~ ZHPDiag v2016.1.31.23 Par Nicolas Coolman (2016/01/30) ~ Démarré par Anas (Administrator) (2019/06/18 15:37:32) ~ Site: http://www.nicolascoolman.fr ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Pas de fichier réseau ~ Mode: Scanner ~ Rapport: C:\Users\Anas\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Anas\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 17763) ---\\ Navigateurs Internet (3) - 0s GCIE: Google Chrome v75.0.3770.90 MFIE: Mozilla Firefox 67.0.1 (x64 fr) MSIE: Internet Explorer v11.557.17763.0 ---\\ Informations sur les produits Windows (8) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 8HVX7 Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ Logiciels de protection (1) - 2s Windows Defender (Activate) ---\\ Logiciels de partage P2P (1) - 3s qBittorrent 4.0.4 v4.0.4 ---\\ Informations sur le système (6) - 0s ~ Operating System: Intel64 Family 6 Model 158 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8271.076 MB (31% free) System Restore: Activé (Enable) System drive C: has 145 GB () free of 939 GB ---\\ Mode de connexion au système (3) - 0s ~ Computer Name: ANAS ~ User Name: Anas ~ Logged in as Administrator ---\\ Enumération des unités disques (2) - 0s ~ Drive C: has 145 GB free of 939 GB (System) ~ Drive D: has 1 GB free of 13 GB ---\\ Etat du Centre de Sécurité Windows (7) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ Recherche particulière de fichiers génériques (25) - 2s [MD5.2F62005FCEA7430BB871A56F7700F81C] - 18/05/2019 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4245280] {33000001C422B2F79B793DACB20000000001C4} =>.Microsoft Corporation [MD5.C73BA51880F5A7FB20C84185A23212EF] - 15/09/2018 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71168] =>.Microsoft Corporation [MD5.4E20895E641F2C3E68AB3DB91A1A16F1] - 15/09/2018 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [388376] {33000001AFFAE16562041426770000000001AF} =>.Microsoft Corporation [MD5.75392769A74F0ADAC8E592A332FC4EA2] - 11/06/2019 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5086208] =>.Microsoft Corporation [MD5.92419F3B74C6C3D7304B7665DA984552] - 15/09/2018 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [779776] =>.Microsoft Corporation [MD5.409DA1CF80BD0BED054E952E905A9576] - 15/09/2018 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [421376] =>.Microsoft Corporation [MD5.CEF34C5A608ED7BD604A006624397BB8] - 18/05/2019 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [799568] {33000001C313A085C356E299D70000000001C3} =>.Microsoft Corporation [MD5.A4CB6481213A18FA184CBE82A972DB20] - 18/05/2019 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [580024] {33000001C422B2F79B793DACB20000000001C4} =>.Microsoft Corporation [MD5.1C72D5EC12FB782907B1F7F3E64D1B8F] - 15/09/2018 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] =>.Microsoft Corporation [MD5.5499CB2550E1B8D38314D19578F55B0E] - 18/05/2019 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [655160] {33000001C422B2F79B793DACB20000000001C4} =>.Microsoft Corporation [MD5.A39C05B19C079401A9AF8A2EF3067B64] - 15/09/2018 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30208] {33000001C422B2F79B793DACB20000000001C4} =>.Microsoft Corporation [MD5.5D9A1DC0ED8F623546550EC8F5533588] - 18/05/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100352] =>.Microsoft Corporation [MD5.D7FAEE38C867DFDAA626B886A7AEA89A] - 15/09/2018 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [165888] =>.Microsoft Corporation [MD5.C7E85EEDBC05491FF1CDD3ACA98FA1DE] - 15/09/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [151040] =>.Microsoft Corporation [MD5.855678C1760AE7DCE0CF2BAFD989176E] - 15/09/2018 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [104960] =>.Microsoft Corporation [MD5.7EF070F21CAB7E8DC906F9CA8516CE5B] - 15/09/2018 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [110592] =>.Microsoft Corporation [MD5.CEC63D8B8E7A525233D2AEE19EF9A5A8] - 15/09/2018 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [224768] =>.Microsoft Corporation [MD5.3EA7FCFF3EDCD2402E6773F6149BA78D] - 18/05/2019 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [535048] {33000001C422B2F79B793DACB20000000001C4} =>.Microsoft Corporation [MD5.70B235DD5BC99C3A98D4D6F7A1D81190] - 18/05/2019 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [301568] =>.Microsoft Corporation [MD5.4941898858502A421357772F4443F666] - 11/06/2019 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2627600] {33000001C422B2F79B793DACB20000000001C4} =>.Microsoft Corporation [MD5.838C9F2D2EB6D29776AF1AC78B4AA1D7] - 15/09/2018 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [106496] =>.Microsoft Corporation [MD5.6E28E1CE915FE617D4F38BFB8543696F] - 15/09/2018 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [111616] =>.Microsoft Corporation [MD5.C430E3C43A471C7A4314EC20A0EE5846] - 18/05/2019 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [167424] =>.Microsoft Corporation [MD5.E5CE3388A455ED80480EAE3A8ADD53A9] - 15/09/2018 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [132408] {33000001C422B2F79B793DACB20000000001C4} =>.Microsoft Corporation [MD5.0F13F63BA93C89DA4F54B8830EB5410B] - 15/09/2018 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [427832] {33000001C422B2F79B793DACB20000000001C4} =>.Microsoft Corporation ---\\ Liste des services NT non Microsoft et non désactivés (23) - 2s O23 - Service: Adobe Genuine Monitor Service (AGMService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe {06F24D9F4DB07BD7ECAD067F5EE26C29} =>.Adobe Systems, Incorporated O23 - Service: Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe {06F24D9F4DB07BD7ECAD067F5EE26C29} =>.Adobe Systems, Incorporated O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) - C:\Windows\System32\DriverStore\FileRepository\ki124164.inf_amd64_85b60d2b8c3af983\IntelCpHDCPSvc.exe {330000BB0B8823E10D1669124600020000BB0B} =>.Intel Corporation O23 - Service: Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc. - Dropbox Update.) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® O23 - Service: @oem39.inf,%ServiceDisplayName%;ESIF Upper Framework Service (esifsvc) . (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) - C:\Windows\System32\Intel\DPTF\esif_uf.exe {00FC600AA86FC412F1DE1BE96321D0DE65} =>.Intel Corporation O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Wireless Connectivity Solutions® O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google LLC - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe {14F8FDD167F92402B1570B5DC495C815} O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios - HiPatchService.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe =>.Hi-Rez Studios O23 - Service: HP Comm Recovery (HP Comm Recover) . (.HP Inc. - CommRecovery.) - C:\Program Files\HPCommRecovery\HPCommRecovery.exe O23 - Service: HP JumpStart Bridge (HPJumpStartBridge) . (.HP Inc. - HP JumpStart Bridge.) - c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe {0BE5F20C15519E2ABD71DB9B8D41AB08} O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.HP Inc. - HP Support Solutions Framework Service.) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe {0EB747C0B28FBBB79CFB1F25ED1D28DC} O23 - Service: HPWMISVC (HPWMISVC) . (.HP Inc. - HP WMI Service.) - c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe {00997679F436BB669ECF7FDF00CDA69403} O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe {560000006441BCFD1CA85DB259000000000064} =>.Intel Corporation O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\DriverStore\FileRepository\ki124164.inf_amd64_85b60d2b8c3af983\igfxCUIService.exe {330000BB0B8823E10D1669124600020000BB0B} =>.Intel Corporation O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation® O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation - NVIDIA Container.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Wireless Connectivity Solutions® O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe {0320BE3EB866526927F999B97B04346E} =>.Realtek Semiconductor O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe {19FE2B7721886C7BCAC1364C90CD7FA9} =>.Synaptics Incorporated O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation - Intel® PROSet/Wireless Zero Configure Servi.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Wireless Connectivity Solutions® ---\\ Services non Microsoft (SR=Démarré,SS=Stoppé) (37) - 22s SR - Auto [04/05/2019] [ 3117648] Adobe Genuine Monitor Service (AGMService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe {06F24D9F4DB07BD7ECAD067F5EE26C29} =>.Adobe Systems, Incorporated SR - Auto [04/05/2019] [ 2888272] Adobe Genuine Software Integrity Service (AGSService) . (.Adobe Systems, Incorporated.) - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe {06F24D9F4DB07BD7ECAD067F5EE26C29} =>.Adobe Systems, Incorporated SS - Demand [25/04/2018] [ 5745672] BattlEye Service (BEService) . (...) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.® SR - Auto [30/08/2011] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SR - Demand [01/09/2017] [ 397288] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\ki124164.inf_amd64_85b60d2b8c3af983\IntelCpHeciSvc.exe {330000BB0B8823E10D1669124600020000BB0B} =>.Intel Corporation SR - Auto [01/09/2017] [ 613360] Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\ki124164.inf_amd64_85b60d2b8c3af983\IntelCpHDCPSvc.exe {330000BB0B8823E10D1669124600020000BB0B} =>.Intel Corporation SS - Auto [30/04/2018] [ 143144] Service Mise à jour Dropbox (dbupdate) (dbupdate) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SS - Demand [30/04/2018] [ 143144] Service Mise à jour Dropbox (dbupdatem) (dbupdatem) . (.Dropbox, Inc..) - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe =>.Dropbox, Inc® SS - Demand [12/02/2019] [ 802432] EasyAntiCheat (EasyAntiCheat) . (.EasyAntiCheat Ltd.) - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe {234175E3D1A23EF8ACB50245} =>.EasyAntiCheat Ltd SR - Auto [12/01/2017] [ 2218552] @oem39.inf,%ServiceDisplayName%;ESIF Upper Framework Service (esifsvc) . (.Intel Corporation.) - C:\WINDOWS\system32\Intel\DPTF\esif_uf.exe =>.Intel Corporation SR - Auto [04/08/2016] [ 640928] Intel(R) PROSet/Wireless Event Log (EvtEng) . (.Intel(R) Corporation.) - C:\Program Files\Intel\WiFi\bin\EvtEng.exe =>.Intel Corporation-Wireless Connectivity Solutions® SS - Demand [12/06/2019] [ 1098224] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.90\elevation_service.exe {0C15BE4A15BB0903C901B1D6C265302F} SS - Auto [05/06/2019] [ 154920] Service Google Update (gupdate) (gupdate) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe {14F8FDD167F92402B1570B5DC495C815} SS - Demand [05/06/2019] [ 154920] Service Google Update (gupdatem) (gupdatem) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe {14F8FDD167F92402B1570B5DC495C815} SPaused - Auto [11/06/2018] [ 9728] Hi-Rez Studios Authenticate and Update Service (HiPatchService) . (.Hi-Rez Studios.) - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe =>.Hi-Rez Studios SR - Auto [07/10/2016] [ 1309184] HP Comm Recovery (HP Comm Recover) . (.HP Inc..) - C:\Program Files\HPCommRecovery\HPCommRecovery.exe SR - Auto [03/04/2017] [ 471040] HP JumpStart Bridge (HPJumpStartBridge) . (.HP Inc..) - c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe {0BE5F20C15519E2ABD71DB9B8D41AB08} SR - Demand [28/09/2016] [ 1077752] HP CASL Framework Service (hpqcaslwmiex) . (.HP.) - C:\Program Files (x86)\HP\Shared\hpqwmiex.exe {00ED900AA6C38DE2F2F56B9C65FD452551} =>.HP SR - Auto [21/11/2017] [ 332144] HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) . (.HP Inc..) - C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe {0EB747C0B28FBBB79CFB1F25ED1D28DC} SR - Auto [06/02/2017] [ 630776] HPWMISVC (HPWMISVC) . (.HP Inc..) - c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe {00997679F436BB669ECF7FDF00CDA69403} SR - Auto [20/09/2016] [ 17976] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe {560000006441BCFD1CA85DB259000000000064} =>.Intel Corporation SR - Auto [01/09/2017] [ 415208] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\ki124164.inf_amd64_85b60d2b8c3af983\igfxCUIService.exe {330000BB0B8823E10D1669124600020000BB0B} =>.Intel Corporation SS - Demand [26/07/2016] [ 987432] Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe {56000000310A58E8DCBBE5B2BF000000000031} =>.Intel(R) Corporation SR - Auto [05/10/2016] [ 177440] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® SS - Demand [29/05/2019] [ 238544] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe {0C5396DCB2949C70FAC48AB08A07338E} =>.Mozilla Foundation SS - Demand [04/08/2016] [ 268704] Wireless PAN DHCP Server (MyWiFiDHCPDNS) . (.Copyright (C) 2005-2010 by Achal Dhir.) - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe =>.Intel Corporation-Wireless Connectivity Solutions® SR - Auto [19/07/2018] [ 764456] NVIDIA LocalSystem Container (NvContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation SS - Demand [19/07/2018] [ 764456] NVIDIA NetworkService Container (NvContainerNetworkService) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation SR - Auto [24/06/2018] [ 767272] NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) . (.NVIDIA Corporation.) - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe =>.NVIDIA Corporation® SS - Auto [10/10/2018] [ 645160] NVIDIA Telemetry Container (NvTelemetryContainer) . (.NVIDIA Corporation.) - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation SR - Auto [04/08/2016] [ 157600] Intel(R) PROSet/Wireless Registry Service (RegSrvc) . (.Intel(R) Corporation.) - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe =>.Intel Corporation-Wireless Connectivity Solutions® SR - Auto [17/04/2017] [ 324608] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe {0320BE3EB866526927F999B97B04346E} =>.Realtek Semiconductor SS - Disabl [15/09/2018] [ 384512] OpenSSH Authentication Agent (ssh-agent) . (...) - C:\Windows\System32\OpenSSH\ssh-agent.exe SS - Demand [06/03/2019] [ 1693984] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe {054F466CECCBE9D6BEE81F5435E64D47} =>.Valve Corporation SR - Auto [21/09/2018] [ 360872] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe {19FE2B7721886C7BCAC1364C90CD7FA9} =>.Synaptics Incorporated SS - Auto [04/08/2016] [ 3732896] Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) . (.Intel® Corporation.) - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe =>.Intel Corporation-Wireless Connectivity Solutions® ---\\ Tâches planifiées en automatique (61) - 6s [MD5.68CD3D85CB660D0A3FAD9FC822865377] [APT] [AdobeGCInvoker-1.0-ANAS-Anas] (.Adobe Systems, Incorporated.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872] {06F24D9F4DB07BD7ECAD067F5EE26C29} =>.Adobe Systems, Incorporated [MD5.C0E644A2DAE7B335332C410163D68E44] [APT] [Async] (.Python Software Foundation.) -- C:\Users\Anas\AppData\Roaming\Async\python\pythonw.exe [95904] {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation [MD5.C0E644A2DAE7B335332C410163D68E44] [APT] [Async_upd] (.Python Software Foundation.) -- C:\Users\Anas\AppData\Roaming\Async_upd\python\pythonw.exe [95904] {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation [MD5.00000000000000000000000000000000] [APT] [bkuQDzLqvZYvaJKQect] (...) -- C:\WINDOWS\TEMP\lwitxciKdbSuyuJg\UTaiPoCvpWoIFMYc.