~ ZHPDiag v2021.2.28.283 Par Nicolas Coolman (2021/02/28) ~ Démarré par hp (Administrator) (2021/03/03 14:27:29) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: ~ Mode: Scanner ~ Rapport: C:\Users\hp\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\hp\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 7 Professional, 64-bit Service Pack 1 (Build 7601) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (1) - 0s ~ MSIE: Internet Explorer v11.0.9600.19596 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (10) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows Operating System - Windows(R) 7, OEM_SLP channel System Locked Preinstallation (OEM_SLP) : OK Windows ID Activation : OK ~ Windows Partial Key : 6P6GT Windows License : OK ~ Windows Remaining Initializations Number : 3 Windows Automatic Updates : OK Windows Activation Technologies : OK ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: Intel64 Family 6 Model 23 Stepping 6, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4184.312 MB (70% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 44 GB (28%) free of 156 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: HP-PC ~ User Name: hp ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (1) - 0s ~ Drive C: has 44 GB free of 156 GB (System) ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (11) - 0s [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (27) - 2s [MD5.38AE1B3C38FAEF56FE4907922F0385BA] - 21/01/2017 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [3229696] [Unsigned] =>.Microsoft Corporation [MD5.C36BB659F08F046B139C8D1B980BF1AC] - 30/03/2017 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [46080] [Unsigned] =>.Microsoft Corporation [MD5.94355C28C1970635A31B3FE52EB7CEBA] - 14/07/2009 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [129024] [Unsigned] =>.Microsoft Corporation [MD5.05B14D2A76DD045041963CF0B50E3B91] - 17/12/2019 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [4859392] [Unsigned] =>.Microsoft Corporation [MD5.CA0E2DF49879C57652531331EF5AE632] - 14/08/2019 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [455680] [Unsigned] =>.Microsoft Corporation [MD5.067FA52BFB59A56110A12312EF9AF243] - 21/11/2010 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [232448] [Unsigned] =>.Microsoft Corporation [MD5.9B86DF86D1EFF32893BC3FB49BFAA993] - 08/06/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [357888] [Unsigned] =>.Microsoft Corporation [MD5.4A35D7B172AFF9C6B362D7297568836A] - 08/06/2018 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [269824] [Unsigned] =>.Microsoft Corporation [MD5.2AAF07F577E41E6BECD715A2780B2046] - 10/12/2019 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2651136] [Unsigned] =>.Microsoft Corporation [MD5.744072895AB6B1F0C10E901CC241795B] - 21/01/2017 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [20480] [Unsigned] =>.Microsoft Corporation [MD5.0DC2A9882540DEA4A55B08785E09D8FC] - 04/04/2017 - (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\AFD.sys [496128] [Unsigned] =>.Microsoft Corporation [MD5.C8AA50005E6461D5C2C247DBABBF2008] - 21/01/2017 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [23784] [Unsigned] =>.Microsoft Corporation [MD5.B861DF1DC9CA9259934DBAC5E069681B] - 10/02/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [92672] [Unsigned] =>.Microsoft Corporation [MD5.7200A15FCDDECA736E97D2815A32A54F] - 21/01/2017 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [150016] [Unsigned] =>.Microsoft Corporation [MD5.63705A08981F7EDD376241D6E0A9C2AC] - 25/04/2018 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [115200] [Unsigned] =>.Microsoft Corporation [MD5.45DAAFD1056B8942C5038EFFD285658D] - 21/01/2017 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [122368] [Unsigned] =>.Microsoft Corporation [MD5.55CCD3E5E4DA18FCF0598F42249D47DF] - 21/01/2017 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] [Unsigned] =>.Microsoft Corporation [MD5.9774AA4661A30E0ADCEA48B5A1B9F4B7] - 21/01/2017 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [116224] [Unsigned] =>.Microsoft Corporation [MD5.360F7406B9CEA63F9FA61335233C451A] - 03/01/2020 - (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\MRxSmb.sys [161280] [Unsigned] =>.Microsoft Corporation [MD5.0805034EA6F5273D4CB130D726AA5450] - 21/02/2019 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [262656] [Unsigned] =>.Microsoft Corporation [MD5.1D728E2DA93EE1F7766DE97D0BEEFC57] - 10/02/2019 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1680104] [Unsigned] =>.Microsoft Corporation [MD5.0E75370C05A7AB23E3B05840BA9E1935] - 21/01/2017 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [97280] [Unsigned] =>.Microsoft Corporation [MD5.471815800AE33E6F1C32FB1B97C490CA] - 21/11/2010 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [129536] [Unsigned] =>.Microsoft Corporation [MD5.596C9872717441BF3550927731C1AFE6] - 21/01/2017 - (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [166400] [Unsigned] =>.Microsoft Corporation [MD5.548260A7B8654E024DC30BF8A7C5BAA4] - 14/07/2009 - (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] [Unsigned] =>.Microsoft Corporation [MD5.4DD986720F7CB7A8A5D1226793097B9A] - 29/07/2017 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [117248] [Unsigned] =>.Microsoft Corporation [MD5.B52F1F5F55CD773BA89E5739B82E9C34] - 21/01/2017 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [297192] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (56) - 2s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® O23 - Service: Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG - Antivirus MailScanner WFP Service.) - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) - C:\Program Files (x86)\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG - AntiVir WebGuard WFP Service.) - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe =>.Avira Operations GmbH & Co. KG® O23 - Service: C:\Windows\System32\audiosrv.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\audiosrv.dll (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Avira Service Host (Avira.ServiceHost) . (...) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (.not file.) O23 - Service: Avira Optimizer Host (AviraOptimizerHost) . (...) - C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe (.not file.) O23 - Service: Kaspersky Anti-Virus Service 19.0.0 (AVP19.0.0) . (...) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 19.0.0\avp.exe (.not file.) O23 - Service: C:\Windows\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\Windows\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\Windows\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\certprop.dll (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) - C:\Windows\System32\certprop.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X86 (clr_optimization_v4.0.30319_32) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe =>.Microsoft® O23 - Service: Microsoft .NET Framework NGEN v4.0.30319_X64 (clr_optimization_v4.0.30319_64) . (.Microsoft Corporation - .NET Runtime Optimization Service.) - C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe =>.Microsoft® O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\Windows\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\cscsvc.dll (CscService) . (.Microsoft Corporation - DLL du service CSC.) - C:\Windows\System32\cscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\UtcResources.dll (DiagTrack) . (.Microsoft Corporation - Microsoft Windows Diagnostics Tracking.) - C:\Windows\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\Windows\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wevtsvc.dll (eventlog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\Windows\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\Windows\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Google Update (gupdate) (gupdate) . (...) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.) =>.Google Inc. O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\Windows\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\Windows\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\Windows\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - DLL des services de transport NetBIOS sur T.) - C:\Windows\System32\lmhsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Malwarebytes IService (MBAMIService) . (.Malwarebytes - Malwarebytes IService.) - C:\ProgramData\MB3Install\MBAMIService.exe =>.Malwarebytes Corporation® O23 - Service: C:\Windows\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) - C:\Windows\System32\mmcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\Windows\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\Windows\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\Windows\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\Windows\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\umpnpmgr.dll (PlugPlay) . (.Microsoft Corporation - Service mode utilisateur de Plug-and-Play.) - C:\Windows\System32\umpnpmgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\Windows\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\Windows\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @oleres.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\SCardSvr.dll (SCardSvr) . (.Microsoft Corporation - Serveur de gestion de ressources des cartes.) - C:\Windows\System32\SCardSvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\Windows\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\Windows\System32\Sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\Windows\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\Windows\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\Windows\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\Windows\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\Windows\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dwm.exe,-2000 (UxSms) . (.Microsoft Corporation - Microsoft User Experience Session Managemen.) - C:\Windows\System32\uxsms.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @%ProgramFiles%\Windows Defender\MsMpRes.dll,-103 (WinDefend) . (.Microsoft Corporation - Service Module.) - C:\Program Files\Windows Defender\MpSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Wondershare Application Framework Service (WsAppService) . (.Wondershare - Wondershare Passport.) - C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe =>.Wondershare Technology Co.,Ltd® O23 - Service: C:\Windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\Windows\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wuaueng.dll (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) - C:\Windows\System32\wuaueng.dll [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (73) - 13s SR - Auto [25/01/2021] [ 169672] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® SR - Demand [14/07/2009] [ 491088] (adp94xx) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adp94xx.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 339536] (adpahci) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adpahci.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 182864] (adpu320) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\adpu320.sys =>.Microsoft Windows® SR - Demand [21/01/2017] [ 15080] (aliide) . (.Acer Laboratories Inc..) - C:\Windows\System32\drivers\aliide.sys =>.Microsoft® SR - Demand [21/01/2017] [ 107752] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft® SR - Demand [14/07/2009] [ 194128] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\drivers\amdsbs.sys =>.Microsoft Windows® SR - Boot [21/01/2017] [ 26856] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft® SR - Auto [02/10/2020] [ 1205960] Avira Protection e-mail (AntiVirMailService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [02/10/2020] [ 483432] Avira Planificateur (AntiVirSchedulerService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [02/10/2020] [ 483432] Avira Protection temps réel (AntiVirService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG® SR - Auto [16/01/2021] [ 573960] Avira Protection Web (AntiVirWebService) . (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe =>.Avira Operations GmbH & Co. KG® SR - Demand [14/07/2009] [ 87632] (arc) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\arc.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 97856] (arcsas) . (.Adaptec, Inc..) - C:\Windows\System32\drivers\arcsas.sys =>.Microsoft Windows® SR - Boot [12/06/2019] [ 68152] avdevprot (avdevprot) . (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\DRIVERS\avdevprot.sys =>.Avira Operations GmbH & Co. KG® SR - Auto [20/11/2020] [ 222200] avgntflt (avgntflt) . (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\DRIVERS\avgntflt.sys =>.Avira Operations GmbH & Co. KG® SR - System [07/05/2020] [ 178720] avipbb (avipbb) . (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\DRIVERS\avipbb.sys =>.Avira Operations GmbH & Co. KG® SR - Auto [00/00/0000] [ 0] Avira Service Host (Avira.ServiceHost) . (...) - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (.not file.) [Unsigned] SR - Auto [00/00/0000] [ 0] Avira Optimizer Host (AviraOptimizerHost) . (...) - C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe (.not file.) [Unsigned] SR - System [20/03/2019] [ 36072] avkmgr (avkmgr) . (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\DRIVERS\avkmgr.sys =>.Avira Operations GmbH & Co. KG® SR - Auto [20/03/2019] [ 78600] avnetflt (avnetflt) . (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\DRIVERS\avnetflt.sys =>.Avira Operations GmbH & Co. KG® SR - Auto [00/00/0000] [ 0] Kaspersky Anti-Virus Service 19.0.0 (AVP19.0.0) . (...) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 19.0.0\avp.exe (.not file.) [Unsigned] SR - Boot [20/03/2019] [ 35376] avusbflt (avusbflt) . (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\Drivers\avusbflt.sys =>.Avira Operations GmbH & Co. KG® SR - Demand [10/06/2009] [ 468480] Broadcom NetXtreme II VBD (b06bdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\bxvbda.sys [Unsigned] =>.Broadcom Corporation SR - Demand [10/06/2009] [ 270848] Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0 (b57nd60a) . (.Broadcom Corporation.) - C:\Windows\System32\DRIVERS\b57nd60a.sys [Unsigned] =>.Broadcom Corporation SR - Demand [10/06/2009] [ 18432] Brother USB Mass-Storage Lower Filter Driver (BrFiltLo) . (.Brother Industries, Ltd..) - C:\Windows\System32\drivers\BrFiltLo.sys [Unsigned] =>.Brother Industries, Ltd. SR - Demand [10/06/2009] [ 8704] Brother USB Mass-Storage Upper Filter Driver (BrFiltUp) . (.Brother Industries, Ltd..) - C:\Windows\System32\drivers\BrFiltUp.sys [Unsigned] =>.Brother Industries, Ltd. SR - Demand [14/07/2009] [ 286720] Brother MFC Serial Port Interface Driver (WDM) (Brserid) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\Brserid.sys [Unsigned] =>.Brother Industries Ltd. SR - Demand [10/06/2009] [ 47104] Brother WDM Serial driver (BrSerWdm) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrSerWdm.sys [Unsigned] =>.Brother Industries Ltd. SR - Demand [10/06/2009] [ 14976] Brother MFC USB Fax Only Modem (BrUsbMdm) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrUsbMdm.sys [Unsigned] =>.Brother Industries Ltd. SR - Demand [10/06/2009] [ 14720] Brother MFC USB Serial WDM Driver (BrUsbSer) . (.Brother Industries Ltd..) - C:\Windows\System32\Drivers\BrUsbSer.sys [Unsigned] =>.Brother Industries Ltd. SR - Demand [21/01/2017] [ 17128] (cmdide) . (.CMD Technology, Inc..) - C:\Windows\System32\drivers\cmdide.sys =>.Microsoft® SR - Demand [10/06/2009] [ 3286016] Broadcom NetXtreme II 10 GigE VBD (ebdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\evbda.sys [Unsigned] =>.Broadcom Corporation SR - Demand [14/07/2009] [ 530496] (elxstor) . (.Emulex.) - C:\Windows\System32\drivers\elxstor.sys =>.Microsoft Windows® SS - Demand [00/00/0000] [ 0] Google Chrome Elevation Service (GoogleChromeElevationService) . (...) - C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.150\elevation_service.exe (.not file.) [Unsigned] SR - Auto [00/00/0000] [ 0] Service Google Update (gupdate) (gupdate) . (...) