cjoint

Publicité


Publicité

Commentaire : Pc infecté

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2018.12.12.205 Par Nicolas Coolman (2018/12/12)
~ Démarré par J.J.TAMBAKTIS (Administrator) (2018/12/13 10:07:36)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\J.J.TAMBAKTIS\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 17134) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (3) - 0s
~ GCIE: Google Chrome v71.0.3578.98
~ MSIE: Microsoft Edge v40
~ MSIE: Internet Explorer v11.407.17134.0

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : KO

---\\ LOGICIELS DE PROTECTION (2) - 4s
Windows Defender W10 (Activate) (Protection)
Malwarebytes version 3.6.1.2711 v3.6.1.2711 (Protection)

---\\ LOGICIELS D'OPTIMISATION (1) - 4s
~ CCleaner v5.44 (Optimisation)

---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: Intel64 Family 6 Model 76 Stepping 4, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4016.272 MB (42% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 863 GB (92%) free of 938 GB : OK =>.Disk Space

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: DESKTOP-0T0E9UC
~ User Name: J.J.TAMBAKTIS
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (2) - 0s
~ Drive C: has 863 GB free of 938 GB (System)
~ Drive D: has 1 GB free of 14 GB

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 2s
[MD5.E4A81EDDFF8B844D85C8B45354E4144E] - 06/07/2018 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [3932672] =>.Microsoft Windows®
[MD5.73C519F050C20580F8A62C849D49215A] - 12/04/2018 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [69632] =>.Microsoft Corporation
[MD5.A58B0CB069DA7840B935872ADCD7F0C2] - 12/04/2018 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [366792] =>.Microsoft Corporation
[MD5.F871B78E0A56297D1E3F9AE0B333C1CB] - 20/09/2018 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [4615680] =>.Microsoft Corporation
[MD5.749CA1F1B638E4E4A8A1F0990377012F] - 08/09/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [677888] =>.Microsoft Corporation
[MD5.7A377800FF15426B7D89768A8727CFEF] - 12/04/2018 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [415232] =>.Microsoft Corporation
[MD5.F4B9F200B9D7EBC8BD4C8E39F02A44E3] - 06/07/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [766608] =>.Microsoft Windows®
[MD5.BE663A3C8E4F3ED2E8404A808614BCE3] - 06/07/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [573904] =>.Microsoft Windows®
[MD5.80BC3B8D2055BC38ECD84769C074C18F] - 12/04/2018 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation
[MD5.4DCCC3E02A22ED4A4ADB11386F226071] - 12/04/2018 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [626592] =>.Microsoft Corporation
[MD5.90AB4ED8EBD72A1C096A40CC35404B91] - 12/04/2018 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28568] =>.Microsoft Corporation
[MD5.D3CBC6DE5955D014407C7BD1FFE80F00] - 12/04/2018 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [93696] =>.Microsoft Corporation
[MD5.6834DBBA2A1DBA5B9B6360D0B9A3CBB5] - 15/06/2018 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [159744] =>.Microsoft Corporation
[MD5.8A1C10410FDA4287A76EC5A64371E221] - 15/06/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [141312] =>.Microsoft Corporation
[MD5.DED74127C7A2266715C0B8EA2EE75214] - 12/04/2018 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [86016] =>.Microsoft Corporation
[MD5.DA179667B8CEC22E4ECBBF4210DC0E35] - 12/04/2018 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [105984] =>.Microsoft Corporation
[MD5.7408B83959A4B8271EF67FD06A6B366B] - 12/04/2018 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [214528] =>.Microsoft Corporation
[MD5.6C321DB795F5EF5FF870737177825FC9] - 20/09/2018 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [500536] =>.Microsoft Corporation
[MD5.A6C01E478CD9ED26F6FB7ABCF9A2C773] - 03/08/2018 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [311296] =>.Microsoft Corporation
[MD5.8AA13C67D70E9452B55B7A5C8B96BD36] - 20/09/2018 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2421248] =>.Microsoft Corporation
[MD5.13B175715A4391E4E5D2AB2EBC8CDBB5] - 12/04/2018 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [98816] =>.Microsoft Corporation
[MD5.775ED7E51B58CF9EB415A1DBA540DACF] - 12/04/2018 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [106496] =>.Microsoft Corporation
[MD5.3DE4216324BE32FC3AF7667AE2406EE5] - 15/06/2018 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [182784] =>.Microsoft Corporation
[MD5.16071C42E21CE3378FA449322FB9AB1D] - 12/04/2018 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [121248] =>.Microsoft Corporation
[MD5.F0EE4E6028CCA58BEA9A04E7BEAB7DB4] - 12/04/2018 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [398240] =>.Microsoft Corporation

---\\ LISTE DES SERVICES (Non désactivés) (81) - 5s
O23 - Service: AppmallosayoV (AppmallosayoV) . (. - TODO: .) - C:\ProgramData\AppmallosayoV\AppmallosayoV.exe
O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\WINDOWS\System32\qmgr.dll =>.Microsoft Corporation
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Service d’infrastructure des tâches en arri.) - C:\WINDOWS\System32\bisrv.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll =>.Microsoft Corporation
O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_4be7e) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: Microsoft Office Click-to-Run Service (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run (SxS).) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe =>.Microsoft Corporation®
O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft Windows®
O23 - Service: CRMSvc (CRMSvc) . (...) - C:\Users\J.J.TAMBAKTIS\AppData\Roaming\CRMSvc\CRMSvc.exe (.not file.)
O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll =>.Microsoft Corporation
O23 - Service: Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc®
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll =>.Microsoft Corporation
O23 - Service: @oem1.inf,%ServiceDisplayName%;ESIF Upper Framework Service (esifsvc) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe =>.Intel Corporation
O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll =>.Microsoft Corporation
O23 - Service: GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent - WildTangent Games App Integration Service.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc®
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll =>.Microsoft Corporation
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: HP Comm Recovery (HP Comm Recover) . (.HP Inc. - CommRecovery.) - C:\Program Files\HPCommRecovery\HPCommRecovery.exe =>.HP Inc.
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.HP Inc. - HP Support Solutions Framework Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.HP Inc.®
O23 - Service: HPWMISVC (HPWMISVC) . (.HP Inc. - HP WMI Service.) - c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe =>.HP Inc.®
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel Corporation
O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll =>.Microsoft Corporation
O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe =>.Intel Corporation
O23 - Service: Intel(R) Dynamic Application Loader Host Interface (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll =>.Microsoft Corporation
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll =>.Microsoft Corporation
O23 - Service: Prefs Secure (Nettrans) . (. - Network Packet Monitor.) - C:\ProgramData\PrefsSecure\Nettrans.exe
O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll =>.Microsoft Corporation
O23 - Service: Hôte de synchronisation_4be7e (OneSyncSvc_4be7e) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: PG Manager (pgt_svc) . (.Gold Click Ltd - PG Control Center.) - C:\Program Files (x86)\ProxyGate\MainService.exe =>.SUP.ProxyGate
O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll =>.Microsoft Corporation
O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.CyberLink - CyberLink RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink Corp.®
O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll =>.Microsoft Corporation
O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll =>.Microsoft Corporation
O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp®
O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SecurityHealthAgent.dll (SecurityHealthService) . (.Microsoft Corporation - Windows Security Health Service.) - C:\WINDOWS\System32\SecurityHealthService.exe =>.Microsoft Corporation
O23 - Service: Windows Remediation Service (sedsvc) . (.Microsoft Corporation - sedsvc.) - C:\Program Files\rempl\sedsvc.exe =>.Microsoft Windows®
O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll =>.Microsoft Corporation
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\WINDOWS\System32\sysmain.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll =>.Microsoft Corporation
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV®
O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\usocore.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) - C:\WINDOWS\System32\usocore.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\w32time.dll (W32Time) . (.Microsoft Corporation - Service de temps Windows.) - C:\WINDOWS\System32\w32time.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll =>.Microsoft Corporation
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1812.3-0\MsMpEng.exe =>.Microsoft Corporation®
O23 - Service: Windows Defender Helper Service (Windows 1703 Creators Upda (WinDefender) . (...) - C:\Windows\windefender.exe
O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll =>.Microsoft Corporation
O23 - Service: Service utilisateur de notifications Push Windows_4be7e (WpnUserService_4be7e) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe =>.Microsoft Corporation
O23 - Service: ZDU0MDI2OWJmYzEzZG (ZDU0MDI2OWJmYzEzZG) . (...) - ??\C:\WINDOWS\system32\drivers\ZDU0MDI2OWJmYzEzZG (.not file.)
O23 - Service: (ZWE4OTY3MjcwY2Y1YjM) . (...) - C:\Windows\dympls.dzmp

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (31) - 29s
SR - Auto [12/12/2018] [ 3622912] AppmallosayoV (AppmallosayoV) . (...) - C:\ProgramData\AppmallosayoV\AppmallosayoV.exe
SR - Auto [30/08/2011] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SS - Demand [12/02/2018] [ 502728] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX®
SR - Auto [22/08/2017] [ 143144] Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc®
SS - Demand [22/08/2017] [ 143144] Service Mise à jour Dropbox (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc®
SR - Auto [17/06/2016] [ 1585784] @oem1.inf,%ServiceDisplayName%;ESIF Upper Framework Service (esifsvc) . (.Intel Corporation.) - C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe =>.Intel Corporation - pGFX®
SR - Auto [23/05/2016] [ 350064] GamesAppIntegrationService (GamesAppIntegrationService) . (.WildTangent.) - C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe =>.WildTangent Inc®
SS - Demand [23/05/2016] [ 210288] GamesAppService (GamesAppService) . (.WildTangent, Inc..) - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe =>.WildTangent Inc®
SS - Demand [12/12/2018] [ 443872] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google Inc..) - C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\elevation_service.exe =>.Google Inc®
SR - Auto [02/07/2018] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [02/07/2018] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [31/07/2014] [ 136120] Google Updater Service (gusvc) . (.Google.) - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe =>.Google Inc®
SR - Auto [04/08/2016] [ 894976] HP Comm Recovery (HP Comm Recover) . (.HP Inc..) - C:\Program Files\HPCommRecovery\HPCommRecovery.exe =>.HP Inc.
SS - Demand [03/06/2016] [ 1031704] HP CASL Framework Service (hpqcaslwmiex) . (.HP.) - C:\Program Files (x86)\HP\Shared\hpqwmiex.exe =>.Hewlett-Packard Company®
SR - Auto [13/06/2018] [ 333688] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.HP Inc..) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe =>.HP Inc.®
SR - Auto [20/06/2016] [ 631800] HPWMISVC (HPWMISVC) . (.HP Inc..) - c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe =>.HP Inc.®
SR - Auto [12/02/2018] [ 373704] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel(R) pGFX®
SS - Demand [03/09/2015] [ 887784] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe =>.Intel® Trusted Connect Service®
SS - Demand [19/05/2015] [ 335872] Intel(R) Security Assist (Intel(R) Security Assist) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe =>.Intel Corporation
SR - Auto [19/05/2015] [ 7680] Intel(R) Security Assist Helper (isaHelperSvc) . (...) - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe =>.Intel Corporation
SR - Auto [21/04/2015] [ 174368] Intel(R) Dynamic Application Loader Host Interface (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SR - Auto [19/09/2018] [ 6347056] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation®
SS - Demand [30/11/2018] [ 216528] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Auto [12/12/2018] [ 43520] Prefs Secure (Nettrans) . (...) - C:\ProgramData\PrefsSecure\Nettrans.exe
SR - Auto [22/02/2017] [ 2285664] PG Manager (pgt_svc) . (.Gold Click Ltd.) - C:\Program Files (x86)\ProxyGate\MainService.exe =>.SUP.ProxyGate
SR - Auto [23/03/2016] [ 614664] Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.CyberLink.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink Corp.®
SR - Auto [08/08/2016] [ 314624] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp®
SR - Auto [21/09/2018] [ 360872] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
SR - Auto [04/07/2018] [ 99704] TomTomHOMEService (TomTomHOMEService) . (.TomTom.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV®
SR - Auto [12/12/2018] [ 1435136] Windows Defender Helper Service (Windows 1703 Creators Upda (WinDefender) . (...) - C:\Windows\windefender.exe
SR - Auto [12/12/2018] [ 1253376] (ZWE4OTY3MjcwY2Y1YjM) . (...) - C:\Windows\dympls.dzmp

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (24) - 11s
O38 - TASK: {00D1DA72-E252-4ED4-A564-497DF53DEA8E} [64Bits][\DropboxOEM] - (.SYSTEM - DropboxOEM.) -- C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [584488] =>Dropbox Inc.
O38 - TASK: {03C32013-D8FF-4CE9-88AE-629444D2000E} [64Bits][\OneSystemCare Task] - (...) -- C:\ProgramData\04a85e7f-5b2d-4bbd-a3ee-d11a024864d4\SystemConsole.exe [951808] =>PUP.Optional.OneSystemCare
O38 - TASK: {083447B0-82D0-4230-8088-CE292B51F1BB} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {2109BA82-0C68-43DD-AF3D-AFEDCA70759F} [64Bits][\GoogleUpdateTaskUserS-1-5-21-1922404815-1588106759-487766661-1001UA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {3830A934-CDEC-452A-96C3-EE236E231FA8} [64Bits][\GoogleUpdateTaskUserS-1-5-21-1922404815-1588106759-487766661-1001Core] - (.Google Inc. - Programme d'installation de Google.) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {58BE10F5-7F44-4AFD-8DE1-F7C6DADE128D} [64Bits][\DropboxUpdateTaskMachineCore] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] =>.Dropbox, Inc.
O38 - TASK: {B6B1DE9F-E651-4D36-B630-0BFC9F0FE044} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {C13876D2-3DCA-4824-89B5-07AFB0E1861F} [64Bits][\csrss] - (.DESKTOP-0T0E9UC\J.J.TAMBAKTIS - .) -- C:\Windows\rss\csrss.exe [5653] =>Trojan.Dropper
O38 - TASK: {C96664DF-93DB-434E-B95D-CBA3AF9AC272} [64Bits][\CCleaner Update] - (.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [533200] =>.Piriform Ltd
O38 - TASK: {D87E71BE-5061-4709-99EB-6DDA6FEB202B} [64Bits][\CCleanerSkipUAC] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [13594584] =>.Piriform Ltd
O38 - TASK: {E25C8E83-4424-4001-9358-52B2A8431ACC} [64Bits][\HPCeeScheduleForJ.J.TAMBAKTIS] - (.HP Development Company, L.P. - HP Ceement.) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [99392] =>.HP Development Company, L.P.
O38 - TASK: {F8C4E048-EC6B-44AA-87FE-D14CF988CFE7} [64Bits][\DropboxUpdateTaskMachineUA] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] =>.Dropbox, Inc.
C:\WINDOWS\System32\Tasks\DropboxOEM - (.SYSTEM.) -- C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [auto] =>Dropbox Inc.
C:\WINDOWS\System32\Tasks\OneSystemCare Task - (...) -- C:\ProgramData\04a85e7f-5b2d-4bbd-a3ee-d11a024864d4\SystemConsole.exe [] =>PUP.Optional.OneSystemCare
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1922404815-1588106759-487766661-1001UA - (.Google Inc..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1922404815-1588106759-487766661-1001Core - (.Google Inc..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [/c] =>.Dropbox, Inc.
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
C:\WINDOWS\System32\Tasks\csrss - (.DESKTOP-0T0E9UC\J.J.TAMBAKTIS.) -- C:\Windows\rss\csrss.exe [] =>Trojan.Dropper
C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Ltd
C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Ltd
C:\WINDOWS\System32\Tasks\HPCeeScheduleForJ.J.TAMBAKTIS - (.HP Development Company, L.P..) -- C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [HPCeeScheduleForJ.J.TAMBAKTIS] =>.HP Development Company, L.P.
C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [/ua ./ua] =>.Dropbox, Inc.

