Format du document : text/plain
Prévisualisation
~ ZHPDiag v2022.5.22.35 Par Nicolas Coolman (2022/05/22)
~ Démarré par ZaKaRIA (Administrator) (2022/05/25 17:51:49)
~ Assistance: https://forum.nicolascoolman.eu/
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Certificate ZHPDiag: Legal
~ Etat de la version:
~ Mode: Scanner
~ Rapport: C:\Users\ZaKaRIA\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\ZaKaRIA\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Démarrage du système: Normal (Normal boot)
Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation
---\\ NAVIGATEURS INTERNET (2) - 0s
~ MSIE: Internet Explorer v11.0.9600.17843
~ OBIE: Microsoft Edge v101.0.1210.53
---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (4) - 3s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
Windows Automatic Updates : KO
Windows Activation Technologies : OK
---\\ LOGICIELS DE PROTECTION (1) - 0s
Kaspersky Internet Security v21.3.10.391 (Protection)
---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s
~ Operating System: Intel64 Family 6 Model 23 Stepping 10, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
Total RAM: 4092.176 MB (38% free) : OK =>.RAM Value
System Restore: Activé (Enable)
System drive C: has 81 GB (71%) free of 114 GB : OK =>.Disk Space
---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s
~ Computer Name: ZAKARIA-PC
~ User Name: ZaKaRIA
~ Logged in as Administrator
---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (1) - 0s
~ Drive C: has 81 GB free of 114 GB (System)
---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (11) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK
---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (27) - 3s
[MD5.38AE1B3C38FAEF56FE4907922F0385BA] - 29/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3229696] [Unsigned] =>.Microsoft Corporation
[MD5.DD81D91FF3B0763C392422865C9AC12E] - 14/07/2009 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [45568] [Unsigned] =>.Microsoft Corporation
[MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] [Unsigned] =>.Microsoft Corporation
[MD5.417F80E4AFBA1AA9EBBD618F1C6D9165] - 05/11/2020 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2426880] [Unsigned] =>.Microsoft Corporation
[MD5.8CEBD9D0A0A879CDE9F36F4383B7CAEA] - 17/07/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455168] [Unsigned] =>.Microsoft Corporation
[MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] [Unsigned] =>.Microsoft Corporation
[MD5.A52B6CC24063CC83C78C0E6F24DEEC01] - 21/11/2010 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] [Unsigned] =>.Microsoft Corporation
[MD5.59DF156711A76BCB993253EC6C9BBF41] - 21/11/2010 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [270336] [Unsigned] =>.Microsoft Corporation
[MD5.86F11B85102AFA6A1A6101DCE2F09386] - 12/02/2016 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2610688] [Unsigned] =>.Microsoft Corporation
[MD5.0D57D091E06BB1E58E72E5D08479FDDF] - 07/02/2011 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] [Unsigned] =>.Microsoft Corporation
[MD5.9A4A1EEE802BF2F878EE8EAB407B21B7] - 13/10/2015 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [497664] [Unsigned] =>.Microsoft Corporation
[MD5.02062C0B390B7729EDC9E69C680A6F3C] - 14/07/2009 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] [Unsigned] =>.Microsoft Corporation
[MD5.B8BD2BB284668C84865658C77574381A] - 13/07/2009 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92160] [Unsigned] =>.Microsoft Corporation
[MD5.F036CE71586E93D94DAB220D7BDF4416] - 21/11/2010 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [147456] [Unsigned] =>.Microsoft Corporation
[MD5.9BB2EF44EAA163B29C4A4587887A0FE4] - 21/11/2010 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [102400] [Unsigned] =>.Microsoft Corporation
[MD5.97BFED39B6B79EB12CDDBFEED51F56BB] - 21/11/2010 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] [Unsigned] =>.Microsoft Corporation
[MD5.FA55C73D4AFFA7EE23AC4BE53B4592D3] - 13/07/2009 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] [Unsigned] =>.Microsoft Corporation
[MD5.AF9B39A7E7B6CAA203B3862582E9F2D0] - 14/07/2009 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] [Unsigned] =>.Microsoft Corporation
[MD5.B11FA8D7E00EC9AD45F8B4978FF20911] - 21/02/2019 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [161280] [Unsigned] =>.Microsoft Corporation
[MD5.E47D571FEC2C76E867935109AB2A770C] - 11/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [262144] [Unsigned] =>.Microsoft Corporation
[MD5.05D78AA5CB5F3F5C31160BDB955D0B7C] - 21/11/2010 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1659776] [Unsigned] =>.Microsoft Corporation
[MD5.0086431C29C35BE1DBC43F52CC273887] - 14/07/2009 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] [Unsigned] =>.Microsoft Corporation
[MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] [Unsigned] =>.Microsoft Corporation
[MD5.1B6163C503398B23FF8B939C67747683] - 21/11/2010 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] [Unsigned] =>.Microsoft Corporation
[MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] [Unsigned] =>.Microsoft Corporation
[MD5.AA77EB517D2F07A947294F260E3ACA83] - 13/10/2015 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] [Unsigned] =>.Microsoft Corporation
[MD5.0D08D2F3B3FF84E433346669B5E0F639] - 21/11/2010 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] [Unsigned] =>.Microsoft Corporation
---\\ LISTE DES SERVICES (Non désactivés) (46) - 2s
O23 - Service: Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc. - MobileDeviceService.) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
O23 - Service: C:\Windows\System32\audiosrv.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\audiosrv.dll (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: خدمة Kaspersky Anti-Virus 21.3 (AVP21.3) . (.AO Kaspersky Lab - Kaspersky Lab launcher.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avp.exe =>.Kaspersky Lab JSC®
O23 - Service: C:\Windows\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\Windows\System32\bfe.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\Windows\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X86 (clr_optimization_v4.0.30319_32) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe =>.Microsoft®
O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X64 (clr_optimization_v4.0.30319_64) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\Windows\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\Windows\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: Service Mise à jour de Microsoft Edge (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft®
O23 - Service: C:\Windows\System32\wevtsvc.dll (eventlog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\fdrespub.dll (FDResPub) . (.Microsoft Corporation - Service de publication des ressources de dé.) - C:\Windows\System32\fdrespub.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\Windows\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\Windows\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: HP Service (hpsrv) . (.Hewlett-Packard Company - HpService.) - C:\Windows\System32\Hpservice.exe [Unsigned] =>.Hewlett-Packard Company
O23 - Service: C:\Windows\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\Windows\System32\ikeext.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\Windows\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\Windows\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\Windows\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - DLL des services de transport NetBIOS sur T.) - C:\Windows\System32\lmhsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) - C:\Windows\System32\mmcss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\Windows\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\Windows\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\Windows\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\Windows\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\umpnpmgr.dll (PlugPlay) . (.Microsoft Corporation - Service mode utilisateur de Plug-and-Play.) - C:\Windows\System32\umpnpmgr.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\Windows\System32\umpo.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\Windows\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: @oleres.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\Windows\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\Windows\System32\Sens.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\Windows\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\Windows\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\Windows\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\Windows\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\Windows\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\dwm.exe,-2000 (UxSms) . (.Microsoft Corporation - Microsoft User Experience Session Managemen.) - C:\Windows\System32\uxsms.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wlansvc.dll (Wlansvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\Windows\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\Windows\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation
O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation
---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (80) - 34s
SR - Demand [13/05/2011] [ 43320] HP Mobile Data Protection Sensor (Accelerometer) . (.Hewlett-Packard Company.) - C:\Windows\System32\DRIVERS\Accelerometer.sys =>.Hewlett-Packard Company®
SR - Demand [14/07/2009] [ 491088] (adp94xx) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adp94xx.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 339536] (adpahci) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adpahci.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 182864] (adpu320) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adpu320.sys =>.Microsoft Windows®
SR - Demand [10/06/2009] [ 1146880] Agere Systems Soft Modem (AgereSoftModem) . (.LSI Corp.) - C:\Windows\System32\DRIVERS\agrsm64.sys [Unsigned] =>.LSI Corp
SR - Demand [14/07/2009] [ 15440] (aliide) . (.Acer Laboratories Inc..) - C:\Windows\System32\drivers\aliide.sys =>.Microsoft Windows®
SR - Demand [21/11/2010] [ 107904] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 194128] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\drivers\amdsbs.sys =>.Microsoft Windows®
SR - Boot [21/11/2010] [ 27008] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft Windows®
SR - Auto [24/09/2020] [ 96056] Apple Mobile Device Service (Apple Mobile Device Service) . (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.®
SR - Demand [14/07/2009] [ 87632] (arc) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\arc.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 97856] (arcsas) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\arcsas.sys =>.Microsoft Windows®
SR - Auto [13/06/2021] [ 184768] خدمة Kaspersky Anti-Virus 21.3 (AVP21.3) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avp.exe =>.Kaspersky Lab JSC®
SR - Demand [10/06/2009] [ 468480] Broadcom NetXtreme II VBD (b06bdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\bxvbda.sys [Unsigned] =>.Broadcom Corporation
SR - Demand [10/06/2009] [ 270848] Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 (b57nd60a) . (.Broadcom Corporation.) - C:\Windows\System32\DRIVERS\b57nd60a.sys [Unsigned] =>.Broadcom Corporation
SR - Demand [10/06/2009] [ 18432] Brother USB Mass-Storage Lower Filter Driver (BrFiltLo) . (.Brother Industries, Ltd..) - C:\Windows\System32\drivers\BrFiltLo.sys [Unsigned] =>.Brother Industries, Ltd.
SR - Demand [10/06/2009] [ 8704] Brother USB Mass-Storage Upper Filter Driver (BrFiltUp) . (.Brother Industries, Ltd..) - C:\Windows\System32\drivers\BrFiltUp.sys [Unsigned] =>.Brother Industries, Ltd.
SR - Demand [14/07/2009] [ 286720] Brother MFC Serial Port Interface Driver (WDM) (Brserid) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\Brserid.sys [Unsigned] =>.Brother Industries Ltd.
SR - Demand [10/06/2009] [ 47104] Brother WDM Serial driver (BrSerWdm) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrSerWdm.sys [Unsigned] =>.Brother Industries Ltd.
SR - Demand [10/06/2009] [ 14976] Brother MFC USB Fax Only Modem (BrUsbMdm) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrUsbMdm.sys [Unsigned] =>.Brother Industries Ltd.
SR - Demand [10/06/2009] [ 14720] Brother MFC USB Serial WDM Driver (BrUsbSer) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrUsbSer.sys [Unsigned] =>.Brother Industries Ltd.
