cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2021.2.13.278 Par Nicolas Coolman (2021/02/13)
~ Démarré par aurel (Administrator) (2021/02/13 20:24:07)
~ Web: https://www.nicolascoolman.com
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version: Version OK
~ Mode: Scanner
~ Rapport: C:\Users\aurel\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\aurel\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 16299) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (2) - 0s
~ GCIE: Google Chrome v88.0.4324.150
~ MSIE: Internet Explorer v11.1087.16299.0

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (3) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : OK

---\\ LOGICIELS DE PROTECTION (2) - 7s
Windows Defender W10 (Deactivate) (Protection)
Malwarebytes version 4.3.0.98 v4.3.0.98 (Protection)

---\\ LOGICIELS D'OPTIMISATION (1) - 7s
~ CCleaner v5.76 (Optimisation)

---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: AMD64 Family 22 Model 48 Stepping 1, AuthenticAMD
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 9396.492 MB (73% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 856 GB (89%) free of 953 GB : OK =>.Disk Space

---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: LAPTOP-KP167VMT
~ User Name: aurel
~ Logged in as Administrator

---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (1) - 0s
~ Drive C: has 856 GB free of 953 GB (System)

---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 4s
[MD5.5CDE14540712838961E3B63930CE8C5D] - 09/08/2018 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [3904304] =>.Microsoft Windows®
[MD5.731A783A36A8E69A6434D19D98B12A09] - 29/09/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71168] [Unsigned] =>.Microsoft Corporation
[MD5.BF3E1D9B2360C6BE4CC3094CD2DDC617] - 29/09/2017 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [359584] [Unsigned] =>.Microsoft Corporation
[MD5.B29057DDBF225608F9086E14C204DCF5] - 06/03/2019 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [4831744] [Unsigned] =>.Microsoft Corporation
[MD5.107DC6159F1939DC75D448A18929BBAD] - 31/08/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [715776] [Unsigned] =>.Microsoft Corporation
[MD5.4D487E7D2B047FB929BE00117C09F9EC] - 29/09/2017 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [414720] [Unsigned] =>.Microsoft Corporation
[MD5.4FD3168268A6EDC0934B79A6C0FDA89B] - 29/06/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [739184] =>.Microsoft Windows®
[MD5.677721DE2125B0B65EB52754591A8D56] - 29/06/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [596648] =>.Microsoft Windows®
[MD5.2A79681184A45BC3440868EAB302633D] - 14/03/2019 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [2788864] [Unsigned] =>.Microsoft Corporation
[MD5.3B34C7B9D7E22AEF58DF0CFC4C7CC82D] - 30/09/2017 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation
[MD5.66E7F43C756AB790475161C1B7E7937D] - 06/03/2019 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [614200] [Unsigned] =>.Microsoft Corporation
[MD5.6191B9B2EE0E8CB957C683B9B341CC86] - 29/09/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28568] [Unsigned] =>.Microsoft Corporation
[MD5.03BB051642FC5A8186FCD2BA693F2C19] - 06/03/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [93184] [Unsigned] =>.Microsoft Corporation
[MD5.7DC141311B1DF9FA162711BBA8990ACC] - 18/07/2018 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [159744] [Unsigned] =>.Microsoft Corporation
[MD5.D7E6591F3D2B9FB5C4F0D05D5CF3A9F8] - 11/05/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [150528] [Unsigned] =>.Microsoft Corporation
[MD5.99A34FD1F6431A10D8C3BB50E170D0F2] - 29/09/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [86016] [Unsigned] =>.Microsoft Corporation
[MD5.56FF074E50F9042FD2856AB3418F4B18] - 29/09/2017 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [105984] [Unsigned] =>.Microsoft Corporation
[MD5.7BEC2AF23F586EFF0DB4DBF4331B0C70] - 29/09/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [214016] [Unsigned] =>.Microsoft Corporation
[MD5.E1A004C870BFE8021AE0174F0FD4B259] - 25/09/2018 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [494592] [Unsigned] =>.Microsoft Corporation
[MD5.F2E3C51BE7C3DBE509BCCCCB944B913E] - 02/04/2019 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [316416] [Unsigned] =>.Microsoft Corporation
[MD5.867A54B34A1D5F78BF9871F4A4849028] - 14/03/2019 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2391352] [Unsigned] =>.Microsoft Corporation
[MD5.2E07EC2C1622F5E7B535D62DCD61F3AB] - 29/09/2017 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [98816] [Unsigned] =>.Microsoft Corporation
[MD5.E0220BB6580D34001D4D1D133052DAA4] - 29/09/2017 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [106496] [Unsigned] =>.Microsoft Corporation
[MD5.EC56BE5C293D840C60DF60B92EEA8571] - 14/03/2019 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [182784] [Unsigned] =>.Microsoft Corporation
[MD5.09125A12CAB5F8D5EAE9C83C25792FDD] - 30/03/2018 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [121248] [Unsigned] =>.Microsoft Corporation
[MD5.5B27846CF4B1C21AFB3A35A8336BA02F] - 14/12/2017 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [401304] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES SERVICES (Non désactivés) (64) - 9s
O23 - Service: (AMD Crash Defender Service) . (.Advanced Micro Devices, Inc. - AMD Crash Defender Service.) - C:\WINDOWS\System32\amdfendrsr.exe [Unsigned] =>.Advanced Micro Devices, Inc.
O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\Windows\System32\DriverStore\FileRepository\u0364033.inf_amd64_f36ad498a78de343\B363860\atiesrxx.exe =>.Advanced Micro Devices, Inc.®
O23 - Service: AtherosSvc (AtherosSvc) . (. - Windows Setup API.) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [Unsigned] =>.Atheros
O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Service d’infrastructure des tâches en arri.) - C:\WINDOWS\System32\bisrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_101b9a) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: Service Microsoft Office « Démarrer en un clic » (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run (SxS).) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft Windows®
O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: ESET Service (ekrn) . (.ESET - ESET Service.) - C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o.®
O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
O23 - Service: ICEsound Service (ICEsoundService) . (.ICEpower a/s - ICEpower ICEsound APO service.) - C:\WINDOWS\system32\ICEsoundService64.exe [Unsigned] =>.ICEpower a/s
O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\WINDOWS\System32\ikeext.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Hôte de synchronisation_101b9a (OneSyncSvc_101b9a) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: C:\WINDOWS\System32\osrss.dll (osrss) . (.Microsoft Corporation - osrss.) - C:\WINDOWS\System32\osrss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SecurityHealthAgent.dll (SecurityHealthService) . (.Microsoft Corporation - Windows Security Health Service.) - C:\WINDOWS\System32\SecurityHealthService.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: Windows Remediation Service (sedsvc) . (.Microsoft Corporation - sedsvc.) - C:\Program Files\rempl\sedsvc.exe =>.Microsoft®
O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\usocore.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) - C:\WINDOWS\System32\usocore.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service utilisateur de notifications Push Windows_101b9a (WpnUserService_101b9a) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher®
O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (79) - 24s
SR - Boot [29/09/2017] [ 107416] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 1135512] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft Windows®
SR - Auto [09/02/2021] [ 517536] (AMD Crash Defender Service) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\amdfendrsr.exe =>.Microsoft®
SR - Auto [11/02/2021] [ 528704] (AMD External Events Utility) . (.AMD.) - C:\Windows\System32\DriverStore\FileRepository\u0364033.inf_amd64_f36ad498a78de343\B363860\atiesrxx.exe =>.Advanced Micro Devices, Inc.®
SR - Demand [09/02/2021] [ 98744] AMD Crash Defender Driver (amdfendr) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\DRIVERS\amdfendr.sys =>.Microsoft®
SR - Demand [12/06/2017] [ 101232] AMD Kernel Mode CSP Service (amdkmcsp) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\DRIVERS\amdkmcsp.sys =>.Advanced Micro Devices Inc.®
SR - Demand [11/02/2021] [79109408] (amdkmdag) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0364033.inf_amd64_f36ad498a78de343\B363860\amdkmdag.sys =>.Advanced Micro Devices, Inc.®
SR - Boot [29/09/2017] [ 83352] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 258592] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 27032] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft Windows®
SR - Demand [27/07/2020] [ 62056] AMD Link Controller Emulation (AMDXE) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdxe.sys =>.Advanced Micro Devices, Inc.®
SR - Auto [00/00/0000] [ 0] AppEx Networks Accelerat (APXACC) . (...) - C:\WINDOWS\System32\DRIVERS\appexDrv.sys (.not file.) [Unsigned]
SR - Boot [29/09/2017] [ 131992] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft Windows®
SR - Auto [29/06/2015] [ 323152] AtherosSvc (AtherosSvc) . (...) - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [Unsigned] =>.Atheros
SR - Demand [29/09/2017] [ 4233728] Qualcomm Atheros Extens (athr) . (.Qualcomm Atheros Communications, Inc..) - C:\WINDOWS\System32\drivers\athw8x.sys [Unsigned] =>.Qualcomm Atheros Communications, Inc.
SR - Demand [09/06/2020] [ 107936] AMD Function Driver f (AtiHDAudioService) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\AtihdWT6.sys =>.Microsoft®
SR - Boot [29/09/2017] [ 533912] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft Windows®
SR - Demand [29/09/2017] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation
SR - Auto [18/05/2010] [ 345376] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.®
SR - Demand [13/07/2016] [ 610336] BtFilter (BtFilter) . (.Qualcomm Atheros.) - C:\WINDOWS\System32\DRIVERS\btfilter.sys =>.Microsoft Windows Hardware Compatibility Publisher®
SR - Boot [29/09/2017] [ 357272] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft Windows®
SR - Demand [29/09/2017] [ 1723288] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft Windows®
SR - System [26/10/2020] [ 160992] eamonm (eamonm) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\eamonm.sys =>.ESET, spol. s r.o.®
SR - Boot [29/09/2017] [ 3419032] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft Windows®
SR - Boot [26/10/2020] [ 109360] edevmon (edevmon) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\edevmon.sys =>.ESET, spol. s r.o.®
SR - Boot [22/10/2020] [ 15288] eelam (eelam) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\eelam.sys =>.Microsoft®
SR - System [26/10/2020] [ 190464] ehdrv (ehdrv) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\ehdrv.sys =>.ESET, spol. s r.o.®
SR - Auto [26/10/2020] [ 43720] ekbdflt (ekbdflt) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\ekbdflt.sys =>.ESET, spol. s r.o.®
SR - Auto [26/10/2020] [ 2595360] ESET Service (ekrn) . (.ESET.) - C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o.®
SS - Demand [26/10/2020] [ 2595360] ESET Firewall Helper (ekrnEpfw) . (.ESET.) - C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o.®
SR - System [26/10/2020] [ 70048] epfw (epfw) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\epfw.sys =>.ESET, spol. s r.o.®
SR - System [26/10/2020] [ 107784] epfwwfp (epfwwfp) . (.ESET.) - C:\WINDOWS\System32\DRIVERS\epfwwfp.sys =>.ESET, spol. s r.o.®
SS - Demand [04/02/2021] [ 1434224] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.150\elevation_service.exe =>.Google LLC®
SR - Auto [28/01/2018] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SS - Demand [28/01/2018] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc®
SR - Boot [29/09/2017] [ 63520] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft Windows®
SR - Demand [29/09/2017] [ 36864] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [29/09/2017] [ 91648] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [29/09/2017] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation
SR - Demand [29/09/2017] [ 88576] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [29/09/2017] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation
SR - Demand [29/09/2017] [ 174592] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [29/09/2017] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group®
SR - Demand [29/09/2017] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation
SR - Boot [29/09/2017] [ 674200] Intel(R) SATA RAID Cont (iaStorAV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAV.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 412056] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft Windows®
SR - Demand [29/09/2017] [ 526232] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft Windows®
SR - Auto [12/02/2021] [ 483808] ICEsound Service (ICEsoundService) . (.ICEpower a/s.) - C:\WINDOWS\system32\ICEsoundService64.exe =>.ICEpower a/s®
SR - Demand [12/02/2021] [ 6248896] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.®
SR - Demand [19/05/2015] [ 37888] KB9X I2C Controller Service (Kb9xI2c) . (.ENE TECHNOLOGY INC..) - C:\WINDOWS\System32\drivers\Kb9xI2c.sys =>.Microsoft Windows Hardware Compatibility Publisher®
SR - Demand [10/03/2016] [ 21408] Launch Manager Wireless Driver (LMDriver) . (.Acer Incorporated.) - C:\WINDOWS\System32\drivers\LMDriver.sys =>.Acer Incorporated®
SR - Boot [29/09/2017] [ 108064] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 123800] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 103320] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 82840] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft Windows®
SR - Boot [11/01/2021] [ 19912] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft®
SS - Demand [11/01/2021] [ 7456464] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc®
SR - Demand [11/02/2021] [ 248968] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc®
SR - Boot [29/09/2017] [ 59800] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 63520] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 575896] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft Windows®
SR - Demand [29/09/2017] [ 842648] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 63896] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft Windows®
SR - Demand [29/09/2017] [ 108952] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 150424] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 166296] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 58776] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 61848] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft Windows®
SR - Demand [10/03/2016] [ 14752] Shim for HID-KMDF Interface (RadioShim) . (.Acer Incorporated.) - C:\WINDOWS\System32\drivers\RadioShim.sys =>.Acer Incorporated®
SR - Demand [19/01/2021] [ 1147384] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.®
SR - Demand [27/05/2015] [ 402136] Realtek USB Card Reader - UER (RTSUER) . (.Realsil Semiconductor Corporation.) - C:\WINDOWS\System32\Drivers\RtsUer.sys =>.Realtek Semiconductor Corp®
SR - Boot [29/09/2017] [ 44952] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 81816] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 31128] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft Windows®
SR - Demand [29/07/2015] [ 47784] Synaptics HID Service (SynRMIHID) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynRMIHID.sys =>.Synaptics Incorporated®
SR - Boot [29/09/2017] [ 166808] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft Windows®
SR - Boot [29/09/2017] [ 305560] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft Windows®
SR - Demand [29/09/2017] [ 32152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft Windows®
SR - Demand [29/09/2017] [ 64920] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft Windows®