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.) [Unsigned] =>.Google Inc. SS - Demand [00/00/0000] [ 0] Service Google Update (gupdatem) (gupdatem) . (...) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (.not file.) [Unsigned] =>.Google Inc. SR - Demand [10/06/2009] [ 31232] Hauppauge Consumer Infrared Receiver (hcw85cir) . (.Hauppauge Computer Works, Inc..) - C:\Windows\System32\drivers\hcw85cir.sys [Unsigned] =>.Hauppauge Computer Works, Inc. SR - Demand [21/11/2010] [ 78720] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft Windows® SR - Demand [21/01/2017] [ 410344] (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [11/09/2009] [ 6177472] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DRIVERS\igdkmd64.sys [Unsigned] =>.Intel Corporation SR - Demand [14/07/2009] [ 44112] (iirsp) . (.Intel Corp./ICP vortex GmbH.) - C:\Windows\System32\drivers\iirsp.sys =>.Microsoft Windows® SR - Demand [23/12/2020] [ 6005344] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\Windows\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.® SR - Demand [08/01/2017] [ 395504] Pilote de concentrateur Intel(R) USB 3.0 (iusb3hub) . (.Intel Corporation.) - C:\Windows\System32\drivers\iusb3hub.sys =>.Intel Corporation - Client Components Group® SR - Demand [08/01/2017] [ 806128] Pilote du contrôleur d'hôte extensible Intel(R) USB 3.0 (iusb3xhc) . (.Intel Corporation.) - C:\Windows\System32\drivers\iusb3xhc.sys =>.Intel Corporation - Client Components Group® SR - Demand [00/00/0000] [ 0] Kaspersky Security Data Escort Adapter (kltap) . (...) - C:\Windows\System32\DRIVERS\kltap.sys (.not file.) [Unsigned] SS - Demand [00/00/0000] [ 0] klvssbridge64_19.0.0 (klvssbridge64_19.0.0) . (...) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 19.0.0\x64\vssbridge64.exe (.not file.) [Unsigned] SS - Demand [13/06/2018] [ 360072] Logitech Bluetooth Service (LBTServ) . (.Logitech, Inc..) - C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe =>.Logitech Inc® SR - Demand [25/10/2020] [ 63552] Logitech SetPoint KMDF HID Filter Driver (LHidFilt) . (.Logitech, Inc..) - C:\Windows\System32\DRIVERS\LHidFilt.Sys =>.Logitech Inc® SR - Demand [25/10/2020] [ 54336] Logitech SetPoint KMDF Mouse Filter Driver (LMouFilt) . (.Logitech, Inc..) - C:\Windows\System32\DRIVERS\LMouFilt.Sys =>.Logitech Inc® SR - Demand [14/07/2009] [ 114752] (LSI_FC) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_fc.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 106560] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 65600] (LSI_SAS2) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas2.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 115776] (LSI_SCSI) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_scsi.sys =>.Microsoft Windows® SR - Demand [25/10/2020] [ 43584] Logitech SetPoint KMDF USB Filter (LUsbFilt) . (.Logitech, Inc..) - C:\Windows\System32\Drivers\LUsbFilt.Sys =>.Logitech Inc® SR - Auto [26/06/2019] [ 231120] Malwarebytes IService (MBAMIService) . (.Malwarebytes.) - C:\ProgramData\MB3Install\MBAMIService.exe =>.Malwarebytes Corporation® SR - Demand [14/07/2009] [ 35392] (megasas) . (.LSI Corporation.) - C:\Windows\System32\drivers\megasas.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 284736] (MegaSR) . (.LSI Corporation, Inc..) - C:\Windows\System32\drivers\MegaSR.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 51264] (nfrd960) . (.IBM Corporation.) - C:\Windows\System32\drivers\nfrd960.sys =>.Microsoft Windows® SR - Demand [21/01/2017] [ 148200] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft® SR - Demand [21/01/2017] [ 166120] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft® SR - Demand [00/00/0000] [ 0] Phantom TAP-Windows Adapter V9 (phantomtap) . (...) - C:\Windows\System32\DRIVERS\phantomtap.sys (.not file.) [Unsigned] SR - Demand [14/07/2009] [ 1524816] (ql2300) . (.QLogic Corporation.) - C:\Windows\System32\drivers\ql2300.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 128592] (ql40xx) . (.QLogic Corporation.) - C:\Windows\System32\drivers\ql40xx.sys =>.Microsoft Windows® SR - Demand [19/11/2020] [ 1134688] Realtek 8167 NT Driver (RTL8167) . (.Realtek.) - C:\Windows\System32\DRIVERS\Rt64win7.sys =>.Realtek Semiconductor Corp.® SR - Demand [14/07/2009] [ 43584] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\drivers\SiSRaid2.sys =>.Microsoft Windows® SR - Demand [14/07/2009] [ 80464] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\drivers\sisraid4.sys =>.Microsoft Windows® SR - Demand [12/01/2020] [ 38744] (SmbDrvI) . (.Synaptics Incorporated.) - C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated® SR - Demand [14/07/2009] [ 24656] (stexstor) . (.Promise Technology.) - C:\Windows\System32\drivers\stexstor.sys =>.Microsoft Windows® SR - Demand [21/01/2017] [ 17128] (viaide) . (.VIA Technologies, Inc..) - C:\Windows\System32\drivers\viaide.sys =>.Microsoft® SR - Demand [14/07/2009] [ 161872] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\drivers\vsmraid.sys =>.Microsoft Windows® SR - Demand [16/08/2016] [ 159936] (wdm_usb) . (.MBB.) - C:\Windows\System32\DRIVERS\usb2ser.sys =>.NGO® SR - Auto [04/07/2018] [ 495720] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe =>.Wondershare Technology Co.,Ltd® ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (4) - 5s O38 - TASK: {0A6EB7DE-ED26-4DB8-B577-A2166F1D5047} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200] =>.Adobe Inc. O38 - TASK: {20E927A8-201D-4545-A499-DD83E263E5AC} [64Bits][\{5FB1FAE4-12C1-43BA-B2BB-E06D6A62DA8F}] - (.InstallShield Software Corporation - InstallShield® unInstaller.) -- C:\Windows\IsUn040c.exe [327168] =>.InstallShield Software Corporation C:\Windows\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc. C:\Windows\System32\Tasks\{5FB1FAE4-12C1-43BA-B2BB-E06D6A62DA8F} - (.InstallShield Software Corporation.) -- C:\Windows\IsUn040c.exe [C:\Windows\IsUn040c.exe] =>.InstallShield Software Corporation ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (6) - 0s O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe [Unsigned] =>.Intel Corporation O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe [Unsigned] =>.Intel Corporation O4 - HKLM\..\Run: [EvtMgr6] . (.Logitech, Inc. - Logitech SetPoint Event Manager (UNICODE).) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe =>.Logitech Inc® O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] . (.Microsoft Corporation - MCTAdmin.) -- C:\Windows\System32\mctadmin.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [Avira SystrayStartTrigger] . (. - .) -- C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe (.Not File.) =>.SUP.Orphan ---\\ PROCESSUS LANCÉS (13) - 2s [MD5.A5394D455BFE1F5823C3A8DE8F9C61E7] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\Antivirus\sched.exe [483432] [PID.1368] =>.Avira Operations GmbH & Co. KG® [MD5.431B9F2E0D4145164D572671395B4B31] - (.Adobe Inc. - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672] [PID.1912] =>.Adobe Inc.® [MD5.A5394D455BFE1F5823C3A8DE8F9C61E7] - (.Avira Operations GmbH & Co. KG - Antivirus Host Framework Service.) -- C:\Program Files (x86)\Avira\Antivirus\avguard.exe [483432] [PID.1932] =>.Avira Operations GmbH & Co. KG® [MD5.14D31E126FAF501E413714F037BBA01A] - (.Malwarebytes - Malwarebytes IService.) -- C:\ProgramData\MB3Install\MBAMIService.exe [231120] [PID.2028] =>.Malwarebytes Corporation® [MD5.783917D7B24034A340ADA00A6D916B1D] - (.Wondershare - Wondershare Passport.) -- C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe [495720] [PID.1076] =>.Wondershare Technology Co.,Ltd® [MD5.A645E37AD95BDBA95DFACAA9AEA947DA] - (.Avira Operations GmbH & Co. KG - AntiVir shadow copy service.) -- C:\Program Files (x86)\Avira\Antivirus\avshadow.exe [457648] [PID.2212] =>.Avira Operations GmbH & Co. KG® [MD5.4755E801D3DD4BCF349C5A45131CD836] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [385560] [PID.784] [Unsigned] =>.Intel Corporation [MD5.2E9F559A8F646CFAD697C5EF3EFE78C1] - (.Intel Corporation - igfxsrvc Module.) -- C:\Windows\system32\igfxsrvc.exe [491032] [PID.2452] [Unsigned] =>.Intel Corporation [MD5.DF7AAE45A118B23D83AD3030F68B9C0D] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [363544] [PID.2516] [Unsigned] =>.Intel Corporation [MD5.8C23447C2535D4D66169266028A1BF5D] - (.Logitech, Inc. - Logitech SetPoint Event Manager (UNICODE).) -- C:\Program Files\Logitech\SetPointP\SetPoint.exe [3136136] [PID.1112] =>.Logitech Inc® [MD5.C758C57B52B653AAECE74E2EADFE122B] - (.Logitech, Inc. - Logitech KHAL Main Process.) -- C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe [232072] [PID.2912] =>.Logitech Inc® [MD5.D788B3D9F1F160E3F0C1429E4B384FB1] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\hp\Desktop\BUREAU\SECURITE\ZHPSuite.exe [3466904] [PID.3548] [Unsigned] =>.Nicolas Coolman [MD5.E2904F5301B35B2722FAF578D1F7A4D4] - (.VideoLAN - VLC media player.) -- C:\Program Files\VideoLAN\VLC\vlc.exe [984280] [PID.3620] =>.VideoLAN® ---\\ CHROME, Démarrage, Recherche, Extensions (11) - 1s G2 - GCE: Preference [hp][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [hp][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [hp][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [hp][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [hp][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [hp][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [hp][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [hp][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [hp][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. G2 - GCE: Preference [hp][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [hp][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router} ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (1) - 0s P2 - FPN: [HKLM] [Adobe Reader] - (.Adobe Systems Incorporated. Copyright 1994-2010 All Rights Reserved.) -- C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.19597 (winblue_ltsb_escrow.191216-1311)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad) ---\\ INTERNET EXPLORER,Proxy Management (7) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\Windows\System32\Userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s O2 - BHO: Logitech SetPoint [64Bits] - {AF949550-9094-4807-95EC-D1C317803333} . (.Logitech, Inc. - Logitech SetPoint.) -- C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll =>.Logitech Inc® ---\\ RACCOURCIS GLOBAL STARTUP (51) - 8s O4 - GS\Desktop [hp]: AMAZING GRACE 2.lnk . (...) C:\Users\hp\Downloads\Amazing Grace 2 Harmonica (accordschords).mp4 [Unsigned] O4 - GS\Desktop [hp]: BACHIR.lnk . (...) C:\Users\hp\Desktop\BUREAU\PHOTOS\20200817_112022.jpg [Unsigned] O4 - GS\Quicklaunch [hp]: Google Chrome.lnk . (...) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] O4 - GS\Quicklaunch [hp]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Quicklaunch [hp]: Navigateur Opera.lnk . (...) C:\Users\hp\AppData\Local\Programs\Opera\launcher.exe [Unsigned] O4 - GS\sendTo [hp]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [hp]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [hp]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Programs [hp]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Programs [hp]: Navigateur Opera.lnk . (...) C:\Users\hp\AppData\Local\Programs\Opera\launcher.exe [Unsigned] O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Programs [Public]: Navigateur Opera.lnk . (...) C:\Users\hp\AppData\Local\Programs\Opera\launcher.exe [Unsigned] O4 - GS\Accessories [Public]: Command Prompt.lnk . (.Microsoft Corporation - Interpréteur de commandes Windows.) C:\Windows\system32\cmd.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Explorer.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Internet Explorer (No Add-ons).lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe -extoff =>.Microsoft® O4 - GS\SystemTools [Public]: Private Character Editor.lnk . (.Microsoft Corporation - Éditeur de caractères privés.) C:\Windows\system32\eudcedit.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Bluetooth File Transfer Wizard.lnk . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: displayswitch.lnk . (.Microsoft Corporation - Afficher le commutateur.) C:\Windows\system32\displayswitch.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Accessoire du panneau de saisie mathématiqu.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Mobility Center.lnk . (.Microsoft Corporation - Centre de mobilité Windows.) C:\Windows\system32\mblctr.exe /open =>.Microsoft Corporation O4 - GS\Accessories [Public]: NetworkProjection.lnk . (.Microsoft Corporation - Connect to a Network Projector.) C:\Windows\system32\NetProj.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sync Center.lnk . (.Microsoft Corporation - Microsoft Sync Center.) C:\Windows\System32\mobsync.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Welcome Center.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut =>..Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: dfrgui.lnk . (.Microsoft Corporation - Défragmenteur de disque Microsoft®.) C:\Windows\system32\dfrgui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Disk Cleanup.lnk . (.Microsoft Corporation - Gestionnaire de nettoyage de disque pour Wi.) C:\Windows\system32\cleanmgr.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Resource Monitor.lnk . (.Microsoft Corporation - Moniteur de ressources et de performances.) C:\Windows\system32\perfmon.exe /res =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Information.lnk . (.Microsoft Corporation - Informations système.) C:\Windows\system32\msinfo32.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: System Restore.lnk . (.Microsoft Corporation - Restauration du système de Microsoft® Windo.) C:\Windows\system32\rstrui.