cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

~ ZHPDiag v2023.9.26.45 Par Nicolas Coolman (2023/09/26)
~ Démarre par User (Administrator) (2023/09/28 11:07:14)
~ Assistance: https://forum.nicolascoolman.eu/
~ Blog: https://nicolascoolman.eu/
~ Facebook: https://www.facebook.com/nicolascoolman1
~ Etat de la version: Version KO
~ Mode: Scanner
~ Rapport: C:\Users\User\Desktop\ZHPDiag.txt
~ Rapport: C:\Users\User\AppData\Roaming\ZHP\ZHPDiag.txt
~ UAC: Activate
~ Demarrage du système: Normal (Normal boot)
Windows 10 Home, 64-bit (Build 19045) =>.Microsoft Corporation

---\\ NAVIGATEURS INTERNET (3) - 1s
~ MFIE: Mozilla Firefox 118.0 (x64 fr)
~ MSIE: Internet Explorer v11.789.19041.0
~ OBIE: Microsoft Edge v117.0.2045.43

---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s
~ Windows Server License Manager Script : OK
~ Licence Script File Génération : OK
~ Windows(R) Operating System, RETAIL channel
Windows ID Activation : OK
~ Windows Partial Key : 8HVX7
Windows License : OK
~ Windows Remaining Initializations Number : 1001
Windows Automatic Updates : OK

---\\ LOGICIELS DE PROTECTION (2) - 8s
Windows Defender W10 (Activate) (Protection)
Malwarebytes version 4.6.2.281 v4.6.2.281 (Protection)

---\\ INFORMATIONS SUR LE SYSTEME (18) - 4s
~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
~ Operating System: 64-bit
~ Boot mode: Normal (Normal boot)
System Restore: Activé (Enable)
System drive C: has 759 GB (83%) free of 904 GB : OK =>.Disk Space

---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS)
~ Slots Total (Total Slots) : 4
~ Slots Utilisés (Used Slots) : 3
~ Slots Disponibles (Free Slots) : 1
~ Type de barrette (FormFactor): SO-DIMM
~ Taille (Size) : 2 Go
~ Vitesse (Speed) : 1333
~ Charge mémoire (Memory Usage) : 67%
~ RAM physique Total (Total Physical) : 6 Go : OK
~ RAM physique Disponible (Available Physical) : 2 Go
~ Total virtuelle (Total Virtual) : 7.41 Go
~ Disponible virtuelle (Available Virtual): 2.33 Go

---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s
~ Computer Name: PC-LENOVO-STÉPH
~ User Name: User
~ Logged in as Administrator

---\\ ENUMERATION DES UNITES DE STOCKAGE (6) - 0s
~ Drive C: has 759 GB free of 904 GB (System)
~ Drive D: has 22 GB free of 25 GB

---\\ ETAT DE LA COMMANDE TRIM
~ La commande TRIM est active (NTFS)
~ La commande TRIM est active (ReFS)

---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (28) - 45s
~ Model: WDC WD10JPVT-24A1YT0 v01.01A01 (904 Gb )
~ Media Type: HDD Disque Fixe ( Bus: SATA)

---\\ ATTRIBUTS GÉNÉRAUX DU DISQUE SYSTÈME
OK - N0 - Indicateur d'usure du périphérique de stockage (Storage Device Wear Indicator) (%): 0
OK - N1 - Temps de latence maximal de vidage (Maximum Flash latency) (ms): 5.886
OK - N2 - Temps de latence maximal d'écriture (Maximum write latency) (ms): 11.265
OK - N3 - Temps de latence maximal de lecture (Maximum read latency) (ms): 9.468
OK - N4 - Vitesse de rotation (Spindle Speed) (RPM): Unknown


---\\ PARAMÈTRES S.M.A.R.T. DU DISQUE SYSTÈME (Flag/Actuel/Maxi) [Seuil] [Valeur brute]
OK - 01 - Taux d'erreur de lecture (Raw Read Error Rate) - [47][200][200] [51][0]
OK - 03 - Temps moyen de mise en rotation (ms) (Spin-Up Time) - [39][179][175] [21][2033]
OK - 04 - Nombre de démarrages/arrêts (Start/Stop Count) - [50][92][92] [0][8540]
OK - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][200][200] [140][0]
OK - 07 - Taux d’erreurs de recherche (Seek Error Rate) - [46][200][200] [0][0]
OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [50][44][44] [0][41203]
OK - 0A - Nombre d'essai de relance de rotation (Spin Retry Count) - [50][100][100] [0][0]
OK - 0B - Nombre de recalibration (Calibration Retry Count) - [50][100][100] [0][0]
OK - 0C - Nombre total de cycles d’alimentation (Power Cycle Count) - [50][92][92] [0][8536]
OK - C0 - Nombre de Rétractation d'armature magnétique (Power-off Retract Count) - [50][200][200] [0][0]
OK - C1 - Cycles de charge/décharge (Load/Unload Cycle Count) - [50][1][1] [0][47904]
OK - C2 - Température interne actuelle (Enclosure Temperature) - [34][95][83] [0][52]
OK - C4 - Nombre d'opérations de réallocations (remap) (Reallocation Event Count) - [50][200][200] [0][0]
OK - C5 - Nombre de secteurs instables (Current Pending Sector Count) - [50][200][200] [0][0]
OK - C6 - Total d'erreurs incorrigibles d'un secteur (Off-Line Uncorrectable Sector Count) - [48][100][253] [0][0]
OK - C7 - Nombre d'erreurs dans le transfert de données (Ultra ATA CRC Error Rate) - [50][200][200] [0][0]
OK - C8 - Nombre Total d'erreurs d'écriture d'un secteur (Uncorrectable Sector Count) - [8][200][200] [0][0]

---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK
[HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK
[HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK

---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 6s
[MD5.574AF6D80FE7CC6422A8592DE7A39F78] - 13/09/2023 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [5311304] =>.Microsoft®
[MD5.EF3179D498793BF4234F708D3BE28633] - 15/01/2021 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation
[MD5.D6E3B995E46D08046875E60ECCFF109B] - 14/12/2022 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [420456] [Unsigned] =>.Microsoft Corporation
[MD5.7BE0A4024A6095690D5AA819708F9989] - 13/09/2023 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5039616] [Unsigned] =>.Microsoft Corporation
[MD5.B2AD768FF9A9DE3D886825A59DEF307A] - 13/09/2023 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [905216] [Unsigned] =>.Microsoft Corporation
[MD5.E6C31BCDFB65E2DB98AD082E5DABD164] - 10/08/2022 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation
[MD5.3BFBF674CF23E6F1501AC8599BCAF610] - 14/06/2023 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [821224] =>.Microsoft®
[MD5.F1AC5FCDF2A974E81EDF0B14A9F648AC] - 14/06/2023 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [583104] =>.Microsoft®
[MD5.D9D1E573B40DFC4A85CB5A7CE420BE15] - 14/06/2023 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3447296] [Unsigned] =>.Microsoft Corporation
[MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation
[MD5.741A4DAC54E1E9D6E52EF1C57BCB7695] - 12/07/2023 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [651648] [Unsigned] =>.Microsoft Corporation
[MD5.B2C716CEBC11930E3C1E38C3B6B9DDED] - 10/08/2022 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [31064] [Unsigned] =>.Microsoft Corporation
[MD5.BD8897A464332FA5802486DC64248E03] - 12/10/2022 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation
[MD5.054ABC6C64AE969D033B7876C04D52B4] - 14/10/2021 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation
[MD5.AC8F072A3B69339079A65D5F5FC56459] - 16/02/2023 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation
[MD5.0823AE866BF27AB24F2033DAD69691FA] - 09/08/2023 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [138240] [Unsigned] =>.Microsoft Corporation
[MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation
[MD5.E143A8B531B719C681A5FE27DAD7CFB3] - 09/08/2023 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [227840] [Unsigned] =>.Microsoft Corporation
[MD5.FE59E44FA3566A541EEBEBB0F217A3F0] - 09/08/2023 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [584064] [Unsigned] =>.Microsoft Corporation
[MD5.49F7DE6F689C47B64A2C2D46CD98E327] - 14/10/2020 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation
[MD5.C106D5315746C3EBF3A5AC2F405216F2] - 13/09/2023 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2844528] [Unsigned] =>.Microsoft Corporation
[MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation
[MD5.561A30F3087256E9D02B99B3630D1016] - 13/09/2023 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112128] [Unsigned] =>.Microsoft Corporation
[MD5.64991B36F0BD38026F7589572C98E3D6] - 13/04/2021 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation
[MD5.2A8B28579A4964AA7EA8CEB1AC121243] - 15/09/2021 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117584] [Unsigned] =>.Microsoft Corporation
[MD5.37988A4065ACBC7A6A7E03E25AFFAE4A] - 12/07/2023 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [430928] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES SERVICES (Non désactivés) (10) - 6s
O23 - Service: Bluetooth Driver Management Service (BcmBtRSupport) . (.Broadcom Corporation. - Bluetooth Radio Management Support.) - C:\WINDOWS\System32\BtwRSupportService.exe [Unsigned] =>.Broadcom Corporation.
O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service®
O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation®
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation®
O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation®
O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.®
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.®
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV®
O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation®

---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (97) - 38s
SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft®
SR - Demand [18/10/2016] [ 45048] Lenovo Virtual Power Controlle (ACPIVPC) . (.Lenovo Corporation.) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.Lenovo (Beijing) Co., Ltd.®
SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft®
SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc
SR - Boot [04/06/2015] [ 73976] AMD PCI Root Bus Lower Filter (amdkmpfd) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc.®
SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft®
SR - Demand [07/05/2019] [ 136760] AM USB Stroage Driver (AmUStor) . (.Copyright(C) 2017.) - C:\WINDOWS\System32\drivers\AmUStorU.sys =>.Alcorlink Corp.®
SR - Demand [09/10/2020] [ 35976] Apple Lower Filter (AppleLowerFilter) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,132303256403278908®
SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft®
SR - Demand [27/03/2015] [ 173312] Bluetooth RAM Firmware Downloa (bcbtums) . (.Broadcom Corporation..) - C:\WINDOWS\System32\drivers\bcbtums.sys =>.Broadcom Corporation®
SR - Demand [07/12/2019] [ 7585280] Pilote de la carte (BCM43XX) . (.Broadcom Corporation.) - C:\WINDOWS\System32\DRIVERS\bcmwl63a.sys [Unsigned] =>.Broadcom Corporation
SR - Auto [27/03/2015] [ 2251992] Bluetooth Driver Man (BcmBtRSupport) . (.Broadcom Corporation..) - C:\WINDOWS\System32\BtwRSupportService.exe =>.Broadcom Corporation®
SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation
SR - Demand [27/03/2015] [ 188160] btwampfl (btwampfl) . (.Broadcom Corporation..) - C:\WINDOWS\System32\DRIVERS\btwampfl.sys =>.Broadcom Corporation®
SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft®
SS - Demand [09/03/2017] [ 300128] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX®
SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation
SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation
SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group®
SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation
SR - Boot [09/07/2012] [ 645952] (iaStorA) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorA.sys =>.Intel Corporation®
SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft®
SR - Demand [17/10/2017] [ 39504] Intel(R) Watchdog Timer Driver ( (ICCWDT) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\ICCWDT.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group®
SR - Demand [09/03/2017] [ 5382856] (igfx) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\igdkmd64.sys =>.Microsoft®
SR - Demand [03/07/2012] [ 4074256] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp®
SR - Demand [19/06/2012] [ 342528] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\DRIVERS\IntcDAud.sys [Unsigned] =>.Intel(R) Corporation
SR - Auto [20/04/2012] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service®
SR - Auto [17/07/2012] [ 128896] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation®
SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft®
SR - Auto [17/07/2012] [ 165760] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation®
SR - Demand [07/12/2019] [ 121344] NDIS Miniport Drive (L1C) . (.Qualcomm Atheros Co., Ltd..) - C:\WINDOWS\System32\drivers\L1C63x64.sys [Unsigned] =>.Qualcomm Atheros Co., Ltd.
SR - Boot [19/10/2015] [ 39008] LHDmgr (LHDmgr) . (.Lenovo..) - C:\WINDOWS\System32\DRIVERS\LhdX64.sys =>.Lenovo (Beijing) Limited®
SR - Auto [17/07/2012] [ 276864] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation®
SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft®
SR - Auto [28/09/2023] [ 222272] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Microsoft®
SR - Boot [05/02/2023] [ 21480] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft®
SR - Auto [20/09/2023] [ 9287960] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.®
SR - Demand [05/02/2023] [ 239544] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft®
SS - Demand [27/09/2023] [ 239008] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation®
SR - Demand [00/00/0000] [ 0] (MpKsl3943253f) . (...) - C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C125F726-A368-4E97-A697-DCC5C6CC2CDE}\MpKslDrv.sys (.not file.) [Unsigned]
SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft®
SR - Auto [27/01/2010] [ 47632] NetGroup Packet Filter Driver (npf) . (.CACE Technologies, Inc..) - C:\WINDOWS\System32\drivers\npf.sys =>.CACE Technologies, Inc.®
SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft®
SS - Demand [23/08/2023] [ 472168] ProtonVPN Service (ProtonVPN Service) . (.ProtonVPN.) - C:\Program Files\Proton\VPN\v3.1.1\ProtonVPNService.exe =>.Proton Technologies AG®
SS - Demand [23/08/2023] [ 471656] ProtonVPN WireGuard (ProtonVPN WireGuard) . (.ProtonVPN.) - C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.WireGuardService.exe =>.Proton Technologies AG®
SR - Demand [02/08/2023] [ 34176] ProtonVPNCallout (ProtonVPNCallout) . (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\v3.1.1\Resources\ProtonVPN.CalloutDriver.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft®
SR - Demand [03/06/2015] [ 42696] (SmbDrvI) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated®
SR - Demand [11/11/2020] [ 167280] SAMSUNG Mobile USB Modem Dri (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd.®
SR - Auto [22/07/2016] [ 754784] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.®
SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft®
SR - Demand [03/06/2015] [ 613576] Synaptics TouchPad Driver (SynTP) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated®
SR - Auto [03/06/2015] [ 249032] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated®
SR - Demand [21/04/2016] [ 27136] TAP-Windows Adapter V9 (tap0901) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tap0901.sys [Unsigned] =>.The OpenVPN Project
SR - Demand [06/12/2016] [ 42064] Anchorfree HSS VPN Adapter (taphss6) . (.Anchorfree Inc..) - C:\WINDOWS\System32\drivers\taphss6.sys =>.AnchorFree Inc®
SR - Demand [30/12/2020] [ 49024] TAP-ProtonVPN Windows Adapter (tapprotonvpn) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tapprotonvpn.sys =>.Microsoft®
SR - Auto [13/11/2009] [ 92008] TomTomHOMEService (TomTomHOMEService) . (.TomTom.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV®
SR - Auto [17/07/2012] [ 364416] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation®
SR - Demand [03/09/2015] [ 648872] Digital Camera 1 (vm331avs) . (.Vimicro Corporation.) - C:\WINDOWS\System32\Drivers\vm331avs.sys =>.Microsoft Windows Hardware Compatibility Publisher®
SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft®
SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft®
SR - Demand [15/07/2023] [ 29592] Wintun (wintun) . (.WireGuard LLC.) - C:\WINDOWS\System32\drivers\wintun.sys =>.Microsoft®
SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft®
SR - Demand [02/04/2022] [ 489368] WireGuard (WireGuard) . (.WireGuard LLC.) - C:\WINDOWS\System32\drivers\wireguard.sys =>.Microsoft®
SR - Demand [13/06/2012] [ 102376] wsvd (wsvd) . (."CyberLink.) - C:\WINDOWS\System32\DRIVERS\wsvd.sys =>.CyberLink®

