Commentaire : https://www.cjoint.com/c/JCikbkkutq1
Format du document : text/plain
Prévisualisation
~ ZHPDiag v2020.3.6.18 Par Nicolas Coolman (2020/03/06)
~ Démarré par SON Y (Administrator) (2020/03/08 10:45:18)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\SON Y\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\SON Y\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Professional N, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation
---\\ NAVIGATEURS INTERNET (2) - 0s
~ GCIE: Google Chrome v73.0.3683.86
~ MSIE: Internet Explorer v11.0.9600.19301
---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (3) - 3s
~ Windows Server License Manager Script : OK
Windows Automatic Updates : KO
Windows Activation Technologies : OK
---\\ INFORMATIONS SUR LE SYSTÈME (8) - 0s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 8297.68 MB (53% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 104 GB (38%) free of 271 GB : OK =>.Disk Space
Total RAM: 8297.68 MB (47% free) : OK =>.RAM Value
System drive C: has 103 GB (38%) free of 271 GB : OK =>.Disk Space
---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: SONY-PC
~ User Name: SON Y
~ Logged in as Administrator
---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (3) - 0s
~ Drive C: has 104 GB free of 271 GB (System)
~ Drive D: has 5 GB free of 205 GB
~ Drive C: has 103 GB free of 271 GB (System)
---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (11) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (27) - 2s
[MD5.38AE1B3C38FAEF56FE4907922F0385BA] - 29/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3229696] [Unsigned] =>.Microsoft Corporation
[MD5.C36BB659F08F046B139C8D1B980BF1AC] - 30/03/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [46080] [Unsigned] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] [Unsigned] =>.Microsoft Corporation
[MD5.5185701AA6329382437821E4D96DEB99] - 26/02/2019 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [4858880] [Unsigned] =>.Microsoft Corporation
[MD5.11D6A262B617130F7C16E308C12E0D41] - 01/01/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455680] [Unsigned] =>.Microsoft Corporation
[MD5.00000000000000000000000000000000] - 21/11/2010 - (.© Microsoft Corporation. Tous droits réservés. - .) -- C:\Windows\System32\sppcomapi.dll [232448] [Unsigned]
[MD5.9B86DF86D1EFF32893BC3FB49BFAA993] - 08/06/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] [Unsigned] =>.Microsoft Corporation
[MD5.4A35D7B172AFF9C6B362D7297568836A] - 08/06/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [269824] [Unsigned] =>.Microsoft Corporation
[MD5.0A2E5059B5775E7DBBE05B8156ECE0C6] - 14/03/2018 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2651648] [Unsigned] =>.Microsoft Corporation
[MD5.6E41AC4E03AF00BCADB619446DF2B89A] - 24/03/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [30208] [Unsigned] =>.Microsoft Corporation
[MD5.0DC2A9882540DEA4A55B08785E09D8FC] - 04/04/2017 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [496128] [Unsigned] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] [Unsigned] =>.Microsoft Corporation
[MD5.B861DF1DC9CA9259934DBAC5E069681B] - 10/02/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92672] [Unsigned] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] [Unsigned] =>.Microsoft Corporation
[MD5.63705A08981F7EDD376241D6E0A9C2AC] - 25/04/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [115200] [Unsigned] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] [Unsigned] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 14/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] [Unsigned] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] [Unsigned] =>.Microsoft Corporation
[MD5.9FABA83545B6FBBE59CA6EA272481629] - 06/03/2019 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [161280] [Unsigned] =>.Microsoft Corporation
[MD5.734837208CAFD6E0959A7A0333C95C9D] - 11/08/2017 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [262656] [Unsigned] =>.Microsoft Corporation
[MD5.1D728E2DA93EE1F7766DE97D0BEEFC57] - 10/02/2019 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1680104] [Unsigned] =>.Microsoft Corporation
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] [Unsigned] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] [Unsigned] =>.Microsoft Corporation
[MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] [Unsigned] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] [Unsigned] =>.Microsoft Corporation
[MD5.4DD986720F7CB7A8A5D1226793097B9A] - 29/07/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [117248] [Unsigned] =>.Microsoft Corporation
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 21/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] [Unsigned] =>.Microsoft Corporation
---\\ LISTE DES SERVICES (Non désactivés) (52) - 3s
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\atiesrxx.exe [Unsigned] =>.AMD
O23 - Service: C:\Windows\System32\audiosrv.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\audiosrv.dll (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Background Logic Handler (backlh) . (. - ExtManager.) - C:\ProgramData\Logic Cramble\set.exe [Unsigned]
O23 - Service: C:\Windows\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\Windows\System32\bfe.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\Windows\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Microsoft ByteDownload Service (ByteDownloadV1.2) . (.Microsoft Corporation - Teamviewer Config.) - C:\Users\SON Y\AppData\Local\Temp\~atmp\_A209.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Microsoft Office « Démarrer en un clic » (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run (SxS).) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe =>.Microsoft®
O23 - Service: CloudPrinter (CloudPrinter) . (...) - C:\ProgramData\CloudPrinter\CloudPrinter.exe [Unsigned]
O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X86 (clr_optimization_v4.0.30319_32) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe =>.Microsoft®
O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X64 (clr_optimization_v4.0.30319_64) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\Windows\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\cscsvc.dll (CscService) . (.Microsoft Corporation - DLL du service CSC.) - C:\Windows\System32\cscsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\Windows\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wevtsvc.dll (eventlog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\Windows\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: (FreemakeVideoCapture) . (.Ellora Assets Corp. - CaptureLibService.) - C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe =>.INTERNET PROJECT LLC®
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\Windows\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [Unsigned] =>.Google Inc.
O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\Windows\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\Windows\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\Windows\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - DLL des services de transport NetBIOS sur T.) - C:\Windows\System32\lmhsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Main Service (Main Service) . (.Atompark Software Inc - Software to send SMS from your desktop.) - C:\Program Files (x86)\MachinerData\Atomic_SMS.exe [Unsigned]
O23 - Service: C:\Windows\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) - C:\Windows\System32\mmcss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\Windows\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\Windows\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd. - This service enables products that use the.) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro Software, Inc.®
O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\Windows\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: wifi support (papwrhzi) . (...) - C:\Windows\SysWOW64\papwrhzi\zeojdpmo.exe [Unsigned]
O23 - Service: C:\Windows\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\Windows\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\umpnpmgr.dll (PlugPlay) . (.Microsoft Corporation - Service mode utilisateur de Plug-and-Play.) - C:\Windows\System32\umpnpmgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\Windows\System32\umpo.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\Windows\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @oleres.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\Windows\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\Windows\System32\Sens.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\Windows\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\Windows\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\Windows\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\Windows\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\Windows\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dwm.exe,-2000 (UxSms) . (.Microsoft Corporation - Microsoft User Experience Session Managemen.) - C:\Windows\System32\uxsms.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Voyasollam (Voyasollam) . (...) - C:\ProgramData\Voyasollam\Voyasollam.exe [Unsigned]
O23 - Service: C:\Windows\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wlansvc.dll (Wlansvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\Windows\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: Wacom Professional Service (WTabletServicePro) . (.Wacom Technology, Corp. - Tablet Service.) - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe =>.Wacom Technology Corp.®
---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (77) - 6s
SR - Demand [14/07/2009] [ 491088] (adp94xx) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adp94xx.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 339536] (adpahci) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adpahci.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 182864] (adpu320) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adpu320.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 15440] (aliide) . (.Acer Laboratories Inc..) - C:\Windows\System32\drivers\aliide.sys =>.Microsoft Windows®
SR - Auto [21/11/2014] [ 244736] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\atiesrxx.exe [Unsigned] =>.AMD
SR - Demand [21/11/2014] [18959360] (amdkmdag) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DRIVERS\atikmdag.sys [Unsigned] =>.Advanced Micro Devices, Inc.
SR - Demand [21/11/2014] [ 589312] (amdkmdap) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DRIVERS\atikmpag.sys [Unsigned] =>.Advanced Micro Devices, Inc.
SR - Demand [09/03/2016] [ 107904] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 194128] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\drivers\amdsbs.sys =>.Microsoft Windows®
SR - Boot [09/03/2016] [ 27008] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 87632] (arc) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\arc.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 97856] (arcsas) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\arcsas.sys =>.Microsoft Windows®
SR - Demand [10/06/2009] [ 468480] Broadcom NetXtreme II VBD (b06bdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\bxvbda.sys [Unsigned] =>.Broadcom Corporation
SR - Demand [10/06/2009] [ 270848] Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 (b57nd60a) . (.Broadcom Corporation.) - C:\Windows\System32\DRIVERS\b57nd60a.sys [Unsigned] =>.Broadcom Corporation
SR - Auto [07/03/2020] [ 3780096] Background Logic Handler (backlh) . (...) - C:\ProgramData\Logic Cramble\set.exe [Unsigned]
SS - Demand [29/11/2013] [ 1375007] BitComet Disk Boost Service (BITCOMET_HELPER_SERVICE) . (.www.BitComet.com.) - C:\Program Files\BitComet\tools\BitCometService.exe [Unsigned] =>.www.BitComet.com
SR - Demand [10/06/2009] [ 18432] Brother USB Mass-Storage Lower Filter Driver (BrFiltLo) . (.Brother Industries, Ltd..) - C:\Windows\System32\drivers\BrFiltLo.sys [Unsigned] =>.Brother Industries, Ltd.
SR - Demand [10/06/2009] [ 8704] Brother USB Mass-Storage Upper Filter Driver (BrFiltUp) . (.Brother Industries, Ltd..) - C:\Windows\System32\drivers\BrFiltUp.sys [Unsigned] =>.Brother Industries, Ltd.
SR - Demand [14/07/2009] [ 286720] Brother MFC Serial Port Interface Driver (WDM) (Brserid) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\Brserid.sys [Unsigned] =>.Brother Industries Ltd.
SR - Demand [10/06/2009] [ 47104] Brother WDM Serial driver (BrSerWdm) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrSerWdm.sys [Unsigned] =>.Brother Industries Ltd.
SR - Demand [10/06/2009] [ 14976] Brother MFC USB Fax Only Modem (BrUsbMdm) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrUsbMdm.sys [Unsigned] =>.Brother Industries Ltd.
SR - Demand [10/06/2009] [ 14720] Brother MFC USB Serial WDM Driver (BrUsbSer) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrUsbSer.sys [Unsigned] =>.Brother Industries Ltd.
SR - Auto [07/03/2020] [ 4604871] CloudPrinter (CloudPrinter) . (...) - C:\ProgramData\CloudPrinter\CloudPrinter.exe [Unsigned]
SR - Demand [14/07/2009] [ 17488] (cmdide) . (.CMD Technology, Inc..) - C:\Windows\System32\drivers\cmdide.sys =>.Microsoft Windows®
SS - Demand [04/06/2015] [ 280680] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel Corporation - pGFX®
SR - Demand [07/03/2020] [ 30264] DAEMON Tools Lite Virtual SCSI Bus (dtlitescsibus) . (.Disc Soft Ltd.) - C:\Windows\System32\DRIVERS\dtlitescsibus.sys =>.Disc Soft Ltd®
SR - Demand [07/03/2020] [ 47672] DAEMON Tools Lite Virtual USB Bus (dtliteusbbus) . (.Disc Soft Ltd.) - C:\Windows\System32\DRIVERS\dtliteusbbus.sys =>.Disc Soft Ltd®
SR - System [08/03/2020] [ 283200] DAEMON Tools Virtual Bus Driver (dtsoftbus01) . (.DT Soft Ltd.) - C:\Windows\System32\DRIVERS\dtsoftbus01.sys =>.DT Soft Ltd®
SR - Demand [10/06/2009] [ 3286016] Broadcom NetXtreme II 10 GigE VBD (ebdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\evbda.sys [Unsigned] =>.Broadcom Corporation
SR - Demand [14/07/2009] [ 530496] (elxstor) . (.Emulex.) - C:\Windows\System32\drivers\elxstor.sys =>.Microsoft Windows®
SS - Demand [10/10/2018] [ 73200] (Freemake Improver) . (.Freemake.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe =>.INTERNET PROJECT LLC®
SR - Auto [10/10/2018] [ 15856] (FreemakeVideoCapture) . (.Ellora Assets Corp..) - C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe =>.INTERNET PROJECT LLC®
SS - Demand [20/03/2019] [ 1268720] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google Inc..) - C:\Program Files (x86)\Google\Chrome\Application\73.0.3683.86\elevation_service.exe =>.Google LLC®
SR - Auto [03/02/2019] [ 235247] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [Unsigned] =>.Google Inc.
SS - Demand [03/02/2019] [ 235247] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [Unsigned] =>.Google Inc.
SR - Demand [10/06/2009] [ 31232] Hauppauge Consumer Infrared Receiver (hcw85cir) . (.Hauppauge Computer Works, Inc..) - C:\Windows\System32\drivers\hcw85cir.sys [Unsigned] =>.Hauppauge Computer Works, Inc.
SR - Demand [30/11/2015] [ 14016] KMDF Driver (hidkmdf) . (.Wacom Technology Corp..) - C:\Windows\System32\DRIVERS\hidkmdf.sys =>.Wacom Technology Corp.®
SR - Demand [21/11/2010] [ 78720] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft Windows®
SR - Boot [29/05/2015] [ 646408] (iaStorA) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\iaStorA.sys =>.Intel Corporation - Rapid Storage Technology®
SR - Boot [29/05/2015] [ 30960] (iaStorF) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\iaStorF.sys =>.Intel Corporation - Rapid Storage Technology®
SR - Demand [09/03/2016] [ 410496] (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft Windows®
SR - Demand [17/08/2010] [ 26136] Intel(R) Watchdog Timer Driver (Intel(R) WDT) (ICCWDT) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\ICCWDT.sys =>.Intel Corporation®
SR - Demand [26/05/2015] [ 5375448] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\igdkmd64.sys =>.Intel Corporation - pGFX®
SR - Demand [14/07/2009] [ 44112] (iirsp) . (.Intel Corp./ICP vortex GmbH.) - C:\Windows\System32\drivers\iirsp.sys =>.Microsoft Windows®
SR - Demand [29/11/2013] [ 129224] NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethe (L1C) . (.Qualcomm Atheros Co., Ltd..) - C:\Windows\System32\DRIVERS\L1C62x64.sys =>.Qualcomm Atheros®
SR - Demand [14/07/2009] [ 114752] (LSI_FC) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_fc.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 106560] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 65600] (LSI_SAS2) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas2.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 115776] (LSI_SCSI) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_scsi.sys =>.Microsoft Windows®
SR - Auto [07/03/2020] [ 2567111] Main Service (Main Service) . (.Atompark Software Inc.) - C:\Program Files (x86)\MachinerData\Atomic_SMS.exe [Unsigned]
SR - Demand [14/07/2009] [ 35392] (megasas) . (.LSI Corporation.) - C:\Windows\System32\drivers\megasas.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 284736] (MegaSR) . (.LSI Corporation, Inc..) - C:\Windows\System32\drivers\MegaSR.sys =>.Microsoft Windows®
SR - Demand [28/07/2015] [ 178976] Intel(R) Management Engine Interface (MEIx64) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\TeeDriverx64.sys =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
SS - Demand [10/02/2020] [ 244936] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Demand [04/05/2015] [11531536] ___ Pilote de carte de la série Intel(R) Wireless WiFi Link (NETwNs64) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\NETwsw00.sys =>.Intel Corporation-Wireless Connectivity Solutions®
SR - Demand [14/07/2009] [ 51264] (nfrd960) . (.IBM Corporation.) - C:\Windows\System32\drivers\nfrd960.sys =>.Microsoft Windows®
SR - Auto [23/10/2018] [ 70752] Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd..) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro Software, Inc.®
SR - Auto [11/02/2011] [ 35344] NetGroup Packet Filter Driver (npf) . (.CACE Technologies, Inc..) - C:\Windows\System32\drivers\npf.sys =>.CACE Technologies, Inc.®
SR - Demand [27/08/2012] [ 226696] Renesas Electronics USB 3.0 Host Controller Driver (nusb3xhc) . (.Renesas Electronics Corporation.) - C:\Windows\System32\DRIVERS\nusb3xhc.sys =>.Renesas Electronics Corporation®
SR - Demand [09/03/2016] [ 148352] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft Windows®
SR - Demand [09/03/2016] [ 166272] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft Windows®
SR - Auto [07/03/2020] [10621952] wifi support (papwrhzi) . (...) - C:\Windows\SysWOW64\papwrhzi\zeojdpmo.exe [Unsigned]
SR - Demand [14/07/2009] [ 1524816] (ql2300) . (.QLogic Corporation.) - C:\Windows\System32\drivers\ql2300.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 128592] (ql40xx) . (.QLogic Corporation.) - C:\Windows\System32\drivers\ql40xx.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 94208] (Serial) . (.Brother Industries Ltd..) - C:\Windows\System32\drivers\serial.sys [Unsigned] =>.Brother Industries Ltd.
SR - Demand [15/01/2012] [ 14336] Sony Firmware Extension Parser (SFEP) . (.Sony Corporation.) - C:\Windows\System32\DRIVERS\SFEP.sys [Unsigned] =>.Sony Corporation
SR - Demand [14/07/2009] [ 43584] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\drivers\SiSRaid2.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 80464] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\drivers\sisraid4.sys =>.Microsoft Windows®
SR - Demand [26/05/2015] [ 33960] (SmbDrvI) . (.Synaptics Incorporated.) - C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated®
SR - Demand [14/07/2009] [ 24656] (stexstor) . (.Promise Technology.) - C:\Windows\System32\drivers\stexstor.sys =>.Microsoft Windows®
SS - Demand [19/02/2010] [ 595375] (SwitchBoard) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [Unsigned] =>.Adobe Systems Incorporated
SR - Demand [14/07/2009] [ 17488] (viaide) . (.VIA Technologies, Inc..) - C:\Windows\System32\drivers\viaide.sys =>.Microsoft Windows®
SR - Auto [07/03/2020] [ 4604871] Voyasollam (Voyasollam) . (...) - C:\ProgramData\Voyasollam\Voyasollam.exe [Unsigned]
SR - Demand [14/07/2009] [ 161872] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\drivers\vsmraid.sys =>.Microsoft Windows®
SR - Demand [30/11/2015] [ 103616] Wacom Hid Router (WacHidRouter) . (.Wacom Technology.) - C:\Windows\System32\DRIVERS\wachidrouter.sys =>.Wacom Technology Corp.®
SR - Demand [30/11/2015] [ 15040] Wacom Router Filter Driver (wacomrouterfilter) . (.Wacom Technology.) - C:\Windows\System32\DRIVERS\wacomrouterfilter.sys =>.Wacom Technology Corp.®
SR - Auto [11/01/2016] [ 730304] Wacom Professional Service (WTabletServicePro) . (.Wacom Technology, Corp..) - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe =>.Wacom Technology Corp.®
---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (40) - 10s
O38 - TASK: {06E53795-0F02-4539-A510-0A0A9CFEBC6A} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [235247] =>.Google Inc.
O38 - TASK: {07E790AA-1CE6-4DB3-9359-E17AE31C82AA} [64Bits][\Apple\AppleSoftwareUpdate] - (.Apple Inc. - Apple Software Update.) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [561984] =>.Apple Inc.
O38 - TASK: {102B9295-1FA2-46D1-B7A3-4A0627FE5EC3} [64Bits][\WinThruster_time] - (.Solvusoft - WinThruster.) -- C:\Program Files (x86)\WinThruster\WinThruster.exe [9466399] =>SUP.Optional.WinThruster
O38 - TASK: {109C9D81-A38F-49C5-ABDD-082FB79E02FA} [64Bits][\WinThruster_pp1] - (.Solvusoft - RPCEx.) -- C:\Program Files (x86)\WinThruster\RPCEx.exe [891935] =>SUP.Optional.WinThruster
O38 - TASK: {17883EFB-C445-4C4F-8284-CB6B6CA1249C} [64Bits][\WinThruster_strtp] - (.Solvusoft - WinThruster.) -- C:\Program Files (x86)\WinThruster\WinThruster.exe [9466399] =>SUP.Optional.WinThruster
O38 - TASK: {1EB460C0-8D8E-44E5-A2C6-088BFEB33C43} [64Bits][\NvNgxUpdateCheckDaily_{A6B397E0-97E0-97E0-97E0-A6B397E097E0}] - (...) -- regsvr32 [0]
O38 - TASK: {2DC673D1-94E2-49BA-8788-A812AF040ED3} [64Bits][\PerfMonitor_once] - (.Solvusoft - Performance Monitor.) -- C:\Program Files (x86)\WinThruster\PerformanceMonitor.exe [864799] =>SUP.Optional.WinThruster
O38 - TASK: {4467E13D-8B77-468A-8C71-AA3973975CB6} [64Bits][\WinThruster_period] - (.Solvusoft - WinThruster.) -- C:\Program Files (x86)\WinThruster\WinThruster.exe [9466399] =>SUP.Optional.WinThruster
O38 - TASK: {534836E8-9922-4ABD-83D3-9FFAE6B01EB1} [64Bits][\WinThruster_pp2_1] - (.Solvusoft - RPCEx.) -- C:\Program Files (x86)\WinThruster\RPCEx.exe [891935] =>SUP.Optional.WinThruster
O38 - TASK: {6EB98D55-33FF-4326-BE82-131427DABDD7} [64Bits][\PerfMonitor_strtp] - (.Solvusoft - Performance Monitor.) -- C:\Program Files (x86)\WinThruster\PerformanceMonitor.exe [864799] =>SUP.Optional.WinThruster
O38 - TASK: {7126B4C1-9657-43C7-8618-9C3651A80929} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [235247] =>.Google Inc.
O38 - TASK: {7148BF47-FE18-4785-90E4-76D73B0DB3B1} [64Bits][\klcp_update] - (.KLite Inc - Setup/Uninstall.) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1179648] =>.KLite Inc
O38 - TASK: {775277CA-ED36-4F7F-9CC9-21E34E6EA819} [64Bits][\Intel Rapid] - (...) -- C:\Users\SON Y\AppData\Roaming\Intel Rapid\IntelRapid.exe [2258432]
O38 - TASK: {9F5AA772-5637-4125-AB1D-4EC39B70AB54} [64Bits][\UpdateChecker] - (...) -- C:\Users\SON [220]
O38 - TASK: {A2B8D65A-3EC9-4795-B58C-90A4355F07C2} [64Bits][\WinThruster_pp2_2] - (.Solvusoft - RPCEx.) -- C:\Program Files (x86)\WinThruster\RPCEx.exe [891935] =>SUP.Optional.WinThruster
O38 - TASK: {BC542EF2-D129-47C8-8CC9-BC98C1CBEF0A} [64Bits][\WinThruster_pp3_1] - (.Solvusoft - RPCEx.) -- C:\Program Files (x86)\WinThruster\RPCEx.exe [891935] =>SUP.Optional.WinThruster
O38 - TASK: {CD0367C7-758E-40B4-8DCB-C6E4AF67F780} [64Bits][\Time Trigger Task] - (...) -- C:\Users\SON Y\AppData\Local\8a58578e-84f1-4edb-8536-07a697bd9ec0\B6B1.tmp.exe [829952] =>Adware.CrossRider
O38 - TASK: {D22D6D4E-6C83-47EF-98A7-A5E81793017C} [64Bits][\TweakBit\PCRepairKit\Start PCRepairKit оn logon] - (.TweakBit - PC Repair Kit.) -- C:\Program Files (x86)\TweakBit\PCRepairKit\PCRepairKit.exe [5887592] =>.SUP.TweakBit
O38 - TASK: {EE4A5CC5-9B66-4F29-863F-092919FBE5E3} [64Bits][\Opera scheduled Autoupdate 711520318] - (...) -- C:\Users\SON Y\AppData\Roaming\Microsoft\Windows\svgugaic\uiicvrrr.exe [379847]
O38 - TASK: {F9C1183C-CD96-469B-B9C7-057090147EDA} [64Bits][\WinThruster_pp2_3] - (.Solvusoft - RPCEx.) -- C:\Program Files (x86)\WinThruster\RPCEx.exe [891935] =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.
