
Enregistreur de frappe potentiel ? – Aide à la suppression des virus, chevaux de Troie, logiciels espions et logiciels malveillants – Resoudre les problemes d’un serveur MineCraft
[bzkshopping keyword= »Minecraft » count= »8″ template= »grid »]
Bonjour,
J'ai eu mes informations de carte de crédit compromises 1 à 2 fois par an au cours des dernières années, et j'ai peur qu'un keylogger puisse être une cause potentielle. J'espérais que quelqu'un pourrait examiner mon journal pour tout problème.
Mon PC fonctionne généralement bien, aucun comportement manifestement suspect.
Merci!
FRST.txt
Résultat de l'analyse de l'outil d'analyse de récupération Farbar (FRST) (x64) Version : 19-07-2021 01
Exécuté par snowf (administrateur) sur DESKTOP-JPSPHV0 (Dell Inc. XPS 8930) (26-07-2021 21:16:53)
Exécuté depuis E:Téléchargements
Profils chargés : snowf
Plate-forme : Windows 10 Pro Version 20H2 19042.1052 (X64) Langue : Anglais (États-Unis)
Navigateur par défaut : Chrome
Mode de démarrage : Normal
==================== Processus (liste blanche) ==================
(Si une entrée est incluse dans la fixlist, le processus sera fermé. Le fichier ne sera pas déplacé.)
() [File not signed] C:Program FilesDropItDropIt.exe
() [File not signed] C:Program FilesPrivate Internet Accesspia-service.exe
(Adobe Inc. -> ) C:Program Files (x86)AdobeAdobe SyncCoreSyncCoreSync.exe
(Adobe Inc. -> Adobe Inc) C:Program Files (x86)Common FilesAdobeAdobe Desktop CommonIPCBoxAdobeIPCBroker.exe
(Adobe Inc. -> Adobe Inc.) C:Program Files (x86)Common FilesAdobeAdobe Desktop CommonADSAdobe Desktop Service.exe
(Adobe Inc. -> Adobe Inc.) C:Program Files (x86)Common FilesAdobeAdobe Desktop CommonElevationManagerAdobe Installer.exe
(Adobe Inc. -> Adobe Inc.) C:Program Files (x86)Common FilesAdobeAdobe Desktop CommonElevationManagerAdobeUpdateService.exe
(Adobe Inc. -> Adobe Inc.) C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe
(Adobe Inc. -> Adobe Inc.) C:Program FilesAdobeAdobe Creative CloudACCCreative Cloud Helper.exe <2>
(Adobe Inc. -> Adobe Systems Inc.) C:Program Files (x86)AdobeAcrobat 2017Acrobatacrotray.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:Program FilesAdobeAdobe Creative Cloud ExperienceCCXProcess.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:Program FilesCommon FilesAdobeCreative Cloud LibrariesCCLibrary.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:Program Files (x86)Common FilesAdobeAdobeGCClientAGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:Program Files (x86)Common FilesAdobeAdobeGCClientAGSService.exe
(Adobe Systems Incorporated) C:Program FilesWindowsAppsAdobeNotificationClient_2.0.1.8_x86__enpm4xejd91ycAdobeNotificationClient.exe
(Code42 Software Inc -> Code42 Software, Inc.) C:Program FilesCode42Code42Service.exe
(Code42 Software Inc -> Code42 Software, Inc.) C:Program FilesCode42electronCode42Desktop.exe <4>
(Dell Inc -> ) C:Program Files (x86)DellUpdateServiceServiceShell.exe
(Elaborate Bytes AG -> Elaborate Bytes AG) C:Program Files (x86)Elaborate BytesVirtualCloneDriveVCDDaemon.exe
(Garmin International, Inc. -> Garmin Ltd. ou ses filiales) C:Program Files (x86)GarminExpressexpress.exe
(Google LLC -> ) C:Program FilesGoogleDrivegoogledrivesync.exe <2>
(Google LLC -> Google LLC) C:Program Files (x86)GoogleChromeApplicationchrome.exe <47>
(Google LLC -> Google LLC) C:Program Files (x86)GoogleUpdate1.3.36.92GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:Program Files (x86)GoogleUpdate1.3.36.92GoogleCrashHandler64.exe
(Hewlett-Packard Company -> HP Development Company, L.P.) C:Program Files (x86)HPStatusAlertsbinHPStatusAlerts.exe
(HP) [File not signed] C:Program Files (x86)HPHPLaserJetServiceHPLaserJetService.exe
(Intel Corporation -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositorysgx_psw.inf_amd64_69d915519e0a2ac8aesm_service.exe
(Groupe Intel® Embedded Subsystems and IP Blocks -> Intel Corporation) C:Program Files (x86)IntelIntel® Management Engine ComponentsLMSLMS.exe
(Groupe sous-systèmes et blocs IP intégrés Intel® -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositorydal.inf_amd64_ffc75848a6342fdfjhi_service.exe
(Intel® pGFX 2020 -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryigdlh64.inf_amd64_2dadf80722c4f751igfxCUIService.exe
(Intel® pGFX 2020 -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryigdlh64.inf_amd64_2dadf80722c4f751igfxEM.exe
(Intel® pGFX 2020 -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryigdlh64.inf_amd64_2dadf80722c4f751IntelCpHDCPSvc.exe
(Intel® pGFX 2020 -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryigdlh64.inf_amd64_2dadf80722c4f751IntelCpHeciSvc.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:Program FilesIntelIntel® Rapid Storage TechnologyIAStorDataMgrSvc.exe
(Intel® Rapid Storage Technology -> Intel Corporation) C:Program FilesIntelIntel® Rapid Storage TechnologyIAStorIcon.exe
(Technologie de stockage Intel® Rapid -> Intel Corporation) C:WindowsSystem32DriverStoreFileRepositoryiaahcic.inf_amd64_ffd80069472091bcRstMwService.exe
(Intel® Trust Services -> Intel® Corporation) C:WindowsSystem32DriverStoreFileRepositoryiclsclient.inf_amd64_75ffca5eec865b4blibSocketHeciServer.exe
(Malwarebytes Inc -> Malwarebytes) C:Program FilesMalwarebytesAnti-MalwareMBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:Program FilesMalwarebytesAnti-Malwarembamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:Program Files (x86)Microsoft OfficerootOffice16ONENOTEM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:Program Files (x86)Microsoft OfficerootOffice16OUTLOOK.EXE
(Microsoft Corporation -> Microsoft Corporation) C:Program FilesCommon Filesmicrosoft sharedClickToRunOfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:Program Filesdotnetdotnet.exe
(Microsoft Corporation -> Microsoft Corporation) C:UserssnowfAppDataLocalMicrosoftOneDriveOneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:WindowsMicrosoft.NETFramework64v3.0WPFPresentationFontCache.exe
(Microsoft Corporation -> Microsoft® Corporation) C:Program Files (x86)Microsoft Money PlusMNYCoreFilesmsmoney.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsImmersiveControlPanelSystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32oobeUserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:WindowsSystem32wiawow64.exe
(Éditeur de compatibilité matérielle Microsoft Windows -> Fournisseur DDK Windows ® Win 7) C:WindowsSystem32driversAdminService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2106.6-0MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2106.6-0NisSrv.exe
(Node.js Foundation -> Node.js) C:Program FilesAdobeAdobe Creative Cloud Experiencelibsnode.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:Program Files (x86)NVIDIA CorporationNvTelemetryNvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:Program FilesNVIDIA CorporationDisplay.NvContainerNVDisplay.Container.exe <2>
(OpenJS Foundation -> Node.js) C:Program FilesCommon FilesAdobeCreative Cloud Librarieslibsnode.exe