---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (10) - 28s
O38 - TASK: {76DA94C1-978B-4A68-9AAF-79C949324411} [64Bits][\Mozilla\Firefox Background Update E7CF176E110C211B] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] =>.Mozilla Corporation
O38 - TASK: {B520E0C3-2FF7-4888-AA5B-1A636470C2D6} [64Bits][\G2MUploadTask-S-1-5-21-2571112955-4239876419-1220594018-1001] - (.LogMeIn, Inc. - GoToMeeting.) -- C:\Users\User\AppData\Local\GoToMeeting\19950\g2mupload.exe [33456] =>.LogMeIn, Inc.
O38 - TASK: {C47B3952-D67F-4038-86B2-DA7C38A8834C} [64Bits][\G2MUpdateTask-S-1-5-21-2571112955-4239876419-1220594018-1001] - (.LogMeIn, Inc. - GoToMeeting.) -- C:\Users\User\AppData\Local\GoToMeeting\19950\g2mupdate.exe [33456] =>.LogMeIn, Inc.
O38 - TASK: {DD1707CC-F96D-4236-A9AA-64FEC836A862} [64Bits][\Mozilla\Firefox Default Browser Agent E7CF176E110C211B] - (.Mozilla Foundation - Firefox Default Browser Agent.) -- C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [717728] =>.Mozilla Foundation
O38 - TASK: {FB1460CC-8BF0-4947-977C-EE4C001D0B76} [64Bits][\Synaptics TouchPad Enhancements] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- \Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136] =>.Synaptics Incorporated
C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B - (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation
C:\WINDOWS\System32\Tasks\G2MUploadTask-S-1-5-21-2571112955-4239876419-1220594018-1001 - (.LogMeIn, Inc..) -- C:\Users\User\AppData\Local\GoToMeeting\19950\g2mupload.exe [] =>.LogMeIn, Inc.
C:\WINDOWS\System32\Tasks\G2MUpdateTask-S-1-5-21-2571112955-4239876419-1220594018-1001 - (.LogMeIn, Inc..) -- C:\Users\User\AppData\Local\GoToMeeting\19950\g2mupdate.exe [] =>.LogMeIn, Inc.
C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B - (.Mozilla Foundation.) -- C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [do-task "E7CF176E110C211B.do-task] =>.Mozilla Foundation
C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements - (.Synaptics Incorporated.) -- \Program Files\Synaptics\SynTP\SynTPEnh.exe [] =>.Synaptics Incorporated

---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (12) - 3s
O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation
O4 - HKLM\..\Run: [AmIcoSinglun64] . (.Alcor Micro Corp. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe =>.AlcorMicro, Corp.®
O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe [Unsigned] =>.Intel Corporation
O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe [Unsigned] =>.Intel Corporation
O4 - HKLM\..\Run: [Open-Shell Start Menu] . (.Open-Shell - Open-Shell Menu.) -- C:\Program Files\Open-Shell\StartMenu.exe [Unsigned] =>.Open-Shell
O4 - HKLM\..\RunOnce: [msedge_cleanup_{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}] . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.43\Installer\setup.exe =>.Microsoft®
O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_C46CFC0629905CC775E70B50EA8A519C] . (...) -- . [Unsigned]
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation®
O4 - HKLM\..\Wow6432Node\Run: [Dolby Advanced Audio v2] . (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe =>.Dolby Laboratories, Inc.®
O4 - HKLM\..\Wow6432Node\Run: [Intel AppUp(SM) center] . (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe =>.Intel® Services Manager®
O4 - HKUS\S-1-5-21-2571112955-4239876419-1220594018-1001\..\Run: [MicrosoftEdgeAutoLaunch_C46CFC0629905CC775E70B50EA8A519C] . (...) -- . [Unsigned]

---\\ PROCESSUS LANCES (42) - 17s
[MD5.43907773F7563AF4DF0999D47522E802] - (.Broadcom Corporation. - Bluetooth Radio Management Support.) -- C:\Windows\System32\BtwRSupportService.exe [2251992] [PID.3484] [Unsigned] =>.Broadcom Corporation.
[MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.3524] =>.Intel® Upgrade Service®
[MD5.3C4002D339491AF73D663FFC7F6E5ECB] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760] [PID.3592] =>.Intel Corporation®
[MD5.7DB9E612A2742ACEAB080B882E83141C] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784] [PID.3680] =>.Samsung Electronics CO., LTD.®
[MD5.6FBDBC24B1642868E041463795CBFA44] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [249032] [PID.3688] =>.Synaptics Incorporated®
[MD5.FBD16717FD68B206C4CE3BB3C9EE5CB3] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [92008] [PID.3708] =>.TomTom International BV®
[MD5.B0D7CD705519C43B4A14A29C627EC0B2] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136] [PID.5292] =>.Synaptics Incorporated®
[MD5.D08862FCD46DB3B7712FCCEC479B4F86] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [210120] [PID.4928] =>.Synaptics Incorporated®
[MD5.1C29E604C2A4BF51E5425CA21DBB822B] - (.Open-Shell - Open-Shell Menu.) -- C:\Program Files\Open-Shell\StartMenu.exe [226816] [PID.6744] [Unsigned] =>.Open-Shell
[MD5.8D91A2D44FD359B6F9109C9191A4A818] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [9151456] [PID.7124] =>.Malwarebytes Inc.®
[MD5.5CDDF06A40E89358807A2B9506F064D9] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [793416] [PID.3616] =>.Microsoft®
[MD5.30E9FAC23E2537D82F2836CB81AEE186] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896] [PID.7700] =>.Intel Corporation®
[MD5.4269D44BB47A6DA5D80B11F4C8536458] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [276864] [PID.7900] =>.Intel Corporation®
[MD5.3402BBBC16E909985C4F184EB247E9BD] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [193112] [PID.8108] [Unsigned] =>.Intel Corporation
[MD5.22BF0CCB64AAE89004355E924E0AD463] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [420960] [PID.8152] [Unsigned] =>.Intel Corporation
[MD5.FDA7C3D4227097EC5B45BF9E769B5427] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [463960] [PID.4144] [Unsigned] =>.Intel Corporation
[MD5.0C061FE0FAA9F77001E0CF8BB070EB3B] - (...) -- C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.exe [460904] [PID.1028] =>.Proton Technologies AG®
[MD5.8568DFCF984073038916F46ABE6BEA5C] - (.ProtonVPN - Proton VPN.) -- C:\Program Files\Proton\VPN\v3.1.1\ProtonVPNService.exe [472168] [PID.7056] =>.Proton Technologies AG®
[MD5.DBE2E6388379D5CC78099650541E9566] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [364416] [PID.8744] =>.Intel Corporation®
[MD5.69BB8D323CAB088C8785CADFA4EAED18] - (.ProtonVPN - Proton VPN.) -- C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.WireGuardService.exe [471656] [PID.9384] =>.Proton Technologies AG®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.10924] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.7360] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.8300] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.10620] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.9544] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.9784] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.1228] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.3220] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.8196] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.3000] =>.Mozilla Corporation®
[MD5.34FC8948902B5D8BF61D1ACB7D6AFF82] - (.Malwarebytes - Malwarebytes Native Message Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe [3539616] [PID.9736] =>.Malwarebytes Inc.®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.4512] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.8408] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.9532] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.10652] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.10308] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.4624] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.7460] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.8704] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.8548] =>.Mozilla Corporation®
[MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.11208] =>.Mozilla Corporation®
[MD5.7F19E6B460767398530A1AB5F75E0E3A] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\User\Desktop\ZHPSuite.exe [3511456] [PID.7780] [Unsigned] =>.Nicolas Coolman

---\\ CHROME, Démarrage, Recherche, Extensions (12) - 1s
G2 - GCE: Preference [User][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides}
G2 - GCE: Preference [User][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs}
G2 - GCE: Preference [User][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive}
G2 - GCE: Preference [User][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube}
G2 - GCE: Preference [User][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets}
G2 - GCE: Preference [User][User Data\Default\Extensions] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety =>.Avira Software
G2 - GCE: Preference [User][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [User][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet}
G2 - GCE: Preference [User][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail}
G2 - GCE: Preference [User][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc.
G2 - GCE: Preference [User][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
G2 - GCE: Preference [User][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router}

---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (34) - 12s
M0 - MFSP: prefs.js [User - sdcf5m94.default-1449679278495-1622248414203] http://www.google.fr/ =>.Google Inc.
P2 - EXT FILE: (.BSP2 - Displays and filters bookmarks on sear.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\bookmarksearchplus2@aafn.org.xpi [Unsigned] =>.BSP2
P2 - EXT FILE: (.Converter.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\firefox@online-convert.com.xpi [Unsigned]
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\jid1-KKzOGWgsW3Ao4Q@jetpack.xpi [Unsigned] =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [Unsigned] =>.Mozilla Corporation
P2 - EXT FILE: (.Mozilla Corporation - Toggle Pause/Resume on all sites.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [Unsigned] =>.Mozilla Corporation
P2 - EXT FILE: (.uBlock Origin.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\uBlock0@raymondhill.net.xpi [Unsigned] =>.uBlock Origin
P2 - EXT FILE: (.Legitimate.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{0da2e603-21ba-4422-8049-b6d9e013ed84}.xpi [Unsigned]
P2 - EXT FILE: (.Tab Suspender - Manually discard all open tabs except .) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{29780561-0607-49f3-aba9-fb8806d2f22d}.xpi [Unsigned] =>.Tab Suspender
P2 - EXT FILE: (.Privacy Pass - Client support for Privacy Pass anonym.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{48748554-4c01-49e8-94af-79662bf34d50}.xpi [Unsigned] =>.Privacy Pass
P2 - EXT FILE: (.New Tab Homepage - Loads your homepage when you open a ne.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{66E978CD-981F-47DF-AC42-E3CF417C1467}.xpi [Unsigned] =>.New Tab Homepage
P2 - EXT FILE: (.Download Video.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{adeadebb-fedc-4180-a7f4-cfdd87496551}.xpi [Unsigned] =>.Download Video
P2 - EXT FILE: (.Michel Gutierrez.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [Unsigned] =>.Michel Gutierrez
P2 - EXT FILE: (.Auto Tab Discard.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{c2c003ee-bd69-42a2-b0e9-6f34222cb046}.xpi [Unsigned] =>.Auto Tab Discard
P2 - EXT FILE: (.Google Inc..) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [Unsigned] =>.Google Inc.
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\bookmarkbackups =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\browser-extension-data =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\crashes =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\datareporting =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\features =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\gmp =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\gmp-gmpopenh264 =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\gmp-widevinecdm =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\minidumps =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\personality-provider =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\saved-telemetry-pings =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\security_state =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\sessionstore-backups =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\settings =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\shader-cache =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\storage =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\weave =>Mozilla Corporation
C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\browser-extension-data\reset-search-defaults@mozilla.com =>Mozilla Corporation

---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (16) - 0s
R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr =>.Google Inc.
R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://google.fr =>.Google Inc.
R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL =





















R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation
R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation
R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.3324 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation

---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s
~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad)
~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad)

---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (6) - 1s
E2 - GCE: Preference [User][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion}
E2 - GCE: Preference [User][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes
E2 - GCE: Preference [User][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate
E2 - GCE: Preference [User][User Data\Default\Local Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes
E2 - GCE: Preference [User][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation
E2 - GCE: Preference [User][User Data\Default\Sync Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes

---\\ INTERNET EXPLORER,Proxy Management (8) - 0s
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value
R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll
R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value
R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft
R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value

---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation
F2 - REG:system.ini: VMApplet=

---\\ ETUDE DU FICHIER HOSTS (1) - 0s
~ Le fichier hôte est sain (The hosts file is clean) (1)

---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (4) - 0s
O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.43\BHO\ie_to_edge_bho_64.dll =>.Microsoft®
O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll =>.Microsoft®
O2 - BHO: ExplorerBHO Class [64Bits] - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} . (.Open-Shell - Adds classic Windows Explorer features.) -- C:\Program Files\Open-Shell\ClassicExplorer64.dll [Unsigned] =>.Open-Shell
O2 - BHO: ClassicIEBHO Class [64Bits] - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} . (.Open-Shell - Customizations for the title bar and status.) -- C:\Program Files\Open-Shell\ClassicIEDLL_64.dll [Unsigned] =>.Open-Shell

---\\ RACCOURCIS GLOBAL STARTUP (77) - 31s
O4 - GS\Desktop [User]: AVI Player.lnk . (.spgsoft.com - .) C:\Program Files (x86)\AVI Player\AVI Player.exe [Unsigned] =>.spgsoft.com
O4 - GS\Desktop [User]: Bel Atout.lnk . (...) C:\Program Files (x86)\Jeux de cartes\Bel Atout\belatout.exe [Unsigned]
O4 - GS\Desktop [User]: Documents - Raccourci.lnk . (...) C:\Users\User\Documents [Unsigned]
O4 - GS\Desktop [User]: Lettre-PERSO-SC-avec-signature lecture seule) - Raccourci (2).lnk . (...) C:\Users\User\Documents\H\Modèles de lettre\Lettre-PERSO-SC-avec-signature lecture seule).doc [Unsigned]
O4 - GS\Desktop [User]: Lettre-PERSO-SC-avec-signature lecture seule) - Raccourci.lnk . (...) C:\Users\User\Documents\H\Modèles de lettre\Lettre-PERSO-SC-avec-signature lecture seule).doc [Unsigned]
O4 - GS\Desktop [User]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\User\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft®
O4 - GS\Desktop [User]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Desktop [User]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7 (=photoshop)\PhotoFiltre7.exe [Unsigned] =>.PhotoFiltre
O4 - GS\Desktop [User]: Photos Pierrick - Raccourci.lnk . (...) C:\Users\User\Pictures\Photos Pierrick [Unsigned] =>.Microsoft Corporation
O4 - GS\Desktop [User]: Telegram.lnk . (.Telegram FZ-LLC - Telegram Desktop.) C:\Users\User\Desktop\Telegram Desktop\Telegram.exe {7AE2B5021371F092A904B6FA}. =>.Telegram FZ-LLC
O4 - GS\Desktop [User]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft®
O4 - GS\Desktop [User]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\User\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman
O4 - GS\Quicklaunch [User]: AirDroid.lnk . (.Sand Studio - AirDroid 3 Launcher.) C:\Users\User\Documents\Airdroid\Launcher.exe =>.SAND STUDIO LIMITED®
O4 - GS\Quicklaunch [User]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\Quicklaunch [User]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\sendTo [User]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [User]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation
O4 - GS\sendTo [User]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation
O4 - GS\TaskBar [User]: Bel Atout.lnk . (...) C:\Program Files (x86)\Jeux de cartes\Bel Atout\belatout.exe [Unsigned]
O4 - GS\TaskBar [User]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\TaskBar [User]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft®
O4 - GS\TaskBar [User]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\TaskBar [User]: Pale Moon.lnk . (.Moonchild Productions - Pale Moon web browser.) C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver®
O4 - GS\Programs [User]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe [Unsigned] =>.Open Media LLC
O4 - GS\Programs [User]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation®
O4 - GS\Programs [User]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\User\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: Adobe Download Assistant.lnk . (...) C:\Program Files (x86)\Adobe Download Assistant\Adobe Download Assistant.exe [Unsigned] =>.Adobe Inc.
O4 - GS\CommonDesktop [Public]: AirDroid.lnk . (.Sand Studio - AirDroid 3.) C:\Users\User\Documents\Airdroid\AirDroid.exe =>.SAND STUDIO LIMITED®
O4 - GS\CommonDesktop [Public]: Avidemux 2.6 - 32 bits (32-bit).lnk . (.Free Software Foundation - Avidemux 2.6.14.) C:\Program Files (x86)\Avidemux 2.6 - 32 bits\avidemux.exe [Unsigned] =>.Free Software Foundation
O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\CommonDesktop [Public]: Guide de l’utilisateur.lnk . (.Lenovo - UserGuide.) C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe [Unsigned] =>.Lenovo
O4 - GS\CommonDesktop [Public]: Intel AppUp(SM) center.lnk . (.Intel Corporation - Intel AppUp(SM).) C:\Program Files (x86)\Intel\IntelAppStore\bin\AppUp.exe --domain F0399437-FD0C-4A48-B101-F0314A6172E4 =>.Intel AppUp(SM) center®
O4 - GS\CommonDesktop [Public]: Labography.lnk . (.axpha - .) C:\Program Files (x86)\Labography\Labography.exe [Unsigned] =>.Axpha
O4 - GS\CommonDesktop [Public]: Lenovo Solution Center.lnk . (...) C:\Program Files (x86)\Lenovo\Lenovo Solution Center\LSC.exe [Unsigned] =>.Lenovo Group Limited
O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes
O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\CommonDesktop [Public]: OneKey Recovery.lnk . (.CyberLink - OneKey Recovery.) C:\Program Files\Lenovo\OneKey App\OneKey Recovery\OneKey Recovery.exe =>.CyberLink®
O4 - GS\CommonDesktop [Public]: OpenOffice 4.1.13.lnk . (.Apache Software Foundation - OpenOffice 4.1.13.) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe [Unsigned] =>.Apache Software Foundation
O4 - GS\CommonDesktop [Public]: Pale Moon.lnk . (.Moonchild Productions - Pale Moon web browser.) C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver®
O4 - GS\CommonDesktop [Public]: Proton VPN.lnk . (.ProtonVPN - Proton VPN.) C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe =>.Proton Technologies AG®
O4 - GS\CommonDesktop [Public]: Revo Uninstaller (Outil de désinstallation).lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group Ltd.®
O4 - GS\CommonDesktop [Public]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group Ltd.®
O4 - GS\CommonDesktop [Public]: UCheck.lnk . (...) C:\Program Files\UCheck\UCheck64.exe =>.ADLICE®
O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN®
O4 - GS\Programs [Public]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe [Unsigned] =>.Open Media LLC
O4 - GS\Programs [Public]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation®
O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\User\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft®
O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation
O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation
O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation
O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe [Unsigned] =>.Open Media LLC
O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Adobe Download Assistant.lnk . (...) C:\Program Files (x86)\Adobe Download Assistant\Adobe Download Assistant.exe [Unsigned] =>.Adobe Inc.
O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: Lenovo Cloud Storage by SugarSync.lnk . (.SugarSync, Inc. - SugarSync Manager.) C:\Program Files (x86)\SugarSync\SugarSyncManager.exe =>.SugarSync, Inc.®
O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes
O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: OneNote.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Pale Moon.lnk . (.Moonchild Productions - Pale Moon web browser.) C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver®
O4 - GS\ProgramsCommon [Public]: PC Health Check.lnk . (...) C:\Program Files (x86)\PCHealthCheck\PCHealthCheck.exe [Unsigned] =>.Microsoft Corporation
O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Skype Entreprise.lnk . (.Microsoft Corporation - Skype for Business.) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe =>.Microsoft®
O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft®

---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (4) - 0s
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{eab2262d-9ab1-5975-7d92-334d06f4972b}: NameServer = 10.2.0.1 =>.Private IP
O17 - HKLM\System\CCS\Services\Tcpip\..\{07e5b248-3456-42d9-b3f1-1681055429eb}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress
O17 - HKLM\System\CCS\Services\Tcpip\..\{cdd9aa6a-c17f-4a9e-b56f-63ed7ea59cec}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress

---\\ PROTOCOLE ADDITIONNEL (23) - 2s
O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation
O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation
O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft®

---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 1s
O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\WINDOWS\System32\Userinit.exe =>.Microsoft Corporation

---\\ CLE DE REGISTRE EXPLORER StartupApproved (21) - 1s
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Flvto Youtube Downloader =>.Legitimate
[HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:UCheck
[HKEY_USERS\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd
[HKEY_USERS\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Flvto Youtube Downloader =>.Legitimate
[HKEY_USERS\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:UCheck
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RtHDVCpl =>.Realtek Semiconductor Corp.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RtHDVBg_Dolby =>.Realtek Semiconductor Corp.
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:IgfxTray =>.Intel Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HotKeysCmds =>.Intel Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Persistence =>.Intel Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SynTPEnh =>.Synaptics
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Classic Start Menu =>.IvoSoft
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AmIcoSinglun64 =>.Alcor Micro Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Open-Shell Start Menu
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:avgnt =>.Avira Software
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Dolby Advanced Audio v2
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Intel AppUp(SM) center
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:KiesTrayAgent =>.Sony Corporation
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Avira SystrayStartTrigger =>.Avira Software

---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (6) - 1s
O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation
O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft®
O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.43\Installer\setup.exe =>.Microsoft®

---\\ LOGICIELS INSTALLES (52) - 52s
O42 - Logiciel: 4K Video Downloader - (.Open Media LLC.) [HKLM][64Bits] -- {818C221F-DE01-4CBD-89A2-FF30E9CF6FB7} [Unsigned] =>.Open Media LLC (Hidden)
O42 - Logiciel: 4K Video Downloader - (.Open Media LLC.) [HKLM][64Bits] -- {a8f0b9d0-de9b-45b4-9783-f1f4f5491a7b} {06E26320848D2C32D8CCAFF3A6C1F2D9}. =>.Open Media LLC
O42 - Logiciel: 7-Zip 22.01 - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip [Unsigned] =>.Igor Pavlov
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {63B5DA5A-477B-438D-A6A0-118787A4C71B} [Unsigned] =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated®
O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {B8B7838E-449E-B187-57E1-1AA686F225DC} [Unsigned] =>.Adobe Systems Incorporated (Hidden)
O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.downloadassistant.AdobeDownloadAssistant [Unsigned] =>.Adobe Systems Incorporated
O42 - Logiciel: AirDroid 3.6.4.0 - (.Sand Studio.) [HKLM][64Bits] -- AirDroid [Unsigned] =>.Sand Studio
O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- {3FD6908E-004E-4E1A-8E17-CFECB8FD0078} [Unsigned] =>.Alcor Micro Corp. (Hidden)
O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- AmUStor [Unsigned] =>.Alcor Micro Corp.
O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} [Unsigned] =>.Atheros Communications Inc.
O42 - Logiciel: Audacity 3.1.3 (64-bit) - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 [Unsigned] =>.Audacity Team
O42 - Logiciel: Avidemux 2.6 - 32 bits (32-bit) - (.Mean.) [HKLM][64Bits] -- Avidemux 2.6 - 32 bits [Unsigned] =>.Mean
O42 - Logiciel: Broadcom 802.11 Network Adapter - (.Broadcom Corporation.) [HKLM][64Bits] -- Broadcom 802.11 Network Adapter [Unsigned] =>.Broadcom Corporation
O42 - Logiciel: Canon MP250 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series [Unsigned] =>.Canon Inc.
O42 - Logiciel: Dolby Advanced Audio v2 - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613} [Unsigned] =>.Dolby Laboratories Inc
O42 - Logiciel: GoTo Opener - (.LogMeIn, Inc..) [HKLM][64Bits] -- {2C183CF0-3077-43D0-B001-F93AC5E68942} [Unsigned] =>.LogMeIn, Inc.
O42 - Logiciel: GoToMeeting 10.19.0.19950 - (.LogMeIn, Inc..) [HKCU][64Bits] -- GoToMeeting {08DE824276EE62DA1813FBDBF128A8FB}. =>.LogMeIn, Inc.
O42 - Logiciel: Guide de l’utilisateur - (.Lenovo.) [HKLM][64Bits] -- {F07C2CF8-4C53-4EC3-8162-A6221E36EB88} [Unsigned] =>.Lenovo (Hidden)
O42 - Logiciel: Intel AppUp(SM) center - (.Intel.) [HKLM][64Bits] -- Intel AppUp(SM) center 33057 =>.Intel AppUp(SM) center®
O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation®
O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel(R) pGFX®
O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation®
O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} [Unsigned] =>.Intel Corporation
O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} [Unsigned] =>.Intel Corporation (Hidden)
O42 - Logiciel: Labography - (.Axpha.) [HKLM][64Bits] -- Labography_is1 [Unsigned] =>.Axpha
O42 - Logiciel: Lenovo Bluetooth with Enhanced Data Rate Software - (.Broadcom Corporation.) [HKLM][64Bits] -- {C6D9ED03-6FCF-4410-9CB7-45CA285F9E11} [Unsigned] =>.Broadcom Corporation
O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- {46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink® (Hidden)
O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink®
O42 - Logiciel: Malwarebytes version 4.6.2.281 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc.®
O42 - Logiciel: Mozilla Firefox (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 118.0 (x64 fr) =>.Mozilla Corporation®
O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla
O42 - Logiciel: OpenOffice 4.1.13 - (.Apache Software Foundation.) [HKLM][64Bits] -- {F9635033-0DD8-4736-A9E2-3D030A6C882B} [Unsigned] =>.Apache Software Foundation
O42 - Logiciel: Open-Shell - (.The Open-Shell Team.) [HKLM][64Bits] -- {F07C0CF2-6021-403A-99CA-1164340B09FB} [Unsigned] =>.The Open-Shell Team
O42 - Logiciel: Package de pilotes Windows - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) - (.Lenovo.) [HKLM][64Bits] -- 71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42 =>.Lenovo (Beijing) Limited®
O42 - Logiciel: Package de pilotes Windows - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13. - (.Lenovo.) [HKLM][64Bits] -- 8A223E56FB1ED4F697B54E5BF96F1EB63B512684 =>.Lenovo (Beijing) Limited®
O42 - Logiciel: Pale Moon 31.3.0.1 (x64 en-US) - (.Moonchild Productions.) [HKLM][64Bits] -- Pale Moon 31.3.0.1 (x64 en-US) =>.Mark Straver®
O42 - Logiciel: Proton VPN - (.Proton AG.) [HKLM][64Bits] -- Proton VPN_is1 =>.Proton Technologies AG®
O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp®
O42 - Logiciel: Revo Uninstaller 2.4.2 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1 =>.VS Revo Group Ltd.®
O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} [Unsigned] =>.McAfee
O42 - Logiciel: SugarSync Manager - (.SugarSync, Inc..) [HKLM][64Bits] -- SugarSync [Unsigned] =>.SugarSync, Inc.
O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey [Unsigned] =>.Synaptics Incorporated
O42 - Logiciel: TAP-Windows 9.21.2 - (.OpenVPN Technologie.) [HKLM][64Bits] -- TAP-Windows [Unsigned] =>.OpenVPN Technologie
O42 - Logiciel: Telegram Desktop - (.Telegram FZ-LLC.) [HKCU][64Bits] -- {53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1 [Unsigned] =>.Telegram FZ-LLC
O42 - Logiciel: TomTom HOME 2.7.3.1894 - (.TomTom.) [HKLM][64Bits] -- TomTom HOME [Unsigned] =>.TomTom
O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM][64Bits] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} [Unsigned] =>.TomTom International B.V.
O42 - Logiciel: UCheck version 4.5.2.0 - (.Adlice Software.) [HKLM][64Bits] -- C4E7EE54-826F-41C4-BE3C-375CC70DC1D8_is1 =>.ADLICE®
O42 - Logiciel: UserGuide - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88} [Unsigned] =>.Lenovo
O42 - Logiciel: VdhCoApp 1.5.0 - (.DownloadHelper.) [HKLM][64Bits] -- weh-iss-net.downloadhelper.coapp_is1 [Unsigned] =>.DownloadHelper
O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN
O42 - Logiciel: WinPcap 4.1.1 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst [Unsigned] =>.CACE Technologies