SR - Demand [14/07/2009] [ 17488] (cmdide) . (.CMD Technology, Inc..) - C:\Windows\System32\drivers\cmdide.sys =>.Microsoft Windows®
SR - Boot [19/02/2021] [ 250032] AO Kaspersky Lab Cryptographic Module x64 (56 bit) (cm_km) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\cm_km.sys =>.Kaspersky Lab JSC®
SS - Demand [12/01/2010] [ 227896] Com4QLBEx (Com4QLBEx) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe =>.Hewlett-Packard Company®
SR - Demand [13/12/2012] [ 28008] DFX Audio Enhancer 11.1 (DFX11_1) . (.Power Technology.) - C:\Windows\System32\drivers\dfx11_1x64.sys =>.Power Technology®
SR - Demand [10/06/2009] [ 3286016] Broadcom NetXtreme II 10 GigE VBD (ebdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\evbda.sys [Unsigned] =>.Broadcom Corporation
SR - Demand [14/07/2009] [ 530496] (elxstor) . (.Emulex.) - C:\Windows\System32\drivers\elxstor.sys =>.Microsoft Windows®
SR - Demand [15/06/2020] [ 44464] Virtual Serial Ports Driver 9 (Electronic Team) (evserial9) . (.Electronic Team, Inc..) - C:\Windows\System32\DRIVERS\evserial9.sys =>.Electronic Team, Inc®
SR - Demand [20/04/2009] [ 11264] HP Hotkey Device (HBtnKey) . (.Hewlett-Packard Development Company, L.P..) - C:\Windows\System32\DRIVERS\cpqbttn64.sys [Unsigned] =>.Hewlett-Packard Development Company, L.P.
SR - Demand [10/06/2009] [ 31232] Hauppauge Consumer Infrared Receiver (hcw85cir) . (.Hauppauge Computer Works, Inc..) - C:\Windows\System32\drivers\hcw85cir.sys [Unsigned] =>.Hauppauge Computer Works, Inc.
SR - Boot [13/05/2011] [ 30008] HP Filter (hpdskflt) . (.Hewlett-Packard Company.) - C:\Windows\System32\DRIVERS\hpdskflt.sys =>.Hewlett-Packard Company®
SR - Demand [29/04/2009] [ 18432] HpqKbFilter Driver (HpqKbFiltr) . (.Hewlett-Packard Development Company, L.P..) - C:\Windows\System32\DRIVERS\HpqKbFiltr.sys [Unsigned] =>.Hewlett-Packard Development Company, L.P.
SS - Demand [30/04/2009] [ 229944] hpqwmiex (hpqwmiex) . (.Hewlett-Packard Development Company, L.P..) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe =>.Hewlett-Packard Company®
SR - Demand [21/11/2010] [ 78720] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft Windows®
SR - Auto [13/05/2011] [ 30520] HP Service (hpsrv) . (.Hewlett-Packard Company.) - C:\Windows\System32\Hpservice.exe =>.Hewlett-Packard Company®
SR - Demand [21/11/2010] [ 410496] (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft Windows®
SR - Auto [19/12/2018] [ 229296] IDMWFP (IDMWFP) . (.Tonec Inc..) - C:\Windows\System32\DRIVERS\idmwfp.sys =>.Tonec Inc.®
SR - Demand [10/06/2009] [ 6108416] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\igdkmd64.sys [Unsigned] =>.Intel Corporation
SR - Demand [14/07/2009] [ 44112] (iirsp) . (.Intel Corp./ICP vortex GmbH.) - C:\Windows\System32\drivers\iirsp.sys =>.Microsoft Windows®
SR - Auto [25/07/2021] [ 15008] inpoutx64 (inpoutx64) . (.Highresolution Enterprises [www.highrez.co.uk].) - C:\Windows\System32\Drivers\inpoutx64.sys =>.Red Fox UK Limited®
SR - System [19/02/2021] [ 110336] Kaspersky Lab klbackupdisk (klbackupdisk) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klbackupdisk.sys =>.Kaspersky Lab JSC®
SR - System [19/02/2021] [ 211704] Kaspersky Lab klbackupflt (klbackupflt) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klbackupflt.sys =>.Kaspersky Lab JSC®
SR - System [19/02/2021] [ 126216] kldisk (kldisk) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\kldisk.sys =>.Kaspersky Lab JSC®
SR - System [19/02/2021] [ 514840] Kaspersky Lab Kernel DLL (klflt) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klflt.sys =>.Kaspersky Lab JSC®
SR - System [15/03/2021] [ 657696] Kaspersky Lab Security Extender Driver (klgse) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klgse.sys =>.Kaspersky Lab JSC®
SR - System [15/03/2021] [ 1400600] Kaspersky Lab service driver (klhk) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klhk.sys =>.Kaspersky Lab JSC®
SR - System [19/02/2021] [ 1042712] Kaspersky Lab Driver (KLIF) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klif.sys =>.Kaspersky Lab JSC®
SR - System [19/02/2021] [ 98040] Kaspersky Anti-Virus NDIS 6 Filter (klim6) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klim6.sys =>.Kaspersky Lab JSC®
SR - Demand [19/02/2021] [ 112392] Kaspersky Lab KLKBDFLT (klkbdflt) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klkbdflt.sys =>.Kaspersky Lab JSC®
SR - Demand [19/02/2021] [ 112904] Kaspersky Lab KLMOUFLT (klmouflt) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klmouflt.sys =>.Kaspersky Lab JSC®
SR - System [19/02/2021] [ 85256] Kaspersky Lab format recognizer driver (klpd) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klpd.sys =>.Kaspersky Lab JSC®
SR - Boot [20/03/2022] [ 285416] (klupd_klif_arkmon) . (.AO Kaspersky Lab.) - C:\Windows\System32\Drivers\klupd_klif_arkmon.sys =>.Microsoft®
SR - Demand [20/03/2022] [ 285400] (klupd_klif_klark) . (.AO Kaspersky Lab.) - C:\Windows\System32\Drivers\klupd_klif_klark.sys =>.Microsoft®
SR - Boot [20/03/2022] [ 106184] (klupd_klif_klbg) . (.AO Kaspersky Lab.) - C:\Windows\System32\Drivers\klupd_klif_klbg.sys =>.Microsoft®
SR - Demand [20/03/2022] [ 219376] (klupd_klif_mark) . (.AO Kaspersky Lab.) - C:\Windows\System32\Drivers\klupd_klif_mark.sys =>.Microsoft®
SS - Demand [19/02/2021] [ 479280] Kaspersky Volume Shadow Copy Service Bridge 21.3 (klvssbridge64_21.3) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\vssbridge64.exe =>.Kaspersky Lab JSC®
SR - System [19/02/2021] [ 155912] klwfp (klwfp) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klwfp.sys =>.Kaspersky Lab JSC®
SR - System [19/02/2021] [ 327936] KLwtp - WFP callout traffic inspector (klwtp) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\klwtp.sys =>.Kaspersky Lab JSC®
SR - System [19/02/2021] [ 300808] kneps (kneps) . (.AO Kaspersky Lab.) - C:\Windows\System32\DRIVERS\kneps.sys =>.Kaspersky Lab JSC®
SR - Demand [14/07/2009] [ 114752] (LSI_FC) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_fc.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 106560] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 65600] (LSI_SAS2) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas2.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 115776] (LSI_SCSI) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_scsi.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 35392] (megasas) . (.LSI Corporation.) - C:\Windows\System32\drivers\megasas.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 284736] (MegaSR) . (.LSI Corporation, Inc..) - C:\Windows\System32\drivers\MegaSR.sys =>.Microsoft Windows®
SR - Demand [13/01/2010] [ 7675392] Pilote de carte Intel(R) Wireless WiFi Link pour Windows 7 (NETw5s64) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\NETw5s64.sys [Unsigned] =>.Intel Corporation
SR - Demand [10/06/2009] [ 5434368] Pilote de carte de liaison WiFi sans fil Intel(R) 5000 Seri (netw5v64) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\netw5v64.sys [Unsigned] =>.Intel Corporation
SR - Demand [14/07/2009] [ 51264] (nfrd960) . (.IBM Corporation.) - C:\Windows\System32\drivers\nfrd960.sys =>.Microsoft Windows®
SR - Demand [21/11/2010] [ 148352] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft Windows®
SR - Demand [21/11/2010] [ 166272] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 1524816] (ql2300) . (.QLogic Corporation.) - C:\Windows\System32\drivers\ql2300.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 128592] (ql40xx) . (.QLogic Corporation.) - C:\Windows\System32\drivers\ql40xx.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 43584] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\drivers\SiSRaid2.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 80464] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\drivers\sisraid4.sys =>.Microsoft Windows®
SR - Demand [14/07/2009] [ 24656] (stexstor) . (.Promise Technology.) - C:\Windows\System32\drivers\stexstor.sys =>.Microsoft Windows®
SR - Demand [31/10/2019] [ 30720] TAP-Windows Adapter V9 (tap0901) . (.The OpenVPN Project.) - C:\Windows\System32\DRIVERS\tap0901.sys [Unsigned] =>.The OpenVPN Project
SR - Demand [15/04/2020] [ 54784] Apple Mobile USB Driver (USBAAPL64) . (.Apple, Inc..) - C:\Windows\System32\Drivers\usbaapl64.sys [Unsigned] =>.Apple, Inc.
SR - Demand [14/07/2009] [ 17488] (viaide) . (.VIA Technologies, Inc..) - C:\Windows\System32\drivers\viaide.sys =>.Microsoft Windows®
SR - Demand [15/06/2020] [ 132016] Virtual Serial Bus Enumerator 9 (Electronic Team) (VSBC9) . (.Electronic Team, Inc..) - C:\Windows\System32\DRIVERS\evsbc9.sys =>.Electronic Team, Inc®
SR - Demand [14/07/2009] [ 161872] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\drivers\vsmraid.sys =>.Microsoft Windows®
---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (2) - 5s
O38 - TASK: {96D98B1A-AA0B-4813-BCB4-50BFD8D37B4D} [64Bits][\CCleanerSkipUAC - ZaKaRIA] - (.Piriform Software Ltd - CCleaner.) -- C:\Users\ZaKaRIA\Desktop\CCleaner.exe [35373696] =>.Piriform Software Ltd
C:\Windows\System32\Tasks\CCleanerSkipUAC - ZaKaRIA - (.Piriform Software Ltd.) -- C:\Users\ZaKaRIA\Desktop\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd
---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (4) - 1s
O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [Unsigned] =>.Tonec Inc.
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe [Unsigned] =>.Microsoft Corporation
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe [Unsigned] =>.Microsoft Corporation
O4 - HKUS\S-1-5-21-3832915995-491439261-137513312-1000\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [Unsigned] =>.Tonec Inc.