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (108) - 3s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows®
O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - HKCU\..\Run: [CCleaner Monitoring] . (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - HKCU\..\Run: [IncrediMail] . (.IncrediMail Ltd. - IncrediMail Application.) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O4 - HKCU\..\Run: [TomTomHOME.exe] . (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe =>.TomTom International BV®
O4 - HKCU\..\Run: [WhitePond] . (...) -- C:\Windows\rss\csrss.exe =>Trojan.Dropper
O4 - HKCU\..\Run: [4KA1J9FWDKOCZLA] . (. - .) -- C:\Program Files\R8JM5CE7P7\R8JM5CE7P.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [1057163] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\bzzlf2lvyaz\lil2c3nsqmv.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [1234377] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\xlawvorcdvs\1vf2ecqii0n.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [1368957] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\1rqwfhj0rlp\ov0dndhcuqy.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [SSB63F4H4A4ENBE] . (. - .) -- C:\Program Files\A110B9AB7L\NQ7FJ9GC6.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [NCZV72XZCGM8Z72] . (. - .) -- C:\Program Files\KY27LDAXQT\KY27LDAXQ.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [4917862] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\swyvz0jlfuc\lltwuobisjv.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [GSJO8HAFOHAXMJC] . (. - .) -- C:\Program Files\VIYJ6VFEZ6\VIYJ6VFEZ.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [5943514] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\fcicyoidmeg\o2x5ppe2gbr.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [2628791] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\xeruopikv4i\ljxjtnmi5mq.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9678375] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\corxez1xrtq\wksy4jzugf4.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9RPV86QHHBYGDI4] . (. - .) -- C:\Program Files\YKNBVYQV85\B9UQ3XWW7.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [LKXCA9HYIT4241K] . (. - .) -- C:\Program Files\GIEVTF06R1\T7LA1F67Q.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [865822] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\4esspklzb0r\z1dt05pih1s.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [6763452] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\t5wxmuypka4\g2mfb2sfine.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [4098594] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pemps2g1f1v\pmlhdumo0tv.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [HAGUN8018I04DZY] . (. - .) -- C:\Program Files\8WT9AFV4T1\SOOBIIXPM.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [3778136] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\vbpy32kn3sf\jyzq15jxtnv.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [D28TZ63YOF09704] . (. - .) -- C:\Program Files\Y7N1D2HDTG\Y7N1D2HDT.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [QWFE6LG2IU3HUMT] . (. - .) -- C:\Program Files\JQDP3C2JU4\JQDP3C2JU.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [589639] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\wttzcxocra2\o1u3fdsiypl.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [6385524] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\0chxbogntvi\j32wqfzwbqr.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [94110] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\15chzdguoht\rueffdkz2lv.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [HU51JF4FZZN4B8N] . (. - .) -- C:\Program Files\T2MK6YUOT7\T2MK6YUOT.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [3137018] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\v2dp3ng2mlm\hlejknmmgf3.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [W6AHRGIUC5JP3RY] . (. - .) -- C:\Program Files\P32SY3SL20\DSIM1HD50.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [1460018] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\13yousawmke\ux2ciwpe0i1.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [6336955] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\z0j221aupur\jcin3psbiz3.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [SI2ELBBE9APZ5KM] . (. - .) -- C:\Program Files\T3QENCUA11\T3QENCUA1.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [3010577] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\e3yyua2dx2t\vnzqwci4i20.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [ECLWOW9P2DI81VR] . (. - .) -- C:\Program Files\04P1HVLV87\BYZFJMJEB.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9146299] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\m0jtldfj0il\gvrwnfrz3fv.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [6976932] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pwba2sjxpfe\xqymf5oja4s.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [4NDSDCNQYBY99WX] . (. - .) -- C:\Program Files\CKETCUV2I8\CKETCUV2I.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9369545] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\negfiithx0a\yqy0wglg1wl.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [P7YMYSREFLIUWNS] . (. - .) -- C:\Program Files\P9K8KT13H5\WC9UKWXNB.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [5825173] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\mv2dkvcbqjm\qepks4inrev.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [WAAU8DEIP64MA96] . (. - .) -- C:\Program Files\TT3EBLP7V8\TT3EBLP7V.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [PFTLW0B3WDBBL2R] . (. - .) -- C:\Program Files\JLCGTIFMX8\JLCGTIFMX.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [7152313] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\fx2uviysoio\nu3u0gh5mq2.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [5406324] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\1es55jovoyw\r2nnd3o1xri.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [EBMUKKN3AGLL5SI] . (. - .) -- C:\Program Files\P4O07JJOTU\KLWQVVLZ3.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [2377160] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\5dw15prpqud\xgistrokicp.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [5AVZNXYZD3Q2P10] . (. - .) -- C:\Program Files\M5T1I9KT74\GJA9ADAC2.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9896075] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\2wtkhb41nz2\rjblhvpupta.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [5517987] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\cmcmbpqul5x\zxrlulclxxb.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9016522] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\xg2hdeqwjiv\httjqljzrz2.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9899394] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\g3lbyndl4jq\5qxxjkkcg2p.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [11018] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\xanphr1tve0\jzeius4otbz.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [634568] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\vtdzi1b0yfu\2xwioscbaet.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9JGT30WM8DD42JU] . (. - .) -- C:\Program Files\4RAEUJYXTE\U5O8BHAZR.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [PFDNQ95SC2981GE] . (. - .) -- C:\Program Files\VG2WLVCZ67\56DD4KJ5K.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [LER65RT5BGUFWV0] . (. - .) -- C:\Program Files\XHVNDMIAP0\XHVNDMIAP.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [FK8RDOD2RDU95PJ] . (. - .) -- C:\Program Files\38P8CK99P6\38P8CK99P.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [8015208] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\3wphf5ofsx5\iuslnqicmnl.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [4355895] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\elljbotrkz4\s2u4yp3bwie.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [SLBW1TYW8EWIY4Z] . (. - .) -- C:\Program Files\5B9FXZ70L4\5B9FXZ70L.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9977883] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\lgrsk5gxd3k\hwj3llw2ohw.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [KZNZBO9O091VA3G] . (. - .) -- C:\Program Files\M08TQLI2XW\CFLN7JU4V.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9055774] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\5gp0s3bhv0c\0qv1kcdxxei.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [LNSTWJDRLCTTTS7] . (. - .) -- C:\Program Files\AKC8ATC6F1\AKC8ATC6F.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [BFH86M7GH141R0B] . (. - .) -- C:\Program Files\R6HXLXKTPD\BZCZS0MEI.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [N5LFI2JXD1W7MQP] . (. - .) -- C:\Program Files\K3TBLUO9UX\BZCZS0MEI.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [FFOZTGPGOOS5ZMJ] . (. - .) -- C:\Program Files\XSZQTTUAUU\R6HXLXKTP.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [2460140] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\0vu4zjicdvh\dc31irywamr.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [8702360] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\aygvd4ymjaj\ejqvcm2axef.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [2141825] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\epcrvvh1qo4\matbpsjql3j.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9972575] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\x3hw3ifsdef\ptiyful2f5r.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [3057571] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\yvfds4o1vr5\1tinirwm0ms.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [589606] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\bglhknz2yxe\brlzn0yrusq.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [1958208] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\smkp4q5so2n\hvaz2v4i01a.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [2371748] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\z1k3xyc5cq1\lswejaquj3j.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [3589372] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\exuf3s2gm3b\41zmbysfxoo.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [B39HUVOERZD5RKK] . (. - .) -- C:\Program Files\9UHC2ZCQDR\9UHC2ZCQD.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [DN5THAN8VTXMB6N] . (. - .) -- C:\Program Files\8B873N6HFN\8B873N6HF.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [YLXJBVMNB5X2JY8] . (. - .) -- C:\Program Files\8INYUYH34R\64OBT2G3N.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [ML2KCYX0YJ6QEQR] . (. - .) -- C:\Program Files\VIKWB4IVFN\VIKWB4IVF.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [F02TAV1CW6GENYA] . (. - .) -- C:\Program Files\AR7W9VT4OF\NGEBHUZ5O.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [3085795] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ow0nh22o0ax\e52wbxrfqm3.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [1651602] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\idmkyvxtews\wbbe5cf2y1f.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [1973275] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\k4bjdkqswxb\3hx0sepaxxz.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [R1C869GVVEUQE20] . (. - .) -- C:\Program Files\YPXXZVCKZM\YPXXZVCKZ.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [7401650] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ko1zpw0ji4n\zi2bi100x3r.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [4LIZP3U8YHRKPST] . (. - .) -- C:\Program Files\D694BSC19I\42RRJXB6W.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [QL5WZVSCRJPY7TA] . (. - .) -- C:\Program Files\8EBQWFLG1I\S65R4IN1V.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [DQN28PWVCNT1D78] . (. - .) -- C:\Program Files\E5Q8QUTRTZ\RUXNYTZSS.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [PZW2BCUFWMG4UUU] . (. - .) -- C:\Program Files\S65R4IN1VU\ZAUD3LJLP.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [8400285] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\kwkbfuzuu2z\hl2egrqcqjt.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [1478800] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\kmsxudviit5\52wqiopgcw5.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [6454203] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\u25jqazxhck\mwimbsajso1.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [2003924] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\24xfcy23hfu\bcqoqrpbbjl.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [6887420] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\dlgmmfgkbyz\ra5yhd3v4cw.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [9119138] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\wzh1lc525pv\uton1hihl4f.exe (.Not File.) =>.SUP.Orphan
O4 - HKCU\..\Run: [129993] . (. - .) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\enuqpej02sv\kt1umveuv25.exe (.Not File.) =>.SUP.Orphan
O4 - HKLM\..\Wow6432Node\Run: [HPMessageService] . (.HP Inc. - HP Message Service.) -- C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe =>.HP Inc.®
O4 - HKLM\..\Wow6432Node\Run: [HPRadioMgr] . (.HP - HP Radio Manager.) -- C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe =>.HP Inc.®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe =>.Microsoft Corporation

---\\ PROCESSUS LANCÉS (47) - 11s
[MD5.A8B62C021D8A3561A2D289A2B85A0AC7] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [373704] [PID.2004] =>.Intel Corporation
[MD5.F531BC91F1CF1250F040A8DF52DD31E3] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [314624] [PID.2400] =>.Realtek Semiconductor Corp®
[MD5.F8BC8FA00599A38D6F6D0090207A3E14] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1460744] [PID.2600] =>.Realtek Semiconductor Corp.®
[MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.3284] =>.Apple Inc.®
[MD5.3448A616ED38C31D9F1F22939A1A198D] - (. - TODO: .) -- C:\ProgramData\AppmallosayoV\AppmallosayoV.exe [3622912] [PID.3292]
[MD5.166D035A239EE99F91F28F1FC6302DB6] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\WINDOWS\System32\Intel\DPTF\esif_uf.exe [1585784] [PID.3300] =>.Intel Corporation
[MD5.1DFC3CCA51785254C5604238BB1A5467] - (...) -- C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680] [PID.3384] =>.Intel Corporation
[MD5.C4D7622FCFD3FB08FA5E04CBFDC69936] - (.HP Inc. - HP WMI Service.) -- c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [631800] [PID.3400] =>.HP Inc.®
[MD5.ECB760B2391608BA4E0A7987ADA70CCF] - (.Malwarebytes - Malwarebytes Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056] [PID.3408] =>.Malwarebytes Corporation®
[MD5.BDE10D937E8D57F9AE792A319CA9E234] - (. - Network Packet Monitor.) -- C:\ProgramData\PrefsSecure\Nettrans.exe [43520] [PID.3508] =>.SUP.Linkury
[MD5.ADE1977463CFB2622E6FDC6E9F31CD8E] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [360872] [PID.3676] =>.Synaptics Incorporated®
[MD5.93B616962E7E10FC4539976B313EAEA9] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [99704] [PID.3744] =>.TomTom International BV®
[MD5.00000000000000000000000000000000] - (...) -- C:\Windows\windefender.exe [1435136] [PID.3852] =>Trojan.Agent
[MD5.01DDF9BC7198C71B445ED89B8EDD660B] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\Temp\DPTF\esif_assist_64.exe [254184] [PID.3824] =>.Intel Corporation®
[MD5.A1F58FFF448E4099297D6EE0641D4D0E] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] [PID.2644] =>.Dropbox, Inc®
[MD5.05F4D07E8DA75D2BAC7362EBEAA13B3E] - (...) -- C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartProvider.exe [843800] [PID.5260] =>.HP Inc.®
[MD5.D6DA7A20FF3B8C3941044D71CC63D96F] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4509608] [PID.5768] =>.Synaptics Incorporated®
[MD5.6850DB0629F29DB9450B573C380A89A1] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [354248] [PID.5472] =>.Intel Corporation
[MD5.46A88F660B4C735824BEA6EBF48004C4] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [268232] [PID.5948] =>.Intel Corporation
[MD5.6E54DF87F17D9FE40F1ECE0A55F8AB9A] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [229288] [PID.904] =>.Synaptics Incorporated®
[MD5.0764AEE9E736C5040B47DB84D3C182BA] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [3711320] [PID.6584] =>.Malwarebytes Corporation®
[MD5.9ABC2374151437F5DCB9E1F9DA9CC23E] - (.HP Inc. - HP JumpStart Bridge.) -- c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [461848] [PID.6788] =>.HP Inc.®
[MD5.E46D32A322BA7E886129023F218DAE8F] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.76.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe [182272] [PID.1688]
[MD5.A52810C067461622D3C776B3C82C1CF0] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8843784] [PID.5376] =>.Realtek Semiconductor Corp.®
[MD5.723EF2003EEEB0CA529E8D48697FCD54] - (.TomTom - System Tray application for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [254840] [PID.8188] =>.TomTom International BV®
[MD5.C7BAB4FB92EDD4EC40F20C0951168360] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [18385368] [PID.9336] =>.Piriform Ltd®
[MD5.3ECB6ECC0FE805FFAF0936BD6166E4AE] - (.HP Inc. - HP Message Service.) -- C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [705784] [PID.9732] =>.HP Inc.®
[MD5.988BC06507A355D67ACBA0DE831F266A] - (.HP - HP Radio Manager.) -- C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [324600] [PID.9792] =>.HP Inc.®
[MD5.6C718849D436A7CCEBED72538F8BD04B] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe [288848] [PID.7192] =>.Google Inc®
[MD5.D2F56E366F1CB26866A6F43BD53B46C3] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe [366160] [PID.7640] =>.Google Inc®
[MD5.649D9C188F3A2A029F48AE73EE9BC02B] - (.HP Inc. - CommRecovery.) -- C:\Program Files\HPCommRecovery\HPCommRecovery.exe [894976] [PID.5756] =>.HP Inc.
[MD5.9B02BA9006BB416680443C6AD6024DE9] - (.HP Inc. - HP Support Solutions Framework Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [333688] [PID.9288] =>.HP Inc.®
[MD5.969C96C8C4BC9E014F5A2C2F7D5535C7] - (.HP Inc. - HPAudioSwitch.) -- C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1656856] [PID.9620] =>.HP Inc.®
[MD5.DCEABCDB2EAF57CEDEF5FD5D017ABE1D] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe [174368] [PID.3624] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
[MD5.C7463D0A8E63A2C2F89E03F98E9EE63F] - (.CyberLink - CyberLink RichVideo Module.) -- C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664] [PID.8716] =>.CyberLink Corp.®
[MD5.C7BAB4FB92EDD4EC40F20C0951168360] - (.Piriform Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [18385368] [PID.9920] =>.Piriform Ltd®
[MD5.529BA04AD014EE7DD040E929ADDAE96F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680] [PID.1492] =>.Google Inc®
[MD5.529BA04AD014EE7DD040E929ADDAE96F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680] [PID.11200] =>.Google Inc®
[MD5.529BA04AD014EE7DD040E929ADDAE96F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680] [PID.6224] =>.Google Inc®
[MD5.529BA04AD014EE7DD040E929ADDAE96F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680] [PID.6060] =>.Google Inc®
[MD5.529BA04AD014EE7DD040E929ADDAE96F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680] [PID.11108] =>.Google Inc®
[MD5.529BA04AD014EE7DD040E929ADDAE96F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680] [PID.10480] =>.Google Inc®
[MD5.529BA04AD014EE7DD040E929ADDAE96F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680] [PID.7996] =>.Google Inc®
[MD5.529BA04AD014EE7DD040E929ADDAE96F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680] [PID.7284] =>.Google Inc®
[MD5.529BA04AD014EE7DD040E929ADDAE96F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680] [PID.6220] =>.Google Inc®
[MD5.529BA04AD014EE7DD040E929ADDAE96F] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1587680] [PID.11096] =>.Google Inc®
[MD5.CEB85B962B162716C47E4F4089CEB013] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\J.J.TAMBAKTIS\Downloads\ZHPDiag3.exe [3185536] [PID.10628] =>.Nicolas Coolman

---\\ CHROME, Démarrage, Recherche, Extensions (8) - 0s
G2 - GCE: Preference [J.J.TAMBAKTIS][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [J.J.TAMBAKTIS][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [J.J.TAMBAKTIS][User Data\Default] [emajnoacacifjgmkkmheackniabamonm]
G2 - GCE: Preference [J.J.TAMBAKTIS][User Data\Default] [emmkcadnghjejdekddjhdhmhbojcchod]
G2 - GCE: Preference [J.J.TAMBAKTIS][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [J.J.TAMBAKTIS][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [J.J.TAMBAKTIS][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [J.J.TAMBAKTIS][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (1) - 2s
P2 - FPN: [HKLM] [@WildTangent.com/GamesAppPresenceDetector,Version=1.0] - (.WildTangent.) -- C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll =>.WildTangent

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (20) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRHOjYN9_5EdL7qPpMxkGStHC4wmTIB36bdKA2caLWmiJmgTHyJXgLm6YVPAjHUOG0icS27PVsl5vQWEjkY9aaB7joI8fyoAFsX_6G1KIjxcgAf-TabiZHS-wgAKvxclPsXJQmRahDhNvD2jKOC2zQJ4HZPApqYGDQTBYyE_T9G4-V7S98Br5ldQBsmezc =>.SUP.Linkury
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%68%65%6c%70%65%72%62%61%72.%63%6f%6d/?p=mko_awfzxipyrahdgkbrhojyn9_5edl7qppmxkgsthc4wmtib36bdka2calwmijmgthyjxglm6yvpajhuog0ics27pvsl5vqwejky9aab7joi8fyoafgga85sccpm1wtif-sj6rrnyvn8pet1jerdbzijjba370sdi6f-zc3uaywbah43unukduslilz1cgahfnsaurfck1hicet&q={searchterms} =>.SUP.Linkury
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%68%65%6c%70%65%72%62%61%72.%63%6f%6d/?p=mko_awfzxipyrahdgkbrhojyn9_5edl7qppmxkgsthc4wmtib36bdka2calwmijmgthyjxglm6yvpajhuog0ics27pvsl5vqwejky9aab7joi8fyoafgga85sccpm1wtif-sj6rrnyvn8pet1jerdbzijjba370sdi6f-zc3uaywbah43unukduslilz1cgahfnsaurfck1hicet&q={searchterms} =>.SUP.Linkury
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%68%65%6c%70%65%72%62%61%72.%63%6f%6d/?p=mko_awfzxipyrahdgkbrhojyn9_5edl7qppmxkgsthc4wmtib36bdka2calwmijmgthyjxglm6yvpajhuog0ics27pvsl5vqwejky9aab7joi8fyoafgga85sccpm1wtif-sj6rrnyvn8pet1jerdbzijjba370sdi6f-zc3uaywbah43unukduslilz1cgahfnsaurfck1hicet&q={searchterms} =>.SUP.Linkury
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://%66%65%65%64.%68%65%6c%70%65%72%62%61%72.%63%6f%6d/?p=mko_awfzxipyrahdgkbrhojyn9_5edl7qppmxkgsthc4wmtib36bdka2calwmijmgthyjxglm6yvpajhuog0ics27pvsl5vqwejky9aab7joi8fyoafgga85sccpm1wtif-sj6rrnyvn8pet1jerdbzijjba370sdi6f-zc3uaywbah43unukduslilz1cgahfnsaurfck1hicet&q={searchterms} =>.SUP.Linkury
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.17134.1 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)

---\\ INTERNET EXPLORER,Proxy Management (3) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 1s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ ÉTUDE DU FICHIER HOSTS (2) - 1s
O1 - Hosts: 1048593 corrupted lines =>Hijacker.Hosts
~ Nombre lignes détournées ou corrompues 1048572/1048593 (Hosts file redirected or corrupted)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (3) - 0s
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll =>.Microsoft Corporation®
O2 - BHO: YoutubeAdBlock [64Bits] - {7D4F46EB-16E2-407E-BB95-1BC50C96D791} . (...) -- C:\Program Files (x86)\vXrhcsvdNIE\tTgTH3vy.dll =>PUP.Optional.YouTubeAdBlock
O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.HP Inc. - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll =>.Hewlett-Packard Company®