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Task Scheduler.lnk . (...) C:\Windows\system32\taskschd.msc /s [Unsigned] =>..Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer Reports.lnk . (.Microsoft Corporation - Application post-migration de transfert de.) C:\Windows\system32\migwiz\postmig.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Windows Easy Transfer.lnk . (.Microsoft Corporation - Application Transfert de fichiers et paramè.) C:\Windows\system32\migwiz\migwiz.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Flexera Software LLC - InstallShield.) C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico [Unsigned] =>.Flexera Software LLC O4 - GS\ProgramsCommon [Public]: ImgBurn.lnk . (.LIGHTNING UK! - ImgBurn - The Ultimate Image Burner!.) C:\Program Files (x86)\ImgBurn\ImgBurn.exe [Unsigned] =>.LIGHTNING UK! O4 - GS\ProgramsCommon [Public]: Media Center.lnk . (.Microsoft Corporation - Windows Media Center.) C:\Windows\ehome\ehshell.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Mozilla Thunderbird.lnk . (.Mozilla Corporation - Thunderbird.) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Pale Moon.lnk . (.Moonchild Productions - Pale Moon web browser.) C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver® O4 - GS\ProgramsCommon [Public]: Sidebar.lnk . (.Microsoft Corporation - Gadgets du Bureau Windows.) C:\Program Files (x86)\Windows Sidebar\sidebar.exe /showgadgets =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Anytime Upgrade.lnk . (.Microsoft Corporation - Interface utilisateur de Mise à niveau expr.) C:\Windows\system32\WindowsAnytimeUpgradeUI.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows DVD Maker.lnk . (.Microsoft Corporation - Gravez des images et des vidéo.) C:\Program Files (x86)\DVD Maker\DVDMaker.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{464B7554-AB86-47A7-9717-5D6E7CCCEEF8}: DhcpNameServer = 192.168.42.129 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{BAFA0512-0188-45A3-983E-6138B5E33EC9}: DhcpNameServer = 185.123.227.250 =>.Germany Tettnang Avira Holding Gmbh & Co. Kg O17 - HKLM\System\CCS\Services\Tcpip\..\{D36AA06B-C8E7-44E0-997F-904A1027553C}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (20) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll =>.Microsoft Corporation® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\System32\Userinit.exe =>.Microsoft Corporation ---\\ ÉNUMÈRE LES DONNÉES DE BOOTEXECUTE (2) - 1s O34 - HKLM BootExecute: (ᓧﺈ߾) O34 - HKLM BootExecute: (봰Ќ) ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (10) - 1s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Themes Setup [64Bits] - {2C7339CF-2B09-4501-B3F3-F3508C9228ED} . (.Microsoft Corporation - Microsoft(C) Register Server.) -- C:\Windows\System32\regsvr32.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Enable TLS1.1 and 1.2 [64Bits] - {66C64F22-FC60-4E6C-A6B5-F0D580E680CE} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Disable SSL3 [64Bits] - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (...) -- C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.150\Installer\chrmstp.exe (.not file.) =>.SUP.Various ---\\ LOGICIELS INSTALLÉS (39) - 14s O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-000182442176} [Unsigned] =>.Adobe Systems Incorporated (Hidden) O42 - Logiciel: Avira Software Updater v2.0.6.42639 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {9F45C615-6D95-47B5-BB0C-D78F6D15DE21} [Unsigned] =>.Avira Operations GmbH & Co. KG (Hidden) O42 - Logiciel: Avira v1.2.153.30452 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {161e6084-b0f5-43e8-86d8-09eda5c0893d} =>.Avira Operations GmbH & Co. KG® O42 - Logiciel: Avira v1.2.153.30452 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {426D1710-5DFD-45E9-B11D-464792C5AD35} [Unsigned] =>.Avira Operations GmbH & Co. KG (Hidden) O42 - Logiciel: Intel(R) Graphics Media Accelerator Driver - (.Intel Corporation.) [HKLM][64Bits] -- HDMI =>.Intel Corporation® O42 - Logiciel: Java Auto Updater - (.Oracle Corporation.) [HKLM][64Bits] -- {4A03706F-666A-4037-7777-5F2748764D10} [Unsigned] =>.Oracle Corporation (Hidden) O42 - Logiciel: LibreOffice 6.4.2.2 - (.The Document Foundation.) [HKLM][64Bits] -- {366B3DEE-791D-4044-AC14-4FE2265754BA} [Unsigned] =>.The Document Foundation O42 - Logiciel: Logitech SetPoint 6.69 - (.Logitech.) [HKLM][64Bits] -- sp6 =>.Logitech® O42 - Logiciel: Micro Application - Jeu de Belote - (.Micro Application.) [HKLM][64Bits] -- Jeu de Belote [Unsigned] =>.Micro Application O42 - Logiciel: Microsoft .NET Framework 4.8 - (.Microsoft Corporation.) [HKLM][64Bits] -- {16735AF7-1D8D-3681-94A5-C578A61EC832} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft .NET Framework 4.8 - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033 =>.Microsoft® O42 - Logiciel: Microsoft .NET Framework 4.8 (FRA) - (.Microsoft Corporation.) [HKLM][64Bits] -- {EED6E294-BB0E-32E8-B448-92F2B59EB418} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Silverlight - (.Microsoft Corporation.) [HKLM][64Bits] -- {89F4137D-6C26-4A84-BDB8-2E5A4BB71E00} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5740BD44-B58D-321A-AFC0-6D3D4556DD6C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CB0836EC-B072-368D-82B2-D3470BF95707} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7DAD0258-515C-3DD4-8964-BD714199E0F7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 - (.Microsoft Corporation.) [HKLM][64Bits] -- {E30D8B21-D82D-3211-82CC-0F0A5D1495E8} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33628a12-6787-4b9f-95a1-92449f69fae0} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {d7a6435f-ac9a-4af6-8fdc-ca130d13fac9} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {26AF0C35-55EC-4025-8D83-349E8FB1419F} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {7D0362D5-C699-4403-BC09-0C1DAD1D93AB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B40FC85D-2B12-46E0-B950-E5B27E348793} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EE2E15BB-54C8-4DB0-B1F3-026E3C166991} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Mozilla Thunderbird 78.7.1 (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Thunderbird 78.7.1 (x64 fr) =>.Mozilla Corporation® O42 - Logiciel: Pale Moon 29.0.1 (x64 en-US) - (.Moonchild Productions.) [HKLM][64Bits] -- Pale Moon 29.0.1 (x64 en-US) =>.Mark Straver® O42 - Logiciel: Pale Moon 29.1.0 (x64 en-US) - (.Moonchild Productions.) [HKLM][64Bits] -- Pale Moon 29.1.0 (x64 en-US) =>.Mark Straver® O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp.® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.® O42 - Logiciel: Revo Uninstaller 2.2.2 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1 [Unsigned] =>.VS Revo Group, Ltd. O42 - Logiciel: Update for Microsoft .NET Framework 4.8 (KB4515847) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB4515847 =>.Microsoft® O42 - Logiciel: Update for Microsoft .NET Framework 4.8 (KB4519568) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB4519568 =>.Microsoft® O42 - Logiciel: Update for Microsoft .NET Framework 4.8 (KB4531182) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB4531182 =>.Microsoft® O42 - Logiciel: Update for Microsoft .NET Framework 4.8 (KB4532941) - (.Microsoft Corporation.) [HKLM][64Bits] -- {92FB6C44-E685-45AD-9B20-CADF4CABA132}.KB4532941 =>.Microsoft® O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: WinRAR 5.90 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (123) - 14s HKLM\SOFTWARE\$RegPathCompany HKLM\SOFTWARE\Alienware =>.Alienware HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\CBSTEST =>.CBS Test HKLM\SOFTWARE\Dolby =>.Dolby HKLM\SOFTWARE\DTS =>.Creative Technology HKLM\SOFTWARE\Fortemedia =>.Lugert Europe HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\JreMetrics =>.JreMetrics HKLM\SOFTWARE\Knowles =>.Knowles Electronics HKLM\SOFTWARE\LibreOffice =>.LibreOffice HKLM\SOFTWARE\Logitech =>.Logitech HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Nahimic =>.Nahimic HKLM\SOFTWARE\Nuance =>.Nuance HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\Oracle =>.Oracle HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\Sonic =>.Sonic HKLM\SOFTWARE\SonicFocus =>.Sonic Focus HKLM\SOFTWARE\SoundResearch =>.Sound Research HKLM\SOFTWARE\SRS Labs =>.SRS Labs HKLM\SOFTWARE\Synaptics =>.Synaptics HKLM\SOFTWARE\The Document Foundation =>.The Document Foundation HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\Yamaha APO =>.Yamaha Corp. HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\WOW6432Node\Avira =>.Avira HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Innovative Solutions =>.Innovative Solutions HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\JavaSoft =>.JavaSoft HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\WOW6432Node\Logitech =>.Logitech HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\Micro Application =>.Micro Application HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\Piriform =>.Piriform HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\SRS Labs =>.SRS Labs HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node\X-AVCSD =>.Avira Software HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Glarysoft =>.GlarySoft HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKCU\SOFTWARE\ImgBurn =>.Lightning UK HKCU\SOFTWARE\Innovative Solutions =>.Innovative Solutions HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\Logitech =>.Logitech HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\TAdvCheckList =>.Borland HKCU\SOFTWARE\TGInstallStatus HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation HKCU\SOFTWARE\Thunderbird =>.Thunderbird HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Avira =>.Avira HKU\.DEFAULT\SOFTWARE\Nahimic =>.Nahimic HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform HKU\.DEFAULT\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Glarysoft =>.GlarySoft HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Google =>.Google HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\ImgBurn =>.Lightning UK HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Innovative Solutions =>.Innovative Solutions HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Intel =>.Intel HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\JavaSoft =>.JavaSoft HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Logitech =>.Logitech HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Macromedia =>.Macromedia HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Opera Software =>.Opera Software HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\TAdvCheckList =>.Borland HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\TGInstallStatus HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\The Document Foundation =>.The Document Foundation HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Thunderbird =>.Thunderbird HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\VS Revo Group =>.VS Revo Group HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Wondershare =>.Wondershare HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-2863104357-631332785-904162297-1000\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ CONTENU DES DOSSIERS PROGRAMMES (171) - 5s O43 - CFD: 02/03/2021 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 16/07/2019 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 08/05/2019 - [] D -- C:\Program Files\DVD Maker =>.Aone Software O43 - CFD: 07/05/2019 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 15/05/2019 - [] D -- C:\Program Files\HP =>.Hewlett-Packard O43 - CFD: 15/01/2020 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 10/04/2020 - [] D -- C:\Program Files\LibreOffice =>.LibreOffice O43 - CFD: 23/10/2019 - [] D -- C:\Program Files\Logitech =>.Logitech Inc® O43 - CFD: 07/05/2019 - [] D -- C:\Program Files\Microsoft Security Client =>.Microsoft Corporation O43 - CFD: 27/10/2019 - [] D -- C:\Program Files\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 01/03/2021 - [] D -- C:\Program Files\Mozilla Thunderbird =>.Mozilla O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 02/03/2021 - [] D -- C:\Program Files\Pale Moon =>.Mark Straver® O43 - CFD: 23/10/2019 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 14/07/2009 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 06/01/2021 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 15/05/2019 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group O43 - CFD: 21/01/2017 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/01/2017 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 10/07/2019 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/05/2019 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 21/01/2017 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 21/11/2010 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 12/04/2011 - [] D -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 10/04/2020 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 03/03/2021 - [] D -- C:\Program Files (x86)\Avira =>.Avira Software O43 - CFD: 15/02/2021 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 15/10/2019 - [] D -- C:\Program Files (x86)\directx =>.Microsoft Corporation O43 - CFD: 17/12/2020 - [] D -- C:\Program Files (x86)\ImgBurn =>.Lightning UK O43 - CFD: 02/03/2021 - [0] D -- C:\Program Files (x86)\Innovative Solutions =>.Innovative Solutions O43 - CFD: 23/10/2019 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 15/01/2020 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 02/03/2021 - [] D -- C:\Program Files (x86)\Micro Application =>.Micro Application O43 - CFD: 07/05/2019 - [] D -- C:\Program Files (x86)\Microsoft Security Client =>.Microsoft Corporation O43 - CFD: 27/10/2019 - [] D -- C:\Program Files (x86)\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 07/05/2019 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 10/02/2021 - [] D -- C:\Program Files (x86)\Mozilla Thunderbird =>.Mozilla O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 02/03/2021 - [0] D -- C:\Program Files (x86)\NirSoft =>.NirSoft O43 - CFD: 02/03/2021 - [] D -- C:\Program Files (x86)\Pale Moon =>.Mark Straver® O43 - CFD: 23/10/2019 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 23/10/2019 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation O43 - CFD: 21/01/2017 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/01/2017 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 10/07/2019 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 21/01/2017 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 21/11/2010 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 12/04/2011 - [] D -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 19/03/2020 - [] D -- C:\Program Files (x86)\Wondershare =>.Wondershare O43 - CFD: 27/02/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 07/05/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 12/04/2011 