~ ZHPDiag v2018.10.9.181 Par Nicolas Coolman (2018/10/09) ~ Démarré par jseve (Administrator) (2018/10/10 09:59:18) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\jseve\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\jseve\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 17763) ---\\ NAVIGATEURS INTERNET (2) - 0s ~ MSIE: Microsoft Edge v40 ~ MSIE: Internet Explorer v11.55.17763.0 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 3V66T Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (2) - 1s Windows Defender W10 (Activate) (Protection) Malwarebytes version 3.6.1.2711 v3.6.1.2711 (Protection) ---\\ SURVEILLANCE LOGICIEL (1) - 1s ~ Adobe Flash Player 31 PPAPI (Surveillance) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: Intel64 Family 6 Model 30 Stepping 5, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 16735.308 MB (69% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 75 GB (65%) free of 114 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: DESKTOP-MVHAHU5 ~ User Name: jseve ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (8) - 0s ~ Drive C: has 75 GB free of 114 GB (System) ~ Drive D: has 87 GB free of 152 GB ~ Drive E: has 43 GB free of 122 GB ~ Drive F: has 38 GB free of 153 GB ~ Drive G: has 190 GB free of 1023 GB ~ Drive H: has 49 GB free of 253 GB ~ Drive N: has 0 GB free of 0 GB ~ Drive Z: has 2 GB free of 2 GB ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 1s [MD5.6A65873EA949C5CCC72DDEF9E9780AA5] - 05/10/2018 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4245072] =>.Microsoft Windows® [MD5.C73BA51880F5A7FB20C84185A23212EF] - 05/10/2018 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71168] =>.Microsoft Corporation [MD5.4E20895E641F2C3E68AB3DB91A1A16F1] - 05/10/2018 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [388376] =>.Microsoft Corporation [MD5.CA14A28CA8C73500107080B8ED10A341] - 05/10/2018 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [4765184] =>.Microsoft Corporation [MD5.92419F3B74C6C3D7304B7665DA984552] - 05/10/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [779776] =>.Microsoft Corporation [MD5.409DA1CF80BD0BED054E952E905A9576] - 05/10/2018 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [421376] =>.Microsoft Corporation [MD5.018D6E7BA23E28ECA0CB7F071A9FF291] - 05/10/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [799568] =>.Microsoft Windows® [MD5.052495BF199C5369F9C86BF9B26F2A3A] - 05/10/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [580024] =>.Microsoft Windows® [MD5.1C72D5EC12FB782907B1F7F3E64D1B8F] - 05/10/2018 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation [MD5.5AFE650194C07BE81CB5A01B72549A1B] - 05/10/2018 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [655160] =>.Microsoft Corporation [MD5.A39C05B19C079401A9AF8A2EF3067B64] - 05/10/2018 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30208] =>.Microsoft Corporation [MD5.5787AFA76808253F32DBBB31C4E26C8A] - 05/10/2018 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100352] =>.Microsoft Corporation [MD5.D7FAEE38C867DFDAA626B886A7AEA89A] - 05/10/2018 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [165888] =>.Microsoft Corporation [MD5.C7E85EEDBC05491FF1CDD3ACA98FA1DE] - 05/10/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [151040] =>.Microsoft Corporation [MD5.855678C1760AE7DCE0CF2BAFD989176E] - 05/10/2018 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [104960] =>.Microsoft Corporation [MD5.7EF070F21CAB7E8DC906F9CA8516CE5B] - 05/10/2018 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [110592] =>.Microsoft Corporation [MD5.CEC63D8B8E7A525233D2AEE19EF9A5A8] - 05/10/2018 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [224768] =>.Microsoft Corporation [MD5.27E21FE9704A73EFABCEC90D7DDD924A] - 09/10/2018 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [535040] =>.Microsoft Corporation [MD5.717FC248242BDCBB3B8159B8098BD34F] - 05/10/2018 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [301568] =>.Microsoft Corporation [MD5.406422320F1A1A41ABDBF1FB5543E957] - 09/10/2018 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2625552] =>.Microsoft Corporation [MD5.838C9F2D2EB6D29776AF1AC78B4AA1D7] - 05/10/2018 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [106496] =>.Microsoft Corporation [MD5.6E28E1CE915FE617D4F38BFB8543696F] - 05/10/2018 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [111616] =>.Microsoft Corporation [MD5.1AEE22C5FBF18F53C47AC4373F0DB542] - 05/10/2018 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [166912] =>.Microsoft Corporation [MD5.E5CE3388A455ED80480EAE3A8ADD53A9] - 05/10/2018 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [132408] =>.Microsoft Corporation [MD5.0F13F63BA93C89DA4F54B8830EB5410B] - 05/10/2018 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [427832] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (66) - 2s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® O23 - Service: Adobe Genuine Monitor Service (AGMService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe =>.Adobe Systems Incorporated® O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\System32\atiesrxx.exe =>.AMD O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll =>.Microsoft Corporation O23 - Service: AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) - C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.® O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll =>.Microsoft Corporation O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_50251) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe {33000001A90F2D80C9A929387C0000000001A9} =>.Microsoft Corporation O23 - Service: Service Microsoft Office « Démarrer en un clic » (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run (SxS).) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe =>.Microsoft Corporation® O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft Windows® O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\WINDOWS\System32\wevtsvc.dll =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll =>.Microsoft Corporation O23 - Service: ExpressVpn Service (ExpressVpnService) . (.Public Domain; Author Iain Patterson 2003-2014 - The non-sucking service manager.) - C:\Program Files (x86)\ExpressVPN\bootstrap\AMD64\nssm.exe =>.Express Vpn LLC® O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll =>.Microsoft Corporation O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll =>.Microsoft Corporation O23 - Service: Hôte de synchronisation_50251 (OneSyncSvc_50251) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe {33000001A90F2D80C9A929387C0000000001A9} =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll =>.Microsoft Corporation O23 - Service: RstMwService (RstMwService) . (.Intel Corporation - Intel(R) Rapid Storage Technology Managemen.) - C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_a2fcfdfc3497e17c\RstMwService.exe =>.Intel(R) Rapid Storage Technology® O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\WINDOWS\System32\sysmain.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll =>.Microsoft Corporation O23 - Service: TeraCopy Service (TeraCopyService) . (.Code Sector - TeraCopy Service.) - C:\Program Files\TeraCopy\TeraCopyService.exe =>.Code Sector® O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll =>.Microsoft Corporation O23 - Service: USB Safely Remove Assistant (USBSafelyRemoveService) . (.Crystal Rich Ltd - USB Safely Remove assistant service.) - C:\Program Files (x86)\USB Safely Remove\USBSRService.exe =>.Crystal Rich Ltd® O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usocore.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) - C:\WINDOWS\System32\usocore.dll =>.Microsoft Corporation O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® O23 - Service: VMware DHCP Service (VMnetDHCP) . (.VMware, Inc. - VMware VMnet DHCP service.) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.® O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® O23 - Service: VMware NAT Service (VMware NAT Service) . (.VMware, Inc. - VMware NAT Service.) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.® O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll =>.Microsoft Corporation O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1809.2-0\MsMpEng.exe =>.Microsoft Corporation® O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll =>.Microsoft Corporation O23 - Service: Service utilisateur de notifications Push Windows_50251 (WpnUserService_50251) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe {33000001A90F2D80C9A929387C0000000001A9} =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) - C:\WINDOWS\System32\wuaueng.dll =>.Microsoft Corporation O23 - Service: Zoolz Backup Service (Zoolz 2 Service) . (.Genie9 - Zoolz 2 Service.) - C:\Program Files\Genie9\Zoolz2\ZoolzService.exe =>.Genie9 LTD® ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (18) - 7s SR - Auto [14/08/2018] [ 83984] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Systems, Incorporated® SS - Demand [09/10/2018] [ 335872] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [10/09/2018] [ 2910696] Adobe Genuine Monitor Service (AGMService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe =>.Adobe Systems Incorporated® SR - Auto [10/09/2018] [ 2704872] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe =>.Adobe Systems Incorporated® SR - Auto [16/12/2015] [ 255472] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\System32\atiesrxx.exe =>.Microsoft Windows Hardware Compatibility Publisher® SR - Auto [11/09/2018] [ 388968] AOMEI Backupper Scheduler Service (Backupper Service) . (.AOMEI Tech Co., Ltd..) - C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.® SR - Auto [20/09/2018] [ 339168] ExpressVpn Service (ExpressVpnService) . (.Public Domain; Author Iain Patterson 2003-2014.) - C:\Program Files (x86)\ExpressVPN\bootstrap\AMD64\nssm.exe =>.Express Vpn LLC® SS - Demand [28/09/2018] [ 2769936] @oem19.inf,%iaStorAfsWindowsService.Name%;Intel(R) Optane(T (iaStorAfsService) . (.Intel Corporation.) - C:\WINDOWS\System32\iaStorAfsService.exe =>.Intel(R) Rapid Storage Technology® SS - Demand [19/09/2018] [ 6347056] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe =>.Malwarebytes Corporation® SR - Auto [28/09/2018] [ 1903120] RstMwService (RstMwService) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_a2fcfdfc3497e17c\RstMwService.exe =>.Intel(R) Rapid Storage Technology® SR - Auto [05/05/2017] [ 110416] TeraCopy Service (TeraCopyService) . (.Code Sector.) - C:\Program Files\TeraCopy\TeraCopyService.exe =>.Code Sector® SR - Auto [08/09/2018] [ 1736800] USB Safely Remove Assistant (USBSafelyRemoveService) . (.Crystal Rich Ltd.) - C:\Program Files (x86)\USB Safely Remove\USBSRService.exe =>.Crystal Rich Ltd® SR - Auto [08/01/2018] [ 99816] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® SR - Auto [08/01/2018] [ 366568] VMware DHCP Service (VMnetDHCP) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.® SR - Auto [20/02/2017] [ 915944] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® SR - Auto [08/01/2018] [ 400872] VMware NAT Service (VMware NAT Service) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.® SS - Demand [08/01/2018] [12443624] VMware Workstation Server (VMwareHostd) . (...) - C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.® SR - Auto [02/09/2018] [ 475976] Zoolz Backup Service (Zoolz 2 Service) . (.Genie9.) - C:\Program Files\Genie9\Zoolz2\ZoolzService.exe =>.Genie9 LTD® ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (14) - 3s O38 - TASK: {11B558D7-2E12-4EE1-A673-75D4FE6A1674} [64Bits][\Process Lasso Core Engine Only] - (.Bitsum LLC - Process Lasso process management engine.) -- C:\Program Files\Process Lasso\processgovernor.exe [786168] =>.Bitsum LLC O38 - TASK: {5D260D9F-18F9-4D8C-979B-E61980B9BA26} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Systems Incorporated - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1190424] =>.Adobe Systems Incorporated O38 - TASK: {6EFEEE04-AC78-49C9-9D79-2361375189AB} [64Bits][\Adobe Flash Player PPAPI Notifier] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe [1454592] =>.Adobe Systems Incorporated O38 - TASK: {6F5E3D46-43E4-4D5B-80B8-497C071370A3} [64Bits][\WUMT2] - (.stupid user - Windows Update MiniTool.) -- G:\Mes Documents\utilitaires\mini tool update\wumt_x64.exe [4343296] O38 - TASK: {89CD966D-2293-4F8E-9FA3-C936E70ACAD5} [64Bits][\Process Lasso Management Console (GUI)] - (.Bitsum LLC - Process Lasso User Interface.) -- C:\Program Files\Process Lasso\processlasso.exe [1325304] =>.Bitsum LLC O38 - TASK: {AED96FF2-6EFB-4FE3-8E08-3416C16A77A4} [64Bits][\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 31.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872] =>.Adobe Systems Incorporated O38 - TASK: {BCAF4669-040D-4AE1-BA25-236B51E3CA8B} [64Bits][\AdobeGCInvoker-1.0-MicrosoftAccount-j.sevestre1@laposte.net] - (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2670056] =>.Adobe Systems, Incorporated C:\WINDOWS\System32\Tasks\Process Lasso Core Engine Only - (.Bitsum LLC.) -- C:\Program Files\Process Lasso\processgovernor.exe [] =>.Bitsum LLC C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Systems Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Systems Incorporated C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe [-check pepperplugin.-check] =>.Adobe Systems Incorporated C:\WINDOWS\System32\Tasks\WUMT2 - (.stupid user.) -- G:\Mes Documents\utilitaires\mini tool update\wumt_x64.exe [-update] C:\WINDOWS\System32\Tasks\Process Lasso Management Console (GUI) - (.Bitsum LLC.) -- C:\Program Files\Process Lasso\processlasso.exe [] =>.Bitsum LLC C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe Systems Incorporated C:\WINDOWS\System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-j.sevestre1@laposte.net - (.Adobe Systems, Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [] =>.Adobe Systems, Incorporated ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (19) - 2s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe =>.Microsoft Corporation O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe =>.Adobe Systems Incorporated® O4 - HKLM\..\Run: [AdobeGCInvoker-1.0] . (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe =>.Adobe Systems Incorporated® O4 - HKCU\..\Run: [Screenpresso] . (.Learnpulse - Screenpresso.) -- C:\Users\jseve\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe {526633C9E7F57A46B65651AAFA835505} =>.LearnPulse O4 - HKCU\..\Run: [BitTorrent] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\jseve\AppData\Roaming\BitTorrent\BitTorrent.exe =>.BitTorrent Inc® O4 - HKCU\..\Run: [Volume2] . (.Alexandr Irza - Volume² - advanced Windows volume control.) -- G:\Mes Documents\utilitaires\version portables\Volume2\Volume2.exe =>.Alexandr Irza O4 - HKCU\..\Run: [USB Safely Remove] . (.Crystal Rich Ltd - USB Safely Remove - an enhanced replacement.) -- C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe =>.Crystal Rich Ltd O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKCU\..\Run: [Vivaldi Update Notifier] . (. - .) -- C:\Users\jseve\Desktop\Application\update_notifier.exe (.Not File.) =>.SUP.Orphan O4 - HKCU\..\RunOnce: [Application Restart #2] . (.Vivaldi Technologies AS - Vivaldi.) -- G:\Mes Documents\utilitaires\version portables\VIVALDI PORTABLE\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O4 - HKUS\S-1-5-21-3076523476-1142008452-770512297-1001\..\Run: [Screenpresso] . (.Learnpulse - Screenpresso.) -- C:\Users\jseve\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe {526633C9E7F57A46B65651AAFA835505} =>.LearnPulse O4 - HKUS\S-1-5-21-3076523476-1142008452-770512297-1001\..\Run: [BitTorrent] . (.BitTorrent Inc. - BitTorrent.) -- C:\Users\jseve\AppData\Roaming\BitTorrent\BitTorrent.exe =>.BitTorrent Inc® O4 - HKUS\S-1-5-21-3076523476-1142008452-770512297-1001\..\Run: [Volume2] . (.Alexandr Irza - Volume² - advanced Windows volume control.) -- G:\Mes Documents\utilitaires\version portables\Volume2\Volume2.exe =>.Alexandr Irza O4 - HKUS\S-1-5-21-3076523476-1142008452-770512297-1001\..\Run: [USB Safely Remove] . (.Crystal Rich Ltd - USB Safely Remove - an enhanced replacement.) -- C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe =>.Crystal Rich Ltd O4 - HKUS\S-1-5-21-3076523476-1142008452-770512297-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - HKUS\S-1-5-21-3076523476-1142008452-770512297-1001\..\Run: [Vivaldi Update Notifier] . (. - .) -- C:\Users\jseve\Desktop\Application\update_notifier.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-21-3076523476-1142008452-770512297-1001\..\RunOnce: [Application Restart #2] . (.Vivaldi Technologies AS - Vivaldi.) -- G:\Mes Documents\utilitaires\version portables\VIVALDI PORTABLE\Application\vivaldi.exe =>.Vivaldi Technologies AS® ---\\ PROCESSUS LANCÉS (33) - 6s [MD5.1D4F08B2531E169864B3AFFF52BE4574] - (.Code Sector - TeraCopy Service.) -- C:\Program Files\TeraCopy\TeraCopyService.exe [110416] [PID.1472] =>.Code Sector® [MD5.9A9FB3182D84A436975DF587B9403E39] - (.Crystal Rich Ltd - USB Safely Remove assistant service.) -- C:\Program Files (x86)\USB Safely Remove\USBSRService.exe [1736800] [PID.1820] =>.Crystal Rich Ltd® [MD5.BBADD85854BFB5D43C60B7AC8EEA3DBA] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [255472] [PID.1944] =>.AMD [MD5.B3AB2D5B98E67EC56ED4EB9D2A3199BF] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [683504] [PID.2012] =>.AMD [MD5.696A8431DD22EDE385D7AB84E0EAF4C9] - (.Adobe Systems Incorporated - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [83984] [PID.3276] =>.Adobe Systems, Incorporated® [MD5.AA2D30992087047EF638674198209948] - (.Public Domain; Author Iain Patterson 2003-2014 - The non-sucking service manager.) -- C:\Program Files (x86)\ExpressVPN\bootstrap\AMD64\nssm.exe [339168] [PID.3316] =>.Express Vpn LLC® [MD5.FA081FD2FBC7D4D7585E56C456DB7853] - (.VMware, Inc. - VMware NAT Service.) -- C:\Windows\SysWOW64\vmnat.exe [400872] [PID.3340] =>.VMware, Inc.® [MD5.C2A15CD5E2A8542C122D96F9693B5BF0] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\Windows\SysWOW64\vmnetdhcp.exe [366568] [PID.3360] =>.VMware, Inc.® [MD5.A84846E9779F6E9C2D7E90B97EDDBA79] - (.Genie9 - Zoolz 2 Service.) -- C:\Program Files\Genie9\Zoolz2\ZoolzService.exe [475976] [PID.3432] =>.Genie9 LTD® [MD5.E4BD6883FE35DA9D625AD1672E3AE3D9] - (.Adobe Systems, Incorporated - Adobe Genuine Software Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2910696] [PID.3468] =>.Adobe Systems Incorporated® [MD5.0A527B4AEE41D2E3AC77634D59E162B4] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2704872] [PID.3476] =>.Adobe Systems Incorporated® [MD5.6512B81AD10BADAC903DC9AD82F4B483] - (...) -- C:\Program Files (x86)\ExpressVPN\xvpnd\xvpnd.exe [10014848] [PID.3756] =>.Express Vpn LLC® [MD5.AA08D77B69974E8830DCA4D468EBBD3B] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe [99816] [PID.3892] =>.VMware, Inc.® [MD5.0A3393F99FF0453617169467B1A9E6C5] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [915944] [PID.3932] =>.VMware, Inc.® [MD5.D88AD7E730B0C38AA64A5C887887215E] - (.Bitsum LLC - Process Lasso User Interface.) -- C:\Program Files\Process Lasso\processlasso.exe [1325304] [PID.2356] =>.Bitsum LLC® [MD5.1AAEEA2C3127FC0F2FBC65E55000CEAF] - (.Bitsum LLC - Process Lasso process management engine.) -- C:\Program Files\Process Lasso\processgovernor.exe [786168] [PID.5532] =>.Bitsum LLC® [MD5.1F6CDD2CB541CF249102AC7A802CC313] - (.Learnpulse - Screenpresso.) -- C:\Users\jseve\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe [12579424] [PID.1080] {526633C9E7F57A46B65651AAFA835505} =>.LearnPulse [MD5.A4610070814BD98149C3A0595A742915] - (.BitTorrent Inc. - BitTorrent.) -- C:\Users\jseve\AppData\Roaming\BitTorrent\BitTorrent.exe [1993664] [PID.6840] =>.BitTorrent Inc® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Crystal Rich Ltd - USB Safely Remove - an enhanced replacement.) -- C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe [6544992] [PID.7760] =>.Crystal Rich Ltd [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.BitTorrent Inc. - WebHelper.) -- C:\Users\jseve\AppData\Roaming\BitTorrent\updates\7.10.4_44633\bittorrentie.exe [398016] [PID.7340] =>.BitTorrent Inc® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.BitTorrent Inc. - WebHelper.) -- C:\Users\jseve\AppData\Roaming\BitTorrent\updates\7.10.4_44633\bittorrentie.exe [398016] [PID.6632] =>.BitTorrent Inc® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Vivaldi Technologies AS - Vivaldi.) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\vivaldi.exe [1546312] [PID.7452] =>.Vivaldi Technologies AS® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [307400] [PID.7448] =>.Advanced Micro Devices, Inc.® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Vivaldi Technologies AS - Vivaldi.) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\vivaldi.exe [1546312] [PID.5840] =>.Vivaldi Technologies AS® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Vivaldi Technologies AS - Vivaldi.) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\vivaldi.exe [1546312] [PID.8212] =>.Vivaldi Technologies AS® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [307912] [PID.8268] =>.Advanced Micro Devices, Inc.® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Vivaldi Technologies AS - Vivaldi.) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\vivaldi.exe [1546312] [PID.8428] =>.Vivaldi Technologies AS® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Vivaldi Technologies AS - Vivaldi.) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\vivaldi.exe [1546312] [PID.9044] =>.Vivaldi Technologies AS® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Vivaldi Technologies AS - Vivaldi.) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\vivaldi.exe [1546312] [PID.5448] =>.Vivaldi Technologies AS® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Vivaldi Technologies AS - Vivaldi.) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\vivaldi.exe [1546312] [PID.2952] =>.Vivaldi Technologies AS® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Vivaldi Technologies AS - Vivaldi.) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\vivaldi.exe [1546312] [PID.6104] =>.Vivaldi Technologies AS® [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\jseve\Desktop\ZHPDiag3.exe [3171200] [PID.3660] =>.Nicolas Coolman [MD5.E7C057C245C73E9FB736B87D2DB0EBDC] - (.Vivaldi Technologies AS - Vivaldi.) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\vivaldi.exe [1546312] [PID.5624] =>.Vivaldi Technologies AS® ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.17763.10000 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ---\\ INTERNET EXPLORER,Proxy Management (3) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (28) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (5) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc.® O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll =>.Microsoft Corporation® O2 - BHO: Adobe Acrobat Create PDF Helper [64Bits] - {AE7CD045-E861-484f-8273-0445EE161910} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll =>.Adobe Systems, Incorporated® O2 - BHO: Microsoft OneDrive for Business Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® O2 - BHO: SmartSelect [64Bits] - {F4971EE7-DAA0-4053-9964-665D8EE6A077} . (.Adobe Systems Incorporated - Adobe PDF Toolbar for Internet Explorer.) -- C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll =>.Adobe Systems, Incorporated® ---\\ RACCOURCIS GLOBAL STARTUP (233) - 20s O4 - GS\Desktop [Administrateur]: BitTorrent.lnk . (.BitTorrent Inc. - BitTorrent.) C:\Users\jseve\AppData\Roaming\BitTorrent\BitTorrent.exe =>.BitTorrent Inc® O4 - GS\Desktop [Administrateur]: Documents.lnk . (...) G:\Mes Documents O4 - GS\Desktop [Administrateur]: Excel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation O4 - GS\Desktop [Administrateur]: FILEminimizer Suite.lnk . (...) C:\Program Files (x86)\FILEminimizer Suite\FILEminimizer.exe {10B6FD813CF5986142C18F2BFBDAA1F2} O4 - GS\Desktop [Administrateur]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [Administrateur]: LAND.lnk . (...) C:\Program Files (x86)\TwoNav Land\LAND.exe O4 - GS\Desktop [Administrateur]: Macgo Windows Blu-ray Player.lnk . (...) C:\Program Files (x86)\MacGo\Mac Blu-ray Player\Mac Blu-ray Player.exe O4 - GS\Desktop [Administrateur]: Online_KMS_Activation_Script-Renewal - Raccourci.lnk . (...) C:\Windows\Online_KMS_Activation_Script\Online_KMS_Activation_Script-Renewal.cmd O4 - GS\Desktop [Administrateur]: PDFXCview.lnk . (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer.) G:\Mes Documents\utilitaires\version portables\PDF-XChange.Viewer.Pro.Portable.2.5.322.5.KaranPC\PDFXCview.exe =>.Tracker Software Products (Canada) Ltd. O4 - GS\Desktop [Administrateur]: USB Safely Remove.lnk . (.Crystal Rich Ltd - USB Safely Remove - an enhanced replacement.) C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe =>.Crystal Rich Ltd O4 - GS\Desktop [Administrateur]: Word.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation O4 - GS\Desktop [Administrateur]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\jseve\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\jseve\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrateur]: Zoolz.lnk . (.Genie9 - ZoolzLauncher.) C:\Program Files\Genie9\Zoolz2\ZoolzLauncher.exe -show =>.Genie9 LTD® O4 - GS\Quicklaunch [Administrateur]: USB Safely Remove.lnk . (.Crystal Rich Ltd - USB Safely Remove - an enhanced replacement.) C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe =>.Crystal Rich Ltd O4 - GS\Quicklaunch [Administrateur]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\jseve\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) G:\Mes Documents\utilitaires\version portables\VIVALDI PORTABLE\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\TaskBar [Administrateur]: XYplorer.lnk . (.Cologne Code Company - XYplorer.) G:\Mes Documents\utilitaires\version portables\XYplorerPROPortable\App\XYplorer\XYplorer.exe {1D3DBFAF89EA865A821FD1C12201443E} =>.Cologne Code Company O4 - GS\Programs [Administrateur]: Autoruns64.lnk . (.Sysinternals - www.sysinternals.com - Autostart program viewer.) G:\Mes Documents\utilitaires\autoruns\Autoruns64.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: BOOTICEx64.lnk . (.www.ipauly.com - 引导扇区维护工具.) G:\Mes Documents\utilitaires\version portables\BOOTICEx64.exe O4 - GS\Programs [Administrateur]: BurnAwarePortable.lnk . (.PortableAppZ.blogspot.com - BurnAware Portable.) G:\Mes Documents\utilitaires\version portables\BurnAware Professional 11.6 Portable\BurnAwarePortable.exe =>.PortableAppZ.blogspot.com O4 - GS\Programs [Administrateur]: CCleaner64.lnk . (.Piriform Ltd - CCleaner.) G:\Mes Documents\utilitaires\version portables\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\Programs [Administrateur]: Deezloader Remix 4.1.6 x64 Portable.lnk . (.RemixDevs - Download music from Deezer.) G:\Mes Documents\utilitaires\version portables\Deezloader Remix 4.1.6 x64 Portable.exe O4 - GS\Programs [Administrateur]: DriverEasy.lnk . (.Easeware - DriverEasy.) G:\Mes Documents\utilitaires\version portables\Driver Easy Pro v5.6.4\DriverEasy.exe =>.Easeware Technology Limited® O4 - GS\Programs [Administrateur]: EcMenu_x64.lnk . (.www.sordum.org - Easy Context Menu.) G:\Mes Documents\utilitaires\version portables\EditMenuContextuel_v1.6\EcMenu_x64.exe =>.www.sordum.org O4 - GS\Programs [Administrateur]: FileLocatorPro.lnk . (.Mythicsoft Ltd - FileLocator Pro.) G:\Mes Documents\utilitaires\version portables\FileLocator.Pro.8.2.Build.2766.Portable.x64\FileLocatorProPortable_x64\App\FileLocatorPro\FileLocatorPro.exe =>.Mythicsoft Ltd O4 - GS\Programs [Administrateur]: FileLocatorProPortable.lnk . (.Mythicsoft - FileLocatorPro Portable.) G:\Mes Documents\utilitaires\version portables\FileLocator.Pro.8.2.Build.2766.Portable.x64\FileLocatorProPortable_x64\FileLocatorProPortable.exe O4 - GS\Programs [Administrateur]: geek.lnk . (.Geek Unіnstaller - Geek Unіnstaller.) G:\Mes Documents\utilitaires\geek.exe =>.CrystalBit Solutions® O4 - GS\Programs [Administrateur]: Heredis19.lnk . (.BSD Concept - Heredis.) G:\Mes Documents\utilitaires\version portables\HEREDIES 2019 edition portable\Heredis19.exe =>.BSD Concept O4 - GS\Programs [Administrateur]: NetDisabler_x64.lnk . (.www.sordum.org - Net Disabler.) G:\Mes Documents\utilitaires\version portables\NetDisabler\NetDisabler_x64.exe =>.www.sordum.org O4 - GS\Programs [Administrateur]: notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) G:\Mes Documents\utilitaires\version portables\notpad.7.5.8.bin.x64\notepad++.exe =>.Notepad++® O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\jseve\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Palemoon-Portable.lnk . (...) G:\Mes Documents\utilitaires\version portables\Palmoon edition portable\Palemoon-Portable.exe =>.Markus Straver® O4 - GS\Programs [Administrateur]: PDFXCview.lnk . (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer.) G:\Mes Documents\utilitaires\version portables\PDF-XChange.Viewer.Pro.Portable.2.5.322.5.KaranPC\PDFXCview.exe =>.Tracker Software Products (Canada) Ltd. O4 - GS\Programs [Administrateur]: pfstudiox.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) G:\Mes Documents\utilitaires\version portables\PhotoFiltre.Studio.X.10.13.1.Portable\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Programs [Administrateur]: PhotoZoom.lnk . (.BenVista Ltd. - PhotoZoom Pro 7 Crack UZ1.) G:\Mes Documents\utilitaires\version portables\PhotoZoom Pro 7 Portable\App\PhotoZoom\PhotoZoom.exe =>.BenVista Ltd. O4 - GS\Programs [Administrateur]: RevoUnPro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) G:\Mes Documents\utilitaires\version portables\Revo.Uninstaller.Pro.3.2.0.Portable\x64\RevoUnPro.exe =>.VS Revo Group® O4 - GS\Programs [Administrateur]: RevoUPPort.lnk . (.VS Revo Group - .) G:\Mes Documents\utilitaires\version portables\Revo.Uninstaller.Pro.3.2.0.Portable\RevoUPPort.exe =>.VS Revo Group® O4 - GS\Programs [Administrateur]: rsthosts_2.lnk . (...) G:\Mes Documents\utilitaires\rsthosts_2.0.exe O4 - GS\Programs [Administrateur]: Screenpresso.lnk . (.Learnpulse - Screenpresso.) C:\Users\jseve\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe {526633C9E7F57A46B65651AAFA835505} =>.LearnPulse O4 - GS\Programs [Administrateur]: speedyfox.lnk . (.SpeedyFox - SpeedyFox program.) G:\Mes Documents\utilitaires\speedyfox.exe {4418E4044B5AB774FCAA9D61BD8E83B4} =>.SpeedyFox O4 - GS\Programs [Administrateur]: Start Commandline Scanner.lnk . (.Emsisoft Ltd - Emsisoft Commandline Starter.) G:\Mes Documents\utilitaires\version portables\EEK\Start Commandline Scanner.exe =>.Emsisoft Ltd® O4 - GS\Programs [Administrateur]: TrashRegPortable.lnk . (.nSane™ - Registry Trash Keys Finder Portable.) G:\Mes Documents\utilitaires\TrashRegPortable\TrashRegPortable.exe O4 - GS\Programs [Administrateur]: Tweak-SSD.lnk . (.Totalidea Software GmbH - Tweak-SSD v2.) G:\Mes Documents\utilitaires\version portables\Tweak-SSD v2.0.30.0 64 Bit Portable\Tweak-SSD.exe O4 - GS\Programs [Administrateur]: UniExtract.lnk . (.GNU General Public License v2 - Universal Extractor.) G:\Mes Documents\utilitaires\version portables\Universal Extractor\UniExtract.exe O4 - GS\Programs [Administrateur]: vivaldi (2).lnk . (.Vivaldi Technologies AS - Vivaldi.) G:\Mes Documents\utilitaires\version portables\VIVALDI PORTABLE\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Programs [Administrateur]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\jseve\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Programs [Administrateur]: WinaeroTweaker.lnk . (.https://winaero.com - WinaeroTweaker.) G:\Mes Documents\utilitaires\version portables\Winaero Tweaker\Winaero Tweaker\WinaeroTweaker.exe O4 - GS\Programs [Administrateur]: Windows 10 color control.lnk . (.Copyright 2015 - Windows 10 Color Control.) G:\Mes Documents\utilitaires\Windows 10 color control.exe O4 - GS\Programs [Administrateur]: Windows Update.lnk . (...) G:\Mes Documents\utilitaires\mini tool update\Elevate_WUMT.exe O4 - GS\Programs [Administrateur]: WinUSB_3.7.0.lnk . (...) G:\Mes Documents\utilitaires\version portables\WinUSB 3.7.0.0\WinUSB_3.7.0.exe O4 - GS\Programs [Administrateur]: WinXEditor.lnk . (.http://winaero.com - Win+X Menu Editor.) G:\Mes Documents\utilitaires\version portables\WinXEditor\WinXEditor.exe =>.http://winaero.com O4 - GS\Programs [Administrateur]: XYplorer.lnk . (.Cologne Code Company - XYplorer.) G:\Mes Documents\utilitaires\version portables\XYplorerPROPortable\App\XYplorer\XYplorer.exe {1D3DBFAF89EA865A821FD1C12201443E} =>.Cologne Code Company O4 - GS\Desktop [jseve]: Documents.lnk . (...) G:\Mes Documents O4 - GS\Desktop [jseve]: Excel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation O4 - GS\Desktop [jseve]: FILEminimizer Suite.lnk . (...) C:\Program Files (x86)\FILEminimizer Suite\FILEminimizer.exe {10B6FD813CF5986142C18F2BFBDAA1F2} O4 - GS\Desktop [jseve]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [jseve]: LAND.lnk . (...) C:\Program Files (x86)\TwoNav Land\LAND.exe O4 - GS\Desktop [jseve]: Macgo Windows Blu-ray Player.lnk . (...) C:\Program Files (x86)\MacGo\Mac Blu-ray Player\Mac Blu-ray Player.exe O4 - GS\Desktop [jseve]: Online_KMS_Activation_Script-Renewal - Raccourci.lnk . (...) C:\Windows\Online_KMS_Activation_Script\Online_KMS_Activation_Script-Renewal.cmd O4 - GS\Desktop [jseve]: PDFXCview.lnk . (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer.) G:\Mes Documents\utilitaires\version portables\PDF-XChange.Viewer.Pro.Portable.2.5.322.5.KaranPC\PDFXCview.exe =>.Tracker Software Products (Canada) Ltd. O4 - GS\Desktop [jseve]: USB Safely Remove.lnk . (.Crystal Rich Ltd - USB Safely Remove - an enhanced replacement.) C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe =>.Crystal Rich Ltd O4 - GS\Desktop [jseve]: Word.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation O4 - GS\Desktop [jseve]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\jseve\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [jseve]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\jseve\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [jseve]: Zoolz.lnk . (.Genie9 - ZoolzLauncher.) C:\Program Files\Genie9\Zoolz2\ZoolzLauncher.exe -show =>.Genie9 LTD® O4 - GS\Quicklaunch [jseve]: USB Safely Remove.lnk . (.Crystal Rich Ltd - USB Safely Remove - an enhanced replacement.) C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe =>.Crystal Rich Ltd O4 - GS\Quicklaunch [jseve]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\jseve\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [jseve]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [jseve]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [jseve]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) G:\Mes Documents\utilitaires\version portables\VIVALDI PORTABLE\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\TaskBar [jseve]: XYplorer.lnk . (.Cologne Code Company - XYplorer.) G:\Mes Documents\utilitaires\version portables\XYplorerPROPortable\App\XYplorer\XYplorer.exe {1D3DBFAF89EA865A821FD1C12201443E} =>.Cologne Code Company O4 - GS\Programs [jseve]: Autoruns64.lnk . (.Sysinternals - www.sysinternals.com - Autostart program viewer.) G:\Mes Documents\utilitaires\autoruns\Autoruns64.exe =>.Microsoft Corporation® O4 - GS\Programs [jseve]: BOOTICEx64.lnk . (.www.ipauly.com - 引导扇区维护工具.) G:\Mes Documents\utilitaires\version portables\BOOTICEx64.exe O4 - GS\Programs [jseve]: BurnAwarePortable.lnk . (.PortableAppZ.blogspot.com - BurnAware Portable.) G:\Mes Documents\utilitaires\version portables\BurnAware Professional 11.6 Portable\BurnAwarePortable.exe =>.PortableAppZ.blogspot.com O4 - GS\Programs [jseve]: CCleaner64.lnk . (.Piriform Ltd - CCleaner.) G:\Mes Documents\utilitaires\version portables\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\Programs [jseve]: Deezloader Remix 4.1.6 x64 Portable.lnk . (.RemixDevs - Download music from Deezer.) G:\Mes Documents\utilitaires\version portables\Deezloader Remix 4.1.6 x64 Portable.exe O4 - GS\Programs [jseve]: DriverEasy.lnk . (.Easeware - DriverEasy.) G:\Mes Documents\utilitaires\version portables\Driver Easy Pro v5.6.4\DriverEasy.exe =>.Easeware Technology Limited® O4 - GS\Programs [jseve]: EcMenu_x64.lnk . (.www.sordum.org - Easy Context Menu.) G:\Mes Documents\utilitaires\version portables\EditMenuContextuel_v1.6\EcMenu_x64.exe =>.www.sordum.org O4 - GS\Programs [jseve]: FileLocatorPro.lnk . (.Mythicsoft Ltd - FileLocator Pro.) G:\Mes Documents\utilitaires\version portables\FileLocator.Pro.8.2.Build.2766.Portable.x64\FileLocatorProPortable_x64\App\FileLocatorPro\FileLocatorPro.exe =>.Mythicsoft Ltd O4 - GS\Programs [jseve]: FileLocatorProPortable.lnk . (.Mythicsoft - FileLocatorPro Portable.) G:\Mes Documents\utilitaires\version portables\FileLocator.Pro.8.2.Build.2766.Portable.x64\FileLocatorProPortable_x64\FileLocatorProPortable.exe O4 - GS\Programs [jseve]: geek.lnk . (.Geek Unіnstaller - Geek Unіnstaller.) G:\Mes Documents\utilitaires\geek.exe =>.CrystalBit Solutions® O4 - GS\Programs [jseve]: Heredis19.lnk . (.BSD Concept - Heredis.) G:\Mes Documents\utilitaires\version portables\HEREDIES 2019 edition portable\Heredis19.exe =>.BSD Concept O4 - GS\Programs [jseve]: NetDisabler_x64.lnk . (.www.sordum.org - Net Disabler.) G:\Mes Documents\utilitaires\version portables\NetDisabler\NetDisabler_x64.exe =>.www.sordum.org O4 - GS\Programs [jseve]: notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) G:\Mes Documents\utilitaires\version portables\notpad.7.5.8.bin.x64\notepad++.exe =>.Notepad++® O4 - GS\Programs [jseve]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\jseve\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [jseve]: Palemoon-Portable.lnk . (...) G:\Mes Documents\utilitaires\version portables\Palmoon edition portable\Palemoon-Portable.exe =>.Markus Straver® O4 - GS\Programs [jseve]: PDFXCview.lnk . (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer.) G:\Mes Documents\utilitaires\version portables\PDF-XChange.Viewer.Pro.Portable.2.5.322.5.KaranPC\PDFXCview.exe =>.Tracker Software Products (Canada) Ltd. O4 - GS\Programs [jseve]: pfstudiox.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) G:\Mes Documents\utilitaires\version portables\PhotoFiltre.Studio.X.10.13.1.Portable\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Programs [jseve]: PhotoZoom.lnk . (.BenVista Ltd. - PhotoZoom Pro 7 Crack UZ1.) G:\Mes Documents\utilitaires\version portables\PhotoZoom Pro 7 Portable\App\PhotoZoom\PhotoZoom.exe =>.BenVista Ltd. O4 - GS\Programs [jseve]: RevoUnPro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) G:\Mes Documents\utilitaires\version portables\Revo.Uninstaller.Pro.3.2.0.Portable\x64\RevoUnPro.exe =>.VS Revo Group® O4 - GS\Programs [jseve]: RevoUPPort.lnk . (.VS Revo Group - .) G:\Mes Documents\utilitaires\version portables\Revo.Uninstaller.Pro.3.2.0.Portable\RevoUPPort.exe =>.VS Revo Group® O4 - GS\Programs [jseve]: rsthosts_2.lnk . (...) G:\Mes Documents\utilitaires\rsthosts_2.0.exe O4 - GS\Programs [jseve]: Screenpresso.lnk . (.Learnpulse - Screenpresso.) C:\Users\jseve\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe {526633C9E7F57A46B65651AAFA835505} =>.LearnPulse O4 - GS\Programs [jseve]: speedyfox.lnk . (.SpeedyFox - SpeedyFox program.) G:\Mes Documents\utilitaires\speedyfox.exe {4418E4044B5AB774FCAA9D61BD8E83B4} =>.SpeedyFox O4 - GS\Programs [jseve]: Start Commandline Scanner.lnk . (.Emsisoft Ltd - Emsisoft Commandline Starter.) G:\Mes Documents\utilitaires\version portables\EEK\Start Commandline Scanner.exe =>.Emsisoft Ltd® O4 - GS\Programs [jseve]: TrashRegPortable.lnk . (.nSane™ - Registry Trash Keys Finder Portable.) G:\Mes Documents\utilitaires\TrashRegPortable\TrashRegPortable.exe O4 - GS\Programs [jseve]: Tweak-SSD.lnk . (.Totalidea Software GmbH - Tweak-SSD v2.) G:\Mes Documents\utilitaires\version portables\Tweak-SSD v2.0.30.0 64 Bit Portable\Tweak-SSD.exe O4 - GS\Programs [jseve]: UniExtract.lnk . (.GNU General Public License v2 - Universal Extractor.) G:\Mes Documents\utilitaires\version portables\Universal Extractor\UniExtract.exe O4 - GS\Programs [jseve]: vivaldi (2).lnk . (.Vivaldi Technologies AS - Vivaldi.) G:\Mes Documents\utilitaires\version portables\VIVALDI PORTABLE\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Programs [jseve]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\jseve\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Programs [jseve]: WinaeroTweaker.lnk . (.https://winaero.com - WinaeroTweaker.) G:\Mes Documents\utilitaires\version portables\Winaero Tweaker\Winaero Tweaker\WinaeroTweaker.exe O4 - GS\Programs [jseve]: Windows 10 color control.lnk . (.Copyright 2015 - Windows 10 Color Control.) G:\Mes Documents\utilitaires\Windows 10 color control.exe O4 - GS\Programs [jseve]: Windows Update.lnk . (...) G:\Mes Documents\utilitaires\mini tool update\Elevate_WUMT.exe O4 - GS\Programs [jseve]: WinUSB_3.7.0.lnk . (...) G:\Mes Documents\utilitaires\version portables\WinUSB 3.7.0.0\WinUSB_3.7.0.exe O4 - GS\Programs [jseve]: WinXEditor.lnk . (.http://winaero.com - Win+X Menu Editor.) G:\Mes Documents\utilitaires\version portables\WinXEditor\WinXEditor.exe =>.http://winaero.com O4 - GS\Programs [jseve]: XYplorer.lnk . (.Cologne Code Company - XYplorer.) G:\Mes Documents\utilitaires\version portables\XYplorerPROPortable\App\XYplorer\XYplorer.exe {1D3DBFAF89EA865A821FD1C12201443E} =>.Cologne Code Company O4 - GS\Desktop [WDAGUtilityAccount]: Documents.lnk . (...) G:\Mes Documents O4 - GS\Desktop [WDAGUtilityAccount]: Excel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation O4 - GS\Desktop [WDAGUtilityAccount]: FILEminimizer Suite.lnk . (...) C:\Program Files (x86)\FILEminimizer Suite\FILEminimizer.exe {10B6FD813CF5986142C18F2BFBDAA1F2} O4 - GS\Desktop [WDAGUtilityAccount]: Internet Download Manager.lnk . (.Tonec Inc. - Internet Download Manager (IDM).) C:\Program Files (x86)\Internet Download Manager\IDMan.exe =>.Tonec Inc. O4 - GS\Desktop [WDAGUtilityAccount]: LAND.lnk . (...) C:\Program Files (x86)\TwoNav Land\LAND.exe O4 - GS\Desktop [WDAGUtilityAccount]: Macgo Windows Blu-ray Player.lnk . (...) C:\Program Files (x86)\MacGo\Mac Blu-ray Player\Mac Blu-ray Player.exe O4 - GS\Desktop [WDAGUtilityAccount]: Online_KMS_Activation_Script-Renewal - Raccourci.lnk . (...) C:\Windows\Online_KMS_Activation_Script\Online_KMS_Activation_Script-Renewal.cmd O4 - GS\Desktop [WDAGUtilityAccount]: PDFXCview.lnk . (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer.) G:\Mes Documents\utilitaires\version portables\PDF-XChange.Viewer.Pro.Portable.2.5.322.5.KaranPC\PDFXCview.exe =>.Tracker Software Products (Canada) Ltd. O4 - GS\Desktop [WDAGUtilityAccount]: USB Safely Remove.lnk . (.Crystal Rich Ltd - USB Safely Remove - an enhanced replacement.) C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe =>.Crystal Rich Ltd O4 - GS\Desktop [WDAGUtilityAccount]: Word.