001065984 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Network.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 000195072 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Xml.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000026112 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqgif.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000033280 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqicns.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000027648 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqico.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000245760 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqjpeg.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000021504 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqsvg.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000020992 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqtga.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000316416 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqtiff.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000019968 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqwbmp.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000322560 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqwebp.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 001010688 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncplatformsqwindows.dll\n2019-04-09 10:32 &#8211; 2017-10-19 10:17 &#8211; 000271360 _____ (Wondershare Software) [File not signed] C:WindowsSystem32WSPDFelementMonitor.dll</p>"},{"id":"text-56","type":"text","heading":"","plain_text":"==================== Alternate Data Streams (Whitelisted) ========","html":"<p>==================== Alternate Data Streams (Whitelisted) ========</p>"},{"id":"text-57","type":"text","heading":"","plain_text":"==================== Safe Mode (Whitelisted) ==================","html":"<p>==================== Safe Mode (Whitelisted) ==================</p>"},{"id":"text-58","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The &quot;AlternateShell&quot; will be restored.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The &quot;AlternateShell&quot; will be restored.)</p>"},{"id":"text-59","type":"text","heading":"","plain_text":"HKLMSYSTEMCurrentControlSetControlSafeBootMinimalMBAMService =&gt; &quot;&quot;=&quot;Service&quot;\nHKLMSYSTEMCurrentControlSetControlSafeBootNetworkMBAMService =&gt; &quot;&quot;=&quot;Service&quot;\nHKLMSYSTEMCurrentControlSetControlSafeBootNetworkMcMPFSvc =&gt; &quot;&quot;=&quot;Service&quot;","html":"<p>HKLMSYSTEMCurrentControlSetControlSafeBootMinimalMBAMService =&gt; &quot;&quot;=&quot;Service&quot;\nHKLMSYSTEMCurrentControlSetControlSafeBootNetworkMBAMService =&gt; &quot;&quot;=&quot;Service&quot;\nHKLMSYSTEMCurrentControlSetControlSafeBootNetworkMcMPFSvc =&gt; &quot;&quot;=&quot;Service&quot;</p>"},{"id":"text-60","type":"text","heading":"","plain_text":"==================== Association (Whitelisted) =================","html":"<p>==================== Association (Whitelisted) =================</p>"},{"id":"text-61","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, the registry item will be restored to default or removed.)","html":"<p>(If an entry is included in the fixlist, the registry item will be restored to default or removed.)</p>"},{"id":"text-62","type":"text","heading":"","plain_text":"HKUS-1-5-21-3751382696-3894377064-3631472648-1001SoftwareClasses.scr: AutoCADScriptFile =&gt; C:Windowssystem32notepad.exe &quot;%1&quot;","html":"<p>HKUS-1-5-21-3751382696-3894377064-3631472648-1001SoftwareClasses.scr: AutoCADScriptFile =&gt; C:Windowssystem32notepad.exe &quot;%1&quot;</p>"},{"id":"text-63","type":"text","heading":"","plain_text":"==================== Internet Explorer trusted/restricted ==========","html":"<p>==================== Internet Explorer trusted/restricted ==========</p>"},{"id":"text-64","type":"text","heading":"","plain_text":"==================== Hosts content: =========================","html":"<p>==================== Hosts content: =========================</p>"},{"id":"text-65","type":"text","heading":"","plain_text":"(If needed Hosts: directive could be included in the fixlist to reset Hosts.)","html":"<p>(If needed Hosts: directive could be included in the fixlist to reset Hosts.)</p>"},{"id":"text-66","type":"text","heading":"","plain_text":"2013-08-22 14:25 &#8211; 2019-01-01 03:44 &#8211; 000000132 _____ C:Windowssystem32driversetchosts\n127.0.0.1 activate.adobe.com\n127.0.0.1 practivate.adobe.com\n127.0.0.1 lmlicenses.wip4.adobe.com\n127.0.0.1 lm.licenses.adobe.com","html":"<p>2013-08-22 14:25 &#8211; 2019-01-01 03:44 &#8211; 000000132 _____ C:Windowssystem32driversetchosts\n127.0.0.1 activate.adobe.com\n127.0.0.1 practivate.adobe.com\n127.0.0.1 lmlicenses.wip4.adobe.com\n127.0.0.1 lm.licenses.adobe.com</p>"},{"id":"text-67","type":"text","heading":"","plain_text":"==================== Other Areas ===========================","html":"<p>==================== Other Areas ===========================</p>"},{"id":"text-68","type":"text","heading":"","plain_text":"(Currently there is no automatic fix for this section.)","html":"<p>(Currently there is no automatic fix for this section.)</p>"},{"id":"text-69","type":"text","heading":"","plain_text":"HKLMSystemCurrentControlSetControlSession ManagerEnvironment\\Path -&gt; C:Program Fileswkhtmltopdfbin;C:Program FilesOpenSSL-Win64bin;C:Program FilesJavajdk-14bin;C:Python37Scripts;C:Program Files (x86)Common FilesOracleJavajavapath;C:platform-tools;C:Windowssystem32;C:ProgramDataOracleJavajavapath;C:Program Files (x86)InteliCLS Client;C:Program FilesInteliCLS Client;C:Program Files (x86)NVIDIA CorporationPhysXCommon;%SystemRoot%system32;%SystemRoot%;%SystemRoot%System32Wbem;%SYSTEMROOT%System32WindowsPowerShellv1.0;C:Program FilesHewlett-PackardSimplePass;C:Program FilesIntelIntel® Management Engine ComponentsDAL;C:Program Files (x86)IntelIntel® Management Engine ComponentsDAL;C:Program FilesIntelIntel® Management Engine ComponentsIPT;C:Program Files (x86)IntelIntel® Management Engine ComponentsIPT;C:E20-IIEnviro;C:Program Filesdotnet;C:Program FilesGitcmd\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001Control PanelDesktop\\Wallpaper -&gt; C:WindowswebwallpaperHewlett-Packard BackgroundsbackgroundDefault.jpg\nDNS Servers: 192.168.1.1 &#8211; 192.168.175.1\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorer =&gt; (SmartScreenEnabled: RequireAdmin)\nWindows Firewall is enabled.","html":"<p>HKLMSystemCurrentControlSetControlSession ManagerEnvironment\\Path -&gt; C:Program Fileswkhtmltopdfbin;C:Program FilesOpenSSL-Win64bin;C:Program FilesJavajdk-14bin;C:Python37Scripts;C:Program Files (x86)Common FilesOracleJavajavapath;C:platform-tools;C:Windowssystem32;C:ProgramDataOracleJavajavapath;C:Program Files (x86)InteliCLS Client;C:Program FilesInteliCLS Client;C:Program Files (x86)NVIDIA CorporationPhysXCommon;%SystemRoot%system32;%SystemRoot%;%SystemRoot%System32Wbem;%SYSTEMROOT%System32WindowsPowerShellv1.0;C:Program FilesHewlett-PackardSimplePass;C:Program FilesIntelIntel® Management Engine ComponentsDAL;C:Program Files (x86)IntelIntel® Management Engine ComponentsDAL;C:Program FilesIntelIntel® Management Engine ComponentsIPT;C:Program Files (x86)IntelIntel® Management Engine ComponentsIPT;C:E20-IIEnviro;C:Program Filesdotnet;C:Program FilesGitcmd\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001Control PanelDesktop\\Wallpaper -&gt; C:WindowswebwallpaperHewlett-Packard BackgroundsbackgroundDefault.jpg\nDNS Servers: 192.168.1.1 &#8211; 192.168.175.1\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorer =&gt; (SmartScreenEnabled: RequireAdmin)\nWindows Firewall is enabled.</p>"},{"id":"text-70","type":"text","heading":"","plain_text":"Network Binding:\n=============\nEthernet: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nEthernet: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nEthernet: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nEthernet: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nEthernet: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nWi-Fi: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nWi-Fi: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nWi-Fi: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nWi-Fi: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nWi-Fi: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nVMware Network Adapter VMnet8: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVMware Network Adapter VMnet8: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVMware Network Adapter VMnet8: VMware Bridge Protocol -&gt; vmware_bridge (disabled) \nVMware Network Adapter VMnet1: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVMware Network Adapter VMnet1: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVMware Network Adapter VMnet1: VMware Bridge Protocol -&gt; vmware_bridge (disabled) \nVirtualBox Host-Only Network: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVirtualBox Host-Only Network: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVirtualBox Host-Only Network: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nVirtualBox Host-Only Network: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nVirtualBox Host-Only Network: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nNpcap Loopback Adapter: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nNpcap Loopback Adapter: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nNpcap Loopback Adapter: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nNpcap Loopback Adapter: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nNpcap Loopback Adapter: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled)","html":"<p>Network Binding:\n=============\nEthernet: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nEthernet: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nEthernet: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nEthernet: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nEthernet: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nWi-Fi: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nWi-Fi: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nWi-Fi: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nWi-Fi: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nWi-Fi: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nVMware Network Adapter VMnet8: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVMware Network Adapter VMnet8: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVMware Network Adapter VMnet8: VMware Bridge Protocol -&gt; vmware_bridge (disabled) \nVMware Network Adapter VMnet1: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVMware Network Adapter VMnet1: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVMware Network Adapter VMnet1: VMware Bridge Protocol -&gt; vmware_bridge (disabled) \nVirtualBox Host-Only Network: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVirtualBox Host-Only Network: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVirtualBox Host-Only Network: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nVirtualBox Host-Only Network: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nVirtualBox Host-Only Network: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nNpcap Loopback Adapter: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nNpcap Loopback Adapter: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nNpcap Loopback Adapter: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nNpcap Loopback Adapter: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nNpcap Loopback Adapter: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled)</p>"},{"id":"text-71","type":"text","heading":"","plain_text":"==================== MSCONFIG/TASK MANAGER disabled items ==","html":"<p>==================== MSCONFIG/TASK MANAGER disabled items ==</p>"},{"id":"text-72","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed.)","html":"<p>(If an entry is included in the fixlist, it will be removed.)</p>"},{"id":"text-73","type":"text","heading":"","plain_text":"MSCONFIGServices: AdAppMgrSvc =&gt; 2\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;Assistente de gestor de conteúdo para PlayStation®.lnk&quot;\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;ScpToolkit Tray Notifications.lnk&quot;\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;Avast SecureLine VPN.lnk&quot;\nHKLM&#8230;StartupApprovedRun: =&gt; &quot;NvBackend&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;AccelerometerSysTrayApplet&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;HPMessageService&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;HP Software Update&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;BCSSync&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;AVG_UI&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Acrobat Assistant 8.0&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;SunJavaUpdateSched&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;vProt&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;VirtualCloneDrive&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Autodesk Desktop App&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;jswtrayutil&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;PSUAMain&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Wondershare Helper Compact.exe&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;KiesTrayAgent&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Aimersoft Helper Compact.exe&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;XArp&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedStartupFolder: =&gt; &quot;OneNote 2010 Screen Clipper and Launcher.lnk&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedStartupFolder: =&gt; &quot;Autenticacao.gov.pt.lnk&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;DAEMON Tools Lite Automount&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;GoogleDriveSync&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;Autodesk Sync&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;Steam&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;CCleaner Smart Cleaning&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;AvastBrowserAutoLaunch_8E2202057F0AAA05DFC4AE202AF0EABB&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;com.squirrel.Teams.Teams&quot;","html":"<p>MSCONFIGServices: AdAppMgrSvc =&gt; 2\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;Assistente de gestor de conteúdo para PlayStation®.lnk&quot;\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;ScpToolkit Tray Notifications.lnk&quot;\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;Avast SecureLine VPN.lnk&quot;\nHKLM&#8230;StartupApprovedRun: =&gt; &quot;NvBackend&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;AccelerometerSysTrayApplet&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;HPMessageService&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;HP Software Update&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;BCSSync&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;AVG_UI&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Acrobat Assistant 8.0&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;SunJavaUpdateSched&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;vProt&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;VirtualCloneDrive&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Autodesk Desktop App&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;jswtrayutil&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;PSUAMain&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Wondershare Helper Compact.exe&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;KiesTrayAgent&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Aimersoft Helper Compact.exe&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;XArp&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedStartupFolder: =&gt; &quot;OneNote 2010 Screen Clipper and Launcher.lnk&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedStartupFolder: =&gt; &quot;Autenticacao.gov.pt.lnk&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;DAEMON Tools Lite Automount&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;GoogleDriveSync&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;Autodesk Sync&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;Steam&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;CCleaner Smart Cleaning&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;AvastBrowserAutoLaunch_8E2202057F0AAA05DFC4AE202AF0EABB&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;com.squirrel.Teams.Teams&quot;</p>"},{"id":"text-74","type":"text","heading":"","plain_text":"==================== FirewallRules (Whitelisted) ================","html":"<p>==================== FirewallRules (Whitelisted) ================</p>"},{"id":"text-75","type":"text","heading":"","plain_text":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)","html":"<p>(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)</p>"},{"id":"text-76","type":"text","heading":"","plain_text":"FirewallRules: [582A6683-D72A-46B6-ACE3-5DDF801194EF] =&gt; (Allow) C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [BCEFEFB2-60E2-49CB-867A-17284DF5084E] =&gt; (Allow) C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [6F2F07DD-A742-44EC-994D-0154FFCB01B5] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [AFFCD9A6-C298-4963-AB51-C30E247AFBB1] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [7808A858-FCAB-4CBE-8379-522C54F4E6B0] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [B186DA8C-5846-4184-A738-92C3AA9F2AC1] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [B7FF1360-33D9-4C8D-8781-A64CC9E443D3] =&gt; (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [992F1852-2433-4440-8DE4-D9B1246F35FC] =&gt; (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [ADCDF42B-282C-4832-85E0-FA81E4E51183] =&gt; (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [4979BC6A-1279-4FA3-9F8F-35D9CD55B21F] =&gt; (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [B47007A9-2898-4F03-BF02-FED19537847B] =&gt; (Allow) C:Program Files (x86)Hewlett-PackardHP System EventHPSOCKSVC.exe (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nFirewallRules: [39D2D09C-F5A7-49C3-A51B-7C3A63B6092F] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12PowerDVD12.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [E17FE3D7-439C-46AC-8654-AE3E8CF5BAB3] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12KernelDMSCLMSServerPDVD12.exe =&gt; No File\nFirewallRules: [C7F3A161-5DEC-4FE3-98B3-D3AE8FBAC944] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12PowerDVD12ML.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [17D8CE27-9FB3-43FC-A66E-A7C41F14EB1B] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12MoviePowerDVD.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [BAC676D9-D48D-4B1F-9D48-D916649D3BED] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinDeviceSetup.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [1E3A958A-DBF9-4792-BA75-66CDD5B97F81] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinHPNetworkCommunicator.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [94AEC018-D89F-44D8-BE94-CB30F928F3D5] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinHPNetworkCommunicatorCom.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [3CC6A172-6CFC-4C96-94F1-FEA79C8C66DC] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [A319A1AD-CD39-4B0E-AD31-FA83D3D78242] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [C8947CEF-1C24-4CC9-90B0-3D548221606C] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [FC78FDD5-0FE6-4B5C-B0B2-7BA1E5E56122] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [A835927B-3BA1-4345-868E-B80FDF3DFE6B] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [59D701D2-D615-4312-ABB5-8CC133C606A7] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [TCP Query User1D930BCB-2B04-4333-8EF9-C057EC9E6BAFC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Allow) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [UDP Query UserA39DAA6C-B810-4FC1-8EDD-8DD8AF086F6FC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Allow) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [25B196BB-0691-4DDC-BB61-C324E536385D] =&gt; (Allow) C:Program Files (x86)AVGAvavgmfapx.exe =&gt; No File\nFirewallRules: [68830A77-7703-4DCD-B1D4-2BDF8413B333] =&gt; (Allow) C:Program Files (x86)AVGAvavgmfapx.exe =&gt; No File\nFirewallRules: [AC06ADD7-2F7A-438B-806C-A4154DFC73F1] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [D4AD2E35-4E6E-4D00-B9D8-A5EB21B85B30] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [TCP Query User9CF8F516-A810-4B68-B577-6D76ADBD6979C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Block) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [UDP Query User1C042E6F-79B1-4354-945A-103696EB9945C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Block) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [TCP Query User16E10655-99C6-4050-8E89-D57F6F18A920C:program files (x86)skypephoneskype.exe] =&gt; (Allow) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [UDP Query User052989CE-193D-439A-ABF6-6C5A57B97CBCC:program files (x86)skypephoneskype.exe] =&gt; (Allow) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [TCP Query UserD9402F64-6C5B-43AE-9415-C52306CD3465C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [UDP Query UserD68E4CDB-5539-4A54-B66A-E9E07FB4DA19C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [TCP Query User70E94656-89AD-4D48-8485-5C61A98E5D7DC:program filesnefarius software solutionsscptoolkitscpserver.exe] =&gt; (Allow) C:program filesnefarius software solutionsscptoolkitscpserver.exe =&gt; No File\nFirewallRules: [UDP Query User08EA37E1-5D9D-44D9-B1B5-D00E1E46864FC:program filesnefarius software solutionsscptoolkitscpserver.exe] =&gt; (Allow) C:program filesnefarius software solutionsscptoolkitscpserver.exe =&gt; No File\nFirewallRules: [TCP Query User9DB2D3EB-A419-40A9-8B7F-02B5F54F0ED6C:program files (x86)airdroidairdroid.exe] =&gt; (Allow) C:program files (x86)airdroidairdroid.exe =&gt; No File\nFirewallRules: [UDP Query User0C64B981-176C-43C7-AC23-DCDFE020FD7CC:program files (x86)airdroidairdroid.exe] =&gt; (Allow) C:program files (x86)airdroidairdroid.exe =&gt; No File\nFirewallRules: [999E8B30-A3CC-4CFC-82E9-BE529C851F3E] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS1A27HPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [4C9EB99C-5BB1-4E5A-9383-0E808C25D152] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS1A27HPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [TCP Query UserB4B18508-AD74-4D0F-91E0-A0A25EB96CECC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Block) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [UDP Query User791C7AA4-28C9-4307-BFD5-93EFF7A53417C:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Block) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [TCP Query UserBFE9BE95-C491-45D5-97F0-1F91C2DCCBDEC:program files (x86)skypephoneskype.exe] =&gt; (Block) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [2A3B511F-88A9-434F-851F-8323C7B84A61] =&gt; (Allow) C:Program FilesEasewareDriverEasyDriverEasy.exe (Easeware Technology Limited -&gt; Easeware)\nFirewallRules: [F58757DD-5309-4BAC-8672-3228BB5C0926] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS5F1AHPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [E6751800-8FD6-446B-859E-0C8AD3D2993C] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS5F1AHPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [A7E1E8CF-3332-4C3B-B2F2-4D0513F85CF2] =&gt; (Allow) LPort=9422\nFirewallRules: [03ADEAC4-2838-478C-B592-ED07458E4C1E] =&gt; (Allow) LPort=9245\nFirewallRules: [F59BA0EC-D15A-450E-A3B5-3CD06B04642D] =&gt; (Allow) LPort=9246\nFirewallRules: [091F67FF-828D-40B1-BF39-95961341573C] =&gt; (Allow) LPort=9247\nFirewallRules: [TCP Query UserE248A19E-99A2-4804-B6BC-5ACD8565160BC:program files (x86)caincain.exe] =&gt; (Allow) C:program files (x86)caincain.exe =&gt; No File\nFirewallRules: [UDP Query User4D5623CB-FB3B-4213-8FD5-8A30C84E8FA2C:program files (x86)caincain.exe] =&gt; (Allow) C:program files (x86)caincain.exe =&gt; No File\nFirewallRules: [7C5AB3F8-67AF-44F7-8597-902CC0D24BD9] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [479750AD-D7FF-40D1-BBF8-C2E1B082AF6E] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [66A28919-DA35-4E6F-A3A3-A57E77F7746B] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [F876F68F-A0AF-4E72-A14C-7D600645599A] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [TCP Query User50979378-03F8-44E0-90DB-5D6959D70469C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Allow) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [UDP Query UserC833F1CD-6066-403C-98CA-92840F4DEE3DC:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Allow) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [TCP Query User973BD09C-F2D6-428F-AA51-398E84385F98C:program files (x86)facebook friend mapperphantomjs.exe] =&gt; (Block) C:program files (x86)facebook friend mapperphantomjs.exe =&gt; No File\nFirewallRules: [UDP Query UserFC808989-45B7-4EA6-9D7B-17B90191BD9FC:program files (x86)facebook friend mapperphantomjs.exe] =&gt; (Block) C:program files (x86)facebook friend mapperphantomjs.exe =&gt; No File\nFirewallRules: [TCP Query User1C96D305-E77E-4FB0-882C-E011AEDE7B98C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [UDP Query User92E6F78F-1558-4A1E-89BD-C9718E9F0025C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [TCP Query User9EBAD4BE-25CB-4D18-B75E-7A6CDE9BB797C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [UDP Query User14DF02A4-E03D-4848-9B20-5E4BF53829F9C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [TCP Query UserAE9277F6-2BA5-48AD-989C-910019969FDCC:program files (x86)winpcaprpcapd.exe] =&gt; (Block) C:program files (x86)winpcaprpcapd.exe (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nFirewallRules: [UDP Query User35D83A15-0FB0-43D7-BCF5-C0B8D94CB1C3C:program files (x86)winpcaprpcapd.exe] =&gt; (Block) C:program files (x86)winpcaprpcapd.exe (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nFirewallRules: [TCP Query User24BEA927-D042-4EBC-A3B5-4274B8538946C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe] =&gt; (Allow) C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe =&gt; No File\nFirewallRules: [UDP Query UserB3EDB2D5-3563-4F56-8092-946663BDE464C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe] =&gt; (Allow) C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe =&gt; No File\nFirewallRules: [8EA1455A-A080-426A-8D2D-5335EB3D8E34] =&gt; (Allow) C:Program FilesBlueStacksHD-Player.exe (BlueStack Systems, Inc. -&gt; BlueStack Systems, Inc.)\nFirewallRules: [A921AD6F-18C4-4A87-94B3-B778404C4912] =&gt; (Allow) C:Program Files (x86)VMwareVMware Playervmware-authd.exe (VMware, Inc. -&gt; VMware, Inc.)\nFirewallRules: [45CAEAFE-406C-4630-B965-2E046F854716] =&gt; (Allow) C:Program Files (x86)VMwareVMware Playervmware-authd.exe (VMware, Inc. -&gt; VMware, Inc.)\nFirewallRules: [1DF90E31-1041-4093-A46F-530835B973A6] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [37D7A423-4F11-48BC-A63A-D606409F3905] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [A68B9487-DE2A-42D4-8F65-7AD1BE4FF56E] =&gt; (Allow) C:UsersXXXXXXZZZDownloadsultdata-android.exe =&gt; No File\nFirewallRules: [0502B751-C5CB-4DD2-8CF9-5CB89E5FC85C] =&gt; (Allow) C:UsersXXXXXXZZZDownloadsultdata-android.exe =&gt; No File\nFirewallRules: [TCP Query UserDDB5E758-E868-4317-B733-0FE13C15E18BC:program filesandroidandroid studiojrebinjava.exe] =&gt; (Allow) C:program filesandroidandroid studiojrebinjava.exe\nFirewallRules: [UDP Query User6098E9AC-3E8B-4C11-AE5E-5D77E65F248AC:program filesandroidandroid studiojrebinjava.exe] =&gt; (Allow) C:program filesandroidandroid studiojrebinjava.exe\nFirewallRules: [TCP Query UserD16594A1-06E4-4EDD-85AC-3AB7A8523C48C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [UDP Query User347E955D-D687-412B-B652-2E7BE3FB0FE3C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [TCP Query User9318684D-7351-437E-AA4B-38CDAB311CC5C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Block) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [UDP Query User2B2AEEDB-7C5F-4179-BE80-649DD55B4518C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Block) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [TCP Query User2E858FE0-9142-4312-8E70-C21A0FA30D53C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe] =&gt; (Allow) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [UDP Query UserFD2327B3-3575-4FFD-8CD6-110255058609C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe] =&gt; (Allow) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [663C67BD-E556-4C15-B443-0198A336ACCE] =&gt; (Block) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [37553DE9-4D90-4CE3-AFEA-CD53619A5F61] =&gt; (Block) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [F3A0DD59-0075-44DB-833D-668479A84900] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoamingZoombinZoom.exe =&gt; No File\nFirewallRules: [8B730F98-3968-42A3-AB7B-001BD1618A58] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoamingZoombinairhost.exe =&gt; No File\nFirewallRules: [F0045ADC-AEA7-406F-8C15-26BA696126A9] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [4B943EEA-FFAE-48AC-83AB-470A55A8022B] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [4C2E7AE0-A446-4C94-A73B-E6FAA3E4EA66] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [467134C1-8DBE-4139-8EDE-D7E61A286F65] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [TCP Query UserD8ED4101-A5CE-4C62-A166-C94C7B8A673FC:fakenet1.4.11fakenet.exe] =&gt; (Allow) C:fakenet1.4.11fakenet.exe () [File not signed]\nFirewallRules: [UDP Query UserCBCE98D5-763A-4A0E-AD25-A01A11150B65C:fakenet1.4.11fakenet.exe] =&gt; (Allow) C:fakenet1.4.11fakenet.exe () [File not signed]\nFirewallRules: [TCP Query User44C0B41F-120E-44CA-BCA9-6654375A0B78C:program files (x86)microsoftskype for desktopskype.exe] =&gt; (Allow) C:program files (x86)microsoftskype for desktopskype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [UDP Query UserC842BD42-262C-4277-96CD-376902CDA081C:program files (x86)microsoftskype for desktopskype.exe] =&gt; (Allow) C:program files (x86)microsoftskype for desktopskype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [TCP Query UserEF992F2B-0A05-4B7D-8D80-0960EDE2BE96C:program files (x86)nmapnmap.exe] =&gt; (Allow) C:program files (x86)nmapnmap.exe (Insecure.Com LLC -&gt; Insecure.Org)\nFirewallRules: [UDP Query UserED9C07AC-142E-4AF4-B911-F0430B82B0ADC:program files (x86)nmapnmap.exe] =&gt; (Allow) C:program files (x86)nmapnmap.exe (Insecure.Com LLC -&gt; Insecure.Org)\nFirewallRules: [TCP Query UserDB6B9E30-A92D-4FAA-B83C-534A9DB88096C:program files (x86)microsoft officeoffice14groove.exe] =&gt; (Block) C:program files (x86)microsoft officeoffice14groove.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [UDP Query User5E059811-A8BA-4348-A5EE-8024A24393C9C:program files (x86)microsoft officeoffice14groove.exe] =&gt; (Block) C:program files (x86)microsoft officeoffice14groove.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [FABFAEEE-3FF4-421B-A30B-818CDC15DD55] =&gt; (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -&gt; Google LLC)","html":"<p>FirewallRules: [582A6683-D72A-46B6-ACE3-5DDF801194EF] =&gt; (Allow) C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [BCEFEFB2-60E2-49CB-867A-17284DF5084E] =&gt; (Allow) C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [6F2F07DD-A742-44EC-994D-0154FFCB01B5] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [AFFCD9A6-C298-4963-AB51-C30E247AFBB1] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [7808A858-FCAB-4CBE-8379-522C54F4E6B0] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [B186DA8C-5846-4184-A738-92C3AA9F2AC1] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [B7FF1360-33D9-4C8D-8781-A64CC9E443D3] =&gt; (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [992F1852-2433-4440-8DE4-D9B1246F35FC] =&gt; (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [ADCDF42B-282C-4832-85E0-FA81E4E51183] =&gt; (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [4979BC6A-1279-4FA3-9F8F-35D9CD55B21F] =&gt; (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [B47007A9-2898-4F03-BF02-FED19537847B] =&gt; (Allow) C:Program Files (x86)Hewlett-PackardHP System EventHPSOCKSVC.exe (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nFirewallRules: [39D2D09C-F5A7-49C3-A51B-7C3A63B6092F] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12PowerDVD12.