~ ZHPDiag v2021.6.4.300 Par Nicolas Coolman (2021/06/04) ~ Démarré par adrie (Administrator) (2021/06/07 21:47:22) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\adrie\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\adrie\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 19042) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (3) - 0s ~ GCIE: Google Chrome v91.0.4472.77 ~ MSIE: Internet Explorer v11.789.19041.0 ~ OBIE: Microsoft Edge v91.0.864.41 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : FGDDQ Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : KO ---\\ LOGICIELS DE PROTECTION (1) - 4s Windows Defender W10 (Activate) (Protection) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: AMD64 Family 22 Model 48 Stepping 1, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 3629.324 MB (45% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 766 GB (84%) free of 908 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: LAPTOP-UK29JPFN ~ User Name: adrie ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (3) - 0s ~ Drive C: has 766 GB free of 908 GB (System) ~ Drive D: has 23 GB free of 25 GB ~ Drive F: has 6 GB free of 7 GB ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 5s [MD5.F5883F210AF1795C1868AE570FCB7185] - 06/06/2021 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4826160] =>.Microsoft® [MD5.EF3179D498793BF4234F708D3BE28633] - 06/06/2021 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation [MD5.9EF51C8AD595C5E2A123C06AD39FCCD7] - 06/06/2021 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [419432] [Unsigned] =>.Microsoft Corporation [MD5.4F92A55AE6FC6FBFDA966624BF7C0FA8] - 06/06/2021 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5070336] [Unsigned] =>.Microsoft Corporation [MD5.EE86712DDF0C59E6921D548B5548FF9C] - 06/06/2021 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [907776] [Unsigned] =>.Microsoft Corporation [MD5.3F910E7BB716BCD9B4C06EE6CF20304A] - 06/06/2021 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation [MD5.145C2F1180736E3B23410C17C966749B] - 06/06/2021 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [829496] =>.Microsoft® [MD5.277A7A6DBD6078F25AA2EFB2C3E88F4A] - 06/06/2021 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [588312] =>.Microsoft® [MD5.9C7065E8738C87A3026F72795BDBF0C3] - 06/06/2021 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3394048] [Unsigned] =>.Microsoft Corporation [MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.6F082A5EB40F9BFD6873F3796F10F866] - 06/06/2021 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [647480] [Unsigned] =>.Microsoft Corporation [MD5.EB97D643FAC7A8EB66A53E87D85E8C64] - 06/06/2021 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30008] [Unsigned] =>.Microsoft Corporation [MD5.764FE2149251A246F6B047A0F09F5F0B] - 07/12/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation [MD5.26255C953A69CCD32EF4491411737904] - 07/12/2019 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [174080] [Unsigned] =>.Microsoft Corporation [MD5.3D3CCAFC76E02403E2963A2CB45D61F7] - 06/06/2021 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation [MD5.4BFD517F80F247590AB6C03E3FF55E1A] - 07/12/2019 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [132608] [Unsigned] =>.Microsoft Corporation [MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.F63572DF4295C78B3F7036AEDA878176] - 07/12/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [225280] [Unsigned] =>.Microsoft Corporation [MD5.9D0A38D9C9D55617114FCD2017175811] - 06/06/2021 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [577848] [Unsigned] =>.Microsoft Corporation [MD5.49F7DE6F689C47B64A2C2D46CD98E327] - 06/06/2021 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation [MD5.71D1E60F1CA832751584F2DA6B207702] - 06/06/2021 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2852680] [Unsigned] =>.Microsoft Corporation [MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation [MD5.40CBDB4B80284451536C8CA49561E5CD] - 06/06/2021 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation [MD5.64991B36F0BD38026F7589572C98E3D6] - 06/06/2021 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation [MD5.9C4C6E0C590F789CECB7A6D437E5A284] - 07/12/2019 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117560] [Unsigned] =>.Microsoft Corporation [MD5.988A7A685BB51BAC62F4E176BE5432AC] - 06/06/2021 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (69) - 9s O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\System32\atiesrxx.exe [Unsigned] =>.AMD O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: AvrcpService (AvrcpService) . (.Realtek Semiconductor Corporation - Realtek Bluetooth AVRCP Service.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\AvrcpService.exe =>.Realtek Semiconductor Corp® O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: BTDevManager (BTDevManager) . (.Realtek All Rights Reserved - Realtek Bluetooth BTDevManager Service Appl.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe =>.Realtek Semiconductor Corp® O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_6884f) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft® O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc. - Conexant Audio Message Service.) - C:\WINDOWS\system32\CxAudMsg64.exe [Unsigned] =>.Conexant Systems Inc. O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Devguru Twomon Service (dglvrsvc) . (.DEVGURU Co., LTD.(www.devguru.co.kr) - Twomon Service Application.) - C:\Windows\dglvrsvc.exe =>.DEVGURU CO LTD® O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Microsoft Edge Update Service (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: GDCAgent (GDCAgent) . (.Lenovo - GDCAgent.) - C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe =>.LENOVO® O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google Inc. - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\WINDOWS\System32\ikeext.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Hôte de synchronisation_6884f (OneSyncSvc_6884f) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Realtek Bluetooth Device Manager Service (RtkBtManServ) . (.Realtek Semiconductor Corp. - Realtek Bluetooth BTDevManager Service Appl.) - C:\Windows\RtkBtManServ.exe =>.Microsoft® O23 - Service: Conexant SmartAudio service (SAService) . (...) - C:\Windows\System32\SASrv.exe (.not file.) =>.Conexant Systems, Inc. O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation O23 - Service: Shelblock (ShelblockSvc) . (.Shelblock - Shelblock Service.) - C:\Program Files\Shelblock\ShelblockSvc.exe {7A03573C69F4C7CABDC810C3504DFFE6}. O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: (spacedeskService) . (...) - C:\WINDOWS\System32\spacedeskService.exe [Unsigned] O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\WINDOWS\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\TabSvc.dll (TabletInputService) . (.Microsoft Corporation - Service Clavier tactile et volet d’écriture.) - C:\WINDOWS\System32\TabSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MsMpEng.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service utilisateur de notifications Push Windows_6884f (WpnUserService_6884f) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (96) - 34s SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Demand [15/06/2015] [ 42328] Lenovo Virtual Power Controlle (ACPIVPC) . (.Lenovo Corporation.) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.LENOVO® SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Auto [23/12/2016] [ 295832] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\System32\atiesrxx.exe =>.Advanced Micro Devices, Inc.® SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [16/06/2017] [ 101232] AMD Kernel Mode CSP Service (amdkmcsp) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\DRIVERS\amdkmcsp.sys =>.Advanced Micro Devices Inc.® SR - Demand [23/12/2016] [26587656] (amdkmdag) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\c0309839.inf_amd64_168acb088d48fafb\atikmdag.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Demand [23/12/2016] [ 527256] (amdkmdap) . (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\c0309839.inf_amd64_168acb088d48fafb\atikmpag.sys =>.Advanced Micro Devices, Inc.® SR - Boot [08/12/2015] [ 82704] AMD PCI Root Bus Lower Filter (amdkmpfd) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc.® SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Boot [12/05/2015] [ 84504] (amd_sata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amd_sata.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Boot [12/05/2015] [ 24600] (amd_xata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amd_xata.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Demand [22/07/2015] [ 102912] AMD Function Driver f (AtiHDAudioService) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\AtihdWT6.sys [Unsigned] =>.Advanced Micro Devices SR - Auto [02/03/2015] [ 41176] AvrcpService (AvrcpService) . (.Realtek Semiconductor Corporation.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\AvrcpService.exe =>.Realtek Semiconductor Corp® SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Auto [07/04/2020] [ 315976] BlueStacks Hypervisor_bgp64 (BlueStacksDrv_bgp64) . (.Bluestack System Inc..) - C:\Program Files\BlueStacks_bgp64\BstkDrv_bgp64.sys =>.Bluestack Systems, Inc® SR - Auto [02/06/2015] [ 117976] BTDevManager (BTDevManager) . (.Realtek All Rights Reserved.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe =>.Realtek Semiconductor Corp® SR - Demand [12/05/2015] [ 95248] Mono Audio (BthAudioHF) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\RtkHfp.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SR - System [12/11/2013] [ 91912] CLVirtualDrive (CLVirtualDrive) . (.CyberLink.) - C:\WINDOWS\System32\DRIVERS\CLVirtualDrive.sys =>.CyberLink Corp.® SR - Demand [13/07/2016] [ 1561640] Conexant U (CnxtHdAudService) . (.Conexant Systems Inc..) - C:\WINDOWS\System32\drivers\CHDRT64.sys =>.Conexant Systems, Inc.® SR - Auto [20/10/2014] [ 207576] @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc..) - C:\WINDOWS\system32\CxAudMsg64.exe =>.Conexant Systems, Inc.® SR - Demand [02/09/2016] [ 85984] Devguru Twomon Virtual Bus (dglvrbus) . (.DEVGURU Co., LTD.(www.devguru.co.kr).) - C:\WINDOWS\System32\drivers\dglvrbus.sys =>.DEVGURU CO LTD® SR - Demand [02/09/2016] [ 45536] (dglvrkdod) . (.DEVGURU Co., LTD.(www.devguru.co.kr).) - C:\WINDOWS\System32\DRIVERS\dglvrkdod.sys =>.DEVGURU CO LTD® SR - Demand [02/09/2016] [ 27104] Devguru HID Driver (WDF) (dglvrmflt) . (.DEVGURU Co., LTD.(www.devguru.co.kr).) - C:\WINDOWS\System32\drivers\dglvrmflt.sys =>.DEVGURU CO LTD® SR - Auto [02/09/2016] [ 40928] Devguru Twomon Service (dglvrsvc) . (.DEVGURU Co., LTD.(www.devguru.co.kr).) - C:\Windows\dglvrsvc.exe =>.DEVGURU CO LTD® SR - Demand [24/04/2020] [ 136040] SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.) (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus.sys =>.Samsung Electronics Co., Ltd.® SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Auto [29/07/2015] [ 1155512] GDCAgent (GDCAgent) . (.Lenovo.) - C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe =>.LENOVO® SS - Demand [23/05/2021] [ 1457320] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.77\elevation_service.exe =>.Google LLC® SR - Auto [26/01/2017] [ 153752] Service Google Update (gupdate) (gupdate) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [26/01/2017] [ 153752] Service Google Update (gupdatem) (gupdatem) . (.Google Inc..) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Demand [31/10/2011] [ 25088] Mouse Suite Driver_A407 (WDF (HPMoA407) . (.Hewlett-Packard..) - C:\WINDOWS\System32\drivers\HPMoA407.sys [Unsigned] =>.Hewlett-Packard. SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [14/06/2012] [ 18944] USB Mouse Low Filter Driver_A (HPubA407) . (.Hewlett-Packard..) - C:\WINDOWS\System32\Drivers\HPubA407.sys [Unsigned] =>.Hewlett-Packard. SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SR - Demand [19/04/2017] [ 943104] Realtek RT640 NT Driver (rt640x64) . (.Realtek.) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp.® SR - Demand [21/05/2015] [ 182288] Realtek Bluetooth A2dp Source S (RtkA2dp) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\RtkA2dp.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Demand [12/05/2015] [ 60944] Realtek Bluetooth A/V Remote C (RtkAvrcp) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\RtkAvrcp.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Demand [12/05/2015] [ 70672] Realtek Bluetooth A/V Re (RtkAvrcpCtrlr) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\RtkAvrcpCtrlr.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Demand [20/05/2019] [ 779104] Realtek Bluetooth Filter Driver (RtkBtFilter) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\RtkBtfilter.sys =>.Realtek Semiconductor Corp.® SR - Auto [20/05/2019] [ 709168] Realtek Bluetooth Device (RtkBtManServ) . (.Realtek Semiconductor Corp..) - C:\Windows\RtkBtManServ.exe =>.Microsoft® SR - Demand [03/07/2015] [ 410880] Realtek USB Card Reader - UER (RTSUER) . (.Realsil Semiconductor Corporation.) - C:\WINDOWS\System32\Drivers\RtsUer.sys =>.Realtek Semiconductor Corp® SR - Demand [11/06/2015] [ 3059416] Lenovo EasyCamera (rtsuvc) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\DRIVERS\rtsuvc.sys =>.Realtek Semiconductor Corp® SR - Demand [07/12/2019] [ 8169472] Realtek Wir (RTWlanE01) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\rtwlane01.sys [Unsigned] =>.Realtek Semiconductor Corporation SR - Auto [00/00/0000] [ 0] Conexant SmartAudio service (SAService) . (...) - C:\Windows\System32\SASrv.exe (.not file.) [Unsigned] =>.Conexant Systems, Inc. SR - Auto [03/06/2021] [ 4097736] Shelblock (ShelblockSvc) . (.Shelblock.) - C:\Program Files\Shelblock\ShelblockSvc.exe {7A03573C69F4C7CABDC810C3504DFFE6}. SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Auto [30/07/2020] [ 1079720] (spacedeskService) . (. {4D1CA732BA1D29D89BBF412F3C342965}..) - C:\WINDOWS\System32\spacedeskService.exe {4D1CA732BA1D29D89BBF412F3C342965}. SR - Demand [26/09/2019] [ 166760] SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.) (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd.® SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Demand [16/05/2017] [ 912960] Synaptics TouchPad Driver (SynTP) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated® SR - Auto [16/05/2017] [ 267328] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® SR - Demand [13/06/2012] [ 102376] wsvd (wsvd) . (."CyberLink.) - C:\WINDOWS\System32\DRIVERS\wsvd.sys =>.CyberLink® ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (10) - 3s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [ForteConfig] . (. - FMAPP Application.) -- C:\Program Files\CONEXANT\ForteConfig\fmapp.exe =>.Fortemedia Inc® O4 - HKLM\..\Run: [cAudioFilterAgent] . (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe =>.Conexant Systems, Inc.® O4 - HKLM\..\Run: [BtServer] . (.Realtek Semiconductor Corporation - Realtek Bluetooth BTServer Application.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe =>.Realtek Semiconductor Corp® O4 - HKLM\..\Run: [SmartAudio] . (.Conexant Systems, Inc. - SmartAudio CPL (32bit).) -- C:\Program Files\CONEXANT\SAII\SACpl.exe =>.Conexant Systems, Inc.® O4 - HKLM\..\Run: [StartCN] . (.Advanced Micro Devices, Inc. - Radeon Settings: Host Application.) -- C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe =>.Advanced Micro Devices, Inc.® O4 - HKCU\..\Run: [Wargaming.net Game Center] . (.Wargaming.net - Wargaming.net Game Center.) -- C:\ProgramData\Wargaming.net\GameCenter\wgc.exe {0A5A12FEF0C9D14875D6968D3E3F673F}. =>.Wargaming.net O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-21-559716797-1808254368-773481850-1002\..