~ ZHPDiag v2020.12.15.262 Par Nicolas Coolman (2020/12/15) ~ Démarré par Elève (Administrator) (2020/12/17 10:16:38) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Elève\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Elève\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Pro Education, 64-bit (Build 19042) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (2) - 0s ~ MSIE: Internet Explorer v11.630.19041.0 ~ OBIE: Microsoft Edge v87.0.664.60 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (3) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (1) - 6s Windows Defender W10 (Activate) (Protection) ---\\ SURVEILLANCE LOGICIEL (2) - 6s ~ Adobe Flash Player 32 NPAPI (Surveillance) ~ Adobe Acrobat Reader DC - Français (Surveillance) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: Intel64 Family 6 Model 122 Stepping 1, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3967.18 MB (19% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 55 GB (45%) free of 120 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: UTILISA-3V42GQQ ~ User Name: Elève ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (1) - 0s ~ Drive C: has 55 GB free of 120 GB (System) ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 4s [MD5.12321D7CB0BB6BB113297E915BC248C4] - 14/12/2020 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4710976] =>.Microsoft® [MD5.44B041922105E01BFD0D096123F7D312] - 07/12/2019 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation [MD5.9EF51C8AD595C5E2A123C06AD39FCCD7] - 14/12/2020 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [419432] [Unsigned] =>.Microsoft Corporation [MD5.02575AF42913ADC86345684381AAC23A] - 18/11/2020 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5057024] [Unsigned] =>.Microsoft Corporation [MD5.BF6EA00C7E364065320924D71D545113] - 14/12/2020 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [907776] [Unsigned] =>.Microsoft Corporation [MD5.3F910E7BB716BCD9B4C06EE6CF20304A] - 18/11/2020 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation [MD5.C1D0F62643FB7B87BB44B705754B8B86] - 18/11/2020 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [828432] =>.Microsoft® [MD5.35CC261A565BF54BA739024040559ED8] - 18/11/2020 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [586240] =>.Microsoft® [MD5.548E5FAA852134C7F380DC45C6A0A0B8] - 18/11/2020 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3388928] [Unsigned] =>.Microsoft Corporation [MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.6F082A5EB40F9BFD6873F3796F10F866] - 18/11/2020 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [647480] [Unsigned] =>.Microsoft Corporation [MD5.C394B2347795AB247F4F4FFAB46B8935] - 18/11/2020 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30024] [Unsigned] =>.Microsoft Corporation [MD5.764FE2149251A246F6B047A0F09F5F0B] - 07/12/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation [MD5.26255C953A69CCD32EF4491411737904] - 07/12/2019 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] [Unsigned] =>.Microsoft Corporation [MD5.E958B2741A04DD6442F8AD0FE543D473] - 07/12/2019 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation [MD5.4BFD517F80F247590AB6C03E3FF55E1A] - 07/12/2019 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [132608] [Unsigned] =>.Microsoft Corporation [MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.F63572DF4295C78B3F7036AEDA878176] - 07/12/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [225280] [Unsigned] =>.Microsoft Corporation [MD5.6EE28BABC5134E6FBEE8335496C55B39] - 18/11/2020 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [573752] [Unsigned] =>.Microsoft Corporation [MD5.49F7DE6F689C47B64A2C2D46CD98E327] - 18/11/2020 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation [MD5.5035E77C479AE7051C9B4F37B796037F] - 14/12/2020 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2850632] [Unsigned] =>.Microsoft Corporation [MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation [MD5.40CBDB4B80284451536C8CA49561E5CD] - 18/11/2020 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation [MD5.A04E986E4B4CBA8D0AA1D252632088B7] - 14/12/2020 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [174080] [Unsigned] =>.Microsoft Corporation [MD5.9C4C6E0C590F789CECB7A6D437E5A284] - 07/12/2019 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117560] [Unsigned] =>.Microsoft Corporation [MD5.988A7A685BB51BAC62F4E176BE5432AC] - 18/11/2020 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (79) - 5s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: CDPUserSvc_577f4 (CDPUserSvc_577f4) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: Service Microsoft Office « Démarrer en un clic » (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run (SxS).) - C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe =>.Microsoft® O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft® O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) - C:\Windows\System32\DriverStore\FileRepository\oem20.inf_amd64_b71caa8678a5098f\IntelCpHDCPSvc.exe =>.Intel(R) pGFX® O23 - Service: Service CryptoTab Update (cryptobrowser) (cryptobrowser) . (...) - C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe (.not file.) O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dmwappushsvc.dll (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) - C:\WINDOWS\System32\dmwappushsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Mise à jour de Microsoft Edge (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft® O23 - Service: Wondershare Driver Install Service help (ElevationService) . (...) - C:\Program Files (x86)\Wondershare\dr.fone\Addins\Recovery\ElevationService.exe (.not file.) O23 - Service: Intel(R) Dynamic Tuning service (esifsvc) . (.Intel Corporation - Intel(R) Dynamic Tuning Service.) - C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4a3ae74cfa6c37d6\esif_uf.exe =>.Intel Corporation® O23 - Service: ELAN Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\WINDOWS\System32\ETDService.exe [Unsigned] =>.ELAN Microelectronics Corp. O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: HP App Helper HSA Service (HPAppHelperCap) . (.HP Inc. - .) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\AppHelperCap.exe =>.HP Inc.® O23 - Service: HP Network HSA Service (HPNetworkCap) . (.HP Inc. - .) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\NetworkCap.exe =>.HP Inc.® O23 - Service: HP System Info HSA Service (HPSysInfoCap) . (.HP Inc. - .) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\SysInfoCap.exe =>.HP Inc.® O23 - Service: HP Analytics service (HpTouchpointAnalyticsService) . (.HP Inc. - HP Touchpoint Analytics Client Service.) - C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_3b1a7f8fd6029daa\x64\TouchpointAnalyticsClientService.exe =>.HP Inc.® O23 - Service: Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation - Intel(R) TPM Provisioning Service.) - C:\WINDOWS\System32\Intel\iCLS Client\lib\TPMProvisioningService.exe [Unsigned] =>.Intel(R) Corporation O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_7e88347fb931a239\jhi_service.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group® O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: OneSyncSvc_577f4 (OneSyncSvc_577f4) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) - C:\WINDOWS\System32\RtkAudUService64.exe [Unsigned] =>.Realtek Semiconductor O23 - Service: Realtek Bluetooth Device Manager Service (RtkBtManServ) . (.Realtek Semiconductor Corp. - Realtek Bluetooth BTDevManager Service Appl.) - C:\Windows\RtkBtManServ.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Sound Research SECOMN Service (SECOMNService) . (.Sound Research, Corp. - SECOMNService.exe.) - C:\WINDOWS\System32\SECOMN64.exe [Unsigned] =>.Sound Research, Corp. O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\WINDOWS\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Synaptics Audio APO Service (SynaAPOService) . (.Synaptics Incorporated. - Synaptics Audio Message Service.) - C:\WINDOWS\System32\SynAudSrv.exe [Unsigned] =>.Synaptics Incorporated. O23 - Service: Synaptics Audio Service (SynaAudioService) . (.Conexant Systems LLC. - CxAudioSvc.) - C:\WINDOWS\System32\CxAudioSvc.exe [Unsigned] =>.Conexant Systems LLC. O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\WINDOWS\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Wondershare Install Assist Service (Wondershare InstallAssist) . (.Wondershare - Wondershare InstallAssist.) - C:\ProgramData\Wondershare\Service\InstallAssistService.exe {0A9F96AABFB5DAC0F29F565D33FF1AF6}. =>.Wondershare O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: WpnUserService_577f4 (WpnUserService_577f4) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Wondershare Driver Install Service (WsDrvInst) . (...) - C:\Program Files (x86)\Wondershare\dr.fone\Addins\SocialApps\DriverInstall.exe (.not file.) =>.Wondershare O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (104) - 24s SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Auto [03/11/2020] [ 170056] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® SS - Demand [09/12/2020] [ 335416] Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) . (.Adobe.) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Inc.® SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Demand [10/05/2018] [ 35560] Apple Lower Filter Driver (AppleLowerFilter) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,131474841775766162® SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SS - Demand [06/12/2020] [ 8852752] BattlEye Service (BEService) . (.BattlEye Innovations e.K..) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K.® SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SS - Demand [26/11/2018] [ 509208] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\oem20.inf_amd64_b71caa8678a5098f\IntelCpHeciSvc.exe =>.Intel(R) pGFX® SR - Auto [26/11/2018] [ 505600] Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\oem20.inf_amd64_b71caa8678a5098f\IntelCpHDCPSvc.exe =>.Intel(R) pGFX® SR - Auto [00/00/0000] [ 0] Service CryptoTab Update (cryptobrowser) (cryptobrowser) . (...) - C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe (.not file.) [Unsigned] SS - Demand [00/00/0000] [ 0] Service CryptoTab Update (cryptobrowserm) (cryptobrowserm) . (...) - C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe (.not file.) [Unsigned] SR - Demand [19/06/2019] [ 77192] (dptf_acpi) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dptf_acpi.inf_amd64_5989fd2721678bab\dptf_acpi.sys =>.Intel Corporation® SR - Demand [19/06/2019] [ 74120] (dptf_cpu) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4a3ae74cfa6c37d6\dptf_cpu.sys =>.Intel Corporation® SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Auto [00/00/0000] [ 0] Wondershare Driver Install Service help (ElevationService) . (...) - C:\Program Files (x86)\Wondershare\dr.fone\Addins\Recovery\ElevationService.exe (.not file.) [Unsigned] SR - Auto [19/06/2019] [ 2141064] Intel(R) Dynamic Tuning ser (esifsvc) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4a3ae74cfa6c37d6\esif_uf.exe =>.Intel Corporation® SR - Demand [19/06/2019] [ 408456] (esif_lf) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4a3ae74cfa6c37d6\esif_lf.sys =>.Intel Corporation® SR - Demand [07/10/2019] [ 642584] ELAN Input Device (ETD) . (.ELAN Microelectronics Corp..) - C:\WINDOWS\System32\drivers\ETD.sys =>.ELAN Microelectronics Corporation® SR - Auto [07/10/2019] [ 221208] ELAN Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\WINDOWS\System32\ETDService.exe =>.ELAN Microelectronics Corporation® SR - Demand [07/10/2019] [ 40984] (ETDSMBus) . (.ELAN Microelectronic Corp..) - C:\WINDOWS\System32\drivers\ETDSMBus.sys =>.ELAN Microelectronics Corporation® SS - Demand [02/12/2020] [ 1426928] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\elevation_service.exe =>.Google LLC® SR - Auto [17/04/2019] [ 156968] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [17/04/2019] [ 156968] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Auto [18/10/2020] [ 601368] HP App Helper HSA Service (HPAppHelperCap) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\AppHelperCap.exe =>.HP Inc.® SR - Demand [19/12/2018] [ 33352] HP Application Driver (HPCustomCapDriver) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\oem37.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys =>.HP Inc.® SR - Auto [18/10/2020] [ 599832] HP Network HSA Service (HPNetworkCap) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\NetworkCap.exe =>.HP Inc.® SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Auto [18/10/2020] [ 600344] HP System Info HSA Service (HPSysInfoCap) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\SysInfoCap.exe =>.HP Inc.® SR - Auto [02/11/2020] [ 465168] HP Analytics service (HpTouchpointAnalyticsService) . (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_3b1a7f8fd6029daa\x64\TouchpointAnalyticsClientService.exe =>.HP Inc.® SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [14/07/2018] [ 1092112] Intel(R) Chipset SATA/PCIe RST Premium Controller (iaStorAC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAC.sys =>.Intel(R) Rapid Storage Technology® SR - Demand [14/07/2018] [ 73232] iaStorAfs (iaStorAfs) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAfs.sys =>.Intel(R) Rapid Storage Technology® SS - Demand [14/07/2018] [ 2788368] Intel(R) Optane(TM) Memory Service (iaStorAfsService) . (.Intel Corporation.) - C:\WINDOWS\System32\iaStorAfsService.exe =>.Intel(R) Rapid Storage Technology® SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [26/11/2018] [15739440] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\oem20.inf_amd64_b71caa8678a5098f\igdkmd64.sys =>.Intel(R) pGFX® SR - Demand [29/04/2020] [ 7337056] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.® SR - Demand [26/11/2018] [ 674560] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\oem21.inf_amd64_6aef99a0fd5f7d29\IntcDAud.sys =>.Intel(R) pGFX® SS - Demand [12/06/2018] [ 767184] Intel(R) Capability Lice (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\Intel\iCLS Client\lib\SocketHeciServer.exe =>.Intel(R) Trust Services® SR - Auto [12/06/2018] [ 727224] Intel(R) TPM Provis (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\Intel\iCLS Client\lib\TPMProvisioningService.exe =>.Intel(R) Trust Services® SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Auto [25/10/2018] [ 578704] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_7e88347fb931a239\jhi_service.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [19/06/2019] [ 263808] Intel(R) Trusted Execution Engine (MEIx64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Auto [01/03/2013] [ 36600] NetGroup Packet Filter Driver (NPF) . (.Riverbed Technology, Inc..) - C:\WINDOWS\System32\drivers\npf.sys =>.Riverbed Technology, Inc.® SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SS - Demand [01/03/2013] [ 118520] Remote Packet Capture Protocol v.0 (experimental) (rpcapd) . (.Riverbed Technology, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc.® SR - Demand [13/05/2020] [ 1167552] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.® SR - Auto [29/04/2020] [ 1082144] Realtek Audio Universal Service (RtkAudioUniversalService) . (.Realtek Semiconductor.) - C:\WINDOWS\System32\RtkAudUService64.exe =>.Realtek Semiconductor Corp.® SR - Demand [30/11/2019] [ 787232] Realtek Bluetooth Filter Driver (RtkBtFilter) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\RtkBtfilter.sys =>.WDKTestCert VSAuto,131800073559665678® SR - Auto [30/11/2019] [ 738712] Realtek Bluetooth Device M (RtkBtManServ) . (.Realtek Semiconductor Corp..) - C:\Windows\RtkBtManServ.exe =>.Microsoft® SR - Demand [24/07/2019] [ 460408] Realtek USB Card Reader - UER (RTSUER) . (.Realsil Semiconductor Corporation.) - C:\WINDOWS\System32\Drivers\RtsUer.sys =>.Realtek Semiconductor Corp.® SR - Demand [12/03/2020] [11748952] Realtek Wireless L (RTWlanE) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\rtwlane.sys =>.Realtek Semiconductor Corp.® SR - Auto [31/07/2019] [ 161296] Sound Research SECOMN Service (SECOMNService) . (.Sound Research, Corp..) - C:\WINDOWS\System32\SECOMN64.exe =>.Sound Research Corporation® SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SS - Demand [11/12/2020] [ 2075424] Steam Client Service (Steam Client Service) . (.Valve Corporation.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve® SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Auto [20/05/2019] [ 595176] Synaptics Audio APO Service (SynaAPOService) . (.Synaptics Incorporated..) - C:\WINDOWS\System32\SynAudSrv.exe =>.Conexant Systems LLC® SR - Auto [20/05/2019] [ 83464] Synaptics Audio Service (SynaAudioService) . (.Conexant Systems LLC..) - C:\WINDOWS\System32\CxAudioSvc.exe =>.Conexant Systems LLC® SR - Demand [31/07/2020] [ 38664] TI Educational Handheld Device (tiehdusb) . (.Texas Instruments Inc..) - C:\WINDOWS\System32\Drivers\tiehdusb.sys =>.Texas Instruments, Inc.® SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [15/07/2016] [ 151184] (wdm_usb) . (.MBB.) - C:\WINDOWS\System32\DRIVERS\usb2ser.sys =>.NGO® SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® SR - Demand [08/06/2020] [ 35392] HP Wireless Button Driver Service (WirelessButtonDriver64) . (.HP.) - C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys =>.HP Inc.® SR - Auto [05/03/2020] [ 230200] Wondershare Install Assist Service (Wondershare InstallAssist) . (.Wondershare.) - C:\ProgramData\Wondershare\Service\InstallAssistService.exe {0A9F96AABFB5DAC0F29F565D33FF1AF6}. =>.Wondershare SR - Auto [00/00/0000] [ 0] Wondershare Driver Install Service (WsDrvInst) . (...) - C:\Program Files (x86)\Wondershare\dr.fone\Addins\SocialApps\DriverInstall.exe (.not file.) [Unsigned] =>.Wondershare ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (10) - 28s O38 - TASK: {527E638A-C483-452B-A402-E048C983625A} [64Bits][\Adobe Flash Player Updater] - (.Adobe - Adobe® Flash® Player Update Service 32.0 r0.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416] =>.Adobe O38 - TASK: {73837C97-6019-43D7-BFD7-503A17CC9549} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1349200] =>.Adobe Inc. O38 - TASK: {B454581A-F3DA-4311-98AC-B00D4EE039D7} [64Bits][\Adobe Flash Player NPAPI Notifier] - (.Adobe - Adobe® Flash® Player Installer/Uninstaller.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312] =>.Adobe O38 - TASK: {BF50D949-0AC6-4387-8A09-D77CB0A37984} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968] =>.Google Inc. O38 - TASK: {F1B32453-B18F-4598-BA2D-ECD7ECB0BCAB} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968] =>.Google Inc. C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [] =>.Adobe C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc. C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [-check plugin.-check] =>.Adobe C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google Inc. C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google Inc..) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google Inc. ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (7) - 0s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [RtkAudUService] . (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\WINDOWS\System32\RtkAudUService64.exe [Unsigned] =>.Realtek Semiconductor O4 - HKCU\..\Run: [svdsyfkf] . (. - .) -- C:\Users\Elève\gbfxnyay.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKLM\..\Wow6432Node\Run: [SunJavaUpdateSched] . (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc.® O4 - HKUS\S-1-5-21-4109148330-3231227920-1475521471-1001\..\Run: [svdsyfkf] . (. - .) -- C:\Users\Elève\gbfxnyay.exe (.Not File.) =>.SUP.Orphan ---\\ PROCESSUS LANCÉS (51) - 34s [MD5.5414DC5A9C809817D167383AAFB56F81] - (.HP Inc. - .) -- C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\AppHelperCap.exe [601368] [PID.2532] =>.HP Inc.® [MD5.2F00C76D2E5B8EB9385DC939F26C8D3F] - (.HP Inc. - .) -- C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\NetworkCap.exe [599832] [PID.2540] =>.HP Inc.® [MD5.5156DCC4470BCFA06172FE63F21849B7] - (.HP Inc. - .) -- C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\SysInfoCap.exe [600344] [PID.2552] =>.HP Inc.® [MD5.1604D9B61B9190F90DEB7CED22DACCFA] - (.HP Inc. - HP Touchpoint Analytics Client Service.) -- C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_3b1a7f8fd6029daa\x64\TouchpointAnalyticsClientService.exe [465168] [PID.2584] =>.HP Inc.® [MD5.47D3906AC1AF35699E81AB71914AE12A] - (.Adobe Inc. - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [170056] [PID.4732] =>.Adobe Inc.