(Oracle America, Inc. -> Oracle Corporation) C:Program Files (x86)Common FilesJavaJava Updatejusched.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:Program FilesMacriumCommonMacriumService.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:Program FilesMacriumCommonReflectMonitor.exe
(Paramount Software UK Ltd -> Paramount Software UK Ltd) C:Program FilesMacriumCommonReflectUI.exe
(PFU LIMITÉ) [File not signed] C:Program Files (x86)PFUScanSnapDriverPfuSsMon.exe
(Accès Internet privé incorporé) [File not signed] C:Program FilesPrivate Internet Accesspia-client.exe
(Qualcomm Atheros -> Qualcomm Technologies Inc.) C:WindowsSystem32driversQcomWlanSrvx64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:Program FilesRealtekAudioHDARAVBg64.exe <2>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:Program FilesRealtekAudioHDARtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:Program FilesRealtekAudioHDARtkNGUI64.exe
(Rivet Networks LLC -> Rivet Networks LLC) C:WindowsSystem32driversRivetNetworksKillerxTendUtility.exe
(Rivet Networks LLC -> Rivet Networks) C:WindowsSystem32driversRivetNetworksKillerKillerAnalyticsService.exe
(Rivet Networks LLC -> Rivet Networks) C:WindowsSystem32driversRivetNetworksKillerKillerNetworkService.exe
(Rivet Networks LLC -> Rivet Networks, LLC.) C:WindowsSystem32driversRivetNetworksKillerxTendUtilityService.exe
(SEIKO EPSON Corporation -> Seiko Epson Corporation) C:WindowsSystem32escsvc64.exe
(Synology Inc. -> ) [File not signed] C:Program Files (x86)SynologyAssistantUsbClientService.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:Program Files (x86)TeamViewerTeamViewer.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:Program Files (x86)TeamViewerTeamViewer_Service.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:Program Files (x86)TeamViewertv_w32.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:Program Files (x86)TeamViewertv_x64.exe
(Tyrrrz) [File not signed] C:Program Files (x86)LightBulbLightBulb.exe
(Waves Inc -> Waves Audio Ltd.) C:Program FilesWavesMaxxAudioWavesSvc64.exe
(Waves Inc -> Waves Audio Ltd.) C:Program FilesWavesMaxxAudioWavesSysSvc64.exe
==================== Registre (liste blanche) ====================
(Si une entrée est incluse dans la liste de correctifs, l'élément de registre sera restauré par défaut ou supprimé. Le fichier ne sera pas déplacé.)
HKLM…Exécuter : [RTHDVCPL] => C:Program FilesRealtekAudioHDARtkNGUI64.exe [11102816 2021-01-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM…Exécuter : [RtHDVBg_PushButton] => C:Program FilesRealtekAudioHDARAVBg64.exe [3618096 2021-01-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM…Exécuter : [IAStorIcon] => C:Program FilesIntelIntel® Rapid Storage TechnologyIAStorIcon.exe [321096 2017-07-25] (Technologie de stockage Intel® Rapid -> Intel Corporation)
HKLM…Exécuter : [Reflect UI] => C:Program FilesMacriumCommonReflectUI.exe [3465608 2017-10-01] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
HKLM…Exécuter : [AdobeAAMUpdater-1.0] => C:Program Files (x86)Common FilesAdobeOOBEPDAppUWAUpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM…Exécuter : [AdobeGCInvoker-1.0] => C:Program Files (x86)Common FilesAdobeAdobeGCClientAGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM…Exécuter : [Code42Tray] => C:Program FilesCode42electronCode42Desktop.exe [90355120 2021-05-24] (Code42 Software Inc -> Code42 Software, Inc.)
HKLM…Exécuter : [Logitech Download Assistant] => C:WindowsSystem32LogiLDA.dll [3942864 2016-10-13] (Logitech -> Logitech, Inc.)
HKLM…Exécuter : [WavesSvc] => C:Program FilesWavesMaxxAudioWavesSvc64.exe [1236688 2020-12-04] (Waves Inc -> Waves Audio Ltd.)
HKLM-x32…Exécuter : [StatusAlerts] => C:Program Files (x86)HPStatusAlertsbinHPStatusAlerts.exe [329992 2015-06-17] (Hewlett-Packard Company -> HP Development Company, L.P.)
HKLM-x32…Exécuter : [Adobe Creative Cloud] => C:Program FilesAdobeAdobe Creative CloudACCCreative Cloud.exe [779440 2021-04-24] (Adobe Inc. -> Adobe Inc.)
HKLM-x32…Exécuter : [Acrobat Assistant 8.0] => C:Program Files (x86)AdobeAcrobat 2017AcrobatAcrotray.exe [1996512 2021-06-26] (Adobe Inc. -> Adobe Systems Inc.)
HKLM-x32…Exécuter : [SunJavaUpdateSched] => C:Program Files (x86)Common FilesJavaJava Updatejusched.exe [645648 2019-10-05] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32…Exécuter : [VirtualCloneDrive] => C:Program Files (x86)Elaborate BytesVirtualCloneDriveVCDDaemon.exe [105280 2020-02-23] (Elaborate Bytes AG -> Elaborate Bytes AG)
HKLM-x32…Exécuter : [] => [X]
HKLM-x32…Exécuter : [Adobe CCXProcess] => C:Program Files (x86)AdobeAdobe Creative Cloud ExperienceCCXProcess.exe [129288 2021-04-24] (Adobe Inc. -> )
HKUS-1-5-21-1619883276-1864714895-2913937634-1001…Exécuter : [GoogleDriveSync] => C:Program FilesGoogleDrivegoogledrivesync.exe [49925280 2021-06-18] (Google LLC -> )
HKUS-1-5-21-1619883276-1864714895-2913937634-1001…Exécuter : [Private Internet Access] => C:Program FilesPrivate Internet Accesspia-client.exe [4391936 2020-09-04] (Accès Internet privé incorporé) [File not signed]
HKUS-1-5-21-1619883276-1864714895-2913937634-1001…Exécuter : [GarminExpress] => C:Program Files (x86)GarminExpressexpress.exe [30885360 2020-03-04] (Garmin International, Inc. -> Garmin Ltd. ou ses filiales)
HKUS-1-5-21-1619883276-1864714895-2913937634-1001…Exécuter : [LightBulb] => C:Program Files (x86)LightBulbLightBulb.exe [90624 2021-06-14] (Tyrrrz) [File not signed]
HKLM…PrintMonitorsAdobe PDF Port Monitor : C:Windowssystem32AdobePDF.dll [65176 2021-05-24] (Adobe Inc. -> Adobe Systems Inc)
HKLM…PrintMonitorsPort TCP/IP standard HP : C:Windowssystem32HpTcpMon.dll [331264 2009-09-16] (Hewlett Packard) [File not signed]
HKLMSoftwareMicrosoftActive SetupComposants installés : [OpenVPN_UserSetup] -> reg supprimer HKCUSoftwareMicrosoftWindowsCurrentVersionRun /v OPENVPN-GUI /f
HKLMSoftwareMicrosoftActive SetupComposants installés : [8A69D345-D564-463c-AFF1-A69D9E530F96] -> C:Program Files (x86)GoogleChromeApplication92.0.4515.107Installerchrmstp.exe [2021-07-26] (Google LLC -> Google LLC)
Démarrage : C:ProgramDataMicrosoftWindowsStart MenuProgramsStartupScanSnap Manager.lnk [2017-12-07]
Raccourci cible : ScanSnap Manager.lnk -> C:Program Files (x86)PFUScanSnapDriverPfuSsMon.exe (PFU LIMITED) [File not signed]
Démarrage : C:UserssnowfAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupDropIt.lnk [2019-04-10]
Raccourci cible : DropIt.lnk -> C:Program FilesDropItDropIt.exe () [File not signed]
Démarrage : C:UserssnowfAppDataRoamingMicrosoftWindowsStart MenuProgramsStartupSend to OneNote.lnk [2021-07-10]
ShortcutTarget : Envoyer à OneNote.lnk -> C:Program Files (x86)Microsoft OfficerootOffice16ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
GroupPolicy : Restriction ? <==== ATTENTION
Politiques : C:ProgramDataNTUSER.pol : Restriction <==== ATTENTION
==================== Tâches planifiées (liste blanche) ============
(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé à moins qu'il ne soit répertorié séparément.)