C:\Windows\System32\Tasks\Apple\AppleSoftwareUpdate - (.Apple Inc..) -- C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [-task] =>.Apple Inc.
C:\Windows\System32\Tasks\WinThruster_time - (.Solvusoft.) -- C:\Program Files (x86)\WinThruster\WinThruster.exe [-scan] =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_pp1 - (.Solvusoft.) -- C:\Program Files (x86)\WinThruster\RPCEx.exe [-runpp1] =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_strtp - (.Solvusoft.) -- C:\Program Files (x86)\WinThruster\WinThruster.exe [-scan] =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\NvNgxUpdateCheckDaily_{A6B397E0-97E0-97E0-97E0-A6B397E097E0} - (...) -- regsvr32 [/s ./s]
C:\Windows\System32\Tasks\PerfMonitor_once - (.Solvusoft.) -- C:\Program Files (x86)\WinThruster\PerformanceMonitor.exe [] =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_period - (.Solvusoft.) -- C:\Program Files (x86)\WinThruster\WinThruster.exe [-scan] =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_pp2_1 - (.Solvusoft.) -- C:\Program Files (x86)\WinThruster\RPCEx.exe [-runpp2 3.-runpp2] =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\PerfMonitor_strtp - (.Solvusoft.) -- C:\Program Files (x86)\WinThruster\PerformanceMonitor.exe [] =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\Windows\System32\Tasks\klcp_update - (.KLite Inc.) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [/verysilent ./verysilent] =>.KLite Inc
C:\Windows\System32\Tasks\Intel Rapid - (...) -- C:\Users\SON Y\AppData\Roaming\Intel Rapid\IntelRapid.exe []
C:\Windows\System32\Tasks\UpdateChecker - (...) -- C:\Users\SON [Y\AppData\Roaming\WinTup.exe]
C:\Windows\System32\Tasks\WinThruster_pp2_2 - (.Solvusoft.) -- C:\Program Files (x86)\WinThruster\RPCEx.exe [-runpp2 6.-runpp2] =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_pp3_1 - (.Solvusoft.) -- C:\Program Files (x86)\WinThruster\RPCEx.exe [-runpp3] =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\Time Trigger Task - (...) -- C:\Users\SON Y\AppData\Local\8a58578e-84f1-4edb-8536-07a697bd9ec0\B6B1.tmp.exe [--Task] =>Adware.CrossRider
C:\Windows\System32\Tasks\TweakBit\PCRepairKit\Start PCRepairKit оn logon - (.TweakBit.) -- C:\Program Files (x86)\TweakBit\PCRepairKit\PCRepairKit.exe [/UseTray ./UseTray] =>.SUP.TweakBit
C:\Windows\System32\Tasks\Opera scheduled Autoupdate 711520318 - (...) -- C:\Users\SON Y\AppData\Roaming\Microsoft\Windows\svgugaic\uiicvrrr.exe []
C:\Windows\System32\Tasks\WinThruster_pp2_3 - (.Solvusoft.) -- C:\Program Files (x86)\WinThruster\RPCEx.exe [-runpp2 12.-runpp2] =>SUP.Optional.WinThruster
---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (122) - 11s
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe [Unsigned] =>.Intel Corporation
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe [Unsigned] =>.Intel Corporation
O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - HKLM\..\RunOnce: [wouzqlayrdi] . (.© 2020 - .) -- C:\Program Files (x86)\Group\812812339.exe [Unsigned]
O4 - HKCU\..\Run: [WallpaperSuite] . (.WallpaperSuite - WallpaperSuite.) -- C:\Users\SON Y\AppData\Local\WallpaperSuite\WallpaperSuite.exe [Unsigned] =>.SUP.WallpaperHD
O4 - HKCU\..\Run: [Opera Browser Assistant] . (.Opera Software - Opera Browser Assistant.) -- C:\Users\SON Y\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [Unsigned] =>.Opera Software
O4 - HKCU\..\Run: [3832117] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\pdg1e4d5l0q\cqnrqcgadua.exe [Unsigned]
O4 - HKCU\..\Run: [K6KPJCV20M0L5YC] . (.8D - 8DUJ34RYT.) -- C:\Program Files\GRS62WUPAE\GRS62WUPA.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [SysHelper] . (...) -- C:\Users\SON Y\AppData\Local\8a58578e-84f1-4edb-8536-07a697bd9ec0\B6B1.tmp.exe [Unsigned] =>Adware.CrossRider
O4 - HKCU\..\Run: [6478475] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\gllgwganqrk\quecupifxaf.exe [Unsigned]
O4 - HKCU\..\Run: [FXXU25Z4OXML63L] . (.8D - 8DUJ34RYT.) -- C:\Program Files\25T7F4SLP3\25T7F4SLP.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [5967608] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\lpviewa4apc\ta1oq5byekl.exe [Unsigned]
O4 - HKCU\..\Run: [7LJ0E5XDUI5I9D8] . (.8D - 8DUJ34RYT.) -- C:\Program Files\SVTTOP6LJY\MG7Q2BTX0.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [DI6G3SQ9OEIS94H] . (.8D - 8DUJ34RYT.) -- C:\Program Files\WG5QTELCY7\WG5QTELCY.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [2562118] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\ef3ix00vvq3\3qzfwjgkyx1.exe [Unsigned]
O4 - HKCU\..\Run: [2487787] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\uhky0lxujx3\wm1wbcyfoll.exe [Unsigned]
O4 - HKCU\..\Run: [24X7J1TBL6AX3RT] . (.8D - 8DUJ34RYT.) -- C:\Program Files\MID7KWMLIR\MID7KWMLI.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [2232923] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\ciurfo1cwyc\i2u3zwdawjg.exe [Unsigned]
O4 - HKCU\..\Run: [K735F38ZL4MPMGR] . (.8D - 8DUJ34RYT.) -- C:\Program Files\90N3QFVFUI\90N3QFVFU.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [9746418] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\l5o2hp0uxpx\3q2nxnl4or2.exe [Unsigned]
O4 - HKCU\..\Run: [Q8NTJQ1DFXC7GRW] . (.8D - 8DUJ34RYT.) -- C:\Program Files\OXLHWCOHI0\OXLHWCOHI.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [HJ7K9X033L2KQB1] . (.8D - 8DUJ34RYT.) -- C:\Program Files\1WWBZTX9VS\1WWBZTX9V.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [4654129] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\z0mr5dkkzrt\adcn0stooqi.exe [Unsigned]
O4 - HKCU\..\Run: [7JFSD5KNBLGAIT7] . (.8D - 8DUJ34RYT.) -- C:\Program Files\5SQSAG46WC\5SQSAG46W.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [5544659] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\4qxi4aq5gmx\m5y2a2jsx2m.exe [Unsigned]
O4 - HKCU\..\Run: [7357495] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\3uzutdmgyix\tygwxarymhp.exe [Unsigned]
O4 - HKCU\..\Run: [B93KOGPUG75MZZ1] . (.8D - 8DUJ34RYT.) -- C:\Program Files\K4TGYJ2MLY\K4TGYJ2ML.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [5878722] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\rsqdrxnmer0\bsxejdtww5k.exe [Unsigned]
O4 - HKCU\..\Run: [GDGZQDAHWHPRZDD] . (.8D - 8DUJ34RYT.) -- C:\Program Files\DO0H8YU9C9\QD7VGY0AB.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [77LYC22JNZ69IYF] . (.8D - 8DUJ34RYT.) -- C:\Program Files\LWHD8534HW\LWHD8534H.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [6336231] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\mxv3y0tdljc\cvz32ia4ojb.exe [Unsigned]
O4 - HKCU\..\Run: [7236952] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\wykfgawnimn\4wz0mp1pqb0.exe [Unsigned]
O4 - HKCU\..\Run: [3XIQQ5K6U8SVBA9] . (.8D - 8DUJ34RYT.) -- C:\Program Files\GEUCJR02ZX\GEUCJR02Z.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [6407223] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\250tsdloab5\ro0mwicfigu.exe [Unsigned]
O4 - HKCU\..\Run: [2X533IFVL59QSLQ] . (.8D - 8DUJ34RYT.) -- C:\Program Files\T86BY4J654\T86BY4J65.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [FNM5S8JE2JE6DZR] . (.8D - 8DUJ34RYT.) -- C:\Program Files\6RKQX9KH3Y\6RKQX9KH3.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [9933408] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\jytmnj44aec\ihrd4mj21t0.exe [Unsigned]
O4 - HKCU\..\Run: [5634894] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\1axegremb5v\eqkrkjrk3xs.exe [Unsigned]
O4 - HKCU\..\Run: [JUS01ZAFS7OSPBS] . (.8D - 8DUJ34RYT.) -- C:\Program Files\HBNS1REN16\HBNS1REN1.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [4960474] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\53puerifkmu\l44kkbxmwo0.exe [Unsigned]
O4 - HKCU\..\Run: [NYN5OUK17CQBU5K] . (.8D - 8DUJ34RYT.) -- C:\Program Files\RHOECT1B43\2P5OMPUK7.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [9145461] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\serkknppj1w\fxjazkdetyq.exe [Unsigned]
O4 - HKCU\..\Run: [57L3UR4G8DBR4V9] . (.8D - 8DUJ34RYT.) -- C:\Program Files\H2VRKB2ZOR\H2VRKB2ZO.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [R7730RT2QATXAMX] . (.8D - 8DUJ34RYT.) -- C:\Program Files\CCWS4NRA5W\CCWS4NRA5.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [5841716] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\4p0xe0vng3o\1e1g4lwil15.exe [Unsigned]
O4 - HKCU\..\Run: [HD0KXGHNZNOU6W8] . (.8D - 8DUJ34RYT.) -- C:\Program Files\0BT549N0PG\0BT549N0P.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [2108541] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\3h1hsjvvlmt\lli3sb3y5rg.exe [Unsigned]
O4 - HKCU\..\Run: [DAEMON Tools Pro Agent] . (.DT Soft Ltd - DAEMON Tools Pro Agent.) -- C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe =>.Disc Soft Ltd®
O4 - HKCU\..\Run: [O15ZTYJ58PZT2EH] . (.8D - 8DUJ34RYT.) -- C:\Program Files\3S0RXG9K5V\3S0RXG9K5.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [7949449] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\pptd0gmq1af\uoxpm4rjxn1.exe [Unsigned]
O4 - HKCU\..\Run: [SUB4ZL3FJVE1WYG] . (.8D - 8DUJ34RYT.) -- C:\Program Files\Y6TIDG499P\Y6TIDG499.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [7354912] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\wr41dc2g4gr\rspp3w3znsi.exe [Unsigned]
O4 - HKCU\..\Run: [3D9Z54QZUOZARS1] . (.8D - 8DUJ34RYT.) -- C:\Program Files\137NHPD3XQ\137NHPD3X.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [75RT9PR3OJRIC73] . (.8D - 8DUJ34RYT.) -- C:\Program Files\9UCQLJA5HO\9UCQLJA5H.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [4134806] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\sdage2ugcyw\4o30ew2t4ak.exe [Unsigned]
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe [Unsigned] =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe [Unsigned] =>.Microsoft Corporation
O4 - HKLM\..\Wow6432Node\Run: [AdobeCEPServiceManager] . (.Adobe Systems Incorporated - Adobe CEP Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - HKLM\..\Wow6432Node\Run: [SwitchBoard] . (.Adobe Systems Incorporated - SwitchBoard Server (32 bit).) -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - HKLM\..\Wow6432Node\Run: [AdobeCS6ServiceManager] . (.Adobe Systems Incorporated - Adobe CS6 Service Manager.) -- C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated®
O4 - HKLM\..\Wow6432Node\Run: [APSDaemon] . (.Apple Inc. - Apple Push.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.®
O4 - HKLM\..\Wow6432Node\Run: [ProductUpdater] . (. - ProductUpdater.) -- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe =>.INTERNET PROJECT LLC®
O4 - HKLM\..\Wow6432Node\Run: [DiskFixer] . (. - DiskPower.) -- C:\Program Files (x86)\DiskFixer\DiskFixer.exe [Unsigned] =>SUP.Optional.DiskFixer
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [WallpaperSuite] . (.WallpaperSuite - WallpaperSuite.) -- C:\Users\SON Y\AppData\Local\WallpaperSuite\WallpaperSuite.exe [Unsigned] =>.SUP.WallpaperHD
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [Opera Browser Assistant] . (.Opera Software - Opera Browser Assistant.) -- C:\Users\SON Y\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [Unsigned] =>.Opera Software
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [3832117] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\pdg1e4d5l0q\cqnrqcgadua.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [K6KPJCV20M0L5YC] . (.8D - 8DUJ34RYT.) -- C:\Program Files\GRS62WUPAE\GRS62WUPA.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [SysHelper] . (...) -- C:\Users\SON Y\AppData\Local\8a58578e-84f1-4edb-8536-07a697bd9ec0\B6B1.tmp.exe [Unsigned] =>Adware.CrossRider
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [6478475] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\gllgwganqrk\quecupifxaf.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [FXXU25Z4OXML63L] . (.8D - 8DUJ34RYT.) -- C:\Program Files\25T7F4SLP3\25T7F4SLP.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [5967608] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\lpviewa4apc\ta1oq5byekl.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [7LJ0E5XDUI5I9D8] . (.8D - 8DUJ34RYT.) -- C:\Program Files\SVTTOP6LJY\MG7Q2BTX0.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [DI6G3SQ9OEIS94H] . (.8D - 8DUJ34RYT.) -- C:\Program Files\WG5QTELCY7\WG5QTELCY.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [2562118] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\ef3ix00vvq3\3qzfwjgkyx1.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [2487787] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\uhky0lxujx3\wm1wbcyfoll.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [24X7J1TBL6AX3RT] . (.8D - 8DUJ34RYT.) -- C:\Program Files\MID7KWMLIR\MID7KWMLI.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [2232923] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\ciurfo1cwyc\i2u3zwdawjg.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [K735F38ZL4MPMGR] . (.8D - 8DUJ34RYT.) -- C:\Program Files\90N3QFVFUI\90N3QFVFU.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [9746418] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\l5o2hp0uxpx\3q2nxnl4or2.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [Q8NTJQ1DFXC7GRW] . (.8D - 8DUJ34RYT.) -- C:\Program Files\OXLHWCOHI0\OXLHWCOHI.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [HJ7K9X033L2KQB1] . (.8D - 8DUJ34RYT.) -- C:\Program Files\1WWBZTX9VS\1WWBZTX9V.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [4654129] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\z0mr5dkkzrt\adcn0stooqi.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [7JFSD5KNBLGAIT7] . (.8D - 8DUJ34RYT.) -- C:\Program Files\5SQSAG46WC\5SQSAG46W.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [5544659] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\4qxi4aq5gmx\m5y2a2jsx2m.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [7357495] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\3uzutdmgyix\tygwxarymhp.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [B93KOGPUG75MZZ1] . (.8D - 8DUJ34RYT.) -- C:\Program Files\K4TGYJ2MLY\K4TGYJ2ML.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [5878722] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\rsqdrxnmer0\bsxejdtww5k.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [GDGZQDAHWHPRZDD] . (.8D - 8DUJ34RYT.) -- C:\Program Files\DO0H8YU9C9\QD7VGY0AB.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [77LYC22JNZ69IYF] . (.8D - 8DUJ34RYT.) -- C:\Program Files\LWHD8534HW\LWHD8534H.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [6336231] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\mxv3y0tdljc\cvz32ia4ojb.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [7236952] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\wykfgawnimn\4wz0mp1pqb0.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [3XIQQ5K6U8SVBA9] . (.8D - 8DUJ34RYT.) -- C:\Program Files\GEUCJR02ZX\GEUCJR02Z.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [6407223] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\250tsdloab5\ro0mwicfigu.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [2X533IFVL59QSLQ] . (.8D - 8DUJ34RYT.) -- C:\Program Files\T86BY4J654\T86BY4J65.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [FNM5S8JE2JE6DZR] . (.8D - 8DUJ34RYT.) -- C:\Program Files\6RKQX9KH3Y\6RKQX9KH3.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [9933408] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\jytmnj44aec\ihrd4mj21t0.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [5634894] . (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\1axegremb5v\eqkrkjrk3xs.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [JUS01ZAFS7OSPBS] . (.8D - 8DUJ34RYT.) -- C:\Program Files\HBNS1REN16\HBNS1REN1.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [4960474] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\53puerifkmu\l44kkbxmwo0.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [NYN5OUK17CQBU5K] . (.8D - 8DUJ34RYT.) -- C:\Program Files\RHOECT1B43\2P5OMPUK7.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [9145461] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\serkknppj1w\fxjazkdetyq.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [57L3UR4G8DBR4V9] . (.8D - 8DUJ34RYT.) -- C:\Program Files\H2VRKB2ZOR\H2VRKB2ZO.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [R7730RT2QATXAMX] . (.8D - 8DUJ34RYT.) -- C:\Program Files\CCWS4NRA5W\CCWS4NRA5.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [5841716] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\4p0xe0vng3o\1e1g4lwil15.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [HD0KXGHNZNOU6W8] . (.8D - 8DUJ34RYT.) -- C:\Program Files\0BT549N0PG\0BT549N0P.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [2108541] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\3h1hsjvvlmt\lli3sb3y5rg.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [DAEMON Tools Pro Agent] . (.DT Soft Ltd - DAEMON Tools Pro Agent.) -- C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe =>.Disc Soft Ltd®
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [O15ZTYJ58PZT2EH] . (.8D - 8DUJ34RYT.) -- C:\Program Files\3S0RXG9K5V\3S0RXG9K5.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [7949449] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\pptd0gmq1af\uoxpm4rjxn1.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [SUB4ZL3FJVE1WYG] . (.8D - 8DUJ34RYT.) -- C:\Program Files\Y6TIDG499P\Y6TIDG499.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [7354912] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\wr41dc2g4gr\rspp3w3znsi.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [3D9Z54QZUOZARS1] . (.8D - 8DUJ34RYT.) -- C:\Program Files\137NHPD3XQ\137NHPD3X.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [75RT9PR3OJRIC73] . (.8D - 8DUJ34RYT.) -- C:\Program Files\9UCQLJA5HO\9UCQLJA5H.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [4134806] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\sdage2ugcyw\4o30ew2t4ak.exe [Unsigned]
O4 - HKCU\..\Run: [6518563] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\1rmxf05f0qe\fhrpi2q2xsb.exe [Unsigned]
O4 - HKCU\..\Run: [VH7HBIDBSR7IQIA] . (.8D - 8DUJ34RYT.) -- C:\Program Files\3HRE32X1UJ\3HRE32X1U.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKCU\..\Run: [6158713] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\1xns40ff1hs\jshhhr1xt3w.exe [Unsigned]
O4 - HKCU\..\Run: [F968W87070Z9794] . (.8D - 8DUJ34RYT.) -- C:\Program Files\QNA2VLKGZG\XQYPVOG0T.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [6518563] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\1rmxf05f0qe\fhrpi2q2xsb.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [VH7HBIDBSR7IQIA] . (.8D - 8DUJ34RYT.) -- C:\Program Files\3HRE32X1UJ\3HRE32X1U.exe [Unsigned] =>Adware.Wizzcaster
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [6158713] . (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\1xns40ff1hs\jshhhr1xt3w.exe [Unsigned]
O4 - HKUS\S-1-5-21-446094025-1014057490-1284722728-1000\..\Run: [F968W87070Z9794] . (.8D - 8DUJ34RYT.) -- C:\Program Files\QNA2VLKGZG\XQYPVOG0T.exe [Unsigned] =>Adware.Wizzcaster
---\\ PROCESSUS LANCÉS (124) - 54s
[MD5.2998362D1E550F0C990D77E34415BEB6] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [244736] [PID.880] [Unsigned] =>.AMD
[MD5.4AF4C85F801F60157F943108DDBC4143] - (.Wacom Technology, Corp. - Tablet Service.) -- C:\Program Files\Tablet\Wacom\WTabletServicePro.exe [730304] [PID.1076] =>.Wacom Technology Corp.®
[MD5.CAC9C36B2E28F3AE76FF62EA7523D71F] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [774656] [PID.1272] [Unsigned] =>.AMD
[MD5.AEB9C08A995F3C8522B2A8B789160154] - (. - ExtManager.) -- C:\ProgramData\Logic Cramble\set.exe [3780096] [PID.1692] [Unsigned] =>SUP.Optional.Linkury
[MD5.7B553B6F543B443294A95196936B0D6F] - (.Solvusoft - Performance Monitor.) -- C:\Program Files (x86)\WinThruster\PerformanceMonitor.exe [864799] [PID.300] [Unsigned] =>SUP.Optional.WinThruster
[MD5.EA5A7BC2DE4AC60C82B3B3815A7D52AF] - (...) -- C:\Users\SON Y\AppData\Roaming\Intel Rapid\IntelRapid.exe [2258432] [PID.1604] [Unsigned]
[MD5.B370DDD1581637457A561BBD92A3DA54] - (...) -- C:\ProgramData\CloudPrinter\CloudPrinter.exe [4604871] [PID.2196] [Unsigned] =>SUP.Optional.Linkury
[MD5.B7ABB171D370E1901F80C3681C446C07] - (.Ellora Assets Corp. - CaptureLibService.) -- C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe [15856] [PID.2332] =>.INTERNET PROJECT LLC®
[MD5.E58DBCD1ED389F07DB5E1581C1232A6B] - (.Atompark Software Inc - Software to send SMS from your desktop.) -- C:\Program Files (x86)\MachinerData\Atomic_SMS.exe [2567111] [PID.2436] [Unsigned] =>Trojan.CrthRazy
[MD5.89A2C4A529B0F13219CEDA367C09B355] - (.Nalpeiron Ltd. - This service enables products that use the.) -- C:\Windows\SysWOW64\NLSSRV32.EXE [70752] [PID.2672] =>.Nitro Software, Inc.®
[MD5.E58DBCD1ED389F07DB5E1581C1232A6B] - (.Atompark Software Inc - Software to send SMS from your desktop.) -- C:\Program Files (x86)\MachinerData\main.exe [2567111] [PID.2700] [Unsigned] =>Trojan.CrthRazy
[MD5.B370DDD1581637457A561BBD92A3DA54] - (...) -- C:\ProgramData\Voyasollam\Voyasollam.exe [4604871] [PID.2864] [Unsigned]
[MD5.51E35710BA690A986B0B9D44188D0615] - (.© 2020 - .) -- C:\Program Files (x86)\Group\812812339.exe [1938432] [PID.3216] [Unsigned]
[MD5.5C58E50151E5DBAF3401D3EB9C5996DB] - (.Wacom Technology, Corp. - Tablet user module for professional driver.) -- C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe [1765056] [PID.3340] =>.Wacom Technology Corp.®
[MD5.1ADA4068F333978915A458B17C8F20E8] - (.Wacom Technology - Wacom Load Agent.) -- C:\Program Files\Tablet\Wacom\WacomHost.exe [118087] [PID.3400] [Unsigned] =>.Wacom Technology
[MD5.A0B03897D4A8DA274467C4B9FC292ACE] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [401512] [PID.3408] [Unsigned] =>.Intel Corporation
[MD5.E63EBC1C89842A314B6FA7FEF31EDD19] - (.Wacom Technology, Corp. - Tablet Service for professional driver.) -- C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe [12624064] [PID.3532] =>.Wacom Technology Corp.®