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation O4 - GS\Desktop [WDAGUtilityAccount]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\jseve\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [WDAGUtilityAccount]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\jseve\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [WDAGUtilityAccount]: Zoolz.lnk . (.Genie9 - ZoolzLauncher.) C:\Program Files\Genie9\Zoolz2\ZoolzLauncher.exe -show =>.Genie9 LTD® O4 - GS\Quicklaunch [WDAGUtilityAccount]: USB Safely Remove.lnk . (.Crystal Rich Ltd - USB Safely Remove - an enhanced replacement.) C:\Program Files (x86)\USB Safely Remove\USBSafelyRemove.exe =>.Crystal Rich Ltd O4 - GS\Quicklaunch [WDAGUtilityAccount]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\jseve\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\sendTo [WDAGUtilityAccount]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [WDAGUtilityAccount]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [WDAGUtilityAccount]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) G:\Mes Documents\utilitaires\version portables\VIVALDI PORTABLE\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\TaskBar [WDAGUtilityAccount]: XYplorer.lnk . (.Cologne Code Company - XYplorer.) G:\Mes Documents\utilitaires\version portables\XYplorerPROPortable\App\XYplorer\XYplorer.exe {1D3DBFAF89EA865A821FD1C12201443E} =>.Cologne Code Company O4 - GS\Programs [WDAGUtilityAccount]: Autoruns64.lnk . (.Sysinternals - www.sysinternals.com - Autostart program viewer.) G:\Mes Documents\utilitaires\autoruns\Autoruns64.exe =>.Microsoft Corporation® O4 - GS\Programs [WDAGUtilityAccount]: BOOTICEx64.lnk . (.www.ipauly.com - 引导扇区维护工具.) G:\Mes Documents\utilitaires\version portables\BOOTICEx64.exe O4 - GS\Programs [WDAGUtilityAccount]: BurnAwarePortable.lnk . (.PortableAppZ.blogspot.com - BurnAware Portable.) G:\Mes Documents\utilitaires\version portables\BurnAware Professional 11.6 Portable\BurnAwarePortable.exe =>.PortableAppZ.blogspot.com O4 - GS\Programs [WDAGUtilityAccount]: CCleaner64.lnk . (.Piriform Ltd - CCleaner.) G:\Mes Documents\utilitaires\version portables\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\Programs [WDAGUtilityAccount]: Deezloader Remix 4.1.6 x64 Portable.lnk . (.RemixDevs - Download music from Deezer.) G:\Mes Documents\utilitaires\version portables\Deezloader Remix 4.1.6 x64 Portable.exe O4 - GS\Programs [WDAGUtilityAccount]: DriverEasy.lnk . (.Easeware - DriverEasy.) G:\Mes Documents\utilitaires\version portables\Driver Easy Pro v5.6.4\DriverEasy.exe =>.Easeware Technology Limited® O4 - GS\Programs [WDAGUtilityAccount]: EcMenu_x64.lnk . (.www.sordum.org - Easy Context Menu.) G:\Mes Documents\utilitaires\version portables\EditMenuContextuel_v1.6\EcMenu_x64.exe =>.www.sordum.org O4 - GS\Programs [WDAGUtilityAccount]: FileLocatorPro.lnk . (.Mythicsoft Ltd - FileLocator Pro.) G:\Mes Documents\utilitaires\version portables\FileLocator.Pro.8.2.Build.2766.Portable.x64\FileLocatorProPortable_x64\App\FileLocatorPro\FileLocatorPro.exe =>.Mythicsoft Ltd O4 - GS\Programs [WDAGUtilityAccount]: FileLocatorProPortable.lnk . (.Mythicsoft - FileLocatorPro Portable.) G:\Mes Documents\utilitaires\version portables\FileLocator.Pro.8.2.Build.2766.Portable.x64\FileLocatorProPortable_x64\FileLocatorProPortable.exe O4 - GS\Programs [WDAGUtilityAccount]: geek.lnk . (.Geek Unіnstaller - Geek Unіnstaller.) G:\Mes Documents\utilitaires\geek.exe =>.CrystalBit Solutions® O4 - GS\Programs [WDAGUtilityAccount]: Heredis19.lnk . (.BSD Concept - Heredis.) G:\Mes Documents\utilitaires\version portables\HEREDIES 2019 edition portable\Heredis19.exe =>.BSD Concept O4 - GS\Programs [WDAGUtilityAccount]: NetDisabler_x64.lnk . (.www.sordum.org - Net Disabler.) G:\Mes Documents\utilitaires\version portables\NetDisabler\NetDisabler_x64.exe =>.www.sordum.org O4 - GS\Programs [WDAGUtilityAccount]: notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) G:\Mes Documents\utilitaires\version portables\notpad.7.5.8.bin.x64\notepad++.exe =>.Notepad++® O4 - GS\Programs [WDAGUtilityAccount]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\jseve\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [WDAGUtilityAccount]: Palemoon-Portable.lnk . (...) G:\Mes Documents\utilitaires\version portables\Palmoon edition portable\Palemoon-Portable.exe =>.Markus Straver® O4 - GS\Programs [WDAGUtilityAccount]: PDFXCview.lnk . (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer.) G:\Mes Documents\utilitaires\version portables\PDF-XChange.Viewer.Pro.Portable.2.5.322.5.KaranPC\PDFXCview.exe =>.Tracker Software Products (Canada) Ltd. O4 - GS\Programs [WDAGUtilityAccount]: pfstudiox.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) G:\Mes Documents\utilitaires\version portables\PhotoFiltre.Studio.X.10.13.1.Portable\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Programs [WDAGUtilityAccount]: PhotoZoom.lnk . (.BenVista Ltd. - PhotoZoom Pro 7 Crack UZ1.) G:\Mes Documents\utilitaires\version portables\PhotoZoom Pro 7 Portable\App\PhotoZoom\PhotoZoom.exe =>.BenVista Ltd. O4 - GS\Programs [WDAGUtilityAccount]: RevoUnPro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) G:\Mes Documents\utilitaires\version portables\Revo.Uninstaller.Pro.3.2.0.Portable\x64\RevoUnPro.exe =>.VS Revo Group® O4 - GS\Programs [WDAGUtilityAccount]: RevoUPPort.lnk . (.VS Revo Group - .) G:\Mes Documents\utilitaires\version portables\Revo.Uninstaller.Pro.3.2.0.Portable\RevoUPPort.exe =>.VS Revo Group® O4 - GS\Programs [WDAGUtilityAccount]: rsthosts_2.lnk . (...) G:\Mes Documents\utilitaires\rsthosts_2.0.exe O4 - GS\Programs [WDAGUtilityAccount]: Screenpresso.lnk . (.Learnpulse - Screenpresso.) C:\Users\jseve\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe {526633C9E7F57A46B65651AAFA835505} =>.LearnPulse O4 - GS\Programs [WDAGUtilityAccount]: speedyfox.lnk . (.SpeedyFox - SpeedyFox program.) G:\Mes Documents\utilitaires\speedyfox.exe {4418E4044B5AB774FCAA9D61BD8E83B4} =>.SpeedyFox O4 - GS\Programs [WDAGUtilityAccount]: Start Commandline Scanner.lnk . (.Emsisoft Ltd - Emsisoft Commandline Starter.) G:\Mes Documents\utilitaires\version portables\EEK\Start Commandline Scanner.exe =>.Emsisoft Ltd® O4 - GS\Programs [WDAGUtilityAccount]: TrashRegPortable.lnk . (.nSane™ - Registry Trash Keys Finder Portable.) G:\Mes Documents\utilitaires\TrashRegPortable\TrashRegPortable.exe O4 - GS\Programs [WDAGUtilityAccount]: Tweak-SSD.lnk . (.Totalidea Software GmbH - Tweak-SSD v2.) G:\Mes Documents\utilitaires\version portables\Tweak-SSD v2.0.30.0 64 Bit Portable\Tweak-SSD.exe O4 - GS\Programs [WDAGUtilityAccount]: UniExtract.lnk . (.GNU General Public License v2 - Universal Extractor.) G:\Mes Documents\utilitaires\version portables\Universal Extractor\UniExtract.exe O4 - GS\Programs [WDAGUtilityAccount]: vivaldi (2).lnk . (.Vivaldi Technologies AS - Vivaldi.) G:\Mes Documents\utilitaires\version portables\VIVALDI PORTABLE\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Programs [WDAGUtilityAccount]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\jseve\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Programs [WDAGUtilityAccount]: WinaeroTweaker.lnk . (.https://winaero.com - WinaeroTweaker.) G:\Mes Documents\utilitaires\version portables\Winaero Tweaker\Winaero Tweaker\WinaeroTweaker.exe O4 - GS\Programs [WDAGUtilityAccount]: Windows 10 color control.lnk . (.Copyright 2015 - Windows 10 Color Control.) G:\Mes Documents\utilitaires\Windows 10 color control.exe O4 - GS\Programs [WDAGUtilityAccount]: Windows Update.lnk . (...) G:\Mes Documents\utilitaires\mini tool update\Elevate_WUMT.exe O4 - GS\Programs [WDAGUtilityAccount]: WinUSB_3.7.0.lnk . (...) G:\Mes Documents\utilitaires\version portables\WinUSB 3.7.0.0\WinUSB_3.7.0.exe O4 - GS\Programs [WDAGUtilityAccount]: WinXEditor.lnk . (.http://winaero.com - Win+X Menu Editor.) G:\Mes Documents\utilitaires\version portables\WinXEditor\WinXEditor.exe =>.http://winaero.com O4 - GS\Programs [WDAGUtilityAccount]: XYplorer.lnk . (.Cologne Code Company - XYplorer.) G:\Mes Documents\utilitaires\version portables\XYplorerPROPortable\App\XYplorer\XYplorer.exe {1D3DBFAF89EA865A821FD1C12201443E} =>.Cologne Code Company O4 - GS\CommonDesktop [Public]: Adobe Acrobat DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat DC.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrobat.exe =>.Adobe Systems, Incorporated® O4 - GS\CommonDesktop [Public]: AIMP.lnk . (.AIMP DevTeam - AIMP.) C:\Program Files (x86)\AIMP\AIMP.exe =>.IP Izmaylov Artem Andreevich® O4 - GS\CommonDesktop [Public]: AOMEI Backupper Technician Plus.lnk . (.AOMEI Tech Co., Ltd. - AOMEI Backupper.) C:\Program Files (x86)\AOMEI Backupper\Backupper.exe =>.CHENGDU AOMEI Tech Co., Ltd.® O4 - GS\CommonDesktop [Public]: Betternet.lnk . (.Betternet Technologies Inc. - Betternet for Windows.) C:\Program Files (x86)\Betternet\4.1.1\Betternet.exe =>.BetterNet LLC® O4 - GS\CommonDesktop [Public]: Corel PaintShop Pro X7 (64-bit).lnk . (.Corel, Inc. - .) C:\Program Files (x86)\Corel\Corel PaintShop Pro X7 (64-bit)\Corel PaintShop Pro.exe =>.Corel, Inc. O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - Malwarebytes.) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe =>.Malwarebytes Corporation® O4 - GS\CommonDesktop [Public]: Postbox.lnk . (.Postbox, Inc. - Postbox.) C:\Program Files (x86)\Postbox\postbox.exe =>.Postbox, Inc. O4 - GS\CommonDesktop [Public]: VMware Workstation Pro.lnk . (.VMware, Inc. - VMware Workstation.) C:\Program Files (x86)\VMware\VMware Workstation\vmware.exe =>.VMware, Inc.® O4 - GS\Programs [Public]: Autoruns64.lnk . (.Sysinternals - www.sysinternals.com - Autostart program viewer.) G:\Mes Documents\utilitaires\autoruns\Autoruns64.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: BOOTICEx64.lnk . (.www.ipauly.com - 引导扇区维护工具.) G:\Mes Documents\utilitaires\version portables\BOOTICEx64.exe O4 - GS\Programs [Public]: BurnAwarePortable.lnk . (.PortableAppZ.blogspot.com - BurnAware Portable.) G:\Mes Documents\utilitaires\version portables\BurnAware Professional 11.6 Portable\BurnAwarePortable.exe =>.PortableAppZ.blogspot.com O4 - GS\Programs [Public]: CCleaner64.lnk . (.Piriform Ltd - CCleaner.) G:\Mes Documents\utilitaires\version portables\CCleaner\CCleaner64.exe =>.Piriform Ltd® O4 - GS\Programs [Public]: Deezloader Remix 4.1.6 x64 Portable.lnk . (.RemixDevs - Download music from Deezer.) G:\Mes Documents\utilitaires\version portables\Deezloader Remix 4.1.6 x64 Portable.exe O4 - GS\Programs [Public]: DriverEasy.lnk . (.Easeware - DriverEasy.) G:\Mes Documents\utilitaires\version portables\Driver Easy Pro v5.6.4\DriverEasy.exe =>.Easeware Technology Limited® O4 - GS\Programs [Public]: EcMenu_x64.lnk . (.www.sordum.org - Easy Context Menu.) G:\Mes Documents\utilitaires\version portables\EditMenuContextuel_v1.6\EcMenu_x64.exe =>.www.sordum.org O4 - GS\Programs [Public]: FileLocatorPro.lnk . (.Mythicsoft Ltd - FileLocator Pro.) G:\Mes Documents\utilitaires\version portables\FileLocator.Pro.8.2.Build.2766.Portable.x64\FileLocatorProPortable_x64\App\FileLocatorPro\FileLocatorPro.exe =>.Mythicsoft Ltd O4 - GS\Programs [Public]: FileLocatorProPortable.lnk . (.Mythicsoft - FileLocatorPro Portable.) G:\Mes Documents\utilitaires\version portables\FileLocator.Pro.8.2.Build.2766.Portable.x64\FileLocatorProPortable_x64\FileLocatorProPortable.exe O4 - GS\Programs [Public]: geek.lnk . (.Geek Unіnstaller - Geek Unіnstaller.) G:\Mes Documents\utilitaires\geek.exe =>.CrystalBit Solutions® O4 - GS\Programs [Public]: Heredis19.lnk . (.BSD Concept - Heredis.) G:\Mes Documents\utilitaires\version portables\HEREDIES 2019 edition portable\Heredis19.exe =>.BSD Concept O4 - GS\Programs [Public]: NetDisabler_x64.lnk . (.www.sordum.org - Net Disabler.) G:\Mes Documents\utilitaires\version portables\NetDisabler\NetDisabler_x64.exe =>.www.sordum.org O4 - GS\Programs [Public]: notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) G:\Mes Documents\utilitaires\version portables\notpad.7.5.8.bin.x64\notepad++.exe =>.Notepad++® O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\jseve\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Palemoon-Portable.lnk . (...) G:\Mes Documents\utilitaires\version portables\Palmoon edition portable\Palemoon-Portable.exe =>.Markus Straver® O4 - GS\Programs [Public]: PDFXCview.lnk . (.Tracker Software Products (Canada) Ltd. - PDF-XChange Viewer.) G:\Mes Documents\utilitaires\version portables\PDF-XChange.Viewer.Pro.Portable.2.5.322.5.KaranPC\PDFXCview.exe =>.Tracker Software Products (Canada) Ltd. O4 - GS\Programs [Public]: pfstudiox.lnk . (.PhotoFiltre - PhotoFiltre Studio X.) G:\Mes Documents\utilitaires\version portables\PhotoFiltre.Studio.X.10.13.1.Portable\PhotoFiltre Studio X\pfstudiox.exe =>.PhotoFiltre O4 - GS\Programs [Public]: PhotoZoom.lnk . (.BenVista Ltd. - PhotoZoom Pro 7 Crack UZ1.) G:\Mes Documents\utilitaires\version portables\PhotoZoom Pro 7 Portable\App\PhotoZoom\PhotoZoom.exe =>.BenVista Ltd. O4 - GS\Programs [Public]: RevoUnPro.lnk . (.VS Revo Group - Revo Uninstaller Pro.) G:\Mes Documents\utilitaires\version portables\Revo.Uninstaller.Pro.3.2.0.Portable\x64\RevoUnPro.exe =>.VS Revo Group® O4 - GS\Programs [Public]: RevoUPPort.lnk . (.VS Revo Group - .) G:\Mes Documents\utilitaires\version portables\Revo.Uninstaller.Pro.3.2.0.Portable\RevoUPPort.exe =>.VS Revo Group® O4 - GS\Programs [Public]: rsthosts_2.lnk . (...) G:\Mes Documents\utilitaires\rsthosts_2.0.exe O4 - GS\Programs [Public]: Screenpresso.lnk . (.Learnpulse - Screenpresso.) C:\Users\jseve\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe {526633C9E7F57A46B65651AAFA835505} =>.LearnPulse O4 - GS\Programs [Public]: speedyfox.lnk . (.SpeedyFox - SpeedyFox program.) G:\Mes Documents\utilitaires\speedyfox.exe {4418E4044B5AB774FCAA9D61BD8E83B4} =>.SpeedyFox O4 - GS\Programs [Public]: Start Commandline Scanner.lnk . (.Emsisoft Ltd - Emsisoft Commandline Starter.) G:\Mes Documents\utilitaires\version portables\EEK\Start Commandline Scanner.exe =>.Emsisoft Ltd® O4 - GS\Programs [Public]: TrashRegPortable.lnk . (.nSane™ - Registry Trash Keys Finder Portable.) G:\Mes Documents\utilitaires\TrashRegPortable\TrashRegPortable.exe O4 - GS\Programs [Public]: Tweak-SSD.lnk . (.Totalidea Software GmbH - Tweak-SSD v2.) G:\Mes Documents\utilitaires\version portables\Tweak-SSD v2.0.30.0 64 Bit Portable\Tweak-SSD.exe O4 - GS\Programs [Public]: UniExtract.lnk . (.GNU General Public License v2 - Universal Extractor.) G:\Mes Documents\utilitaires\version portables\Universal Extractor\UniExtract.exe O4 - GS\Programs [Public]: vivaldi (2).lnk . (.Vivaldi Technologies AS - Vivaldi.) G:\Mes Documents\utilitaires\version portables\VIVALDI PORTABLE\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Programs [Public]: Vivaldi.lnk . (.Vivaldi Technologies AS - Vivaldi.) C:\Users\jseve\AppData\Local\Vivaldi\Application\vivaldi.exe =>.Vivaldi Technologies AS® O4 - GS\Programs [Public]: WinaeroTweaker.lnk . (.https://winaero.com - WinaeroTweaker.) G:\Mes Documents\utilitaires\version portables\Winaero Tweaker\Winaero Tweaker\WinaeroTweaker.exe O4 - GS\Programs [Public]: Windows 10 color control.lnk . (.Copyright 2015 - Windows 10 Color Control.) G:\Mes Documents\utilitaires\Windows 10 color control.exe O4 - GS\Programs [Public]: Windows Update.lnk . (...) G:\Mes Documents\utilitaires\mini tool update\Elevate_WUMT.exe O4 - GS\Programs [Public]: WinUSB_3.7.0.lnk . (...) G:\Mes Documents\utilitaires\version portables\WinUSB 3.7.0.0\WinUSB_3.7.0.exe O4 - GS\Programs [Public]: WinXEditor.lnk . (.http://winaero.com - Win+X Menu Editor.) G:\Mes Documents\utilitaires\version portables\WinXEditor\WinXEditor.exe =>.http://winaero.com O4 - GS\Programs [Public]: XYplorer.lnk . (.Cologne Code Company - XYplorer.) G:\Mes Documents\utilitaires\version portables\XYplorerPROPortable\App\XYplorer\XYplorer.exe {1D3DBFAF89EA865A821FD1C12201443E} =>.Cologne Code Company O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\internet explorer\iexplore.exe {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Adobe Acrobat DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-1033-FFFF-7760-0C0F074E4100}\_SC_Acrobat.ico =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: Adobe Acrobat Distiller DC.lnk . (.Adobe Systems Incorporated. - Acrobat Distiller.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrodist.exe =>.Adobe Systems, Incorporated® O4 - GS\ProgramsCommon [Public]: Assistant Mise à jour de Windows 10.lnk . (...) C:\Windows10Upgrade\Windows10UpgraderApp.exe O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: OneDrive Entreprise.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVE.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: OneNote 2016.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Outlook.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Project.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\WINPROJ.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Skype Entreprise.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Visio.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\VISIO.EXE =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft Corporation ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{1a2952e3-e29e-4ce2-b637-b4dbd315718e}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{1a613683-9ed8-4e43-8724-576c3a274609}: DhcpNameServer = 8.8.8.8 =>.France Google Cloud ---\\ PROTOCOLE ADDITIONNEL (27) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL =>.Microsoft Corporation® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (5) - 1s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation® ---\\ LOGICIELS INSTALLÉS (96) - 20s O42 - Logiciel: Adobe Acrobat DC - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-1033-FFFF-7760-0C0F074E4100} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 31 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824298644} =>.Adobe Systems Incorporated O42 - Logiciel: AIMP - (.AIMP DevTeam.) [HKLM][64Bits] -- AIMP =>.IP Izmaylov Artem Andreevich® O42 - Logiciel: AMD Catalyst Control Center - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {3C7B5C75-FD82-BC1F-F148-89A3189EF385} =>.Advanced Micro Devices, Inc. O42 - Logiciel: AMD Catalyst Control Center - (.AMD.) [HKLM][64Bits] -- WUCCCApp =>.Advanced Micro Devices, Inc.