---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (12) - 25s
O38 - TASK: {0BE035F3-B2FB-40FE-A714-5EB3E9ED6BAF} [64Bits][\FUBTrackingByPLD] - (. - FubTracking.) -- C:\OEM\Preload\FubTracking\FubTracking.exe [30976]
O38 - TASK: {5D53CFD3-375F-4EAA-91CF-4DB447AAC52F} [64Bits][\CCleaner Update] - (.Piriform Software Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [686384] =>.Piriform Software Ltd
O38 - TASK: {B96874B4-D2EA-4A3E-B6EF-194B10D46876} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
O38 - TASK: {C3095AAE-8077-4DC2-8B5C-2FD284704555} [64Bits][\Software Update Application] - (.Acer Incorporated - ListCheck.) -- C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [472992] =>.Acer Incorporated
O38 - TASK: {CB51D1A9-CB14-43F6-B85A-14F1EC791106} [64Bits][\CCleanerSkipUAC] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [26913848] =>.Piriform Software Ltd
O38 - TASK: {F36F5B6E-3B93-4CA3-BFBE-7FE9CEA7D66B} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc.
C:\WINDOWS\System32\Tasks\FUBTrackingByPLD - (..) -- C:\OEM\Preload\FubTracking\FubTracking.exe []
C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Software Ltd
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc.
C:\WINDOWS\System32\Tasks\Software Update Application - (.Acer Incorporated.) -- C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [] =>.Acer Incorporated
C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc.

---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (8) - 3s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows®
O4 - HKLM\..\Run: [egui] . (.ESET - ESET command line interface.) -- C:\Program Files\ESET\ESET Security\ecmds.exe =>.ESET, spol. s r.o.®
O4 - HKCU\..\Run: [HP ENVY 4520 series (NET)] . (. - .) -- 1. =>.SUP.Orphan
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd®
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows®
O4 - HKUS\S-1-5-21-3549993050-1913437335-661404786-1001\..\Run: [HP ENVY 4520 series (NET)] . (. - .) -- 1. =>.SUP.Orphan
O4 - HKUS\S-1-5-21-3549993050-1913437335-661404786-1001\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd®

---\\ PROCESSUS LANCÉS (13) - 86s
[MD5.108F1279E1F1C7DA99EF4F15A7DCCF5B] - (.ESET - ESET Proxy GUI.) -- C:\Program Files\ESET\ESET Security\eguiproxy.exe [736552] [PID.6032] =>.ESET, spol. s r.o.®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.3808] =>.Google LLC®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.5544] =>.Google LLC®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.6312] =>.Google LLC®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.10908] =>.Google LLC®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.9352] =>.Google LLC®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.9288] =>.Google LLC®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.1308] =>.Google LLC®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.10860] =>.Google LLC®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.11060] =>.Google LLC®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.9728] =>.Google LLC®
[MD5.275282B613B4392D5CB81B55A597456D] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2247792] [PID.8504] =>.Google LLC®
[MD5.13351951E285BD84A3AF23C9F9EE8B0F] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\aurel\AppData\Roaming\ZHP\ZHPDiag3.exe [3284616] [PID.8332] [Unsigned] =>.Nicolas Coolman

---\\ CHROME, Démarrage, Recherche, Extensions (16) - 4s
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [coobgpohoikkiipiblmjeljniedjpjpf] http://www.google.com/ =>.Google Inc. {Hidden Chrome extensions}
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [gighmmpiobklfepjocnamgkkbiglidom] Toggle Pause/Resume on all sites =>.Legitimate
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [gmpaiomihcebnclahoknbodeiaiohcdi] HP Smart Print =>.Hewlett-Packard
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [aurel][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [aurel][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [aurel][User Data\Default\Local Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock}
G2 - GCE: Preference [aurel][User Data\Default\Managed Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock}
G2 - GCE: Preference [aurel][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router}

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (24) - 6s
M0 - MFSP: prefs.js [aurel - 743sgwtd.default] http://www.google.fr/ =>.Google Inc.
P2 - EXT FILE: (.Français Language Pack - Language pack for Firefox for fr.) -- C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\extensions\langpack-fr@firefox.mozilla.org.xpi [Unsigned] =>.Français Language Pack
P2 - EXT: (.Amazon - Amazon Assistant for Firefox.) -- C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\extensions\abb-acer@amazon.com =>.Amazon
P2 - EXT: (.Mozilla - Mozilla Partner Defaults.) -- C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\extensions\partnerdefaults@mozilla.com =>.Mozilla
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\bookmarkbackups =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\browser-extension-data =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\crashes =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\datareporting =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\extensions =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\features =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\gmp =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\gmp-eme-adobe =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\gmp-gmpopenh264 =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\gmp-widevinecdm =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\healthreport =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\jetpack =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\minidumps =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\saved-telemetry-pings =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\security_state =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\sessionstore-backups =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\shader-cache =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\storage =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\webapps =>Mozilla Corporation
C:\Users\aurel\AppData\Roaming\Mozilla\Firefox\Profiles\743sgwtd.default\browser-extension-data\screenshots@mozilla.org =>Mozilla Corporation

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (16) - 1s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://acer15.msn.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer15.msn.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.16299.820 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s
~ IE Restricted Site Good: amazon.fr
~ Microsoft Internet Explorer Restricted Site(s) Domains: 1(Good) / 0(Bad)

---\\ INTERNET EXPLORER,Proxy Management (3) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll =>.Microsoft®

---\\ RACCOURCIS GLOBAL STARTUP (32) - 11s
O4 - GS\Desktop [aurel]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\aurel\AppData\Roaming\ZHP\ZHPDiag3.exe [Unsigned] =>.Nicolas Coolman
O4 - GS\Quicklaunch [aurel]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\sendTo [aurel]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation
O4 - GS\sendTo [aurel]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation
O4 - GS\sendTo [aurel]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\TaskBar [aurel]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\Programs [aurel]: McAfee WebAdvisor.lnk . (...) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe [Unsigned]
O4 - GS\Programs [Public]: McAfee WebAdvisor.lnk . (...) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe [Unsigned]
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\internet explorer\iexplore.exe =>.Microsoft Corporation®
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes
O4 - GS\ProgramsCommon [Public]: OneNote.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft®

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (2) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.43.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{ba0df62d-002f-4509-8338-341f8fa91301}: DhcpNameServer = 192.168.43.1 =>.Local IP Adress

---\\ PROTOCOLE ADDITIONNEL (23) - 3s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation

---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (4) - 0s
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RTHDVCPL =>.Realtek Semiconductor Corp.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:StartCCC =>.ATI Technologies
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:HP Software Update =>.Hewlett-Packard

---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (5) - 3s
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation®
O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.150\Installer\chrmstp.exe =>.Google LLC®