---\\ RACCOURCIS GLOBAL STARTUP (141) - 32s
O4 - GS\Desktop [Administrateur]: ChordPulse Lite.lnk . (...) C:\Program Files (x86)\ChordPulse Lite\ChordPulse Lite.exe
O4 - GS\Desktop [Administrateur]: chrome - Raccourci.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [Administrateur]: Molotov.lnk . (.Molotov - Molotov.) C:\Users\J.J.TAMBAKTIS\AppData\Local\Molotov\Molotov.exe =>.Molotov
O4 - GS\Desktop [Administrateur]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe %SNP% --disable-quic =>PUP.Optional.Salus
O4 - GS\Quicklaunch [Administrateur]: Gоogle Сhromе.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.emorhc.bat
O4 - GS\Quicklaunch [Administrateur]: IncrediMail 2.0.lnk . (.IncrediMail Ltd. - IncrediMail Application.) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O4 - GS\Quicklaunch [Administrateur]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\sendTo [Administrateur]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [Administrateur]: 4K Video Downloader (2).lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\TaskBar [Administrateur]: 4K YouTube to MP3.lnk . (.Open Media LLC - 4K YouTube to MP3.) C:\Program Files (x86)\4KDownload\4kyoutubetomp3\4kyoutubetomp3.exe =>.Open Media LLC®
O4 - GS\TaskBar [Administrateur]: Ableton Live 9 Lite.lnk . (.Ableton - Ableton Live 9 Lite.) C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe =>.Ableton AG®
O4 - GS\TaskBar [Administrateur]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\TaskBar [Administrateur]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\TaskBar [Administrateur]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group®
O4 - GS\TaskBar [Administrateur]: Riffstation.lnk . (.Sonic Ladder - Riffstation v1.6.3.0.) C:\Program Files (x86)\Riffstation\Riffstation.exe {1F5962140E7B3F92F4C565D156A2B9BE} =>.Sonic Ladder
O4 - GS\TaskBar [Administrateur]: VirtualDJ 8.lnk . (.Atomix Productions - VirtualDJ.) C:\Program Files (x86)\VirtualDJ\virtualdj8.exe =>.Atomix Productions Inc.®
O4 - GS\TaskBar [Administrateur]: Мozilla Firеfoх.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.xoferif.bat
O4 - GS\Programs [Administrateur]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\Programs [Administrateur]: 4K YouTube to MP3.lnk . (.Open Media LLC - 4K YouTube to MP3.) C:\Program Files (x86)\4KDownload\4kyoutubetomp3\4kyoutubetomp3.exe =>.Open Media LLC®
O4 - GS\Programs [Administrateur]: Ableton Live 9 Lite.lnk . (.Ableton - Ableton Live 9 Lite.) C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe =>.Ableton AG®
O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [defaultuser0]: ChordPulse Lite.lnk . (...) C:\Program Files (x86)\ChordPulse Lite\ChordPulse Lite.exe
O4 - GS\Desktop [defaultuser0]: chrome - Raccourci.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [defaultuser0]: Molotov.lnk . (.Molotov - Molotov.) C:\Users\J.J.TAMBAKTIS\AppData\Local\Molotov\Molotov.exe =>.Molotov
O4 - GS\Desktop [defaultuser0]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [defaultuser0]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [defaultuser0]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe %SNP% --disable-quic =>PUP.Optional.Salus
O4 - GS\Quicklaunch [defaultuser0]: Gоogle Сhromе.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.emorhc.bat
O4 - GS\Quicklaunch [defaultuser0]: IncrediMail 2.0.lnk . (.IncrediMail Ltd. - IncrediMail Application.) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O4 - GS\Quicklaunch [defaultuser0]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\sendTo [defaultuser0]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [defaultuser0]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [defaultuser0]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [defaultuser0]: 4K Video Downloader (2).lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\TaskBar [defaultuser0]: 4K YouTube to MP3.lnk . (.Open Media LLC - 4K YouTube to MP3.) C:\Program Files (x86)\4KDownload\4kyoutubetomp3\4kyoutubetomp3.exe =>.Open Media LLC®
O4 - GS\TaskBar [defaultuser0]: Ableton Live 9 Lite.lnk . (.Ableton - Ableton Live 9 Lite.) C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe =>.Ableton AG®
O4 - GS\TaskBar [defaultuser0]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\TaskBar [defaultuser0]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\TaskBar [defaultuser0]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group®
O4 - GS\TaskBar [defaultuser0]: Riffstation.lnk . (.Sonic Ladder - Riffstation v1.6.3.0.) C:\Program Files (x86)\Riffstation\Riffstation.exe {1F5962140E7B3F92F4C565D156A2B9BE} =>.Sonic Ladder
O4 - GS\TaskBar [defaultuser0]: VirtualDJ 8.lnk . (.Atomix Productions - VirtualDJ.) C:\Program Files (x86)\VirtualDJ\virtualdj8.exe =>.Atomix Productions Inc.®
O4 - GS\TaskBar [defaultuser0]: Мozilla Firеfoх.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.xoferif.bat
O4 - GS\Programs [defaultuser0]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\Programs [defaultuser0]: 4K YouTube to MP3.lnk . (.Open Media LLC - 4K YouTube to MP3.) C:\Program Files (x86)\4KDownload\4kyoutubetomp3\4kyoutubetomp3.exe =>.Open Media LLC®
O4 - GS\Programs [defaultuser0]: Ableton Live 9 Lite.lnk . (.Ableton - Ableton Live 9 Lite.) C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe =>.Ableton AG®
O4 - GS\Programs [defaultuser0]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [J.J.TAMBAKTIS]: ChordPulse Lite.lnk . (...) C:\Program Files (x86)\ChordPulse Lite\ChordPulse Lite.exe
O4 - GS\Desktop [J.J.TAMBAKTIS]: chrome - Raccourci.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [J.J.TAMBAKTIS]: Molotov.lnk . (.Molotov - Molotov.) C:\Users\J.J.TAMBAKTIS\AppData\Local\Molotov\Molotov.exe =>.Molotov
O4 - GS\Desktop [J.J.TAMBAKTIS]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [J.J.TAMBAKTIS]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [J.J.TAMBAKTIS]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe %SNP% --disable-quic =>PUP.Optional.Salus
O4 - GS\Quicklaunch [J.J.TAMBAKTIS]: Gоogle Сhromе.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.emorhc.bat
O4 - GS\Quicklaunch [J.J.TAMBAKTIS]: IncrediMail 2.0.lnk . (.IncrediMail Ltd. - IncrediMail Application.) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O4 - GS\Quicklaunch [J.J.TAMBAKTIS]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\sendTo [J.J.TAMBAKTIS]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [J.J.TAMBAKTIS]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [J.J.TAMBAKTIS]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [J.J.TAMBAKTIS]: 4K Video Downloader (2).lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\TaskBar [J.J.TAMBAKTIS]: 4K YouTube to MP3.lnk . (.Open Media LLC - 4K YouTube to MP3.) C:\Program Files (x86)\4KDownload\4kyoutubetomp3\4kyoutubetomp3.exe =>.Open Media LLC®
O4 - GS\TaskBar [J.J.TAMBAKTIS]: Ableton Live 9 Lite.lnk . (.Ableton - Ableton Live 9 Lite.) C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe =>.Ableton AG®
O4 - GS\TaskBar [J.J.TAMBAKTIS]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\TaskBar [J.J.TAMBAKTIS]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\TaskBar [J.J.TAMBAKTIS]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group®
O4 - GS\TaskBar [J.J.TAMBAKTIS]: Riffstation.lnk . (.Sonic Ladder - Riffstation v1.6.3.0.) C:\Program Files (x86)\Riffstation\Riffstation.exe {1F5962140E7B3F92F4C565D156A2B9BE} =>.Sonic Ladder
O4 - GS\TaskBar [J.J.TAMBAKTIS]: VirtualDJ 8.lnk . (.Atomix Productions - VirtualDJ.) C:\Program Files (x86)\VirtualDJ\virtualdj8.exe =>.Atomix Productions Inc.®
O4 - GS\TaskBar [J.J.TAMBAKTIS]: Мozilla Firеfoх.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.xoferif.bat
O4 - GS\Programs [J.J.TAMBAKTIS]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\Programs [J.J.TAMBAKTIS]: 4K YouTube to MP3.lnk . (.Open Media LLC - 4K YouTube to MP3.) C:\Program Files (x86)\4KDownload\4kyoutubetomp3\4kyoutubetomp3.exe =>.Open Media LLC®
O4 - GS\Programs [J.J.TAMBAKTIS]: Ableton Live 9 Lite.lnk . (.Ableton - Ableton Live 9 Lite.) C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe =>.Ableton AG®
O4 - GS\Programs [J.J.TAMBAKTIS]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Desktop [WDAGUtilityAccount]: ChordPulse Lite.lnk . (...) C:\Program Files (x86)\ChordPulse Lite\ChordPulse Lite.exe
O4 - GS\Desktop [WDAGUtilityAccount]: chrome - Raccourci.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O4 - GS\Desktop [WDAGUtilityAccount]: Molotov.lnk . (.Molotov - Molotov.) C:\Users\J.J.TAMBAKTIS\AppData\Local\Molotov\Molotov.exe =>.Molotov
O4 - GS\Desktop [WDAGUtilityAccount]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe =>.PhotoFiltre
O4 - GS\Desktop [WDAGUtilityAccount]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe %SNP% --disable-quic =>PUP.Optional.Salus
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Gоogle Сhromе.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.emorhc.bat
O4 - GS\Quicklaunch [WDAGUtilityAccount]: IncrediMail 2.0.lnk . (.IncrediMail Ltd. - IncrediMail Application.) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O4 - GS\Quicklaunch [WDAGUtilityAccount]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\sendTo [WDAGUtilityAccount]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [WDAGUtilityAccount]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [WDAGUtilityAccount]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [WDAGUtilityAccount]: 4K Video Downloader (2).lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\TaskBar [WDAGUtilityAccount]: 4K YouTube to MP3.lnk . (.Open Media LLC - 4K YouTube to MP3.) C:\Program Files (x86)\4KDownload\4kyoutubetomp3\4kyoutubetomp3.exe =>.Open Media LLC®
O4 - GS\TaskBar [WDAGUtilityAccount]: Ableton Live 9 Lite.lnk . (.Ableton - Ableton Live 9 Lite.) C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe =>.Ableton AG®
O4 - GS\TaskBar [WDAGUtilityAccount]: CCleaner.lnk . (.Piriform Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Ltd®
O4 - GS\TaskBar [WDAGUtilityAccount]: Picasa 3.lnk . (.Google Inc. - Picasa.) C:\Program Files (x86)\Google\Picasa3\Picasa3.exe =>.Google Inc®
O4 - GS\TaskBar [WDAGUtilityAccount]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group®
O4 - GS\TaskBar [WDAGUtilityAccount]: Riffstation.lnk . (.Sonic Ladder - Riffstation v1.6.3.0.) C:\Program Files (x86)\Riffstation\Riffstation.exe {1F5962140E7B3F92F4C565D156A2B9BE} =>.Sonic Ladder
O4 - GS\TaskBar [WDAGUtilityAccount]: VirtualDJ 8.lnk . (.Atomix Productions - VirtualDJ.) C:\Program Files (x86)\VirtualDJ\virtualdj8.exe =>.Atomix Productions Inc.®
O4 - GS\TaskBar [WDAGUtilityAccount]: Мozilla Firеfoх.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.xoferif.bat
O4 - GS\Programs [WDAGUtilityAccount]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\Programs [WDAGUtilityAccount]: 4K YouTube to MP3.lnk . (.Open Media LLC - 4K YouTube to MP3.) C:\Program Files (x86)\4KDownload\4kyoutubetomp3\4kyoutubetomp3.exe =>.Open Media LLC®
O4 - GS\Programs [WDAGUtilityAccount]: Ableton Live 9 Lite.lnk . (.Ableton - Ableton Live 9 Lite.) C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe =>.Ableton AG®
O4 - GS\Programs [WDAGUtilityAccount]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation®
O4 - GS\Programs [Public]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Open Media LLC
O4 - GS\Programs [Public]: 4K YouTube to MP3.lnk . (.Open Media LLC - 4K YouTube to MP3.) C:\Program Files (x86)\4KDownload\4kyoutubetomp3\4kyoutubetomp3.exe =>.Open Media LLC®
O4 - GS\Programs [Public]: Ableton Live 9 Lite.lnk . (.Ableton - Ableton Live 9 Lite.) C:\ProgramData\Ableton\Live 9 Lite\Program\Ableton Live 9 Lite.exe =>.Ableton AG®
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\internet explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Intеrnеt Eхplоrеr.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.erolpxei.bat
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Startup [Public]: HP Audio Switch.lnk . (...) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitchLC.vbs /auto
O4 - GS\Startup [Public]: HP JumpStart Launch.lnk . (...) c:\windows\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Audacity 1.3 Beta (Unicode).lnk . (.The Audacity Team - Audacity®, the Free, Cross-Platform Sound E.) C:\Program Files (x86)\Audacity 1.3 Beta (Unicode)\audacity.exe =>.The Audacity Team
O4 - GS\ProgramsCommon [Public]: Booking.com.lnk . (...) C:\Program Files (x86)\HP\Shared\WizLink.exe http://secure.rezserver.com/
O4 - GS\ProgramsCommon [Public]: CyberLink Power Media Player 14.lnk . (.CyberLink Corp. - CyberLink Power Media Player.) C:\Program Files (x86)\CyberLink\PowerDVD14\PDVDLP.exe =>.CyberLink Corp.®
O4 - GS\ProgramsCommon [Public]: CyberLink PowerDirector.lnk . (.CyberLink Corp. - PowerDirector 14.) C:\Program Files\CyberLink\PowerDirector14\PowerDirector_video_editing.exe =>.CyberLink Corp.®
O4 - GS\ProgramsCommon [Public]: Dropbox 25 GB.lnk . (...) C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe manualstartmenu =>.Dropbox, Inc®
O4 - GS\ProgramsCommon [Public]: DTS Audio Control.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe shell32.dll,Control_RunDLL RTSnMg64.cpl,, =>..Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (...) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
O4 - GS\ProgramsCommon [Public]: Firеfox.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.xoferif.bat
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe %SNP% --disable-quic =>PUP.Optional.Salus
O4 - GS\ProgramsCommon [Public]: Gоoglе Сhrоmе.lnk . (...) C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers\exe.emorhc.bat
O4 - GS\ProgramsCommon [Public]: HP Audio Switch.lnk . (.HP Inc. - HPAudioSwitch.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe =>.HP Inc.®
O4 - GS\ProgramsCommon [Public]: HP Smart Friend.lnk . (...) C:\Program Files (x86)\HP\Shared\WizLocaleLink.exe C:\HP\HPQWare\HPSmartFriend_URL\WizLocaleLink_NB.ini =>.HP Inc.®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: IncrediMail.lnk . (.IncrediMail Ltd. - IncrediMail Application.) C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation®
O4 - GS\ProgramsCommon [Public]: WildTangent Games App - hp.lnk . (.WildTangent - WildTangent Games App.) C:\Program Files (x86)\WildTangent Games\App\GameConsole-wt.exe /src gamesmenu /dp hpcnb2c16 =>.WildTangent Inc®
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation®

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{a3bd7520-e890-4cba-93bf-1d0711777e4f}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{e7e32757-3ba9-42c4-b2ea-58263fa4ba25}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress

---\\ PROTOCOLE ADDITIONNEL (23) - 1s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft Corporation®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (2) - 0s
O20 - AppInit_DLLs: . (...) - C:\ProgramData\AppmallosayoV\Apdubtax.dll
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (1) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:ProductUpdater =>Toolbar.Freemake

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (5) - 2s
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe =>.Google Inc®

---\\ LOGICIELS INSTALLÉS (104) - 22s
O42 - Logiciel: 4K Video Downloader 4.4 - (.Open Media LLC.) [HKLM][64Bits] -- {886181D0-7FC7-497E-97F4-60E2EA635723} =>.Open Media LLC
O42 - Logiciel: 4K YouTube to MP3 3.3 - (.Open Media LLC.) [HKLM][64Bits] -- {65D9009F-7586-471D-A45A-4E94D7CC04DD} =>.Open Media LLC
O42 - Logiciel: Ableton Live 9 Lite - (.Ableton.) [HKLM][64Bits] -- {B2DDF870-88C9-42E6-B559-900D7424A185} =>.Ableton
O42 - Logiciel: Audacity 1.3.12 (Unicode) - (.Audacity Team.) [HKLM][64Bits] -- Audacity 1.3 Beta (Unicode)_is1 =>.Audacity Team
O42 - Logiciel: Bass Station 2.2 - (.Novation.) [HKLM][64Bits] -- {ABAF1232-6213-4062-9D52-04E04A730CEA}_is1 =>.Focusrite Audio Engineering Ltd.®
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc.
O42 - Logiciel: Build-a-lot - (.WildTangent.) [HKLM][64Bits] -- WTA-8b7348f8-b0da-4852-a8a7-e76df3c7262a =>.WildTangent Inc®
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Ltd®
O42 - Logiciel: ChordPulse Lite - (..) [HKLM][64Bits] -- ChordPulse Lite
O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {AF312B06-5C5C-468E-89B3-BE6DE2645722} =>.Cisco Systems, Inc.
O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F} =>.Cisco Systems, Inc.
O42 - Logiciel: Crazy Chicken Soccer - (.WildTangent.) [HKLM][64Bits] -- WTA-aa5cda4c-16b9-4209-8951-1c92467a56dc =>.WildTangent Inc®
O42 - Logiciel: CyberLink Power Media Player 14 - (.CyberLink Corp..) [HKLM][64Bits] -- {32C8E300-BDB4-4398-92C2-E9B7D8A233DB} =>.CyberLink Corp.
O42 - Logiciel: CyberLink PowerDirector 14 - (.CyberLink Corp..) [HKLM][64Bits] -- {6BADCD73-E925-46F7-A295-FF2448632728} =>.CyberLink Corp.
O42 - Logiciel: Dropbox 25 GB - (.Dropbox, Inc..) [HKLM][64Bits] -- {0867A88D-764F-366E-9E21-130DA8B472C3} =>.Dropbox, Inc.
O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} =>.Dropbox, Inc.
O42 - Logiciel: Energy Star - (.HP Inc..) [HKLM][64Bits] -- {5CB22648-35F8-41BC-9C35-1E41FE6E12A5} =>.HP Inc.
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc®
O42 - Logiciel: Google Photos Backup - (.Google, Inc..) [HKCU][64Bits] -- Google Photos Backup =>.Google, Inc.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc.
O42 - Logiciel: HP Audio Switch - (.HP Inc..) [HKLM][64Bits] -- HPAudioSwitch =>.HP Inc.
O42 - Logiciel: HP Customer Experience Enhancements - (.HP Development Company, L.P..) [HKLM][64Bits] -- {64228DFB-7450-49B7-935C-B97342CB6659} =>.HP Development Company, L.P.
O42 - Logiciel: HP Documentation - (.HP Inc..) [HKLM][64Bits] -- HP_Documentation =>.HP Inc.
O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {1B1E721E-4843-465C-867F-E8651E5ABCD1} =>.HP Inc.
O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {2460D024-A262-43EE-B83B-D990D7188252} =>.HP Inc.
O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {70FF7FA8-1775-4D18-855B-DDB5AE876486} =>.HP Inc.
O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {804E6C19-C29C-4C2A-AB7D-84F657F36A1A} =>.HP Inc.
O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {9E79DC8C-9CBD-4BFF-B1C6-DDE56471600E} =>.HP Inc.
O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {b0ebf7ff-6b1a-4a92-9c85-6915be1962b9} =>.Hewlett-Packard Company®
O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {E1FE22DE-22EF-4235-A56A-287CE38AA584} =>.HP Inc.
O42 - Logiciel: HP JumpStart Bridge - (.HP Inc..) [HKLM][64Bits] -- {9B252E0D-7B31-48A6-B01E-B5CCBA286E8E} =>.HP Inc.
O42 - Logiciel: HP JumpStart Launch - (.HP Inc..) [HKLM][64Bits] -- {B90CB0DE-2E60-41C4-9857-466EB98192BF} =>.HP Inc.
O42 - Logiciel: HP Recovery Manager - (.HP.) [HKLM][64Bits] -- {64BAA990-F1FC-4145-A7B1-E41FBBC9DA47} =>.HP
O42 - Logiciel: HP Registration Service - (.HP Inc..) [HKLM][64Bits] -- {D1E8F2D7-7794-4245-B286-87ED86C1893C} =>.HP Inc.
O42 - Logiciel: HP Support Assistant - (.HP Inc..) [HKLM][64Bits] -- {39C8BE76-CF6A-466F-8618-0B52CC4CA0FC} =>.HP Inc.
O42 - Logiciel: HP Support Solutions Framework - (.HP Inc..) [HKLM][64Bits] -- {446AA6E0-104D-40FB-A18A-A3431AED2F14} =>.HP Inc.
O42 - Logiciel: HP Sure Connect - (.HP Inc..) [HKLM][64Bits] -- {6468C4A5-E47E-405F-B675-A70A70983EA6} =>.HP Inc.
O42 - Logiciel: HP System Event Utility - (.HP Inc..) [HKLM][64Bits] -- {29E20347-C62F-4657-938E-876A182B67F1} =>.HP Inc.
O42 - Logiciel: HP Wireless Button Driver - (.HP.) [HKLM][64Bits] -- {F5852AA8-30EA-495B-84B4-C2403C935D6F} =>.HP
O42 - Logiciel: IncrediMail - (.IncrediMail.) [HKLM][64Bits] -- {5C083736-2916-4D06-BCE9-4F981EA53AEC} =>.IncrediMail
O42 - Logiciel: IncrediMail 2.5 - (.IncrediMail Ltd..) [HKLM][64Bits] -- IncrediMail {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {3AE6FD56-D431-4B53-94F0-95E844206ADF} =>.Intel Corporation
O42 - Logiciel: Intel(R) Dynamic Platform and Thermal Framework - (.Intel Corporation.) [HKLM][64Bits] -- {654EE65D-FAA4-4EA6-8C07-DC94E6A304D4} =>.Intel(R) Software®
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel(R) pGFX®
O42 - Logiciel: Intel(R) Trusted Execution Engine - (.Intel Corporation.) [HKLM][64Bits] -- {176E2755-0A17-42C6-88E2-192AB2131278} =>.Intel Corporation
O42 - Logiciel: Intel(R) Trusted Execution Engine - (.Intel Corporation.) [HKLM][64Bits] -- {57FDCE53-64B7-48F3-AD5B-302A46C3080B} =>.Intel Corporation
O42 - Logiciel: Intel(R) Trusted Execution Engine Driver - (.Intel Corporation.) [HKLM][64Bits] -- {BAAE2AA9-513A-4658-A44F-9D6D607A9BC7} =>.Intel Corporation
O42 - Logiciel: Intel® Security Assist - (.Intel Corporation.) [HKLM][64Bits] -- {4B230374-6475-4A73-BA6E-41015E9C5013} =>.Intel Corporation
O42 - Logiciel: Jeux WildTangent - (.WildTangent.) [HKLM][64Bits] -- WildTangent wildgames Master Uninstall =>.WildTangent Inc®
O42 - Logiciel: LibreOffice 6.0.5.2 - (.The Document Foundation.) [HKLM][64Bits] -- {9645CDEF-085C-45F7-A3CD-B4B7046EF78C} =>.The Document Foundation
O42 - Logiciel: Logiciel pour périphérique à chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {aaa7f0fb-02dc-4576-beef-7d24842c5fbe} =>.Intel(R) Software and Firmware Products®
O42 - Logiciel: Magic Heroes: Save Our Park - (.WildTangent.) [HKLM][64Bits] -- WTA-7af6b36c-99e4-4cbf-b845-e98ba8769d37 =>.WildTangent Inc®
O42 - Logiciel: Malwarebytes version 3.6.1.2711 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation®
O42 - Logiciel: Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtensio - (.Microsoft Corporation.) [HKLM][64Bits] -- {B0169E83-757B-EF66-E2F0-391944D785BC} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Office Famille et Étudiant 2016 - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- HomeStudentRetail - fr-fr =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Office Home and Student 2016 - en-us - (.Microsoft Corporation.) [HKLM][64Bits] -- HomeStudentRetail - en-us =>.Microsoft Corporation®
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {d992c12e-cab2-426f-bde3-fb8c53950b0d} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23506 - (.Microsoft Corporation.) [HKLM][64Bits] -- {23daf363-3020-4059-b3ae-dc4ad39fed19} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23506 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1045AB6F-6151-3634-8C2C-EE308AA1A6A7} =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23506 - (.Microsoft Corporation.) [HKLM][64Bits] -- {65AD78AD-D23D-3A1E-9305-3AE65CD522C2} =>.Microsoft Corporation
O42 - Logiciel: Molotov - (.Molotov.) [HKCU][64Bits] -- Molotov =>.Molotov
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0409-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation
O42 - Logiciel: PhotoFiltre 7 - (.Antonio Da Cruz.) [HKCU][64Bits] -- PhotoFiltre 7 =>.Antonio Da Cruz
O42 - Logiciel: Picasa 3 - (.Google, Inc..) [HKLM][64Bits] -- Picasa 3 =>.Google, Inc.
O42 - Logiciel: Polar Bowler 1st Frame - (.WildTangent.) [HKLM][64Bits] -- WTA-c2f81eae-409f-473f-b408-ab999ce2a580 =>.WildTangent Inc®
O42 - Logiciel: Ranch Rush 2 - Premium Edition - (.WildTangent.) [HKLM][64Bits] -- WTA-ef9f7f95-e857-4e36-abe0-265d675043ea =>.WildTangent Inc®
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconduct Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.®
O42 - Logiciel: REALTEK Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {A5107464-AA9B-4177-8129-5FF2F42DD322} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Revo Uninstaller 2.0.3 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1 =>.VS Revo Group, Ltd.
O42 - Logiciel: Riffstation - (.Sonic Ladder Ltd..) [HKCU][64Bits] -- {b05bb731-617b-4f63-8b25-d01f94cca9b5} =>.Sonic Ladder Ltd.
O42 - Logiciel: Runefall - (.WildTangent.) [HKLM][64Bits] -- WTA-911a4b4e-2f8e-470f-952b-31d2ab153d43 =>.WildTangent Inc®
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated®
O42 - Logiciel: TomTom HOME - (.TomTom.) [HKLM][64Bits] -- {9F1953B3-B0EE-402C-A29F-A8AB775A6D1D} =>.TomTom
O42 - Logiciel: Trinklit Supreme - (.WildTangent.) [HKLM][64Bits] -- WTA-c871c3b3-108e-495a-933d-cea19ee97b4b =>.WildTangent Inc®
O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] -- {9CBA860F-7437-4A75-941C-8EF559F2D145} =>.Microsoft Corporation
O42 - Logiciel: Update Installer for WildTangent Games App - (.WildTangent.) [HKLM][64Bits] -- {2FA94A64-C84E-49d1-97DD-7BF06C7BBFB2}.WildTangent Games App =>.WildTangent Inc®
O42 - Logiciel: VirtualDJ 8 - (.Atomix Productions.) [HKLM][64Bits] -- {5E965DD0-32E6-4A51-B09C-E394A1E29BEF} =>.Atomix Productions
O42 - Logiciel: WildTangent Games App pour HP - (.WildTangent.) [HKLM][64Bits] -- {70B446D1-E03B-4ab0-9B3C-0832142C9AA8}.WildTangent Games App-hp =>.WildTangent Inc®
O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst =>.CACE Technologies
O42 - Logiciel: YoutubeAdBlock - (.Company Inc..) [HKLM][64Bits] -- 1655C0CA-7AE7-4012-8502-970C8675E5F8 =>PUP.Optional.YouTubeAdBlock