® O42 - Logiciel: AMD Fuel - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {36FAF585-3D08-3D84-8330-4D048F4B6CE6} =>.Advanced Micro Devices, Inc. O42 - Logiciel: AOMEI Backupper Technician Plus - (.AOMEI Technology Co., Ltd..) [HKLM][64Bits] -- {A83692F5-3E9B-4E95-9E7E-B5DF5536CE9D}_is1 =>.AOMEI Technology Co., Ltd. O42 - Logiciel: Betternet for Windows 4.1.1 - (.Betternet Technologies Inc..) [HKLM][64Bits] -- {2E77104D-96E1-4A9C-86F2-C7CF8C805999} =>.Betternet Technologies Inc. O42 - Logiciel: BitTorrent - (.BitTorrent Inc..) [HKCU][64Bits] -- BitTorrent =>.BitTorrent Inc® O42 - Logiciel: Brother MFL-Pro Suite DCP-375CW - (.Brother Industries, Ltd..) [HKLM][64Bits] -- {6BF66AED-3EA4-4106-B240-5CE96C9B76B0} =>.Macrovision Corporation® O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {11087D24-567D-7D88-69C6-D7A08B5F4C47} =>.Advanced Micro Devices, Inc. O42 - Logiciel: Catalyst Control Center InstallProxy - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {D7D20EB4-BD89-05C0-05C6-33E5B762989E} =>.Advanced Micro Devices, Inc. O42 - Logiciel: Catalyst Control Center Localization All - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {5644668B-04A5-68F6-0AA9-03255877C58F} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Chinese Standard - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {6D7A146A-BD56-8EE1-FCC7-BE02013ACE36} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Chinese Traditional - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {AFDFBED8-CC9A-8E00-015D-845F0BF9D1E1} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Czech - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7E0B1563-7607-00D7-21CE-7DAFA6FF009C} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Danish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {1E93452B-BA3E-7375-958C-EBC5E8672A5E} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Dutch - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {C3EAC1D2-A492-7B08-A9D5-15EDD5EA1A89} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help English - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7D94356D-48E0-DE1A-423C-67A363C13771} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Finnish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F6860530-9733-0BB2-9C09-F25101076E78} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help French - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {AAAE97DA-1E8B-C0E9-F0E3-5481A09F97C8} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help German - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {3310DD5A-3695-3390-6F38-2B93D862FE02} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Greek - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {4D72F94C-95A5-AA85-E75B-A1A1CB8FCE7A} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Hungarian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {A3168DE0-479A-D5EC-59C4-0278C7DEC11C} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Italian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {71971AE8-C8F3-3C62-FB89-AC41A96761AB} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Japanese - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {6953ECF8-0B1B-FBD7-0DDB-84C82FBBC2F4} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Korean - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {5DA870C0-BC5C-BE96-5045-BD429959C0D3} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Norwegian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {87006B27-A5A6-9EF1-BA04-CD7284462419} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Polish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {BF44ADDF-E927-4B66-E829-4AF27BF6A58B} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Portuguese - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {5F3182EE-2532-3B96-2BBB-03B87F574E76} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Russian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {947E1256-258E-60A2-7331-44D09E61CF99} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Spanish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7F8B68A2-0CD0-7DAF-8955-1419C60886D3} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Swedish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {2B642F70-BA82-5E78-41CE-BDFFD5C37530} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Thai - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7DE27D8A-1D73-61EB-86F1-079AF7E55C3A} =>.Advanced Micro Devices, Inc. O42 - Logiciel: CCC Help Turkish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {2EA40F3D-0D93-A391-F383-6F1C708B80BF} =>.Advanced Micro Devices, Inc. O42 - Logiciel: ccc-utility64 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {D9C2E250-17A1-0D68-CB41-83232EC31C2C} =>.Advanced Micro Devices, Inc. O42 - Logiciel: Click Install if prompted - (.ExpressVpn.) [HKLM][64Bits] -- {40830C8E-936E-4E08-AE37-240FF3343927} =>.ExpressVPN O42 - Logiciel: CompeGPS LAND 7.7.2 - (.CompeGPS TEAM, S.L..) [HKLM][64Bits] -- CompeGPS_is1 =>.CompeGPS TEAM, S.L. O42 - Logiciel: Corel PaintShop Pro X7 - (.Corel Corporation.) [HKLM][64Bits] -- _{176F50D6-6857-49CE-B731-65F757EE3F0D} =>.Corel Corporation® O42 - Logiciel: ExpressVPN - (.ExpressVPN.) [HKLM][64Bits] -- {32631D9F-4985-47BA-82B4-95C24998985C} =>.ExpressVPN O42 - Logiciel: ExpressVPN - (.ExpressVPN.) [HKLM][64Bits] -- {9eb863a7-ae80-4d4c-8131-c11aca757b46} =>.Express Vpn LLC® O42 - Logiciel: FILEminimizer Suite - (.balesio AG.) [HKLM][64Bits] -- FILEminimizer Suite_is1 =>.balesio AG O42 - Logiciel: FolderIco 3.0 - (.teorex.) [HKLM][64Bits] -- {22C37D82-6137-40BF-8625-7A846ED65F3A}_is1 =>.Teorex O42 - Logiciel: FolderIco Cats Pack 2.0 - (.teorex.) [HKLM][64Bits] -- {21F0BA4E-17C4-49A7-999D-5275100CF678}_is1 =>.Teorex O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM][64Bits] -- {176F50D6-6857-49CE-B731-65F757EE3F0D} =>.Corel Corporation O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: IPM_PSP_COM64 - (.Corel Corporation.) [HKLM][64Bits] -- {17704FA2-B1D2-4D5C-A23D-BDA0D2BC9CC7} =>.Corel Corporation O42 - Logiciel: LAND 8.1 - (.CompeGPS TEAM, S.L..) [HKLM][64Bits] -- LAND_is1 =>.CompeGPS Team SL® O42 - Logiciel: Mac Blu-ray Player - (.Macgo Inc..) [HKLM][64Bits] -- Mac Blu-ray Player =>.Macgo Inc. O42 - Logiciel: Malwarebytes version 3.6.1.2711 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Corporation® O42 - Logiciel: Microsoft Office Professional Plus 2019 - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- Proplus2019Retail - fr-fr =>.Microsoft Corporation® O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation® O42 - Logiciel: Microsoft Project Professionnel 2019 - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- ProjectPro2019Retail - fr-fr =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visio Professionnel 2019 - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- VisioPro2019Retail - fr-fr =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x64) - 14.12.25810 - (.Microsoft Corporation.) [HKLM][64Bits] -- {e2ee15e2-a480-4bc5-bfb7-e9803d1d9823} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x86) - 14.12.25810 - (.Microsoft Corporation.) [HKLM][64Bits] -- {56e11d69-7cc9-40a5-a4f9-8f6190c4d84d} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2017 x64 Additional Runtime - 14.12.25810 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2CD849A7-86A1-34A6-B8F9-D72F5B21A9AE} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.12.25810 - (.Microsoft Corporation.) [HKLM][64Bits] -- {C99E2ADC-0347-336E-A603-F1992B09D582} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2017 x86 Additional Runtime - 14.12.25810 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7FED75A1-600C-394B-8376-712E2A8861F2} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.12.25810 - (.Microsoft Corporation.) [HKLM][64Bits] -- {828952EB-5572-3666-8CA9-000B6CE79350} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-007E-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Patch Heredis 2019 (coolghost) version 19 - (.coolghost.) [HKLM][64Bits] -- {4E0CBC44-734E-4B10-A2EB-993550EACF63}_is1 O42 - Logiciel: Postbox 6.1.4 (x86 en-US) - (.Postbox, Inc..) [HKLM][64Bits] -- Postbox 6.1.4 (x86 en-US) =>.Postbox, Inc. O42 - Logiciel: Process Lasso - (.Bitsum.) [HKLM][64Bits] -- ProcessLasso =>.Bitsum O42 - Logiciel: PSPPContent - (.Corel Corporation.) [HKLM][64Bits] -- {17289BF4-5826-447B-A20A-738044D0B3E5} =>.Corel Corporation O42 - Logiciel: PSPPHelp - (.Corel Corporation.) [HKLM][64Bits] -- {1735F0DE-B173-4116-BABC-653A12FB9238} =>.Corel Corporation O42 - Logiciel: PSPPro64 - (.Corel Corporation.) [HKLM][64Bits] -- {17511557-C430-486A-AB5A-87A8134B2613} =>.Corel Corporation O42 - Logiciel: Screenpresso - (.Learnpulse.) [HKCU][64Bits] -- Screenpresso {526633C9E7F57A46B65651AAFA835505} =>.LearnPulse O42 - Logiciel: Setup - (..) [HKLM][64Bits] -- {17088A4E-3CF3-4F12-926D-2A9E8085B8EC} O42 - Logiciel: Split Tunneling Driver - (.ExpressVpn.) [HKLM][64Bits] -- {F078B0B5-2F41-42C2-9162-B8C628D5E6FE} =>.ExpressVPN O42 - Logiciel: TAP-Windows 9.21.2 - (.OpenVPN Technologie.) [HKLM][64Bits] -- TAP-Windows =>.OpenVPN Technologie O42 - Logiciel: TeraCopy version 3.26 - (.Code Sector.) [HKLM][64Bits] -- TeraCopy_is1 =>.Code Sector® O42 - Logiciel: TwoNavDownloader version 1.42 - (.CompeGPS TEAM, S.L..) [HKLM][64Bits] -- TwoNavDownloader_is1 {0939D9D0A021C14F3EDB6A098A14C4D0} =>.CompeGPS TEAM, S.L. O42 - Logiciel: Ultra RAMDisk - (.ieungSoft.) [HKLM][64Bits] -- Ultra RAMDisk {0CADCE30D9F5189213BC56AD8063F81F} O42 - Logiciel: Unlocker 1.9.2 - (.Cedrick Collomb.) [HKLM][64Bits] -- Unlocker =>.Cedrick Collomb O42 - Logiciel: USB Safely Remove 6.1 - (.SafelyRemove.com.) [HKLM][64Bits] -- USB Safely Remove_is1 =>.SafelyRemove.com O42 - Logiciel: Vivaldi - (.Vivaldi.) [HKCU][64Bits] -- Vivaldi =>.Vivaldi Technologies AS® O42 - Logiciel: VMware Workstation - (.VMware, Inc..) [HKLM][64Bits] -- {0F2CF138-26A5-4C91-AE15-D935B5EB369E} =>.VMware, Inc. O42 - Logiciel: WinRAR 5.61 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Zoolz2 - (.Genie9.) [HKLM][64Bits] -- Zoolz2 =>.Genie9 ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (172) - 20s HKLM\SOFTWARE\Adobe =>.Adobe HKLM\SOFTWARE\ATI =>.ATI HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\Betternet =>.Betternet HKLM\SOFTWARE\Bitsum =>.Bitsum HKLM\SOFTWARE\Brother =>.Brother HKLM\SOFTWARE\Brother Industries, Ltd. =>.Brother Industries, Ltd. HKLM\SOFTWARE\CompeGPS =>.CompeGPS Team HKLM\SOFTWARE\ExpressVpn =>.ExpressVPN HKLM\SOFTWARE\Genie9 =>.Genie9 HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\MAXSOFT-OCRON =>.Maxsoft-Ocron, Inc HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Postbox HKLM\SOFTWARE\ProcessLasso =>.Bitsum Technologies HKLM\SOFTWARE\TechSmith =>.TechSmith HKLM\SOFTWARE\ThinPrint =>.ThinPrint HKLM\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\ATI =>.ATI HKLM\SOFTWARE\WOW6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\WOW6432Node\Betternet =>.Betternet HKLM\SOFTWARE\WOW6432Node\Bitsum =>.Bitsum HKLM\SOFTWARE\WOW6432Node\Brother =>.Brother HKLM\SOFTWARE\WOW6432Node\Brother Industries, Ltd. =>.Brother Industries, Ltd. HKLM\SOFTWARE\WOW6432Node\CompeGPS =>.CompeGPS Team HKLM\SOFTWARE\WOW6432Node\ExpressVpn =>.ExpressVPN HKLM\SOFTWARE\WOW6432Node\Genie9 =>.Genie9 HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\MAXSOFT-OCRON =>.Maxsoft-Ocron, Inc HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\Postbox HKLM\SOFTWARE\WOW6432Node\ProcessLasso =>.Bitsum Technologies HKLM\SOFTWARE\WOW6432Node\TechSmith =>.TechSmith HKLM\SOFTWARE\WOW6432Node\ThinPrint =>.ThinPrint HKLM\SOFTWARE\WOW6432Node\VMware, Inc. =>.VMware, Inc. HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\3.0 rc2 HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\AOMEI =>.AOMEI Tech Co HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\Avast Software =>.AVAST Software HKCU\SOFTWARE\BenVista =>.BenVista HKCU\SOFTWARE\Betternet =>.Betternet HKCU\SOFTWARE\BitTorrent =>.BitTorrent (P2P) HKCU\SOFTWARE\Brother =>.Brother HKCU\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o HKCU\SOFTWARE\Bsd Concept =>.BSD Concept HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Code Sector =>.Code Sector HKCU\SOFTWARE\Corel =>.Corel HKCU\SOFTWARE\CPUBalance HKCU\SOFTWARE\Dalton HKCU\SOFTWARE\DownloadManager =>.DownloadManager HKCU\SOFTWARE\East Imperial Soft =>.East Imperial Soft HKCU\SOFTWARE\ExpressVPN =>.ExpressVPN HKCU\SOFTWARE\Geek Uninstaller =>.Geek Uninstaller HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Icecream =>.Icecream HKCU\SOFTWARE\ieungSoft HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Iridium HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Obsidium HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\PEiD HKCU\SOFTWARE\PhotoFiltre Studio X =>.Antonio Da Cruz HKCU\SOFTWARE\PostboxApp HKCU\SOFTWARE\ProcessLasso =>.Bitsum Technologies HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\SafelyRemove HKCU\SOFTWARE\Spoon =>.Spoon Software HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\Sysinternals =>.Sysinternals HKCU\SOFTWARE\TechSmith =>.TechSmith HKCU\SOFTWARE\Teorex =>.Teorex HKCU\SOFTWARE\Totalidea Software =>.Totalidea Software HKCU\SOFTWARE\Trolltech =>.Trolltech HKCU\SOFTWARE\TSR Software =>.TSR Software HKCU\SOFTWARE\TwoNavDownloader HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKCU\SOFTWARE\Vivaldi =>.Vivaldi HKCU\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKCU\SOFTWARE\Winaero.com =>.Winaero HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\WixSharp =>.Legitimate HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Adobe =>.Adobe HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\Protexis64 HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\3.0 rc2 HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\AOMEI =>.AOMEI Tech Co HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\ATI =>.ATI HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Avast Software =>.AVAST Software HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\BenVista =>.BenVista HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Betternet =>.Betternet HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\BitTorrent =>.BitTorrent (P2P) HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Brother =>.Brother HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Browser Cleanup =>.Avast Software s.r.o HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Bsd Concept =>.BSD Concept HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Code Sector =>.Code Sector HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Corel =>.Corel HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\CPUBalance HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Dalton HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\DownloadManager =>.DownloadManager HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\East Imperial Soft =>.East Imperial Soft HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\ExpressVPN =>.ExpressVPN HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Geek Uninstaller =>.Geek Uninstaller HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Icecream =>.Icecream HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\ieungSoft HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\IM Providers =>.IM Providers HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Iridium HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Macromedia =>.Macromedia HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Obsidium HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Opera Software =>.Opera Software HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\PEiD HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\PhotoFiltre Studio X =>.Antonio Da Cruz HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\PostboxApp HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\ProcessLasso =>.Bitsum Technologies HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\SafelyRemove HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Spoon =>.Spoon Software HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Sysinternals =>.Sysinternals HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\TechSmith =>.TechSmith HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Teorex =>.Teorex HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Totalidea Software =>.Totalidea Software HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Trolltech =>.Trolltech HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\TSR Software =>.TSR Software HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\TwoNavDownloader HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Vivaldi =>.Vivaldi HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Winaero.com =>.Winaero HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\WixSharp =>.Legitimate HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-3076523476-1142008452-770512297-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ CONTENU DES DOSSIERS PROGRAMMES (260) - 12s O43 - CFD: 23/09/2018 - [] D -- C:\Program Files\AMD =>.Advanced Micro Devices, Inc.® O43 - CFD: 23/09/2018 - [] D -- C:\Program Files\ATI Technologies =>.ATI Technologies O43 - CFD: 10/10/2018 - [] D -- C:\Program Files\AVAST Software =>.AVAST Software s.r.o.® O43 - CFD: 10/10/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 28/09/2018 - [] D -- C:\Program Files\Corel =>.Corel Corporation O43 - CFD: 07/10/2018 - [] D -- C:\Program Files\Easy Context Menu O43 - CFD: 23/09/2018 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\Program Files\FolderIco =>.Shedko Software O43 - CFD: 27/09/2018 - [] D -- C:\Program Files\Genie9 =>.Genie9 LTD® O43 - CFD: 29/09/2018 - [0] D -- C:\Program Files\Hasleo O43 - CFD: 26/09/2018 - [0] D -- C:\Program Files\ILOVEPDF O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\internet explorer =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 28/09/2018 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 28/09/2018 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation O43 - CFD: 29/09/2018 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 04/10/2018 - [] D -- C:\Program Files\Process Lasso =>.Bitsum LLC® O43 - CFD: 29/09/2018 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\Program Files\TAP-Windows =>.OpenVPN Technologie O43 - CFD: 25/09/2018 - [] D -- C:\Program Files\TechSmith =>.TechSmith O43 - CFD: 07/10/2018 - [] D -- C:\Program Files\TeraCopy =>.Code Sector Inc. O43 - CFD: 23/09/2018 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\Program Files\Unlocker =>.Cedrick Collomb O43 - CFD: 23/09/2018 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\Program Files\windows nt =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 05/10/2018 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems, Incorporated® O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\AIMP =>.AIMP2 AUdio Software O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\AOMEI Backupper =>.AOMEI Tech Co O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\ATI Technologies =>.ATI Technologies O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Betternet =>.Betternet O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Brother =>.Brother O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Corel =>.Corel Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\ExpressVPN =>.Express Vpn LLC® O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\ExpressVpn SplitTunnel Driver =>.Express Vpn LLC® O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\ExpressVpn Tap Driver Win10 =>.ExprsVPN LLC® O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\FILEminimizer Suite {10B6FD813CF5986142C18F2BFBDAA1F2} O43 - CFD: 09/10/2018 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\MacGo =>.MacGo Inc. O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Postbox O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\TSR Soft =>.TSR Soft O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\TwoNav Land =>.CompeGPS Team SL® O43 - CFD: 10/10/2018 - [] D -- C:\Program Files (x86)\TwoNavDownloader {0939D9D0A021C14F3EDB6A098A14C4D0} O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Ultra RAMDisk O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\USB Safely Remove =>.Crystal Rich Ltd O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\VMware =>.VMware, Inc.® O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\windows nt =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP =>.AIMP2 AUdio Software O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center =>.Advanced Micro Devices Inc O43 - CFD: 28/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper =>.AOMEI Tech Co O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Betternet Technologies Inc =>.Betternet O43 - CFD: 24/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother =>.Brother O43 - CFD: 28/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel PaintShop Pro X7 O43 - CFD: 25/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ExpressVPN =>.ExpressVPN O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FILEminimizer Suite 8.0 O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FolderIco =>.Shedko Software O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Land O43 - CFD: 15/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes =>.Malwarebytes O43 - CFD: 28/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outils Microsoft Office =>.Microsoft Corporation O43 - CFD: 08/10/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Postbox O43 - CFD: 27/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Lasso O43 - CFD: 15/09/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ultra RAMDisk O43 - CFD: 27/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware =>.VMware O43 - CFD: 05/10/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 27/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zoolz O43 - CFD: 27/09/2018 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Aomei =>.AOMEI Tech Co O43 - CFD: 01/10/2018 - [] D -- C:\ProgramData\AomeiBR =>.AOMEI Technology O43 - CFD: 23/09/2018 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\ATI =>.ATI O43 - CFD: 10/10/2018 - [] D -- C:\ProgramData\AVAST Software =>.AVAST Software O43 - CFD: 24/09/2018 - [] D -- C:\ProgramData\Betternet =>.Betternet O43 - CFD: 24/09/2018 - [] D -- C:\ProgramData\Brother =>.Brother O43 - CFD: 23/09/2018 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 28/09/2018 - [] D -- C:\ProgramData\Corel =>.Corel Corporation O43 - CFD: 23/09/2018 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 24/09/2018 - [] D -- C:\ProgramData\Emsisoft =>.Emsisoft O43 - CFD: 25/09/2018 - [] D -- C:\ProgramData\ExpressVPN =>.ExpressVPN O43 - CFD: 29/09/2018 - [] D -- C:\ProgramData\FILEminimizer O43 - CFD: 23/09/2018 - [0] D -- C:\ProgramData\IDM =>.IDM O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 23/09/2018 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 25/09/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 25/09/2018 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 27/09/2018 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 27/09/2018 - [0] D -- C:\ProgramData\ProcessLasso O43 - CFD: 28/09/2018 - [] D -- C:\ProgramData\Protexis64 =>.Protexis Inc. O43 - CFD: 10/10/2018 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 25/09/2018 - [] D -- C:\ProgramData\TechSmith =>.TechSmith O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\Teorex =>.Teorex O43 - CFD: 10/10/2018 - [] D -- C:\ProgramData\TwoNav Land O43 - CFD: 10/10/2018 - [] D -- C:\ProgramData\TwoNavDownloader O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\TwoNavDownloader_Env O43 - CFD: 27/09/2018 - [] D -- C:\ProgramData\UniqueId =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\USBSRService =>.Crystal Rich Ltd O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 10/10/2018 - [] D -- C:\ProgramData\VMware =>.VMware O43 - CFD: 15/09/2018 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Common Files\system =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Common Files\ThinPrint =>.ThinPrint O43 - CFD: 09/10/2018 