---\\ PROCESSUS LANCÉS (6) - 3s
[MD5.FC7C13B5A9E9BE23B7AE72BBC7FDB278] - (.Hewlett-Packard Company - HpService.) -- C:\Windows\System32\Hpservice.exe [30520] [PID.1052] [Unsigned] =>.Hewlett-Packard Company
[MD5.BC3CBB9C99DA7861D703D91BB74F36CA] - (.Apple Inc. - MobileDeviceService.) -- C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056] [PID.1760] =>.Apple Inc.®
[MD5.A4A1063DF12F1A8AF07EB66016621F5A] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [5483320] [PID.2176] [Unsigned] =>.Tonec Inc.
[MD5.7631C33878C331D7396679B0C391FCA8] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [384312] [PID.1412] =>.Tonec Inc.®
[MD5.B47BE2D7A62F4A8EB4A427C4196C0BF6] - (.Alexander Roshal - WinRAR archiver.) -- C:\Program Files\WinRAR\WinRAR.exe [2410032] [PID.4692] =>.win.rar GmbH®
[MD5.84245271C3D0817073A67CF34484D3D3] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\ZaKaRIA\Downloads\Programs\ZHPDiag3.exe [3288264] [PID.4012] [Unsigned] =>.Nicolas Coolman
---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (5) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.16428 (winblue_gdr.131013-1700)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation
---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)
---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (11) - 1s
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Extensions] [Temp]
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Extensions] [ahkjpbeeocnddjkakilopmfdlnjdpcdm] =>.Kaspersky Labs
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Extensions] [llbjbkhnmlidjebalopleeepgdfgcpec] IDM Integration Module =>.IDM Computer Solutions, Inc.
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Extensions] [odfafepnkmbhccpbejgmiehpchacaeak] uBlock Origin =>.Raymond Hill
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Local Extension Settings] [ahkjpbeeocnddjkakilopmfdlnjdpcdm] =>.Kaspersky Labs
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Local Extension Settings] [gmgoamodcdcjnbaobigkjelfplakmdhh]
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Local Extension Settings] [llbjbkhnmlidjebalopleeepgdfgcpec]
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Local Extension Settings] [odfafepnkmbhccpbejgmiehpchacaeak] =>.Raymond Hill
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Managed Extension Settings] [gmgoamodcdcjnbaobigkjelfplakmdhh]
E2 - GCE: Preference [ZaKaRIA][User Data\Default\Managed Extension Settings] [odfafepnkmbhccpbejgmiehpchacaeak] =>.Raymond Hill
---\\ INTERNET EXPLORER,Proxy Management (7) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyHttp1.1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft
---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation
---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (21)
---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (2) - 0s
O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc.®
O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\101.0.1210.53\BHO\ie_to_edge_bho_64.dll =>.Microsoft®
---\\ RACCOURCIS GLOBAL STARTUP (41) - 9s
O4 - GS\Quicklaunch [ZaKaRIA]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\sendTo [ZaKaRIA]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo [Unsigned] =>.Microsoft Corporation
O4 - GS\TaskBar [ZaKaRIA]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\TaskBar [ZaKaRIA]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\CommonDesktop [Public]: 3uTools.lnk . (.ShangHai ZhangZheng Network Technology Co., Ltd. - 3uTools.) C:\Program Files (x86)\3uTools\3uTools.exe {331FA0810256688FDF45BFAE}. =>.ShangHai ZhangZheng Network Technology Co., Ltd.
O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut [Unsigned] =>..Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s [Unsigned] =>..Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) C:\Windows\system32\WindowsAnytimeUpgradeUI.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\DVD Maker\DVDMaker.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe [Unsigned] =>.Microsoft Corporation
---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{5E330F4D-3AC4-41C2-861E-529AC74BDFAA}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{E3A40B90-B2E6-4908-B316-ADE319EF2F4B}: DhcpNameServer = 8.8.8.8 8.8.4.4 =>.France Google Cloud
---\\ PROTOCOLE ADDITIONNEL (20) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation®
---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation
---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (9) - 2s
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Microsoft(C) Register Server.) -- C:\Windows\System32\regsvr32.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Disable SSL3 [64Bits] - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\101.0.1210.53\Installer\setup.exe =>.Microsoft®
---\\ LOGICIELS INSTALLÉS (18) - 10s
O42 - Logiciel: 3uTools - (.ShangHai ZhangZheng Network Technology Co., Ltd..) [HKLM][64Bits] -- 3uTools {331FA0810256688FDF45BFAE}. =>.ShangHai ZhangZheng Network Technology Co., Ltd.
O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} [Unsigned] =>.Google Inc. (Hidden)
O42 - Logiciel: HP Quick Launch Buttons - (.Hewlett-Packard Company.) [HKLM][64Bits] -- {34D2AB40-150D-475D-AE32-BD23FB5EE355} =>.Hewlett-Packard Company®
O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.®
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky.) [HKLM][64Bits] -- {4FC79BE9-AD63-46C0-9626-E4F6BCE6A976} [Unsigned] =>.Kaspersky (Hidden)
O42 - Logiciel: Kaspersky Internet Security - (.Kaspersky.) [HKLM][64Bits] -- InstallWIX_{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976} [Unsigned] =>.Kaspersky
O42 - Logiciel: Microsoft .NET Framework 4.7.2 (FRA) - (.Microsoft Corporation.) [HKLM][64Bits] -- {5E61A89C-903E-3EA0-9785-E3C60AFBEEBE} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft .NET Framework 4.7.2 (Français) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1036 =>.Microsoft Corporation®
O42 - Logiciel: Microsoft .NET Framework 4.8 - (.Microsoft Corporation.) [HKLM][64Bits] -- {16735AF7-1D8D-3681-94A5-C578A61EC832} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge =>.Microsoft®
O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 - (.Microsoft Corporation.) [HKLM][64Bits] -- {74d0e5db-b326-4dae-a6b2-445b9de1836e} =>.Microsoft®
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23026 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BE960C1C-7BAD-3DE6-8B1A-2616FE532845} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23026 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A2563E55-3BEC-3828-8D67-E5E8B9E8B675} [Unsigned] =>.Microsoft Corporation (Hidden)
O42 - Logiciel: QLBCASL - (.Hewlett-Packard.) [HKLM][64Bits] -- {F1D7AC58-554A-4A58-B784-B61558B1449A} [Unsigned] =>.Hewlett-Packard (Hidden)
O42 - Logiciel: Update for Microsoft .NET Framework 4.8 (KB4503575) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB4503575 [Unsigned] =>.Microsoft Corporation
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: WinRAR 5.91 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH®
---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (106) - 10s
HKLM\SOFTWARE\Wow6432Node\Machiner =>Trojan.CrthRazy
HKLM\SOFTWARE\Agere =>.Agere Systems
HKLM\SOFTWARE\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\CBSTEST =>.CBS Test
HKLM\SOFTWARE\Corel =>.Corel
HKLM\SOFTWARE\DFX =>.DFX Power Technology
HKLM\SOFTWARE\ELTIMA Software =>.ELTIMA Software
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\LSI =>.LSI
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\Martin Prikryl =>.Martin Prikryl
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\Piriform =>.Piriform
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\SimplyCore LLC =>.SimplyCore LLC
HKLM\SOFTWARE\Sonic =>.Sonic
HKLM\SOFTWARE\WinRAR =>.WinRAR
HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc.
HKLM\SOFTWARE\WOW6432Node\Bitvise =>.Bitvise
HKLM\SOFTWARE\WOW6432Node\Cygnus Solutions =>.Cygnus Solutions
HKLM\SOFTWARE\WOW6432Node\DFX =>.DFX Power Technology
HKLM\SOFTWARE\WOW6432Node\ELTIMA Software =>.ELTIMA Software
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard
HKLM\SOFTWARE\WOW6432Node\i4Tool
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\Internet Download Manager =>.Tonec Inc
HKLM\SOFTWARE\WOW6432Node\KasperskyLab =>.Kaspersky Labs
HKLM\SOFTWARE\WOW6432Node\Licenses =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\WOW6432Node\Martin Prikryl =>.Martin Prikryl
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\PowerTechnology =>.PowerTechnology
HKLM\SOFTWARE\WOW6432Node\TranslateService
HKLM\SOFTWARE\WOW6432Node\TVInstallTemp =>.TeamViewer GmbH
HKLM\SOFTWARE\WOW6432Node\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\3uTools
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\Akeo Consulting =>.Akeo Consulting
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Apple Inc. =>.Apple Inc.
HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKCU\SOFTWARE\Bitvise =>.Bitvise
HKCU\SOFTWARE\Corel =>.Corel
HKCU\SOFTWARE\Cygnus Solutions =>.Cygnus Solutions
HKCU\SOFTWARE\DownloadManager =>.DownloadManager
HKCU\SOFTWARE\Enigma Protector =>.Enigma Protector
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\GRETECH =>.Gretech
HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKCU\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKCU\SOFTWARE\KasperskyLabSetup =>.Kaspersky Labs
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\Piriform =>.Piriform
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\UrbanVPN-GUI
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\.DEFAULT\SOFTWARE\Corel =>.Corel
HKU\.DEFAULT\SOFTWARE\Google =>.Google
HKU\.DEFAULT\SOFTWARE\GRETECH =>.Gretech
HKU\.DEFAULT\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKU\.DEFAULT\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKU\.DEFAULT\SOFTWARE\Nico Mak Computing =>.Nico Mak Computing
HKU\.DEFAULT\SOFTWARE\WinZip Computing =>.WinZip Computing
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\3uTools
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\7-Zip =>.Igor Pavlov
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Akeo Consulting =>.Akeo Consulting
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Apple Inc. =>.Apple Inc.
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Bitvise =>.Bitvise
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Corel =>.Corel
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Cygnus Solutions =>.Cygnus Solutions
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\DownloadManager =>.DownloadManager
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Enigma Protector =>.Enigma Protector
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Google =>.Google
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\GRETECH =>.Gretech
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\KasperskyLab =>.Kaspersky Labs
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\KasperskyLabSetup =>.Kaspersky Labs
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Piriform =>.Piriform
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\UrbanVPN-GUI
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-3832915995-491439261-137513312-1000\SOFTWARE\ZHP =>.Nicolas Coolman
---\\ CONTENU DES DOSSIERS PROGRAMMES (116) - 3s
O43 - CFD: 25/05/2022 - [] D -- C:\Program Files\Bonjour =>.Apple Inc.
O43 - CFD: 20/10/2044 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files\DVD Maker =>.Aone Software
O43 - CFD: 05/11/2020 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 02/01/2021 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH®
O43 - CFD: 25/05/2022 - [] D -- C:\Program Files (x86)\3uTools {331FA0810256688FDF45BFAE}.
O43 - CFD: 25/05/2022 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.