---\\ LOGICIELS INSTALLÉS (48) - 40s
O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {DE74B890-4025-A7BE-8EBC-F374528DCFFD} [Unsigned] =>.Advanced Micro Devices, Inc.
O42 - Logiciel: Assistant Mise à jour de Windows 10 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D5C69738-B486-402E-85AC-2456D98A64E4} =>.Microsoft®
O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {B91110FB-33B4-468B-90C2-4D5E8AE3FAE1} [Unsigned] =>.Apple Inc.
O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Software Ltd®
O42 - Logiciel: ENE KB9X I2C Controller Driver - (.ENE.) [HKLM][64Bits] -- 0C78F1298C9A10E6EE6050EC07C69913C7E56B2C [Unsigned] =>.ENE
O42 - Logiciel: ESET Security - (.ESET, spol. s r.o..) [HKLM][64Bits] -- {3B47BDC5-99BF-4F5C-A303-1F0F9DBC74F6} [Unsigned] =>.ESET, spol. s r.o.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [Unsigned] =>.Google Inc. (Hidden)
O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC®
O42 - Logiciel: GUILD WARS - (..) [HKLM][64Bits] -- Guild Wars =>.ArenaNet LLC®
O42 - Logiciel: Logiciel de base du périphérique HP ENVY 4520 series - (.Hewlett-Packard Co..) [HKLM][64Bits] -- {D20015E2-CAB7-4664-B8D8-F153E9427DE2} [Unsigned] =>.Hewlett-Packard Co.
O42 - Logiciel: Malwarebytes version 4.3.0.98 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc®
O42 - Logiciel: Microsoft 365 - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- O365HomePremRetail - fr-fr =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM][64Bits] -- {DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM][64Bits] -- {196BB40D-1578-3D01-B289-BEFC77A11A1E} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 - (.Microsoft Corporation.) [HKLM][64Bits] -- {15134cb0-b767-4960-a911-f2d16ae54797} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 - (.Microsoft Corporation.) [HKLM][64Bits] -- {22154f09-719a-4619-bb71-5b3356999fbf} =>.Microsoft Corporation®
O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 - (.Microsoft Corporation.) [HKLM][64Bits] -- {AC53FC8B-EE18-3F9C-9B59-60937D0B182C} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A2CB1ACB-94A2-32BA-A15E-7D80319F7589} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 - (.Microsoft Corporation.) [HKLM][64Bits] -- {FDB30193-FDA0-3DAA-ACCA-A75EEFE53607} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 - (.Microsoft Corporation.) [HKLM][64Bits] -- {74d0e5db-b326-4dae-a6b2-445b9de1836e} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23026 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BE960C1C-7BAD-3DE6-8B1A-2616FE532845} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23026 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A2563E55-3BEC-3828-8D67-E5E8B9E8B675} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6913e92a-b64e-41c9-a5e6-cef39207fe89} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2019 X64 Additional Runtime - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7D0B74C2-C3F8-4AF1-940F-CD79AB4B2DCE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EEA66967-97E2-4561-A999-5C22E3CDE428} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: OEM Application Profile - (.Advanced Micro Devices Inc.) [HKLM][64Bits] -- {60499BF0-C3D1-40CC-8600-8A7246534466} [Unsigned] =>.Advanced Micro Devices Inc
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Qualcomm Atheros Bluetooth Suite (64) - (.Qualcomm Atheros.) [HKLM][64Bits] -- {A84A4FB1-D703-48DB-89E0-68B6499D2801} [Unsigned] =>.Qualcomm Atheros
O42 - Logiciel: Qualcomm Atheros WiFi Driver Installation - (.Qualcomm Atheros.) [HKLM][64Bits] -- {28006915-2739-4EBE-B5E8-49B25D32EB33} [Unsigned] =>.Qualcomm Atheros
O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp.®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.®
O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] -- {0BAA0A93-3AD3-4B19-9105-4C8C3FA92A83} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB4480730) - (.Microsoft Corporation.) [HKLM][64Bits] -- {3BAE4496-6F6C-4330-A8AA-B93D3D346FA5} [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: UpdateAssistant - (.Microsoft Corporation.) [HKLM][64Bits] -- {76A22428-2400-4521-96AF-7AC4A6174CA5} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: Winamax Installer - (.Winamax.) [HKCU][64Bits] -- Winamax Installer 2.8.0.1604920310 [Unsigned] =>.Winamax

---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (130) - 40s
HKLM\SOFTWARE\Wow6432Node\Classes\TypeLib\{48DDEC26-CEC3-478E-9566-0842DAF10CEA} =>.SUP.Amazon1ButtonApp
HKLM\SOFTWARE\Wow6432Node\Classes\TypeLib\{921462B2-5269-45A2-AA8D-F8F7A3690255} =>.SUP.Amazon1ButtonApp
HKLM\SOFTWARE\Classes\TypeLib\{921462B2-5269-45A2-AA8D-F8F7A3690255} =>.SUP.Amazon1ButtonApp
HKLM\SOFTWARE\AMD =>.AMD
HKLM\SOFTWARE\AMDLOG
HKLM\SOFTWARE\AppEx Networks =>.AppEx Networks
HKLM\SOFTWARE\Atheros =>.Qualcomm Atheros
HKLM\SOFTWARE\COMPAL =>.Compal
HKLM\SOFTWARE\Dolby =>.Dolby
HKLM\SOFTWARE\DTS =>.Creative Technology
HKLM\SOFTWARE\ESET =>.ESET
HKLM\SOFTWARE\Fortemedia =>.Lugert Europe
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\HP =>.HP
HKLM\SOFTWARE\ICEpower =>.ICEpower
HKLM\SOFTWARE\INextUUID =>.Hewlett-Packard
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\IPS =>.EgisTec
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Knowles =>.Knowles Electronics
HKLM\SOFTWARE\Macromedia =>.Macromedia
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Nahimic =>.Nahimic
HKLM\SOFTWARE\Nuance =>.Nuance
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\SonicFocus =>.Sonic Focus
HKLM\SOFTWARE\SoundResearch =>.Sound Research
HKLM\SOFTWARE\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\Yamaha APO =>.Yamaha Corp.
HKLM\SOFTWARE\WOW6432Node\AMD =>.AMD
HKLM\SOFTWARE\WOW6432Node\AppDataLow =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\ArenaNet =>.ArenaNet
HKLM\SOFTWARE\WOW6432Node\Clearfi =>.Samsung Electronics
HKLM\SOFTWARE\WOW6432Node\CyberLink =>.CyberLink Corporation
HKLM\SOFTWARE\WOW6432Node\ESET =>.ESET
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\WOW6432Node\HP =>.HP
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Lake =>.Lake Sofware
HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia
HKLM\SOFTWARE\WOW6432Node\McAfee =>.McAfee Inc.
HKLM\SOFTWARE\WOW6432Node\MimarSinan =>.Mimar Sinan
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\OEM =>.OEM
HKLM\SOFTWARE\WOW6432Node\Qualcomm Atheros WiFi Driver Installation =>.Qualcomm Atheros
HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\WOW6432Node\WildTangent =>.WildTangent
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Acer =>.Acer
HKCU\SOFTWARE\AMD =>.AMD
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\ATI =>.ATI
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation
HKCU\SOFTWARE\ESET =>.ESET
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\HP =>.HP
HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\OEM =>.OEM
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKCU\SOFTWARE\Visan =>.Visan Software
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKCU\SOFTWARE\AppDataLow\Software\Amazon =>.Amazon
HKU\.DEFAULT\SOFTWARE\Acer =>.Acer
HKU\.DEFAULT\SOFTWARE\AMD =>.AMD
HKU\.DEFAULT\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\ATI =>.ATI
HKU\.DEFAULT\SOFTWARE\ESET =>.ESET
HKU\.DEFAULT\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc.
HKU\.DEFAULT\SOFTWARE\OEM =>.OEM
HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform
HKU\.DEFAULT\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Acer =>.Acer
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\AMD =>.AMD
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\ATI =>.ATI
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\CyberLink =>.CyberLink Corporation
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\ESET =>.ESET
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Google =>.Google
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\HP =>.HP
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\OEM =>.OEM
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Visan =>.Visan Software
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-3549993050-1913437335-661404786-1001\SOFTWARE\ZHP =>.Nicolas Coolman

---\\ PACKAGES (1) - 0s
C:\Program Files (x86)\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm - (.Twitter Inc..) [][Twitter] =>Twitter Inc.