---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (212) - 52s
HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies
HKLM\SOFTWARE\AVS4YOU =>.AVS4YOU
HKLM\SOFTWARE\Bitdefender =>.Bitdefender
HKLM\SOFTWARE\Broadcom =>.Broadcom
HKLM\SOFTWARE\Canon =>.Canon
HKLM\SOFTWARE\Chromium =>.Chromium
HKLM\SOFTWARE\CVSM =>.Legitimate
HKLM\SOFTWARE\CyberGhost =>.CyberGhost S.R.L
HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation
HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation
HKLM\SOFTWARE\Dell =>.Dell
HKLM\SOFTWARE\DellShared =>.Dell Inc.
HKLM\SOFTWARE\Dolby =>.Dolby
HKLM\SOFTWARE\DownloadHelper =>.DownloadHelper
HKLM\SOFTWARE\Emsisoft =>.Emsisoft
HKLM\SOFTWARE\Google =>.Google
HKLM\SOFTWARE\InstalledOptions =>.Installed Options
HKLM\SOFTWARE\Intel =>.Intel
HKLM\SOFTWARE\IvoSoft =>.IvoSoft
HKLM\SOFTWARE\Khronos =>.Khronos
HKLM\SOFTWARE\Lenovo =>.Lenovo
HKLM\SOFTWARE\Locktime Software =>.Locktime Software
HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\Mozilla =>.Mozilla
HKLM\SOFTWARE\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\Network Associates =>.Network Associates
HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\OEM =>.OEM
HKLM\SOFTWARE\Open Media LLC =>.Open Media LLC
HKLM\SOFTWARE\OpenShell =>.Legitimate
HKLM\SOFTWARE\OpenSSH =>.OpenBSD
HKLM\SOFTWARE\Partner =>.Google Inc.
HKLM\SOFTWARE\Proton AG =>.Legitimate
HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKLM\SOFTWARE\SAMSUNG =>.Samsung Electronics
HKLM\SOFTWARE\SRS Labs =>.SRS Labs
HKLM\SOFTWARE\Synaptics =>.Synaptics
HKLM\SOFTWARE\TAP-Windows =>.OpenVPN Technologie
HKLM\SOFTWARE\VDownloader =>.Vitzo Limited
HKLM\SOFTWARE\VideoLAN =>.VideoLan Team
HKLM\SOFTWARE\Waves Audio =>.Waves Audio
HKLM\SOFTWARE\WebSupergoo
HKLM\SOFTWARE\Windows =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\ZmnGlobalSDK =>.Zemana Ltd
HKLM\SOFTWARE\WOW6432Node\7-Zip =>.Igor Pavlov
HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe
HKLM\SOFTWARE\WOW6432Node\Amazon =>.Amazon
HKLM\SOFTWARE\WOW6432Node\Atheros Communications Inc. =>.Qualcomm Atheros
HKLM\SOFTWARE\WOW6432Node\Avidemux 2.6 - 32 bits =>.Mean
HKLM\SOFTWARE\WOW6432Node\Avira =>.Avira
HKLM\SOFTWARE\WOW6432Node\AVS4YOU =>.AVS4YOU
HKLM\SOFTWARE\WOW6432Node\Canon =>.Canon
HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon
HKLM\SOFTWARE\WOW6432Node\CyberLink =>.CyberLink Corporation
HKLM\SOFTWARE\WOW6432Node\DellShared =>.Dell Inc.
HKLM\SOFTWARE\WOW6432Node\Elcom =>.Elcom
HKLM\SOFTWARE\WOW6432Node\Freemake =>.Freemake
HKLM\SOFTWARE\WOW6432Node\Gabest =>.Gabest
HKLM\SOFTWARE\WOW6432Node\Google =>.Google
HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers
HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel
HKLM\SOFTWARE\WOW6432Node\InterVideo =>.InterVideo
HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics
HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos
HKLM\SOFTWARE\WOW6432Node\Lake =>.Lake Sofware
HKLM\SOFTWARE\WOW6432Node\Lenovo =>.Lenovo
HKLM\SOFTWARE\WOW6432Node\Locktime Software =>.Locktime Software
HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes
HKLM\SOFTWARE\WOW6432Node\Malwarebytes Anti-Rootkit =>.Malwarebytes
HKLM\SOFTWARE\WOW6432Node\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware
HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla
HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org
HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins
HKLM\SOFTWARE\WOW6432Node\Network Associates =>.Network Associates
HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions
HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge
HKLM\SOFTWARE\WOW6432Node\Oracle =>.Oracle
HKLM\SOFTWARE\WOW6432Node\Proton Technologies AG =>.Proton Technologies AG
HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp.
HKLM\SOFTWARE\WOW6432Node\Sharpcast
HKLM\SOFTWARE\WOW6432Node\SOSVirus =>.SosVirus
HKLM\SOFTWARE\WOW6432Node\TomTom =>.TomTom
HKLM\SOFTWARE\WOW6432Node\Vimicro =>.Vimicro
HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\WebSupergoo
HKLM\SOFTWARE\WOW6432Node\WinPcap =>.Riverbed Technology
HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation
HKLM\SOFTWARE\WOW6432Node\ZSMC =>.ZSMC Corporation
HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\4kdownload.com =>.4kdownload.com
HKCU\SOFTWARE\7-Zip =>.Igor Pavlov
HKCU\SOFTWARE\Adlice Software =>.Adlice Software
HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKCU\SOFTWARE\Avira =>.Avira
HKCU\SOFTWARE\AVS4YOU =>.AVS4YOU
HKCU\SOFTWARE\Bitdefender =>.Bitdefender
HKCU\SOFTWARE\cks =>.Legitimate
HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation
HKCU\SOFTWARE\Dashlane_profiles =>.Dashlane, Inc
HKCU\SOFTWARE\Elcom =>.Elcom
HKCU\SOFTWARE\FlvtoConverter
HKCU\SOFTWARE\Freemake =>.Freemake
HKCU\SOFTWARE\Gabest =>.Gabest
HKCU\SOFTWARE\Google =>.Google
HKCU\SOFTWARE\hotger =>.Hotger
HKCU\SOFTWARE\HWiNFO64
HKCU\SOFTWARE\IM Providers =>.IM Providers
HKCU\SOFTWARE\Intel =>.Intel
HKCU\SOFTWARE\IvoSoft =>.IvoSoft
HKCU\SOFTWARE\Lake =>.Lake Sofware
HKCU\SOFTWARE\Lenovo =>.Lenovo
HKCU\SOFTWARE\LogMeInInc =>.LogMeIn Entreprise
HKCU\SOFTWARE\Macromedia =>.Macromedia
HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes
HKCU\SOFTWARE\Mozilla =>.Mozilla
HKCU\SOFTWARE\MP3Studio YouTube Downloader =>.Pinnacle Systems, Inc.
HKCU\SOFTWARE\Netscape =>.Netscape
HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKCU\SOFTWARE\OpenOffice =>.SourceForge
HKCU\SOFTWARE\OpenShell =>.Legitimate
HKCU\SOFTWARE\Opera Software =>.Opera Software
HKCU\SOFTWARE\OperaRejectTime
HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz
HKCU\SOFTWARE\QtProject =>.QtProject
HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKCU\SOFTWARE\Reverso =>.Reverso
HKCU\SOFTWARE\Reverso Inc.
HKCU\SOFTWARE\Samsung =>.Samsung Electronics
HKCU\SOFTWARE\Synaptics =>.Synaptics
HKCU\SOFTWARE\SysInternals =>.Sysinternals
HKCU\SOFTWARE\TelegramDesktop =>.TelegramDesktop
HKCU\SOFTWARE\TomTom =>.TomTom
HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group
HKCU\SOFTWARE\WahOO =>.Siber Systems Inc.
HKCU\SOFTWARE\Widcomm =>.Widcomm
HKCU\SOFTWARE\WinRAR =>.WinRAR
HKCU\SOFTWARE\WinRAR SFX =>.RarLab
HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKCU\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman
HKCU\SOFTWARE\ZHP =>.Nicolas Coolman
HKCU\SOFTWARE\Ó¦ÓĂłĚĐňĎňµĽÉúłÉµÄ±ľµŘÓ¦ÓĂłĚĐň
HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\Adlice Software =>.Adlice Software
HKU\.DEFAULT\SOFTWARE\Avira =>.Avira
HKU\.DEFAULT\SOFTWARE\CyberGhost =>.CyberGhost S.R.L
HKU\.DEFAULT\SOFTWARE\Lenovo =>.Lenovo
HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc.
HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla
HKU\.DEFAULT\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\.DEFAULT\SOFTWARE\SetID =>.Bitdefender
HKU\.DEFAULT\SOFTWARE\Zemana =>.Zemana
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\4kdownload.com =>.4kdownload.com
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\7-Zip =>.Igor Pavlov
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Adlice Software =>.Adlice Software
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Avira =>.Avira
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\AVS4YOU =>.AVS4YOU
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Bitdefender =>.Bitdefender
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\cks =>.Legitimate
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\CyberLink =>.CyberLink Corporation
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Dashlane_profiles =>.Dashlane, Inc
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Elcom =>.Elcom
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\FlvtoConverter
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Freemake =>.Freemake
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Gabest =>.Gabest
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Google =>.Google
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\hotger =>.Hotger
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\HWiNFO64
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\IM Providers =>.IM Providers
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Intel =>.Intel
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\IvoSoft =>.IvoSoft
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Lake =>.Lake Sofware
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Lenovo =>.Lenovo
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\LogMeInInc =>.LogMeIn Entreprise
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Macromedia =>.Macromedia
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Malwarebytes =>.Malwarebytes
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Mozilla =>.Mozilla
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\MP3Studio YouTube Downloader =>.Pinnacle Systems, Inc.
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Netscape =>.Netscape
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\OpenOffice =>.SourceForge
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\OpenShell =>.Legitimate
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Opera Software =>.Opera Software
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\OperaRejectTime
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\QtProject =>.QtProject
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp.
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Reverso =>.Reverso
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Reverso Inc.
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Samsung =>.Samsung Electronics
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Synaptics =>.Synaptics
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\SysInternals =>.Sysinternals
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\TelegramDesktop =>.TelegramDesktop
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\TomTom =>.TomTom
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\VS Revo Group =>.VS Revo Group
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\WahOO =>.Siber Systems Inc.
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Widcomm =>.Widcomm
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\WinRAR =>.WinRAR
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\WinRAR SFX =>.RarLab
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\ZHP =>.Nicolas Coolman
HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Ó¦ÓĂłĚĐňĎňµĽÉúłÉµÄ±ľµŘÓ¦ÓĂłĚĐň