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [E17FE3D7-439C-46AC-8654-AE3E8CF5BAB3] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12KernelDMSCLMSServerPDVD12.exe =&gt; No File\nFirewallRules: [C7F3A161-5DEC-4FE3-98B3-D3AE8FBAC944] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12PowerDVD12ML.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [17D8CE27-9FB3-43FC-A66E-A7C41F14EB1B] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12MoviePowerDVD.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [BAC676D9-D48D-4B1F-9D48-D916649D3BED] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinDeviceSetup.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [1E3A958A-DBF9-4792-BA75-66CDD5B97F81] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinHPNetworkCommunicator.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [94AEC018-D89F-44D8-BE94-CB30F928F3D5] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinHPNetworkCommunicatorCom.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [3CC6A172-6CFC-4C96-94F1-FEA79C8C66DC] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [A319A1AD-CD39-4B0E-AD31-FA83D3D78242] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [C8947CEF-1C24-4CC9-90B0-3D548221606C] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [FC78FDD5-0FE6-4B5C-B0B2-7BA1E5E56122] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [A835927B-3BA1-4345-868E-B80FDF3DFE6B] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [59D701D2-D615-4312-ABB5-8CC133C606A7] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [TCP Query User1D930BCB-2B04-4333-8EF9-C057EC9E6BAFC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Allow) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [UDP Query UserA39DAA6C-B810-4FC1-8EDD-8DD8AF086F6FC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Allow) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [25B196BB-0691-4DDC-BB61-C324E536385D] =&gt; (Allow) C:Program Files (x86)AVGAvavgmfapx.exe =&gt; No File\nFirewallRules: [68830A77-7703-4DCD-B1D4-2BDF8413B333] =&gt; (Allow) C:Program Files (x86)AVGAvavgmfapx.exe =&gt; No File\nFirewallRules: [AC06ADD7-2F7A-438B-806C-A4154DFC73F1] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [D4AD2E35-4E6E-4D00-B9D8-A5EB21B85B30] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [TCP Query User9CF8F516-A810-4B68-B577-6D76ADBD6979C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Block) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [UDP Query User1C042E6F-79B1-4354-945A-103696EB9945C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Block) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [TCP Query User16E10655-99C6-4050-8E89-D57F6F18A920C:program files (x86)skypephoneskype.exe] =&gt; (Allow) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [UDP Query User052989CE-193D-439A-ABF6-6C5A57B97CBCC:program files (x86)skypephoneskype.exe] =&gt; (Allow) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [TCP Query UserD9402F64-6C5B-43AE-9415-C52306CD3465C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [UDP Query UserD68E4CDB-5539-4A54-B66A-E9E07FB4DA19C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [TCP Query User70E94656-89AD-4D48-8485-5C61A98E5D7DC:program filesnefarius software solutionsscptoolkitscpserver.exe] =&gt; (Allow) C:program filesnefarius software solutionsscptoolkitscpserver.exe =&gt; No File\nFirewallRules: [UDP Query User08EA37E1-5D9D-44D9-B1B5-D00E1E46864FC:program filesnefarius software solutionsscptoolkitscpserver.exe] =&gt; (Allow) C:program filesnefarius software solutionsscptoolkitscpserver.exe =&gt; No File\nFirewallRules: [TCP Query User9DB2D3EB-A419-40A9-8B7F-02B5F54F0ED6C:program files (x86)airdroidairdroid.exe] =&gt; (Allow) C:program files (x86)airdroidairdroid.exe =&gt; No File\nFirewallRules: [UDP Query User0C64B981-176C-43C7-AC23-DCDFE020FD7CC:program files (x86)airdroidairdroid.exe] =&gt; (Allow) C:program files (x86)airdroidairdroid.exe =&gt; No File\nFirewallRules: [999E8B30-A3CC-4CFC-82E9-BE529C851F3E] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS1A27HPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [4C9EB99C-5BB1-4E5A-9383-0E808C25D152] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS1A27HPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [TCP Query UserB4B18508-AD74-4D0F-91E0-A0A25EB96CECC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Block) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [UDP Query User791C7AA4-28C9-4307-BFD5-93EFF7A53417C:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Block) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [TCP Query UserBFE9BE95-C491-45D5-97F0-1F91C2DCCBDEC:program files (x86)skypephoneskype.exe] =&gt; (Block) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [2A3B511F-88A9-434F-851F-8323C7B84A61] =&gt; (Allow) C:Program FilesEasewareDriverEasyDriverEasy.exe (Easeware Technology Limited -&gt; Easeware)\nFirewallRules: [F58757DD-5309-4BAC-8672-3228BB5C0926] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS5F1AHPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [E6751800-8FD6-446B-859E-0C8AD3D2993C] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS5F1AHPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [A7E1E8CF-3332-4C3B-B2F2-4D0513F85CF2] =&gt; (Allow) LPort=9422\nFirewallRules: [03ADEAC4-2838-478C-B592-ED07458E4C1E] =&gt; (Allow) LPort=9245\nFirewallRules: [F59BA0EC-D15A-450E-A3B5-3CD06B04642D] =&gt; (Allow) LPort=9246\nFirewallRules: [091F67FF-828D-40B1-BF39-95961341573C] =&gt; (Allow) LPort=9247\nFirewallRules: [TCP Query UserE248A19E-99A2-4804-B6BC-5ACD8565160BC:program files (x86)caincain.exe] =&gt; (Allow) C:program files (x86)caincain.exe =&gt; No File\nFirewallRules: [UDP Query User4D5623CB-FB3B-4213-8FD5-8A30C84E8FA2C:program files (x86)caincain.exe] =&gt; (Allow) C:program files (x86)caincain.exe =&gt; No File\nFirewallRules: [7C5AB3F8-67AF-44F7-8597-902CC0D24BD9] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [479750AD-D7FF-40D1-BBF8-C2E1B082AF6E] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [66A28919-DA35-4E6F-A3A3-A57E77F7746B] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [F876F68F-A0AF-4E72-A14C-7D600645599A] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [TCP Query User50979378-03F8-44E0-90DB-5D6959D70469C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Allow) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [UDP Query UserC833F1CD-6066-403C-98CA-92840F4DEE3DC:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Allow) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [TCP Query User973BD09C-F2D6-428F-AA51-398E84385F98C:program files (x86)facebook friend mapperphantomjs.exe] =&gt; (Block) C:program files (x86)facebook friend mapperphantomjs.exe =&gt; No File\nFirewallRules: [UDP Query UserFC808989-45B7-4EA6-9D7B-17B90191BD9FC:program files (x86)facebook friend mapperphantomjs.exe] =&gt; (Block) C:program files (x86)facebook friend mapperphantomjs.exe =&gt; No File\nFirewallRules: [TCP Query User1C96D305-E77E-4FB0-882C-E011AEDE7B98C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [UDP Query User92E6F78F-1558-4A1E-89BD-C9718E9F0025C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [TCP Query User9EBAD4BE-25CB-4D18-B75E-7A6CDE9BB797C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [UDP Query User14DF02A4-E03D-4848-9B20-5E4BF53829F9C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [TCP Query UserAE9277F6-2BA5-48AD-989C-910019969FDCC:program files (x86)winpcaprpcapd.exe] =&gt; (Block) C:program files (x86)winpcaprpcapd.exe (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nFirewallRules: [UDP Query User35D83A15-0FB0-43D7-BCF5-C0B8D94CB1C3C:program files (x86)winpcaprpcapd.exe] =&gt; (Block) C:program files (x86)winpcaprpcapd.exe (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nFirewallRules: [TCP Query User24BEA927-D042-4EBC-A3B5-4274B8538946C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe] =&gt; (Allow) C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe =&gt; No File\nFirewallRules: [UDP Query UserB3EDB2D5-3563-4F56-8092-946663BDE464C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe] =&gt; (Allow) C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe =&gt; No File\nFirewallRules: [8EA1455A-A080-426A-8D2D-5335EB3D8E34] =&gt; (Allow) C:Program FilesBlueStacksHD-Player.exe (BlueStack Systems, Inc. -&gt; BlueStack Systems, Inc.)\nFirewallRules: [A921AD6F-18C4-4A87-94B3-B778404C4912] =&gt; (Allow) C:Program Files (x86)VMwareVMware Playervmware-authd.exe (VMware, Inc. -&gt; VMware, Inc.)\nFirewallRules: [45CAEAFE-406C-4630-B965-2E046F854716] =&gt; (Allow) C:Program Files (x86)VMwareVMware Playervmware-authd.exe (VMware, Inc. -&gt; VMware, Inc.)\nFirewallRules: [1DF90E31-1041-4093-A46F-530835B973A6] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [37D7A423-4F11-48BC-A63A-D606409F3905] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [A68B9487-DE2A-42D4-8F65-7AD1BE4FF56E] =&gt; (Allow) C:UsersXXXXXXZZZDownloadsultdata-android.exe =&gt; No File\nFirewallRules: [0502B751-C5CB-4DD2-8CF9-5CB89E5FC85C] =&gt; (Allow) C:UsersXXXXXXZZZDownloadsultdata-android.exe =&gt; No File\nFirewallRules: [TCP Query UserDDB5E758-E868-4317-B733-0FE13C15E18BC:program filesandroidandroid studiojrebinjava.exe] =&gt; (Allow) C:program filesandroidandroid studiojrebinjava.exe\nFirewallRules: [UDP Query User6098E9AC-3E8B-4C11-AE5E-5D77E65F248AC:program filesandroidandroid studiojrebinjava.exe] =&gt; (Allow) C:program filesandroidandroid studiojrebinjava.exe\nFirewallRules: [TCP Query UserD16594A1-06E4-4EDD-85AC-3AB7A8523C48C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [UDP Query User347E955D-D687-412B-B652-2E7BE3FB0FE3C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [TCP Query User9318684D-7351-437E-AA4B-38CDAB311CC5C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Block) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [UDP Query User2B2AEEDB-7C5F-4179-BE80-649DD55B4518C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Block) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [TCP Query User2E858FE0-9142-4312-8E70-C21A0FA30D53C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe] =&gt; (Allow) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [UDP Query UserFD2327B3-3575-4FFD-8CD6-110255058609C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe] =&gt; (Allow) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [663C67BD-E556-4C15-B443-0198A336ACCE] =&gt; (Block) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [37553DE9-4D90-4CE3-AFEA-CD53619A5F61] =&gt; (Block) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [F3A0DD59-0075-44DB-833D-668479A84900] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoamingZoombinZoom.exe =&gt; No File\nFirewallRules: [8B730F98-3968-42A3-AB7B-001BD1618A58] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoamingZoombinairhost.exe =&gt; No File\nFirewallRules: [F0045ADC-AEA7-406F-8C15-26BA696126A9] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [4B943EEA-FFAE-48AC-83AB-470A55A8022B] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [4C2E7AE0-A446-4C94-A73B-E6FAA3E4EA66] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [467134C1-8DBE-4139-8EDE-D7E61A286F65] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [TCP Query UserD8ED4101-A5CE-4C62-A166-C94C7B8A673FC:fakenet1.4.11fakenet.exe] =&gt; (Allow) C:fakenet1.4.11fakenet.exe () [File not signed]\nFirewallRules: [UDP Query UserCBCE98D5-763A-4A0E-AD25-A01A11150B65C:fakenet1.4.11fakenet.exe] =&gt; (Allow) C:fakenet1.4.11fakenet.exe () [File not signed]\nFirewallRules: [TCP Query User44C0B41F-120E-44CA-BCA9-6654375A0B78C:program files (x86)microsoftskype for desktopskype.exe] =&gt; (Allow) C:program files (x86)microsoftskype for desktopskype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [UDP Query UserC842BD42-262C-4277-96CD-376902CDA081C:program files (x86)microsoftskype for desktopskype.exe] =&gt; (Allow) C:program files (x86)microsoftskype for desktopskype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [TCP Query UserEF992F2B-0A05-4B7D-8D80-0960EDE2BE96C:program files (x86)nmapnmap.exe] =&gt; (Allow) C:program files (x86)nmapnmap.exe (Insecure.Com LLC -&gt; Insecure.Org)\nFirewallRules: [UDP Query UserED9C07AC-142E-4AF4-B911-F0430B82B0ADC:program files (x86)nmapnmap.exe] =&gt; (Allow) C:program files (x86)nmapnmap.exe (Insecure.Com LLC -&gt; Insecure.Org)\nFirewallRules: [TCP Query UserDB6B9E30-A92D-4FAA-B83C-534A9DB88096C:program files (x86)microsoft officeoffice14groove.exe] =&gt; (Block) C:program files (x86)microsoft officeoffice14groove.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [UDP Query User5E059811-A8BA-4348-A5EE-8024A24393C9C:program files (x86)microsoft officeoffice14groove.exe] =&gt; (Block) C:program files (x86)microsoft officeoffice14groove.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [FABFAEEE-3FF4-421B-A30B-818CDC15DD55] =&gt; (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -&gt; Google LLC)</p>"},{"id":"text-77","type":"text","heading":"","plain_text":"==================== Restore Points =========================","html":"<p>==================== Restore Points =========================</p>"},{"id":"text-78","type":"text","heading":"","plain_text":"01-06-2020 18:20:41 Installed OSRAM","html":"<p>01-06-2020 18:20:41 Installed OSRAM</p>"},{"id":"text-79","type":"text","heading":"","plain_text":"==================== Faulty Device Manager Devices ============","html":"<p>==================== Faulty Device Manager Devices ============</p>"},{"id":"text-80","type":"text","heading":"","plain_text":"Name: WAN Miniport (SSTP) #3\nDescription: WAN Miniport (SSTP)\nClass Guid: 4d36e972-e325-11ce-bfc1-08002be10318\nManufacturer: Microsoft\nService: RasSstp\nProblem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)\nResolution: Update the driver","html":"<p>Name: WAN Miniport (SSTP) #3\nDescription: WAN Miniport (SSTP)\nClass Guid: 4d36e972-e325-11ce-bfc1-08002be10318\nManufacturer: Microsoft\nService: RasSstp\nProblem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)\nResolution: Update the driver</p>"},{"id":"text-81","type":"text","heading":"","plain_text":"Name: vJoy Device\nDescription: vJoy Device\nClass Guid: 745a17a0-74d3-11d0-b6fe-00a0c90f57da\nManufacturer: Shaul Eizikovich\nService: vjoy\nProblem: : This device is disabled. (Code 22)\nResolution: In Device Manager, click &quot;Action&quot;, and then click &quot;Enable Device&quot;. This starts the Enable Device wizard. Follow the instructions.","html":"<p>Name: vJoy Device\nDescription: vJoy Device\nClass Guid: 745a17a0-74d3-11d0-b6fe-00a0c90f57da\nManufacturer: Shaul Eizikovich\nService: vjoy\nProblem: : This device is disabled. (Code 22)\nResolution: In Device Manager, click &quot;Action&quot;, and then click &quot;Enable Device&quot;. This starts the Enable Device wizard. Follow the instructions.</p>"},{"id":"text-82","type":"text","heading":"","plain_text":"==================== Event log errors: ========================","html":"<p>==================== Event log errors: ========================</p>"},{"id":"text-83","type":"text","heading":"","plain_text":"Application errors:\n==================\nError: (06/09/2020 09:32:39 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome da aplicação com falha: SecureLine.exe, versão: 1.0.289.0, carimbo de data/hora: 0x5720feec\nNome do módulo com falha: HTMLayout.dll, versão: 6.3.9600.19697, carimbo de data/hora: 0x5e91f218\nCódigo de exceção: 0xc0000135\nDesvio de falha: 0x0009d452\nID do processo com falha: 0x1294\nHora de início da aplicação com falha: 0x01d63e367fe5e91f\nCaminho da aplicação com falha: C:Program FilesAVAST SoftwareSecureLineSecureLine.exe\nCaminho do módulo com falha: HTMLayout.dll\nID do Relatório: c6e5238e-aa2b-11ea-8303-3ca82aab1c8a\nNome completo do pacote com falha: \nID da aplicação relativa ao pacote com falha:","html":"<p>Application errors:\n==================\nError: (06/09/2020 09:32:39 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome da aplicação com falha: SecureLine.exe, versão: 1.0.289.0, carimbo de data/hora: 0x5720feec\nNome do módulo com falha: HTMLayout.dll, versão: 6.3.9600.19697, carimbo de data/hora: 0x5e91f218\nCódigo de exceção: 0xc0000135\nDesvio de falha: 0x0009d452\nID do processo com falha: 0x1294\nHora de início da aplicação com falha: 0x01d63e367fe5e91f\nCaminho da aplicação com falha: C:Program FilesAVAST SoftwareSecureLineSecureLine.exe\nCaminho do módulo com falha: HTMLayout.dll\nID do Relatório: c6e5238e-aa2b-11ea-8303-3ca82aab1c8a\nNome completo do pacote com falha: \nID da aplicação relativa ao pacote com falha:</p>"},{"id":"text-84","type":"text","heading":"","plain_text":"Error: (06/09/2020 09:30:46 AM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: O programa LiveComm.exe versão 17.5.9600.22013 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.","html":"<p>Error: (06/09/2020 09:30:46 AM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: O programa LiveComm.exe versão 17.5.9600.22013 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.</p>"},{"id":"text-85","type":"text","heading":"","plain_text":"ID do Processo: 1d24","html":"<p>ID do Processo: 1d24</p>"},{"id":"text-86","type":"text","heading":"","plain_text":"Hora de Início: 01d63e378eedd1c5","html":"<p>Hora de Início: 01d63e378eedd1c5</p>"},{"id":"text-87","type":"text","heading":"","plain_text":"Hora de Cessação: 4294967295","html":"<p>Hora de Cessação: 4294967295</p>"},{"id":"text-88","type":"text","heading":"","plain_text":"Caminho da Aplicação: C:Program FilesWindowsAppsmicrosoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbweLiveComm.exe","html":"<p>Caminho da Aplicação: C:Program FilesWindowsAppsmicrosoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbweLiveComm.exe</p>"},{"id":"text-89","type":"text","heading":"","plain_text":"ID do Relatório: 8290376b-aa2b-11ea-8303-3ca82aab1c8a","html":"<p>ID do Relatório: 8290376b-aa2b-11ea-8303-3ca82aab1c8a</p>"},{"id":"text-90","type":"text","heading":"","plain_text":"Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe","html":"<p>Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe</p>"},{"id":"text-91","type":"text","heading":"","plain_text":"ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1","html":"<p>ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1</p>"},{"id":"text-92","type":"text","heading":"","plain_text":"Error: (06/09/2020 09:21:41 AM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: O programa LiveComm.exe versão 17.5.9600.22013 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.","html":"<p>Error: (06/09/2020 09:21:41 AM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: O programa LiveComm.exe versão 17.5.9600.22013 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação.</p>"},{"id":"text-93","type":"text","heading":"","plain_text":"ID do Processo: 1be8","html":"<p>ID do Processo: 1be8</p>"},{"id":"text-94","type":"text","heading":"","plain_text":"Hora de Início: 01d63e36410c1675","html":"<p>Hora de Início: 01d63e36410c1675</p>"},{"id":"text-95","type":"text","heading":"","plain_text":"Hora de Cessação: 4294967295","html":"<p>Hora de Cessação: 4294967295</p>"},{"id":"text-96","type":"text","heading":"","plain_text":"Caminho da Aplicação: C:Program FilesWindowsAppsmicrosoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbweLiveComm.exe","html":"<p>Caminho da Aplicação: C:Program FilesWindowsAppsmicrosoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbweLiveComm.exe</p>"},{"id":"text-97","type":"text","heading":"","plain_text":"ID do Relatório: 35f199e1-aa2a-11ea-8303-3ca82aab1c8a","html":"<p>ID do Relatório: 35f199e1-aa2a-11ea-8303-3ca82aab1c8a</p>"},{"id":"text-98","type":"text","heading":"","plain_text":"Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe","html":"<p>Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe</p>"},{"id":"text-99","type":"text","heading":"","plain_text":"ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1","html":"<p>ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1</p>"},{"id":"text-100","type":"text","heading":"","plain_text":"Error: (06/09/2020 09:10:41 AM) (Source: DPTF) (EventID: 256) (User: )\nDescription: Intel® Dynamic Platform and Thermal Framework : ESIF(8.0.10100.71) TYPE: ERROR","html":"<p>Error: (06/09/2020 09:10:41 AM) (Source: DPTF) (EventID: 256) (User: )\nDescription: Intel® Dynamic Platform and Thermal Framework : ESIF(8.0.10100.71) TYPE: ERROR</p>"},{"id":"text-101","type":"text","heading":"","plain_text":"DPTF Build Version:  8.0.10100.71\nDPTF Build Date:  Sep 18 2014 11:16:17\nSource File:  &#8230;&#8230;..SourcesPoliciesPolicyLibPolicyBase.cpp @ line 553\nExecuting Function:  PolicyBase::takeControlOfOsc\nMessage:  Failed to acquire OSC.\nPolicy:   [0]","html":"<p>DPTF Build Version:  8.0.10100.71\nDPTF Build Date:  Sep 18 2014 11:16:17\nSource File:  &#8230;&#8230;..SourcesPoliciesPolicyLibPolicyBase.cpp @ line 553\nExecuting Function:  PolicyBase::takeControlOfOsc\nMessage:  Failed to acquire OSC.\nPolicy:   [0]</p>"},{"id":"text-102","type":"text","heading":"","plain_text":"Error: (06/08/2020 02:11:58 AM) (Source: NvStreamSvc) (EventID: 1) (User: )\nDescription: Event-ID 1","html":"<p>Error: (06/08/2020 02:11:58 AM) (Source: NvStreamSvc) (EventID: 1) (User: )\nDescription: Event-ID 1</p>"},{"id":"text-103","type":"text","heading":"","plain_text":"Error: (06/08/2020 02:11:57 AM) (Source: NvStreamSvc) (EventID: 1) (User: )\nDescription: Event-ID 1","html":"<p>Error: (06/08/2020 02:11:57 AM) (Source: NvStreamSvc) (EventID: 1) (User: )\nDescription: Event-ID 1</p>"},{"id":"text-104","type":"text","heading":"","plain_text":"Error: (06/07/2020 05:15:29 PM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome da aplicação com falha: rundll32.exe_winethc.dll, versão: 6.3.9600.17415, carimbo de data/hora: 0x54504eb8\nNome do módulo com falha: USER32.dll, versão: 6.3.9600.19697, carimbo de data/hora: 0x5e91f8a1\nCódigo de exceção: 0xc0000142\nDesvio de falha: 0x00000000000ecf40\nID do processo com falha: 0xfe20\nHora de início da aplicação com falha: 0x01d63ce6dc383106\nCaminho da aplicação com falha: C:WindowsSystem32rundll32.exe\nCaminho do módulo com falha: USER32.dll\nID do Relatório: 1a146bd8-a8da-11ea-8302-3ca82aab1c8a\nNome completo do pacote com falha: \nID da aplicação relativa ao pacote com falha:","html":"<p>Error: (06/07/2020 05:15:29 PM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome da aplicação com falha: rundll32.exe_winethc.dll, versão: 6.3.9600.17415, carimbo de data/hora: 0x54504eb8\nNome do módulo com falha: USER32.dll, versão: 6.3.9600.19697, carimbo de data/hora: 0x5e91f8a1\nCódigo de exceção: 0xc0000142\nDesvio de falha: 0x00000000000ecf40\nID do processo com falha: 0xfe20\nHora de início da aplicação com falha: 0x01d63ce6dc383106\nCaminho da aplicação com falha: C:WindowsSystem32rundll32.exe\nCaminho do módulo com falha: USER32.dll\nID do Relatório: 1a146bd8-a8da-11ea-8302-3ca82aab1c8a\nNome completo do pacote com falha: \nID da aplicação relativa ao pacote com falha:</p>"},{"id":"text-105","type":"text","heading":"","plain_text":"Error: (06/07/2020 11:52:54 AM) (Source: Perflib) (EventID: 1008) (User: )\nDescription: O procedimento Open para o serviço &quot;WmiApRpl&quot; na DLL &quot;C:Windowssystem32wbemwmiaprpl.dll&quot; falhou. Os dados de desempenho para este serviço não estarão disponíveis. Os primeiros quatro bytes (DWORD) da secção Data contêm o código de erro.","html":"<p>Error: (06/07/2020 11:52:54 AM) (Source: Perflib) (EventID: 1008) (User: )\nDescription: O procedimento Open para o serviço &quot;WmiApRpl&quot; na DLL &quot;C:Windowssystem32wbemwmiaprpl.dll&quot; falhou. Os dados de desempenho para este serviço não estarão disponíveis. Os primeiros quatro bytes (DWORD) da secção Data contêm o código de erro.</p>"},{"id":"text-106","type":"text","heading":"","plain_text":"System errors:\n=============\nError: (06/09/2020 10:13:02 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.","html":"<p>System errors:\n=============\nError: (06/09/2020 10:13:02 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.</p>"},{"id":"text-107","type":"text","heading":"","plain_text":"Error: (06/09/2020 10:13:02 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.","html":"<p>Error: (06/09/2020 10:13:02 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.</p>"},{"id":"text-108","type":"text","heading":"","plain_text":"Error: (06/09/2020 09:43:42 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.","html":"<p>Error: (06/09/2020 09:43:42 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.</p>"},{"id":"text-109","type":"text","heading":"","plain_text":"Error: (06/09/2020 09:43:42 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.","html":"<p>Error: (06/09/2020 09:43:42 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.</p>"},{"id":"text-110","type":"text","heading":"","plain_text":"Error: (06/09/2020 09:41:40 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.","html":"<p>Error: (06/09/2020 09:41:40 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.</p>"},{"id":"text-111","type":"text","heading":"","plain_text":"Error: (06/09/2020 09:41:40 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.","html":"<p>Error: (06/09/2020 09:41:40 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.</p>"},{"id":"text-112","type":"text","heading":"","plain_text":"Error: (06/09/2020 09:21:28 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.","html":"<p>Error: (06/09/2020 09:21:28 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado.</p>"},{"id":"text-113","type":"text","heading":"","plain_text":"Error: (06/09/2020 09:21:27 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.","html":"<p>Error: (06/09/2020 09:21:27 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado.</p>"},{"id":"text-114","type":"text","heading":"","plain_text":"Windows Defender:\n===================================\nDate: 2016-04-30 16:06:04.685\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 0F93CF3B-A2A0-4700-9D62-D626C4F6BC00\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM","html":"<p>Windows Defender:\n===================================\nDate: 2016-04-30 16:06:04.685\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 0F93CF3B-A2A0-4700-9D62-D626C4F6BC00\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM</p>"},{"id":"text-115","type":"text","heading":"","plain_text":"Date: 2016-04-30 14:18:37.297\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 30B6151F-CD35-4918-8EBA-47223CB0EE9A\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM","html":"<p>Date: 2016-04-30 14:18:37.297\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 30B6151F-CD35-4918-8EBA-47223CB0EE9A\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM</p>"},{"id":"text-116","type":"text","heading":"","plain_text":"Date: 2016-04-28 23:46:49.814\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: BBE65ED8-605F-4130-9BD3-D58DD3640E3B\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM","html":"<p>Date: 2016-04-28 23:46:49.814\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: BBE65ED8-605F-4130-9BD3-D58DD3640E3B\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM</p>"},{"id":"text-117","type":"text","heading":"","plain_text":"Date: 2016-04-28 22:11:50.407\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: D556AB88-19BC-4270-979C-58941438DC75\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM","html":"<p>Date: 2016-04-28 22:11:50.407\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: D556AB88-19BC-4270-979C-58941438DC75\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM</p>"},{"id":"text-118","type":"text","heading":"","plain_text":"Date: 2016-04-28 21:58:02.035\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 20BA1FA2-3A89-4648-8CC9-3D9F0804C803\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM","html":"<p>Date: 2016-04-28 21:58:02.035\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 20BA1FA2-3A89-4648-8CC9-3D9F0804C803\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM</p>"},{"id":"text-119","type":"text","heading":"","plain_text":"Date: 2016-04-28 02:40:09.940\nDescription: \nWindows Defender encontrou um erro ao tentar carregar assinaturas e irá tentar reverter para um conjunto de assinaturas em condições conhecido.\nAssinaturas Tentadas: Atual\nCódigo de Erro: 0x80073aba\nDescrição do Erro: O recurso é demasiado velho para ser compatível. \nVersão de Assinatura: 1.191.2881.0;1.191.2881.0\nVersão de Motor: 1.1.11302.0","html":"<p>Date: 2016-04-28 02:40:09.940\nDescription: \nWindows Defender encontrou um erro ao tentar carregar assinaturas e irá tentar reverter para um conjunto de assinaturas em condições conhecido.\nAssinaturas Tentadas: Atual\nCódigo de Erro: 0x80073aba\nDescrição do Erro: O recurso é demasiado velho para ser compatível. \nVersão de Assinatura: 1.191.2881.0;1.191.2881.0\nVersão de Motor: 1.1.11302.0</p>"},{"id":"text-120","type":"text","heading":"","plain_text":"Date: 2014-12-10 04:48:25.704\nDescription: \nA funcionalidade de Proteção em Tempo Real de Windows Defender encontrou um erro e falhou.\nFuncionalidade: Sistema de Inspeção de Rede\nCódigo de Erro: 0x80070002\nDescrição do Erro: The system cannot find the file specified. \nRazão: Faltam atualizações no sistema que são necessárias à execução do Sistema de Inspeção de Rede. Instale as atualizações necessárias e reinicie o computador.","html":"<p>Date: 2014-12-10 04:48:25.704\nDescription: \nA funcionalidade de Proteção em Tempo Real de Windows Defender encontrou um erro e falhou.\nFuncionalidade: Sistema de Inspeção de Rede\nCódigo de Erro: 0x80070002\nDescrição do Erro: The system cannot find the file specified. \nRazão: Faltam atualizações no sistema que são necessárias à execução do Sistema de Inspeção de Rede. Instale as atualizações necessárias e reinicie o computador.</p>"},{"id":"text-121","type":"text","heading":"","plain_text":"Date: 2014-12-10 04:46:18.485\nDescription: \nA funcionalidade de Proteção em Tempo Real de Windows Defender encontrou um erro e falhou.\nFuncionalidade: Sistema de Inspeção de Rede\nCódigo de Erro: 0x80070002\nDescrição do Erro: The system cannot find the file specified. \nRazão: Faltam atualizações no sistema que são necessárias à execução do Sistema de Inspeção de Rede. Instale as atualizações necessárias e reinicie o computador.","html":"<p>Date: 2014-12-10 04:46:18.485\nDescription: \nA funcionalidade de Proteção em Tempo Real de Windows Defender encontrou um erro e falhou.\nFuncionalidade: Sistema de Inspeção de Rede\nCódigo de Erro: 0x80070002\nDescrição do Erro: The system cannot find the file specified. \nRazão: Faltam atualizações no sistema que são necessárias à execução do Sistema de Inspeção de Rede. Instale as atualizações necessárias e reinicie o computador.</p>"},{"id":"text-122","type":"text","heading":"","plain_text":"CodeIntegrity:\n===================================","html":"<p>CodeIntegrity:\n===================================</p>"},{"id":"text-123","type":"text","heading":"","plain_text":"Date: 2018-11-13 09:54:06.045\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","html":"<p>Date: 2018-11-13 09:54:06.045\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.</p>"},{"id":"text-124","type":"text","heading":"","plain_text":"Date: 2018-11-13 09:54:05.586\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","html":"<p>Date: 2018-11-13 09:54:05.586\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.</p>"},{"id":"text-125","type":"text","heading":"","plain_text":"Date: 2018-11-13 09:54:04.899\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","html":"<p>Date: 2018-11-13 09:54:04.899\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.</p>"},{"id":"text-126","type":"text","heading":"","plain_text":"Date: 2018-11-13 09:54:04.297\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","html":"<p>Date: 2018-11-13 09:54:04.297\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.</p>"},{"id":"text-127","type":"text","heading":"","plain_text":"Date: 2018-11-13 09:54:03.799\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","html":"<p>Date: 2018-11-13 09:54:03.799\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.