\Run: [Wargaming.net Game Center] . (.Wargaming.net - Wargaming.net Game Center.) -- C:\ProgramData\Wargaming.net\GameCenter\wgc.exe {0A5A12FEF0C9D14875D6968D3E3F673F}. =>.Wargaming.net ---\\ PROCESSUS LANCÉS (23) - 10s [MD5.0625C6FFD2AF0A6685176914CB09A077] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [295832] [PID.2096] [Unsigned] =>.AMD [MD5.34F8DD6F434C0F08D8260AD7347E0496] - (.AMD - AMD External Events Client Module.) -- C:\WINDOWS\system32\atieclxx.exe [532368] [PID.2212] [Unsigned] =>.AMD [MD5.4B2469B9858FF03AA83947A05BE60447] - (.Realtek Semiconductor Corporation - Realtek Bluetooth AVRCP Service.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\AvrcpService.exe [41176] [PID.2228] =>.Realtek Semiconductor Corp® [MD5.07F3534C07C5110E9A424C04634C4A8D] - (.Conexant Systems Inc. - Conexant Audio Message Service.) -- C:\WINDOWS\system32\CxAudMsg64.exe [207576] [PID.2296] [Unsigned] =>.Conexant Systems Inc. [MD5.06E59719C1A85041CE668AF1F4ABE8D8] - (.Realtek All Rights Reserved - Realtek Bluetooth BTDevManager Service Appl.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe [117976] [PID.2356] =>.Realtek Semiconductor Corp® [MD5.109FB75388596417D420F34048D68C8F] - (.DEVGURU Co., LTD.(www.devguru.co.kr) - Twomon Service Application.) -- C:\Windows\dglvrsvc.exe [40928] [PID.2348] =>.DEVGURU CO LTD® [MD5.3E5AC1EB1306F39425E5AB4624595875] - (...) -- C:\Windows\System32\spacedeskService.exe [1079720] [PID.3084] [Unsigned] =>.Datronicsoft [MD5.FED2AD68558671CD71048B1B5818267D] - (.Realtek Semiconductor Corp. - Realtek Bluetooth BTDevManager Service Appl.) -- C:\Windows\RtkBtManServ.exe [709168] [PID.3096] =>.Microsoft® [MD5.3CA1424FABB0A803294F42047EE0024F] - (.Conexant Systems, Inc. - SmartAudio Service Application.) -- C:\Windows\SysWOW64\SASrv.exe [423128] [PID.3104] =>.Conexant Systems, Inc.® [MD5.2B52AD4C5441C51CFD8A5B6F74C40835] - (.Shelblock - Shelblock Service.) -- C:\Program Files\Shelblock\ShelblockSvc.exe [4097736] [PID.3128] {7A03573C69F4C7CABDC810C3504DFFE6}. [MD5.C602ACF838C9034783854CF51E4CF6F5] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [267328] [PID.3160] =>.Synaptics Incorporated® [MD5.80CC19FB7F13B383ABEC1AFAB28FD52C] - (...) -- C:\Windows\System32\spacedeskServiceTray.exe [509352] [PID.4828] [Unsigned] [MD5.B26A5D7948D7EBB22315E48A64CAB9DE] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4188736] [PID.4840] =>.Synaptics Incorporated® [MD5.621FC6D68BBFDFE98D05FC4A7FAE01B6] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [228928] [PID.4996] =>.Synaptics Incorporated® [MD5.BCD340300881BF94AB1C23C4D1D0E82C] - (.Realtek Semiconductor Corporation - Realtek Bluetooth BTServer Application.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe [229080] [PID.5472] =>.Realtek Semiconductor Corp® [MD5.60D00FC4F97B33B2CBB949855025F2D7] - (. - SkypePlugin.exe.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\SkypePlugin.exe [277720] [PID.5700] =>.Realtek Semiconductor Corp® [MD5.6AECA53F405206CAD08032B2FE2423D7] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [793416] [PID.1456] =>.Microsoft® [MD5.AFC1F0BC352DF798BBC4577D81FF63D9] - (.Shelblock - Shelblock.) -- C:\Program Files\Shelblock\shelblock.exe [4303048] [PID.1460] {7A03573C69F4C7CABDC810C3504DFFE6}. [MD5.D56EE61F9B62AD677395BF003A49B4A7] - (.Lenovo - GDCAgent.) -- C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe [1155512] [PID.6896] =>.LENOVO® [MD5.A8FD9222E4D72596BB37DA8BE95C0BA4] - (.Google Inc. - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752] [PID.7164] =>.Google Inc® [MD5.36CB86775385DE4D906CC13B712486FC] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler.exe [293720] [PID.6260] =>.Google LLC® [MD5.7BD9ABFC8A31FD0EC1E674FEB7AD2B5B] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler64.exe [374616] [PID.6292] =>.Google LLC® [MD5.E6C762873E507CFFEE3D493592E26A4A] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\adrie\Desktop\ZHPSuite.exe [3471512] [PID.6656] [Unsigned] =>.Nicolas Coolman ---\\ CHROME, Démarrage, Recherche, Extensions (12) - 3s G2 - GCE: Preference [adrie][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [adrie][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [adrie][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [adrie][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [adrie][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [adrie][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [adrie][User Data\Default\Extensions] [jlihfhenloklceecaibhfbjppmleoiob] Plus G2 - GCE: Preference [adrie][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [adrie][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [adrie][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. G2 - GCE: Preference [adrie][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [adrie][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router} ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (15) - 2s P2 - FPN: [HKLM] [@adobe.com/FlashPlayer] - (.Adobe.) -- C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_293.dll =>.Adobe C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\bookmarkbackups =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\crashes =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\datareporting =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\extensions =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\gmp-widevinecdm =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\mediacapabilities =>Legitimate C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\minidumps =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\saved-telemetry-pings =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\security_state =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\sessionstore-backups =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\shader-cache =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\storage =>Mozilla Corporation C:\Users\adrie\AppData\Roaming\Mozilla\Firefox\Profiles\8vfbhnmq.default-release\weave =>Mozilla Corporation ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (17) - 1s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://fr.yahoo.com/ =>.Yahoo! Inc. R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo15.msn.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://mystart.lenovo.com =>.Lenovo Group Limited R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.906 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (1) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (1) - 0s E2 - GCE: Preference [adrie][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation ---\\ INTERNET EXPLORER,Proxy Management (14) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;127.0.0.1; =>.Default.Value R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:48080;https=127.0.0.1:48080 =>Hijacker.Proxy R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1 R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings,ProxySettingsPerUser = 0 =>.SUP.ProxyRestriction R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [1http=127.0.0.1:48080;https=127.0.0.1:48080] R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local;127.0.0.1; =>.Default.Value R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:48080;https=127.0.0.1:48080 =>Hijacker.Proxy R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 1 R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SOFTWARE\WOW6432Node\Policies\Microsoft\Windows\CurrentVersion\Internet Settings,ProxySettingsPerUser = 0 =>.SUP.ProxyRestriction ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit= F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (1) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (1) - 0s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.41\BHO\ie_to_edge_bho_64.dll =>.Microsoft® ---\\ RACCOURCIS GLOBAL STARTUP (43) - 11s O4 - GS\Desktop [adrie]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Users\adrie\AppData\Local\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [adrie]: GeoGebra Classique.lnk . (.GitHub - Update.) C:\Users\adrie\AppData\Local\GeoGebra_6\Update.exe --processStart=GeoGebra.exe [Unsigned] =>.GitHub O4 - GS\Desktop [adrie]: Icecream Video Editor.lnk . (...) C:\Program Files (x86)\Icecream Video Editor\icevideoeditor.exe =>.Icecream Apps Ltd® O4 - GS\Desktop [adrie]: OpenOffice 4.1.5.lnk . (.Apache Software Foundation - OpenOffice 4.1.5.) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe [Unsigned] =>.Apache Software Foundation O4 - GS\Desktop [adrie]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7\PhotoFiltre7.exe [Unsigned] =>.PhotoFiltre O4 - GS\Desktop [adrie]: SketchUp 2017.lnk . (.Trimble, Inc. - .) C:\Program Files (x86)\SketchUp\SketchUp 2017\SketchUp.exe [Unsigned] =>.Trimble, Inc. O4 - GS\Desktop [adrie]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\adrie\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [adrie]: ZHPDiag.lnk . (.Nicolas Coolman - ZHPDiag.) C:\Users\adrie\AppData\Roaming\ZHP\ZHPDiag3.exe =>.Nicolas Coolman O4 - GS\Desktop [adrie]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\adrie\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [adrie]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\Quicklaunch [adrie]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\sendTo [adrie]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [adrie]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\TaskBar [adrie]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\TaskBar [adrie]: Manuels d'utilisateur.lnk . (.Lenovo - UserGuide.) C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe =>.LENOVO® O4 - GS\TaskBar [adrie]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft® O4 - GS\Programs [adrie]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Users\adrie\AppData\Local\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Programs [adrie]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\adrie\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Programs [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Users\adrie\AppData\Local\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\adrie\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Math Input Panel.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Assistant Mise à jour de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à jour de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe /ClientID "Win10Upgrade:VNL:NHV20:{}" =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Assistant Mise à niveau de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à jour de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe /ClientID "Win10Upgrade:VNL:OobeTh2:{}" =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: BlueStacks (64-bit).lnk . (.BlueStack Systems, Inc. - BlueStacks 4.) C:\ProgramData\BlueStacks_bgp64\Client\Bluestacks.exe =>.BlueStack Systems, Inc.® O4 - GS\ProgramsCommon [Public]: BlueStacks Multi-Instance Manager (64-bit).lnk . (...) C:\Program Files (x86)\BlueStacks_bgp64\HD-MultiInstanceManager.exe [Unsigned] O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Shelblock.lnk . (.Shelblock - Shelblock.) C:\Program Files (x86)\Shelblock\Shelblock.exe [Unsigned] O4 - GS\ProgramsCommon [Public]: spacedesk SERVER.lnk . (...) C:\Windows\System32\spacedeskServiceTray.exe [Unsigned] ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{84346582-3a2f-4cd9-b208-9f43c3f95ccf}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{d4580938-9c82-4840-9d72-4e7775d5b311}: DhcpNameServer = 150.210.1.2 =>.Private IP ---\\ PROTOCOLE ADDITIONNEL (22) - 4s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (11) - 0s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Wargaming.net Game Center =>.Legitimate [HKEY_USERS\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDrive =>.Microsoft Corporation [HKEY_USERS\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Wargaming.net Game Center =>.Legitimate [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:StartCN [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:cAudioFilterAgent =>.Conexant Systems, Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:ForteConfig =>.Conexant Systems, Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:BtServer =>.Realtek Semiconductor Corp. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SmartAudio =>.Conexant Systems, Inc. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:StartCCC =>.ATI Technologies ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (6) - 2s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.41\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLÉS (94) - 56s O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {23D86980-AD31-38E8-E1C0-E7B574B34C14} [Unsigned] =>.Advanced Micro Devices, Inc. O42 - Logiciel: AMD Radeon Settings - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- WUCCCApp =>.Advanced Micro Devices, Inc.® O42 - Logiciel: AMD Settings - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {0EE4B700-04B7-6FA6-85FA-342AD095DF4A} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AMD Settings - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {22B26DFB-4BD8-E36F-C532-3FBB548F22DB} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Assistant Mise à jour de Windows 10 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D5C69738-B486-402E-85AC-2456D98A64E4} =>.Microsoft Corporation® O42 - Logiciel: BlueStacks (64-bit) - (.BlueStack Systems, Inc..) [HKLM][64Bits] -- BlueStacks_bgp64 =>.BlueStack Systems, Inc.® O42 - Logiciel: Catalyst Control Center InstallProxy - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {0A01F051-EFD1-2A1A-6199-B17C82A8A739} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization BR - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {DB929D3C-5DF3-95A0-456F-403306EE69B6} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization CHS - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {5F16D84E-851C-29BB-3CBE-A480DBAE3A09} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization CHT - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {13D096A7-D644-944F-F99D-82A17015AAE0} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization CS - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {EE08C0D5-792F-B256-A499-ECEC56915562} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization DA - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {37F9C96B-294A-D6A7-183D-930C8A2F5D68} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization DE - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {DAC91F38-7D04-90FC-19CB-AC1C608012ED} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization EL - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {40E57BA2-6029-7A5D-A2BE-7D47039159D0} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization ES - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {7A54ECFD-70B7-08DF-D581-8CD04B4CDA09} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization FI - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {C0F8A189-4C96-0179-ACEE-A98F618FD472} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization FR - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {60694907-C4DE-A4AE-8DD0-E2E50E3A9C14} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization HU - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {592C6F67-5D6B-8E34-90B9-2E9D44FC537B} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization IT - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {06B55CAD-9FF0-EE80-954C-32FA86AED3BF} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization JA - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {3B613BFA-C0AC-5FBF-29B1-3C362DFE417B} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization KO - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {E3364BA9-283A-2B4C-2DED-90C284A54B8D} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization NL - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {6E30A3B3-5427-9D91-5878-BD61820C5671} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization NO - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {1E282415-8F60-005E-58C2-8FA7A7A391FB} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization PL - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8384ACC1-D00D-3818-8C45-E41E3C3FC6F9} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization RU - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {DA4880B9-F477-386C-B07D-E13A7F4565C4} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization SV - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {0FEDC0A5-8ED6-1A59-78A4-35E82784E3E0} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization TH - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {3BF8C0EC-3127-F42D-78B7-7C5C9E682657} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Next Localization TR - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {3F6354FB-8E86-4BEF-A53F-141D1493EE6D} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} [Unsigned] =>.Cisco Systems, Inc. O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {AF312B06-5C5C-468E-89B3-BE6DE2645722} [Unsigned] =>.Cisco Systems, Inc. O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F} [Unsigned] =>.Cisco Systems, Inc. O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.