® [MD5.5541462390A1AEE8924DEEA28B0414B4] - (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) -- C:\Windows\System32\DriverStore\FileRepository\oem20.inf_amd64_b71caa8678a5098f\IntelCpHDCPSvc.exe [505600] [PID.4740] =>.Intel(R) pGFX® [MD5.61990F2C98DABC6CA4FD9F76D79956C9] - (.ELAN Microelectronics Corp. - Elan Service.) -- C:\Windows\System32\ETDService.exe [221208] [PID.4888] [Unsigned] =>.ELAN Microelectronics Corp. [MD5.3EDB6BE675F6352104C1D7A53B267524] - (.Intel Corporation - Intel(R) Dynamic Tuning Service.) -- C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_4a3ae74cfa6c37d6\esif_uf.exe [2141064] [PID.4900] =>.Intel Corporation® [MD5.2A43C2E5E323CAF835EAB9041CCA1052] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_7e88347fb931a239\jhi_service.exe [578704] [PID.4992] =>.Intel(R) Embedded Subsystems and IP Blocks Group® [MD5.437D546D27FD55E887F49BF1F5C9C6F3] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\WINDOWS\System32\RtkAudUService64.exe [1082144] [PID.5100] [Unsigned] =>.Realtek Semiconductor [MD5.7B5EDAD629FC8BAB0D4D953AB0EAFE34] - (.Realtek Semiconductor Corp. - Realtek Bluetooth BTDevManager Service Appl.) -- C:\Windows\RtkBtManServ.exe [738712] [PID.3252] =>.Microsoft® [MD5.9ADAB56A2EFAFFA9D8A77237DDD72CEB] - (.Sound Research, Corp. - SECOMNService.exe.) -- C:\Windows\System32\SECOMN64.exe [161296] [PID.4536] [Unsigned] =>.Sound Research, Corp. [MD5.80C249A3CEC4D09881B534D0A08D9E70] - (.Conexant Systems LLC. - CxAudioSvc.) -- C:\WINDOWS\System32\CxAudioSvc.exe [83464] [PID.5084] [Unsigned] =>.Conexant Systems LLC. [MD5.E59196387216A8AADD786B6AB97D02C3] - (.Synaptics Incorporated. - Synaptics Audio Message Service.) -- C:\WINDOWS\System32\SynAudSrv.exe [595176] [PID.5128] [Unsigned] =>.Synaptics Incorporated. [MD5.B6B6DEC158139B4EEB000527929279A4] - (.Wondershare - Wondershare InstallAssist.) -- C:\ProgramData\Wondershare\Service\InstallAssistService.exe [230200] [PID.5192] {0A9F96AABFB5DAC0F29F565D33FF1AF6}. =>.Wondershare [MD5.3878853F724F2A3CBF06DEF5CA7FF421] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) -- C:\Windows\System32\ETDCtrlHelper.exe [407576] [PID.5396] [Unsigned] =>.ELAN Microelectronics Corp. [MD5.A858BF8CC3F8F9FE01B22B2D8F11A67C] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Windows\System32\ETDCtrl.exe [1223704] [PID.5444] [Unsigned] =>.ELAN Microelectronics Corp. [MD5.BB960F3E9FAC9F0ED92E3F59A5135EF5] - (.Intel Corporation - IntelCpHeciSvc Executable.) -- C:\Windows\System32\DriverStore\FileRepository\oem20.inf_amd64_b71caa8678a5098f\IntelCpHeciSvc.exe [509208] [PID.5960] =>.Intel(R) pGFX® [MD5.9D0F66404A4C4EF1E2184202AA7749E4] - (.ELAN Microelectronics Corp. - ETDTouch.) -- C:\Windows\System32\ETDTouch.exe [167456] [PID.5868] [Unsigned] =>.ELAN Microelectronics Corp. [MD5.6AECA53F405206CAD08032B2FE2423D7] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [793416] [PID.8012] =>.Microsoft® [MD5.E8EFFF9E03F5EB49C5205B739D4E5698] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe [293832] [PID.8752] =>.Google LLC® [MD5.CFBC1F97CC7E387223399A39C6425F91] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe [374728] [PID.8760] =>.Google LLC® [MD5.437D546D27FD55E887F49BF1F5C9C6F3] - (.Realtek Semiconductor - Realtek HD Audio Universal Service.) -- C:\Windows\System32\RtkAudUService64.exe [1082144] [PID.1900] [Unsigned] =>.Realtek Semiconductor [MD5.4E574FEBE7CD85BB0A086ABEF602F910] - (.Oracle Corporation - Java Update Scheduler.) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896] [PID.7712] =>.Oracle America, Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.10536] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.8328] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.392] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.7444] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.2660] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.11236] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.9344] =>.Discord Inc.® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.4348] =>.Google LLC® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.7280] =>.Google LLC® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.5048] =>.Google LLC® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.3092] =>.Google LLC® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.3524] =>.Google LLC® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.11600] =>.Google LLC® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.8660] =>.Google LLC® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.8568] =>.Google LLC® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.9724] =>.Google LLC® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.7940] =>.Google LLC® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.8392] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.996] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.11796] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.3200] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.10440] =>.Discord Inc.® [MD5.BECB4608B937EAFD391287848E4BE3B9] - (.Discord Inc. - Discord.) -- C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe [95702328] [PID.10572] =>.Discord Inc.® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.11200] =>.Google LLC® [MD5.D72978F6AC29CB5B47169BAEEADE7A6B] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\Elève\Downloads\ZHPSuite.exe [3478400] [PID.7276] [Unsigned] =>.Nicolas Coolman [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.12036] =>.Google LLC® [MD5.F019B260AC13D1951A9BE06AF6676397] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2238448] [PID.11272] =>.Google LLC® ---\\ CHROME, Démarrage, Recherche, Extensions (21) - 3s G2 - GCE: Preference [Elève][User Data\Default\Extensions] [cfhdojbkjhnklbpkdaibdccddilifddb] eyeo GmbH =>.Eyeo GmbH G2 - GCE: Preference [Elève][User Data\Default\Extensions] [coinddifimgamggcnlhgaaklcgflfkkj] G2 - GCE: Preference [Elève][User Data\Default\Extensions] [fbgcedjacmlbgleddnoacbnijgmiolem] G2 - GCE: Preference [Elève][User Data\Default\Extensions] [hojhhmecfdlobchoejlbonoabacfnaap] EAB Search Manager =>SUP.Optional.SearchManager G2 - GCE: Preference [Elève][User Data\Default\Extensions] [icdklkiphhmedelbmcgebinfgeiplgff] G2 - GCE: Preference [Elève][User Data\Default\Extensions] [jaoafpkngncfpfggjefnekilbkcpjdgp] G2 - GCE: Preference [Elève][User Data\Default\Extensions] [jlmilpphhoonfclkcaakafcmkgfalkhl] G2 - GCE: Preference [Elève][User Data\Default\Extensions] [kgenhbcaefgdnnkppjllhmfjgjnacnng] Tux Joker Dark Theme G2 - GCE: Preference [Elève][User Data\Default\Extensions] [kkbddiipigijaahocdhgjdnkcbmiapib] G2 - GCE: Preference [Elève][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [Elève][User Data\Default\Extensions] [oocalimimngaihdkbihfgmpkcpnmlaoa] =>.Legitimate G2 - GCE: Preference [Elève][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. G2 - GCE: Preference [Elève][User Data\Default\Extensions] [ppdnnklohjbcckglnajglboikpdlkidj] G2 - GCE: Preference [Elève][User Data\Default\Local Extension Settings] [cfhdojbkjhnklbpkdaibdccddilifddb] =>.eyeo GmbH {AdBlock Plus} G2 - GCE: Preference [Elève][User Data\Default\Local Extension Settings] [jaoafpkngncfpfggjefnekilbkcpjdgp] G2 - GCE: Preference [Elève][User Data\Default\Local Extension Settings] [jlmilpphhoonfclkcaakafcmkgfalkhl] G2 - GCE: Preference [Elève][User Data\Default\Local Extension Settings] [oocalimimngaihdkbihfgmpkcpnmlaoa] =>.Legitimate G2 - GCE: Preference [Elève][User Data\Default\Managed Extension Settings] [cfhdojbkjhnklbpkdaibdccddilifddb] =>.eyeo GmbH {AdBlock Plus} G2 - GCE: Preference [Elève][User Data\Default\Sync Extension Settings] [fcaacbfglejpnljiiokpcplbmmlbmnbk] G2 - GCE: Preference [Elève][User Data\Default\Sync Extension Settings] [jlmilpphhoonfclkcaakafcmkgfalkhl] G2 - GCE: Preference [Elève][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router} ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (22) - 7s P2 - EXT FILE: (.BTS.) -- C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\extensions\{2beae4e1-4da7-4901-a65d-68f312c0d6b9}.xpi [Unsigned] P2 - EXT FILE: (.Sexy girl 2.) -- C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\extensions\{52259726-0b34-4e9b-b008-7ecdb6cd6f30}.xpi [Unsigned] P2 - EXT FILE: (.Bing Search Engine - Bing. Search by Microsoft..) -- C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\searchplugins\bing-lavasoft-ff59.xml [Unsigned] =>PUP.Optional.LavasoftWebCompanion P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll =>.Adobe P2 - FPN: [HKLM] [@tools.CryptoTab.com/CryptoTab Update;version=3] - (.CRYPTOCOMPANY OU.) -- C:\Program Files (x86)\CryptoCompany\Update\1.3.99.31\npCryptoTabUpdate3.dll P2 - FPN: [HKLM] [@tools.CryptoTab.com/CryptoTab Update;version=9] - (.CRYPTOCOMPANY OU.) -- C:\Program Files (x86)\CryptoCompany\Update\1.3.99.31\npCryptoTabUpdate3.dll C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\bookmarkbackups =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\crashes =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\datareporting =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\extensions =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\features =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\gmp =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\gmp-widevinecdm =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\GroupPolicy C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\minidumps =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\saved-telemetry-pings =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\searchplugins =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\security_state =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\sessionstore-backups =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\storage =>Mozilla Corporation C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\weave =>Mozilla Corporation ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr =>.Google Inc. R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.qwant.com =>.Legitimate R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.561 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (4) - 0s ~ IE Restricted Site Good: localhost IE Restricted Site Good: webcompanion.com =>PUP.Optional.LavasoftWebCompanion ~ Microsoft Internet Explorer Restricted Site(s) Domains: 2(Good) / 0(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad) ---\\ INTERNET EXPLORER,Proxy Management (3) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (4) - 1s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.60\BHO\ie_to_edge_bho_64.dll =>.Microsoft® O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll =>.Microsoft® O2 - BHO: Java(tm) Plug-In SSV Helper [64Bits] - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll =>.Oracle America, Inc.® O2 - BHO: Java(tm) Plug-In 2 SSV Helper [64Bits] - {DBC80044-A445-435b-BC74-9C25C1C588A9} . (.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll =>.Oracle America, Inc.® ---\\ RACCOURCIS GLOBAL STARTUP (56) - 20s O4 - GS\Desktop [Elève]: 3DUCAD0C.lnk . (...) C:\Users\Elève\AppData\Local\Programs\Hachette\Educadhoc\educadhoc.exe {12F51E635E706372D839CC1B}. O4 - GS\Desktop [Elève]: AUDAC1T1.lnk . (.Audacity Team - Audacity® Cross-Platform Sound Editor.) C:\Program Files (x86)\Audacity\audacity.exe [Unsigned] =>.Audacity Team O4 - GS\Desktop [Elève]: P1TH0N.lnk . (.Python Software Foundation - Python.) C:\Users\Elève\AppData\Local\Programs\Python\Python37\python.exe =>.Python Software Foundation® O4 - GS\Desktop [Elève]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\Elève\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Elève]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\sendTo [Elève]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Elève]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Elève]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [Elève]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\WINDOWS\system32\cmd.exe =>.Microsoft Corporation O4 - GS\TaskBar [Elève]: Discord.lnk . (.GitHub - Update.) C:\Users\Elève\AppData\Local\Discord\Update.exe --processStart Discord.exe =>.Discord Inc.® O4 - GS\TaskBar [Elève]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft® O4 - GS\TaskBar [Elève]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --proxy-auto-detect =>.Google LLC® O4 - GS\TaskBar [Elève]: Microsoft Edge (2).lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\TaskBar [Elève]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft® O4 - GS\TaskBar [Elève]: PowerPoint.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft® O4 - GS\TaskBar [Elève]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\TaskBar [Elève]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft® O4 - GS\Programs [Elève]: Among Us.lnk . (...) C:\Users\Elève\Desktop\l'1N73RD15\among us\Among Us.exe [Unsigned] O4 - GS\Programs [Elève]: BitTorrent Web.lnk . (...) C:\Users\Elève\AppData\Roaming\BitTorrent Web\btweb.exe [Unsigned] O4 - GS\Programs [Elève]: Lelivrescolaire.fr.lnk . (.Lelivrescolaire.fr Éditions - Lelivrescolaire.fr.) C:\Users\Elève\AppData\Local\Programs\Lelivrescolaire.fr\Lelivrescolaire.fr.exe {2BA4B9932DC6A9E0E8B4379D23646814}. O4 - GS\Programs [Elève]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Elève\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\CommonDesktop [Public]: L1BMANU3L5.lnk . (.GitHub, Inc. - Libmanuels.) C:\Program Files\Libmanuels\Libmanuels.exe {11DCAA900661870D67BCEF0E4D4087AD}. =>.GitHub, Inc. O4 - GS\CommonDesktop [Public]: N0T3PAD++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) C:\Program Files (x86)\Notepad++\notepad++.exe =>.Notepad++® O4 - GS\Programs [Public]: Among Us.lnk . (...) C:\Users\Elève\Desktop\l'1N73RD15\among us\Among Us.exe [Unsigned] O4 - GS\Programs [Public]: BitTorrent Web.lnk . (...) C:\Users\Elève\AppData\Roaming\BitTorrent Web\btweb.exe [Unsigned] O4 - GS\Programs [Public]: Lelivrescolaire.fr.lnk . (.Lelivrescolaire.fr Éditions - Lelivrescolaire.fr.) C:\Users\Elève\AppData\Local\Programs\Lelivrescolaire.fr\Lelivrescolaire.fr.exe {2BA4B9932DC6A9E0E8B4379D23646814}. O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Elève\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.® O4 - GS\ProgramsCommon [Public]: Audacity.lnk . (.Audacity Team - Audacity® Cross-Platform Sound Editor.) C:\Program Files (x86)\Audacity\audacity.exe [Unsigned] =>.Audacity Team O4 - GS\ProgramsCommon [Public]: Epic Games Launcher.lnk . (.Epic Games, Inc. - UnrealEngineLauncherProxy.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe =>.Epic Games Inc.® O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: GeoGebra Classique.lnk . (.GitHub - Update.) C:\Users\Elève\AppData\Local\GeoGebra_6\Update.exe --processStart=GeoGebra.exe =>.GeoGebra GmbH® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --proxy-auto-detect =>.Google LLC® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Libmanuels.lnk . (.GitHub, Inc. - Libmanuels.) C:\Program Files\Libmanuels\Libmanuels.exe {11DCAA900661870D67BCEF0E4D4087AD}. =>.GitHub, Inc. O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GNU) source code editor.) C:\Program Files (x86)\Notepad++\notepad++.exe =>.Notepad++® O4 - GS\ProgramsCommon [Public]: OpenShot Video Editor.lnk . (...) C:\Program Files\OpenShot Video Editor\launch.exe [Unsigned] O4 - GS\ProgramsCommon [Public]: Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Skype for Business.lnk . (.Microsoft Corporation - Skype for Business.) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft® ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpDomain = numerique-educatif.fr O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.79.255.254 =>.Private IP O17 - HKLM\System\CCS\Services\Tcpip\..\{338f7bd5-446d-4348-b2c8-bcb478b03ec4}: DhcpNameServer = 10.79.255.254 =>.Private IP (10.0.0.0 - 10.255.255.255) =>.Private IP O17 - HKLM\System\CCS\Services\Tcpip\..\{338f7bd5-446d-4348-b2c8-bcb478b03ec4}: DhcpDomain = numerique-educatif.fr ---\\ PROTOCOLE ADDITIONNEL (23) - 3s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (2) - 0s [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:SunJavaUpdateSched =>.Oracle ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (8) - 4s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: CryptoTab Browser [64Bits] - {7D2B3E1D-D096-4594-9D8F-A6667F12E0AC} . (...) -- C:\Program Files (x86)\CryptoTab Browser\Application\80.0.3987.163\Installer\chrmstp.exe (.not file.) =>.SUP.Various O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe =>.Google LLC® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\87.0.664.60\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLÉS (61) - 46s O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} [Unsigned] =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Flash Player 32 NPAPI - (.Adobe.) [HKLM][64Bits] -- Adobe Flash Player NPAPI =>.Adobe Inc.® O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824406920} [Unsigned] =>.Adobe Systems Incorporated (Hidden) O42 - Logiciel: Audacity 2.3.1 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 [Unsigned] =>.Audacity Team O42 - Logiciel: Biblio Manuels version 3.4.1 - (.Sejer.) [HKLM][64Bits] -- 24E53B05-258A-419A-B2FE-F3F059C85B4C_is1 [Unsigned] =>.Sejer O42 - Logiciel: Creativerse - (.Playful Corp..) [HKLM][64Bits] -- Steam App 280790 =>.Valve® O42 - Logiciel: Discord - (.Discord Inc..) [HKCU][64Bits] -- Discord =>.Discord Inc.® O42 - Logiciel: DriversCloud.com (64 bits) - (.Cybelsoft.) [HKLM][64Bits] -- {BD4AC883-4AF5-40BB-91F0-31A061F9588E} [Unsigned] =>.CybelSoft O42 - Logiciel: educadhoc - (.Hachette-livre.) [HKCU][64Bits] -- educadhoc [Unsigned] O42 - Logiciel: Educadhoc - (.Hachette-Livre.) [HKLM][64Bits] -- {C6A6488C-5A44-434B-A60C-1CC464970097} [Unsigned] O42 - Logiciel: Epic Games Launcher - (.Epic Games, Inc..) [HKLM][64Bits] -- {C26AA108-615E-4186-A499-9F82FDC21F3A} [Unsigned] =>.Epic Games, Inc. O42 - Logiciel: Epic Games Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {F9C5C994-F6B9-4D75-B3E7-AD01B84073E9} [Unsigned] =>.Epic Games, Inc. (Hidden) O42 - Logiciel: Expert PDF Demo - (.Avanquest.) [HKLM][64Bits] -- {EF0B188B-6C1F-4573-8979-DAB1C66266CD} =>SUP.Optional.Avanquest O42 - Logiciel: GeoGebra Classic - (.International GeoGebra Institute.) [HKCU][64Bits] -- GeoGebra_6 [Unsigned] =>.International GeoGebra Institute O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- {7846BE0D-4594-30DC-9822-FE08C0042106} [Unsigned] =>.Google LLC O42 - Logiciel: Google Update Helper - (.CRYPTOCOMPANY.) [HKLM][64Bits] -- {A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} [Unsigned] =>Heuristic.Suspect (Hidden) O42 - Logiciel: Google Update Helper - (.Google LLC.) [HKLM][64Bits] -- {60EC980A-BDA2-4CB6-A427-B07A5498B4CA} [Unsigned] =>.Google LLC (Hidden) O42 - Logiciel: Java 8 Update 51 (64-bit) - (.Oracle Corporation.) [HKLM][64Bits] -- {26A24AE4-039D-4CA4-87B4-2F86418051F0} [Unsigned] =>.Oracle Corporation O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} [Unsigned] =>.Oracle Corporation (Hidden) O42 - Logiciel: LAME v3.99.3 (for Windows) - (.Audacity.) [HKLM][64Bits] -- LAME_is1 [Unsigned] =>.Audacity O42 - Logiciel: Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {43a03b9c-4770-409c-a999-587b60700b63} =>.Epic Games Inc.® (Hidden) O42 - Logiciel: Launcher Prerequisites (x64) - (.Epic Games, Inc..) [HKLM][64Bits] -- {c6c5a357-c7ca-4a5f-9789-3bb1af579253} =>.Epic Games Inc.® (Hidden) O42 - Logiciel: Lelivrescolaire.fr 1.0.9 - (.Lelivrescolaire.fr Éditions.) [HKCU][64Bits] -- {c67a9f72-d1bb-52d3-9c54-357bfe189dcd} {2BA4B9932DC6A9E0E8B4379D23646814}. O42 - Logiciel: Libmanuels 3.7.0 - (..) [HKLM][64Bits] -- 4e8d4f2c-769a-5800-924a-22a94ab38cbe {11DCAA900661870D67BCEF0E4D4087AD}. O42 - Logiciel: LibreOffice 6.1 Help Pack (French) - (.The Document Foundation.) [HKLM][64Bits] -- {B0D4FFB5-7AD1-4A27-86CF-DAB66807721D} [Unsigned] =>.The Document Foundation O42 - Logiciel: Microsoft 365 Apps for enterprise - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- O365ProPlusRetail - fr-fr =>.Microsoft® O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge =>.Microsoft® O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6913e92a-b64e-41c9-a5e6-cef39207fe89} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 - (.Microsoft Corporation.) [HKLM][64Bits] -- {e31cb1a4-76b5-46a5-a084-3fa419e82201} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2019 X64 Additional Runtime - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7D0B74C2-C3F8-4AF1-940F-CD79AB4B2DCE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.25.28508 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EEA66967-97E2-4561-A999-5C22E3CDE428} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X86 Additional Runtime - 14.24.28127 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EAC73207-74BD-4B13-AACF-8C0E751FA4E8} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.24.28127 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2E72FA1F-BADB-4337-B8AE-F7C17EC57D1D} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft XNA Framework Redistributable 4.0 - (.Microsoft Corporation.) [HKLM][64Bits] -- {2BFC7AA0-544C-4E3A-8796-67F3BE655BE9} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Notepad++ (32-bit x86) - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ [Unsigned] =>.Notepad++ Team O42 - Logiciel: Office 16 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Extensibility Component 64-bit Registration - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-00DD-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008F-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 16 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90160000-008C-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: OpenShot Video Editor version 2.4.4 - (.OpenShot Studios, LLC.) [HKLM][64Bits] -- {4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1 =>.OpenShot Studios, LLC® O42 - Logiciel: PhotoFiltre 7 - (.Antonio Da Cruz.) [HKCU][64Bits] -- PhotoFiltre 7 [Unsigned] =>.Antonio Da Cruz O42 - Logiciel: Python 3.7.4 (64-bit) - (.Python Software Foundation.) [HKCU][64Bits] -- {8ae589dd-de2e-42cd-af56-102374115fee} =>.Python Software Foundation® O42 - Logiciel: Python 3.7.4 Core Interpreter (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {92A73F83-DC16-4316-945A-B66BC12362A7} [Unsigned] =>.Python Software Foundation (Hidden) O42 - Logiciel: Python 3.7.4 Development Libraries (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {B86709C3-962E-4C62-BF25-CF8D06267D72} [Unsigned] =>.Python Software Foundation (Hidden) O42 - Logiciel: Python 3.7.4 Documentation (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {4BC82D3B-BBC7-4BAF-899D-10AF5745E4AB} [Unsigned] =>.Python Software Foundation (Hidden) O42 - Logiciel: Python 3.7.4 Executables (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {6DDB726E-09CE-44B4-A129-B62AD1604A95} [Unsigned] =>.Python Software Foundation (Hidden) O42 - Logiciel: Python 3.7.4 pip Bootstrap (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {F92D31AF-F447-4A85-B0FD-CE6378F7625A} [Unsigned] =>.Python