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (124) - 22s
HKCU\Software\WebDiscoverBrowser =>Adware.WebDiscoverBrowser
HKLM\SOFTWARE\Wow6432Node\WebDiscoverBrowser =>Adware.WebDiscoverBrowser
HKLM\SOFTWARE\WebDiscoverBrowser =>Adware.WebDiscoverBrowser
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\cGN0b25pY3MuY29t
HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\HP =>.HP
HKLM\SOFTWARE\InstalledOptions =>.Installed Options
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\IntelVolatile =>.Intel Corporation
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\LibreOffice =>.LibreOffice
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nuance =>.Nuance
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Propellerhead Software =>.Propellerhead Software
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\Scanner_bot
HKLM\SOFTWARE\SonicFocus =>.Sonic Focus
HKLM\SOFTWARE\SoundResearch =>.Sound Research
HKLM\SOFTWARE\SrcAAAesom Browser Enhancer =>PUP.Optional.Wajam
HKLM\SOFTWARE\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\Synaptics =>.Synaptics
HKLM\SOFTWARE\The Document Foundation =>.The Document Foundation
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\wtc-pr =>.SUP.WinTonic
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\AVAST Software =>.AVAST Software
HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\WOW6432Node\ChordPulse Lite
HKLM\SOFTWARE\WOW6432Node\Cyberlink =>.CyberLink Corporation
HKLM\SOFTWARE\WOW6432Node\DivXNetworks =>.DivXNetworks
HKLM\SOFTWARE\WOW6432Node\Dropbox =>.Dropbox
HKLM\SOFTWARE\WOW6432Node\DropboxUpdate =>.Dropbox Inc.
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\WOW6432Node\HP =>.HP
HKLM\SOFTWARE\WOW6432Node\HP Inc. =>.HP Inc.
HKLM\SOFTWARE\WOW6432Node\IncrediMail =>.IncrediMail
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\LogMeInRescueCallingCard =>.LogMeIn Entreprise
HKLM\SOFTWARE\WOW6432Node\LogMeInRescueCallingCards =>.LogMeIn Entreprise
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\mtAppmallosayoV
HKLM\SOFTWARE\WOW6432Node\mtVoyasollam
HKLM\SOFTWARE\WOW6432Node\Novation =>.Novation
HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\RtWLan =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\SrcAAAesom Browser Enhancer =>PUP.Optional.Wajam
HKLM\SOFTWARE\WOW6432Node\VirtualDJ =>.Atomix Production
HKLM\SOFTWARE\WOW6432Node\WildTangent =>.WildTangent
HKLM\SOFTWARE\WOW6432Node\WinPcap =>.Riverbed Technology
HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\4kdownload.com =>.4kdownload.com
HKCU\SOFTWARE\Ableton =>.Ableton
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Audacity =>.Audacity
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKCU\SOFTWARE\Avira =>.Avira
HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o
HKCU\SOFTWARE\Chromium =>.Chromium
HKCU\SOFTWARE\DropboxUpdate =>.Dropbox Inc.
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\IM =>.Legitimate
HKCU\SOFTWARE\IncrediMail =>.IncrediMail
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\NeoSoftTools
HKCU\SOFTWARE\Open Media LLC =>.Open Media LLC
HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Rtp =>.RTP Software
HKCU\SOFTWARE\Sonic Ladder =>.Sonic Ladder
HKCU\SOFTWARE\SpeeDownloader =>Adware.SoftwareEngine
HKCU\SOFTWARE\Synaptics =>.Synaptics
HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\VirtualDJ =>.Atomix Production
HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group
HKCU\SOFTWARE\WajIEnhance =>PUP.Optional.Wajam
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Google =>.Google
HKU\.DEFAULT\SOFTWARE\IncrediMail =>.IncrediMail
HKU\.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc.
HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\.DEFAULT\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\WebDiscoverBrowser =>Adware.WebDiscoverBrowser
HKU\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\SOFTWARE\DropboxUpdate =>.Dropbox Inc.
HKU\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\SOFTWARE\Google =>.Google
HKU\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\SOFTWARE\McAfee =>.McAfee Inc.
HKU\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz
HKU\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\SOFTWARE\Synaptics =>.Synaptics
HKU\S-1-5-21-1922404815-1588106759-487766661-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-12132018094939429\SOFTWARE\WOW6432Node =>.Microsoft Corporation

---\\ CONTENU DES DOSSIERS PROGRAMMES (587) - 66s
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\04P1HVLV87 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\0AQCVX6TWO =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\0JCE9KMNQ0 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\11WM90GHYT =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\1N2QXGO06Q =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\1YWR6KX8A4 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\1ZW16Q0YIH =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\225WGKLWN1 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\2623ZT8XMH =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\29SO003NK4 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\37VWXKW7N1 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\38P8CK99P6 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\38YPEYVTVU =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\3D4VAUKSXN =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\3HVH7U3KUH =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\3PAUHYWW3S =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\417AWY8ZDJ =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\42HX1AVWDG =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\4GXTCXZFIW =>Adware.Wizzcaster
O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\4KDownload =>.Open Media LLC®
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\4RAEUJYXTE =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\4V1BTUETBW =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\58S66JYD5A =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\5B9FXZ70L4 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\5KP8LIVPY3 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\5YRQOVRGLP =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\6FGHDS0HUY =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\6FSF9AS2RQ =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\70F8Z4662U =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\7WJ641OPJF =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\88YLCFXRTW =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\8B873N6HFN =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\8EBQWFLG1I =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\8INYUYH34R =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\8WT9AFV4T1 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\94BBZE6PRD =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\96D3I6RKVV =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\99038B4C11 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\9A6RE7D3KQ =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\9SDJLLC56X =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\9UHC2ZCQDR =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [0] D -- C:\Program Files\9XZTQTJUA2
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\A110B9AB7L =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\AKC8ATC6F1 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\AR7W9VT4OF =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\BD7Z7IF851 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\BE2I9ZDTN2 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\BO27SSNHF1 =>Adware.Wizzcaster
O43 - CFD: 22/08/2017 - [] AD -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\BSHOY19KBX =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [0] D -- C:\Program Files\BXSJIKP5SV
O43 - CFD: 12/09/2018 - [] AD -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\CKETCUV2I8 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\CN9FLTXXQ7 =>Adware.Wizzcaster
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files\CyberLink =>.CyberLink Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\D3U19MU2G8 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\D694BSC19I =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\DJ53DVW1OE =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\E5Q8QUTRTZ =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\E8V3RRSXPY =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\ECQD0SKYAW =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\EMKCX7EXNJ =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\EN36EK3990 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\EO2GEQ6ZHE =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\F5I8XPMNL0 =>Adware.Wizzcaster
O43 - CFD: 22/08/2017 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\FZA8L7PRKY =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\G2BAIUQTWJ =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\GIEVTF06R1 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\GX5UMSZ3MD =>Adware.Wizzcaster
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files\HP =>.Hewlett-Packard
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files\HPCommRecovery
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 13/11/2018 - [] D -- C:\Program Files\internet explorer =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\J34I29L1OH =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\J8GFC6W26R =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\JHULKAOAY7 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\JLCGTIFMX8 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\JPSKF6X6EO =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\JQDP3C2JU4 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\K3TBLUO9UX =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\K9GT543AJN =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\KY27LDAXQT =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\LF1WYKT7UV =>Adware.Wizzcaster
O43 - CFD: 02/07/2018 - [] D -- C:\Program Files\LibreOffice =>.LibreOffice
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\LKS1T3Z8PF =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\M08TQLI2XW =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\M5T1I9KT74 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [0] D -- C:\Program Files\MM68YTPV9Y
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\MT3HJZYJUZ =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\MZU5RJ3769 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\N6HY659O5I =>Adware.Wizzcaster
O43 - CFD: 26/08/2017 - [] D -- C:\Program Files\Novation
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\O8SUK01ZC8 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\OAPMYRUXIL =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\OCV16WQXJC =>Adware.Wizzcaster
O43 - CFD: 13/12/2018 - [] D -- C:\Program Files\ODVhNWE5NTJjY
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\OMOA5UFVYW =>Adware.Wizzcaster
O43 - CFD: 22/08/2017 - [] RD -- C:\Program Files\Online Services =>.Hewlett-Packard
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\OQKXTR8E4G =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\OUBY9DXH7R =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\P32SY3SL20 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\P3QFY43O92 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\P4O07JJOTU =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\P9K8KT13H5 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\PH1LOBSI06 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\Q6RWT95WSL =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\Q8BILV22OA =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\QC42C9SM16 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\QC7EKFCSAB =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\QDBX1N9NAR =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\QHJ6BMONHC =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\QTXZXZ8IW5 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\R6HXLXKTPD =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\R8JM5CE7P7 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\RC1VOZ2YEM =>Adware.Wizzcaster
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 11/12/2018 - [] AD -- C:\Program Files\rempl =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\RR3YEBWDQF =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\RXN4QHR76Z =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\S65R4IN1VU =>Adware.Wizzcaster
O43 - CFD: 26/08/2017 - [] D -- C:\Program Files\Steinberg =>.Steinberg
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\T1JSF3GMDA =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\T2MK6YUOT7 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\T3QENCUA11 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\T4QTVIK3YF =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\T80C50MNUS =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\TP52UKGQ8J =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\TT3EBLP7V8 =>Adware.Wizzcaster
O43 - CFD: 24/08/2017 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] AD -- C:\Program Files\UNP =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\UWAUDJ79UF =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\V86LTPM3CJ =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\V9TEOT8G5E =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\VFO8LUX4GK =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\VG2WLVCZ67 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\VIKWB4IVFN =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\VIYJ6VFEZ6 =>Adware.Wizzcaster
O43 - CFD: 23/08/2017 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group
O43 - CFD: 12/12/2018 - [0] D -- C:\Program Files\WebDiscoverBrowser =>.SUP.WebDiscoverMedia
O43 - CFD: 13/11/2018 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 13/11/2018 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files\windows nt =>.Microsoft Corporation
O43 - CFD: 28/06/2018 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 11/12/2018 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 03/09/2017 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\WQG3MZYKOI =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\WW1VY87ZYH =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\X7HWNP8DFC =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\XDGXHDQDBH =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\XFFCX56YCT =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\XHVNDMIAP0 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\XSZQTTUAUU =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\Y7N1D2HDTG =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\YGX7MM5U2C =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\YKNBVYQV85 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\YLHTD7T0I6 =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\YPXXZVCKZM =>Adware.Wizzcaster
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files\ZY1COIU6T6 =>Adware.Wizzcaster
O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\4KDownload =>.Open Media LLC®
O43 - CFD: 22/08/2017 - [] AD -- C:\Program Files (x86)\Audacity 1.3 Beta (Unicode) =>.Audacity
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files (x86)\aWunHHVEAkUn
O43 - CFD: 13/12/2018 - [0] D -- C:\Program Files (x86)\bestDownloader =>Adware.MSIL
O43 - CFD: 22/08/2017 - [] AD -- C:\Program Files (x86)\Bonjour =>.Apple Inc.
O43 - CFD: 30/11/2018 - [] D -- C:\Program Files (x86)\ChordPulse Lite
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files (x86)\Cisco =>.Cisco Systems, Inc.
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corporation
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files (x86)\Dropbox =>.Dropbox, Inc®
O43 - CFD: 13/12/2018 - [0] D -- C:\Program Files (x86)\FastDataX =>Adware.FastDataX
O43 - CFD: 13/12/2018 - [] D -- C:\Program Files (x86)\fgjCMzHQYvabC
O43 - CFD: 03/07/2018 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 21/08/2018 - [] AD -- C:\Program Files (x86)\HP =>.Hewlett-Packard
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files (x86)\HP Inc =>.HP Inc
O43 - CFD: 02/07/2018 - [] D -- C:\Program Files (x86)\IncrediMail {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail
O43 - CFD: 22/08/2017 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 13/11/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 13/12/2018 - [0] D -- C:\Program Files (x86)\jZorInLLanAU2
O43 - CFD: 11/12/2018 - [] AD -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [0] AD -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 11/12/2018 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 13/12/2018 - [] D -- C:\Program Files (x86)\NRJ
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files (x86)\NSIS Uninstall Information =>.MSIS
O43 - CFD: 13/12/2018 - [0] D -- C:\Program Files (x86)\OneSystemCare =>PUP.Optional.OneSystemCare
O43 - CFD: 22/08/2017 - [] RD -- C:\Program Files (x86)\Online Services =>.Hewlett-Packard
O43 - CFD: 12/12/2018 - [0] D -- C:\Program Files (x86)\PeaZip =>.Giorgio Tani
O43 - CFD: 03/07/2018 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files (x86)\ProxyGate =>.SUP.ProxyGate
O43 - CFD: 12/12/2018 - [] D -- C:\Program Files (x86)\r4cstcy5ovs
O43 - CFD: 30/11/2018 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Program Files (x86)\Riffstation {1F5962140E7B3F92F4C565D156A2B9BE}
O43 - CFD: 26/08/2017 - [] D -- C:\Program Files (x86)\Steinberg =>.Steinberg
O43 - CFD: 30/03/2017 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation
O43 - CFD: 13/09/2018 - [] D -- C:\Program Files (x86)\TomTom HOME 2 =>.TomTom
O43 - CFD: 26/08/2017 - [] D -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [] AD -- C:\Program Files (x86)\VirtualDJ =>.Atomix Production
O43 - CFD: 26/08/2017 - [] D -- C:\Program Files (x86)\VST-Plugins
O43 - CFD: 13/12/2018 - [] D -- C:\Program Files (x86)\vXrhcsvdNIE
O43 - CFD: 22/08/2017 - [] AD -- C:\Program Files (x86)\WildGames =>.WildTangent Inc®
O43 - CFD: 22/08/2017 - [] D -- C:\Program Files (x86)\WildTangent Games =>.WildTangent Games
O43 - CFD: 13/11/2018 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 13/11/2018 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\windows nt =>.Microsoft Corporation
O43 - CFD: 28/06/2018 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 13/12/2018 - [] D -- C:\Program Files (x86)\ymquwutTLCSFsEIPnQR
O43 - CFD: 13/12/2018 - [0] D -- C:\Program Files (x86)\ZmyMStEpU
O43 - CFD: 12/04/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 14/11/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 28/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 12/12/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support =>.Hewlett-Packard
O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail =>.IncrediMail
O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.0 =>.LibreOffice
O43 - CFD: 12/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes
O43 - CFD: 28/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools =>.Microsoft Corporation
O43 - CFD: 13/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novation
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One System Care =>PUP.Optional.OneSystemCare
O43 - CFD: 03/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3 =>.Google Inc.
O43 - CFD: 28/05/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group
O43 - CFD: 28/05/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 13/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom =>.TomTom
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\04a85e7f-5b2d-4bbd-a3ee-d11a024864d4
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\1b8cd899-0c21-1 =>.SUP.Polluteware
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\1b8cd899-7a01-0 =>.SUP.Polluteware
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\75c14ef9-a548-406d-b3da-95104c8c2668
O43 - CFD: 08/10/2017 - [] D -- C:\ProgramData\Ableton =>.Ableton
O43 - CFD: 22/08/2017 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 28/05/2018 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 13/12/2018 - [] D -- C:\ProgramData\AppmallosayoV
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\AppmallosayoVs
O43 - CFD: 27/05/2018 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 13/12/2018 - [] D -- C:\ProgramData\boost_interprocess =>.boost.org
O43 - CFD: 22/08/2017 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation
O43 - CFD: 28/05/2018 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [] D -- C:\ProgramData\Dropbox =>.Dropbox
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\eb6626d4-3825-1 =>.SUP.Polluteware
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\eb6626d4-5213-0 =>.SUP.Polluteware
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\FLUHMPFFUhaIYeVB
O43 - CFD: 25/08/2017 - [] D -- C:\ProgramData\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 22/08/2017 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard
O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\IM =>.IncrediMail Ltd
O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\IncrediMail =>.IncrediMail
O43 - CFD: 22/08/2017 - [] D -- C:\ProgramData\install_backup
O43 - CFD: 22/08/2017 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\K4SZPLVYB789VM067UDH
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\Logic Cramble =>PUP.Optional.LogicHandler
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 22/08/2017 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\OHSWBNDQZZT35529SG7Y
O43 - CFD: 02/07/2018 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 13/11/2018 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\pctonics.com =>.SUP.WinTonic
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\PrefsSecure =>.SUP.Linkury
O43 - CFD: 13/12/2018 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 24/08/2017 - [] D -- C:\ProgramData\SRS Labs =>.SRS Labs
O43 - CFD: 22/08/2017 - [] D -- C:\ProgramData\SUPPORTDIR =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [] D -- C:\ProgramData\Synaptics =>.Synaptics
O43 - CFD: 30/03/2017 - [0] D -- C:\ProgramData\Temp =>.Microsoft Corporation
O43 - CFD: 13/09/2018 - [] D -- C:\ProgramData\TomTom =>.TomTom
O43 - CFD: 28/05/2018 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\ProgramData\Voyasollams
O43 - CFD: 22/08/2017 - [] D -- C:\ProgramData\WildTangent =>.WildTangent
O43 - CFD: 12/04/2018 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 13/09/2018 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 28/05/2018 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 11/12/2018 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Program Files (x86)\Common Files\system =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\01bxwg1qiht
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\0chxbogntvi
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\0eviil3mjlk
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\0jderbmydsf
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\0vu4zjicdvh
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\0weew4rhvlg
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\0ypoik4ooh3
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\0zjzm1nojk0
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\13yousawmke
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\15chzdguoht
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\1es55jovoyw
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\1o51fg010oq
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\1rqwfhj0rlp
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\24xfcy23hfu
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\2lw2n1agwjd
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\2v3u5nhkxhk
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\2wtkhb41nz2
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\3akfnf4yyqo
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\3b5if5qrdne
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\3tz4va2kbtl
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\3wphf5ofsx5
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\3xsrbowp2r1
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\4esspklzb0r
O43 - CFD: 28/07/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\4kdownload.com =>.4kdownload.com
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\4nzyvlaa25z
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\4tscpkenmih
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\4z54lcy15wz
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\4zb2le0ufz0
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\5dw15prpqud
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\5gp0s3bhv0c
O43 - CFD: 23/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Ableton =>.Ableton
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\acwm4k5q1fe
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ahtz5ocibbi
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\athno3n53ln
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Audacity =>.Audacity
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\aygvd4ymjaj
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\b3unrnbo45q
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\babwgqpvmm2
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\bbvdrd1rmoi
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\bcp502odv3u
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\bglhknz2yxe
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\bnvefsn1vqh
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers =>PUP.Optional.Shopperz
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\bufer4wp3bf
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\byopfkxjuox
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\bzzlf2lvyaz
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\cht42p5e12t
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\cmcmbpqul5x
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\corxez1xrtq
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\crdn23fzlq3
O43 - CFD: 13/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\CRMSvc =>.Legitimate
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\crxmaly4jhj
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\cxfjnr403h4
O43 - CFD: 26/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Daichi
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\dc25ycjwkvg
O43 - CFD: 26/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\DigitalSuburban
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\dlgmmfgkbyz
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\DropboxOEM =>.Dropbox Inc.
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\dt2v3hl1icl
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\dvi1a2i3i1m
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\e2qrn0yih4s
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\e3yyua2dx2t
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ebizx5br5pj
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\eevprkzugcq
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\eez4gdu4cap
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\elljbotrkz4
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\enuqpej02sv
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\eoylgnmrm1c
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\epcrvvh1qo4
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\exuf3s2gm3b
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\f1s5fkjvkmx
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\fcicyoidmeg
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\fx2uviysoio
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\g11ako1dsjy
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\g3lbyndl4jq
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ghtdhgiiu5k
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\h3cznrhl0dd
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\h5h1aa2pvtg
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\hcnnsuizub2
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\hhygxvbdhns
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\hkcr2l0gggj
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\hlue4lcr1eu
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\HP =>.Hewlett-Packard
O43 - CFD: 26/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\hpqLog =>.Hewlett-Packard
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ht3vs55jdgb
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\hx35plsgqin
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\idmkyvxtews
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\immrrfztbr3
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\jo0h3sijd3q
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\jvsp245cry0
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\k00mcuxlfuw
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\k4bjdkqswxb
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\kb1eakcex2r
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\kmsxudviit5
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ko1zpw0ji4n
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\kot51yjhkat
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ktqz0jzgo4x
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\kwkbfuzuu2z
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\l2xpskrdl5y
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\l505pah350g
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\lcolfz5wywi
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\lgrsk5gxd3k
O43 - CFD: 02/07/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\LibreOffice =>.LibreOffice
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\lnpffd0yvho
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\lokpfthuaba
O43 - CFD: 13/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\LookupPro =>Adware.LookupPro
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\lrj1npzkp3w
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\lrm32f0fzck
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\lrnnf2mh1cc
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ltl1r2nzkxp
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\luugsenh4ve
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\m0jtldfj0il
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\m5gqpaprbjl
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\maj3evjp1cx
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\mb2e425ig5q
O43 - CFD: 12/12/2018 - [] SD -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 19/11/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Molotov =>.Molotov
O43 - CFD: 07/04/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\mv2dkvcbqjm
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\n4pl1vh0umc
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\negfiithx0a
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\nhwvclqdllo
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\npdpokrmc1h
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ntrmofwobai
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\nzv5tnokkg3
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\obxocjeqfzi
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ocmmlpr1sid
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ocw4bvyxtrm
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\oeysb5oooif
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\One System Care =>PUP.Optional.OneSystemCare
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ow0nh22o0ax
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\owlzuc3lkef
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\p3klj55y02r
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\p4izsrniw4t
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pctonics.com =>.SUP.WinTonic
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\PeaZip =>.Giorgio Tani
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pemps2g1f1v
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pfhjyiok2c5
O43 - CFD: 03/07/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pmvwo3k4mms
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pugqopkeytb
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pw2kwlm4cy3
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pwba2sjxpfe
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pwf5wi0ir5h
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pxama51nmiy
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Python =>.Python
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pz2pzdcmq4o
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\qg4251uve2f
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\qmhqnhsw4wi
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\qp4e1a0c11o =>Heuristic.Wizzcaster
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\rivq4rmxbbm
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\roat50qrnng
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\rogafvbdaoh
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\rqfnloxtixn
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\rtkxjxr1zmb
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\rvslhtkurpk
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\scuhejxeynx
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Skype =>.Skype
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\smkp4q5so2n
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\sn2pprp5e4q
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\sn50woivhe2
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\spfkoinszvx
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\SPI =>PUP.Optional.Shopperz
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\swyvz0jlfuc
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Synaptics =>.Synaptics
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\t5wxmuypka4
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\tbd10spdlif
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\tlbbvhsj1xy
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\tmad2jvsaig
O43 - CFD: 13/09/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\TomTom =>.TomTom
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\tqzkyuwwwgr
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ttdhihnqypi
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\u25jqazxhck
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\v2dp3ng2mlm
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\v3eo3xwapiv
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\vbpy32kn3sf
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\vef5rwxllpk
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\vfygdynsyvl
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\vtdzi1b0yfu
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\w201hdz1xhf
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\w552b4mw2d1
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\wsdy1r5tolq
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\wttzcxocra2
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\wvku4ebermp
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\wzh1lc525pv
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\x3hw3ifsdef =>.SUP.W3i
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\xanphr1tve0
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\xdmweg21ena
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\xeruopikv4i
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\xg2hdeqwjiv
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\xlawvorcdvs
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\xmbg2jyjvny
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\y1cyq5jzyxz
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\y1emeh2t5fi
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\y5jblear4y2
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\yakzybqrpgf
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\yjd0o2iltqo
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ylxkbdy5nhe
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\yvfds4o1vr5
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\yxw1vb4n2mm
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\z0j221aupur
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\z14s4mlvgzk
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\z1k3xyc5cq1
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\z4qosfd3bi1
O43 - CFD: 13/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\zo4xep1i33k
O43 - CFD: 12/12/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\zok4q2pspee
O43 - CFD: 10/06/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\4kdownload.com =>.4kdownload.com
O43 - CFD: 28/05/2018 - [0] SHD -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\CEF =>.CEF
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 11/06/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 07/09/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 24/08/2017 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\DBG =>.DBG
O43 - CFD: 13/11/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 13/09/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\DropboxOEM =>.Dropbox Inc.
O43 - CFD: 03/07/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Google =>.Google
O43 - CFD: 01/07/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 28/05/2018 - [0] SHD -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 09/09/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\HP =>.Hewlett-Packard
O43 - CFD: 25/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\HP_Development_Company,_L =>.Hewlett-Packard
O43 - CFD: 02/07/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\IM =>.IncrediMail Ltd
O43 - CFD: 13/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Maurice
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\mbam =>.Malwarebytes
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\mbamtray =>.Malwarebytes
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 15/11/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Molotov =>.Molotov
O43 - CFD: 22/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 22/08/2017 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\NetworkTiles =>.NetworkTiles
O43 - CFD: 11/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 28/06/2018 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation
O43 - CFD: 03/07/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 26/09/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 27/05/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Riffstation
O43 - CFD: 15/11/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 13/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [0] SHD -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 21/10/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 13/09/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\TomTom =>.TomTom
O43 - CFD: 23/08/2017 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\UNP =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\VirtualDJ =>.Atomix Production
O43 - CFD: 30/11/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\WebDiscoverBrowser =>Adware.WebDiscoverBrowser
O43 - CFD: 13/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 23/08/2017 - [0] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 03/07/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Programs\Google =>.Google
O43 - CFD: 13/12/2018 - [] SD -- C:\Users\J.J.TAMBAKTIS\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 12/12/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\Desktop\Downloads
O43 - CFD: 12/04/2018 - [] RD -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] RD -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 14/11/2018 - [] RD -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 30/11/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ChordPulse Lite
O43 - CFD: 03/07/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Photos Backup =>.Google Inc.
O43 - CFD: 12/04/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 15/11/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Molotov =>.Molotov
O43 - CFD: 03/07/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 28/05/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Riffstation
O43 - CFD: 14/11/2018 - [] RD -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] RD -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [] D -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ =>.Atomix Production
O43 - CFD: 12/04/2018 - [] RD -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 22/08/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/04/2018 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 28/05/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\DBG =>.DBG
O43 - CFD: 22/08/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Dropbox =>.Dropbox
O43 - CFD: 12/09/2018 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/12/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\WebDiscoverBrowser =>Adware.WebDiscoverBrowser
O43 - CFD: 11/06/2018 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\hpqLog =>.Hewlett-Packard
O43 - CFD: 11/06/2018 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/09/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Skype =>.Skype
O43 - CFD: 28/05/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\WildTangent =>.WildTangent