---\\ CONTENU DES DOSSIERS PROGRAMMES (183) - 13s
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files\Accessory Store =>.Acer Incorporated®
O43 - CFD: 12/02/2021 - [] D -- C:\Program Files\AMD =>.AMD
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 13/02/2021 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd
O43 - CFD: 12/02/2021 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 26/09/2020 - [] D -- C:\Program Files\CUAssistant =>.Microsoft®
O43 - CFD: 17/06/2016 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation
O43 - CFD: 10/01/2021 - [] D -- C:\Program Files\ESET =>.ESET, spol. s r.o.®
O43 - CFD: 17/06/2016 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files\HP =>.Hewlett-Packard
O43 - CFD: 17/10/2020 - [] D -- C:\Program Files\internet explorer =>.Microsoft Corporation
O43 - CFD: 11/01/2021 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 17/06/2016 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 12/02/2021 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 10/01/2021 - [] D -- C:\Program Files\rempl =>.Microsoft Corporation
O43 - CFD: 13/02/2016 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation
O43 - CFD: 11/01/2021 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 17/10/2020 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 17/10/2020 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files\windows nt =>.Microsoft Corporation
O43 - CFD: 17/10/2020 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 13/02/2021 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 11/01/2021 - [0] D -- C:\Program Files (x86)\Acer =>.Acer
O43 - CFD: 12/02/2021 - [] D -- C:\Program Files (x86)\AMD [Unsigned] =>.AMD
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files (x86)\Bluetooth Suite =>.ASUSTeK
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.
O43 - CFD: 23/07/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 17/06/2016 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corporation
O43 - CFD: 18/08/2020 - [] D -- C:\Program Files (x86)\Google =>.Google Inc®
O43 - CFD: 10/01/2021 - [] D -- C:\Program Files (x86)\GUILD WARS =>.NCsoft Corporation, Ltd.
O43 - CFD: 10/01/2021 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard
O43 - CFD: 12/02/2021 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 17/10/2020 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 12/02/2021 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 10/01/2021 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 17/06/2016 - [] D -- C:\Program Files (x86)\Qualcomm Atheros =>.Qualcomm Atheros
O43 - CFD: 12/02/2021 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 12/02/2021 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation
O43 - CFD: 17/10/2020 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 17/10/2020 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\windows nt =>.Microsoft Corporation
O43 - CFD: 17/10/2020 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 17/10/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 10/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer =>.Acer
O43 - CFD: 17/10/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 10/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd
O43 - CFD: 10/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET =>.ESET
O43 - CFD: 10/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard
O43 - CFD: 29/09/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 11/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools =>.Microsoft Corporation
O43 - CFD: 29/04/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office 2016 =>.Microsoft Corporation
O43 - CFD: 11/01/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation
O43 - CFD: 17/10/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 13/02/2016 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology
O43 - CFD: 11/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 13/02/2021 - [] D -- C:\ProgramData\Acer =>.Acer
O43 - CFD: 12/02/2021 - [] D -- C:\ProgramData\AMD =>.AMD
O43 - CFD: 28/01/2018 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 28/01/2018 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 17/06/2016 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 17/06/2016 - [] D -- C:\ProgramData\CLSK =>.CLSK
O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation
O43 - CFD: 10/01/2021 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation
O43 - CFD: 28/01/2018 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 10/01/2021 - [] D -- C:\ProgramData\ESET =>.ESET
O43 - CFD: 28/01/2018 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard
O43 - CFD: 17/06/2016 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation
O43 - CFD: 11/01/2021 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 11/01/2021 - [] D -- C:\ProgramData\McAfee =>.McAfee
O43 - CFD: 17/06/2016 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\ProgramData\mia2D87.tmp
O43 - CFD: 10/01/2021 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation
O43 - CFD: 17/06/2016 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 29/09/2020 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 28/01/2018 - [] HD -- C:\ProgramData\O949
O43 - CFD: 14/01/2021 - [] D -- C:\ProgramData\OEM =>.OEM
O43 - CFD: 12/02/2021 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 10/01/2021 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation
O43 - CFD: 17/06/2016 - [] D -- C:\ProgramData\Qualcomm Atheros =>.Qualcomm Atheros
O43 - CFD: 12/02/2021 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\ProgramData\Synaptics =>.Synaptics
O43 - CFD: 14/01/2021 - [] D -- C:\ProgramData\Temp =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\ProgramData\Visan =>.Visan Industries
O43 - CFD: 30/09/2017 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation
O43 - CFD: 10/01/2021 - [] D -- C:\ProgramData\{72725B64-F17C-4EB1-9CF0-3729C6F52EB5}
O43 - CFD: 17/06/2016 - [] D -- C:\Program Files (x86)\Common Files\Atheros =>.Qualcomm Atheros
O43 - CFD: 23/07/2018 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 11/01/2021 - [] D -- C:\Program Files (x86)\Common Files\McAfee =>.McAfee
O43 - CFD: 23/07/2018 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 30/09/2017 - [] D -- C:\Program Files (x86)\Common Files\system =>.Microsoft Corporation
O43 - CFD: 19/03/2018 - [] D -- C:\Users\aurel\AppData\Roaming\Acer Incorporated =>.Acer Incorporated
O43 - CFD: 28/01/2018 - [] D -- C:\Users\aurel\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 12/02/2021 - [] D -- C:\Users\aurel\AppData\Roaming\AMD =>.AMD
O43 - CFD: 14/01/2021 - [] D -- C:\Users\aurel\AppData\Roaming\com.winamax.chat =>.Winamax
O43 - CFD: 13/02/2018 - [] D -- C:\Users\aurel\AppData\Roaming\HpUpdate =>.Hewlett-Packard
O43 - CFD: 28/01/2018 - [] D -- C:\Users\aurel\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 12/02/2021 - [] SD -- C:\Users\aurel\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 30/07/2018 - [] D -- C:\Users\aurel\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 17/05/2018 - [] D -- C:\Users\aurel\AppData\Roaming\Skype =>.Skype
O43 - CFD: 11/02/2021 - [] D -- C:\Users\aurel\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 14/01/2021 - [] D -- C:\Users\aurel\AppData\Roaming\wam.04351C371E530C3762CBA45FA283ED972DCDEFB6.1
O43 - CFD: 13/02/2021 - [] D -- C:\Users\aurel\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 28/01/2018 - [0] D -- C:\Users\aurel\AppData\Local\ActiveSync =>.Microsoft Corporation
O43 - CFD: 12/02/2021 - [] D -- C:\Users\aurel\AppData\Local\AMD =>.AMD
O43 - CFD: 12/02/2021 - [] D -- C:\Users\aurel\AppData\Local\AMD_Common
O43 - CFD: 28/01/2018 - [0] SHD -- C:\Users\aurel\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 12/02/2021 - [] D -- C:\Users\aurel\AppData\Local\cache =>.Legitimate
O43 - CFD: 06/08/2018 - [] D -- C:\Users\aurel\AppData\Local\clear.fi =>.CyberLink Corporation
O43 - CFD: 31/03/2018 - [] D -- C:\Users\aurel\AppData\Local\Comms =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\Users\aurel\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation
O43 - CFD: 11/02/2021 - [0] D -- C:\Users\aurel\AppData\Local\CrashDumps =>.Microsoft Corporation
O43 - CFD: 30/01/2018 - [0] D -- C:\Users\aurel\AppData\Local\DBG =>.DBG
O43 - CFD: 22/10/2018 - [0] D -- C:\Users\aurel\AppData\Local\Diagnostics =>.Microsoft Corporation
O43 - CFD: 12/02/2021 - [] D -- C:\Users\aurel\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation
O43 - CFD: 10/01/2021 - [] D -- C:\Users\aurel\AppData\Local\ESET =>.ESET
O43 - CFD: 10/01/2021 - [] D -- C:\Users\aurel\AppData\Local\Google =>.Google
O43 - CFD: 28/01/2018 - [0] SHD -- C:\Users\aurel\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\Users\aurel\AppData\Local\HP =>.Hewlett-Packard
O43 - CFD: 10/01/2021 - [] D -- C:\Users\aurel\AppData\Local\IIIQF =>.Scrabblo
O43 - CFD: 11/01/2021 - [] D -- C:\Users\aurel\AppData\Local\mbam =>.Malwarebytes
O43 - CFD: 10/01/2021 - [] D -- C:\Users\aurel\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\Users\aurel\AppData\Local\MicrosoftEdge =>.Microsoft Corporation
O43 - CFD: 30/01/2018 - [] D -- C:\Users\aurel\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 28/01/2018 - [0] D -- C:\Users\aurel\AppData\Local\NetworkTiles =>.NetworkTiles
O43 - CFD: 28/12/2018 - [] D -- C:\Users\aurel\AppData\Local\OneDrive =>.Microsoft Corporation
O43 - CFD: 11/01/2021 - [] D -- C:\Users\aurel\AppData\Local\Packages =>.Microsoft Corporation
O43 - CFD: 17/05/2018 - [0] D -- C:\Users\aurel\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation
O43 - CFD: 10/01/2021 - [] D -- C:\Users\aurel\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 29/09/2020 - [] D -- C:\Users\aurel\AppData\Local\Publishers =>.Microsoft Corporation
O43 - CFD: 12/02/2021 - [] D -- C:\Users\aurel\AppData\Local\RadeonInstaller
O43 - CFD: 12/02/2021 - [] D -- C:\Users\aurel\AppData\Local\setup
O43 - CFD: 13/02/2021 - [] D -- C:\Users\aurel\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [0] SHD -- C:\Users\aurel\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] D -- C:\Users\aurel\AppData\Local\TileDataLayer =>.Microsoft Corporation
O43 - CFD: 03/07/2018 - [] D -- C:\Users\aurel\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 13/02/2021 - [] D -- C:\Users\aurel\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 10/01/2021 - [0] D -- C:\Users\aurel\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 13/02/2021 - [] D -- C:\Users\aurel\AppData\LocalLow\AMD =>.AMD
O43 - CFD: 13/02/2018 - [] SD -- C:\Users\aurel\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 19/11/2020 - [0] D -- C:\Users\aurel\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 29/09/2017 - [] RD -- C:\Users\aurel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [] RD -- C:\Users\aurel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 19/11/2020 - [] RD -- C:\Users\aurel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 29/09/2017 - [] D -- C:\Users\aurel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 19/11/2020 - [] RD -- C:\Users\aurel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [] RD -- C:\Users\aurel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation
O43 - CFD: 14/01/2021 - [] D -- C:\Users\aurel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamax =>.Winamax
O43 - CFD: 29/09/2017 - [] RD -- C:\Users\aurel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 17/06/2016 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 30/09/2017 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 17/06/2016 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 30/09/2017 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 29/09/2017 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 28/01/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 10/10/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 20/06/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\OEM =>.OEM
O43 - CFD: 03/07/2018 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation

---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 1s
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation

---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (24) - 8s
O108 - CMH1: ESET Security Shell [64Bits] - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.®
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: ESET Security Shell [64Bits] - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.®
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: ESET Security Shell [64Bits] - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.®
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows®
O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation®
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows®
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: ESET Security Shell [64Bits] - {B089FE88-FB52-11D3-BDF1-0050DA34150D} . (.ESET - ESET Shell Extension.) -- C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (18) - 4s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft Windows®
O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MitigationAuditOptions\\17660905521152] =>.Microsoft Windows Publisher®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES PILOTES DU SYSTÈME (420) - 60s
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [237056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107416] =>.Microsoft Windows®
O58 - SDL:2018/03/01 08:29:31 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [733592] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [20480] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:14 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [127896] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [12800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:01 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135512] =>.Microsoft Windows®
O58 - SDL:2019/03/06 11:25:05 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [614200] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:57 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [108032] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:20:39 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [240640] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/02/09 18:39:34 A . (.Advanced Micro Devices, Inc. - AMD Crash Defender.) -- C:\WINDOWS\System32\drivers\amdfendr.sys [98744] =>.Microsoft®
O58 - SDL:2018/03/30 04:20:44 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [180736] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/06/12 05:07:16 A . (.Advanced Micro Devices, Inc. - amdkmcsp sys.) -- C:\WINDOWS\System32\drivers\amdkmcsp.sys [101232] =>.Advanced Micro Devices Inc.®
O58 - SDL:2015/08/22 14:08:40 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [84224] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2018/03/30 04:20:43 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [178688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/06/12 05:07:16 A . (.Advanced Micro Devices, Inc. - amdpsp sys.) -- C:\WINDOWS\System32\drivers\amdpsp.sys [243056] =>.Advanced Micro Devices Inc.®
O58 - SDL:2017/09/29 14:41:02 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83352] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [258592] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27032] =>.Microsoft Windows®
O58 - SDL:2020/07/27 08:41:28 A . (.Advanced Micro Devices, Inc. - AMD Link Controller Emulation.) -- C:\WINDOWS\System32\drivers\amdxe.sys [62056] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2018/08/09 06:48:59 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [192416] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:41 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131992] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:58 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [28160] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28568] =>.Microsoft Windows®
O58 - SDL:2018/05/12 00:15:23 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [194456] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Qualcomm Atheros Communications, Inc. - Qualcomm Atheros Extensible Wireless LAN de.) -- C:\WINDOWS\System32\drivers\athw8x.sys [4233728] [Unsigned] =>.Qualcomm Atheros Communications, Inc.
O58 - SDL:2020/06/09 02:57:28 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [107936] =>.Microsoft®
O58 - SDL:2018/03/30 06:03:57 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [59808] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\WINDOWS\System32\drivers\BasicDisplay.sys [58880] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/01 06:51:55 A . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\WINDOWS\System32\drivers\BasicRender.sys [34816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [39832] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2018/03/30 04:22:12 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/08/28 05:13:14 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [101888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 10:10:16 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [116736] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/07/13 17:47:38 A . (.Qualcomm Atheros - Qualcomm Atheros BtFilter Driver.) -- C:\WINDOWS\System32\drivers\btfilter.sys [610336] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Bluetooth Audio/Video Remote Control HID.) -- C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [105472] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\bthhfenum.sys [107008] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Bluetooth Hands-free HID Minidriver.) -- C:\WINDOWS\System32\drivers\BthhfHid.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Réflecteur de mode utilisateur Bluetooth.) -- C:\WINDOWS\System32\drivers\bthl2cap.sys [83968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [67584] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/04/15 21:11:44 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\WINDOWS\System32\drivers\bthpan.sys [129536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/06/13 22:08:57 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1015296] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [85504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [37784] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [39424] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:01 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533912] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [60312] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - CapImg HID Driver.) -- C:\WINDOWS\System32\drivers\capimg.sys [122368] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 09:53:45 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [93184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/07/18 02:51:33 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [159744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:31 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [78744] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [141208] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [357272] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1723288] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [403352] =>.Microsoft Windows®
O58 - SDL:2018/05/11 22:52:41 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [385536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/12 00:14:11 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [373656] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:25 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1007512] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:14 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [28568] =>.Microsoft Windows®
O58 - SDL:2019/02/06 04:55:36 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [677184] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [39320] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [55704] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [85912] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:42:05 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [81304] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/11 22:48:55 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [150528] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 06:00:30 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [94104] =>.Microsoft Windows®
O58 - SDL:2018/01/01 13:38:43 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [38808] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:45 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:33:04 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [46592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [96768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16224] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:41 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [35736] =>.Microsoft Windows®
O58 - SDL:2018/03/13 07:53:36 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [91152] =>.Microsoft Windows®
O58 - SDL:2018/02/22 03:00:02 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [187296] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32256] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/01/01 12:22:10 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [25600] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/04/02 07:06:21 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [2567720] =>.Microsoft Windows®
O58 - SDL:2019/04/02 07:07:52 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [408888] =>.Microsoft Windows®
O58 - SDL:2019/04/02 07:06:21 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [749608] =>.Microsoft Windows®
O58 - SDL:2020/10/26 09:28:44 A . (.ESET - Amon monitor.) -- C:\WINDOWS\System32\drivers\eamonm.sys [160992] =>.ESET, spol. s r.o.®
O58 - SDL:2020/10/26 09:28:44 A . (.ESET - Devmon monitor.) -- C:\WINDOWS\System32\drivers\edevmon.sys [109360] =>.ESET, spol. s r.o.®
O58 - SDL:2020/10/22 14:09:08 A . (.ESET - ESET ELAM driver.) -- C:\WINDOWS\System32\drivers\eelam.sys [15288] =>.Microsoft®
O58 - SDL:2020/10/26 09:28:44 A . (.ESET - ESET Helper driver.) -- C:\WINDOWS\System32\drivers\ehdrv.sys [190464] =>.ESET, spol. s r.o.®
O58 - SDL:2017/09/29 14:41:47 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [87960] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [118680] =>.Microsoft Windows®
O58 - SDL:2020/10/26 09:28:44 A . (.ESET - ESET OPP Keyboard Filter.) -- C:\WINDOWS\System32\drivers\ekbdflt.sys [43720] =>.ESET, spol. s r.o.®
O58 - SDL:2020/10/26 09:28:44 A . (.ESET - ESET Firewall Driver.) -- C:\WINDOWS\System32\drivers\epfw.sys [70048] =>.ESET, spol. s r.o.®
O58 - SDL:2020/10/26 09:28:44 A . (.ESET - ESET Firewall Driver.) -- C:\WINDOWS\System32\drivers\epfwwfp.sys [107784] =>.ESET, spol. s r.o.®
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [13824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:01 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419032] =>.Microsoft Windows®
O58 - SDL:2019/03/06 09:56:40 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [354304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 11:34:04 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [371512] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [32768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:14 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [55808] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:41 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [85400] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:41 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [36864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/04/15 22:47:17 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [398744] =>.Microsoft Windows®
O58 - SDL:2018/03/30 05:55:43 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [62880] =>.Microsoft Windows®
O58 - SDL:2018/03/30 06:01:02 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [34208] =>.Microsoft Windows®
O58 - SDL:2018/11/07 07:26:54 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [727352] =>.Microsoft Windows®
O58 - SDL:2018/03/13 07:58:17 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [441248] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Generic USB Function Class Driver.) -- C:\WINDOWS\System32\drivers\genericusbfn.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:32:53 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [86016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/02/22 01:26:59 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [441344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [38296] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [114688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [187392] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [52224] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [50584] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [46592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 10:10:55 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [40960] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [63520] =>.Microsoft Windows®
O58 - SDL:2019/02/17 03:47:08 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1101624] =>.Microsoft Windows®
O58 - SDL:2019/04/02 07:15:45 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [75784] =>.Microsoft Windows®
O58 - SDL:2018/03/30 05:58:16 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [129432] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [29592] =>.Microsoft Windows®
O58 - SDL:2018/03/30 04:33:51 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [16896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:33:52 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [28160] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [105984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36864] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91648] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [88576] [Unsigned] =>.Intel Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [174592] [Unsigned] =>.Intel Corporation
O58 - SDL:2017/09/29 14:41:01 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2017/09/29 14:40:59 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [674200] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412056] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [526232] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [39424] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19352] =>.Microsoft Windows®
O58 - SDL:2018/06/13 23:32:45 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [130600] =>.Microsoft Windows Hardware Abstraction Layer Publisher®
O58 - SDL:2018/03/30 04:20:45 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [199168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Pilote de périphérique iNVDIMM.) -- C:\WINDOWS\System32\drivers\invdimm.sys [38912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:23 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [56728] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:57 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [85504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [92056] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [214016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:14 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [26112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:33:32 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\WINDOWS\System32\drivers\irda.sys [119808] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:42:07 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\WINDOWS\System32\drivers\irenum.sys [19968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/01 08:10:27 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22936] =>.Microsoft Windows®
O58 - SDL:2015/05/19 04:40:42 A . (.ENE TECHNOLOGY INC. - KB9X I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\Kb9xI2c.sys [37888] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [63384] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/08/28 05:26:02 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [394752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/10/10 06:14:11 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [138768] =>.Microsoft Windows®
O58 - SDL:2019/01/01 07:45:45 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [170808] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:49 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:32:47 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [65024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/10 14:36:34 A . (.Acer Incorporated - LMDriver.) -- C:\WINDOWS\System32\drivers\LMDriver.sys [21408] =>.Acer Incorporated®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108064] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [123800] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [103320] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82840] =>.Microsoft Windows®
O58 - SDL:2019/04/02 05:27:10 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [126976] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [505240] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [55840] =>.Microsoft Windows®
O58 - SDL:2021/01/11 21:15:37 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [153312] =>.Malwarebytes Corporation®
O58 - SDL:2021/01/11 21:15:37 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [19912] =>.Microsoft®
O58 - SDL:2021/02/11 21:13:41 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [248968] =>.Malwarebytes Inc®
O58 - SDL:2017/09/29 14:42:00 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [23552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59800] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [63520] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575896] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [78848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [842648] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:23 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [43520] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:42:02 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [42496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:01 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [38912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [57240] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [32768] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 06:00:10 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [103320] =>.Microsoft Windows®
O58 - SDL:2018/08/28 05:28:30 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [75776] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/06/08 06:53:20 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [143872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/09/25 06:26:49 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [494592] =>.Microsoft Windows®
O58 - SDL:2019/03/06 09:56:49 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\WINDOWS\System32\drivers\mrxsmb10.sys [285696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/01/05 09:19:15 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [230200] =>.Microsoft Windows®
O58 - SDL:2019/03/06 09:53:45 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:31 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [169880] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [49048] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8704] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [11776] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:31 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [18840] =>.Microsoft Windows®
O58 - SDL:2018/04/15 22:57:15 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [279968] =>.Microsoft Windows®
O58 - SDL:2018/08/28 05:29:57 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [33280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:56 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [84480] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:49 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [10752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:49 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [10752] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 11:39:58 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [377656] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [40856] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:49 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [16896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 05:51:59 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [123800] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63896] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [108952] =>.Microsoft Windows®
O58 - SDL:2019/02/17 03:53:12 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1277968] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:42:02 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [50688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:56 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [128000] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:58 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:32:53 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [65024] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:56 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:58 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [192000] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/01/01 12:21:53 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [62976] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:25 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [124416] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [132608] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 05:50:40 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [57760] =>.Microsoft Windows®
O58 - SDL:2019/04/02 05:37:46 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [316416] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/11/07 07:30:18 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [537600] =>.Microsoft Windows®
O58 - SDL:2018/03/30 04:32:48 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [192512] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 09:53:45 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [73728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [26112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:32:21 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [44544] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/14 10:21:53 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2391352] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:51 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [19864] =>.Microsoft Windows®
O58 - SDL:2018/03/30 04:20:35 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM-N.) -- C:\WINDOWS\System32\drivers\nvdimmn.sys [88576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150424] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166296] =>.Microsoft Windows®
O58 - SDL:2019/03/14 08:39:00 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [529920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:31 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [152984] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [98816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 06:06:25 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [166304] =>.Microsoft Windows®
O58 - SDL:2018/11/07 07:27:31 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [363536] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16280] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [53144] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [119704] =>.Microsoft Windows®
O58 - SDL:2018/03/30 06:06:23 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [53152] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:14 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [123288] =>.Microsoft Windows®
O58 - SDL:2018/03/30 04:29:10 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [723968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58776] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [100352] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:01 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [16896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [379392] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:20:42 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [177664] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:56 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [49152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/03/10 14:36:32 A . (.Acer Incorporated - RadioShim.) -- C:\WINDOWS\System32\drivers\RadioShim.sys [14752] =>.Acer Incorporated®
O58 - SDL:2017/09/29 14:41:14 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [39832] =>.Microsoft Windows®
O58 - SDL:2018/03/30 04:33:52 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:58 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [106496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:57 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [82944] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/01/01 12:21:49 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [97280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:58 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [78336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/01/05 09:18:48 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [428048] =>.Microsoft Windows®
O58 - SDL:2018/03/30 04:22:45 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/14 08:30:54 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [182784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/30 15:41:27 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [30616] =>.Microsoft Windows®
O58 - SDL:2018/03/30 05:52:04 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [282528] =>.Microsoft Windows®
O58 - SDL:2019/03/06 11:45:25 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [1849872] =>.Microsoft Windows®
O58 - SDL:2019/03/06 11:46:25 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [937784] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [189440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:32:45 A . (.Microsoft Corporation - Transport d’ordinateur virtuel Microsoft Re.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [43008] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:01 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [103936] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:32:37 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [149504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:42:00 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [35328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:42:02 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:45 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [80896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/01/19 06:59:51 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [1147384] =>.Realtek Semiconductor Corp.®
O58 - SDL:2017/09/29 14:41:14 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [59904] [Unsigned] =>.Realtek
O58 - SDL:2021/02/12 13:15:28 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [6248896] =>.Realtek Semiconductor Corp.®
O58 - SDL:2015/05/27 07:13:22 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\WINDOWS\System32\drivers\RtsUer.sys [402136] =>.Realtek Semiconductor Corp®
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [109976] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:42:01 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [43008] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/08/07 07:19:21 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [118688] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:42:01 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [175512] =>.Microsoft Windows®
O58 - SDL:2018/02/22 03:10:34 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [285080] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:04 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [33176] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:14 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [97688] =>.Microsoft Windows®
O58 - SDL:2018/02/22 02:51:00 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [97176] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [74784] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [154520] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [25088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [84992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [28160] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:01 A . (.Microsoft Corporation - Serial Imaging Device Driver.) -- C:\WINDOWS\System32\drivers\serscan.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44952] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81816] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [34200] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:42:00 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/14 10:02:53 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [172344] =>.Microsoft Windows®
O58 - SDL:2019/03/14 10:14:07 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [572216] =>.Microsoft Windows®
O58 - SDL:2017/09/30 15:41:29 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [56216] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [81816] =>.Microsoft Windows®
O58 - SDL:2019/03/06 09:57:00 A . (.Microsoft Corporation - Server driver.) -- C:\WINDOWS\System32\drivers\srv.sys [424448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/14 08:31:16 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [725504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 09:56:54 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [259072] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31128] =>.Microsoft Windows®
O58 - SDL:2018/05/12 00:09:10 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [149400] =>.Microsoft Windows®
O58 - SDL:2018/05/12 00:09:20 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [103320] =>.Microsoft Windows®
O58 - SDL:2018/10/10 06:09:17 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [558592] =>.Microsoft Windows®
O58 - SDL:2019/03/14 08:40:46 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [79872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/02/22 02:51:38 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [45472] =>.Microsoft Windows®
O58 - SDL:2018/03/30 05:58:42 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [39328] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:42:01 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [75264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:04 A . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\WINDOWS\System32\drivers\swenum.sys [18328] =>.Microsoft Windows®
O58 - SDL:2015/07/29 06:41:14 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID.sys [47784] =>.Synaptics Incorporated®
O58 - SDL:2018/03/30 04:32:56 A . (.Microsoft Corporation - VSC vidéo Synth3D RemoteFX Microsoft.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [64512] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:42:00 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [28056] =>.Microsoft Windows®
O58 - SDL:2019/04/02 07:01:39 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2774328] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:56 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [51712] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:44 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [40344] =>.Microsoft Windows®
O58 - SDL:2018/03/30 05:57:54 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [121248] =>.Microsoft Windows®
O58 - SDL:2017/09/30 15:41:31 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [37272] =>.Microsoft Windows®
O58 - SDL:2019/01/01 07:47:26 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [128312] =>.Microsoft Windows®
O58 - SDL:2018/02/22 02:50:42 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [229272] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:14 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [62976] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:04 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [35328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:56 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [106496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79256] =>.Microsoft Windows®
O58 - SDL:2017/12/14 02:38:57 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [114688] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [146944] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/06/13 22:14:12 A . (.Microsoft Corporation - USB Connector Manager UCSI Client.) -- C:\WINDOWS\System32\drivers\UcmUcsi.sys [57344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/06/13 23:29:41 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [225696] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:14 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/03/06 09:56:45 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [323072] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/06/08 08:29:16 A . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\WINDOWS\System32\drivers\uefi.sys [28576] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:33 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [266648] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - UFX Chipidea Client Driver.) -- C:\WINDOWS\System32\drivers\UfxChipidea.sys [97312] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [140696] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\WINDOWS\System32\drivers\umbus.sys [56320] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - USB Role-Switch Driver for Chipidea Core.) -- C:\WINDOWS\System32\drivers\urschipidea.sys [28568] =>.Microsoft Windows®
O58 - SDL:2017/12/14 02:38:57 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [60824] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - USB Role-Switch Driver for Synopsys Core.) -- C:\WINDOWS\System32\drivers\urssynopsys.sys [27544] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:58 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:42:05 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [37376] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [168856] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:40:59 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [102912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [32152] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [95640] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [513944] =>.Microsoft Windows®
O58 - SDL:2018/06/13 23:28:43 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [555928] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30720] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/06/13 23:35:44 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [453024] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:01 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/13 06:38:31 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [71680] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [130968] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [35328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:01 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [280576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/07/18 04:22:26 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [437664] =>.Microsoft Windows®
O58 - SDL:2018/03/30 05:52:29 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [54688] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - Driver Verifier Extension.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [225688] =>.Microsoft Windows®
O58 - SDL:2019/02/17 03:50:46 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [712504] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:14 A . (.Microsoft Corporation - Pilote d'infrastructure HID virtuelle (VHF).) -- C:\WINDOWS\System32\drivers\vhf.sys [34816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:45 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [44544] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 05:57:02 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [81304] =>.Microsoft Windows®
O58 - SDL:2018/03/30 04:35:14 A . (.Microsoft Corporation - Hyper-V VMBus Root KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmclr.sys [80384] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/08/07 07:13:34 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [110008] =>.Microsoft Windows®
O58 - SDL:2018/03/30 04:33:56 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [25088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:33:54 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [13312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/08/07 05:52:10 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [10240] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 04:33:55 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [9216] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 05:52:14 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [47512] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Pilote de périphérique du NVDIMM virtuel.) -- C:\WINDOWS\System32\drivers\vnvdimm.sys [43008] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/05/12 00:14:18 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [82840] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:45 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [373144] =>.Microsoft Windows®
O58 - SDL:2017/12/14 02:39:01 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [401304] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [15392] =>.Microsoft Windows®
O58 - SDL:2018/08/07 07:21:28 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [76584] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166808] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:02 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305560] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:42:07 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [27136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:42:07 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [76800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/12/14 02:39:03 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [41472] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [30720] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/01/01 06:20:33 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [80896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:27 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [56320] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2018/03/30 05:51:27 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [147872] =>.Microsoft Windows®
O58 - SDL:2018/03/30 04:32:55 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [75264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:19 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [44608] =>.Microsoft®
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [918240] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:19 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [309144] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [61664] =>.Microsoft Windows®
O58 - SDL:2019/03/14 08:36:41 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [775680] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:19 A . (.Microsoft Corporation - Microsoft Network Realtime Inspection Drive.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [119192] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:41 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\wdnsfltr.sys [33792] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:44 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [45464] =>.Microsoft Windows®
O58 - SDL:2018/03/30 05:53:04 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [163744] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:41 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [35736] =>.Microsoft Windows®
O58 - SDL:2018/03/30 05:51:43 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [71208] =>.Microsoft Windows Hardware Abstraction Layer Publisher®
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18000] =>.Microsoft®
O58 - SDL:2018/08/07 07:08:31 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [31672] =>.Microsoft Windows®
O58 - SDL:2018/08/07 05:53:47 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [62464] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [32152] =>.Microsoft Windows®
O58 - SDL:2018/10/10 04:53:54 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [226816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [92672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:02 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:03 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [18432] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [20376] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:41 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [209304] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:17 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [30104] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:41:43 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [33176] =>.Microsoft Windows®
O58 - SDL:2017/09/29 14:42:04 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:51 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [115200] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:51 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [259584] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [281600] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:08 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [46592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:41:31 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [463360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/04/02 05:32:38 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2079744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/04/02 05:42:56 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3658240] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2017/09/29 14:42:09 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\WINDOWS\SysWOW64\win32k.sys [303104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/04/02 06:09:29 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\SysWOW64\win32kfull.sys [2901504] [Unsigned] =>.Microsoft Corporation