Software Foundation (Hidden) O42 - Logiciel: Python 3.7.4 Standard Library (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {5BF79310-A787-430F-93DD-CC8A9787679D} [Unsigned] =>.Python Software Foundation (Hidden) O42 - Logiciel: Python 3.7.4 Tcl/Tk Support (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {E5B772D5-8CCD-461B-BC60-B10DFB5704AB} [Unsigned] =>.Python Software Foundation (Hidden) O42 - Logiciel: Python 3.7.4 Test Suite (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {794D5EC8-A92F-4969-A318-449C2E71D8C4} [Unsigned] =>.Python Software Foundation (Hidden) O42 - Logiciel: Python 3.7.4 Utility Scripts (64-bit) - (.Python Software Foundation.) [HKLM][64Bits] -- {16F74529-EDE0-4BBD-B2AF-89AF9C696EA8} [Unsigned] =>.Python Software Foundation (Hidden) O42 - Logiciel: Python Launcher - (.Python Software Foundation.) [HKLM][64Bits] -- {D722DA3A-92F5-454A-BD5D-A48C94D82300} [Unsigned] =>.Python Software Foundation O42 - Logiciel: Steam - (.Valve Corporation.) [HKLM][64Bits] -- Steam =>.Valve® O42 - Logiciel: Teams Machine-Wide Installer - (.Microsoft Corporation.) [HKLM][64Bits] -- {39AF0813-FA7B-4860-ADBE-93B9B214B914} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: TI Connect CE - (.Texas Instruments Inc..) [HKLM][64Bits] -- {CBCADF85-55EC-42CE-BF54-48C75026E178} [Unsigned] =>.Texas Instruments Inc. O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: WinPcap 4.1.3 - (.Riverbed Technology, Inc..) [HKLM][64Bits] -- WinPcapInst [Unsigned] =>.Riverbed Technology, Inc. O42 - Logiciel: WinRAR 5.80 beta 1 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: WinRAR 5.90 (32-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver [Unsigned] =>.win.rar GmbH ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (222) - 46s HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\csastats =>Adware.InstallCore HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com =>PUP.Optional.LavasoftWebCompanion HKCU\Software\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion HKCU\Software\csastats =>Adware.InstallCore HKCU\Software\undefined =>.SUP.Downloader HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com =>PUP.Optional.LavasoftWebCompanion HKLM\SOFTWARE\Wow6432Node\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion HKLM\SOFTWARE\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion HKLM\SOFTWARE\4e8d4f2c-769a-5800-924a-22a94ab38cbe =>Adware.CrossRider HKLM\SOFTWARE\BlueStacksInstaller HKLM\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\cybelsoft =>.CybelSoft HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\GtPlayer Software HKLM\SOFTWARE\Huawei =>.Huawei HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Oracle =>.Oracle HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\SoundResearch =>.Sound Research HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\7-Zip =>.Igor Pavlov HKLM\SOFTWARE\WOW6432Node\Activision =>.Activision HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\Avanquest =>.Avanquest HKLM\SOFTWARE\WOW6432Node\BF2Hub Systems HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon HKLM\SOFTWARE\WOW6432Node\CryptoCompany HKLM\SOFTWARE\WOW6432Node\CryptoTab Browser =>.CryptoTab Browser HKLM\SOFTWARE\WOW6432Node\Electronic Arts =>.Electronic Arts HKLM\SOFTWARE\WOW6432Node\Epic Games =>.Epic Games HKLM\SOFTWARE\WOW6432Node\EpicGames =>.Epic Games HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\WOW6432Node\HP =>.HP HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Lame For Audacity =>.Audacity HKLM\SOFTWARE\WOW6432Node\Lavasoft =>.Lavasoft HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Notepad++ =>.Don Ho HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\Python =>.Python HKLM\SOFTWARE\WOW6432Node\Texas Instruments =>.Texas Instruments HKLM\SOFTWARE\WOW6432Node\Ubisoft =>.Ubisoft HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve HKLM\SOFTWARE\WOW6432Node\WBGames HKLM\SOFTWARE\WOW6432Node\WinPcap =>.Riverbed Technology HKLM\SOFTWARE\WOW6432Node\WinRAR =>.WinRAR HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Apowersoft =>.Apowersoft HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Art in Heart HKCU\SOFTWARE\Atheros =>.Qualcomm Atheros HKCU\SOFTWARE\Avanquest =>.Avanquest HKCU\SOFTWARE\BF2Hub Systems HKCU\SOFTWARE\BitTorrentPersist HKCU\SOFTWARE\BlueStacksInstaller HKCU\SOFTWARE\c67a9f72-d1bb-52d3-9c54-357bfe189dcd =>Adware.CrossRider HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CryptoCompany HKCU\SOFTWARE\CryptoTab Browser =>.CryptoTab Browser HKCU\SOFTWARE\Cygwin =>.Cygwin HKCU\SOFTWARE\DigitalContinue HKCU\SOFTWARE\Discord =>.Discord HKCU\SOFTWARE\Dodge Roll =>.Dodge Roll HKCU\SOFTWARE\DreamTrips =>PUP.Optional.DreamTrips HKCU\SOFTWARE\educadhoc HKCU\SOFTWARE\Elantech =>.Elantech Inc. HKCU\SOFTWARE\Empyrean HKCU\SOFTWARE\Epic Games =>.Epic Games HKCU\SOFTWARE\EUROSMART =>.EUROSMART HKCU\SOFTWARE\FLT =>.FLT Software HKCU\SOFTWARE\GameHouse =>.GameHouse HKCU\SOFTWARE\Ghost Town Games HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\GtPlayer Software HKCU\SOFTWARE\Hachette =>.Hachette HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKCU\SOFTWARE\HP =>.HP HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Imagination Technologies =>.Imagination Technologies HKCU\SOFTWARE\Innersloth HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\Khronos =>.Khronos HKCU\SOFTWARE\kraken666 HKCU\SOFTWARE\Landfall Games =>.Landfall Games HKCU\SOFTWARE\Lavasoft =>.Lavasoft HKCU\SOFTWARE\Level 91 Entertainment HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\My Application HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\nwjs =>.NW.js HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\Opera Stable Offer =>.Opera Software HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz HKCU\SOFTWARE\PlayfulCorp =>.Playful Corp HKCU\SOFTWARE\Python =>.Python HKCU\SOFTWARE\QGIS =>.QGIS HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Smartly Dressed Games =>.Smartly Dressed Games HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\SYNCJM =>.SYNCJM HKCU\SOFTWARE\Team Alto HKCU\SOFTWARE\Team Colorblind HKCU\SOFTWARE\Terraria HKCU\SOFTWARE\Unity =>.Unity HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKCU\SOFTWARE\WBGames HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\YandereDev =>.Games Software HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow\Software\JavaSoft =>.JavaSoft HKU\.DEFAULT\SOFTWARE\CryptoTab Browser =>.CryptoTab Browser HKU\.DEFAULT\SOFTWARE\Epic Games =>.Epic Games HKU\.DEFAULT\SOFTWARE\Google =>.Google HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\7-Zip =>.Igor Pavlov HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Apowersoft =>.Apowersoft HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Art in Heart HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Atheros =>.Qualcomm Atheros HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Avanquest =>.Avanquest HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\BF2Hub Systems HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\BitTorrentPersist HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\BlueStacksInstaller HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\c67a9f72-d1bb-52d3-9c54-357bfe189dcd =>Adware.CrossRider HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\CryptoCompany HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\CryptoTab Browser =>.CryptoTab Browser HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Cygwin =>.Cygwin HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\DigitalContinue HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Discord =>.Discord HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Dodge Roll =>.Dodge Roll HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\DreamTrips =>PUP.Optional.DreamTrips HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\educadhoc HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Elantech =>.Elantech Inc. HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Empyrean HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Epic Games =>.Epic Games HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\EUROSMART =>.EUROSMART HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\FLT =>.FLT Software HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\GameHouse =>.GameHouse HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Ghost Town Games HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\GtPlayer Software HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Hachette =>.Hachette HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\HP =>.HP HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\IM Providers =>.IM Providers HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Imagination Technologies =>.Imagination Technologies HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Innersloth HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\JavaSoft =>.JavaSoft HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Khronos =>.Khronos HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\kraken666 HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Landfall Games =>.Landfall Games HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Lavasoft =>.Lavasoft HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Level 91 Entertainment HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Macromedia =>.Macromedia HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\My Application HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\nwjs =>.NW.js HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Opera Stable Offer =>.Opera Software HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\PlayfulCorp =>.Playful Corp HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Python =>.Python HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\QGIS =>.QGIS HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Smartly Dressed Games =>.Smartly Dressed Games HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\SYNCJM =>.SYNCJM HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Team Alto HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Team Colorblind HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Terraria HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\undefined =>.SUP.Downloader HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Unity =>.Unity HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Valve =>.Valve HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\WBGames HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Wondershare =>.Wondershare HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\YandereDev =>.Games Software HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (7) - 1s C:\Program Files (x86)\WindowsApps\AD2F1837.HPPrivacySettings_1.0.39.0_x64__v10z8vjag6ke6 - (.HP Inc..) [][HP Privacy Settings] =>HP Inc. C:\Program Files (x86)\WindowsApps\ELANMicroelectronicsCorpo.ELANTouchpadSetting_11.2.63.0_x64__stws0m115j6hg - (..) [][ELAN Touchpad Setting] C:\Program Files (x86)\WindowsApps\FACEBOOK.317180B0BB486_810.6.118.0_x64__8xx8rvfyw5nnt - (..) [][Messenger] C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.CBS_120.2212.551.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Feature Experience Pack] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.423_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.423.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft C:\Program Files (x86)\WindowsApps\RealtekSemiconductorCorp.HPAudioControl_1.11.218.0_x64__dt26b99r8h8gj - (.Realtek Semiconductor Corp.) [][HP Audio Control] =>Realtek Semiconductor Corp ---\\ CONTENU DES DOSSIERS PROGRAMMES (338) - 27s O43 - CFD: 03/11/2020 - [] D -- C:\Program Files\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 06/11/2020 - [] D -- C:\Program Files\DriversCloud.com =>.Cybelsoft O43 - CFD: 17/04/2019 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 27/09/2020 - [] D -- C:\Program Files\Java =>.Oracle O43 - CFD: 09/11/2020 - [] D -- C:\Program Files\Libmanuels {11DCAA900661870D67BCEF0E4D4087AD}. O43 - CFD: 21/11/2020 - [] D -- C:\Program Files\LibreOffice =>.LibreOffice O43 - CFD: 17/04/2019 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Program Files\OpenShot Video Editor [Unsigned] O43 - CFD: 23/08/2020 - [] D -- C:\Program Files\QGIS 3.6 =>.QGIS O43 - CFD: 18/11/2020 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 21/09/2020 - [] D -- C:\Program Files\TI Education {5FC81C36CBC87CA8D3CE46E5BC133745}. O43 - CFD: 17/04/2019 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 14/12/2020 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 14/12/2020 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 16/12/2020 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 14/09/2019 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 17/04/2019 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Inc.® O43 - CFD: 16/12/2020 - [] D -- C:\Program Files (x86)\Apowersoft =>.Apowersoft O43 - CFD: 17/04/2019 - [] D -- C:\Program Files (x86)\Audacity =>.Audacity O43 - CFD: 06/12/2020 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 06/12/2020 - [] D -- C:\Program Files (x86)\Epic Games =>.Epic Games O43 - CFD: 05/11/2019 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 25/04/2019 - [0] D -- C:\Program Files (x86)\Hachette =>.Hachette O43 - CFD: 01/08/2020 - [] D -- C:\Program Files (x86)\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 01/08/2020 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard O43 - CFD: 25/04/2019 - [0] D -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Program Files (x86)\Lame For Audacity =>.Audacity O43 - CFD: 18/11/2020 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation O43 - CFD: 04/12/2020 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 13/11/2020 - [] D -- C:\Program Files (x86)\Microsoft XNA =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 24/11/2019 - [] D -- C:\Program Files (x86)\Notepad++ =>.Don Ho O43 - CFD: 17/04/2019 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 08/01/2020 - [] D -- C:\Program Files (x86)\REALTEK =>.Realtek O43 - CFD: 18/11/2020 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 16/12/2020 - [] D -- C:\Program Files (x86)\Steam =>.Steam Games O43 - CFD: 26/09/2019 - [] D -- C:\Program Files (x86)\Teams Installer =>.Microsoft® O43 - CFD: 14/12/2020 - [0] D -- C:\Program Files (x86)\Ubisoft =>.Ubisoft O43 - CFD: 14/12/2020 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 17/06/2020 - [] D -- C:\Program Files (x86)\WinPcap =>.Riverbed Technology O43 - CFD: 16/12/2020 - [] D -- C:\Program Files (x86)\Wondershare =>.Wondershare O43 - CFD: 18/11/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 14/12/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Biblio Manuels =>.Sejer O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriversCloud.com =>.Cybelsoft O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EduPython =>.Python O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java =>.Oracle O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 04/12/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools =>.Microsoft Corporation O43 - CFD: 16/12/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 14/12/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TI Connect CE O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPcap =>.Riverbed Technology O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 16/12/2020 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare =>.Wondershare O43 - CFD: 16/12/2020 - [] D -- C:\ProgramData\5E3YC6B1V60W3U13M7PV7EEK0 O43 - CFD: 16/12/2020 - [] D -- C:\ProgramData\6H0SMO06HVOTPAXY00CA03Y4Y O43 - CFD: 17/04/2019 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 18/11/2020 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 16/12/2020 - [] D -- C:\ProgramData\Comms =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 06/11/2020 - [] D -- C:\ProgramData\DriversCloud.com =>.Cybelsoft O43 - CFD: 14/09/2019 - [] D -- C:\ProgramData\Epic =>.Epic O43 - CFD: 12/09/2019 - [] D -- C:\ProgramData\Hachette =>.Hachette O43 - CFD: 01/08/2020 - [] D -- C:\ProgramData\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 03/11/2020 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard O43 - CFD: 04/07/2019 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 17/04/2019 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 12/11/2019 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 17/04/2019 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 14/12/2020 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 04/07/2019 - [] D -- C:\ProgramData\Realtek =>.Realtek O43 - CFD: 17/12/2020 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 16/12/2020 - [0] D -- C:\ProgramData\Riate O43 - CFD: 16/12/2020 - [] D -- C:\ProgramData\s2x4w8y2s3x4w8y2s3 O43 - CFD: 07/12/2019 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation O43 - CFD: 27/09/2020 - [] D -- C:\ProgramData\Sun =>.Oracle O43 - CFD: 16/12/2020 - [] D -- C:\ProgramData\Thunder Network =>.Thunder Network O43 - CFD: 13/12/2019 - [] D -- C:\ProgramData\Ubisoft =>.Ubisoft O43 - CFD: 18/11/2020 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 16/12/2020 - [] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 17/03/2020 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 21/09/2020 - [] D -- C:\Program Files (x86)\Common Files\Avanquest Software =>.Avanquest Software O43 - CFD: 06/12/2020 - [] D -- C:\Program Files (x86)\Common Files\BattlEye =>.BattlEye O43 - CFD: 17/04/2019 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 27/09/2020 - [] D -- C:\Program Files (x86)\Common Files\Java =>.Oracle O43 - CFD: 14/12/2020 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 16/12/2020 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 18/11/2020 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 17/01/2020 - [] D -- C:\Users\Elève\AppData\Roaming\.mono =>.Legitimate O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 16/12/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Apowersoft =>.Apowersoft O43 - CFD: 09/09/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Aspyr Media O43 - CFD: 20/01/2020 - [] D -- C:\Users\Elève\AppData\Roaming\audacity =>.Audacity O43 - CFD: 05/10/2020 - [] D -- C:\Users\Elève\AppData\Roaming\BiblioManuels =>.Sejer O43 - CFD: 30/09/2020 - [] D -- C:\Users\Elève\AppData\Roaming\CreamAPI O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Roaming\crssync O43 - CFD: 17/12/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Discord =>.GitHub O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Roaming\GeoGebra =>.International GeoGebra Institute O43 - CFD: 10/09/2020 - [] D -- C:\Users\Elève\AppData\Roaming\GIMP =>.The GIMP Team O43 - CFD: 25/04/2019 - [] D -- C:\Users\Elève\AppData\Roaming\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 25/04/2019 - [] D -- C:\Users\Elève\AppData\Roaming\hpqLog =>.Hewlett-Packard O43 - CFD: 27/09/2020 - [] D -- C:\Users\Elève\AppData\Roaming\java =>.Oracle O43 - CFD: 12/01/2020 - [] D -- C:\Users\Elève\AppData\Roaming\kaiko O43 - CFD: 08/10/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Lelivrescolaire.fr O43 - CFD: 09/11/2020 - [] D -- C:\Users\Elève\AppData\Roaming\libmanuels O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Roaming\LibreOffice =>.LibreOffice O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 16/12/2020 - [] SD -- C:\Users\Elève\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 26/09/2019 - [] D -- C:\Users\Elève\AppData\Roaming\Microsoft Teams =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 28/11/2019 - [] D -- C:\Users\Elève\AppData\Roaming\Notepad++ =>.Don Ho O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Roaming\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 14/07/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Pr1 O43 - CFD: 17/09/2019 - [] D -- C:\Users\Elève\AppData\Roaming\RenPy =>.RenPy Games O43 - CFD: 16/12/2020 - [0] D -- C:\Users\Elève\AppData\Roaming\Seltyna O43 - CFD: 01/08/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Skype =>.Skype O43 - CFD: 16/12/2020 - [0] D -- C:\Users\Elève\AppData\Roaming\Smart Clock =>Trojan.MalPack O43 - CFD: 08/05/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Tencent =>.Tencent O43 - CFD: 21/09/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Texas Instruments =>.Texas Instruments O43 - CFD: 08/10/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Unreal Engine =>.Epic Games O43 - CFD: 04/12/2020 - [] D -- C:\Users\Elève\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 14/09/2019 - [] D -- C:\Users\Elève\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 16/12/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Wondershare =>.Wondershare O43 - CFD: 17/12/2020 - [] D -- C:\Users\Elève\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 06/11/2020 - [] D -- C:\Users\Elève\AppData\Local\2DBoy =>.2DBoy O43 - CFD: 17/10/2019 - [] D -- C:\Users\Elève\AppData\Local\Adobe =>.Adobe O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Local\AdvinstAnalytics =>.SUP.Various O43 - CFD: 18/11/2020 - [0] SHD -- C:\Users\Elève\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 26/11/2019 - [] D -- C:\Users\Elève\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 09/09/2020 - [] D -- C:\Users\Elève\AppData\Local\Aspyr Media O43 - CFD: 16/12/2020 - [] D -- C:\Users\Elève\AppData\Local\assembly =>.Assembly O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Local\Audacity =>.Audacity O43 - CFD: 16/12/2020 - [] D -- C:\Users\Elève\AppData\Local\b07aea7e-2eaa-4594-9431-f4c52904cf27 O43 - CFD: 10/09/2020 - [] D -- C:\Users\Elève\AppData\Local\babl-0.1 =>.The GIMP Team O43 - CFD: 06/12/2020 - [] D -- C:\Users\Elève\AppData\Local\BattlEye =>.BattlEye O43 - CFD: 16/12/2020 - [] D -- C:\Users\Elève\AppData\Local\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 09/09/2020 - [] D -- C:\Users\Elève\AppData\Local\cache =>.Legitimate O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Local\Caphyon =>.Caphyon O43 - CFD: 16/12/2020 - [0] D -- C:\Users\Elève\AppData\Local\cc17fc61-5127-43cf-b387-0024c156ef09 O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Local\CEF =>.CEF O43 - CFD: 19/03/2020 - [] D -- C:\Users\Elève\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 15/11/2020 - [] D -- C:\Users\Elève\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 26/09/2019 - [] D -- C:\Users\Elève\AppData\Local\CrashReportClient O43 - CFD: 07/01/2020 - [] D -- C:\Users\Elève\AppData\Local\CrashRpt O43 - CFD: 13/12/2020 - [] D -- C:\Users\Elève\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 14/12/2020 - [] D -- C:\Users\Elève\AppData\Local\Daybreak Game Company =>.Daybreak Game Company O43 - CFD: 17/04/2019 - [0] D -- C:\Users\Elève\AppData\Local\DBG =>.DBG O43 - CFD: 08/05/2020 - [] D -- C:\Users\Elève\AppData\Local\DeathBefall_Epic O43 - CFD: 16/12/2020 - [] D -- C:\Users\Elève\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 07/12/2020 - [] D -- C:\Users\Elève\AppData\Local\Discord =>.GitHub O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Local\Edulib O43 - CFD: 16/12/2020 - [] D -- C:\Users\Elève\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 14/09/2019 - [] D -- C:\Users\Elève\AppData\Local\EpicGamesLauncher =>.Epic Games O43 - CFD: 10/01/2020 - [] D -- C:\Users\Elève\AppData\Local\GameAnalytics O43 - CFD: 10/09/2020 - [] D -- C:\Users\Elève\AppData\Local\gegl-0.4 =>.Portable Apps O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Local\GeoGebra_6 =>.International GeoGebra Institute O43 - CFD: 10/09/2020 - [] D -- C:\Users\Elève\AppData\Local\GIMP =>.The GIMP Team O43 - CFD: 13/09/2019 - [] D -- C:\Users\Elève\AppData\Local\Google =>.Google O43 - CFD: 12/09/2019 - [] D -- C:\Users\Elève\AppData\Local\Hachette =>.Hachette O43 - CFD: 01/08/2020 - [] D -- C:\Users\Elève\AppData\Local\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 18/11/2020 - [0] SHD -- C:\Users\Elève\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 03/11/2020 - [] D -- C:\Users\Elève\AppData\Local\HP =>.Hewlett-Packard O43 - CFD: 10/10/2020 - [] D -- C:\Users\Elève\AppData\Local\HP_Inc =>.Hewlett-Packard O43 - CFD: 20/12/2019 - [] D -- C:\Users\Elève\AppData\Local\JxBrowser O43 - CFD: 20/12/2019 - [] D -- C:\Users\Elève\AppData\Local\lelivrescolaire.fr-updater O43 - CFD: 09/11/2020 - [] D -- C:\Users\Elève\AppData\Local\libmanuels-updater O43 - CFD: 15/10/2019 - [] D -- C:\Users\Elève\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 02/12/2020 - [] D -- C:\Users\Elève\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 15/11/2020 - [] D -- C:\Users\Elève\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 08/09/2020 - [] D -- C:\Users\Elève\AppData\Local\minitGMS2 O43 - CFD: 10/12/2020 - [] D -- C:\Users\Elève\AppData\Local\NVIDIA Corporation =>.nVidia Corporation O43 - CFD: 19/09/2019 - [] D -- C:\Users\Elève\AppData\Local\OneDrive =>.Microsoft Corporation O43 - CFD: 20/09/2019 - [] D -- C:\Users\Elève\AppData\Local\Package Cache =>.Microsoft Corporation O43 - CFD: 07/12/2020 - [] D -- C:\Users\Elève\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 01/08/2020 - [] D -- C:\Users\Elève\AppData\Local\PajdaPanel O43 - CFD: 17/04/2019 - [0] D -- C:\Users\Elève\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 08/11/2020 - [] D -- C:\Users\Elève\AppData\Local\PerfectVermin O43 - CFD: 16/12/2020 - [0] D -- C:\Users\Elève\AppData\Local\Pivers O43 - CFD: 15/10/2020 - [] D -- C:\Users\Elève\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 09/11/2020 - [] D -- C:\Users\Elève\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 25/09/2019 - [] D -- C:\Users\Elève\AppData\Local\SCE =>.SCE O43 - CFD: 12/12/2019 - [] D -- C:\Users\Elève\AppData\Local\speech =>.Microsoft Corporation O43 - CFD: 26/07/2020 - [] D -- C:\Users\Elève\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 14/09/2019 - [] D -- C:\Users\Elève\AppData\Local\Steam =>.Steam Games O43 - CFD: 17/12/2020 - [] D -- C:\Users\Elève\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [0] SHD -- C:\Users\Elève\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 08/12/2019 - [] D -- C:\Users\Elève\AppData\Local\TheChase O43 - CFD: 14/12/2020 - [0] D -- C:\Users\Elève\AppData\Local\Ubisoft Game Launcher =>.Ubisoft O43 - CFD: 15/11/2020 - [] D -- C:\Users\Elève\AppData\Local\UnrealEngine =>.Unreal Software O43 - CFD: 15/11/2020 - [] D -- C:\Users\Elève\AppData\Local\UnrealEngineLauncher =>.Unreal Software O43 - CFD: 12/09/2019 - [0] D -- C:\Users\Elève\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 15/10/2019 - [] D -- C:\Users\Elève\AppData\Local\Warner Bros. Interactive Entertainment =>.Warner Bros. Interactive Entertainment O43 - CFD: 16/12/2020 - [] D -- C:\Users\Elève\AppData\Local\WonderShare =>.Wondershare O43 - CFD: 08/05/2020 - [0] D -- C:\Users\Elève\AppData\Local\xDeath O43 - CFD: 17/12/2020 - [] D -- C:\Users\Elève\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 17/04/2019 - [0] D -- C:\Users\Elève\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 12/09/2019 - [] D -- C:\Users\Elève\AppData\Local\Programs\Hachette =>.Hachette O43 - CFD: 19/09/2019 - [] D -- C:\Users\Elève\AppData\Local\Programs\Lelivrescolaire.fr O43 - CFD: 20/09/2019 - [] D -- C:\Users\Elève\AppData\Local\Programs\Python =>.Python O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 10/03/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\Art in Heart O43 - CFD: 16/12/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\Daybreak Game Company =>.Daybreak Game Company O43 - CFD: 09/09/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\DigitalContinue O43 - CFD: 16/10/2019 - [] D -- C:\Users\Elève\AppData\LocalLow\Dodge Roll O43 - CFD: 01/08/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\Empyrean O43 - CFD: 06/11/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\Ghost Town Games O43 - CFD: 30/09/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\Innersloth O43 - CFD: 27/12/2019 - [] D -- C:\Users\Elève\AppData\LocalLow\Landfall Games O43 - CFD: 14/09/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\Level 91 Entertainment O43 - CFD: 15/10/2019 - [] SD -- C:\Users\Elève\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 09/11/2020 - [0] D -- C:\Users\Elève\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 04/11/2019 - [] D -- C:\Users\Elève\AppData\LocalLow\Oracle =>.Oracle O43 - CFD: 06/12/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\PlayfulCorp O43 - CFD: 06/12/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\Smartly Dressed Games O43 - CFD: 26/11/2020 - [0] D -- C:\Users\Elève\AppData\LocalLow\Sony Online Entertainment =>.Sony Online Entertainment O43 - CFD: 17/04/2019 - [] D -- C:\Users\Elève\AppData\LocalLow\Sun =>.Oracle O43 - CFD: 15/08/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\Team Alto O43 - CFD: 04/03/2020 - [] D -- C:\Users\Elève\AppData\LocalLow\Team Colorblind O43 - CFD: 27/12/2019 - [] D -- C:\Users\Elève\AppData\LocalLow\Unity =>.Unity O43 - CFD: 16/12/2020 - [] D -- C:\Users\Elève\Desktop\1NUT1L3 O43 - CFD: 16/12/2020 - [0] D -- C:\Users\Elève\Desktop\C0UR5 O43 - CFD: 17/12/2020 - [] D -- C:\Users\Elève\Desktop\l'1N73RD15 O43 - CFD: 09/11/2020 - [] D -- C:\Users\Elève\Desktop\L1VR3 O43 - CFD: 03/11/2020 - [] D -- C:\Users\Elève\Desktop\PARAM3TR3 O43 - CFD: 18/11/2020 - [] RD -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] RD -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] RD -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 18/11/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Avanquest =>.Avanquest O43 - CFD: 07/12/2020 - [0] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc =>.Discord Inc O43 - CFD: 18/11/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\educadhoc V8 O43 - CFD: 07/12/2019 - [] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 10/09/2020 - [0] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 18/11/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.7 =>.Python O43 - CFD: 16/12/2020 - [] RD -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 06/12/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 07/12/2019 - [] RD -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 23/08/2020 - [0] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WeMod =>.WeMod O43 - CFD: 18/11/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Users\Elève\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\Adobe =>.Adobe O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\AdvinstAnalytics O43 - CFD: 18/11/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\Audacity =>.Audacity O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\Caphyon =>.Caphyon O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\CEF =>.CEF O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [0] D -- C:\Users\Default\AppData\Local\DBG =>.DBG O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\Edulib O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\GeoGebra_6 =>.International GeoGebra Institute O43 - CFD: 25/04/2019 - [0] D -- C:\Users\Default\AppData\Local\Hachette =>.Hachette O43 - CFD: 01/08/2020 - [] D -- C:\Users\Default\AppData\Local\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 17/04/2019 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 03/11/2020 - [] D -- C:\Users\Default\AppData\Local\HP =>.Hewlett-Packard O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\Lib-Manuels O43 - CFD: 18/11/2020 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Users\Default\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [0] D -- C:\Users\Default\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\Adobe =>.Adobe O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\AdvinstAnalytics O43 - CFD: 18/11/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\Audacity =>.Audacity O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\Caphyon =>.Caphyon O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\CEF =>.CEF O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [0] D -- C:\Users\Default User\AppData\Local\DBG =>.DBG O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\Edulib O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\GeoGebra_6 =>.International GeoGebra Institute O43 - CFD: 25/04/2019 - [0] D -- C:\Users\Default User\AppData\Local\Hachette =>.Hachette O43 - CFD: 01/08/2020 - [] D -- C:\Users\Default User\AppData\Local\Hewlett-Packard =>.Hewlett-Packard O43 - CFD: 17/04/2019 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 03/11/2020 - [] D -- C:\Users\Default User\AppData\Local\HP =>.Hewlett-Packard O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\Lib-Manuels O43 - CFD: 18/11/2020 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 18/11/2020 - [] D -- C:\Users\Default User\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [0] D -- C:\Users\Default User\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 17/04/2019 - [] D -- C:\Users\Default User\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 18/11/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 25/11/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe O43 - CFD: 18/11/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 16/12/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 09/12/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 16/12/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Wondershare =>.Wondershare ---\\ ShellIconOverlayIdentifiers (SIOI) (2) - 0s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (30) - 2s O108 - CMH1: ANotepad++64 [64Bits] - {B298D29A-A6ED-11DE-BA8C-A68E55D89593} . (. - ShellHandler for Notepad++ (64 bit).) -- C:\Program Files (x86)\Notepad++\NppShell_06.dll =>.Notepad++® O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (...) -- D:\rarext64.dll (.not file.) O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (...) -- D:\rarext64.dll (.not file.) O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (...) -- D:\rarext64.dll (.not file.) O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (10) - 2s O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® ---\\ LISTE DES PILOTES DU SYSTÈME (437) - 36s O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [266240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [809280] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [139792] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [415232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft® O58 - SDL:2020/11/18 09:27:38 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [647480] =>.Microsoft® O58 - SDL:2020/11/18 09:27:45 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [41984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:46 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [292864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [207160] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [211256] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft® O58 - SDL:2020/11/18 09:27:32 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [208696] =>.Microsoft® O58 - SDL:2018/05/10 14:05:04 A . (.Apple Inc. - Apple Mobile Device USB Device.) -- C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560] =>.WDKTestCert build,131474841775766162® O58 - SDL:2020/11/18 09:27:32 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 15:53:38 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) -- C:\WINDOWS\System32\drivers\AppVStrm.sys [138272] =>.Microsoft® O58 - SDL:2019/12/07 15:53:38 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) -- C:\WINDOWS\System32\drivers\AppvVemgr.sys [174608] =>.Microsoft® O58 - SDL:2019/12/07 15:53:38 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) -- C:\WINDOWS\System32\drivers\AppvVfs.sys [154936] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft® O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30024] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [223040] =>.Microsoft® O58 - SDL:2019/12/07 10:08:41 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [78136] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [41272] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:26:52 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [149320] =>.Microsoft® O58 - SDL:2019/12/07 10:08:12 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [117760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:39 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [127488] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [36352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:46 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [279040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:26:36 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [113664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Bluetooth Hands-free Audio Device Driver.) -- C:\WINDOWS\System32\drivers\BthHfAud.sys [65536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [144896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:26:36 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\WINDOWS\System32\drivers\bthpan.sys [133632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:26:36 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1554944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:26:36 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [66576] =>.Microsoft® O58 - SDL:2019/12/07 10:09:37 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [174080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:33 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft® O58 - SDL:2019/12/07 10:08:34 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [91136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [52224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [417080] =>.Microsoft® O58 - SDL:2020/12/14 09:26:58 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [491520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:39 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [409408] =>.Microsoft® O58 - SDL:2020/12/14 09:26:45 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1089864] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [28984] =>.Microsoft® O58 - SDL:2020/12/14 09:27:03 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [733984] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [40968] =>.Microsoft® O58 - SDL:2019/12/07 10:08:34 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [58168] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [99368] =>.Microsoft® O58 - SDL:2020/11/18 09:28:31 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\WINDOWS\System32\drivers\csc.sys [580608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:41 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [97080] =>.Microsoft® O58 - SDL:2020/11/18 09:26:46 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:51 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [152064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [98856] =>.Microsoft® O58 - SDL:2019/12/07 10:08:52 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 10:08:52 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [59192] =>.Microsoft® O58 - SDL:2018/05/01 23:02:16 A . (.Intel Corporation - DPTF ACPI Device (64-Bit).) -- C:\WINDOWS\System32\drivers\dptf_acpi.sys [78680] =>.Intel Corporation® O58 - SDL:2018/05/01 23:02:16 A . (.Intel Corporation - DPTF CPU Device (64-Bit).) -- C:\WINDOWS\System32\drivers\dptf_cpu.sys [71000] =>.Intel Corporation® O58 - SDL:2020/11/18 09:26:46 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [97792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:46 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16136] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [37392] =>.Microsoft® O58 - SDL:2020/11/18 09:28:49 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [93112] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [195400] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:52 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [35128] =>.Microsoft® O58 - SDL:2020/12/14 09:26:46 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [3778888] =>.Microsoft® O58 - SDL:2020/12/14 09:26:48 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [454992] =>.Microsoft® O58 - SDL:2020/12/14 09:26:48 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [906576] =>.Microsoft® O58 - SDL:2019/12/07 10:09:37 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [95032] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [124728] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [15872] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/05/01 23:02:18 A . (.Intel Corporation - DPTF Zone (64-Bit).) -- C:\WINDOWS\System32\drivers\esif_lf.sys [402264] =>.Intel Corporation® O58 - SDL:2019/10/07 17:51:52 A . (.ELAN Microelectronics Corp. - ELAN KMDF Driver.) -- C:\WINDOWS\System32\drivers\ETD.sys [642584] =>.ELAN Microelectronics Corporation® O58 - SDL:2019/10/07 17:52:00 A . (.ELAN Microelectronic Corp. - ELAN SMBus Driver.) -- C:\WINDOWS\System32\drivers\ETDSMBus.sys [40984] =>.ELAN Microelectronics Corporation® O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft® O58 - SDL:2019/12/07 10:08:05 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [415032] =>.Microsoft® O58 - SDL:2020/11/18 09:26:55 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [425272] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [59392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [94736] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:37 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [430392] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [68408] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [33592] =>.Microsoft® O58 - SDL:2020/11/18 09:28:49 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [800072] =>.Microsoft® O58 - SDL:2020/12/14 09:27:07 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [502600] =>.Microsoft® O58 - SDL:2019/12/07 10:08:05 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [132608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:46 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [430080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [39440] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [120320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [225792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [55824] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1567032] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [35128] =>.Microsoft® O58 - SDL:2020/12/14 09:27:23 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [95048] =>.Microsoft® O58 - SDL:2020/12/14 09:27:33 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [148808] =>.Microsoft® O58 - SDL:2020/11/18 09:27:37 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [33096] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [27448] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [41784] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2018/07/14 17:03:42 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorAC.sys [1092112] =>.Intel(R) Rapid Storage Technology® O58 - SDL:2018/07/14 17:03:42 A . (.Intel Corporation - Intel(R) Optane(TM) Memory Minifilter Drive.) -- C:\WINDOWS\System32\drivers\iaStorAfs.sys [73232] =>.Intel(R) Rapid Storage Technology® O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft® O58 - SDL:2020/11/18 09:27:25 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19776] =>.Microsoft® O58 - SDL:2020/12/14 09:26:36 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [418800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [230728] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Intel