Tâche : 01A4CAA1-F331-4E51-9BAC-4D00F1CDB684 – System32TasksSamsungMagician => C:Program Files (x86)SamsungSamsung MagicianSamsungMagician.exe [1112576 2017-05-19] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co. Ltd.)
Tâche : 0637D8DF-3967-443A-B094-203BF0A5A1E2 – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Cleanup => C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2106.6-0MpCmdRun. EXE [644888 2021-07-09] (Éditeur Microsoft Windows -> Microsoft Corporation)
Tâche : 0686C08A-2D9E-499E-9FE1-D8CEEE88B8FD – System32TasksAdobe Acrobat Update Task => C:Program Files (x86)Common FilesAdobeARM1.0AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Tâche : 06E6DD3F-9CA0-461A-B164-06E132DBDC70 – System32TasksNvTmMon_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmMon.exe [654784 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : 08B43FFF-1233-4065-BAD7-118B61BA005D – System32TasksMacrium-Backup-B6D3C6CD-3FDA-4BFF-858A-A2D44EC69DA0 => C:program filesmacriumreflectReflect.exe [1167336 2017-11-21] (Paramount Software UK Ltd -> Paramount Software UK Ltd) -> -e -w "E:Mes documentsReflectC Drive Backup.xml" -full -g B6D3C6CD-3FDA-4BFF-858A-A2D44EC69DA0
Tâche : 0F8CA219-4BEE-4D46-BE22-F051487C0BF2 – System32TasksNvTmRepCR3_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmRep [934848 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : 12E279C2-078B-45EB-A237-678B53DD2633 – System32TasksMozillaFirefox Default Browser Agent 308046B0AF4A39CB => C:Program FilesMozilla Firefoxdefault-browser-agent.exe [123600 2020-08-12] (Mozilla Corporation -> Fondation Mozilla)
Tâche : 131D1E5F-1D54-4F62-922E-89C9F229D994 – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Scheduled Scan => C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2106.6-0MpCmdRun .EXE [644888 2021-07-09] (Éditeur Microsoft Windows -> Microsoft Corporation)
Tâche : 1DC4E091-F559-45ED-8759-BD60030EF383 – System32TasksMicrosoftOfficeOffice Automatic Updates 2.0 => C:Program FilesCommon FilesMicrosoft SharedClickToRunOfficeC2RClient.exe [23253376 2021-07-23] (Microsoft Corporation -> Microsoft Corporation)
Tâche : 20013E63-EDDD-40A0-A8ED-33CA3E9D7345 – System32TasksNvTmRepCR2_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmRep [934848 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : 2906B942-B3E8-4487-820E-1B7A928E460B – System32TasksHPLJCustParticipation => C:Program Files (x86)HPHPLJUTHPLJUTSCH.exe [89840 2014-10-19] (Entreprise Hewlett-Packard -> Hewlett Packard)
Tâche : 2CB72302-9FDA-4325-9FCB-E7C5B184F766 – System32TasksMicrosoftOfficeOfficeTelemetryAgentFallBack2016 => C:Program Files (x86)Microsoft OfficerootOffice16msoia.exe [4282288 2021-07-26] (Microsoft Corporation -> Microsoft Corporation)
Tâche : 2DBA4CB3-BDCD-4C61-963A-5F47012CD3AE – System32TasksMacrium-Backup-06E8AA25-E7B0-46D6-84EF-1165A64819CF => C:program filesmacriumreflectReflect.exe [1167336 2017-11-21] (Paramount Software UK Ltd -> Paramount Software UK Ltd) -> -e -w "E:Mes documentsReflectC Drive Backup.xml" -diff -g 06E8AA25-E7B0-46D6-84EF-1165A64819CF
Tâche : 3774755A-067F-4927-8A40-8237293B7219 – System32TasksNvTmRepCR1_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmRep.exe. [934848 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : 395BDB87-6C8A-40BA-AE88-98A721F95AB3 – System32TasksNVIDIA GeForce Experience SelfUpdate_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program FilesNVIDIA CorporationNVIDIA GeForce ExperienceNVIDIA Experience.exe [3297728 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : 3E27521C-3874-4E9A-8DA9-7323E4AE8375 – System32TasksGoogleUpdateTaskMachineUA => C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [153168 2017-12-05] (Google Inc -> Google Inc.)
Tâche : 4042D642-1424-4B13-BA04-9B3CBB5F8489 – System32TasksMicrosoftOfficeOffice Feature Updates => C:Program Files (x86)Microsoft OfficerootOffice16sdxhelper.exe [113992 2021-07-26] (Microsoft Corporation -> Microsoft Corporation)
Tâche : 43DFDBEF-BBAB-4B38-AAE2-FE8166DADFF7 – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Cache Maintenance => C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2106.6-0MpCmdRun .EXE [644888 2021-07-09] (Éditeur Microsoft Windows -> Microsoft Corporation)
Tâche : 6943EC7C-61B5-41EE-8F2F-4F0D7E3BD1B2 – System32TasksAdobe Flash Player PPAPI Notifier => C:WINDOWSSysWOW64MacromedFlashFlashUtil32_32_0_0_293_pepper.exe [1453112 2019-11-30] (Adobe Inc. -> Adobe)
Tâche : 70DFA973-5965-4246-877F-64069EFBE92E – System32TasksAdobeGCInvoker-1.0 => C:Program Files (x86)Common FilesAdobeAdobeGCClientAGCInvokerUtility.exe [3412680 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated)
Tâche : 72B76CE6-BAE3-4286-AC21-9A31E1F98AF9 – System32TasksMicrosoftOfficeOffice Fonctionnalités d'ouverture de session => C:Program Files (x86)Microsoft OfficerootOffice16sdxhelper.exe [113992 2021-07-26] (Microsoft Corporation -> Microsoft Corporation)
Tâche : 782F112A-0EA1-4074-A468-6C361EEDE9D2 – System32TasksNvTmRep_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationUpdate CoreNvTmRep.exe [934848 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : 7F9A6699-867A-4C89-B4E8-60C3F13E2A00 – System32TasksAdobeAAMUpdater-1.0-MicrosoftAccount-snowfiend131@hotmail.com => C:Program Files (x86)Common FilesAdobeOOBEPDAppUWA UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Tâche : A354D39A-43F3-47BA-84D1-98B3E6931CA4 – System32TasksNvDriverUpdateCheckDaily_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program FilesNVIDIA CorporationNvContainer.exenvcon [764352 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:Program FilesNVIDIA CorporationNvDriverUpdateCheck" -l 3 -f C:ProgramDataNVIDIANvContainerDriverUpdateCheck.log
Tâche : BDD806E2-B68F-436F-AA0A-C3F4EFBF73FB – System32TasksNvNodeLauncher_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program Files (x86)NVIDIA CorporationNvNodelanvnocher [982464 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : BE97AAC4-4A63-4699-AFF2-5CDD7FB90D6A – System32Tasks2BrightSparksSyncBackFreeDESKTOP-JPSPHV0-snowfSyncBackFree Weekly Backup => C:Program Files (x86)2BrightSparksSyncBackFreeSyncBackFree.exe [27496504 2017-12-04] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte. Ltd.)