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\AIMP =>.AIMP2 AUdio Software O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\ATI =>.ATI O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\AVAST Software =>.AVAST Software O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\BitTorrent O43 - CFD: 09/10/2018 - [] RD -- C:\Users\jseve\AppData\Roaming\Brother =>.Brother O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\BSD Concept =>.BSD Concept O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Burnaware =>.BurnAware O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Corel =>.Corel Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\CrystalIdea Software =>.CrystalIdea Software O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Deezloader Remix O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\DMCache =>.DMCache O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Easeware =>.Easeware O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Geek Uninstaller =>.Geek Uninstaller O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Genie9 =>.Genie9 O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\IDM =>.IDM O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\InstallShield =>.InstallShield O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\IObit =>.IObit O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Learnpulse =>.LearnPulse O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 09/10/2018 - [] SD -- C:\Users\jseve\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Moonchild Productions =>.Moonchild Productions O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 10/10/2018 - [] HD -- C:\Users\jseve\AppData\Roaming\Obsidium =>.Game O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\PhotoFiltre Studio X =>.Antonio Da Cruz O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\PostboxApp O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\ProcessLasso O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Skype =>.Skype O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\TechSmith =>.TechSmith O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\TeraCopy =>.Code Sector Inc. O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Ulead Systems =>.Ulead Systems O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\USBSafelyRemove =>.Crystal Rich Ltd O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\VMware =>.VMware O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Adobe =>.Adobe O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\AMD =>.AMD O43 - CFD: 23/09/2018 - [0] SHD -- C:\Users\jseve\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Local\assembly =>.Assembly O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\ATI =>.ATI O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Local\AVAST Software =>.AVAST Software O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\CEF =>.CEF O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Corel PaintShop Pro =>.Corel O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\CrashRpt O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\DBG =>.DBG O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\ExpressVPN =>.ExpressVPN O43 - CFD: 23/09/2018 - [0] SHD -- C:\Users\jseve\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Icecream =>.Icecream O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Iridium O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\IsolatedStorage =>.id Software O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Learnpulse =>.LearnPulse O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\mbamtray =>.Malwarebytes O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Moonchild Productions =>.Moonchild Productions O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Opera Software =>.Opera Software O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\PackageStaging =>.Apcera O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\PostboxApp O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\StartIsBack =>.StartCom O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\TechSmith =>.TechSmith O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [0] SHD -- C:\Users\jseve\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\TSR_Software_-_www.tsr-so =>.TSR_Software O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Local\uts O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Vivaldi =>.Vivaldi O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\VMware =>.VMware O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\AppData\LocalLow\BitTorrent O43 - CFD: 09/10/2018 - [] SD -- C:\Users\jseve\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\Desktop\Iridium O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\Desktop\miniserver-master O43 - CFD: 09/10/2018 - [] RD -- C:\Users\jseve\Desktop\presse O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\Desktop\Speccy techn Version Portable O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\Desktop\Troyes 2018 O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\Desktop\UUP to Iso O43 - CFD: 09/10/2018 - [] D -- C:\Users\jseve\Desktop\uupdl-Dow O43 - CFD: 10/10/2018 - [] D -- C:\Users\jseve\Desktop\Vivaldi edition portable O43 - CFD: 15/09/2018 - [] RD -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] RD -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] RD -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 23/09/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 23/09/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Macgo Windows Blu-ray Player =>.MacGo O43 - CFD: 15/09/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] RD -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 15/09/2018 - [] RD -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker =>.Cedrick Collomb O43 - CFD: 25/09/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\USB Safely Remove =>.Crystal Rich Ltd O43 - CFD: 15/09/2018 - [] RD -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 05/10/2018 - [] D -- C:\Users\jseve\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 23/09/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 09/10/2018 - [] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 23/09/2018 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 25/09/2018 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 25/09/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\ExpressVPN =>.ExpressVPN O43 - CFD: 10/10/2018 - [0] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\VMware =>.VMware ---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 0s O106 - SIOI: [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc.® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office\root\Office16\GROOVEEX.DLL =>.Microsoft Corporation® O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONCEPTUELS (SCMH) (42) - 2s O108 - CMH1: Adobe.Acrobat.ContextMenu [64Bits] - {A6595CD1-BF77-430A-A452-18696685F7C7} . (.Adobe Systems Inc. - Adobe Acrobat Context Menu.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll =>.Adobe Systems, Incorporated® O108 - CMH1: AIMP [64Bits] - {1F77B17B-F531-44DB-ACA4-76ABB5010A28} . (.AIMP DevTeam - Context Menu Extension.) -- C:\Program Files (x86)\AIMP\System\aimp_menu64.dll =>.Artem Izmaylov® O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Windows® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: Copy To [64Bits] - {C2FBB630-2971-11D1-A18C-00C04FD75D13} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH3: Move To [64Bits] - {C2FBB631-2971-11D1-A18C-00C04FD75D13} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: Send To [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: UnlockerShellExtension [64Bits] - {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (...) -- C:\Program Files\Unlocker\UnlockerCOM.dll =>.Empty Loop® O108 - CMH4: AIMP [64Bits] - {1F77B17B-F531-44DB-ACA4-76ABB5010A28} . (.AIMP DevTeam - Context Menu Extension.) -- C:\Program Files (x86)\AIMP\System\aimp_menu64.dll =>.Artem Izmaylov® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Windows® O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - AMD Desktop Control Panel.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll =>.Advanced Micro Devices, Inc.® O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH6: Adobe.Acrobat.ContextMenu [64Bits] - {A6595CD1-BF77-430A-A452-18696685F7C7} . (.Adobe Systems Inc. - Adobe Acrobat Context Menu.) -- C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll =>.Adobe Systems, Incorporated® O108 - CMH6: Folderico [64Bits] - {CC0C45C5-EFDE-4B8A-A8B0-9ED733D9E6AC} . (.TeoreX - .) -- C:\Program Files\FolderIco\FolderIco.dll =>.Teorex O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll =>.Microsoft Corporation O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows® O108 - CMH6: UnlockerShellExtension [64Bits] - {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} . (...) -- C:\Program Files\Unlocker\UnlockerCOM.dll =>.Empty Loop® O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft Windows® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH7: VMDiskMenuHandler [64Bits] - {271DC252-6FE1-4D59-9053-E4CF50AB99DE} . (.Orphan.) O108 - CMH7: VMDiskMenuHandler64 [64Bits] - {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} . (.VMware, Inc. - VMware Workstation.) -- C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll =>.VMware, Inc.® ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (14) - 0s O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MusNotificationUx.exe - (.Microsoft Corporation - MusNotificationUx.exe.) [VerifierDlls\\MusNotificationUxDownloadDialogRemover.dll] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MusNotificationUx.exe - (.Microsoft Corporation - MusNotificationUx.exe.) [GlobalFlag\\0x100] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MusNotificationUx.exe - (.Microsoft Corporation - MusNotificationUx.exe.) [VerifierFlags\\2147483648] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] {33000001A90F2D80C9A929387C0000000001A9} =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MitigationAuditOptions\\17660905521152] {33000001A90F2D80C9A929387C0000000001A9} =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTÈME (458) - 14s O58 - SDL:2018/10/05 21:29:21 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [245248] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:21 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107520] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:21 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [790840] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:21 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [19968] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:51 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [132096] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:21 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [12800] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:21 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [16384] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:21 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [13312] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:21 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135616] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:54 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [655160] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:44 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [40960] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [113664] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:52 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [288256] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [198656] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [196608] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:21 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83456] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:21 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:21 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27136] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:52 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [201528] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:52 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:50 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) -- C:\WINDOWS\System32\drivers\AppVStrm.sys [137016] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:50 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) -- C:\WINDOWS\System32\drivers\AppvVemgr.sys [172560] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:50 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) -- C:\WINDOWS\System32\drivers\AppvVfs.sys [153400] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:21 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft Windows® O58 - SDL:2018/10/10 09:05:58 A . (.AVAST Software - Avast anti rootkit.) -- C:\WINDOWS\System32\drivers\aswArPot.sys [201408] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:48 A . (.AVAST Software - IDS Application Activity Monitor Driver..) -- C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [230512] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:48 A . (.AVAST Software - Application Activity Monitor Helper Driver.) -- C:\WINDOWS\System32\drivers\aswbidsha.sys [201928] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:48 A . (.AVAST Software - Logging Driver.) -- C:\WINDOWS\System32\drivers\aswbloga.sys [346760] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:48 A . (.AVAST Software - Universal Driver.) -- C:\WINDOWS\System32\drivers\aswbuniva.sys [59664] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:58 A . (.AVAST Software - Avast ELAM Driver.) -- C:\WINDOWS\System32\drivers\aswElam.sys [15360] =>.Microsoft Windows Early Launch Anti-malware Publisher® O58 - SDL:2018/10/10 09:05:49 A . (.AVAST Software - Home Network Security.) -- C:\WINDOWS\System32\drivers\aswHdsKe.sys [185240] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:58 A . (.AVAST Software - Avast HWID.) -- C:\WINDOWS\System32\drivers\aswHwid.sys [47064] =>.AVAST Software s.r.o.® (Avast Software s.r.o) O58 - SDL:2018/10/10 09:05:55 A . (.AVAST Software - Avast Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\aswKbd.sys [42456] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:58 A . (.AVAST Software - Avast File System Minifilter for Windows 20.) -- C:\WINDOWS\System32\drivers\aswMonFlt.sys [163376] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:58 A . (.AVAST Software - Avast WFP Redirect Driver.) -- C:\WINDOWS\System32\drivers\aswRdr2.sys [111968] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:58 A . (.AVAST Software - Avast Revert.) -- C:\WINDOWS\System32\drivers\aswRvrt.sys [88112] =>.AVAST Software s.r.o.® (Avast Software s.r.o) O58 - SDL:2018/10/10 09:05:51 A . (.AVAST Software - Avast Virtualization Driver.) -- C:\WINDOWS\System32\drivers\aswSnx.sys [1028840] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:58 A . (.AVAST Software - Avast self protection module.) -- C:\WINDOWS\System32\drivers\aswSP.sys [467904] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:58 A . (.AVAST Software - Stream Filter.) -- C:\WINDOWS\System32\drivers\aswStm.sys [208640] =>.AVAST Software s.r.o.® O58 - SDL:2018/10/10 09:05:58 A . (.AVAST Software - Avast VM Monitor.) -- C:\WINDOWS\System32\drivers\aswVmm.sys [381144] =>.AVAST Software s.r.o.® (Avast Software s.r.o) O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [31232] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30208] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [203264] =>.Microsoft Windows® O58 - SDL:2018/09/28 15:19:40 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [110096] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/12/16 20:07:42 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [21648880] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/12/16 20:07:40 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [674288] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2018/10/05 21:29:58 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [63288] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:21 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [40760] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:21 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Broadcom Corporation O58 - SDL:2018/10/05 21:29:58 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:58 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [101392] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:59 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [116224] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:44 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [126464] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:33:38 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [35328] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [111104] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:33:38 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\bthhfenum.sys [119808] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [34816] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:25 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [72192] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1219072] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [92672] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [42504] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [40960] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:30 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [63288] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - CapImg HID Driver.) -- C:\WINDOWS\System32\drivers\capimg.sys [125952] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:17 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [100352] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [165888] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:38 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [82432] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:22 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [142864] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:22 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319488] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:22 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [29696] =>.Chelsio Communications O58 - SDL:2018/10/05 21:29:22 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1866768] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [50688] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:18 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [431104] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:18 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [452096] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:20 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [405504] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:08 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1064248] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [34816] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:05 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [28984] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:19 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [730384] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:19 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [40248] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:20 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [60928] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:21 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [93496] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:46 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\WINDOWS\System32\drivers\csc.sys [579072] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:27 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [97592] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [46592] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:31 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [151040] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [97592] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:33 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [38200] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:35 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [57144] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [98304] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16328] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:35 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [36352] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:13 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [92592] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [192824] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:35 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32256] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:35 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [24576] =>.Microsoft Corporation O58 - SDL:2018/10/09 19:20:55 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [3378176] =>.Microsoft Windows® O58 - SDL:2018/10/09 19:20:55 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [439296] =>.Microsoft Windows® O58 - SDL:2018/10/09 19:20:55 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [863752] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:37 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [90936] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [119608] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [14336] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:30 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419152] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:39 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [402944] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:42 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [419128] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [35328] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:43 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [60416] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:43 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [94008] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:43 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [40448] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [28160] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:43 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [436736] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:40 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [67384] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:21 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [35328] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:13 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [798520] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:39 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [474936] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - Generic USB Function Class Driver.) -- C:\WINDOWS\System32\drivers\genericusbfn.sys [20992] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:49 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] =>.Microsoft Corporation O58 - SDL:2017/02/20 08:02:44 A . (.VMware, Inc. - VMware USB monitor.) -- C:\WINDOWS\System32\drivers\hcmon.sys [83008] =>.VMware, Inc.