
agent.tesla / redline vole une double infection – demande d'aide – Les meilleures astuces pour son serveur
[bzkshopping keyword= »Minecraft » count= »8″ template= »grid »]
. s'il vous plaît donnez votre avis
Plate-forme : Windows 7 Ultimate Service Pack 1 (X64) Langue : Anglais (États-Unis)
(Si une entrée est incluse dans la liste des correctifs, le processus se ferme. Le fichier n'est pas déplacé.)
(Google LLC -> Google LLC) C:UsersStudioAppDataLocalGoogleChromeApplicationchrome.exe <23>
(Malwarebytes Corporation -> Malwarebytes Corporation) C: Users Studio Desktop mbar mbar.exe
(Si une entrée est incluse dans la liste des correctifs, l'entrée de registre est restaurée par défaut ou supprimée. Le fichier n'est pas déplacé.)
HKU S-1-5-21-3663378538-2047212209-1910426402-1000 … Exécuter : [GoogleChromeAutoLaunch_AE11DD999CCB93BB6492453EBA64B896] => "C:UsersStudioAppDataLocalGoogleChromeApplicationchrome.exe" –no-startup-window/prefetch: 5
HKU S-1-5-18 … Exécuter : [Plex Media Server] => C: Program Files (x86) Plex Plex Media Server Plex Media Server.exe [21494384 2021-02-23] (Plex, Inc. -> Plex, Inc.)
HKU S-1-5-18 … RunOnce : [SPReview] => C:WindowsSystem32SPReviewSPReview.exe [301568 2014-10-30] (Microsoft Windows -> Microsoft Corporation)
HKLM … Print Monitors Canon BJ Language Monitor MP495 series: C: Windows system32 CNMLMA9.DLL [361472 2010-08-25] (CANON INC.) [File not signed]
HKLM … Print Monitors CutePDF Writer Monitor : C: Windows system32 cpwmon64.dll [87600 2013-10-23] (Acro Software Inc. ->)
HKLM Software Microsoft Active Setup Composants installés : [2D46B6DC-2207-486B-B523-A557E6D54B47] -> C:Windowssystem32cmd.exe/D/C start C:Windowssystem32ie4uinit.exe -ClearIconCache
HKLM Software Wow6432Node Microsoft Active Setup Composants installés : [2D46B6DC-2207-486B-B523-A557E6D54B47] -> C:Windowssystem32cmd.exe/D/C start C:Windowssystem32ie4uinit.exe -ClearIconCache
HKLM Logiciel … Authentification Fournisseurs d'identifiants : [F8A0B131-5F68-486c-8040-7E8FC3C85BB6] -> C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
(Si une entrée est incluse dans la liste des correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé à moins qu'il ne soit répertorié séparément.)
Tâche : 05287AA0-7562-485A-83D0-1D9A15C72F9E – System32 Tasks Apple AppleSoftwareUpdate => C: Program Files (x86) Apple Software Update SoftwareUpdate.exe [569416 2016-02-23] (Apple Inc. -> Apple Inc.)
Tâche : 0E4B35C4-47C2-42C7-AE53-EA7288DEBAAC – System32 Tasks DropboxUpdateTaskUserS-1-5-21-3663378538-2047212209-1910426402-1000UA => C: Users Studio AppData Local Dropbox DropboxUpdate.exe [143144 2016-11-04] (Dropbox, Inc. -> Dropbox, Inc.)
Tâche : 103A84D7-C4BE-43E1-8CC7-1B4F979FF65C – System32TâchesE63D80E2-0FF6-43B0-B9B3-49BBAC10277F => C:Windowssystem32pcalua.exe -a G:TéléchargementsWaveLabA WaveLabAspi .exe -d G: Téléchargements WaveLabAspi
Tâche : 1360AFF4-1DC5-48D6-A136-0861104039F2 – System32Tâches EC94FD8-A6A4-4499-8EE7-71329AADE65C => C:Windowssystem32pcalua.exe -a C:UtilisateursStudio Bureau Sécurité HijackThis.exe -d C: Utilisateurs Studio Bureau Sécurité
Tâche : 2C1C1B42-760E-4712-93AB-AAE7B0453456 – System32 Tasks GoogleUpdateTaskMachineUA => C: Program Files (x86) Google Update GoogleUpdate.exe [156104 2020-01-04] (Google LLC -> Google LLC)
Tâche : 3D109EAD-68F8-45F9-8E0E-C9B8FFB673B4 – System32 Tasks NVIDIA GeForce Experience SelfUpdate_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files NVIDIA Experience Ex [3560304 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : 401B1573-647B-46BF-9816-EC305200C346 – System32 Tasks NvProfileUpdaterDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files NVIDIA Corporation Update Core NvP [855408 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : 5002F56B-444E-4131-8132-CF20AA887353 – System32 Tasks GoogleUpdateTaskMachineCore => C: Program Files (x86) Google Update GoogleUpdate.exe [156104 2020-01-04] (Google LLC -> Google LLC)
Tâche : 52FE5B73-3F33-48D6-9DA0-4B6C55DCC087 – System32 Tasks NvNodeLauncher_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files (x86) NVdeIA Corporation Nv [1003888 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : 5BEBBB4B-3D60-4056-B548-10E9404FD698 – System32 Tasks NvBatteryBoostCheckOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files NVIDIA [786800 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C: Program Files NVIDIA Corporation NvBackend NvBatteryBoostCheck" -l 3 -f C: ProgramData NVIDIA NvContainerBatteryBoostCheck.log
Tâche : 5C6A06EB-9159-4E0A-9385-5DADE6EC3268 – System32Tâches58F173F3-815C-40C2-B0D2-688B87CBD607 => C:Windowssystem32pcalua.exe -a "G:TéléchargementsInstaller ReWire & Rex pour Windows Vista.exe "-d G: Téléchargements Install_ReWire _ & _ Rex_for_WindowsVista
Tâche : 647F57F3-AC73-4766-8A10-54AAFAA79B7A – System32TâchesMicrosoftWindowsPLANew Data Collector Set => C:Windowssystem32rundll32.exe C:Windowssystem32pla.dll , PlaHost "Nouvel ensemble de collecte de données" "$ (Arg0)"
Tâche : 64B6F981-9480-47F1-9E9B-E6ABF0FB8151 – System32 Tasks NvTmRep_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files (x86) NVIDv Corporation Update Core [887152 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : 6A3C8E39-B0C3-4F72-AA81-F1C58157DAD5 – System32 Tasks ASUS ASUS RegRun Loader => C: Program Files (x86) ASUS AASP 1.01.05 AsLoader.exe [803968 2010-01-13] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Tâche : 746727A9-F669-4CED-BE1A-B7521FE1021F – System32 Tasks Firefox Default Browser Agent 7FF2029F3253ECF3 => C: Users Studio AppData Roaming bcwgree [41112 2020-01-02] (Microsoft Corporation -> Microsoft Corporation) <==== REMARQUE !