Tâche : C43002FF-A947-42C8-9D5F-3963E5B5E76A – System32TasksMicrosoftOfficeOffice ClickToRun Service Monitor => C:Program FilesCommon FilesMicrosoft SharedClickToRunOfficeC2RClient.exe [23253376 2021-07-23] (Microsoft Corporation -> Microsoft Corporation)
Tâche : C8307371-1E0C-4401-BB59-C6207681409E – System32TasksNvBatteryBoostCheckOnLogon_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program FilesNVIDIA CorporationNvContainernvcontainer.exe. [764352 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:Program FilesNVIDIA CorporationNvBackendNvBatteryBoostCheck" -l 3 -f C:ProgramDataNVIDIANvContainerBatteryBoostCheck.log
Tâche : C87D9564-D9B3-460F-9B2A-A0C05E0A6833 – System32TasksGoogleUpdateTaskMachineCore => C:Program Files (x86)GoogleUpdateGoogleUpdate.exe [153168 2017-12-05] (Google Inc -> Google Inc.)
Tâche : D097DC51-C82D-4376-883A-B261F71B160B – System32TasksMicrosoftWindowsWindows DefenderWindows Defender Verification => C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2106.6-0MpCmdRun. EXE [644888 2021-07-09] (Éditeur Microsoft Windows -> Microsoft Corporation)
Tâche : D0B055E5-6B8E-454A-B93B-4003A49AD1B1 – System32Tasks2BrightSparksSyncBackFreeDESKTOP-JPSPHV0-snowfSyncBackFree Daily Backup => C:Program Files (x86)2BrightSparksSyncBackFreeSyncBackFree.exe [27496504 2017-12-04] (2BrightSparks Pte. Ltd. -> 2BrightSparks Pte. Ltd.)
Tâche : D1E18CA3-9873-400A-A92E-B6650B532646 – System32TasksCCleanerSkipUAC => C:Program FilesCCleanerCCleaner.exe [13797712 2018-09-10] (Piriform Ltd -> Piriform Ltd)
Tâche : D8769835-C439-4E0B-955A-4578A635907B – System32TasksNvProfileUpdaterDaily_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program FilesNVIDIA CorporationUpdate CoreNvexeProfileUpdater [857024 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : D9413D12-D56D-41E9-A11F-DBAAFC6BADDA – System32TasksNvProfileUpdaterOnLogon_B2FE1952-0186-46C3-BAEC-A80AA35AC5B8 => C:Program FilesNVIDIA CorporationUpdate CoreNvexeProfileUpdate [857024 2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Tâche : DCDB5CF0-7CDC-40BD-8A50-8DCA5E496DE1 – System32TasksCCleaner Update => C:Program FilesCCleanerCCUpdate.exe [619416 2019-02-04] (Piriform Software Ltd -> Piriform Software Ltd)
Tâche : E8DC90AD-79B0-4B34-B528-DA7EA87312B7 – System32TasksGarminUpdaterTask => C:Program Files (x86)GarminExpress SelfUpdaterExpressSelfUpdater.exe [40432 2020-03-04] (Garmin International, Inc. -> )
Tâche : F7259860-D80B-4B1D-AB7B-D6418E1BA24E – System32TasksMicrosoftOfficeOfficeTelemetryAgentLogOn2016 => C:Program Files (x86)Microsoft OfficerootOffice16msoia.exe [4282288 2021-07-26] (Microsoft Corporation -> Microsoft Corporation)
(Si une entrée est incluse dans la liste de correctifs, le fichier de tâche (.job) sera déplacé. Le fichier exécuté par la tâche ne sera pas déplacé.)
==================== Internet (liste blanche) ====================
(Si un élément est inclus dans la liste de correctifs, s'il s'agit d'un élément de registre, il sera supprimé ou restauré par défaut.)
TcpipParamètres : [DhcpNameServer] 192.168.1.1
Tcpip..Interfaces28d2d79e-6f6d-413e-81ed-1e99d9f2f228 : [DhcpNameServer] 192.168.1.1
Tcpip..Interfaces406252f7-8ab1-4a53-89d5-2f70f74d088c : [DhcpNameServer] 192.168.1.1
Bord:
=======
DownloadDir: E:Téléchargements
Extension Edge : (sans nom) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:WindowsSystemAppsMicrosoft.MicrosoftEdge_8wekyb3d8bbweAssetsHostExtensionsAutoFormFill [not found]
Extension Edge : (sans nom) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:WindowsSystemAppsMicrosoft.MicrosoftEdge_8wekyb3d8bbweAssetsBookViewer [not found]
Extension Edge : (sans nom) -> hdokiejnpimakedhajhdlcegeplioahd_LastPassLastPassFreePasswordManager_qq0fmhteeht3j => C:Program FilesWindowsAppsLastPass.LastPassFreePasswordManager_4.60.0.0_neutral__qq0fmhteeht3j [not found]
Extension Edge : (sans nom) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:WindowsSystemAppsMicrosoft.MicrosoftEdge_8wekyb3d8bbweAssetsHostExtensionsLearningTools [not found]
Extension Edge : (sans nom) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:WindowsSystemAppsMicrosoft.MicrosoftEdge_8wekyb3d8bbweAssetsHostExtensionsPinJSAPI [not found]
Profil Edge : C:UserssnowfAppDataLocalMicrosoftEdgeUser DataDefault [2021-07-26]
Restauration de session Edge : par défaut -> est activé.
FireFox :
========
Profil par défaut FF : fbkbl792.default
Chemin de profil FF : C:UserssnowfAppDataRoamingMozillaFirefoxProfilesfbkbl792.default [2020-06-08]
Chemin de profil FF : C:UserssnowfAppDataRoamingMozillaFirefoxProfilesu360ej6a.default-release [2020-08-22]
FF HKLM…FirefoxExtensions : [web2pdfextension.17@acrobat.adobe.com] – C:Program Files (x86)AdobeAcrobat 2017AcrobatBrowserWCFirefoxExtnWebExtnsigned_extnadobe_acrobat-1.0-windows.xpi
Extension FF : (Adobe Acrobat) – C:Program Files (x86)AdobeAcrobat 2017AcrobatBrowserWCFirefoxExtnWebExtnsigned_extnadobe_acrobat-1.0-windows.xpi [2019-05-01]
FF HKLM-x32…FirefoxExtensions : [web2pdfextension.17@acrobat.adobe.com] – C:Program Files (x86)AdobeAcrobat 2017AcrobatBrowserWCFirefoxExtnWebExtnsigned_extnadobe_acrobat-1.0-windows.xpi
Plugin FF : adobe.com/AdobeAAMDetect -> C:Program Files (x86)AdobeAdobe Creative CloudUtilsnpAdobeAAMDetect64.dll [2021-04-24] (Adobe Inc. -> Systèmes Adobe)
Plugin FF-x32 : @java.com/DTPlugin, version=11.231.2 -> C:Program Files (x86)Javajre1.8.0_231bindtpluginnpDeployJava1.dll [2019-10-18] (Oracle America, Inc. -> Oracle Corporation)
Plugin FF-x32 : @java.com/JavaPlugin, version=11.231.2 -> C:Program Files (x86)Javajre1.8.0_231binplugin2npjp2.dll [2019-10-18] (Oracle America, Inc. -> Oracle Corporation)
Plugin FF-x32 : @microsoft.com/Lync, version=15.0 -> C:Program Files (x86)Microsoft OfficerootVFSProgramFilesX86Mozilla Firefoxpluginsnpmeetingjoinpluginoc.dll [2021-06-29] (Microsoft Corporation -> Microsoft Corporation)
Plugin FF-x32 : @Microsoft.com/NpCtrl,version=1.0 -> C:Program Files (x86)Microsoft Silverlight5.1.50907.0npctrl.dll [2017-05-03] (Microsoft Corporation -> Microsoft Corporation)
Plugin FF-x32 : @microsoft.com/SharePoint, version=14.0 -> C:Program Files (x86)Microsoft OfficerootOffice16NPSPWRAP.DLL [2021-06-29] (Microsoft Corporation -> Microsoft Corporation)
Plugin FF-x32 : @nvidia.com/3DVision -> C:Program Files (x86)NVIDIA Corporation3D Visionnpnv3dv.dll [2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Plugin FF-x32 : @nvidia.com/3DVisionStreaming -> C:Program Files (x86)NVIDIA Corporation3D Visionnpnv3dvstreaming.dll [2018-06-24] (NVIDIA Corporation -> NVIDIA Corporation)
Plugin FF-x32 : Adobe Acrobat -> C:Program Files (x86)AdobeAcrobat 2017AcrobatAirnppdf32.dll [2021-06-26] (Adobe Inc. -> Adobe Systems Inc.)