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games =>.Microsoft Corporation O43 - CFD: 10/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.4 =>.LibreOffice O43 - CFD: 23/10/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech =>.Logitech O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 02/03/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Micro Application =>.Micro Application O43 - CFD: 27/10/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight =>.Microsoft Corporation O43 - CFD: 03/03/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group O43 - CFD: 14/07/2009 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 06/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 10/04/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 10/01/2021 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 21/11/2019 - [] D -- C:\ProgramData\Audyssey Labs =>.Audyssey Labs O43 - CFD: 03/03/2021 - [] D -- C:\ProgramData\Avira =>.Avira Software O43 - CFD: 07/05/2019 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 07/05/2019 - [0] SHD -- C:\ProgramData\Favoris =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Favorites =>.Microsoft Corporation O43 - CFD: 23/10/2019 - [] D -- C:\ProgramData\Logishrd =>.Logitech Inc. O43 - CFD: 01/11/2019 - [] D -- C:\ProgramData\MB3Install O43 - CFD: 07/05/2019 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 27/10/2019 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 07/05/2019 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 01/11/2019 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 18/07/2019 - [] D -- C:\ProgramData\OPSWAT O43 - CFD: 02/03/2021 - [0] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 03/03/2021 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 19/03/2020 - [] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 19/03/2020 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 22/09/2019 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 12/09/2019 - [] D -- C:\Program Files (x86)\Common Files\microsoft shared =>.Microsoft Corporation O43 - CFD: 04/01/2021 - [] D -- C:\Program Files (x86)\Common Files\Oracle =>.Oracle O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Program Files (x86)\Common Files\SpeechEngines =>.Microsoft Corporation O43 - CFD: 21/01/2017 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 15/02/2021 - [] D -- C:\Users\hp\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 06/02/2021 - [] D -- C:\Users\hp\AppData\Roaming\dvdcss =>.VideoLan Team O43 - CFD: 17/07/2019 - [0] D -- C:\Users\hp\AppData\Roaming\GlarySoft =>.GlarySoft O43 - CFD: 07/05/2019 - [] D -- C:\Users\hp\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 17/12/2020 - [] D -- C:\Users\hp\AppData\Roaming\ImgBurn =>.Lightning UK O43 - CFD: 02/03/2021 - [0] D -- C:\Users\hp\AppData\Roaming\Innovative Solutions =>.Innovative Solutions O43 - CFD: 06/06/2019 - [] D -- C:\Users\hp\AppData\Roaming\LibreOffice =>.LibreOffice O43 - CFD: 31/05/2019 - [] D -- C:\Users\hp\AppData\Roaming\Logishrd =>.Logitech Inc. O43 - CFD: 01/06/2019 - [] D -- C:\Users\hp\AppData\Roaming\Logitech =>.Logitech O43 - CFD: 12/04/2011 - [0] D -- C:\Users\hp\AppData\Roaming\Media Center Programs =>.Microsoft Corporation O43 - CFD: 19/12/2020 - [] SD -- C:\Users\hp\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 28/09/2019 - [] D -- C:\Users\hp\AppData\Roaming\Moonchild Productions =>.Moonchild Productions O43 - CFD: 22/09/2019 - [] D -- C:\Users\hp\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 04/01/2021 - [0] D -- C:\Users\hp\AppData\Roaming\Sun =>.Oracle O43 - CFD: 07/05/2019 - [] D -- C:\Users\hp\AppData\Roaming\TeamViewer =>.TeamViewer GmbH O43 - CFD: 25/03/2020 - [] D -- C:\Users\hp\AppData\Roaming\TheAeroClock O43 - CFD: 01/11/2019 - [] D -- C:\Users\hp\AppData\Roaming\Thunderbird =>.Thunderbird O43 - CFD: 03/03/2021 - [] D -- C:\Users\hp\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 15/05/2019 - [] D -- C:\Users\hp\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 19/03/2020 - [] D -- C:\Users\hp\AppData\Roaming\Wondershare =>.Wondershare O43 - CFD: 03/03/2021 - [] D -- C:\Users\hp\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 19/12/2020 - [0] D -- C:\Users\hp\AppData\Roaming\Zoom =>.ZOOM O43 - CFD: 15/10/2019 - [] D -- C:\Users\hp\AppData\Local\Adobe =>.Adobe O43 - CFD: 07/05/2019 - [0] SHD -- C:\Users\hp\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 15/05/2019 - [] D -- C:\Users\hp\AppData\Local\Apps =>.Microsoft Corporation O43 - CFD: 15/04/2020 - [] D -- C:\Users\hp\AppData\Local\cache =>.Legitimate O43 - CFD: 03/07/2019 - [] D -- C:\Users\hp\AppData\Local\CEF =>.CEF O43 - CFD: 23/02/2021 - [0] D -- C:\Users\hp\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 11/02/2020 - [0] D -- C:\Users\hp\AppData\Local\Deployment =>.Microsoft Corporation O43 - CFD: 02/03/2021 - [] D -- C:\Users\hp\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 20/02/2021 - [0] D -- C:\Users\hp\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 03/03/2020 - [] D -- C:\Users\hp\AppData\Local\Google =>.Google O43 - CFD: 07/05/2019 - [0] SHD -- C:\Users\hp\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 02/03/2021 - [] D -- C:\Users\hp\AppData\Local\Innovative Solutions =>.Innovative Solutions O43 - CFD: 01/06/2019 - [] D -- C:\Users\hp\AppData\Local\Logishrd =>.Logitech Inc. O43 - CFD: 01/11/2019 - [] D -- C:\Users\hp\AppData\Local\mbamtray =>.Malwarebytes O43 - CFD: 04/11/2019 - [] D -- C:\Users\hp\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 23/09/2019 - [] D -- C:\Users\hp\AppData\Local\Microsoft Corporation =>.Microsoft Corporation O43 - CFD: 28/09/2019 - [] D -- C:\Users\hp\AppData\Local\Moonchild Productions =>.Moonchild Productions O43 - CFD: 22/09/2019 - [] D -- C:\Users\hp\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 03/03/2021 - [] D -- C:\Users\hp\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 03/03/2021 - [] D -- C:\Users\hp\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 07/05/2019 - [0] SHD -- C:\Users\hp\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 28/05/2019 - [] D -- C:\Users\hp\AppData\Local\Thunderbird =>.Thunderbird O43 - CFD: 10/06/2020 - [] D -- C:\Users\hp\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 08/08/2020 - [] D -- C:\Users\hp\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 15/05/2019 - [0] D -- C:\Users\hp\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 15/05/2019 - [] D -- C:\Users\hp\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 27/10/2019 - [] SD -- C:\Users\hp\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 03/03/2021 - [] D -- C:\Users\hp\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 20/02/2021 - [0] D -- C:\Users\hp\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 08/02/2021 - [] D -- C:\Users\hp\Desktop\BUREAU =>.Microsoft Corporation O43 - CFD: 10/02/2021 - [] D -- C:\Users\hp\Desktop\MUSIQUE O43 - CFD: 08/02/2021 - [] D -- C:\Users\hp\Desktop\SPIRITUALITE O43 - CFD: 14/07/2009 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 13/06/2019 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 14/07/2009 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 13/06/2019 - [] RD -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 10/04/2020 - [] D -- C:\Users\hp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 07/05/2019 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 07/05/2019 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 14/07/2009 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 18/10/2019 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe O43 - CFD: 09/07/2019 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Avira =>.Avira Software O43 - CFD: 03/03/2021 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 16/07/2019 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 29/06/2019 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 13/06/2019 - [] -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 14/07/2009 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (3) - 1s O106 - SIOI: Enhanced Storage Icon Overlay Handler Class [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: Sharing Overlay (Private) [SharingPrivate] - {08244EE6-92F0-47f2-9FC9-929BAA2E7235}. (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (25) - 1s O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH2: Compatibility [64Bits] - {1d27f844-3a1f-4410-85ac-14651078412d} . (.Microsoft Corporation - Bibliothèque d’extension de l’onglet Compat.) -- C:\Windows\System32\acppage.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: Gadgets [64Bits] - {6B9228DA-9C15-419e-856C-19E768A13BDC} . (.Microsoft Corporation - Zone de déposé du Volet Windows.) -- C:\Program Files\Windows Sidebar\sbdrop.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\Windows\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (4) - 1s O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation ---\\ ÉNUMÉRATION DES CLÉS StartupReg (5) - 0s O53 - SMSR:HKLM\...\startupreg\HotKeysCmds [Key] [64Bits] . (.Intel Corporation - hkcmd Module.) -- C:\Windows\system32\hkcmd.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\IgfxTray [Key] [64Bits] . (.Intel Corporation - igfxTray Module.) -- C:\Windows\system32\igfxtray.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\Persistence [Key] [64Bits] . (.Intel Corporation - persistence Module.) -- C:\Windows\system32\igfxpers.exe =>.Intel Corporation O53 - SMSR:HKLM\...\startupreg\RTHDVCPL [Key] [64Bits] . (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor O53 - SMSR:HKLM\...\startupreg\SunJavaUpdateSched [Key] [64Bits] . (...) -- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (.not file.) ---\\ LISTE DES PILOTES DU SYSTÈME (306) - 17s O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - 1394 Bus Device Driver.) -- C:\Windows\System32\drivers\1394bus.sys [68096] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\drivers\1394ohci.sys [229888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/02/10 19:35:38 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\drivers\acpi.sys [334528] =>.Microsoft Windows® O58 - SDL:2010/11/21 04:23:47 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\drivers\acpipmi.sys [12800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SAS/SATA Storport Driver.) -- C:\Windows\System32\drivers\adp94xx.sys [491088] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec Windows SATA Storport Driver.) -- C:\Windows\System32\drivers\adpahci.sys [339536] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec StorPort Ultra320 SCSI Driver (X64).) -- C:\Windows\System32\drivers\adpu320.sys [182864] =>.Microsoft Windows® O58 - SDL:2017/04/04 15:53:18 A . (.Microsoft Corporation - Ancillary Function Driver for WinSock.) -- C:\Windows\System32\drivers\afd.sys [496128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:03 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\drivers\agilevpn.sys [60416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/04/19 03:43:45 A . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\drivers\AGP440.sys [60648] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Acer Laboratories Inc. - ALi mini IDE Driver.) -- C:\Windows\System32\drivers\aliide.sys [15080] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Pilote IDE AMD.) -- C:\Windows\System32\drivers\amdide.sys [15080] =>.Microsoft® O58 - SDL:2020/01/03 03:55:43 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdk8.sys [64512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/01/03 03:55:43 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdppm.sys [60928] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Advanced Micro Devices - AHCI 1.2 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [107752] =>.Microsoft® O58 - SDL:2009/07/14 02:52:20 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [194128] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:57:51 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [26856] =>.Microsoft® O58 - SDL:2020/01/03 04:05:05 A . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\drivers\appid.sys [62464] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec RAID Storport Driver.) -- C:\Windows\System32\drivers\arc.sys [87632] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:21 A . (.Adaptec, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [97856] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:10:13 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\drivers\asyncmac.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [23784] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\drivers\ataport.sys [155368] =>.Microsoft® O58 - SDL:2019/06/12 12:24:23 A . (.Avira Operations GmbH & Co. KG - Avira USB Feature Driver.) -- C:\Windows\System32\drivers\avdevprot.sys [68152] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2020/11/20 05:32:03 A . (.Avira Operations GmbH & Co. KG - Avira Minifilter Driver.) -- C:\Windows\System32\drivers\avgntflt.sys [222200] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2020/05/07 03:53:39 A . (.Avira Operations GmbH & Co. KG - Avira Driver for Security Enhancement.) -- C:\Windows\System32\drivers\avipbb.sys [178720] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2019/03/20 18:50:54 A . (.Avira Operations GmbH & Co. KG - Avira Manager Driver.) -- C:\Windows\System32\drivers\avkmgr.sys [36072] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2019/03/20 18:50:54 A . (.Avira Operations GmbH & Co. KG - Avira WFP Network Driver.) -- C:\Windows\System32\drivers\avnetflt.sys [78600] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2019/03/20 18:50:54 A . (.Avira Operations GmbH & Co. KG - Avira USB Filter Driver.) -- C:\Windows\System32\drivers\avusbflt.sys [35376] =>.Avira Operations GmbH & Co. KG® O58 - SDL:2009/06/10 21:34:23 A . (.Broadcom Corporation - Broadcom NetXtreme Gigabit Ethernet NDIS6.x.) -- C:\Windows\System32\drivers\b57nd60a.sys [270848] [Unsigned] =>.Broadcom Corporation O58 - SDL:2009/07/14 02:52:21 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\drivers\battc.sys [28240] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:58:04 A . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\drivers\beep.sys [6656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 00:35:59 A . (.Microsoft Corporation - BLB Drive Driver.) -- C:\Windows\System32\drivers\blbdrive.sys [45056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/07/18 16:18:04 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\drivers\bowser.