Tâche : 865C2EFF-E44C-4B89-80BB-BE18B3984326 – System32 Tasks Installer_LaunchProduct_StopAd_b760b41a-fb76-4f42-a35d-eae4d2941e82 => C: Program Files (x86) StopAdd
Tâche : 904C916C-ED8F-4462-B132-14B0AE219691 – System32 Tasks AdobeGCInvoker-1.0 => C: Program Files (x86) Common Files Adobe AdobeGCClient AGCInvokerUtility.exe [3022416 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated)
Tâche : 98058EC2-5377-4542-BF9D-EF3D6E38B106 – System32 Tasks NvTmRepCR2_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files (x86) NVIDv Corporation Update Core [887152 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : AB20242B-1685-43E6-8825-A4864E38D2AE – System32Tâches 58FD677-F85D-4C1E-AA22-7F538D5D46F8 => C:Windowssystem32pcalua.exe -a "G:Téléchargementsdotnetfx (1) .exe "-d G: Téléchargements
Tâche : AE1C3E21-FADB-4EAE-82A4-BAE9E9B56671 – System32 Tasks NvProfileUpdaterOnLogon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files NVID [855408 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : B1F67259-5AA4-4F14-873E-E6BFB1DEAF9C – System32 Tasks CCleanerSkipUAC => C: Program Files CCleaner CCleaner.exe [6851288 2016-07-13] (Piriform Ltd -> Piriform Ltd)
Tâche : B787D4A7-0259-4E47-A61A-F37C4195B8D1 – System32 Tasks NvDriverUpdateCheckDaily_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files NVIDIA Corporation [786800 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C: Program Files NVIDIA Corporation NvDriverUpdateCheck" -l 3 -f C: ProgramData NVIDIA NvContainerDriverUpdateCheck.log
Tâche : BBAD5D14-B8CA-4936-9DFB-4F30075CDFE2 – System32Tâches63E3C6E9-EEA4-4497-A762-E4F4B35701F5 => C:Windowssystem32pcalua.exe -a G:Téléchargementsdotnetfx. exe -d G: Téléchargements
Tâche : BBF617B9-D69D-45C1-A3C2-BBAAE218B2A8 – System32 Tasks NvTmRepCR3_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files (x86) NVIDIA Corporation. [887152 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : BE5CCC9B-D641-4CCF-8326-8F997EA9D3B0 – System32 Tasks Microsoft Windows Live SOXE Extractor Definitions Update Task => 3519154C-227E-47F3-9CC9-12C3F05817F1
Tâche : C1A8FE64-4590-418B-BBA5-945F5E2BFD69 – System32 Tasks GoogleUpdateTaskUserS-1-5-21-3663378538-2047212209-1910426402-1000UA => C: Users Studio AppData Local Google GoogleUpdate.exe [153752 2016-11-08] (Google Inc. -> Google Inc.)
Tâche : D03FEE8F-3470-4544-A978-340D5B2705CA – System32 Tasks NvTmRepCR1_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files (x86) NVIDV Corporation Update Core [887152 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : D3EC2034-09D9-4198-9ECE-733BB0D7A659 – System32 Tasks GoogleUpdateTaskUserS-1-5-21-3663378538-2047212209-1910426402-1000Core => C: Users Studio AppData Local Google Update GoogleUpdate .EXE [153752 2016-11-08] (Google Inc. -> Google Inc.)
Tâche : D85E6A0C-5143-4834-B6CA-D53691E70678 – System32 Tasks Red Giant Link => C: Program Files Red Giant Link Red Giant Link.exe
Tâche : ED6D5208-341C-4F00-889C-9B40A61E7C5F – System32 Tasks NvTmMon_ B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C: Program Files (x86) NVIDVT Corporation Update Core [562544 2018-11-16] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : F604EDC3-0667-4868-8FE3-DA1AF381319A – System32Tâches628D8BB2-9EE0-4AD0-97B7-736BAA41DE3D => C:Windowssystem32pcalua.exe -a G:Téléchargementslastpass_x64. exe -d "C: Program Files (x86) Mozilla Firefox"
Tâche : F72520B3-A8EC-4975-9DD5-0AD0EB68E5C7 – System32Tâches2889B547-7754-41FE-A032-8A373344E6B9 => C:Windowssystem32pcalua.exe -a G:TéléchargementsNetFx64. exe -d G: Téléchargements
Tâche : F84C9FE1-8DE4-4221-8206-1E74DC9A9BD5 – System32 Tasks AdobeAAMUpdater-1.0-Studio-PC-Studio => C: Program Files (x86) Common Files Adobe OOBE PDApp UWA UpdaterStartupUtility .EXE [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Tâche : FD506AF1-00F5-495B-A57A-324847E73824 – System32 Tasks DropboxUpdateTaskUserS-1-5-21-3663378538-2047212209-1910426402-1000Core => C: Users Studio AppData Dropbox Dropbox Dropbox . EXE [143144 2016-11-04] (Dropbox, Inc. -> Dropbox, Inc.)
(Si une entrée est incluse dans la liste des correctifs, le fichier de tâche (.job) est déplacé. Le fichier exécuté par la tâche n'est pas déplacé.)
Tâche : C: Windows Tasks DropboxUpdateTaskUserS-1-5-21-3663378538-2047212209-1910426402-1000Core.job => C: Users Studio AppData Local Dropbox Update DropboxUpdate.exe
Tâche : C:WindowsTâchesDropboxUpdateTaskUserS-1-5-21-3663378538-2047212209-1910426402-1000UA.job => C:UtilisateursStudioAppDataLocalDropboxMise à jourDropboxUpdate.exe
(Si un élément est inclus dans la liste de correctifs, il sera supprimé ou restauré à la valeur par défaut s'il s'agit d'un élément de registre.)