Plugin FF-x32 : Adobe Reader -> C:Program Files (x86)AdobeAcrobat Reader DCReaderAIRnppdf32.dll [2021-06-27] (Adobe Inc. -> Adobe Systems Inc.)
Plugin FF-x32 : adobe.com/AdobeAAMDetect -> C:Program Files (x86)AdobeAdobe Creative CloudUtilsnpAdobeAAMDetect32.dll [2021-04-24] (Adobe Inc. -> Systèmes Adobe)
Chrome:
=======
Profil CHR : C:UserssnowfAppDataLocalGoogleChromeUser DataDefault [2021-07-26]
Notifications CHR : Par défaut -> hxxps://play.google.com ; hxxps://www.ae.com ; hxxps://www.youtube.com
Restauration de session CHR : Par défaut -> est activé.
Extension CHR : (diapositives) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsaapocclcgogkmnckokdopfmhonfmgoek [2017-12-05]
Extension CHR : (Docs) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsaohghmighlieiainnegkcijnfilokake [2017-12-05]
Extension CHR : (Google Drive) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsapdfllckaahabafndbhieahigkjlhalf [2020-11-13]
Extension CHR : (YouTube) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsblpcfgokakmgnkcojhhkbfbldkacnbeo [2017-12-05]
Extension CHR : (Adblock Plus – bloqueur de publicités gratuit) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionscfhdojbkjhnklbpkdaibdccddilifddb [2021-05-25]
Extension CHR : (Extension de bibliothèque) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionschkgcmmjoejpekoegkedcpifgfhpjmec [2021-07-26]
Extension CHR : (uBlock Origin) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionscjpalhdlnbpafiamejdnhcphjbkeiagm [2021-07-26]
Extension CHR : (Adobe Acrobat) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsefaidnbmnnnibpcajpcglclefindmkaj [2021-03-04]
Extension CHR : (Google Play Musique) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsfahmaaghhglfmonjliepjlchgpgfmobi [2021-01-03]
Extension CHR : (Feuilles) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsfelcaaldnbdncclmgdcncolpebgiejap [2017-12-05]
Extension CHR : (Téléchargements du routeur) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsfgkboeogiiklpklnjgdiaghaiehcknjo [2017-12-05]
Extension CHR : (Google Docs Offline) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-07-01]
Extension CHR : (The Camelizer) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsghnomdcacenbmilgjigehppbamfndblo [2021-03-10]
Extension CHR : (OneNote Web Clipper) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsgojbdfnpnhogfdgjbigejoaolejmgdhk [2021-07-26]
Extension CHR : (Google Photos) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionshcglmfcclpfgljeaiahehebeoaiicbko [2017-12-05]
Extension CHR : (onglet IE) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionshehijbfgiekmjfkfjpbkbammjbdenadd [2021-07-01]
Extension CHR : (Utilitaire de récupération Chromebook) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsjndclpdbaamdhonoechobihbbiimdgai [2021-07-01]
Extension CHR : (Evernote Web) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionslbfehkoinhhcknnbdgnnmjhiladcgbol [2017-12-05]
Extension CHR : (Lanceur d'applications pour Drive (par Google)) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionslmjegmlicamnimmfhcmpkclmigmmcbeh [2021-01-30]
Extension CHR : (Chrome Web Store Payments) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
Extension CHR : (Bitwarden – Gestionnaire de mots de passe gratuit) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsnngceckbapebfimnlniiiahkandclblb [2021-07-26]
Extension CHR : (version imprimable et PDF) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionsohlencieiipommannpdfcmfdpjjmeolj [2021-05-25]
Extension CHR : (uBlock Origin Extra) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionspgdnlhfefecpicbbihgmbmffkjpaplco [2019-09-15]
Extension CHR : (Evernote Web Clipper) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionspioclpoplcdbaefihamjohnefbikjilc [2021-07-26]
Extension CHR : (Gmail) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionspjkljhegncpnkpknbcohdijeoejaedia [2020-11-13]
Extension CHR : (Chrome Media Router) – C:UserssnowfAppDataLocalGoogleChromeUser DataDefaultExtensionspkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-07-26]
CHR HKUS-1-5-21-1619883276-1864714895-2913937634-1001SOFTWAREGoogleChromeExtensions…ChromeExtension : [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32…ChromeExtension : [efaidnbmnnnibpcajpcglclefindmkaj]
==================== Services (liste blanche) ====================
(Si une entrée est incluse dans la liste de correctifs, elle sera supprimée du registre. Le fichier ne sera pas déplacé à moins qu'il ne soit répertorié séparément.)
Service AdobeARM R2 ; C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Service de mise à jour Adobe R2 ; C:Program Files (x86)Common FilesAdobeAdobe Desktop CommonElevationManagerAdobeUpdateService.exe [842416 2021-04-24] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:Program Files (x86)Common FilesAdobeAdobeGCClientAGMService.exe [3780296 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:Program Files (x86)Common FilesAdobeAdobeGCClientAGSService.exe [3548360 2021-02-17] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 ClickToRunSvc; C:Program FilesCommon FilesMicrosoft SharedClickToRunOfficeClickToRun.exe [9141648 2021-07-21] (Microsoft Corporation -> Microsoft Corporation)
R2 Code42Service; C:Program FilesCode42Code42Service.exe [662960 2021-05-24] (Code42 Software Inc -> Code42 Software, Inc.)