® O42 - Logiciel: Device Manager - (.Turning Technologies.) [HKLM][64Bits] -- {4CC5047B-6C40-4392-A36A-790487A7BCE0} [Unsigned] =>.Turning Technologies O42 - Logiciel: Dolby Digital Plus Advanced Audio - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2} [Unsigned] =>.Dolby Laboratories Inc O42 - Logiciel: GeoGebra Classic - (.International GeoGebra Institute.) [HKCU][64Bits] -- GeoGebra_6 [Unsigned] =>.International GeoGebra Institute O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC® O42 - Logiciel: Icecream Video Editor version 2.16 - (.Icecream Apps.) [HKLM][64Bits] -- {DB083527-50BE-4762-8CBE-30CB8E19E19C}_is1 =>.Icecream Apps Ltd® O42 - Logiciel: Lenovo EasyCamera - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- {46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink Corp.® (Hidden) O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink Corp.® O42 - Logiciel: Manuels d'utilisateur - (.Lenovo.) [HKLM][64Bits] -- {F07C2CF8-4C53-4EC3-8162-A6221E36EB88} [Unsigned] =>.Lenovo (Hidden) O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} [Unsigned] =>.Lenovo Group Limited (Hidden) O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge =>.Microsoft® O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Office - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0138-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft® O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {E6BD8D0F-BA0D-4A4B-A5A8-C74DEB8365F9} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {710f4c1c-cc18-4c49-8cbf-51240c89a1a2} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {837b34e3-7c30-493c-8f6a-2b0f04e2912c} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM][64Bits] -- {DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {ca67548a-5ebe-413a-b50c-4b9ceb6d66c6} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {37B8F9C7-03FB-3253-8781-2517C99D7C00} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {f65db027-aff3-4070-886a-0d87064aabb1} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {13A4EE12-23EA-3371-91EE-EFB36DDFFF3E} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {d992c12e-cab2-426f-bde3-fb8c53950b0d} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 - (.Microsoft Corporation.) [HKLM][64Bits] -- {50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Mozilla Firefox 88.0.1 (x64 fr) - (.Mozilla.) [HKCU][64Bits] -- Mozilla Firefox 88.0.1 (x64 fr) =>.Mozilla Corporation® O42 - Logiciel: OEM Application Profile - (.Advanced Micro Devices Inc.) [HKLM][64Bits] -- {B4B7FD8F-06FC-E277-4F29-8F75F8281D8F} [Unsigned] =>.Advanced Micro Devices Inc O42 - Logiciel: OpenOffice 4.1.5 - (.Apache Software Foundation.) [HKLM][64Bits] -- {155C4F2E-7381-4B80-B258-FD0600C9C46B} [Unsigned] =>.Apache Software Foundation O42 - Logiciel: PhotoFiltre 7 - (.Antonio Da Cruz.) [HKCU][64Bits] -- PhotoFiltre 7 [Unsigned] =>.Antonio Da Cruz O42 - Logiciel: REALTEK Bluetooth Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A5EF-4123-B2B9-172095903AB} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} [Unsigned] =>.Realtek O42 - Logiciel: Realtek PCI-E Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- InstallShield_{70714FB7-4084-4202-A599-2D5935DECB67} =>.Realtek Semiconductor Corp.® O42 - Logiciel: Roblox Player for adrie - (.Roblox Corporation.) [HKCU][64Bits] -- roblox-player =>.Roblox Corporation® O42 - Logiciel: Shelblock - (.Shelblock.) [HKLM][64Bits] -- {66F7F742-C8AD-40DF-9082-835841772BBB} [Unsigned] O42 - Logiciel: SketchUp 2017 - (.Trimble Navigation Limited.) [HKLM][64Bits] -- {7B8F376D-7D82-41A4-A14E-6DAAA426CBD9} [Unsigned] =>.Trimble Navigation Limited O42 - Logiciel: spacedesk Windows DRIVER - (.datronicsoft Inc..) [HKLM][64Bits] -- {A856E2FA-380E-43AD-B79D-6723F44EE746} [Unsigned] =>.datronicsoft Inc. O42 - Logiciel: Twomon PC Program - (.Devguru Co., LTD.) [HKLM][64Bits] -- {d3ae4d51-6e13-49fc-8e8e-d63100d7c689} [Unsigned] =>.Devguru Co., Ltd O42 - Logiciel: Update for Windows 10 for x64-based Systems (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] -- {32DC821E-4A7D-4878-BEE8-337FA153D7F2} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: UpdateAssistant - (.Microsoft Corporation.) [HKLM][64Bits] -- {F339C545-24DC-4870-AA32-6EB6B0500B95} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: User Manuals - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88} [Unsigned] =>.Lenovo O42 - Logiciel: War Robots - (.Pixonic.) [HKLM][64Bits] -- Steam App 767560 [Unsigned] =>.SteamApp.Game O42 - Logiciel: Wargaming.net Game Center - (.Wargaming.net.) [HKCU][64Bits] -- Wargaming.net Game Center {0A5A12FEF0C9D14875D6968D3E3F673F}. =>.Wargaming.net O42 - Logiciel: WebM Media Foundation Components - (.WebM Project.) [HKLM][64Bits] -- webmmf [Unsigned] =>.WebM Project O42 - Logiciel: Windows Setup Remediations (x64) (KB4023057) - (.Microsoft Corporation.) [HKLM][64Bits] -- {5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb [Unsigned] =>.Microsoft Corporation O42 - Logiciel: WinRAR 6.01 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Wondershare Helper Compact 2.6.0 - (.Wondershare.) [HKLM][64Bits] -- {5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1 [Unsigned] =>.Wondershare O42 - Logiciel: World of Tanks EU - (.Wargaming.net.) [HKCU][64Bits] -- WOT.EU.PRODUCTION =>.Wargaming.net Limited® ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (149) - 56s HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\ATI =>.ATI HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\BlueStacksInstaller HKLM\SOFTWARE\BlueStacks_bgp64 HKLM\SOFTWARE\Canon =>.Canon HKLM\SOFTWARE\Cnxt_Uiu_Parms =>.Conexant Systems, Inc. HKLM\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKLM\SOFTWARE\Corel =>.Corel HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\datronicsoft HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Dolby =>.Dolby HKLM\SOFTWARE\ESET =>.ESET HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\InstalledOptions =>.Installed Options HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Lenovo =>.Lenovo HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\PartnerShared HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\SketchUp =>.@Last Software HKLM\SOFTWARE\Synaptics =>.Synaptics HKLM\SOFTWARE\UIU =>.Legitimate HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\AMD =>.AMD HKLM\SOFTWARE\WOW6432Node\ATI =>.ATI HKLM\SOFTWARE\WOW6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\WOW6432Node\Conexant =>.Conexant Systems, Inc. HKLM\SOFTWARE\WOW6432Node\Cyberlink =>.CyberLink Corporation HKLM\SOFTWARE\WOW6432Node\eInstruction =>.eInstruction HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Lake =>.Lake Sofware HKLM\SOFTWARE\WOW6432Node\Lenovo =>.Lenovo HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\OneKeyRecovery_Upgrade =>.Lenovo Group Limited HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\REALTEK Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\RtWLan =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Twomon Installer HKLM\SOFTWARE\WOW6432Node\Valve =>.Valve HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX HKLM\SOFTWARE\WOW6432Node\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\AMD =>.AMD HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\BlueStacksInstaller HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Canon =>.Canon HKCU\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKCU\SOFTWARE\CoreJpeg =>.Corel Corporation HKCU\SOFTWARE\Corel =>.Corel HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\Devguru HKCU\SOFTWARE\ESET =>.ESET HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Hermitech Laboratory =>.Hermitech Laboratory HKCU\SOFTWARE\Icecream =>.Icecream HKCU\SOFTWARE\Lenovo =>.Lenovo HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\OpenOffice =>.SourceForge HKCU\SOFTWARE\PartnerShared HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\ROBLOX Corporation =>.Roblox Corporation HKCU\SOFTWARE\SketchUp =>.@Last Software HKCU\SOFTWARE\Synaptics =>.Synaptics HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\Twomon Windows Server HKCU\SOFTWARE\Valve =>.Valve HKCU\SOFTWARE\Wargaming.net =>.Wargaming.net HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\Canon =>.Canon HKU\.DEFAULT\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKU\.DEFAULT\SOFTWARE\CyberLink =>.CyberLink Corporation HKU\.DEFAULT\SOFTWARE\Dolby =>.Dolby HKU\.DEFAULT\SOFTWARE\ESET =>.ESET HKU\.DEFAULT\SOFTWARE\Lenovo =>.Lenovo HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape HKU\.DEFAULT\SOFTWARE\PartnerShared HKU\.DEFAULT\SOFTWARE\Protexis64 HKU\.DEFAULT\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Twomon Windows Server HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\AMD =>.AMD HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\ATI =>.ATI HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\BlueStacksInstaller HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\BugSplat =>.Bugsplat Game HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Canon =>.Canon HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\CoreJpeg =>.Corel Corporation HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Corel =>.Corel HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\CyberLink =>.CyberLink Corporation HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Devguru HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\ESET =>.ESET HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Google =>.Google HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Hermitech Laboratory =>.Hermitech Laboratory HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Icecream =>.Icecream HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Lenovo =>.Lenovo HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Macromedia =>.Macromedia HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\OpenOffice =>.SourceForge HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\PartnerShared HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\ROBLOX Corporation =>.Roblox Corporation HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\SketchUp =>.@Last Software HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Synaptics =>.Synaptics HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Twomon Windows Server HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Valve =>.Valve HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Wargaming.net =>.Wargaming.net HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-559716797-1808254368-773481850-1002\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (12) - 1s C:\Program Files (x86)\WindowsApps\28075DriftwoodSoftware.FlightTheory_3.1.0.4_x86__54ppfwaph6wwp - (.Driftwood Software.) [][Flight Theory] C:\Program Files (x86)\WindowsApps\34791E63.CanonInkjetPrintUtility_3.1.0.0_neutral__6e5tt8cgb93ep - (.Canon Inc..) [][Canon Inkjet Print Utility] =>Canon Inc. C:\Program Files (x86)\WindowsApps\46728SweetCandyKingdom.Slither.io_1.5.2.1000_x64__ncv0abr25ncwe - (.Sweet Candy Kingdom.) [][Slither.io!] C:\Program Files (x86)\WindowsApps\9E2F88E3.Twitter_6.1.4.1000_neutral__wgeqdkkx372wm - (.Twitter Inc..) [][Twitter] =>Twitter Inc. C:\Program Files (x86)\WindowsApps\E046963F.LenovoCompanion_10.2103.17.0_x64__k1h2ywk1493x8 - (.LENOVO INC..) [][Lenovo Vantage] =>LENOVO INC. C:\Program Files (x86)\WindowsApps\king.com.CandyCrushFriends_1.52.3.0_x86__kgqvnymyfvs32 - (.king.com.) [][Candy Crush Friends] =>king.com C:\Program Files (x86)\WindowsApps\king.com.CandyCrushSodaSaga_1.189.300.0_x86__kgqvnymyfvs32 - (.king.com.) [][Candy Crush Soda Saga] =>king.com C:\Program Files (x86)\WindowsApps\LenovoCorporation.LenovoSettings_3.177.0.0_x86__4642shxvsv8s2 - (.LENOVO INCORPORATED..) [][Lenovo Settings] =>LENOVO INCORPORATED. C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.CBS_120.2212.2020.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Feature Experience Pack] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.964_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.964.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft C:\Program Files (x86)\WindowsApps\SpotifyAB.SpotifyMusic_1.152.687.0_x86__zpdnekdrzrea0 - (.Spotify.) [][Spotify Music] =>Spotify ---\\ CONTENU DES DOSSIERS PROGRAMMES (245) - 27s O43 - CFD: 06/06/2021 - [] AD -- C:\Program Files\AMD =>.Advanced Micro Devices, Inc.® O43 - CFD: 29/05/2021 - [] D -- C:\Program Files\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 19/05/2020 - [] D -- C:\Program Files\BlueStacks_bgp64 [Unsigned] O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc. O43 - CFD: 04/08/2020 - [] D -- C:\Program Files\datronicsoft O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\Dolby Digital Plus =>.Dolby Laboratories Inc O43 - CFD: 27/01/2017 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\Lenovo =>.Lenovo O43 - CFD: 30/05/2021 - [] D -- C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 16/11/2019 - [] AD -- C:\Program Files\rempl =>.Microsoft Corporation O43 - CFD: 04/06/2021 - [] D -- C:\Program Files\Shelblock {7A03573C69F4C7CABDC810C3504DFFE6}. O43 - CFD: 18/02/2019 - [] D -- C:\Program Files\SketchUp =>.@Last Software O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated® O43 - CFD: 05/11/2017 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] AD -- C:\Program Files\UNP =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 29/05/2021 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 05/11/2017 - [] AD -- C:\Program Files (x86)\AMD =>.Advanced Micro Devices, Inc.