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Lower.) -- C:\Windows\System32\drivers\BrFiltLo.sys [18432] [Unsigned] =>.Brother Industries, Ltd. O58 - SDL:2009/06/10 21:41:06 A . (.Brother Industries, Ltd. - Windows ME USB Mass-Storage Bulk-Only Upper.) -- C:\Windows\System32\drivers\BrFiltUp.sys [8704] [Unsigned] =>.Brother Industries, Ltd. O58 - SDL:2019/02/07 17:01:53 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\drivers\bridge.sys [95232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:19:07 A . (.Brother Industries Ltd. - Pilote Brother Série I/F (WDM).) -- C:\Windows\System32\drivers\BrSerId.sys [286720] [Unsigned] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother Serial driver (WDM version).) -- C:\Windows\System32\drivers\BrSerWdm.sys [47104] [Unsigned] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB MDM Driver.) -- C:\Windows\System32\drivers\BrUsbMdm.sys [14976] [Unsigned] =>.Brother Industries Ltd. O58 - SDL:2009/06/10 21:41:10 A . (.Brother Industries Ltd. - Brother USB Serial Driver.) -- C:\Windows\System32\drivers\BrUsbSer.sys [14720] [Unsigned] =>.Brother Industries Ltd. O58 - SDL:2019/07/30 02:56:12 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\Windows\System32\drivers\bthenum.sys [41984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:06:52 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\drivers\bthmodem.sys [72192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/07/06 05:56:32 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\Windows\System32\drivers\bthpan.sys [119296] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/07/30 02:56:14 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\Windows\System32\drivers\bthport.sys [556032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/07/30 02:56:11 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\Windows\System32\drivers\BTHUSB.SYS [80384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/06/10 21:34:28 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [468480] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/02/10 16:35:32 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\cdfs.sys [92672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\cdrom.sys [150016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:06:34 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\drivers\circlass.sys [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\drivers\Classpnp.sys [186600] =>.Microsoft® O58 - SDL:2009/07/14 00:31:03 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\drivers\CmBatt.sys [17664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.CMD Technology, Inc. - CMD PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\cmdide.sys [17128] =>.Microsoft® O58 - SDL:2018/11/18 03:43:42 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\drivers\cng.sys [467856] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:52:31 A . (.Microsoft Corporation - Composite Battery Driver.) -- C:\Windows\System32\drivers\compbatt.sys [21584] =>.Microsoft Windows® O58 - SDL:2010/11/21 04:23:47 A . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\drivers\CompositeBus.sys [38912] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:04 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\drivers\crashdmp.sys [40168] =>.Microsoft® O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - Disk Block Verification Filter Driver.) -- C:\Windows\System32\drivers\crcdisk.sys [24144] =>.Microsoft Windows® O58 - SDL:2018/06/29 16:14:19 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\Windows\System32\drivers\csc.sys [516096] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/04/25 16:18:53 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\dfsc.sys [115200] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - System Indexer/Cache Driver.) -- C:\Windows\System32\drivers\discache.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\drivers\disk.sys [73448] =>.Microsoft® O58 - SDL:2017/01/21 15:58:04 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\drivers\Diskdump.sys [27368] =>.Microsoft® O58 - SDL:2010/11/21 04:23:48 A . (.Microsoft Corporation - Dynamic Memory.) -- C:\Windows\System32\drivers\dmvsc.sys [71168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmk.sys [116736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmkaud.sys [5632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\drivers\Dumpata.sys [28736] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:58:11 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\drivers\dumpfve.sys [55016] =>.Microsoft® O58 - SDL:2009/07/14 00:38:28 A . (.Microsoft Corporation - DirectX API Driver.) -- C:\Windows\System32\drivers\dxapi.sys [16896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 00:38:28 A . (.Microsoft Corporation - DirectX Graphics Driver.) -- C:\Windows\System32\drivers\dxg.sys [98816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/08/13 23:19:53 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\drivers\dxgkrnl.sys [988384] =>.Microsoft® O58 - SDL:2019/08/13 23:19:53 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\drivers\dxgmms1.sys [267488] =>.Microsoft® O58 - SDL:2009/07/14 02:47:48 A . (.Emulex - Storport Miniport Driver for LightPulse HBA.) -- C:\Windows\System32\drivers\elxstor.sys [530496] =>.Microsoft Windows® O58 - SDL:2018/02/10 18:25:26 A . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\drivers\errdev.sys [9728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/06/10 21:34:33 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3286016] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/02/10 16:36:06 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\drivers\exfat.sys [195584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/10 16:36:06 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\drivers\fastfat.sys [205312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:00:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\drivers\fdc.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\drivers\fileinfo.sys [70224] =>.Microsoft Windows® O58 - SDL:2009/07/14 00:25:40 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\drivers\filetrace.sys [34304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:00:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\drivers\flpydisk.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/01/01 03:21:11 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\Windows\System32\drivers\fltMgr.sys [288488] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:47:49 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\Windows\System32\drivers\fsdepends.sys [55376] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\drivers\fs_rec.sys [23272] =>.Microsoft® O58 - SDL:2017/01/21 15:58:11 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\drivers\fvevol.sys [196976] =>.Microsoft® O58 - SDL:2019/07/13 09:36:19 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\drivers\FWPKCLNT.SYS [289720] =>.Microsoft® O58 - SDL:2009/07/14 02:47:48 A . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour pla.) -- C:\Windows\System32\drivers\GAGP30KX.SYS [65088] =>.Microsoft Windows® O58 - SDL:2009/06/10 21:31:59 A . (.Hauppauge Computer Works, Inc. - Hauppauge WinTV 885 Consumer IR Driver for.) -- C:\Windows\System32\drivers\hcw85cir.sys [31232] [Unsigned] =>.Hauppauge Computer Works, Inc. O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\hdaudbus.sys [122368] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/08/27 03:34:01 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\HdAudio.sys [350208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 00:31:06 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\drivers\hidbatt.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\Windows\System32\drivers\hidbth.sys [100864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/05 03:44:58 A . (.Microsoft Corporation - Hid Class Library.) -- C:\Windows\System32\drivers\hidclass.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:06:23 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidir.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/05 03:44:58 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\drivers\hidparse.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/03/05 03:44:59 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidusb.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 04:23:47 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [78720] =>.Microsoft Windows® O58 - SDL:2019/12/10 08:56:19 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\drivers\http.sys [754176] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 04:24:24 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\drivers\hwpolicy.sys [14720] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [105472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [410344] =>.Microsoft® O58 - SDL:2009/09/11 17:04:50 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\Windows\System32\drivers\igdkmd64.sys [6177472] [Unsigned] =>.Intel Corporation O58 - SDL:2009/07/14 02:48:04 A . (.Intel Corp./ICP vortex GmbH - Intel/ICP Raid Storport Driver.) -- C:\Windows\System32\drivers\iirsp.sys [44112] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\drivers\intelide.sys [16616] =>.Microsoft® O58 - SDL:2020/01/03 03:55:43 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\intelppm.sys [62464] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 04:24:27 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\drivers\ipfltdrv.sys [82944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\drivers\IPMIDrv.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:04 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\ipnat.sys [116224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:09:02 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\drivers\irda.sys [120320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:08:59 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\drivers\irenum.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/04/19 03:43:21 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\drivers\isapnp.sys [20200] =>.Microsoft® O58 - SDL:2017/01/08 17:43:23 A . (.Intel Corporation - Intel(R) USB 3.0 Hub Driver.) -- C:\Windows\System32\drivers\iusb3hub.sys [395504] =>.Intel Corporation - Client Components Group® O58 - SDL:2017/01/08 17:43:23 A . (.Intel Corporation - Intel(R) USB 3.0 eXtensible Host Controller.) -- C:\Windows\System32\drivers\iusb3xhc.sys [806128] =>.Intel Corporation - Client Components Group® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\drivers\kbdclass.sys [50408] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\drivers\kbdhid.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/08/28 06:50:21 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\drivers\ks.sys [243200] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/01/03 04:37:18 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecdd.sys [96992] =>.Microsoft® O58 - SDL:2020/01/03 04:36:58 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecpkg.sys [155360] =>.Microsoft® O58 - SDL:2009/07/14 01:00:19 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\drivers\ksthunk.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/25 08:32:28 A . (.Logitech, Inc. - Logitech HID Filter Driver..) -- C:\Windows\System32\drivers\LHidFilt.Sys [63552] =>.Logitech Inc® O58 - SDL:2009/07/14 01:08:51 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\drivers\lltdio.sys [60928] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/25 08:32:30 A . (.Logitech, Inc. - Logitech Mouse Filter Driver..) -- C:\Windows\System32\drivers\LMouFilt.Sys [54336] =>.Logitech Inc® O58 - SDL:2020/12/17 11:44:31 A . (.Logitech, Inc. - Logitech Non-Plug and Play Driver..) -- C:\Windows\System32\drivers\LNonPnP.sys [18960] =>.Logitech® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT FC Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_fc.sys [114752] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [106560] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [65600] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - LSI Fusion-MPT SCSI Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_scsi.sys [115776] =>.Microsoft Windows® O58 - SDL:2019/03/29 02:36:55 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\Windows\System32\drivers\luafv.sys [114688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/25 08:32:34 A . (.Logitech, Inc. - Logitech USB Filter Driver..) -- C:\Windows\System32\drivers\LUsbFilt.sys [43584] =>.Logitech Inc® O58 - SDL:2009/07/14 01:01:06 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\drivers\mcd.sys [22016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [35392] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:48:04 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\MegaSR.sys [284736] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\drivers\modem.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/09/10 02:52:59 A . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\drivers\monitor.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:48:27 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\drivers\mouclass.sys [49216] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:00:20 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\drivers\mouhid.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/06/12 16:11:00 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\drivers\mountmgr.sys [94440] =>.Microsoft® O58 - SDL:2016/08/25 08:46:12 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\Windows\System32\drivers\MpFilter.sys [295000] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Pilote du bus de prise en charge des chemin.) -- C:\Windows\System32\drivers\mpio.sys [165096] =>.Microsoft® O58 - SDL:2018/08/10 16:27:40 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\drivers\mpsdrv.sys [77312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 16:09:51 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\drivers\mrxdav.sys [142336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/01/03 03:57:21 A . (.Microsoft Corporation - Windows NT SMB Minirdr.) -- C:\Windows\System32\drivers\mrxsmb.sys [161280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/01/03 03:57:00 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\drivers\mrxsmb10.sys [291328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/01/03 03:56:59 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\drivers\mrxsmb20.sys [129536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - MS AHCI 1.0 Standard Driver.) -- C:\Windows\System32\drivers\msahci.sys [30952] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Module spécifique de périphériques Microsof.) -- C:\Windows\System32\drivers\msdsm.sys [143080] =>.Microsoft® O58 - SDL:2019/02/03 16:36:04 A . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\drivers\msfs.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:06:24 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/04/19 03:42:25 A . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\drivers\msisadrv.sys [15080] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\drivers\msiscsi.sys [275176] =>.Microsoft® O58 - SDL:2009/07/14 01:00:18 A . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\drivers\mskssrv.sys [11136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:00:17 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\drivers\mspclock.sys [7168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:00:17 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\drivers\mspqm.sys [6784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/11/05 22:23:14 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\drivers\msrpc.sys [368352] =>.Microsoft® O58 - SDL:2019/04/19 03:43:43 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\drivers\mssmbios.sys [31976] =>.Microsoft® O58 - SDL:2009/07/14 01:00:17 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\drivers\mstee.sys [8064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:02:08 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\drivers\MTConfig.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:14 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiple.) -- C:\Windows\System32\drivers\mup.sys [108776] =>.Microsoft® O58 - SDL:2018/07/06 17:09:54 A . (.Microsoft Corporation - Pilote NDIS 6.20.) -- C:\Windows\System32\drivers\ndis.sys [947904] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:08:13 A . (.Microsoft Corporation - NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\drivers\ndiscap.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/12/08 03:47:13 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\drivers\ndistapi.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:04 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\drivers\ndisuio.sys [56832] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 04:24:08 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\drivers\ndiswan.sys [164352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/12/08 03:47:15 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\drivers\ndproxy.sys [58368] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/01/01 02:55:00 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\drivers\netbios.sys [45056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/21 16:37:54 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netbt.sys [262656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/07/13 09:35:09 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\drivers\netio.sys [378808] =>.Microsoft® O58 - SDL:2009/07/14 02:48:26 A . (.IBM Corporation - IBM ServeRAID Controller Driver.) -- C:\Windows\System32\drivers\nfrd960.sys [51264] =>.Microsoft Windows® O58 - SDL:2016/08/25 08:46:12 A . (.Microsoft Corporation - Microsoft Network Realtime Inspection Drive.) -- C:\Windows\System32\drivers\NisDrvWFP.sys [135928] =>.Microsoft® O58 - SDL:2020/01/03 03:55:59 A . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\drivers\npfs.sys [44544] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/08/11 06:58:55 A . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\drivers\nsiproxy.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/02/10 17:10:47 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [1680104] =>.Microsoft® O58 - SDL:2009/07/14 00:19:38 A . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\drivers\null.sys [6144] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [148200] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [166120] =>.Microsoft® O58 - SDL:2019/04/19 03:42:37 A . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\drivers\NV_AGP.SYS [122600] =>.Microsoft® O58 - SDL:2017/09/13 16:05:20 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\drivers\nwifi.sys [324608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - 1394 OpenHCI Port Driver.) -- C:\Windows\System32\drivers\ohci1394.sys [72832] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/01/01 02:55:05 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\drivers\pacer.sys [131584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\parport.sys [97280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:04 A . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\drivers\partmgr.sys [74984] =>.Microsoft® O58 - SDL:2019/04/19 03:44:22 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\drivers\pci.sys [185064] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\pciide.sys [12520] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\drivers\pciidex.sys [48872] =>.Microsoft® O58 - SDL:2009/07/14 02:45:45 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\drivers\pcmcia.sys [220752] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:45 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\drivers\pcw.sys [50768] =>.Microsoft Windows® O58 - SDL:2019/06/12 16:01:52 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\drivers\PEAuth.sys [663552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\drivers\portcls.sys [230400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/01/03 03:55:43 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\processr.sys [60928] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:45:46 A . (.QLogic Corporation - QLogic Fibre Channel Stor Miniport Driver.) -- C:\Windows\System32\drivers\ql2300.sys [1524816] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:45 A . (.QLogic Corporation - QLogic iSCSI Storport Miniport Driver.) -- C:\Windows\System32\drivers\ql40xx.sys [128592] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:09:48 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\Windows\System32\drivers\qwavedrv.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:10:09 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\drivers\rasacd.sys [14848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 04:24:33 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\rasl2tp.sys [129536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:03 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\drivers\raspppoe.sys [92672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:03 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\drivers\raspptp.sys [111104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:10:25 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\drivers\rassstp.sys [83968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/09/10 02:49:51 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\Windows\System32\drivers\rdbss.sys [317440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:17:46 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\drivers\rdpbus.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:16:34 A . (.Microsoft Corporation - RDP Miniport.) -- C:\Windows\System32\drivers\RDPCDD.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:11 A . (.Microsoft Corporation - Microsoft RDP Device redirector.) -- C:\Windows\System32\drivers\rdpdr.sys [166400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:16:34 A . (.Microsoft Corporation - RDP Encoder Miniport.) -- C:\Windows\System32\drivers\RDPENCDD.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:16:35 A . (.Microsoft Corporation - RDP Reflector Driver Miniport.) -- C:\Windows\System32\drivers\RDPREFMP.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:48:09 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\drivers\rdpvideominiport.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - Pilote de pile RDP Terminal.) -- C:\Windows\System32\drivers\rdpwd.sys [212992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/01/01 03:21:11 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\drivers\rdyboost.sys [213736] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:06:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\Windows\System32\drivers\rfcomm.sys [158720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:00 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\drivers\rmcast.sys [146944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:03 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\drivers\RNDISMP.sys [41472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:10:47 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\drivers\rootmdm.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:08:51 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\Windows\System32\drivers\rspndr.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/19 19:10:22 A . (.Realtek - Realtek 8125/8136/8168/8169 NDIS 6.20 64-bi.) -- C:\Windows\System32\drivers\Rt64win7.sys [1134688] =>.Realtek Semiconductor Corp.® O58 - SDL:2020/12/23 18:20:22 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\Windows\System32\drivers\RTKVHD64.sys [6005344] =>.Realtek Semiconductor Corp.® O58 - SDL:2010/11/21 04:23:47 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\drivers\sbp2port.sys [103808] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:58:14 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\Windows\System32\drivers\scfilter.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 04:24:00 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\drivers\scsiport.sys [171392] =>.Microsoft Windows® O58 - SDL:2009/06/10 21:37:19 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] [Unsigned] =>.Rovi Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\drivers\serenum.sys [23552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\Windows\System32\drivers\serial.sys [94208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:00:20 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\drivers\sermouse.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Small Form Factor Disk Driver.) -- C:\Windows\System32\drivers\sffdisk.sys [14848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Small Form Factor MMC Protocol Driver.) -- C:\Windows\System32\drivers\sffp_mmc.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Small Form Factor SD Protocol Driver.) -- C:\Windows\System32\drivers\sffp_sd.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:01:02 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\drivers\sfloppy.sys [16896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:45:45 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [43584] =>.Microsoft Windows® O58 - SDL:2009/07/14 02:45:46 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [80464] =>.Microsoft Windows® O58 - SDL:2009/07/14 01:09:09 A . (.Microsoft Corporation - SMB Transport driver.) -- C:\Windows\System32\drivers\smb.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/01/12 21:18:00 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\Windows\System32\drivers\Smb_driver_Intel.sys [38744] =>.Synaptics Incorporated® O58 - SDL:2009/07/14 01:00:35 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\drivers\smclib.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - loader for security processor.) -- C:\Windows\System32\drivers\spldr.sys [19008] =>.Microsoft Windows® O58 - SDL:2009/06/10 21:48:43 A . (.Microsoft Corporation - security processor.) -- C:\Windows\System32\drivers\spsys.sys [426496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/01/03 03:57:25 A . (.Microsoft Corporation - Pilote de serveur.) -- C:\Windows\System32\drivers\srv.sys [464384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/01/03 03:57:08 A . (.Microsoft Corporation - Smb 2.0 Server driver.) -- C:\Windows\System32\drivers\srv2.sys [406016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/01/03 03:57:00 A . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\drivers\srvnet.sys [169984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:45:55 A . (.Promise Technology - Promise SuperTrak EX Series Driver for Win.) -- C:\Windows\System32\drivers\stexstor.sys [24656] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\Windows\System32\drivers\stornvme.sys [50408] =>.Microsoft® O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\drivers\storport.sys [192232] =>.Microsoft® O58 - SDL:2010/11/21 04:23:48 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\drivers\storvsc.sys [34688] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\drivers\stream.sys [69888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/04/19 03:42:25 A . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\drivers\swenum.sys [12136] =>.Microsoft® O58 - SDL:2009/07/14 01:01:04 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\drivers\tape.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/07/13 09:35:09 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\drivers\tcpip.sys [1894840] =>.Microsoft® O58 - SDL:2017/01/21 16:06:43 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\drivers\tcpipreg.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 04:24:01 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\drivers\tdi.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - Named Pipe Transport Driver.) -- C:\Windows\System32\drivers\tdpipe.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - TCP Transport Driver.) -- C:\Windows\System32\drivers\tdtcp.sys [23552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/07/29 15:56:30 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [117248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/04/19 03:43:21 A . (.Microsoft Corporation - Remote Desktop Server Driver.) -- C:\Windows\System32\drivers\termdd.sys [63208] =>.Microsoft® O58 - SDL:2017/01/21 15:48:09 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\Windows\System32\drivers\terminpt.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/08/13 22:45:28 A . (.Microsoft Corporation - TS Security Filter Driver.) -- C:\Windows\System32\drivers\tssecsrv.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:50:07 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\Windows\System32\drivers\TsUsbFlt.sys [56832] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:50:07 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\Windows\System32\drivers\TsUsbGD.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\drivers\tunnel.sys [125440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\drivers\UAGP35.SYS [64080] =>.Microsoft Windows® O58 - SDL:2019/02/10 16:36:11 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\drivers\udfs.sys [328192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/04/19 03:43:59 A . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à proce.) -- C:\Windows\System32\drivers\ULIAGPKX.SYS [64232] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\drivers\umbus.