~ ZHPDiag v2018.11.11.194 Par Nicolas Coolman (2018/11/11) ~ Démarré par david (Administrator) (2018/11/13 20:17:11) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\david\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\david\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 17134) =>.Microsoft Corporation ---\ NAVIGATEURS INTERNET (3) - 0s ~ GCIE: Google Chrome v70.0.3538.102 ~ MSIE: Microsoft Edge v40 ~ MSIE: Internet Explorer v11.345.17134.0 ---\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : P9XQR Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\ LOGICIELS DE PROTECTION (2) - 6s Kaspersky Total Security v19.0.0.1088 (Protection) Windows Defender W10 (Deactivate) (Protection) ---\ SURVEILLANCE LOGICIEL (1) - 6s ~ Adobe Flash Player 31 PPAPI (Surveillance) ---\ LOGICIELS D'OPTIMISATION (1) - 6s ~ CCleaner v5.49 (Optimisation) ---\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: Intel64 Family 6 Model 94 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8316.156 MB (57% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 790 GB (82%) free of 953 GB : OK =>.Disk Space ---\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: DESKTOP-PCB5M9C ~ User Name: david ~ Logged in as Administrator ---\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (1) - 0s ~ Drive C: has 790 GB free of 953 GB (System) ---\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (25) - 1s [MD5.E4A81EDDFF8B844D85C8B45354E4144E] - 06/07/2018 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [3932672] =>.Microsoft Windows® [MD5.73C519F050C20580F8A62C849D49215A] - 12/04/2018 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [69632] =>.Microsoft Corporation [MD5.A58B0CB069DA7840B935872ADCD7F0C2] - 12/04/2018 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [366792] =>.Microsoft Corporation [MD5.F871B78E0A56297D1E3F9AE0B333C1CB] - 20/09/2018 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [4615680] =>.Microsoft Corporation [MD5.749CA1F1B638E4E4A8A1F0990377012F] - 08/09/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [677888] =>.Microsoft Corporation [MD5.7A377800FF15426B7D89768A8727CFEF] - 12/04/2018 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [415232] =>.Microsoft Corporation [MD5.F4B9F200B9D7EBC8BD4C8E39F02A44E3] - 06/07/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [766608] =>.Microsoft Windows® [MD5.BE663A3C8E4F3ED2E8404A808614BCE3] - 06/07/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [573904] =>.Microsoft Windows® [MD5.80BC3B8D2055BC38ECD84769C074C18F] - 12/04/2018 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation [MD5.4DCCC3E02A22ED4A4ADB11386F226071] - 12/04/2018 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [626592] =>.Microsoft Corporation [MD5.90AB4ED8EBD72A1C096A40CC35404B91] - 12/04/2018 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28568] =>.Microsoft Corporation [MD5.D3CBC6DE5955D014407C7BD1FFE80F00] - 12/04/2018 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [93696] =>.Microsoft Corporation [MD5.6834DBBA2A1DBA5B9B6360D0B9A3CBB5] - 15/06/2018 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [159744] =>.Microsoft Corporation [MD5.8A1C10410FDA4287A76EC5A64371E221] - 15/06/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [141312] =>.Microsoft Corporation [MD5.DED74127C7A2266715C0B8EA2EE75214] - 12/04/2018 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [86016] =>.Microsoft Corporation [MD5.DA179667B8CEC22E4ECBBF4210DC0E35] - 12/04/2018 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [105984] =>.Microsoft Corporation [MD5.7408B83959A4B8271EF67FD06A6B366B] - 12/04/2018 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [214528] =>.Microsoft Corporation [MD5.6C321DB795F5EF5FF870737177825FC9] - 20/09/2018 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [500536] =>.Microsoft Corporation [MD5.A6C01E478CD9ED26F6FB7ABCF9A2C773] - 03/08/2018 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [311296] =>.Microsoft Corporation [MD5.8AA13C67D70E9452B55B7A5C8B96BD36] - 20/09/2018 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2421248] =>.Microsoft Corporation [MD5.13B175715A4391E4E5D2AB2EBC8CDBB5] - 12/04/2018 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [98816] =>.Microsoft Corporation [MD5.775ED7E51B58CF9EB415A1DBA540DACF] - 12/04/2018 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [106496] =>.Microsoft Corporation [MD5.3DE4216324BE32FC3AF7667AE2406EE5] - 15/06/2018 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [182784] =>.Microsoft Corporation [MD5.16071C42E21CE3378FA449322FB9AB1D] - 12/04/2018 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [121248] =>.Microsoft Corporation [MD5.F0EE4E6028CCA58BEA9A04E7BEAB7DB4] - 12/04/2018 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [398240] =>.Microsoft Corporation ---\ LISTE DES SERVICES (Non désactivés) (66) - 1s O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll =>.Microsoft Corporation O23 - Service: Kaspersky Anti-Virus Service 19.0.0 (AVP19.0.0) . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\avp.exe =>.Kaspersky Lab® O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Service d’infrastructure des tâches en arri.) - C:\WINDOWS\System32\bisrv.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll =>.Microsoft Corporation O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_33aa3420) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher® O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft Windows® O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher® O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher® O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll =>.Microsoft Corporation O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll =>.Microsoft Corporation O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\WINDOWS\System32\ikeext.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll =>.Microsoft Corporation O23 - Service: Kaspersky Password Manager Service (kpm_launch_service) . (.AO Kaspersky Lab - Kaspersky Password Manager Service.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\kpm_service.exe =>.Kaspersky Lab® O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll =>.Microsoft Corporation O23 - Service: Hôte de synchronisation_33aa3420 (OneSyncSvc_33aa3420) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher® O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll =>.Microsoft Corporation O23 - Service: Corel License Validation Service V2, Powered by arvato (PSI_SVC_2) . (.arvato digital services llc - PsiService PsiService.) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® O23 - Service: Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) . (.arvato digital services llc - PsiService PsiService.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll =>.Microsoft Corporation O23 - Service: @oem25.inf,%RtkBtManServ.SvcDesc%;Realtek Bluetooth Device (RtkBtManServ) . (.Realtek Semiconductor Corp. - Realtek Bluetooth BTDevManager Service Appl.) - C:\Windows\RtkBtManServ.exe =>.Realtek Semiconductor Corp.® O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SecurityHealthAgent.dll (SecurityHealthService) . (.Microsoft Corporation - Windows Security Health Service.) - C:\WINDOWS\System32\SecurityHealthService.exe =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\WINDOWS\System32\sysmain.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usocore.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) - C:\WINDOWS\System32\usocore.dll =>.Microsoft Corporation O23 - Service: VMware Authorization Service (VMAuthdService) . (.VMware, Inc. - VMware Authorization Service.) - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe =>.VMware, Inc.® O23 - Service: VMware DHCP Service (VMnetDHCP) . (.VMware, Inc. - VMware VMnet DHCP service.) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.® O23 - Service: VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc. - VMware USB Arbitration Service.) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® O23 - Service: VMware NAT Service (VMware NAT Service) . (.VMware, Inc. - VMware NAT Service.) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.® O23 - Service: VyprVPN (VyprVPN) . (.Golden Frog, GmbH. - VyprVPNService.) - C:\Program Files (x86)\VyprVPN\VyprVPNService.exe =>.Golden Frog, GmbH. O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll =>.Microsoft Corporation O23 - Service: Service utilisateur de notifications Push Windows_33aa3420 (WpnUserService_33aa3420) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft Windows Publisher® O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe =>.Microsoft Corporation ---\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (14) - 3s SS - Demand [10/10/2018] [ 335872] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Systems Incorporated® SR - Auto [28/02/2018] [ 619640] Kaspersky Anti-Virus Service 19.0.0 (AVP19.0.0) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\avp.exe =>.Kaspersky Lab® SR - Auto [29/07/2018] [ 153168] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [29/07/2018] [ 153168] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [29/07/2018] [ 416560] klvssbridge64_19.0.0 (klvssbridge64_19.0.0) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\x64\vssbridge64.exe =>.Kaspersky Lab® SR - Auto [07/05/2018] [ 211680] Kaspersky Password Manager Service (kpm_launch_service) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\kpm_service.exe =>.Kaspersky Lab® SR - Auto [30/04/2014] [ 277360] Corel License Validation Service V2, Powered by arvato (PSI_SVC_2) . (.arvato digital services llc.) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® SR - Auto [30/04/2014] [ 337776] Corel License Validation Service V2 x64, Powered by arvato (PSI_SVC_2_x64) . (.arvato digital services llc.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe =>.Arvato Digital Services Canada Inc® SR - Auto [11/12/2017] [ 281536] @oem25.inf,%RtkBtManServ.SvcDesc%;Realtek Bluetooth Device (RtkBtManServ) . (.Realtek Semiconductor Corp..) - C:\Windows\RtkBtManServ.exe =>.Realtek Semiconductor Corp.® SR - Auto [07/08/2018] [ 96184] VMware Authorization Service (VMAuthdService) . (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe =>.VMware, Inc.® SR - Auto [07/08/2018] [ 366520] VMware DHCP Service (VMnetDHCP) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe =>.VMware, Inc.® SR - Auto [27/06/2018] [ 866744] VMware USB Arbitration Service (VMUSBArbService) . (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe =>.VMware, Inc.® SR - Auto [07/08/2018] [ 402360] VMware NAT Service (VMware NAT Service) . (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe =>.VMware, Inc.® SR - Auto [12/09/2018] [ 304640] VyprVPN (VyprVPN) . (.Golden Frog, GmbH..) - C:\Program Files (x86)\VyprVPN\VyprVPNService.exe =>.Golden Frog, GmbH. ---\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (12) - 2s O38 - TASK: {07DAEDE2-6CC7-42CC-8754-1354F1DEFDBA} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc. O38 - TASK: {36D35B05-C638-4EE6-B967-DDE58B16D768} [64Bits][\Adobe Flash Player Updater] - (.Adobe Systems Incorporated - Adobe® Flash® Player Update Service 31.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335872] =>.Adobe Systems Incorporated O38 - TASK: {37D75AE2-2A3F-49CB-A609-BB475C991A53} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168] =>.Google Inc. O38 - TASK: {584A8E59-5ED6-4B08-ADA2-2DC2154B7E82} [64Bits][\CCleaner Update] - (.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [548824] =>.Piriform Ltd O38 - TASK: {8E3795F4-359D-46B4-8024-AA1F9168DB03} [64Bits][\CCleanerSkipUAC] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [14554696] O38 - TASK: {E374D23D-258A-4125-81C8-D99ADEA55E85} [64Bits][\Adobe Flash Player PPAPI Notifier] - (.Adobe Systems Incorporated - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe [1454592] =>.Adobe Systems Incorporated C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc. C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe Systems Incorporated C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc. C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform Ltd.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform Ltd C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier - (.Adobe Systems Incorporated.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe [-check pepperplugin.-check] =>.Adobe Systems Incorporated ---\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (12) - 0s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Defender notification icon.) -- C:\Program Files\Windows Defender\MSASCuiL.exe =>.Microsoft Windows® O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\david\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKCU\..\Run: [kpm.exe] . (.AO Kaspersky Lab - Kaspersky Password Manager.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\kpm.exe =>.Kaspersky Lab® O4 - HKCU\..\Run: [XperiaCompanionAgent] . (.Sony - Xperia Companion Agent.) -- C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe {02E66C1540B076706A954CEB7CFA0724} =>.Sony O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe {0523409B9FB5C3B8C0C463A318723FF9} O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Windows® O4 - HKUS\S-1-5-21-4155899956-1560986946-2008190831-1001\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\david\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-4155899956-1560986946-2008190831-1001\..\Run: [kpm.exe] . (.AO Kaspersky Lab - Kaspersky Password Manager.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\kpm.exe =>.Kaspersky Lab® O4 - HKUS\S-1-5-21-4155899956-1560986946-2008190831-1001\..\Run: [XperiaCompanionAgent] . (.Sony - Xperia Companion Agent.) -- C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe {02E66C1540B076706A954CEB7CFA0724} =>.Sony O4 - HKUS\S-1-5-21-4155899956-1560986946-2008190831-1001\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe {0523409B9FB5C3B8C0C463A318723FF9} ---\ PROCESSUS LANCÉS (39) - 3s [MD5.6C112DA6C86DB7FB2C50522EFDDA706A] - (.arvato digital services llc - PsiService PsiService.) -- c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [337776] [PID.3712] =>.Arvato Digital Services Canada Inc® [MD5.A9E267A2BBE5AAF03120D3541C709E70] - (.Realtek Semiconductor Corp. - Realtek Bluetooth BTDevManager Service Appl.) -- C:\Windows\RtkBtManServ.exe [281536] [PID.3780] =>.Realtek Semiconductor Corp.® [MD5.2E88BFC22F4F2B226D95373243271130] - (.AO Kaspersky Lab - Kaspersky Password Manager Service.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\kpm_service.exe [211680] [PID.3816] =>.Kaspersky Lab® [MD5.1A9AC0C5D3D59C5366C8F21B9B91009F] - (.VMware, Inc. - VMware VMnet DHCP service.) -- C:\Windows\SysWOW64\vmnetdhcp.exe [366520] [PID.3800] =>.VMware, Inc.® [MD5.397DE1B1ED91105B5C8275DEF67CEEDE] - (.VMware, Inc. - VMware NAT Service.) -- C:\Windows\SysWOW64\vmnat.exe [402360] [PID.3824] =>.VMware, Inc.® [MD5.852F982F75A6AF85D11E2CD0D8B9DA2A] - (.Golden Frog, GmbH. - VyprVPNService.) -- C:\Program Files (x86)\VyprVPN\VyprVPNService.exe [304640] [PID.3832] =>.Golden Frog, GmbH. [MD5.16783D49B6931414BAD1B2368ADD9656] - (.arvato digital services llc - PsiService PsiService.) -- c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360] [PID.3840] =>.Arvato Digital Services Canada Inc® [MD5.DBC17EC3A40B31A25148892A1386C7AF] - (.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe [96184] [PID.3492] =>.VMware, Inc.® [MD5.02BD52646D4CB2F4E9D7B2C2600494AE] - (.VMware, Inc. - VMware USB Arbitration Service.) -- C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [866744] [PID.3396] =>.VMware, Inc.® [MD5.6C718849D436A7CCEBED72538F8BD04B] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe [288848] [PID.7768] =>.Google Inc® [MD5.D2F56E366F1CB26866A6F43BD53B46C3] - (.Google Inc. - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe [366160] [PID.7776] =>.Google Inc® [MD5.5E465826E78C6753BD88B7B766521ACA] - (.AO Kaspersky Lab - Volume Shadow Copy Service Bridge.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\x64\vssbridge64.exe [416560] [PID.9512] =>.Kaspersky Lab® [MD5.5DA665A9DFAEAB9F16AB40717D7C988C] - (.AO Kaspersky Lab - Kaspersky Anti-Virus.