---\\ PACKAGES (16) - 1s
C:\Program Files (x86)\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w - (.Autodesk Inc..) [][Autodesk SketchBook] =>Autodesk Inc.
C:\Program Files (x86)\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm - (.Twitter Inc..) [][Twitter] =>Twitter Inc.
C:\Program Files (x86)\WindowsApps\AccuWeather.AccuWeatherforWindows8_10.0.348.1000_x64__8zz2pj9h1h1d8 - (.AccuWeather.) [][AccuWeather - Weather for Life] =>AccuWeather
C:\Program Files (x86)\WindowsApps\AFF540DC.HexEditorPro_1.0.7.16_neutral__v7353qx4kg3sa - (.Jujuba Software.) [][Hex Editor Pro]
C:\Program Files (x86)\WindowsApps\AMZNMobileLLC.KindleforWindows8_2.1.0.2_neutral__stfe6vwa9jnbp - (..) [][Kindle]
C:\Program Files (x86)\WindowsApps\CyberLinkCorp.id.PowerDVDforLenovoIdea_1.1.2618.24808_x86__hgg5mn3xps74a - (.CyberLink Corporation.) [][PowerDVD for Lenovo Idea] =>CyberLink Corporation
C:\Program Files (x86)\WindowsApps\DolbyLaboratories.DolbyAccess_3.18.872.0_x64__rz1tebttyb220 - (.Dolby Laboratories.) [][Dolby Access] =>Dolby Laboratories
C:\Program Files (x86)\WindowsApps\E046963F.LenovoCompanion_10.2308.29.0_x64__k1h2ywk1493x8 - (.Lenovo Group Limited.) [][Lenovo Companion] =>Lenovo Group Limited
C:\Program Files (x86)\WindowsApps\E046963F.LenovoSupport_2.0.5.0_x86__k1h2ywk1493x8 - (.Lenovo, INC..) [][Lenovo Support] =>Lenovo, INC.
C:\Program Files (x86)\WindowsApps\eBayInc.eBay_1.6.0.34_neutral__1618n3s9xq8tw - (.eBay, Inc.) [][eBay] =>eBay, Inc
C:\Program Files (x86)\WindowsApps\Evernote.Evernote_10.62.3.0_x64__q4d96b2w5wcc2 - (.EverNote Corporation.) [][Evernote] =>EverNote Corporation
C:\Program Files (x86)\WindowsApps\king.com.CandyCrushSaga_1.2621.1.0_x64__kgqvnymyfvs32 - (.king.com.) [][Candy Crush Saga] =>king.com
C:\Program Files (x86)\WindowsApps\McAfeeInc.06.McAfeeSecurityAdvisorforLenovo_5.0.173.1_x64__bq6yxensn79aw - (.McAfee Inc..) [][McAfee® Central for Lenovo] =>McAfee Inc.
C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation
C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.1023.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft
C:\Program Files (x86)\WindowsApps\rara.com.rara.com_1.0.25.23_neutral__2tghmx54nqzjm - (.RARA MEDIA GROUP LIMITED.) [][rara music]

---\\ CONTENU DES DOSSIERS PROGRAMMES (192) - 26s
O43 - CFD: 18/10/2022 - [] D -- C:\Program Files\4KDownload {06E26320848D2C32D8CCAFF3A6C1F2D9}.
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files\Broadcom =>.Broadcom Corporation®
O43 - CFD: 20/09/2022 - [] HD -- C:\Program Files\CanonBJ =>.Canon Inc.
O43 - CFD: 12/02/2017 - [] AD -- C:\Program Files\CyberGhost 6 =>.CyberGhost S.R.L
O43 - CFD: 13/08/2020 - [] D -- C:\Program Files\Intel =>.Intel Corporation
O43 - CFD: 07/03/2022 - [] D -- C:\Program Files\Lenovo =>.Lenovo
O43 - CFD: 29/08/2023 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes
O43 - CFD: 10/08/2020 - [] D -- C:\Program Files\net.downloadhelper.coapp [Unsigned]
O43 - CFD: 15/06/2022 - [] D -- C:\Program Files\Open-Shell [Unsigned] =>.Open-Shell
O43 - CFD: 15/10/2022 - [] AD -- C:\Program Files\Pale Moon =>.Mark Straver®
O43 - CFD: 08/07/2023 - [] D -- C:\Program Files\Proton =>.Proton Technologies AG®
O43 - CFD: 12/08/2020 - [] D -- C:\Program Files\Realtek =>.Realtek
O43 - CFD: 12/08/2020 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated®
O43 - CFD: 02/02/2017 - [] D -- C:\Program Files\TAP-Windows =>.OpenVPN Technologie
O43 - CFD: 15/10/2022 - [] D -- C:\Program Files\UCheck =>.Adlice Software
O43 - CFD: 17/03/2019 - [] D -- C:\Program Files\VDownloader =>.Vitzo
O43 - CFD: 18/03/2022 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team
O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group
O43 - CFD: 15/03/2019 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated®
O43 - CFD: 27/12/2016 - [] AD -- C:\Program Files (x86)\Adobe Download Assistant =>.Adobe Inc.
O43 - CFD: 26/12/2015 - [] D -- C:\Program Files (x86)\Amazon =>.Amazon Services LLC®
O43 - CFD: 19/10/2015 - [] AD -- C:\Program Files (x86)\AmIcoSingLun =>.Alcor Micro Corporation
O43 - CFD: 03/11/2015 - [] AD -- C:\Program Files (x86)\AVI Player [Unsigned]
O43 - CFD: 29/03/2017 - [] D -- C:\Program Files (x86)\Avidemux 2.6 - 32 bits =>.Mean
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Cyberlink =>.CyberLink Corporation
O43 - CFD: 19/10/2015 - [] AD -- C:\Program Files (x86)\Dolby Advanced Audio v2 =>.Dolby Laboratories, Inc.®
O43 - CFD: 12/12/2016 - [] D -- C:\Program Files (x86)\ElcomSoft =>.Elcomsoft
O43 - CFD: 29/12/2020 - [] D -- C:\Program Files (x86)\INFORAD =>.Inforad Ltd
O43 - CFD: 06/06/2021 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield
O43 - CFD: 26/10/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation
O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Jeux de cartes =>.Games Software
O43 - CFD: 08/11/2017 - [] AD -- C:\Program Files (x86)\Labography [Unsigned]
O43 - CFD: 07/03/2022 - [] D -- C:\Program Files (x86)\Lenovo =>.Lenovo
O43 - CFD: 28/09/2023 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla
O43 - CFD: 28/09/2023 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla
O43 - CFD: 29/09/2022 - [] AD -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org
O43 - CFD: 08/11/2017 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 (=photoshop) =>.Antonio Da Cruz
O43 - CFD: 08/07/2023 - [] D -- C:\Program Files (x86)\Proton Technologies
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek
O43 - CFD: 13/06/2021 - [] D -- C:\Program Files (x86)\Samsung =>.Samsung Electronics
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\SugarSync =>.SugarSync, Inc.®
O43 - CFD: 17/08/2019 - [] D -- C:\Program Files (x86)\Teams Installer =>.Microsoft®
O43 - CFD: 16/07/2019 - [] D -- C:\Program Files (x86)\TomTom HOME 2 =>.TomTom
O43 - CFD: 16/07/2019 - [] D -- C:\Program Files (x86)\TomTom International B.V =>.TomTom
O43 - CFD: 19/03/2022 - [0] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team
O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov
O43 - CFD: 14/09/2023 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirDroid =>.AirDroid
O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVI Player
O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avidemux (32 bits) =>.Mean
O43 - CFD: 20/09/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP250 series =>.Canon Inc.
O43 - CFD: 12/08/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation
O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center =>.Intel Corporation
O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jeux de cartes =>.Games Software
O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Labography
O43 - CFD: 17/10/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo
O43 - CFD: 13/08/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneKey Recovery =>.Lenovo Group Limited
O43 - CFD: 15/06/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Open-Shell =>.Open-Shell
O43 - CFD: 29/09/2022 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.13 =>.SourceForge
O43 - CFD: 04/09/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proton
O43 - CFD: 17/02/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group
O43 - CFD: 13/06/2021 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung =>.Samsung Electronics
O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom =>.TomTom
O43 - CFD: 15/10/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UCheck =>.Adlice Software
O43 - CFD: 20/03/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team
O43 - CFD: 13/03/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WahOO =>.Siber Systems Inc.
O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Adobe =>.Adobe
O43 - CFD: 31/05/2019 - [] D -- C:\ProgramData\AirDroid =>.AirDroid
O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\AmUStor =>.Alocr Micro
O43 - CFD: 21/08/2020 - [] D -- C:\ProgramData\AutoUpdate
O43 - CFD: 21/03/2017 - [] D -- C:\ProgramData\AVS4YOU =>.AVS4YOU
O43 - CFD: 20/09/2022 - [] HD -- C:\ProgramData\CanonBJ =>.Canon Inc.
O43 - CFD: 27/05/2016 - [] D -- C:\ProgramData\ClassicShell =>.SourceForge
O43 - CFD: 15/11/2016 - [0] D -- C:\ProgramData\dbg =>.DBG
O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\eBay =>.eBay
O43 - CFD: 19/11/2016 - [] D -- C:\ProgramData\Energy Management
O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Intel =>.Intel Corporation
O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\Labography
O43 - CFD: 20/10/2021 - [] D -- C:\ProgramData\Lenovo =>.Lenovo
O43 - CFD: 12/02/2020 - [] D -- C:\ProgramData\Locktime =>.Locktime Software
O43 - CFD: 05/02/2023 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes
O43 - CFD: 09/01/2018 - [] D -- C:\ProgramData\Malwarebytes' Anti-Malware (portable) =>.Malwarebytes
O43 - CFD: 08/02/2022 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation
O43 - CFD: 28/09/2023 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation
O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\OneKey Recovery =>.Lenovo Group Limited
O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\OpenPdf
O43 - CFD: 08/07/2023 - [] D -- C:\ProgramData\ProtonVPN =>.Legitimate
O43 - CFD: 07/02/2023 - [] D -- C:\ProgramData\RogueKiller =>.Adlice Software
O43 - CFD: 05/06/2021 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics
O43 - CFD: 12/02/2016 - [] D -- C:\ProgramData\TomTom =>.TomTom
O43 - CFD: 22/03/2022 - [] D -- C:\ProgramData\UCheck =>.Adlice Software
O43 - CFD: 26/12/2016 - [] AD -- C:\Program Files (x86)\Common Files\Adobe AIR =>.Adobe Inc.
O43 - CFD: 21/03/2017 - [] D -- C:\Program Files (x86)\Common Files\AVSMedia =>.AVSMedia
O43 - CFD: 20/10/2018 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer
O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield
O43 - CFD: 19/10/2015 - [] D -- C:\Users\User\AppData\Roaming\Adobe =>.Adobe
O43 - CFD: 28/07/2019 - [] D -- C:\Users\User\AppData\Roaming\AirDroid =>.AirDroid
O43 - CFD: 30/03/2017 - [] D -- C:\Users\User\AppData\Roaming\avidemux =>.Mean
O43 - CFD: 21/03/2017 - [] D -- C:\Users\User\AppData\Roaming\AVS4YOU =>.AVS4YOU
O43 - CFD: 23/10/2015 - [] D -- C:\Users\User\AppData\Roaming\ClassicShell =>.SourceForge
O43 - CFD: 27/12/2016 - [] D -- C:\Users\User\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant =>.Adobe Inc.
O43 - CFD: 21/03/2022 - [0] D -- C:\Users\User\AppData\Roaming\CrystalIdea Software =>.CrystalIdea Software
O43 - CFD: 25/06/2016 - [] D -- C:\Users\User\AppData\Roaming\FireShot
O43 - CFD: 19/03/2022 - [] D -- C:\Users\User\AppData\Roaming\FlvtoConverter =>.Hotger
O43 - CFD: 08/11/2017 - [] D -- C:\Users\User\AppData\Roaming\Labography
O43 - CFD: 26/02/2017 - [] D -- C:\Users\User\AppData\Roaming\Lenovo =>.Lenovo
O43 - CFD: 12/02/2020 - [] D -- C:\Users\User\AppData\Roaming\Locktime =>.Locktime Software
O43 - CFD: 12/02/2020 - [] D -- C:\Users\User\AppData\Roaming\Locktime Software =>.Locktime Software
O43 - CFD: 26/10/2015 - [] D -- C:\Users\User\AppData\Roaming\LSC =>.LSC
O43 - CFD: 31/10/2016 - [] D -- C:\Users\User\AppData\Roaming\Macromedia =>.Macromedia
O43 - CFD: 22/11/2016 - [] D -- C:\Users\User\AppData\Roaming\Moonchild Productions =>.Moonchild Productions
O43 - CFD: 17/11/2017 - [] D -- C:\Users\User\AppData\Roaming\Mozilla =>.Mozilla Corporation
O43 - CFD: 18/10/2022 - [] D -- C:\Users\User\AppData\Roaming\MP3Studio
O43 - CFD: 31/10/2015 - [] D -- C:\Users\User\AppData\Roaming\OpenOffice =>.SourceForge
O43 - CFD: 05/06/2021 - [] D -- C:\Users\User\AppData\Roaming\OpenShell
O43 - CFD: 08/11/2017 - [] D -- C:\Users\User\AppData\Roaming\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 13/06/2021 - [] D -- C:\Users\User\AppData\Roaming\Samsung =>.Samsung Electronics
O43 - CFD: 18/08/2016 - [] D -- C:\Users\User\AppData\Roaming\Skype =>.Skype
O43 - CFD: 07/10/2022 - [] D -- C:\Users\User\AppData\Roaming\Telegram Desktop =>.Telegram Messenger LLP
O43 - CFD: 24/10/2015 - [] D -- C:\Users\User\AppData\Roaming\Thunderbird =>.Thunderbird
O43 - CFD: 12/02/2016 - [] D -- C:\Users\User\AppData\Roaming\TomTom =>.TomTom
O43 - CFD: 20/03/2023 - [] D -- C:\Users\User\AppData\Roaming\vlc =>.VideoLan Team
O43 - CFD: 05/11/2016 - [] D -- C:\Users\User\AppData\Roaming\WinRAR =>.WinRAR
O43 - CFD: 28/09/2023 - [] D -- C:\Users\User\AppData\Roaming\ZHP =>.Nicolas Coolman
O43 - CFD: 11/09/2020 - [] D -- C:\Users\User\AppData\Local\4kdownload.com =>.4kdownload.com
O43 - CFD: 12/11/2016 - [] D -- C:\Users\User\AppData\Local\Adobe =>.Adobe
O43 - CFD: 19/10/2015 - [] D -- C:\Users\User\AppData\Local\Broadcom =>.Broadcom
O43 - CFD: 03/06/2019 - [] D -- C:\Users\User\AppData\Local\CEF =>.CEF
O43 - CFD: 05/06/2021 - [] D -- C:\Users\User\AppData\Local\ClassicShell =>.SourceForge
O43 - CFD: 02/02/2017 - [] D -- C:\Users\User\AppData\Local\CyberGhost =>.CyberGhost S.R.L
O43 - CFD: 03/04/2023 - [] D -- C:\Users\User\AppData\Local\D3DSCache =>.Legitimate
O43 - CFD: 23/09/2017 - [0] D -- C:\Users\User\AppData\Local\DBG =>.DBG
O43 - CFD: 06/11/2019 - [] D -- C:\Users\User\AppData\Local\Flvto.biz
O43 - CFD: 02/10/2019 - [] D -- C:\Users\User\AppData\Local\FlvtoYoutubeDownloader
O43 - CFD: 21/08/2020 - [] D -- C:\Users\User\AppData\Local\FreemakeVideoConverter =>.Freemake
O43 - CFD: 22/11/2016 - [] D -- C:\Users\User\AppData\Local\Google =>.Google
O43 - CFD: 17/10/2018 - [] D -- C:\Users\User\AppData\Local\GoTo Opener
O43 - CFD: 15/03/2023 - [] D -- C:\Users\User\AppData\Local\GoToMeeting
O43 - CFD: 31/10/2015 - [] D -- C:\Users\User\AppData\Local\GWX =>.GWX
O43 - CFD: 29/12/2020 - [] D -- C:\Users\User\AppData\Local\IFM39
O43 - CFD: 03/03/2017 - [] D -- C:\Users\User\AppData\Local\KowMedia =>.Kow Media
O43 - CFD: 26/02/2017 - [] D -- C:\Users\User\AppData\Local\Lenovo =>.Lenovo
O43 - CFD: 30/06/2020 - [] D -- C:\Users\User\AppData\Local\LenovoServiceBridge
O43 - CFD: 26/10/2015 - [0] D -- C:\Users\User\AppData\Local\LSC =>.LSC
O43 - CFD: 26/10/2015 - [] D -- C:\Users\User\AppData\Local\Macromedia =>.Macromedia
O43 - CFD: 28/09/2023 - [] D -- C:\Users\User\AppData\Local\Malwarebytes =>.Malwarebytes
O43 - CFD: 10/09/2018 - [] D -- C:\Users\User\AppData\Local\mbam =>.Malwarebytes
O43 - CFD: 22/11/2016 - [] D -- C:\Users\User\AppData\Local\Moonchild Productions =>.Moonchild Productions
O43 - CFD: 23/10/2015 - [] D -- C:\Users\User\AppData\Local\Mozilla =>.Mozilla Corporation
O43 - CFD: 02/11/2015 - [0] D -- C:\Users\User\AppData\Local\NetworkTiles =>.NetworkTiles
O43 - CFD: 28/09/2023 - [] D -- C:\Users\User\AppData\Local\OpenShell
O43 - CFD: 05/09/2023 - [] D -- C:\Users\User\AppData\Local\ProtonVPN =>.Legitimate
O43 - CFD: 22/09/2022 - [] D -- C:\Users\User\AppData\Local\Reverso =>.Reverso
O43 - CFD: 10/05/2017 - [] D -- C:\Users\User\AppData\Local\Samsung =>.Samsung Electronics
O43 - CFD: 19/08/2019 - [] D -- C:\Users\User\AppData\Local\SquirrelTemp =>.Squirrels
O43 - CFD: 24/10/2015 - [] D -- C:\Users\User\AppData\Local\Thunderbird =>.Thunderbird
O43 - CFD: 02/04/2022 - [] D -- C:\Users\User\AppData\Local\ToastNotificationManagerCompat
O43 - CFD: 12/02/2016 - [] D -- C:\Users\User\AppData\Local\TomTom =>.TomTom
O43 - CFD: 28/09/2023 - [] D -- C:\Users\User\AppData\Local\ZHP =>.Nicolas Coolman
O43 - CFD: 21/03/2019 - [] D -- C:\Users\User\AppData\Local\__SHARED
O43 - CFD: 07/03/2022 - [0] D -- C:\Users\User\AppData\Local\Programs\Lenovo =>.Lenovo
O43 - CFD: 17/04/2023 - [] D -- C:\Users\User\AppData\LocalLow\Mozilla =>.Mozilla Corporation
O43 - CFD: 07/05/2022 - [] D -- C:\Users\User\AppData\LocalLow\Oracle =>.Oracle
O43 - CFD: 06/03/2022 - [] D -- C:\Users\User\AppData\LocalLow\Sun =>.Oracle
O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\3 ans France Coquenlorge juin 1990
O43 - CFD: 19/03/2022 - [] D -- C:\Users\User\Desktop\7-Zip =>.Igor Pavlov
O43 - CFD: 12/12/2016 - [] D -- C:\Users\User\Desktop\Advanced Archive Password Recovery Professional 4.54.48 et clé
O43 - CFD: 29/05/2021 - [] D -- C:\Users\User\Desktop\Anciennes données de Firefox
O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\années au Maroc
O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\archives voyages
O43 - CFD: 10/01/2018 - [] D -- C:\Users\User\Desktop\ccsetup538
O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\famille en groupe
O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\odette
O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\oncles tantes cousins cousines
O43 - CFD: 19/03/2022 - [] D -- C:\Users\User\Desktop\OpenOffice 4.1.1 (fr) Installation Files =>.SourceForge
O43 - CFD: 15/06/2022 - [] D -- C:\Users\User\Desktop\OpenOffice 4.1.12 (fr) Installation Files =>.SourceForge
O43 - CFD: 28/09/2022 - [] D -- C:\Users\User\Desktop\OpenOffice 4.1.13 (fr) Installation Files =>.SourceForge
O43 - CFD: 19/03/2022 - [] D -- C:\Users\User\Desktop\OpenOffice 4.1.8 (fr) Installation Files =>.SourceForge
O43 - CFD: 19/03/2022 - [] D -- C:\Users\User\Desktop\PAPA 1 (H) SCANDISK contenu
O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\pierre
O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\pierre et odette
O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\pierrick
O43 - CFD: 06/09/2022 - [] D -- C:\Users\User\Desktop\Sécurité
O43 - CFD: 30/10/2022 - [] D -- C:\Users\User\Desktop\Telegram Desktop =>.Telegram Messenger LLP
O43 - CFD: 22/03/2019 - [] D -- C:\Users\User\Desktop\VAVOO =>.VAVOO
O43 - CFD: 12/08/2020 - [] RD -- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools
O43 - CFD: 13/06/2021 - [] D -- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo
O43 - CFD: 29/05/2018 - [0] D -- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz
O43 - CFD: 15/10/2022 - [] D -- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop =>.Telegram Messenger LLP
O43 - CFD: 19/09/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Avira =>.Avira Software
O43 - CFD: 08/09/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia

---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 0s
O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O106 - SIOI: ShareOverlay Class [ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516}. (.Open-Shell - Adds classic Windows Explorer features.) -- C:\Program Files\Open-Shell\ClassicExplorer64.dll [Unsigned] =>.Open-Shell
O106 - SIOI: [SugarSyncBackedUp] - {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472}. (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.®
O106 - SIOI: [SugarSyncPending] - {62CCD8E3-9C21-41E1-B55E-1E26DFC68511}. (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.®
O106 - SIOI: [SugarSyncRoot] - {A759AFF6-5851-457D-A540-F4ECED148351}. (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.®
O106 - SIOI: [SugarSyncShared] - {1574C9EF-7D58-488F-B358-8B78C1538F51}. (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.®

---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (30) - 4s
O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.) [Unsigned]
O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH1: SugarSync [64Bits] - {305BC11B-5175-492B-B569-866547FCDA40} . (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.®
O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH2: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.Open-Shell - Start Menu Helper Extension.) -- C:\WINDOWS\system32\StartMenuHelper64.dll [Unsigned] =>.Open-Shell
O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.®
O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.) [Unsigned]
O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.) [Unsigned]
O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft®
O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.®
O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft®
O108 - CMH6: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.Open-Shell - Start Menu Helper Extension.) -- C:\WINDOWS\system32\StartMenuHelper64.dll [Unsigned] =>.Open-Shell
O108 - CMH6: SugarSync [64Bits] - {305BC11B-5175-492B-B569-866547FCDA40} . (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.®
O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation
O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft®
O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation

---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (17) - 3s
O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft®
O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Driver Installation Module.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation
O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft®
O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation

---\\ LISTE DES PILOTES DU SYSTEME (94) - 50s
O58 - SDL:2018/01/09 15:02:57 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\1162C1FD.sys [255928] =>.Malwarebytes Corporation®
O58 - SDL:2018/01/09 16:15:30 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\2357B5BA.sys [255928] =>.Malwarebytes Corporation®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft®
O58 - SDL:2020/11/15 17:26:38 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\6A31526A.sys [253888] =>.Malwarebytes Corporation®
O58 - SDL:2016/10/18 00:27:36 A . (.Lenovo Corporation - ACPI Virtual Power Controller Driver.) -- C:\WINDOWS\System32\drivers\AcpiVpc.sys [45048] =>.Lenovo (Beijing) Co., Ltd.®
O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc
O58 - SDL:2015/06/04 02:07:48 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [73976] =>.Advanced Micro Devices, Inc.®
O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft®
O58 - SDL:2012/06/13 12:06:50 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\WINDOWS\System32\drivers\AmUStor.sys [100992] =>.AlcorMicro, Corp.®
O58 - SDL:2019/05/07 01:47:20 A . (.Copyright(C) 2017 - USB Mass Storage Universal Driver.) -- C:\WINDOWS\System32\drivers\AmUStorU.sys [136760] =>.Alcorlink Corp.®
O58 - SDL:2020/10/09 14:53:32 A . (.Apple Inc. - Apple Mobile Device USB Device.) -- C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976] =>.WDKTestCert build,132303256403278908®
O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft®
O58 - SDL:2015/03/27 11:33:14 A . (.Broadcom Corporation. - Broadcom Bluetooth Firmware Download Filter.) -- C:\WINDOWS\System32\drivers\bcbtums.sys [173312] =>.Broadcom Corporation®
O58 - SDL:2019/12/07 11:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\WINDOWS\System32\drivers\BCMWL63a.SYS [7585280] [Unsigned] =>.Broadcom Corporation
O58 - SDL:2015/03/27 11:33:20 A . (.Broadcom Corporation. - Broadcom Bluetooth USB AMP Filter.) -- C:\WINDOWS\System32\drivers\btwampfl.sys [188160] =>.Broadcom Corporation®
O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications
O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft®
O58 - SDL:2023/02/16 17:15:58 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [95232] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation
O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group®
O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation
O58 - SDL:2012/07/09 13:43:12 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [645952] =>.Intel Corporation®
O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft®
O58 - SDL:2017/10/17 08:36:58 A . (.Intel Corporation - Intel(R) Watchdog Timer Driver (Intel(R) WD.) -- C:\WINDOWS\System32\drivers\ICCWDT.sys [39504] =>.Intel(R) Embedded Subsystems and IP Blocks Group®
O58 - SDL:2017/03/09 02:16:06 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [5382856] =>.Microsoft®
O58 - SDL:2012/06/19 01:40:50 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528] [Unsigned] =>.Intel(R) Corporation
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\WINDOWS\System32\drivers\L1C63x64.sys [121344] [Unsigned] =>.Qualcomm Atheros Co., Ltd.
O58 - SDL:2015/10/19 09:58:05 A . (.Lenovo. - HD Disk Driver.) -- C:\WINDOWS\System32\drivers\LhdX64.sys [39008] =>.Lenovo (Beijing) Limited®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft®
O58 - SDL:2023/02/05 19:12:04 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [158640] =>.Microsoft®
O58 - SDL:2023/09/28 02:56:15 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [222272] =>.Microsoft®
O58 - SDL:2023/02/05 19:11:46 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [21480] =>.Microsoft®
O58 - SDL:2023/02/05 19:13:43 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [239544] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft®
O58 - SDL:2010/01/27 04:09:02 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [47632] =>.CACE Technologies, Inc.®
O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft®
O58 - SDL:2019/12/07 11:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek
O58 - SDL:2012/07/03 12:55:04 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4074256] =>.Realtek Semiconductor Corp®
O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft®
O58 - SDL:2015/06/03 04:16:44 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [42184] =>.Synaptics Incorporated®
O58 - SDL:2015/06/03 04:16:44 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [42696] =>.Synaptics Incorporated®
O58 - SDL:2015/06/03 04:16:44 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [42696] =>.Synaptics Incorporated®
O58 - SDL:2020/11/11 04:54:38 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [167280] =>.Samsung Electronics Co., Ltd.®
O58 - SDL:2019/12/07 11:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft®
O58 - SDL:2015/06/03 04:16:46 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [613576] =>.Synaptics Incorporated®
O58 - SDL:2016/04/21 11:10:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [27136] [Unsigned] =>.The OpenVPN Project
O58 - SDL:2016/12/06 16:03:30 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42064] =>.AnchorFree Inc®
O58 - SDL:2020/12/30 12:27:18 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49024] =>.Microsoft®
O58 - SDL:2015/07/10 15:35:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [193336] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group®
O58 - SDL:2019/12/07 11:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation
O58 - SDL:2015/09/03 14:15:42 A . (.Vimicro Corporation - VM0331 Digital Camera Driver.) -- C:\WINDOWS\System32\drivers\vm331avs.sys [648872] =>.Microsoft Windows Hardware Compatibility Publisher®
O58 - SDL:2019/12/07 11:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft®
O58 - SDL:2023/07/15 15:02:35 A . (.WireGuard LLC - Wintun Driver.) -- C:\WINDOWS\System32\drivers\wintun.sys [29592] =>.Microsoft®
O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft®
O58 - SDL:2022/04/02 13:46:53 A . (.WireGuard LLC - WireGuard Driver.) -- C:\WINDOWS\System32\drivers\wireguard.sys [489368] =>.Microsoft®
O58 - SDL:2012/06/13 17:10:32 A . (."CyberLink - Cyberlink Virtual Disk Driver.) -- C:\WINDOWS\System32\drivers\wsvd.sys [102376] =>.CyberLink®