® O43 - CFD: 05/11/2017 - [] AD -- C:\Program Files (x86)\ATI Technologies =>.ATI Technologies O43 - CFD: 27/06/2016 - [] D -- C:\Program Files (x86)\Cisco =>.Cisco Systems, Inc. O43 - CFD: 07/06/2021 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 23/02/2016 - [] D -- C:\Program Files (x86)\CyberLink =>.CyberLink Corporation O43 - CFD: 28/01/2017 - [] D -- C:\Program Files (x86)\eInstruction {07A6ECE11F958C}. =>.eInstruction O43 - CFD: 03/11/2019 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 28/01/2017 - [] D -- C:\Program Files (x86)\Hermitech Laboratory [Unsigned] =>.Hermitech Laboratory O43 - CFD: 14/06/2020 - [] D -- C:\Program Files (x86)\Icecream Video Editor =>.Icecream Apps Ltd® O43 - CFD: 19/05/2020 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Lenovo =>.Lenovo O43 - CFD: 29/05/2021 - [] D -- C:\Program Files (x86)\ManyCam =>.ManyCam LLC O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation O43 - CFD: 23/02/2016 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 23/02/2016 - [] D -- C:\Program Files (x86)\NSIS Uninstall Information =>.MSIS O43 - CFD: 14/12/2018 - [] AD -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org O43 - CFD: 29/05/2021 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 29/01/2017 - [] AD -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 04/08/2020 - [] D -- C:\Program Files (x86)\Twomon PC Program [Unsigned] O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings =>.Samsung Electronics O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Conexant =>.Conexant Systems, Inc. O43 - CFD: 07/06/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Power2Go 8 =>.CyberLink Corporation O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby =>.Dolby O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eInstruction =>.eInstruction O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream Video Editor O43 - CFD: 07/06/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.5 =>.SourceForge O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SketchUp 2017 =>.@Last Software O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Twomon PC Program O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 05/11/2017 - [0] D -- C:\ProgramData\AMD =>.AMD O43 - CFD: 06/06/2021 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 15/03/2021 - [] D -- C:\ProgramData\AppoloTeam O43 - CFD: 09/04/2021 - [] D -- C:\ProgramData\BlueStacks =>.BlueStack Systems, Inc. O43 - CFD: 19/05/2020 - [] D -- C:\ProgramData\BlueStacks_bgp64 O43 - CFD: 27/01/2017 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 28/01/2017 - [] HD -- C:\ProgramData\CanonBJ =>.Canon Inc. O43 - CFD: 30/10/2015 - [0] D -- C:\ProgramData\Comms =>.Microsoft Corporation O43 - CFD: 05/11/2017 - [] D -- C:\ProgramData\Conexant =>.Conexant Systems, Inc. O43 - CFD: 26/01/2017 - [] D -- C:\ProgramData\Corel =>.Corel Corporation O43 - CFD: 25/04/2017 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 06/06/2021 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 28/01/2017 - [] D -- C:\ProgramData\eInstruction =>.eInstruction O43 - CFD: 29/01/2017 - [] D -- C:\ProgramData\install_backup O43 - CFD: 27/06/2016 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Lenovo =>.Lenovo O43 - CFD: 29/05/2021 - [] D -- C:\ProgramData\ManyCam =>.ManyCam LLC O43 - CFD: 27/01/2017 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 27/01/2017 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 07/06/2021 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 27/06/2016 - [] D -- C:\ProgramData\OneKey Recovery =>.Lenovo Group Limited O43 - CFD: 29/01/2017 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 29/05/2021 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 23/04/2017 - [] D -- C:\ProgramData\PhotoMaster O43 - CFD: 26/01/2017 - [] D -- C:\ProgramData\Protexis64 =>.Protexis Inc. O43 - CFD: 27/06/2016 - [] D -- C:\ProgramData\Realtek =>.Realtek O43 - CFD: 07/06/2021 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 18/02/2019 - [] AD -- C:\ProgramData\Reprise =>.Legitimate O43 - CFD: 04/06/2021 - [] D -- C:\ProgramData\Shelblock O43 - CFD: 18/02/2019 - [] D -- C:\ProgramData\SketchUp =>.@Last Software O43 - CFD: 07/12/2019 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation O43 - CFD: 29/01/2017 - [0] D -- C:\ProgramData\SUPPORTDIR =>.Microsoft Corporation O43 - CFD: 19/05/2020 - [] D -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 26/01/2017 - [] D -- C:\ProgramData\UniqueId =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 19/06/2020 - [] D -- C:\ProgramData\Wargaming.net =>.Wargaming.net O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 27/06/2016 - [] D -- C:\Program Files (x86)\Common Files\CyberLink =>.CyberLink Corporation O43 - CFD: 23/02/2016 - [] D -- C:\Program Files (x86)\Common Files\LENOVO =>.Lenovo O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 29/05/2021 - [] D -- C:\Program Files (x86)\Common Files\Steam =>.Steam Games O43 - CFD: 06/06/2021 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 14/06/2020 - [] D -- C:\Program Files (x86)\Common Files\WebM Project =>.WebM Project O43 - CFD: 26/01/2017 - [] D -- C:\Users\adrie\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 05/11/2017 - [] D -- C:\Users\adrie\AppData\Roaming\ATI =>.ATI O43 - CFD: 26/01/2017 - [] D -- C:\Users\adrie\AppData\Roaming\Corel =>.Corel Corporation O43 - CFD: 25/04/2017 - [] D -- C:\Users\adrie\AppData\Roaming\CyberLink =>.CyberLink Corporation O43 - CFD: 28/01/2017 - [] D -- C:\Users\adrie\AppData\Roaming\eInstruction =>.eInstruction O43 - CFD: 28/09/2018 - [] D -- C:\Users\adrie\AppData\Roaming\GeoGebra =>.International GeoGebra Institute O43 - CFD: 28/01/2017 - [] D -- C:\Users\adrie\AppData\Roaming\Hermitech Laboratory =>.Hermitech Laboratory O43 - CFD: 14/06/2020 - [] D -- C:\Users\adrie\AppData\Roaming\Icecream =>.Icecream O43 - CFD: 29/05/2021 - [] D -- C:\Users\adrie\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 22/04/2019 - [] D -- C:\Users\adrie\AppData\Roaming\installer O43 - CFD: 23/04/2017 - [] D -- C:\Users\adrie\AppData\Roaming\Lenovo =>.Lenovo O43 - CFD: 26/01/2017 - [] D -- C:\Users\adrie\AppData\Roaming\LSC =>.LSC O43 - CFD: 26/01/2017 - [] D -- C:\Users\adrie\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 29/05/2021 - [] D -- C:\Users\adrie\AppData\Roaming\ManyCam =>.ManyCam LLC O43 - CFD: 06/06/2021 - [] SD -- C:\Users\adrie\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 27/11/2019 - [] D -- C:\Users\adrie\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 28/01/2017 - [] D -- C:\Users\adrie\AppData\Roaming\OpenOffice =>.SourceForge O43 - CFD: 27/03/2021 - [] D -- C:\Users\adrie\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 29/05/2021 - [] D -- C:\Users\adrie\AppData\Roaming\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 18/02/2019 - [] D -- C:\Users\adrie\AppData\Roaming\SketchUp =>.@Last Software O43 - CFD: 26/01/2017 - [] D -- C:\Users\adrie\AppData\Roaming\Skype =>.Skype O43 - CFD: 29/01/2017 - [] D -- C:\Users\adrie\AppData\Roaming\Sun =>.Oracle O43 - CFD: 18/02/2019 - [] D -- C:\Users\adrie\AppData\Roaming\Trimble Connect for SketchUp =>.Trimble Navigation Ltd O43 - CFD: 24/06/2020 - [] D -- C:\Users\adrie\AppData\Roaming\Wargaming.net =>.Wargaming.net O43 - CFD: 29/05/2021 - [] D -- C:\Users\adrie\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 07/06/2021 - [] D -- C:\Users\adrie\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 26/01/2017 - [0] D -- C:\Users\adrie\AppData\Local\ActiveSync =>.Microsoft Corporation O43 - CFD: 27/11/2019 - [0] D -- C:\Users\adrie\AppData\Local\Adobe =>.Adobe O43 - CFD: 28/04/2019 - [] D -- C:\Users\adrie\AppData\Local\AMD =>.AMD O43 - CFD: 06/06/2021 - [0] SHD -- C:\Users\adrie\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 05/11/2017 - [] D -- C:\Users\adrie\AppData\Local\ATI =>.ATI O43 - CFD: 09/04/2021 - [] D -- C:\Users\adrie\AppData\Local\Bluestacks =>.BlueStack Systems, Inc. O43 - CFD: 19/05/2020 - [] D -- C:\Users\adrie\AppData\Local\BlueStacksSetup =>.BlueStack Systems, Inc. O43 - CFD: 03/06/2017 - [] D -- C:\Users\adrie\AppData\Local\CEF =>.CEF O43 - CFD: 26/01/2017 - [] D -- C:\Users\adrie\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 11/11/2019 - [] D -- C:\Users\adrie\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 14/06/2020 - [] D -- C:\Users\adrie\AppData\Local\CrashRpt O43 - CFD: 25/04/2017 - [] D -- C:\Users\adrie\AppData\Local\CyberLink =>.CyberLink Corporation O43 - CFD: 04/06/2021 - [] D -- C:\Users\adrie\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 30/01/2018 - [0] D -- C:\Users\adrie\AppData\Local\DBG =>.DBG O43 - CFD: 04/08/2020 - [] D -- C:\Users\adrie\AppData\Local\Devguru O43 - CFD: 02/06/2021 - [] D -- C:\Users\adrie\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 04/08/2020 - [] D -- C:\Users\adrie\AppData\Local\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 30/05/2021 - [] D -- C:\Users\adrie\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 04/06/2021 - [] D -- C:\Users\adrie\AppData\Local\ESET =>.ESET O43 - CFD: 02/06/2021 - [0] D -- C:\Users\adrie\AppData\Local\FSDART =>.Games Software O43 - CFD: 28/05/2019 - [] D -- C:\Users\adrie\AppData\Local\GeoGebra_6 =>.International GeoGebra Institute O43 - CFD: 28/01/2017 - [] D -- C:\Users\adrie\AppData\Local\Google =>.Google O43 - CFD: 06/06/2021 - [0] SHD -- C:\Users\adrie\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 14/06/2020 - [] D -- C:\Users\adrie\AppData\Local\Icecream =>.Icecream O43 - CFD: 06/06/2021 - [] D -- C:\Users\adrie\AppData\Local\Lenovo =>.Lenovo O43 - CFD: 09/04/2021 - [] D -- C:\Users\adrie\AppData\Local\ManyCam =>.ManyCam LLC O43 - CFD: 04/06/2021 - [] D -- C:\Users\adrie\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 25/04/2017 - [0] D -- C:\Users\adrie\AppData\Local\MediaShow =>.CyberLink Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Users\adrie\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 05/11/2017 - [] D -- C:\Users\adrie\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 27/11/2019 - [] D -- C:\Users\adrie\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 07/06/2021 - [] D -- C:\Users\adrie\AppData\Local\Mozilla Firefox =>.Mozilla O43 - CFD: 28/01/2017 - [0] D -- C:\Users\adrie\AppData\Local\NetworkTiles =>.NetworkTiles O43 - CFD: 11/05/2019 - [] D -- C:\Users\adrie\AppData\Local\OneDrive =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Users\adrie\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 30/05/2021 - [0] D -- C:\Users\adrie\AppData\Local\PackageStaging =>.Apcera O43 - CFD: 02/07/2020 - [] D -- C:\Users\adrie\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 26/01/2017 - [] D -- C:\Users\adrie\AppData\Local\Power2Go8 =>.CyberLink Corporation O43 - CFD: 14/06/2020 - [] D -- C:\Users\adrie\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 28/09/2018 - [] D -- C:\Users\adrie\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 15/02/2021 - [] D -- C:\Users\adrie\AppData\Local\Roblox =>.ROBLOX O43 - CFD: 15/03/2021 - [] D -- C:\Users\adrie\AppData\Local\Shelblock O43 - CFD: 25/08/2017 - [] D -- C:\Users\adrie\AppData\Local\speech =>.Microsoft Corporation O43 - CFD: 28/09/2018 - [] D -- C:\Users\adrie\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 27/03/2021 - [] D -- C:\Users\adrie\AppData\Local\Steam =>.Steam Games O43 - CFD: 07/06/2021 - [0] D -- C:\Users\adrie\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [0] SHD -- C:\Users\adrie\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 26/01/2017 - [] D -- C:\Users\adrie\AppData\Local\TileDataLayer =>.Microsoft Corporation O43 - CFD: 26/01/2017 - [0] D -- C:\Users\adrie\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 05/06/2021 - [] D -- C:\Users\adrie\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 14/06/2020 - [0] D -- C:\Users\adrie\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Users\adrie\AppData\LocalLow\AMD =>.AMD O43 - CFD: 30/05/2021 - [] SD -- C:\Users\adrie\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 07/06/2021 - [0] D -- C:\Users\adrie\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 28/01/2017 - [] D -- C:\Users\adrie\AppData\LocalLow\Sun =>.Oracle O43 - CFD: 05/07/2020 - [] D -- C:\Users\adrie\Desktop\clée USB O43 - CFD: 06/06/2021 - [0] D -- C:\Users\adrie\Desktop\derniers rapports O43 - CFD: 07/06/2021 - [0] D -- C:\Users\adrie\Desktop\filmora O43 - CFD: 08/04/2018 - [] D -- C:\Users\adrie\Desktop\Nouveau dossier O43 - CFD: 14/06/2020 - [] D -- C:\Users\adrie\Desktop\Nouveau dossier (2) O43 - CFD: 29/05/2021 - [] D -- C:\Users\adrie\Desktop\ROBLOX =>.ROBLOX O43 - CFD: 14/06/2020 - [] D -- C:\Users\adrie\Desktop\Sortie cirque Adrien 2 février 2017 O43 - CFD: 28/05/2021 - [] D -- C:\Users\adrie\Desktop\youtube =>.Youtube O43 - CFD: 06/06/2021 - [] RD -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] RD -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] RD -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 07/12/2019 - [] D -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 06/06/2021 - [] D -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox =>.ROBLOX O43 - CFD: 06/06/2021 - [] RD -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam =>.Steam Games O43 - CFD: 07/12/2019 - [] RD -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net =>.Wargaming.net O43 - CFD: 06/06/2021 - [] D -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Users\adrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 06/06/2021 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 27/01/2017 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 27/01/2017 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Devguru O43 - CFD: 06/06/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 06/06/2021 - [0] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Twomon Windows Server ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 1s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (27) - 4s O108 - CMH1: BtSendToMenuEx [64Bits] - {CF24E6B8-F148-4BCB-9108-ADF313966E80} . (.Realtek Semiconductor Corporation - Realtek Bluetooth Device Menu DLL.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\DevMenuExt.dll =>.Realtek Semiconductor Corp® O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: BtSendToMenuEx [64Bits] - {CF24E6B8-F148-4BCB-9108-ADF313966E80} . (.Realtek Semiconductor Corporation - Realtek Bluetooth Device Menu DLL.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\DevMenuExt.dll =>.Realtek Semiconductor Corp® O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - Radeon Settings: Desktop Control Panel.) -- C:\Program Files\AMD\CNext\CNext\atiacm64.dll [Unsigned] =>.Advanced Micro Devices, Inc. O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (17) - 3s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft® O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Driver Installation Module.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTÈME (444) - 57s O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [266240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft® O58 - SDL:2021/06/06 15:50:30 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [809288] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [139792] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/06/15 10:00:05 A . (.Lenovo Corporation - ACPI Virtual Power Controller Driver.) -- C:\WINDOWS\System32\drivers\AcpiVpc.sys [42328] =>.LENOVO® O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [415232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft® O58 - SDL:2021/06/06 15:54:34 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [647480] =>.Microsoft® O58 - SDL:2021/06/06 15:55:29 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [41984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:55:36 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:55:04 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [292352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2021/06/06 15:50:30 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [207160] =>.Microsoft® O58 - SDL:2017/06/16 11:48:52 A . (.Advanced Micro Devices, Inc. - amdkmcsp sys.) -- C:\WINDOWS\System32\drivers\amdkmcsp.sys [101232] =>.Advanced Micro Devices Inc.® O58 - SDL:2015/12/08 12:51:51 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [82704] =>.Advanced Micro Devices, Inc.® O58 - SDL:2021/06/06 15:50:30 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [211256] =>.Microsoft® O58 - SDL:2017/06/16 11:48:56 A . (.Advanced Micro Devices, Inc. - amdpsp sys.) -- C:\WINDOWS\System32\drivers\amdpsp.sys [243048] =>.Advanced Micro Devices Inc.