That Armoury Crate bullshit is embeded inside the UEFI ROM. It's called Windows Platform Binary Table (WPBT). I can't distinguish it from malware. Trully disgusting.
I didn't even know about the WPBT until I read this, that is truly horrifying. It's also probably a good attack vector for someone trying to install malware which persists on the machine even after reinstallation.