Telemetry Driver.) -- C:\WINDOWS\System32\drivers\IntelTA.sys [26608] =>.Microsoft® O58 - SDL:2019/12/07 10:08:05 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [57360] =>.Microsoft® O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [117560] =>.Microsoft® O58 - SDL:2019/12/07 10:08:34 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [225280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22840] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [71480] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [33296] =>.Microsoft® O58 - SDL:2020/12/14 09:26:39 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:42 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [449024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:27:06 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [147272] =>.Microsoft® O58 - SDL:2020/11/18 09:27:36 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [180040] =>.Microsoft® O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:55 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [72704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft® O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [140288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [537608] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [64016] =>.Microsoft® O58 - SDL:2020/11/18 09:26:55 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [386048] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [65024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [106496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft® O58 - SDL:2020/11/18 09:26:57 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [67600] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [110392] =>.Microsoft® O58 - SDL:2019/12/07 10:08:33 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:54 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [157696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:39 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [573752] =>.Microsoft® O58 - SDL:2020/11/18 09:27:39 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [259888] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [44048] =>.Microsoft® O58 - SDL:2020/11/18 09:27:09 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [183112] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [56120] =>.Microsoft® O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:16 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [20280] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [298808] =>.Microsoft® O58 - SDL:2020/11/18 09:27:42 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:05 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:34 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\msquic.sys [322376] =>.Microsoft® O58 - SDL:2020/12/14 09:27:06 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [380744] =>.Microsoft® O58 - SDL:2020/11/18 09:26:55 A . (.Microsoft Corporation - Pilote du filtre de système de fichiers du.) -- C:\WINDOWS\System32\drivers\mssecflt.sys [293176] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [47928] =>.Microsoft® O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:51 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [133136] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft® O58 - SDL:2020/11/18 09:27:37 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1478464] =>.Microsoft® O58 - SDL:2019/12/07 10:09:48 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [54272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:45 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [135168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:46 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [70656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:05 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:46 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [206848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:48 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [72720] =>.Microsoft® O58 - SDL:2020/11/18 09:27:46 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [93696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [131584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:27:07 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [213504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:04 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [64312] =>.Microsoft® O58 - SDL:2020/11/18 09:27:45 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [341504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:27:06 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [603464] =>.Microsoft® O58 - SDL:2020/11/18 09:26:48 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [250176] =>.Microsoft® O58 - SDL:2013/03/01 02:49:12 A . (.Riverbed Technology, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [36600] =>.Riverbed Technology, Inc.® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [87568] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:38 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:27:04 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2850632] =>.Microsoft® O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [20792] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [168464] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft® O58 - SDL:2020/11/18 09:27:00 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [733696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:23 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [161608] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [109056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [182584] =>.Microsoft® O58 - SDL:2020/12/14 09:26:36 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [469320] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16704] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [56648] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [127800] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [57656] =>.Microsoft® O58 - SDL:2020/11/18 09:26:58 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [159048] =>.Microsoft® O58 - SDL:2020/11/18 09:26:59 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [822784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft® O58 - SDL:2020/11/18 09:28:19 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [104760] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [138040] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [27136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:46 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [388608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [216376] =>.Microsoft® O58 - SDL:2019/12/07 10:08:33 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [43448] =>.Microsoft® O58 - SDL:2019/12/07 10:09:05 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [42296] =>.Microsoft® O58 - SDL:2020/11/18 09:27:46 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [20480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:46 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [87552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:46 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [101888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:46 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:27:07 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [461128] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:27:33 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [174080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:27:32 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [31560] =>.Microsoft® O58 - SDL:2019/12/07 10:09:54 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [297784] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [1999160] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [990008] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [213504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Transport d’ordinateur virtuel Microsoft Re.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [41472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [115712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:41 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [158208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:55 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [89088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/05/13 18:15:42 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.40 64-bi.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [1167552] =>.Realtek Semiconductor Corp.® O58 - SDL:2019/12/07 10:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek O58 - SDL:2019/11/30 18:57:46 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Filter Driver.) -- C:\WINDOWS\System32\drivers\RtkBtfilter.sys [787232] =>.WDKTestCert VSAuto,131800073559665678® O58 - SDL:2020/04/29 01:33:00 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [7337056] =>.Realtek Semiconductor Corp.® O58 - SDL:2019/07/24 22:38:20 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\WINDOWS\System32\drivers\RtsUer.sys [460408] =>.Realtek Semiconductor Corp.® O58 - SDL:2020/03/12 03:31:30 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 87688 38658.) -- C:\WINDOWS\System32\drivers\rtwlane.sys [11748952] =>.Realtek Semiconductor Corp.® O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [116752] =>.Microsoft® O58 - SDL:2020/11/18 09:27:48 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [158736] =>.Microsoft® O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [187704] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [305472] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [35128] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [105488] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [103736] =>.Microsoft® O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [86328] =>.Microsoft® O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [173072] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [90624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [88080] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft® O58 - SDL:2019/12/07 15:53:43 A . (.Microsoft Corporation - Pilote réseau SMB Direct.) -- C:\WINDOWS\System32\drivers\smbdirect.sys [172544] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:09 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [215880] =>.Microsoft® O58 - SDL:2019/12/07 10:09:34 A . (.Microsoft Corporation - Storage Spaces Parser.) -- C:\WINDOWS\System32\drivers\spaceparser.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [678200] =>.Microsoft® O58 - SDL:2019/12/07 15:53:40 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [90936] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [87352] =>.Microsoft® O58 - SDL:2020/12/14 09:27:07 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [782848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:39 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [185672] =>.Microsoft® O58 - SDL:2020/12/14 09:26:36 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [155976] =>.Microsoft® O58 - SDL:2020/11/18 09:26:58 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [702776] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [92984] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [60744] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [44048] =>.Microsoft® O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [82432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - VSC vidéo Synth3D RemoteFX Microsoft.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [67072] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:00 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [31552] =>.Microsoft® O58 - SDL:2020/12/14 09:27:07 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2990408] =>.Microsoft® O58 - SDL:2019/12/07 10:09:04 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [54784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [39736] =>.Microsoft® O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117560] =>.Microsoft® O58 - SDL:2019/06/19 14:11:28 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [263808] =>.Intel(R) Embedded Subsystems and IP Blocks Group® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [41272] =>.Microsoft® O58 - SDL:2020/07/31 15:10:40 A . (.Texas Instruments Inc. - TI Educational Handheld Device.) -- C:\WINDOWS\System32\drivers\tiehdusb.sys [38664] =>.Texas Instruments, Inc.® O58 - SDL:2019/12/07 10:08:51 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [141328] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [255296] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [37888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:49 A . (.Microsoft Corporation - Concentrateur USB du Bureau à distance.) -- C:\WINDOWS\System32\drivers\tsusbhub.sys [134656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:04 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [129024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79376] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [160256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [188416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:25 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [259896] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [52736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [344064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 15:53:41 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) -- C:\WINDOWS\System32\drivers\UevAgentDriver.sys [41488] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [321040] =>.Microsoft® O58 - SDL:2020/12/14 09:26:36 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [168264] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [76304] =>.Microsoft® O58 - SDL:2016/07/15 20:10:44 A . (.MBB - USB Modem/Serial Device Driver.) -- C:\WINDOWS\System32\drivers\usb2ser.sys [151184] =>.NGO® O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:46 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [202752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [260608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:41 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [185664] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [33080] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [86544] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [528184] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [647992] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [473400] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [81408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [135480] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [39424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [314688] =>.Microsoft® O58 - SDL:2020/12/14 09:26:36 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [602440] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [67384] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [347448] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [820552] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [47616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:48 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [639288] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [114488] =>.Microsoft® O58 - SDL:2020/12/14 09:26:36 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [160072] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [36664] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [23864] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [19768] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [18960] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [54280] =>.Microsoft® O58 - SDL:2020/11/18 09:26:47 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [90432] =>.Microsoft® O58 - SDL:2019/12/07 10:09:37 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [389432] =>.Microsoft® O58 - SDL:2020/11/18 09:27:03 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16696] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [89400] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft® O58 - SDL:2019/12/07 10:08:13 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:13 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:13 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [50688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:27:46 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:24 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [74752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:34 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [202552] =>.Microsoft® O58 - SDL:2019/12/07 10:08:34 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:15 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46688] =>.Microsoft® O58 - SDL:2020/11/18 09:27:37 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [827704] =>.Microsoft® O58 - SDL:2019/12/07 10:08:15 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [350136] =>.Microsoft® O58 - SDL:2020/11/18 09:27:37 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [59192] =>.Microsoft® O58 - SDL:2020/12/14 09:26:43 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [951808] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:39 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [23560] =>.Microsoft® O58 - SDL:2019/12/07 10:08:16 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [54200] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [52024] =>.Microsoft® O58 - SDL:2020/11/18 09:27:23 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [180032] =>.Microsoft® O58 - SDL:2020/11/18 09:27:33 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [39736] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [76984] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18920] =>.Microsoft® O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [32784] =>.Microsoft® O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [96056] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft® O58 - SDL:2020/11/18 09:26:57 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [259584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [107008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft® O58 - SDL:2020/06/08 07:59:28 A . (.HP - HP Wireless Button Driver.) -- C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392] =>.HP Inc.® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [19472] =>.Microsoft® O58 - SDL:2020/12/14 09:26:58 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [233800] =>.Microsoft® O58 - SDL:2019/12/07 15:53:42 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [32568] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 10:08:41 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [136192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:46 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [324608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/18 09:26:46 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:26:52 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [596992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:26:49 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2939392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:26:52 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3815936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:34 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:27:18 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\SysWOW64\win32k.sys [329728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/12/14 09:27:18 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\SysWOW64\win32kfull.sys [2749952] [Unsigned] =>.Microsoft Corporation ---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (5) - 44s O61 - LFC: 2020/12/16 19:27:00 A . (..) -- C:\ProgramData\75DJIGQSEQ.exe [202] [Unsigned] O61 - LFC: 2020/12/16 19:27:31 A . (..) -- C:\ProgramData\M080D78J1K.exe [202] [Unsigned] O61 - LFC: 2020/12/16 18:52:40 A . (.The curl library, https://curl.haxx.se/.) -- C:\ProgramData\Wondershare\ModuleUpgrade\com.wondershare.drfonewin\Client\1.0.0.19\libcurl.dll [720384] [Unsigned] O61 - LFC: 2020/12/16 18:52:39 A . (.The libssh2 library, https://www.libssh2.org/.) -- C:\ProgramData\Wondershare\ModuleUpgrade\com.wondershare.drfonewin\Client\1.0.0.19\libssh2.dll [165376] [Unsigned] O61 - LFC: 2020/12/16 19:27:05 A . (..) -- C:\Users\Elève\AppData\Local\b07aea7e-2eaa-4594-9431-f4c52904cf27\5.exe [543744] [Unsigned] ---\\ ASSOCIATION Shell Spawning (10) - 2s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (16) - 3s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\CryptoTab Browser\Application\browser.exe [Unsigned] (.not file.) O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\CryptoTab Browser\Application\browser.exe (.not file.) O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\CryptoTab Browser\Application\browser.exe (.not file.) O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\CryptoTab Browser\Application\browser.exe (.not file.) O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (3) - 27s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] [64Bits]{6A3CD0D0-0DDB-4323-8C75-F8CC864330CE} [DefaultScope] - (Qwant) - http://www.qwant.com/ =>.Legitimate O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (50) - 5s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [301568] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1306624] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1051136] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836096] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [160256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [863744] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [487936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [515072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [127488] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2428416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [281088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [417792] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [302592] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [224768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1267712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1015808] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [941568] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1488896] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [309760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2242048] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1531904] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454144] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [971776] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [520192] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [617984] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3388928] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [259584] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [939448] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [244736] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [219648] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1293824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [567296] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1046528] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [296960] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [207360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [562688] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (63) - 9s O87 - FAEL: "UDP Query User{4DF50AAC-368B-4FB0-B5B1-D097E93E9EC3}C:\program files (x86)\steam\steamapps\common\perfect vermin\perfectvermin_v1_8_windows\perfectvermin\binaries\win64\perfectvermin-win64-shipping.