® O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft® O58 - SDL:2015/05/12 20:54:30 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amd_sata.sys [84504] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/05/12 20:54:30 A . (.Advanced Micro Devices - Stor Filter Driver.) -- C:\WINDOWS\System32\drivers\amd_xata.sys [24600] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2021/06/06 15:53:57 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [208696] =>.Microsoft® O58 - SDL:2021/06/06 15:53:57 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft® O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30008] =>.Microsoft® O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [223032] =>.Microsoft® O58 - SDL:2015/07/22 01:42:04 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWT6.sys [102912] [Unsigned] =>.Advanced Micro Devices O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [78136] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [41272] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:53:05 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [148816] =>.Microsoft® O58 - SDL:2021/06/06 15:51:10 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [117760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:39 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [127488] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [36352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [279040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:32 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [113664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [144896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:32 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\WINDOWS\System32\drivers\bthpan.sys [133632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:32 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1560064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:32 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [66576] =>.Microsoft® O58 - SDL:2019/12/07 11:09:37 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [174080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:52:59 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [79688] =>.Microsoft® O58 - SDL:2016/07/13 02:58:30 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\WINDOWS\System32\drivers\CHDRT64.sys [1561640] =>.Conexant Systems, Inc.® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft® O58 - SDL:2021/06/06 15:53:05 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [91136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [52224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:31 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [417088] =>.Microsoft® O58 - SDL:2021/06/06 15:54:02 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [495616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:37 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [411472] =>.Microsoft® O58 - SDL:2021/06/06 15:52:00 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1090360] =>.Microsoft® O58 - SDL:2013/11/12 14:25:22 A . (.CyberLink - It is a virtual device driver which could c.) -- C:\WINDOWS\System32\drivers\CLVirtualDrive.sys [91912] =>.CyberLink Corp.® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:51:01 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [29000] =>.Microsoft® O58 - SDL:2021/06/06 15:54:29 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [733984] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [40968] =>.Microsoft® O58 - SDL:2021/06/06 15:53:06 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [57160] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [99368] =>.Microsoft® O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [97080] =>.Microsoft® O58 - SDL:2021/06/06 15:50:26 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:37 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [152064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/09/02 16:20:02 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - DGLvr Bus.) -- C:\WINDOWS\System32\drivers\dglvrbus.sys [85984] =>.DEVGURU CO LTD® O58 - SDL:2016/09/02 16:20:02 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - Twomon WDDM Display Driver.) -- C:\WINDOWS\System32\drivers\dglvrkdod.sys [45536] =>.DEVGURU CO LTD® O58 - SDL:2016/09/02 16:20:04 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - Devguru Virtual HID Filter Driver.) -- C:\WINDOWS\System32\drivers\dglvrmflt.sys [27104] =>.DEVGURU CO LTD® O58 - SDL:2021/06/06 15:50:30 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [98624] =>.Microsoft® O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [59192] =>.Microsoft® O58 - SDL:2021/06/06 15:50:27 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [97792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:27 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16128] =>.Microsoft® O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [37392] =>.Microsoft® O58 - SDL:2021/06/06 16:02:59 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [93112] =>.Microsoft® O58 - SDL:2021/06/06 15:50:35 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [195408] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:52 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [35128] =>.Microsoft® O58 - SDL:2021/06/06 15:52:02 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [3785040] =>.Microsoft® O58 - SDL:2021/06/06 15:52:02 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [454968] =>.Microsoft® O58 - SDL:2021/06/06 15:52:02 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [904528] =>.Microsoft® O58 - SDL:2021/06/06 15:58:35 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [95032] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [124728] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [15872] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft® O58 - SDL:2019/12/07 11:08:05 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [415032] =>.Microsoft® O58 - SDL:2021/06/06 15:50:45 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [425272] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [59392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [94736] =>.Microsoft® O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:31 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [430392] =>.Microsoft® O58 - SDL:2021/06/06 15:51:01 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [69968] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [33592] =>.Microsoft® O58 - SDL:2021/06/06 16:02:59 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [800064] =>.Microsoft® O58 - SDL:2021/06/06 15:54:35 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [502600] =>.Microsoft® O58 - SDL:2019/12/07 11:08:05 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [132608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:27 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [430080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [39440] =>.Microsoft® O58 - SDL:2021/06/06 15:50:32 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [120320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:32 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [225792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [55824] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:32 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:32 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2011/10/31 18:12:34 A . (.Hewlett-Packard. - USB HID Upper Filter Driver.) -- C:\WINDOWS\System32\drivers\HPMoA407.sys [25088] [Unsigned] =>.Hewlett-Packard. O58 - SDL:2019/12/07 11:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft® O58 - SDL:2012/06/14 10:37:22 A . (.Hewlett-Packard. - USB HID Filter Driver.) -- C:\WINDOWS\System32\drivers\HPubA407.sys [18944] [Unsigned] =>.Hewlett-Packard. O58 - SDL:2021/06/06 15:54:20 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1575744] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [35128] =>.Microsoft® O58 - SDL:2021/06/06 15:58:18 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [95056] =>.Microsoft® O58 - SDL:2021/06/06 15:59:27 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [148280] =>.Microsoft® O58 - SDL:2021/06/06 15:54:31 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [33096] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [27448] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [41784] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft® O58 - SDL:2021/06/06 15:53:07 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19776] =>.Microsoft® O58 - SDL:2021/06/06 15:50:30 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [418800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:30 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [230728] =>.Microsoft® O58 - SDL:2021/06/06 15:50:30 A . (.Microsoft Corporation - Intel Telemetry Driver.) -- C:\WINDOWS\System32\drivers\IntelTA.sys [26608] =>.Microsoft® O58 - SDL:2019/12/07 11:08:05 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [57360] =>.Microsoft® O58 - SDL:2021/06/06 15:55:35 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [117560] =>.Microsoft® O58 - SDL:2019/12/07 11:08:34 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [225280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22840] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [71480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [33296] =>.Microsoft® O58 - SDL:2021/06/06 15:50:45 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:55:02 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [449024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:34 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [147280] =>.Microsoft® O58 - SDL:2021/06/06 15:54:29 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [180040] =>.Microsoft® O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:55 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [72704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft® O58 - SDL:2021/06/06 15:55:04 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [140800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [537608] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [64016] =>.Microsoft® O58 - SDL:2021/06/06 15:50:45 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [386048] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [65024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:32 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [106496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft® O58 - SDL:2021/06/06 15:50:57 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:59:18 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:29 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [67600] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [110392] =>.Microsoft® O58 - SDL:2019/12/07 11:08:33 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:54 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [157696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:37 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [577848] =>.Microsoft® O58 - SDL:2021/06/06 16:00:24 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\WINDOWS\System32\drivers\mrxsmb10.sys [307712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:37 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [264008] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [44048] =>.Microsoft® O58 - SDL:2021/06/06 15:52:09 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [183112] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [56120] =>.Microsoft® O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:16 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [20280] =>.Microsoft® O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [292672] =>.Microsoft® O58 - SDL:2021/06/06 15:55:02 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:16 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\msquic.sys [322376] =>.Microsoft® O58 - SDL:2021/06/06 15:54:34 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [382792] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [47928] =>.Microsoft® O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:37 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [132920] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft® O58 - SDL:2021/06/06 15:54:34 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1475904] =>.Microsoft® O58 - SDL:2019/12/07 11:09:48 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [54272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:55:28 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [135168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:55:44 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [70656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:55:44 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [206848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:48 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [72720] =>.Microsoft® O58 - SDL:2021/06/06 15:55:44 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [93696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [131584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:35 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [207360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [64312] =>.Microsoft® O58 - SDL:2021/06/06 15:55:28 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [341504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:34 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [603464] =>.Microsoft® O58 - SDL:2021/06/06 15:50:37 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [250192] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [87568] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:34 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:32 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2852680] =>.Microsoft® O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [20792] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [168464] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft® O58 - SDL:2021/06/06 15:51:21 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [740864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:52:59 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [161608] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [109056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:33 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [182592] =>.Microsoft® O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [469304] =>.Microsoft® O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16712] =>.Microsoft® O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [56648] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [127800] =>.Microsoft® O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [57656] =>.Microsoft® O58 - SDL:2021/06/06 15:51:01 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [159048] =>.Microsoft® O58 - SDL:2021/06/06 15:51:08 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [822784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft® O58 - SDL:2021/06/06 15:59:14 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [129872] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [138040] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [27136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:27 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [388608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:30 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [216376] =>.Microsoft® O58 - SDL:2019/12/07 11:08:33 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [43448] =>.Microsoft® O58 - SDL:2019/12/07 11:09:05 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [42296] =>.Microsoft® O58 - SDL:2021/06/06 15:55:35 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [20480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:55:44 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [87552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:55:44 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [101888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:55:44 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:37 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [455480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:59:14 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:59:02 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [31544] =>.Microsoft® O58 - SDL:2019/12/07 11:09:54 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [297784] =>.Microsoft® O58 - SDL:2021/06/06 15:54:00 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [2004304] =>.Microsoft® O58 - SDL:2019/12/07 11:08:46 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [990008] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [213504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:38 A . (.Microsoft Corporation - Microsoft RemoteFX VM Transport.