[MD5.F1BD324ADD1FD702F37DF74E9F48FD78] - (.Wacom Technology, Corp. - Touch User Mode Driver.) -- C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe [5409472] [PID.3628] =>.Wacom Technology Corp.®
[MD5.1F963E569AD9764CACB397452F72608C] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [444008] [PID.3728] [Unsigned] =>.Intel Corporation
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\pdg1e4d5l0q\cqnrqcgadua.exe [1653258] [PID.3912] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-7QPG2.tmp\cqnrqcgadua.tmp [926720] [PID.3992] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\GRS62WUPAE\GRS62WUPA.exe [1357824] [PID.4012] [Unsigned] =>Adware.Wizzcaster
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\gllgwganqrk\quecupifxaf.exe [1653258] [PID.4044] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-KSRJN.tmp\quecupifxaf.tmp [926720] [PID.3080] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\25T7F4SLP3\25T7F4SLP.exe [1357824] [PID.1404] [Unsigned] =>Adware.Wizzcaster
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\lpviewa4apc\ta1oq5byekl.exe [1653258] [PID.3156] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\SVTTOP6LJY\MG7Q2BTX0.exe [1357824] [PID.1952] [Unsigned] =>Adware.Wizzcaster
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-M51KJ.tmp\ta1oq5byekl.tmp [926720] [PID.3292] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\WG5QTELCY7\WG5QTELCY.exe [1357824] [PID.1372] [Unsigned] =>Adware.Wizzcaster
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\ef3ix00vvq3\3qzfwjgkyx1.exe [1653258] [PID.1388] [Unsigned]
[MD5.183569A679C4B7A16A298B52ADFE47C9] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\uhky0lxujx3\wm1wbcyfoll.exe [1731537] [PID.3476] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\MID7KWMLIR\MID7KWMLI.exe [1357824] [PID.3472] [Unsigned] =>Adware.Wizzcaster
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\ciurfo1cwyc\i2u3zwdawjg.exe [1653258] [PID.3396] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-0K77U.tmp\wm1wbcyfoll.tmp [926720] [PID.3920] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\90N3QFVFUI\90N3QFVFU.exe [1357824] [PID.3136] [Unsigned] =>Adware.Wizzcaster
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-VOB7N.tmp\3qzfwjgkyx1.tmp [926720] [PID.1636] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-P7KU9.tmp\i2u3zwdawjg.tmp [926720] [PID.4164] [Unsigned]
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\l5o2hp0uxpx\3q2nxnl4or2.exe [1653258] [PID.4184] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\OXLHWCOHI0\OXLHWCOHI.exe [1357824] [PID.4228] [Unsigned] =>Adware.Wizzcaster
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\1WWBZTX9VS\1WWBZTX9V.exe [1357824] [PID.4368] [Unsigned] =>Adware.Wizzcaster
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-1S0GT.tmp\3q2nxnl4or2.tmp [926720] [PID.4388] [Unsigned]
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\z0mr5dkkzrt\adcn0stooqi.exe [1653258] [PID.4436] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\5SQSAG46WC\5SQSAG46W.exe [1357824] [PID.4576] [Unsigned] =>Adware.Wizzcaster
[MD5.1E6CB993D70338655B117E562BDFF04D] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\4qxi4aq5gmx\m5y2a2jsx2m.exe [1731537] [PID.4684] [Unsigned]
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\3uzutdmgyix\tygwxarymhp.exe [1653258] [PID.4748] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-OAEN9.tmp\m5y2a2jsx2m.tmp [926720] [PID.4760] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-FQM53.tmp\adcn0stooqi.tmp [926720] [PID.4768] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\K4TGYJ2MLY\K4TGYJ2ML.exe [1357824] [PID.5000] [Unsigned] =>Adware.Wizzcaster
[MD5.75C997BF9B38772091B3A5E46DB64C98] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\rsqdrxnmer0\bsxejdtww5k.exe [1731537] [PID.5108] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-3CL2C.tmp\tygwxarymhp.tmp [926720] [PID.4572] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-SNMGT.tmp\bsxejdtww5k.tmp [926720] [PID.5240] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\DO0H8YU9C9\QD7VGY0AB.exe [1357824] [PID.5276] [Unsigned] =>Adware.Wizzcaster
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\LWHD8534HW\LWHD8534H.exe [1357824] [PID.5592] [Unsigned] =>Adware.Wizzcaster
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\mxv3y0tdljc\cvz32ia4ojb.exe [1653258] [PID.5632] [Unsigned]
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\wykfgawnimn\4wz0mp1pqb0.exe [1653258] [PID.5720] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-OQV0G.tmp\cvz32ia4ojb.tmp [926720] [PID.5844] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\GEUCJR02ZX\GEUCJR02Z.exe [1357824] [PID.5888] [Unsigned] =>Adware.Wizzcaster
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\250tsdloab5\ro0mwicfigu.exe [1653258] [PID.5924] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\T86BY4J654\T86BY4J65.exe [1357824] [PID.6408] [Unsigned] =>Adware.Wizzcaster
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-0NMQU.tmp\4wz0mp1pqb0.tmp [926720] [PID.6436] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-RQG9S.tmp\ro0mwicfigu.tmp [926720] [PID.6452] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\6RKQX9KH3Y\6RKQX9KH3.exe [1357824] [PID.6584] [Unsigned] =>Adware.Wizzcaster
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\jytmnj44aec\ihrd4mj21t0.exe [1653258] [PID.6656] [Unsigned]
[MD5.D0F51D33E3D05A12BF0EB50B2C3DDC2A] - (. - DSP Setup.) -- C:\Users\SON Y\AppData\Roaming\1axegremb5v\eqkrkjrk3xs.exe [1653258] [PID.7084] [Unsigned]
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-F9B7B.tmp\ihrd4mj21t0.tmp [926720] [PID.6680] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\HBNS1REN16\HBNS1REN1.exe [1357824] [PID.7192] [Unsigned] =>Adware.Wizzcaster
[MD5.BB977D5D3705195028CBD530DF8DFEA2] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-DF8MU.tmp\eqkrkjrk3xs.tmp [926720] [PID.7200] [Unsigned]
[MD5.76981E52FCAD1682D421E0C8FAB420BB] - (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\53puerifkmu\l44kkbxmwo0.exe [1795023] [PID.7396] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\RHOECT1B43\2P5OMPUK7.exe [1357824] [PID.7664] [Unsigned] =>Adware.Wizzcaster
[MD5.76981E52FCAD1682D421E0C8FAB420BB] - (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\serkknppj1w\fxjazkdetyq.exe [1795023] [PID.8012] [Unsigned]
[MD5.C68992A0F3931CAF0E685726A66557E8] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-613DK.tmp\l44kkbxmwo0.tmp [888832] [PID.8044] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\H2VRKB2ZOR\H2VRKB2ZO.exe [1357824] [PID.8172] [Unsigned] =>Adware.Wizzcaster
[MD5.C68992A0F3931CAF0E685726A66557E8] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-DMGVO.tmp\fxjazkdetyq.tmp [888832] [PID.8180] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\CCWS4NRA5W\CCWS4NRA5.exe [1357824] [PID.7972] [Unsigned] =>Adware.Wizzcaster
[MD5.76981E52FCAD1682D421E0C8FAB420BB] - (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\sdage2ugcyw\4o30ew2t4ak.exe [1795023] [PID.7996] [Unsigned]
[MD5.C68992A0F3931CAF0E685726A66557E8] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-JU81L.tmp\4o30ew2t4ak.tmp [888832] [PID.7384] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\9UCQLJA5HO\9UCQLJA5H.exe [1357824] [PID.8216] [Unsigned] =>Adware.Wizzcaster
[MD5.76981E52FCAD1682D421E0C8FAB420BB] - (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\4p0xe0vng3o\1e1g4lwil15.exe [1795023] [PID.8244] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\0BT549N0PG\0BT549N0P.exe [1357824] [PID.8532] [Unsigned] =>Adware.Wizzcaster
[MD5.C68992A0F3931CAF0E685726A66557E8] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-ROLC4.tmp\1e1g4lwil15.tmp [888832] [PID.8612] [Unsigned]
[MD5.76981E52FCAD1682D421E0C8FAB420BB] - (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\3h1hsjvvlmt\lli3sb3y5rg.exe [1795023] [PID.8636] [Unsigned]
[MD5.C68992A0F3931CAF0E685726A66557E8] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-637V1.tmp\lli3sb3y5rg.tmp [888832] [PID.9036] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\3S0RXG9K5V\3S0RXG9K5.exe [1357824] [PID.9076] [Unsigned] =>Adware.Wizzcaster
[MD5.76981E52FCAD1682D421E0C8FAB420BB] - (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\pptd0gmq1af\uoxpm4rjxn1.exe [1795023] [PID.9084] [Unsigned]
[MD5.C68992A0F3931CAF0E685726A66557E8] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-I4CAK.tmp\uoxpm4rjxn1.tmp [888832] [PID.8316] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\Y6TIDG499P\Y6TIDG499.exe [1357824] [PID.7704] [Unsigned] =>Adware.Wizzcaster
[MD5.76981E52FCAD1682D421E0C8FAB420BB] - (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\wr41dc2g4gr\rspp3w3znsi.exe [1795023] [PID.8448] [Unsigned]
[MD5.C68992A0F3931CAF0E685726A66557E8] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-41AFB.tmp\rspp3w3znsi.tmp [888832] [PID.7800] [Unsigned]
[MD5.F969D89D78C1E80C9FF6D060BA3DB348] - (. - ProductUpdater.) -- C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [204272] [PID.8876] =>.INTERNET PROJECT LLC®
[MD5.F7593C18BE0493DF2BE3B3245545EB9C] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe [299520] [PID.5872] [Unsigned] =>.Advanced Micro Devices Inc.
[MD5.06DCDE310630A7E8BAB528168C29C7AF] - (.ATI Technologies Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe [299520] [PID.6828] [Unsigned] =>.ATI Technologies Inc.
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.2600] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.5456] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.5692] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.5256] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.3568] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.788] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.6816] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.6212] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.8956] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.8720] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.3384] =>.Google LLC®
[MD5.4FBBAF904E79698F7B39F709749A9E10] - (.TweakBit - PC Repair Kit.) -- C:\Program Files (x86)\TweakBit\PCRepairKit\PCRepairKit.exe [5887592] [PID.1496] =>.SUP.TweakBit
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.1980] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.432] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.7164] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.6308] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.7644] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.6956] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.7052] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.6132] =>.Google LLC®
[MD5.50BCD35AD44C038628EDF3FE0ED744B1] - (...) -- C:\Users\SON Y\AppData\Local\8a58578e-84f1-4edb-8536-07a697bd9ec0\B6B1.tmp.exe [829952] [PID.5580] [Unsigned] =>Adware.CrossRider
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.8996] =>.Google LLC®
[MD5.76981E52FCAD1682D421E0C8FAB420BB] - (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\1rmxf05f0qe\fhrpi2q2xsb.exe [1795023] [PID.8752] [Unsigned]
[MD5.C68992A0F3931CAF0E685726A66557E8] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-0TJ91.tmp\fhrpi2q2xsb.tmp [888832] [PID.9064] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\3HRE32X1UJ\3HRE32X1U.exe [1357824] [PID.9200] [Unsigned] =>Adware.Wizzcaster
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.3796] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.7256] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.9836] =>.Google LLC®
[MD5.76981E52FCAD1682D421E0C8FAB420BB] - (. - Bomba Setup.) -- C:\Users\SON Y\AppData\Roaming\1xns40ff1hs\jshhhr1xt3w.exe [1795023] [PID.8604] [Unsigned]
[MD5.C68992A0F3931CAF0E685726A66557E8] - (. - Setup/Uninstall.) -- C:\Users\SON Y\AppData\Local\Temp\is-OLC43.tmp\jshhhr1xt3w.tmp [888832] [PID.9880] [Unsigned]
[MD5.0459C45ED7B5974F5005E9BE3DB3B45E] - (.8D - 8DUJ34RYT.) -- C:\Program Files\QNA2VLKGZG\XQYPVOG0T.exe [1357824] [PID.9436] [Unsigned] =>Adware.Wizzcaster
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.9728] =>.Google LLC®
[MD5.5FC079F87ED93C7680E531EFC4801EA6] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1716720] [PID.8776] =>.Google LLC®
---\\ CHROME, Démarrage, Recherche, Extensions (15) - 3s
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [hikfjdigkaodnikkepcclccgpbokkmfe] Pop2Watch
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [inafjghmmkmiobijhbgkfekenbfbklhb] Bazz Search =>PUP.Optional.BazzSearch
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [SON Y][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [SON Y][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [SON Y][User Data\Default\Local Extension Settings] [hikfjdigkaodnikkepcclccgpbokkmfe]
G2 - GCE: Preference [SON Y][User Data\Default\Sync Extension Settings] [hikfjdigkaodnikkepcclccgpbokkmfe]
G2 - GCE: Preference [SON Y][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router}
---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (20) - 3s
P2 - EXT FILE: (.Legitimate.) -- C:\Program Files\Mozilla Firefox\browser\features\doh-rollout@mozilla.org.xpi [Unsigned]
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi [Unsigned] =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi [Unsigned] =>.Mozilla Corporation
P2 - EXT FILE: (.webcompat.com.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi [Unsigned] =>.webcompat.com
P2 - EXT FILE: (.webcompat.com.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi [Unsigned] =>.webcompat.com
P2 - EXT: (.Mozilla Official - Mozilla Official extension.) -- C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\extensions\{14553439-2741-4e9d-b474-784f336f58c9}
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\bookmarkbackups =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\browser-extension-data =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\crashes =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\datareporting =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\extensions =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\features =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\gmp =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\gmp-gmpopenh264 =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\gmp-widevinecdm =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\minidumps =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\saved-telemetry-pings =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\sessionstore-backups =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\storage =>Mozilla Corporation
C:\Users\SON Y\AppData\Roaming\Mozilla\Firefox\Profiles\45fm4u7t.default\browser-extension-data\etp-search-volume-study@shield.mozilla.org =>Hotspot
---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (19) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://%66%65%65%64.%68%65%6C%70%65%72%62%61%72.%63%6F%6D/? =>SUP.Optional.Linkury
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/? =>SUP.Optional.Linkury
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/? =>SUP.Optional.Linkury
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/? =>SUP.Optional.Linkury
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/? =>SUP.Optional.Linkury
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKEY_USERS\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/? =>SUP.Optional.Linkury
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.19301 (winblue_ltsb_escrow.190225-2000)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation
---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)
---\\ INTERNET EXPLORER,Proxy Management (5) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft
---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation
---\\ ÉTUDE DU FICHIER HOSTS (2) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (26)
~ Nombre lignes détournées ou corrompues 0/26 (Hosts file redirected or corrupted)
---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (2) - 1s
O2 - BHO: NitroPDF.IE.Sharepoint [64Bits] - {3BFAE61D-4A6D-4467-9E5E-FE5293D10F9F} . (.Nitro Software, Inc. - np_nitro_ie_active_doc.) -- C:\Program Files\Nitro\Pro\12\npnitroie.dll =>.Nitro Software, Inc.®
O2 - BHO: URLRedirectionBHO [64Bits] - {B4F3A835-0E21-4959-BA22-42B3008E02FF} . (.Microsoft Corporation - Microsoft Office Document Cache Handler.) -- C:\Program Files\Microsoft Office\root\Office16\URLREDIR.DLL =>.Microsoft®
---\\ RACCOURCIS GLOBAL STARTUP (102) - 30s
O4 - GS\Desktop [SON Y]: Adobe Animate CC 2015.lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Adobe Animate CC 2015\Animate.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - GS\Desktop [SON Y]: Adobe Illustrator CC (64 Bit).lnk . (.Adobe Systems Inc. - .) C:\Program Files (x86)\Adobe\Adobe Illustrator CC (64 Bit)\Support Files\Contents\Windows\Illustrator.exe [Unsigned] =>.Adobe Systems Inc.
O4 - GS\Desktop [SON Y]: Adobe InDesign CC (64 Bit).lnk . (.Adobe Systems Incorporated - .) C:\Program Files (x86)\Adobe\Adobe InDesign CC (64 bit)\InDesign.exe [Unsigned] =>.Adobe Systems Incorporated
O4 - GS\Desktop [SON Y]: Adobe Photoshop CC (64 Bit).lnk . (.Adobe Systems, Incorporated - .) C:\Program Files (x86)\Adobe\Adobe Photoshop CC (64 Bit)\Photoshop.exe [Unsigned] =>.Adobe Systems, Incorporated
O4 - GS\Desktop [SON Y]: CINEMA 4D.lnk . (.MAXON Computer GmbH - .) C:\Program Files (x86)\MAXON\CINEMA 4D R17\CINEMA 4D.exe [Unsigned] =>.MAXON Computer GmbH
O4 - GS\Desktop [SON Y]: DiskFixer.lnk . (...) C:\Program Files (x86)\DiskFixer\DiskFixer.exe [Unsigned] =>SUP.Optional.DiskPower
O4 - GS\Desktop [SON Y]: Garbage Cleaner.lnk . (...) C:\ProgramData\Garbage Cleaner\Garbage Cleaner.exe [Unsigned]
O4 - GS\Desktop [SON Y]: IsoBuster.lnk . (.Smart Projects - The Ultimate Data Recovery tool.) C:\Program Files (x86)\Smart Projects\IsoBuster\IsoBuster.exe [Unsigned] =>.Smart Projects
O4 - GS\Desktop [SON Y]: TweakBit PCRepairKit.lnk . (.TweakBit - PC Repair Kit.) C:\Program Files (x86)\TweakBit\PCRepairKit\PCRepairKit.exe =>.SUP.TweakBit
O4 - GS\Desktop [SON Y]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\SON Y\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Quicklaunch [SON Y]: Dev-C++.lnk . (...) C:\Dev-Cpp\devcpp.exe [Unsigned]
O4 - GS\Quicklaunch [SON Y]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe https://feed.helperbar.com =>PUP.Optional.Salus
O4 - GS\Quicklaunch [SON Y]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://feed.helperbar.com =>PUP.Optional.Salus
O4 - GS\Quicklaunch [SON Y]: VideoProc.lnk . (.Copyright 2018 Digiarty Software, Inc. - .) C:\Program Files (x86)\Digiarty\VideoProc\VideoProc.exe =>.Digiarty Software, Inc.®
O4 - GS\sendTo [SON Y]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation
O4 - GS\sendTo [SON Y]: IsoBuster.lnk . (.Smart Projects - The Ultimate Data Recovery tool.) C:\Program Files (x86)\Smart Projects\IsoBuster\IsoBuster.exe [Unsigned] =>.Smart Projects
O4 - GS\sendTo [SON Y]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\TaskBar [SON Y]: Adobe After Effects CS6.lnk . (.Adobe Systems Incorporated - Adobe After Effects CS6.) C:\Program Files\Adobe\Adobe After Effects CS6\Support Files\AfterFX.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [SON Y]: Adobe Flash Professional CS6.lnk . (.Adobe Systems Incorporated. - Adobe Flash CS6.) C:\Program Files (x86)\Adobe\Adobe Flash CS6\Flash.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [SON Y]: Adobe Premiere Pro CS6.lnk . (.Adobe Systems, Incorporated - Adobe Premiere Pro CS6.) C:\Program Files\Adobe\Adobe Premiere Pro CS6\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated®
O4 - GS\TaskBar [SON Y]: Excel 2016.lnk . (.Microsoft Corporation - Explorez, visualisez et partag.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\TaskBar [SON Y]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [SON Y]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe https://feed.helperbar.com =>PUP.Optional.Salus
O4 - GS\TaskBar [SON Y]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://feed.helperbar.com =>PUP.Optional.Salus
O4 - GS\TaskBar [SON Y]: PowerPoint 2016.lnk . (.Microsoft Corporation - Concevez et livrez facilement .) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\TaskBar [SON Y]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\TaskBar [SON Y]: Word 2016.lnk . (.Microsoft Corporation - Créez de magnifiques documents.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\Startup [SON Y]: IntelRapid.lnk . (...) C:\Users\SON Y\AppData\Roaming\Intel Rapid\IntelRapid.exe [Unsigned]
O4 - GS\Programs [SON Y]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://feed.helperbar.com =>PUP.Optional.Salus
O4 - GS\Programs [SON Y]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\SON Y\AppData\Local\Microsoft\OneDrive\OneDrive.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\CommonDesktop [Public]: Allok MOV Converter.lnk . (...) C:\Program Files (x86)\Allok MOV Converter\Allok MOV Converter.exe [Unsigned]
O4 - GS\CommonDesktop [Public]: BitComet.lnk . (.www.BitComet.com - BitComet - a BitTorrent Client.) C:\Program Files\BitComet\BitComet.exe =>.Xing Wang®
O4 - GS\CommonDesktop [Public]: Cuphead.lnk . (...) C:\GOG Games\Cuphead\Cuphead.exe [Unsigned]
O4 - GS\CommonDesktop [Public]: DAEMON Tools Pro.lnk . (.DT Soft Ltd - DAEMON Tools Pro.) C:\Program Files (x86)\DAEMON Tools Pro\DTPro.exe =>.Disc Soft Ltd®
O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Freemake Video Converter.lnk . (.Freemake - Freemake Video Converter.) C:\Program Files (x86)\Freemake\Freemake Video Converter\FreemakeVideoConverter.exe [Unsigned] =>.Freemake
O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe https://feed.helperbar.com =>PUP.Optional.Salus
O4 - GS\CommonDesktop [Public]: Minecraft Story Mode Season Two.lnk . (.Telltale Games - .) C:\Program Files\Minecraft Story Mode Season Two\Minecraft2.exe [Unsigned] =>.Telltale Games
O4 - GS\CommonDesktop [Public]: Nitro Pro.lnk . (.Nitro Software, Inc. - .) C:\Program Files (x86)\Nitro\Pro\12\NitroPDF.exe [Unsigned] =>.Nitro Software, Inc.