Serveur proxy: [S-1-5-21-3663378538-2047212209-1910426402-1000] => 107.172.14.157:80
Winsock : Catalog5 05 C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock : Catalog5 06 C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock : Catalog5 09 C:Program Files (x86)BonjourmdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock : Catalog5-x64 05 C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock : Catalog5-x64 06 C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
Winsock : Catalog5-x64 09 C:Program FilesBonjourmdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip..Interface51CE502F-91A0-461C-BF93-06AB18EEC1EE : [DhcpNameServer] 192.168.1.254
Tcpip..Interface55D0D71C-86FE-4280-9F81-E5B858742EA8 : [DhcpNameServer] 172.16.0.1
Tcpip..InterfaceBBAEEE0D-0B2D-4578-B0C1-9BE4BF841FA0 : [DhcpNameServer] 75.75.75.75 75.75.76.76
FF ProfilePath : C: Users Studio AppData Roaming Prism Profiles 7jjdub7s.default [2012-09-14]
FF ProfilePath : C: Users Studio AppData Roaming Prism brian_80 Profiles 25wqwd1m.default [2013-02-19]
Site Web FF : Prism brian_80 Profiles 25wqwd1m.default -> hxxp : //a1771334.myuniquesee.com/start.php
FF ProfilePath : C: Users Studio AppData Roaming Mozilla Firefox Profiles fgfw3yog.Profile 1 [2016-08-22]
FF Page d'accueil: Mozilla Firefox Profiles fgfw3yog.Profile 1 -> hxxps: //www.malwarebytes.org/restorebrowser/_secureddownload_16_34¶m1=1¶m2=f%3D1%26b%3DFirefox%26cc%3Dus%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzutDtDtDyEyD0AyD0CtC0Ezz0CyE0BtAzytN0D0Tzu0StCyCzyyDtN1L2XzutAtFtByEtFyCtFyCtN1L1Czu1StN1L1G1B1V1N2Y1L1Qzu2StCyBtByBtAzyyC0CtGtCyEzzyBtG0EyEyB0DtGtC0A0AtDtG0A0CyByCyByD0CyEyBzzyDtD2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCtA0BtD0F0A0AyEtGyC0EyE0BtGyE0CyCtCtG0B0B0C0FtGzy0DtAtC0B0CtA0CzyyD0E0B2QtN0A0LzutB % 26cr% 3D122298769% 26a% 3Dwncy_secureddownload_16_34% 26os_ver% 3D6.1% 26os% 3DWindows% 2B7% 2BUltimate
FF ProfilePath : C:UsersStudioAppDataRoamingMozillaFirefoxProfilsa658gq66.default [2021-05-06]
FF user.js : détecté ! => C:UtilisateursStudioAppDataRoamingMozillaFirefoxProfilsa658gq66.defaultuser.js [2011-12-31]
Site Web FF : Mozilla Firefox Profiles a658gq66.default -> hxxp : //www.smmmarket.com/sell/index.php
FF NetworkProxy : Mozilla Firefox Profiles a658gq66.default -> backup.ftp "," 67.214.168.145 "
Extension FF : (TubeBuddy) – C: Users Studio AppData Roaming Mozilla Firefox Profiles a658gq66.default Extensions e389d8c2-5554-4ba2-a36e-ac7a57093130@gmail.com.xpi [2019-11-03]
Extension FF : (Firebug) – C: Users Studio AppData Roaming Mozilla Firefox Profiles a658gq66.default Extensions firebug@software.joehewitt.com.xpi [2017-03-01] [Legacy]
Extension FF : (Web Scraper) – C: Users Studio AppData Roaming Mozilla Firefox Profiles a658gq66.default Extensions 4d22c3b5-8248-4431-ad99-90b1443de5ee .xpi [2019-04-18]
Extension FF : (Restez en sécurité avec CyberGhost VPN Free Proxy) – C: Users Studio AppData Roaming Mozilla Firefox Profiles a658gq66.default Extensions 585280b0-ee78-428a-92c5-3fb3c0b85460. xpi [2021-01-21] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx]
Extension FF : (BetterPrivacy) – C: Users Studio AppData Roaming Mozilla Firefox Profiles a658gq66.default Extensions d40f5e7b-d2cf-4856-b441-cc613eeffbe3 .xpi [2016-11-02] [Legacy]
Plugin FF : @ java.com/DTPlugin, version = 11.171.2 -> C:Program FilesJavajre1.8.0_171bindtpluginnpDeployJava1.dll [2018-04-20] (Oracle America, Inc. -> Oracle Corporation)
FF-plugin : @ java.com/JavaPlugin, version = 11.171.2 -> C:Program FilesJavajre1.8.0_171binplugin2npjp2.dll [2018-04-20] (Oracle America, Inc. -> Oracle Corporation)
FF-plugin : @ microsoft.com / OfficeAuthz, version = 14.0 -> C: PROGRA ~ 1 MICROS ~ 2 Office14 NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
Plugin FF : @ wacom.com/wtPlugin, version = 2.1.0.7 -> C: Program Files TabletPlugins npWacomTabletPlugin.dll [2014-03-25] (Wacom) [File not signed]
FF-plugin : adobe.com/AdobeAAMDetect -> C: Program Files (x86) Common Files Adobe OOBE PDApp CCM Utilities npAdobeAAMDetect64.dll [No File]
Plugin FF : wacom.com/WacomTabletPlugin -> C: Program Files TabletPlugins npWacomTabletPlugin.dll [2014-03-25] (Wacom) [File not signed]
Plugin FF-x32 : @ java.com/DTPlugin, version = 11.171.2 -> C:Program Files (x86)Javajre1.8.0_171bindtpluginnpDeployJava1.dll [2018-04-20] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @ java.com/JavaPlugin, version = 11.171.2 -> C:Program Files (x86)Javajre1.8.0_171binplugin2npjp2.dll [2018-04-20] (Oracle America, Inc. -> Oracle Corporation)
Plugin FF-x32 : @ microsoft.com / OfficeAuthz, version = 14.0 -> C:PROGRA~2MICROS~2Office14NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
Plugin FF-x32 : @ microsoft.com/SharePoint, version = 14.0 -> C:PROGRA~2MICROS~2Office14NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation -> Microsoft Corporation)
Plugin FF-x32 : @ microsoft.com/WLPG, version = 16.4.3508.0205 -> C: Program Files (x86) Windows Live Photo Gallery NPWLPG.dll [2013-02-05] (Microsoft Corporation -> Microsoft Corporation)
Plugin FF-x32 : @ nvidia.com / 3DVision -> C: Program Files (x86) NVIDIA Corporation 3D Vision npnv3dv.dll [2018-03-23] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
Plugin FF-x32 : @ nvidia.com / 3DVisionStreaming -> C: Program Files (x86) NVIDIA Corporation 3D Vision npnv3dvstreaming.dll [2018-03-23] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
Plugin FF-x32 : @videolan.org/vlc, version = 2.1.3 -> C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
Plugin FF-x32 : @videolan.org/vlc, version = 2.2.4 -> C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
Plugin FF-x32 : @videolan.org/vlc, version = 3.0.4 -> C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
Plugin FF-x32 : @videolan.org/vlc, version = 3.0.7.1 -> C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
Plugin FF-x32 : @videolan.org/vlc, version = 3.0.8 -> C:Program Files (x86)VideoLANVLCnpvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
Plugin FF-x32 : @ wacom.com/wtPlugin, version = 2.1.0.7 -> C: Program Files (x86) TabletPlugins npWacomTabletPlugin.dll [2014-03-25] (Wacom) [File not signed]
Plugin FF-x32 : Adobe Reader -> C:Program Files (x86)AdobeReader 10.0ReaderAIRnppdf32.dll [2013-12-18] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Plugin FF-x32 : wacom.com/WacomTabletPlugin -> C: Program Files (x86) TabletPlugins npWacomTabletPlugin.dll [2014-03-25] (Wacom) [File not signed]
FF-plugin HKU S-1-5-21-3663378538-2047212209-1910426402-1000 : @ zoom.us / ZoomVideoPlugin -> C: Users Studio AppData Roaming Zoom bin npzoomplugin.dll [2020-02-19] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
Profil CHR : C: Users Studio AppData Local Google Chrome User Data Default [2021-06-10]