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:06:52 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\drivers\umpass.sys [9728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/08/16 02:18:34 A . (.MBB - USB Modem/Serial Device Driver.) -- C:\Windows\System32\drivers\usb2ser.sys [159936] =>.NGO® O58 - SDL:2017/01/21 15:58:03 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\drivers\usb8023.sys [19968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 04:24:11 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\drivers\USBCAMD2.sys [32896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/05/02 16:32:35 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\drivers\usbccgp.sys [99840] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\drivers\usbcir.sys [100864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/05/02 16:32:25 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\drivers\usbd.sys [7808] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/05/02 16:32:31 A . (.Microsoft Corporation - Pilote de miniport eUSB EHCI.) -- C:\Windows\System32\drivers\usbehci.sys [56320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/05/02 16:32:58 A . (.Microsoft Corporation - Default Hub Driver for USB.) -- C:\Windows\System32\drivers\usbhub.sys [344064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/05/02 16:32:29 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbohci.sys [25600] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/05/02 16:32:31 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\drivers\usbport.sys [325632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:38:18 A . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\drivers\usbprint.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:58:11 A . (.Microsoft Corporation - Gestionnaire de stratégie de redirection US.) -- C:\Windows\System32\drivers\usbrpm.sys [31744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - USB Mass Storage Class Driver.) -- C:\Windows\System32\drivers\USBSTOR.SYS [91648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/05/02 16:32:28 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbuhci.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/04/19 03:42:46 A . (.Microsoft Corporation - Énumérateur racine de lecteur virtuel.) -- C:\Windows\System32\drivers\vdrvroot.sys [36064] =>.Microsoft® O58 - SDL:2009/07/14 00:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vga.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 00:38:47 A . (.Microsoft Corporation - VGA/Super VGA Video Driver.) -- C:\Windows\System32\drivers\vgapnp.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\drivers\vhdmp.sys [214248] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [17128] =>.Microsoft® O58 - SDL:2020/01/03 04:01:17 A . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\drivers\videoprt.sys [129536] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Virtual Machine Bus.) -- C:\Windows\System32\drivers\vmbus.sys [199400] =>.Microsoft® O58 - SDL:2010/11/21 04:23:48 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\drivers\VMBusHID.sys [21760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 04:23:48 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\drivers\vms3cap.sys [6656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/11/21 04:23:48 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\Windows\System32\drivers\vmstorfl.sys [46464] =>.Microsoft Windows® O58 - SDL:2019/04/19 03:42:25 A . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\drivers\volmgr.sys [68328] =>.Microsoft® O58 - SDL:2017/07/07 16:33:36 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\Windows\System32\drivers\volmgrx.sys [363752] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [297192] =>.Microsoft® O58 - SDL:2009/07/14 02:45:55 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [161872] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:57:53 A . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\drivers\vwifibus.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:53 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\drivers\vwififlt.sys [60416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:57:53 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\drivers\vwifimp.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 01:02:07 A . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\drivers\wacompen.sys [27776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/12/08 03:47:22 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\drivers\wanarp.sys [88576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 00:37:35 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\drivers\watchdog.sys [42496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - Microsoft Watchdog Timer Driver.) -- C:\Windows\System32\drivers\wd.sys [21056] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\drivers\Wdf01000.sys [785624] =>.Microsoft® O58 - SDL:2017/01/21 15:48:55 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\drivers\WdfLdr.sys [54376] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:58:02 A . (.Microsoft Corporation - WFP NDIS 6.20 Lightweight Filter Driver.) -- C:\Windows\System32\drivers\wfplwf.sys [19688] =>.Microsoft® O58 - SDL:2009/07/14 02:45:56 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\drivers\wimmount.sys [22096] =>.Microsoft Windows® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\drivers\winhv.sys [51944] =>.Microsoft® O58 - SDL:2017/01/21 15:57:51 A . (.Microsoft Corporation - Windows USB Class Driver BETA.) -- C:\Windows\System32\drivers\winusb.sys [42496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/02/10 18:25:26 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\drivers\wmiacpi.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/07/14 02:45:55 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\drivers\wmilib.sys [16464] =>.Microsoft Windows® O58 - SDL:2019/08/20 04:59:17 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\drivers\ws2ifsl.sys [22016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:49:01 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFPf.sys [87040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/01/21 15:49:01 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFRd.sys [198656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/10 10:36:36 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\clfs.sys [375008] =>.Microsoft® O58 - SDL:2019/12/10 09:01:33 A . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [3233280] [Unsigned] =>.Microsoft Corporation ---\\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (12) - 1s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [Unsigned] (.not file.) O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Moonchild Productions - Pale Moon web browser.) -- C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Moonchild Productions - Pale Moon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Moonchild Productions - Pale Moon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (...) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (.not file.) O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Moonchild Productions - Pale Moon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 0s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (33) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [71680] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [80384] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [236032] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [794624] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [863232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AudioSrv (AudioSrv) . (.Microsoft Corporation - Service Audio Windows.) -- C:\Windows\System32\audiosrv.dll [680960] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [99328] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire de connexions d’accès distant.) -- C:\Windows\System32\rasmans.dll [344576] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [97792] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [64512] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [358912] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TermService (TermService) . (.Microsoft Corporation - Gestionnaire des connexions distantes du se.) -- C:\Windows\System32\termsrv.dll [688128] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [2651136] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [849920] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [371712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [572416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [30720] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [70144] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [156672] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [67584] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [242688] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [128000] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135680] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [111104] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1110528] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [90624] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [86016] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [225280] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [44544] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [100864] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [193536] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (2) - 1s O87 - FAEL: "TCP Query User{1E3F39CA-BED2-4909-BCCD-5635CE6DEC91}C:\program files\videolan\vlc\vlc.exe" [In-None-P6-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe =>.VideoLAN® O87 - FAEL: "UDP Query User{4E2194E9-C8BE-4186-8D96-77D48F19017A}C:\program files\videolan\vlc\vlc.exe" [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- C:\program files\videolan\vlc\vlc.exe =>.VideoLAN® ---\\ CODES PRODUITS LOGICIELS (18) - 1s O90 - PUC: "12B8D03ED28D112328CCF0A0D541598E" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "44DB0475D85BA123FA0CD6D35465DDC6" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "492E6DEEE0BB8E234B84292F5BE94B81" [HKLM] . (.Microsoft .NET Framework 4.8 (FRA).) =>.Microsoft Corporation O90 - PUC: "53C0FA62CE555204D83843E9F81B14F9" [HKLM] . (.Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29325.) =>.Microsoft Corporation O90 - PUC: "5D2630D7996C3044CB90C0D1DAD139BA" [HKLM] . (.Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29325.) =>.Microsoft Corporation O90 - PUC: "68AB67CA408033019195001028441267" [HKLM] . (.Adobe Refresh Manager.) -- C:\Windows\Installer\{AC76BA86-0804-1033-1959-000182442176}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "7FA53761D8D11863495A5C876AE18C23" [HKLM] . (.Microsoft .NET Framework 4.8.) =>.Microsoft Corporation O90 - PUC: "8520DAD7C5154DD39846DB1714990E7F" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "BB51E2EE8C450BD41B3F20E6C3619619" [HKLM] . (.Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29325.) =>.Microsoft Corporation O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "CE6380BC270BD863282B3D74B09F7570" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660.) =>.Microsoft Corporation O90 - PUC: "D58CF04B21B20E649B055E2BE7437839" [HKLM] . (.Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29325.) =>.Microsoft Corporation O90 - PUC: "D7314F9862C648A4DB8BE2A5B47BE100" [HKLM] . (.Microsoft Silverlight.) -- C:\Windows\Installer\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}\ARPIcon =>.Microsoft Corporation O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "EED3B663D1974404CA41F42E627545AB" [HKLM] . (.LibreOffice 6.4.2.2.) -- C:\Windows\Installer\{366B3DEE-791D-4044-AC14-4FE2265754BA}\soffice.ico =>.Open Source O90 - PUC: "F60730A4A66673047777F5728467D401" [HKLM] . (.Java Auto Updater.) =>.Sun Microsystems ---\\ PACKAGES WINDOWS INSTALLER (33) - 51s [MD5.15880BD72A8417CDC60DFBFBF0DA6212] [WIS][2021/01/04 04:07:26] (.Oracle Corporation - Java SE Runtime Environment 8 Update 271.) -- C:\Windows\Installer\12fb54.msi [50700288] =>.Oracle Corporation [MD5.DE24061BCDC0C5F82D161736AD7F99F6] [WIS][2021/01/04 04:07:27] (.Oracle Corporation - Java Auto Updater.) -- C:\Windows\Installer\12fb61.msi [897024] =>.Oracle Corporation [MD5.B849268DBAA202E2184F731441E17F3A] [WIS][2020/04/10 07:13:41] (.The Document Foundation - LibreOffice 6.4.) -- C:\Windows\Installer\16754c.msi [312602624] =>.The Document Foundation [MD5.FEBE1526F030158F0A1E51466393965D] [WIS][2020/11/20 16:21:12] (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Windows\Installer\1f1e4.msi [5284012] =>.Avira Operations GmbH & Co. KG [MD5.FEBE1526F030158F0A1E51466393965D] [WIS][2020/11/20 16:21:12] (.Avira Operations GmbH & Co. KG - Avira.) -- C:\Windows\Installer\20026.msi [5284012] =>.Avira Operations GmbH & Co. KG [MD5.6BD2B7DB7EA2525AB6281D3B55ADBB2B] [WIS][2019/12/26 07:42:58] (.Oracle Corporation - Java SE Runtime Environment 8 Update 231.) -- C:\Windows\Installer\3d13f9.msi [73220096] =>.Oracle Corporation [MD5.AF40B44B6CB7709EE8F3944CAF8DF69D] [WIS][2019/05/07 09:52:31] (.Google, Inc. - Google Chrome Installer.) -- C:\Windows\Installer\54703.msi [48771072] =>.Google, Inc. [MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 09:41:29] (.Adobe Systems Incorporated.) -- C:\Windows\Installer\54774.msi [2805760] =>.Adobe Systems Incorporated [MD5.A2DFC929659245FD68CA64318462D8DC] [WIS][2020/01/15 09:50:06] (.Oracle Corporation - Java SE Runtime Environment 8 Update 241.) -- C:\Windows\Installer\842716.msi [73732096] =>.Oracle Corporation [MD5.C7A4D12ED5FFBC57A648D77EB52FBBE0] [WIS][2020/04/15 09:04:14] (.Oracle Corporation - Java SE Runtime Environment 8 Update 251.) -- C:\Windows\Installer\8cb255.msi [74194944] =>.Oracle Corporation [MD5.EEA67CBFC242AF7172521757388B33D2] [WIS][2021/02/12 05:47:13] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\Windows\Installer\bf09f.msi [1056768] =>.Adobe Systems Incorporated [MD5.DB596E2ADC480687F78F34B7D452D2CB] [WIS][2020/03/16 07:28:35] (.Adobe Inc..) -- C:\Windows\Installer\1118da.msp [8130560] =>.Adobe Inc. [MD5.B2D96888BC6646EBDEEFB59B363FD015] [WIS][2019/12/09 09:07:55] (.Adobe Inc..) -- C:\Windows\Installer\18cf5af.msp [30273536] =>.Adobe Inc. [MD5.04B8B2DEC9DFE83D56183D74F3ED40FB] [WIS][2019/08/22 12:14:18] (.Adobe Inc..) -- C:\Windows\Installer\1ad21b3.msp [2002944] =>.Adobe Inc. [MD5.59E0FCA0A7F48848A6EF34ED7AC987C0] [WIS][2019/06/13 13:38:00] (.Adobe Inc..) -- C:\Windows\Installer\21b5c97.msp [2260992] =>.Adobe Inc. [MD5.B88274DA8D68D49732CC28A328885C98] [WIS][2020/11/23 11:11:53] (.Adobe Inc..) -- C:\Windows\Installer\24281d5.msp [6557696] =>.Adobe Inc. [MD5.7F1419CD81DEB4E238B7F0426B0782B7] [WIS][2020/05/11 07:43:48] (.Adobe Inc..) -- C:\Windows\Installer\24d34c1.msp [50810880] =>.Adobe Inc. [MD5.16551A09D3B9A3BC9049D098FBB4D529] [WIS][2019/05/13 07:57:34] (.Adobe Inc..) -- C:\Windows\Installer\27e7c10.msp [59400192] =>.Adobe Inc. [MD5.BD4173F416AC180D7AD46CB583BAB949] [WIS][2020/05/21 17:16:51] (.Adobe Inc..) -- C:\Windows\Installer\28b0cce.msp [1392640] =>.Adobe Inc. [MD5.5705BA59CE2D386789436E2C34FC5635] [WIS][2019/12/19 09:53:18] (.Adobe Inc..) -- C:\Windows\Installer\30e656c.msp [1863680] =>.Adobe Inc. [MD5.31A1DBE1A433F065C401CD0A73642712] [WIS][2019/11/13 12:16:36] (.Adobe Inc..) -- C:\Windows\Installer\7945192.msp [1527808] =>.Adobe Inc. [MD5.59776CD5E3E33907213B1E8249F64A02] [WIS][2020/11/02 07:52:52] (.Adobe Inc..) -- C:\Windows\Installer\a6e5c.msp [20647936] =>.Adobe Inc. [MD5.923228256AD8BBCA145AE48027AA92BF] [WIS][2020/06/02 13:40:08] (.Adobe Inc..) -- C:\Windows\Installer\b87d8.msp [3026944] =>.Adobe Inc. [MD5.AC729EF5FD5047779136DD8670413E03] [WIS][2020/07/31 04:39:02] (.Adobe Inc..) -- C:\Windows\Installer\ba63a.msp [70844416] =>.Adobe Inc. [MD5.16CD2BA3438D2627805A64D0F4DC063E] [WIS][2020/08/19 12:46:52] (.Adobe Inc..) -- C:\Windows\Installer\c1c57.msp [2781184] =>.Adobe Inc. [MD5.497275FFB9E10B5A29223D2A99322F49] [WIS][2020/02/10 08:01:58] (.Adobe Inc..) -- C:\Windows\Installer\cc6cba.msp [25227264] =>.Adobe Inc. [MD5.3F05B763DB06D5375D569FF10EAC1CF8] [WIS][2019/04/08 07:22:42] (.Adobe Inc..) -- C:\Windows\Installer\cd18407.msp [7155712] =>.Adobe Inc. [MD5.11F7E4FF1AEFD307E111CA25022CD840] [WIS][2020/12/09 12:35:08] (.Adobe Inc..) -- C:\Windows\Installer\cde577.msp [3039232] =>.Adobe Inc. [MD5.EF3A7808FC4FED0EBC2F9C0DE78620D8] [WIS][2019/08/01 01:06:00] (.Adobe Inc..) -- C:\Windows\Installer\cf76b.msp [239976448] =>.Adobe Inc. [MD5.F82BDB155BDC9BFEE380D077D1119380] [WIS][2019/10/16 23:41:59] (.Adobe Inc..) -- C:\Windows\Installer\d8b0c.msp [242802688] =>.Adobe Inc. [MD5.6C872B8971E67A78A683FD192919AB70] [WIS][2020/09/23 06:58:22] (.Adobe Inc..) -- C:\Windows\Installer\e63f8.msp [33984512] =>.Adobe Inc. [MD5.2CD061E09E48D7EFD5571169C5BB1386] [WIS][2019/10/24 13:03:06] (.Adobe Inc..) -- C:\Windows\Installer\ea7ca.msp [4616192] =>.Adobe Inc. [MD5.2AD3AE06875E8C704DA9F109422277CF] [WIS][2020/07/06 13:20:53] (.Adobe Inc..) -- C:\Windows\Installer\ff897d4.msp [5853184] =>.Adobe Inc. ---\\ FEATURE CONTROL. (138) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AviraSoftwareUpdater.