R2 DellClientManagementService; C:Program Files (x86)DellUpdateServiceServiceShell.exe [37056 2020-07-29] (Dell Inc -> )
R2 EpsonScanSvc; C:WINDOWSsystem32EscSvc64.exe [135824 2011-12-12] (SEIKO EPSON Corporation -> Seiko Epson Corporation)
R2 HP LaserJet Service; C:Program Files (x86)HPHPLaserJetServiceHPLaserJetService.exe [176128 2014-06-25] (HP) [File not signed]
S3 IRMTService; C:Program FilesIntelIntel® Ready Mode TechnologyIRMTService.exe [182400 2017-04-20] (Intel® RMT -> Intel Corporation)
S3 KAPSService; C:WINDOWSSystem32driversRivetNetworksKillerKAPSService.exe [73480 2021-03-24] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 Killer Analytics Service; C:WINDOWSSystem32driversRivetNetworksKillerKillerAnalyticsService.exe [1775392 2021-03-24] (Rivet Networks LLC -> Rivet Networks)
R2 Killer Network Service; C:WINDOWSSystem32driversRivetNetworksKillerKillerNetworkService.exe [2663208 2021-03-24] (Rivet Networks LLC -> Rivet Networks)
S3 KNDBWM; C:WINDOWSSystem32driversRivetNetworksKillerKNDBWMService.exe [73496 2021-03-24] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 MacriumService; C:Program FilesMacriumCommonMacriumService.exe [4091112 2017-11-09] (Paramount Software UK Ltd -> Paramount Software UK Ltd)
R3 MBAMService; C:Program FilesMalwarebytesAnti-Malwarembamservice.exe [7477704 2021-07-26] (Malwarebytes Inc -> Malwarebytes)
R2 PrivateInternetAccessService; C:Program FilesPrivate Internet Accesspia-service.exe [1900032 2020-09-04] () [File not signed]
S3 PrivateInternetAccessWireguard; C:Program FilesPrivate Internet Accesspia-wgservice.exe [4433920 2020-09-04] () [File not signed]
S3 Sense; C:Program FilesWindows Defender Advanced Threat ProtectionMsSense.exe [5393304 2021-07-05] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:Program Files (x86)TeamViewerTeamViewer_Service.exe [13257000 2021-07-01] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 UsbClientService; C:Program Files (x86)SynologyAssistantUsbClientService.exe [248856 2017-08-08] (Synology Inc. -> ) [File not signed]
S3 VBoxSDS; C:Program FilesOracleVirtualBoxVBoxSDS.exe [746504 2020-07-10] (Oracle Corporation -> Oracle Corporation)
R3 WdNisSvc; C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2106.6-0NisSrv.exe [2665432 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:ProgramDataMicrosoftWindows DefenderPlatform4.18.2106.6-0MsMpEng.exe [136640 2021-07-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 xTendSoftAPService; C:WINDOWSSystem32driversRivetNetworksKillerxTendSoftAPService.exe [73504 2021-03-24] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 xTendUtilityService; C:WINDOWSSystem32driversRivetNetworksKillerxTendUtilityService.exe [73504 2021-03-24] (Rivet Networks LLC -> Rivet Networks, LLC.)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:WINDOWSSystem32driversBthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
R3 busenum; C:WINDOWSSystem32driversbusenum.sys [57824 2012-08-03] (Synology Inc. -> Windows ® Win 7 DDK provider)
R3 DBUtilDrv2; C:WINDOWSSystem32driversDBUtilDrv2.sys [24968 2021-07-26] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
S3 DellProf; C:WINDOWSsystem32driversDellProf.sys [41208 2018-05-08] (Techporch Incorporated -> Dell Computer Corporation)
R1 ElbyCDIO; C:WINDOWSSystem32DriversElbyCDIO.sys [42616 2017-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG)
R3 IntelReadyModeDriver; C:WINDOWSSystem32driversIntelReadyModeDriver.sys [34712 2017-04-20] (Intel Corporation -> Intel Corporation)
R3 KfeCoSvc; C:WINDOWSSystem32driversRivetNetworksKillerKfeCo10X64.sys [184400 2021-03-24] (Rivet Networks LLC -> Rivet Networks, LLC.)
R2 MBAMChameleon; C:WINDOWSSystem32DriversMbamChameleon.sys [220752 2021-07-26] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:WINDOWSSystem32DRIVERSMbamElam.sys [19912 2021-07-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:WINDOWSSystem32Driversmbamswissarmy.sys [248992 2021-07-26] (Malwarebytes Inc -> Malwarebytes)
S3 msvad_simple; C:WINDOWSsystem32driverspovrtdev.sys [28528 2015-10-29] (MediaMall Technologies, Inc. -> MediaMall Technologies, Inc.)
S3 PSMounterEx; C:Windowssystem32driverspsmounterex.sys [189152 2017-08-08] (Paramount Software UK Ltd -> Windows ® Win 7 DDK provider)
S3 PSVolAcc; C:WindowsSystem32DriversPSVolAcc.sys [31856 2017-03-23] (Paramount Software UK Ltd -> Windows ® Win 7 DDK provider)
R0 pwdrvio; C:WINDOWSSystem32pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> )
S3 pwdspio; C:Windowssystem32pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> )
R3 tap-pia-0901; C:WINDOWSSystem32driverstap-pia-0901.sys [39944 2020-01-27] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 tap0901; C:WINDOWSSystem32driverstap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tap_ovpnconnect; C:WINDOWSSystem32driverstap_ovpnconnect.sys [40128 2020-10-27] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
R1 VBoxNetLwf; C:WINDOWSsystem32DRIVERSVBoxNetLwf.sys [247232 2020-07-11] (Oracle Corporation -> Oracle Corporation)
R3 VClone; C:WINDOWSSystem32driversVClone.sys [44544 2020-02-22] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG)
S0 WdBoot; C:WINDOWSSystem32driverswdWdBoot.sys [49560 2021-07-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:WINDOWSSystem32driverswdWdFilter.sys [425192 2021-07-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:WINDOWSSystem32driverswdWdNisDrv.sys [76008 2021-07-09] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-07-26 21:16 – 2021-07-26 21:17 – 000000000 ____D C:FRST
2021-07-26 20:53 – 2021-07-26 20:53 – 000024968 _____ (Dell) C:WINDOWSsystem32DriversDBUtilDrv2.sys
2021-07-26 20:51 – 2021-07-26 20:51 – 000220752 _____ (Malwarebytes) C:WINDOWSsystem32DriversMbamChameleon.sys
2021-07-26 20:51 – 2021-07-26 20:51 – 000002035 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsMalwarebytes.lnk
2021-07-26 20:51 – 2021-07-26 20:46 – 000019912 _____ (Malwarebytes) C:WINDOWSsystem32DriversMbamElam.sys
2021-07-26 20:49 – 2021-07-26 20:49 – 000248992 _____ (Malwarebytes) C:WINDOWSsystem32Driversmbamswissarmy.sys
2021-07-17 07:20 – 2021-07-17 07:32 – 000000000 ____D C:Program FilesCrystalDiskMark8
2021-07-17 07:20 – 2021-07-17 07:20 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsCrystalDiskMark8
2021-07-17 07:18 – 2021-07-17 07:18 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsCrystalDiskInfo
2021-07-17 07:17 – 2021-07-17 07:18 – 000000000 ____D C:Program FilesCrystalDiskInfo
2021-07-05 03:00 – 2021-07-05 03:00 – 002755584 _____ (Microsoft Corporation) C:WINDOWSSysWOW64mshtml.tlb