Alertes CHR : Par défaut -> hxxps : //app.mysms.com ; hxxps : //crm.zoho.com ; hxxps : //ferme.turborender.com ; hxxps : //login.fanconnectnow.com ; hxxps : //tweetdeck.twitter.com ; hxxps : //votreproducteurprincipal.amocrm.com
CHR StartupUrls : Par défaut -> "hxxp : //search.easylifeapp.com/? Pid = 34 & src = ch1 & r = 2013/04/17 & hid = 363380504 & lg = EN & cc = US", "hxxp : //www.google.com "
Extension CHR : (Google Drive) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions apdfllckaahabafndbhieahigkjlhalf [2020-10-31]
Extension CHR : (Facebook Auto Poster and Scheduler) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions bgbkbddnmplgngbbipkophmcangiahja [2016-04-14]
Extension CHR : (YouTube) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
Extension CHR : (Recherche Google) – C: Users Studio AppData Local Google Chrome User Data Default Extensions coobgpohoikkiipiblmjeljniedjpjpf [2015-10-29]
Extension CHR : (AHA Music – Browser song finder) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions dpacanjfikmhoddligfbehkpomnbgblf [2021-05-03]
Extension CHR : (AdBlock – meilleur bloqueur de publicités) – C: Users Studio AppData Local Google Chrome User Data Default Extensions gighmmpiobklfepjocnamgkkbiglidom [2021-05-03]
Extension CHR : (Twitter ne suit pas tout) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions gnljhgbcmacopdfedmiaccgfijmnfppo [2018-07-08]
Extension CHR : (TweetDeck par Twitter) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions hbdpomandigafcibbmofojjchbcdagbl [2016-11-18]
Extension CHR : (Extracteur d'e-mails) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions jdianbbpnakhcmfkcckaboohfgnngfcc [2020-08-24]
Extension CHR : (DS Amazon Quick View) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions jkompbllimaoekaogchhkmkdogpkhojg [2021-05-26]
Extension CHR : (InstaG Downloader) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions jnkdcmgmnegofdddphijckfagibepdlb [2018-07-24]
Extension CHR : (émulateur de navigateur mobile) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions lbofcampnkjmiomohpbaihdcbjhbfepf [2017-09-11]
Extension CHR : (Unicorn Smasher) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions lfmmeekapjbfjachdkgabdaoccfclpaa [2020-09-14]
Extension CHR : (Wolf Global – Auto Likes 4.1 (mise à jour)) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions ljpdpanbbfdbjohleahjacncdnohialj [2019-12-01]
Extension CHR : (Lanceur d'applications pour Drive (par Google)) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-02-07]
Extension CHR : (TubeBuddy) – C: Users Studio AppData Local Google Chrome User Data Default Extensions mhkhmbddkmdggbhaaaodilponhnccicb [2021-06-08]
Extension CHR : (Dragon NaturallySpeaking Rich Internet Application Support) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions mikhcaiakabeeokmenglcdebplfdjicn [2013-10-18]
Extension CHR : (YSlow) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions ninejjcohidippngpapiilnmkgllmakh [2016-11-11]
Extension CHR : (Chrome Web Store Payments) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions nmmhkkegccagdldgiimedpiccmgmieda [2021-02-07]
Extension CHR : (Twitter Video Downloader) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions et clodogefbbiblfohagjgdeognjkhfm [2020-01-11]
Extension CHR : (vidIQ Vision pour YouTube) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions pachckjkecffpdphbpmfolblodfkgbhl [2021-06-10]
Extension CHR : (Gmail) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
Extension CHR : (Chrome Media Router) – C: Users Studio AppData Local Google Chrome User Data Standard Extensions pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-06-05]
Profil CHR : C: Users Studio AppData Local Google Chrome User Data Guest Profile [2021-05-26]
Profil CHR : C: Users Studio AppData Local Google Chrome User Data Profile 1 [2021-05-13]
Extension CHR : (Diaporama) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions aapocclcgogkmnckokdopfmhonfmgoek [2018-10-31]
Extension CHR : (Docs) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions aohghmighlieiainnegkcijnfilokake [2018-10-31]
Extension CHR : (Google Drive) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions apdfllckaahabafndbhieahigkjlhalf [2021-02-28]
Extension CHR : (YouTube) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-10-31]
Extension CHR : (Feuille) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions felcaaldnbdncclmgdcncolpebgiejap [2018-10-31]
Extension CHR : (Google Docs offline) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-05-05]
Extension CHR : (Skype) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions lifbcibllhkdhoafpjfnlhfpfgnpldfl [2018-10-31]
Extension CHR : (Lanceur d'applications pour Drive (par Google)) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-02-28]
Extension CHR : (Paiements Chrome Web Store) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions nmmhkkegccagdldgiimedpiccmgmieda [2021-02-28]
Extension CHR : (Gmail) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions pjkljhegncpnkpknbcohdijeoejaedia [2021-02-28]
Extension CHR : (Chrome Media Router) – C: Users Studio AppData Local Google Chrome User Data Profile 1 Extensions pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-05-05]
Profil CHR : C: Users Studio AppData Local Google Chrome User Data Profile 2 [2021-04-02]
Extension CHR : (Diaporama) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions aapocclcgogkmnckokdopfmhonfmgoek [2020-01-04]
Extension CHR : (Docs) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions aohghmighlieiainnegkcijnfilokake [2020-01-04]
Extension CHR : (Google Drive) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions apdfllckaahabafndbhieahigkjlhalf [2021-04-02]
Extension CHR : (YouTube) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-01-04]
Extension CHR : (Feuille) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions felcaaldnbdncclmgdcncolpebgiejap [2020-01-04]
Extension CHR : (Google Docs offline) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-04-02]
Extension CHR : (Skype) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions lifbcibllhkdhoafpjfnlhfpfgnpldfl [2020-01-04]
Extension CHR : (Lanceur d'applications pour Drive (par Google)) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-04-02]
Extension CHR : (Chrome Web Store Payments) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions nmmhkkegccagdldgiimedpiccmgmieda [2021-04-02]
Extension CHR : (Gmail) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions pjkljhegncpnkpknbcohdijeoejaedia [2021-04-02]
Extension CHR : (Chrome Media Router) – C: Users Studio AppData Local Google Chrome User Data Profile 2 Extensions pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-04-02]
Profil CHR : C: Users Studio AppData Local Google Chrome User Data Profile 3 [2021-04-02]
Extension CHR : (diaporamas) – C: Users Studio AppData Local Google Chrome User data Profile 3 Extensions aapocclcgogkmnckokdopfmhonfmgoek [2020-03-06]