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\perfect vermin\perfectvermin_v1_8_windows\perfectvermin\binaries\win64\perfectvermin-win64-shipping.exe [Unsigned] (.not file.) =>.Steam Games O87 - FAEL: "TCP Query User{4118F8F7-CBD5-47DE-815F-2CD99860DE29}C:\program files (x86)\steam\steamapps\common\perfect vermin\perfectvermin_v1_8_windows\perfectvermin\binaries\win64\perfectvermin-win64-shipping.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\perfect vermin\perfectvermin_v1_8_windows\perfectvermin\binaries\win64\perfectvermin-win64-shipping.exe [Unsigned] (.not file.) =>.Steam Games O87 - FAEL: "{BA804053-A27B-41F6-8D51-E3D576B10F61}" [In-None-P17-TRUE] .(.CybelSoft - DriversCloud.com start detection.) -- C:\Program Files\DriversCloud.com\DriversCloud.exe =>.CYBELSOFT® O87 - FAEL: "{941890AE-D070-4BAB-8945-8E7B4B57BF76}" [In-None-P6-TRUE] .(.CybelSoft - DriversCloud.com start detection.) -- C:\Program Files\DriversCloud.com\DriversCloud.exe =>.CYBELSOFT® O87 - FAEL: "{E6F69D08-C986-4504-AE1D-E169EB8F9D47}" [In-None-P6-TRUE] .(.Epic Games, Inc. - EpicGamesLauncher.) -- C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe =>.Epic Games Inc.® O87 - FAEL: "{AE96972C-A829-4F53-A58D-C83B6EB1C0B1}" [In-None-P17-TRUE] .(.Epic Games, Inc. - EpicGamesLauncher.) -- C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe =>.Epic Games Inc.® O87 - FAEL: "UDP Query User{CD795812-97E7-4009-A0D1-F9C700E6FC34}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" [In-None-P17-TRUE] .(.Epic Games, Inc. - EpicGamesLauncher.) -- C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe =>.Epic Games Inc.® O87 - FAEL: "TCP Query User{E09A90F4-C9A3-45B7-B8CB-F78E803AEB89}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe" [In-None-P6-TRUE] .(.Epic Games, Inc. - EpicGamesLauncher.) -- C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe =>.Epic Games Inc.® O87 - FAEL: "{9D1ED637-E8D8-43E6-A22D-0668E44E671F}" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\epic games\ue_4.25\engine\binaries\win64\ue4editor.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{1AFBB6A7-ACF2-4833-8B52-D24C66F0C713}" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\epic games\ue_4.25\engine\binaries\win64\ue4editor.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{66939F2E-FC3F-4668-95A9-C43E96773EB5}C:\program files (x86)\epic games\ue_4.25\engine\binaries\win64\ue4editor.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\epic games\ue_4.25\engine\binaries\win64\ue4editor.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{CD78BEA2-23F9-417A-BD69-1A54D64AAC7A}C:\program files (x86)\epic games\ue_4.25\engine\binaries\win64\ue4editor.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\epic games\ue_4.25\engine\binaries\win64\ue4editor.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{E516FCFC-CDC6-4959-BB13-40684599962B}C:\users\elève\desktop\l'1n73rd15\among us\among us.exe" [In-None-P17-TRUE] .(...) -- C:\users\elève\desktop\l'1n73rd15\among us\among us.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{1F367E87-E67F-4038-8D0F-77F8C7663BCF}C:\users\elève\desktop\l'1n73rd15\among us\among us.exe" [In-None-P6-TRUE] .(...) -- C:\users\elève\desktop\l'1n73rd15\among us\among us.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{871B1CF8-A585-458A-AB66-3BD6B8FF1BBB}C:\users\elève\desktop\l'1n73rd15\among us\among us.exe" [In-None-P17-TRUE] .(...) -- C:\users\elève\desktop\l'1n73rd15\among us\among us.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{594E32CD-4CA0-4FC0-A472-2E5A50CD2D91}C:\users\elève\desktop\l'1n73rd15\among us\among us.exe" [In-None-P6-TRUE] .(...) -- C:\users\elève\desktop\l'1n73rd15\among us\among us.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B61B2A9A-42D1-4F8F-86B2-05B1318FFF62}" [In-None-P6-TRUE] .(...) -- C:\Program Files\BlueStacks\HD-Player.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{08F35758-A38C-4CE2-9843-F13874D890B1}C:\program files\java\jre1.8.0_51\bin\javaw.exe" [In-None-P17-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre1.8.0_51\bin\javaw.exe =>.Oracle America, Inc.® O87 - FAEL: "TCP Query User{1D4BD780-3F1E-41E4-B7EB-7F24349AAD63}C:\program files\java\jre1.8.0_51\bin\javaw.exe" [In-None-P6-TRUE] .(.Oracle Corporation - Java(TM) Platform SE binary.) -- C:\program files\java\jre1.8.0_51\bin\javaw.exe =>.Oracle America, Inc.® O87 - FAEL: "UDP Query User{EB5A6C5E-9A5D-4F36-B375-D66678307D49}C:\program files\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe =>.VideoLAN® O87 - FAEL: "TCP Query User{AB48003D-A9A3-4881-B1C6-E36843198A73}C:\program files\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe =>.VideoLAN® O87 - FAEL: "UDP Query User{AB34A935-91FC-485A-B058-95E260F39297}C:\inertial drift\inertialdrift.exe" [In-None-P17-TRUE] .(...) -- C:\inertial drift\inertialdrift.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{E37BE6B6-1EA1-4D24-B87B-FCBB1F55DAFD}C:\inertial drift\inertialdrift.exe" [In-None-P6-TRUE] .(...) -- C:\inertial drift\inertialdrift.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{388C119E-C8B8-47A4-A078-53FCB3014752}C:\inertial drift\inertialdrift.exe" [In-None-P17-TRUE] .(...) -- C:\inertial drift\inertialdrift.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{3AC9AD8F-8513-41A4-A94E-96515E824E79}C:\inertial drift\inertialdrift.exe" [In-None-P6-TRUE] .(...) -- C:\inertial drift\inertialdrift.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{EDF62876-790F-4708-8443-F4EE240D6ADA}C:\program files (x86)\epic games\thealtocollection\the alto collection.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\epic games\thealtocollection\the alto collection.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{5ACE9EDC-87D7-4C85-9249-A2339A738015}C:\program files (x86)\epic games\thealtocollection\the alto collection.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\epic games\thealtocollection\the alto collection.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{6BE6530A-237E-4836-A5BD-D257054DC894}C:\program files (x86)\epic games\thealtocollection\the alto collection.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\epic games\thealtocollection\the alto collection.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{6145031F-0508-4C7D-A5A9-C39323CCAEE5}C:\program files (x86)\epic games\thealtocollection\the alto collection.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\epic games\thealtocollection\the alto collection.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{4A15F75F-FCB6-412E-B72D-65DA0B589F5D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\CryptoTab Browser\Application\browser.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{E88757B5-05F9-4CF3-8965-0D9E6D711896}" [In-None-P6-TRUE] .(...) -- C:\users\elève\appdata\local\temp\rar$exa13928.40547\aircrack-ng-1.6-win\bin\buddy-ng.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{2CEF129C-FFA5-48F0-82D8-114935660490}" [In-None-P17-TRUE] .(...) -- C:\users\elève\appdata\local\temp\rar$exa13928.40547\aircrack-ng-1.6-win\bin\buddy-ng.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{B461E624-2C06-4241-ACD5-684EA415A2BF}C:\users\elève\appdata\local\temp\rar$exa13928.40547\aircrack-ng-1.6-win\bin\buddy-ng.exe" [In-None-P17-TRUE] .(...) -- C:\users\elève\appdata\local\temp\rar$exa13928.40547\aircrack-ng-1.6-win\bin\buddy-ng.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{19ECC14D-D0E3-4C7C-81FD-48C4EFA53FA2}C:\users\elève\appdata\local\temp\rar$exa13928.40547\aircrack-ng-1.6-win\bin\buddy-ng.exe" [In-None-P6-TRUE] .(...) -- C:\users\elève\appdata\local\temp\rar$exa13928.40547\aircrack-ng-1.6-win\bin\buddy-ng.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{38A064D6-B6E5-4D87-A29D-C21C34B55320}C:\program files (x86)\prototype 2\prototype2.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\prototype 2\prototype2.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{687727CA-23C6-4636-AAD6-28FFB4512D5F}C:\program files (x86)\prototype 2\prototype2.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\prototype 2\prototype2.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{FE04B66A-67D6-476B-829E-A47518B4C5DD}C:\edupython\edupython\app\python.exe" [In-None-P17-TRUE] .(...) -- C:\edupython\edupython\app\python.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{F8A3FBEA-6432-498A-AEDD-825546F0E4FB}C:\edupython\edupython\app\python.exe" [In-None-P6-TRUE] .(...) -- C:\edupython\edupython\app\python.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{FEE0F81B-440F-4966-9188-D73B87FBC2B9}C:\program files (x86)\google\chrome\application\chrome.exe" [In-None-P6-TRUE] .(.Google LLC - Google Chrome.) -- C:\program files (x86)\google\chrome\application\chrome.exe =>.Google LLC® O87 - FAEL: "UDP Query User{A87C87A1-8CC2-4961-B484-9A4CA34D0CA0}C:\program files (x86)\google\chrome\application\chrome.exe" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\program files (x86)\google\chrome\application\chrome.exe =>.Google LLC® O87 - FAEL: "TCP Query User{AD8915AA-5D3E-4C39-8CB4-FC4D01A7CB5C}C:\program files (x86)\google\chrome\application\chrome.exe" [In-None-P6-TRUE] .(.Google LLC - Google Chrome.) -- C:\program files (x86)\google\chrome\application\chrome.exe =>.Google LLC® O87 - FAEL: "UDP Query User{E02F0BC0-E1C2-4F02-B1B0-C81637A07D1A}C:\program files (x86)\google\chrome\application\chrome.exe" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\program files (x86)\google\chrome\application\chrome.exe =>.Google LLC® O87 - FAEL: "{9DE8A7F8-260A-4766-9A97-B395E12F95BC}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O87 - FAEL: "{497E24C2-A6F4-4017-8E04-5FE34BFC77E6}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client Bootstrapper.) -- C:\Program Files (x86)\Steam\Steam.exe =>.Valve® O87 - FAEL: "{C616F9BC-B4EA-49DA-B67B-F16D13DF786A}" [In-None-P6-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve® O87 - FAEL: "{AAF2DE3A-6F8D-4513-A98E-EA569681DFD4}" [In-None-P17-TRUE] .(.Valve Corporation - Steam Client WebHelper.) -- C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve® O87 - FAEL: "{16937EFF-188E-46E8-B8E7-1A87B7581832}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{C4EDAEB9-2000-4DCE-935B-9CA02E2DB95F}" [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{D72E6A99-2F12-4954-A2B6-E9FF722DF480}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{BEFAA5FC-DF7C-4C9A-A861-2AF1E49E60E7}" [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{334F1839-E4E6-445A-8E41-ECFC6085F485}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Gotham City Impostors F2P\Engine.exe [Unsigned] (.not file.) =>.Steam Games O87 - FAEL: "{46B86858-C14A-4FED-8B12-1ED5E859688D}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Gotham City Impostors F2P\Engine.exe [Unsigned] (.not file.) =>.Steam Games O87 - FAEL: "TCP Query User{FB5150A7-7B34-4133-9113-A582D720BCC7}C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe" [In-None-P6-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe [Unsigned] (.not file.) =>.Steam Games O87 - FAEL: "UDP Query User{6DE6BE1A-4760-4411-84CC-4E327AA42BD9}C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe" [In-None-P17-TRUE] .(...) -- C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe [Unsigned] (.not file.) =>.Steam Games O87 - FAEL: "{04C263A0-A1D6-4F87-9DF5-A49008816A0F}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Creativerse\Creativerse.exe [Unsigned] =>.Steam Games O87 - FAEL: "{C43AF25E-2E86-45F1-B9E2-0B9422A026D5}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Steam\steamapps\common\Creativerse\Creativerse.exe [Unsigned] =>.Steam Games O87 - FAEL: "{7C975AFB-F574-4207-87B3-2A5C8CB85948}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O87 - FAEL: "TCP Query User{5601EA2F-FF8D-46D7-B9CA-E66C269BD1AD}C:\users\elève\appdata\local\temp\download\minithunderplatform.exe" [In-None-P6-TRUE] .(.深圳市迅雷网络技术有限公司 - 迅雷云加速开放平台.) -- C:\users\elève\appdata\local\temp\download\minithunderplatform.exe =>.ShenZhen Thunder Networking Technologies Ltd.® O87 - FAEL: "UDP Query User{E9C8EE8A-9B98-4F64-AF9F-CBF2951C741A}C:\users\elève\appdata\local\temp\download\minithunderplatform.exe" [In-None-P17-TRUE] .(.深圳市迅雷网络技术有限公司 - 迅雷云加速开放平台.) -- C:\users\elève\appdata\local\temp\download\minithunderplatform.exe =>.ShenZhen Thunder Networking Technologies Ltd.® O87 - FAEL: "{D4973D7A-8D36-43F8-A2E2-FD7E590BFF83}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\ApowerManager\ApowerManager.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{4DC89F56-EF05-43F3-8909-26FAFB36C745}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\ApowerManager\ApowerManager.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{FA09CF7F-2C54-4BA5-9FBC-60F729CD5A8B}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\ApowerManager\ApowerManagerCoreServices.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{A6F87043-EE8C-4307-83DB-8177407289F8}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Apowersoft\ApowerManager\ApowerManagerCoreServices.exe [Unsigned] (.not file.) =>.SUP.Orphan ---\\ CODES PRODUITS LOGICIELS (43) - 2s O90 - PUC: "00006109C80000000000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component.) =>.Microsoft Corporation O90 - PUC: "00006109C800C0400000000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Localization Component.) =>.Microsoft Corporation O90 - PUC: "00006109DD0000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Extensibility Component 64-bit Registration.) =>.Microsoft Corporation O90 - PUC: "00006109F80000000100000000F01FEC" [HKLM] . (.Office 16 Click-to-Run Licensing Component.) =>.Microsoft Corporation O90 - PUC: "0AA7CFB2C445A3E47869763FEB56B59E" [HKLM] . (.Microsoft XNA Framework Redistributable 4.0.) -- C:\WINDOWS\Installer\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}\ProductIcon =>.bl.org O90 - PUC: "2C47B0D78F3C1FA449F0DC97BAB4D2EC" [HKLM] . (.Microsoft Visual C++ 2019 X64 Additional Runtime - 14.25.28508.) =>.Microsoft Corporation O90 - PUC: "3180FA93B7AF0684DAEB399B2B419B41" [HKLM] . (.Teams Machine-Wide Installer.) O90 - PUC: "388CA4DB5FA4BB04190F130A169F85E8" [HKLM] . (.DriversCloud.com (64 bits).) -- C:\WINDOWS\Installer\{BD4AC883-4AF5-40BB-91F0-31A061F9588E}\maconfico =>.Apple Inc. O90 - PUC: "499C5C9F9B6F57D43B7EDA108B04379E" [HKLM] . (.Epic Games Launcher Prerequisites (x64).) -- C:\WINDOWS\Installer\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}\UnrealEngineLauncher.ico =>.Legitimate O90 - PUC: "4EA42A62D9304AC4784BF2681408150F" [HKLM] . (.Java 8 Update 51 (64-bit).) =>.Sun Microsystems O90 - PUC: "58FDACBCCE55EC24FB45847C05621E87" [HKLM] . (.TI Connect CE.) -- C:\WINDOWS\Installer\{CBCADF85-55EC-42CE-BF54-48C75026E178}\TIConnectCE_2.exe =>.Texas Instruments O90 - PUC: "5BFF4D0B1DA772A468FCAD6B867027D1" [HKLM] . (.LibreOffice 6.1 Help Pack (French).) -- C:\Windows\Installer\{B0D4FFB5-7AD1-4A27-86CF-DAB66807721D}\soffice.ico =>.Open Source O90 - PUC: "68AB67CA408033019195008142049602" [HKLM] . (.Adobe Refresh Manager.) -- C:\WINDOWS\Installer\{AC76BA86-0804-1033-1959-001824406920}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "68AB67CA7DA76301B744CAF070E41400" [HKLM] . (.Adobe Acrobat Reader DC - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Adobe Inc. O90 - PUC: "70237CAEDB4731B4AAFCC8E057F14A8E" [HKLM] . (.Microsoft Visual C++ 2019 X86 Additional Runtime - 14.24.28127.) =>.Microsoft Corporation O90 - PUC: "76966AEE2E7916549A99C5223EDC4E82" [HKLM] . (.Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.25.28508.) =>.Microsoft Corporation O90 - PUC: "801AA62CE51668144A99F928DF2CF1A3" [HKLM] . (.Epic Games Launcher.) -- C:\windows\Installer\{C26AA108-615E-4186-A499-9F82FDC21F3A}\Installer.ico =>.Epic Games O90 - PUC: "93BAD29AC2E44034A96BCB446EB8552E" [HKLM] . (.Google Update Helper.) =>.Google Inc. O90 - PUC: "A089CE062ADB6BC44A720BA745894BAC" [HKLM] . (.Google Update Helper.) =>.Google Inc. O90 - PUC: "A3AD227D5F29A454DBD54AC8498D3200" [HKLM] . (.Python Launcher.) -- C:\windows\Installer\{D722DA3A-92F5-454A-BD5D-A48C94D82300}\ARPIcon =>.Python O90 - PUC: "D0EB64874954CD038922EF800C401260" [HKLM] . (.Google Chrome.) -- C:\Windows\Installer\{7846BE0D-4594-30DC-9822-FE08C0042106}\icon.ico =>.Google Inc. O90 - PUC: "F1AF27E2BDAB73348BEA7F1CE75CD7D1" [HKLM] . (.Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.24.28127.) =>.Microsoft Corporation O90 - PUC: "F60730A4A66673047777F5728467D401" [HKLM] . (.Java Auto Updater.) =>.Sun Microsystems O90 - PUC: "01397FB5787AF03439DDCCA8797876D9" [HKCU] . (.Python 3.7.4 Standard Library (64-bit).) =>.Python O90 - PUC: "38F37A2961CD613449A56BB61C32267A" [HKCU] . (.Python 3.7.4 Core Interpreter (64-bit).) =>.Python O90 - PUC: "3C90768BE26926C4FB52FCD86062D727" [HKCU] . (.Python 3.7.4 Development Libraries (64-bit).) =>.Python O90 - PUC: "5D277B5EDCC8B164CB061BD0BF7540BA" [HKCU] . (.Python 3.7.4 Tcl/Tk Support (64-bit).) =>.Python O90 - PUC: "8CE5D497F29A96943A8144C9E2178D4C" [HKCU] . (.Python 3.7.4 Test Suite (64-bit).) =>.Python O90 - PUC: "92547F610EDEDBB42BFA98FAC996E68A" [HKCU] . (.Python 3.7.4 Utility Scripts (64-bit).) =>.Python O90 - PUC: "B3D28CB47CBBFAB498D901FA75544EBA" [HKCU] . (.Python 3.7.4 Documentation (64-bit).) =>.Python O90 - PUC: "C8846A6C44A5B4346AC0C14C46790079" [HKCU] . (.Educadhoc.) -- %APPDATA%\Microsoft\Installer\{C6A6488C-5A44-434B-A60C-1CC464970097}\icon.ico O90 - PUC: "E627BDD6EC904B441A926BA21D06A459" [HKCU] . (.Python 3.7.4 Executables (64-bit).) =>.bl.org O90 - PUC: "FA13D29F744F58A40BDFEC36877F26A5" [HKCU] . (.Python 3.7.4 pip Bootstrap (64-bit).) =>.Python O90 - PUC: "01397FB5787AF03439DDCCA8797876D9" [HKU] . (.Python 3.7.4 Standard Library (64-bit).) =>.Python O90 - PUC: "38F37A2961CD613449A56BB61C32267A" [HKU] . (.Python 3.7.4 Core Interpreter (64-bit).) =>.Python O90 - PUC: "3C90768BE26926C4FB52FCD86062D727" [HKU] . (.Python 3.7.4 Development Libraries (64-bit).) =>.Python O90 - PUC: "5D277B5EDCC8B164CB061BD0BF7540BA" [HKU] . (.Python 3.7.4 Tcl/Tk Support (64-bit).) =>.Python O90 - PUC: "8CE5D497F29A96943A8144C9E2178D4C" [HKU] . (.Python 3.7.4 Test Suite (64-bit).) =>.Python O90 - PUC: "92547F610EDEDBB42BFA98FAC996E68A" [HKU] . (.Python 3.7.4 Utility Scripts (64-bit).) =>.Python O90 - PUC: "B3D28CB47CBBFAB498D901FA75544EBA" [HKU] . (.Python 3.7.4 Documentation (64-bit).) =>.Python O90 - PUC: "C8846A6C44A5B4346AC0C14C46790079" [HKU] . (.Educadhoc.) -- %APPDATA%\Microsoft\Installer\{C6A6488C-5A44-434B-A60C-1CC464970097}\icon.ico O90 - PUC: "E627BDD6EC904B441A926BA21D06A459" [HKU] . (.Python 3.7.4 Executables (64-bit).) =>.bl.org O90 - PUC: "FA13D29F744F58A40BDFEC36877F26A5" [HKU] . (.Python 3.7.4 pip Bootstrap (64-bit).) =>.Python ---\\ PACKAGES WINDOWS INSTALLER (42) - 183s [MD5.FF0F3DA739759191215CD8101031926E] [WIS][2019/04/17 16:01:40] (.The Document Foundation - LibreOffice 6.1.) -- C:\WINDOWS\Installer\125e19.msi [2334720] =>.The Document Foundation [MD5.CB1326F281EF8D5460D1D006E19A3A81] [WIS][2019/07/08 19:38:00] (.Python Software Foundation - Python 3.7.4 Core Interpreter (64-bit).) -- C:\WINDOWS\Installer\151d09a.msi [1396736] =>.Python Software Foundation [MD5.47E4EC8EA70905ACD40F5E99FF622F45] [WIS][2019/07/08 19:38:26] (.Python Software Foundation - Python 3.7.4 Development Libraries (64-bit).) -- C:\WINDOWS\Installer\151d09e.msi [299008] =>.Python Software Foundation [MD5.B65DB169FEB07B7F854454C590441B64] [WIS][2019/07/08 19:38:44] (.Python Software Foundation - Python 3.7.4 Executables (64-bit).) -- C:\WINDOWS\Installer\151d0a2.msi [450560] =>.Python Software Foundation [MD5.BB98C5792CC1AF910FD5AF8D1B512C3A] [WIS][2019/07/08 19:39:12] (.Python Software Foundation - Python 3.7.4 Standard Library (64-bit).) -- C:\WINDOWS\Installer\151d0a6.msi [7680000] =>.Python Software Foundation [MD5.BEF9D251B4ABF41298086D6FC5FDC062] [WIS][2019/07/08 19:40:36] (.Python Software Foundation - Python 3.7.4 Test Suite (64-bit).) -- C:\WINDOWS\Installer\151d0aa.msi [3276800] =>.Python Software Foundation [MD5.442B620A50974ECF00009B72A3CAFDE0] [WIS][2019/07/08 