O4 - GS\CommonDesktop [Public]: QuickTime Player.lnk . (.Apple Inc. - QuickTime Player.) C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe =>.Apple Inc.®
O4 - GS\CommonDesktop [Public]: VideoProc.lnk . (.Copyright 2018 Digiarty Software, Inc. - .) C:\Program Files (x86)\Digiarty\VideoProc\VideoProc.exe =>.Digiarty Software, Inc.®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\CommonDesktop [Public]: WinThruster.lnk . (.Solvusoft - WinThruster.) C:\Program Files (x86)\WinThruster\WinThruster.exe [Unsigned] =>SUP.Optional.WinThruster
O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files\Internet Explorer\iexplore.exe https://feed.helperbar.com =>PUP.Optional.Salus
O4 - GS\Programs [Public]: Microsoft OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\SON Y\AppData\Local\Microsoft\OneDrive\OneDrive.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe -extoff =>.Microsoft Corporation®
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut [Unsigned] =>..Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s [Unsigned] =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Access 2016.lnk . (.Microsoft Corporation - Créez rapidement une applicati.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - Créez rapidement une applicati.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Adobe Animate CC 2015.lnk . (.Adobe Systems Incorporated - Adobe Animate CC 2015.1.) C:\Program Files\Adobe\Adobe Animate CC 2015\Animate.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Application Manager.lnk . (.Adobe Systems Incorporated - Adobe Application Manager.) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDapp.exe --appletID=CCM_UI --appletVersion=1.0 --workflow=CCM_workflow_launch =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Illustrator CC (64 Bit).lnk . (.Adobe Systems Inc. - Adobe Illustrator CC.) C:\Program Files\Adobe\Adobe Illustrator CC (64 Bit)\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe InDesign CC (64 Bit).lnk . (.Adobe Systems Incorporated - Adobe InDesign CC.) C:\Program Files\Adobe\Adobe InDesign CC (64 bit)\InDesign.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Media Encoder CC.lnk . (.Adobe Systems, Incorporated - Adobe Media Encoder CC.) C:\Program Files\Adobe\Adobe Media Encoder CC\Adobe Media Encoder.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Adobe Photoshop CC (64 Bit).lnk . (.Adobe Systems, Incorporated - Adobe Photoshop CC.) C:\Program Files\Adobe\Adobe Photoshop CC (64 Bit)\Photoshop.exe =>.Adobe Systems Incorporated®
O4 - GS\ProgramsCommon [Public]: Apple Software Update.lnk . (...) C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\AppleSoftwareUpdateIco.exe [Unsigned] =>.Apple Inc.
O4 - GS\ProgramsCommon [Public]: Excel 2016.lnk . (.Microsoft Corporation - Explorez, visualisez et partag.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Explorez, visualisez et partag.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe https://feed.helperbar.com =>PUP.Optional.Salus
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Minecraft Story Mode Season Two.lnk . (.Telltale Games - .) C:\Program Files\Minecraft Story Mode Season Two\Minecraft2.exe [Unsigned] =>.Telltale Games
O4 - GS\ProgramsCommon [Public]: Nitro Pro.lnk . (.Nitro Software, Inc. - .) C:\Program Files (x86)\Nitro\Pro\12\NitroPDF.exe [Unsigned] =>.Nitro Software, Inc.
O4 - GS\ProgramsCommon [Public]: Outlook 2016.lnk . (.Microsoft Corporation - Gérez vos messages électroniqu.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: PowerPoint 2016.lnk . (.Microsoft Corporation - Concevez et livrez facilement .) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Concevez et livrez facilement .) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Publisher 2016.lnk . (.Microsoft Corporation - Créez des publications profess.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - Créez des publications profess.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) C:\Windows\system32\WindowsAnytimeUpgradeUI.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Word 2016.lnk . (.Microsoft Corporation - Créez de magnifiques documents.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Créez de magnifiques documents.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe [Unsigned] =>.Microsoft Corporation
---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{331B0686-F941-4685-82AE-7C43847E26B6}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
---\\ PROTOCOLE ADDITIONNEL (25) - 3s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft®
O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft®
O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft®
O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft®
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft®
---\\ REGISTRE AppInit_DLLs et Winlogon Notify (2) - 0s
O20 - AppInit_DLLs: . (...) - C:\ProgramData\Voyasollam\Conity.dll
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation
---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (10) - 3s
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Microsoft(C) Register Server.) -- C:\Windows\System32\regsvr32.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Enable TLS1.1 and 1.2 [64Bits] - {66C64F22-FC60-4E6C-A6B5-F0D580E680CE} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Disable SSL3 [64Bits] - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\73.0.3683.86\Installer\chrmstp.exe =>.Google LLC®
---\\ LOGICIELS INSTALLÉS (113) - 69s
O42 - Logiciel: Adobe Animate CC 2015 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {8CEBC11D-C52F-11E5-A0D6-D44AB5E81A82} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Creative Suite 6 Master Collection - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {E8AD3069-9EB7-4BA8-8BFE-83F4E69355C0} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Illustrator CC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {F2321021-08A2-44D6-B1DF-BDB415F23EC3} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe InDesign CC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BC448016-6F11-1014-B0EA-97CEE6E26CB6} =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Photoshop CC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {2D99B50E-431D-4AA8-85C1-172A6F8BCF09} =>.Adobe Systems Incorporated®
O42 - Logiciel: Advanced Archive Password Recovery - (.Elcomsoft Co. Ltd..) [HKLM][64Bits] -- {6E356EEF-203C-451B-9144-CBF099E3738A} [Unsigned] =>.ElcomSoft Co. Ltd.
O42 - Logiciel: Allok MOV Converter 4.6.1217 - (.Allok Soft Inc..) [HKLM][64Bits] -- Allok MOV Converter_is1 [Unsigned] =>.Allok Soft Inc.
O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {1E3B67A5-19FC-422C-4730-EE53221659AE} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: AMD Catalyst Control Center - (.ATI Technologies.) [HKLM][64Bits] -- {DE5AE4C4-D7FA-3923-A22D-5552744FA3F0} [Unsigned] =>.ATI Technologies (Hidden)
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {CF0C560C-590C-CFB5-DD57-AF2487E2BAA6} [Unsigned] =>.Advanced Micro Devices, Inc.
O42 - Logiciel: AMD Wireless Display v3.0 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {AA8EBE66-CB9C-58A5-29CB-B2FF7A668513} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: Apple Application Support - (.Apple Inc..) [HKLM][64Bits] -- {46F044A5-CE8B-4196-984E-5BD6525E361D} [Unsigned] =>.Apple Inc.
O42 - Logiciel: Apple Software Update - (.Apple Inc..) [HKLM][64Bits] -- {789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE} [Unsigned] =>.Apple Inc.
O42 - Logiciel: Atomic SMS 6.10.0.75 - (.AtomPark Software Inc..) [HKLM][64Bits] -- AtomicSMS_is1 [Unsigned] =>.AtomPark Software Inc.
O42 - Logiciel: BitComet 1.64 - (.CometNetwork.) [HKLM][64Bits] -- BitComet_x64 [Unsigned] =>.CometNetwork
O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {11087D24-567D-7D88-69C6-D7A08B5F4C47} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: Catalyst Control Center Graphics Previews Common - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {1A7C50CF-9A6E-57EF-745E-79DE55908644} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: Catalyst Control Center Localization All - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F656B3F2-1527-BF2E-62F0-9E6062DDFF86} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Chinese Standard - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F14ED0CE-BBEF-7E3F-C8CB-23CE9B3AB8E0} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Chinese Traditional - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {FE21AAE3-DEF6-B5B3-9159-101D3F186067} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Czech - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {C8710425-D145-078B-C1C5-08F887684688} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Danish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {1C07D6C4-F263-CB0C-CB88-726AD3DDCD6E} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Dutch - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {3C214233-EEE6-8123-7010-8288B33FA7A7} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help English - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {C269DFAD-8822-A3A0-ED77-63CB40714B39} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Finnish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {DBEF0A5C-6437-451F-4E49-FD456F43B374} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help French - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {E332EE99-9FE1-9B63-BB57-2A03B5D5F68E} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help German - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {14D4B72B-7AA6-523D-169E-3B04A4C8D9CA} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Greek - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {DFE15DE6-D1D5-376C-308A-5FEDC2E0FED1} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Hungarian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {89BC42FC-55D4-97E6-9C14-5D90BD168B73} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Italian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {AC88E874-6050-6A9E-D64E-11D30FFE5C7E} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Japanese - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {4AB6F008-CC86-E752-95C7-B5A3638DE12D} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Korean - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7461D7B1-C942-38E5-34E6-52A5BE84D7E1} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Norwegian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {64CD5813-AC17-C4E2-6DE1-E600B2AA2F22} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Polish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {05836408-8AAD-EEFE-15C3-ECDEFD7C1AE0} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Portuguese - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {83DA9014-29F2-4A57-1EED-2E7B21CC2845} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Russian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {602AC549-92F2-BEC8-85EF-B4A7D738DC4C} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Spanish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {706354D0-AEA7-C6C3-D224-E2C6D6049E1B} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Swedish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {682976FE-4B88-6A71-940F-5C9B6A761342} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Thai - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {B5107933-6F60-E81D-E47E-1EDE520ED734} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CCC Help Turkish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {818A39F5-B701-34FC-FEA2-021F38E4ED40} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden)
O42 - Logiciel: CINEMA 4D 17.016 - (.MAXON Computer GmbH.) [HKLM][64Bits] -- MAXONFC68216F =>.MAXON Computer GmbH®
O42 - Logiciel: Cuphead - (.GOG.com.) [HKLM][64Bits] -- 1963513391_is1 [Unsigned] =>.GOG.com
O42 - Logiciel: DAEMON Tools Pro - (.DT Soft Ltd.) [HKLM][64Bits] -- DAEMON Tools Pro [Unsigned] =>.DT Soft Ltd
O42 - Logiciel: Dev-C++ 5 beta 9 release (4.9.9.2) - (..) [HKLM][64Bits] -- Dev-C++ [Unsigned]
O42 - Logiciel: DiskFixer version 1.0 - (.MyAppsLand.) [HKLM][64Bits] -- DiskFixer_is1 [Unsigned] =>SUP.Optional.DiskFixer
O42 - Logiciel: DreamTrips version 2.12 - (.DreamTrips Inc.) [HKLM][64Bits] -- {13E374E4-E610-4F9E-ACC4-E461DA17D869}_is1 [Unsigned]
O42 - Logiciel: Freemake Video Converter version 4.1.10 - (.Ellora Assets Corporation.) [HKLM][64Bits] -- Freemake Video Converter_is1 [Unsigned] =>.Ellora Assets Corporation
O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google LLC®
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} [Unsigned] =>.Google Inc. (Hidden)
O42 - Logiciel: Intel(R) C++ Redistributables on Intel(R) 64 - (.Intel Corporation.) [HKLM][64Bits] -- {F70BCE36-25F2-4475-A918-6209B3D85BF3} [Unsigned] =>.Intel Corporation
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel Corporation - pGFX®
O42 - Logiciel: IsoBuster 4.2 - (.Smart Projects.) [HKLM][64Bits] -- IsoBuster_is1 =>.Smart Projects®
O42 - Logiciel: K-Lite Mega Codec Pack 14.9.0 - (.KLCP.) [HKLM][64Bits] -- KLiteCodecPack_is1 [Unsigned] =>.KLCP
O42 - Logiciel: Main service - (..) [HKLM][64Bits] -- {EF758C50-5FA2-4B0A-86D3-8B65B176BC53} [Unsigned] =>Trojan.CrthRazy
O42 - Logiciel: Main service - (..) [HKLM][64Bits] -- {EF758C50-5FA2-4B0A-86D3-8B65B176BC53} [Unsigned]
O42 - Logiciel: Microsoft .NET Framework 4.7.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {09CCBE8E-B964-30EF-AE84-6537AB4197F9} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.7.2 - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft .NET Framework 4.7.2 (FRA) - (.Microsoft Corporation.) [HKLM][64Bits] -- {5E61A89C-903E-3EA0-9785-E3C60AFBEEBE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.7.2 (Français) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Office Professionnel Plus 2016 - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- ProplusRetail - fr-fr =>.Microsoft®
O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable (x64) - (.Microsoft Corporation.) [HKLM][64Bits] -- {ad8a2fa1-06e7-4b0d-927d-6e54b3d31028} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 - (.Microsoft Corporation.) [HKLM][64Bits] -- {323dad84-0974-4d90-a1c1-e006c7fdbb7d} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 - (.Microsoft Corporation.) [HKLM][64Bits] -- {462f63a8-6347-4894-a1b3-dbfe3a4c981d} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24212 - (.Microsoft Corporation.) [HKLM][64Bits] -- {844ECB74-9B63-3D5C-958C-30BD23F19EE4} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24212 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B55901-995A-3650-80B1-BBFD047E2911} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27027 - (.Microsoft Corporation.) [HKLM][64Bits] -- {fd9b6070-d13e-45dc-819b-41806bf45b6b} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2017 X64 Additional Runtime - 14.16.27024 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9D29FC96-9EEE-4253-943F-96B3BBFDD0B6} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2017 X64 Minimum Runtime - 14.16.27024 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F1B0FB3A-E0EA-47A6-9383-3650655403B0} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft_VC80_CRT_x86 - (.Adobe.) [HKLM][64Bits] -- {92D58719-BBC1-4CC3-A08B-56C9E884CC2C} [Unsigned] =>.Adobe (Hidden)
O42 - Logiciel: Microsoft_VC90_CRT_x86 - (.Adobe.) [HKLM][64Bits] -- {08D2E121-7F6A-43EB-97FD-629B44903403} [Unsigned] =>.Adobe (Hidden)
O42 - Logiciel: Minecraft: Story Mode - Season Two Episode 1 - (.Microsoft Corporation.) [HKLM][64Bits] -- bWluZWNyYWZ0c3Rvcnltb2Rlc2Vhc29udHdv_is1 [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Mozilla Firefox 72.0.2 (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 72.0.2 (x64 fr) [Unsigned] =>.Mozilla
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla
O42 - Logiciel: Nitro Pro - (.Nitro.) [HKLM][64Bits] -- {54EAD36A-9184-4022-A2D9-FCD5B598EF61} [Unsigned] =>.Nitro
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-007E-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: PDF Settings CC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {1FBAE18D-4DE4-47AA-83EC-D1B046F262DC} [Unsigned] =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: PDF Settings CS6 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {BFEAAE77-BD7F-4534-B286-9C5CB4697EB1} [Unsigned] =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: QuickTime 7 - (.Apple Inc..) [HKLM][64Bits] -- {FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime
O42 - Logiciel: RAR Password Cracker - (.dnSoft Research Group.) [HKLM][64Bits] -- RAR Password Cracker [Unsigned] =>.dnSoft Research Group
O42 - Logiciel: SafeFinder - (.Linkury.) [HKLM][64Bits] -- {199ECB6E-D9EE-40F3-8064-EC349207F4AC} [Unsigned] =>PUP.Optional.SmartBar
O42 - Logiciel: Tablette Wacom - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom Tablet Driver =>.Wacom Technology Corp.®
O42 - Logiciel: TweakBit PCRepairKit - (.Tweakbit Pty Ltd.) [HKLM][64Bits] -- {5AEA8CFE-B238-4D0A-9362-D55F38ECB795}_is1 =>.SUP.TweakBit
O42 - Logiciel: Update for Microsoft .NET Framework 4.7.2 (KB4087364) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB4087364 =>.Microsoft Corporation®
O42 - Logiciel: VideoProc - (.Digiarty, Inc..) [HKLM][64Bits] -- VideoProc =>.Digiarty Software, Inc.®
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: WallpaperSuite - (.WallpaperSuite.) [HKCU][64Bits] -- WallpaperSuite [Unsigned] =>.SUP.WallpaperHD
O42 - Logiciel: WebTablet FB Plugin 32 bit - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom WebTabletPlugin for Internet Explorer and Netscape [Unsigned] =>.Wacom Technology Corp.
O42 - Logiciel: WebTablet FB Plugin 64 bit - (.Wacom Technology Corp..) [HKLM][64Bits] -- Wacom WebTabletPlugin for Internet Explorer and Netscape [Unsigned] =>.Wacom Technology Corp.
O42 - Logiciel: WinPcap 4.1.2 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst [Unsigned] =>.CACE Technologies
O42 - Logiciel: WinRAR 5.50 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
O42 - Logiciel: WinThruster - (.Solvusoft.) [HKLM][64Bits] -- WinThruster_is1 {00A8E25B7B7EC8BFB087B6684588C4BF42}. =>SUP.Optional.WinThruster
O42 - Logiciel: wotsuper 2.1 - (.wotsuper.) [HKLM][64Bits] -- wotsuper 2.1 [Unsigned]
---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (160) - 69s
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\Software\csastats =>Adware.InstallCore
HKCU\Software\GCleaner =>.SUP.Various
HKCU\Software\csastats =>Adware.InstallCore
HKLM\SOFTWARE\Wow6432Node\Machiner =>Trojan.CrthRazy
HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EF758C50-5FA2-4B0A-86D3-8B65B176BC53} =>Trojan.CrthRazy
HKLM\SOFTWARE\Adobe =>.Adobe
HKLM\SOFTWARE\AMD =>.AMD
HKLM\SOFTWARE\ATI =>.ATI
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\CBSTEST =>.CBS Test
HKLM\SOFTWARE\Disc Soft =>.Disc Soft
HKLM\SOFTWARE\GNU =>.GNU
HKLM\SOFTWARE\Icaros =>.Icaros
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\MAXON Installer
HKLM\SOFTWARE\Minnetonka Audio Software =>.Minnetonka Audio Software
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nitro =>.Nitro
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\Sonic =>.Sonic
HKLM\SOFTWARE\Synaptics =>.Synaptics
HKLM\SOFTWARE\Wacom =>.Wacom
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\Apple Computer, Inc. =>.Apple Computer, Inc.
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\ATI =>.ATI
HKLM\SOFTWARE\WOW6432Node\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\WOW6432Node\Dev-C++
HKLM\SOFTWARE\WOW6432Node\DT Soft =>.DT Soft Ltd
HKLM\SOFTWARE\WOW6432Node\ElcomSoft =>.Elcomsoft
HKLM\SOFTWARE\WOW6432Node\Freemake =>.Freemake
HKLM\SOFTWARE\WOW6432Node\GNU =>.GNU
HKLM\SOFTWARE\WOW6432Node\GOG.com =>.GOG.com
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Icaros =>.Icaros
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\KLCodecPack =>.KLite Inc
HKLM\SOFTWARE\WOW6432Node\LAV =>.LAV Inc
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\mtVoyasollam
HKLM\SOFTWARE\WOW6432Node\Nalpeiron =>.Nalpeiron
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\RAR Password Cracker =>.DNSoft
HKLM\SOFTWARE\WOW6432Node\Smart Projects =>.Smart Projects
HKLM\SOFTWARE\WOW6432Node\TweakBit =>.SUP.TweakBit
HKLM\SOFTWARE\WOW6432Node\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\WOW6432Node\VideoProc
HKLM\SOFTWARE\WOW6432Node\Wacom =>.Wacom
HKLM\SOFTWARE\WOW6432Node\WinPcap =>.Riverbed Technology
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Adobe =>.Adobe
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\ATI =>.ATI
HKCU\SOFTWARE\BitComet =>.BitComet (P2P)
HKCU\SOFTWARE\BitTorrentPersist
HKCU\SOFTWARE\BugSplat =>.Bugsplat Game
HKCU\SOFTWARE\Cello
HKCU\SOFTWARE\Disc Soft =>.Disc Soft
HKCU\SOFTWARE\DreamTrips
HKCU\SOFTWARE\DT Soft =>.DT Soft Ltd
HKCU\SOFTWARE\ElcomSoft =>.Elcomsoft
HKCU\SOFTWARE\Freemake =>.Freemake
HKCU\SOFTWARE\Gabest =>.Gabest
HKCU\SOFTWARE\GNU =>.GNU
HKCU\SOFTWARE\GOG.com =>.GOG.com
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Icaros =>.Icaros
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\Inter VPN
HKCU\SOFTWARE\Look Ahead
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\madshi =>.madshi.net
HKCU\SOFTWARE\MC4D =>.Magic Cube 4D
HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team
HKCU\SOFTWARE\mtVoyasollam
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\Nitro =>.Nitro
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\Opera Stable Offer =>.Opera Software
HKCU\SOFTWARE\PACE Anti-Piracy =>.PACE Anti-Piracy
HKCU\SOFTWARE\Picture
HKCU\SOFTWARE\Pulsar
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\RAR Password Cracker =>.DNSoft
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Rtp =>.RTP Software
HKCU\SOFTWARE\Smart Projects =>.Smart Projects
HKCU\SOFTWARE\Studio MDHR =>.Pinnacle Systems, Inc.
HKCU\SOFTWARE\Wacom =>.Wacom
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKU\.DEFAULT\SOFTWARE\ATI =>.ATI
HKU\.DEFAULT\SOFTWARE\Wacom =>.Wacom
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Adobe =>.Adobe
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Apple Computer, Inc. =>.Apple Computer, Inc.
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\ATI =>.ATI
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\BitComet =>.BitComet (P2P)
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\BitTorrentPersist
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\BugSplat =>.Bugsplat Game
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Cello
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Disc Soft =>.Disc Soft
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\DreamTrips
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\DT Soft =>.DT Soft Ltd
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\ElcomSoft =>.Elcomsoft
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Freemake =>.Freemake
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Gabest =>.Gabest
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\GCleaner =>.SUP.Various
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\GNU =>.GNU
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\GOG.com =>.GOG.com
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Google =>.Google
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Icaros =>.Icaros
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Inter VPN
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Look Ahead
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\madshi =>.madshi.net
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\MC4D =>.Magic Cube 4D
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\MediaInfo =>.Jérôme Martinez
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\MPC-HC =>.MPC-HC Team
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\mtVoyasollam
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Nitro =>.Nitro
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Opera Software =>.Opera Software
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Opera Stable Offer =>.Opera Software
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\PACE Anti-Piracy =>.PACE Anti-Piracy
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Picture
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Pulsar
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\RAR Password Cracker =>.DNSoft
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Rtp =>.RTP Software
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Smart Projects =>.Smart Projects
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Studio MDHR =>.Pinnacle Systems, Inc.
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Wacom =>.Wacom
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\SOFTWARE\ZHP =>.Nicolas Coolman
---\\ CONTENU DES DOSSIERS PROGRAMMES (323) - 45s
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\0BT549N0PG [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\137NHPD3XQ [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\1WWBZTX9VS [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\25T7F4SLP3 [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\3S0RXG9K5V [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\5SQSAG46WC [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\6RKQX9KH3Y [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\90N3QFVFUI [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\9UCQLJA5HO [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files\AMD =>.Advanced Micro Devices, Inc.®
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\BitComet =>.BitComet (P2P)
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\CCWS4NRA5W [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 04/02/2019 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\DO0H8YU9C9 [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 28/03/2019 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 03/02/2019 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\GEUCJR02ZX [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\GRS62WUPAE [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\H2VRKB2ZOR [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\HBNS1REN16 [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 28/03/2019 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\K4TGYJ2MLY [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\LWHD8534HW =>.Games Software
O43 - CFD: 11/03/2019 - [] D -- C:\Program Files\MAXON =>.MAXON Computer GmbH®
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\MID7KWMLIR [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 17/02/2020 - [] D -- C:\Program Files\Minecraft Story Mode Season Two =>.Mojang
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files\Nitro =>.Nitro
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\OXLHWCOHI0 [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\RHOECT1B43 [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\SVTTOP6LJY [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files\Synaptics =>.Synaptics
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\T86BY4J654 [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 24/03/2019 - [] D -- C:\Program Files\Tablet =>.Wacom Technology Corp.®
O43 - CFD: 24/03/2019 - [] D -- C:\Program Files\TabletPlugins =>.Wacom Technology
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files\WG5QTELCY7 [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 09/03/2016 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 30/03/2019 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 22/04/2019 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\Y6TIDG499P [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 22/04/2019 - [] D -- C:\Program Files (x86)\Allok MOV Converter [Unsigned]
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\AMD [Unsigned] =>.AMD
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\AMD AVT =>.Advanced Micro Devices Inc
O43 - CFD: 17/07/2019 - [] D -- C:\Program Files (x86)\Apple Software Update =>.Apple Inc.