Extension CHR : (Docs) – C: Users Studio AppData Local Google Chrome User Data Profile 3 Extensions aohghmighlieiainnegkcijnfilokake [2020-03-06]
Extension CHR : (Google Drive) – C: Users Studio AppData Local Google Chrome User Data Profile 3 Extensions apdfllckaahabafndbhieahigkjlhalf [2021-04-02]
Extension CHR : (YouTube) – C: Users Studio AppData Local Google Chrome User Data Profile 3 Extensions blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-03-06]
Extension CHR : (Feuille) – C: Users Studio AppData Local Google Chrome User Data Profile 3 Extensions felcaaldnbdncclmgdcncolpebgiejap [2020-03-06]
Extension CHR : (Google Docs offline) – C: Users Studio AppData Local Google Chrome User Data Profile 3 Extensions ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-04-02]
Extension CHR : (Skype) – C: Users Studio AppData Local Google Chrome User Data Profile 3 Extensions lifbcibllhkdhoafpjfnlhfpfgnpldfl [2020-03-06]
Extension CHR : (Lanceur d'applications pour Drive (par Google)) – C: Users Studio AppData Local Google Chrome User Data Profile 3 Extensions lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-04-02]
Extension CHR : (Paiements Chrome Web Store) – C: Users Studio AppData Local Google Chrome User Data Profile 3 Extensions nmmhkkegccagdldgiimedpiccmgmieda [2021-04-02]
Extension CHR : (Gmail) – C: Users Studio AppData Local Google Chrome User Data Profile 3 Extensions pjkljhegncpnkpknbcohdijeoejaedia [2021-04-02]
Extension CHR : (Chrome Media Router) – C: Users Studio AppData Local Google Chrome User Data Profile 3 Extensions pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-04-02]
Profil CHR : C: Users Studio AppData Local Google Chrome User Data Profile 4 [2021-04-02]
Extension CHR : (diaporamas) – C: Users Studio AppData Local Google Chrome User data Profile 4 Extensions aapocclcgogkmnckokdopfmhonfmgoek [2021-03-30]
Extension CHR : (Docs) – C: Users Studio AppData Local Google Chrome User Data Profile 4 Extensions aohghmighlieiainnegkcijnfilokake [2021-03-30]
Extension CHR : (Google Drive) – C: Users Studio AppData Local Google Chrome User Data Profile 4 Extensions apdfllckaahabafndbhieahigkjlhalf [2021-03-30]
Extension CHR : (YouTube) – C: Users Studio AppData Local Google Chrome User Data Profile 4 Extensions blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-03-30]
Extension CHR : (Feuille) – C: Users Studio AppData Local Google Chrome User Data Profile 4 Extensions felcaaldnbdncclmgdcncolpebgiejap [2021-03-30]
CHR-utvidelse: (Google Docs offline) – C: Users Studio AppData Local Google Chrome User Data Profile 4 Extensions ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-30]
CHR-utvidelse: (Skype) – C: Users Studio AppData Local Google Chrome User Data Profile 4 Extensions lifbcibllhkdhoafpjfnlhfpfgnpldfl [2021-03-30]
CHR-utvidelse: (Application Launcher For Drive (av Google)) – C: Users Studio AppData Local Google Chrome User Data Profile 4 Extensions lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-03-30]
CHR-utvidelse: (Chrome Web Store Payments) – C: Users Studio AppData Local Google Chrome User Data Profile 4 Extensions nmmhkkegccagdldgiimedpiccmgmieda [2021-03-30]
CHR Extension: (Gmail) – C: Users Studio AppData Local Google Chrome User Data Profile 4 Extensions pjkljhegncpnkpknbcohdijeoejaedia [2021-03-30]
CHR-utvidelse: (Chrome Media Router) – C: Users Studio AppData Local Google Chrome User Data Profile 4 Extensions pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-30]
CHR-profil: C: Brukere Studio AppData Lokal Google Chrome Brukerdata Systemprofil [2021-05-26]
CHR HKU S-1-5-21-3663378538-2047212209-1910426402-1000 SOFTWARE Google Chrome Extensions … Chrome Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
StartMenuInternet: Google Chrome.PEXX2KVHOY2X2X5A5TOWP26JB4 – C: Users Studio AppData Local Google Chrome Application chrome.exe
VIV-profil: C: Brukere Studio AppData Lokal Vivaldi Brukerdata Standard [2019-02-26]
VIV-utvidelse: (Skype) – C: Brukere Studio AppData Lokalt Vivaldi Brukerdata Standard Utvidelser lifbcibllhkdhoafpjfnlhfpfgnpldfl [2019-02-20]
VIV-utvidelse: (Chrome Media Router) – C: Users Studio AppData Local Vivaldi User Data Standard Extensions pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-02-20]
(Hvis en oppføring er inkludert i fikslisten, vil den bli fjernet fra registeret. Filen blir ikke flyttet med mindre den er oppført separat.)
S4 AdobeARMservice; C: Program Files (x86) Common Files Adobe ARM 1.0 armsvc.exe [65432 2013-12-18] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
S4 AdobeUpdateService; C: Program Files (x86) Common Files Adobe Adobe Desktop Common ElevationManager AdobeUpdateService.exe [818136 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.)
S4 AGMService; C: Program Files (x86) Common Files Adobe AdobeGCClient AGMService.exe [3374160 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated)
S4 AGSService; C: Program Files (x86) Common Files Adobe AdobeGCClient AGSService.exe [3103824 2020-03-04] (Adobe Inc. -> Adobe Systems, Incorporated)
S4 Apple Mobile Device Service; C: Program Files Common Files Apple Mobile Device Support AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc. -> Apple Inc.)
S4 Asset Management Daemon; C: Program Files (x86) Common Files Portrait Displays Plugins AM dtsslsrv.exe [134624 2016-11-30] (PORTRAIT DISPLAYS, INC. ->)
S4 AsSysCtrlService; C: Program Files (x86) ASUS AsSysCtrlService 1.00.02 AsSysCtrlService.exe [96896 2011-03-27] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
S4 DigiRefresh; C:Program FilesAvidPro ToolsMMERefresh.exe [117760 2016-03-25] (Avid Technology, Inc.) [File not signed]
S4 digiSPTIService64; C:Program FilesAvidPro Toolsdigisptiservice64.exe [197632 2016-03-25] (Avid Technology, Inc.) [File not signed]
S4 DTSRVC; C:Program Files (x86)Common FilesPortrait DisplaysShareddtsrvc.exe [142816 2016-11-30] (PORTRAIT DISPLAYS, INC. -> Portrait Displays, Inc.)
S4 Focusrite Control Server; C:Program FilesFocusriteFocusrite ControlServerControlServer.exe [1534976 2020-01-08] (Focusrite Audio Engineering Ltd.) [File not signed]
S4 MacDrive8ServiceD; C:Program FilesMediafourMacDrive 8MacDrive8ServiceD.exe [167424 2009-09-02] (Mediafour Corporation) [File not signed]
S4 MBAMService; C:Program FilesMalwarebytesAnti-MalwareMBAMService.exe [6960640 2019-11-25] (Malwarebytes Inc -> Malwarebytes)
S4 PlexUpdateService; C:Program Files (x86)PlexPlex Media ServerPlex Update Service.exe [1439856 2021-02-23] (Plex, Inc. -> Plex, Inc.)
S4 ss_conn_launcher_service; C:Windowssystem32SamsungEasySetupss_conn_launcher.exe [182120 2019-12-17] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S4 ss_conn_service; C:Program FilesSamsungUSB Drivers27_ssconnconnss_conn_service.exe [752224 2019-12-17] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.)