19:38:38] (.Python Software Foundation - Python 3.7.4 Documentation (64-bit).) -- C:\WINDOWS\Installer\151d0ae.msi [8159232] =>.Python Software Foundation [MD5.CAB2EA9D8E6EA4D7F4F30D0368D30034] [WIS][2019/07/08 19:40:46] (.Python Software Foundation - Python 3.7.4 Utility Scripts (64-bit).) -- C:\WINDOWS\Installer\151d0b2.msi [200704] =>.Python Software Foundation [MD5.4E824E22A3682B29938B06BE85C5E836] [WIS][2019/07/08 19:40:10] (.Python Software Foundation - Python 3.7.4 Tcl/Tk Support (64-bit).) -- C:\WINDOWS\Installer\151d0b6.msi [3489792] =>.Python Software Foundation [MD5.FFCD474610B4A50B0D64B283F32F5B22] [WIS][2019/07/08 19:39:52] (.Python Software Foundation - Python 3.7.4 pip Bootstrap (64-bit).) -- C:\WINDOWS\Installer\151d0ba.msi [253952] =>.Python Software Foundation [MD5.24B4B0F89A530C386E88CB47C2BE98B4] [WIS][2019/10/04 07:32:36] (.Epic Games, Inc. - Epic Games Launcher.) -- C:\WINDOWS\Installer\159691e.msi [43671552] =>.Epic Games, Inc. [MD5.5741FCFE0723BB92BBFD1342F2F213D1] [WIS][2020/01/07 12:51:14] (.Cybelsoft - Hardware Detection DriversCloud.com.) -- C:\WINDOWS\Installer\1a4bdfa.msi [9682944] =>.Cybelsoft [MD5.4D5C9A709F332236559D3BCB27BB81B1] [WIS][2020/06/18 10:28:42] (.Epic Games, Inc. - Epic Games Launcher Prerequisites (x64).) -- C:\WINDOWS\Installer\1bf3cdbe.msi [11530240] =>.Epic Games, Inc. [MD5.C6B610E6F37AF6BF835C388B66A497C2] [WIS][2020/09/21 09:46:41] (.Texas Instruments Inc. - TI Connect CE.) -- C:\WINDOWS\Installer\203eb53.msi [6224384] =>.Texas Instruments Inc. [MD5.1EF598379FF589E452E9FC7F93563740] [WIS][2020/09/27 17:13:14] (.Oracle Corporation - Java SE Runtime Environment 8.0.) -- C:\WINDOWS\Installer\2282a93a.msi [40620032] =>.Oracle Corporation [MD5.4AFCA17A0A4D54C04B8C3AF40FB2A775] [WIS][2020/09/27 17:13:49] (.Oracle Corporation - Java Auto Updater.) -- C:\WINDOWS\Installer\2282a93e.msi [675840] =>.Oracle Corporation [MD5.646671B5840B214E79BAC5A3D103C1AF] [WIS][2020/06/11 14:03:02] (.CRYPTOCOMPANY - Google Update Helper.) -- C:\WINDOWS\Installer\366fce4b.msi [40960] [MD5.1E5DDDA4DEF6723D738847398894467A] [WIS][2019/09/12 11:17:58] (.Hachette-Livre - Educadhoc.) -- C:\WINDOWS\Installer\496cc2.msi [194359296] [MD5.36B59989E6308EE016A2B342EE19FFE7] [WIS][2019/07/08 18:32:58] (.Python Software Foundation - Python Launcher.) -- C:\WINDOWS\Installer\4f2ffc.msi [598016] =>.Python Software Foundation [MD5.BBBA0BA814B2E30AAA0B77C60AD16848] [WIS][2020/11/25 21:15:27] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\7d09ef7.msi [987136] =>.Adobe Systems Incorporated [MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 09:41:29] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\bbc1.msi [2805760] =>.Adobe Systems Incorporated [MD5.00D01757986F9699ED1776192B23879B] [WIS][2020/12/03 21:21:05] (.Google LLC - Google Update Helper.) -- C:\WINDOWS\Installer\c9c27fa.msi [40960] =>.Google LLC [MD5.0D97FF66E32A04486044F30E76409AB2] [WIS][2019/04/17 19:03:35] (.Google LLC - Google Chrome Installer.) -- C:\WINDOWS\Installer\e040.msi [57721344] =>.Google LLC [MD5.11F7E4FF1AEFD307E111CA25022CD840] [WIS][2020/12/09 12:35:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\11b44f12.msp [3039232] =>.Adobe Inc. [MD5.6C872B8971E67A78A683FD192919AB70] [WIS][2020/09/23 06:58:22] (.Adobe Inc..) -- C:\WINDOWS\Installer\13e32b16.msp [33984512] =>.Adobe Inc. [MD5.DB596E2ADC480687F78F34B7D452D2CB] [WIS][2020/03/16 07:28:35] (.Adobe Inc..) -- C:\WINDOWS\Installer\14f67b.msp [8130560] =>.Adobe Inc. [MD5.923228256AD8BBCA145AE48027AA92BF] [WIS][2020/06/02 13:40:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\174f0468.msp [3026944] =>.Adobe Inc. [MD5.B2D96888BC6646EBDEEFB59B363FD015] [WIS][2019/12/09 09:07:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\24bdeb7b.msp [30273536] =>.Adobe Inc. [MD5.AC729EF5FD5047779136DD8670413E03] [WIS][2020/07/31 04:39:02] (.Adobe Inc..) -- C:\WINDOWS\Installer\253430f2.msp [70844416] =>.Adobe Inc. [MD5.5705BA59CE2D386789436E2C34FC5635] [WIS][2019/12/19 09:53:18] (.Adobe Inc..) -- C:\WINDOWS\Installer\277e383.msp [1863680] =>.Adobe Inc. [MD5.2CD061E09E48D7EFD5571169C5BB1386] [WIS][2019/10/24 13:03:06] (.Adobe Inc..) -- C:\WINDOWS\Installer\2d5501.msp [4616192] =>.Adobe Inc. [MD5.59776CD5E3E33907213B1E8249F64A02] [WIS][2020/11/02 07:52:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\2e3a78f.msp [20647936] =>.Adobe Inc. [MD5.31A1DBE1A433F065C401CD0A73642712] [WIS][2019/11/13 12:16:36] (.Adobe Inc..) -- C:\WINDOWS\Installer\364c18c2.msp [1527808] =>.Adobe Inc. [MD5.BD4173F416AC180D7AD46CB583BAB949] [WIS][2020/05/21 17:16:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\383cc77.msp [1392640] =>.Adobe Inc. [MD5.16CD2BA3438D2627805A64D0F4DC063E] [WIS][2020/08/19 12:46:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\491f0aa5.msp [2781184] =>.Adobe Inc. [MD5.F82BDB155BDC9BFEE380D077D1119380] [WIS][2019/10/16 23:41:59] (.Adobe Inc..) -- C:\WINDOWS\Installer\4d2ba0.msp [242802688] =>.Adobe Inc. [MD5.2AD3AE06875E8C704DA9F109422277CF] [WIS][2020/07/06 13:20:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\6ef64407.msp [5853184] =>.Adobe Inc. [MD5.B88274DA8D68D49732CC28A328885C98] [WIS][2020/11/23 11:11:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\7d09f52.msp [6557696] =>.Adobe Inc. [MD5.7F1419CD81DEB4E238B7F0426B0782B7] [WIS][2020/05/11 07:43:48] (.Adobe Inc..) -- C:\WINDOWS\Installer\8d58a42e.msp [50810880] =>.Adobe Inc. [MD5.497275FFB9E10B5A29223D2A99322F49] [WIS][2020/02/10 08:01:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\ba2d5e.msp [25227264] =>.Adobe Inc. [MD5.C5D6FE428F4C19D4B0C11D189F6853F2] [WIS][2019/03/26 00:38:10] (.Adobe Inc..) -- C:\WINDOWS\Installer\bbc2.msp [228941824] =>.Adobe Inc. [MD5.087328C669CBA87A5C045FBBB8C0D580] [WIS][2019/08/21 15:26:42] (.Adobe Inc..) -- C:\WINDOWS\Installer\c26f239.msp [239988736] =>.Adobe Inc. ---\\ FEATURE CONTROL. (207) - 1s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:msoasb.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:ApowerManager.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:ApowerManagerCoreServices.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:mspub.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:msaccess.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:mspub.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msoasb.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_ENABLE_HTTP2]:msaccess.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate ---\\ OBSERVATEURS des évènements (176) - 88s Application.Warning: Microsoft-Windows-RPC-Events (9) ~Numéro: 4244 ~Date: 12/17/2020 08:18:17 AM ~ID: 9 ~Description: "C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.420.11102.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe" -Embedding4252 ~Suggestion: Aucune Application.Warning: AutoEnrollment (71) ~Numéro: 4230 ~Date: 12/17/2020 08:10:11 AM ~ID: 64 ~Description: Système local2c dc f6 89 de 5d 53 5a 6e 3a 19 7c 4b 02 78 20 5c 7f 80 dd ~Suggestion: Installer le Kit de développement logiciel (SDK). Application.Warning: ESENT (437) ~Numéro: 4212 ~Date: 12/17/2020 08:09:20 AM ~ID: 642 ~Description: %1 (%2) %3La version %5 de la fonctionnalité de format de base de données n’a pas pu être utilisée, car le format actuel de base de données %6 est contrôlé par le paramètre %4. Application.Warning: Microsoft-Windows-RestartManager (28) ~Numéro: 4154 ~Date: 12/16/2020 11:04:40 PM ~ID: 10010 ~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9. ~Suggestion: Redémarrer manuellement l'application ou le service Application.Error: Application Error (43) ~Numéro: 4045 ~Date: 12/16/2020 09:13:24 PM ~ID: 1000 ~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x5dcc0361 Nom du module défaillant : %4, version : %5, horodatage : 0x5f641e44 Code d’exception : 0xc0000374 Décalage d’erreur : 0x000e6ac3 ID du processus défaillant : 0x1b40 Heure de ~Suggestion: Réparer ou réinstaller l'application. Application.Warning: Windows Search Service (2) ~Numéro: 4034 ~Date: 12/16/2020 08:51:18 PM ~ID: 10023 ~Description: Le processus du protocole hôte %2 n’a pas répondu et il est actuellement en cours d’arrêt forcé {processus de filtrage d’hôte %3}. ~Suggestion: Désactiver l'indexation des boîtes aux lettres Application.Error: .NET Runtime Optimization Service (1) ~Numéro: 3937 ~Date: 12/16/2020 06:50:44 PM ~ID: 1103 ~Description: .NET Runtime Optimization Service (clr_optimization_v2.0.50727_32) - Tried to start a service that wasn't the latest version of CLR Optimization service. Will shutdown Application.Warning: Microsoft-Windows-WMI (48) ~Numéro: 3588 ~Date: 12/14/2020 10:44:35 AM ~ID: 63 ~Description: Un fournisseur, %1, a été inscrit dans l’espace de noms Windows Management Instrumentation %2, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de sécurité s’il ne représente pas ~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié. Application.Warning: Steam Client Service (3) ~Numéro: 3319 ~Date: 12/11/2020 02:50:18 PM ~ID: 2 ~Description: Warning: Updated file "SteamService.dll" from version 0x0006001100170019 to version 0x00060018003c002f. Application.Error: EventSystem (1) ~Numéro: 2366 ~Date: 12/01/2020 11:01:57 PM ~ID: 4622 ~Description: 8007071a{AB9A1D41-26E2-423C-999A-234948C35454}-{00000000-0000-0000-0000-000000000000}-{00000000-0000-0000-0000-000000000000} Application.Error: Application Hang (1) ~Numéro: 740 ~Date: 11/20/2020 12:25:00 PM ~ID: 1002 ~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de proces ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Error: Office 2016 Licensing Service (1) ~Numéro: 425 ~Date: 11/18/2020 04:02:35 PM ~ID: 0 ~Description: Subscription licensing service failed: -2147467259 Application.Warning: Software Protection Platform Service (1) ~Numéro: 334 ~Date: 11/18/2020 11:27:08 AM ~ID: 1193 ~Description: Échec de la collecte des informations PKEY pour l’OEM:clé de produit (Product Key) DM. Erreur : 0xC004F050 Clé de produit (Product Key) : YVKNG-BQ6VF-34B47-GBTXG-H8RC3 Application.Error: SideBySide (3) ~Numéro: 305 ~Date: 11/18/2020 11:24:24 AM ~ID: 35 ~Description: La création du contexte d’activation a échoué pour « %11 ». Erreur dans le fichier de manifeste ou de stratégie « %12 » à la ligne %13. L’identité de composant trouvé dans le manifeste ne correspond pas à celle du composant demandé. La référence est ~Suggestion: Ces erreurs peuvent généralement être ignorées Application.Error: Microsoft Office 16 (1) ~Numéro: 304 ~Date: 11/18/2020 11:24:16 AM ~ID: 2011 ~Description: Office Subscription licensing exception: Error Code: 0x80070057; CorrelationId: {E49D3EDB-08DF-4E37-BB97-6270DB71108C} Application.Warning: Microsoft-Windows-User Profiles Service (2) ~Numéro: 25 ~Date: 11/18/2020 09:44:20 AM ~ID: 1534 ~Description: Échec de la notification du profil de l’événement %1 pour le composant %2. Le code d’erreur est %3. ~Suggestion: https://www.ghacks.net/2018/12/29/windows-10-user-profile-service-event-id-1534-warnings/ Application.Error: Microsoft-Windows-CAPI2 (1) ~Numéro: 17 ~Date: 11/18/2020 09:42:57 AM ~ID: 257 ~Description: Le service Services de chiffrement n’a pas réussi à initialiser la base de données du catalogue. L’erreur ESENT était : %1. ~Suggestion: Réparer la base de données du catalogue à l'aide d'Esentutl ou créer-en une nouvelle si elle n'est pas réparable System.Error: Schannel (330) ~Numéro: 6043 ~Date: 12/17/2020 10:20:34 AM ~ID: 4103 ~Description: Une erreur irrécupérable s'est produite lors de la création des informations d'identification %1 pour TLS. État d'erreur interne : %2. System.Warning: DCOM (711) ~Numéro: 6039 ~Date: 12/17/2020 10:00:30 AM ~ID: 10016 ~Description: propres à l’applicationLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}UTILISA-3V42GQQElèveS-1-5-21-4109148330-3231227920-1475521471-1001LocalHost (avec LRPC)Non disponibleNon disponible ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Warning: BTHUSB (264) ~Numéro: 6037 ~Date: 12/17/2020 09:57:31 AM ~ID: 34 ~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est %2, a reçu %3. La fonctionnalité du rôle périphérique Low Energy n System.Error: Service Control Manager (14) ~Numéro: 6012 ~Date: 12/17/2020 08:11:32 AM ~ID: 7000 ~Description: Le service %1 n’a pas pu démarrer en raison de l’erreur : %%2 System.Warning: Microsoft-Windows-TPM-WMI (15) ~Numéro: 6004 ~Date: 12/17/2020 08:09:48 AM ~ID: 1538 ~Description: Impossible de connecter l’approvisionnement du certificat d’intégrité d’appareil à %1. -2147012889 System.Warning: Microsoft-Windows-Kernel-PnP (39) ~Numéro: 5971 ~Date: 12/17/2020 08:09:11 AM ~ID: 219 ~Description: Le chargement du pilote %5 a échoué pour le périphérique %2. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: EventLog (5) ~Numéro: 5942 ~Date: 12/17/2020 08:09:18 AM ~ID: 6008 ~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu. System.Warning: Microsoft-Windows-WLAN-AutoConfig (15) ~Numéro: 5863 ~Date: 12/16/2020 11:07:49 PM ~ID: 10002 ~Description: Le module d’extensibilité WLAN s’est arrêté. Chemin d’accès du module : C:\WINDOWS\system32\Rtlihvs.dll ~Suggestion: 1)Désactivez/Réactiver la connexion réseau sans fil. ou 2) Redémarrer le service WLAN AutoConfig System.Warning: Microsoft-Windows-DNS-Client (144) ~Numéro: 5736 ~Date: 12/16/2020 05:58:37 PM ~ID: 1014 ~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: disk (27) ~Numéro: 5547 ~Date: 12/15/2020 02:39:32 PM ~ID: 51 ~Description: Une erreur a été détectée sur le périphérique %1 lors d'une opération de pagination. System.Error: ACPI (1) ~Numéro: 4777 ~Date: 12/11/2020 02:51:06 PM ~ID: 13 ~Description: %1 : le contrôleur embarqué n’a pas répondu dans le délai imparti. Cette erreur peut indiquer que le matériel ou le microprogramme du contrôleur embarqué présente une erreur ou que le BIOS accède au contrôleur embarqué de manière incorrecte. Contacte System.Error: Microsoft-Windows-WindowsUpdateClient (1) ~Numéro: 2197 ~Date: 11/29/2020 02:00:37 AM ~ID: 20 ~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2. ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Error: BugCheck (1) ~Numéro: 2134 ~Date: 11/28/2020 11:30:51 AM ~ID: 1001 ~Description: 0x0000007e (0xffffffffc000001d, 0xfffff80012ebea40, 0xffff99830e8436b8, 0xffff99830e842ef0)C:\WINDOWS\MEMORY.DMPd5e80023-9da3-435c-897d-e9da1dc72933 System.Warning: i8042prt (1) ~Numéro: 2093 ~Date: 11/28/2020 11:30:16 AM ~ID: 17 ~Description: Le périphérique a renvoyé une ou plusieurs réponses incorrectes après une réinitialisation du clavier. System.Warning: Microsoft-Windows-Time-Service (5) ~Numéro: 1587 ~Date: 11/25/2020 08:57:53 AM ~ID: 134 ~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "%3". NtpClient réessaiera dans %2 minutes, puis doublera l'intervalle d'attente pour les tentatives suivantes. L'erreur éta ~Suggestion: Resynchroniser le client avec l'homologue de source de temps ---\\ SCAN ADDITIONNEL (180) - 13s C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\Extensions\hojhhmecfdlobchoejlbonoabacfnaap =>SUP.Optional.SearchManager C:\Users\Elève\AppData\Roaming\Mozilla\Firefox\Profiles\a4h4p1r1.default\searchplugins\bing-lavasoft-ff59.xml =>PUP.Optional.LavasoftWebCompanion HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2} =>Heuristic.Suspect C:\Users\Elève\AppData\Roaming\Smart Clock =>Trojan.MalPack C:\Users\Elève\AppData\Local\AdvinstAnalytics =>.SUP.Various HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR =>.SUP.Orphan HKLM\Software\Wow6432Node\Classes\CLSID\{B41DB860-64E4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-10164.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-10192.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-10496.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-10604.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-1076.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-10792.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-1112.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-11212.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-11432.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-11736.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-11880.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-11920.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-11944.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-11964.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-12004.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-12100.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-12104.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-12224.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-12320.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-12328.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-12424.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-12784.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-12872.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-12912.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-13044.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-13072.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-13172.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-13276.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-13304.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-13356.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-1336.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-13844.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-14092.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-14324.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-1700.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-1784.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-1864.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-2008.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-2132.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-2524.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-2904.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-3228.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-3276.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-3384.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-3484.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-3568.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-3640.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-3696.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-3844.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-4120.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-4184.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-4212.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-4296.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-4400.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-4436.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-468.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-4840.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-4852.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-4872.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-4996.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-5052.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-5380.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-5472.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-5484.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-564.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-5648.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-5668.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-5720.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-5840.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-5888.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-6524.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-6616.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-6740.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-6780.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-7088.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-7420.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-7560.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-7724.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-7768.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-7852.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-7972.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-8112.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-8164.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-8188.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-8368.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-8436.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-8544.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-856.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-8716.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-872.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-8744.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-8800.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-8976.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-9156.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-9304.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-9580.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-9596.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-9604.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-9608.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-9792.