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [bkuUdXqutKBULNnZzuq] (...) -- C:\WINDOWS\Temp\XqLmcsQbHXCfxprI\oavakwEKO.exe (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [bkuZqgTKrDctlkgBUYF] (...) -- C:\WINDOWS\TEMP\xbsoNkmcnFbvlrRf\xwZQsbKVIVcRQbzb.exe (.not file.) [0] [MD5.4D44738148B7B76302B0279141AA795C] [APT] [BlueStacksHelper] (.BlueStack Systems, Inc..) -- C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe [745480] {446A06966CEE0738C8F1A374883AEF88} =>.BlueStack Systems, Inc. [MD5.C0E644A2DAE7B335332C410163D68E44] [APT] [Cashery.biz] (.Python Software Foundation.) -- C:\Users\Anas\AppData\Roaming\Cashery.biz\python\pythonw.exe [95904] {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation [MD5.C0E644A2DAE7B335332C410163D68E44] [APT] [Cashery.biz_upd] (.Python Software Foundation.) -- C:\Users\Anas\AppData\Roaming\Cashery.biz_upd\python\pythonw.exe [95904] {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation [MD5.7575C5383672CACE1C9467B00C617A90] [APT] [DropboxOEM] (.DropboxOEM.) -- C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [616232] =>.Dropbox, Inc® [MD5.A1F58FFF448E4099297D6EE0641D4D0E] [APT] [DropboxUpdateTaskMachineCore] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] =>.Dropbox, Inc® [MD5.A1F58FFF448E4099297D6EE0641D4D0E] [APT] [DropboxUpdateTaskMachineUA] (.Dropbox, Inc..) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] =>.Dropbox, Inc® [MD5.82F657B0AEE67A6A560321CF0927F9F7] [APT] [GoogleUpdateTaskMachineCore] (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920] {14F8FDD167F92402B1570B5DC495C815} [MD5.82F657B0AEE67A6A560321CF0927F9F7] [APT] [GoogleUpdateTaskMachineUA] (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920] {14F8FDD167F92402B1570B5DC495C815} [MD5.2F116413593315C48D434510B3064C0A] [APT] [hnunu] (...) -- C:\Users\Anas\AppData\Roaming\edosr\hnunu.vbs [229] [MD5.9C474459637F046135C424FF87498516] [APT] [HPAudioSwitch] (.HP Inc..) -- C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644960] {0BE5F20C15519E2ABD71DB9B8D41AB08} [MD5.1FAD6CFD824DED5A212AB130607612E9] [APT] [HPEA3JOBS] (.HP.) -- C:\Program Files\HP\HP ePrint\hpeprint.exe [1978720] {6207AD04EFA2FD166CC7D986887E4B18} =>.HP [MD5.ABFC57BB030B32996EF826A070AA74BD] [APT] [HPJumpStartLaunch] (...) -- C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe [459264] {0BE5F20C15519E2ABD71DB9B8D41AB08} [MD5.D1C4B3D8CB3DDD710B73BE8A9EC394D4] [APT] [Intel PTT EK Recertification] (.Intel(R) Corporation.) -- C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [909112] {56000000310A58E8DCBBE5B2BF000000000031} =>.Intel(R) Corporation [MD5.0D4439038561948F24410FBE3E18227A] [APT] [NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.0D4439038561948F24410FBE3E18227A] [APT] [NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.3C6FB2551650C6DA28ECD38738B2A820] [APT] [NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3487272] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.E017B2CD1240DE65FBC6ACD4D055F3A4] [APT] [NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [982568] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.36DA75B6DC164AD3B05C1E427E5004CE] [APT] [NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [856616] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.36DA75B6DC164AD3B05C1E427E5004CE] [APT] [NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [856616] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.EF0B2DDF4F6FF6F42999A97ED1F13EC2] [APT] [NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [647720] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.4EA91259547E509A6DDB4AAFD75B8ADA] [APT] [NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [927272] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.4EA91259547E509A6DDB4AAFD75B8ADA] [APT] [NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [927272] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.4EA91259547E509A6DDB4AAFD75B8ADA] [APT] [NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [927272] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.4EA91259547E509A6DDB4AAFD75B8ADA] [APT] [NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}] (.NVIDIA Corporation.) -- C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [927272] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.00000000000000000000000000000000] [APT] [snPeZqQGMShDqKK] (...) -- rundll32 C:\Program Files (x86)\TUqRuWnKU\DZZIVe.dll (.not file.) [0] [MD5.00000000000000000000000000000000] [APT] [Update Manager] (...) -- C:\Users\Anas\AppData\Roaming\ONE.PIECE.BURNING.BLOOD.[Gold.Edition]-ALI213\Upgrade.exe (.not file.) [0] [MD5.6DBF5E67EEA838135065948A99219D0F] [APT] [Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA)] (.HP Inc..) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [198696] {06EEEB059F8022329ED5C6C79DCFC4A9} [MD5.BBC70C04C7FE71E5E2FD3C454164A676] [APT] [HP\HP CoolSense\HP CoolSense Start at Logon] (.HP Development Company, L.P..) -- C:\Program Files (x86)\HP\HP CoolSense\CoolSense.exe [1362464] {00997679F436BB669ECF7FDF00CDA69403} O39 - APT: bkuQDzLqvZYvaJKQect - (...) -- C:\WINDOWS\Tasks\bkuQDzLqvZYvaJKQect.job [548] (.Orphean.) O39 - APT: bkuUdXqutKBULNnZzuq - (...) -- C:\WINDOWS\Tasks\bkuUdXqutKBULNnZzuq.job [534] (.Orphean.) O39 - APT: bkuZqgTKrDctlkgBUYF - (...) -- C:\WINDOWS\Tasks\bkuZqgTKrDctlkgBUYF.job [548] (.Orphean.) O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job [1222] =>.Dropbox, Inc. O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job [1226] =>.Dropbox, Inc. O39 - APT: snPeZqQGMShDqKK - (...) -- C:\WINDOWS\Tasks\snPeZqQGMShDqKK.job [308] (.Orphean.) O39 - APT: AdobeGCInvoker-1.0-ANAS-Anas - (.Adobe Systems, Incorporated.) -- C:\WINDOWS\System32\Tasks\AdobeGCInvoker-1.0-ANAS-Anas [3632] =>.Adobe Systems, Incorporated O39 - APT: Async - (.Python Software Foundation.) -- C:\WINDOWS\System32\Tasks\Async [2778] =>.Python Software Foundation O39 - APT: Async_upd - (.Python Software Foundation.) -- C:\WINDOWS\System32\Tasks\Async_upd [3186] =>.Python Software Foundation O39 - APT: bkuQDzLqvZYvaJKQect - (...) -- C:\WINDOWS\System32\Tasks\bkuQDzLqvZYvaJKQect [2556] (.Orphean.) O39 - APT: bkuUdXqutKBULNnZzuq - (...) -- C:\WINDOWS\System32\Tasks\bkuUdXqutKBULNnZzuq [2542] (.Orphean.) O39 - APT: bkuZqgTKrDctlkgBUYF - (...) -- C:\WINDOWS\System32\Tasks\bkuZqgTKrDctlkgBUYF [2556] (.Orphean.) O39 - APT: BlueStacksHelper - (.BlueStack Systems, Inc..) -- C:\WINDOWS\System32\Tasks\BlueStacksHelper [2966] =>.BlueStack Systems, Inc. O39 - APT: Cashery.biz - (.Python Software Foundation.) -- C:\WINDOWS\System32\Tasks\Cashery.biz [2814] =>.Python Software Foundation O39 - APT: Cashery.biz_upd - (.Python Software Foundation.) -- C:\WINDOWS\System32\Tasks\Cashery.biz_upd [3222] =>.Python Software Foundation O39 - APT: DropboxOEM - (.DropboxOEM.) -- C:\WINDOWS\System32\Tasks\DropboxOEM [2318] O39 - APT: DropboxUpdateTaskMachineCore - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineCore [3516] =>.Dropbox, Inc. O39 - APT: DropboxUpdateTaskMachineUA - (.Dropbox, Inc..) -- C:\WINDOWS\System32\Tasks\DropboxUpdateTaskMachineUA [3740] =>.Dropbox, Inc. O39 - APT: GoogleUpdateTaskMachineCore - (.Google LLC.) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore [3464] O39 - APT: GoogleUpdateTaskMachineUA - (.Google LLC.) -- C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA [3588] O39 - APT: hnunu - (...) -- C:\WINDOWS\System32\Tasks\hnunu [2320] O39 - APT: HPAudioSwitch - (.HP Inc..) -- C:\WINDOWS\System32\Tasks\HPAudioSwitch [2440] O39 - APT: HPEA3JOBS - (.HP.) -- C:\WINDOWS\System32\Tasks\HPEA3JOBS [2504] =>.HP O39 - APT: HPJumpStartLaunch - (...) -- C:\WINDOWS\System32\Tasks\HPJumpStartLaunch [2856] O39 - APT: Intel PTT EK Recertification - (.Intel(R) Corporation.) -- C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification [3118] =>.Intel(R) Corporation O39 - APT: snPeZqQGMShDqKK - (...) -- C:\WINDOWS\System32\Tasks\snPeZqQGMShDqKK [2628] (.Orphean.) O39 - APT: Update Manager - (...) -- C:\WINDOWS\System32\Tasks\Update Manager [2898] (.Orphean.) ---\\ Processus lancés (49) - 4s [MD5.1BB99EB01B569F430D81972FDAA4FD39] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [767272] [PID.1580] =>.NVIDIA Corporation® [MD5.18AD71B43035E1FD1BEEEF8958B53920] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\DriverStore\FileRepository\ki124164.inf_amd64_85b60d2b8c3af983\igfxCUIService.exe [415208] [PID.2100] {330000BB0B8823E10D1669124600020000BB0B} =>.Intel Corporation [MD5.1C7F6933D161C0CFF1C0010D196B6896] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324608] [PID.2584] {0320BE3EB866526927F999B97B04346E} =>.Realtek Semiconductor [MD5.652ED9438A3A6984686EEC5703CCAD3D] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312] [PID.2672] {0320BE3EB866526927F999B97B04346E} =>.Realtek Semiconductor [MD5.EBBCD5DFBB1DE70E8F4AF8FA59E401FD] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.3160] =>.Apple Inc.® [MD5.BCBDDC36C7CB6CDABF4251D6000A1F30] - (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) -- C:\Windows\System32\DriverStore\FileRepository\ki124164.inf_amd64_85b60d2b8c3af983\IntelCpHDCPSvc.exe [613360] [PID.3168] {330000BB0B8823E10D1669124600020000BB0B} =>.Intel Corporation [MD5.6F8EE51596767F872EC85D655B8DA60D] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\System32\Intel\DPTF\esif_uf.exe [2218552] [PID.3264] {00FC600AA86FC412F1DE1BE96321D0DE65} =>.Intel Corporation [MD5.A3037B7A05E7F90373323B7B5B0C2E16] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Event Log Service.) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe [640928] [PID.3276] =>.Intel Corporation-Wireless Connectivity Solutions® [MD5.2A456AFE195E6878EEC5E193EA383B15] - (.Hi-Rez Studios - HiPatchService.) -- C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728] [PID.3296] =>.Hi-Rez Studios [MD5.0D4439038561948F24410FBE3E18227A] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456] [PID.3404] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.89253C7F17EF15F627CDE2DB104E6BF8] - (.Intel(R) Corporation - Intel(R) PROSet/Wireless Registry Service.) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [157600] [PID.3436] =>.Intel Corporation-Wireless Connectivity Solutions® [MD5.ADE1977463CFB2622E6FDC6E9F31CD8E] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [360872] [PID.3452] {19FE2B7721886C7BCAC1364C90CD7FA9} =>.Synaptics Incorporated [MD5.4EFC50610C9C345BC47C377A3CA13F8F] - (.Intel Corporation - IntelCpHeciSvc Executable.) -- C:\Windows\System32\DriverStore\FileRepository\ki124164.inf_amd64_85b60d2b8c3af983\IntelCpHeciSvc.exe [397288] [PID.3844] {330000BB0B8823E10D1669124600020000BB0B} =>.Intel Corporation [MD5.1BB99EB01B569F430D81972FDAA4FD39] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [767272] [PID.3748] =>.NVIDIA Corporation® [MD5.9E29AF1CF4376E8B73B524384C2595A9] - (.Intel Corporation - Intel(R) Dynamic Platform and Thermal Frame.) -- C:\Windows\Temp\DPTF\esif_assist_64.exe [525864] [PID.5112] {00FC600AA86FC412F1DE1BE96321D0DE65} =>.Intel Corporation [MD5.0D4439038561948F24410FBE3E18227A] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456] [PID.840] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.0D4439038561948F24410FBE3E18227A] - (.NVIDIA Corporation - NVIDIA Container.) -- C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456] [PID.3960] {4FBE0A02426EBD20C26244B5ECA652A3} =>.NVIDIA Corporation [MD5.A1F58FFF448E4099297D6EE0641D4D0E] - (.Dropbox, Inc. - Dropbox Update.) -- C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144] [PID.6284] =>.Dropbox, Inc® [MD5.ABFC57BB030B32996EF826A070AA74BD] - (...) -- C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe [459264] [PID.6344] {0BE5F20C15519E2ABD71DB9B8D41AB08} [MD5.D6DA7A20FF3B8C3941044D71CC63D96F] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4509608] [PID.6928] {19FE2B7721886C7BCAC1364C90CD7FA9} =>.Synaptics Incorporated [MD5.6E54DF87F17D9FE40F1ECE0A55F8AB9A] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [229288] [PID.7460] {19FE2B7721886C7BCAC1364C90CD7FA9} =>.Synaptics Incorporated [MD5.8D510EF3967BE685E638F15F386A8639] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\DriverStore\FileRepository\ki124164.inf_amd64_85b60d2b8c3af983\igfxEM.exe [567784] [PID.7940] {330000BB0B8823E10D1669124600020000BB0B} =>.Intel Corporation [MD5.BBC70C04C7FE71E5E2FD3C454164A676] - (.HP Development Company, L.P. - HP CoolSense.) -- C:\Program Files (x86)\HP\HP CoolSense\CoolSense.exe [1362464] [PID.6760] {00997679F436BB669ECF7FDF00CDA69403} [MD5.9C474459637F046135C424FF87498516] - (.HP Inc. - HPAudioSwitch.) -- C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644960] [PID.8932] {0BE5F20C15519E2ABD71DB9B8D41AB08} [MD5.6C0DB832C4F8EC6E9685A4C0726A34F0] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9217024] [PID.6188] {0320BE3EB866526927F999B97B04346E} =>.Realtek Semiconductor [MD5.AABDF172AAFD3B133C8CD9DE3477FC46] - (.HP Inc. - HP Message Service.) -- C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [1062392] [PID.9784] {00997679F436BB669ECF7FDF00CDA69403} [MD5.A2D8BEF0CCA959E4BEB16DE982E3771C] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler.exe [294184] [PID.6148] {14F8FDD167F92402B1570B5DC495C815} [MD5.30C7CBCED8E3689E30299CABAD4B9AC7] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler64.exe [373032] [PID.7000] {14F8FDD167F92402B1570B5DC495C815} [MD5.7575C5383672CACE1C9467B00C617A90] - (.DropboxOEM - DropboxOEM.) -- C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe [616232] [PID.9632] =>.Dropbox, Inc® [MD5.72E9B5159D34E5AB086A9883F7C53E1A] - (.HP - HP CASL Framework Service.) -- C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1077752] [PID.7264] {00ED900AA6C38DE2F2F56B9C65FD452551} =>.HP [MD5.8002A736D30BACEDB23AD7A3B96A0BC3] - (.HP Inc. - CommRecovery.) -- C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1309184] [PID.10224] [MD5.490D62566FE7CBEA42C7BEBF7218EEDC] - (.HP Inc. - HP JumpStart Bridge.) -- c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [471040] [PID.10724] {0BE5F20C15519E2ABD71DB9B8D41AB08} [MD5.517DF0B5228DBA34D8A81DE3B14F5EBA] - (.HP Inc. - HP Support Solutions Framework Service.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [332144] [PID.7528] {0EB747C0B28FBBB79CFB1F25ED1D28DC} [MD5.138F6A3E13BF002852EDA02B2DEBDD19] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17976] [PID.9404] {560000006441BCFD1CA85DB259000000000064} =>.Intel Corporation [MD5.4DAEC587A8D45EADEE978885493AFA81] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [177440] [PID.11448] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® [MD5.3C4C4F1AC7F4740271C1823C990B45E0] - (.Python Software Foundation - Python.) -- C:\Users\Anas\AppData\Roaming\Cashery.biz\python\python.exe [97440] [PID.2688] {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation [MD5.225B29274B30D4BA443619182BC3CC87] - (...) -- C:\Windows\System32\Windows.WARP.JITService.exe [32768] [PID.6736] [MD5.042A4F99FABCD6C33E3C42F445120F57] - (.Adobe - Adobe® Flash® Player Utility.) -- C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe [1009768] [PID.14564] {330000006B78F7B7015C8B4A1300000000006B} =>.Adobe [MD5.225B29274B30D4BA443619182BC3CC87] - (...) -- C:\Windows\System32\Windows.WARP.JITService.exe [32768] [PID.15880] [MD5.6469B092F0B640E2E96605A421CF61BE] - (.Adobe Systems, Incorporated - Adobe Genuine Software Integrity Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272] [PID.17316] {06F24D9F4DB07BD7ECAD067F5EE26C29} =>.Adobe Systems, Incorporated [MD5.B0A3D79E55A64E5F4C39DD58540ED4CC] - (.Adobe Systems, Incorporated - Adobe Genuine Software Service.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648] [PID.17812] {06F24D9F4DB07BD7ECAD067F5EE26C29} =>.Adobe Systems, Incorporated [MD5.86E895B0847CCF2738C7BD16D263B749] - (...) -- C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19041.16510.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe [480768] [PID.9364] [MD5.0A2F4748A6E162C9129865285ABDD363] - (...) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.46.