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\AtomPark [Unsigned] =>.AtomPark
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files (x86)\DAEMON Tools Pro =>.The DAEMON Team
O43 - CFD: 22/04/2019 - [] D -- C:\Program Files (x86)\Digiarty =>.Digiarty Software, Inc.®
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\DiskFixer [Unsigned] =>SUP.Optional.DiskFixer
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\DreamTrips =>.Ashampoo GmbH & Co. KG® =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\Elcomsoft =>.Elcomsoft
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\Elcomsoft Password Recovery =>.Elcomsoft Co. Ltd.
O43 - CFD: 22/04/2019 - [] D -- C:\Program Files (x86)\Freemake =>.Freemake
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\Google [Unsigned] =>.Google
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\Group [Unsigned]
O43 - CFD: 28/03/2019 - [] D -- C:\Program Files (x86)\GUM5230.tmp =>.Google Inc®
O43 - CFD: 03/02/2019 - [0] D -- C:\Program Files (x86)\GUMC0FF.tmp
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files (x86)\InterVpn {274396EE3346CEA0ED5278A0}.
O43 - CFD: 21/04/2019 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files (x86)\MachinerData [Unsigned] =>Trojan.CrthRazy
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 18/02/2020 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\Nitro =>.Nitro
O43 - CFD: 22/04/2019 - [] D -- C:\Program Files (x86)\QuickTime =>.Apple Inc.® =>Riskware.QuickTime
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\RAR Password Cracker =>.DNSoft
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\Seed Trade [Unsigned]
O43 - CFD: 11/03/2019 - [] D -- C:\Program Files (x86)\Smart Projects [Unsigned] =>.Smart Projects
O43 - CFD: 24/03/2019 - [] D -- C:\Program Files (x86)\TabletPlugins =>.Wacom Technology
O43 - CFD: 21/03/2019 - [] D -- C:\Program Files (x86)\TweakBit =>.SUP.TweakBit
O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 21/04/2019 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team
O43 - CFD: 21/03/2019 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 30/03/2019 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 15/03/2019 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 24/03/2019 - [] D -- C:\Program Files (x86)\WinThruster [Unsigned] =>SUP.Optional.WinThruster
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\wotsuper [Unsigned]
O43 - CFD: 03/02/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 03/02/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Master Collection CS6
O43 - CFD: 22/04/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Allok MOV Converter
O43 - CFD: 03/02/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center =>.Advanced Micro Devices Inc
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AtomPark =>.AtomPark
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BitComet (64-bit) =>.BitComet (P2P)
O43 - CFD: 21/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloodshed Dev-C++ =>.Bloodshed Software
O43 - CFD: 08/03/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro =>.The DAEMON Team
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DreamTrips =>Adware.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Elcomsoft Password Recovery =>.Elcomsoft Co. Ltd.
O43 - CFD: 22/04/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake =>.Freemake
O43 - CFD: 09/03/2016 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 17/02/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com =>.GOG.com
O43 - CFD: 11/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IsoBuster =>.Peter Van Hove
O43 - CFD: 21/04/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 11/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAXON =>.Maxon
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 =>.Microsoft Corporation
O43 - CFD: 22/04/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 24/03/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablette Wacom =>.Wacom Technology
O43 - CFD: 21/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TweakBit =>.SUP.TweakBit
O43 - CFD: 21/04/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 22/04/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoProc
O43 - CFD: 03/02/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 21/03/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinThruster =>SUP.Optional.WinThruster
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\03NQX9NMRLE7PF09U9O5RTHIZ
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\1P705UW8A5SRSJHP7QPYBE6AY
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\2OWI1QIQQZS8022847NZ2M7RT
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\37471I6C20F2AFAXPERQ1NEMH
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\7LUKEK7Y7Q20URN5LYIXSWJFN
O43 - CFD: 03/02/2019 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 03/02/2019 - [0] D -- C:\ProgramData\ALM =>.ALM
O43 - CFD: 03/02/2019 - [] D -- C:\ProgramData\AMD =>.AMD
O43 - CFD: 22/04/2019 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 22/04/2019 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\ProgramData\ATI =>.ATI
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\AV8YCS1WBLVT9VDN0G6UAVXG6
O43 - CFD: 08/03/2020 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\BN2X21EP77QAHLMYQNZVZTCHK
O43 - CFD: 03/02/2019 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\CloudPrinter =>SUP.Optional.Linkury
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 08/03/2020 - [] D -- C:\ProgramData\DAEMON Tools Pro =>.The DAEMON Team
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\Elcomsoft Password Recovery =>.Elcomsoft Co. Ltd.
O43 - CFD: 03/02/2019 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 22/04/2019 - [] D -- C:\ProgramData\Freemake =>.Freemake
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\Garbage Cleaner =>.SUP.Various
O43 - CFD: 17/02/2020 - [] D -- C:\ProgramData\GOG.com =>.GOG.com
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\ILPRB0PM4Z4DUC9A6B0BJB4PZ
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\IVVI1VARF42LYGW131Q90L0FY
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\JQ8H6Z0RC769L8KRACL2XWV6I
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\Logic Cramble =>PUP.Optional.LogicHandler
O43 - CFD: 03/02/2019 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 04/02/2019 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 03/03/2019 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 08/03/2020 - [0] D -- C:\ProgramData\Newfol
O43 - CFD: 03/02/2019 - [] D -- C:\ProgramData\Nitro =>.Nitro
O43 - CFD: 08/03/2020 - [0] D -- C:\ProgramData\Oded
O43 - CFD: 24/03/2019 - [] D -- C:\ProgramData\Office Genuine Advantage =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\ProgramData\PACE Anti-Piracy =>.PACE Anti-Piracy
O43 - CFD: 24/03/2019 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\PU2O09WWWCD7AKGPU4THFWNRS
O43 - CFD: 03/02/2019 - [] D -- C:\ProgramData\regid.1986-12.com.adobe =>.Adobe Inc.
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\RWVCM7U5CWGAM52YFQ4VY6E4M
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 17/02/2020 - [] D -- C:\ProgramData\Steam =>.Steam Games
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\T44KQ7SMTI2IK228K6C2558C2
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\TTXTAECH67DLXLDTT7D9Z9O36
O43 - CFD: 21/03/2019 - [] D -- C:\ProgramData\TweakBit =>.SUP.TweakBit
O43 - CFD: 08/03/2020 - [] D -- C:\ProgramData\Voyasollam
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\Voyasollams
O43 - CFD: 07/03/2020 - [] D -- C:\ProgramData\YZG01DL3QYR00BIHAE83WM3SZ
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe
O43 - CFD: 22/04/2019 - [] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc.
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies =>.ATI Technologies
O43 - CFD: 22/04/2019 - [] D -- C:\Program Files (x86)\Common Files\Freemake Shared =>.Ellora Assets Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\Program Files (x86)\Common Files\Indigo-Fax
O43 - CFD: 11/03/2019 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 09/03/2016 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\1axegremb5v =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\250tsdloab5 =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\3h1hsjvvlmt =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\3uzutdmgyix =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\4p0xe0vng3o =>Heuristic.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\4qxi4aq5gmx =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\53puerifkmu =>Heuristic.Wizzcaster
O43 - CFD: 28/07/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\AMD =>.AMD
O43 - CFD: 11/05/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\ATI =>.ATI
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\BitComet =>.BitComet (P2P)
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\ciurfo1cwyc =>Heuristic.Wizzcaster
O43 - CFD: 17/02/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\Cuphead
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\DAEMON Tools Lite =>.DAEMON Tools
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\DAEMON Tools Pro =>.The DAEMON Team
O43 - CFD: 21/03/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Dev-Cpp =>.Dev-Cpp
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\ef3ix00vvq3 =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\gllgwganqrk =>Heuristic.Wizzcaster
O43 - CFD: 09/02/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Google =>.Google
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Identities =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\Intel Rapid =>Trojan.MalPack
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\j0aons5hos5 =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\jytmnj44aec =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\l5o2hp0uxpx =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\lpviewa4apc =>Heuristic.Wizzcaster
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 02/08/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\MAXON =>.Maxon
O43 - CFD: 07/03/2020 - [] SD -- C:\Users\SON Y\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 03/03/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 21/04/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\MPC-HC =>.MPC-HC Team
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\mxv3y0tdljc =>Heuristic.Wizzcaster
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Nitro =>.Nitro
O43 - CFD: 08/03/2020 - [0] D -- C:\Users\SON Y\AppData\Roaming\Opera Software =>.Opera Software
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\PACE Anti-Piracy =>.PACE Anti-Piracy
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\pdg1e4d5l0q =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\pptd0gmq1af =>Heuristic.Wizzcaster
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\rsqdrxnmer0 =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\sdage2ugcyw =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\serkknppj1w =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\uhky0lxujx3 =>Heuristic.Wizzcaster
O43 - CFD: 22/04/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\VideoProc
O43 - CFD: 22/04/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 08/03/2020 - [0] D -- C:\Users\SON Y\AppData\Roaming\VP
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Windows_Activator
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 21/03/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\WinThruster =>SUP.Optional.WinThruster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\wr41dc2g4gr =>Heuristic.Wizzcaster
O43 - CFD: 24/03/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\WTablet =>.Wacom Technology
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\wykfgawnimn =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\z0mr5dkkzrt =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 03/02/2019 - [] HD -- C:\Users\SON Y\AppData\Local\16EL2tVRidlQKk
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\AppData\Local\8a58578e-84f1-4edb-8536-07a697bd9ec0
O43 - CFD: 17/03/2019 - [] D -- C:\Users\SON Y\AppData\Local\Adobe =>.Adobe
O43 - CFD: 22/04/2019 - [] D -- C:\Users\SON Y\AppData\Local\Apple =>.Apple Inc.
O43 - CFD: 22/04/2019 - [] D -- C:\Users\SON Y\AppData\Local\Apple Computer =>.Apple Inc.
O43 - CFD: 03/02/2019 - [0] SHD -- C:\Users\SON Y\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Local\Apps =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Local\ATI =>.ATI
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Local\CEF =>.CEF
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Local\d595816a-c5b1-446f-9460-9d25909d6f56
O43 - CFD: 03/02/2019 - [0] D -- C:\Users\SON Y\AppData\Local\Deployment =>.Microsoft Corporation
O43 - CFD: 29/12/2019 - [0] D -- C:\Users\SON Y\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 17/02/2020 - [] D -- C:\Users\SON Y\AppData\Local\Disc_Soft_Ltd =>.Disc Soft Ltd
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Local\Downloaded Installations =>.Microsoft Corporation
O43 - CFD: 24/03/2019 - [0] D -- C:\Users\SON Y\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 22/04/2019 - [] D -- C:\Users\SON Y\AppData\Local\FreemakeVideoConverter =>.Freemake
O43 - CFD: 04/02/2019 - [] D -- C:\Users\SON Y\AppData\Local\Google =>.Google
O43 - CFD: 03/02/2019 - [0] SHD -- C:\Users\SON Y\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 03/04/2019 - [] D -- C:\Users\SON Y\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 03/03/2019 - [] D -- C:\Users\SON Y\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Local\MSfree Inc =>HackTool.WinActivator
O43 - CFD: 08/03/2020 - [0] D -- C:\Users\SON Y\AppData\Local\Opera Software =>.Opera Software
O43 - CFD: 03/02/2019 - [0] D -- C:\Users\SON Y\AppData\Local\PACE Anti-Piracy =>.PACE Anti-Piracy
O43 - CFD: 17/02/2020 - [] D -- C:\Users\SON Y\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [0] SHD -- C:\Users\SON Y\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 24/03/2019 - [] D -- C:\Users\SON Y\AppData\Local\Wacom =>.Wacom
O43 - CFD: 18/02/2020 - [] D -- C:\Users\SON Y\AppData\Local\WallpaperSuite =>.SUP.WallpaperHD
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 11/03/2019 - [0] D -- C:\Users\SON Y\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Local\Programs\Opera =>.Opera Software
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\LocalLow\Adobe =>.Adobe
O43 - CFD: 22/04/2019 - [] D -- C:\Users\SON Y\AppData\LocalLow\Apple Computer =>.Apple Inc.
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 17/02/2020 - [0] D -- C:\Users\SON Y\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 03/03/2020 - [] D -- C:\Users\SON Y\AppData\LocalLow\Nitro =>.Nitro
O43 - CFD: 05/03/2019 - [0] D -- C:\Users\SON Y\AppData\LocalLow\Temp =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\Desktop\B
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\Desktop\CG
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\Desktop\Dossier Reda FEN
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\Desktop\Logi PC
O43 - CFD: 17/04/2019 - [] D -- C:\Users\SON Y\Desktop\Maquettes posts Reda
O43 - CFD: 07/04/2019 - [0] D -- C:\Users\SON Y\Desktop\Nouveau dossier
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\Desktop\Nouveau dossier (2)
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\Desktop\Nouveau dossier (3)
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\Desktop\PPP =>.PPP
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\Desktop\Prestigia
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\Desktop\proxima
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\Desktop\Robotec
O43 - CFD: 22/02/2019 - [0] D -- C:\Users\SON Y\Desktop\THE MESSENGERS
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\Desktop\V
O43 - CFD: 17/02/2020 - [] D -- C:\Users\SON Y\Desktop\v2.8.994.0-ZT.WwW.Zone-Telechargement.Net
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\SON Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 28/03/2019 - [] RD -- C:\Users\SON Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 22/04/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake =>.Freemake
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\SON Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 07/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RAR Password Cracker =>.DNSoft
O43 - CFD: 08/03/2020 - [] RD -- C:\Users\SON Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [] D -- C:\Users\SON Y\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 03/02/2019 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 04/02/2019 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\3HRE32X1UJ [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Program Files\QNA2VLKGZG [Unsigned] =>Adware.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\1rmxf05f0qe =>Heuristic.Wizzcaster
O43 - CFD: 08/03/2020 - [] D -- C:\Users\SON Y\AppData\Roaming\1xns40ff1hs =>Heuristic.Wizzcaster
---\\ DERNIERS FICHIERS CRÉÉS DANS WINDOWS Prefetcher (1) - 15s
O45 - LFCP:[MD5.392ADB690B42ED06BCFC65088995826F] 23/02/2020 A -- C:\Windows\Prefetch\WINTHRUSTER.EXE-88692EDF.pf =>SUP.Optional.WinThruster
---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 0s
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (27) - 2s
O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: DaemonShellExtImage [64Bits] - {40966797-8FFE-46C8-9EF8-7003F33CCF0F} . (.DT Soft Ltd - DAEMON Tools Pro.) -- C:\Program Files (x86)\DAEMON Tools Pro\DTShl64.dll =>.Disc Soft Ltd®
O108 - CMH1: NP8ShellExtension [64Bits] - {9C4B85B8-956C-49BF-9BA5-101384E562B2} . (.Nitro Software, Inc. - np_shell_extension.) -- C:\Program Files\Nitro\Pro\12\NPShellExtension.dll =>.Nitro Software, Inc.®
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned]
O108 - CMH2: Compatibility [64Bits] - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - AMD Desktop Control Panel.) -- C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiacm64.dll [Unsigned] =>.Advanced Micro Devices, Inc.
O108 - CMH5: Gadgets [64Bits] - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned]
O108 - CMH7: DaemonShellExtDrive [64Bits] - {A5415364-784A-41A5-B47A-D452909CA8FF} . (.DT Soft Ltd - DAEMON Tools Pro.) -- C:\Program Files (x86)\DAEMON Tools Pro\DTShl64.dll =>.Disc Soft Ltd®
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (4) - 0s
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
---\\ LISTE DES PILOTES DU SYSTÈME (309) - 42s
O58 - SDL:2009/07/14 01:06:38 A . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\drivers\1394bus.sys [68096] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\drivers\1394ohci.sys [229888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/02/10 19:35:38 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\drivers\acpi.sys [334528] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\drivers\acpipmi.sys [12800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2017/04/04 15:53:18 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\afd.sys [496128] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:24 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\drivers\agilevpn.sys [60416] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/02/10 19:35:38 A . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\drivers\AGP440.sys [60608] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2014/11/21 03:41:36 A . (.Advanced Micro Devices - AMD ACP Binaries.) -- C:\Windows\System32\drivers\amdacpksd.sys [294600] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2009/07/14 02:52:21 A . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\drivers\amdide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2019/03/06 03:37:44 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdk8.sys [64512] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 03:37:44 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdppm.sys [60928] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 14:18:16 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2016/03/09 14:18:16 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2019/03/06 03:45:11 A . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\drivers\appid.sys [62464] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:10:13 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\drivers\asyncmac.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:52:21 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
O58 - SDL:2016/03/09 13:41:16 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\drivers\ataport.sys [155584] =>.Microsoft®
O58 - SDL:2014/11/21 03:40:00 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\Windows\System32\drivers\atikmdag.sys [18959360] [Unsigned] =>.Advanced Micro Devices, Inc.
O58 - SDL:2014/11/21 03:08:54 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\Windows\System32\drivers\atikmpag.sys [589312] [Unsigned] =>.Advanced Micro Devices, Inc.
O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2009/07/14 02:52:21 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\drivers\battc.sys [28240] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:00:13 A . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\drivers\beep.sys [6656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:35:59 A . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\drivers\blbdrive.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/07/18 16:18:04 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\drivers\bowser.sys [90112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] [Unsigned] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] [Unsigned] =>.Brother Industries, Ltd.