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\avpui.exe [338224] [PID.13016] =>.Kaspersky Lab® [MD5.F3C19FDBD73584B40C676087418AA36D] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8822016] [PID.12508] =>.Realtek Semiconductor Corp® [MD5.D6FC5519ABA01D7B5C56AA9847755C79] - (.Sony - Xperia Companion Agent.) -- C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [2132320] [PID.10796] {02E66C1540B076706A954CEB7CFA0724} =>.Sony [MD5.46CB4E9344434E3BC2B9126393C625CF] - (.AO Kaspersky Lab - Kaspersky Password Manager.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\kpm.exe [540456] [PID.6188] =>.Kaspersky Lab® [MD5.E61AF850E805B723EAB756E821C7696D] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424] [PID.776] =>.Oracle America, Inc.® [MD5.100502EBC164666706DF2064388E920F] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe [19476424] [PID.9352] {0523409B9FB5C3B8C0C463A318723FF9} [MD5.75ED75CE4A00113EF692EE39DD9DAE07] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1809.2731.0_x64__8wekyb3d8bbwe\Calculator.exe [4183040] [PID.11512] =>.Microsoft Corporation [MD5.FE8EDCA785D52898D6B5967C2969F56C] - (.Kaspersky Lab ZAO - Native Messaging Server for Kaspersky Passw.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\plugin-nm-server.exe [269808] [PID.14688] =>.Kaspersky Lab® [MD5.FD6ADD926C49A2620989014571032384] - (.AO Kaspersky Lab - Transport Proxy.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\transport_proxy.exe [174216] [PID.6740] =>.Kaspersky Lab® [MD5.184CF8F41804A1B6FA7EEC1EF89D43E0] - (...) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18081.14710.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [479232] [PID.9776] =>.Microsoft Corporation [MD5.F98BA2F9FE0C56D3C6358E0B8D7AF323] - (.Golden Frog, GmbH. - VyprVPN by Golden Frog.) -- C:\Program Files (x86)\VyprVPN\VyprVPN.exe [1671680] [PID.12860] =>.Golden Frog, GmbH. [MD5.7DA258892D0D96896DF085ADC082C0A8] - (.Golden Frog, GmbH. - Chameleon.) -- C:\Program Files (x86)\VyprVPN\Chameleon.exe [13312] [PID.11372] =>.Golden Frog, GmbH. [MD5.474AAD8101FF58BEB5FAE0B626A81E79] - (.The OpenVPN Project - OpenVPN Daemon.) -- C:\Program Files (x86)\VyprVPN\OpenVPN\bin\openvpn.exe [855168] [PID.1604] =>.OpenVPN Technologies, Inc.® [MD5.091371A419A0981164540B00C2BAF48F] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.34.81.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe [183808] [PID.15356] [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.5680] =>.Google Inc® [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.14712] =>.Google Inc® [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.14272] =>.Google Inc® [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.3768] =>.Google Inc® [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.8260] =>.Google Inc® [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.12648] =>.Google Inc® [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.11348] =>.Google Inc® [MD5.FE8EDCA785D52898D6B5967C2969F56C] - (.Kaspersky Lab ZAO - Native Messaging Server for Kaspersky Passw.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\plugin-nm-server.exe [269808] [PID.14900] =>.Kaspersky Lab® [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.12520] =>.Google Inc® [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.14000] =>.Google Inc® [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.7800] =>.Google Inc® [MD5.4ACBABAC62ED52DD93FB5B9797F5A626] - (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1589080] [PID.9236] =>.Google Inc® [MD5.0E2A1261615D3235D4E21F231F2EDAE2] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\david\Downloads\ZHPDiag3.exe [3176832] [PID.12184] =>.Nicolas Coolman ---\ CHROME, Démarrage, Recherche, Extensions (12) - 0s G2 - GCE: Preference [david][User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [david][User Data\Default] [amkpcclbbgegoafihnpgomddadjhcadd] =>.Kaspersky Protection G2 - GCE: Preference [david][User Data\Default] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [david][User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [david][User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [david][User Data\Default] [dhnkblpjbkfklfloegejegedcafpliaa] G2 - GCE: Preference [david][User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [david][User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [david][User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] Toggle Pause/Resume on all sites =>.Wladimir Palant {AdBlock} G2 - GCE: Preference [david][User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [david][User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [david][User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. ---\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.17134.346 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\ INTERNET EXPLORER, Site de confiance et site sensible (94) - 1s ~ IE Restricted Site Potentially Unwanted: 007guard.com ~ IE Restricted Site Potentially Unwanted: 008i.com ~ IE Restricted Site Potentially Unwanted: 008k.com ~ IE Restricted Site Potentially Unwanted: 00hq.com ~ IE Restricted Site Potentially Unwanted: 010402.com ~ IE Restricted Site Potentially Unwanted: 032439.com ~ IE Restricted Site Potentially Unwanted: 0scan.com ~ IE Restricted Site Potentially Unwanted: 1-2005-search.com ~ IE Restricted Site Potentially Unwanted: 1-domains-registrations.com ~ IE Restricted Site Potentially Unwanted: 1000gratisproben.com ~ IE Restricted Site Potentially Unwanted: 1001namen.com ~ IE Restricted Site Potentially Unwanted: 100888290cs.com ~ IE Restricted Site Potentially Unwanted: 100sexlinks.com ~ IE Restricted Site Potentially Unwanted: 10sek.com ~ IE Restricted Site Potentially Unwanted: 123fporn.info ~ IE Restricted Site Potentially Unwanted: 123haustiereundmehr.com ~ IE Restricted Site Potentially Unwanted: 123moviedownload.com ~ IE Restricted Site Potentially Unwanted: 123simsen.com ~ IE Restricted Site Potentially Unwanted: 123topsearch.com ~ IE Restricted Site Potentially Unwanted: 125sms.co.uk ~ IE Restricted Site Potentially Unwanted: 125sms.com ~ IE Restricted Site Potentially Unwanted: 132.com ~ IE Restricted Site Potentially Unwanted: 1337-crew.to ~ IE Restricted Site Potentially Unwanted: 1337crew.info ~ IE Restricted Site Potentially Unwanted: 136136.net ~ IE Restricted Site Potentially Unwanted: 150freesms.de ~ IE Restricted Site Potentially Unwanted: 163ns.com ~ IE Restricted Site Potentially Unwanted: 17-plus.com ~ IE Restricted Site Potentially Unwanted: 171203.com ~ IE Restricted Site Potentially Unwanted: 17concepts.info ~ IE Restricted Site Potentially Unwanted: 1800searchonline.com ~ IE Restricted Site Potentially Unwanted: 180searchassistant.com ~ IE Restricted Site Potentially Unwanted: 180solutions.com ~ IE Restricted Site Potentially Unwanted: 1987324.com ~ IE Restricted Site Potentially Unwanted: 1ghporn.info ~ IE Restricted Site Potentially Unwanted: 1importantiamreal.com ~ IE Restricted Site Potentially Unwanted: 1mybigdreamnowreal.com ~ IE Restricted Site Potentially Unwanted: 1sexparty.com ~ IE Restricted Site Potentially Unwanted: 1sms.de ~ IE Restricted Site Potentially Unwanted: 1spybot.com ~ IE Restricted Site Potentially Unwanted: 1stantivirus.com ~ IE Restricted Site Potentially Unwanted: 1stpagehere.com ~ IE Restricted Site Potentially Unwanted: 1stsearchportal.com ~ IE Restricted Site Potentially Unwanted: 2-2005-search.com ~ IE Restricted Site Potentially Unwanted: 2006ooo.com ~ IE Restricted Site Potentially Unwanted: 2007-download.com ~ IE Restricted Site Potentially Unwanted: 2008-search-destroy.com ~ IE Restricted Site Potentially Unwanted: 2008-viewer.com ~ IE Restricted Site Potentially Unwanted: 2008firefox.com ~ IE Restricted Site Potentially Unwanted: 2008search-destroy.com ~ IE Restricted Site Potentially Unwanted: 2009--access.com ~ IE Restricted Site Potentially Unwanted: 2009-edition.com ~ IE Restricted Site Potentially Unwanted: 2009-phone.com ~ IE Restricted Site Potentially Unwanted: 2009-version.info ~ IE Restricted Site Potentially Unwanted: 2009antivirpro.com ~ IE Restricted Site Potentially Unwanted: 2009search-destroy.com ~ IE Restricted Site Potentially Unwanted: 2011-kilos-verlieren.eu ~ IE Restricted Site Potentially Unwanted: 2020search.com ~ IE Restricted Site Potentially Unwanted: 20x2p.com ~ IE Restricted Site Potentially Unwanted: 21dice.net ~ IE Restricted Site Potentially Unwanted: 24-7pharmacy.info ~ IE Restricted Site Potentially Unwanted: 24-7searching-and-more.com ~ IE Restricted Site Potentially Unwanted: 247fxxx.info ~ IE Restricted Site Potentially Unwanted: 24teen.com ~ IE Restricted Site Potentially Unwanted: 2ndpower.com ~ IE Restricted Site Potentially Unwanted: 2rfsex.info ~ IE Restricted Site Potentially Unwanted: 2search.com ~ IE Restricted Site Potentially Unwanted: 2search.org ~ IE Restricted Site Potentially Unwanted: 2squared.com ~ IE Restricted Site Potentially Unwanted: 2vgporn.info ~ IE Restricted Site Potentially Unwanted: 3-2005-search.com ~ IE Restricted Site Potentially Unwanted: 30horasdesexoonline.com ~ IE Restricted Site Potentially Unwanted: 31columns.com ~ IE Restricted Site Potentially Unwanted: 321-gratis-sms.com ~ IE Restricted Site Potentially Unwanted: 3322.org ~ IE Restricted Site Potentially Unwanted: 365fporn.info ~ IE Restricted Site Potentially Unwanted: 365sites.info ~ IE Restricted Site Potentially Unwanted: 365soft.info ~ IE Restricted Site Potentially Unwanted: 36site.com ~ IE Restricted Site Potentially Unwanted: 3721.com ~ IE Restricted Site Potentially Unwanted: 39-93.com ~ IE Restricted Site Potentially Unwanted: 3bay.it ~ IE Restricted Site Potentially Unwanted: 3dgsex.info ~ IE Restricted Site Potentially Unwanted: 3mates.com ~ IE Restricted Site Potentially Unwanted: 3wgporn.info ~ IE Restricted Site Potentially Unwanted: 3x-festival.com ~ IE Restricted Site Potentially Unwanted: 3x-galls.com ~ IE Restricted Site Potentially Unwanted: 3xclipsonline.com ~ IE Restricted Site Potentially Unwanted: 3xcurves.com ~ IE Restricted Site Potentially Unwanted: 3xfestival.com ~ IE Restricted Site Potentially Unwanted: 3xmiracle.com ~ IE Restricted Site Potentially Unwanted: 3xmoviesblog.com ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 7876(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 7876(Bad) ---\ INTERNET EXPLORER,Proxy Management (4) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (15658) ---\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (3) - 0s O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_191\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_191\bin\jp2ssv.dll =>.Oracle America, Inc.® O2 - BHO: ScriptInjectionPluginBrowserHelperObject [64Bits] - {EC1E29BB-F56A-45D8-B023-D3EF710FA0E0} . (.AO Kaspersky Lab - Kaspersky Protection plugins.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\x64\ieext\ie_plugin.dll =>.Kaspersky Lab® ---\ RACCOURCIS GLOBAL STARTUP (59) - 2s O4 - GS\Desktop [Administrateur]: Electrum.lnk . (...) C:\Program Files (x86)\Electrum\electrum-3.2.3.exe O4 - GS\Desktop [Administrateur]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\david\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\david\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [Administrateur]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Administrateur]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\TaskBar [Administrateur]: VyprVPN.lnk . (.Golden Frog, GmbH. - VyprVPN by Golden Frog.) C:\Program Files (x86)\VyprVPN\VyprVPN.exe =>.Golden Frog, GmbH. O4 - GS\Programs [Administrateur]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\david\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Administrateur]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\david\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\Desktop [david]: Electrum.lnk . (...) C:\Program Files (x86)\Electrum\electrum-3.2.3.exe O4 - GS\Desktop [david]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\david\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\Desktop [david]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\david\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [david]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [david]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [david]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [david]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\TaskBar [david]: VyprVPN.lnk . (.Golden Frog, GmbH. - VyprVPN by Golden Frog.) C:\Program Files (x86)\VyprVPN\VyprVPN.exe =>.Golden Frog, GmbH. O4 - GS\Programs [david]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\david\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [david]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\david\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\Desktop [WDAGUtilityAccount]: Electrum.lnk . (...) C:\Program Files (x86)\Electrum\electrum-3.2.3.exe O4 - GS\Desktop [WDAGUtilityAccount]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\david\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\Desktop [WDAGUtilityAccount]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\david\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [WDAGUtilityAccount]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\sendTo [WDAGUtilityAccount]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [WDAGUtilityAccount]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - .) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [WDAGUtilityAccount]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\TaskBar [WDAGUtilityAccount]: VyprVPN.lnk . (.Golden Frog, GmbH. - VyprVPN by Golden Frog.) C:\Program Files (x86)\VyprVPN\VyprVPN.exe =>.Golden Frog, GmbH. O4 - GS\Programs [WDAGUtilityAccount]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\david\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [WDAGUtilityAccount]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\david\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\CommonDesktop [Public]: CCleaner.lnk . (.Piriform Software Ltd - CCleaner.) C:\Program Files\CCleaner\CCleaner64.exe {0523409B9FB5C3B8C0C463A318723FF9} O4 - GS\CommonDesktop [Public]: Corel PaintShop Pro 2018 (64-bit).lnk . (.Corel, Inc. - .) C:\Program Files (x86)\Corel\Corel PaintShop Pro 2018 (64-bit)\Corel PaintShop Pro.exe =>.Corel, Inc. O4 - GS\CommonDesktop [Public]: Corel PaintShop Pro 2019 (64-bit).lnk . (.Corel, Inc. - .) C:\Program Files (x86)\Corel\Corel PaintShop Pro 2019 (64-bit)\Corel PaintShop Pro.exe =>.Corel, Inc. O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\CommonDesktop [Public]: Kaspersky Password Manager.lnk . (.AO Kaspersky Lab - Kaspersky Password Manager.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\kpm.exe =>.Kaspersky Lab® O4 - GS\CommonDesktop [Public]: Kaspersky Total Security.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\avpui.exe =>.Kaspersky Lab® O4 - GS\CommonDesktop [Public]: Kleopatra.lnk . (...) C:\Program Files (x86)\Gpg4win\bin\kleopatra.exe O4 - GS\CommonDesktop [Public]: Protection bancaire.lnk . (.AO Kaspersky Lab - Kaspersky Anti-Virus.) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\avpui.exe -safebanking =>.Kaspersky Lab® O4 - GS\CommonDesktop [Public]: VMware Workstation 14 Player.lnk . (.VMware, Inc. - VMware Player.) C:\Program Files (x86)\VMware\VMware Player\vmplayer.exe =>.VMware, Inc.® O4 - GS\CommonDesktop [Public]: VyprVPN.lnk . (.Golden Frog, GmbH. - VyprVPN by Golden Frog.) C:\Program Files (x86)\VyprVPN\VyprVPN.exe =>.Golden Frog, GmbH. O4 - GS\CommonDesktop [Public]: Xperia Companion.lnk . (.Sony - Xperia Companion.) C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe {02E66C1540B076706A954CEB7CFA0724} =>.Sony O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\david\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft Corporation® O4 - GS\Programs [Public]: Start Tor Browser.lnk . (.Mozilla Corporation - Tor Browser.) C:\Users\david\Desktop\Tor Browser\Browser\firefox.exe =>.Mozilla Corporation O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\internet explorer\iexplore.exe =>.Microsoft Corporation® O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google Inc. - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Kleopatra.lnk . (...) C:\Program Files (x86)\Gpg4win\bin\kleopatra.exe ---\ MODIFICATION DOMAINE/ADRESSES (DNS) (2) - 0s O17 - HKLM\System\CCS\Services\Tcpip\..