---\\ ASSOCIATION Shell Spawning (10) - 2s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value

---\\ MENU DE DÉMARRAGE INTERNET (8) - 1s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation

---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (4) - 45s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0234BCE2-9E6D-427D-9649-B4FA3984CEA2} [DefaultScope] - () - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0234BCE2-9E6D-427D-9649-B4FA3984CEA2} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com

---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (48) - 6s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [188928] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [188928] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [270848] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1280000] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [984064] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [820224] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [144896] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [150528] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [109056] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [880640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [220160] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [408064] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [387584] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [108544] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [254976] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [194560] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1272320] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [795136] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1236992] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [46080] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1107968] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\Windows\System32\irmon.dll [24576] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [104960] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [930816] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [491520] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [602624] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [307200] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2788864] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1348608] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [613376] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [702464] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [57856] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [779264] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [284672] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1143808] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [1329664] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [951808] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1314304] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [69632] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [387072] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [238080] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [308224] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [170496] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2223616] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [57856] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [132608] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (5) - 4s
O87 - FAEL: "{58FA0B85-5DA8-44F0-B76B-F276C3E2B50E}" [In-None-P6-TRUE] .(.Hewlett-Packard Development Company, LP - HPNetworkCommunicatorCom.) -- C:\Program Files\HP\HP ENVY 4520 series\Bin\HPNetworkCommunicatorCom.exe =>.Hewlett Packard®
O87 - FAEL: "{4CBDE221-CF1A-474B-8C45-C377331D82C8}" [In-None-P6-TRUE] .(.Hewlett-Packard Development Company, LP - DeviceSetup.exe.) -- C:\Program Files\HP\HP ENVY 4520 series\Bin\DeviceSetup.exe =>.Hewlett Packard®
O87 - FAEL: "{4846D42B-48EE-4F21-8D4A-4EE7F09E61A1}" [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{600DAC5F-6EDC-407E-BF73-79BD982B6046}" [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.®
O87 - FAEL: "{AB64C312-5B08-490B-B184-C2A667CCD23E}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC®

---\\ CODES PRODUITS LOGICIELS (29) - 3s
O90 - PUC: "00006109C80000000000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component.) =>.Microsoft Corporation
O90 - PUC: "00006109C800C0400000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation
O90 - PUC: "00006109DD0000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component 64-bit Registration.) =>.Microsoft Corporation
O90 - PUC: "00006109F80000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Licensing Component.) =>.Microsoft Corporation
O90 - PUC: "098B47ED5204EB7AE8CB3F4725D8FCDF" [HKLM] . (.AMD Catalyst Install Manager.) -- C:\WINDOWS\Installer\{DE74B890-4025-A7BE-8EBC-F374528DCFFD}\ARPPRODUCTICON.exe =>.Western Digital Technologies
O90 - PUC: "1BF4A48A307DBD84980E866B94D98210" [HKLM] . (.Qualcomm Atheros Bluetooth Suite (64).) -- C:\Windows\Installer\{A84A4FB1-D703-48DB-89E0-68B6499D2801}\ARPPRODUCTICON.exe =>.bl.org
O90 - PUC: "2B7A37F2E05E6A93A9CBFE984E6CE263" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727.) =>.Microsoft Corporation
O90 - PUC: "2C47B0D78F3C1FA449F0DC97BAB4D2EC" [HKLM] . (.Microsoft Visual C++ 2019 X64 Additional Runtime - 14.25.28508.) =>.Microsoft Corporation
O90 - PUC: "2E51002D7BAC46648B8D1F359E24D72E" [HKLM] . (.Logiciel de base du périphérique HP ENVY 4520 series.) -- C:\Windows\Installer\{D20015E2-CAB7-4664-B8D8-F153E9427DE2}\ARP_Icon =>.Hewlett-Packard
O90 - PUC: "39103BDF0ADFAAD3CAAC7AE5FE5E6370" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727.) =>.Microsoft Corporation
O90 - PUC: "39A0AAB03DA391B41950C4C8F39AA238" [HKLM] . (.Update for Windows 10 for x64-based Systems (KB4023057).) =>.Microsoft Corporation
O90 - PUC: "55E3652ACEB38283D8765E8E9B8E6B57" [HKLM] . (.Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23026.) =>.Microsoft Corporation
O90 - PUC: "5CDB74B3FB99C5F43A30F1F0D9CB476F" [HKLM] . (.ESET Security.) -- C:\WINDOWS\Installer\{3B47BDC5-99BF-4F5C-A303-1F0F9DBC74F6}\Icon_Product
O90 - PUC: "6944EAB3C6F603348AAA9BD3D343F65A" [HKLM] . (.Update for Windows 10 for x64-based Systems (KB4480730).) =>.Microsoft Corporation
O90 - PUC: "76966AEE2E7916549A99C5223EDC4E82" [HKLM] . (.Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.25.28508.) =>.Microsoft Corporation
O90 - PUC: "82422A670042125469FAA74C6A71C45A" [HKLM] . (.UpdateAssistant.) =>.Corel Corporation
O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "B8CF35CA81EEC9F3B9950639D7B081C2" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727.) =>.Microsoft Corporation
O90 - PUC: "BCA1BC2A2A49AB231AE5D70813F95798" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727.) =>.Microsoft Corporation
O90 - PUC: "BF01119B4B33B864092CD4E5A83EAF1E" [HKLM] . (.Bonjour.) -- C:\Windows\Installer\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}\Bonjour.ico =>.Microsoft Corporation
O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "C173E5AD3336A8D3394AF65D2BB0CCE6" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319.) =>.bl.org
O90 - PUC: "C1C069EBDAB76ED3B8A16261EF358254" [HKLM] . (.Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23026.) =>.Microsoft Corporation
O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org
O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org
O90 - PUC: "D04BB691875110D32B98EBCF771AA1E1" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319.) =>.bl.org
O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org
O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation
O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17.) =>.bl.org