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [115712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:41 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [158208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:55 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [89088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/04/19 05:56:46 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.40 64-bit Dr.) -- C:\WINDOWS\System32\drivers\rt640x64.sys [943104] =>.Realtek Semiconductor Corp.® O58 - SDL:2019/12/07 11:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek O58 - SDL:2015/05/21 12:55:12 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\RtkA2dp.sys [182288] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/05/12 01:12:08 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth AVRCP Driver.) -- C:\WINDOWS\System32\drivers\RtkAvrcp.sys [60944] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/05/12 01:14:44 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Avrcp Controller Driver.) -- C:\WINDOWS\System32\drivers\RtkAvrcpCtrlr.sys [70672] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2019/05/20 03:41:58 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Filter Driver.) -- C:\WINDOWS\System32\drivers\RtkBtfilter.sys [779104] =>.Realtek Semiconductor Corp.® O58 - SDL:2015/05/12 01:19:14 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Hands-free-AG Audio Drive.) -- C:\WINDOWS\System32\drivers\RtkHfp.sys [95248] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2015/07/03 11:00:52 A . (.Realsil Semiconductor Corporation - RTS USB READER Driver.) -- C:\WINDOWS\System32\drivers\RtsUer.sys [410880] =>.Realtek Semiconductor Corp® O58 - SDL:2015/06/11 10:55:34 A . (.Realtek Semiconductor Corp. - Realtek UVC Driver for Vista/Win7/Win8/Win8.) -- C:\WINDOWS\System32\drivers\rtsuvc.sys [3059416] =>.Realtek Semiconductor Corp® O58 - SDL:2019/12/07 11:07:47 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 69342 29887.) -- C:\WINDOWS\System32\drivers\rtwlane01.sys [8169472] [Unsigned] =>.Realtek Semiconductor Corporation O58 - SDL:2021/06/06 15:50:30 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [116552] =>.Microsoft® O58 - SDL:2021/06/06 15:55:50 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [158736] =>.Microsoft® O58 - SDL:2021/06/06 15:55:07 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [187704] =>.Microsoft® O58 - SDL:2021/06/06 15:50:35 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [305472] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [35128] =>.Microsoft® O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [105488] =>.Microsoft® O58 - SDL:2021/06/06 15:50:35 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [103736] =>.Microsoft® O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [86328] =>.Microsoft® O58 - SDL:2019/12/07 11:08:36 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [173072] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [90624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [88080] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft® O58 - SDL:2017/05/16 07:14:48 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [69184] =>.Synaptics Incorporated® O58 - SDL:2017/05/16 07:14:50 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [72768] =>.Synaptics Incorporated® O58 - SDL:2019/12/07 11:09:09 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [215888] =>.Microsoft® O58 - SDL:2019/12/07 11:09:34 A . (.Microsoft Corporation - Storage Spaces Parser.) -- C:\WINDOWS\System32\drivers\spaceparser.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [677712] =>.Microsoft® O58 - SDL:2019/12/07 16:52:56 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [90936] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [87352] =>.Microsoft® O58 - SDL:2021/06/06 16:00:24 A . (.Microsoft Corporation - Server driver.) -- C:\WINDOWS\System32\drivers\srv.sys [450048] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:37 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [787968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:54:37 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/04/24 02:22:16 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [136040] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2019/09/26 04:44:02 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [166760] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2019/12/07 11:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft® O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [186168] =>.Microsoft® O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [155960] =>.Microsoft® O58 - SDL:2021/06/06 15:51:01 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [713544] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [92984] =>.Microsoft® O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [60728] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [44048] =>.Microsoft® O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [82432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/05/16 07:14:56 A . (.Synaptics Incorporated - Synaptics HIDI2C Driver.) -- C:\WINDOWS\System32\drivers\SynHidI2C_Aux.sys [101440] =>.Synaptics Incorporated® O58 - SDL:2017/05/16 07:14:58 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys [66112] =>.Synaptics Incorporated® O58 - SDL:2021/06/06 15:50:38 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSC.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [6656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2017/05/16 07:14:58 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [912960] =>.Synaptics Incorporated® O58 - SDL:2019/12/07 11:09:00 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:51:13 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [31568] =>.Microsoft® O58 - SDL:2021/06/06 15:54:35 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2990400] =>.Microsoft® O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [54784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [39736] =>.Microsoft® O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117560] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [41272] =>.Microsoft® O58 - SDL:2021/06/06 15:54:37 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [141128] =>.Microsoft® O58 - SDL:2021/06/06 15:50:35 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [255288] =>.Microsoft® O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [37888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:04 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [129024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79376] =>.Microsoft® O58 - SDL:2021/06/06 15:53:09 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [166400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [188416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:53:09 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [259896] =>.Microsoft® O58 - SDL:2019/12/07 11:08:09 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [52736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [344064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:53:09 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [321856] =>.Microsoft® O58 - SDL:2021/06/06 15:50:34 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [168264] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [76304] =>.Microsoft® O58 - SDL:2019/12/07 11:09:07 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:27 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [210432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [260608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:34 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [185664] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [33080] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [86544] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [528184] =>.Microsoft® O58 - SDL:2021/06/06 15:50:35 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [653136] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [473400] =>.Microsoft® O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [88064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:35 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [135480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [39424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:35 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [602440] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [67384] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [347448] =>.Microsoft® O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [820560] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [47616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:36 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [639800] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [114488] =>.Microsoft® O58 - SDL:2021/06/06 15:50:37 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [160072] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [36664] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [23864] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [19768] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [18960] =>.Microsoft® O58 - SDL:2021/06/06 15:50:37 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [54080] =>.Microsoft® O58 - SDL:2021/06/06 15:50:31 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [90960] =>.Microsoft® O58 - SDL:2019/12/07 11:09:37 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [389432] =>.Microsoft® O58 - SDL:2021/06/06 15:51:37 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16696] =>.Microsoft® O58 - SDL:2019/12/07 11:07:57 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [89400] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft® O58 - SDL:2019/12/07 11:08:13 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:13 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:13 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [50688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:55:44 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:52:02 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [74752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:53:05 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [202544] =>.Microsoft® O58 - SDL:2021/06/06 15:53:05 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:15 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46688] =>.Microsoft® O58 - SDL:2021/06/06 15:54:33 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [832848] =>.Microsoft® O58 - SDL:2019/12/07 11:08:15 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [350136] =>.Microsoft® O58 - SDL:2021/06/06 15:54:33 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [59192] =>.Microsoft® O58 - SDL:2021/06/06 15:51:21 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [958976] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:39 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [23560] =>.Microsoft® O58 - SDL:2019/12/07 11:08:16 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [54200] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [52024] =>.Microsoft® O58 - SDL:2021/06/06 15:52:59 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [180024] =>.Microsoft® O58 - SDL:2021/06/06 15:54:11 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [39736] =>.Microsoft® O58 - SDL:2019/12/07 11:08:37 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [76984] =>.Microsoft® O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18920] =>.Microsoft® O58 - SDL:2019/12/07 11:09:51 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [32784] =>.Microsoft® O58 - SDL:2019/12/07 11:09:33 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [96056] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft® O58 - SDL:2021/06/06 15:50:55 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [259584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:56 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [107008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [19472] =>.Microsoft® O58 - SDL:2021/06/06 15:54:02 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [234296] =>.Microsoft® O58 - SDL:2019/12/07 16:52:58 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [32568] =>.Microsoft® O58 - SDL:2019/12/07 11:08:49 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 11:08:41 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Microsoft Corporation - Web Services Print Device Driver.) -- C:\WINDOWS\System32\drivers\WSDPrint.sys [23552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:29 A . (.Microsoft Corporation - Web Service Based Scan Device Driver.) -- C:\WINDOWS\System32\drivers\WSDScan.