cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2018.8.20.163 Par Nicolas Coolman (2018/08/20)
~ Démarré par BOB (Administrator) (2018/08/20 13:51:02)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\BOB\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\BOB\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (2) - 0s
~ MFIE: Opera 54.0.2952.64
~ MSIE: Internet Explorer v11.0.9600.19100

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK
Windows Activation Technologies : OK

---\\ LOGICIELS DE PROTECTION (2) - 1s
Avira Antivirus v15.0.38.15 (Protection)
Malwarebytes version 3.5.1.2522 v3.5.1.2522 (Protection)

---\\ SURVEILLANCE LOGICIEL (2) - 1s
~ Adobe Flash Player 30 ActiveX (Surveillance)
~ Adobe Flash Player 30 PPAPI (Surveillance)

---\\ LOGICIELS D'OPTIMISATION (2) - 1s
~ Avira System Speedup v4.11.1.7632 (Optimisation)
~ CCleaner v5.38 (Optimisation)

---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4109.256 MB (59% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 246 GB (53%) free of 463 GB : OK =>.Disk Space

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: SWAGCOMPUTEUR9
~ User Name: BOB
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (1) - 0s
~ Drive C: has 246 GB free of 463 GB (System)

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (11) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 4s
[MD5.38AE1B3C38FAEF56FE4907922F0385BA] - 29/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3229696] =>.Microsoft Corporation
[MD5.C36BB659F08F046B139C8D1B980BF1AC] - 30/03/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [46080] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] =>.Microsoft Corporation
[MD5.0E21DDF0628BBC88F9F5AD026E5AD2EE] - 19/07/2018 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [4510720] =>.Microsoft Corporation
[MD5.11D6A262B617130F7C16E308C12E0D41] - 01/01/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455680] =>.Microsoft Corporation
[MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] =>.Microsoft Corporation
[MD5.9B86DF86D1EFF32893BC3FB49BFAA993] - 08/06/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] =>.Microsoft Corporation
[MD5.4A35D7B172AFF9C6B362D7297568836A] - 08/06/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [269824] =>.Microsoft Corporation
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 12/04/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] =>.Microsoft Corporation
[MD5.0DC2A9882540DEA4A55B08785E09D8FC] - 04/04/2017 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [496128] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Corporation
[MD5.B8BD2BB284668C84865658C77574381A] - 14/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] =>.Microsoft Corporation
[MD5.63705A08981F7EDD376241D6E0A9C2AC] - 25/04/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [115200] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] =>.Microsoft Corporation
[MD5.47A475B386FC0EDE0545C5764D6E08D2] - 02/08/2018 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [160256] =>.Microsoft Corporation
[MD5.734837208CAFD6E0959A7A0333C95C9D] - 11/08/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [262656] =>.Microsoft Corporation
[MD5.8422AFBD1C2D30FFC913309D7F1A366D] - 15/05/2018 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1681088] =>.Microsoft Corporation
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] =>.Microsoft Corporation
[MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
[MD5.4DD986720F7CB7A8A5D1226793097B9A] - 29/07/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [117248] =>.Microsoft Corporation
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 21/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Corporation

---\\ LISTE DES SERVICES (Non désactivés) (55) - 7s
O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: C:\Windows\System32\audiosrv.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\audiosrv.dll (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll =>.Microsoft Corporation
O23 - Service: Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG - Avira Service Host.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Optimizer Host (AviraOptimizerHost) . (.Avira Operations GmbH & Co. KG - .) - C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Phantom VPN (AviraPhantomVPN) . (.Avira Operations GmbH & Co. KG - VpnService.) - C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe =>.Avira Operations GmbH & Co. KG®
O23 - Service: Avira Updater Service (AviraUpdaterService) . (.Avira Operations GmbH & Co. KG - Avira Updater Service Host.) - C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe {2E66BFCDB020C2A7BCA595CF} =>.Avira Operations GmbH & Co. KG
O23 - Service: C:\Windows\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\Windows\System32\bfe.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\Windows\System32\qmgr.dll =>.Microsoft Corporation
O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X86 (clr_optimization_v4.0.30319_32) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe {3300000180101C50F78C2FD0AA000100000180} =>.Microsoft Corporation
O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X64 (clr_optimization_v4.0.30319_64) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe {3300000180101C50F78C2FD0AA000100000180} =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\Windows\System32\cryptsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\UtcResources.dll (DiagTrack) . (.Microsoft Corporation - Microsoft Windows Diagnostics Tracking.) - C:\Windows\System32\diagtrack.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\Windows\System32\dnsrslvr.dll =>.Microsoft Corporation
O23 - Service: Intel(R) Driver & Support Assistant (DSAService) . (.Intel - DSAService.) - C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe =>.Intel(R) Driver & Support Assistant®
O23 - Service: C:\Windows\System32\efssvc.dll (EFS) . (.Microsoft Corporation - Local Security Authority Process.) - C:\Windows\System32\lsass.exe =>.Microsoft Corporation
O23 - Service: Energy Server Service queencreek (ESRV_SVC_QUEENCREEK) . (.Copyright (C) 2017 Intel Corporation. All rights rese - Intel(R) System Usage Report.) - C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe =>.Intel(R) Software Development Products®
O23 - Service: C:\Windows\System32\wevtsvc.dll (eventlog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Corporation
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\Windows\System32\FntCache.dll =>.Microsoft Corporation
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\Windows\System32\gpsvc.dll =>.Microsoft Corporation
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation
O23 - Service: C:\Windows\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\Windows\System32\ikeext.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\Windows\System32\iphlpsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\Windows\System32\srvsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\Windows\System32\wkssvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - DLL des services de transport NetBIOS sur T.) - C:\Windows\System32\lmhsvc.dll =>.Microsoft Corporation
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: C:\Windows\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) - C:\Windows\System32\mmcss.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\Windows\System32\mpssvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\Windows\System32\nlasvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\Windows\System32\nsisvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\Windows\System32\pcasvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\umpnpmgr.dll (PlugPlay) . (.Microsoft Corporation - Service mode utilisateur de Plug-and-Play.) - C:\Windows\System32\umpnpmgr.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\Windows\System32\umpo.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\Windows\System32\RpcEpMap.dll =>.Microsoft Corporation
O23 - Service: @oleres.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\Windows\System32\schedsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\Windows\System32\Sens.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\Windows\System32\spoolsv.exe =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\Windows\System32\sppsvc.exe =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\Windows\System32\wiaservc.dll =>.Microsoft Corporation
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_Q (SystemUsageReportSvc_QUEENCREEK) . (.Copyright (C) 2017 Intel Corporation. All rights rese - Intel(R) System Usage Report.) - C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe =>.Intel(R) Software Development Products®
O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\Windows\System32\themeservice.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dwm.exe,-2000 (UxSms) . (.Microsoft Corporation - Microsoft User Experience Session Managemen.) - C:\Windows\System32\uxsms.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\Windows\System32\wscsvc.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe =>.Microsoft Corporation
O23 - Service: Windows Update (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) - C:\Windows\system32\wuaueng.dll =>.Microsoft Corporation

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (20) - 12s
SS - Demand [14/08/2018] [ 335872] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated®
SR - Auto [09/08/2018] [ 890896] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [09/08/2018] [ 231176] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [09/08/2018] [ 231176] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [09/08/2018] [ 1148568] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [03/08/2018] [ 431144] Avira Service Host (Avira.ServiceHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [28/06/2018] [ 2980848] Avira Optimizer Host (AviraOptimizerHost) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [14/08/2018] [ 338888] Avira Phantom VPN (AviraPhantomVPN) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe =>.Avira Operations GmbH & Co. KG®
SR - Auto [09/08/2018] [ 103728] Avira Updater Service (AviraUpdaterService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe {2E66BFCDB020C2A7BCA595CF} =>.Avira Operations GmbH & Co. KG
SS - Demand [08/08/2018] [ 7211968] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.®
SS - Demand [09/08/2015] [ 288688] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Auto [19/12/2017] [ 22304] Intel(R) Driver & Support Assistant (DSAService) . (.Intel.) - C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe =>.Intel(R) Driver & Support Assistant®
SS - Demand [21/04/2018] [ 775296] EasyAntiCheat (EasyAntiCheat) . (.EasyAntiCheat Ltd.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe =>.EasyAntiCheat Oy®
SR - Auto [08/12/2017] [ 885992] Energy Server Service queencreek (ESRV_SVC_QUEENCREEK) . (.Copyright (C) 2017 Intel Corporation. All rights rese.) - C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe =>.Intel(R) Software Development Products®
SR - Auto [09/08/2015] [ 355232] Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\igfxCUIService.exe =>.Intel Corporation - pGFX®
SS - Demand [13/07/2017] [ 18168] Intel(R) SUR QC Software Asset Manager (Intel(R) SUR QC SAM) . (.Intel Corporation.) - C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe =>.Intel(R) Software Asset Manager®
SR - Auto [09/05/2018] [ 6541008] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SS - Demand [09/08/2018] [ 1683744] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve®
SR - Auto [08/12/2017] [ 181992] Intel(R) System Usage Report Service SystemUsageReportSvc_Q (SystemUsageReportSvc_QUEENCREEK) . (.Copyright (C) 2017 Intel Corporation. All rights rese.) - C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe =>.Intel(R) Software Development Products®
SS - Demand [08/12/2017] [ 885992] User Energy Server Service queencreek (USER_ESRV_SVC_QUEENCREEK) . (.Copyright (C) 2017 Intel Corporation. All rights rese.) - C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe =>.Intel(R) Software Development Products®

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (28) - 5s
O38 - TASK: {01E4491D-A456-4213-ACCC-5F647319A969} [64Bits][\Opera scheduled Autoupdate 1528798634] - (.Opera Software - Opera Internet Browser.) -- C:\Users\Administrateur.SWAGCOMPUTEUR9\AppData\Local\Programs\Opera\launcher.exe [1311320] =>.Opera Software
O38 - TASK: {02CA33BD-428B-4197-B50E-988304F55427} [64Bits][\Opera scheduled Autoupdate 1515586498] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe [1311832] =>.Opera Software
O38 - TASK: {18829436-6A08-49EA-8E21-E9FA743DB307} [64Bits][\Adobe Flash Player PPAPI Notifier] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_154_pepper.exe [1449472] =>.Adobe Systems Incorporated
O38 - TASK: {19E85B6D-16B6-4A42-B9A8-6EE0504E9E66} [64Bits][\Avira\System Speedup\Delayed Startup\BOB\1] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [10249048] =>.Piriform Ltd
O38 - TASK: {22CE2244-0238-438C-9215-4F5FD7FF5294} [64Bits][\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 30.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872] =>.Adobe Systems Incorporated
O38 - TASK: {24576F6C-A0FA-40E7-ACC2-2E1A29A02ED2} [64Bits][\Avira\System Speedup\Delayed Startup\BOB\2] - (.Epic Games, Inc. - EpicGamesLauncher.) -- C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32973712] =>.Epic Games, Inc.
O38 - TASK: {366882BE-B9D6-4C01-9BF8-DD162A200C50} [64Bits][\Avira\Safe Shopping\Check] - (.Avira Operations Gmbh & Co. KG - Avira Safe Shopping Updater.) -- C:\Program Files (x86)\Avira\Safe Shopping\Updater\Updater.exe [101000] =>.Avira Operations GmbH & Co. KG
O38 - TASK: {740AA04C-DC32-44FB-B4FA-844FE4BCDCB0} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [7972528] =>.Piriform Ltd
O38 - TASK: {7BBB4973-B9CB-4D6D-BC24-DE3670A8C944} [64Bits][\Avira\Safe Shopping\Update] - (.Avira Operations Gmbh & Co. KG - Avira Safe Shopping Updater.) -- C:\Program Files (x86)\Avira\Safe Shopping\Updater\Updater.exe [101000] =>.Avira Operations GmbH & Co. KG
O38 - TASK: {8C4DBC28-A493-40B0-80D2-4F5749D6A7BB} [64Bits][\AviraSystemSpeedupUpdate] - (.Avira Operations GmbH & Co. KG - Avira System Speedup Setup.) -- C:\ProgramData\Avira\SystemSpeedup\Update\avira_speedup_setup_update.exe [27720096] =>.Avira Operations GmbH & Co. KG
O38 - TASK: {94136684-2D4D-4B26-A576-3E0768A0B93A} [64Bits][\Avira_Antivirus_Systray] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [679968] =>.Avira Operations GmbH & Co. KG
O38 - TASK: {9E5CBEFC-8E85-4FA7-B123-E24FBB2B1F1E} [64Bits][\Avira\Safe Shopping\Launch] - (.Avira Operations Gmbh & Co. KG - Avira Safe Shopping Updater.) -- C:\Program Files (x86)\Avira\Safe Shopping\Updater\Updater.exe [101000] =>.Avira Operations GmbH & Co. KG
O38 - TASK: {C3208B6A-F5FB-406B-927A-9E376DACD003} [64Bits][\Avira\System Speedup\Delayed Startup\All users\1] - (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728] =>.Wondershare
O38 - TASK: {D2605214-EE94-4997-BD2B-C53B31A0CC5D} [64Bits][\Avira\System Speedup\TestScheduler] - (.Avira Operations GmbH & Co. KG - Avira.SystemSpeedup.Core.Common.Starter.) -- C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [64096] =>.Avira Operations GmbH & Co. KG
C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1528798634 - (.Opera Software.) -- C:\Users\Administrateur.SWAGCOMPUTEUR9\AppData\Local\Programs\Opera\launcher.exe [--scheduledautoupdate .--scheduledautoupdate] =>.Opera Software
C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1515586498 - (.Opera Software.) -- C:\Program Files\Opera\launcher.exe [--scheduledautoupdate .--scheduledautoupdate] =>.Opera Software
C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_154_pepper.exe [-check pepperplugin.-check] =>.Adobe Systems Incorporated
C:\Windows\System32\Tasks\Avira\System Speedup\Delayed Startup\BOB\1 - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner64.exe [] =>.Piriform Ltd
C:\Windows\System32\Tasks\Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe Systems Incorporated
C:\Windows\System32\Tasks\Avira\System Speedup\Delayed Startup\BOB\2 - (.Epic Games, Inc..) -- C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [] =>.Epic Games, Inc.
C:\Windows\System32\Tasks\Avira\Safe Shopping\Check - (.Avira Operations Gmbh & Co. KG.) -- C:\Program Files (x86)\Avira\Safe Shopping\Updater\Updater.exe [Launch Target=_self Cmdline="Check Target=_app Cmd] =>.Avira Operations GmbH & Co. KG
C:\Windows\System32\Tasks\CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Ltd
C:\Windows\System32\Tasks\Avira\Safe Shopping\Update - (.Avira Operations Gmbh & Co. KG.) -- C:\Program Files (x86)\Avira\Safe Shopping\Updater\Updater.exe [InstallerArgs="/quiet CULTURE=CurrentCulture DESKT] =>.Avira Operations GmbH & Co. KG
C:\Windows\System32\Tasks\AviraSystemSpeedupUpdate - (.Avira Operations GmbH & Co. KG.) -- C:\ProgramData\Avira\SystemSpeedup\Update\avira_speedup_setup_update.exe [.] =>.Avira Operations GmbH & Co. KG
C:\Windows\System32\Tasks\Avira_Antivirus_Systray - (.Avira Operations GmbH & Co. KG.) -- C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [/min] =>.Avira Operations GmbH & Co. KG
C:\Windows\System32\Tasks\Avira\Safe Shopping\Launch - (.Avira Operations Gmbh & Co. KG.) -- C:\Program Files (x86)\Avira\Safe Shopping\Updater\Updater.exe [Launch Target=_app Cmdline=StartMode=logon.Launch] =>.Avira Operations GmbH & Co. KG
C:\Windows\System32\Tasks\Avira\System Speedup\Delayed Startup\All users\1 - (.Wondershare.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [] =>.Wondershare
C:\Windows\System32\Tasks\Avira\System Speedup\TestScheduler - (.Avira Operations GmbH & Co. KG.) -- C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe [-umh -stest.-umh] =>.Avira Operations GmbH & Co. KG

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (9) - 1s
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKLM\..\Wow6432Node\Run: [Avira SystrayStartTrigger] . (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKLM\..\Wow6432Node\Run: [Offseason] . (. - .) -- keyaq =>.SUP.Orphan
O4 - HKLM\..\Wow6432Node\Run: [Jumper] . (. - .) -- keyaq =>.SUP.Orphan
O4 - HKLM\..\Wow6432Node\Run: [Avira System Speedup User Starter] . (.Avira Operations GmbH & Co. KG - Avira.SystemSpeedup.Core.Common.Starter.) -- C:\Program Files (x86)\Avira\System Speedup\Avira.SystemSpeedup.Core.Common.Starter.exe =>.Avira Operations GmbH & Co. KG®
O4 - HKLM\..\Wow6432Node\Run: [Showplace] . (. - .) -- keyaq =>.SUP.Orphan
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3385136756-3302798379-19751420-1000\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®