O43 - CFD: 12/05/2021 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation
O43 - CFD: 25/05/2022 - [] D -- C:\Program Files (x86)\Google =>.Google
O43 - CFD: 05/11/2020 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard
O43 - CFD: 05/11/2020 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 25/11/2020 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc
O43 - CFD: 05/11/2020 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation
O43 - CFD: 15/12/2021 - [0] D -- C:\Program Files (x86)\ISO to USB =>.isotousb.com
O43 - CFD: 12/04/2021 - [] D -- C:\Program Files (x86)\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 15/12/2021 - [0] D -- C:\Program Files (x86)\Kerish Doctor
O43 - CFD: 03/11/2020 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation
O43 - CFD: 28/02/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\3uTools
O43 - CFD: 03/11/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 21/11/2010 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation
O43 - CFD: 25/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 12/04/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security =>.Kaspersky Lab
O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 25/05/2022 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 02/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 05/11/2020 - [] D -- C:\ProgramData\Apple =>.Apple Inc.
O43 - CFD: 25/05/2022 - [] D -- C:\ProgramData\Apple Computer =>.Apple Inc.
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation
O43 - CFD: 25/11/2020 - [0] D -- C:\ProgramData\IDM =>.IDM
O43 - CFD: 12/04/2021 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 11/11/2020 - [] D -- C:\ProgramData\Kaspersky Lab Setup Files =>.Kaspersky Lab
O43 - CFD: 25/07/2021 - [] D -- C:\ProgramData\Kerish Products =>.Kerish Products
O43 - CFD: 03/11/2020 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation
O43 - CFD: 27/07/2021 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation
O43 - CFD: 09/11/2020 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation
O43 - CFD: 02/01/2021 - [0] D -- C:\ProgramData\Posse
O43 - CFD: 02/01/2021 - [0] D -- C:\ProgramData\Riate
O43 - CFD: 02/01/2021 - [0] D -- C:\ProgramData\s5w4s3t5v2w4s3t5v2
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation
O43 - CFD: 15/12/2021 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation
O43 - CFD: 04/01/2021 - [0] D -- C:\ProgramData\TranslateService
O43 - CFD: 28/12/2020 - [] D -- C:\ProgramData\UniqueId =>.Microsoft Corporation
O43 - CFD: 02/01/2021 - [] D -- C:\ProgramData\WinZip =>.WinZip
O43 - CFD: 25/05/2022 - [0] D -- C:\Program Files (x86)\Common Files\Apple =>.Apple Inc.
O43 - CFD: 12/05/2021 - [0] D -- C:\Program Files (x86)\Common Files\Bitvise =>.Bitvise
O43 - CFD: 25/05/2022 - [] D -- C:\Program Files (x86)\Common Files\Kaspersky Lab =>.Kaspersky Lab
O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation
O43 - CFD: 24/03/2021 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation
O43 - CFD: 25/05/2022 - [0] D -- C:\Users\ZaKaRIA\AppData\Roaming\AnyDesk =>.philandro Software GmbH
O43 - CFD: 25/05/2022 - [] D -- C:\Users\ZaKaRIA\AppData\Roaming\Apple Computer =>.Apple Inc.
O43 - CFD: 25/05/2022 - [] D -- C:\Users\ZaKaRIA\AppData\Roaming\DMCache =>.DMCache
O43 - CFD: 05/05/2022 - [] D -- C:\Users\ZaKaRIA\AppData\Roaming\IDM =>.IDM
O43 - CFD: 04/09/2021 - [] SD -- C:\Users\ZaKaRIA\AppData\Roaming\Microsoft =>.Microsoft Corporation
O43 - CFD: 07/07/2021 - [] D -- C:\Users\ZaKaRIA\AppData\Roaming\URSoft =>.URSoft
O43 - CFD: 04/05/2022 - [] D -- C:\Users\ZaKaRIA\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 03/11/2020 - [] D -- C:\Users\ZaKaRIA\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 25/05/2022 - [] D -- C:\Users\ZaKaRIA\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 03/11/2020 - [0] SHD -- C:\Users\ZaKaRIA\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 14/05/2021 - [] HD -- C:\Users\ZaKaRIA\AppData\Local\APT
O43 - CFD: 25/05/2022 - [] D -- C:\Users\ZaKaRIA\AppData\Local\Google =>.Google
O43 - CFD: 03/11/2020 - [0] SHD -- C:\Users\ZaKaRIA\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 02/01/2021 - [] D -- C:\Users\ZaKaRIA\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 12/05/2021 - [] D -- C:\Users\ZaKaRIA\AppData\Local\Programs =>.Microsoft Corporation
O43 - CFD: 25/05/2022 - [] D -- C:\Users\ZaKaRIA\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [0] SHD -- C:\Users\ZaKaRIA\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 06/12/2021 - [] D -- C:\Users\ZaKaRIA\AppData\Local\VirtualStore =>.Microsoft Corporation
O43 - CFD: 25/05/2022 - [] D -- C:\Users\ZaKaRIA\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 12/05/2021 - [0] D -- C:\Users\ZaKaRIA\AppData\Local\Programs\Common =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [] SHD -- C:\Users\ZaKaRIA\AppData\LocalLow\Microsoft =>.Microsoft Corporation
O43 - CFD: 25/05/2022 - [] D -- C:\Users\ZaKaRIA\Desktop\RevoUninstaller_Portable
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\ZaKaRIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation
O43 - CFD: 05/11/2020 - [] RD -- C:\Users\ZaKaRIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 25/11/2020 - [] D -- C:\Users\ZaKaRIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc
O43 - CFD: 14/07/2009 - [] RD -- C:\Users\ZaKaRIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation
O43 - CFD: 02/01/2021 - [] RD -- C:\Users\ZaKaRIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation
O43 - CFD: 02/01/2021 - [] D -- C:\Users\ZaKaRIA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation
O43 - CFD: 03/11/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation
O43 - CFD: 14/07/2009 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation
O43 - CFD: 05/11/2020 - [0] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\hpqLog =>.Hewlett-Packard
O43 - CFD: 14/07/2009 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation
---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 0s
O106 - SIOI: [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc.®
O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (30) - 2s
O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Kaspersky Anti-Virus 21.3 [64Bits] - {37303E08-14C9-4FC3-B1D9-7993682A4691} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll {067CE8A9F2E02AC7D49304F85E9474E1}. =>.AO Kaspersky Lab
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned]
O108 - CMH2: Compatibility [64Bits] - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: Kaspersky Anti-Virus 21.3 [64Bits] - {37303E08-14C9-4FC3-B1D9-7993682A4691} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll {067CE8A9F2E02AC7D49304F85E9474E1}. =>.AO Kaspersky Lab
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned]
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: Kaspersky Anti-Virus 21.3 [64Bits] - {37303E08-14C9-4FC3-B1D9-7993682A4691} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll {067CE8A9F2E02AC7D49304F85E9474E1}. =>.AO Kaspersky Lab
O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: Gadgets [64Bits] - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: Kaspersky Anti-Virus 21.3 [64Bits] - {37303E08-14C9-4FC3-B1D9-7993682A4691} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll {067CE8A9F2E02AC7D49304F85E9474E1}. =>.AO Kaspersky Lab
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH®
O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned]
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: Kaspersky Anti-Virus 21.3 [64Bits] - {37303E08-14C9-4FC3-B1D9-7993682A4691} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll {067CE8A9F2E02AC7D49304F85E9474E1}. =>.AO Kaspersky Lab
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (4) - 0s
O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
---\\ ÉNUMÉRATION DES CLÉS StartupReg (3) - 0s
O53 - SMSR:HKLM\...\startupreg\CCleaner Smart Cleaning [Key] [64Bits] . (...) -- C:\Program Files\CCleaner\CCleaner64.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\iTunesHelper [Key] [64Bits] . (...) -- C:\Program Files\iTunes\iTunesHelper.exe (.not file.)
O53 - SMSR:HKLM\...\startupreg\QlbCtrl.exe [Key] [64Bits] . (.Hewlett-Packard Development Company, L.P. - Quick Launch Buttons.) -- C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCtrl.exe =>.Hewlett-Packard Development Company, L.P.
---\\ LISTE DES PILOTES DU SYSTÈME (319) - 17s
O58 - SDL:2009/07/14 00:06:38 A . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\drivers\1394bus.sys [68096] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\drivers\1394ohci.sys [229888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2011/05/13 17:57:58 A . (.Hewlett-Packard Company - HP Accelerometer.) -- C:\Windows\System32\drivers\Accelerometer.sys [43320] =>.Hewlett-Packard Company®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\drivers\acpi.sys [334208] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\drivers\acpipmi.sys [12800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows®
O58 - SDL:2015/10/13 16:41:05 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\afd.sys [497664] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:10:24 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\drivers\agilevpn.sys [60416] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:52:21 A . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\drivers\AGP440.sys [61008] =>.Microsoft Windows®
O58 - SDL:2009/06/10 21:01:06 A . (.LSI Corp - SoftModem Device Driver.) -- C:\Windows\System32\drivers\agrsm64.sys [1146880] [Unsigned] =>.LSI Corp
O58 - SDL:2009/07/14 01:52:21 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:52:21 A . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\drivers\amdide.sys [15440] =>.Microsoft Windows®
O58 - SDL:2019/02/21 03:35:17 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdk8.sys [64512] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/21 03:35:17 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdppm.sys [60928] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107904] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [27008] =>.Microsoft Windows®
O58 - SDL:2019/02/21 03:42:31 A . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\drivers\appid.sys [62464] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:10:13 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\drivers\asyncmac.sys [23040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:52:21 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [24128] =>.Microsoft Windows®
O58 - SDL:2013/08/05 02:25:45 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\drivers\ataport.sys [155584] =>.Microsoft®
O58 - SDL:2009/06/10 20:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2009/07/14 01:52:21 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\drivers\battc.sys [28240] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:00:13 A . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\drivers\beep.sys [6656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:35:59 A . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\drivers\blbdrive.sys [45056] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:23:50 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\drivers\bowser.sys [90624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/06/10 20:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] [Unsigned] =>.Brother Industries, Ltd.
O58 - SDL:2009/06/10 20:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] [Unsigned] =>.Brother Industries, Ltd.
O58 - SDL:2009/07/14 01:01:48 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\drivers\bridge.sys [95232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] [Unsigned] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 20:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] [Unsigned] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 20:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] [Unsigned] =>.Brother Industries Ltd.
O58 - SDL:2009/06/10 20:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] [Unsigned] =>.Brother Industries Ltd.