S4 ss_conn_service2; C:Program FilesSamsungUSB Drivers28_ssconn2connss_conn_service2.exe [933304 2019-12-17] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.)
R2 WinDefend; C:Program FilesWindows Defendermpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
S2 wlidsvc; C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDSVC.EXE [2292480 2012-07-17] (Microsoft Corporation -> Microsoft Corp.)
S4 WsAppService3; C:Program Files (x86)WondershareWAF33.0.0.308WsAppService3.exe [83232 2019-06-26] (Wondershare Technology Co.,Ltd -> Wondershare)
S4 WsDrvInst; C:Program Files (x86)WondersharedrfoneLibraryDriverInstallerDriverInstall.exe [130336 2019-12-19] (Wondershare Technology Co.,Ltd -> Wondershare)
S4 PaceLicenseDServices; "C:Program Files (x86)Common FilesPACEServicesLicenseServicesLDSvc.exe" -u hxxps://activation.paceap.com/InitiateActivation
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 7622C635; C:Windowssystem32drivers7622C635.sys [255928 2021-06-10] (Malwarebytes Corporation -> Malwarebytes)
R3 AN983X64; C:WindowsSystem32DRIVERSAN983X64.sys [48128 2005-05-19] (Microsoft Windows Hardware Compatibility Publisher -> Infineon Technologies AG)
S3 androidusb; C:WindowsSystem32Driversandroidusb.sys [32768 2010-04-29] (Microsoft Windows Hardware Compatibility Publisher -> Google Inc)
S3 ASAPIW2K; C:WindowsSysWOW64DriversASAPIW2K.sys [11264 2003-11-28] (Pinnacle Systems GmbH) [File not signed]
S1 AsIO; C:WindowsSysWow64driversAsIO.sys [13440 2011-03-27] (ASUSTeK Computer Inc. -> )
S3 AVID003Rack; C:WindowsSystem32DRIVERSAvid00Rack.sys [516896 2014-02-13] (Avid Technology, Inc. -> Avid)
S3 csrusbfilter; C:WindowsSystem32Driverscsrusbfilter.sys [23752 2012-03-22] (Cambridge Silicon Radio Ltd. -> Cambridge Silicon Radio Limited)
S3 dalwdmservice; C:WindowsSystem32driversdalwdm.sys [162832 2008-12-04] (Avid Technology, Inc. -> Digidesign, A Division of Avid Technology, Inc.)
S3 DroidCam; C:WindowsSystem32DRIVERSdroidcam.sys [33592 2015-05-24] (DEV47 APPS -> Dev47Apps)
S3 DroidCamVideo; C:WindowsSystem32DRIVERSdroidcamvideo.sys [229432 2015-05-24] (DEV47 APPS -> Dev47Apps)
S3 FocusritePCIeSwRoot; C:WindowsSystem32DRIVERSFocusritePCIeSwRoot.sys [88080 2016-11-09] (Focusrite Audio Engineering Ltd. -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSB; C:WindowsSystem32DRIVERSFocusriteUSB.sys [112624 2019-08-02] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSBSwRoot; C:WindowsSystem32DRIVERSFocusriteUSBSwRoot.sys [92048 2019-08-02] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
S3 FocusriteUSB_AUDIO; C:WindowsSystem32driversFocusriteUSBAudio.sys [53944 2019-08-02] (WDKTestCert builds,131886954661028733 -> Focusrite Audio Engineering Ltd.)
S3 MADFULEGACYKEYBOARD; C:WindowsSystem32DRIVERSMAudioLegacyKeyboard_DFU.sys [28680 2010-02-09] (M-Audio -> M-Audio)
S3 MAUSBLEGACYKEYBOARD; C:WindowsSystem32DRIVERSMAudioLegacyKeyboard.sys [196616 2010-02-09] (M-Audio -> M-Audio)
S3 MAUSBMOBILEPREII; C:WindowsSystem32DRIVERSMAudioMobilePreII.sys [464144 2013-05-23] (Avid Technology, Inc. -> M-Audio)
R3 mbamchameleon; C:Windowssystem32driversMbamChameleon.sys [192952 2021-06-10] (Malwarebytes Corporation -> Malwarebytes)
S0 MDFSYSNT; C:WindowsSystem32DriversMDFSYSNT.sys [333416 2009-09-03] (Mediafour Corporation -> Mediafour Corporation)
R0 MDPMGRNT; C:WindowsSystem32DRIVERSMDPMGRNT.SYS [32352 2009-07-06] (Mediafour Corporation -> Mediafour Corporation)
R3 MTsensor; C:WindowsSystem32DRIVERSASACPI.sys [15416 2011-03-27] (ASUSTeK Computer Inc. -> )
R0 mv91xx; C:WindowsSystem32DRIVERSmv91xx.sys [293416 2010-06-30] (Marvell Semiconductor -> Marvell Semiconductor, Inc.)
S3 Netaapl; C:WindowsSystem32DRIVERSnetaapl64.sys [22528 2012-03-26] (Apple Inc.) [File not signed]
S3 RDID1027; C:WindowsSystem32Driversrdwm1027.sys [81920 2009-09-18] (Roland Corporation -> Roland Corporation)
R1 RegHiveRecovery; C:Windowssystem32driversRegHiveRecovery.sys [48304 2014-02-20] (Microsoft Corporation -> Microsoft Corporation)
S3 RTL8187B; C:WindowsSystem32DRIVERSRTL8187B.sys [416768 2009-06-10] (Microsoft Windows -> Realtek Semiconductor Corporation)
S1 SCDEmu; C:WindowsSystem32DriversSCDEmu.sys [91568 2010-04-12] (Fenghua Lee -> PowerISO Computing, Inc.)
S3 SoundGridMIDI; C:WindowsSystem32driversSoundGridMidi.sys [44088 2018-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Waves Audio Ltd.)
S3 SoundGridMIDI; C:WindowsSysWOW64driversSoundGridMidi.sys [22016 2018-09-03] (Waves Audio Ltd.) [File not signed]
S2 SoundGridProtocol; C:WindowsSystem32DRIVERSSoundGridProtocol.sys [118320 2018-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Waves Audio Ltd.)
S2 SoundGridProtocol; C:WindowsSysWOW64DRIVERSSoundGridProtocol.sys [56832 2018-09-03] (Waves Audio Ltd.) [File not signed]
S3 ssudmdm; C:WindowsSystem32DRIVERSssudmdm.sys [166760 2019-12-17] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver2; C:WindowsSystem32Driversss_conn_usb_driver2.sys [43368 2019-12-17] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 tap0901; C:WindowsSystem32DRIVERStap0901.sys [30720 2011-07-13] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 taphss6; C:WindowsSystem32DRIVERStaphss6.sys [42184 2013-06-20] (AnchorFree Inc -> Anchorfree Inc.)