---\\ PROCESSUS LANCÉS (42) - 4s
[MD5.C5202C7669226FF13A74228BD42AD982] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [355232] [PID.388] =>.Intel Corporation
[MD5.55F6BFFA0F791F72ACCAE8054A0D9163] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\Antivirus\sched.exe [231176] [PID.1188] =>.Avira Operations GmbH & Co. KG®
[MD5.55F6BFFA0F791F72ACCAE8054A0D9163] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\Antivirus\avguard.exe [231176] [PID.1524] =>.Avira Operations GmbH & Co. KG®
[MD5.9741DE650379D9B9599DFEBDAD75CFDD] - (.Avira Operations GmbH & Co. KG - .) -- C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [2980848] [PID.1556] =>.Avira Operations GmbH & Co. KG®
[MD5.D98E2FD0E09C06842B6E67AF9C18FFA6] - (.Avira Operations GmbH & Co. KG - VpnService.) -- C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [338888] [PID.1680] =>.Avira Operations GmbH & Co. KG®
[MD5.7C51880EA7651F87A97173520D1194E0] - (.Avira Operations GmbH & Co. KG - Avira Updater Service Host.) -- C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [103728] [PID.1736] {2E66BFCDB020C2A7BCA595CF} =>.Avira Operations GmbH & Co. KG
[MD5.B5D6BF691F31D069732EA103689D7F98] - (.Intel - DSAService.) -- C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe [22304] [PID.1816] =>.Intel(R) Driver & Support Assistant®
[MD5.10C2F43D92BF53AC7611801B1A7CF22A] - (.Avira Operations GmbH & Co. KG - Avira Service Host.) -- C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [431144] [PID.2016] =>.Avira Operations GmbH & Co. KG®
[MD5.69E00FB2779B1C4CC1A96E277D5FBE90] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\Antivirus\avshadow.exe [450360] [PID.1080] =>.Avira Operations GmbH & Co. KG®
[MD5.F7265B7490428499F2FE409FA9247866] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008] [PID.1432] =>.Malwarebytes Corporation®
[MD5.36C9970435778474D5484D41D8D4606D] - (.Copyright (C) 2017 Intel Corporation. All rights rese - Intel(R) System Usage Report.) -- C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe [181992] [PID.3440] =>.Intel(R) Software Development Products®
[MD5.D1554E8E4839785C36E13F2C1E1ECA76] - (.Copyright (C) 2017 Intel Corporation. All rights rese - Intel(R) System Usage Report.) -- C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [885992] [PID.3856] =>.Intel(R) Software Development Products®
[MD5.CA499722A5E4C6110E80781086796F63] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [3706200] [PID.3000] =>.Malwarebytes Corporation®
[MD5.19737BEE3770597E9512D8DB9E1C93CE] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [10249048] [PID.4976] =>.Piriform Ltd®
[MD5.62B3B0328D928E9E573022B74591D75A] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\system32\igfxEM.exe [324512] [PID.4560] =>.Intel Corporation
[MD5.F64059ACD95D045FB97BDC7E3ACEADD4] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\system32\igfxHK.exe [257968] [PID.4568] =>.Intel Corporation
[MD5.75FBFC49CE8A7EF087AB450145C093C1] - (...) -- C:\Windows\system32\igfxTray.exe [404376] [PID.4556] =>.Intel Corporation
[MD5.CB30FA43BACD5E078A4B748604001A98] - (.Avira Operations Gmbh & Co. KG - Avira Safe Shopping.) -- C:\Program Files (x86)\Avira\Safe Shopping\Avira Safe Shopping.exe [1104520] [PID.5456] =>.Solute GmbH®
[MD5.99886AE07A164038B9E8382B971011BE] - (.Avira Operations GmbH & Co. KG - Avira system tray application.) -- C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [679968] [PID.5652] =>.Avira Operations GmbH & Co. KG®
[MD5.EEC70A614547B628E5E970C5A373EA96] - (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe [3206432] [PID.5768] =>.Valve®
[MD5.35D92A8B571AF06C3103CEBD5ADBE99A] - (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe [301512] [PID.5864] =>.Avira Operations GmbH & Co. KG®
[MD5.FE84F125C65B81039ACC9EA54B887EA8] - (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728] [PID.6088] =>.Wondershare Technology Co.,Ltd®
[MD5.7D3BD53FA9F158DEF510B4524BCE8323] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe [3938592] [PID.5448] =>.Valve®
[MD5.95B08615120CE1353EA4ED2C174E5A9F] - (.Valve Corporation - Steam Client Service.) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe [1683744] [PID.5220] =>.Valve®
[MD5.7D3BD53FA9F158DEF510B4524BCE8323] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe [3938592] [PID.5256] =>.Valve®
[MD5.7D3BD53FA9F158DEF510B4524BCE8323] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe [3938592] [PID.5604] =>.Valve®
[MD5.7D3BD53FA9F158DEF510B4524BCE8323] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe [3938592] [PID.5356] =>.Valve®
[MD5.7D3BD53FA9F158DEF510B4524BCE8323] - (.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe [3938592] [PID.4012] =>.Valve®
[MD5.BF4461F18BC8C601906AEF0D03D76AEA] - (.Avira Operations GmbH & Co. KG - Avira.SoftwareUpdater.ToastNotificationsBri.) -- C:\Program Files (x86)\Avira\SoftwareUpdater\AviraSoftwareUpdaterToastNotificationsBridge.exe [103880] [PID.5336] =>.Avira Operations GmbH & Co. KG®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.5392] =>.Opera Software AS®
[MD5.F8F3D0D0D2282D287B2D44B8A4C05A1E] - (.Opera Software - Opera crash-reporter.) -- C:\Program Files\Opera\54.0.2952.64\opera_crashreporter.exe [1179736] [PID.340] =>.Opera Software AS®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.5892] =>.Opera Software AS®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.3824] =>.Opera Software AS®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.3152] =>.Opera Software AS®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.5804] =>.Opera Software AS®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.3652] =>.Opera Software AS®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.6544] =>.Opera Software AS®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.6768] =>.Opera Software AS®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.6976] =>.Opera Software AS®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.6512] =>.Opera Software AS®
[MD5.8610DCFAD7B0A7A756CBB9D21D1D877C] - (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe [933464] [PID.7092] =>.Opera Software AS®
[MD5.4FC59EF735813E2C37AE1C2B19906393] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\BOB\Desktop\ZHPDiag3.exe [3163008] [PID.6932] =>.Nicolas Coolman

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (1) - 1s
P2 - FPN: [HKLM] [playkey.net/PlaykeyPlugin] - (.Playkey.) -- C:\Program Files (x86)\Playkey\npPlaykeyPluginApp_i386.dll

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc.
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc.
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.19101 (winblue_ltsb_escrow.180718-1800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (4) - 0s
~ IE Restricted Site Good: localhost
IE Restricted Site Good: webcompanion.com =>PUP.Optional.LavasoftWebCompanion
~ Microsoft Internet Explorer Restricted Site(s) Domains: 2(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)

---\\ INTERNET EXPLORER,Proxy Management (5) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation

---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (0)

---\\ RACCOURCIS GLOBAL STARTUP (64) - 10s
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\BOB\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: DS3 Tool.lnk . (...) C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe
O4 - GS\Quicklaunch [Administrateur]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [Administrateur]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: Camtasia 9.lnk . (.TechSmith Corporation - .) C:\Program Files (x86)\TechSmith\Camtasia 9\CamtasiaStudio.exe =>.TechSmith Corporation
O4 - GS\TaskBar [Administrateur]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd
O4 - GS\TaskBar [Administrateur]: Minecraft.lnk . (.Mojang - Minecraft launcher.) C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe =>.Mojang AB®
O4 - GS\TaskBar [Administrateur]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\TaskBar [Administrateur]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\TaskBar [Administrateur]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\Programs [Administrateur]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Desktop [BOB]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\BOB\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [BOB]: DS3 Tool.lnk . (...) C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe
O4 - GS\Quicklaunch [BOB]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Quicklaunch [BOB]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\sendTo [BOB]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\TaskBar [BOB]: Camtasia 9.lnk . (.TechSmith Corporation - .) C:\Program Files (x86)\TechSmith\Camtasia 9\CamtasiaStudio.exe =>.TechSmith Corporation
O4 - GS\TaskBar [BOB]: CCleaner.lnk . (.Piriform Ltd - .) C:\Program Files (x86)\CCleaner\CCleaner64.exe =>.Piriform Ltd
O4 - GS\TaskBar [BOB]: Minecraft.lnk . (.Mojang - Minecraft launcher.) C:\Program Files (x86)\Minecraft\MinecraftLauncher.exe =>.Mojang AB®
O4 - GS\TaskBar [BOB]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\TaskBar [BOB]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O4 - GS\TaskBar [BOB]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\Programs [BOB]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe -extoff =>.Microsoft Corporation®
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>..Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Epic Games Launcher.lnk . (.Epic Games, Inc. - UnrealEngineLauncher.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe =>.Epic Games Inc.®
O4 - GS\ProgramsCommon [Public]: HowToRemove.lnk . (...) C:\Users\BOB\AppData\Local\{E3BCD5E0-C714-B958-AA8C-9CB08EE46028}\HowToRemove\HowToRemove.html
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Navigateur Opera.lnk . (.Opera Software - .) C:\Program Files (x86)\Opera\launcher.exe =>.Opera Software
O4 - GS\ProgramsCommon [Public]: paint.net.lnk . (.dotPDN LLC - .) C:\Program Files (x86)\paint.net\PaintDotNet.exe =>.dotPDN LLC
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: TeamSpeak 3 Client.lnk . (...) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe
O4 - GS\ProgramsCommon [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) C:\Windows\system32\WindowsAnytimeUpgradeUI.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{F757988C-9DD8-4F20-A6B2-26E21899AE01}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress

---\\ PROTOCOLE ADDITIONNEL (20) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\System32\Userinit.exe =>.Microsoft Corporation

---\\ ÉNUMÈRE LES DONNÉES DE BOOTEXECUTE (1) - 0s
O34 - HKLM BootExecute: (avgBoot.exe)

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (9) - 1s
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Microsoft(C) Register Server.) -- C:\Windows\System32\regsvr32.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe =>.Microsoft Corporation
O40 - ASIC: Enable TLS1.1 and 1.2 [64Bits] - {66C64F22-FC60-4E6C-A6B5-F0D580E680CE} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Disable SSL3 [64Bits] - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation®

---\\ LOGICIELS INSTALLÉS (86) - 14s
O42 - Logiciel: . . - (.Intel.) [HKLM][64Bits] -- {BDB21711-3628-4159-B1E2-0BF55D105E2E} =>.Intel
O42 - Logiciel: . . . - (.Intel.) [HKLM][64Bits] -- {46267326-17DC-4A08-94BB-0FB32E31ACC2} =>.Intel
O42 - Logiciel: 7-Zip 18.01 (x64) - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip =>.Igor Pavlov
O42 - Logiciel: Adobe Flash Player 30 ActiveX - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player ActiveX =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Flash Player 30 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated®
O42 - Logiciel: Avira Antivirus v15.0.38.15 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Antivirus =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira Phantom VPN v2.15.2.28160 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira Phantom VPN =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira Privacy Pal v1.5.0.1453 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {F2BC8305-DFBE-4C02-A906-9BBD8EE299A3}_is1 =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira Safe Shopping v1.0.65.2672 - (.Avira Operations Gmbh & Co. KG.) [HKLM][64Bits] -- {9158dccb-03a7-493c-b07e-f47b9784425c} =>.Solute GmbH®
O42 - Logiciel: Avira Safe Shopping v1.0.72.2908 - (.Avira Operations Gmbh & Co. KG.) [HKLM][64Bits] -- {756F3F90-21CA-4BF5-B3B8-CB7DFFA0A146} =>.Avira Operations GmbH & Co. KG
O42 - Logiciel: Avira Software Updater v2.0.6.1378 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {FC75CF0A-54F5-4599-8169-AB1E443A0951} =>.Avira Operations GmbH & Co. KG
O42 - Logiciel: Avira System Speedup v4.11.1.7632 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- Avira System Speedup_is1 =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Avira v1.2.118.18106 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {3EF074FE-D7BB-4237-A254-5E9D36C8DACA} =>.Avira Operations GmbH & Co. KG
O42 - Logiciel: Avira v1.2.118.18106 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {890aaa3c-e398-43d7-bbe0-f109738dd071} =>.Avira Operations GmbH & Co. KG®
O42 - Logiciel: Camtasia 9 - (.TechSmith Corporation.) [HKLM][64Bits] -- {9A1BFE8E-398E-497D-B3BE-C1D8688010FC} =>.TechSmith Corporation
O42 - Logiciel: Camtasia 9 - (.TechSmith Corporation.) [HKLM][64Bits] -- {d298a2fc-0b3a-45ab-9711-d5ca8a3bda00} =>.TechSmith Corporation®
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: CLEO 4.3 - (.Seemann, Deji, Alien.) [HKLM][64Bits] -- {A8F37EB0-C741-41D7-8CAB-5B40ECEEF094}_is1
O42 - Logiciel: CPUID CPU-Z 1.78 - (.CPUID Inc.) [HKLM][64Bits] -- CPUID CPU-Z_is1 =>.CPUID Inc
O42 - Logiciel: Dead Bits - (.Microblast Games.) [HKLM][64Bits] -- Steam App 303390 =>.Valve®
O42 - Logiciel: Discord - (.Discord Inc..) [HKCU][64Bits] -- Discord =>.Discord Inc.®
O42 - Logiciel: Epic Games Launcher - (.Epic Games, Inc..) [HKLM][64Bits] -- {A98163A6-4350-4195-AB3B-8A5BA4B6C7D8} =>.Epic Games, Inc.
O42 - Logiciel: Epic Games Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {66C5838F-B854-4A55-89E6-A6138747A4DF} =>.Epic Games, Inc.
O42 - Logiciel: Game Dev Tycoon - (.Greenheart Games.) [HKLM][64Bits] -- Steam App 239820 =>.Valve®
O42 - Logiciel: Gtk# for .Net 2.12.26 - (.Xamarin, Inc..) [HKLM][64Bits] -- {BC25B808-A11C-4C9F-9C0A-6682E47AAB83} =>.Xamarin, Inc.
O42 - Logiciel: Intel(R) Computing Improvement Program - (.Intel Corporation.) [HKLM][64Bits] -- {7DD6E919-08EA-42F5-87D7-7F86CDB2E745} =>.Intel Corporation
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: Intel® Driver & Support Assistant - (.Intel.) [HKLM][64Bits] -- {35fa0dcf-eda2-402b-b1f0-64973bb1938a} =>.Intel(R) Driver & Support Assistant®
O42 - Logiciel: Java 10.0.1 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {D33DF729-38BB-5651-9D40-93BFEFB5DCED} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 161 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180161F0} =>.Oracle Corporation
O42 - Logiciel: Java 8 Update 161 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F64180161F0} =>.Oracle Corporation
O42 - Logiciel: Java(TM) SE Development Kit 9.0.4 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {1EF87463-0B0F-5B2A-B167-22B5CD371ACD} =>.Oracle Corporation
O42 - Logiciel: Kerbal Space Program - (.Squad.) [HKLM][64Bits] -- Steam App 220200 =>.Valve®
O42 - Logiciel: Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {c6c5a357-c7ca-4a5f-9789-3bb1af579253} =>.Epic Games Inc.®
O42 - Logiciel: Malwarebytes version 3.5.1.2522 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: Microsoft .NET Framework 4.7.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {09CCBE8E-B964-30EF-AE84-6537AB4197F9} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Framework 4.7.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033 =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Framework 4.7.2 (FRA) - (.Microsoft Corporation.) [HKLM][64Bits] -- {5E61A89C-903E-3EA0-9785-E3C60AFBEEBE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft .NET Framework 4.7.2 (Français) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Games for Windows - LIVE - (.Microsoft Corporation.) [HKLM][64Bits] -- {2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Games for Windows - LIVE Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {00C5F4F4-62F9-40D7-8000-AD8A9CD0C669} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {d992c12e-cab2-426f-bde3-fb8c53950b0d} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {e2803110-78b3-4664-a479-3611a381656a} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {69BCE4AC-9572-3271-A2FB-9423BDA36A43} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BBF2AC74-720C-3CB3-8291-5E34039232FA} =>.Microsoft Corporation
O42 - Logiciel: Microsoft WSE 3.0 Runtime - (.Microsoft Corp..) [HKLM][64Bits] -- {E3E71D07-CD27-46CB-8448-16D4FB29AA13} =>.Microsoft Corp.
O42 - Logiciel: Microsoft XNA Framework Redistributable 4.0 Refresh - (.Microsoft Corporation.) [HKLM][64Bits] -- {D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F} =>.Microsoft Corporation
O42 - Logiciel: Minecraft - (.Mojang.) [HKLM][64Bits] -- {756E195A-CB58-4B99-917F-0DDA0D881204} =>.Mojang
O42 - Logiciel: NVIDIA PhysX - (.NVIDIA Corporation.) [HKLM][64Bits] -- {8B922CF8-8A6C-41CE-A858-F1755D7F5D29} =>.NVIDIA Corporation
O42 - Logiciel: OpenOffice 4.1.5 - (.Apache Software Foundation.) [HKLM][64Bits] -- {155C4F2E-7381-4B80-B258-FD0600C9C46B} =>.Apache Software Foundation
O42 - Logiciel: Opera Stable 54.0.2952.64 - (.Opera Software.) [HKLM][64Bits] -- Opera 54.0.2952.64 =>.Opera Software AS®
O42 - Logiciel: Overwolf - (.Overwolf Ltd..) [HKLM][64Bits] -- Overwolf =>.Overwolf Ltd.
O42 - Logiciel: paint.net - (.dotPDN LLC.) [HKLM][64Bits] -- {F10AAD91-58DF-44EC-A647-810197141667} =>.dotPDN LLC
O42 - Logiciel: PAYDAY 2 - (.OVERKILL - a Starbreeze Studio..) [HKLM][64Bits] -- Steam App 218620 =>.Valve®
O42 - Logiciel: Playkey v1.4.8.68683 - (.Playkey software.) [HKLM][64Bits] -- {4287A341-688B-4B85-88AB-338966C6B7D8}_is1 {6B0C927CBBF71181496D5FE7F4C8C2B6}
O42 - Logiciel: Portal version Source Engine 11 (build 3258) - (.Valve Corporation / Tocram.) [HKLM][64Bits] -- {FFD114BA-3A80-4417-AF64-5BF9E20E93B3}_is1
O42 - Logiciel: Realtek Ethernet Controller All-In-One Windows Driver - (.Realtek.) [HKLM][64Bits] -- {F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Reload Icons Cache 1.00 - (.Mr Blade Design's.) [HKLM][64Bits] -- Reload Icons Cache 1.00 =>.Mr Blade Design's
O42 - Logiciel: Remote Play with PlayStation 3 - (.Sony Corporation.) [HKLM][64Bits] -- {A80531E2-2F8B-4454-AE12-79F43762D75E} =>.Sony Corporation
O42 - Logiciel: RGSS-RTP Standard - (.Enterbrain.) [HKLM][64Bits] -- {5A9FE525-8B8F-4701-A937-7F6745A4E9C7} =>.Enterbrain
O42 - Logiciel: RGSS-RTP Standard 1.04 - (.Enterbrain.) [HKLM][64Bits] -- RGSS-RTP Standard_is1 =>.Enterbrain
O42 - Logiciel: Skype version 8.23 - (.Skype Technologies S.A..) [HKLM][64Bits] -- Skype_is1 =>.Skype Software Sarl®
O42 - Logiciel: Spooky's Jump Scare Mansion - (.Lag Studios.) [HKLM][64Bits] -- Steam App 356670 =>.Valve®
O42 - Logiciel: Stardew Valley - (.ConcernedApe.) [HKLM][64Bits] -- Steam App 413150 =>.Valve®
O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve®
O42 - Logiciel: Steam 360 Video Player - (.Valve.) [HKLM][64Bits] -- Steam App 613220 =>.Valve®
O42 - Logiciel: Update for Microsoft .NET Framework 4.7.2 (KB4087364) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB4087364 =>.Microsoft Corporation
O42 - Logiciel: UsbDk Runtime Libraries - (.Red Hat, Inc..) [HKLM][64Bits] -- {446D7CEA-0B07-44FF-8981-37985CA96C41}
O42 - Logiciel: VAIO - Lecture à distance avec PlayStation®3 - (.Sony Corporation.) [HKLM][64Bits] -- {07441A52-E208-478A-92B7-5C337CA8C131} =>.Sony Corporation®
O42 - Logiciel: WinRAR 5.50 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: Wondershare Helper Compact 2.6.0 - (.Wondershare.) [HKLM][64Bits] -- {5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1 =>.Wondershare