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe [182272] [PID.5844] [MD5.8E717D4F3DECBEE666FC06973EE82118] - (...) -- C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Video.UI.exe [26138624] [PID.17376] [MD5.2FBF223E05917CA73FD52AE8E2213CB6] - (.HP Inc. - HP WMI Service.) -- c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [630776] [PID.9536] {00997679F436BB669ECF7FDF00CDA69403} [MD5.D7BDAB14B43FB36E8D6335AF40450B47] - (...) -- C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19052.657.0_x64__8wekyb3d8bbwe\YourPhone.exe [9873920] [PID.13380] [MD5.73BB52E7982EDD7091F214A27A60C6AF] - (...) -- C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.30.12001.0_x64__8wekyb3d8bbwe\GameBar.exe [22247424] [PID.19588] [MD5.6BE5D57B19A2CE9F80CBB001A4E4A2BC] - (...) -- C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.30.12001.0_x64__8wekyb3d8bbwe\GameBarFT.exe [291840] [PID.1856] [MD5.FF9CE0FC9E3B4BC22001764A9EFE4741] - (.Nicolas Coolman - ZHPDiag.) -- C:\Users\Anas\Desktop\ZHPDiag3.exe [2105344] [PID.11160] =>.Nicolas Coolman ---\\ Google Chrome, Démarrage,Recherche,Extensions (11) - 1s G2 - GCE: Preference [User Data\Default] [aapocclcgogkmnckokdopfmhonfmgoek] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [aohghmighlieiainnegkcijnfilokake] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [apdfllckaahabafndbhieahigkjlhalf] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [blpcfgokakmgnkcojhhkbfbldkacnbeo] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [cfhdojbkjhnklbpkdaibdccddilifddb] __MSG_name_releasebuild__ =>.AdblocPlus Plugin G2 - GCE: Preference [User Data\Default] [felcaaldnbdncclmgdcncolpebgiejap] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [gighmmpiobklfepjocnamgkkbiglidom] __MSG_name_releasebuild__ G2 - GCE: Preference [User Data\Default] [nmmhkkegccagdldgiimedpiccmgmieda] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pjkljhegncpnkpknbcohdijeoejaedia] Google Chrome manifest =>.Google Inc. G2 - GCE: Preference [User Data\Default] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router ---\\ Firefox, Plugins,Demarrage,Recherche,Extensions (7) - 1s M0 - MFSP: prefs.js [Anas - 21w0yn1b.default] https://newtab.club P2 - EXT FILE: (...) -- C:\Users\Anas\AppData\Roaming\Mozilla\Firefox\Profiles\21w0yn1b.default\extensions\{3cd26bac-fd3d-4978-9279-517e219df132}.xpi P2 - EXT FILE: (...) -- C:\Users\Anas\AppData\Roaming\Mozilla\Firefox\Profiles\21w0yn1b.default\searchplugins\-dnsearch.xml P2 - EXT FILE: (...) -- C:\Users\Anas\AppData\Roaming\Mozilla\Firefox\Profiles\21w0yn1b.default\searchplugins\cdnsearch.xml P2 - FPN: [HKLM] [@adobe.com/ShockwavePlayer] - (.Adobe Systems Inc..) -- C:\WINDOWS\system32\Adobe\Director\np32dsw.dll =>.Adobe Systems Inc. P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=3] - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll P2 - FPN: [HKLM] [@tools.google.com/Google Update;version=9] - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll ---\\ Internet Explorer,Démarrage,Recherche,URLSearchHook (21) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://newtab.club R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snohratkmgbcc_c3bzjualgj_lfau_vypmksyfeo_tatzqpcmclupkfkclubmpileejvk70fjinn6h34ft0ykwt_myzcco-dhuft1f6bjpzxpyrb5y0io2rou21el-lfra29huxoqwpssiynmnggzefzfif842kw6mkvvh571sna,,&q={searchterms} =>PUP.Optional.Linkury R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=hcte R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snohratkmgbcc_c3bzjualgj_lfau_vypmksyfeo_tatzqpcmclupkfkclubmpileejvk70fjinn6h34ft0ykwt_myzcco-dhuft1f6bjpzxpyrb5y0io2rou21el-lfra29huxoqwpssiynmnggzefzfif842kw6mkvvh571sna,,&q={searchterms} =>PUP.Optional.Linkury R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snohratkmgbcc_c3bzjualgj_lfau_vypmksyfeo_tatzqpcmclupkfkclubmpileejvk70fjinn6h34ft0ykwt_myzcco-dhuft1f6bjpzxpyrb5y0io2rou21el-lfra29huxoqwpssiynmnggzefzfif842kw6mkvvh571sna,,&q={searchterms} =>PUP.Optional.Linkury R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchUrl,Default = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snohratkmgbcc_c3bzjualgj_lfau_vypmksyfeo_tatzqpcmclupkfkclubmpileejvk70fjinn6h34ft0ykwt_myzcco-dhuft1f6bjpzxpyrb5y0io2rou21el-lfra29huxoqwpssiynmnggzefzfif842kw6mkvvh571sna,,&q={searchterms} =>PUP.Optional.Linkury R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk R1 - HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://%66%65%65%64.%73%6f%6e%69%63-%73%65%61%72%63%68.%63%6f%6d/?p=mko_awfzxipyrahdgkbrgnclvs1ac6snohratkmgbcc_c3bzjualgj_lfau_vypmksyfeo_tatzqpcmclupkfkclubmpileejvk70fjinn6h34ft0ykwt_myzcco-dhuft1f6bjpzxpyrb5y0io2rou21el-lfra29huxoqwpssiynmnggzefzfif842kw6mkvvh571sna,,&q={searchterms} =>PUP.Optional.Linkury R3 - URLSearchHook: (no name) - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} Orphean =>.Microsoft Internet Explorer R3 - URLSearchHook: (no name) - {2C6A44CB-AD42-4731-A544-3FBD3D83AB5B} Orphean ---\\ Internet Explorer,Proxy Management (2) - 0s R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 R5 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 ---\\ Internet Explorer,IniFiles, Autoloading programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ Etude du fichier hosts (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ Browser Helper Object de navigateur (BHO) (3) - 0s O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} (Orphean) O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Sun Microsystems, Inc. - Java(TM) Platform SE binary.) -- C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll =>.Sun Microsystems, Inc.® O2 - BHO: HP Network Check Helper [64Bits] - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} . (.HP Inc. - HP Network Check IE Plug-in.) -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll {0098B182EAF5DF8BDE0F8872EDE210C75E} ---\\ Applications lancées au démarrage du système (32) - 5s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\Windows\System32\SecurityHealthSystray.exe =>.Microsoft Corporation O4 - HKLM\..\Run: [RTHDVCPL] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe {0320BE3EB866526927F999B97B04346E} =>.Realtek Semiconductor O4 - HKLM\..\Run: [AdobeAAMUpdater-1.0] . (.Adobe Systems Incorporated - Adobe Updater Startup Utility.) -- C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe {06B922A8397E632FE5348DA267275B4F} =>.Adobe Systems Incorporated O4 - HKLM\..\Run: [AdobeGCInvoker-1.0] . (.Adobe Systems, Incorporated - Adobe GC Invoker Utility.) -- C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe {06F24D9F4DB07BD7ECAD067F5EE26C29} =>.Adobe Systems, Incorporated O4 - HKCU\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Anas\AppData\Local\Microsoft\OneDrive\OneDrive.exe {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation O4 - HKCU\..\Run: [Discord] . (.Discord Inc. - Discord.) -- C:\Users\Anas\AppData\Local\Discord\app-0.0.305\Discord.exe {028AA6E7B516C0D155F15D6290A430E3} O4 - HKCU\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe {054F466CECCBE9D6BEE81F5435E64D47} =>.Valve Corporation O4 - HKCU\..\Run: [EpicGamesLauncher] . (.Epic Games, Inc. - EpicGamesLauncher.) -- C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe {51029B3B9CB48FA076FA2DA87A91DB42} =>.Epic Games, Inc. O4 - HKCU\..\Run: [Cashery.biz_upd] . (.Python Software Foundation - Python.) -- C:\Users\Anas\AppData\Roaming\Cashery.biz_upd\python\pythonw.exe {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation O4 - HKCU\..\Run: [Cashery.biz] . (.Python Software Foundation - Python.) -- C:\Users\Anas\AppData\Roaming\Cashery.biz\python\pythonw.exe {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation O4 - HKCU\..\Run: [Async_upd] . (.Python Software Foundation - Python.) -- C:\Users\Anas\AppData\Roaming\Async_upd\python\pythonw.exe {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation O4 - HKCU\..\Run: [Async] . (.Python Software Foundation - Python.) -- C:\Users\Anas\AppData\Roaming\Async\python\pythonw.exe {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation O4 - HKCU\..\RunOnce: [Delete Cached Update Binary] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Delete Cached Standalone Update Binary] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall 19.086.0502.0006\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKCU\..\RunOnce: [Uninstall 19.086.0502.0006] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [HPMessageService] . (.HP Inc. - HP Message Service.) -- C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe {00997679F436BB669ECF7FDF00CDA69403} O4 - HKLM\..\Wow6432Node\Run: [Multitimer] . (.Copyright © 2017 - MutliTimer.) -- C:\Program Files (x86)\Multitimer\Multitimer.exe O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\Run: [OneDrive] . (.Microsoft Corporation - Microsoft OneDrive.) -- C:\Users\Anas\AppData\Local\Microsoft\OneDrive\OneDrive.exe {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\Run: [Discord] . (.Discord Inc. - Discord.) -- C:\Users\Anas\AppData\Local\Discord\app-0.0.305\Discord.exe {028AA6E7B516C0D155F15D6290A430E3} O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\Run: [Steam] . (.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe {054F466CECCBE9D6BEE81F5435E64D47} =>.Valve Corporation O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\Run: [EpicGamesLauncher] . (.Epic Games, Inc. - EpicGamesLauncher.) -- C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe {51029B3B9CB48FA076FA2DA87A91DB42} =>.Epic Games, Inc. O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\Run: [Cashery.biz_upd] . (.Python Software Foundation - Python.) -- C:\Users\Anas\AppData\Roaming\Cashery.biz_upd\python\pythonw.exe {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\Run: [Cashery.biz] . (.Python Software Foundation - Python.) -- C:\Users\Anas\AppData\Roaming\Cashery.biz\python\pythonw.exe {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\Run: [Async_upd] . (.Python Software Foundation - Python.) -- C:\Users\Anas\AppData\Roaming\Async_upd\python\pythonw.exe {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\Run: [Async] . (.Python Software Foundation - Python.) -- C:\Users\Anas\AppData\Roaming\Async\python\pythonw.exe {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\RunOnce: [Delete Cached Update Binary] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\RunOnce: [Delete Cached Standalone Update Binary] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\RunOnce: [Uninstall 19.086.0502.0006\amd64] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation O4 - HKUS\S-1-5-21-4074804043-3879599017-3090910850-1002\..\RunOnce: [Uninstall 19.086.0502.0006] . (.Microsoft Corporation - Interpréteur de commandes Windows.) -- C:\Windows\System32\cmd.exe =>.Microsoft Corporation ---\\ Raccourcis Global Startup (74) - 12s O4 - GS\Desktop [Administrateur]: BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks 4.) C:\ProgramData\BlueStacks\Client\Bluestacks.exe {446A06966CEE0738C8F1A374883AEF88} =>.BlueStack Systems, Inc. O4 - GS\Desktop [Administrateur]: Dead or Alive 5 Last Round.lnk . (...) C:\Program Files (x86)\Vision RC\Dead or Alive 5 Last Round\game.bat O4 - GS\Desktop [Administrateur]: GeoGebra Classique.lnk . (.GitHub - Update.) C:\Users\Anas\AppData\Local\GeoGebra_6\Update.exe O4 - GS\Desktop [Administrateur]: JUMP FORCE.lnk . (.BANDAI NAMCO Entertainment Inc. - JUMP-FORCE.) C:\Program Files (x86)\Vision RC\JUMP FORCE\JUMP_FORCE\Binaries\Win64\JUMP_FORCE-Win64-Shipping.exe O4 - GS\Desktop [Administrateur]: Rocket League DC Super Heroes.lnk . (.Psyonix, Inc - .) C:\Program Files (x86)\Rocket League DC Super Heroes\Binaries\Win32\RocketLeague.exe =>.Psyonix, Inc O4 - GS\Desktop [Administrateur]: Sleeping Dogs.lnk . (...) C:\Program Files (x86)\R.G. Mechanics\Sleeping Dogs\HKShip.exe O4 - GS\Desktop [Administrateur]: WhatsApp.lnk . (.WhatsApp - WhatsApp.) C:\Users\Anas\AppData\Local\WhatsApp\WhatsApp.exe {066AD7CFF000A2F865C84734F616DEF1} O4 - GS\Desktop [Administrateur]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Anas\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Administrateur]: Настройки-Dead or Alive 5 Last Round.lnk . (...) C:\Program Files (x86)\Vision RC\Dead or Alive 5 Last Round\startup_setting.bat O4 - GS\Quicklaunch [Administrateur]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {0C15BE4A15BB0903C901B1D6C265302F} O4 - GS\Quicklaunch [Administrateur]: Wondershare Data Recovery.lnk . (.Copyright © 2017 Wondershare. All rights reserved. - Wondershare Data Recovery.) C:\Program Files (x86)\Wondershare\Wondershare Data Recovery\WSDataRecovery.exe O4 - GS\TaskBar [Administrateur]: Discord.lnk . (.GitHub - Update.) C:\Users\Anas\AppData\Local\Discord\Update.exe {028AA6E7B516C0D155F15D6290A430E3} O4 - GS\TaskBar [Administrateur]: Dropbox 25 GB.lnk . (.DropboxOEM - DropboxOEM.) C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe =>.Dropbox, Inc® O4 - GS\TaskBar [Administrateur]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe {0C5396DCB2949C70FAC48AB08A07338E} =>.Mozilla Corporation O4 - GS\TaskBar [Administrateur]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {0C15BE4A15BB0903C901B1D6C265302F} O4 - GS\TaskBar [Administrateur]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe {054F466CECCBE9D6BEE81F5435E64D47} =>.Valve Corporation O4 - GS\TaskBar [Administrateur]: stremio.lnk . (...) C:\Users\Anas\AppData\Roaming\LNV\Stremio-4\stremio.exe {609F5E7E36800FDCA19D2AED5FD4B2D0} O4 - GS\TaskBar [Administrateur]: WinRAR.lnk . (.Alexander Roshal - WinRAR archiver.) C:\Program Files (x86)\WinRAR\WinRAR.exe {529E3F9FCF7D58D520D607AB74395002} =>.Alexander Roshal O4 - GS\Startup [Administrateur]: Discord.lnk . (.GitHub - Update.) C:\Users\Anas\AppData\Local\Discord\Update.exe {028AA6E7B516C0D155F15D6290A430E3} O4 - GS\Desktop [Anas]: BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks 4.) C:\ProgramData\BlueStacks\Client\Bluestacks.exe {446A06966CEE0738C8F1A374883AEF88} =>.BlueStack Systems, Inc. O4 - GS\Desktop [Anas]: Dead or Alive 5 Last Round.lnk . (...) C:\Program Files (x86)\Vision RC\Dead or Alive 5 Last Round\game.bat O4 - GS\Desktop [Anas]: GeoGebra Classique.lnk . (.GitHub - Update.) C:\Users\Anas\AppData\Local\GeoGebra_6\Update.exe O4 - GS\Desktop [Anas]: JUMP FORCE.lnk . (.BANDAI NAMCO Entertainment Inc. - JUMP-FORCE.) C:\Program Files (x86)\Vision RC\JUMP FORCE\JUMP_FORCE\Binaries\Win64\JUMP_FORCE-Win64-Shipping.exe O4 - GS\Desktop [Anas]: Rocket League DC Super Heroes.lnk . (.Psyonix, Inc - .) C:\Program Files (x86)\Rocket League DC Super Heroes\Binaries\Win32\RocketLeague.exe =>.Psyonix, Inc O4 - GS\Desktop [Anas]: Sleeping Dogs.lnk . (...) C:\Program Files (x86)\R.G. Mechanics\Sleeping Dogs\HKShip.exe O4 - GS\Desktop [Anas]: WhatsApp.lnk . (.WhatsApp - WhatsApp.) C:\Users\Anas\AppData\Local\WhatsApp\WhatsApp.exe {066AD7CFF000A2F865C84734F616DEF1} O4 - GS\Desktop [Anas]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Anas\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [Anas]: Настройки-Dead or Alive 5 Last Round.lnk . (...) C:\Program Files (x86)\Vision RC\Dead or Alive 5 Last Round\startup_setting.bat O4 - GS\Quicklaunch [Anas]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {0C15BE4A15BB0903C901B1D6C265302F} O4 - GS\Quicklaunch [Anas]: Wondershare Data Recovery.lnk . (.Copyright © 2017 Wondershare. All rights reserved. - Wondershare Data Recovery.) C:\Program Files (x86)\Wondershare\Wondershare Data Recovery\WSDataRecovery.exe O4 - GS\TaskBar [Anas]: Discord.lnk . (.GitHub - Update.) C:\Users\Anas\AppData\Local\Discord\Update.exe {028AA6E7B516C0D155F15D6290A430E3} O4 - GS\TaskBar [Anas]: Dropbox 25 GB.lnk . (.DropboxOEM - DropboxOEM.) C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe =>.Dropbox, Inc® O4 - GS\TaskBar [Anas]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe {0C5396DCB2949C70FAC48AB08A07338E} =>.Mozilla Corporation O4 - GS\TaskBar [Anas]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {0C15BE4A15BB0903C901B1D6C265302F} O4 - GS\TaskBar [Anas]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe {054F466CECCBE9D6BEE81F5435E64D47} =>.Valve Corporation O4 - GS\TaskBar [Anas]: stremio.lnk . (...) C:\Users\Anas\AppData\Roaming\LNV\Stremio-4\stremio.exe {609F5E7E36800FDCA19D2AED5FD4B2D0} O4 - GS\TaskBar [Anas]: WinRAR.lnk . (.Alexander Roshal - WinRAR archiver.) C:\Program Files (x86)\WinRAR\WinRAR.exe {529E3F9FCF7D58D520D607AB74395002} =>.Alexander Roshal O4 - GS\Startup [Anas]: Discord.lnk . (.GitHub - Update.) C:\Users\Anas\AppData\Local\Discord\Update.exe {028AA6E7B516C0D155F15D6290A430E3} O4 - GS\Desktop [WDAGUtilityAccount]: BlueStacks.lnk . (.BlueStack Systems, Inc. - BlueStacks 4.) C:\ProgramData\BlueStacks\Client\Bluestacks.exe {446A06966CEE0738C8F1A374883AEF88} =>.BlueStack Systems, Inc. O4 - GS\Desktop [WDAGUtilityAccount]: Dead or Alive 5 Last Round.lnk . (...) C:\Program Files (x86)\Vision RC\Dead or Alive 5 Last Round\game.bat O4 - GS\Desktop [WDAGUtilityAccount]: GeoGebra Classique.lnk . (.GitHub - Update.) C:\Users\Anas\AppData\Local\GeoGebra_6\Update.exe O4 - GS\Desktop [WDAGUtilityAccount]: JUMP FORCE.lnk . (.BANDAI NAMCO Entertainment Inc. - JUMP-FORCE.) C:\Program Files (x86)\Vision RC\JUMP FORCE\JUMP_FORCE\Binaries\Win64\JUMP_FORCE-Win64-Shipping.exe O4 - GS\Desktop [WDAGUtilityAccount]: Rocket League DC Super Heroes.lnk . (.Psyonix, Inc - .) C:\Program Files (x86)\Rocket League DC Super Heroes\Binaries\Win32\RocketLeague.exe =>.Psyonix, Inc O4 - GS\Desktop [WDAGUtilityAccount]: Sleeping Dogs.lnk . (...) C:\Program Files (x86)\R.G. Mechanics\Sleeping Dogs\HKShip.exe O4 - GS\Desktop [WDAGUtilityAccount]: WhatsApp.lnk . (.WhatsApp - WhatsApp.) C:\Users\Anas\AppData\Local\WhatsApp\WhatsApp.exe {066AD7CFF000A2F865C84734F616DEF1} O4 - GS\Desktop [WDAGUtilityAccount]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\Anas\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [WDAGUtilityAccount]: Настройки-Dead or Alive 5 Last Round.lnk . (...) C:\Program Files (x86)\Vision RC\Dead or Alive 5 Last Round\startup_setting.bat O4 - GS\Quicklaunch [WDAGUtilityAccount]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {0C15BE4A15BB0903C901B1D6C265302F} O4 - GS\Quicklaunch [WDAGUtilityAccount]: Wondershare Data Recovery.lnk . (.Copyright © 2017 Wondershare. All rights reserved. - Wondershare Data Recovery.) C:\Program Files (x86)\Wondershare\Wondershare Data Recovery\WSDataRecovery.exe O4 - GS\TaskBar [WDAGUtilityAccount]: Discord.lnk . (.GitHub - Update.) C:\Users\Anas\AppData\Local\Discord\Update.exe {028AA6E7B516C0D155F15D6290A430E3} O4 - GS\TaskBar [WDAGUtilityAccount]: Dropbox 25 GB.lnk . (.DropboxOEM - DropboxOEM.) C:\Program Files (x86)\Dropbox\DropboxOEM\DropboxOEM.exe =>.Dropbox, Inc® O4 - GS\TaskBar [WDAGUtilityAccount]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe {0C5396DCB2949C70FAC48AB08A07338E} =>.Mozilla Corporation O4 - GS\TaskBar [WDAGUtilityAccount]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {0C15BE4A15BB0903C901B1D6C265302F} O4 - GS\TaskBar [WDAGUtilityAccount]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe {054F466CECCBE9D6BEE81F5435E64D47} =>.Valve Corporation O4 - GS\TaskBar [WDAGUtilityAccount]: stremio.lnk . (...) C:\Users\Anas\AppData\Roaming\LNV\Stremio-4\stremio.exe {609F5E7E36800FDCA19D2AED5FD4B2D0} O4 - GS\TaskBar [WDAGUtilityAccount]: WinRAR.lnk . (.Alexander Roshal - WinRAR archiver.) C:\Program Files (x86)\WinRAR\WinRAR.exe {529E3F9FCF7D58D520D607AB74395002} =>.Alexander Roshal O4 - GS\Startup [WDAGUtilityAccount]: Discord.lnk . (.GitHub - Update.) C:\Users\Anas\AppData\Local\Discord\Update.exe {028AA6E7B516C0D155F15D6290A430E3} O4 - GS\CommonDesktop [Public]: Batman - Arkham Knight.lnk . (.Rocksteady Studios Ltd. - Batman: Arkham Knight.) C:\Program Files\Batman - Arkham Knight\Binaries\Win64\BatmanAK.exe O4 - GS\CommonDesktop [Public]: Darksiders II.lnk . (...) C:\Program Files (x86)\THQ\Darksiders II\Darksiders2.exe O4 - GS\CommonDesktop [Public]: DmC - Devil May Cry.lnk . (...) C:\Program Files (x86)\Capcom\DmC - Devil May Cry\Binaries\Win32\DMC-DevilMayCry.exe O4 - GS\CommonDesktop [Public]: EduPython.lnk . (.Vincent MAILLE - .) C:\Program Files (x86)\EduPython\EduPython.exe O4 - GS\CommonDesktop [Public]: Epic Games Launcher.lnk . (.Epic Games, Inc. - UE4Game.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe {51029B3B9CB48FA076FA2DA87A91DB42} =>.Epic Games, Inc. O4 - GS\CommonDesktop [Public]: Final Fantasy XV.lnk . (.SQUARE ENIX CO.,Ltd. - FINAL FANTASY XV WINDOWS EDITION.) C:\Program Files\FFXV\ffxv_s.exe O4 - GS\CommonDesktop [Public]: GeForce Experience.lnk . (.NVIDIA Corporation - .) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe =>.NVIDIA Corporation O4 - GS\CommonDesktop [Public]: Monster Hunter - World.lnk . (.CAPCOM CO., LTD. - MONSTER HUNTER: WORLD.) C:\Program Files (x86)\Monster Hunter - World\MonsterHunterWorld.exe O4 - GS\CommonDesktop [Public]: NBA 2K18.lnk . (...) C:\Program Files\NBA 2K18\NBA2K18.exe O4 - GS\CommonDesktop [Public]: PCSX2 1.4.0.lnk . (...) C:\Program Files (x86)\PCSX2 1.4.0\pcsx2.exe O4 - GS\CommonDesktop [Public]: qBittorrent.lnk . (...) C:\Program Files (x86)\qBittorrent\qbittorrent.exe O4 - GS\CommonDesktop [Public]: Sekiro (ArtBook and OST).lnk . (.DIGITAL ARTWORK & MINI SOUNDTRACK - DIGITAL ARTWORK & MINI SOUNDTRACK.) C:\Program Files (x86)\Sekiro - Shadows Die Twice\Artwork_MiniSoundtrack\DigitalArtwork_MiniSoundtrack.exe {0658908CB20A6171577B816B46F442D2} O4 - GS\CommonDesktop [Public]: Sekiro - Shadows Die Twice.lnk . (.FromSoftware, Inc. - Sekiro™: Shadows Die Twice.) C:\Program Files (x86)\Sekiro - Shadows Die Twice\sekiro.exe O4 - GS\CommonDesktop [Public]: South Park - The Fractured but Whole.lnk . (.Ubisoft - South Park TFBW.) C:\Program Files\South Park - The Fractured but Whole\SouthPark_TFBW.exe {32BF4351F36EC352F398A1A70598DE81} =>.Ubisoft O4 - GS\CommonDesktop [Public]: Steam.lnk . (.Valve Corporation - Steam Client Bootstrapper.) C:\Program Files (x86)\Steam\Steam.exe {054F466CECCBE9D6BEE81F5435E64D47} =>.Valve Corporation O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe {0FA5B80428F4624CF9672211E1956FBE} =>.VideoLAN O4 - GS\CommonDesktop [Public]: WinRAR.lnk . (.Alexander Roshal - WinRAR archiver.) C:\Program Files (x86)\WinRAR\WinRAR.exe {529E3F9FCF7D58D520D607AB74395002} =>.Alexander Roshal ---\\ Modification Domaine/Adresses DNS (5) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{05104940-eb56-4122-923d-da3c4393c374}: DhcpNameServer = 8.8.4.4 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2feb68be-cbe2-4c05-8f85-a7423fd9cbeb}: DhcpNameServer = 192.168.1.1 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{9c66d706-268a-4ff1-8561-cb7e744bea8c}: DhcpNameServer = 8.8.8.8 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{fdb5a055-c0e1-4944-8879-6931c52e0afb}: DhcpNameServer = 192.168.1.1 192.168.1.1 ---\\ Protocole additionnel (27) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\SysWOW64\inetcomm.dll =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\SysWOW64\urlmon.dll =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\SysWOW64\itss.dll =>.Microsoft Corporation O18 - Handler: mso-minsb-roaming.16 [64Bits] - {83C25742-A9F7-49FB-9138-434302C88D07} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O18 - Handler: mso-minsb.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O18 - Handler: osf-roaming.16 [64Bits] - {42089D2D-912D-4018-9087-2B87803E93FB} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O18 - Handler: osf.16 [64Bits] - {5504BE45-A83B-4808-900A-3A5C36E7F77A} . (.Microsoft Corporation - Microsoft Office component.) -- C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\SysWOW64\MSVidCtl.dll =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\SysWOW64\mshtml.dll =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\SysWOW64\tbauth.dll =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\SysWOW64\mscoree.dll =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\MSOXMLMF.DLL {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation ---\\ Valeur de Registre AppInit_DLLs et sous-clés Winlogon Notify (1) - 0s O20 - AppInit_DLLs: . (...) - C:\ProgramData\Quoteex\Bigdox.dll (.not file.) ---\\ Liste des clés Explorer StartupApproved (20) - 0s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Steam [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Gaijin.Net Agent [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:EpicGamesLauncher [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Async [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Async_upd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Cashery.biz [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Cashery.biz_upd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Discord.lnk [HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Discord [HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive [HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Steam [HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Gaijin.Net Agent [HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:EpicGamesLauncher [HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Async [HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Async_upd [HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Cashery.biz [HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Cashery.biz_upd [HKEY_USERS\S-1-5-21-4074804043-3879599017-3090910850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:Discord.lnk ---\\ Logiciels installés (159) - 23s O42 - Logiciel: Adobe Photoshop CC 2019 - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- PHSP_20_0 {06B922A8397E632FE5348DA267275B4F} =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Photoshop CS6 version 13.0.1 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- {A724DC44-6241-42D3-BA57-778B178ABC17}_is1 =>.Adobe Systems, Inc. O42 - Logiciel: Adobe Shockwave Player 11.5 - (.Adobe Systems, Inc..) [HKLM][64Bits] -- Adobe Shockwave Player =>.Adobe Systems, Inc. O42 - Logiciel: Allgemeine Runtime Files (x86) - (.Sereby Corporation.) [HKLM][64Bits] -- {1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1 O42 - Logiciel: Async - (...) [HKCU][64Bits] -- Async O42 - Logiciel: Batman: Arkham Knight - (...) [HKLM][64Bits] -- Batman: Arkham Knight_is1 O42 - Logiciel: BlueStacks App Player - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- BlueStacks {446A06966CEE0738C8F1A374883AEF88} =>.BlueStack Systems, Inc. O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} =>.Apple Inc. O42 - Logiciel: Cashery.biz - (...) [HKCU][64Bits] -- Cashery.biz O42 - Logiciel: Counter-Strike: Global Offensive - (.Valve.) [HKLM][64Bits] -- Steam App 730 {054F466CECCBE9D6BEE81F5435E64D47} =>.SteamApp.Game O42 - Logiciel: Darksiders II - (...) [HKLM][64Bits] -- Darksiders II_is1 O42 - Logiciel: Dead or Alive 5 Last Round v.1.10C - (...) [HKLM][64Bits] -- Dead or Alive 5 Last Round_is1 O42 - Logiciel: DirectX 9.0c Extra Files (x86, x64) - (.Sereby Corporation.) [HKLM][64Bits] -- {8729E65B-8C12-4A42-B1FE-E4DA7ED52855}_is1 O42 - Logiciel: DirectX for Managed Code - (.Sereby Corporation.) [HKLM][64Bits] -- {FDF7187F-3960-4BEC-916D-98C9A83E3A68}_is1 O42 - Logiciel: Discord - (.Discord Inc..) [HKCU][64Bits] -- Discord {028AA6E7B516C0D155F15D6290A430E3} O42 - Logiciel: DisplayDriverAnalyzer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer =>.NVIDIA Corporation O42 - Logiciel: DmC - Devil May Cry - (...) [HKLM][64Bits] -- DmC - Devil May Cry_is1 O42 - Logiciel: Dragon Ball FighterZ - (...) [HKLM][64Bits] -- Dragon Ball FighterZ_is1 O42 - Logiciel: Dropbox 25 GB - (.Dropbox, Inc..) [HKLM][64Bits] -- {84D8451D-2ED6-3A59-ABA5-2A447F7C6310} =>.Dropbox, Inc. O42 - Logiciel: Dropbox Update Helper - (.Dropbox, Inc..) [HKLM][64Bits] -- {099218A5-A723-43DC-8DB5-6173656A1E94} =>.Dropbox, Inc. O42 - Logiciel: EduPython 2.3 - (.V. MAILLE.) [HKLM][64Bits] -- EduPython_2.3_is1 O42 - Logiciel: Energy Star - (.HP Inc..) [HKLM][64Bits] -- {5CB22648-35F8-41BC-9C35-1E41FE6E12A5} O42 - Logiciel: Epic Games Launcher - (.Epic Games, Inc..) [HKLM][64Bits] -- {CC65E120-E089-4438-815A-E20004182608} =>.Epic Games, Inc. O42 - Logiciel: Evolve Stage 2 - (.Turtle Rock Studios.) [HKLM][64Bits] -- Steam App 273350 {054F466CECCBE9D6BEE81F5435E64D47} =>.SteamApp.Game O42 - Logiciel: Final Fantasy XV - (...) [HKLM][64Bits] -- Final Fantasy XV_is1 O42 - Logiciel: GeoGebra Classic - (.International GeoGebra Institute.) [HKCU][64Bits] -- GeoGebra_6 =>.International GeoGebra Institute O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome {0C15BE4A15BB0903C901B1D6C265302F} O42 - Logiciel: Google Update Helper - (.Google LLC.) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} O42 - Logiciel: HiPatch - (.Hi-Rez Studios.) [HKLM][64Bits] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000} {3FA11426C4A5F2A600FD97D775A6E797} =>.Hi-Rez Studios O42 - Logiciel: Hi-Rez Studios Authenticate and Update Service - (.Hi-Rez Studios.) [HKLM][64Bits] -- {3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC} {3FA11426C4A5F2A600FD97D775A6E797} =>.Hi-Rez Studios O42 - Logiciel: HP Audio Switch - (.HP Inc..) [HKLM][64Bits] -- {BC852AA8-58F6-4F07-ACB1-7377E52CA4F3} O42 - Logiciel: HP CoolSense - (.HP Inc..) [HKLM][64Bits] -- {AC154691-D9B6-4CD9-BB9B-ACDAF61367E5} O42 - Logiciel: HP Customer Experience Enhancements - (.HP Inc..) [HKLM][64Bits] -- {9720A595-3D2D-440E-9523-0B6F970745DD} O42 - Logiciel: HP Documentation - (.HP Inc..) [HKLM][64Bits] -- HP_Documentation O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {20185BDA-D396-4C93-95C7-ECD0FB397FF7} O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {2889C948-F002-4992-815F-DBE0AFB5DC6E} O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {54da9769-2364-4bd3-8139-6400500778b3} {6207AD04EFA2FD166CC7D986887E4B18} O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {5BBB44D5-3CC0-4434-AA0C-5883B975E45E} O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {6884D818-9E0E-4984-A6CA-B17757DCB8FA} O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {98AA8BB0-0C0A-411A-BB43-1265CA769155} O42 - Logiciel: HP ePrint SW - (.HP Inc..) [HKLM][64Bits] -- {F7E8A494-97B6-4786-9E2C-A42A082483EB} O42 - Logiciel: HP JumpStart Apps - (.HP Inc..) [HKLM][64Bits] -- HP JumpStart Apps O42 - Logiciel: HP JumpStart Bridge - (.HP Inc..) [HKLM][64Bits] -- {23D5C1E8-0442-4D70-9280-927EF36657CB} O42 - Logiciel: HP JumpStart Launch - (.HP Inc..) [HKLM][64Bits] -- {81CA40FD-E11B-4DC1-AE33-A71EB044B8B7} O42 - Logiciel: HP Recovery Manager - (.HP.) [HKLM][64Bits] -- {64BAA990-F1FC-4145-A7B1-E41FBBC9DA47} =>.HP O42 - Logiciel: HP Support Assistant - (.HP Inc..) [HKLM][64Bits] -- {05F81C27-62A5-4A0C-8519-60CB66CF87C6} O42 - Logiciel: HP Support Solutions Framework - (.HP Inc..) [HKLM][64Bits] -- {9F79033A-84FC-4137-BCDC-C505246F78E1} O42 - Logiciel: HP Sure Connect - (.HP Inc..) [HKLM][64Bits] -- {6468C4A5-E47E-405F-B675-A70A70983EA6} O42 - Logiciel: HP System Event Utility - (.HP Inc..) [HKLM][64Bits] -- {1BB20774-0FA8-4CFF-AB69-7B7AAE2DCE6C} O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {3AAD3A73-0D6A-4EFE-93FC-7719DC6C89E4} =>.Intel Corporation O42 - Logiciel: Intel(R) Dynamic Platform and Thermal Framework - (.Intel Corporation.) [HKLM][64Bits] -- {654EE65D-FAA4-4EA6-8C07-DC94E6A304D4} =>.Intel Corporation - pGFX® O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {177F3AF8-1D9D-4C47-AB82-69571F4630DE} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel Corporation O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {DEDA24FF-BA95-42E7-B914-639D32515511} =>.Intel Corporation O42 - Logiciel: Intel(R) PRO/Wireless Driver - (.Intel Corporation.) [HKLM][64Bits] -- {67376696-48c6-4e14-b1d2-67b62be28054} =>.Intel Corporation O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} {330000B898AA86B5A39E5A1BBD00020000B898} =>.Intel Corporation O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} {560000006441BCFD1CA85DB259000000000064} =>.Intel Corporation O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {EBE12EC7-60DF-41C2-AAC8-0B2586F15C96} =>.Intel Corporation O42 - Logiciel: Intel(R) Wireless Bluetooth(R) - (.Intel Corporation.) [HKLM][64Bits] -- {829A630C-9C4C-4CC9-BE90-DFEAA87F106C} =>.Intel Corporation O42 - Logiciel: Intel® PROSet/Wireless WiFi Software - (.Intel Corporation.) [HKLM][64Bits] -- {11BD5062-5227-4A48-91AF-904B1802EEA8} =>.Intel Corporation O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {75FE588B-F158-4BB3-A283-A8D18E522A52} =>.Intel Corporation O42 - Logiciel: Java(TM) 6 Update 18 - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F83216018FF} =>.Sun Microsystems, Inc. O42 - Logiciel: Java(TM) 6 Update 18 (64-bit) - (.Sun Microsystems, Inc..) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86416018FF} =>.Sun Microsystems, Inc. O42 - Logiciel: JUMP FORCE - (...) [HKLM][64Bits] -- JUMP FORCE_is1 O42 - Logiciel: Katawa Shoujo - (...) [HKLM][64Bits] -- Katawa Shoujo O42 - Logiciel: Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {c6c5a357-c7ca-4a5f-9789-3bb1af579253} =>.Epic Games Inc.® O42 - Logiciel: LEGO Batman 2 DC Super Heroes - (.GOG.com.) [HKLM][64Bits] -- 1193585573_is1 {087DE552D352D9BAF0C2B6DF6AC4C64A} =>.GOG.com O42 - Logiciel: Logiciel Intel® PROSet/Wireless - (.Intel Corporation.) [HKLM][64Bits] -- {475ea806-cb2a-455b-bb1b-9f99342b2fe2} =>.Intel Corporation-Wireless Connectivity Solutions® O42 - Logiciel: Logiciel pour périphérique à chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {226be6c3-8e08-4d52-bd3a-d361008448c5} {5600000071934283BFC7A54FBD000000000071} =>.Intel(R) Corporation O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} =>.Microsoft Corporation O42 - Logiciel: Microsoft VC++ redistributables repacked. - (.Intel Corporation.) [HKLM][64Bits] -- {F29F6D90-52BF-4644-9F61-82EFF42A9268} =>.Intel Corporation O42 - Logiciel: Microsoft VC++ redistributables repacked. - (.Intel Corporation.) [HKLM][64Bits] -- {F72EB01C-8051-488C-AB30-848E38D3598B} =>.Intel Corporation O42 - Logiciel: Mises à jour NVIDIA 31.2.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update =>.NVIDIA Corporation O42 - Logiciel: Monster Hunter: World - (...) [HKLM][64Bits] -- Monster Hunter: World_is1 O42 - Logiciel: Mozilla Firefox 67.0.1 (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 67.0.1 (x64 fr) {0C5396DCB2949C70FAC48AB08A07338E} =>.Mozilla O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService =>.Mozilla O42 - Logiciel: Multitimer version 1.0 - (...) [HKLM][64Bits] -- Multitimer_is1 O42 - Logiciel: NARUTO SHIPPUDEN Ultimate Ninja Storm 4 - (...) [HKLM][64Bits] -- NARUTO SHIPPUDEN Ultimate Ninja Storm 4_is1 O42 - Logiciel: NARUTO: Ultimate Ninja Storm - (...) [HKLM][64Bits] -- NARUTO: Ultimate Ninja Storm_is1 O42 - Logiciel: NBA 2K18 - (...) [HKLM][64Bits] -- NBA 2K18_is1 O42 - Logiciel: No Man's Sky - (.Hello Games.) [HKLM][64Bits] -- Steam App 275850 {054F466CECCBE9D6BEE81F5435E64D47} =>.SteamApp.Game O42 - Logiciel: NVIDIA Ansel - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Backend - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvBackend =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Container LS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayContainerLS =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplaySessionContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Display Watchdog Plugin - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVDisplayPluginWatchdog =>.NVIDIA Corporation O42 - Logiciel: NVIDIA GeForce Experience 3.14.1.48 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Install Application - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA LocalSystem Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.LocalSystem =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Logiciel système PhysX 9.17.0524 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Message Bus for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.MessageBus =>.NVIDIA Corporation O42 - Logiciel: NVIDIA NetworkService Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NetworkService =>.NVIDIA Corporation O42 - Logiciel: NVIDIA NodeJS - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Optimus Update 31.2.0.0 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Pilote audio HD : 1.3.37.4 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Session Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.Session =>.NVIDIA Corporation O42 - Logiciel: NVIDIA ShadowPlay 3.14.1.48 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShadowPlay =>.NVIDIA Corporation O42 - Logiciel: Nvidia Share - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_OSC =>.NVIDIA Corporation O42 - Logiciel: NVIDIA SHIELD Streaming - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv =>.NVIDIA Corporation O42 - Logiciel: NVIDIA SHIELD Wireless Controller Driver - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Telemetry Client - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Telemetry Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetryContainer =>.NVIDIA Corporation O42 - Logiciel: NVIDIA TelemetryApi helper for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.ContainerTelemetryApiHelper =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Update Core - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Update.Core =>.NVIDIA Corporation O42 - Logiciel: NVIDIA User Container - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.User =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Virtual Audio 4.08.3 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_VirtualAudio.Driver =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Virtual Host Controller - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvVHCI =>.NVIDIA Corporation O42 - Logiciel: NVIDIA Watchdog Plugin for NvContainer - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvPlugin.Watchdog =>.NVIDIA Corporation O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0409-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} =>.Microsoft Corporation O42 - Logiciel: One Piece Pirate Warriors 3: GOLD Edition - (...) [HKLM][64Bits] -- One Piece Pirate Warriors 3: GOLD Edition_is1 O42 - Logiciel: ONE.PIECE.BURNING.BLOOD.[Gold.Edition]-ALI213 version 1.0 - (.Ali213.net.) [HKLM][64Bits] -- {946E2B1B-60B8-4008-B5F2-AE937FB7F594}}_is1 O42 - Logiciel: Online Application - (.Microleaves.) [HKLM][64Bits] -- {5266F634-7B7D-4537-BDDC-98DD6CFCBAA1} O42 - Logiciel: Paladins - (.Hi-Rez Studios.) [HKLM][64Bits] -- Steam App 444090 {054F466CECCBE9D6BEE81F5435E64D47} =>.SteamApp.Game O42 - Logiciel: Panneau de configuration NVIDIA 398.36 - (.NVIDIA Corporation.) [HKLM][64Bits] -- {B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel =>.NVIDIA Corporation O42 - Logiciel: PCSX2 - Playstation 2 Emulator - (...) [HKLM][64Bits] -- pcsx2 O42 - Logiciel: Python 3.6.5 (32-bit) - (.Python Software Foundation.) [HKCU][64Bits] -- {3346977b-49da-4095-8f4d-f56f103e52e9} {69A70A41880F6BBF683E3766D6A7E6F4} =>.Python Software Foundation O42 - Logiciel: Python 3.6.5 Add to Path (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {1D3BE06D-5E44-48FF-8D61-B744808EBE46} =>.Python Software Foundation O42 - Logiciel: Python 3.6.5 Core Interpreter (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {58E1C809-82C5-4EDF-B69B-188A6C81F21F} =>.Python Software Foundation O42 - Logiciel: Python 3.6.5 Development Libraries (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {21FD2EE0-8D55-49DC-A1B0-771696DDEE98} =>.Python Software Foundation O42 - Logiciel: Python 3.6.5 Documentation (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {5C613D87-0AED-48A9-A216-3A3783463D6C} =>.Python Software Foundation O42 - Logiciel: Python 3.6.5 Executables (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {9107CF1A-A09C-4035-B29E-E79B4098AB8C} =>.Python Software Foundation O42 - Logiciel: Python 3.6.5 pip Bootstrap (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {C024F06C-0E37-4529-945F-7920A9CFFD78} =>.Python Software Foundation O42 - Logiciel: Python 3.6.5 Standard Library (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {8C2E8A7D-95CC-491C-AB9C-DE785A137D00} =>.Python Software Foundation O42 - Logiciel: Python 3.6.5 Tcl/Tk Support (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {052FD2FB-034D-4CDD-864E-798DE45C742A} =>.Python Software Foundation O42 - Logiciel: Python 3.6.5 Test Suite (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {86533809-919A-4858-AFC4-4226B86C5291} =>.Python Software Foundation O42 - Logiciel: Python 3.6.5 Utility Scripts (32-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {5C0C82E9-B580-4EE4-894A-4451A23B0E2C} =>.Python Software Foundation O42 - Logiciel: Python Launcher - (.Python Software Foundation.) [HKLM][64Bits] -- {8A66FEC2-E443-4219-B9AC-F9B10607B57C} =>.Python Software Foundation O42 - Logiciel: qBittorrent 4.0.4 - (.The qBittorrent project.) [HKLM][64Bits] -- qBittorrent O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} {0A9997ACCB4B384C80E313DD2854407B} =>.Realtek Semiconductor Corp. O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} {0320BE3EB866526927F999B97B04346E} =>.Realtek Semiconductor Corp. O42 - Logiciel: Revolution software 2 v1.04 - (.Nacon.) [HKLM][64Bits] -- {59EE3249-4BD8-471D-AE83-C9AE1173A127} O42 - Logiciel: Revolution software v1.63 - (.Nacon.) [HKLM][64Bits] -- {60DD0941-3BD2-48BA-B9B2-277489968165} O42 - Logiciel: Rocket League DC Super Heroes - (...) [HKLM][64Bits] -- Rocket League DC Super Heroes_is1 O42 - Logiciel: Sekiro: Shadows Die Twice - (...) [HKLM][64Bits] -- Sekiro: Shadows Die Twice_is1 O42 - Logiciel: Sleeping Dogs - (.R.G. Mechanics, Panky.) [HKLM][64Bits] -- Sleeping Dogs_R.G. Mechanics_is1 O42 - Logiciel: South Park: The Fractured... - (...) [HKLM][64Bits] -- South Park: The Fractured..._is1 O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve® O42 - Logiciel: Synaptics ClickPad Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey =>.Synaptics Incorporated O42 - Logiciel: UE4 Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {2890ae6b-90e9-448d-b3e6-97e43c21e2fd} =>.Epic Games Inc.® O42 - Logiciel: UE4 Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4} =>.Epic Games, Inc. O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] -- {C3ACFCEA-240F-4DCC-A0C3-DD55FEE6C3C2} =>.Microsoft Corporation O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player =>.VideoLAN O42 - Logiciel: Vulkan Run Time Libraries 1.0.42.0 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.42.0 {03B471CD4D7FFEC29A3B20B2CB0F5F54} O42 - Logiciel: Vulkan Run Time Libraries 1.0.42.0 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.42.0-2 O42 - Logiciel: Vulkan Run Time Libraries 1.0.42.0 - (.LunarG, Inc..) [HKLM][64Bits] -- VulkanRT1.0.42.0-3 {03B471CD4D7FFEC29A3B20B2CB0F5F54} O42 - Logiciel: War Thunder - (.Gaijin Entertainment.) [HKLM][64Bits] -- Steam App 236390 {054F466CECCBE9D6BEE81F5435E64D47} =>.SteamApp.Game O42 - Logiciel: WhatsApp - (.WhatsApp.) [HKCU][64Bits] -- WhatsApp {066AD7CFF000A2F865C84734F616DEF1} O42 - Logiciel: WinRAR 5.50 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver {529E3F9FCF7D58D520D607AB74395002} =>.win.rar GmbH O42 - Logiciel: Wondershare Data Recovery(Build 6.5.1.5) - (.Wondershare Software Co.,Ltd..) [HKLM][64Bits] -- {FEA3976F-D621-45F3-AFBD-E812A1F2F00D}_is1 =>.Wondershare Software Co.,Ltd. O42 - Logiciel: Wondershare Helper Compact 2.5.2 - (.Wondershare.) [HKLM][64Bits] -- {5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1 =>.Wondershare O42 - Logiciel: YoutubeAdBlock - (.Company Inc..) [HKLM][64Bits] -- 1655C0CA-7AE7-4012-8502-970C8675E5F8 =>PUP.Optional.YouTubeAdBlock ---\\ HKCU & HKLM Software Keys (102) - 23s HKLM\SOFTWARE\Wow6432Node\Adobe HKLM\SOFTWARE\Wow6432Node\AGEIA Technologies HKLM\SOFTWARE\Wow6432Node\AppDataLow HKLM\SOFTWARE\Wow6432Node\Apple Inc. HKLM\SOFTWARE\Wow6432Node\Applogon HKLM\SOFTWARE\Wow6432Node\AVG HKLM\SOFTWARE\Wow6432Node\Caphyon HKLM\SOFTWARE\Wow6432Node\Chromium HKLM\SOFTWARE\Wow6432Node\Dropbox HKLM\SOFTWARE\Wow6432Node\DropboxUpdate HKLM\SOFTWARE\Wow6432Node\EasyAntiCheat HKLM\SOFTWARE\Wow6432Node\Epic Games HKLM\SOFTWARE\Wow6432Node\EpicGames HKLM\SOFTWARE\Wow6432Node\GOG.com HKLM\SOFTWARE\Wow6432Node\Google HKLM\SOFTWARE\Wow6432Node\Hewlett-Packard HKLM\SOFTWARE\Wow6432Node\Hi-Rez Studios HKLM\SOFTWARE\Wow6432Node\HiRez Studios HKLM\SOFTWARE\Wow6432Node\HP HKLM\SOFTWARE\Wow6432Node\HP Inc. HKLM\SOFTWARE\Wow6432Node\Intel HKLM\SOFTWARE\Wow6432Node\JavaSoft HKLM\SOFTWARE\Wow6432Node\Katawa Shoujo HKLM\SOFTWARE\Wow6432Node\Khronos HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCard HKLM\SOFTWARE\Wow6432Node\LogMeInRescueCallingCards HKLM\SOFTWARE\Wow6432Node\Macromedia HKLM\SOFTWARE\Wow6432Node\Microleaves HKLM\SOFTWARE\Wow6432Node\Mozilla HKLM\SOFTWARE\Wow6432Node\MozillaPlugins HKLM\SOFTWARE\Wow6432Node\mtQuoteex HKLM\SOFTWARE\Wow6432Node\Nacon HKLM\SOFTWARE\Wow6432Node\Novacore Studios HKLM\SOFTWARE\Wow6432Node\Nuance HKLM\SOFTWARE\Wow6432Node\NVIDIA Corporation HKLM\SOFTWARE\Wow6432Node\ODBC HKLM\SOFTWARE\Wow6432Node\PCSX2 HKLM\SOFTWARE\Wow6432Node\Python HKLM\SOFTWARE\Wow6432Node\qBittorrent HKLM\SOFTWARE\Wow6432Node\Realtek HKLM\SOFTWARE\Wow6432Node\Realtek Semiconductor Corp. HKLM\SOFTWARE\Wow6432Node\Shortcuter HKLM\SOFTWARE\Wow6432Node\Stellar Data Recovery HKLM\SOFTWARE\Wow6432Node\Valve HKLM\SOFTWARE\Wow6432Node\WafCX HKLM\SOFTWARE\Wow6432Node\WinRAR HKLM\SOFTWARE\Wow6432Node\Wondershare HKLM\SOFTWARE\Wow6432Node\WOW6432Node HKLM\SOFTWARE\Wow6432Node\RegisteredApplications HKCU\SOFTWARE\Adobe HKCU\SOFTWARE\All-Radio HKCU\SOFTWARE\AppDataLow HKCU\SOFTWARE\Async HKCU\SOFTWARE\BcmSetup HKCU\SOFTWARE\BNE HKCU\SOFTWARE\BugSplat HKCU\SOFTWARE\Cashery.biz HKCU\SOFTWARE\Cheat Engine HKCU\SOFTWARE\Chromium HKCU\SOFTWARE\csastats HKCU\SOFTWARE\Disc Soft HKCU\SOFTWARE\Discord HKCU\SOFTWARE\DMGR1.25 HKCU\SOFTWARE\DropboxUpdate HKCU\SOFTWARE\Eek HKCU\SOFTWARE\Epic Games HKCU\SOFTWARE\FastDataX HKCU\SOFTWARE\Gaijin HKCU\SOFTWARE\GOG.com HKCU\SOFTWARE\Google HKCU\SOFTWARE\Hewlett-Packard HKCU\SOFTWARE\HP HKCU\SOFTWARE\Intel HKCU\SOFTWARE\JavaSoft HKCU\SOFTWARE\Macromedia HKCU\SOFTWARE\Mozilla HKCU\SOFTWARE\Netscape HKCU\SOFTWARE\NVIDIA Corporation HKCU\SOFTWARE\nwjs HKCU\SOFTWARE\ODBC HKCU\SOFTWARE\PCSX2 HKCU\SOFTWARE\Python HKCU\SOFTWARE\QtProject HKCU\SOFTWARE\Realtek HKCU\SOFTWARE\RegisteredApplications HKCU\SOFTWARE\Rtp HKCU\SOFTWARE\Spoon HKCU\SOFTWARE\Stellar HKCU\SOFTWARE\Synaptics HKCU\SOFTWARE\TCP Optimizer HKCU\SOFTWARE\THEGFW HKCU\SOFTWARE\Trolltech HKCU\SOFTWARE\Ubisoft HKCU\SOFTWARE\Valve HKCU\SOFTWARE\Warner Bros. Interactive Entertainment HKCU\SOFTWARE\WinRAR HKCU\SOFTWARE\WinRAR SFX HKCU\SOFTWARE\Wondershare HKCU\SOFTWARE\Wow6432Node HKCU\SOFTWARE\ZebHelpProcess Helper HKCU\SOFTWARE\AppDataLow\Software HKCU\SOFTWARE\AppDataLow\Software\Adobe ---\\ Contenu des dossiers Programmes (255) - 15s O43 - CFD: 02/06/2018 - [] D -- C:\Program Files (x86)\Activision {4BDA41ED6B058AB4D7A062E4D583045B} O43 - CFD: 07/06/2019 - [] D -- C:\Program Files (x86)\Adobe {0CEFAB1F7C07370C77DFB61C3CA4F5F0} O43 - CFD: 07/06/2019 - [] D -- C:\Program Files (x86)\Adobe Photoshop CS6 O43 - CFD: 30/04/2018 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc.® O43 - CFD: 08/02/2019 - [] D -- C:\Program Files (x86)\Capcom =>.Microsoft Corporation® O43 - CFD: 27/01/2019 - [] D -- C:\Program Files (x86)\Castle.Crashers O43 - CFD: 11/06/2019 - [] D -- C:\Program Files (x86)\Common Files O43 - CFD: 30/04/2018 - [] D -- C:\Program Files (x86)\Dropbox =>.Dropbox, Inc® O43 - CFD: 28/05/2019 - [] D -- C:\Program Files (x86)\EasyAntiCheat {234175E3D1A23EF8ACB50245} O43 - CFD: 26/09/2018 - [] D -- C:\Program Files (x86)\EduPython O43 - CFD: 21/05/2019 - [] D -- C:\Program Files (x86)\emPHiGMMeIE O43 - CFD: 01/05/2018 - [] D -- C:\Program Files (x86)\Epic Games =>.Epic Games Inc.® O43 - CFD: 30/04/2018 - [] D -- C:\Program Files (x86)\Far Cry 5 O43 - CFD: 23/06/2018 - [] D -- C:\Program Files (x86)\FastDataX O43 - CFD: 05/06/2019 - [] D -- C:\Program Files (x86)\Google {14F8FDD167F92402B1570B5DC495C815} O43 - CFD: 30/04/2018 - [] D -- C:\Program Files (x86)\Hewlett-Packard {0EB747C0B28FBBB79CFB1F25ED1D28DC} O43 - CFD: 12/06/2019 - [] D -- C:\Program Files (x86)\Hi-Rez Studios O43 - CFD: 07/06/2018 - [] AD -- C:\Program Files (x86)\HP {00ED900AA6C38DE2F2F56B9C65FD452551} O43 - CFD: 30/04/2018 - [] D -- C:\Program Files (x86)\HP Inc O43 - CFD: 01/10/2018 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information {0320BE3EB866526927F999B97B04346E} O43 - CFD: 07/10/2018 - [] D -- C:\Program Files (x86)\Intel {330000B898AA86B5A39E5A1BBD00020000B898} O43 - CFD: 12/06/2019 - [] D -- C:\Program Files (x86)\Internet Explorer O43 - CFD: 03/05/2018 - [] D -- C:\Program Files (x86)\Java =>.Sun Microsystems, Inc.