---\\ PACKAGES WINDOWS INSTALLER (7) - 4s
[MD5.55AA074E4C24D80248778D51BAB5B74E] [WIS][2015/03/09 23:22:50] (.Hewlett-Packard Co. - HP ENVY 4520 series Basic Device Software.) -- C:\WINDOWS\Installer\1bc3fc.msi [4870144] =>.Hewlett-Packard Co.
[MD5.DEC1A40D0210FAD3BB67028B97F155A4] [WIS][2018/01/28 10:37:41] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\23910d.msi [26112] =>.Google Inc.
[MD5.6A776D47F2402E9948D46D7B8AC48FEC] [WIS][2016/02/15 09:03:44] (.Acer Incorporated - Acer Configuration Manager.) -- C:\WINDOWS\Installer\2660a.msi [3424256] =>.Acer Incorporated
[MD5.A9646163CAC6BB3E3BC40D25232547F3] [WIS][2015/07/25 00:27:26] (.Advanced Micro Devices, Inc. - AMD Catalyst Install Manager Installer (64 .) -- C:\WINDOWS\Installer\55afb.msi [10607104] =>.Advanced Micro Devices, Inc.
[MD5.08C30893C180799D98AFEEA5CF9806C0] [WIS][2016/06/17 11:10:12] (.InstallShield.) -- C:\WINDOWS\Installer\8e456.msi [3874320] =>.InstallShield
[MD5.60788B90DFF35B2EE68BFA967D7137AA] [WIS][2017/09/22 07:50:16] (.Apple Inc. - [ProductName] Installer.) -- C:\WINDOWS\Installer\b3d6c.msi [2526720] =>.Apple Inc.
[MD5.CEE9230A11E6862C05E18EA78443BD99] [WIS][2021/01/10 17:22:25] (.ESET, spol. s r.o. - ESET Security.) -- C:\WINDOWS\Installer\c7fd165.msi [46768128] =>.ESET, spol. s r.o.

---\\ FEATURE CONTROL. (208) - 1s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:dllhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:msoasb.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:mspub.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:onenote.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:msaccess.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:mspub.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:onenote.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msoasb.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msaccess.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate

---\\ OBSERVATEURS des évènements (167) - 199s

Application.Error: Office 2016 Licensing Service (11)
~Numéro: 37503
~Date: 02/13/2021 07:42:05 PM
~ID: 0
~Description: Subscription licensing service failed: -1073415161
~Suggestion: Aucune

Application.Error: COM (16)
~Numéro: 37499
~Date: 02/13/2021 07:42:02 PM
~ID: 10031
~Description: {41FD88F7-F295-4D39-91AC-A85F3149A05B}

Application.Error: Microsoft-Windows-Immersive-Shell (5)
~Numéro: 37468
~Date: 02/12/2021 09:51:12 PM
~ID: 2484
~Description: Le package %1 a été interrompu, car sa suspension a été trop longue.

Application.Error: Bonjour Service (1902)
~Numéro: 37186
~Date: 02/12/2021 08:32:20 PM
~ID: 100
~Description: Local Hostname LAPTOP-KP167VMT.local already in use; will try LAPTOP-KP167VMT-2.local instead
~Suggestion: Supprimer la tâche planifiée correspondante ou le service 'Bonjour Service'

Application.Error: MsiInstaller (4)
~Numéro: 37170
~Date: 02/12/2021 03:03:23 PM
~ID: 1043
~Description: Impossible de terminer une transaction Windows Installer %1. Une erreur %2 s’est produite lors de l’arrêt de la transaction.

Application.Warning: ESENT (16)
~Numéro: 37067
~Date: 02/12/2021 02:40:58 PM
~ID: 472
~Description: %1 (%2) %3Page d’en-tête de sauvegarde du fichier %4 endommagée. La page d’en-tête primaire (%5 octets) a été utilisée à la place.
~Suggestion: 1)Fermer le processus explorer.exe. 2)lancer la commande 'del/f/s/q/a C:\Users\\AppData\Local\Microsoft\Windows\WebCacheLock.dat'. 3) Redémarrer le processus explorer.exe

Application.Error: Application Error (11)
~Numéro: 36781
~Date: 02/12/2021 02:20:47 PM
~ID: 1000
~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x5fca2278 Nom du module défaillant : %4, version : %5, horodatage : 0x5fca2278 Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000032896 ID du processus défaillant : 0x1ac0 H
~Suggestion: Réparer ou réinstaller l'application.

Application.Error: VSS (2)
~Numéro: 36387
~Date: 02/12/2021 01:20:17 PM
~ID: 8193
~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine %1. hr = %2. Opération : Opération asynchrone en cours d’exécutionContexte : État actuel: DoSnapshotSet
~Suggestion: Utiliser la procédure de reconstruction du VSS

Application.Error: Perflib (3)
~Numéro: 35777
~Date: 01/14/2021 02:34:30 PM
~ID: 1008
~Description: BITSC:\Windows\System32\bitsperf.dll8

Application.Warning: SpeechRuntime (3)
~Numéro: 33714
~Date: 01/11/2021 09:34:06 PM
~ID: 1
~Description: Audio Orchestrator Power Event: Battery Saver Turned On, Voice Activation Disabled

Application.Error: Microsoft Security Client (3)
~Numéro: 33712
~Date: 01/11/2021 09:25:56 PM
~ID: 3002
~Description: 0x80041001

Application.Error: Microsoft Office 16 (3)
~Numéro: 33115
~Date: 01/11/2021 12:56:22 PM
~ID: 2011
~Description: Office Subscription licensing exception: Error Code: 0x80070057; CorrelationId: {DEBB3D3D-5B07-4F9E-880A-731F5DD98D6D}

Application.Error: Microsoft-Windows-CAPI2 (4)
~Numéro: 32849
~Date: 01/10/2021 08:05:32 PM
~ID: 513
~Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.%1.

Application.Warning: Microsoft-Windows-RestartManager (5)
~Numéro: 32677
~Date: 01/10/2021 06:01:59 PM
~ID: 10010
~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9.
~Suggestion: Redémarrer manuellement l'application ou le service

Application.Warning: Microsoft-Windows-System-Restore (1)
~Numéro: 32634
~Date: 01/10/2021 05:55:16 PM
~ID: 8303
~Description: Scoping unsuccessful for shadowcopy %1 with error %2.
~Suggestion: Exécuter la commande chkdsk / f

System.Warning: Microsoft-Windows-Kernel-Processor-Power (4)
~Numéro: 38546
~Date: 02/13/2021 08:02:22 PM
~ID: 37
~Description: La vitesse du processeur logique Hyper-V %2 est limitée par le microprogramme du système. Le processeur a connu cet état de performances réduites pendant %3 secondes depuis le dernier rapport.

System.Error: DCOM (210)
~Numéro: 38543
~Date: 02/13/2021 07:50:03 PM
~ID: 10016
~Description: propres à l’applicationLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}AUTORITE NTSERVICE LOCALS-1-5-19LocalHost (avec LRPC)Non disponibleNon disponible
~Suggestion: Vérifier les autorisations pour l'accès DCOM

System.Error: Service Control Manager (60)
~Numéro: 38540
~Date: 02/13/2021 07:47:30 PM
~ID: 7034
~Description: Le service %1 s’est terminé de façon inattendue pour la %2ème fois.

System.Warning: BTHUSB (24)
~Numéro: 38469
~Date: 02/12/2021 09:49:13 PM
~ID: 34
~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est %2, a reçu %3. La fonctionnalité du rôle périphérique Low Energy n

System.Error: Microsoft-Windows-WindowsUpdateClient (11)
~Numéro: 38351
~Date: 02/12/2021 09:35:40 PM
~ID: 20
~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2.
~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp

System.Warning: Microsoft-Windows-DNS-Client (6)
~Numéro: 38349
~Date: 02/12/2021 09:31:58 PM
~ID: 1014
~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx

System.Warning: User32 (1)
~Numéro: 37983
~Date: 02/12/2021 02:22:02 PM
~ID: 1073
~Description: La tentative par l’utilisateur %2 de redémarrer/arrêter l’ordinateur %1 a échoué

System.Warning: Microsoft-Windows-Kernel-Tm (2)
~Numéro: 37911
~Date: 02/12/2021 01:56:09 PM
~Description: The Transaction (UOW=%1, Description='%3') was unable to be committed, and instead rolled back; this was due to an error message returned by CLFS while attempting to write a Prepare or Commit record for the Transaction. The CLFS error returned was:

System.Warning: Microsoft-Windows-Kernel-PnP (130)
~Numéro: 37818
~Date: 02/12/2021 01:41:41 PM
~ID: 225
~Description: L’application %3 avec l’ID de processus %1 a arrêté le retrait ou l’éjection pour le périphérique %5.

System.Warning: storahci (3)
~Numéro: 37640
~Date: 02/11/2021 09:28:52 PM
~ID: 129
~Description: Une réinitialisation au périphérique, %1, a été émise.

System.Warning: Disk (22)
~Numéro: 36673
~Date: 01/09/2021 07:35:53 PM
~ID: 51
~Description: Une erreur a été détectée sur le périphérique %1 lors d'une opération de pagination.

System.Warning: Microsoft-Windows-Ntfs (1)
~Numéro: 36662
~ID: 140
~Description: F:\Device\HarddiskVolume110xc000000e

System.Warning: NTFS (1)
~Numéro: 35835
~Date: 11/19/2020 03:48:16 PM
~ID: 50
~Description: {L'écriture différée a échoué} Windows n'a pas pu enregistrer les données du fichier %2. Les données ont été perdues. Cette erreur peut être due à une panne de votre matériel ou de votre connexion réseau. Essayez d'enregistrer ce fichier à un autre e

System.Error: Microsoft-Windows-Eventlog (1)
~Numéro: 35165
~Date: 11/19/2020 02:13:59 PM
~ID: 30
~Description: Le service de journalisation des événements a rencontré une erreur (%1) lors de l’activation de l’éditeur %3 sur le canal %2. Cette erreur n’affecte pas le fonctionnement du canal, mais a une incidence sur la capacité de l’éditeur de déclencher des é

System.Error: volmgr (1)
~Numéro: 35111
~Date: 11/19/2020 02:08:26 PM
~ID: 46
~Description: L'initialisation du fichier de vidage sur incident a échoué.

System.Error: EventLog (1)
~Numéro: 35094
~Date: 11/19/2020 02:09:38 PM
~ID: 6008
~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu.

System.Error: MTConfig (1)
~Numéro: 34180
~Date: 10/17/2020 08:31:54 PM
~Description: Une tentative de configuration du mode d’entrée d’un périphérique multipoint a échoué.