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (279) - 14s
HKU\.DEFAULT\Software\ByteFence =>.SUP.ByteFence
HKU\S-1-5-18\Software\ByteFence =>.SUP.ByteFence
HKCU\Software\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com =>PUP.Optional.LavasoftWebCompanion
HKLM\SOFTWARE\Wow6432Node\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion
HKLM\SOFTWARE\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion
HKLM\System\CurrentControlSet\Services\EventLog\Application\SCService =>PUP.Optional.Legacy
HKLM\System\CurrentControlSet\Services\EventLog\Reason\ReasonByteFence =>.SUP.ByteFence
HKLM\SOFTWARE\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\AVG =>.AVG Software
HKLM\SOFTWARE\Avira =>.Avira
HKLM\SOFTWARE\Clickteam =>.Clickteam
HKLM\SOFTWARE\EasyAntiCheat =>.EasyAntiCheat
HKLM\SOFTWARE\Electronic Arts =>.Electronic Arts
HKLM\SOFTWARE\Enterbrain =>.Enterbrain
HKLM\SOFTWARE\Epic Games =>.Epic Games
HKLM\SOFTWARE\EpicGames =>.Epic Games
HKLM\SOFTWARE\GOG.com =>.GOG.com
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\kpzs
HKLM\SOFTWARE\Lavasoft =>.Lavasoft
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Martin Prikryl =>.Martin Prikryl
HKLM\SOFTWARE\Microleaves =>.SUP.Microleaves
HKLM\SOFTWARE\Mojang =>.Mojang
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\nosteam.ro
HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OpenOffice =>.SourceForge
HKLM\SOFTWARE\Oracle =>.Oracle
HKLM\SOFTWARE\Overwolf =>.Overwolf
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Protexis =>.Protexis Inc.
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RobloxReg =>.Roblox Corporation
HKLM\SOFTWARE\Rockstar Games =>.Rockstar Games
HKLM\SOFTWARE\Shortcuter
HKLM\SOFTWARE\Silicon Integrated Systems Corporation =>.Silicon Integrated Systems Corporation
HKLM\SOFTWARE\Sims =>.Electronic Arts, Inc.
HKLM\SOFTWARE\Sony Corporation =>.Sony Corporation
HKLM\SOFTWARE\StudioQTRobloxReg =>.Roblox Corporation
HKLM\SOFTWARE\TechSmith =>.TechSmith
HKLM\SOFTWARE\Valve =>.Valve
HKLM\SOFTWARE\Visicom Media =>.SUP.VisicomMedia
HKLM\SOFTWARE\WafCX =>.WafCX
HKLM\SOFTWARE\Wondershare =>.Wondershare
HKLM\SOFTWARE\X-AVCSD =>.Avira Software
HKLM\SOFTWARE\Xamarin =>.Xamarin
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\AGEIA Technologies =>.AGEIA Technologies
HKLM\SOFTWARE\WOW6432Node\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\WOW6432Node\AVG =>.AVG Software
HKLM\SOFTWARE\WOW6432Node\Avira =>.Avira
HKLM\SOFTWARE\WOW6432Node\Clickteam =>.Clickteam
HKLM\SOFTWARE\WOW6432Node\EasyAntiCheat =>.EasyAntiCheat
HKLM\SOFTWARE\WOW6432Node\Electronic Arts =>.Electronic Arts
HKLM\SOFTWARE\WOW6432Node\Enterbrain =>.Enterbrain
HKLM\SOFTWARE\WOW6432Node\Epic Games =>.Epic Games
HKLM\SOFTWARE\WOW6432Node\EpicGames =>.Epic Games
HKLM\SOFTWARE\WOW6432Node\GOG.com =>.GOG.com
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft
HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\kpzs
HKLM\SOFTWARE\WOW6432Node\Lavasoft =>.Lavasoft
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\Martin Prikryl =>.Martin Prikryl
HKLM\SOFTWARE\WOW6432Node\Microleaves =>.SUP.Microleaves
HKLM\SOFTWARE\WOW6432Node\Mojang =>.Mojang
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\nosteam.ro
HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge
HKLM\SOFTWARE\WOW6432Node\Oracle =>.Oracle
HKLM\SOFTWARE\WOW6432Node\Overwolf =>.Overwolf
HKLM\SOFTWARE\WOW6432Node\Piriform =>.Piriform
HKLM\SOFTWARE\WOW6432Node\Protexis =>.Protexis Inc.
HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\RobloxReg =>.Roblox Corporation
HKLM\SOFTWARE\WOW6432Node\Rockstar Games =>.Rockstar Games
HKLM\SOFTWARE\WOW6432Node\Shortcuter
HKLM\SOFTWARE\WOW6432Node\Silicon Integrated Systems Corporation =>.Silicon Integrated Systems Corporation
HKLM\SOFTWARE\WOW6432Node\Sims =>.Electronic Arts, Inc.
HKLM\SOFTWARE\WOW6432Node\Sony Corporation =>.Sony Corporation
HKLM\SOFTWARE\WOW6432Node\StudioQTRobloxReg =>.Roblox Corporation
HKLM\SOFTWARE\WOW6432Node\TechSmith =>.TechSmith
HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve
HKLM\SOFTWARE\WOW6432Node\Visicom Media =>.SUP.VisicomMedia
HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX
HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare
HKLM\SOFTWARE\WOW6432Node\X-AVCSD =>.Avira Software
HKLM\SOFTWARE\WOW6432Node\Xamarin =>.Xamarin
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AI_RecycleBin =>.Legitimate
HKCU\SOFTWARE\APN PIP =>.SUP.Conduit
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\AVG =>.AVG Software
HKCU\SOFTWARE\Avira =>.Avira
HKCU\SOFTWARE\Barbary
HKCU\SOFTWARE\Bennett Foddy
HKCU\SOFTWARE\BitTorrent =>.BitTorrent (P2P)
HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKCU\SOFTWARE\BugSplat =>.Bugsplat Game
HKCU\SOFTWARE\cacaoweb =>.SUP.CacaoWeb
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\CineForm =>.CineForm
HKCU\SOFTWARE\Clickteam =>.Clickteam
HKCU\SOFTWARE\DefaultCompany =>.Unity
HKCU\SOFTWARE\Disc Soft =>.Disc Soft
HKCU\SOFTWARE\Discord
HKCU\SOFTWARE\DMGR1.25
HKCU\SOFTWARE\Dry Cactus
HKCU\SOFTWARE\Electronic Arts =>.Electronic Arts
HKCU\SOFTWARE\Emulators =>.Open Source
HKCU\SOFTWARE\Enterbrain =>.Enterbrain
HKCU\SOFTWARE\Epic Games =>.Epic Games
HKCU\SOFTWARE\Firaxis =>.Firaxis Games
HKCU\SOFTWARE\Game Maker
HKCU\SOFTWARE\getsee
HKCU\SOFTWARE\GOG.com =>.GOG.com
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Imagination Technologies =>.Imagination Technologies
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\JaboSoft =>.JaboSoft
HKCU\SOFTWARE\JavaSoft =>.JavaSoft
HKCU\SOFTWARE\Joe Williams =>.Joe Williams
HKCU\SOFTWARE\JoeWillgames
HKCU\SOFTWARE\Lavasoft =>.Lavasoft
HKCU\SOFTWARE\Leafy Games, LLC
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\MainConcept =>.MainConcept AG
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\ManyCam =>..SUP.VisicomManyCam
HKCU\SOFTWARE\Martin Prikryl =>.Martin Prikryl
HKCU\SOFTWARE\Microblast Games =>.Microblast Games
HKCU\SOFTWARE\Mojang =>.Mojang
HKCU\SOFTWARE\Monomi Park =>.Monomi Park
HKCU\SOFTWARE\MultiMC
HKCU\SOFTWARE\N64 Emulation =>.Games Software
HKCU\SOFTWARE\OpenOffice =>.SourceForge
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\Overwolf =>.Overwolf
HKCU\SOFTWARE\paint.net =>.Rick Brewster
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKCU\SOFTWARE\Protexis =>.Protexis Inc.
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Razer =>.Razer
HKCU\SOFTWARE\Roblox =>.ROBLOX
HKCU\SOFTWARE\ROBLOX Corporation =>.Roblox Corporation
HKCU\SOFTWARE\Rockstar Games =>.Rockstar Games
HKCU\SOFTWARE\ScriptHookV
HKCU\SOFTWARE\SecuROM =>.SecuROM
HKCU\SOFTWARE\skype =>.Skype
HKCU\SOFTWARE\skypeapp-64ccef7df34b =>.Skype Technologies
HKCU\SOFTWARE\skypeapp-ea1a4d7bab6d =>.Skype Technologies
HKCU\SOFTWARE\Sony Corporation =>.Sony Corporation
HKCU\SOFTWARE\SplitmediaLabs =>.SplitMediaLabs
HKCU\SOFTWARE\Squad =>.Games Software
HKCU\SOFTWARE\TechSmith =>.TechSmith
HKCU\SOFTWARE\Texel Raptor
HKCU\SOFTWARE\Unity =>.Unity
HKCU\SOFTWARE\Unity Technologies =>.Unity Technologies
HKCU\SOFTWARE\Valve =>.Valve
HKCU\SOFTWARE\Valve Software =>.Valve
HKCU\SOFTWARE\Visicom Media =>.SUP.VisicomMedia
HKCU\SOFTWARE\Wargaming.net =>.Wargaming.net
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wondershare =>.Wondershare
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\YandereDev =>.Games Software
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\Zonitron Productions
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Avira =>.Avira
HKU\.DEFAULT\SOFTWARE\Caphyon =>.Caphyon
HKU\.DEFAULT\SOFTWARE\Chromium =>.Chromium
HKU\.DEFAULT\SOFTWARE\Epic Games =>.Epic Games
HKU\.DEFAULT\SOFTWARE\Lavasoft =>.Lavasoft
HKU\.DEFAULT\SOFTWARE\Opera Software =>.Opera Software
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\.DEFAULT\SOFTWARE\Razer =>.Razer
HKU\.DEFAULT\SOFTWARE\TechSmith =>.TechSmith
HKU\.DEFAULT\SOFTWARE\Valve =>.Valve
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\7-Zip =>.Igor Pavlov
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\AI_RecycleBin =>.Legitimate
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\APN PIP =>.SUP.Conduit
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\AVG =>.AVG Software
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Avira =>.Avira
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Barbary
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Bennett Foddy
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\BitTorrent =>.BitTorrent (P2P)
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\BugSplat =>.Bugsplat Game
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\cacaoweb =>.SUP.CacaoWeb
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Chromium =>.Chromium
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\CineForm =>.CineForm
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Clickteam =>.Clickteam
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\DefaultCompany =>.Unity
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Disc Soft =>.Disc Soft
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Discord
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\DMGR1.25
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Dry Cactus
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Electronic Arts =>.Electronic Arts
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Emulators =>.Open Source
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Enterbrain =>.Enterbrain
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Epic Games =>.Epic Games
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Firaxis =>.Firaxis Games
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Game Maker
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\getsee
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\GOG.com =>.GOG.com
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Google =>.Google
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Imagination Technologies =>.Imagination Technologies
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\JaboSoft =>.JaboSoft
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\JavaSoft =>.JavaSoft
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Joe Williams =>.Joe Williams
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\JoeWillgames
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Lavasoft =>.Lavasoft
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Leafy Games, LLC
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\MainConcept =>.MainConcept AG
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\ManyCam =>..SUP.VisicomManyCam
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Martin Prikryl =>.Martin Prikryl
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Microblast Games =>.Microblast Games
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Mojang =>.Mojang
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Monomi Park =>.Monomi Park
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\MultiMC
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\N64 Emulation =>.Games Software
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\OpenOffice =>.SourceForge
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Opera Software =>.Opera Software
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Overwolf =>.Overwolf
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\paint.net =>.Rick Brewster
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\ProtectedStorage =>.Microsoft Corporation
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Protexis =>.Protexis Inc.
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Razer =>.Razer
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Roblox =>.ROBLOX
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\ROBLOX Corporation =>.Roblox Corporation
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Rockstar Games =>.Rockstar Games
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\ScriptHookV
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\SecuROM =>.SecuROM
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\skype =>.Skype
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\skypeapp-64ccef7df34b =>.Skype Technologies
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\skypeapp-ea1a4d7bab6d =>.Skype Technologies
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Sony Corporation =>.Sony Corporation
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\SplitmediaLabs =>.SplitMediaLabs
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Squad =>.Games Software
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\TechSmith =>.TechSmith
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Texel Raptor
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Unity =>.Unity
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Unity Technologies =>.Unity Technologies
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Valve =>.Valve
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Valve Software =>.Valve
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Visicom Media =>.SUP.VisicomMedia
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Wargaming.net =>.Wargaming.net
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Wondershare =>.Wondershare
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\YandereDev =>.Games Software
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\ZHP =>.Nicolas Coolman
HKU\S-1-5-21-3385136756-3302798379-19751420-1000\SOFTWARE\Zonitron Productions