S3 USBAAPL64; C:WindowsSystem32Driversusbaapl64.sys [54784 2015-06-17] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 VBAudioVMVAIOMME; C:WindowsSystem32DRIVERSvbaudio_vmvaio64_win7.sys [41192 2018-08-02] (Vincent Burel -> Windows ® Win 7 DDK provider)
R3 vmulti; C:WindowsSystem32DRIVERSvmulti.sys [10752 2020-04-13] (Microsoft Windows Hardware Compatibility Publisher -> Windows ® Win 7 DDK provider)
S3 WDC_SAM; C:WindowsSystem32DRIVERSwdcsam64_prewin8.sys [31920 2018-02-26] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies)
S3 WIMMount; C:Program Files (x86)Windows Kits8.1Assessment and Deployment KitDeployment Toolsamd64DISMwimmount.sys [40552 2013-08-22] (Microsoft Corporation -> Microsoft Corporation)
R1 zeonetfilter; C:WindowsSystem32driverszeonetfilter.sys [66112 2018-05-09] (Microsoft Windows Hardware Compatibility Publisher -> NOVNIFY LIMITED.)
S3 Tcpz-x64; ??C:UsersStudioAppDataLocalTempTcpz-x64.sys [X] <==== ATTENTION
S3 WinRing0_1_2_0; ??G:Downloadsopenhardwaremonitor-v0.8.0-betaOpenHardwareMonitorOpenHardwareMonitorLib.sys [X]
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
2064-01-01 13:29 – 2064-01-01 13:29 – 000002892 _____ () C:WindowsSysWOW64audcon.sys
2021-06-10 09:03 – 2021-06-10 09:03 – 000255928 _____ (Malwarebytes) C:Windowssystem32Drivers7622C635.sys
2021-06-10 09:02 – 2021-06-10 09:02 – 000000000 ____D C:UsersStudioDesktopmbar
2021-06-10 08:12 – 2021-06-10 08:12 – 008221696 _____ (Microsoft Corporation) C:UsersStudioAppDataRoamingcliconfg.exe
2021-06-10 08:10 – 2021-06-10 08:10 – 000000000 ____D C:UsersStudioAppDataRoamingPnPUnattend
2021-06-10 08:10 – 2021-06-10 08:10 – 000000000 ____D C:UsersStudioAppDataRoamingnbtstat
2021-06-10 08:10 – 2021-06-10 08:10 – 000000000 ____D C:UsersStudioAppDataRoamingmcbuilder
2021-06-10 08:10 – 2021-06-10 08:10 – 000000000 ____D C:UsersStudioAppDataRoamingdfsrdiag
2021-06-10 08:10 – 2021-06-10 08:09 – 002499584 _____ (Microsoft Corporation) C:UsersStudioAppDataRoamingabcd.exe
2021-06-10 08:09 – 2021-06-10 08:10 – 000000000 ____D C:UsersStudioAppDataRoamingonesa
2021-06-10 08:09 – 2021-06-10 08:09 – 000003596 _____ C:Windowssystem32TasksFirefox Default Browser Agent 7FF2029F3253ECF3
2021-06-10 08:09 – 2021-06-10 08:09 – 000000000 ____D C:UsersStudioAppDataRoamingpcaui
2021-06-10 08:09 – 2021-06-10 08:09 – 000000000 ____D C:UsersStudioAppDataRoamingCached files
2021-05-27 00:46 – 2021-05-27 00:46 – 000000000 ____D C:UsersStudioAppDataRoamingMicrosoftWindowsStart MenuProgramsDropbox
2021-05-26 19:43 – 2021-05-26 19:44 – 000406992 _____ C:WindowsMinidump 52621-49452-01.dmp
2021-06-10 11:09 – 2015-10-08 16:42 – 000000000 ____D C:ProgramDataMalwarebytes' Anti-Malware (portable)
2021-06-10 09:13 – 2019-10-01 22:29 – 000000000 ___HD C:UsersPublicDocumentsAdobeGCData
2021-06-10 09:13 – 2019-10-01 22:29 – 000000000 ___HD C:ProgramDataDocumentsAdobeGCData
2021-06-10 09:03 – 2009-07-14 01:13 – 000782578 _____ C:Windowssystem32PerfStringBackup.INI
2021-06-10 09:02 – 2020-01-29 05:19 – 000192952 _____ (Malwarebytes) C:Windowssystem32DriversMbamChameleon.sys
2021-06-10 08:55 – 2012-08-21 11:59 – 000065536 _____ C:Windowssystem32Ikeext.etl
2021-06-10 08:13 – 2011-03-27 06:03 – 000000000 ____D C:UsersStudioAppDataRoaminguTorrent
2021-06-10 08:12 – 2016-03-27 09:44 – 000000000 ____D C:UsersStudioAppDataLocalCrashDumps
2021-06-10 07:44 – 2015-06-18 18:19 – 000000922 _____ C:WindowsTasksDropboxUpdateTaskUserS-1-5-21-3663378538-2047212209-1910426402-1000UA.job
2021-06-10 05:44 – 2015-06-18 18:19 – 000000870 _____ C:WindowsTasksDropboxUpdateTaskUserS-1-5-21-3663378538-2047212209-1910426402-1000Core.job
2021-06-08 15:06 – 2020-02-05 10:51 – 000016560 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2021-06-08 15:06 – 2020-02-05 10:51 – 000016560 ____H C:Windowssystem327B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2021-06-08 14:50 – 2018-04-15 18:53 – 000000000 ____D C:UsersStudioAppDataLocalPlex Media Server
2021-06-08 13:42 – 2011-03-27 09:06 – 000300288 _____ C:UsersStudioAppDataLocalGDIPFONTCACHEV1.DAT
2021-06-08 13:42 – 2009-07-14 00:45 – 005984560 _____ C:Windowssystem32FNTCACHE.DAT
2021-05-27 00:47 – 2011-04-11 21:58 – 000000000 ____D C:UsersStudioAppDataRoamingDropbox
2021-05-26 19:25 – 2016-07-21 15:54 – 000002435 _____ C:UsersStudioAppDataRoamingMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk
2021-06-10 08:10 – 2021-06-10 08:09 – 002499584 _____ (Microsoft Corporation) C:UsersStudioAppDataRoamingabcd.exe
2011-04-12 13:40 – 2011-10-11 11:28 – 000000132 _____ () C:UsersStudioAppDataRoamingAdobe BMP Format CS5 Prefs
2017-03-09 16:23 – 2017-03-09 16:25 – 000000132 _____ () C:UsersStudioAppDataRoamingAdobe BMP Format CS6 Prefs
2013-12-17 10:51 – 2017-01-30 17:20 – 000000132 _____ () C:UsersStudioAppDataRoamingAdobe GIF Format CS6 Prefs
2013-12-09 15:50 – 2017-01-06 08:31 – 000000132 _____ () C:UsersStudioAppDataRoamingAdobe IllExport Filter CS6 Prefs
2011-04-05 17:37 – 2013-02-05 17:16 – 000000132 _____ () C:UsersStudioAppDataRoamingAdobe PNG Format CS5 Prefs
2013-02-05 18:37 – 2018-08-16 17:47 – 000000132 _____ () C:UsersStudioAppDataRoamingAdobe PNG Format CS6 Prefs