® O43 - CFD: 09/06/2019 - [0] D -- C:\Program Files (x86)\KJBvOIHSkWUn O43 - CFD: 02/06/2018 - [] D -- C:\Program Files (x86)\McAfee {587CD21A05D34D3DDFAA9128521CF4FC} O43 - CFD: 13/06/2019 - [] D -- C:\Program Files (x86)\Microsoft Office {33000001B1DDEDBA54E965B85F0001000001B1} O43 - CFD: 03/05/2018 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation® O43 - CFD: 18/05/2019 - [] D -- C:\Program Files (x86)\Microsoft.NET O43 - CFD: 10/03/2019 - [] D -- C:\Program Files (x86)\Monster Hunter - World O43 - CFD: 05/06/2019 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service {0C5396DCB2949C70FAC48AB08A07338E} O43 - CFD: 18/05/2019 - [] D -- C:\Program Files (x86)\MSBuild O43 - CFD: 20/06/2018 - [] D -- C:\Program Files (x86)\Multitimer O43 - CFD: 11/11/2018 - [] D -- C:\Program Files (x86)\NVIDIA Corporation {4FBE0A02426EBD20C26244B5ECA652A3} O43 - CFD: 30/04/2018 - [] RD -- C:\Program Files (x86)\Online Services O43 - CFD: 31/07/2018 - [] D -- C:\Program Files (x86)\PCSX2 1.4.0 O43 - CFD: 20/06/2018 - [] D -- C:\Program Files (x86)\Photomaker O43 - CFD: 01/05/2018 - [] D -- C:\Program Files (x86)\qBittorrent O43 - CFD: 02/11/2018 - [] D -- C:\Program Files (x86)\R.G. Mechanics O43 - CFD: 07/10/2018 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek Semiconductor Corp® O43 - CFD: 18/05/2019 - [] D -- C:\Program Files (x86)\Reference Assemblies O43 - CFD: 12/06/2019 - [] D -- C:\Program Files (x86)\Sekiro - Shadows Die Twice O43 - CFD: 28/05/2019 - [] D -- C:\Program Files (x86)\Steam {054F466CECCBE9D6BEE81F5435E64D47} O43 - CFD: 10/08/2017 - [0] HD -- C:\Program Files (x86)\Temp O43 - CFD: 03/03/2019 - [] D -- C:\Program Files (x86)\THQ O43 - CFD: 30/04/2018 - [0] HD -- C:\Program Files (x86)\Uninstall Information O43 - CFD: 06/04/2019 - [] D -- C:\Program Files (x86)\Vision RC O43 - CFD: 04/08/2018 - [] D -- C:\Program Files (x86)\VulkanRT {03B471CD4D7FFEC29A3B20B2CB0F5F54} O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\Windows Defender O43 - CFD: 18/05/2019 - [] D -- C:\Program Files (x86)\Windows Mail O43 - CFD: 18/05/2019 - [] D -- C:\Program Files (x86)\Windows Media Player O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\windows nt O43 - CFD: 18/05/2019 - [] D -- C:\Program Files (x86)\Windows Photo Viewer {33000001B24A37C6C97E0168860001000001B2} O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\Windows Portable Devices O43 - CFD: 15/09/2018 - [] SHD -- C:\Program Files (x86)\Windows Sidebar O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\WindowsPowerShell O43 - CFD: 04/05/2018 - [] D -- C:\Program Files (x86)\WinRAR {529E3F9FCF7D58D520D607AB74395002} O43 - CFD: 13/05/2018 - [] D -- C:\Program Files (x86)\Wondershare {02DED633B9DC9F50} O43 - CFD: 15/09/2018 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 18/05/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 18/05/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 07/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CS6 O43 - CFD: 05/04/2019 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\by.xatab O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Capcom O43 - CFD: 12/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios O43 - CFD: 18/05/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LEGO Batman 2 DC Super Heroes [GOG.com] O43 - CFD: 15/09/2018 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 13/06/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation O43 - CFD: 01/10/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revolution software O43 - CFD: 01/10/2018 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revolution software 2 O43 - CFD: 18/05/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam O43 - CFD: 18/05/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\THQ O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare O43 - CFD: 07/06/2019 - [] D -- C:\ProgramData\Adobe O43 - CFD: 30/04/2018 - [] D -- C:\ProgramData\Apple O43 - CFD: 18/05/2019 - [0] SHD -- C:\ProgramData\Application Data O43 - CFD: 26/05/2018 - [] D -- C:\ProgramData\AVG O43 - CFD: 08/02/2019 - [] D -- C:\ProgramData\BlueStacks O43 - CFD: 30/04/2018 - [0] SHD -- C:\ProgramData\Bureau O43 - CFD: 26/05/2018 - [] D -- C:\ProgramData\DAEMON Tools Lite O43 - CFD: 18/05/2019 - [0] SHD -- C:\ProgramData\Documents O43 - CFD: 30/04/2018 - [] D -- C:\ProgramData\Dropbox O43 - CFD: 06/04/2019 - [] D -- C:\ProgramData\Epic O43 - CFD: 26/05/2018 - [] D -- C:\ProgramData\Gaijin O43 - CFD: 09/09/2018 - [] D -- C:\ProgramData\GOG.com O43 - CFD: 30/04/2018 - [] D -- C:\ProgramData\Hewlett-Packard O43 - CFD: 18/05/2018 - [] D -- C:\ProgramData\Hi-Rez Studios O43 - CFD: 30/04/2018 - [] AD -- C:\ProgramData\HP O43 - CFD: 30/04/2018 - [] D -- C:\ProgramData\install_backup O43 - CFD: 30/04/2018 - [] D -- C:\ProgramData\install_clap O43 - CFD: 07/10/2018 - [] D -- C:\ProgramData\Intel O43 - CFD: 26/05/2018 - [] RASHD -- C:\ProgramData\Key-Base O43 - CFD: 20/06/2018 - [] D -- C:\ProgramData\Logic Cramble O43 - CFD: 26/05/2018 - [] D -- C:\ProgramData\McAfee O43 - CFD: 30/04/2018 - [0] SHD -- C:\ProgramData\Menu Démarrer O43 - CFD: 18/05/2019 - [] SD -- C:\ProgramData\Microsoft O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\Microsoft OneDrive O43 - CFD: 30/04/2018 - [0] SHD -- C:\ProgramData\Modèles O43 - CFD: 02/03/2019 - [] D -- C:\ProgramData\Mozilla O43 - CFD: 18/06/2019 - [] D -- C:\ProgramData\NVIDIA O43 - CFD: 11/11/2018 - [] D -- C:\ProgramData\NVIDIA Corporation O43 - CFD: 07/06/2019 - [] D -- C:\ProgramData\Package Cache O43 - CFD: 25/05/2019 - [] D -- C:\ProgramData\Packages O43 - CFD: 20/06/2018 - [] D -- C:\ProgramData\Quoteexs O43 - CFD: 18/06/2019 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft O43 - CFD: 07/10/2018 - [] D -- C:\ProgramData\Roaming O43 - CFD: 15/09/2018 - [0] D -- C:\ProgramData\SoftwareDistribution O43 - CFD: 30/04/2018 - [] D -- C:\ProgramData\SRS Labs O43 - CFD: 07/05/2018 - [] D -- C:\ProgramData\Steam O43 - CFD: 10/08/2017 - [0] D -- C:\ProgramData\SUPPORTDIR O43 - CFD: 30/04/2018 - [] D -- C:\ProgramData\Synaptics O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\USOPrivate O43 - CFD: 18/05/2019 - [] D -- C:\ProgramData\USOShared O43 - CFD: 15/09/2018 - [] D -- C:\ProgramData\WindowsHolographicDevices O43 - CFD: 13/05/2018 - [] D -- C:\ProgramData\Wondershare O43 - CFD: 26/05/2018 - [0] D -- C:\ProgramData\{7054ABCE-2CD6-8D5D-A03F-07DED8592AAC} =>PUP.Optional.BundleInstaller O43 - CFD: 07/06/2019 - [] D -- C:\Program Files (x86)\Common Files\Adobe O43 - CFD: 30/04/2018 - [] D -- C:\Program Files (x86)\Common Files\BattlEye O43 - CFD: 22/10/2018 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER O43 - CFD: 18/05/2019 - [] D -- C:\Program Files (x86)\Common Files\Intel O43 - CFD: 30/04/2018 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation O43 - CFD: 26/05/2018 - [] D -- C:\Program Files (x86)\Common Files\McAfee O43 - CFD: 13/06/2019 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared O43 - CFD: 20/06/2018 - [] D -- C:\Program Files (x86)\Common Files\Namron O43 - CFD: 15/09/2018 - [] D -- C:\Program Files (x86)\Common Files\Services O43 - CFD: 28/05/2019 - [] D -- C:\Program Files (x86)\Common Files\Steam O43 - CFD: 18/05/2019 - [] D -- C:\Program Files (x86)\Common Files\system O43 - CFD: 13/05/2018 - [] D -- C:\Program Files (x86)\Common Files\Wondershare O43 - CFD: 20/06/2018 - [0] D -- C:\Users\Anas\AppData\Roaming\1gd2mirhdag O43 - CFD: 22/07/2018 - [] D -- C:\Users\Anas\AppData\Roaming\2K Sports O43 - CFD: 12/06/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Adobe O43 - CFD: 01/03/2019 - [] D -- C:\Users\Anas\AppData\Roaming\asyn O43 - CFD: 23/02/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Async O43 - CFD: 20/02/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Async_upd O43 - CFD: 25/08/2018 - [] D -- C:\Users\Anas\AppData\Roaming\bgtools O43 - CFD: 08/02/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Cashery.biz O43 - CFD: 31/01/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Cashery.biz_upd O43 - CFD: 26/05/2018 - [] D -- C:\Users\Anas\AppData\Roaming\DAEMON Tools Lite O43 - CFD: 13/06/2019 - [] D -- C:\Users\Anas\AppData\Roaming\discord O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Roaming\DropboxOEM O43 - CFD: 03/10/2018 - [] D -- C:\Users\Anas\AppData\Roaming\DS4Windows O43 - CFD: 22/07/2018 - [] D -- C:\Users\Anas\AppData\Roaming\dtdump O43 - CFD: 11/11/2018 - [0] D -- C:\Users\Anas\AppData\Roaming\Easeware =>.Superfluous.Easeware O43 - CFD: 28/05/2019 - [] D -- C:\Users\Anas\AppData\Roaming\EasyAntiCheat O43 - CFD: 20/06/2018 - [] D -- C:\Users\Anas\AppData\Roaming\edosr O43 - CFD: 20/06/2018 - [] D -- C:\Users\Anas\AppData\Roaming\FastDataX O43 - CFD: 18/03/2019 - [] D -- C:\Users\Anas\AppData\Roaming\GeoGebra O43 - CFD: 05/06/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Google O43 - CFD: 27/07/2018 - [] D -- C:\Users\Anas\AppData\Roaming\grdsvc O43 - CFD: 04/08/2018 - [] D -- C:\Users\Anas\AppData\Roaming\HelloGames O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Roaming\Hewlett-Packard O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Roaming\HP O43 - CFD: 02/05/2018 - [] D -- C:\Users\Anas\AppData\Roaming\hpqLog O43 - CFD: 07/10/2018 - [] D -- C:\Users\Anas\AppData\Roaming\Intel O43 - CFD: 31/01/2019 - [] D -- C:\Users\Anas\AppData\Roaming\jcecn O43 - CFD: 07/05/2018 - [] D -- C:\Users\Anas\AppData\Roaming\LNV O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Roaming\Macromedia O43 - CFD: 20/06/2018 - [] D -- C:\Users\Anas\AppData\Roaming\Microleaves O43 - CFD: 18/05/2019 - [] SD -- C:\Users\Anas\AppData\Roaming\Microsoft O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Roaming\Mozilla O43 - CFD: 07/06/2019 - [] D -- C:\Users\Anas\AppData\Roaming\NVIDIA O43 - CFD: 19/10/2018 - [] D -- C:\Users\Anas\AppData\Roaming\ONE.PIECE.BURNING.BLOOD.[Gold.Edition]-ALI213 O43 - CFD: 12/06/2019 - [] D -- C:\Users\Anas\AppData\Roaming\qBittorrent O43 - CFD: 08/12/2018 - [] D -- C:\Users\Anas\AppData\Roaming\RenPy O43 - CFD: 21/09/2018 - [] D -- C:\Users\Anas\AppData\Roaming\REVOLT O43 - CFD: 12/06/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Sekiro O43 - CFD: 02/11/2018 - [] D -- C:\Users\Anas\AppData\Roaming\Sleeping Dogs O43 - CFD: 20/05/2018 - [] D -- C:\Users\Anas\AppData\Roaming\Steam O43 - CFD: 29/05/2018 - [] D -- C:\Users\Anas\AppData\Roaming\stremio O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Roaming\Synaptics O43 - CFD: 14/05/2019 - [] D -- C:\Users\Anas\AppData\Roaming\vlc O43 - CFD: 09/09/2018 - [] D -- C:\Users\Anas\AppData\Roaming\Warner Bros. Interactive Entertainment O43 - CFD: 17/06/2019 - [] D -- C:\Users\Anas\AppData\Roaming\WhatsApp O43 - CFD: 04/05/2018 - [] D -- C:\Users\Anas\AppData\Roaming\WinRAR O43 - CFD: 18/06/2019 - [] D -- C:\Users\Anas\AppData\Roaming\ZHP O43 - CFD: 27/05/2018 - [] D -- C:\Users\Anas\AppData\Local\Activision O43 - CFD: 12/06/2019 - [] D -- C:\Users\Anas\AppData\Local\Adobe O43 - CFD: 20/06/2018 - [] D -- C:\Users\Anas\AppData\Local\AdvinstAnalytics O43 - CFD: 18/05/2019 - [0] SHD -- C:\Users\Anas\AppData\Local\Application Data O43 - CFD: 12/02/2019 - [] D -- C:\Users\Anas\AppData\Local\BANDAI NAMCO Entertainment O43 - CFD: 08/02/2019 - [] D -- C:\Users\Anas\AppData\Local\Bluestacks O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\CEF O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\Comms O43 - CFD: 18/05/2019 - [] D -- C:\Users\Anas\AppData\Local\ConnectedDevicesPlatform O43 - CFD: 16/05/2019 - [] D -- C:\Users\Anas\AppData\Local\CrashDumps O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\Crashpad O43 - CFD: 20/02/2019 - [] D -- C:\Users\Anas\AppData\Local\CrashReportClient =>.Superfluous.CrashReports O43 - CFD: 16/06/2019 - [] D -- C:\Users\Anas\AppData\Local\D3DSCache O43 - CFD: 28/06/2018 - [] D -- C:\Users\Anas\AppData\Local\Darksiders2 O43 - CFD: 19/09/2018 - [] D -- C:\Users\Anas\AppData\Local\DBFighterZ O43 - CFD: 01/05/2018 - [0] D -- C:\Users\Anas\AppData\Local\DBG O43 - CFD: 18/02/2019 - [0] D -- C:\Users\Anas\AppData\Local\Diagnostics O43 - CFD: 13/03/2019 - [] D -- C:\Users\Anas\AppData\Local\Discord O43 - CFD: 26/05/2018 - [] D -- C:\Users\Anas\AppData\Local\Disc_Soft_Ltd O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\DropboxOEM O43 - CFD: 09/12/2018 - [0] D -- C:\Users\Anas\AppData\Local\ElevatedDiagnostics O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\EpicGamesLauncher O43 - CFD: 01/05/2018 - [] D -- C:\Users\Anas\AppData\Local\FortniteGame O43 - CFD: 03/04/2019 - [] D -- C:\Users\Anas\AppData\Local\FXG O43 - CFD: 26/05/2018 - [] D -- C:\Users\Anas\AppData\Local\Gaijin O43 - CFD: 13/11/2018 - [] D -- C:\Users\Anas\AppData\Local\GeoGebra_6 O43 - CFD: 05/06/2019 - [] D -- C:\Users\Anas\AppData\Local\Google O43 - CFD: 08/05/2018 - [] D -- C:\Users\Anas\AppData\Local\Hewlett-Packard O43 - CFD: 18/05/2018 - [] D -- C:\Users\Anas\AppData\Local\HirezLauncherUI O43 - CFD: 18/05/2019 - [0] SHD -- C:\Users\Anas\AppData\Local\Historique O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\HP O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\HP JumpStart Apps O43 - CFD: 08/05/2018 - [] D -- C:\Users\Anas\AppData\Local\HP_Inc O43 - CFD: 20/02/2019 - [] D -- C:\Users\Anas\AppData\Local\JUMP_FORCE O43 - CFD: 03/04/2019 - [] D -- C:\Users\Anas\AppData\Local\Mega Limited O43 - CFD: 26/05/2019 - [] D -- C:\Users\Anas\AppData\Local\Microsoft O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\MicrosoftEdge O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\Mozilla O43 - CFD: 25/03/2019 - [] D -- C:\Users\Anas\AppData\Local\MSfree Inc O43 - CFD: 11/11/2018 - [] D -- C:\Users\Anas\AppData\Local\NVIDIA O43 - CFD: 11/11/2018 - [] D -- C:\Users\Anas\AppData\Local\NVIDIA Corporation O43 - CFD: 07/05/2018 - [] D -- C:\Users\Anas\AppData\Local\Package Cache O43 - CFD: 17/06/2019 - [] D -- C:\Users\Anas\AppData\Local\Packages O43 - CFD: 07/05/2018 - [] D -- C:\Users\Anas\AppData\Local\pip O43 - CFD: 26/05/2019 - [] D -- C:\Users\Anas\AppData\Local\PlaceholderTileLogoFolder O43 - CFD: 07/05/2018 - [] D -- C:\Users\Anas\AppData\Local\Programs O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\Publishers O43 - CFD: 01/05/2018 - [] D -- C:\Users\Anas\AppData\Local\qBittorrent O43 - CFD: 28/06/2018 - [] D -- C:\Users\Anas\AppData\Local\SKIDROW O43 - CFD: 07/05/2018 - [] D -- C:\Users\Anas\AppData\Local\Smart Code ltd O43 - CFD: 20/07/2018 - [] D -- C:\Users\Anas\AppData\Local\speech O43 - CFD: 03/06/2019 - [] D -- C:\Users\Anas\AppData\Local\SquirrelTemp O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\Steam O43 - CFD: 13/05/2018 - [] D -- C:\Users\Anas\AppData\Local\StreetFighterV O43 - CFD: 18/06/2019 - [] D -- C:\Users\Anas\AppData\Local\Temp O43 - CFD: 18/05/2019 - [0] SHD -- C:\Users\Anas\AppData\Local\Temporary Internet Files O43 - CFD: 20/02/2019 - [] D -- C:\Users\Anas\AppData\Local\UnrealEngine O43 - CFD: 30/04/2018 - [] D -- C:\Users\Anas\AppData\Local\UnrealEngineLauncher O43 - CFD: 04/06/2018 - [] D -- C:\Users\Anas\AppData\Local\VirtualStore O43 - CFD: 13/06/2019 - [] D -- C:\Users\Anas\AppData\Local\WhatsApp O43 - CFD: 13/05/2018 - [] D -- C:\Users\Anas\AppData\Local\Wondershare O43 - CFD: 20/06/2018 - [0] D -- C:\Users\Anas\AppData\Local\XService O43 - CFD: 15/09/2018 - [] RD -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility O43 - CFD: 18/05/2019 - [] RD -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories O43 - CFD: 12/06/2019 - [] RD -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools O43 - CFD: 18/05/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc O43 - CFD: 15/09/2018 - [] D -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance O43 - CFD: 18/05/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.6 O43 - CFD: 12/06/2019 - [] RD -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup O43 - CFD: 15/09/2018 - [] RD -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools O43 - CFD: 03/06/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp O43 - CFD: 15/09/2018 - [] RD -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell O43 - CFD: 18/05/2019 - [] D -- C:\Users\Anas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR ---\\ ShellIconOverlayIdentifiers (SIOI) (7) - 0s O106 - SIOI: ErrorOverlayHandler Class [ OneDrive1] - {BBACC218-34EA-4666-9D7A-C78F2274A524}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Anas\AppData\Local\Microsoft\OneDrive\19.103.0527.0002\FileSyncShell.dll {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation O106 - SIOI: SharedOverlayHandler Class [ OneDrive2] - {5AB7172C-9C11-405C-8DD5-AF20F3606282}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Anas\AppData\Local\Microsoft\OneDrive\19.103.0527.0002\FileSyncShell.dll {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation O106 - SIOI: UpToDateCloudOverlayHandler Class [ OneDrive3] - {A78ED123-AB77-406B-9962-2A5D9D2F7F30}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Anas\AppData\Local\Microsoft\OneDrive\19.103.0527.0002\FileSyncShell.dll {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation O106 - SIOI: UpToDatePinnedOverlayHandler Class [ OneDrive4] - {F241C880-6982-4CE5-8CF7-7085BA96DA5A}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Anas\AppData\Local\Microsoft\OneDrive\19.103.0527.0002\FileSyncShell.dll {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation O106 - SIOI: SyncingOverlayHandler Class [ OneDrive5] - {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Anas\AppData\Local\Microsoft\OneDrive\19.103.0527.0002\FileSyncShell.dll {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation O106 - SIOI: ReadOnlyOverlayHandler Class [ OneDrive6] - {9AA2F32D-362A-42D9-9328-24A483E2CCC3}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Anas\AppData\Local\Microsoft\OneDrive\19.103.0527.0002\FileSyncShell.dll {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation O106 - SIOI: UpToDateUnpinnedOverlayHandler Class [ OneDrive7] - {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C}. (.Microsoft Corporation - Microsoft OneDrive Shell Extension.) -- C:\Users\Anas\AppData\Local\Microsoft\OneDrive\19.103.0527.0002\FileSyncShell.dll {33000001B1DDEDBA54E965B85F0001000001B1} =>.Microsoft Corporation ---\\ Liste des pilotes du système (89) - 12s O58 - SDL:2018/09/15 09:28:17 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107520] {33000001C422B2F79B793DACB20000000001C4} =>.LSI O58 - SDL:2018/08/31 08:34:30 A . (.HP - HP Accelerometer.) -- C:\WINDOWS\System32\drivers\Accelerometer.sys [55696] {01738D40BC79777D20399E29BBC914E0} =>.HP O58 - SDL:2018/09/15 09:28:17 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135616] {33000001C422B2F79B793DACB20000000001C4} =>.PMC-Sierra O58 - SDL:2018/09/15 09:28:17 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83456] {33000001C422B2F79B793DACB20000000001C4} =>.Advanced Micro Devices O58 - SDL:2018/09/15 09:28:17 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] {33000001C422B2F79B793DACB20000000001C4} =>.AMD Technologies Inc. O58 - SDL:2018/09/15 09:28:17 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [27136] {33000001C422B2F79B793DACB20000000001C4} =>.Advanced Micro Devices O58 - SDL:2018/04/26 14:06:58 A . (.Apple Inc. - Apple Mobile Device USB Device.) -- C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560] {586949448B11998044814E89345A337F} =>.Apple Inc. O58 - SDL:2018/09/15 09:28:17 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] {33000001C422B2F79B793DACB20000000001C4} =>.PMC-Sierra, Inc. O58 - SDL:2018/09/15 09:28:17 A . (.Windows (R) Win 7 DDK provider - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] =>.Windows (R) Win 7 DDK provider O58 - SDL:2018/09/15 09:28:17 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] {33000001C422B2F79B793DACB20000000001C4} =>.QLogic Corporation O58 - SDL:2018/09/15 09:28:18 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [142864] {33000001C422B2F79B793DACB20000000001C4} O58 - SDL:2018/09/15 09:28:18 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319488] {33000001C422B2F79B793DACB20000000001C4} O58 - SDL:2018/09/15 09:28:18 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [29696] O58 - SDL:2018/09/15 09:28:18 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1866768] {33000001C422B2F79B793DACB20000000001C4} O58 - SDL:2018/09/15 09:28:15 A . (.Microsoft Corp. - KMDF driver for DC1 Controller.) -- C:\WINDOWS\System32\drivers\dc1-controller.sys [56320] =>.Microsoft Corp. O58 - SDL:2017/01/12 14:54:46 A . (.Intel Corporation - DPTF CPU Device (64-Bit).) -- C:\WINDOWS\System32\drivers\dptf_cpu.sys [67976] {00FC600AA86FC412F1DE1BE96321D0DE65} =>.Intel Corporation O58 - SDL:2018/05/26 06:08:41 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual SCSI Bus Driver.) -- C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264] =>.Disc Soft Ltd® O58 - SDL:2018/05/26 06:09:26 A . (.Disc Soft Ltd - DAEMON Tools Lite Virtual USB Bus Driver.) -- C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672] =>.Disc Soft Ltd® O58 - SDL:2017/01/12 14:54:48 A . (.Intel Corporation - DPTF Zone (64-Bit).) -- C:\WINDOWS\System32\drivers\esif_lf.sys [355208] {00FC600AA86FC412F1DE1BE96321D0DE65} =>.Intel Corporation O58 - SDL:2018/09/15 09:28:17 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3419152] {33000001C422B2F79B793DACB20000000001C4} =>.QLogic Corporation O58 - SDL:2016/10/14 00:57:26 A . (...) -- C:\WINDOWS\System32\drivers\FBIKB_NT.Sys [13376] {00997679F436BB669ECF7FDF00CDA69403} O58 - SDL:2018/08/31 08:34:32 A . (.HP - HP Disk Filter - SATA/RAID.) -- C:\WINDOWS\System32\drivers\hpdskflt.sys [42384] {01738D40BC79777D20399E29BBC914E0} =>.HP O58 - SDL:2018/09/15 09:28:17 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] {33000001C422B2F79B793DACB20000000001C4} =>.Hewlett-Packard Company O58 - SDL:2018/09/15 09:28:15 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] =>.Intel(R) Corporation O58 - SDL:2018/09/15 09:28:15 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] =>.Intel(R) Corporation O58 - SDL:2018/09/15 09:28:15 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] =>.Intel Corporation O58 - SDL:2018/09/15 09:28:15 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] =>.Intel Corporation O58 - SDL:2018/09/15 09:28:15 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] =>.Intel Corporation O58 - SDL:2018/09/15 09:28:15 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] =>.Intel Corporation O58 - SDL:2018/09/15 09:28:15 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] =>.Intel Corporation O58 - SDL:2018/09/15 09:28:15 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] =>.Intel Corporation O58 - SDL:2018/09/15 09:28:15 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [180736] =>.Intel Corporation O58 - SDL:2018/09/15 09:28:15 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] =>.Intel Corporation O58 - SDL:2018/09/15 09:28:17 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2018/09/15 09:28:15 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] =>.Intel Corporation O58 - SDL:2016/09/20 11:04:30 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [795640] {330000B97FAEF583F53CC47FCD00020000B97F} =>.Intel Corporation O58 - SDL:2018/09/15 09:28:18 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [885048] {33000001C422B2F79B793DACB20000000001C4} =>.Intel Corporation O58 - SDL:2018/09/15 09:28:18 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [411960] {33000001C422B2F79B793DACB20000000001C4} =>.Intel Corporation O58 - SDL:2018/09/15 09:28:18 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [566800] {33000001C422B2F79B793DACB20000000001C4} =>.Mellanox O58 - SDL:2017/05/11 17:27:52 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [825344] {56000001C94B6CFC278E455D830000000001C9} =>.Intel(R) Corporation O58 - SDL:2018/09/15 09:28:17 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [148480] {33000001C422B2F79B793DACB20000000001C4} =>.Avago Technologies O58 - SDL:2018/09/15 09:28:17 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109056] {33000001C422B2F79B793DACB20000000001C4} =>.LSI Corporation O58 - SDL:2018/09/15 09:28:17 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124416] {33000001C422B2F79B793DACB20000000001C4} =>.LSI Corporation O58 - SDL:2018/09/15 09:28:17 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [128512] {33000001C422B2F79B793DACB20000000001C4} =>.Avago Technologies O58 - SDL:2018/09/15 09:28:17 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82944] {33000001C422B2F79B793DACB20000000001C4} =>.LSI Corporation O58 - SDL:2018/09/15 09:28:17 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59904] {33000001C422B2F79B793DACB20000000001C4} =>.Avago Technologies O58 - SDL:2018/09/15 09:28:17 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [75264] {33000001C422B2F79B793DACB20000000001C4} =>.Avago Technologies O58 - SDL:2018/09/15 09:28:17 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [79872] {33000001C422B2F79B793DACB20000000001C4} =>.Avago Technologies O58 - SDL:2018/09/15 09:28:18 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] {33000001C422B2F79B793DACB20000000001C4} =>.LSI Corporation, Inc. O58 - SDL:2018/09/15 09:28:18 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1150496] {33000001C422B2F79B793DACB20000000001C4} =>.Mellanox O58 - SDL:2018/09/15 09:28:18 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] {33000001C422B2F79B793DACB20000000001C4} =>.Marvell Semiconductor, Inc. O58 - SDL:2018/09/15 09:28:18 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [153616] {33000001C422B2F79B793DACB20000000001C4} =>.Mellanox O58 - SDL:2018/07/04 03:39:46 A . (.NVIDIA Corporation - NVIDIA Windows Kernel Mode Driver, Version.) -- C:\WINDOWS\System32\drivers\nvlddmkm.sys [17200384] =>.NVIDIA Corporation® O58 - SDL:2018/09/15 09:28:18 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150528] {33000001C422B2F79B793DACB20000000001C4} =>.NVIDIA Corporation O58 - SDL:2018/09/15 09:28:18 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166400] {33000001C422B2F79B793DACB20000000001C4} =>.NVIDIA Corporation O58 - SDL:2018/06/08 03:59:46 A . (.NVIDIA Corporation - NVIDIA Virtual Audio Driver.) -- C:\WINDOWS\System32\drivers\nvvad64v.sys [69544] =>.NVIDIA Corporation® O58 - SDL:2018/04/24 19:29:24 A . (.NVIDIA Corporation - Virtual USB Host Controller driver.) -- C:\WINDOWS\System32\drivers\nvvhci.sys [65792] =>.NVIDIA Corporation® O58 - SDL:2018/09/15 09:28:18 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58880] {33000001C422B2F79B793DACB20000000001C4} =>.Avago Technologies O58 - SDL:2018/09/15 09:28:18 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68608] {33000001C422B2F79B793DACB20000000001C4} =>.Avago Technologies O58 - SDL:2018/09/15 09:28:18 A . (.Realtek - Realtek 8136/8168/8169 NDIS 6.40 64-bit Dri.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [605696] =>.Realtek O58 - SDL:2018/09/15 09:28:22 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [59392] =>.Realtek O58 - SDL:2017/04/17 16:16:16 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [5721088] {0320BE3EB866526927F999B97B04346E} =>.Realtek Semiconductor Corp. O58 - SDL:2016/08/22 11:52:03 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\WINDOWS\System32\drivers\RtsPer.sys [779232] {0320BE3EB866526927F999B97B04346E} =>.Realsil Semiconductor Corporation O58 - SDL:2018/09/15 09:28:17 A . (.Realtek Semiconductor Corporation - Realtek WLAN USB NDIS Driver 28199.) -- C:\WINDOWS\System32\drivers\rtwlanu.sys [8206848] =>.Realtek Semiconductor Corporation O58 - SDL:2018/09/15 09:28:18 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [45056] {33000001C422B2F79B793DACB20000000001C4} =>.Silicon Integrated Systems Corp. O58 - SDL:2018/09/15 09:28:18 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81920] {33000001C422B2F79B793DACB20000000001C4} =>.Silicon Integrated Systems O58 - SDL:2018/09/15 09:28:18 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [219960] {33000001C422B2F79B793DACB20000000001C4} O58 - SDL:2017/08/18 03:23:50 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [53848] =>.Synaptics Incorporated® O58 - SDL:2018/09/21 06:00:38 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [53864] {19FE2B7721886C7BCAC1364C90CD7FA9} =>.Synaptics Incorporated O58 - SDL:2018/09/21 06:00:38 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [55400] {19FE2B7721886C7BCAC1364C90CD7FA9} =>.Synaptics Incorporated O58 - SDL:2018/09/21 06:00:38 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [55400] {19FE2B7721886C7BCAC1364C90CD7FA9} =>.Synaptics Incorporated O58 - SDL:2014/01/22 09:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 09:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - USB CD Changer Driver (MSS Ver.3).) -- C:\WINDOWS\System32\drivers\ssudcdf.sys [36608] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 09:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile DevMgr Device Driver (MS.) -- C:\WINDOWS\System32\drivers\ssuddmgr.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 09:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 09:52:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile OBEX Device Driver (MSS.) -- C:\WINDOWS\System32\drivers\ssudobex.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 09:52:12 A . (.DEVGURU Co., LTD. - USB Rmnet Device Driver.) -- C:\WINDOWS\System32\drivers\ssudrmnet.sys [70400] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 09:52:12 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Mobile Logging Device Driver (M.) -- C:\WINDOWS\System32\drivers\ssudserd.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 09:52:12 A . (.DEVGURU Co., LTD. - MSS CS Connectivity USB driver.) -- C:\WINDOWS\System32\drivers\ss_conn_usb_driver.sys [26368] =>.DEVGURU CO LTD® O58 - SDL:2018/09/15 09:28:18 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] {33000001C422B2F79B793DACB20000000001C4} =>.Promise Technology, Inc. O58 - SDL:2018/09/21 06:00:42 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys [67176] {19FE2B7721886C7BCAC1364C90CD7FA9} =>.Synaptics Incorporated O58 - SDL:2018/09/21 06:00:44 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [765544] {19FE2B7721886C7BCAC1364C90CD7FA9} =>.Synaptics Incorporated O58 - SDL:2017/10/17 09:11:44 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [206496] {56000001757376CD78AD000C9A000000000175} =>.Intel Corporation O58 - SDL:2018/09/15 09:28:38 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [48640] O58 - SDL:2018/09/15 09:28:18 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] {33000001C422B2F79B793DACB20000000001C4} =>.VIA Technologies Inc.,Ltd O58 - SDL:2018/09/15 09:28:18 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] {33000001C422B2F79B793DACB20000000001C4} =>.VIA Corporation O58 - SDL:2018/09/15 09:28:18 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [37688] {33000001C422B2F79B793DACB20000000001C4} =>.Mellanox O58 - SDL:2018/09/15 09:28:18 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [77856] {33000001C422B2F79B793DACB20000000001C4} =>.Mellanox O58 - SDL:2019/05/16 11:32:18 A . (.HP - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392] {05FA56539456871559D29EE4082B71F8} =>.HP ---\\ Derniers fichiers modifiés ou crées (Utilisateur) (32) - 26s O61 - LFC: 2019/06/14 22:14:45 A . (..) -- C:\Users\Anas\Documents\CPY_SAVES\Player\208650\profile.bin [69] O61 - LFC: 2019/06/13 15:18:24 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\Update.exe [2206640] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:28 A . (.WhatsApp.) -- C:\Users\Anas\AppData\Local\WhatsApp\WhatsApp.exe [670128] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:21 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\ffmpeg.dll [2136496] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:22 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\natives_blob.bin [125011] O61 - LFC: 2019/06/13 15:18:22 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\osmesa.dll [2959280] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:24 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\snapshot_blob.bin [642692] O61 - LFC: 2019/06/13 15:18:24 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\squirrel.exe [2206640] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:24 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\v8_context_snapshot.bin [1041448] O61 - LFC: 2019/06/13 15:18:24 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\VkICD_mock_icd.dll [356784] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:24 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\VkLayer_core_validation.dll [3276208] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:25 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\VkLayer_object_tracker.dll [2240944] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:25 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\VkLayer_parameter_validation.dll [2866096] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:26 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\VkLayer_threading.dll [2136496] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:26 A . (..) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\VkLayer_unique_objects.dll [2155440] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/13 15:18:27 A . (.WhatsApp.) -- C:\Users\Anas\AppData\Local\WhatsApp\app-0.3.3328\WhatsApp.exe [94081456] {066AD7CFF000A2F865C84734F616DEF1} O61 - LFC: 2019/06/18 12:12:58 A . (..) -- C:\Users\Anas\AppData\Local\Packages\Microsoft.YourPhone_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\f45bb2b210c10f6b6dcf04d377bf79ae_fce8395c8fd8a998_377f220ab15a6e55_0_0.bin [16384] O61 - LFC: 2019/06/18 15:25:51 A . (..) -- C:\Users\Anas\AppData\Local\Packages\Microsoft.XboxGameOverlay_8wekyb3d8bbwe\AC\Temp\NVIDIA Corporation\NV_Cache\f45bb2b210c10f6b6dcf04d377bf79ae_fce8395c8fd8a998_26900be3db769af3_0_0.bin [16384] O61 - LFC: 2019/06/11 10:14:02 N . (..) -- C:\Users\Anas\AppData\Local\Packages\Microsoft.Windows.ShellExperienceHost_cw5n1h2txyewy\TempState\TileCache_100_0_Header.bin [14152] O61 - LFC: 2019/06/11 22:28:39 A . (..) -- C:\Users\Anas\AppData\Local\Packages\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\f45bb2b210c10f6b6dcf04d377bf79ae_fce8395c8fd8a998_1ceaf63c932c79cc_0_0.bin [16384] O61 - LFC: 2019/06/17 01:05:46 A . (..) -- C:\Users\Anas\AppData\Local\Packages\Microsoft.Windows.ContentDeliveryManager_cw5n1h2txyewy\LocalState\Features\du.bin [3574] O61 - LFC: 2019/06/11 22:24:29 A . (..) -- C:\Users\Anas\AppData\Local\Packages\Microsoft.Windows.Apprep.ChxApp_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\f45bb2b210c10f6b6dcf04d377bf79ae_fce8395c8fd8a998_cdfd07f37ead1173_0_0.bin [16384] O61 - LFC: 2019/06/11 22:24:30 A . (..) -- C:\Users\Anas\AppData\Local\Packages\Microsoft.Windows.Apprep.ChxApp_cw5n1h2txyewy\AC\Temp\NVIDIA Corporation\NV_Cache\f45bb2b210c10f6b6dcf04d377bf79ae_fce8395c8fd8a998_cdfd07f37ead1173_1_0.bin [16384] O61 - LFC: 2019/06/16 22:49:40 A . (..) -- C:\Users\Anas\AppData\Local\Packages\Microsoft.SkypeApp_kzf8qxf38zg5c\LocalState\ReactNativeBundle.bin [28346378] O61 - LFC: 2019/06/12 04:19:01 A . (..) -- C:\Users\Anas\AppData\Local\NVIDIA\GLCache\7032a8f5925351d1d31f4bee0945c1aa\f693954f0ba6789e\31b4fd150e3e1f88.bin [14175] O61 - LFC: 2019/06/12 04:19:01 A . (..) -- C:\Users\Anas\AppData\Local\NVIDIA\GLCache\7032a8f5925351d1d31f4bee0945c1aa\f693954f0ba6789e\31b4fd150e3e1f89.bin [12483] O61 - LFC: 2019/06/12 04:13:43 A . (..) -- C:\Users\Anas\AppData\Local\Mozilla\Firefox\Profiles\21w0yn1b.default\startupCache\urlCache-current.bin [2263] O61 - LFC: 2019/06/17 11:35:06 A . (..) -- C:\Users\Anas\AppData\Local\Mozilla\Firefox\Profiles\21w0yn1b.default\startupCache\urlCache.bin [2263] O61 - LFC: 2019/06/18 15:33:26 A . (..) -- C:\Users\Anas\AppData\Local\Microsoft\Windows\UPPS\UPPS.bin [16148] O61 - LFC: 2019/06/12 12:25:59 A . (..) -- C:\Users\Anas\AppData\Local\Microsoft\Windows\INetCache\Virtualized\C\ProgramData\NVIDIA Corporation\Drs\nvdrssel.bin [1] O61 - LFC: 2019/06/18 14:52:05 A . (..) -- C:\Users\Anas\AppData\Local\Microsoft\Internet Explorer\UrlBlock\urlblock_636964572421785866.bin [65673] O61 - LFC: 2019/06/13 12:52:33 A . (..) -- C:\Users\Anas\AppData\Local\Microsoft\GameDVR\KnownGameList.bin [541200] ---\\ Associations Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) -- C:\Windows\System32\wscript.exe =>.Microsoft Corporation O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S ---\\ Menu de démarrage Internet (12) - 0s O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe {0C5396DCB2949C70FAC48AB08A07338E} =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe {0C15BE4A15BB0903C901B1D6C265302F} O68 - StartMenuInternet: [HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe {33000001B24A37C6C97E0168860001000001B2} =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\Windows\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe O68 - StartMenuInternet: [HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\Windows\System32\ie4ushowIE.exe =>.Microsoft Corporation ---\\ Recherche d'infection sur les navigateurs (5) - 4s O69 - SBI: SearchScopes [HKCU] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (СDNSearch) - http://search-cdn.net/ O69 - SBI: SearchScopes [HKCU] {2C6A44CB-AD42-4731-A544-3FBD3D83AB5B} - (Bing) - http://www.bing.com/ O69 - SBI: SearchScopes [HKCU] {ielnksrch} - (Search the web) - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoHRATKMGbCC_C3bZjuAlgJ_LFaU_VyPMKSyfeo_TAtzQpCMcLUpKFKclUBmpiLeejvK70FjINn6H34Ft0YKWt_MyZCCo-DhUft1F6bJpzXPYrB5y0io2ROU21el-LFrA29HuXoQWPssIyNmnGgzefZFIF842Kw6mkvvH571snA,,&q={searchTerms} =>PUP.Optional.Linkury O69 - SBI: SearchScopes [HKLM] ielnksrch - (Search the web) - http://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoHRATKMGbCC_C3bZjuAlgJ_LFaU_VyPMKSyfeo_TAtzQpCMcLUpKFKclUBmpiLeejvK70FjINn6H34Ft0YKWt_MyZCCo-DhUft1F6bJpzXPYrB5y0io2ROU21el-LFrA29HuXoQWPssIyNmnGgzefZFIF842Kw6mkvvH571snA,,&q={searchTerms} =>PUP.Optional.Linkury O69 - SBI: SearchScopes [HKLM] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ ---\\ Enumère les services démarrés par Svchost (49) - 2s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [192512] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [192512] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\WINDOWS\system32\srvsvc.dll [279040] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\WINDOWS\System32\gpsvc.dll [1280000] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\WINDOWS\System32\ikeext.dll [1058304] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\WINDOWS\System32\iphlpsvc.dll [833024] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\WINDOWS\system32\seclogon.dll [31232] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\WINDOWS\system32\iscsiexe.dll [151552] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\WINDOWS\System32\eapsvc.dll [110080] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\WINDOWS\system32\schedsvc.dll [872448] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\WINDOWS\system32\wbem\WMIsvc.dll [228352] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\WINDOWS\system32\profsvc.dll [469504] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [478208] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\WINDOWS\System32\wercplsupport.dll [122368] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\WINDOWS\system32\PushToInstall.dll [270336] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [1671680] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\WINDOWS\System32\LanguageOverlayServer.dll [312320] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll [223744] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\WINDOWS\System32\XblGameSave.dll [1265152] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [949248] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\WINDOWS\system32\Windows.Management.Service.dll [370176] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1462272] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\WINDOWS\System32\lfsvc.dll [47104] =>.Microsoft Corporation O83 - Search Svchost Services: Irmon (Irmon) . (.Microsoft Corporation - Moniteur infrarouge.) -- C:\WINDOWS\System32\irmon.dll [24576] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\WINDOWS\System32\rasauto.dll [104448] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\WINDOWS\System32\rasmans.dll [927232] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [500736] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\WINDOWS\System32\sens.dll [73728] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\WINDOWS\System32\ipnathlp.dll [629760] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [310784] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\system32\wuaueng.dll [2999808] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\WINDOWS\System32\qmgr.dll [1388032] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [616448] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\WINDOWS\system32\dmwappushsvc.dll [58368] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [889344] =>.Microsoft Corporation O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\WINDOWS\system32\WpnService.dll [255488] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\WINDOWS\system32\wlidsvc.dll [2185728] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\WINDOWS\system32\XboxNetApiSvc.dll [1228800] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session Orchestrator Core.) -- C:\WINDOWS\system32\usocore.dll [887808] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\WINDOWS\System32\NetSetupSvc.dll [332800] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\WINDOWS\System32\NaturalAuth.dll [833024] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\WINDOWS\system32\themeservice.dll [67584] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\WINDOWS\System32\DeviceSetupManager.dll [240128] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\WINDOWS\System32\ncasvc.dll [169984] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\WINDOWS\System32\appinfo.dll [176640] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\WINDOWS\System32\XboxGipSvc.dll [72704] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\WINDOWS\System32\XblAuthManager.dll [1049600] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\WINDOWS\System32\usermgr.dll [1255936] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\WINDOWS\System32\bdesvc.dll [454144] =>.Microsoft Corporation ---\\ Liste des exceptions du parefeu Windows (17) - 5s O87 - FAEL: "UDP Query User{4782611D-4C45-4180-A476-86F56BC283CF}C:\program files (x86)\vision rc\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe" [In-None-P17-TRUE] .(.BANDAI NAMCO Entertainment Inc. - JUMP-FORCE.) -- C:\program files (x86)\vision rc\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe O87 - FAEL: "TCP Query User{E716DB66-DC00-4362-8CD6-CC1CD1E0AB44}C:\program files (x86)\vision rc\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe" [In-None-P6-TRUE] .(.BANDAI NAMCO Entertainment Inc. - JUMP-FORCE.) -- C:\program files (x86)\vision rc\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe O87 - FAEL: "UDP Query User{AAE95226-DB2A-4D57-8801-CBD5A85B0976}C:\program files (x86)\vision rc\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe" [In-None-P17-TRUE] .(.BANDAI NAMCO Entertainment Inc. - JUMP-FORCE.) -- C:\program files (x86)\vision rc\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe O87 - FAEL: "TCP Query User{91164331-4139-456F-823D-54DDCB7745E6}C:\program files (x86)\vision rc\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe" [In-None-P6-TRUE] .(.BANDAI NAMCO Entertainment Inc. - JUMP-FORCE.) -- C:\program files (x86)\vision rc\jump force\jump_force\binaries\win64\jump_force-win64-shipping.exe O87 - FAEL: "UDP Query User{89A2A95E-54D2-433C-AB77-D69E1C09793B}C:\program files (x86)\edupython\app\python.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\edupython\app\python.exe O87 - FAEL: "TCP Query User{3CF4ACA2-3C99-495F-A56B-87D7A7FBEAA1}C:\program files (x86)\edupython\app\python.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\edupython\app\python.exe O87 - FAEL: "UDP Query User{A5CC6314-073F-45AE-A8FB-987CA798FDB6}C:\program files (x86)\capcom\dmc - devil may cry\binaries\win32\dmc-devilmaycry.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\capcom\dmc - devil may cry\binaries\win32\dmc-devilmaycry.exe O87 - FAEL: "TCP Query User{14B6CC59-B7F0-4976-B0E0-64001102B80A}C:\program files (x86)\capcom\dmc - devil may cry\binaries\win32\dmc-devilmaycry.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\capcom\dmc - devil may cry\binaries\win32\dmc-devilmaycry.exe O87 - FAEL: "UDP Query User{CC9DC924-0305-458A-AA5D-A901011CEBEA}C:\program files (x86)\qbittorrent\qbittorrent.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\qbittorrent\qbittorrent.exe O87 - FAEL: "TCP Query User{C8E8BB39-9EB3-4017-A070-2744BEF061D1}C:\program files (x86)\qbittorrent\qbittorrent.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\qbittorrent\qbittorrent.exe O87 - FAEL: "UDP Query User{F9081936-1F00-42E5-A37D-676C3F7A3416}C:\program files (x86)\edupython\app\python.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\edupython\app\python.exe O87 - FAEL: "TCP Query User{2950C295-9E3B-4073-AE5A-C89DD5D223C1}C:\program files (x86)\edupython\app\python.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\edupython\app\python.exe O87 - FAEL: "{D4A35BBD-AC23-48DE-BAA4-779CE256B494}" [In-None-P17-TRUE] .(.Hello Games - No Man's Sky.) -- C:\Program Files (x86)\Steam\steamapps\common\No Man's Sky\Binaries\NMS.exe O87 - FAEL: "{E1D4EBAC-68CF-4808-9695-B7AFAF634AE9}" [In-None-P6-TRUE] .(.Hello Games - No Man's Sky.) -- C:\Program Files (x86)\Steam\steamapps\common\No Man's Sky\Binaries\NMS.exe O87 - FAEL: "{AC468334-506F-4A07-8ADB-57D1B4C01864}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe {054F466CECCBE9D6BEE81F5435E64D47} O87 - FAEL: "{DBBB54A5-DA97-4185-98E2-C7FC6F80C4C7}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe {054F466CECCBE9D6BEE81F5435E64D47} O87 - FAEL: "{3ECBAD44-D59F-44AC-B29F-5D563689099B}" [In-None-P17-TRUE] .(...) -- C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (.not file.) ---\\ Scan Additionnel (7) - 0s HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\1655C0CA-7AE7-4012-8502-970C8675E5F8 =>PUP.Optional.YouTubeAdBlock HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\1655C0CA-7AE7-4012-8502-970C8675E5F8 =>PUP.Optional.YouTubeAdBlock C:\ProgramData\{7054ABCE-2CD6-8D5D-A03F-07DED8592AAC} =>PUP.Optional.BundleInstaller C:\Users\Anas\AppData\Roaming\Easeware =>.Superfluous.Easeware C:\Users\Anas\AppData\Local\CrashReportClient =>.Superfluous.CrashReports HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{ielnksrch} =>PUP.Optional.Linkury HKLM\Software\Microsoft\Internet Explorer\SearchScopes\ielnksrch =>PUP.Optional.Linkury ---\\ Récapitulatif des éléments trouvés sur votre station (5) - 0s http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.Linkury http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.YouTubeAdBlock http://www.nicolascoolman.fr/?p=4664 =>PUP.Optional.BundleInstaller http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.Easeware http://www.nicolascoolman.fr/?p=5145 =>.Superfluous.CrashReports ~ End of the scan, 35450 items in 00h03mn00s (1221)(0)