</p>"},{"id":"text-128","type":"text","heading":"","plain_text":"Date: 2018-11-13 09:54:03.416\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","html":"<p>Date: 2018-11-13 09:54:03.416\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.</p>"},{"id":"text-129","type":"text","heading":"","plain_text":"Date: 2018-11-13 09:54:03.150\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","html":"<p>Date: 2018-11-13 09:54:03.150\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.</p>"},{"id":"text-130","type":"text","heading":"","plain_text":"Date: 2018-11-13 09:54:02.801\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.","html":"<p>Date: 2018-11-13 09:54:02.801\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system.</p>"},{"id":"text-131","type":"text","heading":"","plain_text":"==================== Memory info ===========================","html":"<p>==================== Memory info ===========================</p>"},{"id":"text-132","type":"text","heading":"","plain_text":"BIOS: Insyde F.03 03/31/2015\nMotherboard: Hewlett-Packard 8096\nProcessor: Intel® Core™ i5-5200U CPU @ 2.20GHz\nPercentage of memory in use: 41%\nTotal physical RAM: 8130.26 MB\nAvailable physical RAM: 4745.97 MB\nTotal Virtual: 16834.26 MB\nAvailable Virtual: 13268.11 MB","html":"<p>BIOS: Insyde F.03 03/31/2015\nMotherboard: Hewlett-Packard 8096\nProcessor: Intel® Core™ i5-5200U CPU @ 2.20GHz\nPercentage of memory in use: 41%\nTotal physical RAM: 8130.26 MB\nAvailable physical RAM: 4745.97 MB\nTotal Virtual: 16834.26 MB\nAvailable Virtual: 13268.11 MB</p>"},{"id":"text-133","type":"text","heading":"","plain_text":"==================== Drives ================================","html":"<p>==================== Drives ================================</p>"},{"id":"text-134","type":"text","heading":"","plain_text":"Drive c: (Windows) (Fixed) (Total:441.62 GB) (Free:56.1 GB) NTFS\nDrive d: (RECOVERY) (Fixed) (Total:23.12 GB) (Free:2.56 GB) NTFS ==&gt;[system with boot components (obtained from drive)]","html":"<p>Drive c: (Windows) (Fixed) (Total:441.62 GB) (Free:56.1 GB) NTFS\nDrive d: (RECOVERY) (Fixed) (Total:23.12 GB) (Free:2.56 GB) NTFS ==&gt;[system with boot components (obtained from drive)]</p>"},{"id":"text-135","type":"text","heading":"","plain_text":"\\?Volume320a96b5-9680-4cfd-94e7-147030d64aeb (WINRE) (Fixed) (Total:0.63 GB) (Free:0.34 GB) NTFS","html":"<p>\\?Volume320a96b5-9680-4cfd-94e7-147030d64aeb (WINRE) (Fixed) (Total:0.63 GB) (Free:0.34 GB) NTFS</p>"},{"id":"text-136","type":"text","heading":"","plain_text":"==================== MBR &amp; Partition Table ====================","html":"<p>==================== MBR &amp; Partition Table ====================</p>"},{"id":"text-137","type":"text","heading":"","plain_text":"==========================================================\nDisk: 0 (Size: 465.8 GB) (Disk ID: 4199D061)","html":"<p>==========================================================\nDisk: 0 (Size: 465.8 GB) (Disk ID: 4199D061)</p>"},{"id":"text-138","type":"text","heading":"","plain_text":"Partition: GPT.","html":"<p>Partition: GPT.</p>"},{"id":"text-139","type":"text","heading":"","plain_text":"==================== End of Addition.txt =======================","html":"<p>==================== End of Addition.txt =======================</p>"},{"id":"text-140","type":"text","heading":"","plain_text":"Click to rate this post!\n                                   \n                               [Total: 0  Average: 0]","html":"<p>Click to rate this post!\n                                   \n                               [Total: 0  Average: 0]</p>"}],"sections":[{"id":"text-1","heading":"Text","content":"Donc, nouveau scan (09-06-2020):"},{"id":"text-2","heading":"Text","content":"Résultat de l&#39;analyse de Farbar Recovery Scan Tool (FRST) (x64) Version: 06-06-2020\nExécuté par XXXXXXZZZ (administrateur) sur XXXXXXZZZ (Hewlett-Packard HP Pavilion Notebook) (09-06-2020 11:52:22)\nExécution à partir de C:  Users  XXXXXXZZZ  Downloads\nProfils chargés: XXXXXXZZZ\nPlateforme: Windows 8.1 (mise à jour) (X64) Langue: Português (Portugal)\nNavigateur par défaut: Chrome\nMode de démarrage: Normal"},{"id":"text-3","heading":"Text","content":"==================== Processus (liste blanche) ================="},{"id":"text-4","heading":"Text","content":"(Si une entrée est incluse dans la liste de correctifs, le processus sera fermé. Le fichier ne sera pas déplacé.)"},{"id":"text-5","heading":"Text","content":"() [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  opvapp.exe\n(Adobe Inc. -&gt; Adobe Systems) C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  armsvc.exe\n(Apple Inc. -&gt; Apple Inc.) C:  Program Files  Bonjour  mDNSResponder.exe\n(Atheros Communications, Inc.) [File not signed] C:  Program Files (x86)  Jumpstart  jswpbapi.exe\n(AVAST Software s.r.o. -&gt; AVAST Software) C:  Program Files  AVAST Software  SecureLine  VpnSvc.exe\n(AVG Netherlands B.V. -&gt;) C:  Program Files (x86)  AVG Web TuneUp  WtuSystemSupport.exe\n(AVG Netherlands B.V. -&gt; AVG Secure Search) C:  Program Files (x86)  Common Files  AVG Secure Search  vToolbarUpdater  40.3.8  ToolbarUpdater.exe\n(AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  AVG TuneUp  TuneupSvc.exe\n(AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  AVG TuneUp  TuneupUI.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  aswEngSrv.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  aswidsagent.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  AVGSvc.exe\n(AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.) C:  Program Files (x86)  AVG  Antivirus  AVGUI.exe \n(CyberLink Corp. -&gt;) C:  Program Files  CyberLink  Shared files  RichVideo64.exe\n(CyberLink Corp. -&gt; CyberLink Corp.) C:  Program Files (x86)  Cyberlink  YouCam  YouCamService.exe\n(Dassault Systèmes) [File not signed] C:  Program Files  Dassault Systemes  DraftSight  bin  dsHttpApiService.exe\n(DesignBuilder Software Ltd -&gt; DesignBuilder Software Ltd.) C:  Program Files (x86)  DesignBuilder  JobServer  DBJobServer.exe\n(DesignBuilder Software Ltd -&gt; DesignBuilder) C:  Program Files (x86)  DesignBuilder  Lib  DBSimLServer.exe\n(DEVGURU CO LTD -&gt; DEVGURU Co., LTD.) C:  Program Files  Samsung  USB Drivers  25_escape  conn  ss_conn_service.exe\n(DEVGURU Co., Ltd. -&gt; DEVGURU Co., LTD.) C:  Program Files  Samsung  USB Drivers  28_ssconn2  conn  ss_conn_service2.exe\n(Hewlett Packard -&gt; Hewlett-Packard Co.) C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  ScanToPCActivationApp.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Company) C:  Program Files (x86)  Hewlett-Packard  Shared  hpqwmiex.exe\n(Société Hewlett-Packard -&gt; Société Hewlett-Packard) C:  Windows  System32  hpservice.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.) C:  Program Files (x86)  Hewlett-Packard  HP CoolSense  CoolSense.exe\n(Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.) C:  Program Files (x86)  Hewlett-Packard  HP System Event  HPWMISVC.exe\n(HP Inc. -&gt; HP Inc.) C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  HPSupportSolutionsFrameworkService.exe\n(Intel Corporation &#8211; Groupe des sous-systèmes intégrés et blocs IP -&gt; Intel Corporation) C:  Program Files (x86)  Intel  Intel® Management Engine Components  DAL  jhi_service.exe\n(Intel Corporation &#8211; Groupe des sous-systèmes intégrés et blocs IP -&gt; Intel Corporation) C:  Program Files (x86)  Intel  Intel® Management Engine Components  LMS  LMS.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxCUIService.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxEM.exe\n(Intel Corporation &#8211; pGFX -&gt; Intel Corporation) C:  Windows  System32  igfxHK.exe\n(Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation) C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorDataMgrSvc.exe\n(Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation) C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorIcon.exe\n(Logiciel Intel® -&gt; Intel Corporation) C:  Windows  SysWOW64  esif_uf.exe\n(Logiciel Intel® -&gt; Intel Corporation) C:  Windows  Temp  DPTF  esif_assist.exe\n(Malwarebytes Inc -&gt; Malwarebytes) C:  Program Files  Malwarebytes  Anti-Malware  MBAMService.exe\n(Malwarebytes Inc -&gt; Malwarebytes) C:  Program Files  Malwarebytes  Anti-Malware  mbamtray.exe\n(Mega Limited -&gt; Mega Limited) C:  Users  XXXXXXZZZ  AppData  Local  MEGAsync  MEGAsync.exe\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Program Files (x86)  Microsoft Office  Office14  MSOSYNC.EXE\n(Microsoft Corporation -&gt; Microsoft Corporation) C:  Windows  Microsoft.NET  Framework64  v3.0  WPF  PresentationFontCache.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  dllhost.exe \n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  SkyDrive.exe\n(Microsoft Windows -&gt; Microsoft Corporation) C:  Windows  System32  wlanext.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  NetService  NvNetworkService.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvBackend.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display  nvtray.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  Display  nvxdsync.exe\n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Program Files  NVIDIA Corporation  NvStreamSrv  nvstreamsvc.exe \n(NVIDIA Corporation -&gt; NVIDIA Corporation) C:  Windows  System32  nvvsvc.exe \n(Technologie PLX) [File not signed] C:  Program Files (x86)  Iomega  Iomega Encryption  Iomega Encryption.exe\n(Realtek Semiconductor Corp -&gt;) C:  Program Files (x86)  Realtek  REALTEK Bluetooth  BTDevMgr.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RAVBg64.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RtkAudioService64.exe\n(Realtek Semiconductor Corp -&gt; Realtek Semiconductor) C:  Program Files  Realtek  Audio  HDA  RtkNGUI64.exe\n(Softex Inc.) [File not signed] C:  Program Files  Hewlett-Packard  SimplePass  OmniServ.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  ClientCore.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBroker.exe\n(Softex Incorporated -&gt; Hewlett-Packard) C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBrokerDsktop.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnh.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPEnhService.exe\n(Synaptics Incorporated -&gt; Synaptics Incorporated) C:  Program Files  Synaptics  SynTP  SynTPHelper.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Program Files (x86)  Common Files  VMware  USB  vmware-usbarbitrator64.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Program Files (x86)  VMware  VMware Player  vmware-authd.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Windows  SysWOW64  vmnat.exe\n(VMware, Inc. -&gt; VMware, Inc.) C:  Windows  SysWOW64  vmnetdhcp.exe\n(WildTangent Inc -&gt; WildTangent) C:  Program Files (x86)  WildTangent Games  App  GamesAppIntegrationService.exe\n(WildTangent Inc -&gt; WildTangent, Inc.) C:  Program Files (x86)  WildTangent Games  App  GamesAppService.exe"},{"id":"text-6","heading":"Text","content":"==================== Registre (liste blanche) ==================="},{"id":"text-7","heading":"Text","content":"(Si une entrée est incluse dans la liste de correctifs, l&#39;élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)"},{"id":"text-8","heading":"Text","content":"HKLM  &#8230;  Run: [RTHDVCPL] =&gt; C:  Program Files  Realtek  Audio  HDA  RtkNGUI64.exe [8459480 2015-03-04] (Realtek Semiconductor Corp -&gt; Realtek Semiconductor)\nHKLM  &#8230;  Run: [NvBackend] =&gt; C:  Program Files (x86)  NVIDIA Corporation  Update Core  NvBackend.exe [2464072 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nHKLM  &#8230;  Run: [ShadowPlay] =&gt; C:  Windows  system32  nvspcap64.dll [2800296 2015-02-09] (NVIDIA Corporation PE Sign v2014 -&gt; NVIDIA Corporation) [File not signed]\nHKLM  &#8230;  Run: [AdobeAAMUpdater-1.0] =&gt; C:  Program Files (x86)  Common Files  Adobe  OOBE  PDApp  UWA  UpdaterStartupUtility.exe [558496 2014-02-27] (Adobe Systems Incorporated -&gt; Adobe Systems Incorporated)\nHKLM  &#8230;  Run: [IAStorIcon] =&gt; C:  Program Files  Intel  Intel® Rapid Storage Technology  IAStorIcon.exe [322472 2015-07-22] (Intel Corporation &#8211; Technologie de stockage rapide -&gt; Intel Corporation)\nHKLM  &#8230;  Run: [AVGUI.exe] =&gt; C:  Program Files (x86)  AVG  Antivirus  AvLaunch.exe [156776 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nHKLM-x32  &#8230;  Exécuter: [AccelerometerSysTrayApplet] =&gt; C:  Program Files (x86)  Hewlett-Packard  HP 3D DriveGuard  AccelerometerST.exe [127624 2015-01-30] (Société Hewlett-Packard -&gt; Société Hewlett-Packard)\nHKLM-x32  &#8230;  Exécuter: [HPMessageService] =&gt; C:  Program Files (x86)  Hewlett-Packard  HP System Event  HPMSGSVC.exe [509192 2014-12-01] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nHKLM-x32  &#8230;  Exécuter: [HP Software Update] =&gt; C:  Program Files (x86)  Hp  HP Software Update  HPWuSchd2.exe [96056 2013-05-30] (Société Hewlett-Packard -&gt; Hewlett-Packard)\nHKLM-x32  &#8230;  Exécuter: [BCSSync] =&gt; C:  Program Files (x86)  Microsoft Office  Office14  BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKLM-x32  &#8230;  Exécuter: [] =&gt; [X]\nHKLM-x32  &#8230;  Exécuter: [Acrobat Assistant 8.0] =&gt; C:  Program Files (x86)  Adobe  Acrobat 11.0  Acrobat  Acrotray.exe [3498728 2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nHKLM-x32  &#8230;  Exécuter: [vProt] =&gt; C:  Program Files (x86)  AVG Web TuneUp  vprot.exe [2195968 2019-01-28] (AVG Netherlands B.V. -&gt;)\nHKLM-x32  &#8230;  Exécuter: [VirtualCloneDrive] =&gt; C:  Program Files (x86)  Elaborate Bytes  VirtualCloneDrive  VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nHKLM-x32  &#8230;  Exécuter: [Autodesk Desktop App] =&gt; C:  Program Files (x86)  Autodesk  Autodesk Desktop App  AutodeskDesktopApp.exe [709416 2018-03-10] (Autodesk, Inc. -&gt; Autodesk, Inc.)\nHKLM-x32  &#8230;  Exécuter: [jswtrayutil] =&gt; C:  Program Files (x86)  Jumpstart  jswtrayutil.exe [528384 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nHKLM-x32  &#8230;  Exécuter: [KiesTrayAgent] =&gt; C:  Program Files (x86)  Samsung  Kies  KiesTrayAgent.exe [318112 2017-11-15] (Samsung Electronics CO., LTD. -&gt; Samsung Electronics Co., Ltd.)\nHKLM-x32  &#8230;  Exécuter: [Aimersoft Helper Compact.exe] =&gt; C:  Program Files (x86)  Fichiers communs  Aimersoft  Aimersoft Helper Compact  ASHelper.exe [2138272 2016-10-08] (Shenzhen Jia Xing Investment Co., Ltd. -&gt; AimerSoft)\nHKLM-x32  &#8230;  Exécuter: [SunJavaUpdateSched] =&gt; C:  Program Files (x86)  Fichiers communs  Java  Java Update  jusched.exe [646160 2019-12-11] (Oracle America, Inc. -&gt; Oracle Corporation)\nHKLM-x32  &#8230;  Exécuter: [XArp] =&gt; C:  Program Files (x86)  XArp  xarp.exe [10413568 2011-04-01] (www.chrismc.de) [File not signed]\nHKLM  &#8230;  Winlogon: [Userinit] C:  Windows  SysWOW64  userinit.exe, &lt;==== ATTENTION\nHKLM  &#8230;  Policies  Explorer: [AllowLegacyWebView] 1\nHKLM  &#8230;  Policies  Explorer: [AllowUnhashedWebView] 1\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [HP Deskjet 3050 J610 series (NET)] =&gt; C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [IomegaEncryption] =&gt; C:  Program Files (x86)  Iomega  Iomega Encryption  Iomega Encryption.exe [455168 2011-09-16] (Technologie PLX) [File not signed]\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [DAEMON Tools Lite Automount] =&gt; C:  Program Files  DAEMON Tools Lite  DTAgent.exe [4289728 2016-04-04] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [GoogleDriveSync] =&gt; C:  Program Files  Google  Drive  googledrivesync.exe [48214752 2020-04-06] (Google LLC -&gt;)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Autodesk Sync] =&gt; C:  Program Files  Autodesk  Autodesk Sync  AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -&gt; Autodesk, Inc.)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Steam] =&gt; C:  Program Files (x86)  Steam  steam.exe [3200800 2018-05-19] (Valve -&gt; Valve Corporation)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [CCleaner Smart Cleaning] =&gt; C:  Program Files  CCleaner  CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [Spotify] =&gt; C:  Users  XXXXXXZZZ  AppData  Roaming  Spotify  Spotify.exe [22824680 2020-05-19] (Spotify AB -&gt; Spotify Ltd)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Run: [OfficeSyncProcess] =&gt; C:  Program Files (x86)  Microsoft Office  Office14  MSOSYNC.EXE [721504 2015-09-02] (Microsoft Corporation -&gt; Microsoft Corporation)\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  &#8230;  Policies  Explorer: [] \nHKU  S-1-5-18  &#8230;  Run: [Autodesk Sync] =&gt; C:  Program Files  Autodesk  Autodesk Sync  AdSync.exe [1283112 2016-02-02] (Autodesk, Inc -&gt; Autodesk, Inc.)\nHKLM  &#8230;  Print  Monitors  Adobe PDF Port Monitor: C:  Windows  system32  AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc)\nHKLM  &#8230;  Print  Monitors  HP 9311 Status Monitor: C:  Windows  system32  hpinksts9311LM.dll [332176 2012-09-12] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  Moniteur d&#39;état HP C611: C:  Windows  system32  hpinkstsC611LM.dll [333344 2013-05-06] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  HP Discovery Port Monitor (HP Deskjet 3050 J610 series): C:  Windows  system32  HPDiscoPM9311.dll [741480 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nHKLM  &#8230;  Print  Monitors  HP Universal Port Monitor: C:  Windows  system32  hpbprtmon.dll [423936 2014-06-11] (Éditeur de compatibilité matérielle Microsoft Windows -&gt; Hewlett-Packard)\nHKLM  &#8230;  Print  Monitors  KM Language Monitor: C:  Windows  system32  KMPJL64.DLL [124560 2017-07-31] (Éditeur de compatibilité matérielle Microsoft Windows -&gt; KYOCERA Document Solutions Inc.)\nHKLM  &#8230;  Print  Monitors  Wondershare PDFelement Monitor: C:  Windows  system32  WSPDFelementMonitor.dll [271360 2017-10-19] (Logiciel Wondershare) [File not signed]\nHKLM  Software  Microsoft  Active Setup  Installed Components: [8A69D345-D564-463c-AFF1-A69D9E530F96] -&gt; C:  Program Files (x86)  Google  Chrome  Application  83.0.4103.97  Installer  chrmstp.exe [2020-06-05] (Google LLC -&gt; Google LLC)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [538C240D-3DEE-4032-AB4C-08A3A6EB0861] -&gt; c:  Program Files (x86)  CyberLink  YouCam  CLCredProv  x64  CLCredProv.dll [2015-02-11] (CyberLink Corp. -&gt; CyberLink)\nHKLM  Software  &#8230;  Authentication  Credential Providers: [F3F1B0FA-4775-41d8-8578-436772D93FB4] -&gt; C:  Program Files  Hewlett-Packard  SimplePass  OmniPassCredProv.dll [2015-03-04] (Softex Inc.) [File not signed]\nHKLM  Software  &#8230;  Authentication  Credential Provider Filters: [F3F1B0FA-4775-41d8-8578-436772D93FB4] -&gt; C:  Program Files  Hewlett-Packard  SimplePass  OmniPassCredProv.dll [2015-03-04] (Softex Inc.) [File not signed]\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  Assistante de gestor de conteúdo pour PlayStation®.lnk [2016-04-23]\nShortcutTarget: Assistente de gestor de conteúdo for PlayStation®.lnk -&gt; C:  Program Files (x86)  Sony  Content Manager Assistant  CMA.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  Avast SecureLine VPN.lnk [2019-07-16]\nShortcutTarget: Avast SecureLine VPN.lnk -&gt; C:  Program Files  AVAST Software  SecureLine  Vpn.exe (AVAST Software s.r.o. -&gt; AVAST Software)\nDémarrage: C:  ProgramData  Microsoft  Windows  Menu Démarrer  Programmes  Démarrage  AVG TuneUp.lnk [2019-09-20]\nShortcutTarget: AVG TuneUp.lnk -&gt; C:  Program Files (x86)  AVG  AVG TuneUp  TuneupUI.exe (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  Autenticacao.gov.pt.lnk [2020-04-24]\nShortcutTarget: Autenticacao.gov.pt.lnk -&gt; C:  Program Files (x86)  plugin Autenticacao.Gov  Autenticacao.gov.pt.exe (Agência para a Modernização Administrativa, I.P. -&gt; Agência para a Modernização Administrativa, IP)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  MEGAsync.lnk [2019-02-07]\nShortcutTarget: MEGAsync.lnk -&gt; C:  Users  XXXXXXZZZ  AppData  Local  MEGAsync  MEGAsync.exe (Mega Limited -&gt; Mega Limited)\nDémarrage: C:  Users  XXXXXXZZZ  AppData  Roaming  Microsoft  Windows  Start Menu  Programs  Startup  OneNote 2010 Screen Clipper and Launcher.lnk [2018-05-18]\nShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -&gt; C:  Program Files (x86)  Microsoft Office  Office14  ONENOTEM.EXE (Microsoft Corporation -&gt; Microsoft Corporation)\nBootExecute: autocheck autochk / m / P  Device  HarddiskVolume13autocheck autochk * \nGroupPolicy: Restriction? &lt;==== ATTENTION\nFF HKLM  SOFTWARE  Policies  Mozilla  Firefox: Restriction &lt;==== ATTENTION\nCHR HKLM  SOFTWARE  Policies  Google: Restriction &lt;==== ATTENTION"},{"id":"text-9","heading":"Text","content":"==================== Tâches planifiées (liste blanche) ============"},{"id":"text-10","heading":"Text","content":"(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé sauf s&#39;il est répertorié séparément.)"},{"id":"text-11","heading":"Text","content":"Tâche: 019EFCA7-800A-45BD-B5D4-E7BC04A47010 &#8211; System32  Tasks  Adobe Flash Player NPAPI Notifier =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashUtil32_32_0_0_371_Plugin.exe [1458232 2020-05-13] (Adobe Inc. -&gt; Adobe)\nTâche: 035A9236-3D0D-4CEC-88E7-316A88A60D57 &#8211; System32  Tasks  AutoKMS =&gt; C:  Windows  AutoKMS  AutoKMS.exe [5046784 2018-01-30] () [File not signed]\nTâche: 0B7F76E1-EE25-416A-B69A-E967896AD3B6 &#8211; System32  Tasks  GoogleUpdateTaskMachineUA =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [154440 2016-03-18] (Google Inc -&gt; Google Inc.)\nTâche: 0CE47549-B8CB-4819-ABF3-3FA3A57AB0D4 &#8211; System32  Tasks  Hewlett-Packard  HP Active Health  HP Active Health Scan (HPSA) =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPActiveHealth  ActiveHealth.exe [198696 2016-11-07] (HP Inc. -&gt; HP Inc.)\nTâche: 130F5CA5-8C3C-463D-8A72-447D87BD6E01 &#8211; System32  Tasks  Start SimplePass =&gt; C:  Program Files  Hewlett-Packard  SimplePass  ClientCore.exe [4716280 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: 196B8F02-98BF-41FB-B1A3-5F36DB0DE18D &#8211; System32  Tasks  Adobe Acrobat Update Task =&gt; C:  Program Files (x86)  Common Files  Adobe  ARM  1.0  AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -&gt; Adobe Systems)\nTâche: 2082FD68-9C15-4062-AC44-9424D96210B8 &#8211; pas de chemin de fichier\nTâche: 23DAD9CE-2053-4866-8F74-D0729C66989D &#8211; pas de chemin de fichier\nTâche: 2D6FC168-D4B7-4440-A3F6-FFF3E4F97500 &#8211; pas de chemin de fichier\nTâche: 2E6908D5-EFAB-4013-A5F8-C67EA3EB73E1 &#8211; System32  Tasks  G2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001 =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToM 17956  g2mupdate.exe [32424 2020-06-09] (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nTâche: 336DBD9A-B9BE-4A9D-8E7E-70DF4DD0C45C &#8211; System32  Tasks  G2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001 =&gt; C:  Users  XXXXXXZZZ  AppData  Local  Go 17956  g2mupload.exe [32424 2020-06-09] (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nTâche: 4676C5EC-11E4-46DB-A339-B05760EBFD33 &#8211; System32  Tasks  Antivirus Emergency Update =&gt; C:  Program Files (x86)  AVG  Antivirus  AvEmUpdate.exe [3387520 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nTâche: 480057E1-65C8-4672-B6EB-449337F4A059 &#8211; System32  Tasks  AVG TuneUp Update =&gt; C:  Program Files (x86)  AVG  AVG TuneUp  TUNEUpdate.exe [1706528 2019-09-20] (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nTâche: 482950C8-5BA7-4A9B-B305-736188A98CF5 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Assistant Quick Start =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF.exe [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: 4922F370-D891-4A1B-B13A-67F51EFA83AE &#8211; pas de chemin de fichier\nTâche: 506A236E-C8FC-491D-A1A7-2D971555245D &#8211; System32  Tasks  YCMServiceAgent =&gt; c:  Program Files (x86)  Cyberlink  YouCam  YouCamService.exe [267224 2015-02-11] (CyberLink Corp. -&gt; CyberLink Corp.)\nTâche: 71EB72E0-9D55-4AC5-BDF7-6B6F866DDCDE &#8211; System32  Tasks  npcapwatchdog =&gt; C:  Program Files  Npcap  CheckStatus.bat [862 2019-04-30] () [File not signed]\nTâche: 7A56FE0C-B693-4340-AEA0-D5C5C9067C4C &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Solutions Framework Updater =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  Modules  HPSSFUpdater.exe [662872 2020-04-30] (HP Inc. -&gt; HP Inc.)\nTâche: 8BF8C487-50E7-4763-9DD0-BEEB2C3856D5 &#8211; System32  Tasks  Avast SecureLine =&gt; C:  Program Files  AVAST Software  SecureLine  SecureLine.exe [3438680 2016-05-24] (Logiciel AVAST a.s. -&gt; Logiciel AVAST)\nTâche: 8F05A697-8454-4451-9D04-4F3843C4EC1A &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  WarrantyChecker =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPWarrantyCheck  HPWarrantyChecker.exe [1117048 2020-03-26] (HP Inc. -&gt; HP Inc.)\nTâche: 9594B004-459A-4105-BDB9-0686695F1DBC &#8211; System32  Tasks  BlueStacksHelper =&gt; C:  ProgramData  BlueStacks  Client  Helper  BlueStacksHelper.exe [745480 2019-04-16] (BlueStack Systems, Inc. -&gt; BlueStack Systems, Inc.)\nTâche: A7A40B26-2C9E-4141-A5EF-3A3EB86182C4 &#8211; System32  Tasks  Start OPBHOBrokerDesktop =&gt; C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBrokerDsktop.exe [506104 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: AC2D90BD-03AB-4717-B91B-4ACD2D25A495 &#8211; System32  Tasks  HPCeeScheduleForXXXXXXZZZ =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Ceement  HPCEE.exe\nTâche: AC444CF5-C990-4BC8-8C8E-9F5B38F05A81 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  WarrantyChecker_DeviceScan =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPWarrantyCheck  HPWarrantyChecker.exe [1117048 2020-03-26] (HP Inc. -&gt; HP Inc.)\nTâche: B366A58C-E1F0-4F66-B965-EEE0E58ECF54 &#8211; System32  Tasks  Start OPBHOBroker =&gt; C:  Program Files  Hewlett-Packard  SimplePass  OPBHOBroker.exe [506104 2015-01-30] (Softex Incorporated -&gt; Hewlett-Packard)\nTâche: B8FFC866-248A-4176-AC9F-31F3B9144F13 &#8211; System32  Tasks  CCleanerSkipUAC =&gt; C:  Program Files  CCleaner  CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nTâche: B9781211-096A-4A59-B2CD-6631DAA6F92E &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  PC Health Analysis =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF. EXE [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: BDD8080F-6580-4439-B090-E1F0B8980028 &#8211; System32  Tasks  AVGPCTuneUp_Task_BkGndMaintenance =&gt; C:  Program Files (x86)  AVG  AVG PC TuneUp  tuscanx.exe\nTâche: BF84E17C-D1AA-4F8E-AD9C-9C3999F8CDD2 &#8211; System32  Tasks  Mozilla  Firefox Default Browser Agent E7CF176E110C211B =&gt; C:  Program Files (x86)  Mozilla Firefox  default-browser-agent.exe [124624 2020-06-05] (Mozilla Corporation -&gt; Fondation Mozilla)\nTâche: C045C518-0FA6-4A67-A3D5-151056E6C9D9 &#8211; System32  Tasks  Adobe Flash Player Updater =&gt; C:  Windows  SysWOW64  Macromed  Flash  FlashPlayerUpdateService.exe [335416 2020-05-13] (Adobe Inc. -&gt; Adobe)\nTâche: C2BDB807-0EE2-4A05-9C29-E0B43518E8DB &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  PC Health Analysis Restart =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  HPSF .EXE [1505624 2020-05-20] (HP Inc. -&gt; HP Inc.)\nTâche: C718E444-7E77-4374-9197-635B15CB8D22 &#8211; System32  Tasks  Avast SecureLine VPN Update =&gt; c:  program files  avast software  secureline  vpnupdate.exe [1390472 2019-10-24] (AVAST Software s.r.o. -&gt; AVAST Software)\nTâche: C9FF1DA6-EC0B-4F09-A9DB-B6A37A1F1374 &#8211; System32  Tasks  CCleaner Update =&gt; C:  Program Files  CCleaner  CCUpdate.exe [619416 2019-03-11] (Piriform Software Ltd -&gt; Piriform Software Ltd)\nTâche: CA139223-98A5-4E6F-9A90-3BD01B619423 &#8211; System32  Tasks  Driver Easy Scheduled Scan =&gt; C:  Program Files  Easeware  DriverEasy  DriverEasy.exe [3392368 2017-11-10] (Easeware Technology Limited -&gt; Easeware)\nTâche: CAB11F90-659D-4C59-8472-7217C7636690 &#8211; System32  Tasks  AVG  Overseer =&gt; C:  Program Files  Common Files  AVG  Overseer  overseer.exe [1692296 2020-03-03] (AVG Technologies USA, LLC -&gt; AVG Technologies)\nTâche: D7F26C8B-7EE3-4B58-971C-7ABBFDF75B19 &#8211; pas de chemin de fichier\nTâche: E1C5D3F6-C2CE-48AF-96F3-03D7E23B9A45 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  Product Configurator =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  ProductConfig .EXE [320856 2020-04-23] (HP Inc. -&gt; HP Inc.)\nTâche: E7333F8C-E08D-4FB6-84DC-694BB2775824 &#8211; System32  Tasks  Hewlett-Packard  HP CoolSense  HP CoolSense Start at Logon =&gt; C:  Program Files (x86)  Hewlett-Packard  HP CoolSense  CoolSense. EXE [1354552 2014-05-19] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nTâche: EB9B233E-D483-496B-8CD6-9C9CBAAE9007 &#8211; System32  Tasks  Hewlett-Packard  HP Support Assistant  HP Support Solutions Framework Report =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Solutions  Modules  HPSFReport.exe [134008 2020-03-25] (HP Inc. -&gt; HP Inc.)\nTâche: EBCAD8C1-2F95-424A-87E3-ED87CF10A5D5 &#8211; pas de chemin de fichier\nTâche: EDE8E45E-2A78-41AD-8D66-72B614CF9C9E &#8211; System32  Tasks  GoogleUpdateTaskMachineCore =&gt; C:  Program Files (x86)  Google  Update  GoogleUpdate.exe [154440 2016-03-18] (Google Inc -&gt; Google Inc.)\nTâche: F173A769-3028-456B-B1A5-D1EC4B2ED322 &#8211; System32  Tasks  HPCustParticipation HP Deskjet 3050 J610 series =&gt; C:  Program Files  HP  HP Deskjet 3050 J610 series  Bin  HPCustPartic.exe [4119656 2012-10-17] (Hewlett Packard -&gt; Hewlett-Packard Co.)\nTâche: F6005A55-D650-4ABA-99F1-795479106D2D &#8211; System32  Tasks  7A5E22F3-13A6-4040-B1C5-E4043B449990 =&gt; C:  Windows  system32  pcalua.exe -a C:  E20-II  unwcs21.EXE -c C:  E20-II  csi22  INSTALL.LOG"},{"id":"text-12","heading":"Text","content":"(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)"},{"id":"text-13","heading":"Text","content":"Tâche: C:  Windows  Tasks  Driver Easy Scheduled Scan.job =&gt; C:  Program Files  Easeware  DriverEasy  DriverEasy.exe\nTâche: C:  Windows  Tasks  G2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToMeeting  17956  g2mupdate.exe\nTâche: C:  Windows  Tasks  G2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job =&gt; C:  Users  XXXXXXZZZ  AppData  Local  GoToMeeting  17956  g2mupload.exe\nTâche: C:  Windows  Tasks  HPCeeScheduleForXXXXXXZZZ.job =&gt; C:  Program Files (x86)  Hewlett-Packard  HP Ceement  HPCEE.exe"},{"id":"text-14","heading":"Text","content":"==================== Internet (liste blanche) ===================="},{"id":"text-15","heading":"Text","content":"(Si un élément est inclus dans la liste de correctifs, s&#39;il s&#39;agit d&#39;un élément du registre, il sera supprimé ou restauré par défaut.)"},{"id":"text-16","heading":"Text","content":"Winsock: Catalog5 07 C:  Program Files (x86)  Bonjour  mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -&gt; Apple Inc.)\nWinsock: Catalog9 12 C:  Windows  SysWOW64  vsocklib.dll [42376 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog9 13 C:  Windows  SysWOW64  vsocklib.dll [42376 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog5-x64 07 C:  Program Files  Bonjour  mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -&gt; Apple Inc.)\nWinsock: Catalog9-x64 12 C:  Windows  system32  vsocklib.dll [46472 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nWinsock: Catalog9-x64 13 C:  Windows  system32  vsocklib.dll [46472 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nHôtes: il existe plusieurs entrées dans Hôtes. Voir la section Hôtes de Addition.txt\nTcpip  ..  Interfaces  9BE7CB1D-7D01-412C-87BA-0BF14F21DCFC: [NameServer] 192.168.175.1\nTcpip  ..  Interfaces  AE83C2A5-B32C-49E6-92F8-44E82B6BF54C: [DhcpNameServer] 192.168.1.1\nTcpip  ..  Interfaces  D7780C2A-6612-4825-B9AA-0AAAE7D9CBB1: [DhcpNameServer] 192.168.1.1\nTcpip  ..  Interfaces  F378EDC9-2002-40C5-A4FD-8D06037995AC: [NameServer] 192.168.56.1\nTcpip  ..  