® O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [104960] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [398336] =>.Microsoft Corporation O58 - SDL:2009/09/17 19:54:54 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\HECIx64.sys [56344] =>.Intel Corporation® O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [39736] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [118272] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [209920] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [52224] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [51512] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [48640] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [60928] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [43520] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:51 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1258296] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [33280] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:42 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [80184] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:33:38 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [144696] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:50 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [29696] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [25400] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [32256] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [110592] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] =>.Intel(R) Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] =>.Intel(R) Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] =>.Intel Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] =>.Intel Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] =>.Intel Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] =>.Intel Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] =>.Intel Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] =>.Intel Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [180736] =>.Intel Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] =>.Intel Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation O58 - SDL:2018/09/28 15:20:18 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorAC.sys [967696] =>.Intel(R) Rapid Storage Technology® O58 - SDL:2018/09/28 15:20:22 A . (.Intel Corporation - Intel(R) Optane(TM) Memory Minifilter Drive.) -- C:\WINDOWS\System32\drivers\iaStorAfs.sys [72720] =>.Intel(R) Rapid Storage Technology® O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [885048] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:24 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [411960] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:27 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [566800] =>.Microsoft Windows® O58 - SDL:2018/09/28 15:30:05 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [226032] =>.Tonec Inc.® O58 - SDL:2018/10/05 21:30:53 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [45568] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19456] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [254952] {330000023F583D160705F7583300000000023F} =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [219648] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:07 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [55824] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:00 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [90112] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [95744] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:07 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [224768] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:07 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [42496] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:07 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\WINDOWS\System32\drivers\irda.sys [124928] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:07 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\WINDOWS\System32\drivers\irenum.sys [20992] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [23352] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:24 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [148480] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:30 A . (.Broadcom Corporation - Broadcom NetLink (TM) Gigabit Ethernet NDIS.) -- C:\WINDOWS\System32\drivers\k57nd60a.sys [446464] =>.Broadcom Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [67896] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [44544] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [24064] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:58 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [30720] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:08 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [448000] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:09 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [147968] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:10 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [178488] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:08 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [28672] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:44 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [71680] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109056] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:24 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124416] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:24 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [128512] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:24 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82944] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:10 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [135680] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:25 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [515384] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:25 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [58680] =>.Microsoft Windows® O58 - SDL:2018/09/11 13:18:22 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [152688] =>.Malwarebytes Corporation® O58 - SDL:2018/10/10 08:28:32 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [200232] =>.Malwarebytes Corporation® O58 - SDL:2018/10/05 21:31:29 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [290816] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:33:08 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [24576] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:27 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59904] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:27 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [75264] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:27 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [79872] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:27 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:33:38 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [53760] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [90624] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:27 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1150496] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:35 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [53248] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:41 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [46080] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [61952] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [61240] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [34816] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:27 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [112440] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:33:37 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [79360] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:52 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [157696] =>.Microsoft Corporation O58 - SDL:2018/10/09 19:20:57 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [535040] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:26 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [262456] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:35 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [33792] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:49 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [174904] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [51000] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:35 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:36 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [12288] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:44 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [27648] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [18744] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [292864] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:08 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [34816] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:08 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [81920] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:08 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [11264] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:08 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [11264] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:01 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [383288] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:33:44 A . (.Microsoft Corporation - Pilote du filtre de système de fichiers du.) -- C:\WINDOWS\System32\drivers\mssecflt.sys [317456] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [45880] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:08 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12800] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [16384] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:37 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [130360] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [153616] =>.Microsoft Windows® O58 - SDL:2018/10/09 19:20:57 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1360896] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:38 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [55808] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:42 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [134656] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [28672] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:42 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [69632] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:42 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [20992] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [206848] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [70144] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:42 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [132096] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:40 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [184320] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:43 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [64528] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:43 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [301568] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:43 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [588088] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [234808] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:44 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [79360] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:33 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [27136] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:45 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [47104] =>.Microsoft Corporation O58 - SDL:2018/10/09 19:20:57 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2625552] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:45 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [20480] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:45 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7168] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:34 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [148480] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150528] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:34 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166400] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:41 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [550912] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:43 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [159744] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [106496] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:52 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [176640] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:34 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [421176] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16696] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [56320] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:34 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [126264] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:52 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [57856] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:52 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [157184] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:52 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [816640] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:34 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58880] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:34 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68608] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:54 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [85504] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:34 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [117248] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:27 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [17408] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [381440] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:22 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [194048] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:37 A . (.Microsoft Corporation - Process Launch Monitor driver.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [36440] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:58 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [53248] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [41784] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [19968] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [111616] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [87552] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [103424] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:58 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [84992] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:00 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [453944] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [28160] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:39 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [166912] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [31760] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:00 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [295440] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:01 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [1969664] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:00 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [982016] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [202240] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Transport d’ordinateur virtuel Microsoft Re.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [43520] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [108032] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:01 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [158720] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:01 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:44 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13312] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:44 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [89088] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:38 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [59392] =>.Realtek O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [118584] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:26 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [44032] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [135168] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:33:09 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [186168] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [298296] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [33080] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:16 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [104248] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [102712] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:20 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [76088] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:08 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [156472] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [27648] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [89600] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [29184] =>.Microsoft Corporation O58 - SDL:2018/09/15 09:28:16 A . (.Microsoft Corporation - Serial Imaging Device Driver.) -- C:\WINDOWS\System32\drivers\serscan.sys [13312] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [18944] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:33:39 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [87552] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:35 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [45056] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:35 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81920] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:25 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [37176] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:35 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [219960] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:26 A . (.Microsoft Corporation - Pilote réseau SMB Direct.) -- C:\WINDOWS\System32\drivers\smbdirect.sys [171520] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:33:09 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [195584] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [653112] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:49 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [73016] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:26 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [82744] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:26 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [772096] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:26 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [293376] =>.Microsoft Corporation O58 - SDL:2017/05/18 22:17:28 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [131984] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2017/05/18 22:17:30 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [166288] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2018/10/05 21:29:35 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [164152] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:35 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [129848] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:29 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [612664] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:29 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [95544] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [51512] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [41784] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:29 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [81920] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - VSC vidéo Synth3D RemoteFX Microsoft.