O58 - SDL:2019/02/07 17:01:53 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\drivers\bridge.sys [95232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] [Unsigned] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] [Unsigned] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] [Unsigned] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] [Unsigned] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 01:06:53 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\Windows\System32\drivers\bthenum.sys [41984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:52 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\drivers\bthmodem.sys [72192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/07/06 05:56:32 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\Windows\System32\drivers\bthpan.sys [119296] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:36:42 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\Windows\System32\drivers\bthport.sys [552960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:30:33 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\Windows\System32\drivers\BTHUSB.SYS [80384] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2019/02/10 16:35:32 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\cdfs.sys [92672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\cdrom.sys [147456] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:34 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\drivers\circlass.sys [45568] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:46 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\drivers\Classpnp.sys [179072] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:31:03 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\drivers\CmBatt.sys [17664] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2018/11/18 03:43:42 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\drivers\cng.sys [467856] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:52:31 A . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\drivers\compbatt.sys [21584] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:14 A . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\drivers\CompositeBus.sys [38912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\drivers\crashdmp.sys [39504] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\drivers\crcdisk.sys [24144] =>.Microsoft Windows®
O58 - SDL:2018/06/29 16:14:19 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\Windows\System32\drivers\csc.sys [516096] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/04/25 16:18:53 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\dfsc.sys [115200] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:37:18 A . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\drivers\discache.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/01/21 01:51:45 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\drivers\disk.sys [73664] =>.Microsoft®
O58 - SDL:2016/03/09 13:44:48 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\drivers\Diskdump.sys [27584] =>.Microsoft®
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - Dynamic Memory.) -- C:\Windows\System32\drivers\dmvsc.sys [71168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 14:09:05 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmk.sys [116736] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 14:09:05 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmkaud.sys [5632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/03/07 20:35:58 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\Windows\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd®
O58 - SDL:2020/03/07 20:36:07 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\Windows\System32\drivers\dtliteusbbus.sys [47672] =>.Disc Soft Ltd®
O58 - SDL:2020/03/08 09:41:35 A . (.DT Soft Ltd - DAEMON Tools Virtual Bus Driver.) -- C:\Windows\System32\drivers\dtsoftbus01.sys [283200] =>.DT Soft Ltd®
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\drivers\Dumpata.sys [28736] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:43:14 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\drivers\dumpfve.sys [55128] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:38:28 A . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\drivers\dxapi.sys [16896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:38:28 A . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\drivers\dxg.sys [98816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/09/09 02:02:22 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\drivers\dxgkrnl.sys [986824] =>.Microsoft®
O58 - SDL:2018/09/09 02:02:11 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\drivers\dxgmms1.sys [265416] =>.Microsoft®
O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2018/02/10 18:25:26 A . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\drivers\errdev.sys [9728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2019/02/10 16:36:06 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\drivers\exfat.sys [195584] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/10 16:36:06 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\drivers\fastfat.sys [205312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\drivers\fdc.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\drivers\fileinfo.sys [70224] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:25:40 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\drivers\filetrace.sys [34304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\drivers\flpydisk.sys [24576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/01/01 03:21:11 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\Windows\System32\drivers\fltMgr.sys [288488] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:47:49 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\Windows\System32\drivers\fsdepends.sys [55376] =>.Microsoft Windows®
O58 - SDL:2016/03/09 13:33:11 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\drivers\fs_rec.sys [23408] =>.Microsoft Windows®
O58 - SDL:2016/03/09 13:38:59 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\drivers\fvevol.sys [223752] =>.Microsoft®
O58 - SDL:2018/08/12 21:31:30 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\drivers\FWPKCLNT.SYS [289376] =>.Microsoft®
O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour pla.) -- C:\Windows\System32\drivers\GAGP30KX.SYS [65088] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] [Unsigned] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\hdaudbus.sys [122368] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:14 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\HdAudio.sys [350208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:31:06 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\drivers\hidbatt.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:52 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\Windows\System32\drivers\hidbth.sys [100864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/05 03:44:58 A . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\drivers\hidclass.sys [76800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:23 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidir.sys [46592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/11/30 18:34:22 A . (. - Filter Driver for HID-KMDF Interface.) -- C:\Windows\System32\drivers\hidkmdf.sys [14016] =>.Wacom Technology Corp.®
O58 - SDL:2019/03/05 03:44:58 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\drivers\hidparse.sys [33280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/05 03:44:59 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidusb.sys [30208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2018/01/01 02:41:41 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\drivers\http.sys [754176] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:46 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\drivers\hwpolicy.sys [14720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:19:57 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/05/29 15:05:32 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\Windows\System32\drivers\iaStorA.sys [646408] =>.Intel Corporation - Rapid Storage Technology®
O58 - SDL:2015/05/29 15:05:32 A . (.Intel Corporation - Intel Rapid Storage Technology Filter drive.) -- C:\Windows\System32\drivers\iaStorF.sys [30960] =>.Intel Corporation - Rapid Storage Technology®
O58 - SDL:2016/03/09 14:18:15 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2010/08/17 23:28:32 A . (.Intel Corporation - Intel(R) Watchdog Timer Driver (Intel(R) WD.) -- C:\Windows\System32\drivers\ICCWDT.sys [26136] =>.Intel Corporation®
O58 - SDL:2015/05/26 19:02:50 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [5375448] =>.Intel Corporation - pGFX®
O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\drivers\intelide.sys [16960] =>.Microsoft Windows®
O58 - SDL:2019/03/06 03:37:44 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\intelppm.sys [62464] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:47 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\drivers\ipfltdrv.sys [82944] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\drivers\IPMIDrv.sys [78848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:03 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\ipnat.sys [116224] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:09:02 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\drivers\irda.sys [120320] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:08:59 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\drivers\irenum.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/02/10 19:35:40 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\drivers\isapnp.sys [20160] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\drivers\kbdclass.sys [50768] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\drivers\kbdhid.sys [33280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/08/28 06:50:21 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\drivers\ks.sys [243200] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 04:18:28 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecdd.sys [95464] =>.Microsoft®
O58 - SDL:2019/03/06 04:18:48 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecpkg.sys [154856] =>.Microsoft®
O58 - SDL:2009/07/14 01:00:19 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\drivers\ksthunk.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/11/29 11:41:04 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\Windows\System32\drivers\L1C62x64.sys [129224] =>.Qualcomm Atheros®
O58 - SDL:2009/07/14 01:08:51 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\drivers\lltdio.sys [60928] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2017/10/12 01:20:09 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\Windows\System32\drivers\luafv.sys [113152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:01:06 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\drivers\mcd.sys [22016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:10:48 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\drivers\modem.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:38:52 A . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\drivers\monitor.sys [30208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:48:27 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\drivers\mouclass.sys [49216] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:00:20 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\drivers\mouhid.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/10 17:10:36 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\drivers\mountmgr.sys [94440] =>.Microsoft®
O58 - SDL:2010/11/21 04:24:14 A . (.Microsoft Corporation - Pilote du bus de prise en charge des chemin.) -- C:\Windows\System32\drivers\mpio.sys [155008] =>.Microsoft Windows®
O58 - SDL:2018/08/10 16:27:40 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\drivers\mpsdrv.sys [77312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/09/08 15:55:15 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\drivers\mrxdav.sys [142336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 03:38:55 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\mrxsmb.sys [161280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 03:38:31 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\drivers\mrxsmb10.sys [291328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 03:38:28 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\drivers\mrxsmb20.sys [129536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\drivers\msahci.sys [31104] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:14 A . (.Microsoft Corporation - Module spécifique de périphériques Microsof.) -- C:\Windows\System32\drivers\msdsm.sys [140672] =>.Microsoft Windows®
O58 - SDL:2019/02/03 16:36:04 A . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\drivers\msfs.sys [26112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:24 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/02/10 19:35:40 A . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\drivers\msisadrv.sys [15040] =>.Microsoft Windows®
O58 - SDL:2016/03/09 13:44:48 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\drivers\msiscsi.sys [274880] =>.Microsoft®
O58 - SDL:2009/07/14 01:00:18 A . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\drivers\mskssrv.sys [11136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:17 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\drivers\mspclock.sys [7168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:17 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\drivers\mspqm.sys [6784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/11/11 18:01:36 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\drivers\msrpc.sys [366824] =>.Microsoft®
O58 - SDL:2018/02/10 19:35:41 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\drivers\mssmbios.sys [31936] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:00:17 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\drivers\mstee.sys [8064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:02:08 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\drivers\MTConfig.sys [15360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:48:27 A . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\drivers\mup.sys [60496] =>.Microsoft Windows®
O58 - SDL:2018/07/06 17:09:54 A . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\drivers\ndis.sys [947904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:08:13 A . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\drivers\ndiscap.sys [35328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/12/08 03:47:13 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\drivers\ndistapi.sys [24064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:59 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\drivers\ndisuio.sys [56832] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:32 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\drivers\ndiswan.sys [164352] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/12/08 03:47:15 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\drivers\ndproxy.sys [58368] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/01/01 02:55:00 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\drivers\netbios.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/08/11 07:00:01 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netbt.sys [262656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/08/12 21:32:06 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\drivers\netio.sys [378464] =>.Microsoft®
O58 - SDL:2015/05/04 08:06:40 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETwsw00.sys [11531536] =>.Intel Corporation-Wireless Connectivity Solutions®
O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2011/02/11 22:23:34 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\Windows\System32\drivers\npf.sys [35344] =>.CACE Technologies, Inc.®
O58 - SDL:2019/03/06 03:37:53 A . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\drivers\npfs.sys [44544] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/08/11 06:58:55 A . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\drivers\nsiproxy.sys [26112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/10 17:10:47 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1680104] =>.Microsoft®
O58 - SDL:2009/07/14 00:19:38 A . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\drivers\null.sys [6144] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2012/08/27 16:39:20 A . (.Renesas Electronics Corporation - USB 3.0 Host Controller Driver.) -- C:\Windows\System32\drivers\nusb3xhc.sys [226696] =>.Renesas Electronics Corporation®
O58 - SDL:2016/03/09 14:18:15 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows®
O58 - SDL:2016/03/09 14:18:15 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows®
O58 - SDL:2018/02/10 19:35:41 A . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\drivers\NV_AGP.SYS [122560] =>.Microsoft Windows®
O58 - SDL:2017/09/13 16:05:20 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\drivers\nwifi.sys [324608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:45 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\drivers\ohci1394.sys [72832] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/01/01 02:55:05 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\drivers\pacer.sys [131584] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:41 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\parport.sys [97280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:34:50 A . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\drivers\partmgr.sys [75120] =>.Microsoft Windows®
O58 - SDL:2018/02/10 19:35:41 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\drivers\pci.sys [185024] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\pciide.sys [12352] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\drivers\pciidex.sys [48720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\drivers\pcmcia.sys [220752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\drivers\pcw.sys [50768] =>.Microsoft Windows®
O58 - SDL:2019/02/10 17:02:45 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\drivers\PEAuth.sys [663552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 14:09:05 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\drivers\portcls.sys [230400] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 03:37:44 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\processr.sys [60928] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:09:48 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\Windows\System32\drivers\qwavedrv.sys [46592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:09 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\drivers\rasacd.sys [14848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:25:00 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\rasl2tp.sys [129536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:17 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\drivers\raspppoe.sys [92672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:25:00 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\drivers\raspptp.sys [111104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:25 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\drivers\rassstp.sys [83968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/10/12 01:20:30 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\Windows\System32\drivers\rdbss.sys [317440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:17:46 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\drivers\rdpbus.sys [24064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:16:34 A . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\drivers\RDPCDD.sys [7680] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:25:23 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:16:34 A . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\drivers\RDPENCDD.sys [7680] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:16:35 A . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\drivers\RDPREFMP.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:32:13 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\drivers\rdpvideominiport.sys [19456] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:47:57 A . (.Microsoft Corporation - Pilote de pile RDP Terminal.) -- C:\Windows\System32\drivers\rdpwd.sys [212480] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/01/01 03:21:11 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\drivers\rdyboost.sys [213736] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:06:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\Windows\System32\drivers\rfcomm.sys [158720] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 14:08:40 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\drivers\rmcast.sys [146944] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:35:46 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\drivers\RNDISMP.sys [41472] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:10:47 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\drivers\rootmdm.sys [11264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:08:51 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\Windows\System32\drivers\rspndr.sys [76800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\drivers\sbp2port.sys [103808] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:34 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\Windows\System32\drivers\scfilter.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:26 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\drivers\scsiport.sys [171392] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:14 A . (.Microsoft Corporation - SecureDigital Bus Driver.) -- C:\Windows\System32\drivers\sdbus.sys [109056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] [Unsigned] =>.Rovi Corporation
O58 - SDL:2009/07/14 01:00:33 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\drivers\serenum.sys [23552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:00:40 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\serial.sys [94208] [Unsigned] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 01:00:20 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\drivers\sermouse.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2012/01/15 23:01:16 A . (.Sony Corporation - Sony Firmware Extension Parser driver.) -- C:\Windows\System32\drivers\SFEP.sys [14336] [Unsigned] =>.Sony Corporation
O58 - SDL:2009/07/14 01:01:01 A . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\drivers\sffdisk.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:01:03 A . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\drivers\sffp_mmc.sys [13824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:14 A . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\drivers\sffp_sd.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:01:02 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\drivers\sfloppy.sys [16896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:09:09 A . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/05/26 08:44:46 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [33960] =>.Synaptics Incorporated®
O58 - SDL:2009/07/14 01:00:35 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\drivers\smclib.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\drivers\spldr.sys [19008] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:48:43 A . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\drivers\spsys.sys [426496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 03:38:50 A . (.Microsoft Corporation - Pilote de serveur.) -- C:\Windows\System32\drivers\srv.sys [464384] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 03:38:42 A . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\drivers\srv2.sys [406016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 03:38:33 A . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\drivers\srvnet.sys [169984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2016/03/09 13:44:48 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\drivers\storport.sys [190912] =>.Microsoft®
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\drivers\storvsc.sys [34688] =>.Microsoft Windows®
O58 - SDL:2016/03/09 13:57:09 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\drivers\stream.sys [69888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/02/10 19:35:42 A . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\drivers\swenum.sys [12096] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:01:04 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\drivers\tape.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/08/12 21:31:39 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\drivers\tcpip.sys [1894496] =>.Microsoft®
O58 - SDL:2016/07/07 16:08:06 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\drivers\tcpipreg.sys [46080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:27 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\drivers\tdi.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:16:32 A . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\drivers\tdpipe.sys [15872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:32:36 A . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\drivers\tdtcp.sys [23552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/07/29 15:56:30 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [117248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/07/28 19:37:20 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\Windows\System32\drivers\TeeDriverx64.sys [178976] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2018/02/10 19:35:42 A . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\drivers\termdd.sys [63168] =>.Microsoft Windows®
O58 - SDL:2016/03/09 13:32:13 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\Windows\System32\drivers\terminpt.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/08/13 22:45:28 A . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\drivers\tssecsrv.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:39:57 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\Windows\System32\drivers\TsUsbFlt.sys [56832] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:39:57 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\Windows\System32\drivers\TsUsbGD.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:40 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\drivers\tunnel.sys [125440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\drivers\UAGP35.SYS [64080] =>.Microsoft Windows®
O58 - SDL:2019/02/10 16:36:11 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\drivers\udfs.sys [328192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/02/10 19:35:42 A . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à proce.) -- C:\Windows\System32\drivers\ULIAGPKX.SYS [64192] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\drivers\umbus.sys [48640] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:06:52 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\drivers\umpass.sys [9728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:39:14 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\drivers\usb8023.sys [19968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:42:23 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\Windows\System32\drivers\USBAUDIO.sys [109824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:35 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\drivers\USBCAMD2.sys [32896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/02 16:32:35 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\drivers\usbccgp.sys [99840] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:42:23 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\drivers\usbcir.sys [100864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/02 16:32:25 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\drivers\usbd.sys [7808] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/02 16:32:31 A . (.Microsoft Corporation - Pilote de miniport eUSB EHCI.) -- C:\Windows\System32\drivers\usbehci.sys [56320] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/02 16:32:58 A . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\drivers\usbhub.sys [344064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/02 16:32:29 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbohci.sys [25600] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/02 16:32:31 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\drivers\usbport.sys [325632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:38:18 A . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\drivers\usbprint.sys [25088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:25:04 A . (.Microsoft Corporation - Gestionnaire de stratégie de redirection US.) -- C:\Windows\System32\drivers\usbrpm.sys [31744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 14:15:15 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\drivers\USBSTOR.SYS [91648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/02 16:32:28 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbuhci.sys [30720] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:42:23 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\drivers\usbvideo.sys [185344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/02/10 19:35:42 A . (.Microsoft Corporation - Énumérateur racine de lecteur virtuel.) -- C:\Windows\System32\drivers\vdrvroot.sys [36032] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vga.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vgapnp.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\drivers\vhdmp.sys [215936] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2019/03/06 03:41:33 A . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\drivers\videoprt.sys [129536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - Virtual Machine Bus.) -- C:\Windows\System32\drivers\vmbus.sys [199552] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\drivers\VMBusHID.sys [21760] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\drivers\vms3cap.sys [6656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\Windows\System32\drivers\vmstorfl.sys [46464] =>.Microsoft Windows®
O58 - SDL:2018/02/10 19:35:42 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\drivers\volmgr.sys [68288] =>.Microsoft Windows®
O58 - SDL:2017/07/07 16:33:36 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\Windows\System32\drivers\volmgrx.sys [363752] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows®
O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:07:21 A . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\drivers\vwifibus.sys [24576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:07:22 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\drivers\vwififlt.sys [59904] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:07:28 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\drivers\vwifimp.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/11/30 18:34:22 A . (.Wacom Technology - Wacom HID Router.) -- C:\Windows\System32\drivers\wachidrouter.sys [103616] =>.Wacom Technology Corp.®
O58 - SDL:2009/07/14 01:02:07 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\drivers\wacompen.sys [27776] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/11/30 18:34:22 A . (.Wacom Technology - Wacom Router Filter Driver.) -- C:\Windows\System32\drivers\wacomrouterfilter.sys [15040] =>.Wacom Technology Corp.®
O58 - SDL:2018/12/08 03:47:22 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\drivers\wanarp.sys [88576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:37:35 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\drivers\watchdog.sys [42496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\drivers\wd.sys [21056] =>.Microsoft Windows®
O58 - SDL:2016/03/09 13:42:15 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\drivers\Wdf01000.sys [785624] =>.Microsoft®
O58 - SDL:2016/03/09 13:34:25 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\drivers\WdfLdr.sys [54376] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:09:26 A . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\drivers\wfplwf.sys [12800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:56 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\drivers\wimmount.sys [22096] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\drivers\winhv.sys [52096] =>.Microsoft Windows®
O58 - SDL:2010/11/21 04:24:15 A . (.Microsoft Corporation - Windows USB Class Driver BETA.) -- C:\Windows\System32\drivers\winusb.sys [41984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/02/10 18:25:26 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\drivers\wmiacpi.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\drivers\wmilib.sys [16464] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:10:33 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\drivers\ws2ifsl.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:34:36 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFPf.sys [87040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/09 13:34:35 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFRd.sys [198656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/04/07 17:41:15 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [371392] =>.Microsoft Windows®
O58 - SDL:2019/03/06 03:42:44 A . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3228160] [Unsigned] =>.Microsoft Corporation
---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (16) - 15s
O61 - LFC: 2020/03/07 20:43:37 A . (..) -- C:\ProgramData\1UOD19C82F.exe [116] [Unsigned]
O61 - LFC: 2020/03/07 20:32:59 A . (..) -- C:\ProgramData\CloudPrinter\CloudPrinter.exe [4604871] [Unsigned] =>SUP.Optional.Linkury
O61 - LFC: 2020/03/07 20:31:26 A . (.Bunifu Technologies.) -- C:\ProgramData\Garbage Cleaner\Bunifu_UI_v1.5.3.dll [242176] [Unsigned] =>.SUP.Various
O61 - LFC: 2020/03/07 20:31:27 A . (..) -- C:\ProgramData\Garbage Cleaner\Garbage Cleaner.exe [419840] [Unsigned]
O61 - LFC: 2020/03/07 17:33:19 A . (..) -- C:\ProgramData\Logic Cramble\set.exe [3780096] [Unsigned] =>SUP.Optional.Linkury
O61 - LFC: 2020/03/07 20:33:52 A . (..) -- C:\ProgramData\Voyasollam\Conity.dll [342528] [Unsigned]
O61 - LFC: 2020/03/07 20:33:52 A . (..) -- C:\ProgramData\Voyasollam\Mattom.dll [460800] [Unsigned]
O61 - LFC: 2020/03/07 20:33:52 A . (..) -- C:\ProgramData\Voyasollam\Soldox.exe [149504] [Unsigned]
O61 - LFC: 2020/03/07 20:32:59 A . (..) -- C:\ProgramData\Voyasollam\Voyasollam.exe [4604871] [Unsigned]
O61 - LFC: 2020/03/07 20:33:52 A . (..) -- C:\ProgramData\Voyasollam\Zimkix.exe [114688] [Unsigned]
O61 - LFC: 2020/03/07 20:33:28 N . (..) -- C:\Users\SON Y\AppData\Local\8a58578e-84f1-4edb-8536-07a697bd9ec0\B6B1.tmp.exe [829952] [Unsigned] =>Adware.CrossRider
O61 - LFC: 2020/03/07 20:34:57 A . (..) -- C:\Users\SON Y\AppData\Local\d595816a-c5b1-446f-9460-9d25909d6f56\5.exe [579072] [Unsigned]
O61 - LFC: 2020/03/07 20:34:55 A . (..) -- C:\Users\SON Y\AppData\Local\d595816a-c5b1-446f-9460-9d25909d6f56\updatewin.exe [362439] [Unsigned]
O61 - LFC: 2020/03/07 20:34:31 A . (..) -- C:\Users\SON Y\AppData\Local\d595816a-c5b1-446f-9460-9d25909d6f56\updatewin2.exe [359367] [Unsigned]
O61 - LFC: 2020/03/07 20:32:59 A . (..) -- C:\Users\SON Y\AppData\Local\Re-Fresh.exe [4604871] [Unsigned]
O61 - LFC: 2020/03/08 09:21:48 A . (.BitTorrent Inc..) -- C:\Users\SON Y\AppData\Local\Temp\HYD3D5E.tmp.1583655674_permissionsCopy\uTorrent.exe [2077168] =>BitTorrent (P2P)
---\\ ASSOCIATION Shell Spawning (10) - 1s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value
---\\ MENU DE DÉMARRAGE INTERNET (12) - 1s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc.
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (3) - 19s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] [64Bits]{ielnksrch} - (Search the web) - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/? =>SUP.Optional.Linkury
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (32) - 7s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [794624] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [863232] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [680448] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [687616] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110528] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [90624] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [210432] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] [Unsigned] =>.Microsoft Corporation
---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (12) - 5s
O87 - FAEL: "TCP Query User{B8F286C7-253D-490D-91C3-CC7CBA927CFF}F:\driver\sdi_update\sdi_x64_r323.exe" [In-None-P6-TRUE] .(...) -- F:\driver\sdi_update\sdi_x64_r323.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "UDP Query User{A2734AA7-1615-4D50-A3ED-26CD0B66E694}F:\driver\sdi_update\sdi_x64_r323.exe" [In-None-P17-TRUE] .(...) -- F:\driver\sdi_update\sdi_x64_r323.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{C397EDE0-E680-494B-BB7F-5E9740D1EBA3}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{0CE59797-7B71-498D-AF57-520C3192073F}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O87 - FAEL: "{A8D4F927-3524-40DF-A1E4-B70EF1FCDF05}" [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O87 - FAEL: "{0BEF0F70-AA23-4277-9A1B-2AB8987CCB44}" [In-None-P17-TRUE] .(.Apple Inc. - WebKit2WebProcess.exe.) -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe =>.Apple Inc.®
O87 - FAEL: "{D8502144-9697-4EA9-8FFC-429927550700}" [In-None-P6-TRUE] .(...) -- C:\Users\SON Y\AppData\Roaming\uTorrent\uTorrent.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{64F8D629-B034-46CD-BFF4-456CE9F7FFFC}" [In-None-P17-TRUE] .(...) -- C:\Users\SON Y\AppData\Roaming\uTorrent\uTorrent.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{7365762A-CD53-4358-B3CB-371AB75A066F}" [In-None-P17-TRUE] .(...) -- C:\Users\SON Y\AppData\Local\Programs\Opera\66.0.3515.103\opera.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{DF367A59-3BE7-4BC1-8E31-B8AB21916CDC}" [In-None-P17-TRUE] .(...) -- C:\Users\SON Y\AppData\Local\Programs\Opera\66.0.3515.115\opera.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{273403EA-A69F-470C-9625-006A88EF12AD}" [In-None-P6-TRUE] .(.www.BitComet.com - BitComet - a BitTorrent Client.) -- C:\Program Files\BitComet\BitComet.exe =>.Xing Wang®
O87 - FAEL: "{40CCFA3B-82DF-4F24-B6CF-D35C464E910A}" [In-None-P17-TRUE] .(.www.BitComet.com - BitComet - a BitTorrent Client.) -- C:\Program Files\BitComet\BitComet.exe =>.Xing Wang®
---\\ CODES PRODUITS LOGICIELS (64) - 5s
O90 - PUC: "00006109C80000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component.) =>.Microsoft Corporation
O90 - PUC: "00006109C800C0400100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation
O90 - PUC: "00006109E70000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Licensing Component.) =>.Microsoft Corporation
O90 - PUC: "0D4536077AEA3C6C2D422E6C6D40E9B1" [HKLM] . (.CCC Help Spanish.) -- C:\Windows\Installer\{706354D0-AEA7-C6C3-D224-E2C6D6049E1B}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "10955B73A5990563081BBBDF40E79211" [HKLM] . (.Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24212.) =>.Microsoft Corporation
O90 - PUC: "121E2D80A6F7BE3479DF26B944094330" [HKLM] . (.Microsoft_VC90_CRT_x86.) -- C:\Windows\Installer\{08D2E121-7F6A-43EB-97FD-629B44903403}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "1af2a8da7e60d0b429d7e6453b3d0182" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org
O90 - PUC: "1B7D1647249C5E83436E255AEB487D1E" [HKLM] . (.CCC Help Korean.) -- C:\Windows\Installer\{7461D7B1-C942-38E5-34E6-52A5BE84D7E1}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org
O90 - PUC: "21EE4A31AE32173319EEFE3BD6FDFFE3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "22BEFC8F7E2A1793E9ADB411DEFE1C58" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "2F3B656F7251E2FB260FE90626DDFF68" [HKLM] . (.Catalyst Control Center Localization All.) -- C:\Windows\Installer\{F656B3F2-1527-BF2E-62F0-9E6062DDFF86}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "3185DC4671CA2E4CD61E6E002BAAF222" [HKLM] . (.CCC Help Norwegian.) -- C:\Windows\Installer\{64CD5813-AC17-C4E2-6DE1-E600B2AA2F22}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "332412C36EEE3218070128883BF37A7A" [HKLM] . (.CCC Help Dutch.) -- C:\Windows\Installer\{3C214233-EEE6-8123-7010-8288B33FA7A7}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "3397015B06F6D18E4EE7E1ED25E07D43" [HKLM] . (.CCC Help Thai.) -- C:\Windows\Installer\{B5107933-6F60-E81D-E47E-1EDE520ED734}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "3EAA12EF6FED3B5B199501D1F3810676" [HKLM] . (.CCC Help Chinese Traditional.) -- C:\Windows\Installer\{FE21AAE3-DEF6-B5B3-9159-101D3F186067}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "4109AD382F9275A4E1DEE2B712CC8254" [HKLM] . (.CCC Help Portuguese.) -- C:\Windows\Installer\{83DA9014-29F2-4A57-1EED-2E7B21CC2845}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "42D78011D76588D7966C7D0AB8F5C474" [HKLM] . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{11087D24-567D-7D88-69C6-D7A08B5F4C47}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "46B5A9879DD95AB419A50FCFA0B1B7EF" [HKLM] . (.Apple Software Update.) -- C:\Windows\Installer\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}\Installer.ico =>.Apple Inc.
O90 - PUC: "478E88CA0506E9A66DE4113DF0EFC5E7" [HKLM] . (.CCC Help Italian.) -- C:\Windows\Installer\{AC88E874-6050-6A9E-D64E-11D30FFE5C7E}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "47BCE44836B9C5D359C803DB321FE94E" [HKLM] . (.Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24212.) =>.Microsoft Corporation
O90 - PUC: "4C4EA5EDAF7D32932AD2552547F43A0F" [HKLM] . (.AMD Catalyst Control Center.) -- C:\Windows\Installer\{DE5AE4C4-D7FA-3923-A22D-5552744FA3F0}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "4C6D70C1362FC0BCBC8827A63DDDDCE6" [HKLM] . (.CCC Help Danish.) -- C:\Windows\Installer\{1C07D6C4-F263-CB0C-CB88-726AD3DDCD6E}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "5240178C541DB8701C5C808F78866488" [HKLM] . (.CCC Help Czech.) -- C:\Windows\Installer\{C8710425-D145-078B-C1C5-08F887684688}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "57DB95FFA664A5D4DA32AA8DC7F54DC4" [HKLM] . (.QuickTime 7.) -- C:\Windows\Installer\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}\Installer.ico =>.Riskware.QuickTime
O90 - PUC: "5A440F64B8EC691489E4B56D25E563D1" [HKLM] . (.Apple Application Support.) -- C:\Windows\Installer\{46F044A5-CE8B-4196-984E-5BD6525E361D}\WinInstall.ico =>.Apple Inc.