---\\ SCAN ADDITIONNEL (13) - 22s
C:\Users\aurel\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome
C:\Users\aurel\AppData\Local\Google\Chrome\User Data\Default\File System\001 =>.SUP.Temporary.Chrome
C:\Users\aurel\AppData\Local\Google\Chrome\User Data\Default\File System\Plugins =>.SUP.Temporary.Chrome
ADS Présent [:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.Metadata] C:\Users\aurel\OneDrive\Documents\IMG_8920.JPG:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.Metadata =>.SUP.FileADS
ADS Présent [:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.Metadata] C:\Users\aurel\OneDrive\Documents\IMG_8921.JPG:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.Metadata =>.SUP.FileADS
ADS Présent [:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.Metadata] C:\Users\aurel\OneDrive\Documents\IMG_8941.JPG:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.Metadata =>.SUP.FileADS
HKLM\SOFTWARE\Wow6432Node\Classes\TypeLib\{48DDEC26-CEC3-478E-9566-0842DAF10CEA} =>.SUP.Amazon1ButtonApp
HKLM\SOFTWARE\Wow6432Node\Classes\TypeLib\{921462B2-5269-45A2-AA8D-F8F7A3690255} =>.SUP.Amazon1ButtonApp
HKLM\SOFTWARE\Classes\TypeLib\{921462B2-5269-45A2-AA8D-F8F7A3690255} =>.SUP.Amazon1ButtonApp
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\aurel\Winamax\WinaChat\WinaChat.exe.FriendlyAppName =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\aurel\Winamax\Winamax Poker\Winamax Poker.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-3549993050-1913437335-661404786-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\aurel\Winamax\WinaChat\WinaChat.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-3549993050-1913437335-661404786-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\aurel\Winamax\Winamax Poker\Winamax Poker.exe.FriendlyAppName =>.Unsigned

---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (6) - 0s
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp
https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys
https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Chrome
https://nicolascoolman.eu/2018/01/04/ads-alternate-data-stream/ =>.SUP.FileADS
https://nicolascoolman.eu/2017/12/01/sup-amazon1buttonapp/ =>.SUP.Amazon1ButtonApp

---\\ NUMEROS DE SÉRIE
[02FA994D660DE659EE9037ECB437D766] [06/01/2021] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd
[02FA994D660DE659EE9037ECB437D766] [06/01/2021] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\uninst.exe =>.Piriform Software Ltd
[0320BE3EB866526927F999B97B04346E] [06/02/2018] (.Realtek Semiconductor Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\setup.exe =>.Realtek Semiconductor Corp.
[0320BE3EB866526927F999B97B04346E] [12/02/2021] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp.
[0320BE3EB866526927F999B97B04346E] [12/02/2021] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.
[03DA4C26C76E1255DC8279AA9A751ACC] [10/08/2017] (.Realtek Semiconductor Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe =>.Realtek Semiconductor Corp.
[044E3BF58976880FFD074448A8F7A058] [11/01/2021] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [11/01/2021] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\mbae64.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [11/02/2021] (.Malwarebytes Corporation.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\mbae64.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [11/02/2021] (.Malwarebytes Corporation.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\MBAMbehlpr.exe =>.Malwarebytes Corporation
[07EC0CF3D333673B2602D410FE0C4D21] [11/02/2021] (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0364033.inf_amd64_f36ad498a78de343\B363860\amdkmdag.sys =>.Advanced Micro Devices, Inc.
[07EC0CF3D333673B2602D410FE0C4D21] [11/02/2021] (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\u0364033.inf_amd64_f36ad498a78de343\B363860\atiesrxx.exe =>.Advanced Micro Devices, Inc.
[07EC0CF3D333673B2602D410FE0C4D21] [27/07/2020] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdxe.sys =>.Advanced Micro Devices, Inc.
[08A2EC4E78A09E174B192E5535984B59] [11/01/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/01/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\mbuns.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\7z.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\ActionsShim.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\AEControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\AeShim.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\ArwControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\arwlib.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\ArwSdkShim.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\assistant.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\BrowserSDKDLLShim.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\CleanControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\CloudControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\iconengines\qsvgicon.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\imageformats\qico.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\imageformats\qjpeg.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\imageformats\qsvg.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\LicenseControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\malwarebytes_assistant.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\mbae.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\mbae64.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\mbae-api-na.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\mbam.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\MBAMShim.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\mbamtray.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\MBAMWsc.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\mbcut.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\mbupdatr.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\MWACControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\mwaclib.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\MwacSdkShim.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\offreg.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\platforms\qwindows.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\PoliciesControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt\labs\folderlistmodel\qmlfolderlistmodelplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt\labs\settings\qmlsettingsplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5Charts.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5Core.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5Gui.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5Network.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5Qml.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5QmlModels.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5QmlWorkerScript.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5Quick.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5QuickControls2.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5QuickTemplates2.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5Svg.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5Widgets.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5WinExtras.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Qt5XmlPatterns.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtANGLE.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtCharts\qtchartsqml2.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQml\Models.2\modelsplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQml\qmlplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick.2\qtquick2plugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Controls.2\Fusion\qtquickcontrols2fusionstyleplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Controls.2\Imagine\qtquickcontrols2imaginestyleplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Controls.2\Material\qtquickcontrols2materialstyleplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Controls.2\qtquickcontrols2plugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Controls.2\Universal\qtquickcontrols2universalstyleplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Controls\qtquickcontrolsplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Controls\Styles\Flat\qtquickextrasflatplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Dialogs\dialogplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Dialogs\Private\dialogsprivateplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Extras\qtquickextrasplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Layouts\qquicklayoutsplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\PrivateWidgets\widgetsplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Templates.2\qtquicktemplates2plugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\Window.2\windowplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtQuick\XmlListModel\qmlxmllistmodelplugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\QtWinExtras\qml_winextras.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\rtp.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\RTPControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\rtpshim.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\ScanControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\SelfProtectionSdk.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\SelfProtectionShim.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\SPControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\styles\qwindowsvistastyle.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\Swissarmy.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\SwissarmyShim.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\TelemetryControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\TrayPlugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\UIPlugin.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\ctlrupdate\UpdateControllerImpl.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [11/02/2021] (.Malwarebytes Inc.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [15/01/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\mbam_modal_hdyhau.1.0.10.x64.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [15/01/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\UIPlugin.EXPT-133-CU22.x64.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [15/01/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\UIPlugin.EXPT-97-CU16.x64.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [15/01/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\UIPlugin.EXPT-97-CU20.x64.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [25/01/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [25/01/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [25/01/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [25/01/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc
[08A2EC4E78A09E174B192E5535984B59] [25/01/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc
[09EE0C2552CF8D46CFE1F9B0AA8C7B66] [10/03/2016] (.Acer Incorporated.) - C:\WINDOWS\System32\drivers\LMDriver.sys =>.Acer Incorporated
[09EE0C2552CF8D46CFE1F9B0AA8C7B66] [10/03/2016] (.Acer Incorporated.) - C:\WINDOWS\System32\drivers\RadioShim.sys =>.Acer Incorporated
[0BFCFAC08E216A1C1FDAA6B77BB2D66E] [12/02/2021] (.Realtek Semiconductor Corp..) - C:\Users\aurel\AppData\Local\Temp\Temp1_Install_Win10_10046_01212021.zip\Install_Win10_10046_01212021.exe =>.Realtek Semiconductor Corp.
[0BFCFAC08E216A1C1FDAA6B77BB2D66E] [19/01/2021] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.
[0C15BE4A15BB0903C901B1D6C265302F] [04/02/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.150\elevation_service.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [04/02/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [11/02/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.150\Installer\chrmstp.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [11/02/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.150\Installer\setup.exe =>.Google LLC
[0C15BE4A15BB0903C901B1D6C265302F] [29/01/2021] (.Google LLC.) - C:\Users\aurel\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\software_reporter_tool.exe =>.Google LLC
[0F5C689DC0717374609E20ED097B19D9] [12/02/2021] (.ICEpower a/s.) - C:\WINDOWS\system32\ICEsoundService64.exe =>.ICEpower a/s
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [12/02/2021] (.ESET, spol. s r.o..) - C:\Users\aurel\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\edls_64.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [12/02/2021] (.ESET, spol. s r.o..) - C:\Users\aurel\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em000_64.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [12/02/2021] (.ESET, spol. s r.o..) - C:\Users\aurel\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em001_64.dll =>.ESET, spol. s r.o.
[1044F31AE1F93A0BB95F19AB9FAAC6BB] [12/02/2021] (.ESET, spol. s r.o..) - C:\Users\aurel\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em005_64.dll =>.ESET, spol. s r.o.
[13222A5DCCF716DF5AF9C87084412DD9] [11/05/2015] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\InstallShield Installation Information\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\setup.exe =>.Realtek Semiconductor Corp
[13222A5DCCF716DF5AF9C87084412DD9] [27/05/2015] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\Drivers\RtsUer.sys =>.Realtek Semiconductor Corp
[14F8FDD167F92402B1570B5DC495C815] [28/01/2018] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc
[1D9FF0CFF14FE700963E52F6CDACF575] [29/07/2015] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynRMIHID.sys =>.Synaptics Incorporated
[1FBEDB2A9B36C86F3CC85A249BFBD2EC] [18/05/2010] (.Apple Inc..) - C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.
[2D7E0BBF555575D244DF27E1CE802C29] [10/01/2021] (.ArenaNet LLC.) - C:\Program Files (x86)\GUILD WARS\Gw.exe =>.ArenaNet LLC
[44239C2187EFAE7BA9F3CD89C4FE9D84] [09/03/2015] (.Hewlett Packard.) - C:\Program Files\HP\HP ENVY 4520 series\Bin\DeviceSetup.exe =>.Hewlett Packard
[44239C2187EFAE7BA9F3CD89C4FE9D84] [09/03/2015] (.Hewlett Packard.) - C:\Program Files\HP\HP ENVY 4520 series\Bin\HPNetworkCommunicatorCom.exe =>.Hewlett Packard
[4CD9E755850C1372B48DC182A7308BAB] [22/08/2015] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc.
[5CA430E4777412A8230BF839F782D4F7] [12/06/2017] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\DRIVERS\amdkmcsp.sys =>.Advanced Micro Devices Inc.
[5CA430E4777412A8230BF839F782D4F7] [12/06/2017] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdpsp.sys =>.Advanced Micro Devices Inc.
[65628C146ACE93037FC58659F14BD35F] [12/02/2021] (.ESET, spol. s r.o..) - C:\Users\aurel\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em002_64.dll =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [12/02/2021] (.ESET, spol. s r.o..) - C:\Users\aurel\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em003_64.dll =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [12/02/2021] (.ESET, spol. s r.o..) - C:\Users\aurel\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em004_64.dll =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\callmsi.exe =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\ecmds.exe =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\eguiproxy.exe =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\ekrn.exe =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\Program Files\ESET\ESET Security\shellExt.dll =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\eamonm.sys =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\edevmon.sys =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\ehdrv.sys =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\ekbdflt.sys =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\epfw.sys =>.ESET, spol. s r.o.
[65628C146ACE93037FC58659F14BD35F] [26/10/2020] (.ESET, spol. s r.o..) - C:\WINDOWS\System32\DRIVERS\epfwwfp.sys =>.ESET, spol. s r.o.
[7ECA1B93D0C722268FA6947D323E38F3] [10/07/2015] (.Acer Incorporated.) - C:\Program Files\Accessory Store\StartURL.exe =>.Acer Incorporated

~ Unselected Options: WR, O82,
~ End of the scan, 7091 items in 12mn46s (1982)(0)

Publicité


Signaler le contenu de ce document

Publicité