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [66560] =>.Microsoft Corporation O58 - SDL:2016/04/21 11:10:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [27136] =>.The OpenVPN Project O58 - SDL:2018/10/05 21:33:08 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [32768] =>.Microsoft Corporation O58 - SDL:2018/09/20 12:22:32 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tapexpressvpn.sys [45024] =>.ExprsVPN LLC® O58 - SDL:2018/10/05 21:32:40 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [28472] =>.Microsoft Windows® O58 - SDL:2018/10/09 19:20:57 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2927096] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:08 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [54272] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:39 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [39224] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:39 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [132408] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [38944] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:40 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [140288] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [248120] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:37 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [64512] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [35840] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - Concentrateur USB du Bureau à distance.) -- C:\WINDOWS\System32\drivers\tsusbhub.sys [131072] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:40 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [124416] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [84792] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:42 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [146944] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:41 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [162304] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - USB Connector Manager UCSI Client.) -- C:\WINDOWS\System32\drivers\UcmUcsi.sys [61440] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [31232] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:42 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [99840] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:42 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [236344] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:44 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [48128] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:42 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [340480] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\WINDOWS\System32\drivers\uefi.sys [30008] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:50 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) -- C:\WINDOWS\System32\drivers\UevAgentDriver.sys [41272] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:59 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [292152] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - UFX Chipidea Client Driver.) -- C:\WINDOWS\System32\drivers\UfxChipidea.sys [99640] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [147256] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\WINDOWS\System32\drivers\umbus.sys [56832] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [13312] =>.Microsoft Corporation O58 - SDL:2018/09/23 16:17:07 A . (.ieungSoft - Ultra RAMDisk Bus Enumerator Driver.) -- C:\WINDOWS\System32\drivers\URDBus.sys [20072] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2018/09/23 16:17:07 A . (.ieungSoft - Ultra RAMDisk SCSI Controller Driver.) -- C:\WINDOWS\System32\drivers\URDSCSI.sys [257128] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - USB Role-Switch Driver for Chipidea Core.) -- C:\WINDOWS\System32\drivers\urschipidea.sys [28472] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:44 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [68920] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - USB Role-Switch Driver for Synopsys Core.) -- C:\WINDOWS\System32\drivers\urssynopsys.sys [27448] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:01 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [24576] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [191488] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:44 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [39936] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [179000] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [106496] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [33592] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [99128] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [535352] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:36 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [586552] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30720] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:44 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [48640] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [475960] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [29184] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [73216] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [138552] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [35840] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [300544] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [467768] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [55608] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:35 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [237056] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [751928] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:24 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [37376] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [519696] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:46 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [47104] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:42 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [91960] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [127288] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [27648] =>.Microsoft Corporation O58 - SDL:2016/09/30 01:12:02 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\WINDOWS\System32\drivers\vmci.sys [105024] =>.VMware, Inc.® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [21816] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [18232] =>.Microsoft Windows® O58 - SDL:2018/01/08 23:05:20 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnet.sys [46032] =>.VMware, Inc.® O58 - SDL:2018/01/08 23:05:20 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\WINDOWS\System32\drivers\vmnetadapter.sys [46040] =>.VMware, Inc.® O58 - SDL:2018/01/08 23:05:20 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnetbridge.sys [66520] =>.VMware, Inc.® O58 - SDL:2018/01/08 23:05:20 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\WINDOWS\System32\drivers\vmnetuserif.sys [43992] =>.VMware, Inc.® O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [9216] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [51512] =>.Microsoft Windows® O58 - SDL:2018/01/08 23:16:24 A . (.VMware, Inc. - VMware kernel driver.) -- C:\WINDOWS\System32\drivers\vmx86.sys [88496] =>.VMware, Inc.® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [89912] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:35 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [389944] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:46 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [427832] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16696] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [79672] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft Windows® O58 - SDL:2016/09/30 01:12:02 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\WINDOWS\System32\drivers\vsock.sys [91712] =>.VMware, Inc.® O58 - SDL:2018/10/05 21:29:37 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:47 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [27648] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:47 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [78336] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:47 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [47616] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:23 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [30720] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:59 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [92160] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:50 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [63488] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:06 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [169784] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:06 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [87040] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:33:42 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46584] {3300000220BC89A12B33CC03A4000000000220} =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:51 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [843496] {33000000550D89C9E5CB24146C000100000055} =>.Microsoft Corporation O58 - SDL:2018/10/05 21:33:42 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [340008] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:51 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [67304] {33000000550D89C9E5CB24146C000100000055} =>.Microsoft Corporation O58 - SDL:2018/10/05 21:31:41 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [806912] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:45 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [22016] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:33:42 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [61992] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:30:38 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [49976] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:44 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [179712] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:52 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [36664] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:40 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [74216] {330000023F583D160705F7583300000000023F} =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [17896] {330000023F583D160705F7583300000000023F} =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:43 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [32568] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:43 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [86328] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:28 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [37688] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:54 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [240128] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:54 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\winquic.sys [156984] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [95744] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:28 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [77856] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:29:37 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [19456] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:56 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [20480] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:31:47 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [224056] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:47 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [30008] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:58 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [40448] =>.Microsoft Windows® O58 - SDL:2018/10/05 21:32:49 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [24576] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:25 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [134656] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:30:25 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [282112] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [317440] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:29:38 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [48128] =>.Microsoft Corporation O58 - SDL:2016/12/21 22:54:56 A . (...) -- C:\WINDOWS\System32\ambakdrv.sys [51120] =>.CHENGDU AOMEI Tech Co., Ltd.® O58 - SDL:2016/12/21 22:52:42 A . (...) -- C:\WINDOWS\System32\ammntdrv.sys [171952] =>.CHENGDU AOMEI Tech Co., Ltd.® O58 - SDL:2017/09/01 18:12:38 A . (...) -- C:\WINDOWS\System32\amwrtdrv.sys [38320] =>.CHENGDU AOMEI Tech Co., Ltd.® O58 - SDL:2018/10/05 21:32:52 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [545792] =>.Microsoft Corporation O58 - SDL:2018/10/09 19:20:55 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2488320] =>.Microsoft Corporation O58 - SDL:2018/10/09 19:20:56 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3662336] =>.Microsoft Corporation O58 - SDL:2018/10/05 21:32:52 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [17920] =>.Microsoft Corporation ---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (23) - 26s O61 - LFC: 2018/10/10 09:06:41 A . (..) -- C:\ProgramData\AVAST Software\Avast\Cache\InstallLocation\OneDriveSetup.exe [312] O61 - LFC: 2018/09/28 14:22:13 RSH . (..) -- C:\ProgramData\Protexis64\1B24F248CE.sys [104] O61 - LFC: 2018/09/28 14:22:31 ASH . (..) -- C:\ProgramData\Protexis64\KGyGaAvL.sys [2354] O61 - LFC: 2018/09/28 17:33:09 A . (.FILEminimizerExcelAdd-In.) -- C:\Users\jseve\AppData\Local\assembly\dl3\RZBNHEW1.1HV\26M8B7N8.WEN\054efe7a\009018e4_bcc6cf01\fmexcel.DLL [37656] {10B6FD813CF5986142C18F2BFBDAA1F2} O61 - LFC: 2018/09/28 17:45:12 A . (.FILEminimizerPowerPointAdd-In.) -- C:\Users\jseve\AppData\Local\assembly\dl3\RZBNHEW1.1HV\26M8B7N8.WEN\0ef3c254\009018e4_bcc6cf01\fmpower.DLL [29976] {10B6FD813CF5986142C18F2BFBDAA1F2} O61 - LFC: 2018/09/23 19:27:22 A . (..) -- C:\Users\jseve\AppData\Local\assembly\dl3\RZBNHEW1.1HV\26M8B7N8.WEN\1db78ac6\00bd49e5_bcc6cf01\Interop.Office.DLL [157976] {10B6FD813CF5986142C18F2BFBDAA1F2} O61 - LFC: 2018/09/28 17:33:09 A . (.FILEminimizerExcelAdd-In.) -- C:\Users\jseve\AppData\Local\assembly\dl3\RZBNHEW1.1HV\26M8B7N8.WEN\21deca31\0036b6e1_bcc6cf01\fmexcel.resources.DLL [18712] {10B6FD813CF5986142C18F2BFBDAA1F2} O61 - LFC: 2018/09/28 17:45:13 A . (.FILEminimizerPowerPointAdd-In.) -- C:\Users\jseve\AppData\Local\assembly\dl3\RZBNHEW1.1HV\26M8B7N8.WEN\44c69c4e\0036b6e1_bcc6cf01\fmpower.resources.DLL [19224] {10B6FD813CF5986142C18F2BFBDAA1F2} O61 - LFC: 2018/09/29 18:34:56 A . (.FILEminimizerExcelAdd-In.) -- C:\Users\jseve\AppData\Local\assembly\dl3\RZBNHEW1.1HV\26M8B7N8.WEN\765be30f\0036b6e1_bcc6cf01\fmexcel.resources.DLL [18712] {10B6FD813CF5986142C18F2BFBDAA1F2} O61 - LFC: 2018/09/29 18:34:55 A . (.FILEminimizerExcelAdd-In.) -- C:\Users\jseve\AppData\Local\assembly\dl3\RZBNHEW1.1HV\26M8B7N8.WEN\7bb03b45\009018e4_bcc6cf01\fmexcel.DLL [37656] {10B6FD813CF5986142C18F2BFBDAA1F2} O61 - LFC: 2018/10/10 08:06:31 A . (..) -- C:\Users\jseve\AppData\Local\assembly\dl3\RZBNHEW1.1HV\26M8B7N8.WEN\950ef3e2\00bd49e5_bcc6cf01_0\Interop.Word.DLL [502040] {10B6FD813CF5986142C18F2BFBDAA1F2} O61 - LFC: 2018/09/23 19:27:22 A . (..) -- C:\Users\jseve\AppData\Local\assembly\dl3\RZBNHEW1.1HV\26M8B7N8.WEN\d7caf9ab\00bd49e5_bcc6cf01\Interop.Word.DLL [502040] {10B6FD813CF5986142C18F2BFBDAA1F2} O61 - LFC: 2018/09/29 18:34:56 A . (..) -- C:\Users\jseve\AppData\Local\assembly\dl3\RZBNHEW1.1HV\26M8B7N8.WEN\f158f0b4\009018e4_bcc6cf01\Interop.Excel.DLL [956696] {10B6FD813CF5986142C18F2BFBDAA1F2} O61 - LFC: 2018/09/23 15:47:28 A . (.Amazon.com, Inc.) -- C:\Users\jseve\AppData\Local\Learnpulse\Screenpresso\References\AWSSDK.Core.dll [732160] O61 - LFC: 2018/09/23 15:47:28 A . (.Amazon.com, Inc.) -- C:\Users\jseve\AppData\Local\Learnpulse\Screenpresso\References\AWSSDK.S3.dll [506880] O61 - LFC: 2018/09/23 15:47:28 A . (.GemBox Software.) -- C:\Users\jseve\AppData\Local\Learnpulse\Screenpresso\References\GemBox.Document.dll [2080768] O61 - LFC: 2018/09/23 15:12:28 A . (..) -- C:\Users\jseve\AppData\Local\Microsoft\WindowsApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe [0] O61 - LFC: 2018/09/23 15:12:28 A . (..) -- C:\Users\jseve\AppData\Local\Microsoft\WindowsApps\MicrosoftEdge.exe [0] O61 - LFC: 2018/09/25 13:50:13 A . (.Copyright (C) 2016 Google Inc..) -- C:\Users\jseve\AppData\Local\Vivaldi\Application\2.0.1309.29\swiftshader\libegl.dll [143168] O61 - LFC: 2018/09/25 13:50:14 A . (.Copyright (C) 2016 Google Inc..) -- C:\Users\jseve\AppData\Local\Vivaldi\Application\2.0.1309.29\swiftshader\libglesv2.dll [2671936] O61 - LFC: 2018/10/10 09:00:24 A . (.BitTorrent Inc..) -- C:\Users\jseve\Desktop\BitTorrent (1).exe [2912840] {4C2CF9383407889E51D49459} =>BitTorrent (P2P) O61 - LFC: 2018/10/02 04:43:05 A . (.Copyright (C) 2016 Google Inc..) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\2.0.1309.37\swiftshader\libegl.dll [143168] O61 - LFC: 2018/10/02 04:43:05 A . (.Copyright (C) 2016 Google Inc..) -- C:\Users\jseve\Desktop\Vivaldi edition portable\Application\2.0.1309.37\swiftshader\libglesv2.dll [2671936] ---\\ ASSOCIATION Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (4) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (2) - 0s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (50) - 0s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192512] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [192512] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [273920] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1280000] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1058304] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [833024] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [31232] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151552] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110080] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [901632] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [228352] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [469504] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [478208] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [121856] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [270336] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1671680] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [312320] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223744] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1265152] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [949248] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [370176] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1462272] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\Windows\System32\irmon.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [104448] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [924672] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [500736] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73728] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [629760] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [310784] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2988032] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1388032] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [616448] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58368] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [889344] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [255488] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2185728] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1228800] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [883712] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [332800] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [833024] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [240128] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [169984] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [176640] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049600] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1255936] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [198656] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [454144] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (19) - 3s O87 - FAEL: "TCP Query User{F44E2B8C-E1E3-4BDD-B853-0F1439104FD4}G:\mes documents\utilitaires\bittorrent pro 7.10.3 (build-44429)\bittorrent (7.10.3 build 44429) - portable\bittorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- G:\mes documents\utilitaires\bittorrent pro 7.10.3 (build-44429)\bittorrent (7.10.3 build 44429) - portable\bittorrent.exe =>.BitTorrent Inc® O87 - FAEL: "UDP Query User{BA0ADFE8-F566-40C6-90EC-46A33EF2A9F5}G:\mes documents\utilitaires\bittorrent pro 7.10.3 (build-44429)\bittorrent (7.10.3 build 44429) - portable\bittorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- G:\mes documents\utilitaires\bittorrent pro 7.10.3 (build-44429)\bittorrent (7.10.3 build 44429) - portable\bittorrent.exe =>.BitTorrent Inc® O87 - FAEL: "{97C00AAF-92B7-49BB-88D0-C1F60F2FE629}" [In-None-P6-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.