O58 - SDL:2009/07/14 00:06:52 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\drivers\bthmodem.sys [72192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/06/10 20:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2009/07/13 23:19:47 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\cdfs.sys [92160] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\cdrom.sys [147456] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:06:34 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\drivers\circlass.sys [45568] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:24 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\drivers\Classpnp.sys [179072] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:31:03 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\drivers\CmBatt.sys [17664] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:52:31 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2021/02/19 19:08:52 A . (.AO Kaspersky Lab - Cryptographic Module Driver x86 (56 bit).) -- C:\Windows\System32\drivers\cm_km.sys [250032] =>.Kaspersky Lab JSC®
O58 - SDL:2018/11/18 02:43:42 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\drivers\cng.sys [467856] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:52:31 A . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\drivers\compbatt.sys [21584] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\drivers\CompositeBus.sys [38912] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/02/24 23:02:38 A . (.Hewlett-Packard Company - HP Tablet PC Key Button HID Driver.) -- C:\Windows\System32\drivers\CPQBTTN.sys [19000] =>.Hewlett-Packard Company®
O58 - SDL:2009/04/20 07:40:34 A . (.Hewlett-Packard Development Company, L.P. - HP Tablet PC Key Button HID Driver.) -- C:\Windows\System32\drivers\CPQBttn64.sys [11264] [Unsigned] =>.Hewlett-Packard Development Company, L.P.
O58 - SDL:2009/07/14 01:47:48 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\drivers\crashdmp.sys [39504] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:47:48 A . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\drivers\crcdisk.sys [24144] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:24:41 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\Windows\System32\drivers\csc.sys [514560] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:32 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\dfsc.sys [102400] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2012/12/13 15:41:10 A . (. - Explore Systems Virtual Audio Device.) -- C:\Windows\System32\drivers\dfx11_1x64.sys [28008] =>.Power Technology®
O58 - SDL:2009/07/13 23:37:18 A . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\drivers\discache.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/01/21 00:51:45 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\drivers\disk.sys [73664] =>.Microsoft®
O58 - SDL:2014/02/04 02:35:35 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\drivers\Diskdump.sys [27584] =>.Microsoft®
O58 - SDL:2010/11/21 03:23:48 A . (.Microsoft Corporation - Dynamic Memory.) -- C:\Windows\System32\drivers\dmvsc.sys [71168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/12/08 18:54:36 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmk.sys [116736] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/12/08 18:11:53 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmkaud.sys [5632] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:47:48 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\drivers\Dumpata.sys [28736] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:43:14 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\drivers\dumpfve.sys [55128] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:38:28 A . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\drivers\dxapi.sys [16896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:38:28 A . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\drivers\dxg.sys [98816] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:32 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\drivers\dxgkrnl.sys [982912] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:24:32 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\drivers\dxgmms1.sys [258048] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:31:04 A . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\drivers\errdev.sys [9728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/02/09 01:22:32 A . (.Electronic Team, Inc. - Electronic Usb Stub.) -- C:\Windows\System32\drivers\eusbstub.sys [45752] =>.Electronic Team, Inc®
O58 - SDL:2009/06/10 20:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2020/06/15 09:21:32 A . (.Electronic Team, Inc. - Virtual Serial Bus.) -- C:\Windows\System32\drivers\evsbc9.sys [132016] =>.Electronic Team, Inc®
O58 - SDL:2020/06/15 09:21:32 A . (.Electronic Team, Inc. - Virtual Serial Port Driver.) -- C:\Windows\System32\drivers\evserial9.sys [44464] =>.Electronic Team, Inc®
O58 - SDL:2009/07/13 23:23:29 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\drivers\exfat.sys [195072] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:23:29 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\drivers\fastfat.sys [204800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:00:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\drivers\fdc.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:47:48 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\drivers\fileinfo.sys [70224] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:25:40 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\drivers\filetrace.sys [34304] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:00:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\drivers\flpydisk.sys [24576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:00 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\Windows\System32\drivers\fltMgr.sys [289664] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:47:49 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\Windows\System32\drivers\fsdepends.sys [55376] =>.Microsoft Windows®
O58 - SDL:2012/03/01 06:46:16 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\drivers\fs_rec.sys [23408] =>.Microsoft Windows®
O58 - SDL:2021/02/09 01:22:34 A . (.Electronic Team, Inc. - Filter USB hub.) -- C:\Windows\System32\drivers\fusbhub.sys [127672] =>.Electronic Team, Inc®
O58 - SDL:2013/01/24 06:01:01 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\drivers\fvevol.sys [223752] =>.Microsoft®
O58 - SDL:2016/07/07 15:36:17 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\drivers\FWPKCLNT.SYS [287976] =>.Microsoft®
O58 - SDL:2009/07/14 01:47:48 A . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour pla.) -- C:\Windows\System32\drivers\GAGP30KX.SYS [65088] =>.Microsoft Windows®
O58 - SDL:2009/06/10 20:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] [Unsigned] =>.Hauppauge Computer Works, Inc.
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\hdaudbus.sys [122368] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\HdAudio.sys [350208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:31:06 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\drivers\hidbatt.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:06:52 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\Windows\System32\drivers\hidbth.sys [100864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/07/03 04:05:05 A . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\drivers\hidclass.sys [76800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:06:23 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidir.sys [46592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/07/03 04:05:04 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\drivers\hidparse.sys [32896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidusb.sys [30208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2011/05/13 17:58:16 A . (.Hewlett-Packard Company - HP Disk Filter - SATA/RAID.) -- C:\Windows\System32\drivers\hpdskflt.sys [30008] =>.Hewlett-Packard Company®
O58 - SDL:2009/04/29 06:48:32 A . (.Hewlett-Packard Development Company, L.P. - HpqKbFiltr Keyboard Filter Driver.) -- C:\Windows\System32\drivers\HpqKbFiltr.sys [18432] [Unsigned] =>.Hewlett-Packard Development Company, L.P.
O58 - SDL:2010/11/21 03:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:55 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\drivers\http.sys [753664] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:24 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\drivers\hwpolicy.sys [14720] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:19:57 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410496] =>.Microsoft Windows®
O58 - SDL:2018/12/19 23:05:20 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\Windows\System32\drivers\idmwfp.sys [229296] =>.Tonec Inc.®
O58 - SDL:2009/06/10 20:37:05 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [6108416] [Unsigned] =>.Intel Corporation
O58 - SDL:2009/07/14 01:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows®
O58 - SDL:2021/07/25 21:11:03 A . (.Highresolution Enterprises [www.highrez.co.uk] - Kernel level port access driver.) -- C:\Windows\System32\drivers\inpoutx64.sys [15008] =>.Red Fox UK Limited®
O58 - SDL:2009/07/14 01:48:04 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\drivers\intelide.sys [16960] =>.Microsoft Windows®
O58 - SDL:2019/02/21 03:35:17 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\intelppm.sys [62464] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:27 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\drivers\ipfltdrv.sys [82944] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:48 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\drivers\IPMIDrv.sys [78848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:10:03 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\ipnat.sys [116224] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:09:02 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\drivers\irda.sys [120320] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:08:59 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\drivers\irenum.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:48:04 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\drivers\isapnp.sys [20544] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:48:04 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\drivers\kbdclass.sys [50768] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\drivers\kbdhid.sys [33280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2021/02/19 19:08:52 A . (.AO Kaspersky Lab - Backup Disk Filter [fre_win7_x64].) -- C:\Windows\System32\drivers\klbackupdisk.sys [110336] =>.Kaspersky Lab JSC®
O58 - SDL:2021/02/19 19:08:54 A . (.AO Kaspersky Lab - Backup File Filter [fre_win7_x64].) -- C:\Windows\System32\drivers\klbackupflt.sys [211704] =>.Kaspersky Lab JSC®
O58 - SDL:2021/02/19 19:08:54 A . (.AO Kaspersky Lab - Virtual Disk [fre_win7_x64].) -- C:\Windows\System32\drivers\kldisk.sys [126216] =>.Kaspersky Lab JSC®
O58 - SDL:2021/02/19 19:08:56 A . (.AO Kaspersky Lab - Filter Core [fre_win7_x64].) -- C:\Windows\System32\drivers\klflt.sys [514840] =>.Kaspersky Lab JSC®
O58 - SDL:2021/03/15 08:58:30 A . (.AO Kaspersky Lab - Security Extender [fre_win7_x64].) -- C:\Windows\System32\drivers\klgse.sys [657696] =>.Kaspersky Lab JSC®
O58 - SDL:2021/03/15 08:58:28 A . (.AO Kaspersky Lab - klhk [fre_win7_x64].) -- C:\Windows\System32\drivers\klhk.sys [1400600] =>.Kaspersky Lab JSC®
O58 - SDL:2021/02/19 19:08:56 A . (.AO Kaspersky Lab - Core System Interceptors [fre_win7_x64].) -- C:\Windows\System32\drivers\klif.sys [1042712] =>.Kaspersky Lab JSC®
O58 - SDL:2021/02/19 19:08:56 A . (.AO Kaspersky Lab - Packet Network Filter [fre_win7_x64].) -- C:\Windows\System32\drivers\klim6.sys [98040] =>.Kaspersky Lab JSC®
O58 - SDL:2021/02/19 19:08:58 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_win7_x64].) -- C:\Windows\System32\drivers\klkbdflt.sys [112392] =>.Kaspersky Lab JSC®
O58 - SDL:2021/02/19 19:08:58 A . (.AO Kaspersky Lab - Mouse Device Filter [fre_win7_x64].) -- C:\Windows\System32\drivers\klmouflt.sys [112904] =>.Kaspersky Lab JSC®
O58 - SDL:2021/02/19 19:08:58 A . (.AO Kaspersky Lab - Format Recognizer [fre_win7_x64].) -- C:\Windows\System32\drivers\klpd.sys [85256] =>.Kaspersky Lab JSC®
O58 - SDL:2022/03/20 17:08:53 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit Monitor Driver.) -- C:\Windows\System32\drivers\klupd_klif_arkmon.sys [285416] =>.Microsoft®
O58 - SDL:2022/03/20 17:09:57 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit.) -- C:\Windows\System32\drivers\klupd_klif_klark.sys [285400] =>.Microsoft®
O58 - SDL:2022/03/20 17:08:55 A . (.AO Kaspersky Lab - Kaspersky Lab Boot Guard Driver.) -- C:\Windows\System32\drivers\klupd_klif_klbg.sys [106184] =>.Microsoft®
O58 - SDL:2022/03/20 17:08:51 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit Memory Driver.) -- C:\Windows\System32\drivers\klupd_klif_mark.sys [219376] =>.Microsoft®
O58 - SDL:2021/02/19 19:09:00 A . (.AO Kaspersky Lab - WFP Network Filter [fre_win7_x64].) -- C:\Windows\System32\drivers\klwfp.sys [155912] =>.Kaspersky Lab JSC®
O58 - SDL:2021/02/19 19:09:00 A . (.AO Kaspersky Lab - WFP Network Connection Filter Driver [fre_w.) -- C:\Windows\System32\drivers\klwtp.sys [327936] =>.Kaspersky Lab JSC®
O58 - SDL:2021/02/19 19:09:02 A . (.AO Kaspersky Lab - Network Processor [fre_win7_x64].) -- C:\Windows\System32\drivers\kneps.sys [300808] =>.Kaspersky Lab JSC®
O58 - SDL:2010/11/21 03:24:16 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\drivers\ks.sys [243712] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/21 04:09:28 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecdd.sys [95464] =>.Microsoft®
O58 - SDL:2019/02/21 04:09:38 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecpkg.sys [154856] =>.Microsoft®