---\\ CONTENU DES DOSSIERS PROGRAMMES (366) - 16s
O43 - CFD: 08/08/2018 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov
O43 - CFD: 22/05/2018 - [] D -- C:\Program Files\7612cd6fdc13f808ae113414e03f6f3d
O43 - CFD: 09/01/2018 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 10/05/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 18/08/2018 - [] D -- C:\Program Files\CPUID =>.CPUID Inc
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 09/01/2018 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 16/08/2018 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 18/04/2018 - [] D -- C:\Program Files\Java =>.Oracle
O43 - CFD: 03/02/2018 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 17/05/2018 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 03/08/2018 - [] D -- C:\Program Files\Opera =>.Opera Software
O43 - CFD: 07/02/2018 - [] D -- C:\Program Files\paint.net =>.Rick Brewster
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 10/02/2018 - [] D -- C:\Program Files\TechSmith =>.TechSmith
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 09/07/2018 - [] D -- C:\Program Files\UsbDk Runtime Library {4A178F2FAE8FC953B41E7C231FA5ED93}
O43 - CFD: 24/01/2018 - [] D -- C:\Program Files\Valve =>.Valve
O43 - CFD: 08/08/2018 - [0] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 09/01/2018 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 09/01/2018 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 21/02/2018 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 27/04/2018 - [0] D -- C:\Program Files (x86)\AGEIA Technologies =>.AGEIA Technologies
O43 - CFD: 03/08/2018 - [] D -- C:\Program Files (x86)\Avira =>.Avira Software
O43 - CFD: 02/07/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 22/05/2018 - [0] HD -- C:\Program Files (x86)\Correspondingly
O43 - CFD: 21/04/2018 - [] D -- C:\Program Files (x86)\EasyAntiCheat =>.EasyAntiCheat
O43 - CFD: 08/08/2018 - [] D -- C:\Program Files (x86)\Epic Games =>.Epic Games
O43 - CFD: 23/05/2018 - [0] D -- C:\Program Files (x86)\gazi
O43 - CFD: 23/05/2018 - [0] D -- C:\Program Files (x86)\Gloss
O43 - CFD: 19/08/2018 - [] D -- C:\Program Files (x86)\Google =>.Google
O43 - CFD: 11/03/2018 - [] D -- C:\Program Files (x86)\GtkSharp =>.Xamarin, Inc
O43 - CFD: 22/05/2018 - [0] D -- C:\Program Files (x86)\incorporates
O43 - CFD: 27/04/2018 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 17/08/2018 - [] D -- C:\Program Files (x86)\Intel Driver and Support Assistant =>.Intel(R) Driver & Support Assistant®
O43 - CFD: 16/08/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 27/01/2018 - [] D -- C:\Program Files (x86)\Java =>.Oracle
O43 - CFD: 23/05/2018 - [] D -- C:\Program Files (x86)\KMSPico 10.2.1 Final =>HackTool.KMSpico
O43 - CFD: 22/05/2018 - [0] D -- C:\Program Files (x86)\Magrath
O43 - CFD: 17/05/2018 - [] D -- C:\Program Files (x86)\Microleaves =>.SUP.Microleaves
O43 - CFD: 03/05/2018 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/05/2018 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 13/01/2018 - [] D -- C:\Program Files (x86)\Microsoft WSE =>.Microsoft Corporation
O43 - CFD: 30/06/2018 - [] D -- C:\Program Files (x86)\Microsoft XNA =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 18/08/2018 - [] D -- C:\Program Files (x86)\Minecraft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 27/04/2018 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 18/06/2018 - [] D -- C:\Program Files (x86)\OnLive =>.OnLive
O43 - CFD: 18/06/2018 - [] D -- C:\Program Files (x86)\Playkey {6B0C927CBBF71181496D5FE7F4C8C2B6}
O43 - CFD: 22/05/2018 - [] D -- C:\Program Files (x86)\ProxyGate
O43 - CFD: 09/01/2018 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 22/05/2018 - [0] HD -- C:\Program Files (x86)\romantic =>.SUP.Empty
O43 - CFD: 28/03/2018 - [] D -- C:\Program Files (x86)\SplitmediaLabs =>.SplitMediaLabs
O43 - CFD: 20/08/2018 - [] D -- C:\Program Files (x86)\Steam =>.Steam Games
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 08/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 17/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accelerer PC =>.SUP.PCSpeedUp
O43 - CFD: 09/01/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 09/01/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 17/08/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira =>.Avira Software
O43 - CFD: 09/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 18/08/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID =>.CPUID Inc
O43 - CFD: 09/04/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 15/04/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com =>.GOG.com
O43 - CFD: 10/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver and Support Assistant
O43 - CFD: 17/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle
O43 - CFD: 17/04/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit =>.Oracle
O43 - CFD: 31/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft =>.Lavasoft
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 18/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 17/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation
O43 - CFD: 18/08/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft =>.Microsoft Corporation
O43 - CFD: 05/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotioninJoy =>.MotionInjoy
O43 - CFD: 07/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio =>.OBS Studio
O43 - CFD: 22/03/2018 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.5 =>.SourceForge
O43 - CFD: 18/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Playkey
O43 - CFD: 09/06/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype =>.Skype
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 10/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games
O43 - CFD: 10/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TechSmith =>.TechSmith
O43 - CFD: 24/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Valve =>.Valve
O43 - CFD: 10/02/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vox Populi
O43 - CFD: 09/01/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 20/03/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warplanes =>.Wargaming.net
O43 - CFD: 21/02/2018 - [0] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 24/06/2018 - [0] D -- C:\ProgramData\AltisCraft.fr
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 02/02/2018 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 25/01/2018 - [] D -- C:\ProgramData\Avg =>.AVG Software
O43 - CFD: 17/05/2018 - [] D -- C:\ProgramData\Avira =>.Avira Software
O43 - CFD: 17/05/2018 - [] D -- C:\ProgramData\Avira Operations Gmbh & Co. KG =>.Avira Operations GmbH & Co. KG
O43 - CFD: 20/03/2018 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org
O43 - CFD: 09/01/2018 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 25/01/2018 - [] HD -- C:\ProgramData\Common Files =>.Microsoft Corporation
O43 - CFD: 25/01/2018 - [] D -- C:\ProgramData\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 15/01/2018 - [] D -- C:\ProgramData\DAEMON Tools Pro =>.The DAEMON Team
O43 - CFD: 09/01/2018 - [] D -- C:\ProgramData\Dell =>.Dell
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 13/01/2018 - [] D -- C:\ProgramData\EA Core =>.Electronic Arts, Inc.
O43 - CFD: 13/01/2018 - [] D -- C:\ProgramData\Electronic Arts =>.Electronic Arts
O43 - CFD: 08/08/2018 - [] D -- C:\ProgramData\Epic =>.Epic
O43 - CFD: 09/01/2018 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 29/03/2018 - [] D -- C:\ProgramData\GOG.com =>.GOG.com
O43 - CFD: 10/01/2018 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 09/03/2018 - [] D -- C:\ProgramData\LogMeIn =>.LogMeIn
O43 - CFD: 03/02/2018 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 06/06/2018 - [] D -- C:\ProgramData\ManyCam =>.SUP.VisicomMedia
O43 - CFD: 09/01/2018 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 17/05/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/03/2018 - [] D -- C:\ProgramData\Microsoft Visual Studio =>.Microsoft Corporation
O43 - CFD: 09/01/2018 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 16/02/2018 - [0] D -- C:\ProgramData\OEM Links =>.Legitimate
O43 - CFD: 27/01/2018 - [] D -- C:\ProgramData\Oracle =>.Oracle
O43 - CFD: 10/02/2018 - [0] D -- C:\ProgramData\Origin =>.Electronic Arts, Inc.
O43 - CFD: 13/02/2018 - [] D -- C:\ProgramData\Overwolf =>.Overwolf
O43 - CFD: 11/08/2018 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 16/08/2018 - [] D -- C:\ProgramData\Razer =>.Razer
O43 - CFD: 10/01/2018 - [0] D -- C:\ProgramData\Roaming =>.Microsoft Corporation
O43 - CFD: 22/01/2018 - [] SHD -- C:\ProgramData\SecuROM =>.SecuROM
O43 - CFD: 16/04/2018 - [] D -- C:\ProgramData\Socialclub =>.Legitimate
O43 - CFD: 16/03/2018 - [] D -- C:\ProgramData\Sony Corporation =>.Sony Corporation
O43 - CFD: 28/03/2018 - [] D -- C:\ProgramData\SplitMediaLabs =>.SplitMediaLabs
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 16/04/2018 - [] D -- C:\ProgramData\Steam =>.Steam Games
O43 - CFD: 10/02/2018 - [] D -- C:\ProgramData\TechSmith =>.TechSmith
O43 - CFD: 13/04/2018 - [0] D -- C:\ProgramData\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 11/03/2018 - [] D -- C:\ProgramData\Unity =>.Unity
O43 - CFD: 14/03/2018 - [] D -- C:\ProgramData\Wargaming.net =>.Wargaming.net
O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\Wondershare =>.Wondershare
O43 - CFD: 01/02/2018 - [] D -- C:\ProgramData\X360CE =>.Microsoft Corporation
O43 - CFD: 08/08/2018 - [] D -- C:\Program Files (x86)\Common Files\BattlEye =>.BattlEye
O43 - CFD: 25/01/2018 - [] D -- C:\Program Files (x86)\Common Files\Cipuku
O43 - CFD: 17/04/2018 - [] D -- C:\Program Files (x86)\Common Files\Enterbrain =>.Enterbrain
O43 - CFD: 27/03/2018 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 30/06/2018 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 27/01/2018 - [] D -- C:\Program Files (x86)\Common Files\Oracle =>.Oracle
O43 - CFD: 13/02/2018 - [] D -- C:\Program Files (x86)\Common Files\Overwolf =>.Overwolf
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 16/08/2018 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games
O43 - CFD: 10/01/2018 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 02/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Wondershare =>.Wondershare
O43 - CFD: 28/06/2018 - [] D -- C:\Users\BOB\AppData\Roaming\.azlauncher
O43 - CFD: 20/08/2018 - [] D -- C:\Users\BOB\AppData\Roaming\.minecraft =>.Microsoft Corporation
O43 - CFD: 21/02/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 06/08/2018 - [] D -- C:\Users\BOB\AppData\Roaming\discord =>.GitHub
O43 - CFD: 18/06/2018 - [0] D -- C:\Users\BOB\AppData\Roaming\dtdump
O43 - CFD: 06/05/2018 - [] D -- C:\Users\BOB\AppData\Roaming\dvdcss =>.VideoLan Team
O43 - CFD: 21/04/2018 - [] D -- C:\Users\BOB\AppData\Roaming\EasyAntiCheat =>.EasyAntiCheat
O43 - CFD: 12/03/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Enterbrain =>.Enterbrain
O43 - CFD: 09/01/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Google =>.Google
O43 - CFD: 09/01/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [0] D -- C:\Users\BOB\AppData\Roaming\Intel =>.Intel Corporation
O43 - CFD: 27/01/2018 - [] D -- C:\Users\BOB\AppData\Roaming\java =>.Oracle
O43 - CFD: 10/03/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 12/04/2011 - [0] D -- C:\Users\BOB\AppData\Roaming\Media Center Programs =>.Microsoft Corporation
O43 - CFD: 06/06/2018 - [] SD -- C:\Users\BOB\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/03/2018 - [] D -- C:\Users\BOB\AppData\Roaming\MMFApplications =>.MultiMedia Fusion
O43 - CFD: 18/06/2018 - [] D -- C:\Users\BOB\AppData\Roaming\OnLive App
O43 - CFD: 22/03/2018 - [] D -- C:\Users\BOB\AppData\Roaming\OpenOffice =>.SourceForge
O43 - CFD: 10/01/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 18/06/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Playkey
O43 - CFD: 11/03/2018 - [] D -- C:\Users\BOB\AppData\Roaming\rabc
O43 - CFD: 06/06/2018 - [0] D -- C:\Users\BOB\AppData\Roaming\schedsvc
O43 - CFD: 22/01/2018 - [] RHD -- C:\Users\BOB\AppData\Roaming\SecuROM =>.SecuROM
O43 - CFD: 20/01/2018 - [] D -- C:\Users\BOB\AppData\Roaming\skyz =>.Legitimate
O43 - CFD: 28/03/2018 - [] D -- C:\Users\BOB\AppData\Roaming\SplitmediaLabs =>.SplitMediaLabs
O43 - CFD: 17/08/2018 - [] D -- C:\Users\BOB\AppData\Roaming\StardewValley
O43 - CFD: 06/05/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Steam =>.Steam Games
O43 - CFD: 10/01/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Sun =>.Oracle
O43 - CFD: 10/02/2018 - [] D -- C:\Users\BOB\AppData\Roaming\TechSmith =>.TechSmith
O43 - CFD: 12/04/2018 - [] D -- C:\Users\BOB\AppData\Roaming\UserCache
O43 - CFD: 18/06/2018 - [0] D -- C:\Users\BOB\AppData\Roaming\Windows_Activator
O43 - CFD: 10/01/2018 - [] D -- C:\Users\BOB\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 20/08/2018 - [] D -- C:\Users\BOB\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 06/06/2018 - [] D -- C:\Users\BOB\AppData\Local\Adobe =>.Adobe
O43 - CFD: 17/05/2018 - [] D -- C:\Users\BOB\AppData\Local\AdvinstAnalytics =>.SUP.Various
O43 - CFD: 09/01/2018 - [0] SHD -- C:\Users\BOB\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 09/01/2018 - [] D -- C:\Users\BOB\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 26/01/2018 - [] D -- C:\Users\BOB\AppData\Local\Avg =>.AVG Software
O43 - CFD: 25/01/2018 - [] D -- C:\Users\BOB\AppData\Local\AvgSetupLog =>.AVG Software
O43 - CFD: 22/05/2018 - [] D -- C:\Users\BOB\AppData\Local\Avira =>.Avira Software
O43 - CFD: 17/05/2018 - [] D -- C:\Users\BOB\AppData\Local\Avira Operations Gmbh & Co. KG =>.Avira Operations GmbH & Co. KG
O43 - CFD: 17/05/2018 - [] D -- C:\Users\BOB\AppData\Local\Avira_Operations_Gmbh_&_C =>.Avira Software
O43 - CFD: 19/08/2018 - [] D -- C:\Users\BOB\AppData\Local\CEF =>.CEF
O43 - CFD: 19/08/2018 - [] D -- C:\Users\BOB\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 04/05/2018 - [] D -- C:\Users\BOB\AppData\Local\CrashReportClient
O43 - CFD: 09/01/2018 - [0] D -- C:\Users\BOB\AppData\Local\Deployment =>.Microsoft Corporation
O43 - CFD: 27/06/2018 - [] D -- C:\Users\BOB\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 02/05/2018 - [] D -- C:\Users\BOB\AppData\Local\Discord =>.GitHub
O43 - CFD: 16/04/2018 - [] D -- C:\Users\BOB\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd
O43 - CFD: 08/08/2018 - [] D -- C:\Users\BOB\AppData\Local\EpicGamesLauncher =>.Epic Games
O43 - CFD: 04/07/2018 - [] D -- C:\Users\BOB\AppData\Local\Game Dev Tycoon - Steam =>.Roblox Corporation
O43 - CFD: 19/08/2018 - [] D -- C:\Users\BOB\AppData\Local\Google =>.Google
O43 - CFD: 09/01/2018 - [0] SHD -- C:\Users\BOB\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Users\BOB\AppData\Local\Intel_Corporation =>.Intel Corporation
O43 - CFD: 17/05/2018 - [] D -- C:\Users\BOB\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 11/01/2018 - [] D -- C:\Users\BOB\AppData\Local\My Games =>.My Games
O43 - CFD: 08/02/2018 - [] D -- C:\Users\BOB\AppData\Local\MyProject2
O43 - CFD: 07/02/2018 - [] D -- C:\Users\BOB\AppData\Local\NVIDIA Corporation =>.nVidia Corporation
O43 - CFD: 10/01/2018 - [] D -- C:\Users\BOB\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 15/02/2018 - [] D -- C:\Users\BOB\AppData\Local\Overwolf =>.Overwolf
O43 - CFD: 07/02/2018 - [] D -- C:\Users\BOB\AppData\Local\paint.net =>.Rick Brewster
O43 - CFD: 27/04/2018 - [] D -- C:\Users\BOB\AppData\Local\PAYDAY 2
O43 - CFD: 19/08/2018 - [] D -- C:\Users\BOB\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 24/04/2018 - [] D -- C:\Users\BOB\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 09/01/2018 - [] D -- C:\Users\BOB\AppData\Local\Steam =>.Steam Games
O43 - CFD: 10/02/2018 - [] D -- C:\Users\BOB\AppData\Local\TechSmith =>.TechSmith
O43 - CFD: 20/08/2018 - [] D -- C:\Users\BOB\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 09/01/2018 - [0] SHD -- C:\Users\BOB\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign01998640d154faac =>.SUP.Temporary
O43 - CFD: 31/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign02d229459eccbf69 =>.SUP.Temporary
O43 - CFD: 11/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign030f8329a4549fc8 =>.SUP.Temporary
O43 - CFD: 06/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign057d32144c56ffa0 =>.SUP.Temporary
O43 - CFD: 04/07/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign0717f8c152bb384e =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign083fa7a487c834d3 =>.SUP.Temporary
O43 - CFD: 31/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign11b149762e586365 =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign11f443374cbdb378 =>.SUP.Temporary
O43 - CFD: 16/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign148fd3dea7fef8be =>.SUP.Temporary
O43 - CFD: 16/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign151a918d23e9ca80 =>.SUP.Temporary
O43 - CFD: 11/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign171f8dae38a13919 =>.SUP.Temporary
O43 - CFD: 25/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign1b2fc259ed59b64a =>.SUP.Temporary
O43 - CFD: 13/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign1bfb8cd65e1f273c =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign1ec6a52d2a381e22 =>.SUP.Temporary
O43 - CFD: 30/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign1ee1292680c62c16 =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign26b36f95d48745a9 =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign2bad188f41e41134 =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign2c9e41bfb50bcb3f =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign34253c2a5c7caea1 =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign34dc6cf2ff7b6877 =>.SUP.Temporary
O43 - CFD: 27/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign38950448dea501f4 =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign3a3529f0e3136052
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign3a9b8549c55adda4 =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign3f1f2a04798f214a =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign425f23257244c6fb =>.SUP.Temporary
O43 - CFD: 03/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign43bf82fe630632a1 =>.SUP.Temporary
O43 - CFD: 31/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign46306c8b71bb2c27 =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign4b647e3e64003419 =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign4fbd8ab2831dac9d =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign5134310754881e37 =>.SUP.Temporary
O43 - CFD: 11/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign5394fbfe7f4486af =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign568304841b18798b =>.SUP.Temporary
O43 - CFD: 31/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign57055f10b2fc6eea =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign5c4065e4fd336be6 =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign5fa19625975c2ce4 =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign6126192b84121164 =>.SUP.Temporary
O43 - CFD: 24/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign63cc31882da7ed6b =>.SUP.Temporary
O43 - CFD: 25/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign63e3579818249676 =>.SUP.Temporary
O43 - CFD: 03/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign67bed3bed62eea55 =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign6e13df595962ce58 =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign72799a5058e1d433 =>.SUP.Temporary
O43 - CFD: 11/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign74c7f367786738a8 =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign75aa6128b58ec344 =>.SUP.Temporary
O43 - CFD: 13/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign799a6ad92acbc5fb =>.SUP.Temporary
O43 - CFD: 24/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign7a72972961306793 =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign80765f090f8779bb =>.SUP.Temporary
O43 - CFD: 25/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign81dfbbf461cd452c =>.SUP.Temporary
O43 - CFD: 31/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign853af8f4be5ddf4e =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign8a409c9607c09c44 =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign8acb31a2fb858f1d =>.SUP.Temporary
O43 - CFD: 03/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign8b9bcd9beaaa125a =>.SUP.Temporary
O43 - CFD: 20/04/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign8ede429a30978a39 =>.SUP.Temporary
O43 - CFD: 03/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign90fd1858fcd92250 =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign943b33f1934ec5e3 =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsign9c9a99ca304e28ed =>.SUP.Temporary
O43 - CFD: 25/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsigna0f5536295792469 =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsigna7f9da185e013a88 =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsigna8978dfa948b0e1d =>.SUP.Temporary
O43 - CFD: 25/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignaa7ac9c0fb1a9c84 =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignac014b67fa934a9e =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignac6c9b992ba7212f =>.SUP.Temporary
O43 - CFD: 31/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignb65e5ef00f997f56 =>.SUP.Temporary
O43 - CFD: 03/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignb67d5e95334335f2 =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignbad8f951ff823ab9 =>.SUP.Temporary
O43 - CFD: 03/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignc81797a6dfd00309 =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignc8e12cf4bc40dba2 =>.SUP.Temporary
O43 - CFD: 05/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignd1144fc7cc76b84f =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignd3138d76269b8d51 =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignd3ce7c2a82f65080 =>.SUP.Temporary
O43 - CFD: 31/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignd4641b30b9b51e71 =>.SUP.Temporary
O43 - CFD: 25/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignd70dced957ee233d =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignd88948bc2d59eb85 =>.SUP.Temporary
O43 - CFD: 06/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignd9e684f659846bf3 =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsigndeefb4244b72967e =>.SUP.Temporary
O43 - CFD: 05/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsigne464a9a81e6c8bbd =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsigneba5d13daf3a978b =>.SUP.Temporary
O43 - CFD: 25/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignef28f48f34051742 =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignf0ed7e9e5c26ad52 =>.SUP.Temporary
O43 - CFD: 11/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignf44d06c0c79a20fc =>.SUP.Temporary
O43 - CFD: 21/02/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignf4a7989223ba214d =>.SUP.Temporary
O43 - CFD: 17/03/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignf71fa9b6880d022f =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignf7760d1a78e91c39 =>.SUP.Temporary
O43 - CFD: 10/06/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignfa4d7246021a1141 =>.SUP.Temporary
O43 - CFD: 02/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignfa6242542b6f7866 =>.SUP.Temporary
O43 - CFD: 05/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\Tempzxpsignfac7cd0399cc797b =>.SUP.Temporary
O43 - CFD: 20/08/2018 - [] D -- C:\Users\BOB\AppData\Local\UnrealEngine =>.Unreal Software
O43 - CFD: 20/08/2018 - [] D -- C:\Users\BOB\AppData\Local\UnrealEngineLauncher =>.Unreal Software
O43 - CFD: 09/01/2018 - [0] D -- C:\Users\BOB\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 06/06/2018 - [] D -- C:\Users\BOB\AppData\Local\Visicom Media =>.SUP.VisicomMedia
O43 - CFD: 20/08/2018 - [] D -- C:\Users\BOB\AppData\Local\Wondershare =>.Wondershare
O43 - CFD: 22/05/2018 - [0] D -- C:\Users\BOB\AppData\Local\XService =>Adware.Razy
O43 - CFD: 20/08/2018 - [] D -- C:\Users\BOB\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 25/01/2018 - [] D -- C:\Users\BOB\AppData\Local\{09C23F9E-2D6A-5326-40F2-76CE649A8A56}
O43 - CFD: 15/01/2018 - [0] D -- C:\Users\BOB\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 21/02/2018 - [] D -- C:\Users\BOB\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 23/05/2018 - [] D -- C:\Users\BOB\AppData\LocalLow\Leafy Games, LLC
O43 - CFD: 17/05/2018 - [] D -- C:\Users\BOB\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 27/01/2018 - [] D -- C:\Users\BOB\AppData\LocalLow\Oracle =>.Oracle
O43 - CFD: 16/08/2018 - [] D -- C:\Users\BOB\AppData\LocalLow\Squad
O43 - CFD: 10/01/2018 - [] D -- C:\Users\BOB\AppData\LocalLow\Sun =>.Oracle
O43 - CFD: 17/04/2018 - [] D -- C:\Users\BOB\AppData\LocalLow\uTorrent
O43 - CFD: 15/02/2018 - [] D -- C:\Users\BOB\AppData\LocalLow\Valve Software
O43 - CFD: 20/08/2018 - [0] D -- C:\Users\BOB\Desktop\Nouveau dossier
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 03/08/2018 - [] RD -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 02/05/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc =>.Discord Inc
O43 - CFD: 14/04/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 03/08/2018 - [] RD -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 08/05/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games
O43 - CFD: 09/01/2018 - [] D -- C:\Users\BOB\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 09/01/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 09/01/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 09/01/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\AVAST Software =>.AVAST Software
O43 - CFD: 25/01/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avg =>.AVG Software
O43 - CFD: 01/02/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Chromium =>.Chromium
O43 - CFD: 08/08/2018 - [0] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 02/02/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Lavasoft =>.Lavasoft
O43 - CFD: 09/02/2018 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/05/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 02/02/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Sagadig
O43 - CFD: 01/02/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\{BE8D88D1-9A25-E469-F7BD-C181D3D53D19}
O43 - CFD: 03/08/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Avira =>.Avira Software
O43 - CFD: 07/06/2018 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 01/02/2018 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ DERNIERS FICHIERS CRÉÉS DANS WINDOWS Prefetcher (1) - 5s
O45 - LFCP:[MD5.95C475DA9DBB7991FABA10C32D8C8278] 24/03/2018 A -- C:\Windows\Prefetch\CACAOWEB.EXE-DD224023.pf =>.SUP.CacaoWeb