® O87 - FAEL: "{2862EA39-E67B-4CB3-A3C4-F63205870EE5}" [In-None-P17-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI Backupper Schedule task service.) -- C:\Program Files (x86)\AOMEI Backupper\ABService.exe =>.CHENGDU AOMEI Tech Co., Ltd.® O87 - FAEL: "TCP Query User{D0414477-88F1-4E82-8288-5CB4D769352C}G:\mes documents\utilitaires\version portables\heredies 2019 edition portable\heredis19.exe" [In-None-P6-TRUE] .(.BSD Concept - Heredis.) -- G:\mes documents\utilitaires\version portables\heredies 2019 edition portable\heredis19.exe =>.BSD Concept O87 - FAEL: "UDP Query User{E28247EC-5090-484A-A45C-47BBA4F8B254}G:\mes documents\utilitaires\version portables\heredies 2019 edition portable\heredis19.exe" [In-None-P17-TRUE] .(.BSD Concept - Heredis.) -- G:\mes documents\utilitaires\version portables\heredies 2019 edition portable\heredis19.exe =>.BSD Concept O87 - FAEL: "TCP Query User{8F6CFA78-70BC-43D9-BAA8-E24D67FD0A67}C:\users\jseve\desktop\miniserver-master\files\php\php.exe" [In-None-P6-TRUE] .(.The PHP Group - CLI.) -- C:\users\jseve\desktop\miniserver-master\files\php\php.exe =>.The PHP Group O87 - FAEL: "UDP Query User{5EA07A66-D408-464C-BC61-0653A70B85A4}C:\users\jseve\desktop\miniserver-master\files\php\php.exe" [In-None-P17-TRUE] .(.The PHP Group - CLI.) -- C:\users\jseve\desktop\miniserver-master\files\php\php.exe =>.The PHP Group O87 - FAEL: "TCP Query User{04187D61-971B-4161-8346-F6F400159D43}C:\users\jseve\desktop\miniserver-master\files\aria2c\aria2c.exe" [In-None-P6-TRUE] .(...) -- C:\users\jseve\desktop\miniserver-master\files\aria2c\aria2c.exe O87 - FAEL: "UDP Query User{159E2F79-7F1D-4718-8ECD-2678E59CE852}C:\users\jseve\desktop\miniserver-master\files\aria2c\aria2c.exe" [In-None-P17-TRUE] .(...) -- C:\users\jseve\desktop\miniserver-master\files\aria2c\aria2c.exe O87 - FAEL: "{DD2BE059-5409-4F87-93CE-9FCA78D61CEE}" [In-None-P17-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® O87 - FAEL: "{901B399F-7C9A-422C-A0AE-D63207CBFCD6}" [In-None-P17-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe =>.VMware, Inc.® O87 - FAEL: "{8B13F796-5C66-4194-93A4-2074CCE10BA2}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.® O87 - FAEL: "{620AB6EB-791A-4EE3-84CE-7EA7B9056910}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe =>.VMware, Inc.® O87 - FAEL: "{47B55C45-54D4-4720-9D08-816699C529CD}" [In-None-P6-TRUE] .(.AOMEI Tech Co., Ltd. - AOMEI PXE Boot Tool.) -- C:\Program Files (x86)\AOMEI Backupper\PxeUi.exe =>.CHENGDU AOMEI Tech Co., Ltd.® O87 - FAEL: "TCP Query User{A29B55B4-AE6A-49BB-AF27-2AED9C72F054}Z:\temp\nsocebb.tmp\app\deezloader remix.exe" [In-None-P6-TRUE] .(...) -- Z:\temp\nsocebb.tmp\app\deezloader remix.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "UDP Query User{DDD21B4D-B71D-455D-8E73-4A0AFB46DF06}Z:\temp\nsocebb.tmp\app\deezloader remix.exe" [In-None-P17-TRUE] .(...) -- Z:\temp\nsocebb.tmp\app\deezloader remix.exe (.not file.) =>.Temporary file not necessary O87 - FAEL: "TCP Query User{890470D7-70CA-416B-A768-8AB04C9B9211}C:\users\jseve\appdata\roaming\bittorrent\bittorrent.exe" [In-None-P6-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\users\jseve\appdata\roaming\bittorrent\bittorrent.exe =>.BitTorrent Inc® O87 - FAEL: "UDP Query User{A565A627-4A34-4021-92CD-34203B8F4FE5}C:\users\jseve\appdata\roaming\bittorrent\bittorrent.exe" [In-None-P17-TRUE] .(.BitTorrent Inc. - BitTorrent.) -- C:\users\jseve\appdata\roaming\bittorrent\bittorrent.exe =>.BitTorrent Inc® ---\\ CODES PRODUITS LOGICIELS (59) - 2s O90 - PUC: "00006109C80000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component.) =>.Microsoft Corporation O90 - PUC: "00006109C800C0400100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation O90 - PUC: "00006109E70000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Licensing Component.) =>.Microsoft Corporation O90 - PUC: "0350686F33792BB0C9902F151070E687" [HKLM] . (.CCC Help Finnish.) -- C:\Windows\Installer\{F6860530-9733-0BB2-9C09-F25101076E78}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "052E2C9D1A7186D0BC143832E23CC1C2" [HKLM] . (.ccc-utility64.) -- C:\Windows\Installer\{D9C2E250-17A1-0D68-CB41-83232EC31C2C}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "07F246B228AB87E514ECDBFF5D3C5703" [HKLM] . (.CCC Help Swedish.) -- C:\Windows\Installer\{2B642F70-BA82-5E78-41CE-BDFFD5C37530}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "0C078AD5C5CB69EB0554DB2499950C3D" [HKLM] . (.CCC Help Korean.) -- C:\Windows\Installer\{5DA870C0-BC5C-BE96-5045-BD429959C0D3}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "0ED8613AA974CE5D954C20877CED1CC1" [HKLM] . (.CCC Help Hungarian.) -- C:\Windows\Installer\{A3168DE0-479A-D5EC-59C4-0278C7DEC11C}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "1007C6B46D7C017319E3B52CF3EC196E" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148.) =>.bl.org O90 - PUC: "1A57DEF7C006B493386717E2A288162F" [HKLM] . (.Microsoft Visual C++ 2017 x86 Additional Runtime - 14.12.25810.) =>.Microsoft Corporation O90 - PUC: "2A86B8F70DC0FAD7985541916C80683D" [HKLM] . (.CCC Help Spanish.) -- C:\Windows\Installer\{7F8B68A2-0CD0-7DAF-8955-1419C60886D3}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "2AF407712D1BC5D42AD3DB0A2DCBC97C" [HKLM] . (.IPM_PSP_COM64.) -- C:\Windows\Installer\{17704FA2-B1D2-4D5C-A23D-BDA0D2BC9CC7}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "2D1CAE3C294A80B79A5D51DE5DAEA198" [HKLM] . (.CCC Help Dutch.) -- C:\Windows\Installer\{C3EAC1D2-A492-7B08-A9D5-15EDD5EA1A89}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "3651B0E770677D0012ECD7FA6AFF00C9" [HKLM] . (.CCC Help Czech.) -- C:\Windows\Installer\{7E0B1563-7607-00D7-21CE-7DAFA6FF009C}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "42D78011D76588D7966C7D0AB8F5C474" [HKLM] . (.Catalyst Control Center - Branding.) -- C:\Windows\Installer\{11087D24-567D-7D88-69C6-D7A08B5F4C47}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "4BE02D7D98DB0C50506C335E7B2689E9" [HKLM] . (.Catalyst Control Center InstallProxy.) -- C:\Windows\Installer\{D7D20EB4-BD89-05C0-05C6-33E5B762989E}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "4FB982716285B7442AA03708440D3B5E" [HKLM] . (.PSPPContent.) -- C:\Windows\Installer\{17289BF4-5826-447B-A20A-738044D0B3E5}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "57C5B7C328DFF1CB1F84983A81E93F58" [HKLM] . (.AMD Catalyst Control Center.) -- C:\Windows\Installer\{3C7B5C75-FD82-BC1F-F148-89A3189EF385}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "585FAF6380D348D33803D440F8B4C66E" [HKLM] . (.AMD Fuel.) -- C:\Windows\Installer\{36FAF585-3D08-3D84-8330-4D048F4B6CE6}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "5B0B870F14F22C2419268B6C825D6EEF" [HKLM] . (.Split Tunneling Driver.) =>.ExpressVPN O90 - PUC: "6521E749E8522A063713440DE916FC99" [HKLM] . (.CCC Help Russian.) -- C:\Windows\Installer\{947E1256-258E-60A2-7331-44D09E61CF99}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org O90 - PUC: "68AB67CA3301FFFF7706C0F070E41400" [HKLM] . (.Adobe Acrobat DC.) -- C:\Windows\Installer\{AC76BA86-1033-FFFF-7760-0C0F074E4100}\_SC_Acrobat.ico =>.Adobe Inc. O90 - PUC: "68AB67CA408033019195008142926844" [HKLM] . (.Adobe Refresh Manager.) -- C:\Windows\Installer\{AC76BA86-0804-1033-1959-001824298644}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "6D05F6717586EC947B13567F75EEF3D0" [HKLM] . (.ICA.) -- C:\Windows\Installer\{176F50D6-6857-49CE-B731-65F757EE3F0D}\ARPPRODUCTICON.exe O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "72B600786A5A1FE9AB40DC2748644291" [HKLM] . (.CCC Help Norwegian.) -- C:\Windows\Installer\{87006B27-A5A6-9EF1-BA04-CD7284462419}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "75511571034CA684BAA5788A31B46231" [HKLM] . (.PSPPro64.) -- C:\Windows\Installer\{17511557-C430-486A-AB5A-87A8134B2613}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "7A948DC21A686A438B9F7DF2B5129AEA" [HKLM] . (.Microsoft Visual C++ 2017 x64 Additional Runtime - 14.12.25810.) =>.Microsoft Corporation O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "831FC2F05A6219C4EA519D535BBE63E9" [HKLM] . (.VMware Workstation.) =>.VMware O90 - PUC: "8DEBFDFAA9CC00E810D548F5B09F1D1E" [HKLM] . (.CCC Help Chinese Traditional.) -- C:\Windows\Installer\{AFDFBED8-CC9A-8E00-015D-845F0BF9D1E1}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "8EA179173F8C26C3BF98CA149A7616BA" [HKLM] . (.CCC Help Italian.) -- C:\Windows\Installer\{71971AE8-C8F3-3C62-FB89-AC41A96761AB}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "8FCE3596B1B07DBFD0BD488CF2BB2C4F" [HKLM] . (.CCC Help Japanese.) -- C:\Windows\Installer\{6953ECF8-0B1B-FBD7-0DDB-84C82FBBC2F4}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "A5DD013359630933F683B2398D26EF20" [HKLM] . (.CCC Help German.) -- C:\Windows\Installer\{3310DD5A-3695-3390-6F38-2B93D862FE02}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "A641A7D665DB1EE8CF7CEB2010A3EC63" [HKLM] . (.CCC Help Chinese Standard.) -- C:\Windows\Installer\{6D7A146A-BD56-8EE1-FCC7-BE02013ACE36}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "A8D72ED737D1BE16681F70A97F5EC5A3" [HKLM] . (.CCC Help Thai.) -- C:\Windows\Installer\{7DE27D8A-1D73-61EB-86F1-079AF7E55C3A}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "AD79EAAAB8E19E0C0F3E45180AF9798C" [HKLM] . (.CCC Help French.) -- C:\Windows\Installer\{AAAE97DA-1E8B-C0E9-F0E3-5481A09F97C8}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "B25439E1E3AB573759C8BE5C8E76A2E5" [HKLM] . (.CCC Help Danish.) -- C:\Windows\Installer\{1E93452B-BA3E-7375-958C-EBC5E8672A5E}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "B86644655A406F86A09A305285775CF8" [HKLM] . (.Catalyst Control Center Localization All.) -- C:\Windows\Installer\{5644668B-04A5-68F6-0AA9-03255877C58F}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "BE25982827556663C89A00B0C67E3905" [HKLM] . (.Microsoft Visual C++ 2017 x86 Minimum Runtime - 14.12.25810.) =>.Microsoft Corporation O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C49F27D45A5958AA7EB51A1ABCF8ECA7" [HKLM] . (.CCC Help Greek.) -- C:\Windows\Installer\{4D72F94C-95A5-AA85-E75B-A1A1CB8FCE7A}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "CDA2E99C7430E6336A301F99B2905D28" [HKLM] . (.Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.12.25810.) =>.Microsoft Corporation O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org O90 - PUC: "D3F04AE239D0193A3F38F6C107B808FB" [HKLM] . (.CCC Help Turkish.) -- C:\Windows\Installer\{2EA40F3D-0D93-A391-F383-6F1C708B80BF}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "D40177E21E69C9A4682F7CFCC8089599" [HKLM] . (.Betternet for Windows 4.1.1.) -- C:\Windows\Installer\{2E77104D-96E1-4A9C-86F2-C7CF8C805999}\app_icon.ico =>.Betternet O90 - PUC: "D65349D70E84A1ED24C3763A361C7317" [HKLM] . (.CCC Help English.) -- C:\Windows\Installer\{7D94356D-48E0-DE1A-423C-67A363C13771}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "E4A880713FC321F429D6A2E908588BCE" [HKLM] . (.Setup.) -- C:\Windows\Installer\{17088A4E-3CF3-4F12-926D-2A9E8085B8EC}\ARPPRODUCTICON.exe O90 - PUC: "E8C03804E63980E4EA7342F03F439372" [HKLM] . (.Click Install if prompted.) =>.ExpressVPN O90 - PUC: "ED0F5371371B6114ABCB56A321BF2983" [HKLM] . (.PSPPHelp.) -- C:\Windows\Installer\{1735F0DE-B173-4116-BABC-653A12FB9238}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: "EE2813F5235269B3B2BB308BF775E467" [HKLM] . (.CCC Help Portuguese.) -- C:\Windows\Installer\{5F3182EE-2532-3B96-2BBB-03B87F574E76}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17.) =>.bl.org O90 - PUC: "F9D136235894AB74284B592C948989C5" [HKLM] . (.ExpressVPN.) -- C:\Windows\Installer\{32631D9F-4985-47BA-82B4-95C24998985C}\Icon.ico =>.ExpressVPN O90 - PUC: "FDDA44FB729E66B48E92A42FB76F5AB8" [HKLM] . (.CCC Help Polish.) -- C:\Windows\Installer\{BF44ADDF-E927-4B66-E829-4AF27BF6A58B}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc ---\\ PACKAGES WINDOWS INSTALLER (43) - 12s [MD5.33DE59D1617E6B2D1547015C065AF220] [WIS][2015/11/06 22:17:52] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a0a.msi [798208] =>.Advanced Micro Devices, Inc. [MD5.ED4D8BE359482F0AB4A121BFFAC58004] [WIS][2014/11/11 10:49:56] (.Advanced Micro Devices, Inc. - Branding.) -- C:\WINDOWS\Installer\111a13.msi [439808] =>.Advanced Micro Devices, Inc. [MD5.DD2996956A5FF586E139A0F6E282A1F1] [WIS][2015/11/06 22:17:44] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a1c.msi [936448] =>.Advanced Micro Devices, Inc. [MD5.B5FBD70BF8821E90DAD1153B9694B5F6] [WIS][2015/11/06 22:14:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a25.msi [761856] =>.Advanced Micro Devices, Inc. [MD5.E4F68C8A893EDDFAED7BA288250EB36A] [WIS][2015/11/06 22:14:38] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a2e.msi [729600] =>.Advanced Micro Devices, Inc. [MD5.7728BB97625301E150865031564F5F15] [WIS][2015/11/06 22:14:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a37.msi [751104] =>.Advanced Micro Devices, Inc. [MD5.F9AC9FB191D441823C1052F5FEBEE1EE] [WIS][2015/11/06 22:14:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a40.msi [856064] =>.Advanced Micro Devices, Inc. [MD5.F42E649718BB3849F98409E503DE63ED] [WIS][2015/11/06 22:15:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a49.msi [710144] =>.Advanced Micro Devices, Inc. [MD5.608A1F5C35480A0BAAC504D7E0772F51] [WIS][2015/11/06 22:15:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a52.msi [738304] =>.Advanced Micro Devices, Inc. [MD5.FBE93E0EF7EB12C553E4C3956DE3D92C] [WIS][2015/11/06 22:15:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a5b.msi [732160] =>.Advanced Micro Devices, Inc. [MD5.9B62B5036A4A8E3D9902A8A4B7B3386D] [WIS][2015/11/06 22:15:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a64.msi [747008] =>.Advanced Micro Devices, Inc. [MD5.77CDA6654DAB7014F4F93141BC6AE9B1] [WIS][2015/11/06 22:15:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a6d.msi [759808] =>.Advanced Micro Devices, Inc. [MD5.AA563DB9A625AE9C99501CAD6705945E] [WIS][2015/11/06 22:15:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a76.msi [736256] =>.Advanced Micro Devices, Inc. [MD5.2B5DA6F4DA399028F4FE7681A29C68B8] [WIS][2015/11/06 22:15:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a7f.msi [780800] =>.Advanced Micro Devices, Inc. [MD5.A314040F23826FE89BB621D0E754EEB3] [WIS][2015/11/06 22:16:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a88.msi [760832] =>.Advanced Micro Devices, Inc. [MD5.CDB424F62BA826E303A0C068E113040B] [WIS][2015/11/06 22:16:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a91.msi [729600] =>.Advanced Micro Devices, Inc. [MD5.4C83D2D27E74DC8A1BC1A2D6406A51C2] [WIS][2015/11/06 22:16:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111a9a.msi [723968] =>.Advanced Micro Devices, Inc. [MD5.0684EADD0C3C71215EEB2AC5128217A3] [WIS][2015/11/06 22:16:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111aa3.msi [755200] =>.Advanced Micro Devices, Inc. [MD5.3E83B039033236F00A35F062DCD8BB50] [WIS][2015/11/06 22:16:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111aac.msi [738816] =>.Advanced Micro Devices, Inc. [MD5.A63E2A0DEF6F6CBC5053C4810CB11ED0] [WIS][2015/11/06 22:16:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111ab5.msi [837120] =>.Advanced Micro Devices, Inc. [MD5.372FC3CF695B500D0183DE0F9A107953] [WIS][2015/11/06 22:16:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111abe.msi [728064] =>.Advanced Micro Devices, Inc. [MD5.2DB7B2D0A36DC635B3F8AC774CAC02C1] [WIS][2015/11/06 22:17:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111ac7.msi [813056] =>.Advanced Micro Devices, Inc. [MD5.A03616C15CDAE787ADD7FE88F95E856E] [WIS][2015/11/06 22:17:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111ad0.msi [742912] =>.Advanced Micro Devices, Inc. [MD5.D5D78F8EB23EE410028D4AB426AF84FD] [WIS][2015/11/06 22:17:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111ad9.msi [731648] =>.Advanced Micro Devices, Inc. [MD5.F23AC48170EF3246A0B9CECA08270D9B] [WIS][2015/11/06 22:17:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111ae2.msi [737280] =>.Advanced Micro Devices, Inc. [MD5.5893D3DE1AFD5346E4E255535F55A48E] [WIS][2015/11/06 22:18:10] (.Advanced Micro Devices, Inc. - Catalyst Control Center Utility 64.) -- C:\WINDOWS\Installer\111aeb.msi [412160] =>.Advanced Micro Devices, Inc. [MD5.565C90E80F461B07FA901E65E7C8E9A7] [WIS][2015/11/06 22:19:04] (.Advanced Micro Devices, Inc. - AMD Fuel.) -- C:\WINDOWS\Installer\111af4.msi [2981888] =>.Advanced Micro Devices, Inc. [MD5.59C74865D50EEAFA144A0D0D8F5F52BB] [WIS][2015/11/06 22:14:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\111afd.msi [56514048] =>.Advanced Micro Devices, Inc. [MD5.7C3CB3CBA11691D8CF040D9390A7586D] [WIS][2017/08/24 18:05:58] (.Adobe Systems Incorporated - Installers.) -- C:\WINDOWS\Installer\2029c9.msi [12911616] =>.Adobe Systems Incorporated [MD5.7C1ACEDF0818205CDD030D34EA198E10] [WIS][2018/09/27 19:24:22] (.VMware, Inc. - VMware Workstation.) -- C:\WINDOWS\Installer\2611ee.msi [106418176] =>.VMware, Inc. [MD5.D5E51C3A1D7979665B6B7E1AD2A653B4] [WIS][2018/09/23 16:33:38] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\50e045.msi [887296] =>.Adobe Systems Incorporated [MD5.7E57B1876A57979197D23A22CECED5E5] [WIS][2018/09/23 17:17:58] (.Betternet Technologies Inc. - Betternet for Windows 4.1.1.) -- C:\WINDOWS\Installer\66d3b.msi [12636160] =>.Betternet Technologies Inc. [MD5.AC6041B2A1C153AD772757DEE93B2F07] [WIS][2014/08/13 21:57:30] (.Corel Corporation - Setup.) -- C:\WINDOWS\Installer\76fb79.msi [7020544] =>.Corel Corporation [MD5.7466008D4BC24AE9804DDAA3AEA0D35C] [WIS][2014/08/13 22:02:08] (.Corel Corporation - PSPPContent.) -- C:\WINDOWS\Installer\76fb7d.msi [16529408] =>.Corel Corporation [MD5.EF291D252BC2CA9F250045B0B8B848E6] [WIS][2014/08/13 22:01:56] (.Corel Corporation - PSPPHelp.) -- C:\WINDOWS\Installer\76fb80.msi [10018304] =>.Corel Corporation [MD5.F3D9B34AD9AD4F6DA3FD2C0F0D526193] [WIS][2014/08/13 22:01:36] (.Corel Corporation.) -- C:\WINDOWS\Installer\76fb83.msi [95237632] =>.Corel Corporation [MD5.D2AE2156F5946A888A45964D0FCB745B] [WIS][2014/08/13 21:57:56] (.Corel Corporation.) -- C:\WINDOWS\Installer\76fb86.msi [23539712] =>.Corel Corporation [MD5.08B48D5C34B111D5B1381A733BB86AC0] [WIS][2014/08/13 21:57:02] (.Corel Corporation - ICA.) -- C:\WINDOWS\Installer\76fb89.msi [5062656] =>.Corel Corporation [MD5.AB9CE1B4DACF152FE1E7723E63511D84] [WIS][2018/09/20 12:27:18] (.ExpressVpn - Split Tunneling Driver.) -- C:\WINDOWS\Installer\b28e9b.msi [1658880] =>.ExpressVpn [MD5.F7ECA00276A36298F359C2F502406E9B] [WIS][2018/09/20 12:27:26] (.ExpressVpn - Click Install if prompted.) -- C:\WINDOWS\Installer\b28ea5.msi [925696] =>.ExpressVpn [MD5.6A39D5FE9F6B362229D46AA50701F65A] [WIS][2018/09/20 12:27:06] (.ExpressVPN - ExpressVPN.) -- C:\WINDOWS\Installer\b28eaf.msi [23359488] =>.ExpressVPN [MD5.B74A6A31046ECDEFDB200DC17DC19EC4] [WIS][2017/08/24 18:05:58] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\2029ca.msp [241164288] =>.Adobe Systems, Incorporated [MD5.11A7868BF95E02A14A2262FF33A7C9ED] [WIS][2018/09/18 10:11:10] (.Adobe Systems, Incorporated.) -- C:\WINDOWS\Installer\50e4cb.msp [255881216] =>.Adobe Systems, Incorporated ---\\ FEATURE CONTROLE. (204) - 0s [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:UNPUXHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Corel PaintShop Pro.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:msoasb.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:mspub.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:winproj.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:onenote.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:visio.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:msaccess.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msoasb.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate ---\\ SCAN ADDITIONNEL (6) - 5s HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\VMDiskMenuHandler =>.SUP.Orphan HKLM\Software\Classes\CLSID\{271DC252-6FE1-4D59-9053-E4CF50AB99DE} =>.SUP.Orphan C:\Users\jseve\Desktop\BitTorrent (1).exe =>BitTorrent (P2P) ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (2) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/01/27/repaquetage-et-infection/ =>BitTorrent (P2P) ~ Unselected Options: O82, ~ End of the scan, 8270 items in 02mn44s (2081)(0)