---\\ ASSOCIATION Shell Spawning (11) - 2s
O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value
O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value
O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation
O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value
O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®

---\\ MENU DE DÉMARRAGE INTERNET (16) - 2s
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft®
O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Moonchild Productions - Pale Moon web browser.) -- C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver®
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Moonchild Productions - Pale Moon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Moonchild Productions - Pale Moon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation
O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Moonchild Productions - Pale Moon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions

---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (4) - 22s
O69 - SBI: prefs.js [User - sdcf5m94.default-1449679278495-1622248414203] user_pref("browser.topsites.contile.cachedTiles", "[{\"id\":75021,\"name\":\"Booking.com\",\"url\":\"https://www.booking.com/index[...] =>PUP.Optional.Booking
O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com
O69 - SBI: SearchScopes [HKLM] [64Bits]{9EB0A4B1-3CA7-476F-9387-5A78FB389E86} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com

---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (51) - 5s
O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [221696] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [221696] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [304128] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1342464] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1053696] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836608] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [161280] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [813056] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [488448] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [542720] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [134656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2465280] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [333824] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [495616] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [410112] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1291264] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1131008] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [852992] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1484288] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [329216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2247680] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1522176] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1009152] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [551936] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [619008] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3447296] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [283136] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [941152] =>.Microsoft®
O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [217600] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [570368] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049600] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [288256] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [556032] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [145408] [Unsigned] =>.Microsoft Corporation
O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [787968] [Unsigned] =>.Microsoft Corporation

---\\ CODES PRODUITS LOGICIELS (3) - 2s
O90 - PUC: "2FC0C70F1206A30499AC114643B090BF" [HKLM] . (.Open-Shell.) -- C:\WINDOWS\Installer\{F07C0CF2-6021-403A-99CA-1164340B09FB}\icon.ico
O90 - PUC: "3180FA93B7AF0684DAEB399B2B419B41" [HKLM] . (.Teams Machine-Wide Installer.)
O90 - PUC: "8FC2C70F35C43CE418266A22E163BE88" [HKLM] . (.Guide de l’utilisateur.) -- C:\WINDOWS\Installer\{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}\ARPPRODUCTICON.exe

---\\ PACKAGES WINDOWS INSTALLER (18) - 15s
[MD5.7AA54823D63F1236CA88011F7E67A623] [WIS][2022/06/15 10:17:04] (.The Open-Shell Team - Open-Shell.) -- C:\WINDOWS\Installer\11cea7.msi [5040587] =>.The Open-Shell Team
[MD5.A5576363B925A469C7A85649ED0446F6] [WIS][2009/11/13 13:09:26] (.Oliver Carr.) -- C:\WINDOWS\Installer\2006dc86.msi [1948160] =>.Oliver Carr
[MD5.E89F05219F91251897191C96B9E242D0] [WIS][2018/10/17 12:55:00] (.LogMeIn, Inc. - GoTo Opener 1.0.0.487.) -- C:\WINDOWS\Installer\227db029.msi [118784] =>.LogMeIn, Inc.
[MD5.8555537B48218C1991E81FDAB6532517] [WIS][2022/10/18 05:00:53] (.Open Media LLC - 4K Video Downloader 4.21 Installer.) -- C:\WINDOWS\Installer\3013f33.msi [96043008] =>.Open Media LLC
[MD5.882A171C839E6768B6CE8AE52A7105CE] [WIS][2018/10/20 13:52:22] (.Samsung Electronics Co., Ltd..) -- C:\WINDOWS\Installer\322779e5.msi [38709248] =>.Samsung Electronics Co., Ltd.
[MD5.30A7CA0334F88AE32E8F9B5351A8517C] [WIS][2012/05/16 10:50:08] (.Lenovo - UserGuide.) -- C:\WINDOWS\Installer\33cce.msi [852480] =>.Lenovo
[MD5.9C64B0E9A375F180450149CBF73B397F] [WIS][2012/07/12 06:30:20] (.Amazon - Amazon Browser App.) -- C:\WINDOWS\Installer\33d06.msi [1122304] =>.Amazon
[MD5.9125D23BD371F9B2EF3286CA515D76FA] [WIS][2012/07/10 12:37:16] (.CyberLink Corp..) -- C:\WINDOWS\Installer\33d1a.msi [1287168] =>.CyberLink Corp.
[MD5.7C2488C7A174D1D7B299822BC64160D3] [WIS][2015/10/19 09:58:00] (.Lenovo.) -- C:\WINDOWS\Installer\33d1e.msi [71430144] =>.Lenovo
[MD5.0AFD048EEBD81072FB513D700087A967] [WIS][2016/12/26 19:59:50] (.Adobe Systems Incorporated - Adobe AIR Installer.) -- C:\WINDOWS\Installer\34dd7970.msi [49152] =>.Adobe Systems Incorporated
[MD5.8D231595E1E36BBB1193CE1FBFEEB13C] [WIS][2016/12/27 00:41:23] (.Adobe Systems Incorporated - Adobe Download Assistant.) -- C:\WINDOWS\Installer\35d80d0e.msi [22016] =>.Adobe Systems Incorporated
[MD5.5C43A76F5EF9883204C044FBD1A62982] [WIS][2012/04/19 23:23:42] (.Intel Corporation - Intel(R) Trusted Connect Service Client.) -- C:\WINDOWS\Installer\3b4d1.msi [5363712] =>.Intel Corporation
[MD5.B9E06BB685AE21D88F0449A6269829F3] [WIS][2012/05/17 05:29:34] (.Dolby Laboratories Inc - Dolby Advanced Audio v2.) -- C:\WINDOWS\Installer\3b4d9.msi [13357056] =>.Dolby Laboratories Inc
[MD5.6BD38F64FDB6ED8FECFC1A5F5CB529B1] [WIS][2012/06/26 03:40:06] (.Alcor Micro Corp. - AmIcoSinglun.) -- C:\WINDOWS\Installer\3b4dd.msi [1532416] =>.Alcor Micro Corp.
[MD5.DCCB7F12931909C8F60F990A1F315BF5] [WIS][2012/07/30 11:10:30] (.Broadcom Corp. - WIDCOMM Bluetooth Profile Pack.) -- C:\WINDOWS\Installer\3b4e6.msi [10659840] =>.Broadcom Corp.
[MD5.B7F9BD11097678CCBA0B2BD627C45BE6] [WIS][2022/07/02 08:34:40] (.OpenOffice - OpenOffice 4.1.13.) -- C:\WINDOWS\Installer\465b3842.msi [2478080] =>.OpenOffice
[MD5.C13C4AC12F8674D16CEE10C796B2510A] [WIS][2017/02/02 01:58:35] (.Lenovo - Lenovo Solution Center.) -- C:\WINDOWS\Installer\69d53155.msi [77956608] =>.Lenovo
[MD5.13C5D58FFF38CEC2FB4C48CF72DA86D4] [WIS][2022/12/05 14:17:12] (.Proton Technologies AG - ProtonVPN.) -- C:\WINDOWS\Installer\7baa737.msi [19957760] =>.Proton Technologies AG

---\\ FEATURE CONTROL. (1) - 0s
[HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:cmw_srv.exe

---\\ OBSERVATEURS des évènements (137) - 83s

Application.Error: Firefox Default Browser Agent (60)
~Numéro: 133003
~Date: 09/28/2023 10:29:53 AM
~ID: 2
~Description: 0x80070002 in RegistryDeleteValue:320
~Suggestion: Aucune

Application.Warning: Microsoft-Windows-RestartManager (23)
~Numéro: 132986
~Date: 09/28/2023 04:39:50 AM
~ID: 10010
~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9.
~Suggestion: Redémarrer manuellement l'application ou le service

Application.Warning: LMS (43)
~Numéro: 132944
~Date: 09/28/2023 02:57:58 AM
~ID: 1
~Description: LMS cannot connect to Intel(R) MEI driver

Application.Warning: ESENT (12)
~Numéro: 132931
~Date: 09/28/2023 02:56:01 AM
~ID: 472
~Description: %1 (%2) %3Page d’en-tête de sauvegarde du fichier %4 endommagée. La page d’en-tête primaire (%5 octets) a été utilisée à la place.
~Suggestion: 1)Fermer le processus explorer.exe. 2)lancer la commande 'del/f/s/q/a C:\Users\\AppData\Local\Microsoft\Windows\WebCacheLock.dat'. 3) Redémarrer le processus explorer.exe

Application.Error: VSS (19)
~Numéro: 132918
~Date: 09/28/2023 02:54:06 AM
~ID: 8193
~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine %1. hr = %2.
~Suggestion: Utiliser la procédure de reconstruction du VSS

Application.Warning: EventSystem (3)
~Numéro: 132683
~Date: 09/26/2023 03:53:38 AM
~ID: 4354
~Description: 80070005Logoff{D5978630-5B9F-11D1-8DD2-00AA004ABD5E}Explorer
~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_4354_Microsoft-Windows-EventSystem_61657.asp

Application.Error: Microsoft-Windows-Defrag (7)
~Numéro: 131890
~Date: 09/18/2023 12:37:13 PM
~ID: 264
~Description: L’optimiseur de stockage n’a pas pu terminer %1 sur %2 car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A)
~Suggestion: Désactivez la surveillance du disque logique dans le pack d'administration du système d'exploitation de base SCOM pour arrêter l'analyse automatique de la défragmentation.

Application.Error: Application Hang (21)
~Numéro: 131500
~Date: 09/16/2023 03:13:19 PM
~ID: 1002
~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de proces
~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew.

Application.Warning: Wlclntfy (4)
~Numéro: 131166
~Date: 09/14/2023 05:27:14 PM
~ID: 6006
~Description: Le traitement de l’événement de notification (%3) par l’abonné aux notifications Winlogon <%1> a duré %2 secondes.
~Suggestion: Supprimer la valeur de registre GpNetworkStartTimeoutPolicyValue de la clé HKLM\SOFTWARE\Policies\Microsoft\Windows\System

Application.Warning: Microsoft-Windows-System-Restore (3)
~Numéro: 131068
~Date: 09/13/2023 04:31:57 PM
~ID: 8303
~Description: Scoping unsuccessful for shadowcopy %1 with error %2.
~Suggestion: Exécuter la commande chkdsk / f

Application.Error: SideBySide (1)
~Numéro: 130414
~Date: 09/07/2023 09:15:26 AM
~ID: 35
~Description: La création du contexte d’activation a échoué pour « %11 ». Erreur dans le fichier de manifeste ou de stratégie « %12 » à la ligne %13. L’identité de composant trouvé dans le manifeste ne correspond pas à celle du composant demandé. La référence est
~Suggestion: Ces erreurs peuvent généralement être ignorées

Application.Error: Application Error (15)
~Numéro: 130410
~Date: 09/07/2023 08:41:47 AM
~ID: 1000
~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0xc3550c29 Nom du module défaillant : %4, version : %5, horodatage : 0x6967c799 Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000012d9b2 ID du processus défaillant : 0x684 He
~Suggestion: Réparer ou réinstaller l'application.