O58 - SDL:2009/07/14 00:00:19 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\drivers\ksthunk.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:08:51 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\drivers\lltdio.sys [60928] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:26:13 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\Windows\System32\drivers\luafv.sys [113152] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:01:06 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\drivers\mcd.sys [22016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:10:48 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\drivers\modem.sys [40448] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:38:52 A . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\drivers\monitor.sys [30208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:48:27 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\drivers\mouclass.sys [49216] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:00:20 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\drivers\mouhid.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/10 16:10:36 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\drivers\mountmgr.sys [94440] =>.Microsoft®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Pilote du bus de prise en charge des chemin.) -- C:\Windows\System32\drivers\mpio.sys [155008] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:08:25 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\drivers\mpsdrv.sys [77312] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:36 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\drivers\mrxdav.sys [140800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/21 03:36:27 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\mrxsmb.sys [161280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/21 03:36:03 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\drivers\mrxsmb10.sys [291328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/21 03:36:01 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\drivers\mrxsmb20.sys [129536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\drivers\msahci.sys [31104] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Module spécifique de périphériques Microsof.) -- C:\Windows\System32\drivers\msdsm.sys [140672] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:19:47 A . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\drivers\msfs.sys [26112] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:06:24 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:48:27 A . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\drivers\msisadrv.sys [15424] =>.Microsoft Windows®
O58 - SDL:2014/02/04 02:35:49 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\drivers\msiscsi.sys [274880] =>.Microsoft®
O58 - SDL:2009/07/14 00:00:18 A . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\drivers\mskssrv.sys [11136] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:00:17 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\drivers\mspclock.sys [7168] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:00:17 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\drivers\mspqm.sys [6784] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:15 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\drivers\msrpc.sys [366976] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:48:27 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\drivers\mssmbios.sys [32320] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:00:17 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\drivers\mstee.sys [8064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:02:08 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\drivers\MTConfig.sys [15360] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:48:27 A . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\drivers\mup.sys [60496] =>.Microsoft Windows®
O58 - SDL:2015/10/13 04:57:21 A . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\drivers\ndis.sys [950720] =>.Microsoft®
O58 - SDL:2009/07/14 00:08:13 A . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\drivers\ndiscap.sys [35328] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:10:00 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\drivers\ndistapi.sys [24064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:32 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\drivers\ndisuio.sys [56832] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:08 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\drivers\ndiswan.sys [164352] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:14 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\drivers\ndproxy.sys [57856] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:09:26 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\drivers\netbios.sys [44544] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/05/11 14:58:23 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netbt.sys [262144] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/07/07 15:36:18 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\drivers\netio.sys [377576] =>.Microsoft®
O58 - SDL:2010/01/13 15:37:18 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\NETw5s64.sys [7675392] [Unsigned] =>.Intel Corporation
O58 - SDL:2009/06/10 20:35:28 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\Windows\System32\drivers\netw5v64.sys [5434368] [Unsigned] =>.Intel Corporation
O58 - SDL:2009/07/14 01:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows®
O58 - SDL:2019/02/21 03:35:23 A . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\drivers\npfs.sys [44544] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:21:02 A . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\drivers\nsiproxy.sys [24576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:55 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1659776] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:19:38 A . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\drivers\null.sys [6144] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148352] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166272] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:48:26 A . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\drivers\NV_AGP.SYS [122960] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:07:23 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\drivers\nwifi.sys [318976] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:06:45 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\drivers\ohci1394.sys [72832] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:08 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\drivers\pacer.sys [131584] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:00:41 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\parport.sys [97280] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2012/03/17 07:58:57 A . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\drivers\partmgr.sys [75120] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\drivers\pci.sys [184704] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:45:45 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\pciide.sys [12352] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:45:46 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\drivers\pciidex.sys [48720] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:45:45 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\drivers\pcmcia.sys [220752] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:45:45 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\drivers\pcw.sys [50768] =>.Microsoft Windows®
O58 - SDL:2019/02/10 16:02:45 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\drivers\PEAuth.sys [663552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/12/08 18:12:08 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\drivers\portcls.sys [230400] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/21 03:35:17 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\processr.sys [60928] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:09:48 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\Windows\System32\drivers\qwavedrv.sys [46592] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:10:09 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\drivers\rasacd.sys [14848] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:33 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\rasl2tp.sys [129536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:10:17 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\drivers\raspppoe.sys [92672] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:33 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\drivers\raspptp.sys [111104] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:10:25 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\drivers\rassstp.sys [83968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:08 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\Windows\System32\drivers\rdbss.sys [309248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:17:46 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\drivers\rdpbus.sys [24064] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:16:34 A . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\drivers\RDPCDD.sys [7680] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:25:07 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [165888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:16:34 A . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\drivers\RDPENCDD.sys [7680] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:16:35 A . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\drivers\RDPREFMP.sys [8192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2014/07/17 01:21:54 A . (.Microsoft Corporation - Pilote de pile RDP Terminal.) -- C:\Windows\System32\drivers\rdpwd.sys [212480] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:33 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\drivers\rdyboost.sys [213888] =>.Microsoft Windows®
O58 - SDL:2015/11/05 09:53:59 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\drivers\rmcast.sys [146944] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2012/07/04 20:26:03 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\drivers\RNDISMP.sys [41472] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:10:47 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\drivers\rootmdm.sys [11264] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:08:51 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\Windows\System32\drivers\rspndr.sys [76800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\drivers\sbp2port.sys [103808] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:24:09 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\Windows\System32\drivers\scfilter.sys [29696] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:00 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\drivers\scsiport.sys [171392] =>.Microsoft Windows®
O58 - SDL:2009/06/10 20:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] [Unsigned] =>.Rovi Corporation
O58 - SDL:2009/07/14 00:00:33 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\drivers\serenum.sys [23552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:00:40 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\Windows\System32\drivers\serial.sys [94208] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:00:20 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\drivers\sermouse.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:01:01 A . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\drivers\sffdisk.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:01:03 A . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\drivers\sffp_mmc.sys [13824] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\drivers\sffp_sd.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:01:02 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\drivers\sfloppy.sys [16896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:09:09 A . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:00:35 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\drivers\smclib.sys [20992] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:55 A . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\drivers\spldr.sys [19008] =>.Microsoft Windows®
O58 - SDL:2009/06/10 20:48:43 A . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\drivers\spsys.sys [426496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/21 03:36:21 A . (.Microsoft Corporation - Pilote de serveur.) -- C:\Windows\System32\drivers\srv.sys [464384] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/21 03:36:11 A . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\drivers\srv2.sys [406016] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/02/21 03:36:05 A . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\drivers\srvnet.sys [169984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows®
O58 - SDL:2014/02/04 02:35:56 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\drivers\storport.sys [190912] =>.Microsoft®
O58 - SDL:2010/11/21 03:23:48 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\drivers\storvsc.sys [34688] =>.Microsoft Windows®
O58 - SDL:2015/04/11 03:19:59 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\drivers\stream.sys [69888] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:55 A . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\drivers\swenum.sys [12496] =>.Microsoft Windows®
O58 - SDL:2019/10/31 06:09:40 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\Windows\System32\drivers\tap0901.sys [30720] [Unsigned] =>.The OpenVPN Project
O58 - SDL:2009/07/14 00:01:04 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\drivers\tape.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/07/07 15:36:20 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\drivers\tcpip.sys [1896168] =>.Microsoft®
O58 - SDL:2016/07/07 15:08:06 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\drivers\tcpipreg.sys [46080] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:01 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\drivers\tdi.sys [26624] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:16:32 A . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\drivers\tdpipe.sys [15872] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2012/02/17 04:57:32 A . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\drivers\tdtcp.sys [23552] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/10/13 16:40:33 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [118272] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\drivers\termdd.sys [63360] =>.Microsoft Windows®
O58 - SDL:2016/02/05 19:03:08 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\Windows\System32\drivers\tpm.sys [147904] =>.Microsoft®
O58 - SDL:2014/07/17 01:21:27 A . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\drivers\tssecsrv.sys [39936] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:33 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\Windows\System32\drivers\TsUsbFlt.sys [59392] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\Windows\System32\drivers\TsUsbGD.sys [31232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:15 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\drivers\tunnel.sys [125440] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:55 A . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\drivers\UAGP35.SYS [64080] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:55 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\drivers\udfs.sys [328192] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:55 A . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à proce.) -- C:\Windows\System32\drivers\ULIAGPKX.SYS [64592] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\drivers\umbus.sys [48640] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:06:52 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\drivers\umpass.sys [9728] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/02/12 04:12:05 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\drivers\usb8023.sys [19968] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2020/04/15 19:08:58 A . (.Apple, Inc. - Apple Mobile Device USB Driver.) -- C:\Windows\System32\drivers\usbaapl64.sys [54784] [Unsigned] =>.Apple, Inc.