\{16bb7a65-467f-43d6-97e2-9dfa39626e74}: DhcpNameServer = 10.11.131.1 =>.Private IP (10.0.0.0 - 10.255.255.255) =>.Private IP O17 - HKLM\System\CCS\Services\Tcpip\..\{270962b3-6f3d-47eb-a0af-35a8a701f683}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress ---\ PROTOCOLE ADDITIONNEL (19) - 0s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll =>.Microsoft Corporation ---\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\WINDOWS\system32\userinit.exe =>.Microsoft Corporation ---\ ÉNUMÈRE LES DONNÉES DE BOOTEXECUTE (1) - 0s O34 - HKLM BootExecute: (sdnclean64.exe) =>.Safer Networking Ltd ---\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (5) - 1s O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft Corporation® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google Inc. - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\70.0.3538.102\Installer\chrmstp.exe =>.Google Inc® ---\ LOGICIELS INSTALLÉS (60) - 5s O42 - Logiciel: Adobe Flash Player 31 PPAPI - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe Flash Player PPAPI =>.Adobe Systems Incorporated® O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner {0523409B9FB5C3B8C0C463A318723FF9} =>.Piriform O42 - Logiciel: Corel PaintShop Pro 2018 - (.Corel Corporation.) [HKLM][64Bits] -- _{6000096B-318C-40F8-A450-043B6A602D16} =>.Corel Corporation® O42 - Logiciel: Corel PaintShop Pro 2019 - (.Corel Corporation.) [HKLM][64Bits] -- _{90B0B84D-5C50-4EED-89E3-59791663B7E5} =>.Corel Corporation® O42 - Logiciel: Corel Update Manager - (.Corel corporation.) [HKLM][64Bits] -- {35F11FE8-08DD-4606-8C6B-1A18BDC083CF} =>.Corel Corporation O42 - Logiciel: Corel Update Manager - (.Corel corporation.) [HKLM][64Bits] -- {67881956-8135-4804-9465-BA1419010638} =>.Corel Corporation O42 - Logiciel: Electrum - (.Electrum Technologies GmbH.) [HKCU][64Bits] -- Electrum =>.Electrum Technologies GmbH O42 - Logiciel: GNU Privacy Guard - (.The GnuPG Project.) [HKLM][64Bits] -- GnuPG =>.The GnuPG Project O42 - Logiciel: Google Chrome - (.Google Inc..) [HKLM][64Bits] -- Google Chrome =>.Google Inc® O42 - Logiciel: Google Update Helper - (.Google Inc..) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} =>.Google Inc. O42 - Logiciel: Gpg4win (3.1.4) - (.The Gpg4win Project.) [HKLM][64Bits] -- Gpg4win =>.The Gpg4win Project O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM][64Bits] -- {6000096B-318C-40F8-A450-043B6A602D16} =>.Corel Corporation O42 - Logiciel: ICA - (.Corel Corporation.) [HKLM][64Bits] -- {90B0B84D-5C50-4EED-89E3-59791663B7E5} =>.Corel Corporation O42 - Logiciel: IPM_PSP_COM64 - (.Corel Corporation.) [HKLM][64Bits] -- {1BB2EFF4-F69B-4637-9885-758CD0C2009D} =>.Corel Corporation O42 - Logiciel: IPM_PSP_COM64 - (.Corel Corporation.) [HKLM][64Bits] -- {2013AABB-7212-4D79-B13B-25E567C2D0E4} =>.Corel Corporation O42 - Logiciel: Java 8 Update 191 - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F32180191F0} =>.Oracle Corporation O42 - Logiciel: Java 8 Update 191 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F64180191F0} =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} =>.Oracle Corporation O42 - Logiciel: Kaspersky Password Manager - (.Kaspersky Lab.) [HKLM][64Bits] -- {457FD841-CFA4-484B-B2FC-A471D080B56E} =>.Kaspersky Lab O42 - Logiciel: Kaspersky Password Manager - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{457FD841-CFA4-484B-B2FC-A471D080B56E} =>.Kaspersky Lab O42 - Logiciel: Kaspersky Total Security - (.Kaspersky Lab.) [HKLM][64Bits] -- {718613F4-492D-4272-ACC3-D04A8EF0F883} =>.Kaspersky Lab O42 - Logiciel: Kaspersky Total Security - (.Kaspersky Lab.) [HKLM][64Bits] -- InstallWIX_{718613F4-492D-4272-ACC3-D04A8EF0F883} =>.Kaspersky Lab O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 - (.Microsoft Corporation.) [HKLM][64Bits] -- {323dad84-0974-4d90-a1c1-e006c7fdbb7d} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 - (.Microsoft Corporation.) [HKLM][64Bits] -- {462f63a8-6347-4894-a1b3-dbfe3a4c981d} =>.Microsoft Corporation® O42 - Logiciel: Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24212 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F20396E5-D84E-3505-A7A8-7358F0155F6C} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24212 - (.Microsoft Corporation.) [HKLM][64Bits] -- {FAAD7243-0141-3987-AA2F-E56B20F80E41} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24212 - (.Microsoft Corporation.) [HKLM][64Bits] -- {844ECB74-9B63-3D5C-958C-30BD23F19EE4} =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24212 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B55901-995A-3650-80B1-BBFD047E2911} =>.Microsoft Corporation O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation O42 - Logiciel: Package de pilotes Windows - Sony Mobile Communications (ggsomc) SOMCFlashD - (.Sony Mobile Communications.) [HKLM][64Bits] -- 7AA77B236196DB9A6C04257060560ACDBB626F30 =>.Microsoft Windows® O42 - Logiciel: Panneau de configuration NVIDIA 375.63 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation O42 - Logiciel: PSPPContent - (.Corel Corporation.) [HKLM][64Bits] -- {616D4070-129A-48B3-85A1-25E0FDFBAB38} =>.Corel Corporation O42 - Logiciel: PSPPContent - (.Corel Corporation.) [HKLM][64Bits] -- {CC719875-8939-48D2-BA50-D5F5673C4C6A} =>.Corel Corporation O42 - Logiciel: PSPPHelp - (.Corel Corporation.) [HKLM][64Bits] -- {5FF01DFE-2B62-4568-BB54-06F79CB82B22} =>.Corel Corporation O42 - Logiciel: PSPPHelp - (.Corel Corporation.) [HKLM][64Bits] -- {BBF5A9A0-82BD-4C51-9EAD-624651FE765B} =>.Corel Corporation O42 - Logiciel: PSPPro64 - (.Corel Corporation.) [HKLM][64Bits] -- {01CC6252-25FC-4A2D-9FBD-68E20C8C44B8} =>.Corel Corporation O42 - Logiciel: PSPPro64 - (.Corel Corporation.) [HKLM][64Bits] -- {A8A7345E-0111-4A73-9F0F-560A837BF901} =>.Corel Corporation O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Setup - (..) [HKLM][64Bits] -- {099E900F-5CFF-4BB4-816C-D6BFE3044341} O42 - Logiciel: Setup - (..) [HKLM][64Bits] -- {C9C9ACD1-F275-45CB-B507-96486DB5E608} O42 - Logiciel: Sony Mobile Software Update Drivers - (.Sony Mobile Communications.) [HKLM][64Bits] -- {4872001F-F67C-4C54-BC92-281C6A165251} =>.Sony Mobile Communications O42 - Logiciel: Sony Mobile Update Engine - (.Sony Mobile Communications Inc..) [HKCU][64Bits] -- Update Engine {0B293E95830AE1895C5A044966271ACA} =>.Sony Mobile Communications Inc. O42 - Logiciel: VMware Player - (.VMware, Inc..) [HKLM][64Bits] -- {F73534C6-3B48-40E7-9ED8-C3E6FF693FFF} =>.VMware, Inc. O42 - Logiciel: VyprVPN - (.Golden Frog, GmbH..) [HKLM][64Bits] -- {526B3DDC-6891-4F43-8F64-8B83DC9E4848} {058C9CCA166923FB687DBF19912BCB96} =>.Golden Frog, GmbH. O42 - Logiciel: Xperia Companion - (.Sony.) [HKLM][64Bits] -- {0785ee9f-59ca-46b1-861d-edbe859a85c9} {02E66C1540B076706A954CEB7CFA0724} =>.Sony O42 - Logiciel: Xperia Companion - (.Sony.) [HKLM][64Bits] -- {AF8E220D-5B8C-4F8C-B1D9-487D27E2202F} =>.Sony ---\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (107) - 5s HKLM\SOFTWARE\Corel =>.Corel HKLM\SOFTWARE\Debian =>.The Debian Project HKLM\SOFTWARE\GNU =>.GNU HKLM\SOFTWARE\GnuPG HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Gpg4win HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\JreMetrics =>.JreMetrics HKLM\SOFTWARE\KasperskyLab =>.Kaspersky Labs HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Nuance =>.Nuance HKLM\SOFTWARE\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Oracle =>.Oracle HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKLM\SOFTWARE\Sony Mobile =>.Sony Corporation HKLM\SOFTWARE\SRS Labs =>.SRS Labs HKLM\SOFTWARE\ThinPrint =>.ThinPrint HKLM\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Corel =>.Corel HKLM\SOFTWARE\WOW6432Node\Debian =>.The Debian Project HKLM\SOFTWARE\WOW6432Node\GNU =>.GNU HKLM\SOFTWARE\WOW6432Node\GnuPG HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Gpg4win HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\WOW6432Node\KasperskyLab =>.Kaspersky Labs HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance HKLM\SOFTWARE\WOW6432Node\NVIDIA Corporation =>.nVidia Corporation HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\Oracle =>.Oracle HKLM\SOFTWARE\WOW6432Node\Piriform =>.Piriform HKLM\SOFTWARE\WOW6432Node\Safer Networking Limited =>.Safer Networking Limited HKLM\SOFTWARE\WOW6432Node\Sony Mobile =>.Sony Corporation HKLM\SOFTWARE\WOW6432Node\SRS Labs =>.SRS Labs HKLM\SOFTWARE\WOW6432Node\ThinPrint =>.ThinPrint HKLM\SOFTWARE\WOW6432Node\VMware, Inc. =>.VMware, Inc. HKLM\SOFTWARE\WOW6432Node\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Bitcoin HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\BVRP Software =>.BVRP Software HKCU\SOFTWARE\Corel =>.Corel HKCU\SOFTWARE\Electrum =>.Electrum HKCU\SOFTWARE\GNU =>.GNU HKCU\SOFTWARE\Golden Frog, GmbH. =>.Golden Frog, GmbH. HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\KasperskyLab =>.Kaspersky Labs HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKCU\SOFTWARE\Sony Mobile =>.Sony Corporation HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\Sysinternals =>.Sysinternals HKCU\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Corel =>.Corel HKU\.DEFAULT\SOFTWARE\Nahimic =>.Nahimic HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform HKU\.DEFAULT\SOFTWARE\Protexis64 HKU\.DEFAULT\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Bitcoin HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\BugSplat =>.Bugsplat Game HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\BVRP Software =>.BVRP Software HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Corel =>.Corel HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Electrum =>.Electrum HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\GNU =>.GNU HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Golden Frog, GmbH. =>.Golden Frog, GmbH. HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\JavaSoft =>.JavaSoft HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\KasperskyLab =>.Kaspersky Labs HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Macromedia =>.Macromedia HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Opera Software =>.Opera Software HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Sony Mobile =>.Sony Corporation HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Sysinternals =>.Sysinternals HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\VMware, Inc. =>.VMware, Inc. HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-4155899956-1560986946-2008190831-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\ CONTENU DES DOSSIERS PROGRAMMES (175) - 2s O43 - CFD: 12/11/2018 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 22/09/2018 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 26/10/2018 - [] D -- C:\Program Files\Corel =>.Corel Corporation O43 - CFD: 05/08/2018 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 12/10/2018 - [] D -- C:\Program Files\internet explorer =>.Microsoft Corporation O43 - CFD: 18/10/2018 - [] D -- C:\Program Files\Java =>.Oracle O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\Lenovo =>.Lenovo O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 05/08/2018 - [] D -- C:\Program Files\Sony Mobile =>.Sony Corporation O43 - CFD: 28/07/2018 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 12/10/2018 - [] RD -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 12/10/2018 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\windows nt =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 13/11/2018 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 18/10/2018 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 26/10/2018 - [] D -- C:\Program Files (x86)\Corel =>.Corel Corporation O43 - CFD: 08/11/2018 - [] D -- C:\Program Files (x86)\Electrum =>.Electrum O43 - CFD: 19/10/2018 - [] D -- C:\Program Files (x86)\GnuPG =>.GNU PG O43 - CFD: 29/07/2018 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 19/10/2018 - [] D -- C:\Program Files (x86)\Gpg4win =>.The Gpg4win Project O43 - CFD: 12/10/2018 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 18/10/2018 - [] D -- C:\Program Files (x86)\Java =>.Oracle O43 - CFD: 10/08/2018 - [] D -- C:\Program Files (x86)\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 27/09/2018 - [] D -- C:\Program Files (x86)\PortablePGP O43 - CFD: 05/08/2018 - [] D -- C:\Program Files (x86)\Sony {02E66C1540B076706A954CEB7CFA0724} =>.Sony O43 - CFD: 07/10/2018 - [] D -- C:\Program Files (x86)\Spybot - Search & Destroy 2 =>.SaferNetworking O43 - CFD: 31/08/2018 - [] D -- C:\Program Files (x86)\VMware =>.VMware, Inc.® O43 - CFD: 14/09/2018 - [] D -- C:\Program Files (x86)\VyprVPN =>.Golden Frog GmbH O43 - CFD: 12/10/2018 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 12/10/2018 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\windows nt =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 13/09/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 29/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 26/10/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel PaintShop Pro 2018 O43 - CFD: 22/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Corel PaintShop Pro 2019 O43 - CFD: 18/10/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 29/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Password Manager =>.Kaspersky Labs O43 - CFD: 29/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security =>.Kaspersky Labs O43 - CFD: 28/07/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 05/08/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony =>.Sony O43 - CFD: 28/07/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 31/08/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware =>.VMware O43 - CFD: 28/07/2018 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 24/09/2018 - [] D -- C:\ProgramData\Caphyon =>.Caphyon O43 - CFD: 31/07/2018 - [] D -- C:\ProgramData\CheckMAL O43 - CFD: 26/10/2018 - [] D -- C:\ProgramData\Corel =>.Corel Corporation O43 - CFD: 27/09/2018 - [] D -- C:\ProgramData\david O43 - CFD: 28/07/2018 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 10/08/2018 - [] D -- C:\ProgramData\Golden Frog, GmbH =>.Golden Frog, GmbH O43 - CFD: 13/11/2018 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 28/07/2018 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 02/10/2018 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 24/09/2018 - [] D -- C:\ProgramData\NordVpn =>.NordVPN O43 - CFD: 28/07/2018 - [] D -- C:\ProgramData\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 31/07/2018 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 22/09/2018 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 16/10/2018 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 22/09/2018 - [] D -- C:\ProgramData\Protexis64 =>.Protexis Inc. O43 - CFD: 30/10/2018 - [] D -- C:\ProgramData\Realtek =>.Realtek O43 - CFD: 13/11/2018 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 05/08/2018 - [] D -- C:\ProgramData\Sony Mobile =>.Sony Corporation O43 - CFD: 02/10/2018 - [] D -- C:\ProgramData\Spybot - Search & Destroy =>.SaferNetworking O43 - CFD: 22/09/2018 - [] D -- C:\ProgramData\UniqueId =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 10/11/2018 - [] D -- C:\ProgramData\VMware =>.VMware O43 - CFD: 28/07/2018 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 18/10/2018 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle O43 - CFD: 10/08/2018 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 31/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Oracle =>.Oracle O43 - CFD: 22/09/2018 - [] D -- C:\Program Files (x86)\Common Files\Protexis =>.Protexis Inc. O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Program Files (x86)\Common Files\system =>.Microsoft Corporation O43 - CFD: 31/08/2018 - [] D -- C:\Program Files (x86)\Common Files\ThinPrint =>.ThinPrint O43 - CFD: 31/08/2018 - [] D -- C:\Program Files (x86)\Common Files\VMware =>.VMware O43 - CFD: 28/07/2018 - [] D -- C:\Users\david\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 05/08/2018 - [] D -- C:\Users\david\AppData\Roaming\Apple Computer =>.Apple Inc. O43 - CFD: 08/11/2018 - [] D -- C:\Users\david\AppData\Roaming\Bitcoin =>.Bitcoin Core project O43 - CFD: 22/09/2018 - [] D -- C:\Users\david\AppData\Roaming\Corel =>.Corel Corporation O43 - CFD: 13/11/2018 - [] D -- C:\Users\david\AppData\Roaming\Electrum =>.Electrum O43 - CFD: 27/09/2018 - [] D -- C:\Users\david\AppData\Roaming\GitHub Desktop O43 - CFD: 10/11/2018 - [] D -- C:\Users\david\AppData\Roaming\gnupg =>.GNU PG O43 - CFD: 29/07/2018 - [] D -- C:\Users\david\AppData\Roaming\Google =>.Google O43 - CFD: 10/11/2018 - [] D -- C:\Users\david\AppData\Roaming\kleopatra O43 - CFD: 29/07/2018 - [] D -- C:\Users\david\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 02/10/2018 - [] SD -- C:\Users\david\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 16/09/2018 - [] D -- C:\Users\david\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 31/07/2018 - [] D -- C:\Users\david\AppData\Roaming\Sun =>.Oracle O43 - CFD: 22/09/2018 - [] D -- C:\Users\david\AppData\Roaming\Ulead Systems =>.Ulead Systems O43 - CFD: 27/09/2018 - [] D -- C:\Users\david\AppData\Roaming\UnknownApplicationVendor O43 - CFD: 19/09/2018 - [] D -- C:\Users\david\AppData\Roaming\VMware =>.VMware O43 - CFD: 13/11/2018 - [] D -- C:\Users\david\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 31/07/2018 - [0] D -- C:\Users\david\AppData\Local\Adobe =>.Adobe O43 - CFD: 28/07/2018 - [0] SHD -- C:\Users\david\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 05/08/2018 - [] D -- C:\Users\david\AppData\Local\CEF =>.CEF O43 - CFD: 29/07/2018 - [] D -- C:\Users\david\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 29/07/2018 - [] D -- C:\Users\david\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 26/10/2018 - [] D -- C:\Users\david\AppData\Local\Corel PaintShop Pro =>.Corel O43 - CFD: 28/09/2018 - [0] D -- C:\Users\david\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 29/07/2018 - [0] D -- C:\Users\david\AppData\Local\DBG =>.DBG O43 - CFD: 22/10/2018 - [] D -- C:\Users\david\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 27/09/2018 - [] D -- C:\Users\david\AppData\Local\GitHubDesktop O43 - CFD: 10/08/2018 - [] D -- C:\Users\david\AppData\Local\Golden Frog, GmbH =>.Golden Frog, GmbH O43 - CFD: 10/08/2018 - [] D -- C:\Users\david\AppData\Local\Golden_Frog,_GmbH =>.Golden Frog GmbH O43 - CFD: 29/07/2018 - [] D -- C:\Users\david\AppData\Local\Google =>.Google O43 - CFD: 28/07/2018 - [0] SHD -- C:\Users\david\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 29/07/2018 - [] D -- C:\Users\david\AppData\Local\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 29/07/2018 - [] D -- C:\Users\david\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Users\david\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 17/10/2018 - [] D -- C:\Users\david\AppData\Local\NordVPN =>.NordVPN O43 - CFD: 16/09/2018 - [] D -- C:\Users\david\AppData\Local\Opera Software =>.Opera Software O43 - CFD: 15/09/2018 - [] D -- C:\Users\david\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 13/11/2018 - [] D -- C:\Users\david\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 16/09/2018 - [] D -- C:\Users\david\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Users\david\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 27/09/2018 - [] D -- C:\Users\david\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 13/11/2018 - [] D -- C:\Users\david\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] SHD -- C:\Users\david\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] D -- C:\Users\david\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 19/09/2018 - [] D -- C:\Users\david\AppData\Local\VMware =>.VMware O43 - CFD: 13/11/2018 - [] D -- C:\Users\david\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 01/08/2018 - [0] D -- C:\Users\david\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 16/09/2018 - [] D -- C:\Users\david\AppData\Local\Programs\Opera =>.Opera Software O43 - CFD: 29/07/2018 - [] SD -- C:\Users\david\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 11/11/2018 - [0] D -- C:\Users\david\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 31/07/2018 - [] D -- C:\Users\david\AppData\LocalLow\Sun =>.Oracle O43 - CFD: 02/11/2018 - [] D -- C:\Users\david\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 31/08/2018 - [] D -- C:\Users\david\Desktop\Tor Browser =>.Roger Dingledine O43 - CFD: 28/07/2018 - [] RD -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] RD -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 09/11/2018 - [] RD -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 08/11/2018 - [] D -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Electrum =>.Electrum O43 - CFD: 27/09/2018 - [0] D -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GitHub, Inc =>.GitHub O43 - CFD: 28/07/2018 - [] D -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 27/09/2018 - [] D -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PortablePGP O43 - CFD: 09/11/2018 - [] RD -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] RD -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] RD -- C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 28/07/2018 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 10/08/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Golden_Frog,_GmbH =>.Golden Frog GmbH O43 - CFD: 29/07/2018 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 10/11/2018 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\VMware =>.VMware ---\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation ---\ RACCOURCIS DES MENUS CONCEPTUELS (SCMH) (32) - 1s O108 - CMH1: GpgEX [64Bits] - {CCD955E4-5C16-4A33-AFDA-A8947A94946B} . (.g10 Code GmbH - GpgEX - GnuPG shell extensions.) -- C:\Program Files (x86)\Gpg4win\bin_64\gpgex.dll =>.g10 Code GmbH O108 - CMH1: Kaspersky Anti-Virus 19.0.0 [64Bits] - {755D388B-420B-4692-A974-84AAF0E577D3} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\x64\shellex.dll =>.Kaspersky Lab® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH1: SpyshelterExt [64Bits] - . (.Orphan.) O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH2: NvAppShExt [64Bits] - {A929C4CE-FD36-4270-B4F5-34ECAC5BD63C} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll =>.NVIDIA Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH2: OpenGLShExt [64Bits] - {E97DEC16-A50D-49bb-AE24-CF682282E08D} . (.NVIDIA Corporation - NVIDIA Shell Extensions.) -- C:\WINDOWS\system32\nv3dappshext.dll =>.NVIDIA Corporation O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH4: GpgEX [64Bits] - {CCD955E4-5C16-4A33-AFDA-A8947A94946B} . (.g10 Code GmbH - GpgEX - GnuPG shell extensions.) -- C:\Program Files (x86)\Gpg4win\bin_64\gpgex.dll =>.g10 Code GmbH O108 - CMH4: Kaspersky Anti-Virus 19.0.0 [64Bits] - {755D388B-420B-4692-A974-84AAF0E577D3} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\x64\shellex.dll =>.Kaspersky Lab® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH4: SpyshelterExt [64Bits] - . (.Orphan.) O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH5: NvCplDesktopContext [64Bits] - {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} . (.NVIDIA Corporation - NVIDIA Display Shell Extension.) -- C:\WINDOWS\System32\nvshext.dll =>.NVIDIA Corporation O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll =>.Microsoft Corporation O108 - CMH6: Kaspersky Anti-Virus 19.0.0 [64Bits] - {755D388B-420B-4692-A974-84AAF0E577D3} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\x64\shellex.dll =>.Kaspersky Lab® O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft Windows® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft Windows® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll =>.Microsoft Corporation O108 - CMH7: Kaspersky Anti-Virus 19.0.0 [64Bits] - {755D388B-420B-4692-A974-84AAF0E577D3} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\x64\shellex.dll =>.Kaspersky Lab® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll =>.Microsoft Corporation O108 - CMH7: SpyshelterExt [64Bits] - . (.Orphan.) O108 - CMH7: VMDiskMenuHandler [64Bits] - {271DC252-6FE1-4D59-9053-E4CF50AB99DE} . (.Orphan.) O108 - CMH7: VMDiskMenuHandler64 [64Bits] - {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} . (.VMware, Inc. - VMware Workstation.) -- C:\Program Files (x86)\VMware\VMware Player\x64\vmdkShellExt64.dll =>.VMware, Inc.® ---\ IMAGE FILE EXECUTION OPTIONS (IFEO) (11) - 0s O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft Windows Publisher® O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MitigationAuditOptions\\17660905521152] =>.Microsoft Windows Publisher® ---\ LISTE DES PILOTES DU SYSTÈME (437) - 12s O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [237568] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107416] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [654232] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [20480] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [127904] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [12800] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [14848] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [13824] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135520] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:23 N . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [626592] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:32 N . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [39424] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:33 N . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [108032] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:28 N . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [254464] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [181760] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [179712] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83360] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259480] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27032] =>.Microsoft Windows® O58 - SDL:2018/07/14 05:21:29 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [192920] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:19 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [132000] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:34 N . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [28672] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [28568] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [194976] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:40 N . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [60320] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\WINDOWS\System32\drivers\BasicDisplay.sys [63488] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\WINDOWS\System32\drivers\BasicRender.sys [34816] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [39840] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Broadcom Corporation O58 - SDL:2018/04/12 00:34:36 N . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:12 N . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [92056] =>.Microsoft Windows® O58 - SDL:2018/08/31 08:26:21 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [101888] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:24 N . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [116736] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [33792] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [106496] =>.Microsoft Corporation O58 - SDL:2018/10/21 08:19:37 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\bthhfenum.sys [112128] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [67072] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\WINDOWS\System32\drivers\bthpan.sys [129536] =>.Microsoft Corporation O58 - SDL:2018/10/21 08:14:07 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1097216] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [85504] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [38304] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [39936] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533912] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [60320] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - CapImg HID Driver.) -- C:\WINDOWS\System32\drivers\capimg.sys [123392] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:23 N . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [93696] =>.Microsoft Corporation O58 - SDL:2018/06/15 05:36:47 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [159744] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:12 N . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [78752] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [143768] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [321432] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [29184] =>.Chelsio Communications O58 - SDL:2018/04/12 00:33:49 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1836952] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [49152] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [413600] =>.Microsoft Windows® O58 - SDL:2018/07/14 04:55:22 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [414720] =>.Microsoft Corporation O58 - SDL:2018/05/15 09:07:01 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [382872] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:04 N . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1018784] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [32256] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [28576] =>.Microsoft Windows® O58 - SDL:2018/01/27 10:10:16 A . (.AO Kaspersky Lab - Cryptographic Module Driver x64 (56 bit).) -- C:\WINDOWS\System32\drivers\cm_km.sys [243400] =>.Kaspersky Lab® O58 - SDL:2018/10/21 08:46:33 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [709936] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [39328] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:12 N . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [55200] =>.Microsoft Windows® O58 - SDL:2018/05/20 12:53:11 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [88472] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:40 N . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [91544] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [45568] =>.Microsoft Corporation O58 - SDL:2018/06/15 05:42:01 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [141312] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [94112] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:23 N . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [39328] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:24 N . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [47104] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:46 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [98304] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:46 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16232] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:20 N . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [36256] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:35:21 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [91664] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [188832] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:12 N . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32256] =>.Microsoft Corporation O58 - SDL:2018/09/08 04:32:05 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [25600] =>.Microsoft Corporation O58 - SDL:2018/10/21 08:46:06 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [2824712] =>.Microsoft Windows® O58 - SDL:2018/10/21 08:46:00 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [413200] =>.Microsoft Windows® O58 - SDL:2018/10/21 08:45:53 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [793096] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:25 N . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [88472] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [118680] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [13824] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419032] =>.Microsoft Windows® O58 - SDL:2018/09/08 04:29:42 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [358912] =>.Microsoft Corporation O58 - SDL:2018/09/08 04:58:40 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [376120] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [32768] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [55808] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:20 N . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [86432] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:20 N . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [36352] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [26624] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [402848] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [62872] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [34208] =>.Microsoft Windows® O58 - SDL:2018/09/08 04:58:28 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [744976] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [466840] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Generic USB Function Class Driver.) -- C:\WINDOWS\System32\drivers\genericusbfn.sys [20992] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:04 N . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8192] =>.Microsoft Corporation O58 - SDL:2018/06/27 11:28:52 A . (.VMware, Inc. - VMware USB monitor.) -- C:\WINDOWS\System32\drivers\hcmon.sys [82896] =>.VMware, Inc.® O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [86016] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [38304] =>.Microsoft Windows® O58 - SDL:2018/09/08 04:30:51 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [115200] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [173568] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [54272] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [50592] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [47104] =>.Microsoft Corporation O58 - SDL:2018/06/08 10:01:36 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [42496] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64408] =>.Microsoft Windows® O58 - SDL:2018/08/09 05:53:36 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1026456] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [33184] =>.Microsoft Windows® O58 - SDL:2018/10/21 08:47:51 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [76304] =>.Microsoft Windows® O58 - SDL:2018/05/20 12:52:24 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [130456] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:20 N . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [29592] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [16896] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [28672] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [105984] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:45 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36864] =>.Intel(R) Corporation O58 - SDL:2018/04/12 00:33:45 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91648] =>.Intel(R) Corporation O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] =>.Intel Corporation O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [88576] =>.Intel Corporation O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] =>.Intel Corporation O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [174592] =>.Intel Corporation O58 - SDL:2018/04/12 00:33:48 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2018/04/12 00:33:45 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [885144] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412064] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [526232] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [38912] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19360] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [177192] =>.Microsoft Windows Hardware Abstraction Layer Publisher® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [200704] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:04 N . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [58272] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:33 N . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [85504] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [92064] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [214528] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [32256] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:43 N . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\WINDOWS\System32\drivers\irda.sys [119808] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:41 N . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\WINDOWS\System32\drivers\irenum.sys [19968] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22944] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [145816] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [63904] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [40448] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [23040] =>.Microsoft Corporation O58 - SDL:2018/10/02 10:43:42 A . (.AO Kaspersky Lab - Backup Disk Filter [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\klbackupdisk.sys [73416] =>.Kaspersky Lab® O58 - SDL:2018/10/02 10:43:43 A . (.AO Kaspersky Lab - Backup File Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klbackupflt.sys [123152] =>.Kaspersky Lab® O58 - SDL:2018/10/02 10:43:43 A . (.AO Kaspersky Lab - Virtual Disk [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\kldisk.sys [89168] =>.Kaspersky Lab® O58 - SDL:2017/03/30 07:13:36 A . (.AO Kaspersky Lab - Early Launch Anti-Malware Filter [fre_win8_.) -- C:\WINDOWS\System32\drivers\klelam.sys [29208] =>.Microsoft Windows Early Launch Anti-malware Publisher® O58 - SDL:2018/10/02 10:43:43 A . (.AO Kaspersky Lab - Filter Core [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klflt.sys [220472] =>.Kaspersky Lab® O58 - SDL:2018/10/02 10:43:06 A . (.AO Kaspersky Lab - klhk [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klhk.sys [1214752] =>.Kaspersky Lab® O58 - SDL:2018/10/02 10:43:45 A . (.AO Kaspersky Lab - Core System Interceptors [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klif.sys [1113912] =>.Kaspersky Lab® O58 - SDL:2018/02/12 03:17:16 A . (.AO Kaspersky Lab - Packet Network Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klim6.sys [57032] =>.Kaspersky Lab® O58 - SDL:2018/01/15 04:13:30 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klkbdflt.sys [58048] =>.Kaspersky Lab® O58 - SDL:2017/12/11 10:49:16 A . (.AO Kaspersky Lab - Mouse Device Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klmouflt.sys [83496] =>.Kaspersky Lab® O58 - SDL:2017/05/30 17:51:40 A . (.AO Kaspersky Lab - Format Recognizer [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\klpd.sys [50648] =>.Kaspersky Lab® O58 - SDL:2018/10/02 10:43:45 A . (.AO Kaspersky Lab - Generic PnP filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klpnpflt.sys [45768] =>.Kaspersky Lab® O58 - SDL:2018/02/12 15:51:02 N . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\kltap.sys [48080] =>.AnchorFree Inc® O58 - SDL:2018/11/01 09:39:43 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit Monitor.) -- C:\WINDOWS\System32\drivers\klupd_klif_arkmon.sys [238528] =>.Kaspersky Lab® O58 - SDL:2018/11/08 14:56:31 A . (.AO Kaspersky Lab - Kernel heuristics engine.) -- C:\WINDOWS\System32\drivers\klupd_klif_kimul.sys [100136] =>.Kaspersky Lab® O58 - SDL:2018/11/01 09:40:44 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit.) -- C:\WINDOWS\System32\drivers\klupd_klif_klark.sys [289856] =>.Kaspersky Lab® O58 - SDL:2018/11/01 09:39:44 A . (.AO Kaspersky Lab - Kaspersky Lab Boot Guard Driver.) -- C:\WINDOWS\System32\drivers\klupd_klif_klbg.sys [110640] =>.Kaspersky Lab® O58 - SDL:2018/11/01 09:39:45 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit Engine.) -- C:\WINDOWS\System32\drivers\klupd_klif_mark.sys [193168] =>.Kaspersky Lab® O58 - SDL:2018/02/17 01:50:42 A . (.AO Kaspersky Lab - WFP Network Filter [fre_win8_x64].) -- C:\WINDOWS\System32\drivers\klwfp.sys [100552] =>.Kaspersky Lab® O58 - SDL:2018/07/29 07:39:20 A . (.AO Kaspersky Lab - WFP Network Connection Filter Driver [fre_w.) -- C:\WINDOWS\System32\drivers\klwtp.sys [161080] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2018/02/24 04:17:48 A . (.AO Kaspersky Lab - Network Processor [fre_wnet_x64].) -- C:\WINDOWS\System32\drivers\kneps.sys [203968] =>.Kaspersky Lab® O58 - SDL:2018/04/12 00:34:43 N . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [13824] =>.Microsoft Corporation O58 - SDL:2018/08/31 04:13:19 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [402432] =>.Microsoft Corporation O58 - SDL:2018/10/21 08:45:46 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [139792] =>.Microsoft Windows® O58 - SDL:2018/10/21 08:46:28 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [171024] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:26 N . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [27136] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:24 N . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [65024] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108952] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124312] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [128408] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82848] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:27 N . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [128000] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [505240] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [56736] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:36 N . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [23552] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59800] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [75160] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [82328] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575896] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [86528] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [842648] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:04 N . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [43520] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:38 N . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [42496] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:47 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [44544] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [56728] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [33280] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [104352] =>.Microsoft Windows® O58 - SDL:2018/08/31 04:15:02 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [75776] =>.Microsoft Corporation O58 - SDL:2018/06/08 19:47:25 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [144384] =>.Microsoft Corporation O58 - SDL:2018/09/20 05:10:31 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [500536] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:24 N . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [226208] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [31232] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:12 N . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [169368] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [50592] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8704] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [11776] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [27136] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [18848] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [280984] =>.Microsoft Windows® O58 - SDL:2018/06/08 10:03:14 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [32256] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:32 N . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [84480] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:25 N . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [10752] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:25 N . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [10752] =>.Microsoft Corporation O58 - SDL:2018/06/08 10:29:14 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [375712] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [40864] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:25 N . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12800] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [16896] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:24 N . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [124832] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63904] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [108952] =>.Microsoft Windows® O58 - SDL:2018/08/03 04:38:53 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1285536] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:38 N . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [53760] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:32 N . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [128512] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:33 N . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [27136] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [65024] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:32 N . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [20992] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:34 N . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [192512] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:33 N . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [63488] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:04 N . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [128000] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [175104] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:32 N . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [58264] =>.Microsoft Windows® O58 - SDL:2018/08/03 04:12:35 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [311296] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:20 N . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [536472] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [197632] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [73216] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [26112] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:22 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [44544] =>.Microsoft Corporation O58 - SDL:2018/09/20 05:09:18 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2421248] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:28 N . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [19872] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7168] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [104448] =>.Microsoft Corporation O58 - SDL:2016/11/11 05:52:48 A . (.NVIDIA Corporation - NVIDIA HDMI Audio Driver.) -- C:\WINDOWS\System32\drivers\nvhda64v.sys [221632] =>.NVIDIA Corporation® O58 - SDL:2018/04/12 00:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150424] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:48 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166304] =>.Microsoft Windows® O58 - SDL:2016/11/11 05:53:50 A . (.NVIDIA Corporation - Stereoscopic 3D USB controller driver.) -- C:\WINDOWS\System32\drivers\nvstusb.sys [478264] =>.NVIDIA Corporation® O58 - SDL:2018/08/09 05:26:43 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [528384] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:12 N . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [152984] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [98816] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:20 N . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [166816] =>.Microsoft Windows® O58 - SDL:2018/08/09 05:54:29 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [375704] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16288] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [53656] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:45 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [120216] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [53152] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [140192] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:43 N . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [726528] =>.Microsoft Corporation O58 - SDL:2016/07/11 15:38:10 A . (.TPMX Electronics Ltd. - Mouse Suite Driver.) -- C:\WINDOWS\System32\drivers\PELMOUSE.SYS [26880] =>.TPMX Electronics Ltd. O58 - SDL:2016/07/11 15:55:50 A . (...) -- C:\WINDOWS\System32\drivers\pelusblf.sys [33048] O58 - SDL:2016/07/11 15:38:24 A . (.TPMX Electronics Ltd. - USB Device Filter Driver.) -- C:\WINDOWS\System32\drivers\PELVENDR.SYS [15032] =>.TPMX Electronics Ltd. O58 - SDL:2018/04/12 00:33:49 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58776] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [61848] =>.Microsoft Windows® O58 - SDL:2016/07/11 15:42:06 A . (...) -- C:\WINDOWS\System32\drivers\phidmice.sys [33048] O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [105984] =>.Microsoft Corporation O58 - SDL:2016/07/11 15:41:56 A . (.TPMX Electronics Ltd. - Mouse Suite Driver.) -- C:\WINDOWS\System32\drivers\pmouself.SYS [26880] =>.TPMX Electronics Ltd. O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [16896] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:46 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [379392] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [178176] =>.Microsoft Corporation O58 - SDL:2016/07/11 15:42:10 A . (.TPMX Electronics Ltd. - USB Device Filter Driver.) -- C:\WINDOWS\System32\drivers\pvendrlf.SYS [15032] =>.TPMX Electronics Ltd. O58 - SDL:2018/04/12 00:34:32 N . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [49152] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [39840] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:33 N . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [17408] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:34 N . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [106496] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:33 N . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [82944] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:34 N . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [97280] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:34 N . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [78848] =>.Microsoft Corporation O58 - SDL:2018/09/08 04:59:14 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [433664] =>.Microsoft Windows® O58 - SDL:2018/04/12 17:23:12 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [27136] =>.Microsoft Corporation O58 - SDL:2018/06/15 18:33:33 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [182784] =>.Microsoft Corporation O58 - SDL:2018/04/12 17:23:13 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [30616] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:43 N . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [284064] =>.Microsoft Windows® O58 - SDL:2018/06/15 06:08:16 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [1921944] =>.Microsoft Windows® O58 - SDL:2018/06/15 06:08:05 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [945568] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [193536] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Transport d’ordinateur virtuel Microsoft Re.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [43008] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [104448] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:29 N . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [150016] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:36 N . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [35328] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:38 N . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13312] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:24 N . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [81920] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [604160] =>.Realtek O58 - SDL:2018/04/12 00:33:53 N . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [65536] =>.Realtek O58 - SDL:2017/12/11 01:52:36 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Filter Driver.) -- C:\WINDOWS\System32\drivers\RtkBtfilter.sys [756672] =>.Realtek Semiconductor Corp.® O58 - SDL:2016/06/02 09:26:34 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [5111040] =>.Realtek Semiconductor Corp® O58 - SDL:2017/12/21 02:35:00 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 60309 29492.) -- C:\WINDOWS\System32\drivers\rtwlane.sys [8009040] =>.Realtek Semiconductor Corp.® O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [109984] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:37 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [43008] =>.Microsoft Corporation O58 - SDL:2018/08/03 04:47:12 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [128920] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:36 N . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [176032] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [287128] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [33176] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [97696] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [97176] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [75680] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [154528] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [25088] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [84992] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [28160] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [17920] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:04 N . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [63896] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44952] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81816] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:20 N . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [34208] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:36 N . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] =>.Microsoft Corporation O58 - SDL:2018/10/21 08:45:47 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [175624] =>.Microsoft Windows® O58 - SDL:2018/10/21 08:46:42 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [611640] =>.Microsoft Windows® O58 - SDL:2018/04/12 17:23:15 N . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [57752] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:12 N . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [82328] =>.Microsoft Windows® O58 - SDL:2018/08/31 04:12:51 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [736256] =>.Microsoft Corporation O58 - SDL:2018/06/15 05:42:34 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [266752] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31128] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [156056] =>.Microsoft Windows® O58 - SDL:2018/05/20 13:33:14 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [105368] =>.Microsoft Windows® O58 - SDL:2018/10/21 08:46:20 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [560136] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:12 N . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [82432] =>.Microsoft Corporation O58 - SDL:2018/06/15 08:10:52 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [48544] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [40352] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:36 N . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [75264] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - VSC vidéo Synth3D RemoteFX Microsoft.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [64512] =>.Microsoft Corporation O58 - SDL:2018/06/08 17:24:36 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [36496] =>.OpenVPN Technologies, Inc.® O58 - SDL:2018/04/12 00:34:36 N . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [31232] =>.Microsoft Corporation O58 - SDL:2018/07/24 14:50:08 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tapnordvpn.sys [44896] =>.TEFINCOM S.A.® O58 - SDL:2018/06/08 17:24:36 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver.) -- C:\WINDOWS\System32\drivers\tapvyprvpn.sys [44896] =>.Golden Frog, GmbH® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [27544] =>.Microsoft Windows® O58 - SDL:2018/10/21 08:45:51 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2719032] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:32 N . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [51712] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [40352] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [121248] =>.Microsoft Windows® O58 - SDL:2016/04/04 08:06:10 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [195152] =>.Intel(R) Embedded Subsystems and IP Blocks Group® O58 - SDL:2018/04/12 17:23:17 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [37280] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:24 N . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [128920] =>.Microsoft Windows® O58 - SDL:2018/08/09 05:55:01 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [230304] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [63488] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [35328] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:32 N . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [119296] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79776] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [128512] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [152576] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - USB Connector Manager UCSI Client.) -- C:\WINDOWS\System32\drivers\UcmUcsi.sys [57856] =>.Microsoft Corporation O58 - SDL:2018/08/03 04:40:48 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [228136] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - 'udecx.DRIVER'.) -- C:\WINDOWS\System32\drivers\Udecx.sys [45056] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:38 N . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [324608] =>.Microsoft Corporation O58 - SDL:2018/06/08 11:31:08 A . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\WINDOWS\System32\drivers\uefi.sys [29600] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [282008] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - UFX Chipidea Client Driver.) -- C:\WINDOWS\System32\drivers\UfxChipidea.sys [98200] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [144288] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\WINDOWS\System32\drivers\umbus.sys [56832] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [14336] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - USB Role-Switch Driver for Chipidea Core.) -- C:\WINDOWS\System32\drivers\urschipidea.sys [29088] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [67992] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:51 A . (.Microsoft Corporation - USB Role-Switch Driver for Synopsys Core.) -- C:\WINDOWS\System32\drivers\urssynopsys.sys [28064] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:34 N . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [22016] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:40 N . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [37376] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [168864] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:46 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [102912] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [32152] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [95648] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [514464] =>.Microsoft Windows® O58 - SDL:2018/08/03 04:40:43 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [566568] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:14 N . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [39936] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [412576] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:47 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [27136] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [72192] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [131488] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [35328] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [434592] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [56224] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:20 N . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [217496] =>.Microsoft Windows® O58 - SDL:2018/06/08 11:30:11 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [705440] =>.Microsoft Windows® O58 - SDL:2018/10/21 08:19:52 A . (.Microsoft Corporation - Pilote d'infrastructure HID virtuelle (VHF).) -- C:\WINDOWS\System32\drivers\vhf.sys [36352] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:23 N . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [44544] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:54 N . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [81824] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:08 N . (.Microsoft Corporation - Hyper-V VMBus Root KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmclr.sys [82432] =>.Microsoft Corporation O58 - SDL:2018/08/03 04:39:49 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [114080] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [25088] =>.Microsoft Corporation O58 - SDL:2017/09/05 03:54:54 A . (.VMware, Inc. - VMware PCI VMCI Bus Device.) -- C:\WINDOWS\System32\drivers\vmci.sys [105024] =>.VMware, Inc.® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [13312] =>.Microsoft Corporation O58 - SDL:2018/08/03 04:17:05 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [10240] =>.Microsoft Corporation O58 - SDL:2018/08/07 19:24:34 A . (.VMware, Inc. - VMware virtual network driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnet.sys [46040] =>.VMware, Inc.® O58 - SDL:2018/08/07 19:24:40 A . (.VMware, Inc. - VMware virtual network adapter driver (64-b.) -- C:\WINDOWS\System32\drivers\vmnetadapter.sys [46040] =>.VMware, Inc.® O58 - SDL:2018/08/07 19:24:40 A . (.VMware, Inc. - VMware bridge driver (64-bit).) -- C:\WINDOWS\System32\drivers\vmnetbridge.sys [66520] =>.VMware, Inc.® O58 - SDL:2018/08/07 19:24:40 A . (.VMware, Inc. - VMware network application interface driver.) -- C:\WINDOWS\System32\drivers\vmnetuserif.sys [43992] =>.VMware, Inc.® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [9216] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [47520] =>.Microsoft Windows® O58 - SDL:2018/08/07 19:11:58 A . (.VMware, Inc. - VMware kernel driver.) -- C:\WINDOWS\System32\drivers\vmx86.sys [96136] =>.VMware, Inc.® O58 - SDL:2018/06/15 08:03:31 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [83360] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:24 N . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [373144] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:39 N . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [398240] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16288] =>.Microsoft Windows® O58 - SDL:2018/08/03 04:39:58 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [75160] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166808] =>.Microsoft Windows® O58 - SDL:2017/09/05 03:54:54 A . (.VMware, Inc. - VMware vSockets Service.) -- C:\WINDOWS\System32\drivers\vsock.sys [91712] =>.VMware, Inc.® O58 - SDL:2018/04/12 00:33:49 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305560] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:43 N . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [27136] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:43 N . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [76288] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:43 N . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [44544] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:48 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [30720] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:33 N . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [81920] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:08 N . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [56320] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [151960] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:14 N . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [82944] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:58 N . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [44616] =>.Microsoft Windows Early Launch Anti-malware Publisher® O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [924856] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:58 N . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [331680] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [61624] =>.Microsoft Windows® O58 - SDL:2018/10/21 08:17:38 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [787456] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:15 N . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [21408] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:58 N . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [44032] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:23 N . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [45984] =>.Microsoft Windows® O58 - SDL:2018/06/08 10:29:39 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [164768] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:20 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [35744] =>.Microsoft Windows® O58 - SDL:2018/06/15 06:08:14 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [72768] =>.Microsoft Windows Hardware Abstraction Layer Publisher® O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18472] =>.Microsoft Windows Hardware Abstraction Layer Publisher® O58 - SDL:2018/08/03 04:39:49 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [31648] =>.Microsoft Windows® O58 - SDL:2018/08/03 04:15:43 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [68096] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [32152] =>.Microsoft Windows® O58 - SDL:2018/10/21 08:19:29 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [228864] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [92672] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:49 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [64920] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:49 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [18432] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [20384] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:20 N . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [209816] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:33:58 N . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [30112] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:22 N . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [33184] =>.Microsoft Windows® O58 - SDL:2018/04/12 00:34:39 N . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [23040] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:28 N . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [125440] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:28 N . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [264192] =>.Microsoft Corporation O58 - SDL:2018/06/15 05:44:07 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [295424] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:33:52 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [46592] =>.Microsoft Corporation O58 - SDL:2018/04/12 00:34:12 A . (.Microsoft Corporation - Full/Desktop Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [482304] =>.Microsoft Corporation O58 - SDL:2018/10/21 08:14:52 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2224640] =>.Microsoft Corporation O58 - SDL:2018/10/21 13:41:58 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3649024] =>.Microsoft Corporation ---\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (8) - 9s O61 - LFC: 2018/11/06 18:54:00 RSH . (..) -- C:\ProgramData\Protexis64\73104341.sys [258] O61 - LFC: 2018/11/06 18:54:55 ASH . (..) -- C:\ProgramData\Protexis64\KGyGaAvL.sys [3862] O61 - LFC: 2018/11/12 20:23:27 A . (.Piriform Software Ltd.) -- C:\Users\david\Downloads\cctrialsetup (1).exe [18078920] {0523409B9FB5C3B8C0C463A318723FF9} O61 - LFC: 2018/11/12 20:23:17 A . (.Piriform Software Ltd.) -- C:\Users\david\Downloads\cctrialsetup.exe [18078920] {0523409B9FB5C3B8C0C463A318723FF9} O61 - LFC: 2018/11/08 01:33:16 A . (.Electrum.) -- C:\Users\david\Downloads\electrum-3.2.3-setup.exe [16546528] {047554A2A5C82CB3121B1A5AF2B20826} O61 - LFC: 2018/11/10 14:55:22 A . (..) -- C:\Users\david\Downloads\gpg4usb-0.3.3-1\gpg4usb\bin\gpg.exe [441856] O61 - LFC: 2018/11/10 14:55:21 A . (..) -- C:\Users\david\Downloads\gpg4usb-0.3.3-1\gpg4usb\mingwm10.dll [15960] O61 - LFC: 2018/11/10 14:55:22 A . (..) -- C:\Users\david\Downloads\gpg4usb-0.3.3-1\gpg4usb\start_windows.exe [6795776] ---\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- '%1' %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- '%1' %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- '%1' %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- '%1' %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe '%1' %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- '%1' /S =>.Default.Value ---\ MENU DE DÉMARRAGE INTERNET (8) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc. O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\ RECHERCHE D'INFECTION SUR LES NAVIGATEURS (2) - 1s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (48) - 0s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [188928] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [188928] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [271360] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1267712] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [990720] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [786432] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [150528] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [109568] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [889344] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [224256] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [396800] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [397312] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [119808] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1487360] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [199680] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [262144] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [195584] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1308672] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [167936] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [827392] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1115648] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [402944] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [824832] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [335360] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [235520] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2248192] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1027584] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [69632] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [58880] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [166912] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1395200] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [44544] =>.Microsoft Corporation O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\Windows\System32\irmon.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [104960] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [932352] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [497664] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73216] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [604672] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [308224] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2904064] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1374208] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [613376] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [57856] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [858112] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [280576] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1148928] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\Windows\System32\usocore.dll [1373696] =>.Microsoft Corporation ---\ LISTE DES EXCEPTIONS DU PAREFEU WINDOWS (9) - 1s O87 - FAEL: '{939A8D19-84E3-4EB2-BE19-CD5C44C4CB87}' [In-None-P6-TRUE] .(.Sony - Xperia Companion.) -- C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe {02E66C1540B076706A954CEB7CFA0724} =>.Sony O87 - FAEL: '{ED61D1CA-EAE0-40E1-B5AA-FCAA3B520D49}' [In-None-P6-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe =>.VMware, Inc.® O87 - FAEL: '{3E61E364-6D56-4BD0-851F-7C87B42BAC1B}' [In-None-P6-TRUE] .(.VMware, Inc. - VMware Authorization Service.) -- C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe =>.VMware, Inc.® O87 - FAEL: '{189ACB76-9A04-47B7-A78B-0C6900A73A97}' [In-None-P17-TRUE] .(...) -- C:\Users\david\AppData\Local\Programs\Opera\55.0.2994.61\opera.exe (.not file.) =>.SUP.Orphan O87 - FAEL: '{5007F550-A513-4C10-A6F9-77440E840C68}' [In-None-P6-TRUE] .(.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe {0523409B9FB5C3B8C0C463A318723FF9} =>.Piriform Ltd O87 - FAEL: '{2E134647-9F20-442D-9A8E-8D05E9F4A4D5}' [In-None-P17-TRUE] .(.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe {0523409B9FB5C3B8C0C463A318723FF9} =>.Piriform Ltd O87 - FAEL: '{EFD953A2-69B7-401B-94FE-AD2DAAA6C1BF}' [In-None-P6-TRUE] .(.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe {0523409B9FB5C3B8C0C463A318723FF9} =>.Piriform Ltd O87 - FAEL: '{E3088F0C-F02E-41E0-A1F6-DBBCB8F0284F}' [In-None-P17-TRUE] .(.Piriform Ltd - CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe {0523409B9FB5C3B8C0C463A318723FF9} =>.Piriform Ltd O87 - FAEL: '{D43A5AC8-93B2-495B-B060-11D62F94DC1E}' [In-None-P17-TRUE] .(.Google Inc. - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google Inc® ---\ CODES PRODUITS LOGICIELS (36) - 0s O90 - PUC: '0704D616A9213B84581A520EDFBFBA83' [HKLM] . (.PSPPContent.) -- c:\WINDOWS\Installer\{616D4070-129A-48B3-85A1-25E0FDFBAB38}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: '0A9A5FBBDB2815C4E9DA266415EF67B5' [HKLM] . (.PSPPHelp.) -- c:\WINDOWS\Installer\{BBF5A9A0-82BD-4C51-9EAD-624651FE765B}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: '10955B73A5990563081BBBDF40E79211' [HKLM] . (.Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24212.) =>.Microsoft Corporation O90 - PUC: '148DF7544AFCB4842BCF4A170D085BE6' [HKLM] . (.Kaspersky Password Manager.) -- C:\WINDOWS\Installer\{457FD841-CFA4-484B-B2FC-A471D080B56E}\product.ico =>.Western Digital Technologies O90 - PUC: '1D5E3C0FEDA1E123187686FED06E995A' [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: '1DCA9C9C572FBC545B706984D65B6E80' [HKLM] . (.Setup.) -- c:\WINDOWS\Installer\{C9C9ACD1-F275-45CB-B507-96486DB5E608}\ARPPRODUCTICON.exe O90 - PUC: '21EE4A31AE32173319EEFE3BD6FDFFE3' [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: '22BEFC8F7E2A1793E9ADB411DEFE1C58' [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: '2526CC10CF52D2A4F9DB862EC0C8448B' [HKLM] . (.PSPPro64.) -- c:\WINDOWS\Installer\{01CC6252-25FC-4A2D-9FBD-68E20C8C44B8}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: '3427DAAF14107893AAF25EB6028FE014' [HKLM] . (.Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24212.) =>.Microsoft Corporation O90 - PUC: '47BCE44836B9C5D359C803DB321FE94E' [HKLM] . (.Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24212.) =>.Microsoft Corporation O90 - PUC: '4EA42A62D9304AC4784BF2238110190F' [HKLM] . (.Java 8 Update 191.) -- C:\Program Files (x86)\Java\jre1.8.0_191\\bin\javaws.exe =>.Sun Microsystems O90 - PUC: '4EA42A62D9304AC4784BF2468110190F' [HKLM] . (.Java 8 Update 191 (64-bit).) -- C:\Program Files\Java\jre1.8.0_191\\bin\javaws.exe =>.Sun Microsystems O90 - PUC: '4F316817D2942724CA3C0DA4E80F8F38' [HKLM] . (.Kaspersky Total Security.) -- C:\WINDOWS\Installer\{718613F4-492D-4272-ACC3-D04A8EF0F883}\arp.ico =>.Kaspersky Labs O90 - PUC: '4FFE2BB1B96F7364895857C80D2C00D9' [HKLM] . (.IPM_PSP_COM64.) -- c:\WINDOWS\Installer\{1BB2EFF4-F69B-4637-9885-758CD0C2009D}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: '578917CC93982D84AB055D5F76C3C4A6' [HKLM] . (.PSPPContent.) -- c:\WINDOWS\Installer\{CC719875-8939-48D2-BA50-D5F5673C4C6A}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: '5E69302FE48D50537A8A37850F51F5C6' [HKLM] . (.Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24212.) =>.Microsoft Corporation O90 - PUC: '62DBF9290209B993A9A757D1160F9B24' [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: '65918876531840844956AB4191106083' [HKLM] . (.Corel Update Manager.) -- c:\WINDOWS\Installer\{67881956-8135-4804-9465-BA1419010638}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: '6C43537F84B37E04E98D3C6EFF96F3FF' [HKLM] . (.VMware Player.) =>.VMware O90 - PUC: '6E8D947A316B3EB3F8F540C548BE2AB9' [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: '7C9F8B73BF303523781852719CD9C700' [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: '8EF11F53DD806064C8B6A181DB0C38FC' [HKLM] . (.Corel Update Manager.) -- c:\WINDOWS\Installer\{35F11FE8-08DD-4606-8C6B-1A18BDC083CF}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: 'A089CE062ADB6BC44A720BA745894BAC' [HKLM] . (.Google Update Helper.) =>.Google Inc. O90 - PUC: 'B6900006C8138F044A0540B3A606D261' [HKLM] . (.ICA.) -- c:\WINDOWS\Installer\{6000096B-318C-40F8-A450-043B6A602D16}\ARPPRODUCTICON.exe O90 - PUC: 'BBAA3102212797D41BB3525E762C0D4E' [HKLM] . (.IPM_PSP_COM64.) -- c:\WINDOWS\Installer\{2013AABB-7212-4D79-B13B-25E567C2D0E4}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: 'C025571B2A687A53689168CD7369889B' [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: 'C3AEB2FCAE628F23AAB933F1E743AB79' [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: 'D022E8FAC8B5C8F41B9D84D7722E02F2' [HKLM] . (.Xperia Companion.) -- C:\WINDOWS\Installer\{AF8E220D-5B8C-4F8C-B1D9-487D27E2202F}\CompanionIcon.ico =>.Xperia O90 - PUC: 'D48B0B0905C5DEE4983E959761367B5E' [HKLM] . (.ICA.) -- c:\WINDOWS\Installer\{90B0B84D-5C50-4EED-89E3-59791663B7E5}\ARPPRODUCTICON.exe O90 - PUC: 'DC8A59DBF9D1DA5389A1E3975220E6BB' [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: 'E5437A8A111037A4F9F065A038B79F10' [HKLM] . (.PSPPro64.) -- c:\WINDOWS\Installer\{A8A7345E-0111-4A73-9F0F-560A837BF901}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: 'EFD10FF526B28654BB45607FC98BB222' [HKLM] . (.PSPPHelp.) -- c:\WINDOWS\Installer\{5FF01DFE-2B62-4568-BB54-06F79CB82B22}\ARPPRODUCTICON.exe =>.Corel Corporation O90 - PUC: 'F009E990FFC54BB418C66DFB3E403414' [HKLM] . (.Setup.) -- c:\WINDOWS\Installer\{099E900F-5CFF-4BB4-816C-D6BFE3044341}\ARPPRODUCTICON.exe O90 - PUC: 'F1002784C76F45C4CB2982C1A6612515' [HKLM] . (.Sony Mobile Software Update Drivers.) -- C:\WINDOWS\Installer\{4872001F-F67C-4C54-BC92-281C6A165251}\AddRemovePrograms.ico =>.Sony Corporation O90 - PUC: 'F60730A4A66673047777F5728467D401' [HKLM] . (.Java Auto Updater.) =>.Sun Microsystems ---\ PACKAGES WINDOWS INSTALLER (25) - 7s [MD5.12E12BC556B0367D447C0446F870D2D1] [WIS][2018/05/29 08:56:34] (.Sony - Desktop companion application for your Xper.) -- C:\WINDOWS\Installer\1ca8de.msi [48414720] =>.Sony [MD5.8FF65DAD1B6ECEF9B087CF810934C95B] [WIS][2018/07/29 07:19:25] (.Kaspersky Lab - Kaspersky Total Security.) -- C:\WINDOWS\Installer\2280d83.msi [13525086] =>.Kaspersky Lab [MD5.50EA7A4D9481B12A97070942F474D918] [WIS][2018/07/29 07:38:17] (.Google Inc. - Google Update Helper.) -- C:\WINDOWS\Installer\2382558.msi [40960] =>.Google Inc. [MD5.2A84554701B0E2EE85E15C9AA2285540] [WIS][2018/07/29 08:09:45] (.Kaspersky Lab - Kaspersky Password Manager.) -- C:\WINDOWS\Installer\2541638.msi [31346688] =>.Kaspersky Lab [MD5.69FD5336193815DB35610CAC67C6FB07] [WIS][2018/10/18 10:11:39] (.Oracle Corporation - Java SE Runtime Environment 8 Update 191.) -- C:\WINDOWS\Installer\27f87d4.msi [63557632] =>.Oracle Corporation [MD5.F6F106F330C8734BB2618EE7E9B20DB1] [WIS][2018/10/18 10:12:04] (.Oracle Corporation - Java Auto Updater.) -- C:\WINDOWS\Installer\27f87dd.msi [765952] =>.Oracle Corporation [MD5.DCA1F1FC7087C0568906B65755ACFA4E] [WIS][2018/10/18 10:12:27] (.Oracle Corporation - Java SE Runtime Environment 8 Update 191.) -- C:\WINDOWS\Installer\27f88d3.msi [71753728] =>.Oracle Corporation [MD5.0270C6FDF7B90F5993047AF31BD9DA61] [WIS][2018/09/22 20:35:29] (.Corel Corporation - Setup.) -- C:\WINDOWS\Installer\28fe44e.msi [6166528] =>.Corel Corporation [MD5.202634AB4125F924A168B2ACBC5E1CAD] [WIS][2018/09/22 20:35:28] (.Corel Corporation - PSPPContent.) -- C:\WINDOWS\Installer\28fe452.msi [34476544] =>.Corel Corporation [MD5.D185B7F3F77DBBA66D20F9CDE4EDF7F7] [WIS][2018/09/22 20:35:28] (.Corel Corporation - PSPPHelp.) -- C:\WINDOWS\Installer\28fe455.msi [2954752] =>.Corel Corporation [MD5.F979D0BA4A9CB32E5C3AB6782C8A6572] [WIS][2018/09/22 20:35:29] (.Corel Corporation.) -- C:\WINDOWS\Installer\28fe458.msi [126857216] =>.Corel Corporation [MD5.D158266AE6F42BF64E8658637941B477] [WIS][2018/09/22 20:35:28] (.Corel Corporation.) -- C:\WINDOWS\Installer\28fe45b.msi [15866368] =>.Corel Corporation [MD5.8D61DB842720EB10C9AD7B3B1A0C4FC9] [WIS][2018/09/22 20:35:28] (.Corel Corporation - ICA.) -- C:\WINDOWS\Installer\28fe45e.msi [4161024] =>.Corel Corporation [MD5.631BA67BFE6D9A3DCB7FF33E278E030A] [WIS][2018/09/22 20:35:28] (.Corel Corporation - Corel Update Helper v2.) -- C:\WINDOWS\Installer\28fe461.msi [19426304] =>.Corel Corporation [MD5.AE789BAF7E849FAF269CCC6FC4D43234] [WIS][2018/08/31 23:28:29] (.VMware, Inc. - VMware Player.) -- C:\WINDOWS\Installer\319b067.msi [74907648] =>.VMware, Inc. [MD5.454A3FAF052AAB5196C1F7480123488F] [WIS][2018/04/27 11:20:34] (.Sony Mobile Communications - Sony Mobile Software Update Drivers.) -- C:\WINDOWS\Installer\347370.msi [2998272] =>.Sony Mobile Communications [MD5.5F7B20612A0BA4641D176D5C4003266F] [WIS][2018/10/26 23:45:43] (.Corel Corporation - Setup.) -- C:\WINDOWS\Installer\c1f38.msi [6165504] =>.Corel Corporation [MD5.0D415B767291327B48F060EBF97C9F04] [WIS][2018/10/26 23:45:42] (.Corel Corporation - PSPPContent.) -- C:\WINDOWS\Installer\c1f3c.msi [25130496] =>.Corel Corporation [MD5.2A6548B8CA69CFB04030027340AF26D2] [WIS][2018/10/26 23:45:42] (.Corel Corporation - PSPPHelp.) -- C:\WINDOWS\Installer\c1f3f.msi [2977280] =>.Corel Corporation [MD5.140F6E23519D10F9DB1063B1CA4B1F60] [WIS][2018/10/26 23:45:43] (.Corel Corporation.) -- C:\WINDOWS\Installer\c1f42.msi [115297792] =>.Corel Corporation [MD5.E9CEE188EDD4EE48550BB2B76D791E77] [WIS][2018/10/26 23:45:42] (.Corel Corporation.) -- C:\WINDOWS\Installer\c1f45.msi [15818752] =>.Corel Corporation [MD5.61A85DFFC9B9CD2F413936F04D21A6C3] [WIS][2018/10/26 23:45:41] (.Corel Corporation - ICA.) -- C:\WINDOWS\Installer\c1f48.msi [4160000] =>.Corel Corporation [MD5.8BDF35501A38C91665F9C208AAA33783] [WIS][2018/10/26 23:45:41] (.Corel Corporation - Corel Update Helper v2.) -- C:\WINDOWS\Installer\c1f51.msi [17817088] =>.Corel Corporation [MD5.3A1272B33F5BCAE43F87A19BCE0EFF24] [WIS][2018/10/02 10:42:47] (.Kaspersky Lab.) -- C:\WINDOWS\Installer\16fe5503.msp [18440192] =>.Kaspersky Lab [MD5.D2F26242D1B928EDD86912216CB6267E] [WIS][2018/07/29 07:39:20] (.Kaspersky Lab.) -- C:\WINDOWS\Installer\2382553.msp [17960960] =>.Kaspersky Lab ---\ FEATURE CONTROLE. (127) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate ---\ SCAN ADDITIONNEL (5) - 2s HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\SpyshelterExt =>.SUP.Orphan HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\SpyshelterExt =>.SUP.Orphan HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\SpyshelterExt =>.SUP.Orphan HKLM\Software\Classes\Drive\shellex\ContextMenuHandlers\VMDiskMenuHandler =>.SUP.Orphan HKLM\Software\Classes\CLSID\{271DC252-6FE1-4D59-9053-E4CF50AB99DE} =>.SUP.Orphan ---\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS SUR VOTRE STATION (1) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan ~ Unselected Options: O82, ~ End of the scan, 10538 items in 01mn11s (1629)(0) ÉLÉMENT(S) TROUVÉ(S) PAR ZHPDIAG .SUP.Orphan LOGICIELS DE PROTECTION Kaspersky Total Security v19.0.0.1088 (Protection) Windows Defender W10 (Deactivate) (Protection) NUMEROS DE SÉRIE [0179B1E53056E28D2089AD60A29585C9] [12/02/2018] (.AnchorFree Inc.) - C:\WINDOWS\System32\drivers\kltap.sys [02E66C1540B076706A954CEB7CFA0724] [05/08/2018] (.Sony Mobile Communications AB.) - C:\ProgramData\Package Cache\{0785ee9f-59ca-46b1-861d-edbe859a85c9}\XperiaCompanionBundle.exe [02E66C1540B076706A954CEB7CFA0724] [29/05/2018] (.Sony Mobile Communications AB.) - C:\Program Files (x86)\Sony\Xperia Companion\BsSndRpt.exe [02E66C1540B076706A954CEB7CFA0724] [29/05/2018] (.Sony Mobile Communications AB.) - C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanion.exe [02E66C1540B076706A954CEB7CFA0724] [29/05/2018] (.Sony Mobile Communications AB.) - C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [0320BE3EB866526927F999B97B04346E] [11/12/2017] (.Realtek Semiconductor Corp..) - C:\Windows\RtkBtManServ.exe [0320BE3EB866526927F999B97B04346E] [11/12/2017] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RtkBtfilter.sys [0320BE3EB866526927F999B97B04346E] [21/12/2017] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rtwlane.sys [047554A2A5C82CB3121B1A5AF2B20826] [08/11/2018] (.Electrum Technologies GmbH.) - C:\Users\david\Downloads\electrum-3.2.3-setup.exe [04D54DC0A2016B263EEEB255D321056E] [08/06/2018] (.OpenVPN Technologies, Inc..) - C:\WINDOWS\System32\drivers\tap0901.sys [05062A4FBA1F6707C98323E87BD349DE] [08/06/2018] (.Golden Frog, GmbH.) - C:\WINDOWS\System32\drivers\tapvyprvpn.sys [0523409B9FB5C3B8C0C463A318723FF9] [06/11/2018] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleaner64.exe [0523409B9FB5C3B8C0C463A318723FF9] [06/11/2018] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCUpdate.exe [0523409B9FB5C3B8C0C463A318723FF9] [06/11/2018] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\uninst.exe [0523409B9FB5C3B8C0C463A318723FF9] [12/11/2018] (.Piriform Software Ltd.) - C:\Users\david\Downloads\cctrialsetup (1).exe [0523409B9FB5C3B8C0C463A318723FF9] [12/11/2018] (.Piriform Software Ltd.) - C:\Users\david\Downloads\cctrialsetup.exe [058C9CCA166923FB687DBF19912BCB96] [12/09/2018] (.Golden Frog GmbH.) - C:\Program Files (x86)\VyprVPN\uninstall.exe [0605823F3E8F0AD9C012646C9E834F38] [12/09/2018] (.OpenVPN Technologies, Inc..) - C:\Program Files (x86)\VyprVPN\OpenVPN\bin\openvpn.exe [06F04788031055D31DEFFEFCD026D6C5] [10/10/2018] (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [06F04788031055D31DEFFEFCD026D6C5] [10/10/2018] (.Adobe Systems Incorporated.) - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_122_pepper.exe [06F04788031055D31DEFFEFCD026D6C5] [13/11/2018] (.Adobe Systems Incorporated.) - C:\Users\david\AppData\Local\Google\Chrome\User Data\PepperFlash\31.0.0.148\pepflashplayer.dll [0B293E95830AE1895C5A044966271ACA] [20/07/2018] (.Sony Mobile Communications AB.) - C:\ProgramData\Sony Mobile\Update Engine\{ACADF345-B75D-4F23-80A2-134BCF386EB9}\uninst.exe [0F668FB0F0F002B774C7DDBD769EE5B1] [11/12/2017] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klmouflt.sys [0F668FB0F0F002B774C7DDBD769EE5B1] [30/05/2017] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klpd.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [01/11/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klupd_klif_arkmon.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [01/11/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klupd_klif_klark.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [01/11/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klupd_klif_klbg.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [01/11/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klupd_klif_mark.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [02/10/2018] (.Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\ieext\ie_plugin.dll [0F9D91C6ABA86F4E54CBB9EF57E68346] [02/10/2018] (.Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\x64\IEExt\ie_plugin.dll [0F9D91C6ABA86F4E54CBB9EF57E68346] [02/10/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klbackupdisk.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [02/10/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klbackupflt.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [02/10/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\kldisk.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [02/10/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klflt.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [02/10/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klhk.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [02/10/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klif.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [02/10/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klpnpflt.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [07/05/2018] (.Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\kpm.exe [0F9D91C6ABA86F4E54CBB9EF57E68346] [07/05/2018] (.Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\kpm_service.exe [0F9D91C6ABA86F4E54CBB9EF57E68346] [07/05/2018] (.Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\plugin-nm-server.exe [0F9D91C6ABA86F4E54CBB9EF57E68346] [07/05/2018] (.Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.1\transport_proxy.exe [0F9D91C6ABA86F4E54CBB9EF57E68346] [08/11/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klupd_klif_kimul.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [12/02/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klim6.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [13/11/2018] (.Kaspersky Lab.) - C:\ProgramData\Kaspersky Lab\AVP19.0.0\Bases\Cache\vapm_595410060\vapmhst.exe [0F9D91C6ABA86F4E54CBB9EF57E68346] [15/01/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klkbdflt.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [17/02/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\klwfp.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [17/10/2018] (.Kaspersky Lab.) - C:\ProgramData\Kaspersky Lab\AVP19.0.0\Bases\Cache\klip\klip_9fd9120a5a513f5f7ca1681242a4da08.dll [0F9D91C6ABA86F4E54CBB9EF57E68346] [17/10/2018] (.Kaspersky Lab.) - C:\ProgramData\Kaspersky Lab\AVP19.0.0\Bases\Cache\klip\klip32_65d64e7df8ad808bf293f3272ef7ac38.dll [0F9D91C6ABA86F4E54CBB9EF57E68346] [24/02/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\kneps.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [24/10/2018] (.Kaspersky Lab.) - C:\ProgramData\Kaspersky Lab\AVP19.0.0\Bases\klids.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [27/01/2018] (.Kaspersky Lab.) - C:\WINDOWS\System32\drivers\cm_km.sys [0F9D91C6ABA86F4E54CBB9EF57E68346] [28/02/2018] (.Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\avp.exe [0F9D91C6ABA86F4E54CBB9EF57E68346] [29/07/2018] (.Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\avpui.exe [0F9D91C6ABA86F4E54CBB9EF57E68346] [29/07/2018] (.Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\x64\shellex.dll [0F9D91C6ABA86F4E54CBB9EF57E68346] [29/07/2018] (.Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 19.0.0\x64\vssbridge64.exe [13222A5DCCF716DF5AF9C87084412DD9] [02/06/2016] (.Realtek Semiconductor Corp.) - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [13222A5DCCF716DF5AF9C87084412DD9] [02/06/2016] (.Realtek Semiconductor Corp.) - C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe [13222A5DCCF716DF5AF9C87084412DD9] [02/06/2016] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\drivers\RTKVHD64.sys [14781BC862E8DC503A559346F5DCC518] [11/11/2016] (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvhda64v.sys [14781BC862E8DC503A559346F5DCC518] [11/11/2016] (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstusb.sys [14F8FDD167F92402B1570B5DC495C815] [29/07/2018] (.Google Inc.) - C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe [14F8FDD167F92402B1570B5DC495C815] [29/07/2018] (.Google Inc.) - C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe [14F8FDD167F92402B1570B5DC495C815] [29/07/2018] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [1C71DEFE3284E66D55131E70] [17/10/2018] (.TEFINCOM S.A..) - C:\Users\david\Downloads\NordVPNSetup.exe [1C71DEFE3284E66D55131E70] [24/07/2018] (.TEFINCOM S.A..) - C:\WINDOWS\System32\drivers\tapnordvpn.sys [24A1BD176051FF864D018812F9F2304C] [22/09/2018] (.Corel Corporation.) - c:\Program Files (x86)\Corel\Corel PaintShop Pro 2019\Setup\{90B0B84D-5C50-4EED-89E3-59791663B7E5}\SetupARP.exe [24A1BD176051FF864D018812F9F2304C] [26/10/2018] (.Corel Corporation.) - c:\Program Files (x86)\Corel\Corel PaintShop Pro 2018\Setup\{6000096B-318C-40F8-A450-043B6A602D16}\SetupARP.exe [24A1BD176051FF864D018812F9F2304C] [26/10/2018] (.Corel Corporation.) - C:\Users\david\Downloads\PSP2018Installer.exe [2A9C21ACAAA63A3C58A7B9322BEE948D] [07/11/2018] (.Google Inc.) - C:\ProgramData\Kaspersky Lab\SafeBrowser\pure\S-1-5-21-4155899956-1560986946-2008190831-1001\Chrome\SwReporter\35.178.200\software_reporter_tool.exe [2A9C21ACAAA63A3C58A7B9322BEE948D] [08/11/2018] (.Google Inc.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2A9C21ACAAA63A3C58A7B9322BEE948D] [09/11/2018] (.Google Inc.) - C:\Users\david\AppData\Local\Google\Chrome\User Data\SwReporter\35.179.201\software_reporter_tool.exe [2A9C21ACAAA63A3C58A7B9322BEE948D] [13/11/2018] (.Google Inc.) - C:\Program Files (x86)\Google\Chrome\Application\70.0.3538.102\Installer\chrmstp.exe [2A9C21ACAAA63A3C58A7B9322BEE948D] [13/11/2018] (.Google Inc.) - C:\Program Files (x86)\Google\Chrome\Application\70.0.3538.102\Installer\setup.exe [330000B31EB304F8BF60CF07D900020000B31E] [12/04/2018] (.Intel Corporation - Client Components Group.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [4451AD3717CFA22371FFBC07DF13E65D] [05/09/2017] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmci.sys [4451AD3717CFA22371FFBC07DF13E65D] [05/09/2017] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vsock.sys [5600000027396847078B466FFF000000000027] [04/04/2016] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Player\7za.exe [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Player\vmplayer.exe [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\Program Files (x86)\VMware\VMware Player\x64\vmdkShellExt64.dll [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmnet.sys [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmnetadapter.sys [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmnetbridge.sys [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmnetuserif.sys [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\vmx86.sys [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\Windows\SysWOW64\vmnat.exe [59040957F20843302BA52AA1F6ABCEEF] [07/08/2018] (.VMware, Inc..) - C:\Windows\SysWOW64\vmnetdhcp.exe [59040957F20843302BA52AA1F6ABCEEF] [27/06/2018] (.VMware, Inc..) - C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe [59040957F20843302BA52AA1F6ABCEEF] [27/06/2018] (.VMware, Inc..) - C:\WINDOWS\System32\drivers\hcmon.sys [597E4E45CBC115BBA6402602E89CBF45] [06/10/2018] (.Oracle America, Inc..) - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597E4E45CBC115BBA6402602E89CBF45] [18/10/2018] (.Oracle America, Inc..) - C:\Program Files\Java\jre1.8.0_191\bin\jp2ssv.dll [597E4E45CBC115BBA6402602E89CBF45] [18/10/2018] (.Oracle America, Inc..) - C:\Program Files\Java\jre1.8.0_191\bin\ssv.dll [6BF639C6331003F6B9D1E5E029135BF4] [30/04/2014] (.Arvato Digital Services Canada Inc.) - c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [6BF639C6331003F6B9D1E5E029135BF4] [30/04/2014] (.Arvato Digital Services Canada Inc.) - c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe INFORMATIONS SUR LES MODULES ZHPDIAG G0 Google Chrome Page de démarrage G2 Google Chrome Extension M2 Mozilla Firefox Extension P2 Mozilla Firefox Extension R5 Proxy Management O1 Redirection du fichier Hosts O2 Browser Helper Objects de navigateur O3 Internet Explorer Toolbars O4 Applications démarrées par le système O4G Raccourcis Global Startup O10 Winsock hijacker O17 Modification Adresse/Domaine DNS O18 Protocoles Additionnels O22 Clé Registre SharedTaskScheduler O23 Services NT non Microsoft O34 BootExecute O38 Tâches planifiées Automatique O40 ActiveSetup Installed Components O42 Logiciels installés O43 Contenu des dossiers Programes O45 Derniers fichiers Prefetcher O46 ShellExecuteHooks O50 Image File Execution Options O53 ShareTools MSconfig StartupReg O58 Pilotes du Système O68 Start Menu Internet O69 Search Browser Infection O83 Services démarrés par Svchost O87 Firewall Activ Exception List O108 Raccourcis de menu contextuels