Interfaces  F9ED1E2C-E78F-4493-82DC-AA9A69316967: [NameServer] 192.168.6.1"},{"id":"text-17","heading":"Text","content":"Internet Explorer:\n==================\nHKLM  Software  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKLM  Software  Wow6432Node  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKLM  Software  Wow6432Node  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nHKU  .DEFAULT  Software  Microsoft  Internet Explorer  Main, Start Page = about: vide\nHKU  .DEFAULT  Software  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  Software  Microsoft  Internet Explorer  Main, page de démarrage = hxxps: //mysearch.avg.com/? Cid = 0748ECFF-99FC-45F5- A9A9-AAA31FAD88FA &amp; mid = 2e2973733faf47cca1dda13ec7d56e85-0c260b95194f388f5d97415cd7ba6e43361199e3 &amp; lang = pt &amp; ds = AVG &amp; coid = avgtbavg &amp; cmpid = ipm180 &amp; v = 26 v &amp; d = 20 v\nHKU  S-1-5-21-3751382696-3894377064-3631472648-1001  Software  Microsoft  Internet Explorer  Main, Default_Page_URL = hxxp: //hp13.msn.com\nSearchScopes: HKLM -&gt; DefaultScope 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKLM -&gt; 0633EE93-D776-472f-A0FF-E1416B8B2E3A URL = \nSearchScopes: HKLM-x32 -&gt; C77A81B7-79DB-4F42-8F4C-3CEBC5863FB2 URL = hxxp: //www.amazon.co.uk/s/ref=azs_osd_ieauk? Ie = UTF-8 &amp; tag = hp-uk3-vsb- 21 &amp; link% 5Fcode = qs &amp; index = aps &amp; field-keywords = searchTerms\nSearchScopes: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 URL = hxxps: //mysearch.avg.com/search? Cid = 0748ECFF -99FC-45F5-A9A9-AAA31FAD88FA &amp; mid = 2e2973733faf47cca1dda13ec7d56e85-0c260b95194f388f5d97415cd7ba6e43361199e3 &amp; lang = pt &amp; ds = AVG &amp; COID = avgtbavg &amp; cmpid = ipm180716c &amp; pr = fr &amp; d = 2016-06-12 22: 27: 20 &amp; v = 4.3.9.626 &amp; pid = UMC &amp; sg = &amp; sap = dsp &amp; q = searchTerms\nSearchScopes: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; C77A81B7-79DB-4F42-8F4C-3CEBC5863FB2 URL = hxxp: //www.amazon.co.uk/s/ref= azs_osd_ieauk? ie = UTF-8 &amp; tag = hp-uk3-vsb-21 &amp; link% 5Fcode = qs &amp; index = aps &amp; field-keywords = searchTerms\nBHO: Groove GFS Browser Helper -&gt; 72853161-30C5-4D22-B7F9-0BBC1D38A37E -&gt; C:  Program Files  Microsoft Office  Office14  GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO: Java ™ Plug-In SSV Helper -&gt; 761497BB-D6F0-462C-B6EB-D4DAF1D92D43 -&gt; C:  Program Files  Java  jre1.8.0_241  bin  ssv.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO: AVG Web TuneUp -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 -&gt; C:  Program Files  AVG Web TuneUp  4.3.9.626  AVG Web TuneUp.dll [2019-01-28] (AVG Pays-Bas B.V. -&gt; AVG)\nBHO: Adobe Acrobat Create PDF Helper -&gt; AE7CD045-E861-484f-8273-0445EE161910 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO: Gestionnaire de cache de documents Office -&gt; B4F3A835-0E21-4959-BA22-42B3008E02FF -&gt; C:  Program Files  Microsoft Office  Office14  URLREDIR.DLL [2013-03-06] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO: Java ™ Plug-In 2 SSV Helper -&gt; DBC80044-A445-435b-BC74-9C25C1C588A9 -&gt; C:  Program Files  Java  jre1.8.0_241  bin  jp2ssv.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nBHO: HP Network Check Helper -&gt; E76FD755-C1BA-4DCB-9F13-99BD91223ADE -&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPNetworkCheck  HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -&gt; HP Inc.)\nBHO: Adobe Acrobat Créer un fichier PDF à partir de la sélection -&gt; F4971EE7-DAA0-4053-9964-665D8EE6A077 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO-x32: Aide du navigateur Groove GFS -&gt; 72853161-30C5-4D22-B7F9-0BBC1D38A37E -&gt; C:  Program Files (x86)  Microsoft Office  Office14  GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO-x32: extension Evernote -&gt; 92EF2EAD-A7CE-4424-B0DB-499CF856608E -&gt; C:  Program Files (x86)  Evernote  Evernote  EvernoteIE.dll [2014-12-17] (EVERNOTE CORPORATION -&gt; Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)\nBHO-x32: AVG Web TuneUp -&gt; 95B7759C-8C7F-4BF1-B163-73684A933233 -&gt; C:  Program Files (x86)  AVG Web TuneUp  4.3.9.626  AVG Web TuneUp.dll [2019-01-28] (AVG Pays-Bas B.V. -&gt; AVG)\nBHO-x32: Adobe Acrobat Create PDF Helper -&gt; AE7CD045-E861-484f-8273-0445EE161910 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBHO-x32: Gestionnaire de cache de documents Office -&gt; B4F3A835-0E21-4959-BA22-42B3008E02FF -&gt; C:  Program Files (x86)  Microsoft Office  Office14  URLREDIR.DLL [2013-03-06] (Microsoft Corporation -&gt; Microsoft Corporation)\nBHO-x32: HP Network Check Helper -&gt; E76FD755-C1BA-4DCB-9F13-99BD91223ADE -&gt; C:  Program Files (x86)  Hewlett-Packard  HP Support Framework  Resources  HPNetworkCheck  HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -&gt; HP Inc.)\nBHO-x32: Adobe Acrobat Créer un fichier PDF à partir de la sélection -&gt; F4971EE7-DAA0-4053-9964-665D8EE6A077 -&gt; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKLM &#8211; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKLM-x32 &#8211; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nBarre d&#39;outils: HKU  S-1-5-21-3751382696-3894377064-3631472648-1001 -&gt; Adobe Acrobat Create PDF Toolbar &#8211; 47833539-D0C5-4125-9FA8-0819E2EAAC93 &#8211; C:  Program Files (x86)  Common Files  Adobe  Acrobat  WCIEActiveX  x64  AcroIEFavClient.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Incorporated)\nHandler-x32: asp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: ezstor &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: hsp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:  Windows  SysWow64  hsppp.dll [2006-10-07] (Logiciel EzTools) [File not signed]\nHandler-x32: jpip &#8211; B92DD248-E3D5-4A92-B311-C9B841681455 &#8211; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nHandler-x32: sidlet &#8211; B92DD248-E3D5-4A92-B311-C9B841681455 &#8211; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nHandler-x32: x-asp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-cnote &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-hsp &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: x-mem1 &#8211; C3719F83-7EF8-4BA0-89B0-3360C7AFB7CC &#8211; C:WindowsSysWow64WowCtl2.dll [2006-10-13] (EzTools Software) [File not signed]\nHandler-x32: x-zip &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]\nHandler-x32: zip &#8211; 8D32BA61-D15B-11d4-894B-000000000000 &#8211; C:WindowsSysWow64hsppp.dll [2006-10-07] (EzTools Software) [File not signed]"},{"id":"text-18","heading":"Text","content":"FireFox:\n========\nFF DefaultProfile: t5l5e12d.default\nFF ProfilePath: C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.default [2020-06-09]\nFF Extension: (Disconnect) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions2.0@disconnect.me.xpi [2020-01-06]\nFF Extension: (AVG Web TuneUp) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsavg@toolbar.xpi [2019-04-11] [UpdateUrl:hxxps://firefoxext.avcdn.net/firefoxext/avg/wtu/update.json]\nFF Extension: (SerpClix ClickSense) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsdev@serpclix.com.xpi [2020-04-24] [UpdateUrl:hxxps://serpclix.com/downloads/addon/updates.json]\nFF Extension: (Ghostery – Privacy Ad Blocker) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsfirefox@ghostery.com.xpi [2020-05-21]\nFF Extension: (HTTPS Everywhere) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionshttps-everywhere-eff@eff.org.xpi [2020-05-22] [UpdateUrl:hxxps://www.eff.org/files/https-everywhere-updates.json]\nFF Extension: (Disable WebRTC) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-5Fs7iTLscUaZBgwr@jetpack.xpi [2020-06-02]\nFF Extension: (Para o Google Tradutor) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-93WyvpgvxzGATw@jetpack.xpi [2020-02-06]\nFF Extension: (Decentraleyes) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-BoFifL9Vbdl2zQ@jetpack.xpi [2020-04-01]\nFF Extension: (DuckDuckGo Privacy Essentials) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsjid1-ZAdIEUB7XOzOJw@jetpack.xpi [2020-06-03]\nFF Extension: (Lazarus: Form Recovery) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionslazarus@interclue.com.xpi [2016-07-12] [Legacy]\nFF Extension: (Avast SafePrice | Comparação, ofertas, cupões) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionssp@avast.com.xpi [2020-05-02]\nFF Extension: (Google Translator for Firefox) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionstranslator@zoli.bod.xpi [2020-02-05]\nFF Extension: (uBlock Origin) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsuBlock0@raymondhill.net.xpi [2020-05-28]\nFF Extension: (uMatrix) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsuMatrix@raymondhill.net.xpi [2020-01-06]\nFF Extension: (Startpage.com: pesquisa privada) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions20fc2e06-e3e4-4b2b-812b-ab431220cada.xpi [2020-01-07]\nFF Extension: (Cookie Quick Manager) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensions60f82f00-9ad5-4de5-b31c-b16a47c51558.xpi [2020-05-15]\nFF Extension: (Flash and Video Download) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsadeadebb-fedc-4180-a7f4-cfdd87496551.xpi [2020-05-24]\nFF Extension: (Video DownloadHelper) &#8211; C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultExtensionsb9db16a4-6edc-47ec-a1f4-b86292ed211d.xpi [2020-03-31]\nFF SearchPlugin: C:UsersXXXXXXZZZAppDataRoamingMozillaFirefoxProfilest5l5e12d.defaultsearchpluginsavg-secure-search.xml [2019-01-28]\nFF HKLM-x32&#8230;FirefoxExtensions: [firefox@bho.com] &#8211; C:Program FilesHewlett-PackardSimplePassFFBHOExt =&gt; not found\nFF HKLM-x32&#8230;FirefoxExtensions: [web2pdfextension@web2pdf.adobedotcom] &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtn\nFF Extension: (Adobe Acrobat &#8211; Create PDF) &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCFirefoxExtn [2016-04-30] [Legacy] [not signed]\nFF Plugin: @adobe.com/FlashPlayer -&gt; C:Windowssystem32MacromedFlashNPSWF64_32_0_0_371.dll [2020-05-13] (Adobe Inc. -&gt; )\nFF Plugin: @java.com/DTPlugin,version=11.241.2 -&gt; C:Program FilesJavajre1.8.0_241bindtpluginnpDeployJava1.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin: @java.com/JavaPlugin,version=11.241.2 -&gt; C:Program FilesJavajre1.8.0_241binplugin2npjp2.dll [2020-03-05] (Oracle America, Inc. -&gt; Oracle Corporation)\nFF Plugin: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:Program FilesMicrosoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -&gt;  Microsoft Corporation)\nFF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:PROGRA~1MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin: adobe.com/AdobeAAMDetect -&gt; C:Program Files (x86)Common FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect64.dll [2014-04-28] (Adobe Systems Incorporated -&gt; Adobe Systems)\nFF Plugin-x32: @adobe.com/FlashPlayer -&gt; C:WindowsSysWOW64MacromedFlashNPSWF32_32_0_0_371.dll [2020-05-13] (Adobe Inc. -&gt; )\nFF Plugin-x32: @adobe.com/ShockwavePlayer -&gt; C:windowsSysWOW64AdobeDirectornp32dsw_1217157.dll [2015-02-05] (Adobe Systems, Inc.) [File not signed]\nFF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -&gt; C:Program Files (x86)Common FilesAVG Secure SearchSiteSafetyInstaller40.3.8\\npsitesafety.dll [No File]\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -&gt; C:Program Files (x86)Foxit PhantomPDFpluginsnpFoxitPhantomPDFPlugin.dll [2014-10-20] (Foxit Software Incorporated -&gt; Foxit Corporation)\nFF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -&gt; C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIIPT.dll [2014-11-10] (Intel® Identity Protection Technology Software -&gt; Intel Corporation)\nFF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -&gt; C:Program Files (x86)IntelIntel® Management Engine ComponentsIPTnpIntelWebAPIUpdater.dll [2014-11-10] (Intel® Identity Protection Technology Software -&gt; Intel Corporation)\nFF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -&gt; c:Program Files (x86)Microsoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -&gt;  Microsoft Corporation)\nFF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -&gt; C:PROGRA~2MICROS~1Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -&gt; C:PROGRA~2MICROS~1Office14NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -&gt; Microsoft Corporation)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.2 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.4 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=2.2.6 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=3.0.3 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @videolan.org/vlc,version=3.0.8 -&gt; C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -&gt; VideoLAN)\nFF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -&gt; C:Program Files (x86)WildTangent GamesAppBrowserIntegrationRegisteredNP_wtapp.dll [2014-11-15] (WildTangent Inc -&gt; )\nFF Plugin-x32: Adobe Acrobat -&gt; C:Program Files (x86)AdobeAcrobat 11.0AcrobatAirnppdf32.dll [2015-06-29] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nFF Plugin-x32: Adobe Reader -&gt; C:Program Files (x86)AdobeAcrobat Reader DCReaderAIRnppdf32.dll [2020-05-04] (Adobe Inc. -&gt; Adobe Systems Inc.)\nFF Plugin-x32: adobe.com/AdobeAAMDetect -&gt; C:Program Files (x86)Common FilesAdobeOOBEPDAppCCMUtilitiesnpAdobeAAMDetect32.dll [2014-04-28] (Adobe Systems Incorporated -&gt; Adobe Systems)\nFF Plugin-x32: Lizardtech ExpressViewPlugin -&gt; C:Program Files (x86)LizardTechExpressViewnpexview.dll [2014-02-02] (LizardTech) [File not signed]\nFF Plugin HKUS-1-5-21-3751382696-3894377064-3631472648-1001: @zoom.us/ZoomVideoPlugin -&gt; C:UsersXXXXXXZZZAppDataRoamingZoombin_00npzoomplugin.dll [2020-05-14] (Zoom Video Communications, Inc. -&gt; Zoom Video Communications, Inc.)"},{"id":"text-19","heading":"Text","content":"Chrome: \n=======\nCHR Profile: C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefault [2020-06-07]\nCHR Notifications: Default -&gt; hxxps://web.skype.com\nCHR HomePage: Default -&gt; mysearch.avg.com\nCHR StartupUrls: Default -&gt; &quot;hxxp://google.pt/&quot;\nCHR DefaultSearchURL: Default -&gt; hxxps://mysearch.avg.com/search?rvt=1&amp;sap=dsp&amp;q=searchTerms\nCHR DefaultSearchKeyword: Default -&gt; hxxps://mysearch.avg.com\nCHR Extension: (Slides) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-10-14]\nCHR Extension: (Seedr) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsabfimpkhacgimamjbiegeoponlepcbob [2018-08-20]\nCHR Extension: (Flash Video Downloader) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaiimdkdngfcipjohbjenkahhlhccpdbc [2019-05-14]\nCHR Extension: (Docs) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-10-14]\nCHR Extension: (Google Drive) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2018-10-17]\nCHR Extension: (YouTube) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-18]\nCHR Extension: (Adblock Plus &#8211; free ad blocker) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionscfhdojbkjhnklbpkdaibdccddilifddb [2020-04-06]\nCHR Extension: (AVG Secure Search) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionschfdnecihphmhljaaejmgoiahnihplgn [2020-01-11]\nCHR Extension: (Tampermonkey) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsdhdgffkkebhmkfjojejmpbldmpobfkfo [2020-06-07]\nCHR Extension: (Email Exporter) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsecnfbegpagpeocjegnecbifjepfcpnhe [2020-06-07]\nCHR Extension: (Toolkit For FB) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsfcachklhcihfinmagjnlomehfdhndhep [2019-07-04]\nCHR Extension: (Sheets) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-10-14]\nCHR Extension: (Google Docs Offline) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-06-07]\nCHR Extension: (Social Fixer for Facebook) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsifmhoabcaeehkljcfclfiieohkohdgbb [2019-10-08]\nCHR Extension: (Email Extractor) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsjdianbbpnakhcmfkcckaboohfgnngfcc [2020-06-07]\nCHR Extension: (Unseen for Facebook) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsjiomcgpfgkeefipihnplhadgdoollmap [2019-09-23]\nCHR Extension: (Application Launcher for Drive (by Google)) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionslmjegmlicamnimmfhcmpkclmigmmcbeh [2017-04-03]\nCHR Extension: (Video DownloadHelper) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionslmjnegcaeklhafolokijcfjliaokphfk [2020-04-01]\nCHR Extension: (Lazarus: Form Recovery) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsloljledaigphbcpfhfmgopdkppkifgno [2016-07-12]\nCHR Extension: (Buster: Captcha Solver for Humans) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsmpbjkejclgfgadiemmefgebjfooflfhl [2020-06-07]\nCHR Extension: (Chrome Web Store Payments) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2019-10-05]\nCHR Extension: (Social Revealer) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsnmnnjcmpjlbbobehaikglfgpbjclcoeg [2019-01-30]\nCHR Extension: (Unfriend Finder) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionsolljnkilmblncgcghhaodkpdcnokhpah [2020-03-29]\nCHR Extension: (Social Profile view notification) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspegkceflonohbcefcbflfpficfkmpeod [2019-10-28]\nCHR Extension: (Gmail) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2019-05-14]\nCHR Extension: (Chrome Media Router) &#8211; C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-06-07]\nCHR Profile: C:UsersXXXXXXZZZAppDataLocalGoogleChromeUser DataSystem Profile [2019-07-26]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [chfdnecihphmhljaaejmgoiahnihplgn]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [dhdgffkkebhmkfjojejmpbldmpobfkfo]\nCHR HKUS-1-5-21-3751382696-3894377064-3631472648-1001SOFTWAREGoogleChromeExtensions&#8230;ChromeExtension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]\nCHR HKLM-x32&#8230;ChromeExtension: [efaidnbmnnnibpcajpcglclefindmkaj] &#8211; C:Program Files (x86)AdobeAcrobat 11.0AcrobatBrowserWCChromeExtnWCChromeExtn.crx [2015-06-29]\nCHR HKLM-x32&#8230;ChromeExtension: [eofcbnmajmjmplflapaojjnihcjkigck]"},{"id":"text-20","heading":"Text","content":"==================== Services (Whitelisted) ==================="},{"id":"text-21","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)"},{"id":"text-22","heading":"Text","content":"S4 AdAppMgrSvc; C:Program Files (x86)AutodeskAutodesk Desktop AppAdAppMgrSvc.exe [1374072 2018-03-10] (Autodesk, Inc. -&gt; Autodesk Inc.)\nR2 AVG Antivirus; C:Program Files (x86)AVGAntivirusAVGSvc.exe [349552 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR3 avgbIDSAgent; C:Program Files (x86)AVGAntivirusaswidsagent.exe [6397888 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 BTDevManager; C:Program Files (x86)REALTEKRealtek BluetoothBTDevMgr.exe [125656 2015-09-18] (Realtek Semiconductor Corp -&gt; )\nR2 CleanupPSvc; C:Program Files (x86)AVGAVG TuneUpTuneupSvc.exe [10301176 2019-07-24] (AVG Technologies USA, Inc. -&gt; AVG Technologies CZ, s.r.o.)\nR2 DBJobServer; C:Program Files (x86)DesignBuilderJobServerDBJobServer.exe [672168 2018-03-22] (DesignBuilder Software Ltd -&gt; DesignBuilder Software Ltd.)\nR2 DBSimLServer; C:Program Files (x86)DesignBuilderLibDBSimLServer.exe [23464 2018-03-22] (DesignBuilder Software Ltd -&gt; DesignBuilder)\nS3 DialComService; C:Program Files (x86)DIAL GmbHDIAL Communication FrameworkDialComService.exe [2184192 2017-05-29] (DIAL GmbH) [File not signed]\nS3 Disc Soft Lite Bus Service; C:Program FilesDAEMON Tools LiteDiscSoftBusService.exe [1443520 2016-04-04] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR2 DraftSight API Service; C:Program FilesDassault SystemesDraftSightbindsHttpApiService.exe [121344 2016-11-10] (Dassault Systèmes) [File not signed]\nR2 esifsvc; C:WindowsSysWOW64esif_uf.exe [1037568 2015-03-04] (Intel® Software -&gt; Intel Corporation)\nR2 GamesAppIntegrationService; C:Program Files (x86)WildTangent GamesAppGamesAppIntegrationService.exe [347200 2015-02-09] (WildTangent Inc -&gt; WildTangent)\nR2 HPSupportSolutionsFrameworkService; C:Program Files (x86)Hewlett-PackardHP Support SolutionsHPSupportSolutionsFrameworkService.exe [379224 2020-05-20] (HP Inc. -&gt; HP Inc.)\nR2 HPWMISVC; c:Program Files (x86)Hewlett-PackardHP System EventHPWMISVC.exe [573704 2014-12-01] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nR2 igfxCUIService1.0.0.0; C:Windowssystem32igfxCUIService.exe [344168 2015-04-28] (Intel Corporation &#8211; pGFX -&gt; Intel Corporation)\nR2 jhi_service; C:Program Files (x86)IntelIntel® Management Engine ComponentsDALjhi_service.exe [158496 2014-11-10] (Intel Corporation &#8211; Embedded Subsystems and IP Blocks Group -&gt; Intel Corporation)\nR2 jswpbapi; C:Program Files (x86)Jumpstartjswpbapi.exe [265216 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nS3 jswpsapi; C:Program Files (x86)Jumpstartjswpsapi.exe [954368 2008-09-26] (Atheros Communications, Inc.) [File not signed]\nR2 MBAMService; C:Program FilesMalwarebytesAnti-MalwareMBAMService.exe [6933272 2020-03-19] (Malwarebytes Inc -&gt; Malwarebytes)\nR2 NvNetworkService; C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe [1795912 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR2 NvStreamSvc; C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe [19819848 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR2 omniserv; C:Program FilesHewlett-PackardSimplePassOmniServ.exe [103424 2015-01-30] (Softex Inc.) [File not signed]\nS3 ProtonVPN Service; C:Program Files (x86)Proton TechnologiesProtonVPNProtonVPNService.exe [101096 2020-02-17] (ProtonVPN AG -&gt; )\nS3 ProtonVPN Update Service; C:Program Files (x86)Proton TechnologiesProtonVPNProtonVPN.UpdateService.exe [60136 2020-02-17] (ProtonVPN AG -&gt; )\nR2 RichVideo64; C:Program FilesCyberLinkShared filesRichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -&gt; )\nS3 rpcapd; C:Program Files (x86)WinPcaprpcapd.exe [117264 2010-06-25] (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nR2 RtkAudioService; C:Program FilesRealtekAudioHDARtkAudioService64.exe [293080 2015-03-04] (Realtek Semiconductor Corp -&gt; Realtek Semiconductor)\nR2 SecureLine; C:Program FilesAVAST SoftwareSecureLineVpnSvc.exe [6828424 2019-10-23] (AVAST Software s.r.o. -&gt; AVAST Software)\nR2 ss_conn_service; C:Program FilesSAMSUNGUSB Drivers25_escapeconnss_conn_service.exe [743688 2014-12-03] (DEVGURU CO LTD -&gt; DEVGURU Co., LTD.)\nR2 ss_conn_service2; C:Program FilesSamsungUSB Drivers28_ssconn2connss_conn_service2.exe [780328 2019-09-24] (DEVGURU Co., Ltd. -&gt; DEVGURU Co., LTD.)\nR2 SynTPEnhService; C:Program FilesSynapticsSynTPSynTPEnhService.exe [220840 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nS3 VBoxSDS; C:Program FilesOracleVirtualBoxVBoxSDS.exe [690424 2019-01-25] (Oracle Corporation -&gt; Oracle Corporation)\nR2 vToolbarUpdater40.3.8; C:Program Files (x86)Common FilesAVG Secure SearchvToolbarUpdater40.3.8ToolbarUpdater.exe [1371136 2019-01-28] (AVG Netherlands B.V. -&gt; AVG Secure Search)\nS3 WdNisSvc; C:Program FilesWindows DefenderNisSrv.exe [361824 2017-01-12] (Microsoft Corporation -&gt; Microsoft Corporation)\nS3 WinDefend; C:Program FilesWindows DefenderMsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -&gt; Microsoft Corporation)\nR2 WtuSystemSupport; C:Program Files (x86)AVG Web TuneUpWtuSystemSupport.exe [811520 2019-01-28] (AVG Netherlands B.V. -&gt; )\nS2 KMSServerService; C:WindowsKMSServerServiceKMS Server Service.exe  [X]"},{"id":"text-23","heading":"Text","content":"===================== Drivers (Whitelisted) ==================="},{"id":"text-24","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)"},{"id":"text-25","heading":"Text","content":"R3 Accelerometer; C:Windowssystem32DRIVERSAccelerometer.sys [44680 2015-01-27] (Hewlett-Packard Company -&gt; Hewlett-Packard)\nS3 aftap0901; C:Windowssystem32DRIVERSaftap0901.sys [48624 2017-11-16] (AnchorFree Inc -&gt; The OpenVPN Project)\nS3 akshasp; C:Windowssystem32DRIVERSakshasp.sys [90240 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nS3 aksusb; C:WindowsSystem32driversaksusb.sys [18688 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nR0 avgArDisk; C:WindowsSystem32driversavgArDisk.sys [37208 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgArPot; C:WindowsSystem32driversavgArPot.sys [205952 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgbidsdriver; C:WindowsSystem32driversavgbidsdriver.sys [234632 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgbidsh; C:WindowsSystem32driversavgbidsh.sys [178832 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgbuniv; C:WindowsSystem32driversavgbuniv.sys [61072 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgKbd; C:WindowsSystem32driversavgKbd.sys [42856 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 avgMonFlt; C:WindowsSystem32driversavgMonFlt.sys [175776 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgRdr; C:WindowsSystem32driversavgRdr2.sys [109336 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgRvrt; C:WindowsSystem32driversavgRvrt.sys [84928 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgSnx; C:WindowsSystem32driversavgSnx.sys [851664 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR1 avgSP; C:WindowsSystem32driversavgSP.sys [461064 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR2 avgStm; C:WindowsSystem32driversavgStm.sys [235552 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nR0 avgVmm; C:WindowsSystem32driversavgVmm.sys [319184 2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nS3 BlueStacksDrv; C:Program FilesBlueStacksBstkDrv.sys [313112 2019-03-14] (Bluestack Systems, Inc. -&gt; Bluestack System Inc.)\nS3 dg_ssudbus; C:Windowssystem32DRIVERSssudbus.sys [136040 2019-09-26] (Samsung Electronics Co., Ltd. -&gt; Samsung Electronics Co., Ltd.)\nR3 dtlitescsibus; C:WindowsSystem32driversdtlitescsibus.sys [30264 2016-04-28] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nR3 dtliteusbbus; C:WindowsSystem32driversdtliteusbbus.sys [47672 2016-04-28] (Disc Soft Ltd -&gt; Disc Soft Ltd)\nS2 Hardlock; C:Windowssystem32drivershardlock.sys [314368 2006-12-04] (Microsoft Windows Hardware Compatibility Publisher -&gt; Aladdin Knowledge Systems Ltd.)\nR0 hpdskflt; C:WindowsSystem32DRIVERShpdskflt.sys [31880 2015-01-27] (Hewlett-Packard Company -&gt; Hewlett-Packard)\nR0 IntelHSWPcc; C:WindowsSystem32driversIntelPcc.sys [79528 2014-12-22] (Intel® Software -&gt; Intel Corporation)\nR1 JSWPSLWF; C:Windowssystem32DRIVERSjswpslwfx.sys [26624 2008-05-15] (Microsoft Windows Hardware Compatibility Publisher -&gt; Atheros Communications, Inc.)\nR3 kmloop; C:Windowssystem32DRIVERSloop.sys [15360 2013-08-22] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 libusbK; C:WindowsSystem32driverslibusbK.sys [47200 2016-08-02] (Travis Lee Robinson -&gt; hxxp://libusb-win32.sourceforge.net)\nR2 MBAMChameleon; C:WindowsSystem32DriversMbamChameleon.sys [214496 2020-05-22] (Malwarebytes Inc -&gt; Malwarebytes)\nR3 MBAMSwissArmy; C:WindowsSystem32Driversmbamswissarmy.sys [248968 2020-06-02] (Malwarebytes Inc -&gt; Malwarebytes)\nS3 MEIx64; C:Windowssystem32DRIVERSTeeDriverx64.sys [129312 2014-11-10] (Intel Corporation &#8211; Embedded Subsystems and IP Blocks Group -&gt; Intel Corporation)\nR1 npcap; C:Windowssystem32DRIVERSnpcap.sys [70968 2019-07-30] (Insecure.Com LLC -&gt; Insecure.Com LLC.)\nS4 npcap_wifi; C:Windowssystem32DRIVERSnpcap.sys [70968 2019-07-30] (Insecure.Com LLC -&gt; Insecure.Com LLC.)\nR2 NPF; C:WindowsSystem32driversnpf.sys [35344 2010-06-25] (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nR3 NvStreamKms; C:Program FilesNVIDIA CorporationNvStreamSrvNvStreamKms.sys [19784 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nR3 nvvad_WaveExtensible; C:Windowssystem32driversnvvad64v.sys [38216 2015-02-09] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nS3 OXSDIDRV_x64; C:Windowssystem32DRIVERSOXSDIDRV_x64.sys [52384 2011-08-23] (PLX Technology, Inc. -&gt; )\nS3 OXUDIDRV; C:Windowssystem32DriversOXUDIDRV_X64.sys [31280 2010-05-25] (Oxford Semiconductor Ltd -&gt; )\nU5 PROCMON24; C:WindowsSystem32DriversPROCMON24.sys [90168 2020-06-02] (Microsoft Windows Hardware Compatibility Publisher -&gt; Sysinternals &#8211; www.sysinternals.com)\nU5 RTSUER; C:WindowsSystem32DriversRTSUER.sys [377048 2015-03-03] (Realtek Semiconductor Corp -&gt; Realsil Semiconductor Corporation)\nR3 ScpVBus; C:WindowsSystem32driversScpVBus.sys [39168 2013-05-19] (Bruce James -&gt; Scarlet.Crush Productions)\nS3 SmbDrv; C:WindowsSystem32driversSmb_driver_AMDASF.sys [33448 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nR3 SmbDrvI; C:Windowssystem32DRIVERSSmb_driver_Intel.sys [33448 2015-02-13] (Synaptics Incorporated -&gt; Synaptics Incorporated)\nS3 ssudmdm; C:Windowssystem32DRIVERSssudmdm.sys [166760 2019-09-26] (Samsung Electronics Co., Ltd. -&gt; Samsung Electronics Co., Ltd.)\nS3 tapprotonvpn; C:Windowssystem32DRIVERStapprotonvpn.sys [35768 2020-01-15] (ProtonVPN AG -&gt; The OpenVPN Project)\nS3 TIEHDUSB; C:WindowsSystem32driverstiehdusb.sys [128512 2012-03-07] (Microsoft Windows Hardware Compatibility Publisher -&gt; Texas Instruments)\nR3 USBPcap; C:Windowssystem32DRIVERSUSBPcap.sys [40888 2017-08-20] (Tomasz Moń -&gt; USBPcap)\nR3 VBoxNetAdp; C:Windowssystem32DRIVERSVBoxNetAdp6.sys [235832 2019-01-28] (Oracle Corporation -&gt; Oracle Corporation)\nR1 VBoxNetLwf; C:Windowssystem32DRIVERSVBoxNetLwf.sys [247216 2019-01-28] (Oracle Corporation -&gt; Oracle Corporation)\nS3 vjoy; C:WindowsSystem32driversvjoy.sys [56440 2016-02-03] (Shaul Eizikovich -&gt; Shaul Eizikovich)\nR0 vsock; C:WindowsSystem32DRIVERSvsock.sys [92040 2018-06-22] (VMware, Inc. -&gt; VMware, Inc.)\nS3 WdBoot; C:Windowssystem32driversWdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -&gt; Microsoft Corporation)\nS3 WdFilter; C:Windowssystem32driversWdFilter.sys [274776 2017-01-12] (Microsoft Windows -&gt; Microsoft Corporation)\nS3 WdNisDrv; C:WindowsSystem32DriversWdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -&gt; Microsoft Corporation)\nR3 WirelessButtonDriver; C:WindowsSystem32driversWirelessButtonDriver64.sys [20800 2013-07-22] (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nU3 aswbdisk; no ImagePath\nS3 cpuz140; ??C:UsersXXXXXXZZZ~1AppDataLocalTempcpuz140cpuz140_x64.sys [X] &lt;==== ATTENTION\nS3 esihdrv; ??C:UsersXXXXXXZZZ~1AppDataLocalTempesihdrv.sys [X] &lt;==== ATTENTION"},{"id":"text-26","heading":"Text","content":"==================== NetSvcs (Whitelisted) ==================="},{"id":"text-27","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)"},{"id":"text-28","heading":"Text","content":"==================== One month (created) ==================="},{"id":"text-29","heading":"Text","content":"(If an entry is included in the fixlist, the file/folder will be moved.)"