---\\ DERNIERS FICHIERS CRÉÉS DANS WINDOWS Prefetcher (14) - 114s
O45 - LFCP:[MD5.4566954CB06DA9DCA2BBEA5ECD0494D8] 12/12/2018 A -- C:\WINDOWS\Prefetch\FASTDATAX.EXE-41B490E4.pf =>Adware.FastDataX
O45 - LFCP:[MD5.04BC6B0BC910C64148CBD318F8AD0728] 12/12/2018 A -- C:\WINDOWS\Prefetch\FASTDATAX.EXE-75EBC5D9.pf =>Adware.FastDataX
O45 - LFCP:[MD5.872E564D8BCA94731145A7877F5ECA44] 12/12/2018 A -- C:\WINDOWS\Prefetch\FASTDATAX.EXE-DEEE196E.pf =>Adware.FastDataX
O45 - LFCP:[MD5.6A55D52E1BADFF586B0103DDAA5EF180] 12/12/2018 A -- C:\WINDOWS\Prefetch\FASTDATAX.TMP-A14EF02C.pf =>Adware.FastDataX
O45 - LFCP:[MD5.A870A3255AAEC51DF95DC5184C775DE5] 12/12/2018 A -- C:\WINDOWS\Prefetch\ONESYSTEMCARE.EXE-7099819B.pf =>PUP.Optional.OneSystemCare
O45 - LFCP:[MD5.5D08DA2035FCEFE5CFFA5F90A1BC12E1] 12/12/2018 A -- C:\WINDOWS\Prefetch\ONESYSTEMCARE.EXE-74229399.pf =>PUP.Optional.OneSystemCare
O45 - LFCP:[MD5.F0601283F3C79FC8551E19BAF5EC8A56] 12/12/2018 A -- C:\WINDOWS\Prefetch\ONESYSTEMCARE.EXE-B2DD801E.pf =>PUP.Optional.OneSystemCare
O45 - LFCP:[MD5.181C81E44841C4166AEA6FDC88E6072F] 12/12/2018 A -- C:\WINDOWS\Prefetch\ONESYSTEMCARE.EXE-DC2A89D7.pf =>PUP.Optional.OneSystemCare
O45 - LFCP:[MD5.0BB5EE929F7F4AA4E495C508D4DE0952] 12/12/2018 A -- C:\WINDOWS\Prefetch\ONESYSTEMCARE.EXE-E85B788E.pf =>PUP.Optional.OneSystemCare
O45 - LFCP:[MD5.1A2ACB84D8BAF09F96110905ABBD5846] 12/12/2018 A -- C:\WINDOWS\Prefetch\ONESYSTEMCARE.TMP-12129F9D.pf =>PUP.Optional.OneSystemCare
O45 - LFCP:[MD5.3366AC9AE5C094833158E1D44BDC7823] 12/12/2018 A -- C:\WINDOWS\Prefetch\ONESYSTEMCARE.TMP-2FC1D87D.pf =>PUP.Optional.OneSystemCare
O45 - LFCP:[MD5.C8BAE17EECB42B1F2904E3B2C87109C3] 12/12/2018 A -- C:\WINDOWS\Prefetch\ONESYSTEMCARE.TMP-66813F5B.pf =>PUP.Optional.OneSystemCare
O45 - LFCP:[MD5.BC316C357FFB31EF623C33CFD9D62E0C] 12/12/2018 A -- C:\WINDOWS\Prefetch\ONESYSTEMCARE.TMP-78FA54F6.pf =>PUP.Optional.OneSystemCare
O45 - LFCP:[MD5.E45F5BFCE1DDCC3606AEF56EDB04F9AA] 12/12/2018 A -- C:\WINDOWS\Prefetch\ONESYSTEMCARE.TMP-F50FA661.pf =>PUP.Optional.OneSystemCare

---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONCEPTUELS (SCMH) (24) - 5s
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Windows®
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Windows®
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\WINDOWS\system32\igfxDTCM.dll =>.Intel Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows®
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Windows®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (18) - 1s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MitigationAuditOptions\\17660905521152] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] =>.Microsoft Corporation