O90 - PUC: "5A76B3E1CF91C2247403EE35226195EA" [HKLM] . (.AMD Accelerated Video Transcoding.) -- C:\Windows\Installer\{1E3B67A5-19FC-422C-4730-EE53221659AE}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "5F93A818107BCF43EF2A20F1834EDE04" [HKLM] . (.CCC Help Turkish.) -- C:\Windows\Installer\{818A39F5-B701-34FC-FEA2-021F38E4ED40}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "62DBF9290209B993A9A757D1160F9B24" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "63ECB07F2F5257449A8126903B8DB53F" [HKLM] . (.Intel(R) C++ Redistributables on Intel(R) 64.) =>.bl.org
O90 - PUC: "66EBE8AAC9BC5A8592BC2BFFA7665831" [HKLM] . (.AMD Wireless Display v3.0.) -- C:\Windows\Installer\{AA8EBE66-CB9C-58A5-29CB-B2FF7A668513}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org
O90 - PUC: "69CF92D9EEE9352449F3693BBBDF0D6B" [HKLM] . (.Microsoft Visual C++ 2017 X64 Additional Runtime - 14.16.27024.) =>.Microsoft Corporation
O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org
O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation
O90 - PUC: "6ED51EFD5D1DC67303A8F5DE2C0EEF1D" [HKLM] . (.CCC Help Greek.) -- C:\Windows\Installer\{DFE15DE6-D1D5-376C-308A-5FEDC2E0FED1}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "77EAAEFBF7DB43542B68C9C54B96E71B" [HKLM] . (.PDF Settings CS6.) =>.Adobe Inc.
O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "800F6BA468CC257E597C5B3A36D81ED2" [HKLM] . (.CCC Help Japanese.) -- C:\Windows\Installer\{4AB6F008-CC86-E752-95C7-B5A3638DE12D}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "80463850DAA8EFEE513CCEEDDFC7A10E" [HKLM] . (.CCC Help Polish.) -- C:\Windows\Installer\{05836408-8AAD-EEFE-15C3-ECDEFD7C1AE0}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "8E58E8E6B4EC5FF4197F4099C9F9EAA6" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable (x64).) =>.bl.org
O90 - PUC: "91785D291CBB3CC40AB8659C8E48CCC2" [HKLM] . (.Microsoft_VC80_CRT_x86.) -- C:\Windows\Installer\{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}\ARPPRODUCTICON.exe =>.Microsoft Corporation
O90 - PUC: "945CA2062F298CEB58FE4B7A7D83CDC4" [HKLM] . (.CCC Help Russian.) -- C:\Windows\Installer\{602AC549-92F2-BEC8-85EF-B4A7D738DC4C}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "99EE233E1EF936B9BB75A2305B5D6FE8" [HKLM] . (.CCC Help French.) -- C:\Windows\Installer\{E332EE99-9FE1-9B63-BB57-2A03B5D5F68E}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "A3BF0B1FAE0E6A74393863055645300B" [HKLM] . (.Microsoft Visual C++ 2017 X64 Minimum Runtime - 14.16.27024.) =>.Microsoft Corporation
O90 - PUC: "A63DAE45481922042A9DCF5D5B89FE16" [HKLM] . (.Nitro Pro.) -- C:\Windows\Installer\{54EAD36A-9184-4022-A2D9-FCD5B598EF61}\Professional.ico =>.Nitro
O90 - PUC: "B27B4D416AA7D32561E9B3404A8C9DAC" [HKLM] . (.CCC Help German.) -- C:\Windows\Installer\{14D4B72B-7AA6-523D-169E-3B04A4C8D9CA}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C065C0FCC0955BFCDD75FA42782EAB6A" [HKLM] . (.AMD Catalyst Install Manager.) -- C:\Windows\Installer\{CF0C560C-590C-CFB5-DD57-AF2487E2BAA6}\ARPPRODUCTICON.exe =>.Western Digital Technologies
O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C5A0FEBD7346F154E494DF54F6343B47" [HKLM] . (.CCC Help Finnish.) -- C:\Windows\Installer\{DBEF0A5C-6437-451F-4E49-FD456F43B374}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "C98A16E5E3090AE379583E6CA0BFEEEB" [HKLM] . (.Microsoft .NET Framework 4.7.2 (FRA).) =>.Microsoft Corporation
O90 - PUC: "CF24CB984D556E79C941D509DB61B837" [HKLM] . (.CCC Help Hungarian.) -- C:\Windows\Installer\{89BC42FC-55D4-97E6-9C14-5D90BD168B73}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "D81EABF14ED4AA7438CE1D0B642F26CD" [HKLM] . (.PDF Settings CC.) =>.Adobe Inc.
O90 - PUC: "DAFD962C22880A3ADE7736BC0417B493" [HKLM] . (.CCC Help English.) -- C:\Windows\Installer\{C269DFAD-8822-A3A0-ED77-63CB40714B39}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "E8EBCC90469BFE03EA485673BA14799F" [HKLM] . (.Microsoft .NET Framework 4.7.2.) =>.Microsoft Corporation
O90 - PUC: "EC0DE41FFEBBF3E78CBC32ECB9A38B0E" [HKLM] . (.CCC Help Chinese Standard.) -- C:\Windows\Installer\{F14ED0CE-BBEF-7E3F-C8CB-23CE9B3AB8E0}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "EF67928688B417A649F0C5B9A6673124" [HKLM] . (.CCC Help Swedish.) -- C:\Windows\Installer\{682976FE-4B88-6A71-940F-5C9B6A761342}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "FC05C7A1E6A9FE7547E597ED55096844" [HKLM] . (.Catalyst Control Center Graphics Previews Common.) -- C:\Windows\Installer\{1A7C50CF-9A6E-57EF-745E-79DE55908644}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc
O90 - PUC: "FEE653E6C302B1541944BC0F993E37A8" [HKLM] . (.Advanced Archive Password Recovery.) -- C:\Windows\Installer\{6E356EEF-203C-451B-9144-CBF099E3738A}\product_icon
---\\ PACKAGES WINDOWS INSTALLER (40) - 3s
[MD5.E5B7C67E17551C67CDFB2DB263F3832F] [WIS][2020/03/07 16:37:56] (.Elcomsoft Co. Ltd. - Unlock password-protected ZIP, RAR, ACE and.) -- C:\Windows\Installer\12603c0.msi [5745152] =>.Elcomsoft Co. Ltd.
[MD5.2D79399C9FEA8C45A9601569E9CDA139] [WIS][2013/04/24 16:22:22] (.Adobe Systems Incorporated - PDF Settings CC.) -- C:\Windows\Installer\299cea.msi [2259968] =>.Adobe Systems Incorporated
[MD5.78B41A323699DAF1C25265890733BE26] [WIS][2012/04/15 06:48:02] (.Adobe - InstallShield® 12 - Premier Edition 12.0.) -- C:\Windows\Installer\299d05.msi [1997312] =>.Adobe
[MD5.E4AF16B0574B2598AADD353A35A3722B] [WIS][2012/04/15 06:48:02] (.Adobe - InstallShield® 12 - Premier Edition 12.0.) -- C:\Windows\Installer\299d0c.msi [2211328] =>.Adobe
[MD5.5EE609A2EEC40D710274413D4DD40ABB] [WIS][2012/04/15 06:47:26] (.Adobe Systems Incorporated - PDF Settings CS6.) -- C:\Windows\Installer\299d22.msi [2259968] =>.Adobe Systems Incorporated
[MD5.1B720C225226D66085F7F08371F28909] [WIS][2015/12/08 15:03:34] (.Apple Inc. - Apple Application Support Installer.) -- C:\Windows\Installer\46904ad.msi [21402624] =>.Apple Inc.
[MD5.A20C8EDDC732E30F7EC5A985843388ED] [WIS][2015/12/08 16:43:26] (.Apple Inc. - Apple Software Update Installer.) -- C:\Windows\Installer\46904b3.msi [2323456] =>.Apple Inc.
[MD5.5376B2262B6E9773801520B6735C6DE9] [WIS][2015/12/15 15:18:36] (.Apple Inc. - QuickTime Installer.) -- C:\Windows\Installer\46904b7.msi [28397568] =>.Apple Inc.
[MD5.484BE36C04E189B5A0F66C40B1BA08F8] [WIS][2015/02/11 14:30:22] (.Intel Corporation - Intel(R) C++ Redistributables on Intel(R) 6.) -- C:\Windows\Installer\570d4b22.msi [9863168] =>.Intel Corporation
[MD5.D35B45B6EE36005243203FAC496125FB] [WIS][2019/02/03 20:14:56] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\5f6a9d.msi [40960] =>.Google Inc.
[MD5.D96C0C1AC39797FACDCB4F81285F6AAD] [WIS][2014/12/05 03:26:42] (.Advanced Micro Devices, Inc. - AMD Catalyst Install Manager Installer (64 .) -- C:\Windows\Installer\6ad320.msi [8888320] =>.Advanced Micro Devices, Inc.
[MD5.2264606EBDA0C0DCBB89CA18C6310FE0] [WIS][2014/12/05 03:31:52] (.Advanced Micro Devices Inc. - AMD Wireless Display v3.0 Installer.) -- C:\Windows\Installer\6ad328.msi [388608] =>.Advanced Micro Devices Inc.
[MD5.ED4D8BE359482F0AB4A121BFFAC58004] [WIS][2014/11/11 09:49:56] (.Advanced Micro Devices, Inc. - Branding.) -- C:\Windows\Installer\6ad330.msi [439808] =>.Advanced Micro Devices, Inc.
[MD5.D9621E711AD08B217B28288791CED8D7] [WIS][2014/12/05 03:17:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad338.msi [2282496] =>.Advanced Micro Devices, Inc.
[MD5.E6A3A9DB3246205879195E90E7B41335] [WIS][2014/12/05 03:09:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad340.msi [748544] =>.Advanced Micro Devices, Inc.
[MD5.5A4D643F663231EFFF8C00B7F128EB5F] [WIS][2014/12/05 03:10:00] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad348.msi [717824] =>.Advanced Micro Devices, Inc.
[MD5.37155482C41E492AA1F83A6B0EFB1452] [WIS][2014/12/05 03:10:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad350.msi [740352] =>.Advanced Micro Devices, Inc.
[MD5.79EC2A3A9D571452558CD720A28786C2] [WIS][2014/12/05 03:10:26] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad358.msi [841216] =>.Advanced Micro Devices, Inc.
[MD5.923B241E127D22BEA8EF7011AC4224AA] [WIS][2014/12/05 03:10:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad360.msi [711168] =>.Advanced Micro Devices, Inc.
[MD5.29570FE3F0B8559E9D9593A8B82D858B] [WIS][2014/12/05 03:10:54] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad368.msi [727552] =>.Advanced Micro Devices, Inc.
[MD5.30C2AACC64BBD2BD64F472250898352A] [WIS][2014/12/05 03:11:06] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad370.msi [722432] =>.Advanced Micro Devices, Inc.
[MD5.EE35F6BE320D0F5BC4255B3A241C6C1F] [WIS][2014/12/05 03:11:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad378.msi [733696] =>.Advanced Micro Devices, Inc.
[MD5.7579338E7F92922D730156690A916BFA] [WIS][2014/12/05 03:11:32] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad380.msi [749056] =>.Advanced Micro Devices, Inc.
[MD5.863037D6C1143F0D4AA85906A45E8556] [WIS][2014/12/05 03:11:46] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad388.msi [724992] =>.Advanced Micro Devices, Inc.
[MD5.C4739836A55C50DBBA1BBE8A9EF5D52B] [WIS][2014/12/05 03:11:58] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad390.msi [768000] =>.Advanced Micro Devices, Inc.
[MD5.A4130220F06811CC7E1A65E18AB3CE11] [WIS][2014/12/05 03:12:10] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad398.msi [749568] =>.Advanced Micro Devices, Inc.
[MD5.94795C807B907122CC66773B8FBE01E6] [WIS][2014/12/05 03:12:24] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3a0.msi [717312] =>.Advanced Micro Devices, Inc.
[MD5.E8ADCEE774950740456DED34B3EC0E3C] [WIS][2014/12/05 03:12:36] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3a8.msi [710656] =>.Advanced Micro Devices, Inc.
[MD5.63515667FBCEB82109E4440601FAE5D9] [WIS][2014/12/05 03:12:50] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3b0.msi [741376] =>.Advanced Micro Devices, Inc.
[MD5.D34C959A279A408B5CD71FC3D5F97B52] [WIS][2014/12/05 03:13:02] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3b8.msi [727040] =>.Advanced Micro Devices, Inc.
[MD5.B3F8E32C056A7B00A66F79BE1DFF27F2] [WIS][2014/12/05 03:13:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3c0.msi [822272] =>.Advanced Micro Devices, Inc.
[MD5.0DFEE85D4C97DF8574F4F39ED82DEA15] [WIS][2014/12/05 03:13:28] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3c8.msi [715776] =>.Advanced Micro Devices, Inc.
[MD5.58DC5EDD947E560F4773193A3351759B] [WIS][2014/12/05 03:13:42] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3d0.msi [747008] =>.Advanced Micro Devices, Inc.
[MD5.0DA670FC582C114E0F9B66AC3E7A82D7] [WIS][2014/12/05 03:13:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3d8.msi [731136] =>.Advanced Micro Devices, Inc.
[MD5.82919D121BC58472005C98566ABC5691] [WIS][2014/12/05 03:14:08] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3e0.msi [719360] =>.Advanced Micro Devices, Inc.
[MD5.C32C08C17CDEED472FD93B0B259ABE71] [WIS][2014/12/05 03:14:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3e8.msi [724480] =>.Advanced Micro Devices, Inc.
[MD5.88439580766DFACA65BDE26BD96CEE5D] [WIS][2014/12/05 03:14:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3f0.msi [919552] =>.Advanced Micro Devices, Inc.
[MD5.E115F75F9289E89F835F3F047323DF98] [WIS][2014/12/05 03:09:32] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\Windows\Installer\6ad3f9.msi [56731136] =>.Advanced Micro Devices, Inc.
[MD5.670E7709A7511A8F40A84702318C3AAC] [WIS][2014/12/05 03:28:06] (.Advanced Micro Devices, Inc. - AMD Accelerated Video Transcoding INstallat.) -- C:\Windows\Installer\6ad401.msi [2754048] =>.Advanced Micro Devices, Inc.
[MD5.6EF348F272B779DEEF3150D252971FFE] [WIS][2018/11/13 23:47:05] (.Nitro - Nitro Pro 12.6.1.298.) -- C:\Windows\Installer\853ae.msi [150675456] =>.Nitro
---\\ FEATURE CONTROL. (137) - 0s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST_BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
---\\ SCAN ADDITIONNEL (307) - 8s
C:\Program Files (x86)\WinThruster\WinThruster.exe =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_time =>SUP.Optional.WinThruster
C:\Program Files (x86)\WinThruster\RPCEx.exe =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_pp1 =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_strtp =>SUP.Optional.WinThruster
C:\Program Files (x86)\WinThruster\PerformanceMonitor.exe =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\PerfMonitor_once =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_period =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_pp2_1 =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\PerfMonitor_strtp =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_pp2_2 =>SUP.Optional.WinThruster
C:\Windows\System32\Tasks\WinThruster_pp3_1 =>SUP.Optional.WinThruster
C:\Users\SON Y\AppData\Local\8a58578e-84f1-4edb-8536-07a697bd9ec0\B6B1.tmp.exe =>Adware.CrossRider
C:\Windows\System32\Tasks\Time Trigger Task =>Adware.CrossRider
C:\Program Files (x86)\TweakBit\PCRepairKit\PCRepairKit.exe =>.SUP.TweakBit
C:\Windows\System32\Tasks\TweakBit\PCRepairKit\Start PCRepairKit оn logon =>.SUP.TweakBit
C:\Windows\System32\Tasks\WinThruster_pp2_3 =>SUP.Optional.WinThruster
C:\Users\SON Y\AppData\Local\WallpaperSuite\WallpaperSuite.exe =>.SUP.WallpaperHD
C:\Program Files\GRS62WUPAE\GRS62WUPA.exe =>Adware.Wizzcaster
C:\Program Files\25T7F4SLP3\25T7F4SLP.exe =>Adware.Wizzcaster
C:\Program Files\SVTTOP6LJY\MG7Q2BTX0.exe =>Adware.Wizzcaster
C:\Program Files\WG5QTELCY7\WG5QTELCY.exe =>Adware.Wizzcaster
C:\Program Files\MID7KWMLIR\MID7KWMLI.exe =>Adware.Wizzcaster
C:\Program Files\90N3QFVFUI\90N3QFVFU.exe =>Adware.Wizzcaster
C:\Program Files\OXLHWCOHI0\OXLHWCOHI.exe =>Adware.Wizzcaster
C:\Program Files\1WWBZTX9VS\1WWBZTX9V.exe =>Adware.Wizzcaster
C:\Program Files\5SQSAG46WC\5SQSAG46W.exe =>Adware.Wizzcaster
C:\Program Files\K4TGYJ2MLY\K4TGYJ2ML.exe =>Adware.Wizzcaster
C:\Program Files\DO0H8YU9C9\QD7VGY0AB.exe =>Adware.Wizzcaster
C:\Program Files\LWHD8534HW\LWHD8534H.exe =>Adware.Wizzcaster
C:\Program Files\GEUCJR02ZX\GEUCJR02Z.exe =>Adware.Wizzcaster
C:\Program Files\T86BY4J654\T86BY4J65.exe =>Adware.Wizzcaster
C:\Program Files\6RKQX9KH3Y\6RKQX9KH3.exe =>Adware.Wizzcaster
C:\Program Files\HBNS1REN16\HBNS1REN1.exe =>Adware.Wizzcaster
C:\Program Files\RHOECT1B43\2P5OMPUK7.exe =>Adware.Wizzcaster
C:\Program Files\H2VRKB2ZOR\H2VRKB2ZO.exe =>Adware.Wizzcaster
C:\Program Files\CCWS4NRA5W\CCWS4NRA5.exe =>Adware.Wizzcaster
C:\Program Files\0BT549N0PG\0BT549N0P.exe =>Adware.Wizzcaster
C:\Program Files\3S0RXG9K5V\3S0RXG9K5.exe =>Adware.Wizzcaster
C:\Program Files\Y6TIDG499P\Y6TIDG499.exe =>Adware.Wizzcaster
C:\Program Files\137NHPD3XQ\137NHPD3X.exe =>Adware.Wizzcaster
C:\Program Files\9UCQLJA5HO\9UCQLJA5H.exe =>Adware.Wizzcaster
C:\Program Files (x86)\DiskFixer\DiskFixer.exe =>SUP.Optional.DiskFixer
C:\ProgramData\Logic Cramble\set.exe =>SUP.Optional.Linkury
C:\ProgramData\CloudPrinter\CloudPrinter.exe =>SUP.Optional.Linkury
C:\Program Files (x86)\MachinerData\Atomic_SMS.exe =>Trojan.CrthRazy
C:\Program Files (x86)\MachinerData\main.exe =>Trojan.CrthRazy
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\Extensions\inafjghmmkmiobijhbgkfekenbfbklhb =>PUP.Optional.BazzSearch
[HKEY_USERS\S-1-5-18\Environment]:SNP =>PUP.Optional.Salus
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DiskFixer_is1 =>SUP.Optional.DiskFixer
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinThruster_is1 =>SUP.Optional.WinThruster
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{199ECB6E-D9EE-40F3-8064-EC349207F4AC} =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\DiskFixer_is1 =>SUP.Optional.DiskFixer
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WinThruster_is1 =>SUP.Optional.WinThruster
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{199ECB6E-D9EE-40F3-8064-EC349207F4AC} =>PUP.Optional.SmartBar
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{EF758C50-5FA2-4B0A-86D3-8B65B176BC53} =>Trojan.CrthRazy
HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C} =>Riskware.QuickTime
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WallpaperSuite =>.SUP.WallpaperHD
C:\Program Files\0BT549N0PG\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\0BT549N0PG =>Adware.Wizzcaster
C:\Program Files\137NHPD3XQ\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\137NHPD3XQ =>Adware.Wizzcaster
C:\Program Files\1WWBZTX9VS\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\1WWBZTX9VS =>Adware.Wizzcaster
C:\Program Files\25T7F4SLP3\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\25T7F4SLP3 =>Adware.Wizzcaster
C:\Program Files\3S0RXG9K5V\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\3S0RXG9K5V =>Adware.Wizzcaster
C:\Program Files\5SQSAG46WC\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\5SQSAG46WC =>Adware.Wizzcaster
C:\Program Files\6RKQX9KH3Y\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\6RKQX9KH3Y =>Adware.Wizzcaster
C:\Program Files\90N3QFVFUI\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\90N3QFVFUI =>Adware.Wizzcaster
C:\Program Files\9UCQLJA5HO\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\9UCQLJA5HO =>Adware.Wizzcaster
C:\Program Files\CCWS4NRA5W\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\CCWS4NRA5W =>Adware.Wizzcaster
C:\Program Files\DO0H8YU9C9\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\DO0H8YU9C9 =>Adware.Wizzcaster
C:\Program Files\GEUCJR02ZX =>Adware.Wizzcaster
C:\Program Files\GRS62WUPAE\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\GRS62WUPAE =>Adware.Wizzcaster
C:\Program Files\H2VRKB2ZOR\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\H2VRKB2ZOR =>Adware.Wizzcaster
C:\Program Files\HBNS1REN16\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\HBNS1REN16 =>Adware.Wizzcaster
C:\Program Files\K4TGYJ2MLY\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\K4TGYJ2MLY =>Adware.Wizzcaster
C:\Program Files\MID7KWMLIR\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\MID7KWMLIR =>Adware.Wizzcaster
C:\Program Files\OXLHWCOHI0\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\OXLHWCOHI0 =>Adware.Wizzcaster
C:\Program Files\RHOECT1B43\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\RHOECT1B43 =>Adware.Wizzcaster
C:\Program Files\SVTTOP6LJY\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\SVTTOP6LJY =>Adware.Wizzcaster
C:\Program Files\T86BY4J654\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\T86BY4J654 =>Adware.Wizzcaster
C:\Program Files\WG5QTELCY7\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\WG5QTELCY7 =>Adware.Wizzcaster
C:\Program Files\Y6TIDG499P\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\Y6TIDG499P =>Adware.Wizzcaster
C:\Program Files (x86)\DiskFixer =>SUP.Optional.DiskFixer
C:\Program Files (x86)\DreamTrips\DreamTrip.exe =>Adware.Wizzcaster
C:\Program Files (x86)\DreamTrips =>Adware.Wizzcaster
C:\Program Files (x86)\MachinerData =>Trojan.CrthRazy
C:\Program Files (x86)\QuickTime =>Riskware.QuickTime
C:\Program Files (x86)\WinThruster =>SUP.Optional.WinThruster
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DreamTrips =>Adware.Wizzcaster
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime =>Riskware.QuickTime
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TweakBit =>.SUP.TweakBit
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinThruster =>SUP.Optional.WinThruster
C:\ProgramData\CloudPrinter =>SUP.Optional.Linkury
C:\ProgramData\Garbage Cleaner =>.SUP.Various
C:\ProgramData\Logic Cramble =>PUP.Optional.LogicHandler
C:\ProgramData\TweakBit =>.SUP.TweakBit
C:\Users\SON Y\AppData\Roaming\1axegremb5v\eqkrkjrk3xs.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\1axegremb5v =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\250tsdloab5\ro0mwicfigu.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\250tsdloab5 =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\3h1hsjvvlmt\lli3sb3y5rg.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\3h1hsjvvlmt =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\3uzutdmgyix\tygwxarymhp.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\3uzutdmgyix =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\4p0xe0vng3o\1e1g4lwil15.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\4p0xe0vng3o =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\4qxi4aq5gmx\m5y2a2jsx2m.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\4qxi4aq5gmx =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\53puerifkmu\l44kkbxmwo0.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\53puerifkmu =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\ciurfo1cwyc\i2u3zwdawjg.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\ciurfo1cwyc =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\ef3ix00vvq3\3qzfwjgkyx1.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\ef3ix00vvq3 =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\gllgwganqrk\quecupifxaf.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\gllgwganqrk =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\Intel Rapid =>Trojan.MalPack
C:\Users\SON Y\AppData\Roaming\j0aons5hos5\x5z4s3aiglo.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\j0aons5hos5 =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\jytmnj44aec\ihrd4mj21t0.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\jytmnj44aec =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\l5o2hp0uxpx\3q2nxnl4or2.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\l5o2hp0uxpx =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\lpviewa4apc\ta1oq5byekl.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\lpviewa4apc =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\mxv3y0tdljc\cvz32ia4ojb.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\mxv3y0tdljc =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\pdg1e4d5l0q\cqnrqcgadua.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\pdg1e4d5l0q =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\pptd0gmq1af\uoxpm4rjxn1.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\pptd0gmq1af =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\rsqdrxnmer0\bsxejdtww5k.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\rsqdrxnmer0 =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\sdage2ugcyw\4o30ew2t4ak.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\sdage2ugcyw =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\serkknppj1w\fxjazkdetyq.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\serkknppj1w =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\uhky0lxujx3\wm1wbcyfoll.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\uhky0lxujx3 =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\WinThruster =>SUP.Optional.WinThruster
C:\Users\SON Y\AppData\Roaming\wr41dc2g4gr\rspp3w3znsi.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\wr41dc2g4gr =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\wykfgawnimn\4wz0mp1pqb0.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\wykfgawnimn =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\z0mr5dkkzrt\adcn0stooqi.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\z0mr5dkkzrt =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Local\MSfree Inc =>HackTool.WinActivator