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2012/06/13 17:10:32 A . (."CyberLink - Cyberlink Virtual Disk Driver.) -- C:\WINDOWS\System32\drivers\wsvd.sys [102376] =>.CyberLink® O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [136192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:58 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:26 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [329216] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:50:26 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [51712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:53:04 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [596992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:52:27 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2916864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:53:04 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3815936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:08:34 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:57:14 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\SysWOW64\win32k.sys [329728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/06 15:57:15 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\SysWOW64\win32kfull.sys [2750976] [Unsigned] =>.Microsoft Corporation ---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (1) - 93s O61 - LFC: 2021/06/03 15:31:44 A . (.Shelblock.) -- C:\ProgramData\Package Cache\{796F03FD-3EF2-45DE-BA22-644FD2E075FA}\shelblock_uninstaller.exe [582144] [Unsigned] ---\\ ASSOCIATION Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (12) - 2s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (4) - 26s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] [64Bits]{6DB5FD38-128C-4EB9-8DF3-2C8ECEF16581} - (Yahoo Search) - http://fr.search.yahoo.com/ =>.Yahoo! Inc. O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{29FCDDB0-906C-45FA-9076-FCAD3DC7D157} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (50) - 8s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [301568] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1335296] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1051136] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836096] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [160256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [814592] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [489472] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [515072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [127488] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2434560] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [281088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [418816] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [302080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1270272] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1020416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [941056] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1485312] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [309760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2242048] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1522688] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [967168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [520192] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [619008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3394048] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [259584] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [938952] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [214528] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [569856] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [288256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [140800] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [555008] [Unsigned] =>.Microsoft Corporation ---\\ CODES PRODUITS LOGICIELS (67) - 6s O90 - PUC: "00005109831090400000000000F01FEC" [HKLM] . (.Microsoft Office.) -- C:\Windows\Installer\{90150000-0138-0409-0000-0000000FF1CE}\firstrun.exe =>.Microsoft Corporation O90 - PUC: "007B4EE07B406AF658AF43A20D59FDA4" [HKLM] . (.AMD Settings.) -- C:\WINDOWS\Installer\{0EE4B700-04B7-6FA6-85FA-342AD095DF4A}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "08968D3213DA8E831E0C7E5B473BC441" [HKLM] . (.AMD Catalyst Install Manager.) -- C:\Windows\Installer\{23D86980-AD31-38E8-E1C0-E7B574B34C14}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "0B5B5B2C545249E44BAB45D8B40F1B69" [HKLM] . (.Metric Collection SDK 35.) =>.Lenovo Group Limited O90 - PUC: "1007C6B46D7C017319E3B52CF3EC196E" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148.) =>.bl.org O90 - PUC: "150F10A01DFEA1A216991BC7288A7A93" [HKLM] . (.Catalyst Control Center InstallProxy.) -- C:\Windows\Installer\{0A01F051-EFD1-2A1A-6199-B17C82A8A739}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "15d4ea3d31e6cf94e8e86d13007d6c98" [HKLM] . (.Twomon PC Program.) -- C:\WINDOWS\Installer\{d3ae4d51-6e13-49fc-8e8e-d63100d7c689}\ARPPRODUCTICON.exe O90 - PUC: "1CCA4838D00D8183C8544EE1C3F36C9F" [HKLM] . (.Catalyst Control Center Next Localization PL.) -- C:\WINDOWS\Installer\{8384ACC1-D00D-3818-8C45-E41E3C3FC6F9}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "21EE4A31AE32173319EEFE3BD6FDFFE3" [HKLM] . (.Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "22BEFC8F7E2A1793E9ADB411DEFE1C58" [HKLM] . (.Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "247F7F66DA8CFD04092838851477B2BB" [HKLM] . (.Shelblock.) -- C:\WINDOWS\Installer\{66F7F742-C8AD-40DF-9082-835841772BBB}\_853F67D554F05449430E7E.exe =>.bl.org O90 - PUC: "2AB75E049206D5A72AEBD7743019950D" [HKLM] . (.Catalyst Control Center Next Localization EL.) -- C:\WINDOWS\Installer\{40E57BA2-6029-7A5D-A2BE-7D47039159D0}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "33CB2A05DC9C1FB38AFF351CA0B081C3" [HKLM] . (.Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215.) =>.Microsoft Corporation O90 - PUC: "3B3A03E6724519D98587DB1628C06517" [HKLM] . (.Catalyst Control Center Next Localization NL.) -- C:\WINDOWS\Installer\{6E30A3B3-5427-9D91-5878-BD61820C5671}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "3e43b73803c7c394f8a6b2f0402e19c2" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: "421D4F645E0221D4EB25CE71A7A7B424" [HKLM] . (.OneKey Recovery.) -- C:\Windows\Installer\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "514282E106F8E500852CF87A7A3A19BF" [HKLM] . (.Catalyst Control Center Next Localization NO.) -- C:\WINDOWS\Installer\{1E282415-8F60-005E-58C2-8FA7A7A391FB}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "545C933FCD420784AA23E66B0B05B059" [HKLM] . (.UpdateAssistant.) =>.Corel Corporation O90 - PUC: "5A0CDEF06DE895A1874A538E72483E0E" [HKLM] . (.Catalyst Control Center Next Localization SV.) -- C:\WINDOWS\Installer\{0FEDC0A5-8ED6-1A59-78A4-35E82784E3E0}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "5C4E2354D48C04040A44CECF5C6C99B5" [HKLM] . (.REACHit.) -- C:\Windows\Installer\{4532E4C5-C84D-4040-A044-ECFCC5C6995B}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "5D0C80EEF297652B4A99CECE65195526" [HKLM] . (.Catalyst Control Center Next Localization CS.) -- C:\WINDOWS\Installer\{EE08C0D5-792F-B256-A499-ECEC56915562}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "60B213FAC5C5E864983BEBD62E467522" [HKLM] . (.Cisco LEAP Module.) =>.Cisco Systems, Inc. O90 - PUC: "62DBF9290209B993A9A757D1160F9B24" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "63AEB64B17B0E4A4EA1478426134AFA0" [HKLM] . (.PowerDVD.) -- C:\Windows\Installer\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}\ARPPRODUCTICON.exe =>.CyberLink Corporation O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org O90 - PUC: "6E0FE4A0219AEDC47A3FE6657E1CA3F2" [HKLM] . (.Cisco PEAP Module.) =>.Cisco Systems, Inc. O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "70949606ED4CEA4AD80D2E5EE0A3C941" [HKLM] . (.Catalyst Control Center Next Localization FR.) -- C:\WINDOWS\Installer\{60694907-C4DE-A4AE-8DD0-E2E50E3A9C14}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "76F6C295B6D543E8099BE2D944CF35B7" [HKLM] . (.Catalyst Control Center Next Localization HU.) -- C:\WINDOWS\Installer\{592C6F67-5D6B-8E34-90B9-2E9D44FC537B}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "7810FB462D3FB89499AE61A39FEAE69C" [HKLM] . (.Cisco EAP-FAST Module.) =>.Cisco Systems, Inc. O90 - PUC: "7A690D31446DF4499FD9281A0751AA0E" [HKLM] . (.Catalyst Control Center Next Localization CHT.) -- C:\WINDOWS\Installer\{13D096A7-D644-944F-F99D-82A17015AAE0}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "7C9F8B73BF303523781852719CD9C700" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "83F19CAD40D7CF0991BCCAC1060821DE" [HKLM] . (.Catalyst Control Center Next Localization DE.) -- C:\WINDOWS\Installer\{DAC91F38-7D04-90FC-19CB-AC1C608012ED}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "88E7ADA661D8D0D4CB09B239CAE565AD" [HKLM] . (.LenovoUtility.) -- C:\Windows\Installer\{6ADA7E88-8D16-4D0D-BC90-2B93AC5E56DA}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "8FC2C70F35C43CE418266A22E163BE88" [HKLM] . (.Manuels d'utilisateur.) -- C:\Windows\Installer\{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "981A8F0C69C49710CAEE9AF816F84D27" [HKLM] . (.Catalyst Control Center Next Localization FI.) -- C:\WINDOWS\Installer\{C0F8A189-4C96-0179-ACEE-A98F618FD472}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "9A6CE1FEED719AD30B0486A6E1A8B840" [HKLM] . (.Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215.) =>.Microsoft Corporation O90 - PUC: "9AB4633EA382C4B2D2DE092C485AB4D8" [HKLM] . (.Catalyst Control Center Next Localization KO.) -- C:\WINDOWS\Installer\{E3364BA9-283A-2B4C-2DED-90C284A54B8D}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "9B0884AD774FC6830BD71EA3F754564C" [HKLM] . (.Catalyst Control Center Next Localization RU.) -- C:\WINDOWS\Installer\{DA4880B9-F477-386C-B07D-E13A7F4565C4}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "A868529FC2F2B4145A7A6C3130C99E4E" [HKLM] . (.Lenovo Solution Center.) -- C:\Windows\Installer\{F925868A-2F2C-414B-A5A7-C613039CE9E4}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "AF2E658AE083DA347BD976324FE47E64" [HKLM] . (.spacedesk Windows DRIVER.) -- C:\WINDOWS\Installer\{A856E2FA-380E-43AD-B79D-6723F44EE746}\installerIcon.ico O90 - PUC: "AFB316B3CA0CFBF5921BC363D2EF14B7" [HKLM] . (.Catalyst Control Center Next Localization JA.) -- C:\WINDOWS\Installer\{3B613BFA-C0AC-5FBF-29B1-3C362DFE417B}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "B178C2D8F9B1CA54C934B21B0898DCAF" [HKLM] . (.Lenovo QuickOptimizer.) -- C:\Windows\Installer\{8D2C871B-1B9F-45AC-9C43-2BB18089CDFA}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "B69C9F73A4927A6D81D339C0A8F2D586" [HKLM] . (.Catalyst Control Center Next Localization DA.) -- C:\WINDOWS\Installer\{37F9C96B-294A-D6A7-183D-930C8A2F5D68}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "B7405CC404C629343AA69740787ACB0E" [HKLM] . (.Device Manager.) -- C:\Windows\Installer\{4CC5047B-6C40-4392-A36A-790487A7BCE0}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "BF4536F368E8FEB45AF341D14139EED6" [HKLM] . (.Catalyst Control Center Next Localization TR.) -- C:\WINDOWS\Installer\{3F6354FB-8E86-4BEF-A53F-141D1493EE6D}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "BFD62B228DB4F63E5C23F3BB45F822BD" [HKLM] . (.AMD Settings.) -- C:\WINDOWS\Installer\{22B26DFB-4BD8-E36F-C532-3FBB548F22DB}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C173E5AD3336A8D3394AF65D2BB0CCE6" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319.) =>.bl.org O90 - PUC: "c1c4f01781cc94c4c8fb1542c0981a2a" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: "C3AEB2FCAE628F23AAB933F1E743AB79" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C3D929BD3FD50A5954F6043360EE966B" [HKLM] . (.Catalyst Control Center Next Localization BR.) -- C:\WINDOWS\Installer\{DB929D3C-5DF3-95A0-456F-403306EE69B6}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "CE0C8FB37213D24F877BC7C5E9866275" [HKLM] . (.Catalyst Control Center Next Localization TH.) -- C:\WINDOWS\Installer\{3BF8C0EC-3127-F42D-78B7-7C5C9E682657}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org O90 - PUC: "D673F8B728D74A141AE4D6AA4A62BC9D" [HKLM] . (.SketchUp 2017.) -- C:\WINDOWS\Installer\{7B8F376D-7D82-41A4-A14E-6DAAA426CBD9}\SketchUpARPIcon =>.Google Inc. O90 - PUC: "D84D78A2FDF3df1479DC1A3E07FEFF2E" [HKLM] . (.Power2Go.) -- C:\Windows\Installer\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}\ARPPRODUCTICON.exe =>.CyberLink Corporation O90 - PUC: "DAC55B600FF908EE59C423AF68EA3DFB" [HKLM] . (.Catalyst Control Center Next Localization IT.) -- C:\WINDOWS\Installer\{06B55CAD-9FF0-EE80-954C-32FA86AED3BF}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "DFCE45A77B07FD805D18C80DB4C4AD90" [HKLM] . (.Catalyst Control Center Next Localization ES.) -- C:\WINDOWS\Installer\{7A54ECFD-70B7-08DF-D581-8CD04B4CDA09}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "E128CD23D7A48784EB8E33F71A357D2F" [HKLM] . (.Update for Windows 10 for x64-based Systems (KB4023057).) =>.Microsoft Corporation O90 - PUC: "E2F4C551183708B42B85DF60009C4CB6" [HKLM] . (.OpenOffice 4.1.5.) -- C:\WINDOWS\Installer\{155C4F2E-7381-4B80-B258-FD0600C9C46B}\soffice.ico =>.Open Source O90 - PUC: "E48D61F5C158BB92C3EB4A08BDEAA390" [HKLM] . (.Catalyst Control Center Next Localization CHS.) -- C:\WINDOWS\Installer\{5F16D84E-851C-29BB-3CBE-A480DBAE3A09}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "F0D8DB6ED0ABB4A45A8A7CD4BE38569F" [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation O90 - PUC: "F36CFB0B70AEE91469B0F32BDED50D2B" [HKLM] . (.Dolby Digital Plus Advanced Audio.) -- C:\WINDOWS\Installer\{B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2}\DolbyBlue.exe =>.Legitimate ---\\ PACKAGES WINDOWS INSTALLER (46) - 15s [MD5.5ED28C20AB6633098B5687B93D1B2B5D] [WIS][2017/12/12 05:24:08] (.OpenOffice - OpenOffice 4.1.5.) -- C:\WINDOWS\Installer\17c277.msi [2314240] =>.OpenOffice [MD5.F6B05B5D08B70E576EAEB26937D4F948] [WIS][2015/11/06 12:24:48] (.CyberLink Corp..) -- C:\WINDOWS\Installer\1b0939.msi [1314816] =>.CyberLink Corp. [MD5.35472999716805C2C695C71908A75586] [WIS][2021/06/04 21:58:19] (.Shelblock.) -- C:\WINDOWS\Installer\23408a.msi [11021312] [MD5.ABA5B221765BBE2F29A056B3702C23D0] [WIS][2017/02/10 01:41:45] (.Trimble Navigation Limited - SketchUp 2017 Installer.) -- C:\WINDOWS\Installer\296b41e2.msi [181059584] =>.Trimble Navigation Limited [MD5.3771E4A05779D200E13D439896AB71AC] [WIS][2016/12/17 03:15:36] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\2a3e3d.msi [19245056] =>.Advanced Micro Devices, Inc. [MD5.FC8C5BDA571BB39C97F40E7743080B19] [WIS][2016/02/23 07:31:22] (.Lenovo.) -- C:\WINDOWS\Installer\2afb4.msi [7078400] =>.Lenovo [MD5.80A88F928CC23FA80E683B6B6390B879] [WIS][2016/02/23 07:32:23] (.Lenovo.) -- C:\WINDOWS\Installer\2afbf.msi [7424512] =>.Lenovo [MD5.F3393D3FF18B824864B806E0B86F0A67] [WIS][2012/11/07 10:30:52] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\334e0.msi [1559552] =>.Cisco Systems, Inc. [MD5.626978BF496BABC1E6F1464D697B707D] [WIS][2012/11/07 10:39:00] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\334e7.msi [1304064] =>.Cisco Systems, Inc. [MD5.3FC36EF669376540BB082615F9ECADB2] [WIS][2012/11/07 10:37:52] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\334ee.msi [836608] =>.Cisco Systems, Inc. [MD5.7FE76FF8DA563454E3EB90B42DEAD271] [WIS][2015/09/28 14:10:24] (.Lenovo - Lenovo QuickOptimizer.) -- C:\WINDOWS\Installer\36d1b.msi [12255744] =>.Lenovo [MD5.DF0F2ED636A10F812AB3418597182E33] [WIS][2014/09/10 15:55:26] (.Macrovision Corporation.) -- C:\WINDOWS\Installer\36d5b.msi [318300] =>.Macrovision Corporation [MD5.8EED0A6791EF142186FABFCD434498C2] [WIS][2015/09/11 07:48:50] (.Macrovision Corporation.) -- C:\WINDOWS\Installer\36d70.msi [459776] =>.Macrovision Corporation [MD5.B11191D38E1D8E02B31E23E8A6E5F368] [WIS][2015/12/04 05:31:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\452a6.msi [775168] =>.Advanced Micro Devices, Inc. [MD5.3E672CB3B9119E58D28F5EAC9C95460B] [WIS][2015/12/04 05:34:33] (.Advanced Micro Devices, Inc. - AMD Catalyst Install Manager Installer (64 .) -- C:\WINDOWS\Installer\452ae.msi [10611712] =>.Advanced Micro Devices, Inc. [MD5.0989BA84F819EF99CC0ADBE4121FA363] [WIS][2014/09/27 01:24:54] (.Dolby Laboratories Inc - Dolby Digital Plus Advanced Audio.) -- C:\WINDOWS\Installer\4537b.msi [34037760] =>.Dolby Laboratories Inc [MD5.3A6F581777F935A2223C6FB5DB7452D0] [WIS][2016/02/23 07:36:01] (.Lenovo Group Limited - Metric Collection SDK Redistributable.) -- C:\WINDOWS\Installer\4de1c.msi [2161152] =>.Lenovo Group Limited [MD5.9EBB278E35090DE33C28A4953966CA99] [WIS][2016/02/23 07:40:01] (.Lenovo - Lenovo Solution Center.) -- C:\WINDOWS\Installer\4de2f.msi [68026880] =>.Lenovo [MD5.5029BCEA2ECBA9D5466E793898155206] [WIS][2015/06/27 17:15:35] (.Lenovo - User Manuals.) -- C:\WINDOWS\Installer\4de33.msi [1185792] =>.Lenovo [MD5.81E1C7440C5D611C85A2F9708ACCA9C6] [WIS][2016/12/17 03:12:06] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63de4.msi [529920] =>.Advanced Micro Devices, Inc. [MD5.B79E1560CAA61E3176170283A76D9A54] [WIS][2016/12/17 03:12:32] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63de9.msi [499712] =>.Advanced Micro Devices, Inc. [MD5.04A336AA072DDD52ACBBE00039B37F32] [WIS][2016/12/17 03:12:58] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63dee.msi [579072] =>.Advanced Micro Devices, Inc. [MD5.C9EF4005646E1B59590C2956030819C0] [WIS][2016/12/17 03:13:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63df3.msi [501760] =>.Advanced Micro Devices, Inc. [MD5.B9E4518330CDE5AD698735871AC18488] [WIS][2016/12/17 03:13:46] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63df8.msi [500224] =>.Advanced Micro Devices, Inc. [MD5.2C0F6A7EAA00769268B5F87496FE14DA] [WIS][2016/12/17 03:14:12] (.Advanced Micro Devices, Inc. - Catalyst Control Center next.) -- C:\WINDOWS\Installer\63dfd.msi [578048] =>.Advanced