O58 - SDL:2010/11/21 03:24:11 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\drivers\USBCAMD2.sys [32896] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/11/27 01:41:15 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\drivers\usbccgp.sys [99840] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/07/12 10:41:12 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\drivers\usbcir.sys [100864] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/11/27 01:41:03 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\drivers\usbd.sys [7808] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/11/27 01:41:11 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\drivers\usbehci.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/11/27 01:41:37 A . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\drivers\usbhub.sys [343040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:06:30 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbohci.sys [25600] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/11/27 01:41:11 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\drivers\usbport.sys [325120] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:38:18 A . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\drivers\usbprint.sys [25088] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:39 A . (.Microsoft Corporation - Gestionnaire de stratégie de redirection US.) -- C:\Windows\System32\drivers\usbrpm.sys [31744] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2016/02/03 18:07:06 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\drivers\USBSTOR.SYS [91648] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/11/27 01:41:06 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbuhci.sys [30720] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2013/07/12 10:41:35 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\drivers\usbvideo.sys [185344] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:55 A . (.Microsoft Corporation - Énumérateur racine de lecteur virtuel.) -- C:\Windows\System32\drivers\vdrvroot.sys [36432] =>.Microsoft Windows®
O58 - SDL:2009/07/13 23:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vga.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vgapnp.sys [29184] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\drivers\vhdmp.sys [215936] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:45:55 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17488] =>.Microsoft Windows®
O58 - SDL:2019/02/21 03:39:01 A . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\drivers\videoprt.sys [129536] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:48 A . (.Microsoft Corporation - Virtual Machine Bus.) -- C:\Windows\System32\drivers\vmbus.sys [199552] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:48 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\drivers\VMBusHID.sys [21760] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:48 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\drivers\vms3cap.sys [6656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:23:48 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\Windows\System32\drivers\vmstorfl.sys [46464] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\drivers\volmgr.sys [71552] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:24:15 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\Windows\System32\drivers\volmgrx.sys [363392] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [295808] =>.Microsoft Windows®
O58 - SDL:2009/07/14 01:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows®
O58 - SDL:2021/02/09 01:22:40 A . (.Electronic Team, Inc. - Virtual USB hub.) -- C:\Windows\System32\drivers\vuhub.sys [135864] =>.Electronic Team, Inc®
O58 - SDL:2009/07/14 00:07:21 A . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\drivers\vwifibus.sys [24576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:07:22 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\drivers\vwififlt.sys [59904] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:07:28 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\drivers\vwifimp.sys [17920] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 00:02:07 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\drivers\wacompen.sys [27776] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2010/11/21 03:24:11 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\drivers\wanarp.sys [88576] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:37:35 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\drivers\watchdog.sys [42496] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:55 A . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\drivers\wd.sys [21056] =>.Microsoft Windows®
O58 - SDL:2013/06/25 22:55:52 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\drivers\Wdf01000.sys [785624] =>.Microsoft®
O58 - SDL:2012/07/26 04:55:47 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\drivers\WdfLdr.sys [54376] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:09:26 A . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\drivers\wfplwf.sys [12800] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:56 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\drivers\wimmount.sys [22096] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:48 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\drivers\winhv.sys [52096] =>.Microsoft Windows®
O58 - SDL:2010/11/21 03:23:47 A . (.Microsoft Corporation - Windows USB Class Driver BETA.) -- C:\Windows\System32\drivers\winusb.sys [41984] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/13 23:31:02 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\drivers\wmiacpi.sys [14336] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2009/07/14 01:45:55 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\drivers\wmilib.sys [16464] =>.Microsoft Windows®
O58 - SDL:2009/07/14 00:10:33 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\drivers\ws2ifsl.sys [21504] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2012/07/26 02:26:45 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFPf.sys [87040] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2012/07/26 02:26:06 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFRd.sys [198656] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/03/04 04:55:13 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [367552] =>.Microsoft®
O58 - SDL:2014/06/18 01:10:36 A . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3157504] [Unsigned] =>.Microsoft Corporation
---\\ ASSOCIATION Shell Spawning (9) - 0s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value
---\\ MENU DE DÉMARRAGE INTERNET (4) - 1s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 0s
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (33) - 3s
O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [72192] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [794624] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [853504] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [680448] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344064] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [359424] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [681984] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2610688] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [370688] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [569344] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [121856] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [136704] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110016] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [90624] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84480] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [210432] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] [Unsigned] =>.Microsoft Corporation
---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (8) - 2s
O87 - FAEL: "{84929E1B-C30D-4E52-AAEC-0F59DC6ABBA5}" [In-None-P6-TRUE] .(.深圳市迅雷网络技术有限公司 - 迅雷云加速开放平台.) -- C:\Program Files (x86)\3uTools\libXunlei\Download\MiniThunderPlatform.exe =>.ShenZhen Thunder Networking Technologies Ltd.®
O87 - FAEL: "{F191E3D0-D597-4698-B039-1446C2888ABA}" [In-None-P17-TRUE] .(.深圳市迅雷网络技术有限公司 - 迅雷云加速开放平台.) -- C:\Program Files (x86)\3uTools\libXunlei\Download\MiniThunderPlatform.exe =>.ShenZhen Thunder Networking Technologies Ltd.®
O87 - FAEL: "{992BBADB-B9D2-49C9-9591-07329E24C401}" [In-None-P6-TRUE] .(...) -- C:\Users\ZaKaRIA\Downloads\Programs\AnyDesk.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{72F24171-8166-4287-ADC8-AB0890966E19}" [In-None-P17-TRUE] .(...) -- C:\Users\ZaKaRIA\Downloads\Programs\AnyDesk.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{A143880C-DAD0-4102-9234-2A6855CBEE13}" [In-None-P6-TRUE] .(...) -- C:\Users\ZaKaRIA\Downloads\Programs\AnyDesk.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{907654E7-398E-4230-862F-434BC161BD29}" [In-None-P17-TRUE] .(...) -- C:\Users\ZaKaRIA\Downloads\Programs\AnyDesk.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{A39AEB21-BD93-4302-A93C-E98B754D9029}" [In-None-P6-TRUE] .(...) -- C:\Users\ZaKaRIA\Downloads\Programs\AnyDesk.exe [Unsigned] (.not file.) =>.SUP.Orphan
O87 - FAEL: "{3084BC8E-42A5-449F-91AE-9E745C4C1677}" [In-None-P17-TRUE] .(...) -- C:\Users\ZaKaRIA\Downloads\Programs\AnyDesk.exe [Unsigned] (.not file.) =>.SUP.Orphan
---\\ CODES PRODUITS LOGICIELS (7) - 0s
O90 - PUC: "55E3652ACEB38283D8765E8E9B8E6B57" [HKLM] . (.Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.23026.) =>.Microsoft Corporation
O90 - PUC: "7FA53761D8D11863495A5C876AE18C23" [HKLM] . (.Microsoft .NET Framework 4.8.) =>.Microsoft Corporation
O90 - PUC: "85CA7D1FA45585A47B486B51851B44A9" [HKLM] . (.QLBCASL.) =>.Hewlett-Packard
O90 - PUC: "9EB97CF436DA0C6469624E6FCB6E9A67" [HKLM] . (.Kaspersky Internet Security.) -- C:\Windows\Installer\{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976}\arp.ico =>.F-Secure
O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc.
O90 - PUC: "C1C069EBDAB76ED3B8A16261EF358254" [HKLM] . (.Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.23026.) =>.Microsoft Corporation
O90 - PUC: "C98A16E5E3090AE379583E6CA0BFEEEB" [HKLM] . (.Microsoft .NET Framework 4.7.2 (FRA).) =>.Microsoft Corporation
---\\ PACKAGES WINDOWS INSTALLER (8) - 4s
[MD5.973FED2A41AB59D55676689C809A02FC] [WIS][2021/04/12 01:56:10] (.Kaspersky - Kaspersky Internet Security.) -- C:\Windows\Installer\19046c.msi [14630912] =>.Kaspersky
[MD5.86E2B390629665FBC20E06DFBF01A48F] [WIS][2020/10/16 08:53:48] (.Apple Inc. - [ProductName] Installer.) -- C:\Windows\Installer\3839e9.msi [2732032] =>.Apple Inc.
[MD5.6D421AFED4EFE2F869468F62ACA556E5] [WIS][2020/10/16 08:51:20] (.Apple Inc. - Apple Mobile Device Support Installer.) -- C:\Windows\Installer\3839ee.msi [39952384] =>.Apple Inc.
[MD5.E27484A1A6A19F3D350E725FFDE59D39] [WIS][2009/07/17 05:35:36] (.Hewlett-Packard - QLBCASL.) -- C:\Windows\Installer\7179b7.msi [1302016] =>.Hewlett-Packard
[MD5.D35B45B6EE36005243203FAC496125FB] [WIS][2022/05/13 02:36:34] (.Google Inc. - Google Update Helper.) -- C:\Windows\Installer\ba8ea.msi [40960] =>.Google Inc.
[MD5.68F9605D12DC07193C9A818841FC2D31] [WIS][2021/04/12 15:47:46] (.Kaspersky Lab JSC.) -- C:\Windows\Installer\14f3e.msp [606208] =>.Kaspersky Lab JSC
[MD5.A154141E9600EF0AA36BC45F4BF3D100] [WIS][2021/07/02 03:37:30] (.Kaspersky Lab JSC.) -- C:\Windows\Installer\755a3.msp [307200] =>.Kaspersky Lab JSC
[MD5.0100A634C97256301024BD8E61DFC173] [WIS][2021/06/13 13:51:42] (.Kaspersky Lab JSC.) -- C:\Windows\Installer\9cdbf.msp [307200] =>.Kaspersky Lab JSC
---\\ FEATURE CONTROL. (121) - 0s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST_BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ehexthost32.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ehexthost32.exe =>.Legitimate
---\\ OBSERVATEURS des évènements (108) - 36s
Application.Error: MsiInstaller (16)
~Numéro: 15123
~Date: 05/25/2022 05:34:22 PM
~ID: 1023
~Description: Produit : %1 - La mise à jour ‘%2’ n’a pas pu être installée. Code d’erreur %3. Des informations supplémentaires sont disponibles dans le fichier journal %4.
~Suggestion: Aucune
Application.Error: VSS (1)
~Numéro: 15105
~Date: 05/25/2022 05:25:17 PM
~ID: 8194
~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = %1. Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur. Opéra
~Suggestion: Localiser les enregistreurs VSS qui se trompent et changer le compte sous lequel ils s'exécutent du service réseau au système local. Ajuster les autorisations d'activation du service COM par défaut
Application.Warning: Windows Search Service (248)
~Numéro: 15094
~Date: 05/25/2022 06:23:36 PM
~ID: 3036
~Description: La source de contenu <%2> est inaccessible.Contexte : Application , Catalogue SystemIndexDétails : L’objet est introuvable. (HRESULT : 0x80041201) (0x80041201)
~Suggestion: https://www.repairwin.com/fix-windows-event-3036-search-content-source-cannot-accessed-solved/
Application.Error: WinMgmt (107)
~Numéro: 15085
~Date: 05/25/2022 06:21:30 PM
~ID: 10
~Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Application.Warning: ASP.NET 4.0.30319.0 (2)
~Numéro: 15043
~Date: 05/13/2022 02:37:28 AM
~ID: 1020
~Description: Les mises à jour de la métabase IIS ont été abandonnées car IIS n'est pas installé ou est désactivé sur cet ordinateur. Pour configurer ASP.NET afin qu'il s'exécute dans IIS, installez ou activez IIS et réinscrivez APS.NET en utilisant aspnet_regiis.
Application.Error: Application Error (6)
~Numéro: 14910
~Date: 05/05/2022 08:27:33 PM
~ID: 1000
~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0xb4f1356c Nom du module défaillant : %4, version : %5, horodatage : 0x5c6e2226 Code d’exception : 0xe0434352 Décalage d’erreur : 0x0000c5af ID du processus défaillant : 0x144c Heure de
~Suggestion: Réparer ou réinstaller l'application.