C:\Users\SON Y\AppData\Local\WallpaperSuite =>.SUP.WallpaperHD
C:\Windows\Prefetch\WINTHRUSTER.EXE-88692EDF.pf =>SUP.Optional.WinThruster
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
C:\ProgramData\Garbage Cleaner\Bunifu_UI_v1.5.3.dll =>.SUP.Various
HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} =>SUP.Optional.Linkury
C:\Users\SON Y\AppData\Roaming\kjhgfdsd.exe =>Heuristic.Suspect
C:\Users\SON Y\AppData\Roaming\WinTup.exe =>Heuristic.Suspect
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\003 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\004 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\005 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\006 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\007 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\008 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\009 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\010 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\011 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\012 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\013 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\014 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\015 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\016 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\017 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\018 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\019 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\020 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\021 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\022 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\023 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\024 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\025 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\026 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\027 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\028 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\029 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\030 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\031 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\032 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\033 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\034 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\035 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\036 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\037 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\038 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\039 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\040 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\041 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\042 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\043 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\044 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\045 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\046 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\047 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\048 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\049 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\050 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\051 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\052 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\053 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\054 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\055 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\056 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\057 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\058 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\059 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\060 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\061 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\062 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\063 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\064 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\065 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\066 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\067 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\068 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\069 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\070 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\071 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\072 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\073 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\074 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\075 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\076 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\077 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\078 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\079 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\080 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\081 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\082 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\083 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\084 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\085 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\086 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\087 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\088 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\089 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\090 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\091 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\092 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\093 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\094 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\095 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\096 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\097 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\098 =>.SUP.Temporary.Chrome
C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\Default\File System\099 =>.SUP.Temporary.Chrome
HKU\S-1-5-21-446094025-1014057490-1284722728-1000\Software\csastats =>Adware.InstallCore
HKCU\Software\GCleaner =>.SUP.Various
HKCU\Software\csastats =>Adware.InstallCore
HKLM\SOFTWARE\Wow6432Node\Machiner =>Trojan.CrthRazy
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\SON Y\Downloads\WacomTablet_6.3.13w3.exe =>.SUP.Orphan.MUICache
C:\Program Files (x86)\WinThruster\PerformanceMonitor.exe =>SUP.Optional.Solvusoft
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\WinThruster\PerformanceMonitor.exe =>SUP.Optional.Solvusoft
C:\Program Files (x86)\WinThruster\RPCEx.exe =>SUP.Optional.Solvusoft
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\WinThruster\RPCEx.exe =>SUP.Optional.Solvusoft
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\DAEMON Tools Lite\DTAgent.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\SON Y\AppData\Local\Programs\Opera\Launcher.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\SON Y\AppData\Roaming\uTorrent\uTorrent.exe =>.SUP.Orphan.MUICache
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\SON Y\Desktop\Nouveau dossier (3)\daemon tools lite 10_674926091.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-446094025-1014057490-1284722728-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\SON Y\Downloads\WacomTablet_6.3.13w3.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-446094025-1014057490-1284722728-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\WinThruster\PerformanceMonitor.exe =>SUP.Optional.Solvusoft
[HKU\S-1-5-21-446094025-1014057490-1284722728-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\WinThruster\RPCEx.exe =>SUP.Optional.Solvusoft
[HKU\S-1-5-21-446094025-1014057490-1284722728-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files\DAEMON Tools Lite\DTAgent.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-446094025-1014057490-1284722728-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\SON Y\AppData\Local\Programs\Opera\Launcher.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-446094025-1014057490-1284722728-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\SON Y\AppData\Roaming\uTorrent\uTorrent.exe =>.SUP.Orphan.MUICache
[HKU\S-1-5-21-446094025-1014057490-1284722728-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\SON Y\Desktop\Nouveau dossier (3)\daemon tools lite 10_674926091.exe =>.SUP.Orphan.MUICache
C:\Program Files\3HRE32X1UJ\3HRE32X1U.exe =>Adware.Wizzcaster
C:\Program Files\QNA2VLKGZG\XQYPVOG0T.exe =>Adware.Wizzcaster
C:\Program Files\3HRE32X1UJ\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\3HRE32X1UJ =>Adware.Wizzcaster
C:\Program Files\QNA2VLKGZG\uninstaller.exe =>Adware.Wizzcaster
C:\Program Files\QNA2VLKGZG =>Adware.Wizzcaster
C:\Users\SON Y\AppData\Roaming\1rmxf05f0qe\fhrpi2q2xsb.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\1rmxf05f0qe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\1xns40ff1hs\jshhhr1xt3w.exe =>Heuristic.Wizzcaster
C:\Users\SON Y\AppData\Roaming\1xns40ff1hs =>Heuristic.Wizzcaster
---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (25) - 0s
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>SUP.Optional.WinThruster
https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.TweakBit
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.WallpaperHD
https://nicolascoolman.eu/2017/09/15/adware-wizzcaster/ =>Adware.Wizzcaster
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>SUP.Optional.DiskFixer
https://nicolascoolman.eu/2017/09/07/pup-optional-salus/ =>SUP.Optional.Linkury
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>Trojan.CrthRazy
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>PUP.Optional.BazzSearch
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>SUP.Optional.DiskPower
https://nicolascoolman.eu/2017/09/07/pup-optional-salus/ =>PUP.Optional.Salus
https://nicolascoolman.eu/2017/09/09/pup-optional-smartbar/ =>PUP.Optional.SmartBar
https://nicolascoolman.eu/2017/01/15/riskware-quicktime/ =>Riskware.QuickTime
https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Various
https://nicolascoolman.eu/2017/01/04/pup-optional-logichandler/ =>PUP.Optional.LogicHandler
https://nicolascoolman.eu/2017/09/15/adware-wizzcaster/ =>Heuristic.Wizzcaster
https://nicolascoolman.eu/2017/11/08/trojan-malpack/ =>Trojan.MalPack
https://nicolascoolman.eu/2017/01/13/hacktool-winactivator/ =>HackTool.WinActivator
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P)
https://nicolascoolman.eu/wp-content/uploads/2019/01/Informations-Sécurité-Zone-antimalware.jpg =>Heuristic.Suspect
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Temporary.Chrome
https://nicolascoolman.eu/2017/01/20/logiciels-superflus/ =>.SUP.Orphan.MUICache
https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>SUP.Optional.Solvusoft
---\\ NUMEROS DE SÉRIE
[00A88056E53F3E517380808D8D070F3A10] [11/03/2019] (.Smart Projects.) - C:\Program Files (x86)\Smart Projects\IsoBuster\Uninst\unins000.exe =>.Smart Projects
[00A8E25B7B7EC8BFB087B6684588C4BF42] [21/03/2019] (.Solvusoft Corporation.) - C:\Program Files (x86)\WinThruster\unins000.exe =>.Not verified
[031B779183D194FD19CA3BE9] [10/10/2018] (.INTERNET PROJECT LLC.) - C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe =>.INTERNET PROJECT LLC
[031B779183D194FD19CA3BE9] [10/10/2018] (.INTERNET PROJECT LLC.) - C:\Program Files (x86)\Freemake\CaptureLib\CaptureLibService.exe =>.INTERNET PROJECT LLC
[031B779183D194FD19CA3BE9] [10/10/2018] (.INTERNET PROJECT LLC.) - C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe =>.INTERNET PROJECT LLC
[04D2A1ED1798085D4218558F8B123620] [23/10/2018] (.Nitro Software, Inc..) - C:\Program Files\Nitro\Pro\12\npnitroie.dll =>.Nitro Software, Inc.
[04D2A1ED1798085D4218558F8B123620] [23/10/2018] (.Nitro Software, Inc..) - C:\Program Files\Nitro\Pro\12\NPShellExtension.dll =>.Nitro Software, Inc.
[04D2A1ED1798085D4218558F8B123620] [23/10/2018] (.Nitro Software, Inc..) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro Software, Inc.
[05F4210DB2B283A32FF2AED29FCB68A4] [01/03/2020] (.Opera Software AS.) - C:\Users\SON Y\AppData\Local\Programs\Opera\66.0.3515.115\installer.exe =>.Opera Software AS
[0B1F8CD59E64746BEAE153ECCA21066B] [10/02/2020] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation
[0B1F8CD59E64746BEAE153ECCA21066B] [10/02/2020] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
[0B8EACF53669F141288E54CB9C06DFF7] [15/03/2019] (.Tweakbit Pty Ltd.) - C:\Program Files (x86)\TweakBit\PCRepairKit\Downloader.exe =>.SUP.TweakBit
[0B8EACF53669F141288E54CB9C06DFF7] [15/03/2019] (.Tweakbit Pty Ltd.) - C:\Program Files (x86)\TweakBit\PCRepairKit\PCRepairKit.exe =>.SUP.TweakBit
[0B8EACF53669F141288E54CB9C06DFF7] [21/03/2019] (.Tweakbit Pty Ltd.) - C:\Program Files (x86)\TweakBit\PCRepairKit\unins000.exe =>.SUP.TweakBit
[0C15BE4A15BB0903C901B1D6C265302F] [19/02/2020] (.Google LLC.) - C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\SwReporter\80.229.200\software_reporter_tool.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [20/03/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\73.0.3683.86\elevation_service.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [20/03/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [21/03/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\73.0.3683.86\Installer\chrmstp.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [21/03/2019] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\73.0.3683.86\Installer\setup.exe =>.Google LLC
[0C5396DCB2949C70FAC48AB08A07338E] [07/03/2020] (.Mozilla Corporation.) - C:\ProgramData\mozglue.dll =>.Mozilla Corporation
[0C5396DCB2949C70FAC48AB08A07338E] [07/03/2020] (.Mozilla Corporation.) - C:\ProgramData\nss3.dll =>.Mozilla Corporation
[0D2CACCD3E9EEC06738410BA31BF6595] [12/02/2020] (.Adobe Inc..) - C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\PepperFlash\32.0.0.330\pepflashplayer.dll =>.Adobe Inc.
[0FA5B80428F4624CF9672211E1956FBE] [10/01/2019] (.VideoLAN.) - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [05/03/2020] (.ESET, spol. s r.o..) - C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\SwReporter\80.229.200\edls_64.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [05/03/2020] (.ESET, spol. s r.o..) - C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\SwReporter\80.229.200\em000_64.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [05/03/2020] (.ESET, spol. s r.o..) - C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\SwReporter\80.229.200\em001_64.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [05/03/2020] (.ESET, spol. s r.o..) - C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\SwReporter\80.229.200\em002_64.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [05/03/2020] (.ESET, spol. s r.o..) - C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\SwReporter\80.229.200\em003_64.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [05/03/2020] (.ESET, spol. s r.o..) - C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\SwReporter\80.229.200\em004_64.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [05/03/2020] (.ESET, spol. s r.o..) - C:\Users\SON Y\AppData\Local\Google\Chrome\User Data\SwReporter\80.229.200\em005_64.dll =>.ESET, spol. s r.o.
[109F1DAAAFB83315A6B64A6EED82D816] [08/03/2020] (.DT Soft Ltd.) - C:\Windows\System32\DRIVERS\dtsoftbus01.sys =>.DT Soft Ltd
[1121356405609AB95F8DDB13164B82F96DE5] [23/10/2012] (.Disc Soft Ltd.) - C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe =>.Disc Soft Ltd
[1121356405609AB95F8DDB13164B82F96DE5] [23/10/2012] (.Disc Soft Ltd.) - C:\Program Files (x86)\DAEMON Tools Pro\DTPro.exe =>.Disc Soft Ltd
[1121356405609AB95F8DDB13164B82F96DE5] [23/10/2012] (.Disc Soft Ltd.) - C:\Program Files (x86)\DAEMON Tools Pro\DTShl64.dll =>.Disc Soft Ltd
[112172E6B04266BB4059BFEF636CF8F452A0] [07/03/2020] (.Disc Soft Ltd.) - C:\Windows\System32\DRIVERS\dtlitescsibus.sys =>.Disc Soft Ltd
[112172E6B04266BB4059BFEF636CF8F452A0] [07/03/2020] (.Disc Soft Ltd.) - C:\Windows\System32\DRIVERS\dtliteusbbus.sys =>.Disc Soft Ltd
[14F8FDD167F92402B1570B5DC495C815] [28/03/2019] (.Google Inc.) - C:\Program Files (x86)\GUM5230.tmp\GoogleCrashHandler.exe =>.Google Inc
[15E5AC0A487063718E39DA52301A0488] [09/03/2012] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe =>.Adobe Systems Incorporated
[15E5AC0A487063718E39DA52301A0488] [14/03/2012] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Adobe\Adobe Utilities - CS6\ExtendScript Toolkit CS6\ExtendScript Toolkit.exe =>.Adobe Systems Incorporated
[15E5AC0A487063718E39DA52301A0488] [24/03/2012] (.Adobe Systems Incorporated.) - C:\Program Files\Adobe\Adobe After Effects CS6\Support Files\AfterFX.exe =>.Adobe Systems Incorporated
[15E5AC0A487063718E39DA52301A0488] [27/03/2012] (.Adobe Systems Incorporated.) - C:\Program Files\Adobe\Adobe Premiere Pro CS6\Adobe Premiere Pro.exe =>.Adobe Systems Incorporated
[15E5AC0A487063718E39DA52301A0488] [30/03/2012] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Adobe\Adobe Flash CS6\Flash.exe =>.Adobe Systems Incorporated
[1D9FF0CFF14FE700963E52F6CDACF575] [26/05/2015] (.Synaptics Incorporated.) - C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated
[1ED0F913987F133C774A54566F97BB2E] [27/08/2012] (.Renesas Electronics Corporation.) - C:\Windows\System32\DRIVERS\nusb3xhc.sys =>.Renesas Electronics Corporation
[274396EE3346CEA0ED5278A0] [02/04/2019] (.Innovative Solutions Grup SRL.) - C:\Program Files (x86)\InterVpn\InterVpn\innoupd.exe =>.Not verified
[2B20EB3380792AB011F662C064FDB473] [15/12/2015] (.Apple Inc..) - C:\Program Files (x86)\QuickTime\QuickTimePlayer.exe =>.Apple Inc.
[2E4FAC6F275CB1BFC6FB0BB9D48BC51E] [23/04/2013] (.Adobe Systems Incorporated.) - C:\Program Files\Adobe\Adobe Photoshop CC (64 Bit)\Photoshop.exe =>.Adobe Systems Incorporated
[356EDBC5535C4B89E56D2CCBE0E17D7F] [09/09/2018] (.Ashampoo GmbH & Co. KG.) - C:\Program Files (x86)\DreamTrips\DreamTrip.exe =>.Ashampoo GmbH & Co. KG
[3A8BA9FFD8F8D390BC55F22F8B96D8B1] [09/01/2019] (.Digiarty Software, Inc..) - C:\Program Files (x86)\Digiarty\VideoProc\AMDCheck.exe =>.Digiarty Software, Inc.
[3A8BA9FFD8F8D390BC55F22F8B96D8B1] [09/01/2019] (.Digiarty Software, Inc..) - C:\Program Files (x86)\Digiarty\VideoProc\VideoProc.exe =>.Digiarty Software, Inc.
[3A8BA9FFD8F8D390BC55F22F8B96D8B1] [11/01/2019] (.Digiarty Software, Inc..) - C:\Program Files (x86)\Digiarty\VideoProc\uninstaller.exe =>.Digiarty Software, Inc.
[42EB170A91A28518A60B5855058F99B6] [18/04/2013] (.Adobe Systems Incorporated.) - C:\Program Files\Adobe\Adobe Media Encoder CC\Adobe Media Encoder.exe =>.Adobe Systems Incorporated
[435AAC4CDEE49ED6A914512DBD1474DD] [11/03/2019] (.MAXON Computer GmbH.) - C:\Program Files\MAXON\CINEMA 4D R17\CINEMA 4D TeamRender Client.exe =>.MAXON Computer GmbH
[435AAC4CDEE49ED6A914512DBD1474DD] [11/03/2019] (.MAXON Computer GmbH.) - C:\Program Files\MAXON\CINEMA 4D R17\CINEMA 4D.exe =>.MAXON Computer GmbH
[467C402C26FAB742484F70E0A0E66CCD] [29/11/2013] (.Qualcomm Atheros.) - C:\Windows\System32\DRIVERS\L1C62x64.sys =>.Qualcomm Atheros
[4815A1FA9D0B8384CB186939E436B3B0] [24/04/2013] (.Adobe Systems Incorporated.) - C:\Program Files\Adobe\Adobe InDesign CC (64 bit)\InDesign.exe =>.Adobe Systems Incorporated
[4815A1FA9D0B8384CB186939E436B3B0] [31/05/2013] (.Adobe Systems Incorporated.) - C:\Program Files\Adobe\Adobe Illustrator CC (64 Bit)\Support Files\Contents\Windows\Illustrator.exe =>.Adobe Systems Incorporated
[489613E7DD6964B152A4E8F71813E76A] [11/02/2011] (.CACE Technologies, Inc..) - C:\Windows\System32\drivers\npf.sys =>.CACE Technologies, Inc.
[4C8D45FC7CC0B584D14E1647FADFA2B1] [13/01/2020] (.Xing Wang.) - C:\Program Files\BitComet\BitComet.exe =>.Xing Wang
[4CD0FF117A776E398FDBF875CA016698] [11/01/2016] (.Wacom Technology Corp..) - C:\Program Files\Tablet\DevInst.exe =>.Wacom Technology Corp.
[4CD0FF117A776E398FDBF875CA016698] [11/01/2016] (.Wacom Technology Corp..) - C:\Program Files\Tablet\Wacom\32\Remove.exe =>.Wacom Technology Corp.
[4CD0FF117A776E398FDBF875CA016698] [11/01/2016] (.Wacom Technology Corp..) - C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe =>.Wacom Technology Corp.
[4CD0FF117A776E398FDBF875CA016698] [11/01/2016] (.Wacom Technology Corp..) - C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe =>.Wacom Technology Corp.
[4CD0FF117A776E398FDBF875CA016698] [11/01/2016] (.Wacom Technology Corp..) - C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe =>.Wacom Technology Corp.
[4CD0FF117A776E398FDBF875CA016698] [11/01/2016] (.Wacom Technology Corp..) - C:\Program Files\Tablet\Wacom\WTabletServicePro.exe =>.Wacom Technology Corp.
[4CD0FF117A776E398FDBF875CA016698] [30/11/2015] (.Wacom Technology Corp..) - C:\Windows\System32\DRIVERS\hidkmdf.sys =>.Wacom Technology Corp.
[4CD0FF117A776E398FDBF875CA016698] [30/11/2015] (.Wacom Technology Corp..) - C:\Windows\System32\DRIVERS\wachidrouter.sys =>.Wacom Technology Corp.
[4CD0FF117A776E398FDBF875CA016698] [30/11/2015] (.Wacom Technology Corp..) - C:\Windows\System32\DRIVERS\wacomrouterfilter.sys =>.Wacom Technology Corp.
[4CD9E755850C1372B48DC182A7308BAB] [04/12/2014] (.Advanced Micro Devices, Inc..) - C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe =>.Advanced Micro Devices, Inc.
[4CD9E755850C1372B48DC182A7308BAB] [04/12/2014] (.Advanced Micro Devices, Inc..) - C:\Program Files\AMD\CIM\Bin64\ATISetup.exe =>.Advanced Micro Devices, Inc.
[4CD9E755850C1372B48DC182A7308BAB] [21/11/2014] (.Advanced Micro Devices, Inc..) - C:\Windows\System32\drivers\amdacpksd.sys =>.Advanced Micro Devices, Inc.
[529E3F9FCF7D58D520D607AB74395002] [03/09/2018] (.win.rar GmbH.) - C:\Program Files\WinRAR\Ace32Loader.exe =>.win.rar GmbH
[529E3F9FCF7D58D520D607AB74395002] [03/09/2018] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH
[529E3F9FCF7D58D520D607AB74395002] [03/09/2018] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH
[58A0B925D5BD9E142F9E9B394ECE6270] [28/04/2015] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDapp.exe =>.Adobe Systems Incorporated
[5FA2A6E514B187C52E1FEA5240CB04E9] [13/09/2013] (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe =>.Apple Inc.
[5FA2A6E514B187C52E1FEA5240CB04E9] [13/09/2013] (.Apple Inc..) - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe =>.Apple Inc.
[6F13BCD50963D2F309439E37FD459C7C] [08/03/2020] (.BitTorrent Inc.) - C:\Users\SON Y\AppData\Local\Temp\HYD3D5E.tmp.1583655674_permissionsCopy\uTorrent.exe =>BitTorrent (P2P)
[7109FA42A4C1C70508A682A02D56DC2F] [08/03/2020] (.Open Source Developer, Martijn Laan.) - C:\Users\SON Y\AppData\Local\Temp\is-1ISH7.tmp\_isetup\_isdecmp.dll =>.Open Source Developer, Martijn Laan
[796B808254C6EB0C37BE0A2ADE81DC5A] [27/01/2016] (.Adobe Systems Incorporated.) - C:\Program Files\Adobe\Adobe Animate CC 2015\Animate.exe =>.Adobe Systems Incorporated
~ Unselected Options: O82,
~ End of the scan, 19109 items in 06mn49s (2465)(0)