---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 1s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONCEPTUELS (SCMH) (34) - 0s
O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov
O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH1: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\BOB\AppData\Local\MEGAsync\ShellExtX64.dll (.not file.) =>.MegaSystems
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: Shell Extension for Malware scanning [64Bits] - {45AC2688-0253-4ED8-97DE-B5370FA7D48A} . (.Avira Operations GmbH & Co. KG - AntiVirus context menu.) -- C:\Program Files (x86)\Avira\Antivirus\shlext64.dll =>.Avira Operations GmbH & Co. KG®
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH2: Compatibility [64Bits] - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH4: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\BOB\AppData\Local\MEGAsync\ShellExtX64.dll (.not file.) =>.MegaSystems
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: Gadgets [64Bits] - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll =>.Microsoft Corporation
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\system32\igfxDTCM.dll =>.Intel Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll =>.Igor Pavlov
O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll =>.Microsoft Corporation
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Corporation
O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll =>.Microsoft Corporation
O108 - CMH6: Shell Extension for Malware scanning [64Bits] - {45AC2688-0253-4ED8-97DE-B5370FA7D48A} . (.Avira Operations GmbH & Co. KG - AntiVirus context menu.) -- C:\Program Files (x86)\Avira\Antivirus\shlext64.dll =>.Avira Operations GmbH & Co. KG®
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.)
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: MEGA (Context menu) [64Bits] - {0229E5E7-09E9-45CF-9228-0228EC7D5F17} . (...) -- C:\Users\BOB\AppData\Local\MEGAsync\ShellExtX64.dll (.not file.) =>.MegaSystems
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (4) - 1s
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation

---\\ ÉNUMÉRATION DES CLÉS StartupReg (6) - 0s
O53 - SMSR:HKLM\...\startupreg\Jumper [Key] [64Bits] . (...) -- keyaq (.not file.)
O53 - SMSR:HKLM\...\startupreg\Maybe [Key] [64Bits] . (...) -- keyaq (.not file.)
O53 - SMSR:HKLM\...\startupreg\Offseason [Key] [64Bits] . (...) -- keyaq (.not file.)
O53 - SMSR:HKLM\...\startupreg\Paulownia [Key] [64Bits] . (...) -- keyaq (.not file.)
O53 - SMSR:HKLM\...\startupreg\Secrets [Key] [64Bits] . (...) -- keyaq (.not file.)
O53 - SMSR:HKLM\...\startupreg\Showplace [Key] [64Bits] . (...) -- keyaq (.not file.)