2020-01-15 00:18 – 2020-01-02 23:33 – 000041112 ___SH (Microsoft Corporation) C:UsersStudioAppDataRoamingbcwgree
2020-02-14 12:49 – 2020-02-14 12:49 – 000027336 _____ () C:UsersStudioAppDataRoamingComma Separated Values (Windows).ADR
2020-01-15 00:18 – 2020-01-02 23:33 – 000248375 ___SH () C:UsersStudioAppDataRoaminghwwcacj
2019-12-02 22:06 – 2020-09-07 10:50 – 000000028 _____ () C:UsersStudioAppDataRoamingkulerdata.json
2014-05-29 13:44 – 2014-05-29 13:44 – 000000248 _____ () C:UsersStudioAppDataRoamingltpReg.txt
2018-08-08 15:26 – 2020-07-23 15:06 – 000000032 _____ () C:UsersStudioAppDataRoamingmsregsvv.dll
2016-05-06 07:22 – 2006-11-30 14:49 – 000368640 _____ (Propellerhead Software AB) C:UsersStudioAppDataRoamingReWire.dll
2016-05-06 07:22 – 2006-11-30 14:49 – 000233472 _____ (Propellerhead Software AB) C:UsersStudioAppDataRoamingREX Shared Library.dll
2013-10-19 09:46 – 2013-10-19 09:46 – 000001275 _____ () C:UsersStudioAppDataRoamingSAS7_000.DAT
2018-08-02 19:39 – 2020-03-30 06:55 – 000004590 _____ () C:UsersStudioAppDataRoamingVoiceMeeterDefault.xml
2016-08-22 18:02 – 2016-08-22 18:02 – 000000047 _____ () C:UsersStudioAppDataRoamingWB.CFG
2013-12-17 11:10 – 2019-02-22 17:26 – 000001456 _____ () C:UsersStudioAppDataLocalAdobe Save for Web 13.0 Prefs
2011-05-28 14:53 – 2019-10-22 11:32 – 000012288 _____ () C:UsersStudioAppDataLocalDCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-12-27 09:06 – 2020-02-04 15:08 – 000000081 _____ () C:UsersStudioAppDataLocalFILM_AE_LogFile.txt
2018-09-27 02:00 – 2019-11-11 22:26 – 000002460 _____ () C:UsersStudioAppDataLocaloobelibMkey.log
2014-04-11 17:25 – 2018-07-07 07:48 – 000000600 _____ () C:UsersStudioAppDataLocalPUTTY.RND
2011-04-25 11:04 – 2020-03-30 11:07 – 000007606 _____ () C:UsersStudioAppDataLocalResmon.ResmonCfg
2015-10-07 15:37 – 2015-10-07 15:37 – 000982016 _____ (Robert Simpson, et al.) C:UsersStudioAppDataLocalSystem.Data.SQLite.dll
2011-11-21 07:12 – 2011-11-21 07:14 – 000000000 _____ () C:UsersStudioAppDataLocal46991482-5313-473E-BB82-CAB55F0A16CC
2011-11-21 07:14 – 2011-11-21 07:14 – 000000000 _____ () C:UsersStudioAppDataLocalA6F03F9A-8253-419A-A674-67D54F169533
safeboot: Minimal => The system is configured to boot to Safe Mode <==== ATTENTION
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-06-2021
Ran by Studio (10-06-2021 11:16:32)
Running from G:Downloads
Windows 7 Ultimate Service Pack 1 (X64) (2011-03-27 01:47:24)
Boot Mode: Safe Mode (with Networking)
==========================================================
==================== Accounts: =============================
27E11E55ED874810B495 (S-1-5-21-3663378538-2047212209-1910426402-1015 – Limited – Enabled)
Administrator (S-1-5-21-3663378538-2047212209-1910426402-500 – Administrator – Disabled)
D2EAF56527BC496C9792 (S-1-5-21-3663378538-2047212209-1910426402-1013 – Limited – Enabled)
Guest (S-1-5-21-3663378538-2047212209-1910426402-501 – Limited – Enabled)
HomeGroupUser$ (S-1-5-21-3663378538-2047212209-1910426402-1007 – Limited – Enabled)
Studio (S-1-5-21-3663378538-2047212209-1910426402-1000 – Administrator – Enabled) => C:UsersStudio
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AS: Windows Defender (Enabled – Out of date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKUS-1-5-21-3663378538-2047212209-1910426402-1000…uTorrent) (Version: 3.4.1.31139 – BitTorrent Inc.)
AAS – Lounge Lizard EP-4 (HKLM-x32…Lounge Lizard EP-4) (Version: – Applied Acoustics Systems)
Adobe After Effects CC 2019 (HKLM-x32…AEFT_16_0) (Version: 16.0 – Adobe Systems Incorporated)
Adobe Bridge CC 2019 (HKLM-x32…KBRG_9_0) (Version: 9.0 – Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32…Adobe Creative Cloud) (Version: 3.7.0.270 – Adobe Systems Incorporated)
Adobe Illustrator CC 2019 (HKLM-x32…ILST_23_0_0_530) (Version: 23.0 – Adobe Systems Incorporated)
Adobe Media Encoder CC 2019 (HKLM-x32…AME_13_0) (Version: 13.0 – Adobe Systems Incorporated)
Adobe Media Player (HKLM-x32…com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.8 – Adobe Systems Incorporated)
Adobe Photoshop 2021 Patch (HKLM-x32…86AB4DA9-6987-419F-A237-66EB38496854) (Version: 1.0.0 – OSTeam)
Adobe Photoshop CC 2019 (HKLM-x32…PHSP_20_0_1) (Version: 20.0.1 – Adobe Systems Incorporated)
Adobe Pixel Bender Toolkit 2 (HKLM-x32…D5CC77BE-BC5B-424E-8E45-DF60AFF7BE9C) (Version: 2.0 – Adobe Systems Incorporated)
Adobe Premiere Pro CC 2019 (HKLM-x32…PPRO_13_0) (Version: 13.0 – Adobe Systems Incorporated)
Adobe Reader X (10.1.9) (HKLM-x32…AC76BA86-7AD7-1033-7B44-AA1000000001) (Version: 10.1.9 – Adobe Systems Incorporated)
Adobe Story (HKLM-x32…com.adobe.AdobeStory.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.0.571 – Adobe Systems Incorporated)
Adobe Update Management Tool (HKLM-x32…534A7A1A-7102-4AF6-23EA-7CD279C7B625_is1) (Version: 8.0 – PainteR)
aescripts + aeplugins components (HKLM-x32…58C0BFF8-3511-4EF6-A2B9-D7E85220F3C4) (Version: 1.0.0.0 – aescripts + aeplugins)
AI Suite (HKLM-x32…310BC5E2-31AF-49BB-904D-E71EB93645DC) (Version: 1.06.20 – )
Alesis VI49 Editor (HKLM-x32…48938710-E602-4746-AA5C-1A2AA3C0F0CB) (Version: 1.0.1 – Alesis)
Ample Bass J II version 2.2.0 (HKLM-x32…