Application.Error: .NET Runtime (6)
~Numéro: 14909
~ID: 1026
~Description: Application : SHERZOD99 iCloud Bypass Tool V1.2.exeVersion du Framework : v4.0.30319Description : le processus a été arrêté en raison d'une exception non gérée.Informations sur l'exception : System.Net.WebException à System.Net.HttpWebRequest.GetRe
~Suggestion: Essayer d'installer la dernière version de l'application ou du dernier correctif
Application.Error: ESENT (5)
~Numéro: 14828
~Date: 05/05/2022 04:20:01 PM
~ID: 455
~Description: %1 (%2) %3L'Erreur %5 s'est produite lors de l'ouverture du fichier journal %4.
~Suggestion: Créer un dossier C:\Windows\system32\config\systemprofile\AppData\Local\TileDataLayer\Database
Application.Warning: Microsoft-Windows-User Profiles Service (6)
~Numéro: 14104
~Date: 02/13/2022 06:35:30 PM
~ID: 1530
~Description: Windows a détecté que votre fichier de Registre est toujours utilisé par d’autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cel
Application.Error: urbanvpnserv (1)
~Numéro: 13883
~Date: 01/20/2022 10:44:12 PM
~ID: 0
~Description: urbanvpnserv error: 0x20000000 UrbanVPN exited with error: exit code = 1
Application.Error: Microsoft-Windows-CAPI2 (2)
~Numéro: 12902
~Date: 12/15/2021 10:25:03 PM
~ID: 513
~Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.%1.
Application.Error: Software Protection Platform Service (2)
~Numéro: 12567
~Date: 10/19/2021 07:26:45 PM
~ID: 8208
~Description: Échec de l’acquisition d’un ticket authentique (%1) pour l’Id de modèle 66c92734-d682-4d71-983e-d6ec3f16059f
System.Error: Service Control Manager (3)
~Numéro: 63350
~Date: 05/25/2022 05:46:06 PM
~ID: 7034
~Description: Le service %1 s’est terminé de façon inattendue pour la %2ème fois.
System.Error: Schannel (31)
~Numéro: 63347
~Date: 05/25/2022 05:44:44 PM
~ID: 4119
~Description: L’alerte fatale suivante a été reçue : %1.
System.Warning: b57nd60a (23)
~Numéro: 63213
~Date: 05/25/2022 06:19:42 PM
~ID: 4
~Description: %2: The network link is down. Check to make sure the network cable is properly connected.
System.Warning: Microsoft-Windows-WLAN-AutoConfig (30)
~Numéro: 63189
~Date: 05/13/2022 03:08:11 AM
~ID: 4001
~Description: Le Service d’autoconfiguration WLAN s’est arrêté correctement.
System.Warning: Microsoft-Windows-Kernel-PnP (3)
~Numéro: 63122
~Date: 05/13/2022 02:30:51 AM
~ID: 219
~Description: 29USB\VID_05AC&PID_12AB&MI_00\0322122634114\Driver\WUDFRd0
~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système
System.Warning: Microsoft-Windows-DNS-Client (68)
~Numéro: 62600
~Date: 05/05/2022 08:45:50 PM
~ID: 1014
~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx
System.Error: Microsoft-Windows-Time-Service (6)
~Numéro: 62371
~Date: 05/05/2022 04:23:08 PM
~ID: 34
~Description: Le service de temps a détecté que l’heure système doit être modifiée de %1 secondes. Le service de temps ne va pas modifier l’heure système de plus de %2 secondes. Vérifiez que votre heure et votre fuseau horaire sont corrects et que la source de tem
~Suggestion: Resynchroniser le client avec l'homologue de source de temps
System.Error: WMPNetworkSvc (1)
~Numéro: 62179
~Date: 04/30/2022 02:38:13 PM
~ID: 14332
~Description: WMPNetworkSvc0x80004005
---\\ SCAN ADDITIONNEL (5) - 5s
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan
HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan
HKLM\SOFTWARE\Wow6432Node\Machiner =>Trojan.CrthRazy
---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (4) - 0s
https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>Trojan.CrthRazy
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp
https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys
---\\ NUMEROS DE SÉRIE
[013C6684E0F39030C05FA36B42AF33CA] [13/06/2021] (.Kaspersky Lab JSC.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avp.exe =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [15/03/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klgse.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [15/03/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klhk.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\vssbridge64.exe =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\cm_km.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klbackupdisk.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klbackupflt.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\kldisk.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klflt.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klif.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klim6.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klkbdflt.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klmouflt.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klpd.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klwfp.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\klwtp.sys =>.Kaspersky Lab JSC
[013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Windows\System32\DRIVERS\kneps.sys =>.Kaspersky Lab JSC
[030AF782FC296695204C240862EE6B90] [09/02/2021] (.Electronic Team, Inc.) - C:\Windows\System32\drivers\eusbstub.sys =>.Electronic Team, Inc
[030AF782FC296695204C240862EE6B90] [09/02/2021] (.Electronic Team, Inc.) - C:\Windows\System32\drivers\fusbhub.sys =>.Electronic Team, Inc
[030AF782FC296695204C240862EE6B90] [09/02/2021] (.Electronic Team, Inc.) - C:\Windows\System32\drivers\vuhub.sys =>.Electronic Team, Inc
[030AF782FC296695204C240862EE6B90] [15/06/2020] (.Electronic Team, Inc.) - C:\Windows\System32\DRIVERS\evsbc9.sys =>.Electronic Team, Inc
[030AF782FC296695204C240862EE6B90] [15/06/2020] (.Electronic Team, Inc.) - C:\Windows\System32\DRIVERS\evserial9.sys =>.Electronic Team, Inc
[0407ABB64E9990180789EACB81F5F914] [18/06/2021] (.VideoLAN.) - C:\Program Files (x86)\VideoLAN\VLC\vlc.exe =>.VideoLAN
[067CE8A9F2E02AC7D49304F85E9474E1] [14/02/2022] (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll =>.Not verified
[067CE8A9F2E02AC7D49304F85E9474E1] [25/05/2022] (.AO Kaspersky Lab.) - C:\ProgramData\Kaspersky Lab\AVP21.3\Bases\Cache\vapm_706691280\vapmhst.exe =>.Not verified
[06C5078AA528BBD3B8668AB10B035F94] [12/05/2020] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\Uninstall.exe =>.Tonec Inc.
[06C5078AA528BBD3B8668AB10B035F94] [13/03/2020] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe =>.Tonec Inc.
[06C5078AA528BBD3B8668AB10B035F94] [31/07/2020] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc.
[08994531FDF1B2EBB8C7821BF650FDCF] [08/02/2010] (.Hewlett-Packard Company.) - C:\Program Files (x86)\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe =>.Hewlett-Packard Company
[08994531FDF1B2EBB8C7821BF650FDCF] [12/01/2010] (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe =>.Hewlett-Packard Company
[08994531FDF1B2EBB8C7821BF650FDCF] [13/05/2011] (.Hewlett-Packard Company.) - C:\Windows\System32\DRIVERS\Accelerometer.sys =>.Hewlett-Packard Company
[08994531FDF1B2EBB8C7821BF650FDCF] [13/05/2011] (.Hewlett-Packard Company.) - C:\Windows\System32\DRIVERS\hpdskflt.sys =>.Hewlett-Packard Company
[08994531FDF1B2EBB8C7821BF650FDCF] [13/05/2011] (.Hewlett-Packard Company.) - C:\Windows\System32\Hpservice.exe =>.Hewlett-Packard Company
[08994531FDF1B2EBB8C7821BF650FDCF] [24/02/2010] (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\CPQBTTN.sys =>.Hewlett-Packard Company
[08994531FDF1B2EBB8C7821BF650FDCF] [30/04/2009] (.Hewlett-Packard Company.) - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe =>.Hewlett-Packard Company
[0CFF7B329CFF7F3B8D2D542AB25826BA] [24/06/2020] (.ShenZhen Thunder Networking Technologies Ltd..) - C:\Program Files (x86)\3uTools\libXunlei\Download\MiniThunderPlatform.exe =>.ShenZhen Thunder Networking Technologies Ltd.
[0DBF152DEAF0B981A8A938D53F769DB8] [05/05/2022] (.philandro Software GmbH.) - C:\Users\ZaKaRIA\AppData\Local\Temp\AnyDeskUninst7d37.exe =>.Not verified
[2E8573FEC17028570C352D7AE5247517] [13/12/2012] (.Power Technology.) - C:\Windows\System32\drivers\dfx11_1x64.sys =>.Power Technology
[331FA0810256688FDF45BFAE] [22/03/2021] (.ShangHai ZhangZheng Network Technology Co., Ltd..) - C:\Program Files (x86)\3uTools\3uAirPlayer.exe =>.Not verified
[331FA0810256688FDF45BFAE] [22/03/2021] (.ShangHai ZhangZheng Network Technology Co., Ltd..) - C:\Program Files (x86)\3uTools\3uTools.exe =>.Not verified
[331FA0810256688FDF45BFAE] [22/03/2021] (.ShangHai ZhangZheng Network Technology Co., Ltd..) - C:\Program Files (x86)\3uTools\Uninstall.exe =>.Not verified
[4EF16586A2FF12D69C556EC4C91BAEE1] [24/09/2020] (.Apple Inc..) - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe =>.Apple Inc.
[620CBCBA5648E27B80AEF5226EE67FCE] [25/07/2021] (.Red Fox UK Limited.) - C:\Windows\System32\Drivers\inpoutx64.sys =>.Red Fox UK Limited
[731D40AE3F3A1FB2BC3D8395] [25/08/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH
[731D40AE3F3A1FB2BC3D8395] [25/08/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH
[731D40AE3F3A1FB2BC3D8395] [25/08/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH
[731D40AE3F3A1FB2BC3D8395] [25/08/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\WinRAR.exe =>.win.rar GmbH
[75987FA8C416918786B66DC05D1C1951] [05/05/2022] (.SecureTeam Software Ltd..) - C:\Users\ZaKaRIA\AppData\Local\Temp\7b0f2ef2-2286-4b92-82da-d078d8426d48\SiticoneDotNetRT.dll =>.Not verified
[7828C7315808BC8717710E13FA3C0B24] [02/05/2019] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc.
[7828C7315808BC8717710E13FA3C0B24] [19/12/2018] (.Tonec Inc..) - C:\Windows\System32\DRIVERS\idmwfp.sys =>.Tonec Inc.
~ Unselected Options: WR,
~ End of the scan, 6719 items in 02mn45s (1383)(0)