---\\ LISTE DES PILOTES DU SYSTÈME (302) - 10s
O58 - SDL:2009/07/14 02:06:38 A . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\drivers\1394bus.sys [68096] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\drivers\1394ohci.sys [229888] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:35:38 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\drivers\acpi.sys [334528] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\drivers\acpipmi.sys [12800] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2017/04/04 16:53:18 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\afd.sys [496128] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:10:24 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\drivers\agilevpn.sys [60416] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:35:38 A . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\drivers\AGP440.sys [60608] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\drivers\amdide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2018/08/02 04:16:21 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdk8.sys [64512] =>.Microsoft Corporation
O58 - SDL:2018/08/02 04:16:21 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdppm.sys [60928] =>.Microsoft Corporation
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2011/03/11 08:41:12 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2018/08/02 04:26:22 A . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\drivers\appid.sys [62464] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:10:13 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\drivers\asyncmac.sys [23040] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:52:21 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
O58 - SDL:2013/08/05 04:25:45 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\drivers\ataport.sys [155584] =>.Microsoft Windows®
O58 - SDL:2018/08/09 14:19:21 A . (.Avira Operations GmbH & Co. KG - Avira USB Feature Driver.) -- C:\Windows\System32\drivers\avdevprot.sys [73240] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2018/07/05 13:07:48 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [199920] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2018/07/05 13:07:48 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [153040] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2018/05/07 14:13:35 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [35328] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2018/05/07 14:13:35 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\drivers\avnetflt.sys [78600] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2018/05/07 14:13:35 A . (.Avira Operations GmbH & Co. KG - Avira USB Filter Driver.) -- C:\Windows\System32\drivers\avusbflt.sys [34128] =>.Avira Operations GmbH & Co. KG®
O58 - SDL:2009/06/10 22:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] =>.Broadcom Corporation
O58 - SDL:2009/07/14 03:52:21 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\drivers\battc.sys [28240] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:00:13 A . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\drivers\beep.sys [6656] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:35:59 A . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\drivers\blbdrive.sys [45056] =>.Microsoft Corporation
O58 - SDL:2016/10/05 16:54:43 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\drivers\bowser.sys [90112] =>.Microsoft Corporation
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 22:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 03:01:48 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\drivers\bridge.sys [95232] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 22:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 02:06:52 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\drivers\bthmodem.sys [72192] =>.Microsoft Corporation
O58 - SDL:2009/06/10 22:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] =>.Broadcom Corporation
O58 - SDL:2009/07/14 01:19:47 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\cdfs.sys [92160] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\cdrom.sys [147456] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:06:34 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\drivers\circlass.sys [45568] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:24 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\drivers\Classpnp.sys [179072] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:31:03 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\drivers\CmBatt.sys [17664] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2018/05/15 03:20:06 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\drivers\cng.sys [467856] {33000000513E11802D8BB221CA000100000051} =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:52:31 A . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\drivers\compbatt.sys [21584] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\drivers\CompositeBus.sys [38912] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:47:48 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\drivers\crashdmp.sys [39504] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:47:48 A . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\drivers\crcdisk.sys [24144] =>.Microsoft Windows®
O58 - SDL:2018/06/29 17:14:19 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\Windows\System32\drivers\csc.sys [516096] =>.Microsoft Corporation
O58 - SDL:2018/04/25 17:18:53 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\dfsc.sys [115200] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:37:18 A . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\drivers\discache.sys [40448] =>.Microsoft Corporation
O58 - SDL:2016/01/21 02:51:45 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\drivers\disk.sys [73664] =>.Microsoft Windows®
O58 - SDL:2014/02/04 04:35:35 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\drivers\Diskdump.sys [27584] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:48 A . (.Microsoft Corporation - Dynamic Memory.) -- C:\Windows\System32\drivers\dmvsc.sys [71168] =>.Microsoft Corporation
O58 - SDL:2015/12/08 20:54:36 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmk.sys [116736] =>.Microsoft Corporation
O58 - SDL:2015/12/08 20:11:53 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmkaud.sys [5632] =>.Microsoft Corporation
O58 - SDL:2018/01/25 21:11:16 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd®
O58 - SDL:2018/01/25 21:12:08 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\Windows\System32\drivers\dtliteusbbus.sys [47672] =>.Disc Soft Ltd®
O58 - SDL:2018/01/15 16:51:44 A . (.Disc Soft Ltd - DAEMON Tools Pro Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtproscsibus.sys [30264] =>.Disc Soft Ltd®
O58 - SDL:2009/07/14 03:47:48 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\drivers\Dumpata.sys [28736] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:43:14 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\drivers\dumpfve.sys [55128] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:38:28 A . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\drivers\dxapi.sys [16896] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:38:28 A . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\drivers\dxg.sys [98816] =>.Microsoft Corporation
O58 - SDL:2017/05/16 17:35:16 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\drivers\dxgkrnl.sys [986856] =>.Microsoft Windows®
O58 - SDL:2017/05/16 17:35:16 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\drivers\dxgmms1.sys [265448] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2018/02/10 19:25:26 A . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\drivers\errdev.sys [9728] =>.Microsoft Corporation
O58 - SDL:2009/06/10 22:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] =>.Broadcom Corporation
O58 - SDL:2017/03/10 17:55:25 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\drivers\exfat.sys [195584] =>.Microsoft Corporation
O58 - SDL:2017/03/10 17:55:26 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\drivers\fastfat.sys [205312] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:00:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\drivers\fdc.sys [29696] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:47:48 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\drivers\fileinfo.sys [70224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:25:40 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\drivers\filetrace.sys [34304] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:00:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\drivers\flpydisk.sys [24576] =>.Microsoft Corporation
O58 - SDL:2018/01/01 04:21:11 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\Windows\System32\drivers\fltMgr.sys [288488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:47:49 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\Windows\System32\drivers\fsdepends.sys [55376] =>.Microsoft Windows®
O58 - SDL:2012/03/01 08:46:16 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\drivers\fs_rec.sys [23408] =>.Microsoft Windows®
O58 - SDL:2013/01/24 08:01:01 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\drivers\fvevol.sys [223752] {330000001E6577CFA83F0BCC0800000000001E} =>.Microsoft Corporation
O58 - SDL:2018/07/13 21:19:21 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\drivers\FWPKCLNT.SYS [287936] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:47:48 A . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour pla.) -- C:\Windows\System32\drivers\GAGP30KX.SYS [65088] =>.Microsoft Windows®
O58 - SDL:2017/06/29 13:31:54 AH . (.LogMeIn, Inc. - Hamachi Virtual Network Interface Driver.) -- C:\Windows\System32\drivers\hamachi.sys [35648] =>.LogMeIn, Inc.®
O58 - SDL:2009/06/10 22:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\hdaudbus.sys [122368] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\HdAudio.sys [350208] =>.Microsoft Corporation
O58 - SDL:2013/01/11 20:02:34 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\HECIx64.sys [64624] =>.Intel Corporation - Intel® Management Engine Firmware®
O58 - SDL:2009/07/14 01:31:06 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\drivers\hidbatt.sys [26624] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:06:52 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\Windows\System32\drivers\hidbth.sys [100864] =>.Microsoft Corporation
O58 - SDL:2018/05/12 04:07:47 A . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\drivers\hidclass.sys [76800] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:06:23 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidir.sys [46592] =>.Microsoft Corporation
O58 - SDL:2018/05/12 04:07:46 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\drivers\hidparse.sys [33152] =>.Microsoft Corporation
O58 - SDL:2018/05/12 04:07:46 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidusb.sys [30208] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2018/01/01 03:41:41 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\drivers\http.sys [754176] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:24 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\drivers\hwpolicy.sys [14720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:19:57 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] =>.Microsoft Corporation
O58 - SDL:2011/03/11 08:41:26 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2015/08/09 05:50:42 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [4928256] =>.Intel Corporation - pGFX®
O58 - SDL:2009/07/14 03:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\drivers\intelide.sys [16960] =>.Microsoft Windows®
O58 - SDL:2018/08/02 04:16:21 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\intelppm.sys [62464] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:27 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\drivers\ipfltdrv.sys [82944] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:48 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\drivers\IPMIDrv.sys [78848] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:10:03 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\ipnat.sys [116224] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:09:02 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\drivers\irda.sys [120320] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:08:59 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\drivers\irenum.sys [17920] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:35:40 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\drivers\isapnp.sys [20160] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\drivers\kbdclass.sys [50768] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\drivers\kbdhid.sys [33280] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:16 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\drivers\ks.sys [243712] =>.Microsoft Corporation
O58 - SDL:2018/08/02 05:18:52 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecdd.sys [96864] {33000000550D89C9E5CB24146C000100000055} =>.Microsoft Corporation
O58 - SDL:2018/08/02 05:06:25 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecpkg.sys [156256] {33000000550D89C9E5CB24146C000100000055} =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:00:19 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\drivers\ksthunk.sys [20992] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:08:51 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\drivers\lltdio.sys [60928] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2017/10/12 02:20:09 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\Windows\System32\drivers\luafv.sys [113152] =>.Microsoft Corporation
O58 - SDL:2018/08/18 20:02:46 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\Windows\System32\drivers\mbae64.sys [152688] =>.Malwarebytes Corporation®
O58 - SDL:2018/08/20 13:03:40 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\Windows\System32\drivers\mbamswissarmy.sys [259360] =>.Malwarebytes Corporation®
O58 - SDL:2014/12/29 05:56:08 A . (.Visicom Media Inc. - ManyCam Virtual Microphone.) -- C:\Windows\System32\drivers\mcaudrv_x64.sys [35992] =>.SUP.VisicomManyCam
O58 - SDL:2009/07/14 02:01:06 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\drivers\mcd.sys [22016] =>.Microsoft Corporation
O58 - SDL:2017/02/08 12:19:54 A . (.Visicom Media Inc. - ManyCam Virtual Webcam Driver.) -- C:\Windows\System32\drivers\mcvidrv.sys [50088] =>.SUP.VisicomMedia
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2012/05/12 14:31:00 A . (.MotioninJoy - MotioninJoy DS3 driver.) -- C:\Windows\System32\drivers\MijXfilt.sys [121416] =>.MotionInjoy
O58 - SDL:2009/07/14 02:10:48 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\drivers\modem.sys [40448] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:38:52 A . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\drivers\monitor.sys [30208] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:48:27 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\drivers\mouclass.sys [49216] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:00:20 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\drivers\mouhid.sys [31232] =>.Microsoft Corporation
O58 - SDL:2017/05/07 17:33:06 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\drivers\mountmgr.sys [94440] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - Pilote du bus de prise en charge des chemin.) -- C:\Windows\System32\drivers\mpio.sys [155008] =>.Microsoft Windows®
O58 - SDL:2018/06/07 17:49:13 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\drivers\mpsdrv.sys [77312] =>.Microsoft Corporation
O58 - SDL:2016/09/08 16:55:15 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\drivers\mrxdav.sys [142336] =>.Microsoft Corporation
O58 - SDL:2018/08/02 04:17:53 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\mrxsmb.sys [160256] =>.Microsoft Corporation
O58 - SDL:2018/08/02 04:17:24 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\drivers\mrxsmb10.sys [291328] =>.Microsoft Corporation
O58 - SDL:2018/08/02 04:17:20 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\drivers\mrxsmb20.sys [129536] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\drivers\msahci.sys [31104] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - Module spécifique de périphériques Microsof.) -- C:\Windows\System32\drivers\msdsm.sys [140672] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:19:47 A . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\drivers\msfs.sys [26112] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:06:24 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\drivers\mshidkmdf.sys [8192] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:35:40 A . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\drivers\msisadrv.sys [15040] =>.Microsoft Windows®
O58 - SDL:2014/02/04 04:35:49 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\drivers\msiscsi.sys [274880] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:00:18 A . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\drivers\mskssrv.sys [11136] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:00:17 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\drivers\mspclock.sys [7168] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:00:17 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\drivers\mspqm.sys [6784] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:35:41 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\drivers\msrpc.sys [367296] =>.Microsoft Windows®
O58 - SDL:2018/02/10 20:35:41 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\drivers\mssmbios.sys [31936] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:00:17 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\drivers\mstee.sys [8064] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:02:08 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\drivers\MTConfig.sys [15360] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:48:27 A . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\drivers\mup.sys [60496] =>.Microsoft Windows®
O58 - SDL:2018/07/06 18:09:54 A . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\drivers\ndis.sys [947904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:08:13 A . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\drivers\ndiscap.sys [35328] =>.Microsoft Corporation
O58 - SDL:2018/01/01 03:55:07 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\drivers\ndistapi.sys [24064] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:32 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\drivers\ndisuio.sys [56832] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:08 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\drivers\ndiswan.sys [164352] =>.Microsoft Corporation
O58 - SDL:2018/01/01 03:55:09 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\drivers\ndproxy.sys [58368] =>.Microsoft Corporation
O58 - SDL:2018/01/01 03:55:00 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\drivers\netbios.sys [45056] =>.Microsoft Corporation
O58 - SDL:2017/08/11 08:00:01 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netbt.sys [262656] =>.Microsoft Corporation
O58 - SDL:2018/07/13 21:19:21 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\drivers\netio.sys [377024] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:19:48 A . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\drivers\npfs.sys [44032] =>.Microsoft Corporation
O58 - SDL:2017/08/11 07:58:55 A . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\drivers\nsiproxy.sys [26112] =>.Microsoft Corporation
O58 - SDL:2018/05/15 06:16:10 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1681088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:19:38 A . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\drivers\null.sys [6144] =>.Microsoft Corporation
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows®
O58 - SDL:2011/03/11 08:41:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows®
O58 - SDL:2018/02/10 20:35:41 A . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\drivers\NV_AGP.SYS [122560] =>.Microsoft Windows®
O58 - SDL:2017/09/13 17:05:20 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\drivers\nwifi.sys [324608] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:06:45 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\drivers\ohci1394.sys [72832] =>.Microsoft Corporation
O58 - SDL:2018/01/01 03:55:05 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\drivers\pacer.sys [131584] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:00:41 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\parport.sys [97280] =>.Microsoft Corporation
O58 - SDL:2012/03/17 09:58:57 A . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\drivers\partmgr.sys [75120] =>.Microsoft Windows®
O58 - SDL:2018/02/10 20:35:41 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\drivers\pci.sys [185024] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:45 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\pciide.sys [12352] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:46 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\drivers\pciidex.sys [48720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:45 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\drivers\pcmcia.sys [220752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:45 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\drivers\pcw.sys [50768] =>.Microsoft Windows®
O58 - SDL:2016/06/14 19:11:06 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\drivers\PEAuth.sys [663552] =>.Microsoft Corporation
O58 - SDL:2015/12/08 20:12:08 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\drivers\portcls.sys [230400] =>.Microsoft Corporation
O58 - SDL:2018/08/02 04:16:21 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\processr.sys [60928] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:09:48 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\Windows\System32\drivers\qwavedrv.sys [46592] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:10:09 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\drivers\rasacd.sys [14848] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:33 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\rasl2tp.sys [129536] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:10:17 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\drivers\raspppoe.sys [92672] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:33 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\drivers\raspptp.sys [111104] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:10:25 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\drivers\rassstp.sys [83968] =>.Microsoft Corporation
O58 - SDL:2017/10/12 02:20:30 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\Windows\System32\drivers\rdbss.sys [317440] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:17:46 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\drivers\rdpbus.sys [24064] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:16:34 A . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\drivers\RDPCDD.sys [7680] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:25:07 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:16:34 A . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\drivers\RDPENCDD.sys [7680] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:16:35 A . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\drivers\RDPREFMP.sys [8192] =>.Microsoft Corporation
O58 - SDL:2014/07/17 03:21:54 A . (.Microsoft Corporation - Pilote de pile RDP Terminal.) -- C:\Windows\System32\drivers\rdpwd.sys [212480] =>.Microsoft Corporation
O58 - SDL:2018/01/01 04:21:11 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\drivers\rdyboost.sys [213736] =>.Microsoft Windows®
O58 - SDL:2015/11/05 11:53:59 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\drivers\rmcast.sys [146944] =>.Microsoft Corporation
O58 - SDL:2012/07/04 22:26:03 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\drivers\RNDISMP.sys [41472] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:10:47 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\drivers\rootmdm.sys [11264] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:08:51 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\Windows\System32\drivers\rspndr.sys [76800] =>.Microsoft Corporation
O58 - SDL:2012/02/16 10:12:00 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.20 64-bit Dri.) -- C:\Windows\System32\drivers\Rt64win7.sys [676968] =>.Realtek Semiconductor Corp®
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\drivers\sbp2port.sys [103808] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:24:09 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\Windows\System32\drivers\scfilter.sys [29696] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:00 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\drivers\scsiport.sys [171392] =>.Microsoft Windows®
O58 - SDL:2009/06/10 22:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] =>.Rovi Corporation
O58 - SDL:2017/12/08 00:29:22 A . (...) -- C:\Windows\System32\drivers\semav6msr64.sys [41512] =>.Intel Corporation®
O58 - SDL:2009/07/14 02:00:33 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\drivers\serenum.sys [23552] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:00:40 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\Windows\System32\drivers\serial.sys [94208] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:00:20 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\drivers\sermouse.sys [26624] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:01:01 A . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\drivers\sffdisk.sys [14336] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:01:03 A . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\drivers\sffp_mmc.sys [13824] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\drivers\sffp_sd.sys [14336] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:01:02 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\drivers\sfloppy.sys [16896] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:09:09 A . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:00:35 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\drivers\smclib.sys [20992] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:45:55 A . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\drivers\spldr.sys [19008] =>.Microsoft Windows®
O58 - SDL:2009/06/10 22:48:43 A . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\drivers\spsys.sys [426496] =>.Microsoft Corporation
O58 - SDL:2018/04/10 17:48:01 A . (.Microsoft Corporation - Pilote de serveur.) -- C:\Windows\System32\drivers\srv.sys [464384] =>.Microsoft Corporation
O58 - SDL:2018/04/10 17:47:34 A . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\drivers\srv2.sys [406016] =>.Microsoft Corporation
O58 - SDL:2018/04/10 17:47:17 A . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\drivers\srvnet.sys [169984] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2014/02/04 04:35:56 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\drivers\storport.sys [190912] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:48 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\drivers\storvsc.sys [34688] =>.Microsoft Windows®
O58 - SDL:2015/04/11 05:19:59 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\drivers\stream.sys [69888] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:35:42 A . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\drivers\swenum.sys [12096] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:01:04 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\drivers\tape.sys [29184] =>.Microsoft Corporation
O58 - SDL:2018/07/13 21:19:22 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\drivers\tcpip.sys [1894080] =>.Microsoft Windows®
O58 - SDL:2016/07/07 17:08:06 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\drivers\tcpipreg.sys [46080] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:01 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\drivers\tdi.sys [26624] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:16:32 A . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\drivers\tdpipe.sys [15872] =>.Microsoft Corporation
O58 - SDL:2012/02/17 06:57:32 A . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\drivers\tdtcp.sys [23552] =>.Microsoft Corporation
O58 - SDL:2017/07/29 16:56:30 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [117248] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:35:42 A . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\drivers\termdd.sys [63168] =>.Microsoft Windows®
O58 - SDL:2017/08/13 23:45:28 A . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\drivers\tssecsrv.sys [40448] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:33 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\Windows\System32\drivers\TsUsbFlt.sys [59392] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\Windows\System32\drivers\TsUsbGD.sys [31232] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:15 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\drivers\tunnel.sys [125440] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:45:55 A . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\drivers\UAGP35.SYS [64080] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:55 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\drivers\udfs.sys [328192] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:35:42 A . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à proce.) -- C:\Windows\System32\drivers\ULIAGPKX.SYS [64192] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\drivers\umbus.sys [48640] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:06:52 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\drivers\umpass.sys [9728] =>.Microsoft Corporation
O58 - SDL:2013/02/12 06:12:05 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\drivers\usb8023.sys [19968] =>.Microsoft Corporation
O58 - SDL:2013/07/12 12:40:58 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\Windows\System32\drivers\USBAUDIO.sys [109824] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:11 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\drivers\USBCAMD2.sys [32896] =>.Microsoft Corporation
O58 - SDL:2018/05/02 17:32:35 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\drivers\usbccgp.sys [99840] =>.Microsoft Corporation
O58 - SDL:2013/07/12 12:41:12 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\drivers\usbcir.sys [100864] =>.Microsoft Corporation
O58 - SDL:2018/05/02 17:32:25 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\drivers\usbd.sys [7808] =>.Microsoft Corporation
O58 - SDL:2017/04/06 10:44:28 A . (.Red Hat Inc. - Red Hat USB Development Kit Driver.) -- C:\Windows\System32\drivers\UsbDk.sys [87856] {4A178F2FAE8FC953B41E7C231FA5ED93}
O58 - SDL:2018/05/02 17:32:31 A . (.Microsoft Corporation - Pilote de miniport eUSB EHCI.) -- C:\Windows\System32\drivers\usbehci.sys [56320] =>.Microsoft Corporation
O58 - SDL:2018/05/02 17:32:58 A . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\drivers\usbhub.sys [344064] =>.Microsoft Corporation
O58 - SDL:2018/05/02 17:32:29 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbohci.sys [25600] =>.Microsoft Corporation
O58 - SDL:2018/05/02 17:32:31 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\drivers\usbport.sys [325632] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:38:18 A . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\drivers\usbprint.sys [25088] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:24:39 A . (.Microsoft Corporation - Gestionnaire de stratégie de redirection US.) -- C:\Windows\System32\drivers\usbrpm.sys [31744] =>.Microsoft Corporation
O58 - SDL:2016/02/03 20:07:06 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\drivers\USBSTOR.SYS [91648] =>.Microsoft Corporation
O58 - SDL:2018/05/02 17:32:28 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbuhci.sys [30720] =>.Microsoft Corporation
O58 - SDL:2018/02/10 20:35:42 A . (.Microsoft Corporation - Énumérateur racine de lecteur virtuel.) -- C:\Windows\System32\drivers\vdrvroot.sys [36032] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vga.sys [29184] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vgapnp.sys [29184] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\drivers\vhdmp.sys [215936] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2018/08/02 04:21:31 A . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\drivers\videoprt.sys [129536] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:48 A . (.Microsoft Corporation - Virtual Machine Bus.) -- C:\Windows\System32\drivers\vmbus.sys [199552] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:48 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\drivers\VMBusHID.sys [21760] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:48 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\drivers\vms3cap.sys [6656] =>.Microsoft Corporation
O58 - SDL:2010/11/21 05:23:48 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\Windows\System32\drivers\vmstorfl.sys [46464] =>.Microsoft Windows®
O58 - SDL:2018/02/10 20:35:42 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\drivers\volmgr.sys [68288] =>.Microsoft Windows®
O58 - SDL:2017/07/07 17:33:36 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\Windows\System32\drivers\volmgrx.sys [363752] =>.Microsoft Windows®
O58 - SDL:2010/11/21 05:23:47 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows®
O58 - SDL:2009/07/14 03:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:07:21 A . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\drivers\vwifibus.sys [24576] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:07:22 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\drivers\vwififlt.sys [59904] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:07:28 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\drivers\vwifimp.sys [17920] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:02:07 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\drivers\wacompen.sys [27776] =>.Microsoft Corporation
O58 - SDL:2018/01/01 03:55:16 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\drivers\wanarp.sys [88576] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:37:35 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\drivers\watchdog.sys [42496] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:45:55 A . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\drivers\wd.sys [21056] =>.Microsoft Windows®
O58 - SDL:2013/06/26 00:55:52 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\drivers\Wdf01000.sys [785624] =>.Microsoft Windows®
O58 - SDL:2012/11/29 00:56:52 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\drivers\WdfLdr.sys [54376] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:09:26 A . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\drivers\wfplwf.sys [12800] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:45:56 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\drivers\wimmount.sys [22096] =>.Microsoft Windows®
O58 - SDL:2018/05/17 18:55:03 A . (.Basil - WinDivert https://reqrypt.org/windivert.htm.) -- C:\Windows\System32\drivers\WinDivert64.sys [37552] =>.Nemea Mjukvaruutveckling AB®
O58 - SDL:2010/11/21 05:23:48 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\drivers\winhv.sys [52096] =>.Microsoft Windows®
O58 - SDL:2018/02/10 19:25:26 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\drivers\wmiacpi.sys [14336] =>.Microsoft Corporation
O58 - SDL:2009/07/14 03:45:55 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\drivers\wmilib.sys [16464] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:10:33 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\drivers\ws2ifsl.sys [21504] =>.Microsoft Corporation
O58 - SDL:2012/07/26 04:26:45 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFPf.sys [87040] =>.Microsoft Corporation
O58 - SDL:2012/07/26 04:26:06 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFRd.sys [198656] =>.Microsoft Corporation
O58 - SDL:2016/06/15 01:53:44 A . (.SplitmediaLabs Limited - XSplit Stream Audio.) -- C:\Windows\System32\drivers\xspltspk.sys [26200] =>.Splitmedialabs Limited®
O58 - SDL:2011/12/07 21:42:28 A . (.Microsoft Corporation - Windows Common Controller.) -- C:\Windows\System32\drivers\xusb21.sys [74960] =>.Microsoft Corporation®
O58 - SDL:2018/04/07 18:41:15 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [371392] =>.Microsoft Windows®
O58 - SDL:2018/07/07 17:24:36 A . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3226112] =>.Microsoft Corporation