---\\ LISTE DES PILOTES DU SYSTÈME (415) - 26s
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [237568] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107416] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [654232] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [20480] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [127904] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [12800] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [14848] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [13824] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135520] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:23 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [626592] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:32 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [39424] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:33 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [108032] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:28 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [254464] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [181760] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [179712] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83360] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259480] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27032] =>.Microsoft Windows®
O58 - SDL:2018/07/14 05:21:29 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [192920] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:19 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [132000] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:34 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [28672] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28568] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [194976] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:40 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [60320] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\WINDOWS\System32\drivers\BasicDisplay.sys [63488] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\WINDOWS\System32\drivers\BasicRender.sys [34816] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [39840] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Broadcom Corporation
O58 - SDL:2018/04/12 00:34:36 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:12 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [92056] =>.Microsoft Windows®
O58 - SDL:2018/08/31 08:26:21 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [101888] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:24 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [116736] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [33792] =>.Microsoft Corporation
O58 - SDL:2018/10/21 08:19:37 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\bthhfenum.sys [112128] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [67072] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [38304] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [39936] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533912] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [60320] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - CapImg HID Driver.) -- C:\WINDOWS\System32\drivers\capimg.sys [123392] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:23 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [93696] =>.Microsoft Corporation
O58 - SDL:2018/06/15 05:36:47 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [159744] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:12 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [78752] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [143768] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [321432] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [29184] =>.Chelsio Communications
O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1836952] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [49152] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [413600] =>.Microsoft Windows®
O58 - SDL:2018/07/14 04:55:22 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [414720] =>.Microsoft Corporation
O58 - SDL:2018/05/28 16:27:40 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [382872] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:04 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1018784] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [32256] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [28576] =>.Microsoft Windows®
O58 - SDL:2018/10/21 08:46:33 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [709936] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [39328] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:12 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [55200] =>.Microsoft Windows®
O58 - SDL:2018/05/28 16:28:00 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [88472] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:40 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [91544] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [45568] =>.Microsoft Corporation
O58 - SDL:2018/06/15 05:42:01 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [141312] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [94112] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:23 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [39328] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:24 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [47104] =>.Microsoft Corporation
O58 - SDL:2016/06/17 13:28:26 A . (.Intel Corporation - DPTF ACPI Device (64-Bit).) -- C:\WINDOWS\System32\drivers\dptf_acpi.sys [70208] =>.Intel Corporation®
O58 - SDL:2016/06/17 13:28:26 A . (.Intel Corporation - DPTF CPU Device (64-Bit).) -- C:\WINDOWS\System32\drivers\dptf_cpu.sys [65088] =>.Intel Corporation®
O58 - SDL:2018/04/12 00:33:46 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [98304] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:46 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16232] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [36256] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:35:21 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [91664] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [188832] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:12 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32256] =>.Microsoft Corporation
O58 - SDL:2018/09/08 04:32:05 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [25600] =>.Microsoft Corporation
O58 - SDL:2018/11/01 08:25:37 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [2822456] =>.Microsoft Windows®
O58 - SDL:2018/11/01 08:25:34 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [412984] =>.Microsoft Windows®
O58 - SDL:2018/11/01 08:25:36 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [793080] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:25 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [88472] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [118680] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [13824] =>.Microsoft Corporation
O58 - SDL:2016/06/17 13:28:27 A . (.Intel Corporation - DPTF Zone (64-Bit).) -- C:\WINDOWS\System32\drivers\esif_lf.sys [343608] =>.Intel Corporation®
O58 - SDL:2018/04/12 00:33:48 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419032] =>.Microsoft Windows®
O58 - SDL:2018/09/08 04:29:42 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [358912] =>.Microsoft Corporation
O58 - SDL:2018/12/13 09:49:34 A . (.Malwarebytes - Malwarebytes Anti-Ransomware Protection.) -- C:\WINDOWS\System32\drivers\farflt.sys [119136] =>.Malwarebytes Corporation®
O58 - SDL:2018/09/08 04:58:40 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [376120] =>.Microsoft Windows®
O58 - SDL:2005/09/02 01:40:26 A . (...) -- C:\WINDOWS\System32\drivers\FBIKB_NT.Sys [4352] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [32768] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [55808] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [86432] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [36352] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [26624] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [402848] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [62872] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [34208] =>.Microsoft Windows®
O58 - SDL:2018/09/08 04:58:28 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [744976] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [466840] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Generic USB Function Class Driver.) -- C:\WINDOWS\System32\drivers\genericusbfn.sys [20992] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:04 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8192] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [86016] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [38304] =>.Microsoft Windows®
O58 - SDL:2018/09/08 04:30:51 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [115200] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [173568] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [54272] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [50592] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [47104] =>.Microsoft Corporation
O58 - SDL:2018/06/08 10:01:36 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [42496] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64408] =>.Microsoft Windows®
O58 - SDL:2018/08/09 05:53:36 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1026456] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [33184] =>.Microsoft Windows®
O58 - SDL:2018/11/01 08:28:11 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [76088] =>.Microsoft Windows®
O58 - SDL:2018/05/28 16:27:37 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [130456] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [29592] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [16896] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [28672] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [105984] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36864] =>.Intel(R) Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91648] =>.Intel(R) Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] =>.Intel Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [88576] =>.Intel Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] =>.Intel Corporation
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [174592] =>.Intel Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [885144] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412064] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [526232] =>.Microsoft Windows®
O58 - SDL:2018/02/12 19:21:36 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64lp.sys [7408584] =>.Intel(R) pGFX®
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [38912] =>.Microsoft Corporation
O58 - SDL:2016/09/13 12:19:01 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [481768] =>.Intel(R) OWR®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19360] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [177192] =>.Microsoft Windows Hardware Abstraction Layer Publisher®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [200704] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:04 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [58272] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:33 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [85504] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [92064] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [214528] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [32256] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:43 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\WINDOWS\System32\drivers\irda.sys [119808] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:41 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\WINDOWS\System32\drivers\irenum.sys [19968] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22944] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [145816] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [63904] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [40448] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [23040] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:43 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [13824] =>.Microsoft Corporation
O58 - SDL:2018/08/31 04:13:19 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [402432] =>.Microsoft Corporation
O58 - SDL:2018/10/21 08:45:46 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [139792] =>.Microsoft Windows®
O58 - SDL:2018/10/21 08:46:28 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [171024] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:26 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [27136] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:24 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [65024] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108952] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124312] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [128408] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82848] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:27 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [128000] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [505240] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [56736] =>.Microsoft Windows®
O58 - SDL:2018/10/18 08:44:32 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [152688] =>.Malwarebytes Corporation®
O58 - SDL:2018/12/13 09:50:24 A . (.Malwarebytes - Malwarebytes Real-Time Protection.) -- C:\WINDOWS\System32\drivers\mbam.sys [63768] =>.Malwarebytes Corporation®
O58 - SDL:2018/12/12 20:32:56 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [198000] =>.Malwarebytes Corporation®
O58 - SDL:2018/12/13 09:03:55 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [260480] =>.Malwarebytes Corporation®
O58 - SDL:2018/04/12 00:34:36 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [23552] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59800] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [75160] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [82328] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575896] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [842648] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:04 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [43520] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:38 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [42496] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:47 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [44544] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [56728] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [33280] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [104352] =>.Microsoft Windows®
O58 - SDL:2018/08/31 04:15:02 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [75776] =>.Microsoft Corporation
O58 - SDL:2018/06/08 19:47:25 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [144384] =>.Microsoft Corporation
O58 - SDL:2018/09/20 05:10:31 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [500536] =>.Microsoft Windows®
O58 - SDL:2018/06/15 05:42:51 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\WINDOWS\System32\drivers\mrxsmb10.sys [287232] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:24 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [226208] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [31232] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:12 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [169368] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [50592] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8704] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [11776] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [27136] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [18848] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [280984] =>.Microsoft Windows®
O58 - SDL:2018/06/08 10:03:14 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [32256] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:32 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [84480] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:25 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [10752] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:25 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [10752] =>.Microsoft Corporation
O58 - SDL:2018/11/01 08:25:18 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [375824] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [40864] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:25 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12800] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [16896] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:24 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [124832] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63904] =>.Microsoft Windows®
O58 - SDL:2018/12/13 09:49:34 A . (.Malwarebytes - Malwarebytes Web Protection.) -- C:\WINDOWS\System32\drivers\mwac.sys [111152] =>.Malwarebytes Corporation®
O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [108952] =>.Microsoft Windows®
O58 - SDL:2018/08/03 04:38:53 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1285536] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:38 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [53760] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:32 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [128512] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:33 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [27136] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [65024] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:32 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [20992] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:34 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [192512] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:33 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [63488] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:04 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [128000] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [175104] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:32 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [58264] =>.Microsoft Windows®
O58 - SDL:2018/08/03 04:12:35 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [311296] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [536472] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [197632] =>.Microsoft Corporation
O58 - SDL:2011/02/11 22:23:34 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [35344] =>.CACE Technologies, Inc.®
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [73216] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [26112] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [44544] =>.Microsoft Corporation
O58 - SDL:2018/09/20 05:09:18 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2421248] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:28 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [19872] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7168] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [104448] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150424] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166304] =>.Microsoft Windows®
O58 - SDL:2018/08/09 05:26:43 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [528384] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:12 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [152984] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [98816] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [166816] =>.Microsoft Windows®
O58 - SDL:2018/08/09 05:54:29 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [375704] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16288] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [53656] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [120216] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [53152] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [140192] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:43 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [726528] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58776] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [105984] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [16896] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:46 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [379392] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [178176] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:32 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [49152] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [39840] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:33 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [17408] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:34 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [106496] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:33 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [82944] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:34 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [97280] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:34 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [78848] =>.Microsoft Corporation
O58 - SDL:2018/09/08 04:59:14 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [433664] =>.Microsoft Windows®
O58 - SDL:2018/04/12 17:23:12 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [27136] =>.Microsoft Corporation
O58 - SDL:2018/06/15 18:33:33 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [182784] =>.Microsoft Corporation
O58 - SDL:2018/04/12 17:23:13 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [30616] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:43 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [284064] =>.Microsoft Windows®
O58 - SDL:2018/06/15 06:08:16 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [1921944] =>.Microsoft Windows®
O58 - SDL:2018/06/15 06:08:05 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [945568] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Transport d’ordinateur virtuel Microsoft Re.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [43008] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [104448] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:29 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [150016] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:36 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [35328] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:38 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13312] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:24 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [81920] =>.Microsoft Corporation
O58 - SDL:2016/06/20 09:10:52 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [937728] =>.Realtek Semiconductor Corp®
O58 - SDL:2018/04/12 00:33:53 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [65536] =>.Realtek
O58 - SDL:2016/08/08 12:12:35 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [5251592] =>.Realtek Semiconductor Corp.®
O58 - SDL:2016/07/27 07:19:11 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\WINDOWS\System32\drivers\RtsUer.sys [416472] =>.Realtek Semiconductor Corp®
O58 - SDL:2018/04/20 00:32:26 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 58644 58232.) -- C:\WINDOWS\System32\drivers\rtwlane.sys [7904088] =>.Realtek Semiconductor Corp.®
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [109984] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:37 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [43008] =>.Microsoft Corporation
O58 - SDL:2018/08/03 04:47:12 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [128920] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:36 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [176032] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [287128] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [33176] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [97696] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [97176] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [75680] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [154528] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [25088] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [84992] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [28160] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [17920] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:04 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [63896] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44952] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81816] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [34208] =>.Microsoft Windows®
O58 - SDL:2016/08/19 10:19:18 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [68728] =>.Synaptics Incorporated®
O58 - SDL:2018/09/21 05:00:38 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [53864] =>.Synaptics Incorporated®
O58 - SDL:2018/09/21 05:00:38 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [55400] =>.Synaptics Incorporated®
O58 - SDL:2018/09/21 05:00:38 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [55400] =>.Synaptics Incorporated®
O58 - SDL:2018/04/12 00:34:36 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] =>.Microsoft Corporation
O58 - SDL:2018/10/21 08:45:47 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [175624] =>.Microsoft Windows®
O58 - SDL:2018/10/21 08:46:42 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [611640] =>.Microsoft Windows®
O58 - SDL:2018/04/12 17:23:15 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [57752] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:12 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [82328] =>.Microsoft Windows®
O58 - SDL:2018/04/12 18:35:43 A . (.Microsoft Corporation - Server driver.) -- C:\WINDOWS\System32\drivers\srv.sys [424448] =>.Microsoft Corporation
O58 - SDL:2018/08/31 04:12:51 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [736256] =>.Microsoft Corporation
O58 - SDL:2018/06/15 05:42:34 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [266752] =>.Microsoft Corporation
O58 - SDL:2017/05/18 21:17:28 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [131984] =>.Samsung Electronics Co., Ltd.®
O58 - SDL:2017/05/18 21:17:30 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [166288] =>.Samsung Electronics Co., Ltd.®
O58 - SDL:2018/04/12 00:33:49 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31128] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [156056] =>.Microsoft Windows®
O58 - SDL:2018/05/28 16:27:37 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [105368] =>.Microsoft Windows®
O58 - SDL:2018/10/21 08:46:20 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [560136] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:12 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [82432] =>.Microsoft Corporation
O58 - SDL:2018/06/15 08:10:52 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [48544] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [40352] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:36 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [75264] =>.Microsoft Corporation
O58 - SDL:2018/09/21 05:00:42 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys [67176] =>.Synaptics Incorporated®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - VSC vidéo Synth3D RemoteFX Microsoft.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [64512] =>.Microsoft Corporation
O58 - SDL:2018/09/21 05:00:44 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [765544] =>.Synaptics Incorporated®
O58 - SDL:2018/04/12 00:34:36 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [31232] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [27544] =>.Microsoft Windows®
O58 - SDL:2018/10/21 08:45:51 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2719032] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:32 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [51712] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [40352] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [121248] =>.Microsoft Windows®
O58 - SDL:2018/04/12 17:23:17 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [37280] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:24 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [128920] =>.Microsoft Windows®
O58 - SDL:2018/08/09 05:55:01 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [230304] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [63488] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [35328] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:32 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [119296] =>.Microsoft Corporation
O58 - SDL:2015/10/15 00:12:40 A . (.Intel Corporation - Intel(R) Trusted Execution Engine Interface.) -- C:\WINDOWS\System32\drivers\TXEIx64.sys [146200] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79776] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [128512] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [152576] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - USB Connector Manager UCSI Client.) -- C:\WINDOWS\System32\drivers\UcmUcsi.sys [57856] =>.Microsoft Corporation
O58 - SDL:2018/08/03 04:40:48 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [228136] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [45056] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:38 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [324608] =>.Microsoft Corporation
O58 - SDL:2018/06/08 11:31:08 A . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\WINDOWS\System32\drivers\uefi.sys [29600] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [282008] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - UFX Chipidea Client Driver.) -- C:\WINDOWS\System32\drivers\UfxChipidea.sys [98200] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [144288] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\WINDOWS\System32\drivers\umbus.sys [56832] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [14336] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - USB Role-Switch Driver for Chipidea Core.) -- C:\WINDOWS\System32\drivers\urschipidea.sys [29088] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [67992] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - USB Role-Switch Driver for Synopsys Core.) -- C:\WINDOWS\System32\drivers\urssynopsys.sys [28064] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:34 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [22016] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:40 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [37376] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [168864] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:46 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [102912] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [32152] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [95648] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [514464] =>.Microsoft Windows®
O58 - SDL:2018/08/03 04:40:43 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [566568] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:14 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [39936] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [412576] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:47 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [27136] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [72192] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [131488] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [35328] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [289696] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [434592] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [56224] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [217496] =>.Microsoft Windows®
O58 - SDL:2018/06/08 11:30:11 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [705440] =>.Microsoft Windows®
O58 - SDL:2018/10/21 08:19:52 A . (.Microsoft Corporation - Pilote d'infrastructure HID virtuelle (VHF).) -- C:\WINDOWS\System32\drivers\vhf.sys [36352] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:23 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [44544] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:54 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [81824] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:08 A . (.Microsoft Corporation - Hyper-V VMBus Root KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmclr.sys [82432] =>.Microsoft Corporation
O58 - SDL:2018/08/03 04:39:49 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [114080] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [25088] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [13312] =>.Microsoft Corporation
O58 - SDL:2018/08/03 04:17:05 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [10240] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [9216] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [47520] =>.Microsoft Windows®
O58 - SDL:2018/06/15 08:03:31 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [83360] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:24 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [373144] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:39 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [398240] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16288] =>.Microsoft Windows®
O58 - SDL:2018/08/03 04:39:58 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [75160] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166808] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:49 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305560] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:43 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [27136] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:43 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [76288] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:43 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [44544] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [30720] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:33 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [81920] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:08 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [56320] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [151960] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:14 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [82944] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:58 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [44616] =>.Microsoft Windows Early Launch Anti-malware Publisher®
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [924856] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:58 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [331680] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [61624] =>.Microsoft Windows®
O58 - SDL:2018/10/21 08:17:38 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [787456] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:15 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [21408] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:58 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [44032] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:23 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [45984] =>.Microsoft Windows®
O58 - SDL:2018/06/08 10:29:39 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [164768] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [35744] =>.Microsoft Windows®
O58 - SDL:2018/06/15 06:08:14 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [72768] =>.Microsoft Windows Hardware Abstraction Layer Publisher®
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18472] =>.Microsoft Windows Hardware Abstraction Layer Publisher®
O58 - SDL:2018/08/03 04:39:49 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [31648] =>.Microsoft Windows®
O58 - SDL:2018/08/03 04:15:43 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [68096] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [32152] =>.Microsoft Windows®
O58 - SDL:2018/10/21 08:19:29 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [228864] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [92672] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows®
O58 - SDL:2018/08/31 11:42:16 A . (.HP - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35568] =>.HP Inc.®
O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [18432] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [20384] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [209816] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:33:58 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [30112] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [33184] =>.Microsoft Windows®
O58 - SDL:2018/04/12 00:34:39 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [23040] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:28 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [125440] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:28 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [264192] =>.Microsoft Corporation
O58 - SDL:2018/06/15 05:44:07 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [295424] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [46592] =>.Microsoft Corporation
O58 - SDL:2018/04/12 00:34:12 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [482304] =>.Microsoft Corporation
O58 - SDL:2018/10/21 08:14:52 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2224640] =>.Microsoft Corporation
O58 - SDL:2018/11/01 12:28:09 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3649024] =>.Microsoft Corporation

---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (37) - 219s
O61 - LFC: 2018/12/12 10:34:05 A . (..) -- C:\ProgramData\SKBVLQLQ1Y.exe [145408]
O61 - LFC: 2018/12/10 05:44:42 A . (..) -- C:\ProgramData\04a85e7f-5b2d-4bbd-a3ee-d11a024864d4\SystemConsole.exe [951808]
O61 - LFC: 2018/12/10 13:02:00 A . (..) -- C:\ProgramData\75c14ef9-a548-406d-b3da-95104c8c2668\OneSystemCare.exe [547984] =>PUP.Optional.OneSystemCare
O61 - LFC: 2018/12/12 16:55:35 A . (..) -- C:\ProgramData\AppmallosayoV\Apdubtax.dll [342528]
O61 - LFC: 2018/12/12 16:34:02 A . (..) -- C:\ProgramData\AppmallosayoV\AppmallosayoV.exe [3622912]
O61 - LFC: 2018/12/13 09:49:23 A . (..) -- C:\ProgramData\AppmallosayoV\Fixhome.exe [114688]
O61 - LFC: 2018/12/12 16:55:35 A . (..) -- C:\ProgramData\AppmallosayoV\Tree-Warm.dll [460800]
O61 - LFC: 2018/12/12 16:54:49 A . (..) -- C:\ProgramData\PrefsSecure\crambo.exe [4252128] =>.SUP.Linkury
O61 - LFC: 2018/12/12 09:07:27 A . (..) -- C:\ProgramData\PrefsSecure\Nettrans.exe [43520] =>.SUP.Linkury
O61 - LFC: 2018/12/12 14:52:31 A . (..) -- C:\Users\J.J.TAMBAKTIS\VolID.exe [579584]
O61 - LFC: 2018/12/12 10:29:59 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Math-Sing.exe [1995264]
O61 - LFC: 2018/12/12 10:42:00 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Maurice\App.exe [586240]
O61 - LFC: 2018/12/12 11:30:27 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-core-synch-l1-2-0.dll [18720]
O61 - LFC: 2018/12/12 11:30:54 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-core-timezone-l1-1-0.dll [18720]
O61 - LFC: 2018/12/12 11:31:01 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-core-util-l1-1-0.dll [18208]
O61 - LFC: 2018/12/12 11:31:47 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-conio-l1-1-0.dll [19232]
O61 - LFC: 2018/12/12 11:32:39 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-filesystem-l1-1-0.dll [20256]
O61 - LFC: 2018/12/12 11:32:49 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-heap-l1-1-0.dll [19232]
O61 - LFC: 2018/12/12 11:33:07 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-locale-l1-1-0.dll [18744]
O61 - LFC: 2018/12/12 11:33:14 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-math-l1-1-0.dll [28960]
O61 - LFC: 2018/12/12 11:33:15 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-multibyte-l1-1-0.dll [26424]
O61 - LFC: 2018/12/12 11:33:17 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-private-l1-1-0.dll [72992]
O61 - LFC: 2018/12/12 11:33:22 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-process-l1-1-0.dll [19232]
O61 - LFC: 2018/12/12 11:33:31 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-runtime-l1-1-0.dll [22816]
O61 - LFC: 2018/12/12 11:33:32 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-stdio-l1-1-0.dll [24352]
O61 - LFC: 2018/12/12 11:33:33 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-string-l1-1-0.dll [24352]
O61 - LFC: 2018/12/12 11:33:38 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-time-l1-1-0.dll [20768]
O61 - LFC: 2018/12/12 11:33:40 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\api-ms-win-crt-utility-l1-1-0.dll [18744]
O61 - LFC: 2018/12/12 11:35:52 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Microsoft\OneDrive\18.222.1104.0007\ETWlog.dll [31544]
O61 - LFC: 2018/11/15 12:10:12 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Molotov\app-3.0.2\ffmpeg.dll [1830912]
O61 - LFC: 2018/12/12 10:32:46 A . (.WebDiscover Media.) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Temp\gdmmwabim30\WebDiscover-4.28.2.exe [48903224] =>Adware.WebDiscoverBrowser
O61 - LFC: 2018/12/12 10:26:51 A . (.WebDiscover Media.) -- C:\Users\J.J.TAMBAKTIS\AppData\Local\Temp\WebDiscover-4.28.2.exe [48903224] =>Adware.WebDiscoverBrowser
O61 - LFC: 2018/12/12 10:42:00 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\AutoHot.exe [586240] =>Spyware.Socelars
O61 - LFC: 2018/12/12 17:04:09 A . (.Connected.) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\qp4e1a0c11o\m42le5s3osn.exe [630004]
O61 - LFC: 2018/12/12 10:33:46 A . (..) -- C:\Users\J.J.TAMBAKTIS\AppData\Roaming\update.exe [73728]
O61 - LFC: 2018/12/12 12:16:02 N . (..) -- C:\Users\J.J.TAMBAKTIS\Downloads\.ptmp613261\fx_studio_music_software_free_download.exe [1024000]
O61 - LFC: 2018/11/30 14:56:51 A . (..) -- C:\Users\J.J.TAMBAKTIS\Downloads\chordpulse_lite_2p5_setup.exe [4372941]

---\\ ASSOCIATION Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ MENU DE DÉMARRAGE INTERNET (12) - 0s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (.not file.)
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe (.not file.)
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (3) - 12s
O69 - SBI: SearchScopes [HKCU] [64Bits]{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - (Goo) - http://www.google.com/ =>.Google Inc.
O69 - SBI: SearchScopes [HKCU] [64Bits]{ielnksrch} [DefaultScope] - (Search the web) - http://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRHOjYN9_5EdL7qPpMxkGStHC4wmTIB36bdKA2caLWmiJmgTHyJXgLm6YVPAjHUOG0icS27PVsl5vQWEjkY9aaB7joI8fyoAFgga85sCCpm1WtIF-sJ6rRNyVn8Pet1JErdbZIJjBA370sdI6F-zC3UAYWbaH43UNUkDusLiLZ1cGaHfnSaUrFck1HicET&q={searchTerms} =>.SUP.Linkury
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (48) - 2s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [188928] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [188928] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [271360] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1267712] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [990720] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [786432] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [150528] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [109568] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [889344] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [224256] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [396800] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [397312] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [119808] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1487360] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [199680] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [195584] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [262144] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1308672] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [167936] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [827392] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1115648] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [402944] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [824832] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [335360] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2248192] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [235520] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1027584] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [69632] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [58880] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [166912] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1395200] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [44544] =>.Microsoft Corporation
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\Windows\System32\irmon.dll [24576] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [104960] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [932352] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497664] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73216] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [604672] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [308224] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1374208] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [613376] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [57856] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [858112] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [280576] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1148928] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [1373696] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [133632] =>.Microsoft Corporation

---\\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (24) - 7s
O87 - FAEL: "{D67DDD90-D8D4-4ED8-B8DA-044DF0C607E1}" [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{D89BA89C-86B2-4E15-8062-101698FD31D5}" [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{C0E05E79-0DA5-40D5-AF35-65C42D2DAADC}" [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{18C3844D-D39B-4964-A7D7-6C5421AE4EB5}" [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{F5B133D1-73F4-4591-960A-515008DE5DFB}" [In-None-P17-TRUE] .(.CyberLink Corp. - Power Media Player.) -- C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD.exe =>.CyberLink Corp.®
O87 - FAEL: "{0CCDCC65-F664-48E3-BDE2-2332C2AD1763}" [In-None-P17-TRUE] .(.CyberLink - Media Server Service.) -- C:\Program Files (x86)\CyberLink\PowerDVD14\Kernel\DMS\CLMSServerPDVD14.exe =>.CyberLink Corp.®
O87 - FAEL: "{5CFDD761-C977-4501-AE53-96825A78BD5A}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDVD 14.0.) -- C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVDMovie.exe =>.CyberLink Corp.®
O87 - FAEL: "{119BD81E-E0A0-402A-BAB7-6BF8D1C3AFFE}" [In-None-P17-TRUE] .(.CyberLink Corp. - CyberLink PowerDVD Cinema 14 Main Program.) -- C:\Program Files (x86)\CyberLink\PowerDVD14\Movie\PowerDVD Cinema\PowerDVDCinema.exe =>.CyberLink Corp.®
O87 - FAEL: "{C7D2D9D9-35EF-4BEA-8912-48C036DECA77}" [In-None-P6-TRUE] .(.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform Ltd®
O87 - FAEL: "{045E4FC2-B905-4C05-B968-637F7A783B2E}" [In-None-P17-TRUE] .(.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe =>.Piriform Ltd®
O87 - FAEL: "{D64F0C05-9CA6-45E6-85F8-D7301F2C4FDA}" [In-None-P6-FALSE] .(.IncrediMail Ltd. - IncrediMail Application.) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{9965A603-EFFF-4AFB-A37B-95B46D6B862B}" [In-None-P17-FALSE] .(.IncrediMail Ltd. - IncrediMail Application.) -- C:\Program Files (x86)\IncrediMail\Bin\IncMail.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{4FF39628-5C94-4603-9768-447C3B4AB2C0}" [In-None-P6-FALSE] .(.IncrediMail Ltd. - IncrediMail Tray Application.) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{A76D5A56-29B9-44BE-819F-7CF329755DE0}" [In-None-P17-FALSE] .(.IncrediMail Ltd. - IncrediMail Tray Application.) -- C:\Program Files (x86)\IncrediMail\Bin\ImApp.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{FC394162-0B96-413F-89D5-806647284DB4}" [In-None-P6-FALSE] .(.IncrediMail Ltd. - IncrediMail Content Importer.) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{3C1171F2-01CB-4E94-99B0-EF16EEA42BB9}" [In-None-P17-FALSE] .(.IncrediMail Ltd. - IncrediMail Content Importer.) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{4738E1C8-6999-4CBB-8D4A-DEF9033AD83A}" [In-None-P6-FALSE] .(.IncrediMail Ltd. - IncrediMail Content Importer.) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{EB297E0B-84AE-413A-90B5-A3A24365BB0B}" [In-None-P6-FALSE] .(.IncrediMail Ltd. - IncrediMail Content Importer.) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{5831144D-5E0C-48FC-8DAF-B5F86CE39ACA}" [In-None-P6-FALSE] .(.IncrediMail Ltd. - IncrediMail Content Importer.) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{5BE09079-8B85-4B1B-B88B-04BA7FC3C32B}" [In-None-P17-FALSE] .(.IncrediMail Ltd. - IncrediMail Content Importer.) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{672436EA-5B1A-48B2-86E4-256E4010D5EF}" [In-None-P17-FALSE] .(.IncrediMail Ltd. - IncrediMail Content Importer.) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{1AD22076-E26A-4815-A6B5-1649937FB28E}" [In-None-P17-FALSE] .(.IncrediMail Ltd. - IncrediMail Content Importer.) -- C:\Program Files (x86)\IncrediMail\Bin\ImpCnt.exe {435B06841460E80BF3D5D2AF5175F9C4} =>.IncrediMail Ltd.
O87 - FAEL: "{B2D90566-CFF3-4D2E-8741-6F0F0DC7BA78}" [In-None-P17-TRUE] .(...) -- C:\WINDOWS\rss\csrss.exe =>Trojan.Dropper
O87 - FAEL: "{1CE302B9-5845-43C5-AFB8-A69082B03FF9}" [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc®