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-9820.log =>.SUP.Temporary.Microsoft C:\Users\ELVE~1\AppData\Local\Temp\mat-debug-9892.log =>.SUP.Temporary.Microsoft C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\000 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\024 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\025 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\026 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\027 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\028 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\029 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\030 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\031 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\032 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\033 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\034 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\035 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\036 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\037 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\038 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\039 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\040 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\041 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\042 =>.SUP.Temporary.Chrome C:\Users\Elève\AppData\Local\Google\Chrome\User Data\Default\File System\Plugins =>.SUP.Temporary.Chrome HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\csastats =>Adware.InstallCore HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com =>PUP.Optional.LavasoftWebCompanion HKCU\Software\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion HKCU\Software\csastats =>Adware.InstallCore HKCU\Software\undefined =>.SUP.Downloader HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com =>PUP.Optional.LavasoftWebCompanion HKLM\SOFTWARE\Wow6432Node\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion HKLM\SOFTWARE\Lavasoft\Web Companion =>PUP.Optional.LavasoftWebCompanion [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Google\Chrome\PreferenceMACs\Default\extensions.settings]:nladljmabboanhihfkjacnnkgjhnokhj =>SUP.Optional.DefaultSearch [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Desktop\l'1N73RD15\Les Simpson Hit and Run\Simpsons.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Desktop\l'1N73RD15\Les Simpson Hit and Run\Simpsons.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\AppData\Roaming\uTorrent\uTorrent.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\AppData\Roaming\uTorrent\uTorrent.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\AppData\Local\Programs\Hachette\Educadhoc\educadhoc.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\MaConfig_Win.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\LibManuels (2).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\LibManuels (1).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\TIConnectCE-5.6.0.2082.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\TIConnectCE-5.6.0.2082.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\LibManuels.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\educadhoc_installer_v8.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\educadhoc_installer_v8.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\uTorrent.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\uTorrent.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Desktop\l'1N73RD15\Les Simpson Hit and Run\Simpsons.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Desktop\l'1N73RD15\Les Simpson Hit and Run\Simpsons.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\program files (x86)\steam\steamapps\common\dc universe online\unreal3\binaries\win32\dcgame.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\AppData\Roaming\uTorrent\uTorrent.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\AppData\Roaming\uTorrent\uTorrent.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\AppData\Local\Programs\Hachette\Educadhoc\educadhoc.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\MaConfig_Win.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\LibManuels (2).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\LibManuels (1).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\TIConnectCE-5.6.0.2082.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\TIConnectCE-5.6.0.2082.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\LibManuels.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\educadhoc_installer_v8.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\educadhoc_installer_v8.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\uTorrent.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-4109148330-3231227920-1475521471-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Elève\Downloads\uTorrent.exe.ApplicationCompany =>.SUP.Orphan.MUICache ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (16) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/repaquetage-et-infection/ =>SUP.Optional.SearchManager https://nicolascoolman.eu/2017/03/12/superfluous-lavasoftwebcompanion/ =>PUP.Optional.LavasoftWebCompanion https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Various https://nicolascoolman.eu/2017/01/28/heuristic-suspect/ =>Heuristic.Suspect https://nicolascoolman.eu/2017/03/11/pup-optional-crossrider/ =>Adware.CrossRider https://nicolascoolman.eu/2017/09/19/adware-installcore-3/ =>Adware.InstallCore https://nicolascoolman.eu/forum/Topic/dreamtrips-logiciel-potentiellement-indesirable-pup-lpi/ =>PUP.Optional.DreamTrips https://nicolascoolman.eu/2017/12/22/sup-downloader/ =>.SUP.Downloader https://nicolascoolman.eu/2017/11/08/trojan-malpack/ =>Trojan.MalPack https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Microsoft https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Chrome https://nicolascoolman.eu/forum/Topic/defaultsearch-logiciel-potentiellement-superflu-lps/ =>SUP.Optional.DefaultSearch https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [009BA79241AB720413F32816AC46F8D535] [07/01/2020] (.CYBELSOFT.) - C:\Program Files\DriversCloud.com\DriversCloud.exe =>.CYBELSOFT [01342592A0010CB1109C11C0519CFD24] [27/10/2019] (.Notepad++.) - C:\Program Files (x86)\Notepad++\notepad++.exe =>.Notepad++ [01342592A0010CB1109C11C0519CFD24] [27/10/2019] (.Notepad++.) - C:\Program Files (x86)\Notepad++\NppShell_06.dll =>.Notepad++ [033ED5EDA065D1B8C91DFCF92A6C9BD8] [08/07/2019] (.Python Software Foundation.) - C:\Users\Elève\AppData\Local\Programs\Python\Python37\python.exe =>.Python Software Foundation [033ED5EDA065D1B8C91DFCF92A6C9BD8] [20/09/2019] (.Python Software Foundation.) - C:\Users\Elève\AppData\Local\Package Cache\{8ae589dd-de2e-42cd-af56-102374115fee}\python-3.7.4-amd64.exe =>.Python Software Foundation [03ACACAA3FCBB6B2930EADC5A4633841] [19/12/2018] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\oem37.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys =>.HP Inc. [04DF4D56733AE38D598EA004DD2D9C51] [12/03/2020] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rtwlane.sys =>.Realtek Semiconductor Corp. [04DF4D56733AE38D598EA004DD2D9C51] [29/04/2020] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp. [04DF4D56733AE38D598EA004DD2D9C51] [29/04/2020] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\RtkAudUService64.exe =>.Realtek Semiconductor Corp. [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Discord.exe =>.Discord Inc. [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Elève\AppData\Local\Discord\app-0.0.309\ffmpeg.dll =>.Discord Inc. [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Elève\AppData\Local\Discord\app-0.0.309\libEGL.dll =>.Discord Inc. [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Elève\AppData\Local\Discord\app-0.0.309\libGLESv2.dll =>.Discord Inc. [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Elève\AppData\Local\Discord\app-0.0.309\Squirrel.exe =>.Discord Inc. [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Elève\AppData\Local\Discord\app-0.0.309\swiftshader\libEGL.dll =>.Discord Inc. [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Elève\AppData\Local\Discord\app-0.0.309\swiftshader\libGLESv2.dll =>.Discord Inc. [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Elève\AppData\Local\Discord\app-0.0.309\vk_swiftshader.dll =>.Discord Inc. [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Elève\AppData\Local\Discord\app-0.0.309\vulkan-1.dll =>.Discord Inc. [04F131322CC31D92C849FCA351D2F141] [03/12/2020] (.Discord Inc..) - C:\Users\Elève\AppData\Local\Discord\Update.exe =>.Discord Inc. [04F942C68E5028A4346758EC406E21E1] [02/11/2020] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_3b1a7f8fd6029daa\x64\TouchpointAnalyticsClientService.exe =>.HP Inc. [04F942C68E5028A4346758EC406E21E1] [08/06/2020] (.HP Inc..) - C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys =>.HP Inc. [054F466CECCBE9D6BEE81F5435E64D47] [07/12/2020] (.Valve.) - C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe =>.Valve [054F466CECCBE9D6BEE81F5435E64D47] [07/12/2020] (.Valve.) - C:\Program Files (x86)\Steam\steam.exe =>.Valve [054F466CECCBE9D6BEE81F5435E64D47] [11/12/2020] (.Valve.) - C:\Program Files (x86)\Common Files\Steam\SteamService.exe =>.Valve [063D0C011B143C57893FE839779AFCD0] [13/05/2020] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp. [063D0C011B143C57893FE839779AFCD0] [24/07/2019] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\Drivers\RtsUer.sys =>.Realtek Semiconductor Corp. [06AEA76BAC46A9E8CFE6D29E45AAF033] [03/12/2020] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe =>.Google LLC [06AEA76BAC46A9E8CFE6D29E45AAF033] [03/12/2020] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe =>.Google LLC [084CAF4DF499141D404B7199AA2C2131] [22/05/2018] (.Valve.) - C:\Program Files (x86)\Steam\uninstall.exe =>.Valve [094DC9C3B9D09B4F1D07FA327100E5D5] [06/12/2020] (.BattlEye Innovations e.K..) - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe =>.BattlEye Innovations e.K. [0A9F96AABFB5DAC0F29F565D33FF1AF6] [05/03/2020] (.Wondershare Technology Co.,Ltd.) - C:\ProgramData\Wondershare\Service\InstallAssistService.exe =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\ProgramData\Wondershare\ModuleUpgrade\com.wondershare.drfonewin\Client\1.0.0.19\SharpUpgrade.exe =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\ProgramData\Wondershare\ModuleUpgrade\com.wondershare.drfonewin\Download\com.wondershare.drfonewin.recovery.exe =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\ProgramData\Wondershare\ModuleUpgrade\com.wondershare.drfonewin\Download\com.wondershare.drfonewin.transfer.exe =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\ProgramData\Wondershare\ModuleUpgrade\com.wondershare.drfonewin\Download\com.wondershare.drfonewin.unlock.exe =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\Users\Elève\AppData\Local\assembly\dl3\1CO2N2D6.LP9\63XVDYY1.9OT\2458d0dd\00f729e6_68b7d601\WsAppCommon.DLL =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\Users\Elève\AppData\Local\assembly\dl3\1CO2N2D6.LP9\63XVDYY1.9OT\67131a4e\0062f3b1_cef2d501\WsAppCommon.DLL =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\Users\Elève\AppData\Local\assembly\dl3\1CO2N2D6.LP9\63XVDYY1.9OT\6a643de3\0035c2b0_cef2d501\WsAppFoundation.DLL =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\Users\Elève\AppData\Local\assembly\dl3\1CO2N2D6.LP9\63XVDYY1.9OT\8dcd4d05\0063c20c_0fc3d601\WsAppFoundation.DLL =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\Users\Elève\AppData\Local\assembly\dl3\1CO2N2D6.LP9\63XVDYY1.9OT\9c0b52d1\00245be7_68b7d601\WsAppFoundation.DLL =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\Users\Elève\AppData\Local\assembly\dl3\1CO2N2D6.LP9\63XVDYY1.9OT\af2613fc\0036910b_0fc3d601\WsAppCommon.DLL =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\Users\Elève\AppData\Local\assembly\dl3\1CO2N2D6.LP9\63XVDYY1.9OT\c45e4444\0071aab8_9bb7d601\WsAppFoundation.DLL =>.Not verified [0A9F96AABFB5DAC0F29F565D33FF1AF6] [16/12/2020] (.Wondershare Technology Co.,Ltd.) - C:\Users\Elève\AppData\Local\assembly\dl3\1CO2N2D6.LP9\63XVDYY1.9OT\e4754ae3\0071aab8_9bb7d601\WsAppCommon.DLL =>.Not verified [0C15BE4A15BB0903C901B1D6C265302F] [02/12/2020] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\elevation_service.exe =>.Google LLC [0C15BE4A15BB0903C901B1D6C265302F] [02/12/2020] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC [0C15BE4A15BB0903C901B1D6C265302F] [08/12/2020] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe =>.Google LLC [0C15BE4A15BB0903C901B1D6C265302F] [16/12/2020] (.Google LLC.) - C:\Users\Elève\AppData\Local\Google\Chrome\User Data\SwReporter\87.250.200\software_reporter_tool.exe =>.Google LLC [0C5396DCB2949C70FAC48AB08A07338E] [16/12/2020] (.Mozilla Corporation.) - C:\ProgramData\freebl3.dll =>.Mozilla Corporation [0C5396DCB2949C70FAC48AB08A07338E] [16/12/2020] (.Mozilla Corporation.) - C:\ProgramData\mozglue.dll =>.Mozilla Corporation [0C5396DCB2949C70FAC48AB08A07338E] [16/12/2020] (.Mozilla Corporation.) - C:\ProgramData\nss3.dll =>.Mozilla Corporation [0C5396DCB2949C70FAC48AB08A07338E] [16/12/2020] (.Mozilla Corporation.) - C:\ProgramData\s2x4w8y2s3x4w8y2s3\freebl3.dll =>.Mozilla Corporation [0C5396DCB2949C70FAC48AB08A07338E] [16/12/2020] (.Mozilla Corporation.) - C:\ProgramData\s2x4w8y2s3x4w8y2s3\mozglue.dll =>.Mozilla Corporation [0C5396DCB2949C70FAC48AB08A07338E] [16/12/2020] (.Mozilla Corporation.) - C:\ProgramData\s2x4w8y2s3x4w8y2s3\nss3.dll =>.Mozilla Corporation [0C5396DCB2949C70FAC48AB08A07338E] [16/12/2020] (.Mozilla Corporation.) - C:\ProgramData\s2x4w8y2s3x4w8y2s3\softokn3.dll =>.Mozilla Corporation [0C5396DCB2949C70FAC48AB08A07338E] [16/12/2020] (.Mozilla Corporation.) - C:\ProgramData\softokn3.dll =>.Mozilla Corporation [0CFF7B329CFF7F3B8D2D542AB25826BA] [25/07/2014] (.ShenZhen Thunder Networking Technologies Ltd..) - C:\users\elève\appdata\local\temp\download\minithunderplatform.exe =>.ShenZhen Thunder Networking Technologies Ltd. [0D2CACCD3E9EEC06738410BA31BF6595] [00/00/0000] (.Adobe Inc..) - C:\Windows\System32\FlashPlayerApp.exe =>.Adobe Inc. [0D2CACCD3E9EEC06738410BA31BF6595] [09/12/2020] (.Adobe Inc..) - C:\Users\Elève\AppData\Local\Google\Chrome\User Data\PepperFlash\32.0.0.465\pepflashplayer.dll =>.Adobe Inc. [0D2CACCD3E9EEC06738410BA31BF6595] [09/12/2020] (.Adobe Inc..) - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe =>.Adobe Inc. [0D2CACCD3E9EEC06738410BA31BF6595] [09/12/2020] (.Adobe Inc..) - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe =>.Adobe Inc. [0EBBFEB6F50A63A4585A1FE72483D97F] [18/10/2020] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\AppHelperCap.exe =>.HP Inc. [0EBBFEB6F50A63A4585A1FE72483D97F] [18/10/2020] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\NetworkCap.exe =>.HP Inc. [0EBBFEB6F50A63A4585A1FE72483D97F] [18/10/2020] (.HP Inc..) - C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_66856cbf5000451f\x64\SysInfoCap.exe =>.HP Inc. [0EE3F1C8F451CBF21203341A53F23E71] [03/11/2020] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc. [0EE3F1C8F451CBF21203341A53F23E71] [07/12/2020] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc. [0EE3F1C8F451CBF21203341A53F23E71] [31/07/2020] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroBroker.exe =>.Adobe Inc. [0FA5B80428F4624CF9672211E1956FBE] [04/06/2020] (.VideoLAN.) - C:\program files\videolan\vlc\vlc.exe =>.VideoLAN [11DCAA900661870D67BCEF0E4D4087AD] [30/10/2020] (.Edulib.) - C:\Program Files\Libmanuels\Libmanuels.exe =>.Not verified [11DCAA900661870D67BCEF0E4D4087AD] [30/10/2020] (.Edulib.) - C:\Program Files\Libmanuels\Uninstall Libmanuels.exe =>.Not verified [12F0277E0F233B39F9419B06E8CDE352] [08/06/2015] (.Oracle America, Inc..) - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe =>.Oracle America, Inc. [12F0277E0F233B39F9419B06E8CDE352] [27/09/2020] (.Oracle America, Inc..) - C:\program files\java\jre1.8.0_51\bin\javaw.exe =>.Oracle America, Inc. [12F0277E0F233B39F9419B06E8CDE352] [27/09/2020] (.Oracle America, Inc..) - C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll =>.Oracle America, Inc. [12F0277E0F233B39F9419B06E8CDE352] [27/09/2020] (.Oracle America, Inc..) - C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll =>.Oracle America, Inc. [12F51E635E706372D839CC1B] [24/09/2020] (.Hachette Livre.) - C:\Users\Elève\AppData\Local\Programs\Hachette\Educadhoc\educadhoc.exe =>.Not verified [13A90A96B27162895F08472C0399E2F9] [26/08/2020] (.AVANQUEST SOFTWARE S.A.S.) - C:\Program Files (x86)\Common Files\Avanquest Software\SetupAQ\{EF0B188B-6C1F-4573-8979-DAB1C66266CD}\Setup.exe =>SUP.Optional.Avanquest [1402AEEF0D31BE743E73F6A7A960C4F4] [01/03/2013] (.Riverbed Technology, Inc..) - C:\Program Files (x86)\WinPcap\rpcapd.exe =>.Riverbed Technology, Inc. [1402AEEF0D31BE743E73F6A7A960C4F4] [01/03/2013] (.Riverbed Technology, Inc..) - C:\WINDOWS\System32\drivers\npf.sys =>.Riverbed Technology, Inc. [14F8FDD167F92402B1570B5DC495C815] [17/04/2019] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc [167DB6F0182412A5F7E507AD73FD4A04] [20/05/2019] (.Conexant Systems LLC.) - C:\WINDOWS\System32\SynAudSrv.exe =>.Conexant Systems LLC [26E276015F0288AB256BD746452A5D26] [17/04/2019] (.OpenShot Studios, LLC.) - C:\Program Files\OpenShot Video Editor\unins000.exe =>.OpenShot Studios, LLC [2BA4B9932DC6A9E0E8B4379D23646814] [12/09/2019] (.LELIVRESCOLAIRE.FR EDITIONS.) - C:\Users\Elève\AppData\Local\Programs\Lelivrescolaire.fr\Lelivrescolaire.fr.exe =>.Not verified [2BA4B9932DC6A9E0E8B4379D23646814] [12/09/2019] (.LELIVRESCOLAIRE.FR EDITIONS.) - C:\Users\Elève\AppData\Local\Programs\Lelivrescolaire.fr\Uninstall Lelivrescolaire.fr.exe =>.Not verified [330000017BB47778D9105DF03500000000017B] [18/11/2020] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.77.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl [34909115EFBB6173839AC2BC86672F67] [07/10/2019] (.ELAN Microelectronics Corporation.) - C:\WINDOWS\System32\drivers\ETD.sys =>.ELAN Microelectronics Corporation [34909115EFBB6173839AC2BC86672F67] [07/10/2019] (.ELAN Microelectronics Corporation.) - C:\WINDOWS\System32\drivers\ETDSMBus.sys =>.ELAN Microelectronics Corporation [34909115EFBB6173839AC2BC86672F67] [07/10/2019] (.ELAN Microelectronics Corporation.) - C:\WINDOWS\System32\ETDService.exe =>.ELAN Microelectronics Corporation [34D1B259D62F6A2EA0133C0B] [08/04/2019] (.GeoGebra GmbH.) - C:\Users\Elève\AppData\Local\GeoGebra_6\Update.exe =>.GeoGebra GmbH [51029B3B9CB48FA076FA2DA87A91DB42] [12/12/2020] (.Epic Games Inc..) - C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win32\EpicGamesLauncher.exe =>.Epic Games Inc. [51029B3B9CB48FA076FA2DA87A91DB42] [12/12/2020] (.Epic Games Inc..) - C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe =>.Epic Games Inc. [51029B3B9CB48FA076FA2DA87A91DB42] [24/07/2020] (.Epic Games Inc..) - C:\ProgramData\Package Cache\{43a03b9c-4770-409c-a999-587b60700b63}\LauncherPrereqSetup_x64.exe =>.Epic Games Inc. [529E3F9FCF7D58D520D607AB74395002] [13/09/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH [529E3F9FCF7D58D520D607AB74395002] [13/09/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH [545034D0A4DDB44C64241BDC36FAA336] [31/07/2020] (.Texas Instruments, Inc..) - C:\WINDOWS\System32\Drivers\tiehdusb.sys =>.Texas Instruments, Inc. [54CCA67C86AD2DDFBB5CE4D41DC7A3E2] [14/09/2019] (.Epic Games Inc..) - C:\ProgramData\Package Cache\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}\LauncherPrereqSetup_x64.exe =>.Epic Games Inc. [56000001475EA46CCAEF0B7481000000000147] [12/06/2018] (.Intel(R) Trust Services.) - C:\WINDOWS\System32\Intel\iCLS Client\lib\SocketHeciServer.exe =>.Intel(R) Trust Services [56000001475EA46CCAEF0B7481000000000147] [12/06/2018] (.Intel(R) Trust Services.) - C:\WINDOWS\System32\Intel\iCLS Client\lib\TPMProvisioningService.exe =>.Intel(R) Trust Services [56000001757376CD78AD000C9A000000000175] [25/10/2018] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_7e88347fb931a239\jhi_service.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group [56000001EE3BA2C54562F3593C0000000001EE] [14/07/2018] (.Intel(R) Rapid Storage Technology.) - C:\WINDOWS\System32\drivers\iaStorAC.sys =>.Intel(R) Rapid Storage Technology [56000001EE3BA2C54562F3593C0000000001EE] [14/07/2018] (.Intel(R) Rapid Storage Technology.) - C:\WINDOWS\System32\drivers\iaStorAfs.sys =>.Intel(R) Rapid Storage Technology [56000001EE3BA2C54562F3593C0000000001EE] [14/07/2018] (.Intel(R) Rapid Storage Technology.) - C:\WINDOWS\System32\iaStorAfsService.exe =>.Intel(R) Rapid Storage Technology [56000005DAB0988313DA8AB3E10000000005DA] [26/11/2018] (.Intel(R) pGFX.) - C:\Windows\System32\DriverStore\FileRepository\oem20.inf_amd64_b71caa8678a5098f\igdkmd64.sys =>.Intel(R) pGFX [56000005DAB0988313DA8AB3E10000000005DA] [26/11/2018] (.Intel(R) pGFX.) - C:\Windows\System32\DriverStore\FileRepository\oem20.inf_amd64_b71caa8678a5098f\IntelCpHDCPSvc.exe =>.Intel(R) pGFX [56000005DAB0988313DA8AB3E10000000005DA] [26/11/2018] (.Intel(R) pGFX.) - C:\Windows\System32\DriverStore\FileRepository\oem20.inf_amd64_b71caa8678a5098f\IntelCpHeciSvc.exe =>.Intel(R) pGFX [56000005DAB0988313DA8AB3E10000000005DA] [26/11/2018] (.Intel(R) pGFX.) - C:\Windows\System32\DriverStore\FileRepository\oem21.inf_amd64_6aef99a0fd5f7d29\IntcDAud.sys =>.Intel(R) pGFX [560000082B1E36C56B00276A8A00000000082B] [19/06/2019] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group [586949448B11998044814E89345A337F] [10/05/2018] (.WDKTestCert build,131474841775766162.) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,131474841775766162 [5D79705FBF306C85642BB86F3FC82031] [20/05/2019] (.Conexant Systems LLC.) - C:\WINDOWS\System32\CxAudioSvc.exe =>.Conexant Systems LLC [5FC81C36CBC87CA8D3CE46E5BC133745] [31/07/2020] (.Texas Instruments.) - C:\Program Files\TI Education\TI Connect CE\TI Connect CE.exe =>.Not verified [6A3DA8377A294DE0E0083812068E90B9] [31/07/2019] (.Sound Research Corporation.) - C:\WINDOWS\System32\SECOMN64.exe =>.Sound Research Corporation [754020F5FC0992BA4DAD6BF986E5C1D7] [30/11/2019] (.WDKTestCert VSAuto,131800073559665678.) - C:\WINDOWS\System32\drivers\RtkBtfilter.sys =>.WDKTestCert VSAuto,131800073559665678 [7FE63AB8AB9D36964BC29EAD7641180A] [15/07/2016] (.NGO.) - C:\WINDOWS\System32\DRIVERS\usb2ser.sys =>.NGO ~ Unselected Options: ~ End of the scan, 9476 items in 13mn11s (2645)(0)