---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (8) - 41s
O61 - LFC: 2018/08/16 20:54:04 A . (..) -- C:\Users\BOB\AppData\Roaming\discord\0.0.301\modules\discord_hook\13\DiscordHook.dll [2194264] {0E21A75F74D4984F3E60FB423695295F}
O61 - LFC: 2018/08/16 20:54:04 A . (..) -- C:\Users\BOB\AppData\Roaming\discord\0.0.301\modules\discord_hook\13\DiscordHook64.dll [2905432] {0E21A75F74D4984F3E60FB423695295F}
O61 - LFC: 2018/08/16 20:54:04 A . (..) -- C:\Users\BOB\AppData\Roaming\discord\0.0.301\modules\discord_hook\13\DiscordHookHelper.exe [1221976] {0E21A75F74D4984F3E60FB423695295F}
O61 - LFC: 2018/08/16 20:54:04 A . (..) -- C:\Users\BOB\AppData\Roaming\discord\0.0.301\modules\discord_hook\13\DiscordHookHelper64.exe [1643864] {0E21A75F74D4984F3E60FB423695295F}
O61 - LFC: 2018/08/16 20:54:21 A . (..) -- C:\Users\BOB\AppData\Roaming\discord\0.0.301\modules\discord_modules\1\discord_aegis_x64.dll [545112] {0E21A75F74D4984F3E60FB423695295F}
O61 - LFC: 2018/08/16 20:54:21 A . (..) -- C:\Users\BOB\AppData\Roaming\discord\0.0.301\modules\discord_modules\1\discord_aegis_x86.dll [446296] {0E21A75F74D4984F3E60FB423695295F}
O61 - LFC: 2018/08/16 20:54:21 A . (..) -- C:\Users\BOB\AppData\Roaming\discord\0.0.301\modules\discord_modules\1\discord_game_sdk_x64.dll [2757976] {0E21A75F74D4984F3E60FB423695295F}
O61 - LFC: 2018/08/16 20:54:21 A . (..) -- C:\Users\BOB\AppData\Roaming\discord\0.0.301\modules\discord_modules\1\discord_game_sdk_x86.dll [2277720] {0E21A75F74D4984F3E60FB423695295F}

---\\ ASSOCIATION Shell Spawning (11) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software AS®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software AS®

---\\ MENU DE DÉMARRAGE INTERNET (12) - 0s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.The Chromium Authors - .) -- C:\Windows\system32\config\systemprofile\AppData\Local\Chromium\Application\chrome.exe (.not file.) =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- iexplore.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\Launcher.exe =>.Opera Software AS®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.The Chromium Authors - .) -- C:\Windows\System32\config\systemprofile\AppData\Local\Chromium\Application\chrome.exe (.not file.) =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.The Chromium Authors - .) -- C:\Windows\System32\config\systemprofile\AppData\Local\Chromium\Application\chrome.exe (.not file.) =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.The Chromium Authors - .) -- C:\Windows\System32\config\systemprofile\AppData\Local\Chromium\Application\chrome.exe (.not file.) =>.The Chromium Authors
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\launcher.exe =>.Opera Software

---\\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (1) - 0s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (33) - 1s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [794624] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [863232] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [680448] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [683520] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2651648] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110528] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [90624] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [210432] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] =>.Microsoft Corporation

---\\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (43) - 4s
O87 - FAEL: "TCP Query User{A967110A-A2B7-48DF-BAD8-6211836F970B}C:\program files (x86)\avira\softwareupdater\avirasoftwareupdatertoastnotificationsbridge.exe" [In-None-P6-TRUE] .(.Avira Operations GmbH & Co. KG - Avira.SoftwareUpdater.ToastNotificationsBri.) -- C:\program files (x86)\avira\softwareupdater\avirasoftwareupdatertoastnotificationsbridge.exe =>.Avira Operations GmbH & Co. KG®
O87 - FAEL: "UDP Query User{9B587AD3-D96E-4DF4-808F-688E038451DE}C:\program files (x86)\avira\softwareupdater\avirasoftwareupdatertoastnotificationsbridge.exe" [In-None-P17-TRUE] .(.Avira Operations GmbH & Co. KG - Avira.SoftwareUpdater.ToastNotificationsBri.) -- C:\program files (x86)\avira\softwareupdater\avirasoftwareupdatertoastnotificationsbridge.exe =>.Avira Operations GmbH & Co. KG®
O87 - FAEL: "{0D9C6B5B-D68C-4277-AA72-73128776A348}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O87 - FAEL: "{E3F8897F-C439-4CFC-A14C-F4AF51AB2A6A}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve®
O87 - FAEL: "{A524552E-D895-48AE-9FD2-25D2EE5E1BA9}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe =>.Valve®
O87 - FAEL: "{3B014615-B46D-434E-83E5-B1FFF438FD26}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe =>.Valve®
O87 - FAEL: "{FDC2E714-CC99-422F-BBFC-AE84F700A70D}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe =>.Steam Games
O87 - FAEL: "{22032330-7723-4B3B-BD11-29A80E2964D1}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe =>.Steam Games
O87 - FAEL: "TCP Query User{6F94F3B4-A1C1-47A2-83DC-A1FE38130203}C:\users\bob\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P6-TRUE] .(...) -- C:\users\bob\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.SUP.CacaoWeb
O87 - FAEL: "UDP Query User{E3E37A66-2869-46B2-8BD5-C9B04E388D4D}C:\users\bob\appdata\roaming\cacaoweb\cacaoweb.exe" [In-None-P17-TRUE] .(...) -- C:\users\bob\appdata\roaming\cacaoweb\cacaoweb.exe (.not file.) =>.SUP.CacaoWeb
O87 - FAEL: "TCP Query User{C796E666-09D0-4640-9A1E-D2DCBD496C32}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{787A336A-8C89-4FFC-971F-FD08A4F920F1}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "TCP Query User{480E2431-3374-43F5-BE57-8D47CC0C8E14}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" [In-None-P6-TRUE] .(.Epic Games, Inc. - EpicGamesLauncher.) -- C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe =>.Epic Games Inc.®
O87 - FAEL: "UDP Query User{06C5FE43-432B-412D-BC6D-7DADD2107684}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" [In-None-P17-TRUE] .(.Epic Games, Inc. - EpicGamesLauncher.) -- C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe =>.Epic Games Inc.®
O87 - FAEL: "{A350B003-A7F9-4F99-BD1E-D80D690C1F6E}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{F1C09F2A-ECB5-4189-A9BC-751A49BC2DB8}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe =>.Skype Software Sarl®
O87 - FAEL: "{65205D94-DD03-4D18-898C-82EAE384159B}" [Out-None-P17-TRUE] .(.Playkey - Playkey Client.) -- C:\Program Files (x86)\Playkey\Playkey.exe {6B0C927CBBF71181496D5FE7F4C8C2B6}
O87 - FAEL: "{16FDFB97-DCAD-4376-A8FF-AE02FBC21D9F}" [Out-None-P17-TRUE] .(...) -- C:\Users\BOB\AppData\Local\Temp\PlaykeyUpdater.exe (.not file.) =>.Temporary file not necessary
O87 - FAEL: "{E425E6F2-9A97-4D85-A612-AF40C8170891}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Playkey\crashpad_handler.exe {6B0C927CBBF71181496D5FE7F4C8C2B6}
O87 - FAEL: "TCP Query User{D6A5D7A0-36A0-4637-AF32-1B2331EE44D4}C:\program files\java\jre1.8.0_161\bin\javaw.exe" [In-None-P6-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre1.8.0_161\bin\javaw.exe =>.Oracle America, Inc.®
O87 - FAEL: "UDP Query User{5DBA9223-5DE1-4687-96FC-A8A149CFAF14}C:\program files\java\jre1.8.0_161\bin\javaw.exe" [In-None-P17-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre1.8.0_161\bin\javaw.exe =>.Oracle America, Inc.®
O87 - FAEL: "TCP Query User{3E5FE936-7C88-4776-AF54-112A0BDFD9BB}C:\program files\java\jre-10.0.1\bin\javaw.exe" [In-None-P6-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre-10.0.1\bin\javaw.exe =>.Oracle America, Inc.®
O87 - FAEL: "UDP Query User{311A3C1A-ED34-4113-9D20-CF1C9EE377C7}C:\program files\java\jre-10.0.1\bin\javaw.exe" [In-None-P17-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre-10.0.1\bin\javaw.exe =>.Oracle America, Inc.®
O87 - FAEL: "TCP Query User{7274C7D4-0460-4E8E-B6A4-0E2D0B6832B3}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe" [In-None-P6-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe =>.Oracle America, Inc.®
O87 - FAEL: "UDP Query User{B6F0A41A-5628-487B-AAE8-310C3F26CAB5}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe" [In-None-P17-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe =>.Oracle America, Inc.®
O87 - FAEL: "TCP Query User{8CD258CE-3ADC-402C-A045-4C3E3893059F}C:\pylo\mcreator174\jdk64\bin\java.exe" [In-None-P6-TRUE] .(...) -- C:\pylo\mcreator174\jdk64\bin\java.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{77F9FEF1-CA2B-4F88-A692-C521F4B0DF79}C:\pylo\mcreator174\jdk64\bin\java.exe" [In-None-P17-TRUE] .(...) -- C:\pylo\mcreator174\jdk64\bin\java.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{24136816-8AB3-4A4C-8F50-562A8E60EFC8}" [In-None-P6-TRUE] .(.ConcernedApe - Stardew Valley.) -- C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe =>.ConcernedApe
O87 - FAEL: "{3B6D57C4-7103-4C78-A113-4D39F23F3E46}" [In-None-P17-TRUE] .(.ConcernedApe - Stardew Valley.) -- C:\Program Files (x86)\Steam\steamapps\common\Stardew Valley\Stardew Valley.exe =>.ConcernedApe
O87 - FAEL: "{7494C6F9-197D-4791-B711-26710AD1F013}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe =>.Greenheart Games Pty. Ltd.®
O87 - FAEL: "{07057940-8051-44D2-8D59-2589DA3C7494}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Game Dev Tycoon\nw.exe =>.Greenheart Games Pty. Ltd.®
O87 - FAEL: "{E8720308-2AAA-4CEE-BFBC-F43B6DEEBC1D}" [In-None-P17-TRUE] .(.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.51\opera.exe =>.Opera Software AS®
O87 - FAEL: "{D167CFA3-9B21-460B-9248-9406606FE365}" [In-None-P17-TRUE] .(.Opera Software - Opera Internet Browser.) -- C:\Program Files\Opera\54.0.2952.64\opera.exe =>.Opera Software AS®
O87 - FAEL: "{A17FD01F-74BF-474F-823D-505C00A8439A}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Steam360VideoPlayer\Steam360VideoPlayer.exe =>.Steam Games
O87 - FAEL: "{98B15CF5-0148-4AC2-9913-56179FBBAF93}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Steam360VideoPlayer\Steam360VideoPlayer.exe =>.Steam Games
O87 - FAEL: "TCP Query User{AF866255-F260-4CDB-8134-74E90878384D}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" [In-None-P6-TRUE] .(.Epic Games, Inc. - UnrealEngineLauncher.) -- C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe =>.Epic Games Inc.®
O87 - FAEL: "UDP Query User{41FCF4F0-00A0-4938-9A8B-7C2B02EC3F66}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe" [In-None-P17-TRUE] .(.Epic Games, Inc. - UnrealEngineLauncher.) -- C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe =>.Epic Games Inc.®
O87 - FAEL: "TCP Query User{739514F8-F375-4C1D-BFA5-BDD4A5C3A3AA}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe" [In-None-P6-TRUE] .(...) -- C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{7A251C3C-827A-4A25-8336-C9B8DA4D9C19}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe" [In-None-P17-TRUE] .(...) -- C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (.not file.) =>.SUP.Orphan
O87 - FAEL: "{30B4C569-D32A-4A1F-87CB-CDE81C5DBBFA}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe =>.Steam Games
O87 - FAEL: "{E7C14011-E38C-42A6-A179-1BB4145C924A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP_x64.exe =>.Steam Games
O87 - FAEL: "{ABBFF8C9-2138-42A5-83AE-ED384B2F3673}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP.exe =>.Steam Games
O87 - FAEL: "{9781D0DC-3F5F-4668-8695-184B67D60BB7}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Kerbal Space Program\KSP.exe =>.Steam Games