},{"id":"text-30","heading":"Text","content":"2020-06-09 11:52 &#8211; 2020-06-09 11:54 &#8211; 000063509 _____ C:UsersXXXXXXZZZDownloadsFRST.txt\n2020-06-09 11:51 &#8211; 2020-06-09 11:51 &#8211; 002289152 _____ (Farbar) C:UsersXXXXXXZZZDownloadsFRST64.exe\n2020-06-07 23:48 &#8211; 2020-06-08 01:26 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsMobile ETH\n2020-06-07 16:57 &#8211; 2020-06-07 16:57 &#8211; 000226879 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; Reflexões Masculinas (Ed. 2008).pdf\n2020-06-07 16:56 &#8211; 2020-06-07 16:56 &#8211; 000393633 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; A Guerra da Paixão (Ed. 2005).pdf\n2020-06-07 16:56 &#8211; 2020-06-07 16:56 &#8211; 000321820 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; O Profano Feminino (Ed. 2008).pdf\n2020-06-07 16:55 &#8211; 2020-06-07 16:55 &#8211; 001413718 _____ C:UsersXXXXXXZZZDownloadsNessahan Alita &#8211; Como lidar com mulheres (Ed. 2008).pdf\n2020-06-05 14:57 &#8211; 2020-06-05 14:57 &#8211; 000000000 ____D C:Windowssystem32TasksMozilla\n2020-06-05 10:16 &#8211; 2020-06-05 10:17 &#8211; 169944728 _____ (Oracle Corporation) C:UsersXXXXXXZZZDownloadsjdk-14.0.1_windows-x64_bin.exe\n2020-06-05 10:12 &#8211; 2020-06-09 09:09 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Firefox\n2020-06-02 20:38 &#8211; 2020-06-02 20:38 &#8211; 000001505 _____ C:UsersXXXXXXZZZDesktopNetworkMiner.exe &#8211; Atalho.lnk\n2020-06-02 20:28 &#8211; 2020-06-02 20:28 &#8211; 000090168 ____H (Sysinternals &#8211; www.sysinternals.com) C:Windowssystem32DriversPROCMON24.SYS\n2020-06-02 20:18 &#8211; 2020-06-02 20:18 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadspowershell mtsploit 2\n2020-06-02 17:17 &#8211; 2020-06-02 17:17 &#8211; 000001208 _____ C:UsersXXXXXXZZZDesktopLegislação &#8211; Atalho.lnk\n2020-06-02 14:34 &#8211; 2020-06-02 14:34 &#8211; 000248968 _____ (Malwarebytes) C:Windowssystem32Driversmbamswissarmy.sys\n2020-06-02 11:16 &#8211; 2020-06-02 11:16 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalOsram_Lamp\n2020-06-02 10:08 &#8211; 2020-06-02 10:09 &#8211; 004189296 _____ C:UsersXXXXXXZZZDownloadsultrasurf.exe\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000002019 _____ C:UsersPublicDesktopPhilips_Cat.lnk\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000002019 _____ C:ProgramDataDesktopPhilips_Cat.lnk\n2020-06-01 21:21 &#8211; 2020-06-01 21:21 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsPhilips Lighting\n2020-06-01 21:19 &#8211; 2020-06-01 21:21 &#8211; 000000000 ____D C:Program Files (x86)Philips Lighting\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000002048 _____ C:UsersPublicDesktopOSRAM Lamp PlugIn.lnk\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000002048 _____ C:ProgramDataDesktopOSRAM Lamp PlugIn.lnk\n2020-06-01 18:23 &#8211; 2020-06-01 18:23 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsDIALux PlugIns\n2020-06-01 18:22 &#8211; 2020-06-01 18:23 &#8211; 000000000 ____D C:ProgramDataDIALux\n2020-06-01 18:22 &#8211; 2020-06-01 18:22 &#8211; 000000000 ____D C:ProgramDataDIALux PlugIns\n2020-06-01 18:17 &#8211; 2020-06-01 21:00 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsPHILIPS\n2020-06-01 18:17 &#8211; 2020-06-01 18:18 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsOSRAM\n2020-06-01 18:15 &#8211; 2020-06-01 18:15 &#8211; 001751775 _____ C:UsersXXXXXXZZZDownloads20190926-philips-truefashion-2-compact-st715t.zip\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsDIAL GmbH\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalStimulsoft\n2020-06-01 15:27 &#8211; 2020-06-01 15:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalDIAL GmbH\n2020-06-01 12:15 &#8211; 2020-06-01 12:16 &#8211; 000038155 _____ C:DIALux Setup Information.txt\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000005721 _____ C:DIAL Communication Framework Setup Log.txt\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000001783 _____ C:UsersPublicDesktopDIALux evo.lnk\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000001783 _____ C:ProgramDataDesktopDIALux evo.lnk\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalSafeNet Sentinel\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:ProgramDataSafeNet Sentinel\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsDIALux evo\n2020-06-01 12:15 &#8211; 2020-06-01 12:15 &#8211; 000000000 ____D C:Program Files (x86)DIAL GmbH\n2020-06-01 12:13 &#8211; 2020-06-01 12:20 &#8211; 000656059 _____ C:WindowsDIALux Setup Log.txt\n2020-06-01 12:13 &#8211; 2020-06-01 12:14 &#8211; 000000000 ____D C:ProgramDataDIAL GmbH\n2020-06-01 12:13 &#8211; 2020-06-01 12:13 &#8211; 000000000 ____D C:Program FilesDIAL GmbH\n2020-06-01 12:02 &#8211; 2020-06-01 12:04 &#8211; 486796896 _____ (DIAL GmbH) C:UsersXXXXXXZZZDownloadsDIALux_evo_9.0.exe\n2020-05-28 14:18 &#8211; 2020-05-28 14:18 &#8211; 000090112 _____ C:UsersXXXXXXZZZDownloadsamipinkc2.exe\n2020-05-28 13:07 &#8211; 2020-05-28 13:07 &#8211; 000002391 _____ C:UsersXXXXXXZZZAppDataLocalrecently-used.xbel\n2020-05-28 12:56 &#8211; 2020-05-28 12:56 &#8211; 011226820 _____ C:UsersXXXXXXZZZDownloadsvulscan-master.zip\n2020-05-27 15:28 &#8211; 2020-05-27 15:28 &#8211; 000030719 _____ C:UsersXXXXXXZZZDownloadsc2 metasploit powershel.zip\n2020-05-24 14:46 &#8211; 2020-05-24 14:46 &#8211; 001227102 _____ C:UsersXXXXXXZZZDownloadsSGA10.zip\n2020-05-23 00:22 &#8211; 2020-05-23 00:22 &#8211; 000000018 _____ C:UsersXXXXXXZZZDesktopSerpentine Similar.txt\n2020-05-22 20:08 &#8211; 2020-05-22 20:09 &#8211; 000325072 _____ C:WindowsMinidump52220-169750-01.dmp\n2020-05-22 16:03 &#8211; 2020-05-22 16:03 &#8211; 000214496 _____ (Malwarebytes) C:Windowssystem32DriversMbamChameleon.sys\n2020-05-21 22:30 &#8211; 2020-05-21 22:30 &#8211; 000000083 _____ C:UsersXXXXXXZZZDesktopnmap.txt\n2020-05-21 10:47 &#8211; 2020-05-28 13:07 &#8211; 000000000 ____D C:UsersXXXXXXZZZ.zenmap\n2020-05-21 10:47 &#8211; 2020-05-21 10:47 &#8211; 000000986 _____ C:UsersXXXXXXZZZDesktopNmap &#8211; Zenmap GUI.lnk\n2020-05-21 10:47 &#8211; 2020-05-21 10:47 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsNmap\n2020-05-21 10:45 &#8211; 2020-05-24 17:36 &#8211; 000003112 _____ C:Windowssystem32Tasksnpcapwatchdog\n2020-05-21 10:43 &#8211; 2020-05-21 10:43 &#8211; 000000000 ____D C:WindowsSysWOW64Npcap\n2020-05-21 10:43 &#8211; 2020-05-21 10:43 &#8211; 000000000 ____D C:Windowssystem32Npcap\n2020-05-21 10:42 &#8211; 2020-05-28 13:00 &#8211; 000000000 ____D C:Program Files (x86)Nmap\n2020-05-21 00:50 &#8211; 2020-05-21 10:13 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsSGA10\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002203 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Earth Pro.lnk\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002191 _____ C:UsersPublicDesktopGoogle Earth Pro.lnk\n2020-05-19 10:20 &#8211; 2020-05-19 10:20 &#8211; 000002191 _____ C:ProgramDataDesktopGoogle Earth Pro.lnk\n2020-05-17 13:58 &#8211; 2020-05-17 13:59 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsFotos Belém\n2020-05-16 22:15 &#8211; 2020-05-16 22:24 &#8211; 000002368 _____ C:UsersXXXXXXZZZDesktopRkill.txt\n2020-05-16 22:14 &#8211; 2020-05-16 22:14 &#8211; 001802704 _____ (Bleeping Computer, LLC) C:UsersXXXXXXZZZDownloadsrkill.exe\n2020-05-16 21:34 &#8211; 2020-05-16 21:34 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalclink\n2020-05-16 20:34 &#8211; 2020-05-16 20:40 &#8211; 000000000 ____D C:Appie\n2020-05-15 23:38 &#8211; 2020-05-15 23:38 &#8211; 000000193 _____ C:UsersXXXXXXZZZDesktopbiblio.txt\n2020-05-14 11:27 &#8211; 2020-05-14 11:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsZoom\n2020-05-14 11:20 &#8211; 2020-05-14 11:20 &#8211; 000001947 _____ C:UsersXXXXXXZZZDesktopZoom.lnk\n2020-05-14 11:19 &#8211; 2020-05-14 11:19 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsZoom\n2020-05-14 10:28 &#8211; 2020-04-30 04:49 &#8211; 000308736 _____ (Microsoft Corporation) C:Windowssystem32usbmon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 04:22 &#8211; 000881664 _____ (Microsoft Corporation) C:Windowssystem32printfilterpipelinesvc.exe\n2020-05-14 10:28 &#8211; 2020-04-30 03:55 &#8211; 001756672 _____ (Microsoft Corporation) C:Windowssystem32GdiPlus.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:43 &#8211; 001495040 _____ (Microsoft Corporation) C:WindowsSysWOW64GdiPlus.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:40 &#8211; 000309760 _____ (Microsoft Corporation) C:Windowssystem32WSDMon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:37 &#8211; 000216576 _____ (Microsoft Corporation) C:Windowssystem32tcpmon.dll\n2020-05-14 10:28 &#8211; 2020-04-30 03:33 &#8211; 001096704 _____ (Microsoft Corporation) C:Windowssystem32localspl.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 022365896 _____ (Microsoft Corporation) C:Windowssystem32shell32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 003118032 _____ (Microsoft Corporation) C:Windowssystem32WpcMon.exe\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 001368592 _____ (Microsoft Corporation) C:Windowssystem32gdi32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 000722496 _____ (Microsoft Corporation) C:Windowssystem32SHCore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:04 &#8211; 000642488 _____ (Microsoft Corporation) C:Windowssystem32twinapi.appcore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 07:00 &#8211; 000374024 _____ (Adobe Systems Incorporated) C:Windowssystem32atmfd.dll\n2020-05-14 10:28 &#8211; 2020-04-16 06:15 &#8211; 025755136 _____ (Microsoft Corporation) C:Windowssystem32mshtml.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:30 &#8211; 019795840 _____ (Microsoft Corporation) C:WindowsSysWOW64shell32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:29 &#8211; 000561400 _____ (Microsoft Corporation) C:WindowsSysWOW64SHCore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:29 &#8211; 000493736 _____ (Microsoft Corporation) C:WindowsSysWOW64twinapi.appcore.dll\n2020-05-14 10:28 &#8211; 2020-04-16 05:25 &#8211; 000316368 _____ (Adobe Systems Incorporated) C:WindowsSysWOW64atmfd.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:40 &#8211; 002911744 _____ (Microsoft Corporation) C:Windowssystem32iertutil.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:38 &#8211; 000581120 _____ (Microsoft Corporation) C:Windowssystem32vbscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:31 &#8211; 020291072 _____ (Microsoft Corporation) C:WindowsSysWOW64mshtml.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:31 &#8211; 000113152 _____ (Microsoft Corporation) C:Windowssystem32Windows.Security.Credentials.UI.UserConsentVerifier.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:28 &#8211; 000186880 _____ (Microsoft Corporation) C:Windowssystem32easwrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:27 &#8211; 005498880 _____ (Microsoft Corporation) C:Windowssystem32jscript9.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:27 &#8211; 000785408 _____ (Microsoft Corporation) C:Windowssystem32jscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:25 &#8211; 000546816 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.PointOfService.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:14 &#8211; 000497664 _____ (Microsoft Corporation) C:WindowsSysWOW64vbscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:11 &#8211; 002304000 _____ (Microsoft Corporation) C:WindowsSysWOW64iertutil.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:07 &#8211; 000084992 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Security.Credentials.UI.UserConsentVerifier.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:06 &#8211; 000463872 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.Usb.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:05 &#8211; 000147968 _____ (Microsoft Corporation) C:WindowsSysWOW64easwrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:04 &#8211; 000654336 _____ (Microsoft Corporation) C:WindowsSysWOW64jscript.dll\n2020-05-14 10:28 &#8211; 2020-04-16 04:03 &#8211; 000365568 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.PointOfService.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:59 &#8211; 001994240 _____ (Microsoft Corporation) C:Windowssystem32DWrite.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:59 &#8211; 001033216 _____ (Microsoft Corporation) C:Windowssystem32inetcomm.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:54 &#8211; 015478272 _____ (Microsoft Corporation) C:Windowssystem32ieframe.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:53 &#8211; 003258368 _____ (Microsoft Corporation) C:Windowssystem32Wpc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:53 &#8211; 000262144 _____ (Microsoft Corporation) C:Windowssystem32webcheck.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:51 &#8211; 000809472 _____ (Microsoft Corporation) C:Windowssystem32msfeeds.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:50 &#8211; 001384960 _____ (Microsoft Corporation) C:Windowssystem32FntCache.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:49 &#8211; 002942464 _____ (Microsoft Corporation) C:Windowssystem32WpcWebSync.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:49 &#8211; 002132992 _____ (Microsoft Corporation) C:Windowssystem32inetcpl.cpl\n2020-05-14 10:28 &#8211; 2020-04-16 03:48 &#8211; 000310784 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.Usb.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:43 &#8211; 000880640 _____ (Microsoft Corporation) C:WindowsSysWOW64inetcomm.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:41 &#8211; 004112384 _____ (Microsoft Corporation) C:WindowsSysWOW64jscript9.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:41 &#8211; 002471424 _____ (Microsoft Corporation) C:WindowsSysWOW64Wpc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:40 &#8211; 001085440 _____ (Microsoft Corporation) C:WindowsSysWOW64gdi32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:39 &#8211; 001560064 _____ (Microsoft Corporation) C:WindowsSysWOW64DWrite.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:39 &#8211; 000696320 _____ (Microsoft Corporation) C:WindowsSysWOW64msfeeds.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:38 &#8211; 002058752 _____ (Microsoft Corporation) C:WindowsSysWOW64inetcpl.cpl\n2020-05-14 10:28 &#8211; 2020-04-16 03:38 &#8211; 000333312 _____ (Microsoft Corporation) C:WindowsSysWOW64iedkcs32.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:37 &#8211; 004859392 _____ (Microsoft Corporation) C:Windowssystem32wininet.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:35 &#8211; 013861376 _____ (Microsoft Corporation) C:WindowsSysWOW64ieframe.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:35 &#8211; 000254976 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.HumanInterfaceDevice.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:32 &#8211; 000689152 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.Bluetooth.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:30 &#8211; 014533632 _____ (Microsoft Corporation) C:Windowssystem32twinui.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:28 &#8211; 000902656 _____ (Microsoft Corporation) C:Windowssystem32Windows.Devices.SmartCards.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:27 &#8211; 000173056 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.HumanInterfaceDevice.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 012880384 _____ (Microsoft Corporation) C:WindowsSysWOW64twinui.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 001566720 _____ (Microsoft Corporation) C:Windowssystem32urlmon.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:26 &#8211; 000466432 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.Bluetooth.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:24 &#8211; 007799296 _____ (Microsoft Corporation) C:Windowssystem32Windows.Data.Pdf.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:23 &#8211; 000626688 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Devices.SmartCards.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:22 &#8211; 000068096 _____ (Microsoft Corporation) C:Windowssystem32ConfigureExpandedStorage.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:20 &#8211; 004387328 _____ (Microsoft Corporation) C:WindowsSysWOW64wininet.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:20 &#8211; 000052736 _____ (Microsoft Corporation) C:WindowsSysWOW64ConfigureExpandedStorage.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:19 &#8211; 001265152 _____ (Microsoft Corporation) C:Windowssystem32schedsvc.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:18 &#8211; 005271552 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Data.Pdf.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:16 &#8211; 001341952 _____ (Microsoft Corporation) C:WindowsSysWOW64urlmon.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:15 &#8211; 000800768 _____ (Microsoft Corporation) C:Windowssystem32ieapfltr.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:15 &#8211; 000710144 _____ (Microsoft Corporation) C:WindowsSysWOW64ieapfltr.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:14 &#8211; 001727488 _____ (Microsoft Corporation) C:Windowssystem32Windows.UI.Immersive.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 001546752 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.UI.Immersive.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 000140288 _____ (Microsoft Corporation) C:Windowssystem32efswrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:11 &#8211; 000104448 _____ (Microsoft Corporation) C:WindowsSysWOW64efswrt.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:07 &#8211; 000156160 _____ (Microsoft Corporation) C:WindowsSysWOW64PlayToManager.dll\n2020-05-14 10:28 &#8211; 2020-04-16 03:05 &#8211; 000229888 _____ (Microsoft Corporation) C:Windowssystem32PlayToManager.dll\n2020-05-14 10:28 &#8211; 2020-04-14 08:33 &#8211; 000205824 _____ (Microsoft Corporation) C:Windowssystem32scrrun.dll\n2020-05-14 10:28 &#8211; 2020-04-14 08:03 &#8211; 000168448 _____ (Microsoft Corporation) C:WindowsSysWOW64scrrun.dll\n2020-05-14 10:28 &#8211; 2020-04-11 19:42 &#8211; 007362296 _____ (Microsoft Corporation) C:Windowssystem32ntoskrnl.exe\n2020-05-14 10:28 &#8211; 2020-04-11 19:41 &#8211; 000376568 _____ (Microsoft Corporation) C:Windowssystem32Driversclfs.sys\n2020-05-14 10:28 &#8211; 2020-04-11 19:39 &#8211; 001542696 _____ (Microsoft Corporation) C:Windowssystem32user32.dll\n2020-05-14 10:28 &#8211; 2020-04-11 19:29 &#8211; 001737720 _____ (Microsoft Corporation) C:Windowssystem32ntdll.dll\n2020-05-14 10:28 &#8211; 2020-04-11 18:31 &#8211; 001501096 _____ (Microsoft Corporation) C:WindowsSysWOW64ntdll.dll\n2020-05-14 10:28 &#8211; 2020-04-11 18:04 &#8211; 004168704 _____ (Microsoft Corporation) C:Windowssystem32win32k.sys\n2020-05-14 10:28 &#8211; 2020-04-11 16:55 &#8211; 000194560 _____ (Microsoft Corporation) C:Windowssystem32winsrv.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:53 &#8211; 000112128 _____ (Microsoft Corporation) C:Windowssystem32vaultcli.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:48 &#8211; 001377792 _____ (Microsoft Corporation) C:WindowsSysWOW64user32.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:47 &#8211; 000260608 _____ (Microsoft Corporation) C:Windowssystem32vaultsvc.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:23 &#8211; 001317888 _____ (Microsoft Corporation) C:Windowssystem32Windows.Media.Streaming.dll\n2020-05-14 10:28 &#8211; 2020-04-11 16:22 &#8211; 001103872 _____ (Microsoft Corporation) C:WindowsSysWOW64Windows.Media.Streaming.dll\n2020-05-14 10:28 &#8211; 2020-04-11 01:12 &#8211; 002446576 _____ (Microsoft Corporation) C:Windowssystem32Driverstcpip.sys\n2020-05-14 10:28 &#8211; 2020-04-11 01:12 &#8211; 000428784 _____ (Microsoft Corporation) C:Windowssystem32DriversFWPKCLNT.SYS\n2020-05-14 10:28 &#8211; 2020-04-09 14:36 &#8211; 001311744 _____ (Microsoft Corporation) C:WindowsSysWOW64msjet40.dll\n2020-05-14 10:28 &#8211; 2020-04-07 20:30 &#8211; 000988472 _____ (Microsoft Corporation) C:Windowssystem32mfsrcsnk.dll\n2020-05-14 10:28 &#8211; 2020-04-07 20:28 &#8211; 000857320 _____ (Microsoft Corporation) C:WindowsSysWOW64mfsrcsnk.dll\n2020-05-14 10:28 &#8211; 2020-04-07 14:55 &#8211; 003330048 _____ (Microsoft Corporation) C:Windowssystem32msi.dll\n2020-05-14 10:28 &#8211; 2020-04-07 14:51 &#8211; 003636224 _____ (Microsoft Corporation) C:WindowsSysWOW64msi.dll\n2020-05-14 10:28 &#8211; 2020-04-04 17:06 &#8211; 000879616 _____ (Microsoft Corporation) C:Windowssystem32rasdlg.dll\n2020-05-14 10:28 &#8211; 2020-04-04 17:01 &#8211; 001572864 _____ (Microsoft Corporation) C:Windowssystem32wbengine.exe\n2020-05-14 10:28 &#8211; 2020-04-04 16:50 &#8211; 000795136 _____ (Microsoft Corporation) C:WindowsSysWOW64rasdlg.dll\n2020-05-14 10:13 &#8211; 2020-05-13 09:42 &#8211; 000338104 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32avgBoot.exe\n2020-05-13 16:42 &#8211; 2020-05-13 16:43 &#8211; 140053773 _____ C:UsersXXXXXXZZZDownloadsHAPv5.11.zip\n2020-05-13 09:43 &#8211; 2020-05-13 09:42 &#8211; 000235552 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgStm.sys\n2020-05-13 09:43 &#8211; 2020-05-13 09:42 &#8211; 000175776 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgMonFlt.sys\n2020-05-11 16:42 &#8211; 2020-06-08 02:05 &#8211; 000000000 ____D C:Windowssystem32TasksAVAST Software\n2020-05-10 21:06 &#8211; 2020-05-10 21:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingQtProject\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000001201 _____ C:UsersPublicDesktopMiniTool Power Data Recovery 8.8.lnk\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000001201 _____ C:ProgramDataDesktopMiniTool Power Data Recovery 8.8.lnk\n2020-05-10 21:04 &#8211; 2020-05-10 21:04 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsMiniTool Power Data Recovery\n2020-05-10 20:58 &#8211; 2020-05-10 22:38 &#8211; 000000000 ____D C:Program Files (x86)MiniTool PowerDataRecovery\n2020-05-10 20:51 &#8211; 2020-05-10 20:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsDiskInternals\n2020-05-10 20:51 &#8211; 2020-05-10 20:51 &#8211; 000000000 ____D C:Program Files (x86)DiskInternals\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000001677 _____ C:UsersPublicDesktopRecuva.lnk\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000001677 _____ C:ProgramDataDesktopRecuva.lnk\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsRecuva\n2020-05-10 20:32 &#8211; 2020-05-10 20:32 &#8211; 000000000 ____D C:Program FilesRecuva"},{"id":"text-31","heading":"Text","content":"==================== One month (modified) =================="},{"id":"text-32","heading":"Text","content":"(If an entry is included in the fixlist, the file/folder will be moved.)"},{"id":"text-33","heading":"Text","content":"2020-06-09 11:59 &#8211; 2018-07-01 02:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalLowMozilla\n2020-06-09 11:53 &#8211; 2020-04-22 15:26 &#8211; 000000000 ____D C:FRST\n2020-06-09 11:52 &#8211; 2019-09-18 14:54 &#8211; 000000594 _____ C:WindowsTasksG2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job\n2020-06-09 11:39 &#8211; 2020-04-22 15:39 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsSMsec\n2020-06-09 11:31 &#8211; 2020-04-24 12:21 &#8211; 000000000 ___RD C:UsersXXXXXXZZZDocumentsMEGAsync uploads\n2020-06-09 11:22 &#8211; 2019-09-18 14:54 &#8211; 000000690 _____ C:WindowsTasksG2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001.job\n2020-06-09 11:16 &#8211; 2015-05-05 05:06 &#8211; 000818068 _____ C:Windowssystem32prfh0816.dat\n2020-06-09 11:16 &#8211; 2015-05-05 05:06 &#8211; 000175394 _____ C:Windowssystem32prfc0816.dat\n2020-06-09 11:16 &#8211; 2014-11-21 05:42 &#8211; 001956190 _____ C:Windowssystem32PerfStringBackup.INI\n2020-06-09 11:16 &#8211; 2013-08-22 14:36 &#8211; 000000000 ____D C:WindowsInf\n2020-06-09 10:45 &#8211; 2020-05-02 10:45 &#8211; 000000374 _____ C:WindowsTasksHPCeeScheduleForXXXXXXZZZ.job\n2020-06-09 09:34 &#8211; 2016-03-18 21:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsYoucam\n2020-06-09 09:33 &#8211; 2018-07-27 23:43 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalCrashDumps\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000003700 _____ C:Windowssystem32TasksG2MUploadTask-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000003604 _____ C:Windowssystem32TasksG2MUpdateTask-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-09 09:28 &#8211; 2019-09-18 14:54 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalGoToMeeting\n2020-06-09 09:24 &#8211; 2020-03-19 19:44 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalAVAST Software\n2020-06-09 09:21 &#8211; 2020-03-16 11:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingSpotify\n2020-06-09 09:21 &#8211; 2016-04-23 21:50 &#8211; 000000000 ____D C:ProgramDataAvg\n2020-06-09 09:17 &#8211; 2016-03-18 21:20 &#8211; 000000000 __RDO C:UsersXXXXXXZZZOneDrive\n2020-06-09 09:17 &#8211; 2016-03-18 21:14 &#8211; 000000000 __SHD C:UsersXXXXXXZZZIntelGraphicsProfiles\n2020-06-09 09:10 &#8211; 2019-04-05 12:40 &#8211; 000000000 ____D C:ProgramDataVMware\n2020-06-09 09:10 &#8211; 2017-11-30 18:27 &#8211; 000000434 _____ C:WindowsTasksDriver Easy Scheduled Scan.job\n2020-06-09 09:10 &#8211; 2013-08-22 15:45 &#8211; 000000006 ____H C:WindowsTasksSA.DAT\n2020-06-09 09:10 &#8211; 2013-08-22 15:44 &#8211; 001175584 _____ C:Windowssystem32FNTCACHE.DAT\n2020-06-09 09:09 &#8211; 2016-05-02 18:14 &#8211; 000000000 ____D C:Program Files (x86)Mozilla Maintenance Service\n2020-06-08 02:12 &#8211; 2013-08-22 14:25 &#8211; 000524288 ___SH C:Windowssystem32configBBI\n2020-06-08 02:05 &#8211; 2020-05-02 10:45 &#8211; 000003202 _____ C:Windowssystem32TasksHPCeeScheduleForXXXXXXZZZ\n2020-06-08 02:05 &#8211; 2019-06-24 09:55 &#8211; 000004188 _____ C:Windowssystem32TasksAvast SecureLine VPN Update\n2020-06-08 02:05 &#8211; 2019-03-27 15:39 &#8211; 000003874 _____ C:Windowssystem32TasksBlueStacksHelper\n2020-06-08 02:05 &#8211; 2019-03-14 12:51 &#8211; 000004128 _____ C:Windowssystem32TasksCCleaner Update\n2020-06-08 02:05 &#8211; 2019-03-14 12:51 &#8211; 000002818 _____ C:Windowssystem32TasksCCleanerSkipUAC\n2020-06-08 02:05 &#8211; 2018-03-13 10:37 &#8211; 000004472 _____ C:Windowssystem32TasksAdobe Flash Player NPAPI Notifier\n2020-06-08 02:05 &#8211; 2018-01-19 14:55 &#8211; 000003108 _____ C:Windowssystem32Tasks7A5E22F3-13A6-4040-B1C5-E4043B449990\n2020-06-08 02:05 &#8211; 2017-11-30 18:27 &#8211; 000003832 _____ C:Windowssystem32TasksDriver Easy Scheduled Scan\n2020-06-08 02:05 &#8211; 2017-06-28 03:34 &#8211; 000004324 _____ C:Windowssystem32TasksAdobe Flash Player Updater\n2020-06-08 02:05 &#8211; 2017-04-06 22:46 &#8211; 000004174 _____ C:Windowssystem32TasksAntivirus Emergency Update\n2020-06-08 02:05 &#8211; 2016-04-18 20:31 &#8211; 000003646 _____ C:Windowssystem32TasksHPCustParticipation HP Deskjet 3050 J610 series\n2020-06-08 02:05 &#8211; 2016-03-31 20:06 &#8211; 000004476 _____ C:Windowssystem32TasksAdobe Acrobat Update Task\n2020-06-08 02:05 &#8211; 2016-03-18 21:26 &#8211; 000003444 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineUA\n2020-06-08 02:05 &#8211; 2016-03-18 21:26 &#8211; 000003316 _____ C:Windowssystem32TasksGoogleUpdateTaskMachineCore\n2020-06-08 02:05 &#8211; 2015-06-04 18:43 &#8211; 000002118 _____ C:Windowssystem32TasksAvast SecureLine\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002986 _____ C:Windowssystem32TasksStart SimplePass\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002924 _____ C:Windowssystem32TasksStart OPBHOBrokerDesktop\n2020-06-08 02:05 &#8211; 2015-05-04 20:52 &#8211; 000002912 _____ C:Windowssystem32TasksStart OPBHOBroker\n2020-06-07 17:15 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32NDF\n2020-06-07 14:53 &#8211; 2016-04-28 13:32 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsDepesas anuais\n2020-06-07 14:09 &#8211; 2019-07-18 11:12 &#8211; 000000000 ____D C:UsersXXXXXXZZZ.VirtualBox\n2020-06-07 13:56 &#8211; 2019-07-18 11:12 &#8211; 000000000 ____D C:ProgramDataVirtualBox\n2020-06-05 15:12 &#8211; 2016-03-18 21:21 &#8211; 000003600 _____ C:Windowssystem32TasksOptimize Start Menu Cache Files-S-1-5-21-3751382696-3894377064-3631472648-1001\n2020-06-05 14:57 &#8211; 2016-05-02 18:14 &#8211; 000001182 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsFirefox.lnk\n2020-06-05 09:41 &#8211; 2016-03-18 21:27 &#8211; 000002247 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk\n2020-06-04 18:33 &#8211; 2020-05-04 21:27 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingxarp-XXXXXXZZZ\n2020-06-04 13:20 &#8211; 2016-03-31 20:06 &#8211; 000002086 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk\n2020-06-02 19:55 &#8211; 2018-06-24 15:52 &#8211; 000001277 _____ C:UsersXXXXXXZZZDesktopMUSICA.txt &#8211; Atalho.lnk\n2020-06-02 19:27 &#8211; 2016-03-18 21:12 &#8211; 000000000 ____D C:UsersXXXXXXZZZ\n2020-06-02 11:21 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowstracing\n2020-06-01 21:21 &#8211; 2015-05-04 20:52 &#8211; 000000000 ___HD C:Program Files (x86)InstallShield Installation Information\n2020-05-29 08:53 &#8211; 2015-06-04 18:15 &#8211; 000000000 ____D C:ProgramDataRealtek\n2020-05-28 23:50 &#8211; 2016-04-25 18:02 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingvlc\n2020-05-28 00:58 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:WindowsAppReadiness\n2020-05-28 00:46 &#8211; 2017-12-10 17:58 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsFacebook\n2020-05-28 00:38 &#8211; 2020-04-22 15:36 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsJogos\n2020-05-28 00:14 &#8211; 2017-03-04 00:04 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsXadrez\n2020-05-28 00:12 &#8211; 2016-12-17 17:46 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsSegurança Social\n2020-05-28 00:11 &#8211; 2018-06-24 15:40 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsProgramas\n2020-05-28 00:11 &#8211; 2016-04-30 18:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsProgramas instalados\n2020-05-28 00:10 &#8211; 2016-05-12 20:08 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsOutros\n2020-05-28 00:09 &#8211; 2018-05-06 16:14 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsLivros\n2020-05-27 13:56 &#8211; 2019-11-04 15:58 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsNetworkMiner_2-5\n2020-05-27 10:01 &#8211; 2015-05-04 20:48 &#8211; 000000000 ____D C:Program Files (x86)Hewlett-Packard\n2020-05-26 18:00 &#8211; 2016-04-28 01:41 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalMicrosoft Help\n2020-05-26 12:34 &#8211; 2020-03-16 11:07 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalSpotify\n2020-05-25 09:55 &#8211; 2020-04-30 19:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZDownloadsETH\n2020-05-22 20:08 &#8211; 2016-05-24 22:12 &#8211; 000000000 ____D C:WindowsMinidump\n2020-05-22 20:00 &#8211; 2017-04-03 19:15 &#8211; 000000000 ___RD C:UsersXXXXXXZZZGoogle Drive\n2020-05-22 12:21 &#8211; 2019-02-07 10:56 &#8211; 000000000 ___RD C:UsersXXXXXXZZZDocumentsMEGA\n2020-05-21 10:45 &#8211; 2020-03-31 18:09 &#8211; 000000000 ____D C:Program FilesNpcap\n2020-05-21 01:37 &#8211; 2016-04-23 21:45 &#8211; 000000000 ____D C:UsersXXXXXXZZZDocumentsPasses\n2020-05-19 10:20 &#8211; 2018-03-22 22:48 &#8211; 000000000 ____D C:Program FilesGoogle\n2020-05-18 22:34 &#8211; 2013-08-22 16:20 &#8211; 000000000 ____D C:WindowsCbsTemp\n2020-05-18 12:33 &#8211; 2016-03-18 21:15 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalPackages\n2020-05-18 12:32 &#8211; 2013-08-22 16:36 &#8211; 000000000 ___HD C:Program FilesWindowsApps\n2020-05-17 15:20 &#8211; 2019-07-18 11:13 &#8211; 000000000 ____D C:UsersXXXXXXZZZVirtualBox VMs\n2020-05-17 13:12 &#8211; 2019-04-24 01:38 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingTelegram Desktop\n2020-05-16 21:57 &#8211; 2015-06-04 18:43 &#8211; 000000000 ____D C:ProgramDataAVAST Software\n2020-05-16 21:48 &#8211; 2016-06-27 16:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingACEStream\n2020-05-16 21:48 &#8211; 2016-06-27 16:51 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoaming.ACEStream\n2020-05-16 04:27 &#8211; 2016-03-31 22:45 &#8211; 000000000 ____D C:Windowssystem32MRT\n2020-05-16 04:22 &#8211; 2013-08-22 16:36 &#8211; 000000000 ___RD C:WindowsToastData\n2020-05-16 04:22 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32inetsrv\n2020-05-15 23:46 &#8211; 2018-04-26 15:42 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalDesignBuilder\n2020-05-15 23:46 &#8211; 2018-04-26 15:36 &#8211; 000000000 ____D C:ProgramDataDesignBuilder\n2020-05-15 23:43 &#8211; 2020-04-18 19:52 &#8211; 000000000 ____D C:Program Files (x86)TeamViewer\n2020-05-15 23:42 &#8211; 2019-12-08 18:20 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingMicrosoftWindowsStart MenuProgramsWugFresh Development\n2020-05-15 23:41 &#8211; 2020-01-11 03:43 &#8211; 000000000 ____D C:Program Files (x86)Kingo ROOT\n2020-05-15 23:41 &#8211; 2018-05-20 03:24 &#8211; 000000000 ____D C:Program Files (x86)Facebook Friend Mapper\n2020-05-15 23:41 &#8211; 2016-03-29 22:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingDropboxOEM\n2020-05-15 11:41 &#8211; 2016-03-31 22:45 &#8211; 120636720 ____C (Microsoft Corporation) C:Windowssystem32MRT.exe\n2020-05-14 11:19 &#8211; 2020-04-09 12:17 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingZoom\n2020-05-13 23:42 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:WindowsSysWOW64Macromed\n2020-05-13 23:42 &#8211; 2013-08-22 16:36 &#8211; 000000000 ____D C:Windowssystem32Macromed\n2020-05-13 22:38 &#8211; 2016-04-18 20:06 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalHP\n2020-05-13 10:44 &#8211; 2020-04-28 14:25 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataLocalLowIGDump\n2020-05-13 09:42 &#8211; 2019-01-07 00:31 &#8211; 000061072 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbuniv.sys\n2020-05-13 09:42 &#8211; 2019-01-07 00:31 &#8211; 000037208 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgArDisk.sys\n2020-05-13 09:42 &#8211; 2018-10-20 20:56 &#8211; 000042856 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgKbd.sys\n2020-05-13 09:42 &#8211; 2017-11-30 14:52 &#8211; 000205952 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgArPot.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000851664 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgSnx.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000461064 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgSP.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000319184 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgVmm.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000109336 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgRdr2.sys\n2020-05-13 09:42 &#8211; 2017-04-06 22:46 &#8211; 000084928 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32DriversavgRvrt.sys\n2020-05-13 09:41 &#8211; 2019-01-14 16:33 &#8211; 000234632 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbidsdriver.sys\n2020-05-13 09:41 &#8211; 2019-01-07 00:31 &#8211; 000178832 _____ (AVG Technologies CZ, s.r.o.) C:Windowssystem32Driversavgbidsh.sys\n2020-05-12 17:41 &#8211; 2020-03-07 21:03 &#8211; 000000000 ____D C:ProgramDataProtonVPN\n2020-05-12 00:18 &#8211; 2018-02-25 20:28 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingWireshark\n2020-05-11 22:49 &#8211; 2020-03-24 22:50 &#8211; 000000000 ____D C:fakenet1.4.11\n2020-05-10 17:51 &#8211; 2016-04-10 14:24 &#8211; 000000000 ____D C:UsersXXXXXXZZZAppDataRoamingAVAST Software\n2020-05-10 17:51 &#8211; 2015-06-04 18:43 &#8211; 000000000 ____D C:Program FilesAVAST Software"},{"id":"text-34","heading":"Text","content":"==================== Files in the root of some directories ========"},{"id":"text-35","heading":"Text","content":"2020-01-03 14:39 &#8211; 2020-01-03 14:39 &#8211; 003185243 _____ () C:Program FilesHxDSetup.zip\n2020-02-26 13:17 &#8211; 2020-02-26 13:17 &#8211; 003341981 _____ () C:Program FilesSnort_2_9_15_1_Installer.exe\n2017-11-28 12:01 &#8211; 2017-11-28 12:03 &#8211; 007649280 _____ () C:Program Files (x86)GUTAEE6.tmp\n2020-05-28 13:07 &#8211; 2020-05-28 13:07 &#8211; 000002391 _____ () C:UsersXXXXXXZZZAppDataLocalrecently-used.xbel\n2020-01-11 03:44 &#8211; 2020-01-11 03:59 &#8211; 000000068 _____ () C:UsersXXXXXXZZZAppDataLocaluts.ini\n2020-05-21 10:47 &#8211; 2020-05-28 11:12 &#8211; 000000286 _____ () C:UsersXXXXXXZZZAppDataLocalzenmap.exe.log"},{"id":"text-36","heading":"Text","content":"==================== SigCheck ============================"},{"id":"text-37","heading":"Text","content":"(There is no automatic fix for files that do not pass verification.)"},{"id":"text-38","heading":"Text","content":"LastRegBack: 2020-04-08 11:59\n==================== End of FRST.txt ========================\nAlso, the Addition.txt:"},{"id":"text-39","heading":"Text","content":"Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-06-2020\nRan by XXXXXXZZZ (09-06-2020 12:01:08)\nRunning from C:UsersXXXXXXZZZDownloads\nWindows 8.1 (Update) (X64) (2016-03-18 20:13:59)\nBoot Mode: Normal\n=========================================================="},{"id":"text-40","heading":"Text","content":"==================== Accounts: ============================="},{"id":"text-41","heading":"Text","content":"Administrador (S-1-5-21-3751382696-3894377064-3631472648-500 &#8211; Administrator &#8211; Disabled)\nConvidado (S-1-5-21-3751382696-3894377064-3631472648-501 &#8211; Limited &#8211; Disabled)\nXXXXXXZZZ (S-1-5-21-3751382696-3894377064-3631472648-1001 &#8211; Administrator &#8211; Enabled) =&gt; C:UsersXXXXXXZZZ"},{"id":"text-42","heading":"Text","content":"==================== Security Center ========================"},{"id":"text-43","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed.)"},{"id":"text-44","heading":"Text","content":"AV: Windows Defender (Disabled &#8211; Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46\nAV: AVG Antivirus (Enabled &#8211; Up to date) 18A975F9-A60C-37D8-E30B-4BEF31AD3411\nAS: AVG Antivirus (Enabled &#8211; Up to date) A3C8941D-8036-3856-D9BB-709D4A2A7EAC\nAS: Windows Defender (Disabled &#8211; Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46"},{"id":"text-45","heading":"Text","content":"==================== Installed Programs ======================"},{"id":"text-46","heading":"Text","content":"(Only the adware programs with &quot;Hidden&quot; flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)"},{"id":"text-47","heading":"Text","content":"[PS3]  Save Resigner (HKLM-x32&#8230;[PS3] Save Resigner 2.0.2) (Version: 2.0.2 &#8211; The Prince of Codes)\n[PS3]  Save Resigner (HKLM-x32&#8230;96CF2F0B-EBB0-4D7F-852F-C54A30C8E5CF) (Version: 2.0.2 &#8211; The Prince of Codes) Hidden\nµTorrent (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;uTorrent) (Version: 3.5.5.45505 &#8211; BitTorrent Inc.)\n7-Zip 9.20 (x64 edition) (HKLM&#8230;23170F69-40C1-2702-0920-000001000000) (Version: 9.20.00.0 &#8211; Igor Pavlov)\nA360 Desktop (HKLM&#8230;7758802D-9486-4883-9927-CCAC366A3BA4) (Version: 7.2.3.1800 &#8211; Autodesk)\nACA &amp; MEP 2017 Object Enabler (HKLM&#8230;28B89EEF-0004-0000-5102-CF3F3A09B77D) (Version: 7.9.45.0 &#8211; Autodesk) Hidden\nACAD Private (HKLM&#8230;28B89EEF-0001-0000-3102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nActualizações da NVIDIA 16.13.65 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Update) (Version: 16.13.65 &#8211; NVIDIA Corporation) Hidden\nAdobe Acrobat Reader DC &#8211; Português (HKLM-x32&#8230;AC76BA86-7AD7-1046-7B44-AC0F074E4100) (Version: 20.009.20067 &#8211; Adobe Systems Incorporated)\nAdobe Acrobat XI Pro (HKLM-x32&#8230;AC76BA86-1033-FFFF-7760-000000000006) (Version: 11.0.12 &#8211; Adobe Systems)\nAdobe Flash Player 32 NPAPI (HKLM-x32&#8230;Adobe Flash Player NPAPI) (Version: 32.0.0.371 &#8211; Adobe)\nAdobe Shockwave Player 12.1 (HKLM-x32&#8230;Adobe Shockwave Player) (Version: 12.1.7.157 &#8211; Adobe Systems, Inc.)\nAimersoft Helper Compact 2.5.2 (HKLM-x32&#8230;405147F7-FCC5-499B-A27E-EA6BD4A80435_is1) (Version: 2.5.2 &#8211; Aimersoft)\nAndroid Rom Dumper version 1.3.5 (HKLM-x32&#8230;595D7D79-D70F-4930-A450-BF06B628EE2D_is1) (Version: 1.3.5 &#8211; BoxWares Team)\nAndroid Studio (HKLM&#8230;Android Studio) (Version: 3.6 &#8211; Google LLC)\nAndroid Toolkit 2.0.30 (HKLM-x32&#8230;F9441FCC-1C08-4933-939F-0E8A27D6C0CE_is1) (Version: 2.0.30 &#8211; Apeaksoft Studio)\nAny DGN to DWG Converter 2018 (HKLM-x32&#8230;Any DGN to DWG Converter_is1) (Version:  &#8211; AnyDWG Software, Inc.)\nAny DWF to DWG Converter 2017 (HKLM-x32&#8230;Any DWF to DWG Converter_is1) (Version:  &#8211; AnyDWG Software, Inc.)\nAplicação de ambiente de trabalho Autodesk (HKLM-x32&#8230;Autodesk Desktop App) (Version: 7.0.9.191 &#8211; Autodesk)\nAplicativos da Autodesk em destaque 2016-2017 (HKLM-x32&#8230;27C15055-713B-4D0E-881F-19598A2DFD59) (Version: 2.2.0 &#8211; Autodesk)\nApplication Verifier x64 External Package (HKLM&#8230;10CA1677-8F02-3131-F25C-780BAB52E468) (Version: 10.1.18362.1 &#8211; Microsoft) Hidden\nAssistente de gestor de conteúdo para PlayStation® (HKLM-x32&#8230;E5C1C342-5E78-4D91-85BE-40C716B09391) (Version: 3.55.7671.0901 &#8211; Sony Computer Entertainment Inc.)\nAutoCAD 2017 &#8211; English (HKLM&#8230;28B89EEF-0001-0409-2102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutoCAD 2017 (HKLM&#8230;28B89EEF-0001-0000-0102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutoCAD 2017 Language Pack &#8211; English (HKLM&#8230;28B89EEF-0001-0409-1102-CF3F3A09B77D) (Version: 21.0.52.0 &#8211; Autodesk) Hidden\nAutodesk Advanced Material Library Image Library 2017 (HKLM-x32&#8230;8ED2ED41-4455-449D-993C-751C039089B9) (Version: 15.11.3.0 &#8211; Autodesk)\nAutodesk App Manager 2016-2017 (HKLM-x32&#8230;C0954809-F5DC-426C-847E-8409DE14E4C0) (Version: 2.2.0 &#8211; Autodesk)\nAutodesk AutoCAD 2017 &#8211; English (HKLM&#8230;AutoCAD 2017 &#8211; English) (Version: 21.0.52.0 &#8211; Autodesk)\nAutodesk AutoCAD Performance Feedback Tool 1.2.5 (HKLM-x32&#8230;8600F844-9AA5-412E-B6F2-F9C6CBCFD268) (Version: 1.2.5.0 &#8211; Autodesk)\nAutodesk BIM 360 Glue AutoCAD 2017 Add-in 64 bit (HKLM&#8230;276A67E0-71EB-4827-B5F7-2ACF02BC1A5B) (Version: 4.37.6853 &#8211; Autodesk)\nAutodesk Design Review (HKLM-x32&#8230;139C013B-5BAC-4101-BC6C-B2A78C0125A4) (Version: 14.0.0.177 &#8211; Autodesk) Hidden\nAutodesk Design Review (HKLM-x32&#8230;Autodesk Design Review) (Version: 14.0.0.177 &#8211; Autodesk)\nAutodesk DWG TrueView 2018 &#8211; English (HKLM&#8230;DWG TrueView 2018 &#8211; English) (Version: 22.0.50.0 &#8211; Autodesk)\nAutodesk License Service (x64) &#8211; 3.1 (HKLM&#8230;EB6FE58F-8576-4272-BB9C-6B47D9EDFA4D) (Version: 3.1.26.0 &#8211; Autodesk)\nAutodesk Material Library 2017 (HKLM-x32&#8230;8FB9F735-D64C-4991-8D91-4CDDAB1ABDEE) (Version: 15.11.3.0 &#8211; Autodesk)\nAutodesk Material Library Base Resolution Image Library 2017 (HKLM-x32&#8230;3FBFBC43-9882-43FA-B979-2D53896747B3) (Version: 15.11.3.0 &#8211; Autodesk)\nAutoDWG DWG DXF Converter 2019 (HKLM-x32&#8230;98D8413-1812-41BC-8AD5-2192A80AC23F) (Version:  &#8211; )\nAutoHotkey 1.1.24.01 (HKLM&#8230;AutoHotkey) (Version: 1.1.24.01 &#8211; Lexikos)\nAutopsy (HKLM&#8230;274E8015-93B6-470C-943B-5FDD6E803462) (Version: 4.13.0 &#8211; The Sleuth Kit)\nAvast SecureLine (HKLM&#8230;2CD3C92F-EDC5-4B02-9B0A-9C1D37C58EF5_is1) (Version: 1.0.220.2 &#8211; AVAST Software)\nAVG AntiVirus FREE (HKLM-x32&#8230;AVG Antivirus) (Version: 20.3.3120 &#8211; AVG Technologies)\nAVG TuneUp (HKLM-x32&#8230;949BE04F-D7E8-4C19-9F89-8B304AB4308A_is1) (Version: 19.1.1209 &#8211; AVG Technologies)\nAVG Web TuneUp (HKLM-x32&#8230;AVG Web TuneUp) (Version: 4.3.9.626 &#8211; AVG Technologies)\nBackup and Sync from Google (HKLM&#8230;FE296942-D2D3-4149-8895-60655FE4CFDE) (Version: 3.49.9800.0000 &#8211; Google, Inc.)\nBejeweled 3 (HKLM-x32&#8230;WTA-8fc518d5-0776-414b-8c35-d47a24361589) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nBlueStacks App Player (HKLM&#8230;BlueStacks) (Version: 4.60.3.1001 &#8211; BlueStack Systems, Inc.)\nBonjour (HKLM&#8230;6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D) (Version: 3.0.0.10 &#8211; Apple Inc.)\nBruteforce Save Data (HKLM-x32&#8230;Bruteforce Save Data) (Version:  &#8211; )\nBuild-a-lot (HKLM-x32&#8230;WTA-1122e411-4a7b-46f0-8a81-a325b319b16e) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nBuilding the Great Wall of China Collector&#39;s Edition (HKLM-x32&#8230;WTA-460b63ee-3e7e-405f-8860-c7ef48fb3a7e) (Version: 3.0.2.48 &#8211; WildTangent) Hidden\nCain &amp; Abel 4.9.56 (HKLM-x32&#8230;Cain &amp; Abel 4.9.56) (Version:  &#8211; )\nCCleaner (HKLM&#8230;CCleaner) (Version: 5.55 &#8211; Piriform)\nCisco EAP-FAST Module (HKLM-x32&#8230;64BF0187-F3D2-498B-99EA-163AF9AE6EC9) (Version: 2.2.14 &#8211; Cisco Systems, Inc.)\nCisco LEAP Module (HKLM-x32&#8230;AF312B06-5C5C-468E-89B3-BE6DE2645722) (Version: 1.0.19 &#8211; Cisco Systems, Inc.)\nCisco PEAP Module (HKLM-x32&#8230;A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F) (Version: 1.1.6 &#8211; Cisco Systems, Inc.)\nCrazy Chicken Soccer (HKLM-x32&#8230;WTA-ee1c9a77-df4c-46ab-a6b3-85ad880357a3) (Version: 2.2.0.110 &#8211; WildTangent) Hidden\nCyberLink Media Suite 10 (HKLM-x32&#8230;InstallShield_1FBF6C24-C1fD-4101-A42B-0C564F9E8E79) (Version: 10.0.9.4928 &#8211; CyberLink Corp.)\nCyberlink PhotoDirector (HKLM&#8230;5A454EC5-217A-42a5-8CE1-2DDEC4E70E01) (Version: 5.0.4.6303 &#8211; Nome da empresa:) Hidden\nCyberlink PhotoDirector (HKLM-x32&#8230;InstallShield_5A454EC5-217A-42a5-8CE1-2DDEC4E70E01) (Version: 5.0.4.6303 &#8211; CyberLink Corp.)\nCyberLink Power2Go 8 (HKLM-x32&#8230;InstallShield_2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2) (Version: 8.0.9.5009 &#8211; CyberLink Corp.)\nCyberLink PowerBackup 2.6 (HKLM-x32&#8230;InstallShield_ADD5DB49-72CF-11D8-9D75-000129760D75) (Version: 2.6.2.1307 &#8211; CyberLink Corp.)\nCyberLink PowerDirector 12 (HKLM&#8230;E1646825-D391-42A0-93AA-27FA810DA093) (Version: 12.0.3.3812 &#8211; Nome da empresa:) Hidden\nCyberLink PowerDirector 12 (HKLM-x32&#8230;InstallShield_E1646825-D391-42A0-93AA-27FA810DA093) (Version: 12.0.3.3812 &#8211; CyberLink Corp.)\nCyberLink YouCam (HKLM-x32&#8230;InstallShield_01FB4998-33C4-4431-85ED-079E3EEFE75D) (Version: 5.0.6.5011 &#8211; CyberLink Corp.)\nDAEMON Tools Lite (HKLM&#8230;DAEMON Tools Lite) (Version: 10.3.0.0154 &#8211; Disc Soft Ltd)\nDelicious: Emily&#39;s Wonder Wedding Premium Edition (HKLM-x32&#8230;WTA-ab833d9b-3665-402d-b993-c99a471eeb10) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nDesignBuilder (HKLM-x32&#8230;9C306D70-8A6C-11D5-8CDF-00D0B78FC575) (Version: 5.3.0.014 &#8211; DesignBuilder Software Ltd.)\nDIAL Communication Framework (HKLM-x32&#8230;562D0D31-FBAF-4505-8B27-4EC92EEA91D6) (Version: 1.3.2.258 &#8211; DIAL GmbH)\nDIAL Data Dispatcher (HKLM-x32&#8230;DIAL Data Dispatcher1.0) (Version: 2.0.24.0 &#8211; DIAL GmbH)\nDIALux evo (x64) (HKLM-x32&#8230;5FF70775-5D3A-4A26-B9ED-1BF642E9987C) (Version: 5.9.0.49107 &#8211; DIAL GmbH)\nDisableMSDefender (HKLM&#8230;74FE39A0-FB76-47CD-84BA-91E2BBB17EF2) (Version: 1.0.0 &#8211; Hewlett-Packard Company) Hidden\nDiskInternals Partition Recovery (HKLM-x32&#8230;DiskInternals Partition Recovery) (Version: 7.6.2 &#8211; DiskInternals Research)\nDolphin (HKLM-x32&#8230;Dolphin) (Version: 4.0.2 &#8211; Dolphin Development Team)\nDraftSight 2017 SP0 x64 (HKLM&#8230;E78A1C28-8E3C-4CFB-82A4-077E7104F993) (Version: 17.0.2086 &#8211; Dassault Systemes)\nDriver Easy 5.5.5 (HKLM&#8230;DriverEasy_is1) (Version: 5.5.5 &#8211; Easeware)\nDWF to DWG Converter (HKLM-x32&#8230;909F0ECA-1A61-43F3-B2F2-D1A7AE79A444) (Version:  &#8211; )\nDWG TrueView 2018 &#8211; English (HKLM&#8230;28B89EEF-1028-0409-0100-CF3F3A09B77D) (Version: 22.0.50.0 &#8211; Autodesk) Hidden\nEaseUS Data Recovery Wizard (HKLM&#8230;EaseUS Data Recovery Wizard_is1) (Version:  &#8211; EaseUS)\nE-CAT / E20-II Configuration Services 2.21 (HKLM-x32&#8230;E-CAT / E20-II Configuration Services 2.21) (Version:  &#8211; )\nE-CAT Enable 2.11 (HKLM-x32&#8230;E-CAT Enable 2.11) (Version:  &#8211; )\nEnergy Star (HKLM&#8230;465CA2B6-98AF-4E77-BE22-A908C34BB9EC) (Version: 1.0.9 &#8211; Hewlett-Packard Company)\nEPSON Scan (HKLM-x32&#8230;EPSON Scanner) (Version:  &#8211; )\nEvernote v. 5.8.1 (HKLM-x32&#8230;4FD2D1C8-8636-11E4-9D21-00163E98E7D6) (Version: 5.8.1.6061 &#8211; Evernote Corp.)\nFoxit PhantomPDF (HKLM-x32&#8230;4E32271C-B55A-4CDF-8DB7-88FD1C45927C) (Version: 7.0.310.226 &#8211; Foxit Software Inc.)\nGenymotion version 3.1.0 (HKLM&#8230;6D180286-D4DF-40EF-9227-923B9C07C08A_is1) (Version: 3.1.0 &#8211; Genymobile)\nGit version 2.26.0 (HKLM&#8230;Git_is1) (Version: 2.26.0 &#8211; The Git Development Community)\nGoogle Chrome (HKLM-x32&#8230;Google Chrome) (Version: 83.0.4103.97 &#8211; Google LLC)\nGoogle Earth Pro (HKLM&#8230;B6EAFE41-5723-40EB-869B-4AF44CA17B35) (Version: 7.3.3.7699 &#8211; Google)\nGoogle Update Helper (HKLM-x32&#8230;60EC980A-BDA2-4CB6-A427-B07A5498B4CA) (Version: 1.3.35.451 &#8211; Google LLC) Hidden\nGoTo Opener (HKLM-x32&#8230;C0F33C38-345C-4C02-B161-11389350C2A5) (Version: 1.0.533 &#8211; LogMeIn, Inc.)\nGoToMeeting 10.10.1.17956 (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;GoToMeeting) (Version: 10.10.1.17956 &#8211; LogMeIn, Inc.)\nHardlock Device Drivers (HKLM-x32&#8230;Hardlock Device Drivers) (Version:  &#8211; )\nHewlett-Packard ACLM.NET v1.2.2.3 (HKLM-x32&#8230;6F340107-F9AA-47C6-B54C-C3A19F11553F) (Version: 1.00.0000 &#8211; Hewlett-Packard Company) Hidden\nHijack Hunter 1.8.4.1 (HKLM-x32&#8230;616A9B24-448B-4DF3-926A-C4141FCD692C_is1) (Version:  &#8211; NoVirusThanks Company Srl)\nHourly Analysis Program 4.91 (HKLM-x32&#8230;Hourly Analysis Program 4.91) (Version:  &#8211; Carrier Corporation)\nHP 3D DriveGuard (HKLM-x32&#8230;D817481A-193E-4332-A4F3-E19132F744F0) (Version: 6.0.24.1 &#8211; Hewlett-Packard Company)\nHP CoolSense (HKLM-x32&#8230;ADE2F6A7-E7BD-4955-BD66-30903B223DDF) (Version: 2.20.41 &#8211; Hewlett-Packard Company)\nHP Deskjet 3050 J610 series Ajuda (HKLM-x32&#8230;F7632A9B-661E-4FD9-B1A4-3B86BC99847F) (Version: 140.0.63.63 &#8211; Hewlett Packard)\nHP Deskjet 3050 J610 series Estudo de aprimoramento de produtos (HKLM&#8230;A954C7EA-DDD9-4055-BC48-E816F174F397) (Version: 28.0.1315.0 &#8211; Hewlett-Packard Co.)\nHP Deskjet 3050 J610 series Software básico do dispositivo (HKLM&#8230;E6E28DE7-446E-4E27-BE37-4B6D925A385B) (Version: 28.0.1315.0 &#8211; Hewlett-Packard Co.)\nHP Documentation (HKLM-x32&#8230;915AE95A-9009-41DB-9D9D-D57E17AAB48F) (Version: 1.1.0.0 &#8211; Hewlett-Packard)\nHP Photo Creations (HKLM-x32&#8230;HP Photo Creations) (Version: 1.0.0.7702 &#8211; HP)\nHP Registration Service (HKLM&#8230;D1E8F2D7-7794-4245-B286-87ED86C1893C) (Version: 1.2.7960.5089 &#8211; Hewlett-Packard)\nHP SimplePass (HKLM-x32&#8230;InstallShield_314FAD12-F785-4471-BCE8-AB506642B9A1) (Version: 8.01.39 &#8211; Hewlett-Packard)\nHP Support Assistant (HKLM-x32&#8230;E959FD01-BD01-4CC4-9BB8-4EBE8309BF37) (Version: 8.8.26.13 &#8211; HP)\nHP Support Solutions Framework (HKLM-x32&#8230;7463C61B-A36C-47BC-8E16-701EBC34C26F) (Version: 12.16.22.11 &#8211; HP)\nHP System Event Utility (HKLM-x32&#8230;3EDAF5B5-0CA9-4967-B103-FBFF1162C336) (Version: 1.2.10 &#8211; Hewlett-Packard Company)\nHP Update (HKLM-x32&#8230;912D30CF-F39E-4B31-AD9A-123C6B794EE2) (Version: 5.005.002.002 &#8211; Hewlett-Packard)\nHP Wireless Button Driver (HKLM-x32&#8230;30B2D1D8-0A07-4B71-9553-0710C5D31E35) (Version: 1.1.2.1 &#8211; Hewlett-Packard Company)\nHPDiagnosticAlert (HKLM-x32&#8230;B6465A32-8BE9-4B38-ADC5-4B4BDDC10B0D) (Version: 1.00.0001 &#8211; Microsoft) Hidden\nHxD Hex Editor 2.3 (HKLM&#8230;HxD_is1) (Version: 2.3 &#8211; Maël Hörz)\nHxD Hex Editor version 1.7.7.0 (HKLM-x32&#8230;HxD Hex Editor_is1) (Version: 1.7.7.0 &#8211; Maël Hörz)\nImgBurn (HKLM-x32&#8230;ImgBurn) (Version: 2.5.8.0 &#8211; LIGHTNING UK!)\nImportação do SketchUp 2016-2017 (HKLM-x32&#8230;63925DB-9D8C-48E2-8F04-1B7038B6C783) (Version: 2.2.0 &#8211; Autodesk)\niMyFone AnyRecover 2.0.0.16 (HKLM-x32&#8230;89DFCC5A-39CC-4AE7-8313-1ED6553E1ADD_is1) (Version: 2.0.0.16 &#8211; Shenzhen iMyFone Technology Co., Ltd.)\nInst5675 (HKLM&#8230;2DE6247C-7077-451B-8BA7-FFD1A2ABBB47) (Version: 8.01.39 &#8211; Softex Inc.) Hidden\nInst5676 (HKLM&#8230;878F6913-7421-4713-97F7-0A736EE2A188) (Version: 8.01.39 &#8211; Softex Inc.) Hidden\nIntel Collaborative Processor Performance Control (HKLM-x32&#8230;E7DAF70-FB54-4B91-B192-7E771C25AEEB) (Version: 1.0.0.1018 &#8211; Intel Corporation)\nIntel® Dynamic Platform and Thermal Framework (HKLM-x32&#8230;654EE65D-FAA4-4EA6-8C07-DC94E6A304D4) (Version: 8.0.10100.71 &#8211; Intel Corporation)\nIntel® Management Engine Components (HKLM&#8230;1CEAC85D-2590-4760-800F-8DE5E91F3700) (Version: 10.0.31.1000 &#8211; Intel Corporation)\nIntel® Processor Graphics (HKLM-x32&#8230;F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA) (Version: 10.18.14.4139 &#8211; Intel Corporation)\nIntel® Rapid Storage Technology (HKLM&#8230;409CB30E-E457-4008-9B1A-ED1B9EA21140) (Version: 14.5.2.1088 &#8211; Intel Corporation)\nIntel® Hardware Accelerated Execution Manager (HKLM&#8230;754CC9DC-3DB4-4FB2-B71E-87331DB9EA17) (Version: 7.5.4 &#8211; Intel Corporation)\nIomega Encryption (HKLM&#8230;634B56F2-09FF-407B-B9FB-3611DDC52773) (Version: 1.03.0003 &#8211; Iomega an EMC Company)\nIomega Encryption 3.1.0 (HKLM&#8230;2A5534DE-30C7-429C-976A-132E89549180) (Version: 3.1.0 &#8211; Iomega)\nIRS &#8211; Modelo 3 Impressos 2016 (HKLM&#8230;pt.at.DM3IRSCLIv2016) (Version: 2016.2.1.0124 &#8211; AT)\niTube Studio(Build 7.4.7.3) (HKLM-x32&#8230;iTube Studio_is1) (Version: 7.4.7.3 &#8211; iTube Studio)\nJava 8 Update 241 (64-bit) (HKLM&#8230;26A24AE4-039D-4CA4-87B4-2F64180241F0) (Version: 8.0.2410.7 &#8211; Oracle Corporation)\nJava™ SE Development Kit 14 (64-bit) (HKLM&#8230;3552AC04-4EFC-51F1-AA92-9D1A99E02C95) (Version: 14.0.0.0 &#8211; Oracle Corporation)\nJetBrains PyCharm Community Edition 2018.2.1 (HKLM-x32&#8230;PyCharm Community Edition 2018.2.1) (Version: 182.3911.33 &#8211; JetBrains s.r.o.)\nJewel Match 3 (HKLM-x32&#8230;WTA-fced6a73-fdd6-4324-9ec6-d4a9ddcc449c) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nJill of the Jungle (HKLM-x32&#8230;1129701343_is1) (Version: 1.0 CS &#8211; GOG.com)\nJogos da WildTangent (HKLM-x32&#8230;WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 &#8211; WildTangent)\nJumpstart Installation Program (HKLM-x32&#8230;B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13) (Version:  &#8211; Atheros)\nKits Configuration Installer (HKLM-x32&#8230;63AAA877-5536-9481-2385-28A082100D78) (Version: 10.1.18362.1 &#8211; Microsoft) Hidden\nLAV Filters 0.74.1 (HKLM-x32&#8230;lavfilters_is1) (Version: 0.74.1 &#8211; Hendrik Leppkes)\nLizardTech ExpressView Browser Plug-in (HKLM-x32&#8230;4EFFB6FD-C0D3-43AF-AABB-BC0DCDBF2F34) (Version: 6.5.1 &#8211; LizardTech)\nLocal_Monitor 4.1 (HKLM-x32&#8230;DED1CF45-A68B-40A9-AF54-7447D6D0CFDD_is1) (Version:  &#8211; Insecuritynet, Inc.)\nMagic ISO Maker v5.5 (build 0281) (HKLM-x32&#8230;Magic ISO Maker v5.5 (build 0281)) (Version:  &#8211; )\nMalwarebytes version 4.1.0.56 (HKLM&#8230;35065F43-4BB2-439A-BFF7-0F1014F2E0CD_is1) (Version: 4.1.0.56 &#8211; Malwarebytes)\nMEGAsync (HKLM-x32&#8230;MEGAsync) (Version:  &#8211; Mega Limited)\nMicrosoft .NET Core SDK 3.1.201 (x64) (HKLM-x32&#8230;5e0a0ca7-8d37-4573-8d5b-03416809a484) (Version: 3.1.201.15034 &#8211; Microsoft Corporation)\nMicrosoft Office (HKLM-x32&#8230;90150000-0138-0409-0000-0000000FF1CE) (Version: 15.0.4641.1005 &#8211; Microsoft Corporation)\nMicrosoft Office Professional Plus 2010 (HKLM-x32&#8230;Office14.PROPLUS) (Version: 14.0.7015.1000 &#8211; Microsoft Corporation)\nMicrosoft Silverlight (HKLM&#8230;89F4137D-6C26-4A84-BDB8-2E5A4BB71E00) (Version: 5.1.50907.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;710f4c1c-cc18-4c49-8cbf-51240c89a1a2) (Version: 8.0.61001 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2005 Redistributable (HKLM-x32&#8230;837b34e3-7c30-493c-8f6a-2b0f04e2912c) (Version: 8.0.59193 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17 (HKLM&#8230;8220EEFE-38CD-377E-8595-13398D740ACE) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.4148 (HKLM&#8230;4B6C7001-C7D6-3710-913E-5BC23FCE91E6) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17 (HKLM-x32&#8230;9A25302D-30C0-39D9-BD6F-21E6EC160475) (Version: 9.0.30729 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148 (HKLM-x32&#8230;1F1C2DFC-2D24-3E06-BCB8-725134ADF989) (Version: 9.0.30729.4148 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161 (HKLM-x32&#8230;9BE518E6-ECC6-35A9-88E4-87755C07200F) (Version: 9.0.30729.6161 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x64 Redistributable &#8211; 10.0.40219 (HKLM&#8230;1D8E6291-B0D5-35EC-8441-6616F567A0F7) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2010  x86 Redistributable &#8211; 10.0.40219 (HKLM-x32&#8230;F0C3E5D1-1ADE-321E-8167-68EF0DE699A5) (Version: 10.0.40219 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x64) &#8211; 11.0.61030 (HKLM-x32&#8230;ca67548a-5ebe-413a-b50c-4b9ceb6d66c6) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2012 Redistributable (x86) &#8211; 11.0.61030 (HKLM-x32&#8230;33d1fd90-4274-48a1-9bc1-97e33d9c2d6f) (Version: 11.0.61030.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x64) &#8211; 12.0.30501 (HKLM-x32&#8230;50d4fc8-5d48-4b8f-8972-47c82c46020f) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2013 Redistributable (x86) &#8211; 12.0.30501 (HKLM-x32&#8230;f65db027-aff3-4070-886a-0d87064aabb1) (Version: 12.0.30501.0 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015-2019 Redistributable (x64) &#8211; 14.25.28508 (HKLM-x32&#8230;6913e92a-b64e-41c9-a5e6-cef39207fe89) (Version: 14.25.28508.3 &#8211; Microsoft Corporation)\nMicrosoft Visual C++ 2015-2019 Redistributable (x86) &#8211; 14.25.28508 (HKLM-x32&#8230;65e650ff-30be-469d-b63a-418d71ea1765) (Version: 14.25.28508.3 &#8211; Microsoft Corporation)\nMicrosoft Visual F# 2.0 Runtime (HKLM-x32&#8230;729A3000-BC8A-3B74-BA5D-5068FE12D70C) (Version: 10.0.30319 &#8211; Microsoft Corporation)\nMicrosoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM&#8230;Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.60724 &#8211; Microsoft Corporation)\nMicrosoft Visual Studio Installer (HKLM&#8230;6F320B93-EE3C-4826-85E0-ADF79F8D4C61) (Version: 2.5.2059.317 &#8211; Microsoft Corporation)\nMiniTool Power Data Recovery 8.8 (HKLM&#8230;E1BCD081-4BF4-4E2F-832A-911EC42EF3C5_is1) (Version: 8.8 &#8211; MiniTool Software Limited)\nMozilla Firefox 77.0.1 (x64 pt-PT) (HKLM&#8230;Mozilla Firefox 77.0.1 (x64 pt-PT)) (Version: 77.0.1 &#8211; Mozilla)\nMozilla Maintenance Service (HKLM-x32&#8230;MozillaMaintenanceService) (Version: 77.0.1.7458 &#8211; Mozilla)\nMSI Development Tools (HKLM-x32&#8230;DB4DB790-64DD-1902-4BF2-833B3B6DBCA1) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nNmap 7.80 (HKLM-x32&#8230;Nmap) (Version: 7.80 &#8211; Nmap Project)\nNoVirusThanks Anti-Rootkit (Free Edition) v1.2 (HKLM-x32&#8230;NoVirusThanks Anti-Rootkit (Free Edition)_is1) (Version: 1.2.0.0 &#8211; NoVirusThanks Company Srl)\nNpcap 0.9982 (HKLM-x32&#8230;NpcapInst) (Version: 0.9982 &#8211; Nmap Project)\nNVIDIA Controlador gráfico 347.26 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.Driver) (Version: 347.26 &#8211; NVIDIA Corporation)\nNVIDIA GeForce Experience 2.1.4 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.GFExperience) (Version: 2.1.4 &#8211; NVIDIA Corporation)\nNVIDIA O software do sistema PhysX 9.14.0702 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.PhysX) (Version: 9.14.0702 &#8211; NVIDIA Corporation)\nOpenSSL 1.1.1f Light (64-bit) (HKLM&#8230;OpenSSL Light (64-bit)_is1) (Version:  &#8211; OpenSSL Win64 Installer Team)\nOracle VM VirtualBox 6.0.4 (HKLM&#8230;79366295-CD6A-4467-9901-4A7DFCF90F40) (Version: 6.0.4 &#8211; Oracle Corporation)\nOSRAM Lamp PlugIn 1.8.3.1 (HKLM-x32&#8230;567EA4E4-B799-4F1C-BFE0-D0381BD8651A) (Version: 1.83.1000 &#8211; OSRAM)\nPainel de controlo da NVIDIA 347.26 (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_Display.ControlPanel) (Version: 347.26 &#8211; NVIDIA Corporation) Hidden\nPanda Cloud Cleaner (HKLM-x32&#8230;92B2B132-C7F0-43DC-921A-4493C04F78A4_is1) (Version: 1.1.10 &#8211; Panda Security)\nPEStudio (HKLM-x32&#8230;PEStudio) (Version: 1.0.0.27 &#8211; Elcontrol Enegy Net SpA)\nPhilips Product Selector 5.2.12.2 (HKLM-x32&#8230;81AD9228-21AC-4DBD-AE33-98146A88BAA8) (Version: 5.2.12.2 &#8211; Signify) Hidden\nPhilips Product Selector 5.2.12.2 (HKLM-x32&#8230;InstallShield_81AD9228-21AC-4DBD-AE33-98146A88BAA8) (Version: 5.2.12.2 &#8211; Signify)\nplugin Autenticação.Gov (HKLM-x32&#8230;DA5C6D6B-C160-4732-9A6D-CB0B58387A84) (Version: 2.0.46 &#8211; Agência para a Modernização Administrativa)\nPolar Bowler 1st Frame (HKLM-x32&#8230;WTA-7427884d-05c8-4a08-baa0-d130eb2faeef) (Version: 3.0.2.59 &#8211; WildTangent) Hidden\nPPS max plugin 1.7.0 (HKLM-x32&#8230;PPS max plugin_is1) (Version: 1.7.0.0 &#8211; Tree C Technology B.V.)\nProject64 1.6 (HKLM-x32&#8230;9559F7CA-5E34-4237-A2D9-D856464AD727) (Version: 1.6 &#8211; Project64)\nProtonVPN (HKLM-x32&#8230;6766D7C7-E034-49EA-82AC-0FE614B7F1DF) (Version: 1.13.3 &#8211; Proton Technologies AG) Hidden\nProtonVPN (HKLM-x32&#8230;ProtonVPN 1.13.3) (Version: 1.13.3 &#8211; Proton Technologies AG)\nPython 3.7.0 (64-bit) (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;f684de81-73c2-4924-ad43-e7ae400d47b5) (Version: 3.7.150.0 &#8211; Python Software Foundation)\nPython 3.7.0 Core Interpreter (64-bit) (HKLM&#8230;F046BD5A-33F4-4ABA-BD2D-0227F6291EC9) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Development Libraries (64-bit) (HKLM&#8230;61246987-8D99-44A9-8FF5-E2E3F503B72D) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Documentation (64-bit) (HKLM&#8230;E7C56E72-C80E-453B-9345-FAEAE5DB51A4) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Executables (64-bit) (HKLM&#8230;84B7971A-F59F-4247-AD34-BEC02CF85FBD) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 pip Bootstrap (64-bit) (HKLM&#8230;8A6F7991-1955-4C46-8C0C-8D7C6F7042FA) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Standard Library (64-bit) (HKLM&#8230;18D93BBC-06F6-449D-96FB-CD473CFC6A6D) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Tcl/Tk Support (64-bit) (HKLM&#8230;A2FC01E0-059E-4D21-AFD2-B63A7E1EF3CD) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Test Suite (64-bit) (HKLM&#8230;E4266358-1C9B-4AF0-ABF7-72BE136904CF) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.7.0 Utility Scripts (64-bit) (HKLM&#8230;9E24E01B-CBD8-4558-A56D-6188F1A3C822) (Version: 3.7.150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 (64-bit) (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;13ee6ab9-4dca-406c-bc3b-5d86391d39a1) (Version: 3.8.2150.0 &#8211; Python Software Foundation)\nPython 3.8.2 Add to Path (64-bit) (HKLM&#8230;88AF4D20-BE9D-4CA6-8BD4-5DB380A41CC8) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Core Interpreter (64-bit) (HKLM&#8230;AD923240-0ACE-45C9-8749-05BF77AAE101) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Development Libraries (64-bit) (HKLM&#8230;BDFB7011-0AB2-440F-8F00-32AF7A9ED1ED) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Documentation (64-bit) (HKLM&#8230;65B0F976-5151-427E-95B4-2320DC64F91E) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Executables (64-bit) (HKLM&#8230;A36C1168-60E6-42E4-93DB-6BE8C6DD9DD6) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 pip Bootstrap (64-bit) (HKLM&#8230;8EEE042B-6EAF-4171-BA6E-01319ED99DA8) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Standard Library (64-bit) (HKLM&#8230;33F9B46C-EB19-4BB7-ABFA-F8C71B73E9A4) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Tcl/Tk Support (64-bit) (HKLM&#8230;FCA1EB7D-2F62-4659-AA5F-42C37CE5D3CB) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Test Suite (64-bit) (HKLM&#8230;F6DA05CF-67B5-47D0-ABD4-371C80BA0717) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython 3.8.2 Utility Scripts (64-bit) (HKLM&#8230;52AB506A-EC3C-4060-9EBF-6A975994CB35) (Version: 3.8.2150.0 &#8211; Python Software Foundation) Hidden\nPython Launcher (HKLM-x32&#8230;AF12A465-EA47-447D-B6BF-2A82CDBE2F0E) (Version: 3.8.6994.0 &#8211; Python Software Foundation)\nQCAD Trial 3.19.1 (HKLM&#8230;438D0F39-554F-40A4-BA3F-04809892FB96) (Version: 3.19.1 &#8211; RibbonSoft GmbH)\nRanch Rush 2 &#8211; Premium Edition (HKLM-x32&#8230;WTA-7396ad2b-d565-43cb-89bb-20ab60c8fe9f) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nREALTEK Bluetooth Driver (HKLM-x32&#8230;9D3D8C60-A5EF-4123-B2B9-172095903AB) (Version: 1.0.0.46 &#8211; REALTEK Semiconductor Corp.)\nRealtek Card Reader (HKLM-x32&#8230;5BC2B5AB-80DE-4E83-B8CF-426902051D0A) (Version: 6.3.370.68 &#8211; Realtek Semiconductor Corp.)\nRealtek Ethernet Controller Driver (HKLM-x32&#8230;8833FFB6-5B0C-4764-81AA-06DFEED9A476) (Version: 8.37.1119.2014 &#8211; Realtek)\nRealtek High Definition Audio Driver (HKLM-x32&#8230;F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC) (Version: 6.0.1.7457 &#8211; Realtek Semiconductor Corp.)\nREALTEK Wireless LAN Driver (HKLM-x32&#8230;A5107464-AA9B-4177-8129-5FF2F42DD322) (Version: 1.0.0.46 &#8211; REALTEK Semiconductor Corp.)\nRecuva (HKLM&#8230;Recuva) (Version: 1.53 &#8211; Piriform)\nRemoteComms driver (HKLM-x32&#8230;89B4CA50-3F94-451F-B93A-22608DF45FF9) (Version: 1.30.0002 &#8211; PLX Technology)\nRunefall (HKLM-x32&#8230;WTA-7be9cc5b-65c3-4233-9f92-6fbda3316c00) (Version: 3.0.2.126 &#8211; WildTangent) Hidden\nSamsung Kies (HKLM-x32&#8230;758C8301-2696-4855-AF45-534B1200980A) (Version: 2.6.4.17113.1 &#8211; Samsung Electronics Co., Ltd.) Hidden\nSamsung Kies (HKLM-x32&#8230;InstallShield_758C8301-2696-4855-AF45-534B1200980A) (Version: 2.6.4.17113.1 &#8211; Samsung Electronics Co., Ltd.)\nSAMSUNG USB Driver for Mobile Phones (HKLM&#8230;D0795B21-0CDA-4a92-AB9E-6E92D8111E44) (Version: 1.5.51.0 &#8211; SAMSUNG Electronics Co., Ltd.)\nSDK ARM Additions (HKLM-x32&#8230;73681F86-CD86-4208-572F-959B45430B04) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nSDK ARM Redistributables (HKLM-x32&#8230;67EE3804-9642-62BA-EBF1-B1561FB4ECBE) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nService Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32&#8230;90140000-0011-0000-0000-0000000FF1CE_Office14.PROPLUS_DE28B448-32E8-4E8F-84F0-A52B21A49B5B) (Version:  &#8211; Microsoft)\nSHIELD Streaming (HKLM&#8230;B2FE1952-0186-46C3-BAEC-A80AA35AC5B8_GFExperience.NvStreamSrv) (Version: 3.1.2000 &#8211; NVIDIA Corporation) Hidden\nSkype versão 8.58 (HKLM-x32&#8230;Skype_is1) (Version: 8.58 &#8211; Skype Technologies S.A.)