2021-07-05 03:00 – 2021-07-05 03:00 – 002755584 _____ (Microsoft Corporation) C:WINDOWSsystem32mshtml.tlb
2021-07-05 03:00 – 2021-07-05 03:00 – 001314120 _____ (Microsoft Corporation) C:WINDOWSsystem32SecConfig.efi
2021-07-05 03:00 – 2021-07-05 03:00 – 000568832 _____ (Microsoft Corporation) C:WINDOWSsystem32inetcpl.cpl
2021-07-05 03:00 – 2021-07-05 03:00 – 000451072 _____ (Microsoft Corporation) C:WINDOWSSysWOW64inetcpl.cpl
2021-07-05 03:00 – 2021-07-05 03:00 – 000011353 _____ C:WINDOWSsystem32DrtmAuthTxt.wim
2021-07-05 02:59 – 2021-07-05 02:59 – 002260480 _____ (The ICU Project) C:WINDOWSsystem32icu.dll
2021-07-05 02:59 – 2021-07-05 02:59 – 001864192 _____ (The ICU Project) C:WINDOWSSysWOW64icu.dll
2021-07-05 02:59 – 2021-07-05 02:59 – 001823792 _____ (Microsoft Corporation) C:WINDOWSsystem32winload.efi
2021-07-05 02:59 – 2021-07-05 02:59 – 001393496 _____ (Microsoft Corporation) C:WINDOWSsystem32winresume.efi
2021-07-05 02:59 – 2021-07-05 02:59 – 000657464 _____ C:WINDOWSsystem32WindowManagementAPI.dll
2021-07-05 02:59 – 2021-07-05 02:59 – 000563712 _____ (Microsoft Corporation) C:WINDOWSsystem32winspool.drv
2021-07-05 02:59 – 2021-07-05 02:59 – 000468440 _____ C:WINDOWSSysWOW64WindowManagementAPI.dll
2021-07-05 02:59 – 2021-07-05 02:59 – 000423936 _____ (Microsoft Corporation) C:WINDOWSSysWOW64winspool.drv
2021-07-05 02:59 – 2021-07-05 02:59 – 000287232 _____ C:WINDOWSsystem32CoreMas.dll
2021-07-05 02:59 – 2021-07-05 02:59 – 000272384 _____ C:WINDOWSsystem32TpmTool.exe
2021-07-05 02:59 – 2021-07-05 02:59 – 000223744 _____ C:WINDOWSSysWOW64TpmTool.exe
2021-07-05 02:59 – 2021-07-05 02:59 – 000097280 _____ C:WINDOWSsystem32Driverscimfs.sys
2021-07-01 18:10 – 2021-07-01 18:10 – 000000000 ____D C:UserssnowfAppDataRoamingLibreOffice
2021-07-01 17:49 – 2021-07-01 17:49 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsMicrosoft Office Tools
2021-07-01 17:45 – 2021-07-01 17:45 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsLibreOffice 7.0
2021-07-01 17:44 – 2021-07-01 17:44 – 000000000 ____D C:Program FilesLibreOffice
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-07-26 21:12 – 2019-12-07 03:14 – 000000000 ____D C:ProgramDataregid.1991-06.com.microsoft
2021-07-26 20:57 – 2021-01-02 17:14 – 000842458 _____ C:WINDOWSsystem32PerfStringBackup.INI
2021-07-26 20:57 – 2019-12-07 03:13 – 000000000 ____D C:WINDOWSINF
2021-07-26 20:54 – 2018-10-20 15:18 – 000000000 ___RD C:UserssnowfCreative Cloud Files
2021-07-26 20:54 – 2017-12-05 22:06 – 000000000 ____D C:Program Files (x86)Google
2021-07-26 20:53 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSRegistration
2021-07-26 20:53 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSAppReadiness
2021-07-26 20:53 – 2017-11-22 04:02 – 000000000 ____D C:ProgramDataNVIDIA
2021-07-26 20:52 – 2020-06-09 19:42 – 000000504 _____ C:WINDOWSsystem32Driversetchosts.ics
2021-07-26 20:51 – 2021-01-02 17:12 – 000000006 ____H C:WINDOWSTasksSA.DAT
2021-07-26 20:51 – 2019-12-07 03:14 – 000000000 ___RD C:WINDOWSImmersiveControlPanel
2021-07-26 20:51 – 2019-12-07 03:14 – 000000000 ___HD C:WINDOWSELAMBKUP
2021-07-26 20:51 – 2017-12-13 22:15 – 000000000 ____D C:Program Files (x86)TeamViewer
2021-07-26 20:51 – 2017-12-05 21:34 – 000000000 __SHD C:UserssnowfIntelGraphicsProfiles
2021-07-26 20:51 – 2017-11-22 03:46 – 000000000 ____D C:Intel
2021-07-26 20:50 – 2021-01-02 17:02 – 000001527 _____ C:WINDOWSsystem32configVSMIDK
2021-07-26 20:50 – 2019-12-07 03:03 – 000786432 _____ C:WINDOWSsystem32configBBI
2021-07-26 20:50 – 2017-11-22 04:14 – 000000000 ____D C:Program Files (x86)Microsoft Office
2021-07-26 20:49 – 2021-01-02 17:02 – 000647528 _____ C:WINDOWSsystem32FNTCACHE.DAT
2021-07-26 20:48 – 2021-01-02 17:50 – 000000000 ____D C:Program FilesHyper-V
2021-07-26 20:48 – 2019-12-07 03:54 – 000000000 ____D C:Program FilesWindows Defender Advanced Threat Protection
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ___RD C:WINDOWSPrintDialog
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSSysWOW64lv-LV
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSSysWOW64et-EE
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSSysWOW64es-MX
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSSysWOW64Dism
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSSystemResources
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSsystem32oobe
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSsystem32migwiz
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSsystem32lv-LV
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSsystem32et-EE
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSsystem32es-MX
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSsystem32Dism
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSPolicyDefinitions
2021-07-26 20:48 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSbcastdvr
2021-07-26 20:46 – 2019-06-26 18:40 – 000199128 _____ (Malwarebytes) C:WINDOWSsystem32Driversmbae64.sys
2021-07-26 20:46 – 2017-12-05 22:06 – 000002303 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk
2021-07-26 20:46 – 2017-12-05 22:05 – 000000000 ____D C:UserssnowfAppDataLocalCrashDumps
2021-07-26 20:45 – 2017-12-09 07:46 – 000000000 ____D C:Lightroom
2021-07-26 20:43 – 2018-06-08 21:34 – 000000000 ____D C:UserssnowfAppDataLocalGoogle
2021-07-26 20:36 – 2017-12-07 21:45 – 000000000 ____D C:UserssnowfAppDataRoamingqBittorrent
2021-07-26 20:31 – 2021-01-02 17:02 – 000000000 ____D C:WINDOWSsystem32SleepStudy
2021-07-25 21:25 – 2019-12-07 03:14 – 000000000 ___HD C:Program FilesWindowsApps
2021-07-24 11:51 – 2021-01-02 17:05 – 000002440 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsMicrosoft Edge.lnk
2021-07-19 03:02 – 2019-12-07 03:03 – 000000000 ____D C:WINDOWSCbsTemp
2021-07-19 03:02 – 2017-12-06 00:06 – 000000000 ____D C:WINDOWSsystem32MRT
2021-07-19 02:51 – 2017-12-06 00:06 – 133422552 ____C (Microsoft Corporation) C:WINDOWSsystem32MRT.exe
2021-07-15 18:40 – 2021-01-02 17:12 – 000003418 _____ C:WINDOWSsystem32TasksGoogleUpdateTaskMachineUA
2021-07-15 18:40 – 2021-01-02 17:12 – 000003294 _____ C:WINDOWSsystem32TasksGoogleUpdateTaskMachineCore
2021-07-15 06:30 – 2021-01-02 17:12 – 000003380 _____ C:WINDOWSsystem32TasksOneDrive Standalone Update Task-S-1-5-21-1619883276-1864714895-2913937634-1001
2021-07-15 06:30 – 2021-01-02 17:05 – 000002385 _____ C:UserssnowfAppDataRoamingMicrosoftWindowsStart MenuProgramsOneDrive.lnk
2021-07-15 00:54 – 2017-12-09 07:11 – 000002126 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAdobe Acrobat Distiller 2017.lnk
2021-07-15 00:54 – 2017-12-09 07:11 – 000002115 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAdobe Acrobat 2017.lnk