---\\ CODES PRODUITS LOGICIELS (45) - 1s
O90 - PUC: "09F3F657AC125FB43B8BBCD7FF0A1A64" [HKLM] . (.Avira Safe Shopping.) -- C:\Windows\Installer\{756F3F90-21CA-4BF5-B3B8-CB7DFFA0A146}\icon.ico =>.Avira Software
O90 - PUC: "11712BDB826395141B2EB05FD501E5E2" [HKLM] . (.. ..)
O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "19DAA01FFD85CE446A74181079416176" [HKLM] . (.paint.net.) -- C:\Windows\Installer\{F10AAD91-58DF-44EC-A647-810197141667}\_853F67D554F05449430E7E.exe =>.Microsoft Corporation
O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "21EE4A31AE32173319EEFE3BD6FDFFE3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "22BEFC8F7E2A1793E9ADB411DEFE1C58" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "2E13508AB8F24544EA21974F73267DE5" [HKLM] . (.Remote Play with PlayStation 3.) =>.Sony Corporation
O90 - PUC: "33CB2A05DC9C1FB38AFF351CA0B081C3" [HKLM] . (.Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215.) =>.Microsoft Corporation
O90 - PUC: "36478FE1F0B0A2B51B76225BDC73A1DC" [HKLM] . (.Java(TM) SE Development Kit 9.0.4 (64-bit).) -- C:\Program Files\Java\jdk-9.0.4\\bin\javaws.exe =>.Sun Microsystems
O90 - PUC: "436F6625D7B77354DBCD89DDC6CFAB1A" [HKLM] . (.Online Application.) -- C:\Windows\Installer\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}\online.exe =>.SUP.Microleaves
O90 - PUC: "47CA2FBBC0273BC32819E543302923AF" [HKLM] . (.Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215.) =>.Microsoft Corporation
O90 - PUC: "4EA42A62D9304AC4784BF2238110160F" [HKLM] . (.Java 8 Update 161.) -- C:\Program Files (x86)\Java\jre1.8.0_161\\bin\javaws.exe =>.Sun Microsystems
O90 - PUC: "4EA42A62D9304AC4784BF2468110160F" [HKLM] . (.Java 8 Update 161 (64-bit).) -- C:\Program Files\Java\jre1.8.0_161\\bin\javaws.exe =>.Sun Microsystems
O90 - PUC: "4F4F5C009F267D040800DAA8C90D6C96" [HKLM] . (.Microsoft Games for Windows - LIVE Redistributable.) -- c:\Windows\Installer\{00C5F4F4-62F9-40D7-8000-AD8A9CD0C669}\GameForWindowsLiveRedist.exe =>.bl.org
O90 - PUC: "525EF9A5F8B810749A73F776544A9E7C" [HKLM] . (.RGSS-RTP Standard.) -- C:\Windows\Installer\{5A9FE525-8B8F-4701-A937-7F6745A4E9C7}\_26e91eb.exe
O90 - PUC: "62376264CD7180A449BBF03BE213CA2C" [HKLM] . (.. . ..) -- C:\Windows\Installer\{46267326-17DC-4A08-94BB-0FB32E31ACC2}\ProductIcon
O90 - PUC: "62DBF9290209B993A9A757D1160F9B24" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org
O90 - PUC: "687EE9C2BDD189C4F84A1B9B5B6AB677" [HKLM] . (.Microsoft Games for Windows - LIVE.) -- c:\Windows\Installer\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}\GameForWindowsLiveDash.exe =>.Microsoft Corporation
O90 - PUC: "6A36189A05345914BAB3A8B54A6B7C8D" [HKLM] . (.Epic Games Launcher.) -- C:\Windows\Installer\{A98163A6-4350-4195-AB3B-8A5BA4B6C7D8}\Installer.ico =>.Epic Games
O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "8FC229B8C6A8EC148A851F57D5F7D592" [HKLM] . (.NVIDIA PhysX.) -- C:\Windows\Installer\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}\icon.ico =>.nVidia Corporation
O90 - PUC: "919E6DD7AE805F24787DF768DC2B7E54" [HKLM] . (.Intel(R) Computing Improvement Program.) -- C:\Windows\Installer\{7DD6E919-08EA-42F5-87D7-7F86CDB2E745}\vmp =>.Intel Corporation
O90 - PUC: "927FD33DBB831565D90439FBFE5BCDDE" [HKLM] . (.Java 10.0.1 (64-bit).) -- C:\Program Files\Java\jre-10.0.1\\bin\javaws.exe =>.Sun Microsystems
O90 - PUC: "9A6CE1FEED719AD30B0486A6E1A8B840" [HKLM] . (.Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215.) =>.Microsoft Corporation
O90 - PUC: "A0FC57CF5F4599541896BAE144A39015" [HKLM] . (.Avira Software Updater.) -- C:\Windows\Installer\{FC75CF0A-54F5-4599-8169-AB1E443A0951}\icon.ico =>.Epson/Seico
O90 - PUC: "A591E65785BC99B419F7D0ADD0882140" [HKLM] . (.Minecraft.) -- C:\Windows\Installer\{756E195A-CB58-4B99-917F-0DDA0D881204}\minecraft.ico =>.Microsoft Corporation
O90 - PUC: "AEC7D64470B0FF4498187389C59AC614" [HKLM] . (.UsbDk Runtime Libraries.)
O90 - PUC: "b25099274a207264182f8181add555d0" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "C98A16E5E3090AE379583E6CA0BFEEEB" [HKLM] . (.Microsoft .NET Framework 4.7.2 (FRA).) =>.Microsoft Corporation
O90 - PUC: "CA4ECB96275917232ABF4932DB3AA634" [HKLM] . (.Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215.) =>.Microsoft Corporation
O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org
O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" [HKLM] . (.Microsoft Silverlight.) -- C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon =>.Microsoft Corporation
O90 - PUC: "E2F4C551183708B42B85DF60009C4CB6" [HKLM] . (.OpenOffice 4.1.5.) -- C:\Windows\Installer\{155C4F2E-7381-4B80-B258-FD0600C9C46B}\soffice.ico =>.Open Source
O90 - PUC: "E8EBCC90469BFE03EA485673BA14799F" [HKLM] . (.Microsoft .NET Framework 4.7.2.) =>.Microsoft Corporation
O90 - PUC: "E8EFB1A9E893D7943BEB1C8D860801CF" [HKLM] . (.Camtasia 9.) -- C:\Windows\Installer\{9A1BFE8E-398E-497D-B3BE-C1D8688010FC}\CamStudio.ico =>.Camtasia
O90 - PUC: "EDE8C96D5CBBB634E8E05C6A3D11FCF4" [HKLM] . (.Microsoft XNA Framework Redistributable 4.0 Refresh.) -- C:\Windows\Installer\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}\ProductIcon =>.bl.org
O90 - PUC: "EF470FE3BB7D73242A45E5D9638CADAC" [HKLM] . (.Avira.) =>.Avira Software
O90 - PUC: "F8385C66458B55A4986E6A3178744AFD" [HKLM] . (.Epic Games Launcher Prerequisites (x64).) -- C:\Windows\Installer\{66C5838F-B854-4A55-89E6-A6138747A4DF}\UnrealEngineLauncher.ico =>.Legitimate
O90 - PUC: "70D17E3E72DCBC644884614DBF92AA31" [HKCU] . (.Microsoft WSE 3.0 Runtime.) -- %APPDATA%\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "808B52CBC11AF9C4C9A066284EA7BA38" [HKCU] . (.Gtk# for .Net 2.12.26.) =>.Microsoft Corporation
O90 - PUC: "70D17E3E72DCBC644884614DBF92AA31" [HKU] . (.Microsoft WSE 3.0 Runtime.) -- %APPDATA%\Microsoft\Installer\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "808B52CBC11AF9C4C9A066284EA7BA38" [HKU] . (.Gtk# for .Net 2.12.26.) =>.Microsoft Corporation

---\\ PACKAGES WINDOWS INSTALLER (22) - 13s
[MD5.7FC29CCC14BD6D2E0912B5E494FD091E] [WIS][2018/08/18 16:20:45] (.Mojang - Minecraft.) -- C:\Windows\Installer\100d17b.msi [39260160] =>.Mojang
[MD5.510FE84FA6878CC8FC740E6CA2E487A8] [WIS][2018/08/08 14:41:40] (.Epic Games, Inc. - Epic Games Launcher.) -- C:\Windows\Installer\114f9f0.msi [32440320] =>.Epic Games, Inc.
[MD5.09649AF5B70AB6322583098557CBEEE1] [WIS][2018/04/17 19:21:23] (.Oracle Corporation - Java(TM) SE Runtime Environment 10.0.1.) -- C:\Windows\Installer\13124a9.msi [60895232] =>.Oracle Corporation
[MD5.BAB85911E99F454B8231466E33969F7C] [WIS][2017/11/02 13:18:13] (.Microleaves - Online Application.) -- C:\Windows\Installer\139ba7.msi [2806272] =>.SUP.Microleaves
[MD5.8C81D09B91B0501DCC853DCA21EFB976] [WIS][2018/08/10 10:09:42] (.Avira Operations GmbH & Co. KG - Avira Software Updater.) -- C:\Windows\Installer\15cbc6.msi [63057920] =>.Avira Operations GmbH & Co. KG
[MD5.B566EAAAB90C8DE221B732DD324079B1] [WIS][2017/10/11 12:21:58] (.Xamarin, Inc. - Gtk# for .Net 2.12.26.) -- C:\Windows\Installer\1ba574a.msi [25591808] =>.Xamarin, Inc.
[MD5.D2D8C5F6ADD112B120AD55BFF59A2B46] [WIS][2011/04/19 18:08:48] (.Sony Corporation.) -- C:\Windows\Installer\20e9b10.msi [25137152] =>.Sony Corporation
[MD5.7BC47ECAF1850473CBC9B670EC1412D4] [WIS][2018/08/03 20:47:41] (.Avira Operations Gmbh & Co. KG - Avira Safe Shopping.) -- C:\Windows\Installer\233759.msi [2203648] =>.Avira Operations Gmbh & Co. KG
[MD5.52006BCD41AD37003DDC7F523AE74AF5] [WIS][2018/08/03 14:52:08] (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Windows\Installer\238a30a.msi [4345299] =>.Avira Operations GmbH & Co. KG
[MD5.5ED28C20AB6633098B5687B93D1B2B5D] [WIS][2017/12/12 05:24:08] (.OpenOffice - OpenOffice 4.1.5.) -- C:\Windows\Installer\244d61.msi [2314240] =>.OpenOffice
[MD5.7873ACD3BFA53B19469E6AB5606C80FE] [WIS][2015/11/19 11:56:58] (.Epic Games, Inc. - Epic Games Launcher Prerequisites (x64).) -- C:\Windows\Installer\246afb3.msi [11919360] =>.Epic Games, Inc.
[MD5.6511A4CC7D66D57B3E558F49FFC52626] [WIS][2018/04/27 17:25:46] (.NVIDIA Corporation - Install/UnInstall PhysX Driver + Engines: 2.) -- C:\Windows\Installer\2c41aea.msi [26728448] =>.NVIDIA Corporation
[MD5.0B14C93172D721737554232FFA2787DF] [WIS][2018/07/09 16:55:42] (.Red Hat, Inc. - UsbDk Runtime Libraries.) -- C:\Windows\Installer\3e6ba.msi [6209536]
[MD5.049E8E8DCEE58131D304CB10C5C9AA4A] [WIS][2017/12/19 10:08:04] (.Intel - . ..) -- C:\Windows\Installer\41966a.msi [32768] =>.Intel
[MD5.EAF55288DB6EABDF6ECD3DEA89CAC788] [WIS][2017/12/12 12:31:58] (.Intel Corporation - Intel(R) Computing Improvement Program.) -- C:\Windows\Installer\41966f.msi [12537856] =>.Intel Corporation
[MD5.8857F8C5865085198B872F79C17EA34E] [WIS][2017/12/19 10:08:30] (.Intel - Intel(R) Driver & Support Assistant 3.1.1.) -- C:\Windows\Installer\419674.msi [2469888] =>.Intel
[MD5.FB9A07165266BA82339AA102AD278E2B] [WIS][2017/11/10 14:47:12] (.TechSmith Corporation - Camtasia 9.1.1.2546 64-bit.) -- C:\Windows\Installer\423660.msi [397033472] =>.TechSmith Corporation
[MD5.FAD9BF3D7809036C8134E53BAA5DEE5E] [WIS][2017/10/02 23:44:48] (.dotPDN LLC.) -- C:\Windows\Installer\5e48a9.msi [30708736] =>.dotPDN LLC
[MD5.C88F397AB00C200643534D53251E825F] [WIS][2005/08/30 18:15:00] (.Enterbrain.) -- C:\Windows\Installer\6b2801.msi [21741568] =>.Enterbrain
[MD5.2A145B333ACDD23FE90CA0A648FB2AAC] [WIS][2018/01/27 15:03:06] (.Oracle Corporation - Java(TM) SE Development Kit 9.0.4 (64-bit).) -- C:\Windows\Installer\dc55e4.msi [1150976] =>.Oracle Corporation
[MD5.37A0C7A58DACB06F2074A4593B9750C7] [WIS][2018/01/27 15:12:28] (.Oracle Corporation - Java SE Runtime Environment 8 Update 161.) -- C:\Windows\Installer\dc55f8.msi [61681664] =>.Oracle Corporation
[MD5.279FE2CA8051BDFDC9F87BBBFB79C81D] [WIS][2018/01/27 15:26:58] (.Oracle Corporation - Java SE Runtime Environment 8 Update 161.) -- C:\Windows\Installer\fa7753.msi [68493312] =>.Oracle Corporation

---\\ RECHERCHE DE CLÉS DE REGISTRE Tracing (4) - 1s
HKLM\SOFTWARE\Microsoft\Tracing\ByteFenceService_RASAPI32 =>.SUP.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFenceService_RASMANCS =>.SUP.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASAPI32 =>.SUP.ByteFence
HKLM\SOFTWARE\Microsoft\Tracing\ByteFence_RASMANCS =>.SUP.ByteFence

---\\ FEATURE CONTROLE. (127) - 0s
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_96DPI_PIXEL]:WindowsAnytimeUpgradeUI.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:DS3_Tool.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Procuring.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Nonchalantly.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Filmora.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST_BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ehExtHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ehExtHost.exe =>.Legitimate

---\\ SCAN ADDITIONNEL (110) - 6s
C:\Program Files (x86)\KMSPico 10.2.1 Final =>HackTool.KMSpico
C:\Program Files (x86)\Microleaves =>.SUP.Microleaves
C:\Program Files (x86)\romantic =>.SUP.Empty
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accelerer PC =>.SUP.PCSpeedUp
C:\ProgramData\ManyCam =>.SUP.VisicomMedia
C:\Users\BOB\AppData\Local\AdvinstAnalytics =>.SUP.Various
C:\Users\BOB\AppData\Local\Tempzxpsign01998640d154faac =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign02d229459eccbf69 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign030f8329a4549fc8 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign057d32144c56ffa0 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign0717f8c152bb384e =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign083fa7a487c834d3 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign11b149762e586365 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign11f443374cbdb378 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign148fd3dea7fef8be =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign151a918d23e9ca80 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign171f8dae38a13919 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign1b2fc259ed59b64a =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign1bfb8cd65e1f273c =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign1ec6a52d2a381e22 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign1ee1292680c62c16 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign26b36f95d48745a9 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign2bad188f41e41134 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign2c9e41bfb50bcb3f =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign34253c2a5c7caea1 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign34dc6cf2ff7b6877 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign38950448dea501f4 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign3a9b8549c55adda4 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign3f1f2a04798f214a =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign425f23257244c6fb =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign43bf82fe630632a1 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign46306c8b71bb2c27 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign4b647e3e64003419 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign4fbd8ab2831dac9d =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign5134310754881e37 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign5394fbfe7f4486af =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign568304841b18798b =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign57055f10b2fc6eea =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign5c4065e4fd336be6 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign5fa19625975c2ce4 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign6126192b84121164 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign63cc31882da7ed6b =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign63e3579818249676 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign67bed3bed62eea55 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign6e13df595962ce58 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign72799a5058e1d433 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign74c7f367786738a8 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign75aa6128b58ec344 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign799a6ad92acbc5fb =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign7a72972961306793 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign80765f090f8779bb =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign81dfbbf461cd452c =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign853af8f4be5ddf4e =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign8a409c9607c09c44 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign8acb31a2fb858f1d =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign8b9bcd9beaaa125a =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign8ede429a30978a39 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign90fd1858fcd92250 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign943b33f1934ec5e3 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsign9c9a99ca304e28ed =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsigna0f5536295792469 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsigna7f9da185e013a88 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsigna8978dfa948b0e1d =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignaa7ac9c0fb1a9c84 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignac014b67fa934a9e =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignac6c9b992ba7212f =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignb65e5ef00f997f56 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignb67d5e95334335f2 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignbad8f951ff823ab9 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignc81797a6dfd00309 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignc8e12cf4bc40dba2 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignd1144fc7cc76b84f =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignd3138d76269b8d51 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignd3ce7c2a82f65080 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignd4641b30b9b51e71 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignd70dced957ee233d =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignd88948bc2d59eb85 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignd9e684f659846bf3 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsigndeefb4244b72967e =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsigne464a9a81e6c8bbd =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsigneba5d13daf3a978b =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignef28f48f34051742 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignf0ed7e9e5c26ad52 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignf44d06c0c79a20fc =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignf4a7989223ba214d =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignf71fa9b6880d022f =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignf7760d1a78e91c39 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignfa4d7246021a1141 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignfa6242542b6f7866 =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Tempzxpsignfac7cd0399cc797b =>.SUP.Temporary
C:\Users\BOB\AppData\Local\Visicom Media =>.SUP.VisicomMedia
C:\Users\BOB\AppData\Local\XService =>Adware.Razy
C:\Windows\Prefetch\CACAOWEB.EXE-DD224023.pf =>.SUP.CacaoWeb
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MEGA (Context menu) =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>.SUP.Orphan
HKLM\Software\Wow6432Node\Classes\CLSID\{0229E5E7-09E9-45CF-9228-0228EC7D5F17} =>.SUP.Orphan
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MEGA (Context menu) =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\MEGA (Context menu) =>.SUP.Orphan
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:TCP Query User{6F94F3B4-A1C1-47A2-83DC-A1FE38130203}C:\users\bob\appdata\roaming\cacaoweb\cacaoweb.exe =>.SUP.CacaoWeb
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:UDP Query User{E3E37A66-2869-46B2-8BD5-C9B04E388D4D}C:\users\bob\appdata\roaming\cacaoweb\cacaoweb.exe =>.SUP.CacaoWeb
HKLM\SOFTWARE\Wow6432Node\Classes\Installer\Products\436F6625D7B77354DBCD89DDC6CFAB1A =>.SUP.Microleaves
HKLM\SOFTWARE\Wow6432Node\Classes\Installer\Features\436F6625D7B77354DBCD89DDC6CFAB1A =>.SUP.Microleaves
C:\Windows\Installer\139ba7.msi =>.SUP.Microleaves
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFenceService_RASAPI32 =>.SUP.ByteFence
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFenceService_RASMANCS =>.SUP.ByteFence
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFence_RASAPI32 =>.SUP.ByteFence
HKLM\SOFTWARE\Wow6432Node\Microsoft\Tracing\ByteFence_RASMANCS =>.SUP.ByteFence

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (14) - 0s
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/03/12/superfluous-lavasoftwebcompanion/ =>PUP.Optional.LavasoftWebCompanion
https://nicolascoolman.eu/2017/03/13/superfluous-bytefence/ =>.SUP.ByteFence
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.Legacy
https://nicolascoolman.eu/2017/12/24/sup-microleaves/ =>.SUP.Microleaves
https://nicolascoolman.eu/2017/03/18/superfluous-visicommedia/ =>.SUP.VisicomMedia
https://nicolascoolman.eu/2017/02/06/superfluous-conduit/ =>.SUP.Conduit
https://nicolascoolman.eu/2017/01/15/superfluous-cacaoweb/ =>.SUP.CacaoWeb
https://nicolascoolman.eu/2017/02/16/hacktool-kmspico/ =>HackTool.KMSpico
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Empty
https://nicolascoolman.eu/2017/03/05/superfluous-pcspeeduppro/ =>.SUP.PCSpeedUp
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Various
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary
https://www.anti-malware.top/2016/11/04/adware-razy/ =>Adware.Razy

~ Unselected Options: O82,
~ End of the scan, 7092 items in 02mn48s (1962)(0)

Publicité


Signaler le contenu de ce document

Publicité