\nSMath Studio (HKLM-x32&#8230;7003EC5C-E484-4C85-BFCE-8EA508C9B3F0) (Version: 0.98.6179 &#8211; Andrey Ivashov)\nSoftware de Dispositivos Chipset Intel® (HKLM-x32&#8230;e3d22965-5c2d-48c8-acec-c2ba2d50b275) (Version: 10.0.22 &#8211; Intel® Corporation) Hidden\nSoulseekQt (HKLM-x32&#8230;SoulseekQt) (Version:  &#8211; )\nSpotify (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;Spotify) (Version: 1.1.33.569.gced9e0f5 &#8211; Spotify AB)\nSpybot Identity Monitor (HKLM-x32&#8230;DEE2C8BC-083E-48D8-A934-7B547D87E85C_is1) (Version: 3.0 &#8211; Safer-Networking Ltd.)\nSteam (HKLM-x32&#8230;Steam) (Version: 2.10.91.91 &#8211; Valve Corporation)\nswMSM (HKLM-x32&#8230;612C34C7-5E90-47D8-9B5C-0F717DD82726) (Version: 12.0.0.1 &#8211; Adobe Systems, Inc) Hidden\nSynaptics Pointing Device Driver (HKLM&#8230;SynTPDeinstKey) (Version: 18.1.48.54 &#8211; Synaptics Incorporated)\nTelegram Desktop version 1.7.10 (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;53F49750-6209-4FBF-9CA8-7A333C87D1ED_is1) (Version: 1.7.10 &#8211; Telegram Messenger LLP)\nTI Connect™ (HKLM-x32&#8230;D06BA64C-4447-49B4-B99D-E85BEA9E1035) (Version: 4.0.0.218 &#8211; Texas Instruments Inc.)\nTomb Raider Level Editor XP (HKLM-x32&#8230;Tomb Raider Level Editor) (Version:  &#8211; )\nTrinklit Supreme (HKLM-x32&#8230;WTA-c985ff2e-3479-4327-ae3b-b151a4c8a0d4) (Version: 2.2.0.98 &#8211; WildTangent) Hidden\nUltData &#8211; Android Data Recovery 5.3.1.4 (HKLM-x32&#8230;UltData &#8211; Android Data Recovery_is1) (Version: 5.3.1.4 &#8211; Tenorshare, Inc.)\nUniversal CRT Extension SDK (HKLM-x32&#8230;13952D7A-B7B3-F4F8-5F29-5CD18E8168B7) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Headers Libraries and Sources (HKLM-x32&#8230;74CBC330-ED16-31B9-E8BE-0C6A8E67DE32) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Redistributable (HKLM-x32&#8230;460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9) (Version: 10.0.26624 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Redistributable (HKLM-x32&#8230;847D4DAF-0182-265B-324F-406462E8A90D) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Tools x64 (HKLM&#8230;54FE4D23-11A2-F1C4-76E9-79C8FB40A4A1) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal CRT Tools x86 (HKLM-x32&#8230;9F7B0D96-881D-8850-C303-43F3A08E6902) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUniversal General MIDI DLS Extension SDK (HKLM-x32&#8230;6F54BF87-2EE6-FA6D-431D-33A665992D49) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nUpdate Installer for WildTangent Games App (HKLM-x32&#8230;2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2.WildTangent Games App) (Version:  &#8211; WildTangent) Hidden\nUSBPcap 1.2.0.3 (HKLM&#8230;USBPcap) (Version: 1.2.0.3 &#8211; Tomasz Mon)\nvcpp_crt.redist.clickonce (HKLM-x32&#8230;6B25D94A-4B50-45E2-BBD3-54E68700E1BC) (Version: 14.25.28508 &#8211; Microsoft Corporation) Hidden\nVirtualCloneDrive (HKLM-x32&#8230;VirtualCloneDrive) (Version: 5.5.0.0 &#8211; Elaborate Bytes)\nVisual Studio 2012 x64 Redistributables (HKLM&#8230;8C775E70-A791-4DA8-BCC3-6AB7136F4484) (Version: 14.0.0.1 &#8211; AVG Technologies)\nVisual Studio 2012 x86 Redistributables (HKLM-x32&#8230;98EFF19A-30AB-4E4B-B943-F06B1C63EBF8) (Version: 14.0.0.1 &#8211; AVG Technologies CZ, s.r.o.)\nVisual Studio Build Tools 2019 (HKLM-x32&#8230;43108e7a) (Version: 16.5.30002.166 &#8211; Microsoft Corporation)\nvJoy Device Driver 2.1.6.20 (HKLM&#8230;8E31F76F-74C3-47F1-9550-E041EEDC5FBB_is1) (Version: 2.1.6.20 &#8211; Shaul Eizikovich)\nVLC media player (HKLM-x32&#8230;VLC media player) (Version: 3.0.8 &#8211; VideoLAN)\nVMware Player (HKLM&#8230;DDDE2FEC-464C-4D0D-BCBC-9F4B4A06209B) (Version: 15.0.2 &#8211; VMware, Inc.)\nvs_FileTracker_Singleton (HKLM-x32&#8230;692A0FB3-E6A2-4D41-AC03-4136B4312DC0) (Version: 16.3.29209 &#8211; Microsoft Corporation) Hidden\nWedding Dash (HKLM-x32&#8230;WTA-bcbcc6be-1055-406f-90e0-31082ecf66fa) (Version: 2.2.0.95 &#8211; WildTangent) Hidden\nWhatsApp (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;WhatsApp) (Version: 0.3.1847 &#8211; WhatsApp)\nWildTangent Games App para HP (HKLM-x32&#8230;70B446D1-E03B-4ab0-9B3C-0832142C9AA8.WildTangent Games App-hp) (Version: 4.0.11.14 &#8211; WildTangent) Hidden\nWinAppDeploy (HKLM-x32&#8230;8E3AE0EF-D067-700C-BDB4-10D5552155DC) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinDjView 2.1 (HKLM&#8230;WinDjView) (Version: 2.1 &#8211; Andrew Zhezherun)\nWindows Driver Package &#8211; Texas Instruments Inc. (SilvrLnk) USB  (06/11/2009 1.0.0.0) (HKLM&#8230;EC3E466026556D3EB760B01C4772277614354E11) (Version: 06/11/2009 1.0.0.0 &#8211; Texas Instruments Inc.)\nWindows Driver Package &#8211; Texas Instruments Inc. (TIEHDUSB) USB  (09/02/2009 1.0.0.1) (HKLM&#8230;7511B29C86C398B4D11A0B0E4176CAD68D1B7057) (Version: 09/02/2009 1.0.0.1 &#8211; Texas Instruments Inc.)\nWindows SDK AddOn (HKLM-x32&#8230;E6F877A1-2F65-4BF0-87B6-A4071B7663D3) (Version: 10.1.0.0 &#8211; Microsoft Corporation)\nWindows Software Development Kit &#8211; Windows 10.0.18362.1 (HKLM-x32&#8230;126dedf0-cc0e-4b48-9ece-806b0e437195) (Version: 10.1.18362.1 &#8211; Microsoft Corporation)\nWinPcap 4.1.2 (HKLM-x32&#8230;WinPcapInst) (Version: 4.1.0.2001 &#8211; CACE Technologies)\nWinRT Intellisense Desktop &#8211; en-us (HKLM-x32&#8230;E67F1F03-FB4A-3D61-8999-E6A4C4B26F34) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense Desktop &#8211; Other Languages (HKLM-x32&#8230;7EF010FF-7800-28BA-FF49-2D219EC7BA82) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense IoT &#8211; en-us (HKLM-x32&#8230;36AE12FB-4349-6EAA-B6E4-5F4E06FA8AE8) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense IoT &#8211; Other Languages (HKLM-x32&#8230;6B03A6A4-643C-57CE-CA6F-4E19BF47497A) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense Mobile &#8211; en-us (HKLM-x32&#8230;918A448F-59E8-FBF5-B087-D3F07160C7E0) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense PPI &#8211; en-us (HKLM-x32&#8230;66483041-F590-EC46-4AF0-EE39C62FB680) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense PPI &#8211; Other Languages (HKLM-x32&#8230;9C61E6D2-C43E-6746-B519-6185558C4A24) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense UAP &#8211; en-us (HKLM-x32&#8230;6B37CC5B-78DF-5050-2215-68479716A587) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWinRT Intellisense UAP &#8211; Other Languages (HKLM-x32&#8230;250D5341-0879-4016-399C-BBCD87B80E95) (Version: 10.1.18362.1 &#8211; Microsoft Corporation) Hidden\nWireshark 3.2.3 64-bit (HKLM-x32&#8230;Wireshark) (Version: 3.2.3 &#8211; The Wireshark developer community, hxxps://www.wireshark.org)\nwkhtmltox 0.12.5-1 (HKLM&#8230;wkhtmltopdf) (Version:  &#8211; )\nWondershare Helper Compact 2.5.3 (HKLM-x32&#8230;5363CE84-5F09-48A1-8B6C-6BB590FFEDF2_is1) (Version: 2.5.3 &#8211; Wondershare)\nWondershare PDFelement 6 Pro(Build 6.3.5) (HKLM-x32&#8230;B026557A-EF19-4812-8A79-B30F94AA0A78_is1) (Version: 6.3.5.2806 &#8211; Wondershare Software Co.,Ltd.)\nWondershare Recoverit(Build 8.5.7.16) (HKLM-x32&#8230;829555DC-31E5-4FEA-B350-8FCF24CECD95_is1) (Version: 8.5.7.16 &#8211; Wondershare Software Co.,Ltd.)\nX Builder Framework 1.05x (HKLM-x32&#8230;X Builder Framework 1.05x) (Version:  &#8211; )\nXArp 2.2.2 (HKLM-x32&#8230;XArp) (Version: 2.2.2 &#8211; Christoph Mayer)\nXBuilder Tag Grid 1.0 (HKLM-x32&#8230;8814F01A-66A3-4A5F-899A-FFEA12633963) (Version: 1.0.18 &#8211; Carrier Corporation)\nYouda Jewel Shop (HKLM-x32&#8230;WTA-0f2ac400-5236-4aa4-a9fa-2d97068ccbc9) (Version: 3.0.2.51 &#8211; WildTangent) Hidden\nZoom (HKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;ZoomUMX) (Version: 5.0 &#8211; Zoom Video Communications, Inc.)"},{"id":"text-48","heading":"Text","content":"Packages:\n=========\n&#8211; Games App &#8211; -&gt; C:Program FilesWindowsAppsWildTangentGames.-GamesApp-_1.0.3.28_x86__qt5r5pa5dyg8m [2016-03-29] (WildTangent Games)\nGuia de introdução ao Windows 8 -&gt; C:Program FilesWindowsAppsAD2F1837.GettingStartedwithWindows8_1.6.0.0_neutral__v10z8vjag6ke6 [2016-03-29] (Hewlett-Packard Company)\nHP All-in-One Printer Remote -&gt; C:Program FilesWindowsAppsAD2F1837.HPPrinterControl_55.1.43.0_x86__v10z8vjag6ke6 [2016-04-18] (Hewlett-Packard Company)\nHP Connected Music -&gt; C:Program FilesWindowsAppsAD2F1837.HPConnectedMusic_1.5.0.253_x86__v10z8vjag6ke6 [2016-03-29] (Hewlett-Packard Company)\nHP Registration -&gt; C:Program FilesWindowsAppsAD2F1837.HPRegistration_1.2.1.166_neutral__v10z8vjag6ke6 [2015-06-04] (Hewlett-Packard Company)\nJogos -&gt; C:Program FilesWindowsAppsMicrosoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2015-06-04] (Microsoft Corporation) [MS Ad]\nKYOCERA Print Center -&gt; C:Program FilesWindowsAppsA97ECD55.KYOCERAPrintCenter_1.7.11126.0_x86__kqmhh0ktdt7dg [2019-12-05] (KYOCERA Document Solutions Inc)\nMcAfee® Central for HP -&gt; C:Program FilesWindowsApps2703103D.McAfeeCentral_5.0.177.1_x64__4ehj4w4frejdr [2018-04-02] (.-McAfee Inc-.)\nMicrosoft Mahjong -&gt; C:Program FilesWindowsAppsMicrosoft.MicrosoftMahjong_2.10.1812.2002_x86__8wekyb3d8bbwe [2019-02-04] (Microsoft Studios) [MS Ad]\nMSN Desporto -&gt; C:Program FilesWindowsAppsMicrosoft.BingSports_3.0.4.345_x64__8wekyb3d8bbwe [2016-04-29] (Microsoft Corporation) [MS Ad]\nMSN Finanças -&gt; C:Program FilesWindowsAppsMicrosoft.BingFinance_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-28] (Microsoft Corporation) [MS Ad]\nMSN Meteorologia -&gt; C:Program FilesWindowsAppsMicrosoft.BingWeather_3.0.4.350_x64__8wekyb3d8bbwe [2016-11-23] (Microsoft Corporation) [MS Ad]\nMSN Notícias -&gt; C:Program FilesWindowsAppsMicrosoft.BingNews_3.0.4.344_x64__8wekyb3d8bbwe [2016-04-28] (Microsoft Corporation) [MS Ad]\nMSN Receitas -&gt; C:Program FilesWindowsAppsMicrosoft.BingFoodAndDrink_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMSN Saúde e Bem-Estar -&gt; C:Program FilesWindowsAppsMicrosoft.BingHealthAndFitness_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMSN Viagens -&gt; C:Program FilesWindowsAppsMicrosoft.BingTravel_3.0.4.336_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nMúsica -&gt; C:Program FilesWindowsAppsMicrosoft.ZuneMusic_2.6.672.0_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]\nmysms &#8211; Text from Computer, Messaging -&gt; C:Program FilesWindowsAppsUptoElevenDigitalSolution.mysms-Textanywhere_2.8.0.0_x64__c9d6r4qvva5x8 [2016-03-29] (Up to Eleven Digital Solutions GmbH)\nPaciência -&gt; C:Program FilesWindowsApps26720RandomSaladGamesLLC.SimpleSolitaire_5.4.0.40_x64__kx24dqmazqk8j [2016-12-15] (Random Salad Games LLC) [MS Ad]\nSidekick Private Browser -&gt; C:Program FilesWindowsAppsSaferWebSoftware.SidekickWeb_1.1.0.7_neutral__aad3gkxz4ewf0 [2020-05-18] (SaferWeb Software)\nSkype -&gt; C:Program FilesWindowsAppsMicrosoft.SkypeApp_3.1.0.1016_x86__kzf8qxf38zg5c [2016-03-29] (Skype) [MS Ad]\nSnapfish -&gt; C:Program FilesWindowsAppsAD2F1837.HPConnectedPhotopoweredbySnapfish_5.5.0.8_x86__v10z8vjag6ke6 [2016-05-04] (HP Inc.)\nThe Weather Channel for HP -&gt; C:Program FilesWindowsAppsWeather.TheWeatherChannelforHP_2.1.20.0_x64__t3yemqpq4kp7p [2016-03-29] (The Weather Channel.)\nTradutor -&gt; C:Program FilesWindowsAppsMicrosoft.BingTranslator_1.18.3.0_x64__8wekyb3d8bbwe [2017-04-07] (Microsoft Corporation)\nTripAdvisor Hotels Flights Restaurants -&gt; C:Program FilesWindowsAppsTripAdvisorLLC.TripAdvisorHotelsFlightsRestaurants_1.2.0.24_neutral__qj0v5chwq8f2g [2015-06-04] (TripAdvisor LLC)\nVídeo -&gt; C:Program FilesWindowsAppsMicrosoft.ZuneVideo_2.6.446.0_x64__8wekyb3d8bbwe [2016-03-29] (Microsoft Corporation) [MS Ad]"},{"id":"text-49","heading":"Text","content":"==================== Custom CLSID (Whitelisted): =============="},{"id":"text-50","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)"},{"id":"text-51","heading":"Text","content":"CustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDD327DA6-B4DF-4842-B833-2CFF84F0948Flocalserver32 -&gt; C:Program FilesAutodeskAutoCAD 2017acad.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID19A6E644-14E6-4A60-B8D7-DD20610A871DInprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalMicrosoftTeamsMeetingAddin1.0.20031.2x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID3faa4380-a399-11cf-a466-00805fe418f6InprocServer32 -&gt; C:Program FilesAutodeskDWG TrueView 2018 &#8211; Englishen-USdwgviewrficn.dll (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID720DB9AF-D62C-4ED0-A377-429C22312852localserver32 -&gt; C:Program FilesAutodeskAutoCAD 2017acad.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSID84B5A313-CD5D-4904-8BA2-AFDC81C1B309InprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalGoToMeeting17359G2MOutlookAddin64.dll (LogMeIn, Inc. -&gt; LogMeIn, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDB6EB585B-B467-4E46-A9C7-48D7D6FD26CBlocalserver32 -&gt; C:Program FilesAutodeskDWG TrueView 2018 &#8211; Englishdwgviewr.exe (Autodesk, Inc -&gt; Autodesk, Inc.)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDC591CFEA-E432-495d-A0BE-58E4CCD87B17ShellOpenCommand -&gt; C:Program FilesSynapticsSynTPSynTPCpl.dll (Synaptics Incorporated -&gt; Synaptics Incorporated)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDCB965DF1-B8EA-49C7-BDAD-5457FDC1BF92InprocServer32 -&gt; C:UsersXXXXXXZZZAppDataLocalMicrosoftTeamsMeetingAddin1.0.20031.2x64Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -&gt; Microsoft Corporation)\nCustomCLSID: HKUS-1-5-21-3751382696-3894377064-3631472648-1001_ClassesCLSIDE2C40589-DE61-11ce-BAE0-0020AF6D7005InprocServer32 -&gt; C:Program FilesAutodeskAutoCAD 2017en-USacadficn.dll (Autodesk, Inc -&gt; Autodesk, Inc.)\nShellExecuteHooks: Groove GFS Stub Execution Hook &#8211; B5A7F190-DDA6-4420-B3BA-52453494E6CD &#8211; C:Program FilesMicrosoft OfficeOffice14GROOVEEX.DLL [6671064 2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nShellExecuteHooks-x32: Groove GFS Stub Execution Hook &#8211; B5A7F190-DDA6-4420-B3BA-52453494E6CD &#8211; C:Program Files (x86)Microsoft OfficeOffice14GROOVEEX.DLL [4171480 2013-12-19] (Microsoft Corporation -&gt; Microsoft Corporation)\nShellIconOverlayIdentifiers: [ MEGA (Pending)] -&gt; 056D528D-CE28-4194-9BA3-BA2E9197FF8C =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [ MEGA (Synced)] -&gt; 05B38830-F4E9-4329-978B-1DD28605D202 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [ MEGA (Syncing)] -&gt; 0596C850-7BDD-4C9D-AFDF-873BE6890637 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers: [  GoogleDriveBlacklisted] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [  GoogleDriveSynced] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [  GoogleDriveSyncing] -&gt; 81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41 =&gt; C:Program FilesGoogleDrivegoogledrivesync64.dll [2020-04-06] (Google LLC -&gt; Google)\nShellIconOverlayIdentifiers: [00asw] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nShellIconOverlayIdentifiers: [00avg] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -&gt; 36A21736-36C2-4C11-8ACB-D4136F2B57BD =&gt; C:Windowssystem32AcSignIcon.dll [2017-02-15] (Autodesk, Inc -&gt; Autodesk, Inc.)\nShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -&gt; 056D528D-CE28-4194-9BA3-BA2E9197FF8C =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -&gt; 05B38830-F4E9-4329-978B-1DD28605D202 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -&gt; 0596C850-7BDD-4C9D-AFDF-873BE6890637 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers1: [7-Zip] -&gt; 23170F69-40C1-278A-1000-000100020000 =&gt; C:Program Files7-Zip7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]\nContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -&gt; 2E7A2C6C-B938-40a4-BA1C-C7EC982DC202 =&gt; C:Program FilesCommon FilesAutodesk SharedAcShellExAcShellExtension.dll [2017-02-15] (Autodesk, Inc -&gt; Autodesk)\nContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -&gt; A6595CD1-BF77-430A-A452-18696685F7C7 =&gt; C:Program Files (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nContextMenuHandlers1: [ANotepad++64] -&gt; B298D29A-A6ED-11DE-BA8C-A68E55D89593 =&gt; C:Program Files (x86)Notepad++NppShell_06.dll -&gt; No File\nContextMenuHandlers1-x32: [Autodesk.DWF.ContextMenu] -&gt; 6C18531F-CA85-45F7-8278-FF33CF0A5964 =&gt; C:Program Files (x86)Common FilesAutodesk SharedDWF CommonDWFShellExtension.dll [2017-03-09] (Autodesk, Inc.) [File not signed]\nContextMenuHandlers1: [AVG] -&gt; 472083B1-C522-11CF-8763-00608CC02F24 =&gt; C:Program Files (x86)AVGAntivirusashShell.dll [2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nContextMenuHandlers1: [CLVDShellExt] -&gt; 3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2 =&gt; C:Program Files (x86)Common FilesCyberLinkShellExtComponentCLVDShellExt.dll [2015-02-09] (CyberLink Corp. -&gt; Cyberlink)\nContextMenuHandlers1: [DIALuxShellExtension] -&gt; F23E3460-D1B1-4F51-8C3D-E5D91E3C71C8 =&gt; C:Program FilesDIAL GmbHDIALuxDial.ShellExtension.x64.dll [2017-12-05] (DIAL GmbH) [File not signed]\nContextMenuHandlers1: [Foxit_ConvertToPDF] -&gt; C5269811-4A29-4818-A4BB-111F9FC63A5F =&gt; C:Program Files (x86)Foxit PhantomPDFpluginsConvertToPDFShellExtension_x64.dll [2015-03-03] (Foxit Software Incorporated -&gt; Foxit Software Inc.)\nContextMenuHandlers1: [GDContextMenu] -&gt; BB02B294-8425-42E5-983F-41A1FA970CD6 =&gt; C:Program FilesGoogleDrivecontextmenu64.dll [2020-04-06] (Google LLC -&gt; Google)\nContextMenuHandlers1: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers1: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers1: [VirtualCloneDrive] -&gt; B7056B8E-4F99-44f8-8CBD-282390FE5428 =&gt; C:Program Files (x86)Elaborate BytesVirtualCloneDriveElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nContextMenuHandlers2: [CLVDShellExt] -&gt; 3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2 =&gt; C:Program Files (x86)Common FilesCyberLinkShellExtComponentCLVDShellExt.dll [2015-02-09] (CyberLink Corp. -&gt; Cyberlink)\nContextMenuHandlers2: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers2: [VirtualCloneDrive] -&gt; B7056B8E-4F99-44f8-8CBD-282390FE5428 =&gt; C:Program Files (x86)Elaborate BytesVirtualCloneDriveElbyVCDShell.dll [2009-12-14] (Elaborate Bytes AG -&gt; Elaborate Bytes AG)\nContextMenuHandlers2-x32: [VMDiskMenuHandler] -&gt; 271DC252-6FE1-4D59-9053-E4CF50AB99DE =&gt; C:Program Files (x86)VMwareVMware PlayervmdkShellExt.dll [2018-11-21] (VMware, Inc. -&gt; VMware, Inc.)\nContextMenuHandlers2: [VMDiskMenuHandler64] -&gt; E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC =&gt; C:Program Files (x86)VMwareVMware Playerx64vmdkShellExt64.dll [2018-11-21] (VMware, Inc. -&gt; VMware, Inc.)\nContextMenuHandlers3: [00avg] -&gt; 472083B0-C522-11CF-8763-00608CC02F24 =&gt;  -&gt; No File\nContextMenuHandlers3: [MBAMShlExt] -&gt; 57CE581A-0CB6-4266-9CA0-19364C90A0B3 =&gt; C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -&gt; Malwarebytes)\nContextMenuHandlers3: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers4: [7-Zip] -&gt; 23170F69-40C1-278A-1000-000100020000 =&gt; C:Program Files7-Zip7-zip.dll [2010-11-18] (Igor Pavlov) [File not signed]\nContextMenuHandlers4: [GDContextMenu] -&gt; BB02B294-8425-42E5-983F-41A1FA970CD6 =&gt; C:Program FilesGoogleDrivecontextmenu64.dll [2020-04-06] (Google LLC -&gt; Google)\nContextMenuHandlers4: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers4: [MEGA (Context menu)] -&gt; 0229E5E7-09E9-45CF-9228-0228EC7D5F17 =&gt; C:UsersXXXXXXZZZAppDataLocalMEGAsyncShellExtX64.dll [2020-03-18] (Mega Limited -&gt; )\nContextMenuHandlers4: [RecuvaShellExt] -&gt; 435E5DF5-2510-463C-B223-BDA47006D002 =&gt; C:Program FilesRecuvaRecuvaShell64.dll [2016-06-06] (Piriform Ltd -&gt; Piriform Ltd)\nContextMenuHandlers5: [igfxcui] -&gt; 3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4 =&gt;  -&gt; No File\nContextMenuHandlers5: [igfxDTCM] -&gt; 9B5F5829-A529-4B12-814A-E81BCB8D93FC =&gt; C:Windowssystem32igfxDTCM.dll [2015-04-28] (Microsoft Windows Hardware Compatibility Publisher -&gt; Intel Corporation)\nContextMenuHandlers5: [NvCplDesktopContext] -&gt; 3D1975AF-48C6-4f8e-A182-BE0E08FA86A9 =&gt; C:Windowssystem32nvshext.dll [2015-01-11] (NVIDIA Corporation -&gt; NVIDIA Corporation)\nContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -&gt; A6595CD1-BF77-430A-A452-18696685F7C7 =&gt; C:Program Files (x86)AdobeAcrobat 11.0Acrobat ElementsContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -&gt; Adobe Systems Inc.)\nContextMenuHandlers6: [AVG] -&gt; 472083B1-C522-11CF-8763-00608CC02F24 =&gt; C:Program Files (x86)AVGAntivirusashShell.dll [2020-05-13] (AVG Technologies USA, LLC -&gt; AVG Technologies CZ, s.r.o.)\nContextMenuHandlers6: [MagicISO] -&gt; DB85C504-C730-49DD-BEC1-7B39C6103B7A =&gt; C:Program Files (x86)MagicISOmisosh64.dll [2008-05-22] (MagicISO, Inc.) [File not signed]\nContextMenuHandlers6: [MBAMShlExt] -&gt; 57CE581A-0CB6-4266-9CA0-19364C90A0B3 =&gt; C:Program FilesMalwarebytesAnti-Malwarembshlext.dll [2019-06-26] (Malwarebytes Corporation -&gt; Malwarebytes)\nContextMenuHandlers6: [RecuvaShellExt] -&gt; 435E5DF5-2510-463C-B223-BDA47006D002 =&gt; C:Program FilesRecuvaRecuvaShell64.dll [2016-06-06] (Piriform Ltd -&gt; Piriform Ltd)"},{"id":"text-52","heading":"Text","content":"==================== Codecs (Whitelisted) ===================="},{"id":"text-53","heading":"Text","content":"==================== Shortcuts &amp; WMI ========================"},{"id":"text-54","heading":"Text","content":"==================== Loaded Modules (Whitelisted) ============="},{"id":"text-55","heading":"Text","content":"2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000864768 _____ (%CFullName%) [File not signed] C:Program FilesHewlett-PackardSimplePassOpBHO64.dll\n2019-09-20 15:20 &#8211; 2016-09-12 15:53 &#8211; 048936448 _____ () [File not signed] C:Program Files (x86)AVGAVG TuneUplibcef.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000226304 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionContent.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000227840 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionDeviceAccess.dll\n2011-09-16 10:04 &#8211; 2011-09-16 10:04 &#8211; 000364544 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionDeviceManagement.dll\n2011-09-16 10:06 &#8211; 2011-09-16 10:06 &#8211; 000658432 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionGatewayCore.dll\n2011-09-16 10:05 &#8211; 2011-09-16 10:05 &#8211; 000335872 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionPlxTech.Das.DotNetApi.dll\n2011-09-16 10:07 &#8211; 2011-09-16 10:07 &#8211; 000422400 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionPlxTech.Das.Gateway.Core.dll\n2011-09-16 10:03 &#8211; 2011-09-16 10:03 &#8211; 000245248 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionStorage.dll\n2011-09-16 10:02 &#8211; 2011-09-16 10:02 &#8211; 000045056 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionUtils_ISIS.dll\n2011-09-16 10:02 &#8211; 2011-09-16 10:02 &#8211; 000078848 _____ () [File not signed] C:Program Files (x86)IomegaIomega EncryptionXML.dll\n2015-01-30 19:07 &#8211; 2015-01-30 19:07 &#8211; 002169344 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassautheng.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000021504 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePasscryptodll.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000055296 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassRandomPass.dll\n2015-01-30 19:05 &#8211; 2015-01-30 19:05 &#8211; 000035840 _____ () [File not signed] C:Program FilesHewlett-PackardSimplePassssplogon.dll\n2020-05-08 08:50 &#8211; 2017-12-05 13:42 &#8211; 001442816 _____ (DIAL GmbH) [File not signed] C:Program FilesDIAL GmbHDIALuxDial.ShellExtension.x64.dll\n2015-01-30 19:06 &#8211; 2015-01-30 19:06 &#8211; 000715264 _____ (Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassstoreng.dll\n2015-01-30 19:07 &#8211; 2015-01-30 19:07 &#8211; 001134080 _____ (Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassuserdata.dll\n2010-11-18 21:08 &#8211; 2010-11-18 21:08 &#8211; 000086016 _____ (Igor Pavlov) [File not signed] C:Program Files7-Zip7-zip.dll\n2015-07-22 10:44 &#8211; 2015-07-22 10:44 &#8211; 000562688 _____ (Intel Corporation) [File not signed] C:Program FilesIntelIntel® Rapid Storage TechnologyISDI2.dll\n2015-07-22 10:44 &#8211; 2015-07-22 10:44 &#8211; 000285184 _____ (Intel Corporation) [File not signed] C:Program FilesIntelIntel® Rapid Storage TechnologyPsiData.dll\n2016-03-29 22:31 &#8211; 2008-05-22 23:25 &#8211; 000043520 _____ (MagicISO, Inc.) [File not signed] C:Program Files (x86)MagicISOmisosh64.dll\n2015-06-04 18:46 &#8211; 2015-06-04 18:46 &#8211; 001093120 _____ (Microsoft Corporation) [File not signed] C:WindowsWinSxSx86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8fMFC80U.DLL\n2015-06-04 18:12 &#8211; 2013-04-01 23:19 &#8211; 000574464 _____ (Realtek Semiconductor Corp.) [File not signed] C:Windowssystem32Rtlihvs.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000746064 _____ (Softex Incorporated -&gt; ) [File not signed] C:Program FilesHewlett-PackardSimplePassGraphicalPwd.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000431696 _____ (Softex Incorporated -&gt; ) [File not signed] C:Program FilesHewlett-PackardSimplePassmstrpwd.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 000760912 _____ (Softex Incorporated -&gt; Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePasshdddrv.dll\n2015-01-30 19:16 &#8211; 2015-01-30 19:16 &#8211; 001384528 _____ (Softex Incorporated -&gt; Hewlett-Packard) [File not signed] C:Program FilesHewlett-PackardSimplePassWbf.dll\n2019-06-25 10:37 &#8211; 2019-06-25 10:32 &#8211; 002095104 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:Program FilesAVAST SoftwareSecureLinelibcrypto-1_1.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 005458432 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Core.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 001065984 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Network.dll\n2016-08-31 09:43 &#8211; 2016-08-31 09:43 &#8211; 000195072 _____ (The Qt Company Ltd) [File not signed] C:Program FilesDassault SystemesDraftSightbinQt5Xml.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000026112 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqgif.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000033280 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqicns.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000027648 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqico.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 000245760 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqjpeg.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000021504 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqsvg.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000020992 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqtga.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000316416 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqtiff.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000019968 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqwbmp.dll\n2017-09-14 07:42 &#8211; 2017-09-14 07:42 &#8211; 000322560 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncimageformatsqwebp.dll\n2017-09-14 07:37 &#8211; 2017-09-14 07:37 &#8211; 001010688 _____ (The Qt Company Ltd) [File not signed] C:UsersXXXXXXZZZAppDataLocalMEGAsyncplatformsqwindows.dll\n2019-04-09 10:32 &#8211; 2017-10-19 10:17 &#8211; 000271360 _____ (Wondershare Software) [File not signed] C:WindowsSystem32WSPDFelementMonitor.dll"},{"id":"text-56","heading":"Text","content":"==================== Alternate Data Streams (Whitelisted) ========"},{"id":"text-57","heading":"Text","content":"==================== Safe Mode (Whitelisted) =================="},{"id":"text-58","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The &quot;AlternateShell&quot; will be restored.)"},{"id":"text-59","heading":"Text","content":"HKLMSYSTEMCurrentControlSetControlSafeBootMinimalMBAMService =&gt; &quot;&quot;=&quot;Service&quot;\nHKLMSYSTEMCurrentControlSetControlSafeBootNetworkMBAMService =&gt; &quot;&quot;=&quot;Service&quot;\nHKLMSYSTEMCurrentControlSetControlSafeBootNetworkMcMPFSvc =&gt; &quot;&quot;=&quot;Service&quot;"},{"id":"text-60","heading":"Text","content":"==================== Association (Whitelisted) ================="},{"id":"text-61","heading":"Text","content":"(If an entry is included in the fixlist, the registry item will be restored to default or removed.)"},{"id":"text-62","heading":"Text","content":"HKUS-1-5-21-3751382696-3894377064-3631472648-1001SoftwareClasses.scr: AutoCADScriptFile =&gt; C:Windowssystem32notepad.exe &quot;%1&quot;"},{"id":"text-63","heading":"Text","content":"==================== Internet Explorer trusted/restricted =========="},{"id":"text-64","heading":"Text","content":"==================== Hosts content: ========================="},{"id":"text-65","heading":"Text","content":"(If needed Hosts: directive could be included in the fixlist to reset Hosts.)"},{"id":"text-66","heading":"Text","content":"2013-08-22 14:25 &#8211; 2019-01-01 03:44 &#8211; 000000132 _____ C:Windowssystem32driversetchosts\n127.0.0.1 activate.adobe.com\n127.0.0.1 practivate.adobe.com\n127.0.0.1 lmlicenses.wip4.adobe.com\n127.0.0.1 lm.licenses.adobe.com"},{"id":"text-67","heading":"Text","content":"==================== Other Areas ==========================="},{"id":"text-68","heading":"Text","content":"(Currently there is no automatic fix for this section.)"},{"id":"text-69","heading":"Text","content":"HKLMSystemCurrentControlSetControlSession ManagerEnvironment\\Path -&gt; C:Program Fileswkhtmltopdfbin;C:Program FilesOpenSSL-Win64bin;C:Program FilesJavajdk-14bin;C:Python37Scripts;C:Program Files (x86)Common FilesOracleJavajavapath;C:platform-tools;C:Windowssystem32;C:ProgramDataOracleJavajavapath;C:Program Files (x86)InteliCLS Client;C:Program FilesInteliCLS Client;C:Program Files (x86)NVIDIA CorporationPhysXCommon;%SystemRoot%system32;%SystemRoot%;%SystemRoot%System32Wbem;%SYSTEMROOT%System32WindowsPowerShellv1.0;C:Program FilesHewlett-PackardSimplePass;C:Program FilesIntelIntel® Management Engine ComponentsDAL;C:Program Files (x86)IntelIntel® Management Engine ComponentsDAL;C:Program FilesIntelIntel® Management Engine ComponentsIPT;C:Program Files (x86)IntelIntel® Management Engine ComponentsIPT;C:E20-IIEnviro;C:Program Filesdotnet;C:Program FilesGitcmd\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001Control PanelDesktop\\Wallpaper -&gt; C:WindowswebwallpaperHewlett-Packard BackgroundsbackgroundDefault.jpg\nDNS Servers: 192.168.1.1 &#8211; 192.168.175.1\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem =&gt; (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)\nHKLMSOFTWAREMicrosoftWindowsCurrentVersionExplorer =&gt; (SmartScreenEnabled: RequireAdmin)\nWindows Firewall is enabled."},{"id":"text-70","heading":"Text","content":"Network Binding:\n=============\nEthernet: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nEthernet: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nEthernet: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nEthernet: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nEthernet: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nWi-Fi: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nWi-Fi: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nWi-Fi: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nWi-Fi: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nWi-Fi: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nVMware Network Adapter VMnet8: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVMware Network Adapter VMnet8: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVMware Network Adapter VMnet8: VMware Bridge Protocol -&gt; vmware_bridge (disabled) \nVMware Network Adapter VMnet1: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVMware Network Adapter VMnet1: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVMware Network Adapter VMnet1: VMware Bridge Protocol -&gt; vmware_bridge (disabled) \nVirtualBox Host-Only Network: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nVirtualBox Host-Only Network: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nVirtualBox Host-Only Network: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nVirtualBox Host-Only Network: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nVirtualBox Host-Only Network: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled) \nNpcap Loopback Adapter: Npcap Packet Driver (NPCAP) (Wi-Fi) -&gt; insecure_npcap_wifi (enabled) \nNpcap Loopback Adapter: Npcap Packet Driver (NPCAP) -&gt; insecure_npcap (enabled) \nNpcap Loopback Adapter: VirtualBox NDIS6 Bridged Networking Driver -&gt; oracle_vboxnetlwf (enabled) \nNpcap Loopback Adapter: VMware Bridge Protocol -&gt; vmware_bridge (enabled) \nNpcap Loopback Adapter: JumpStart Wireless Filter Driver -&gt; ms_ndislwf (enabled)"},{"id":"text-71","heading":"Text","content":"==================== MSCONFIG/TASK MANAGER disabled items =="},{"id":"text-72","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed.)"