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Avira Safe Shopping.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbamtray.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:mbam.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_ISO_2022_JP_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HIGH_CONTRAST_BACKGROUND_IMAGES]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:sllauncher.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:ehexthost32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:ehexthost32.exe =>.Legitimate ---\\ OBSERVATEURS des évènements (104) - 46s Application.Error: WinMgmt (109) ~Numéro: 61214 ~Date: 03/03/2021 02:25:28 PM ~ID: 10 ~Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ~Suggestion: Aucune Application.Error: MBAMIService (230) ~Numéro: 61205 ~Date: 03/03/2021 02:24:33 PM ~ID: 0 ~Description: MBAMIServiceUnable to launch installer. Application.Warning: Microsoft-Windows-User Profiles Service (48) ~Numéro: 61197 ~Date: 03/03/2021 02:23:24 PM ~ID: 1530 ~Description: Windows a détecté que votre fichier de Registre est toujours utilisé par d’autres applications ou services. Le fichier va être déchargé. Les applications ou services qui ont accès à votre Registre risquent de ne pas fonctionner correctement après cel Application.Error: VSS (14) ~Numéro: 61184 ~Date: 03/03/2021 02:12:49 PM ~ID: 8194 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = %1. Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur. Opéra ~Suggestion: Localiser les enregistreurs VSS qui se trompent et changer le compte sous lequel ils s'exécutent du service réseau au système local. Ajuster les autorisations d'activation du service COM par défaut Application.Warning: Microsoft-Windows-RestartManager (16) ~Numéro: 61100 ~Date: 03/03/2021 12:15:36 PM ~ID: 10010 ~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9. ~Suggestion: Redémarrer manuellement l'application ou le service Application.Error: Application Error (9) ~Numéro: 61058 ~Date: 03/03/2021 12:11:52 PM ~ID: 1000 ~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x5ed77d40 Nom du module défaillant : %4, version : %5, horodatage : 0x5e0eb7f5 Code d’exception : 0x0eedfade Décalage d’erreur : 0x0000c5af ID du processus défaillant : 0x7c8 Heure de d ~Suggestion: Réparer ou réinstaller l'application. Application.Error: Microsoft-Windows-CAPI2 (1) ~Numéro: 60787 ~Date: 03/02/2021 04:47:44 PM ~ID: 513 ~Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.%1. Application.Error: MsiInstaller (2) ~Numéro: 60559 ~Date: 03/02/2021 04:16:20 PM ~ID: 11309 ~Description: Product: Avira -- Error 1309. Error reading from file: C:\ProgramData\Package Cache\{4BC31208-EC3B-453B-8819-6B81AE3EC153}v1.2.146.25871\BundledProducts.xml. System error 3. Verify that the file exists and that you can access it. Application.Warning: ASP.NET 4.0.30319.0 (2) ~Numéro: 60380 ~Date: 03/02/2021 12:37:47 PM ~ID: 1020 ~Description: Les mises à jour de la métabase IIS ont été abandonnées car IIS n'est pas installé ou est désactivé sur cet ordinateur. Pour configurer ASP.NET afin qu'il s'exécute dans IIS, installez ou activez IIS et réinscrivez APS.NET en utilisant aspnet_regiis. Application.Warning: Windows Search Service (13) ~Numéro: 60172 ~Date: 03/02/2021 06:15:53 AM ~ID: 3036 ~Description: La source de contenu <%2> est inaccessible.Contexte : Application , Catalogue SystemIndexDétails : L’adresse spécifiée a été exclue de l’index. Les règles de chemin d’accès au site devront éventuellement être modifiées pour pouvoir inclure cette adre ~Suggestion: https://www.repairwin.com/fix-windows-event-3036-search-content-source-cannot-accessed-solved/ Application.Warning: Wlclntfy (15) ~Numéro: 60067 ~Date: 03/02/2021 05:31:25 AM ~ID: 6000 ~Description: L’abonné aux notifications Winlogon <%1> n’était pas disponible pour traiter un événement de notification. Application.Error: Windows Backup (3) ~Numéro: 59611 ~Date: 02/28/2021 07:00:02 PM ~ID: 4103 ~Description: La sauvegarde a échoué en raison d’une erreur d’écriture dans l’emplacement de sauvegarde, %1. Erreur : %2. Application.Error: PerfNet (2) ~Numéro: 58826 ~Date: 02/26/2021 03:07:02 AM ~ID: 2004 ~Description: System.Error: Service Control Manager (174) ~Numéro: 261840 ~Date: 03/03/2021 02:27:27 PM ~ID: 7000 ~Description: Le service %1 n’a pas pu démarrer en raison de l’erreur : %%2 System.Warning: Microsoft-Windows-Kernel-PnP (16) ~Numéro: 261766 ~Date: 03/03/2021 02:24:16 PM ~ID: 219 ~Description: 13Root\NET\0001322122609218\Driver\phantomtap0 ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: volsnap (3) ~Numéro: 260774 ~Date: 03/02/2021 05:47:05 PM ~ID: 36 ~Description: Les clichés instantanés du volume %2 ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur. System.Warning: Disk (50) ~Numéro: 259130 ~Date: 03/02/2021 06:15:42 AM ~ID: 51 ~Description: Une erreur a été détectée sur le périphérique %1 lors d'une opération de pagination. System.Error: BugCheck (6) ~Numéro: 258996 ~Date: 03/02/2021 05:53:25 AM ~ID: 1001 ~Description: 0x0000001a (0x0000000000005003, 0xfffff780c0000000, 0x00000000000062af, 0x0000382e0000c54e)C:\Windows\MEMORY.DMP System.Error: EventLog (3) ~Numéro: 258991 ~ID: 6008 ~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu. System.Error: DCOM (13) ~Numéro: 258732 ~Date: 03/02/2021 05:22:41 AM ~Description: {3EB3C877-1F16-487C-9050-104DBCD66683} ---\\ SCAN ADDITIONNEL (12) - 12s HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\hp\Desktop\ks4.021.3.10.391fr_24936.exe =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\hp\Desktop\ZHPCleaner.exe =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\hp\Desktop\adwcleaner_8.1.exe =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2863104357-631332785-904162297-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\hp\Desktop\ks4.021.3.10.391fr_24936.exe =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2863104357-631332785-904162297-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\hp\Desktop\ZHPCleaner.exe =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2863104357-631332785-904162297-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\hp\Desktop\adwcleaner_8.1.exe =>.SUP.Orphan.MUICache [HKU\S-1-5-21-2863104357-631332785-904162297-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe =>.SUP.Orphan.MUICache ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (5) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Various https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [00B79355411B9B3FFCE2C559332AFA0F4C] [02/03/2021] (.Mark Straver.) - C:\Program Files (x86)\Pale Moon\palemoon.exe =>.Mark Straver [00B79355411B9B3FFCE2C559332AFA0F4C] [02/03/2021] (.Mark Straver.) - C:\Program Files (x86)\Pale Moon\uninstall\helper.exe =>.Mark Straver [00B79355411B9B3FFCE2C559332AFA0F4C] [05/02/2021] (.Mark Straver.) - C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver [00B79355411B9B3FFCE2C559332AFA0F4C] [05/02/2021] (.Mark Straver.) - C:\Program Files\Pale Moon\uninstall\helper.exe =>.Mark Straver [011F39A2261A993DD15176DA6FE4FBEA] [25/01/2021] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc. [034B2981B20F76E6BC69D2ED44EBF2E8] [13/06/2018] (.Logitech Inc.) - C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe =>.Logitech Inc [034B2981B20F76E6BC69D2ED44EBF2E8] [29/08/2018] (.Logitech Inc.) - C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.exe =>.Logitech Inc [034B2981B20F76E6BC69D2ED44EBF2E8] [31/01/2019] (.Logitech Inc.) - C:\Program Files\Logitech\SetPointP\ConnectUtility.exe =>.Logitech Inc [034B2981B20F76E6BC69D2ED44EBF2E8] [31/01/2019] (.Logitech Inc.) - C:\Program Files\Logitech\SetPointP\SetPoint.exe =>.Logitech Inc [034B2981B20F76E6BC69D2ED44EBF2E8] [31/01/2019] (.Logitech Inc.) - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll =>.Logitech Inc [03DA4C26C76E1255DC8279AA9A751ACC] [10/08/2017] (.Realtek Semiconductor Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe =>.Realtek Semiconductor Corp. [0407ABB64E9990180789EACB81F5F914] [04/01/2021] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN [044E3BF58976880FFD074448A8F7A058] [26/06/2019] (.Malwarebytes Corporation.) - C:\ProgramData\MB3Install\MBAMIService.exe =>.Malwarebytes Corporation [04DC4A9C3993F2DA716D7302FF1DB0BE] [12/01/2020] (.Synaptics Incorporated.) - C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated [0537F25A88E24CAFDD7919FA301E8146] [02/10/2020] (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avguard.exe =>.Avira Operations GmbH & Co. KG [0537F25A88E24CAFDD7919FA301E8146] [02/10/2020] (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe =>.Avira Operations GmbH & Co. KG [0537F25A88E24CAFDD7919FA301E8146] [02/10/2020] (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avshadow.exe =>.Avira Operations GmbH & Co. KG [0537F25A88E24CAFDD7919FA301E8146] [02/10/2020] (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\sched.exe =>.Avira Operations GmbH & Co. KG [0537F25A88E24CAFDD7919FA301E8146] [03/03/2021] (.Avira Operations GmbH & Co. KG.) - C:\ProgramData\Package Cache\{161e6084-b0f5-43e8-86d8-09eda5c0893d}\Avira.OE.Setup.Bundle.exe =>.Avira Operations GmbH & Co. KG [0537F25A88E24CAFDD7919FA301E8146] [07/05/2020] (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\DRIVERS\avipbb.sys =>.Avira Operations GmbH & Co. KG [0537F25A88E24CAFDD7919FA301E8146] [16/01/2021] (.Avira Operations GmbH & Co. KG.) - C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe =>.Avira Operations GmbH & Co. KG [0537F25A88E24CAFDD7919FA301E8146] [20/11/2020] (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\DRIVERS\avgntflt.sys =>.Avira Operations GmbH & Co. KG [08FC2A6C411D88E7253C3D99170EAE62] [25/10/2020] (.Logitech Inc.) - C:\Windows\System32\DRIVERS\LHidFilt.Sys =>.Logitech Inc [08FC2A6C411D88E7253C3D99170EAE62] [25/10/2020] (.Logitech Inc.) - C:\Windows\System32\DRIVERS\LMouFilt.Sys =>.Logitech Inc [08FC2A6C411D88E7253C3D99170EAE62] [25/10/2020] (.Logitech Inc.) - C:\Windows\System32\Drivers\LUsbFilt.Sys =>.Logitech Inc [0BFCFAC08E216A1C1FDAA6B77BB2D66E] [19/11/2020] (.Realtek Semiconductor Corp..) - C:\Windows\System32\DRIVERS\Rt64win7.sys =>.Realtek Semiconductor Corp. [0BFCFAC08E216A1C1FDAA6B77BB2D66E] [23/12/2020] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe =>.Realtek Semiconductor Corp. [0BFCFAC08E216A1C1FDAA6B77BB2D66E] [23/12/2020] (.Realtek Semiconductor Corp..) - C:\Windows\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp. [0DDEB53F957337FBEAF98C4A615B149D] [09/02/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe =>.Mozilla Corporation [0DDEB53F957337FBEAF98C4A615B149D] [09/02/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Thunderbird\uninstall\helper.exe =>.Mozilla Corporation [1044F31AE1F93A0BB95F19AB9FAAC6BB] [07/02/2021] (.ESET, spol. s r.o..) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\edls_64.dll =>.ESET, spol. s r.o. [1044F31AE1F93A0BB95F19AB9FAAC6BB] [07/02/2021] (.ESET, spol. s r.o..) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em000_64.dll =>.ESET, spol. s r.o. [1044F31AE1F93A0BB95F19AB9FAAC6BB] [07/02/2021] (.ESET, spol. s r.o..) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em001_64.dll =>.ESET, spol. s r.o. [1044F31AE1F93A0BB95F19AB9FAAC6BB] [07/02/2021] (.ESET, spol. s r.o..) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em005_64.dll =>.ESET, spol. s r.o. [1EF05F3F3C037D743941DB75D7FB8637] [14/02/2013] (.Logitech.) - C:\Program Files\Common Files\LogiShrd\sp6_Uninstall\Setup.exe =>.Logitech [2CA12CED1E35656C636428A3FACED867] [17/12/2020] (.Logitech.) - C:\Windows\System32\drivers\LNonPnP.sys =>.Logitech [3041CA987F1E99A9906953A576A59F65] [04/07/2018] (.Wondershare Technology Co.,Ltd.) - C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe =>.Wondershare Technology Co.,Ltd [3AEA7D79BC1D84D2E1AB0FFC8BC35658] [20/03/2019] (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\DRIVERS\avnetflt.sys =>.Avira Operations GmbH & Co. KG [529E3F9FCF7D58D520D607AB74395002] [26/03/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH [529E3F9FCF7D58D520D607AB74395002] [26/03/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH [529E3F9FCF7D58D520D607AB74395002] [26/03/2020] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH [65628C146ACE93037FC58659F14BD35F] [07/02/2021] (.ESET, spol. s r.o..) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em002_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [07/02/2021] (.ESET, spol. s r.o..) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em003_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [07/02/2021] (.ESET, spol. s r.o..) - C:\Users\hp\AppData\Local\Google\Chrome\User Data\SwReporter\88.253.200\em004_64.dll =>.ESET, spol. s r.o. [76BA9423DDBCE7B145A95F01EE015F17] [12/06/2019] (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\DRIVERS\avdevprot.sys =>.Avira Operations GmbH & Co. KG [76BA9423DDBCE7B145A95F01EE015F17] [20/03/2019] (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\DRIVERS\avkmgr.sys =>.Avira Operations GmbH & Co. KG [76BA9423DDBCE7B145A95F01EE015F17] [20/03/2019] (.Avira Operations GmbH & Co. KG.) - C:\Windows\System32\Drivers\avusbflt.sys =>.Avira Operations GmbH & Co. KG [7FE63AB8AB9D36964BC29EAD7641180A] [16/08/2016] (.NGO.) - C:\Windows\System32\DRIVERS\usb2ser.sys =>.NGO ~ Unselected Options: ~ End of the scan, 7698 items in 03mn45s (1561)(0)