2021-07-14 21:23 – 2017-12-07 20:38 – 000002138 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAcrobat Reader DC.lnk
2021-07-09 17:59 – 2018-02-26 04:58 – 000000000 ____D C:WINDOWSsystem32Driverswd
2021-07-09 17:58 – 2017-12-10 19:33 – 000000000 ____D C:UserssnowfAppDataRoamingvlc
2021-07-07 19:42 – 2017-12-13 23:29 – 000000000 ____D C:ProgramDataMicrosoftWindowsStart MenuProgramsBackup and Sync from Google
2021-07-05 02:53 – 2020-06-10 09:31 – 000000000 ___HD C:$WinREAgent
2021-07-01 19:45 – 2021-01-03 03:18 – 000003480 _____ C:WINDOWSsystem32TasksMicrosoftEdgeUpdateTaskMachineUA
2021-07-01 19:45 – 2021-01-03 03:18 – 000003386 _____ C:WINDOWSsystem32TasksMicrosoftEdgeUpdateTaskMachineCore1d6e15bbd897b57
2021-07-01 17:49 – 2019-04-04 06:26 – 000002500 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsSkype for Business.lnk
2021-07-01 17:49 – 2019-04-04 06:26 – 000002495 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsWord.lnk
2021-07-01 17:49 – 2019-04-04 06:26 – 000002494 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsPowerPoint.lnk
2021-07-01 17:49 – 2019-04-04 06:26 – 000002458 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsAccess.lnk
2021-07-01 17:49 – 2019-04-04 06:26 – 000002457 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsExcel.lnk
2021-07-01 17:49 – 2019-04-04 06:26 – 000002451 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsOutlook.lnk
2021-07-01 17:49 – 2019-04-04 06:26 – 000002445 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsPublisher.lnk
2021-07-01 17:49 – 2019-04-04 06:26 – 000002437 _____ C:ProgramDataMicrosoftWindowsStart MenuProgramsOneNote.lnk
2021-07-01 17:47 – 2019-12-07 03:51 – 000000000 ____D C:WINDOWSsystem32OpenSSH
2021-07-01 17:47 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSSysWOW64WinMetadata
2021-07-01 17:47 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSSysWOW64setup
2021-07-01 17:47 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSSysWOW64oobe
2021-07-01 17:47 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSSysWOW64lt-LT
2021-07-01 17:47 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSsystem32WinMetadata
2021-07-01 17:47 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSsystem32SystemResetPlatform
2021-07-01 17:47 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSsystem32setup
2021-07-01 17:47 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSsystem32lt-LT
2021-07-01 17:47 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSProvisioning
2021-07-01 17:47 – 2019-12-07 03:14 – 000000000 ____D C:WINDOWSDiagTrack
2021-06-27 20:10 – 2017-12-24 11:25 – 000000000 ____D C:UserssnowfAppDataRoamingMediaMonkey
==================== Files in the root of some directories ========
2018-09-26 04:07 – 2018-09-26 04:07 – 000000000 _____ () C:UserssnowfAppDataLocaloobelibMkey.log
2017-12-16 17:46 – 2020-07-21 18:10 – 000007639 _____ () C:UserssnowfAppDataLocalresmon.resmoncfg
==================== FLock ==============================
2021-01-02 17:02 C:Recovery
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Addition.txt
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-07-2021 01
Ran by snowf (26-07-2021 21:18:23)
Running from E:Downloads
Windows 10 Pro Version 20H2 19042.1052 (X64) (2021-01-02 23:12:57)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-1619883276-1864714895-2913937634-500 – Administrator – Disabled)
DefaultAccount (S-1-5-21-1619883276-1864714895-2913937634-503 – Limited – Disabled)
Guest (S-1-5-21-1619883276-1864714895-2913937634-501 – Limited – Disabled)
snowf (S-1-5-21-1619883276-1864714895-2913937634-1001 – Administrator – Enabled) => C:Userssnowf
WDAGUtilityAccount (S-1-5-21-1619883276-1864714895-2913937634-504 – Limited – Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled – Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46
AS: Windows Defender (Enabled – Up to date) D68DDC3A-831F-4fae-9E44-DA132C1ACF46
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 17.01 beta (x64) (HKLM…7-Zip) (Version: 17.01 beta – Igor Pavlov)
Adobe Acrobat 2017 (HKLM-x32…AC76BA86-1033-FFFF-7760-0E1108756300) (Version: 17.011.30199 – Adobe Systems Incorporated)
Adobe Acrobat Reader DC (HKLM-x32…AC76BA86-7AD7-1033-7B44-AC0F074E4100) (Version: 21.005.20058 – Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32…Adobe Creative Cloud) (Version: 5.4.3.544 – Adobe Inc.)
Adobe Digital Editions 2.0 (HKLM-x32…Adobe Digital Editions 2.0) (Version: 2.0.1 – Adobe Systems Incorporated)
Adobe Flash Player 32 PPAPI (HKLM-x32…Adobe Flash Player PPAPI) (Version: 32.0.0.293 – Adobe)
Adobe Genuine Service (HKLM-x32…AdobeGenuineService) (Version: – Adobe)
Adobe Lightroom Classic (HKLM-x32…LTRM_10_2) (Version: 10.2 – Adobe Inc.)
Adobe Photoshop 2021 (HKLM-x32…PHSP_22_3_1) (Version: 22.3.1.122 – Adobe Inc.)
Adobe Premiere Pro CC 2018 (HKLM-x32…PPRO_12_0_0) (Version: 12.0.0 – Adobe Systems Incorporated)
ANT Drivers Installer x64 (HKLM…9A9FF300-3725-4934-A0D7-86F109A88ACF) (Version: 2.3.4 – Garmin Ltd or its subsidiaries) Hidden
Backup and Sync from Google (HKLM…A0397FA8-34ED-4A41-A8C9-30EE0B89C464) (Version: 3.56.3802.7766 – Google, Inc.)
Bit Che (HKLM-x32…D9DA5C41-964F-455F-B5E7-3664519440E8_is1) (Version: 3.5 build 50 – Convivea Inc.)
Bitwarden (HKLM…173a9bac-6f0d-50c4-8202-4744c69d091a) (Version: 1.17.2 – Bitwarden Inc.)
calibre 64bit (HKLM…C9FD7BFF-6054-449C-BCDB-C2A0B43516A7) (Version: 4.5.0 – Kovid Goyal)
CCleaner (HKLM…CCleaner) (Version: 5.46 – Piriform)
Code42 (HKLM…C2B5208B-239C-49D9-A21C-DE3B034FDDB6) (Version: 8.6.1.3 – Code42 Software)
CPUID CPU-Z 1.89 (HKLM…CPUID CPU-Z_is1) (Version: 1.89 – CPUID, Inc.)
CrystalDiskInfo 8.12.4 (HKLM…CrystalDiskInfo_is1) (Version: 8.12.4 – Crystal Dew World)
CrystalDiskMark 8.0.4 (HKLM…CrystalDiskMark8_is1) (Version: 8.0.4 – Crystal Dew World)
CSV2OFX (HKLM-x32…CSV2OFX_is1) (Version: 3.0.0.7 – ProperSoft Inc.)
Dell Digital Delivery (HKLM-x32…4B38FF9D-7308-411D-93BF-CCF259B476ED) (Version: 3.5.2013.0 – Dell Products, LP)
Dell Update – SupportAssist Update Plugin (HKLM…6DE68941-66DE-48DE-9C80-FE60C9DE0AD4) (Version: 4.0.1.5857 – Dell Inc.) Hidden
Dell Update – SupportAssist Update Plugin (HKLM-x32…1dbe752f-b00e-4567-9276-141812b20d28) (Version: 4.0.1.5857 – Dell Inc.)
Dell Update (HKLM-x32…5EBBC1DA-975F-44A0-B438-F325BCD45577) (Version: 3.1.3 – Dell Inc.)
DropIt (v8.5.1) (HKLM…DropIt_is1) (Version: 8.5.1 – Lupo PenSuite Team)
Elevated Installer (HKLM-x32…9427DAC2-91FD-418E-87D4-8914B437CC06) (Version: 6.21.0.0 – Garmin Ltd or its subsidiaries) Hidden
Epson Copy Utility 4 (HKLM-x32…