Application.Error: .NET Runtime (14)
~Numéro: 129433
~Date: 08/30/2023 01:05:05 PM
~ID: 1026
~Description: Application : FreemakeUtilsService.exeVersion du Framework : v4.0.30319Description : le processus a été arrêté en raison d'une exception non gérée.Informations sur l'exception : System.IO.FileNotFoundException à FreemakeUtilsService.Program.Main(Sy
~Suggestion: Essayer d'installer la dernière version de l'application ou du dernier correctif

System.Warning: DCOM (402)
~Numéro: 77924
~Date: 09/28/2023 11:18:30 AM
~ID: 10016
~Description: par défaut de l’ordinateurLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}PC-LENOVO-STÉPHUserS-1-5-21-2571112955-4239876419-1220594018-1001LocalHost (avec LRPC)Microsoft.Windows.ShellExperienceHost_10.0.1904
~Suggestion: Vérifier les autorisations pour l'accès DCOM

System.Warning: Microsoft-Windows-DNS-Client (22)
~Numéro: 77907
~Date: 09/28/2023 03:01:17 AM
~ID: 1014
~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu.
~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx

System.Warning: BTHUSB (45)
~Numéro: 77875
~Date: 09/28/2023 02:54:59 AM
~ID: 34
~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est %2, a reçu %3. La fonctionnalité du rôle périphérique Low Energy n

System.Warning: Microsoft-Windows-Kernel-PnP (44)
~Numéro: 77870
~Date: 09/28/2023 02:54:57 AM
~ID: 219
~Description: Le chargement du pilote %5 a échoué pour le périphérique %2.
~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système

System.Error: Microsoft-Windows-WindowsUpdateClient (4)
~Numéro: 77804
~Date: 09/27/2023 06:17:06 PM
~ID: 20
~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2.
~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp

System.Error: Service Control Manager (125)
~Numéro: 77788
~Date: 09/27/2023 05:50:31 PM
~ID: 7023
~Description: Le service %1 s’est arrêté avec l’erreur : %%1

System.Error: NetBT (10)
~Numéro: 76998
~Date: 09/20/2023 07:28:17 PM
~ID: 4311
~Description: L’initialisation a échoué car le pilote de périphérique n’a pas pu être créé. Utilisez la chaîne « %2 » pour identifier l’interface pour laquelle l’initialisation a échoué. Cette chaîne représente l’adresse MAC de l’interface défaillante ou l’identi

System.Error: volsnap (1)
~Numéro: 76747
~Date: 09/18/2023 12:13:28 PM
~ID: 36
~Description: Les clichés instantanés du volume %2 ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur.

System.Error: EventLog (2)
~Numéro: 76506
~Date: 09/16/2023 09:15:19 PM
~ID: 6008
~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu.

System.Error: Microsoft-Windows-Kernel-Power (1)
~Numéro: 75098
~Date: 09/02/2023 02:54:14 PM
~ID: 137
~Description: 4

System.Warning: Microsoft-Windows-WLAN-AutoConfig (1)
~Numéro: 73552
~Date: 08/21/2023 12:00:54 PM
~ID: 4003
~Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée, en tentant une récupération automatique. Type de récupération : 4 Code d’erreur : 0x0 Motif de déclenchement : 5 Famille IP : 0
~Suggestion: Vérifier les paramètres d'économie d'énergie

---\\ SCAN ADDITIONNEL (11) - 30s
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip =>.SUP.Orphan
HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} =>.SUP.Orphan
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip =>.SUP.Orphan
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\7-Zip =>.SUP.Orphan
C:\Users\User\AppData\Local\Temp\mat-debug-10084.log =>.SUP.Temporary.Microsoft
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\avidemux_2-6-14_win32.exe.FriendlyAppName =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\vlc-3.0.16-win64.exe.FriendlyAppName =>.Unsigned
[HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\pf7-setup-fr-7.2.1.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\avidemux_2-6-14_win32.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\vlc-3.0.16-win64.exe.FriendlyAppName =>.Unsigned
[HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\pf7-setup-fr-7.2.1.exe.FriendlyAppName =>.Unsigned

---\\ RECAPITULATIF DES ELEMENTS TROUVES (5) - 0s
https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan
https://nicolascoolman.eu/forum/Topic/booking-logiciel-potentiellement-indesirable-pup-lpi/ =>PUP.Optional.Booking
https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp
https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys
https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Microsoft

---\\ NUMEROS DE SÉRIE
[00A657F778B31AE523D667131718D16EB2] [08/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_whats_new.2.0.17.x64.dll =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [20/09/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [20/09/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [20/09/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [26/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [26/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [26/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [26/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [26/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [28/09/2023] (.Malwarebytes Inc..) - C:\Users\User\Desktop\adwcleaner.exe =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [29/08/2023] (.Malwarebytes Inc..) - C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mb4uns.exe =>.Malwarebytes Inc.
[00A657F778B31AE523D667131718D16EB2] [29/08/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.
[00B79355411B9B3FFCE2C559332AFA0F4C] [28/09/2022] (.Mark Straver.) - C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver
[00B79355411B9B3FFCE2C559332AFA0F4C] [28/09/2022] (.Mark Straver.) - C:\Program Files\Pale Moon\uninstall\helper.exe =>.Mark Straver
[00D2C6F29BA9505FFEC6197D9E02D51B54] [28/07/2019] (.SAND STUDIO LIMITED.) - C:\Users\User\Documents\Airdroid\AirDroid.exe =>.SAND STUDIO LIMITED
[00D2C6F29BA9505FFEC6197D9E02D51B54] [28/07/2019] (.SAND STUDIO LIMITED.) - C:\Users\User\Documents\Airdroid\Launcher.exe =>.SAND STUDIO LIMITED
[0407ABB64E9990180789EACB81F5F914] [24/03/2022] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN
[044E3BF58976880FFD074448A8F7A058] [09/01/2018] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\1162C1FD.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [09/01/2018] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\2357B5BA.sys =>.Malwarebytes Corporation
[044E3BF58976880FFD074448A8F7A058] [15/11/2020] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\6A31526A.sys =>.Malwarebytes Corporation
[06E26320848D2C32D8CCAFF3A6C1F2D9] [18/10/2022] (.Open Media LLC.) - C:\ProgramData\Package Cache\{a8f0b9d0-de9b-45b4-9783-f1f4f5491a7b}\4kvideodownloader_4.21.7_x64_online.exe =>.Not verified
[06E26320848D2C32D8CCAFF3A6C1F2D9] [30/09/2022] (.Open Media LLC.) - C:\Program Files\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Not verified
[07D9088DD3014622FC5BA95BA2614B87] [18/10/2016] (.Lenovo (Beijing) Co., Ltd..) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.Lenovo (Beijing) Co., Ltd.
[07ED134B1ECF561A9EB5B05388BFF047] [06/12/2022] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group Ltd.
[07ED134B1ECF561A9EB5B05388BFF047] [17/02/2023] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller\unins000.exe =>.VS Revo Group Ltd.
[08DE824276EE62DA1813FBDBF128A8FB] [25/04/2022] (.LogMeIn, Inc..) - C:\Users\User\AppData\Local\GoToMeeting\19950\G2MUninstall.exe =>.Not verified
[0C1CD3EEA47EDDA7A032573B014D0AFD] [27/09/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [27/09/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [27/09/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation
[0C1CD3EEA47EDDA7A032573B014D0AFD] [27/09/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation
[14AAE84D000100008365] [12/07/2012] (.Intel® Services Manager.) - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe =>.Intel® Services Manager
[1839AF8574AA0E80C371D9803461DD7B] [14/10/2022] (.ADLICE.) - C:\Program Files\UCheck\UCheck64.exe =>.ADLICE
[1839AF8574AA0E80C371D9803461DD7B] [15/10/2022] (.ADLICE.) - C:\Program Files\UCheck\unins000.exe =>.ADLICE
[1A33646248348AD3243A79F786DB8F64] [13/06/2012] (.AlcorMicro, Corp..) - C:\WINDOWS\System32\drivers\AmUStor.sys =>.AlcorMicro, Corp.
[1A33646248348AD3243A79F786DB8F64] [26/06/2012] (.AlcorMicro, Corp..) - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe =>.AlcorMicro, Corp.
[1B4B29DF9A4D89F80C9618F1488983A7] [13/11/2009] (.TomTom International BV.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV
[1D226108CBB0EB7B504697BDFEC66A8B] [10/07/2012] (.CyberLink.) - C:\Program Files\Lenovo\OneKey App\OneKey Recovery\OneKey Recovery.exe =>.CyberLink
[1D226108CBB0EB7B504697BDFEC66A8B] [13/06/2012] (.CyberLink.) - C:\WINDOWS\System32\DRIVERS\wsvd.sys =>.CyberLink
[1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\dpinst.exe =>.Synaptics Incorporated
[1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated
[1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated
[1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE =>.Synaptics Incorporated
[1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys =>.Synaptics Incorporated
[1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated
[1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys =>.Synaptics Incorporated
[1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated
[1DE909DE446485F9C6F4B405E24F687D] [27/03/2015] (.Broadcom Corporation.) - C:\WINDOWS\System32\BtwRSupportService.exe =>.Broadcom Corporation
[217A8364000100006426] [20/04/2012] (.Intel® Upgrade Service.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service
[23F4B491123AC4CDBD68042D] [04/09/2023] (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\unins000.exe =>.Proton Technologies AG
[23F4B491123AC4CDBD68042D] [04/09/2023] (.Proton Technologies AG.) - C:\ProgramData\ProtonVPN\Updates\ProtonVPN_v3.1.1.exe =>.Proton Technologies AG
[23F4B491123AC4CDBD68042D] [23/08/2023] (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe =>.Proton Technologies AG
[23F4B491123AC4CDBD68042D] [23/08/2023] (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.exe =>.Proton Technologies AG
[23F4B491123AC4CDBD68042D] [23/08/2023] (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.WireGuardService.exe =>.Proton Technologies AG
[23F4B491123AC4CDBD68042D] [23/08/2023] (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\v3.1.1\ProtonVPNService.exe =>.Proton Technologies AG
[253AF3B3BB7099F9B7B1D628FBB605D2] [14/05/2012] (.SugarSync, Inc..) - C:\Program Files (x86)\SugarSync\SugarSyncManager.exe =>.SugarSync, Inc.
[253AF3B3BB7099F9B7B1D628FBB605D2] [14/05/2012] (.SugarSync, Inc..) - C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.
[26181CEDF2C113E16AC74820DF7A38A3] [22/07/2016] (.Samsung Electronics CO., LTD..) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.
[2C80892E0115B0B77AA3594B9A733953] [02/07/2012] (.Realtek Semiconductor Corp.) - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp
[2C80892E0115B0B77AA3594B9A733953] [03/07/2012] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp
[2C80892E0115B0B77AA3594B9A733953] [04/05/2012] (.Realtek Semiconductor Corp.) - C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe =>.Realtek Semiconductor Corp
[2C80892E0115B0B77AA3594B9A733953] [13/06/2012] (.Realtek Semiconductor Corp.) - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp
[2EDBA85021EE00C973B5C5398B2E1155] [19/10/2015] (.Lenovo (Beijing) Limited.) - C:\WINDOWS\System32\DRIVERS\LhdX64.sys =>.Lenovo (Beijing) Limited
[330000038BF0FCEC2C8F35652C00000000038B] [27/09/2023] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.105.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Not verified
[330000B898AA86B5A39E5A1BBD00020000B898] [09/03/2017] (.Intel(R) pGFX.) - C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\Setup.exe =>.Intel(R) pGFX
[330000B898AA86B5A39E5A1BBD00020000B898] [09/03/2017] (.Intel(R) pGFX.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX
[37D3740FB04DB7FA54DFDF358BEF6D5F] [22/05/2009] (.CyberLink.) - C:\Program Files (x86)\InstallShield Installation Information\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}\setup.exe =>.CyberLink
[3DAA06F4E8BE7B2AE8FC57BA8578B7D9] [06/12/2016] (.AnchorFree Inc.) - C:\WINDOWS\System32\drivers\taphss6.sys =>.AnchorFree Inc
[45CDE138920165308D5ED4955D3629E4] [12/08/2020] (.Dolby Laboratories, Inc..) - C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe =>.Dolby Laboratories, Inc.
[47D10403CEBA269F5D81E04D8A679663] [19/10/2015] (.Lenovo (Beijing) Limited.) - C:\Program Files\DIFX\8C657473004ED4CD\DPInst.exe =>.Lenovo (Beijing) Limited
[489613E7DD6964B152A4E8F71813E76A] [27/01/2010] (.CACE Technologies, Inc..) - C:\WINDOWS\System32\drivers\npf.sys =>.CACE Technologies, Inc.
[4CD9E755850C1372B48DC182A7308BAB] [04/06/2015] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc.
[4EA1E89E15EA4FFA937984D88F545FBA] [26/12/2016] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Adobe\Flash Player\AddIns\airappinstaller\airappinstaller.exe =>.Adobe Systems Incorporated
[4EA1E89E15EA4FFA937984D88F545FBA] [26/12/2016] (.Adobe Systems Incorporated.) - c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe =>.Adobe Systems Incorporated
[56000001757376CD78AD000C9A000000000175] [17/10/2017] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\System32\drivers\ICCWDT.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group
[5AE2E638FDF6401611B8D5512C9AECE7] [27/03/2015] (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bcbtums.sys =>.Broadcom Corporation
[5AE2E638FDF6401611B8D5512C9AECE7] [27/03/2015] (.Broadcom Corporation.) - C:\WINDOWS\System32\DRIVERS\btwampfl.sys =>.Broadcom Corporation
[5DAA3A3A20C9CD75916087FD48E68CAC] [19/10/2015] (.Broadcom Corporation.) - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\Driver\bcmwls64.exe =>.Broadcom Corporation
[6ACB09679345BDB443C64D309E843BD9] [09/07/2012] (.Amazon Services LLC.) - C:\Program Files (x86)\Amazon\AmazonBrowserApp\abb-install.exe =>.Amazon Services LLC
[6AD65C0C83D90F911D10DACFA210AB56] [07/05/2019] (.Alcorlink Corp..) - C:\WINDOWS\System32\drivers\AmUStorU.sys =>.Alcorlink Corp.
[72F0C9305FD97A974DC024A6980E6886] [09/10/2020] (.WDKTestCert build,132303256403278908.) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,132303256403278908
[75B5499C96D676A5FAE2656B351E1FD6] [11/11/2020] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd.
[7AE2B5021371F092A904B6FA] [30/09/2022] (.Telegram FZ-LLC.) - C:\Users\User\Desktop\Telegram Desktop\Telegram.exe =>.Not verified

~ Unselected Options: NF,
~ End of the scan, 11452 items in 13mn51s (1606)(0)

Publicité


Signaler le contenu de ce document

Publicité