},{"id":"text-73","heading":"Text","content":"MSCONFIGServices: AdAppMgrSvc =&gt; 2\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;Assistente de gestor de conteúdo para PlayStation®.lnk&quot;\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;ScpToolkit Tray Notifications.lnk&quot;\nHKLM&#8230;StartupApprovedStartupFolder: =&gt; &quot;Avast SecureLine VPN.lnk&quot;\nHKLM&#8230;StartupApprovedRun: =&gt; &quot;NvBackend&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;AccelerometerSysTrayApplet&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;HPMessageService&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;HP Software Update&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;BCSSync&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;AVG_UI&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Acrobat Assistant 8.0&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;SunJavaUpdateSched&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;vProt&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;VirtualCloneDrive&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Autodesk Desktop App&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;jswtrayutil&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;PSUAMain&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Wondershare Helper Compact.exe&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;KiesTrayAgent&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;Aimersoft Helper Compact.exe&quot;\nHKLM&#8230;StartupApprovedRun32: =&gt; &quot;XArp&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedStartupFolder: =&gt; &quot;OneNote 2010 Screen Clipper and Launcher.lnk&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedStartupFolder: =&gt; &quot;Autenticacao.gov.pt.lnk&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;DAEMON Tools Lite Automount&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;GoogleDriveSync&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;Autodesk Sync&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;Steam&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;CCleaner Smart Cleaning&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;AvastBrowserAutoLaunch_8E2202057F0AAA05DFC4AE202AF0EABB&quot;\nHKUS-1-5-21-3751382696-3894377064-3631472648-1001&#8230;StartupApprovedRun: =&gt; &quot;com.squirrel.Teams.Teams&quot;"},{"id":"text-74","heading":"Text","content":"==================== FirewallRules (Whitelisted) ================"},{"id":"text-75","heading":"Text","content":"(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)"},{"id":"text-76","heading":"Text","content":"FirewallRules: [582A6683-D72A-46B6-ACE3-5DDF801194EF] =&gt; (Allow) C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [BCEFEFB2-60E2-49CB-867A-17284DF5084E] =&gt; (Allow) C:Program Files (x86)NVIDIA CorporationNetServiceNvNetworkService.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [6F2F07DD-A742-44EC-994D-0154FFCB01B5] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [AFFCD9A6-C298-4963-AB51-C30E247AFBB1] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [7808A858-FCAB-4CBE-8379-522C54F4E6B0] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [B186DA8C-5846-4184-A738-92C3AA9F2AC1] =&gt; (Allow) C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamer.exe (NVIDIA Corporation -&gt; NVIDIA Corporation)\nFirewallRules: [B7FF1360-33D9-4C8D-8781-A64CC9E443D3] =&gt; (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [992F1852-2433-4440-8DE4-D9B1246F35FC] =&gt; (Allow) C:Program FilesBonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [ADCDF42B-282C-4832-85E0-FA81E4E51183] =&gt; (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [4979BC6A-1279-4FA3-9F8F-35D9CD55B21F] =&gt; (Allow) C:Program Files (x86)BonjourmDNSResponder.exe (Apple Inc. -&gt; Apple Inc.)\nFirewallRules: [B47007A9-2898-4F03-BF02-FED19537847B] =&gt; (Allow) C:Program Files (x86)Hewlett-PackardHP System EventHPSOCKSVC.exe (Hewlett-Packard Company -&gt; Hewlett-Packard Development Company, L.P.)\nFirewallRules: [39D2D09C-F5A7-49C3-A51B-7C3A63B6092F] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12PowerDVD12.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [E17FE3D7-439C-46AC-8654-AE3E8CF5BAB3] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12KernelDMSCLMSServerPDVD12.exe =&gt; No File\nFirewallRules: [C7F3A161-5DEC-4FE3-98B3-D3AE8FBAC944] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12PowerDVD12ML.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [17D8CE27-9FB3-43FC-A66E-A7C41F14EB1B] =&gt; (Allow) c:Program Files (x86)CyberLinkPowerDVD12MoviePowerDVD.exe (CyberLink Corp. -&gt; CyberLink Corp.)\nFirewallRules: [BAC676D9-D48D-4B1F-9D48-D916649D3BED] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinDeviceSetup.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [1E3A958A-DBF9-4792-BA75-66CDD5B97F81] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinHPNetworkCommunicator.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [94AEC018-D89F-44D8-BE94-CB30F928F3D5] =&gt; (Allow) C:Program FilesHPHP Deskjet 3050 J610 seriesBinHPNetworkCommunicatorCom.exe (Hewlett Packard -&gt; Hewlett-Packard Co.)\nFirewallRules: [3CC6A172-6CFC-4C96-94F1-FEA79C8C66DC] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [A319A1AD-CD39-4B0E-AD31-FA83D3D78242] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [C8947CEF-1C24-4CC9-90B0-3D548221606C] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [FC78FDD5-0FE6-4B5C-B0B2-7BA1E5E56122] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [A835927B-3BA1-4345-868E-B80FDF3DFE6B] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [59D701D2-D615-4312-ABB5-8CC133C606A7] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoaminguTorrentuTorrent.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [TCP Query User1D930BCB-2B04-4333-8EF9-C057EC9E6BAFC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Allow) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [UDP Query UserA39DAA6C-B810-4FC1-8EDD-8DD8AF086F6FC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Allow) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [25B196BB-0691-4DDC-BB61-C324E536385D] =&gt; (Allow) C:Program Files (x86)AVGAvavgmfapx.exe =&gt; No File\nFirewallRules: [68830A77-7703-4DCD-B1D4-2BDF8413B333] =&gt; (Allow) C:Program Files (x86)AVGAvavgmfapx.exe =&gt; No File\nFirewallRules: [AC06ADD7-2F7A-438B-806C-A4154DFC73F1] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [D4AD2E35-4E6E-4D00-B9D8-A5EB21B85B30] =&gt; (Allow) C:Program Files (x86)Mozilla Firefoxfirefox.exe (Mozilla Corporation -&gt; Mozilla Corporation)\nFirewallRules: [TCP Query User9CF8F516-A810-4B68-B577-6D76ADBD6979C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Block) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [UDP Query User1C042E6F-79B1-4354-945A-103696EB9945C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Block) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [TCP Query User16E10655-99C6-4050-8E89-D57F6F18A920C:program files (x86)skypephoneskype.exe] =&gt; (Allow) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [UDP Query User052989CE-193D-439A-ABF6-6C5A57B97CBCC:program files (x86)skypephoneskype.exe] =&gt; (Allow) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [TCP Query UserD9402F64-6C5B-43AE-9415-C52306CD3465C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [UDP Query UserD68E4CDB-5539-4A54-B66A-E9E07FB4DA19C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [TCP Query User70E94656-89AD-4D48-8485-5C61A98E5D7DC:program filesnefarius software solutionsscptoolkitscpserver.exe] =&gt; (Allow) C:program filesnefarius software solutionsscptoolkitscpserver.exe =&gt; No File\nFirewallRules: [UDP Query User08EA37E1-5D9D-44D9-B1B5-D00E1E46864FC:program filesnefarius software solutionsscptoolkitscpserver.exe] =&gt; (Allow) C:program filesnefarius software solutionsscptoolkitscpserver.exe =&gt; No File\nFirewallRules: [TCP Query User9DB2D3EB-A419-40A9-8B7F-02B5F54F0ED6C:program files (x86)airdroidairdroid.exe] =&gt; (Allow) C:program files (x86)airdroidairdroid.exe =&gt; No File\nFirewallRules: [UDP Query User0C64B981-176C-43C7-AC23-DCDFE020FD7CC:program files (x86)airdroidairdroid.exe] =&gt; (Allow) C:program files (x86)airdroidairdroid.exe =&gt; No File\nFirewallRules: [999E8B30-A3CC-4CFC-82E9-BE529C851F3E] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS1A27HPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [4C9EB99C-5BB1-4E5A-9383-0E808C25D152] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS1A27HPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [TCP Query UserB4B18508-AD74-4D0F-91E0-A0A25EB96CECC:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Block) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [UDP Query User791C7AA4-28C9-4307-BFD5-93EFF7A53417C:program files (x86)sonycontent manager assistantcma.exe] =&gt; (Block) C:program files (x86)sonycontent manager assistantcma.exe (Sony Computer Entertainment Inc. -&gt; Sony Computer Entertainment Inc.)\nFirewallRules: [TCP Query UserBFE9BE95-C491-45D5-97F0-1F91C2DCCBDEC:program files (x86)skypephoneskype.exe] =&gt; (Block) C:program files (x86)skypephoneskype.exe =&gt; No File\nFirewallRules: [2A3B511F-88A9-434F-851F-8323C7B84A61] =&gt; (Allow) C:Program FilesEasewareDriverEasyDriverEasy.exe (Easeware Technology Limited -&gt; Easeware)\nFirewallRules: [F58757DD-5309-4BAC-8672-3228BB5C0926] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS5F1AHPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [E6751800-8FD6-446B-859E-0C8AD3D2993C] =&gt; (Allow) C:UsersXXXXXXZZZAppDataLocalTemp7zS5F1AHPDiagnosticCoreUI.exe =&gt; No File\nFirewallRules: [A7E1E8CF-3332-4C3B-B2F2-4D0513F85CF2] =&gt; (Allow) LPort=9422\nFirewallRules: [03ADEAC4-2838-478C-B592-ED07458E4C1E] =&gt; (Allow) LPort=9245\nFirewallRules: [F59BA0EC-D15A-450E-A3B5-3CD06B04642D] =&gt; (Allow) LPort=9246\nFirewallRules: [091F67FF-828D-40B1-BF39-95961341573C] =&gt; (Allow) LPort=9247\nFirewallRules: [TCP Query UserE248A19E-99A2-4804-B6BC-5ACD8565160BC:program files (x86)caincain.exe] =&gt; (Allow) C:program files (x86)caincain.exe =&gt; No File\nFirewallRules: [UDP Query User4D5623CB-FB3B-4213-8FD5-8A30C84E8FA2C:program files (x86)caincain.exe] =&gt; (Allow) C:program files (x86)caincain.exe =&gt; No File\nFirewallRules: [7C5AB3F8-67AF-44F7-8597-902CC0D24BD9] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [479750AD-D7FF-40D1-BBF8-C2E1B082AF6E] =&gt; (Allow) C:Program Files (x86)SteamSteam.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [66A28919-DA35-4E6F-A3A3-A57E77F7746B] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [F876F68F-A0AF-4E72-A14C-7D600645599A] =&gt; (Allow) C:Program Files (x86)Steambincefcef.win7steamwebhelper.exe (Valve -&gt; Valve Corporation)\nFirewallRules: [TCP Query User50979378-03F8-44E0-90DB-5D6959D70469C:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Allow) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [UDP Query UserC833F1CD-6066-403C-98CA-92840F4DEE3DC:program files (x86)soulseekqtsoulseekqt.exe] =&gt; (Allow) C:program files (x86)soulseekqtsoulseekqt.exe () [File not signed]\nFirewallRules: [TCP Query User973BD09C-F2D6-428F-AA51-398E84385F98C:program files (x86)facebook friend mapperphantomjs.exe] =&gt; (Block) C:program files (x86)facebook friend mapperphantomjs.exe =&gt; No File\nFirewallRules: [UDP Query UserFC808989-45B7-4EA6-9D7B-17B90191BD9FC:program files (x86)facebook friend mapperphantomjs.exe] =&gt; (Block) C:program files (x86)facebook friend mapperphantomjs.exe =&gt; No File\nFirewallRules: [TCP Query User1C96D305-E77E-4FB0-882C-E011AEDE7B98C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [UDP Query User92E6F78F-1558-4A1E-89BD-C9718E9F0025C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingacestreamengineace_engine.exe =&gt; No File\nFirewallRules: [TCP Query User9EBAD4BE-25CB-4D18-B75E-7A6CDE9BB797C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [UDP Query User14DF02A4-E03D-4848-9B20-5E4BF53829F9C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingutorrentupdates3.5.4_44632.exe (BitTorrent Inc -&gt; BitTorrent Inc.)\nFirewallRules: [TCP Query UserAE9277F6-2BA5-48AD-989C-910019969FDCC:program files (x86)winpcaprpcapd.exe] =&gt; (Block) C:program files (x86)winpcaprpcapd.exe (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nFirewallRules: [UDP Query User35D83A15-0FB0-43D7-BCF5-C0B8D94CB1C3C:program files (x86)winpcaprpcapd.exe] =&gt; (Block) C:program files (x86)winpcaprpcapd.exe (CACE Technologies, Inc. -&gt; CACE Technologies, Inc.)\nFirewallRules: [TCP Query User24BEA927-D042-4EBC-A3B5-4274B8538946C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe] =&gt; (Allow) C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe =&gt; No File\nFirewallRules: [UDP Query UserB3EDB2D5-3563-4F56-8092-946663BDE464C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe] =&gt; (Allow) C:usersXXXXXXZZZdownloadszeronet-win-distzeronet.exe =&gt; No File\nFirewallRules: [8EA1455A-A080-426A-8D2D-5335EB3D8E34] =&gt; (Allow) C:Program FilesBlueStacksHD-Player.exe (BlueStack Systems, Inc. -&gt; BlueStack Systems, Inc.)\nFirewallRules: [A921AD6F-18C4-4A87-94B3-B778404C4912] =&gt; (Allow) C:Program Files (x86)VMwareVMware Playervmware-authd.exe (VMware, Inc. -&gt; VMware, Inc.)\nFirewallRules: [45CAEAFE-406C-4630-B965-2E046F854716] =&gt; (Allow) C:Program Files (x86)VMwareVMware Playervmware-authd.exe (VMware, Inc. -&gt; VMware, Inc.)\nFirewallRules: [1DF90E31-1041-4093-A46F-530835B973A6] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [37D7A423-4F11-48BC-A63A-D606409F3905] =&gt; (Allow) C:Program Files (x86)MicrosoftSkype for DesktopSkype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [A68B9487-DE2A-42D4-8F65-7AD1BE4FF56E] =&gt; (Allow) C:UsersXXXXXXZZZDownloadsultdata-android.exe =&gt; No File\nFirewallRules: [0502B751-C5CB-4DD2-8CF9-5CB89E5FC85C] =&gt; (Allow) C:UsersXXXXXXZZZDownloadsultdata-android.exe =&gt; No File\nFirewallRules: [TCP Query UserDDB5E758-E868-4317-B733-0FE13C15E18BC:program filesandroidandroid studiojrebinjava.exe] =&gt; (Allow) C:program filesandroidandroid studiojrebinjava.exe\nFirewallRules: [UDP Query User6098E9AC-3E8B-4C11-AE5E-5D77E65F248AC:program filesandroidandroid studiojrebinjava.exe] =&gt; (Allow) C:program filesandroidandroid studiojrebinjava.exe\nFirewallRules: [TCP Query UserD16594A1-06E4-4EDD-85AC-3AB7A8523C48C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [UDP Query User347E955D-D687-412B-B652-2E7BE3FB0FE3C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Allow) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [TCP Query User9318684D-7351-437E-AA4B-38CDAB311CC5C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Block) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [UDP Query User2B2AEEDB-7C5F-4179-BE80-649DD55B4518C:usersXXXXXXZZZappdataroamingspotifyspotify.exe] =&gt; (Block) C:usersXXXXXXZZZappdataroamingspotifyspotify.exe (Spotify AB -&gt; Spotify Ltd)\nFirewallRules: [TCP Query User2E858FE0-9142-4312-8E70-C21A0FA30D53C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe] =&gt; (Allow) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [UDP Query UserFD2327B3-3575-4FFD-8CD6-110255058609C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe] =&gt; (Allow) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [663C67BD-E556-4C15-B443-0198A336ACCE] =&gt; (Block) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [37553DE9-4D90-4CE3-AFEA-CD53619A5F61] =&gt; (Block) C:usersXXXXXXZZZappdatalocalmicrosoftteamscurrentteams.exe =&gt; No File\nFirewallRules: [F3A0DD59-0075-44DB-833D-668479A84900] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoamingZoombinZoom.exe =&gt; No File\nFirewallRules: [8B730F98-3968-42A3-AB7B-001BD1618A58] =&gt; (Allow) C:UsersXXXXXXZZZAppDataRoamingZoombinairhost.exe =&gt; No File\nFirewallRules: [F0045ADC-AEA7-406F-8C15-26BA696126A9] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [4B943EEA-FFAE-48AC-83AB-470A55A8022B] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [4C2E7AE0-A446-4C94-A73B-E6FAA3E4EA66] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [467134C1-8DBE-4139-8EDE-D7E61A286F65] =&gt; (Allow) C:Program Files (x86)TeamViewerTeamViewer_Service.exe (TeamViewer Germany GmbH -&gt; TeamViewer Germany GmbH)\nFirewallRules: [TCP Query UserD8ED4101-A5CE-4C62-A166-C94C7B8A673FC:fakenet1.4.11fakenet.exe] =&gt; (Allow) C:fakenet1.4.11fakenet.exe () [File not signed]\nFirewallRules: [UDP Query UserCBCE98D5-763A-4A0E-AD25-A01A11150B65C:fakenet1.4.11fakenet.exe] =&gt; (Allow) C:fakenet1.4.11fakenet.exe () [File not signed]\nFirewallRules: [TCP Query User44C0B41F-120E-44CA-BCA9-6654375A0B78C:program files (x86)microsoftskype for desktopskype.exe] =&gt; (Allow) C:program files (x86)microsoftskype for desktopskype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [UDP Query UserC842BD42-262C-4277-96CD-376902CDA081C:program files (x86)microsoftskype for desktopskype.exe] =&gt; (Allow) C:program files (x86)microsoftskype for desktopskype.exe (Skype Software Sarl -&gt; Skype Technologies S.A.)\nFirewallRules: [TCP Query UserEF992F2B-0A05-4B7D-8D80-0960EDE2BE96C:program files (x86)nmapnmap.exe] =&gt; (Allow) C:program files (x86)nmapnmap.exe (Insecure.Com LLC -&gt; Insecure.Org)\nFirewallRules: [UDP Query UserED9C07AC-142E-4AF4-B911-F0430B82B0ADC:program files (x86)nmapnmap.exe] =&gt; (Allow) C:program files (x86)nmapnmap.exe (Insecure.Com LLC -&gt; Insecure.Org)\nFirewallRules: [TCP Query UserDB6B9E30-A92D-4FAA-B83C-534A9DB88096C:program files (x86)microsoft officeoffice14groove.exe] =&gt; (Block) C:program files (x86)microsoft officeoffice14groove.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [UDP Query User5E059811-A8BA-4348-A5EE-8024A24393C9C:program files (x86)microsoft officeoffice14groove.exe] =&gt; (Block) C:program files (x86)microsoft officeoffice14groove.exe (Microsoft Corporation -&gt; Microsoft Corporation)\nFirewallRules: [FABFAEEE-3FF4-421B-A30B-818CDC15DD55] =&gt; (Allow) C:Program Files (x86)GoogleChromeApplicationchrome.exe (Google LLC -&gt; Google LLC)"},{"id":"text-77","heading":"Text","content":"==================== Restore Points ========================="},{"id":"text-78","heading":"Text","content":"01-06-2020 18:20:41 Installed OSRAM"},{"id":"text-79","heading":"Text","content":"==================== Faulty Device Manager Devices ============"},{"id":"text-80","heading":"Text","content":"Name: WAN Miniport (SSTP) #3\nDescription: WAN Miniport (SSTP)\nClass Guid: 4d36e972-e325-11ce-bfc1-08002be10318\nManufacturer: Microsoft\nService: RasSstp\nProblem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)\nResolution: Update the driver"},{"id":"text-81","heading":"Text","content":"Name: vJoy Device\nDescription: vJoy Device\nClass Guid: 745a17a0-74d3-11d0-b6fe-00a0c90f57da\nManufacturer: Shaul Eizikovich\nService: vjoy\nProblem: : This device is disabled. (Code 22)\nResolution: In Device Manager, click &quot;Action&quot;, and then click &quot;Enable Device&quot;. This starts the Enable Device wizard. Follow the instructions."},{"id":"text-82","heading":"Text","content":"==================== Event log errors: ========================"},{"id":"text-83","heading":"Text","content":"Application errors:\n==================\nError: (06/09/2020 09:32:39 AM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome da aplicação com falha: SecureLine.exe, versão: 1.0.289.0, carimbo de data/hora: 0x5720feec\nNome do módulo com falha: HTMLayout.dll, versão: 6.3.9600.19697, carimbo de data/hora: 0x5e91f218\nCódigo de exceção: 0xc0000135\nDesvio de falha: 0x0009d452\nID do processo com falha: 0x1294\nHora de início da aplicação com falha: 0x01d63e367fe5e91f\nCaminho da aplicação com falha: C:Program FilesAVAST SoftwareSecureLineSecureLine.exe\nCaminho do módulo com falha: HTMLayout.dll\nID do Relatório: c6e5238e-aa2b-11ea-8303-3ca82aab1c8a\nNome completo do pacote com falha: \nID da aplicação relativa ao pacote com falha:"},{"id":"text-84","heading":"Text","content":"Error: (06/09/2020 09:30:46 AM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: O programa LiveComm.exe versão 17.5.9600.22013 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação."},{"id":"text-85","heading":"Text","content":"ID do Processo: 1d24"},{"id":"text-86","heading":"Text","content":"Hora de Início: 01d63e378eedd1c5"},{"id":"text-87","heading":"Text","content":"Hora de Cessação: 4294967295"},{"id":"text-88","heading":"Text","content":"Caminho da Aplicação: C:Program FilesWindowsAppsmicrosoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbweLiveComm.exe"},{"id":"text-89","heading":"Text","content":"ID do Relatório: 8290376b-aa2b-11ea-8303-3ca82aab1c8a"},{"id":"text-90","heading":"Text","content":"Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe"},{"id":"text-91","heading":"Text","content":"ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1"},{"id":"text-92","heading":"Text","content":"Error: (06/09/2020 09:21:41 AM) (Source: Application Hang) (EventID: 1002) (User: )\nDescription: O programa LiveComm.exe versão 17.5.9600.22013 deixou de interagir com o Windows e foi fechado. Para verificar se existem mais informações disponíveis sobre o problema, consulte o histórico de problemas no painel de controlo do Centro de Ação."},{"id":"text-93","heading":"Text","content":"ID do Processo: 1be8"},{"id":"text-94","heading":"Text","content":"Hora de Início: 01d63e36410c1675"},{"id":"text-95","heading":"Text","content":"Hora de Cessação: 4294967295"},{"id":"text-96","heading":"Text","content":"Caminho da Aplicação: C:Program FilesWindowsAppsmicrosoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbweLiveComm.exe"},{"id":"text-97","heading":"Text","content":"ID do Relatório: 35f199e1-aa2a-11ea-8303-3ca82aab1c8a"},{"id":"text-98","heading":"Text","content":"Nome completo do pacote com falha: microsoft.windowscommunicationsapps_17.5.9600.22013_x64__8wekyb3d8bbwe"},{"id":"text-99","heading":"Text","content":"ID da aplicação relativa ao pacote com falha: ppleae38af2e007f4358a809ac99a64a67c1"},{"id":"text-100","heading":"Text","content":"Error: (06/09/2020 09:10:41 AM) (Source: DPTF) (EventID: 256) (User: )\nDescription: Intel® Dynamic Platform and Thermal Framework : ESIF(8.0.10100.71) TYPE: ERROR"},{"id":"text-101","heading":"Text","content":"DPTF Build Version:  8.0.10100.71\nDPTF Build Date:  Sep 18 2014 11:16:17\nSource File:  &#8230;&#8230;..SourcesPoliciesPolicyLibPolicyBase.cpp @ line 553\nExecuting Function:  PolicyBase::takeControlOfOsc\nMessage:  Failed to acquire OSC.\nPolicy:   [0]"},{"id":"text-102","heading":"Text","content":"Error: (06/08/2020 02:11:58 AM) (Source: NvStreamSvc) (EventID: 1) (User: )\nDescription: Event-ID 1"},{"id":"text-103","heading":"Text","content":"Error: (06/08/2020 02:11:57 AM) (Source: NvStreamSvc) (EventID: 1) (User: )\nDescription: Event-ID 1"},{"id":"text-104","heading":"Text","content":"Error: (06/07/2020 05:15:29 PM) (Source: Application Error) (EventID: 1000) (User: )\nDescription: Nome da aplicação com falha: rundll32.exe_winethc.dll, versão: 6.3.9600.17415, carimbo de data/hora: 0x54504eb8\nNome do módulo com falha: USER32.dll, versão: 6.3.9600.19697, carimbo de data/hora: 0x5e91f8a1\nCódigo de exceção: 0xc0000142\nDesvio de falha: 0x00000000000ecf40\nID do processo com falha: 0xfe20\nHora de início da aplicação com falha: 0x01d63ce6dc383106\nCaminho da aplicação com falha: C:WindowsSystem32rundll32.exe\nCaminho do módulo com falha: USER32.dll\nID do Relatório: 1a146bd8-a8da-11ea-8302-3ca82aab1c8a\nNome completo do pacote com falha: \nID da aplicação relativa ao pacote com falha:"},{"id":"text-105","heading":"Text","content":"Error: (06/07/2020 11:52:54 AM) (Source: Perflib) (EventID: 1008) (User: )\nDescription: O procedimento Open para o serviço &quot;WmiApRpl&quot; na DLL &quot;C:Windowssystem32wbemwmiaprpl.dll&quot; falhou. Os dados de desempenho para este serviço não estarão disponíveis. Os primeiros quatro bytes (DWORD) da secção Data contêm o código de erro."},{"id":"text-106","heading":"Text","content":"System errors:\n=============\nError: (06/09/2020 10:13:02 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado."},{"id":"text-107","heading":"Text","content":"Error: (06/09/2020 10:13:02 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado."},{"id":"text-108","heading":"Text","content":"Error: (06/09/2020 09:43:42 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado."},{"id":"text-109","heading":"Text","content":"Error: (06/09/2020 09:43:42 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado."},{"id":"text-110","heading":"Text","content":"Error: (06/09/2020 09:41:40 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado."},{"id":"text-111","heading":"Text","content":"Error: (06/09/2020 09:41:40 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado."},{"id":"text-112","heading":"Text","content":"Error: (06/09/2020 09:21:28 AM) (Source: Service Control Manager) (EventID: 7023) (User: )\nDescription: O serviço Gestor de ligação de acesso remoto terminou com o seguinte erro: \nO sistema não conseguiu localizar o ficheiro especificado."},{"id":"text-113","heading":"Text","content":"Error: (06/09/2020 09:21:27 AM) (Source: RasMan) (EventID: 20030) (User: )\nDescription: Remote Access Connection Manager failed to start because it could not load one or more communication DLLs. Ensure that your communication hardware is installed and then restart the Remote Access Connection Manager service. If the problem persists, contact the system administrator. O sistema não conseguiu localizar o ficheiro especificado."},{"id":"text-114","heading":"Text","content":"Windows Defender:\n===================================\nDate: 2016-04-30 16:06:04.685\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 0F93CF3B-A2A0-4700-9D62-D626C4F6BC00\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM"},{"id":"text-115","heading":"Text","content":"Date: 2016-04-30 14:18:37.297\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 30B6151F-CD35-4918-8EBA-47223CB0EE9A\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM"},{"id":"text-116","heading":"Text","content":"Date: 2016-04-28 23:46:49.814\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: BBE65ED8-605F-4130-9BD3-D58DD3640E3B\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM"},{"id":"text-117","heading":"Text","content":"Date: 2016-04-28 22:11:50.407\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: D556AB88-19BC-4270-979C-58941438DC75\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM"},{"id":"text-118","heading":"Text","content":"Date: 2016-04-28 21:58:02.035\nDescription: \nA análise de Windows Defender foi parada antes de ser concluída.\nID de Análise: 20BA1FA2-3A89-4648-8CC9-3D9F0804C803\nTipo de Análise: Antimalware\nParâmetros de Análise: Análise Rápida\nUtilizador: NT AUTHORITYSYSTEM"},{"id":"text-119","heading":"Text","content":"Date: 2016-04-28 02:40:09.940\nDescription: \nWindows Defender encontrou um erro ao tentar carregar assinaturas e irá tentar reverter para um conjunto de assinaturas em condições conhecido.\nAssinaturas Tentadas: Atual\nCódigo de Erro: 0x80073aba\nDescrição do Erro: O recurso é demasiado velho para ser compatível. \nVersão de Assinatura: 1.191.2881.0;1.191.2881.0\nVersão de Motor: 1.1.11302.0"},{"id":"text-120","heading":"Text","content":"Date: 2014-12-10 04:48:25.704\nDescription: \nA funcionalidade de Proteção em Tempo Real de Windows Defender encontrou um erro e falhou.\nFuncionalidade: Sistema de Inspeção de Rede\nCódigo de Erro: 0x80070002\nDescrição do Erro: The system cannot find the file specified. \nRazão: Faltam atualizações no sistema que são necessárias à execução do Sistema de Inspeção de Rede. Instale as atualizações necessárias e reinicie o computador."},{"id":"text-121","heading":"Text","content":"Date: 2014-12-10 04:46:18.485\nDescription: \nA funcionalidade de Proteção em Tempo Real de Windows Defender encontrou um erro e falhou.\nFuncionalidade: Sistema de Inspeção de Rede\nCódigo de Erro: 0x80070002\nDescrição do Erro: The system cannot find the file specified. \nRazão: Faltam atualizações no sistema que são necessárias à execução do Sistema de Inspeção de Rede. Instale as atualizações necessárias e reinicie o computador."},{"id":"text-122","heading":"Text","content":"CodeIntegrity:\n==================================="},{"id":"text-123","heading":"Text","content":"Date: 2018-11-13 09:54:06.045\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system."},{"id":"text-124","heading":"Text","content":"Date: 2018-11-13 09:54:05.586\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system."},{"id":"text-125","heading":"Text","content":"Date: 2018-11-13 09:54:04.899\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system."},{"id":"text-126","heading":"Text","content":"Date: 2018-11-13 09:54:04.297\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system."},{"id":"text-127","heading":"Text","content":"Date: 2018-11-13 09:54:03.799\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system."},{"id":"text-128","heading":"Text","content":"Date: 2018-11-13 09:54:03.416\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system."},{"id":"text-129","heading":"Text","content":"Date: 2018-11-13 09:54:03.150\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system."},{"id":"text-130","heading":"Text","content":"Date: 2018-11-13 09:54:02.801\nDescription: \nCode Integrity is unable to verify the image integrity of the file DeviceHarddiskVolume4WindowsSystem32wow64.dll because the set of per-page image hashes could not be found on the system."},{"id":"text-131","heading":"Text","content":"==================== Memory info ==========================="},{"id":"text-132","heading":"Text","content":"BIOS: Insyde F.03 03/31/2015\nMotherboard: Hewlett-Packard 8096\nProcessor: Intel® Core™ i5-5200U CPU @ 2.20GHz\nPercentage of memory in use: 41%\nTotal physical RAM: 8130.26 MB\nAvailable physical RAM: 4745.97 MB\nTotal Virtual: 16834.26 MB\nAvailable Virtual: 13268.11 MB"},{"id":"text-133","heading":"Text","content":"==================== Drives ================================"},{"id":"text-134","heading":"Text","content":"Drive c: (Windows) (Fixed) (Total:441.62 GB) (Free:56.1 GB) NTFS\nDrive d: (RECOVERY) (Fixed) (Total:23.12 GB) (Free:2.56 GB) NTFS ==&gt;[system with boot components (obtained from drive)]"},{"id":"text-135","heading":"Text","content":"\\?Volume320a96b5-9680-4cfd-94e7-147030d64aeb (WINRE) (Fixed) (Total:0.63 GB) (Free:0.34 GB) NTFS"},{"id":"text-136","heading":"Text","content":"==================== MBR &amp; Partition Table ===================="},{"id":"text-137","heading":"Text","content":"==========================================================\nDisk: 0 (Size: 465.8 GB) (Disk ID: 4199D061)"},{"id":"text-138","heading":"Text","content":"Partition: GPT."},{"id":"text-139","heading":"Text","content":"==================== End of Addition.txt ======================="},{"id":"text-140","heading":"Text","content":"Click to rate this post!\n                                   \n                               [Total: 0  Average: 0]"}],"media":{"primary_image":"https://tutos-gameserver.fr/wp-content/uploads/2020/03/1585419619_meta_image.png"},"relations":[{"rel":"canonical","href":"https://tutos-gameserver.fr/2020/06/12/attaques-bonet-mitm-spam-possibles-analyse-pcapng-serveur-dimpression/"},{"rel":"alternate","href":"https://tutos-gameserver.fr/2020/06/12/attaques-bonet-mitm-spam-possibles-analyse-pcapng-serveur-dimpression/llm","type":"text/html"},{"rel":"alternate","href":"https://tutos-gameserver.fr/2020/06/12/attaques-bonet-mitm-spam-possibles-analyse-pcapng-serveur-dimpression/llm.json","type":"application/json"},{"rel":"llm-manifest","href":"https://tutos-gameserver.fr/llm-endpoints-manifest.json","type":"application/json"}],"http_headers":{"X-LLM-Friendly":"1","X-LLM-Schema":"1.1.0","Content-Security-Policy":"default-src 'none'; img-src * data:; style-src 'unsafe-inline'"},"license":"CC BY-ND 4.0","attribution_required":true,"allow_cors":false}