---\\ CODES PRODUITS LOGICIELS (55) - 3s
O90 - PUC: "00006109C80000000000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component.) =>.Microsoft Corporation
O90 - PUC: "00006109C80090400000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation
O90 - PUC: "00006109C800C0400000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation
O90 - PUC: "00006109DD0000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component 64-bit Registration.) =>.Microsoft Corporation
O90 - PUC: "00006109F80000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Licensing Component.) =>.Microsoft Corporation
O90 - PUC: "078FDD2B9C886E245B9509D047421A58" [HKLM] . (.Ableton Live 9 Lite.) =>.bl.org
O90 - PUC: "099AAB46CF1F54147A1B4EF1BB9CAD74" [HKLM] . (.HP Recovery Manager.) -- c:\windows\Installer\{64BAA990-F1FC-4145-A7B1-E41FBBC9DA47}\_853F67D554F05449430E7E.exe =>.Western Digital Technologies
O90 - PUC: "0E6AA644D401BF041AA83A34A1DEF241" [HKLM] . (.HP Support Solutions Framework.) -- C:\windows\Installer\{446AA6E0-104D-40FB-A18A-A3431AED2F14}\icon.ico =>.Hewlett-Packard
O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" [HKLM] . (.Bonjour.) -- C:\windows\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico =>.Microsoft Corporation
O90 - PUC: "33CB2A05DC9C1FB38AFF351CA0B081C3" [HKLM] . (.Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215.) =>.Microsoft Corporation
O90 - PUC: "35ECDF757B463F84DAB503A2643C80B0" [HKLM] . (.Intel(R) Trusted Execution Engine.) =>.Intel Corporation
O90 - PUC: "38E9610BB75766FE2E0F9391447D58CB" [HKLM] . (.Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64).) =>.Microsoft Corporation
O90 - PUC: "3B3591F9EE0BC2042AF98ABA77A5D6D1" [HKLM] . (.TomTom HOME.) -- C:\WINDOWS\Installer\{9F1953B3-B0EE-402C-A29F-A8AB775A6D1D}\ARPPRODUCTICON.exe =>.TomTom
O90 - PUC: "420D0642262AEE348BB39D097D812825" [HKLM] . (.HP ePrint SW.) =>.Hewlett-Packard
O90 - PUC: "473032B4574637A4ABE61410E5C90531" [HKLM] . (.Intel® Security Assist.) -- C:\windows\Installer\{4B230374-6475-4A73-BA6E-41015E9C5013}\isa.ico =>.Intel Corporation
O90 - PUC: "5A812990327ACD34D85B163756A6E149" [HKLM] . (.Dropbox Update Helper.) =>.WINSE
O90 - PUC: "60B213FAC5C5E864983BEBD62E467522" [HKLM] . (.Cisco LEAP Module.) =>.Cisco Systems, Inc.
O90 - PUC: "62DBF9290209B993A9A757D1160F9B24" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "637380C5619260D4CB9EF489E15AA3CE" [HKLM] . (.IncrediMail.) -- C:\WINDOWS\Installer\{5C083736-2916-4D06-BCE9-4F981EA53AEC}\ARPPRODUCTICON.exe =>.IncrediMail Ltd
O90 - PUC: "65DF6EA3134D35B4490F598E4402A6FD" [HKLM] . (.Intel(R) Chipset Device Software.) =>.Intel Corporation
O90 - PUC: "67EB8C93A6FCF6646881B025CCC40ACF" [HKLM] . (.HP Support Assistant.) -- C:\windows\Installer\{39C8BE76-CF6A-466F-8618-0B52CC4CA0FC}\ARPPRODUCTICON.exe =>.Hewlett-Packard
O90 - PUC: "6E0FE4A0219AEDC47A3FE6657E1CA3F2" [HKLM] . (.Cisco PEAP Module.) =>.Cisco Systems, Inc.
O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "74302E92F26C756439E878A681B2761F" [HKLM] . (.HP System Event Utility.) -- c:\windows\Installer\{29E20347-C62F-4657-938E-876A182B67F1}\_853F67D554F05449430E7E.exe =>.Hewlett-Packard
O90 - PUC: "7810FB462D3FB89499AE61A39FEAE69C" [HKLM] . (.Cisco EAP-FAST Module.) =>.Cisco Systems, Inc.
O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "7D2F8E1D497754242B6878DE681C98C3" [HKLM] . (.HP Registration Service.) -- c:\windows\Installer\{D1E8F2D7-7794-4245-B286-87ED86C1893C}\ARPPRODUCTICON.exe =>.Hewlett-Packard
O90 - PUC: "84622BC58F53CB14C953E114EFE6215A" [HKLM] . (.Energy Star.) -- c:\windows\Installer\{5CB22648-35F8-41BC-9C35-1E41FE6E12A5}\_853F67D554F05449430E7E.exe =>.Hewlett-Packard
O90 - PUC: "8AA2585FAE03B594484B2C04C339D5F6" [HKLM] . (.HP Wireless Button Driver.) -- C:\WINDOWS\Installer\{F5852AA8-30EA-495B-84B4-C2403C935D6F}\ARPPRODUCTICON.exe =>.Hewlett-Packard
O90 - PUC: "8AF7FF07577181D458B5DD5BEA784668" [HKLM] . (.HP ePrint SW.) =>.Hewlett-Packard
O90 - PUC: "91C6E408C92CA2C4BAD7486F753FA6A1" [HKLM] . (.HP ePrint SW.) =>.Hewlett-Packard
O90 - PUC: "9A6CE1FEED719AD30B0486A6E1A8B840" [HKLM] . (.Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215.) =>.Microsoft Corporation
O90 - PUC: "9AA2EAABA31585644AF4D9D606A7B97C" [HKLM] . (.Intel(R) Trusted Execution Engine Driver.) =>.Intel Corporation
O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "BFD8224605477B9439C59B3724BC6695" [HKLM] . (.HP Customer Experience Enhancements.) -- C:\windows\Installer\{64228DFB-7450-49B7-935C-B97342CB6659}\ARPPRODUCTICON.exe =>.Hewlett-Packard
O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C8CD97E9DBC9FFB41B6CDD5E461706E0" [HKLM] . (.HP ePrint SW.) =>.Hewlett-Packard
O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org
O90 - PUC: "D0E252B913B76A840BE15BCCAB82E6E8" [HKLM] . (.HP JumpStart Bridge.) -- c:\windows\Installer\{9B252E0D-7B31-48A6-B01E-B5CCBA286E8E}\HPlogo_blue.ico =>.Hewlett-Packard
O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org
O90 - PUC: "D88A7680F467E663E91231D08A4B273C" [HKLM] . (.Dropbox 25 GB.) -- C:\WINDOWS\Installer\{0867A88D-764F-366E-9E21-130DA8B472C3}\DropboxOEM.exe =>.WINSE
O90 - PUC: "DA87DA56D32DE1A33950A36EC55D222C" [HKLM] . (.Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23506.) =>.Microsoft Corporation
O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "E127E1B13484C56468F78E56E1A5CB1D" [HKLM] . (.HP ePrint SW.) =>.Hewlett-Packard
O90 - PUC: "ED0BC09B06E24C14897564E69B1829FB" [HKLM] . (.HP JumpStart Launch.) -- c:\windows\Installer\{B90CB0DE-2E60-41C4-9857-466EB98192BF}\HPlogo_blue.ico =>.Hewlett-Packard
O90 - PUC: "ED22EF1EFE2253245AA682C73EA85A48" [HKLM] . (.HP ePrint SW.) =>.Hewlett-Packard
O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17.) =>.bl.org
O90 - PUC: "F068ABC9734757A449C1E85F952F1D54" [HKLM] . (.Update for Windows 10 for x64-based Systems (KB4023057).) =>.Microsoft Corporation
O90 - PUC: "F6BA540115164363C8C2EE03A81A6A7A" [HKLM] . (.Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23506.) =>.Microsoft Corporation
O90 - PUC: "FEDC5469C5807F543ADC4B7B40E67FC8" [HKLM] . (.LibreOffice 6.0.5.2.) -- C:\WINDOWS\Installer\{9645CDEF-085C-45F7-A3CD-B4B7046EF78C}\soffice.ico =>.Open Source
O90 - PUC: "0D1816887CF7E794794F062EAE367532" [HKCU] . (.4K Video Downloader 4.4.) -- %APPDATA%\Microsoft\Installer\{886181D0-7FC7-497E-97F4-60E2EA635723}\icon.ico =>.Legitimate
O90 - PUC: "0DD569E56E2315A40BC93E491A2EB9FE" [HKCU] . (.VirtualDJ 8.) -- %APPDATA%\Microsoft\Installer\{5E965DD0-32E6-4A51-B09C-E394A1E29BEF}\VirtualdjIcon =>.Atomix Production
O90 - PUC: "F9009D566857D1744AA5E4497DCC40DD" [HKCU] . (.4K YouTube to MP3 3.3.) -- %APPDATA%\Microsoft\Installer\{65D9009F-7586-471D-A45A-4E94D7CC04DD}\icon.ico =>.YouTube

---\\ PACKAGES WINDOWS INSTALLER (35) - 31s
[MD5.884D53A60CDBC1A1D787BF061A432A06] [WIS][2018/08/21 04:14:34] (.HP - HP Wireless Button Driver.) -- C:\WINDOWS\Installer\12f9f065.msi [2451456] =>.HP
[MD5.3C70DCD13DD89BF057B4678677424F54] [WIS][2015/11/11 21:09:16] (.HP Inc..) -- C:\WINDOWS\Installer\280c4.msi [1716224] =>.HP Inc.
[MD5.E62262765D3815CD1D515A6EDE04EA49] [WIS][2016/08/01 22:48:58] (.HP.) -- C:\WINDOWS\Installer\280ee.msi [4474880] =>.HP
[MD5.CA45A40274824671D0914B071B997968] [WIS][2018/07/28 08:37:59] (.Open Media LLC - 4K Video Downloader 4.4 Installer.) -- C:\WINDOWS\Installer\2e73475a.msi [25092096] =>.Open Media LLC
[MD5.544E0C4B995F263EE4553AEAEE95F220] [WIS][2018/02/19 07:47:15] (.Open Media LLC - 4K YouTube to MP3 3.3 Installer.) -- C:\WINDOWS\Installer\3084549.msi [29470720] =>.Open Media LLC
[MD5.1A4151D0D6EA6C940963630393B84E69] [WIS][2018/11/13 09:01:10] (.Dropbox, Inc. - Dropbox Update Helper.) -- C:\WINDOWS\Installer\3837b5ad.msi [31744] =>.Dropbox, Inc.
[MD5.717C05D1898A5B04B85E7588C3833CAE] [WIS][2017/08/23 08:11:34] (.Ableton - Ableton Live 9 Lite.) -- C:\WINDOWS\Installer\385379b.msi [972972032] =>.Ableton
[MD5.72F265C263D329A6CA135EDB1941D349] [WIS][2017/08/22 10:26:36] (.Dropbox, Inc. - Dropbox 25 GB.) -- C:\WINDOWS\Installer\3aec1.msi [2681344] =>.Dropbox, Inc.
[MD5.717C05D1898A5B04B85E7588C3833CAE] [WIS][2017/08/23 09:02:47] (.Ableton - Ableton Live 9 Lite.) -- C:\WINDOWS\Installer\500796.msi [972972032] =>.Ableton
[MD5.A3D4627B488B8F4055FE7B15F599F224] [WIS][2018/07/02 13:35:42] (.The Document Foundation - LibreOffice 6.0.) -- C:\WINDOWS\Installer\58d4e68.msi [274243584] =>.The Document Foundation
[MD5.294EA36490895DC3136134DADEB42C8D] [WIS][2018/07/02 13:47:05] (.IncrediMail - IncrediMail.) -- C:\WINDOWS\Installer\58d4e8b.msi [2705920] =>.IncrediMail
[MD5.50EA7A4D9481B12A97070942F474D918] [WIS][2018/07/02 13:43:23] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\58d4e90.msi [40960] =>.Google Inc.
[MD5.6CE8345C2FA73805D38C3FB29C3D9C2C] [WIS][2016/07/12 10:53:00] (.HP Inc..) -- C:\WINDOWS\Installer\761ab.msi [1701452] =>.HP Inc.
[MD5.14EEFF6F6DA37BFFCE8787614E31B934] [WIS][2016/06/17 11:49:34] (.Intel Corporation - Intel(R) Chipset Device Software.) -- C:\WINDOWS\Installer\761b1.msi [794624] =>.Intel Corporation
[MD5.405A9FEE1AF49E9200DB17034956B821] [WIS][2015/10/15 08:37:12] (.Intel Corporation - Intel(R) Trusted Execution Engine Driver.) -- C:\WINDOWS\Installer\761b7.msi [2297856] =>.Intel Corporation
[MD5.68782EE2281D2CF3979F89093329BDCF] [WIS][2015/10/15 08:37:12] (.Intel Corporation - Intel(R) Trusted Execution Engine.) -- C:\WINDOWS\Installer\761bd.msi [22917120] =>.Intel Corporation
[MD5.0D69490E64E1185C42AB13FE88AC6335] [WIS][2015/05/19 18:27:50] (.Intel Corporation - Intel® Security Assist.) -- C:\WINDOWS\Installer\761c3.msi [1167360] =>.Intel Corporation
[MD5.F3393D3FF18B824864B806E0B86F0A67] [WIS][2012/11/08 17:30:52] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\761c9.msi [1559552] =>.Cisco Systems, Inc.
[MD5.626978BF496BABC1E6F1464D697B707D] [WIS][2012/11/08 17:39:00] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\761cf.msi [1304064] =>.Cisco Systems, Inc.
[MD5.3FC36EF669376540BB082615F9ECADB2] [WIS][2012/11/08 17:37:52] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\761d5.msi [836608] =>.Cisco Systems, Inc.
[MD5.0130CF7E2FAA339E2351DE7A065D4A03] [WIS][2016/08/06 14:57:55] (.HP Inc. - HP JumpStart Bridge.) -- C:\WINDOWS\Installer\7620f.msi [2777088] =>.HP Inc.
[MD5.5D964DF587D92930BA35FC332F106E28] [WIS][2016/07/16 16:37:39] (.HP Inc. - HP JumpStart Launch.) -- C:\WINDOWS\Installer\76215.msi [704512] =>.HP Inc.
[MD5.408B81A3FFE2C324A6A56B4E66C47969] [WIS][2016/09/24 06:26:25] (.HP Inc. - HP Support Solutions Framework.) -- C:\WINDOWS\Installer\76e9.msi [9490432] =>.HP Inc.
[MD5.712392127F2E78A0011B09375F09F739] [WIS][2016/09/24 06:26:39] (.HP Inc. - HP Support Assistant.) -- C:\WINDOWS\Installer\76ec.msi [38544384] =>.HP Inc.
[MD5.B1AF4EAB0A90B020A84CDED52C17699C] [WIS][2016/09/24 06:27:25] (.Hewlett-Packard.) -- C:\WINDOWS\Installer\76f1.msi [649728] =>.Hewlett-Packard
[MD5.E06F763770637E860C0A97E75AEE0FAC] [WIS][2016/05/05 09:17:50] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\76f6.msi [1007616] =>.HP Inc.
[MD5.91ADC8B93AF863B522E6EC4D32B0F3D4] [WIS][2016/05/05 09:18:46] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\76fb.msi [348160] =>.HP Inc.
[MD5.8DCF5C9EAACDAF4568220D103F393DEA] [WIS][2016/05/02 09:40:16] (.Apple Inc. - [ProductName] Installer.) -- C:\WINDOWS\Installer\770a.msi [2682368] =>.Apple Inc.
[MD5.77472D348FB614B61258DD2D2DF324D0] [WIS][2016/05/05 09:13:28] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\770f.msi [19103744] =>.HP Inc.
[MD5.78E87BCDB5D71581B841A47F175EDAED] [WIS][2016/05/05 09:15:20] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\7714.msi [643072] =>.HP Inc.
[MD5.5C2E02A5BDC2C18020756594755F5D47] [WIS][2016/05/05 09:16:16] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\7719.msi [1064960] =>.HP Inc.
[MD5.6993AB9583270069AD82261E7752C927] [WIS][2016/05/05 09:14:26] (.HP Inc. - HP ePrint SW.) -- C:\WINDOWS\Installer\771e.msi [1630208] =>.HP Inc.
[MD5.9C3CF43305703F095C99B0845489FB81] [WIS][2016/06/21 01:09:46] (.© Copyright 2015 HP Development Company, L.P..) -- C:\WINDOWS\Installer\7728.msi [4850176]
[MD5.AAA4EE9E9388B57D4B1FB6760AAD355D] [WIS][2017/08/22 14:11:31] (.Atomix Productions - VirtualDJ 8 Installer.) -- C:\WINDOWS\Installer\9fa583.msi [39698432] =>.Atomix Productions
[MD5.81A293996AEF47E3EC3BFE963D965C47] [WIS][2018/09/13 18:10:24] (.TomTom.) -- C:\WINDOWS\Installer\a4103.msi [30821888] =>.TomTom

---\\ FEATURE CONTROLE. (201) - 0s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:virtualdj8.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:IncMail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:msoasb.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbamtray.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbam.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:onenote.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msoasb.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate

---\\ SCAN ADDITIONNEL (319) - 21s
C:\ProgramData\04a85e7f-5b2d-4bbd-a3ee-d11a024864d4 =>Heuristic.Suspect
C:\ProgramData\75c14ef9-a548-406d-b3da-95104c8c2668 =>Heuristic.Suspect
C:\ProgramData\04a85e7f-5b2d-4bbd-a3ee-d11a024864d4\SystemConsole.exe =>PUP.Optional.OneSystemCare
C:\WINDOWS\System32\Tasks\OneSystemCare Task =>PUP.Optional.OneSystemCare
C:\Windows\rss\csrss.exe =>Trojan.Dropper
C:\WINDOWS\System32\Tasks\csrss =>Trojan.Dropper
C:\ProgramData\PrefsSecure\Nettrans.exe =>.SUP.Linkury
C:\Windows\windefender.exe =>Trojan.Agent
C:\Program Files (x86)\vXrhcsvdNIE\tTgTH3vy.dll =>PUP.Optional.YouTubeAdBlock
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7D4F46EB-16E2-407E-BB95-1BC50C96D791} =>PUP.Optional.YouTubeAdBlock
HKLM\Software\WOW6432Node\Classes\CLSID\{7D4F46EB-16E2-407E-BB95-1BC50C96D791} =>PUP.Optional.YouTubeAdBlock
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7D4F46EB-16E2-407E-BB95-1BC50C96D791} =>PUP.Optional.YouTubeAdBlock
HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{7D4F46EB-16E2-407E-BB95-1BC50C96D791} =>PUP.Optional.YouTubeAdBlock
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1655C0CA-7AE7-4012-8502-970C8675E5F8 =>PUP.Optional.YouTubeAdBlock
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\1655C0CA-7AE7-4012-8502-970C8675E5F8 =>PUP.Optional.YouTubeAdBlock
C:\Program Files\04P1HVLV87\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\04P1HVLV87 =>Adware.Wizzcaster
C:\Program Files\0AQCVX6TWO\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\0AQCVX6TWO =>Adware.Wizzcaster
C:\Program Files\0JCE9KMNQ0\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\0JCE9KMNQ0 =>Adware.Wizzcaster
C:\Program Files\11WM90GHYT\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\11WM90GHYT =>Adware.Wizzcaster
C:\Program Files\1N2QXGO06Q\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\1N2QXGO06Q =>Adware.Wizzcaster
C:\Program Files\1YWR6KX8A4\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\1YWR6KX8A4 =>Adware.Wizzcaster
C:\Program Files\1ZW16Q0YIH\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\1ZW16Q0YIH =>Adware.Wizzcaster
C:\Program Files\225WGKLWN1\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\225WGKLWN1 =>Adware.Wizzcaster
C:\Program Files\2623ZT8XMH\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\2623ZT8XMH =>Adware.Wizzcaster
C:\Program Files\29SO003NK4\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\29SO003NK4 =>Adware.Wizzcaster
C:\Program Files\37VWXKW7N1\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\37VWXKW7N1 =>Adware.Wizzcaster
C:\Program Files\38P8CK99P6\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\38P8CK99P6 =>Adware.Wizzcaster
C:\Program Files\38YPEYVTVU\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\38YPEYVTVU =>Adware.Wizzcaster
C:\Program Files\3D4VAUKSXN\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\3D4VAUKSXN =>Adware.Wizzcaster
C:\Program Files\3HVH7U3KUH\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\3HVH7U3KUH =>Adware.Wizzcaster
C:\Program Files\3PAUHYWW3S\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\3PAUHYWW3S =>Adware.Wizzcaster
C:\Program Files\417AWY8ZDJ\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\417AWY8ZDJ =>Adware.Wizzcaster
C:\Program Files\42HX1AVWDG\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\42HX1AVWDG =>Adware.Wizzcaster
C:\Program Files\4GXTCXZFIW\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\4GXTCXZFIW =>Adware.Wizzcaster
C:\Program Files\4RAEUJYXTE\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\4RAEUJYXTE =>Adware.Wizzcaster
C:\Program Files\4V1BTUETBW\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\4V1BTUETBW =>Adware.Wizzcaster
C:\Program Files\58S66JYD5A\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\58S66JYD5A =>Adware.Wizzcaster
C:\Program Files\5B9FXZ70L4\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\5B9FXZ70L4 =>Adware.Wizzcaster
C:\Program Files\5KP8LIVPY3\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\5KP8LIVPY3 =>Adware.Wizzcaster
C:\Program Files\5YRQOVRGLP\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\5YRQOVRGLP =>Adware.Wizzcaster
C:\Program Files\6FGHDS0HUY\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\6FGHDS0HUY =>Adware.Wizzcaster
C:\Program Files\6FSF9AS2RQ\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\6FSF9AS2RQ =>Adware.Wizzcaster
C:\Program Files\70F8Z4662U\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\70F8Z4662U =>Adware.Wizzcaster
C:\Program Files\7WJ641OPJF\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\7WJ641OPJF =>Adware.Wizzcaster
C:\Program Files\88YLCFXRTW\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\88YLCFXRTW =>Adware.Wizzcaster
C:\Program Files\8B873N6HFN\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\8B873N6HFN =>Adware.Wizzcaster
C:\Program Files\8EBQWFLG1I\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\8EBQWFLG1I =>Adware.Wizzcaster
C:\Program Files\8INYUYH34R\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\8INYUYH34R =>Adware.Wizzcaster
C:\Program Files\8WT9AFV4T1\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\8WT9AFV4T1 =>Adware.Wizzcaster
C:\Program Files\94BBZE6PRD\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\94BBZE6PRD =>Adware.Wizzcaster
C:\Program Files\96D3I6RKVV\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\96D3I6RKVV =>Adware.Wizzcaster
C:\Program Files\99038B4C11\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\99038B4C11 =>Adware.Wizzcaster
C:\Program Files\9A6RE7D3KQ\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\9A6RE7D3KQ =>Adware.Wizzcaster
C:\Program Files\9SDJLLC56X\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\9SDJLLC56X =>Adware.Wizzcaster
C:\Program Files\9UHC2ZCQDR\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\9UHC2ZCQDR =>Adware.Wizzcaster
C:\Program Files\A110B9AB7L\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\A110B9AB7L =>Adware.Wizzcaster
C:\Program Files\AKC8ATC6F1\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\AKC8ATC6F1 =>Adware.Wizzcaster
C:\Program Files\AR7W9VT4OF\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\AR7W9VT4OF =>Adware.Wizzcaster
C:\Program Files\BD7Z7IF851\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\BD7Z7IF851 =>Adware.Wizzcaster
C:\Program Files\BE2I9ZDTN2\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\BE2I9ZDTN2 =>Adware.Wizzcaster
C:\Program Files\BO27SSNHF1\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\BO27SSNHF1 =>Adware.Wizzcaster
C:\Program Files\BSHOY19KBX\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\BSHOY19KBX =>Adware.Wizzcaster
C:\Program Files\CKETCUV2I8\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\CKETCUV2I8 =>Adware.Wizzcaster
C:\Program Files\CN9FLTXXQ7\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\CN9FLTXXQ7 =>Adware.Wizzcaster
C:\Program Files\D3U19MU2G8\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\D3U19MU2G8 =>Adware.Wizzcaster
C:\Program Files\D694BSC19I\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\D694BSC19I =>Adware.Wizzcaster
C:\Program Files\DJ53DVW1OE\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\DJ53DVW1OE =>Adware.Wizzcaster
C:\Program Files\E5Q8QUTRTZ\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\E5Q8QUTRTZ =>Adware.Wizzcaster
C:\Program Files\E8V3RRSXPY\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\E8V3RRSXPY =>Adware.Wizzcaster
C:\Program Files\ECQD0SKYAW\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\ECQD0SKYAW =>Adware.Wizzcaster
C:\Program Files\EMKCX7EXNJ\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\EMKCX7EXNJ =>Adware.Wizzcaster
C:\Program Files\EN36EK3990\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\EN36EK3990 =>Adware.Wizzcaster
C:\Program Files\EO2GEQ6ZHE\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\EO2GEQ6ZHE =>Adware.Wizzcaster
C:\Program Files\F5I8XPMNL0\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\F5I8XPMNL0 =>Adware.Wizzcaster
C:\Program Files\FZA8L7PRKY\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\FZA8L7PRKY =>Adware.Wizzcaster
C:\Program Files\G2BAIUQTWJ\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\G2BAIUQTWJ =>Adware.Wizzcaster
C:\Program Files\GIEVTF06R1\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\GIEVTF06R1 =>Adware.Wizzcaster
C:\Program Files\GX5UMSZ3MD\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\GX5UMSZ3MD =>Adware.Wizzcaster
C:\Program Files\J34I29L1OH\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\J34I29L1OH =>Adware.Wizzcaster
C:\Program Files\J8GFC6W26R\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\J8GFC6W26R =>Adware.Wizzcaster
C:\Program Files\JHULKAOAY7\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\JHULKAOAY7 =>Adware.Wizzcaster
C:\Program Files\JLCGTIFMX8\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\JLCGTIFMX8 =>Adware.Wizzcaster
C:\Program Files\JPSKF6X6EO\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\JPSKF6X6EO =>Adware.Wizzcaster
C:\Program Files\JQDP3C2JU4\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\JQDP3C2JU4 =>Adware.Wizzcaster
C:\Program Files\K3TBLUO9UX\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\K3TBLUO9UX =>Adware.Wizzcaster
C:\Program Files\K9GT543AJN\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\K9GT543AJN =>Adware.Wizzcaster
C:\Program Files\KY27LDAXQT\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\KY27LDAXQT =>Adware.Wizzcaster
C:\Program Files\LF1WYKT7UV\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\LF1WYKT7UV =>Adware.Wizzcaster
C:\Program Files\LKS1T3Z8PF\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\LKS1T3Z8PF =>Adware.Wizzcaster
C:\Program Files\M08TQLI2XW\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\M08TQLI2XW =>Adware.Wizzcaster
C:\Program Files\M5T1I9KT74\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\M5T1I9KT74 =>Adware.Wizzcaster
C:\Program Files\MT3HJZYJUZ\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\MT3HJZYJUZ =>Adware.Wizzcaster
C:\Program Files\MZU5RJ3769\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\MZU5RJ3769 =>Adware.Wizzcaster
C:\Program Files\N6HY659O5I\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\N6HY659O5I =>Adware.Wizzcaster
C:\Program Files\O8SUK01ZC8\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\O8SUK01ZC8 =>Adware.Wizzcaster
C:\Program Files\OAPMYRUXIL\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\OAPMYRUXIL =>Adware.Wizzcaster
C:\Program Files\OCV16WQXJC\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\OCV16WQXJC =>Adware.Wizzcaster
C:\Program Files\OMOA5UFVYW\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\OMOA5UFVYW =>Adware.Wizzcaster
C:\Program Files\OQKXTR8E4G\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\OQKXTR8E4G =>Adware.Wizzcaster
C:\Program Files\OUBY9DXH7R\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\OUBY9DXH7R =>Adware.Wizzcaster
C:\Program Files\P32SY3SL20\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\P32SY3SL20 =>Adware.Wizzcaster
C:\Program Files\P3QFY43O92\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\P3QFY43O92 =>Adware.Wizzcaster
C:\Program Files\P4O07JJOTU\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\P4O07JJOTU =>Adware.Wizzcaster
C:\Program Files\P9K8KT13H5\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\P9K8KT13H5 =>Adware.Wizzcaster
C:\Program Files\PH1LOBSI06\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\PH1LOBSI06 =>Adware.Wizzcaster
C:\Program Files\Q6RWT95WSL\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\Q6RWT95WSL =>Adware.Wizzcaster
C:\Program Files\Q8BILV22OA\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\Q8BILV22OA =>Adware.Wizzcaster
C:\Program Files\QC42C9SM16\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\QC42C9SM16 =>Adware.Wizzcaster
C:\Program Files\QC7EKFCSAB\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\QC7EKFCSAB =>Adware.Wizzcaster
C:\Program Files\QDBX1N9NAR\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\QDBX1N9NAR =>Adware.Wizzcaster
C:\Program Files\QHJ6BMONHC\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\QHJ6BMONHC =>Adware.Wizzcaster
C:\Program Files\QTXZXZ8IW5\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\QTXZXZ8IW5 =>Adware.Wizzcaster
C:\Program Files\R6HXLXKTPD\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\R6HXLXKTPD =>Adware.Wizzcaster
C:\Program Files\R8JM5CE7P7\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\R8JM5CE7P7 =>Adware.Wizzcaster
C:\Program Files\RC1VOZ2YEM\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\RC1VOZ2YEM =>Adware.Wizzcaster
C:\Program Files\RR3YEBWDQF\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\RR3YEBWDQF =>Adware.Wizzcaster
C:\Program Files\RXN4QHR76Z\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\RXN4QHR76Z =>Adware.Wizzcaster
C:\Program Files\S65R4IN1VU\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\S65R4IN1VU =>Adware.Wizzcaster
C:\Program Files\T1JSF3GMDA\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\T1JSF3GMDA =>Adware.Wizzcaster
C:\Program Files\T2MK6YUOT7\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\T2MK6YUOT7 =>Adware.Wizzcaster
C:\Program Files\T3QENCUA11\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\T3QENCUA11 =>Adware.Wizzcaster
C:\Program Files\T4QTVIK3YF\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\T4QTVIK3YF =>Adware.Wizzcaster
C:\Program Files\T80C50MNUS\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\T80C50MNUS =>Adware.Wizzcaster
C:\Program Files\TP52UKGQ8J\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\TP52UKGQ8J =>Adware.Wizzcaster
C:\Program Files\TT3EBLP7V8\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\TT3EBLP7V8 =>Adware.Wizzcaster
C:\Program Files\UWAUDJ79UF\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\UWAUDJ79UF =>Adware.Wizzcaster
C:\Program Files\V86LTPM3CJ\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\V86LTPM3CJ =>Adware.Wizzcaster
C:\Program Files\V9TEOT8G5E\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\V9TEOT8G5E =>Adware.Wizzcaster
C:\Program Files\VFO8LUX4GK\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\VFO8LUX4GK =>Adware.Wizzcaster
C:\Program Files\VG2WLVCZ67\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\VG2WLVCZ67 =>Adware.Wizzcaster
C:\Program Files\VIKWB4IVFN\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\VIKWB4IVFN =>Adware.Wizzcaster
C:\Program Files\VIYJ6VFEZ6\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\VIYJ6VFEZ6 =>Adware.Wizzcaster
C:\Program Files\WebDiscoverBrowser =>.SUP.WebDiscoverMedia
C:\Program Files\WQG3MZYKOI\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\WQG3MZYKOI =>Adware.Wizzcaster
C:\Program Files\WW1VY87ZYH\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\WW1VY87ZYH =>Adware.Wizzcaster
C:\Program Files\X7HWNP8DFC\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\X7HWNP8DFC =>Adware.Wizzcaster
C:\Program Files\XDGXHDQDBH\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\XDGXHDQDBH =>Adware.Wizzcaster
C:\Program Files\XFFCX56YCT\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\XFFCX56YCT =>Adware.Wizzcaster
C:\Program Files\XHVNDMIAP0\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\XHVNDMIAP0 =>Adware.Wizzcaster
C:\Program Files\XSZQTTUAUU\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\XSZQTTUAUU =>Adware.Wizzcaster
C:\Program Files\Y7N1D2HDTG\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\Y7N1D2HDTG =>Adware.Wizzcaster
C:\Program Files\YGX7MM5U2C\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\YGX7MM5U2C =>Adware.Wizzcaster
C:\Program Files\YKNBVYQV85\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\YKNBVYQV85 =>Adware.Wizzcaster
C:\Program Files\YLHTD7T0I6\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\YLHTD7T0I6 =>Adware.Wizzcaster
C:\Program Files\YPXXZVCKZM\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\YPXXZVCKZM =>Adware.Wizzcaster
C:\Program Files\ZY1COIU6T6\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\ZY1COIU6T6 =>Adware.Wizzcaster
C:\Program Files (x86)\bestDownloader =>Adware.MSIL
C:\Program Files (x86)\FastDataX =>Adware.FastDataX
C:\Program Files (x86)\OneSystemCare =>PUP.Optional.OneSystemCare
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\One System Care =>PUP.Optional.OneSystemCare
C:\ProgramData\1b8cd899-0c21-1 =>.SUP.Polluteware
C:\ProgramData\1b8cd899-7a01-0 =>.SUP.Polluteware
C:\ProgramData\eb6626d4-3825-1 =>.SUP.Polluteware
C:\ProgramData\eb6626d4-5213-0 =>.SUP.Polluteware
C:\ProgramData\Logic Cramble =>PUP.Optional.LogicHandler
C:\ProgramData\pctonics.com =>.SUP.WinTonic
C:\ProgramData\PrefsSecure =>.SUP.Linkury
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\Browsers =>PUP.Optional.Shopperz
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\LookupPro =>Adware.LookupPro
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\One System Care =>PUP.Optional.OneSystemCare
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\pctonics.com =>.SUP.WinTonic
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\qp4e1a0c11o\m42le5s3osn.exe =>Heuristic.Wizzcaster
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\qp4e1a0c11o =>Heuristic.Wizzcaster
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\SPI =>PUP.Optional.Shopperz
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\x3hw3ifsdef =>.SUP.W3i
C:\Users\J.J.TAMBAKTIS\AppData\Local\WebDiscoverBrowser =>Adware.WebDiscoverBrowser
C:\WINDOWS\Prefetch\FASTDATAX.EXE-41B490E4.pf =>Adware.FastDataX
C:\WINDOWS\Prefetch\FASTDATAX.EXE-75EBC5D9.pf =>Adware.FastDataX
C:\WINDOWS\Prefetch\FASTDATAX.EXE-DEEE196E.pf =>Adware.FastDataX
C:\WINDOWS\Prefetch\FASTDATAX.TMP-A14EF02C.pf =>Adware.FastDataX
C:\WINDOWS\Prefetch\ONESYSTEMCARE.EXE-7099819B.pf =>PUP.Optional.OneSystemCare
C:\WINDOWS\Prefetch\ONESYSTEMCARE.EXE-74229399.pf =>PUP.Optional.OneSystemCare
C:\WINDOWS\Prefetch\ONESYSTEMCARE.EXE-B2DD801E.pf =>PUP.Optional.OneSystemCare
C:\WINDOWS\Prefetch\ONESYSTEMCARE.EXE-DC2A89D7.pf =>PUP.Optional.OneSystemCare
C:\WINDOWS\Prefetch\ONESYSTEMCARE.EXE-E85B788E.pf =>PUP.Optional.OneSystemCare
C:\WINDOWS\Prefetch\ONESYSTEMCARE.TMP-12129F9D.pf =>PUP.Optional.OneSystemCare
C:\WINDOWS\Prefetch\ONESYSTEMCARE.TMP-2FC1D87D.pf =>PUP.Optional.OneSystemCare
C:\WINDOWS\Prefetch\ONESYSTEMCARE.TMP-66813F5B.pf =>PUP.Optional.OneSystemCare
C:\WINDOWS\Prefetch\ONESYSTEMCARE.TMP-78FA54F6.pf =>PUP.Optional.OneSystemCare
C:\WINDOWS\Prefetch\ONESYSTEMCARE.TMP-F50FA661.pf =>PUP.Optional.OneSystemCare
C:\ProgramData\PrefsSecure\crambo.exe =>.SUP.Linkury
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\AutoHot.exe =>Spyware.Socelars
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} =>.SUP.Linkury
[HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{B2D90566-CFF3-4D2E-8741-6F0F0DC7BA78} =>Trojan.Dropper
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\AutoHot.exe =>Heuristic.Suspect
C:\Users\J.J.TAMBAKTIS\AppData\Roaming\update.exe =>Heuristic.Suspect
HKCU\Software\WebDiscoverBrowser =>Adware.WebDiscoverBrowser
HKLM\SOFTWARE\Wow6432Node\WebDiscoverBrowser =>Adware.WebDiscoverBrowser
HKLM\SOFTWARE\WebDiscoverBrowser =>Adware.WebDiscoverBrowser

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (26) - 0s
https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.OneSystemCare
https://www.anti-malware.top/2016/09/07/trojan-dropper/ =>Trojan.Dropper
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/09/07/pup-optional-salus/ =>.SUP.Linkury
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Trojan.Agent
https://nicolascoolman.eu/2017/11/10/hijacker-browser-3/ =>Hijacker.Browser
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Hijacker.Hosts
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.YouTubeAdBlock
https://nicolascoolman.eu/2017/09/07/pup-optional-salus/ =>PUP.Optional.Salus
https://nicolascoolman.eu/2017/09/23/barres-doutils-de-navigateur-toolbars/ =>Toolbar.Freemake
https://nicolascoolman.eu/2017/11/29/adware-webdiscoverbrowser/ =>Adware.WebDiscoverBrowser
https://nicolascoolman.eu/2017/02/24/pup-optional-wajam/ =>PUP.Optional.Wajam
https://nicolascoolman.eu/2018/02/08/sup-wintonic/ =>.SUP.WinTonic
https://nicolascoolman.eu/2017/10/07/adware-softwareengine/ =>Adware.SoftwareEngine
https://nicolascoolman.eu/2017/09/15/adware-wizzcaster/ =>Adware.Wizzcaster
https://www.anti-malware.top/2016/04/24/superfluous-webdiscovermedia/ =>.SUP.WebDiscoverMedia
https://nicolascoolman.eu/2017/09/13/adware-msil/ =>Adware.MSIL
https://nicolascoolman.eu/2017/06/21/adware-fastdatax/ =>Adware.FastDataX
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Polluteware
https://nicolascoolman.eu/2017/01/04/pup-optional-logichandler/ =>PUP.Optional.LogicHandler
https://www.anti-malware.top/2016/04/21/pup-optional-shopperz/ =>PUP.Optional.Shopperz
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Adware.LookupPro
https://nicolascoolman.eu/2017/09/15/adware-wizzcaster/ =>Heuristic.Wizzcaster
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.W3i
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Spyware.Socelars

~ Unselected Options: O82,
~ End of the scan, 17928 items in 10mn56s (2726)(0)

Publicité


Signaler le contenu de ce document

Publicité