Micro Devices, Inc. [MD5.4BCC2FEEBC99E6793E8F413B2F5512FF] [WIS][2016/12/17 03:14:42] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e02.msi [579072] =>.Advanced Micro Devices, Inc. [MD5.17D4DEF2BEDBA13D153DECF843C3FC2B] [WIS][2016/12/17 03:15:06] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e07.msi [500736] =>.Advanced Micro Devices, Inc. [MD5.A121F23BD56BDCB866B019BC7C557A11] [WIS][2016/12/17 03:15:32] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e0c.msi [578560] =>.Advanced Micro Devices, Inc. [MD5.79B4A33968237E51D713FF0226ED6E8F] [WIS][2016/12/17 03:15:56] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e11.msi [577024] =>.Advanced Micro Devices, Inc. [MD5.70A7576EA1C1813B27E2C2F3E6F6535A] [WIS][2016/12/17 03:16:20] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e16.msi [577024] =>.Advanced Micro Devices, Inc. [MD5.1AC971C24D2E6751EF2203B3D99484B3] [WIS][2016/12/17 03:16:44] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e1b.msi [578560] =>.Advanced Micro Devices, Inc. [MD5.E086E75A1A9C0547F8E6EEBDE59BDDEE] [WIS][2016/12/17 03:17:08] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e20.msi [578048] =>.Advanced Micro Devices, Inc. [MD5.CC5827E645889D30283BB0FF2E6BD0E1] [WIS][2016/12/17 03:17:32] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e25.msi [579072] =>.Advanced Micro Devices, Inc. [MD5.624E4FA2E9902CDE714E00EAD0E79D3D] [WIS][2016/12/17 03:18:00] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e2a.msi [500224] =>.Advanced Micro Devices, Inc. [MD5.FC1E802157ACD58C00FC202A91619E83] [WIS][2016/12/17 03:18:24] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e2f.msi [500736] =>.Advanced Micro Devices, Inc. [MD5.1D89990F833B96BC58BDBF125FD99422] [WIS][2016/12/17 03:18:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e34.msi [578048] =>.Advanced Micro Devices, Inc. [MD5.B7BDB9B89828604FA3DE36CD6120F277] [WIS][2016/12/17 03:19:12] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e39.msi [578048] =>.Advanced Micro Devices, Inc. [MD5.0361F4C47E3EDD308546AFDDFF63AB57] [WIS][2016/12/17 03:19:36] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e3e.msi [578048] =>.Advanced Micro Devices, Inc. [MD5.1B79CA8C829986712C28799D4713DA00] [WIS][2016/12/17 03:20:00] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e43.msi [576512] =>.Advanced Micro Devices, Inc. [MD5.1FC932EB702949623A8746D53170AA2F] [WIS][2016/12/17 03:20:28] (.Advanced Micro Devices, Inc. - Catalyst Control Center Next.) -- C:\WINDOWS\Installer\63e48.msi [576512] =>.Advanced Micro Devices, Inc. [MD5.5A1FDA2473A10ECAACCB1B59315DDF2D] [WIS][2016/12/17 03:14:26] (.Advanced Micro Devices, Inc. - AMD Settings.) -- C:\WINDOWS\Installer\63e4d.msi [32953344] =>.Advanced Micro Devices, Inc. [MD5.0989BA84F819EF99CC0ADBE4121FA363] [WIS][2014/09/27 01:24:54] (.Dolby Laboratories Inc - Dolby Digital Plus Advanced Audio.) -- C:\WINDOWS\Installer\6f87c.msi [34037760] =>.Dolby Laboratories Inc [MD5.70F6C221CBC311F768375B26A5CC3E0D] [WIS][2018/11/13 15:05:39] (.CyberLink Corp..) -- C:\WINDOWS\Installer\7deb7dd6.msi [1338368] =>.CyberLink Corp. [MD5.8D08472C936A16169339C60F1B686255] [WIS][2017/01/28 18:24:20] (.Turning Technologies - Device Manager.) -- C:\WINDOWS\Installer\965d57e.msi [61884416] =>.Turning Technologies [MD5.C95E17C377191225A33DD8B0B8C1D82E] [WIS][2020/08/04 10:21:05] (.Devguru Co., LTD.) -- C:\WINDOWS\Installer\991dbaad.msi [37876736] =>.Devguru Co., LTD [MD5.E094145CB7B63AB27667D7B5B263168D] [WIS][2020/08/04 11:08:31] (.datronicsoft Inc. - spacedesk 0.9.54 Driver Installer.) -- C:\WINDOWS\Installer\9948d5f0.msi [5419008] =>.datronicsoft Inc. ---\\ FEATURE CONTROL. (160) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:PhotoMaster.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:FIRSTRUN.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:FIRSTRUN.EXE =>.Legitimate ---\\ OBSERVATEURS des évènements (114) - 59s Application.Warning: AutoEnrollment (9) ~Numéro: 943 ~Date: 06/07/2021 09:43:15 PM ~ID: 64 ~Description: Système local74 68 bb ab 88 70 0a 4a d5 c2 82 8e f6 fd a2 ee 35 a5 bf d4 ~Suggestion: Installer le Kit de développement logiciel (SDK). Application.Error: VSS (10) ~Numéro: 934 ~Date: 06/07/2021 09:41:16 PM ~ID: 13 ~Description: Informations du service de cliché instantané de volumes : impossible de démarrer le serveur COM de CLSID %1 et de nom %2. [%3] ~Suggestion: Aucune Application.Error: Microsoft-Windows-CAPI2 (8) ~Numéro: 927 ~Date: 06/07/2021 09:39:57 PM ~ID: 513 ~Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.%1. Application.Warning: ESENT (10) ~Numéro: 861 ~Date: 06/07/2021 07:17:17 PM ~ID: 472 ~Description: %1 (%2) %3Page d’en-tête de sauvegarde du fichier %4 endommagée. La page d’en-tête primaire (%5 octets) a été utilisée à la place. ~Suggestion: 1)Fermer le processus explorer.exe. 2)lancer la commande 'del/f/s/q/a C:\Users\\AppData\Local\Microsoft\Windows\WebCacheLock.dat'. 3) Redémarrer le processus explorer.exe Application.Warning: Wlclntfy (8) ~Numéro: 835 ~Date: 06/07/2021 07:14:16 PM ~ID: 6000 ~Description: L’abonné aux notifications Winlogon <%1> n’était pas disponible pour traiter un événement de notification. Application.Error: SecurityCenter (1) ~Numéro: 698 ~Date: 06/06/2021 07:32:03 PM ~ID: 17 ~Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Application.Error: Application Error (3) ~Numéro: 695 ~Date: 06/06/2021 06:51:11 PM ~ID: 1000 ~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x60a6743c Nom du module défaillant : %4, version : %5, horodatage : 0x603971ce Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000219dc5 ID du processus défaillant : 0x1318 H ~Suggestion: Réparer ou réinstaller l'application. Application.Error: Application Hang (1) ~Numéro: 539 ~Date: 06/06/2021 05:05:55 PM ~ID: 1002 ~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de proces ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Warning: Windows Search Service (1) ~Numéro: 268 ~Date: 06/06/2021 04:34:14 PM ~ID: 1008 ~Description: Le service Windows Search démarre et tente de supprimer l’ancien index de recherche {Raison : %2}. Application.Warning: Microsoft-Windows-WMI (38) ~Numéro: 253 ~Date: 06/06/2021 04:29:35 PM ~ID: 63 ~Description: Un fournisseur, %1, a été inscrit dans l’espace de noms Windows Management Instrumentation %2, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de sécurité s’il ne représente pas ~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié. Application.Warning: MSDTC Client 2 (6) ~Numéro: 208 ~Date: 06/06/2021 04:14:21 PM ~ID: 4104 ~Description: LAPTOP-UK29JPFN0x8007085A Application.Error: MSDTC 2 (1) ~Numéro: 202 ~Date: 06/06/2021 04:14:09 PM ~Description: 0x8007085A Application.Warning: Microsoft-Windows-User Profiles Service (1) ~Numéro: 185 ~Date: 06/06/2021 03:58:53 PM ~ID: 1534 ~Description: Échec de la notification du profil de l’événement %1 pour le composant %2. Le code d’erreur est %3. ~Suggestion: https://www.ghacks.net/2018/12/29/windows-10-user-profile-service-event-id-1534-warnings/ Application.Error: System Restore (2) ~Numéro: 31 ~Date: 06/06/2021 03:53:36 PM ~ID: 8193 ~Description: Échec de la création d’un point de restauration (Processus = %1 ; Description = %2 ; Erreur = %3). System.Warning: DCOM (410) ~Numéro: 1668 ~Date: 06/07/2021 09:45:02 PM ~ID: 10016 ~Description: propres à l’applicationLocalExécutionWindows.SecurityCenter.WscDataProtectionNon disponibleAUTORITE NTSystèmeS-1-5-18LocalHost (avec LRPC)Non disponibleNon disponible ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Warning: Win32k (40) ~Numéro: 1652 ~Date: 06/07/2021 09:42:40 PM ~ID: 263 ~Description: Un périphérique de pointage n’a pas fourni d’informations sur le moniteur auquel il est connecté. System.Warning: BTHUSB (11) ~Numéro: 1641 ~Date: 06/07/2021 09:42:25 PM ~ID: 34 ~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est %2, a reçu %3. La fonctionnalité du rôle périphérique Low Energy n System.Warning: Microsoft-Windows-Kernel-PnP (93) ~Numéro: 1632 ~Date: 06/07/2021 09:42:19 PM ~ID: 219 ~Description: Le chargement du pilote %5 a échoué pour le périphérique %2. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: Service Control Manager (62) ~Numéro: 1601 ~Date: 06/07/2021 09:41:23 PM ~ID: 7000 ~Description: Le service %1 n’a pas pu démarrer en raison de l’erreur : %%1069 System.Warning: Microsoft-Windows-Kernel-Processor-Power (2) ~Numéro: 1571 ~Date: 06/07/2021 07:38:56 PM ~ID: 37 ~Description: La vitesse du processeur logique Hyper-V %2 est limitée par le microprogramme du système. Le processeur a connu cet état de performances réduites pendant %3 secondes depuis le dernier rapport. System.Warning: Microsoft-Windows-WLAN-AutoConfig (1) ~Numéro: 960 ~Date: 06/07/2021 06:24:13 PM ~ID: 4003 ~Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée, en tentant une récupération automatique. Type de récupération : 4 Code d’erreur : 0x0 Motif de déclenchement : 1 Famille IP : 0 ~Suggestion: Vérifier les paramètres d'économie d'énergie ---\\ SCAN ADDITIONNEL (1) - 21s ~ Aucun élément malicieux ou superflu trouvé. ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (4) - 0s https://nicolascoolman.eu/2017/04/03/hijacker-proxy/ =>Hijacker.Proxy https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.ProxyRestriction https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys ---\\ NUMEROS DE SÉRIE [0320BE3EB866526927F999B97B04346E] [19/04/2017] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\rt640x64.sys =>.Realtek Semiconductor Corp. [06AEA76BAC46A9E8CFE6D29E45AAF033] [29/05/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler.exe =>.Google LLC [06AEA76BAC46A9E8CFE6D29E45AAF033] [29/05/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler64.exe =>.Google LLC [07A6ECE11F958C] [23/10/2015] (.Turning Technologies, LLC.) - C:\Program Files (x86)\eInstruction\Device Manager\Launch.exe =>.Not verified [07F3E5C0807B417CAFDBD7D4AB23CF8B] [07/04/2020] (.Bluestack Systems, Inc.) - C:\Program Files\BlueStacks_bgp64\BstkDrv_bgp64.sys =>.Bluestack Systems, Inc [0905EBC360C390108B39FF7839D2A1C3] [15/03/2021] (.Roblox Corporation.) - C:\Users\adrie\AppData\Local\Roblox\Versions\version-5c383cf6549b4c50\RobloxPlayerLauncher.exe =>.Roblox Corporation [0A5A12FEF0C9D14875D6968D3E3F673F] [08/04/2021] (.Wargaming.net Limited.) - C:\ProgramData\Wargaming.net\GameCenter\setup.exe =>.Not verified [0A5A12FEF0C9D14875D6968D3E3F673F] [08/04/2021] (.Wargaming.net Limited.) - C:\ProgramData\Wargaming.net\GameCenter\wgc.exe =>.Not verified [0A9997ACCB4B384C80E313DD2854407B] [11/11/2016] (.Realtek Semiconductor Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{70714FB7-4084-4202-A599-2D5935DECB67}\Setup.exe =>.Realtek Semiconductor Corp. [0B55A5C0791080D6327D92E7510D0C19] [17/06/2020] (.Wargaming.net Limited.) - C:\Games\World_of_Tanks_EU\wgc_api.exe =>.Wargaming.net Limited [0C15BE4A15BB0903C901B1D6C265302F] [05/06/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.77\Installer\setup.exe =>.Google LLC [0C15BE4A15BB0903C901B1D6C265302F] [23/05/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.77\elevation_service.exe =>.Google LLC [0C15BE4A15BB0903C901B1D6C265302F] [23/05/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC [0D9473E00150BC5EB47F29A10DCCDDBD] [20/05/2019] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RtkBtfilter.sys =>.Realtek Semiconductor Corp. [0DDEB53F957337FBEAF98C4A615B149D] [29/05/2021] (.Mozilla Corporation.) - C:\Users\adrie\AppData\Local\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0DDEB53F957337FBEAF98C4A615B149D] [29/05/2021] (.Mozilla Corporation.) - C:\Users\adrie\AppData\Local\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [13222A5DCCF716DF5AF9C87084412DD9] [02/03/2015] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\AvrcpService.exe =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [02/06/2015] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [02/06/2015] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [03/07/2014] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\DevMenuExt.dll =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [03/07/2014] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\SkypePlugin.exe =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [03/07/2015] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\Drivers\RtsUer.sys =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [11/05/2015] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\InstallShield Installation Information\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\setup.exe =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [11/06/2015] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\DRIVERS\rtsuvc.sys =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [24/03/2015] (.Realtek Semiconductor Corp.) - C:\Windows\RtCamU64.exe =>.Realtek Semiconductor Corp [19D2BBA6922F3C7A0242B54C040F8B11] [13/07/2016] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU64a.exe =>.Conexant Systems, Inc. [1D226108CBB0EB7B504697BDFEC66A8B] [13/06/2012] (.CyberLink.) - C:\WINDOWS\System32\DRIVERS\wsvd.sys =>.CyberLink [1D9FF0CFF14FE700963E52F6CDACF575] [12/01/2017] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\dpinst.exe =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [16/05/2017] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [16/05/2017] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [16/05/2017] (.Synaptics Incorporated.) - C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [16/05/2017] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [16/05/2017] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [16/05/2017] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\SynHidI2C_Aux.sys =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [16/05/2017] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [16/05/2017] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated [2C80892E0115B0B77AA3594B9A733953] [10/11/2010] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\InstallShield Installation Information\{9D3D8C60-A5EF-4123-B2B9-172095903AB}\Install.exe =>.Realtek Semiconductor Corp [2CD2C5777BFC596CE3F6EBFDFB9B9469] [06/11/2015] (.CyberLink Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}\setup.exe =>.CyberLink Corp. [312D884C6B08CD6E07B744C2DA7A07C2] [26/10/2010] (.Fortemedia Inc.) - C:\Program Files\CONEXANT\ForteConfig\fmapp.exe =>.Fortemedia Inc [33FDB6C8EA3C6AC8C485E9FE1DDFF684] [27/04/2020] (.BlueStack Systems, Inc..) - C:\Program Files\BlueStacks_bgp64\BlueStacksUninstaller.exe =>.BlueStack Systems, Inc. [33FDB6C8EA3C6AC8C485E9FE1DDFF684] [27/04/2020] (.BlueStack Systems, Inc..) - C:\ProgramData\BlueStacks_bgp64\Client\Bluestacks.exe =>.BlueStack Systems, Inc. [419FD63037414E95D9FE6ACA3CB6C964] [13/07/2016] (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\CHDRT64.sys =>.Conexant Systems, Inc. [458BDF0E8E8A60ACD2782F5E81FE6589] [13/08/2019] (.Icecream Apps Ltd.) - C:\Program Files (x86)\Icecream Video Editor\CrashSender1403.exe =>.Icecream Apps Ltd [4C40DBA5F988FAE57A57D6457495F98B] [26/01/2017] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc [4CD9E755850C1372B48DC182A7308BAB] [08/12/2015] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc. [4CE26AB7B08A86A56200DE244E294BA5] [09/12/2014] (.Conexant Systems, Inc..) - C:\Windows\SysWOW64\SASrv.exe =>.Conexant Systems, Inc. [4CE26AB7B08A86A56200DE244E294BA5] [10/04/2014] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\SAII\SACpl.exe =>.Conexant Systems, Inc. [4CE26AB7B08A86A56200DE244E294BA5] [20/10/2014] (.Conexant Systems, Inc..) - C:\WINDOWS\system32\CxAudMsg64.exe =>.Conexant Systems, Inc. [4CE26AB7B08A86A56200DE244E294BA5] [20/11/2014] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe =>.Conexant Systems, Inc. [4D1CA732BA1D29D89BBF412F3C342965] [30/07/2020] (.Datronicsoft, Inc..) - C:\WINDOWS\System32\spacedeskService.exe =>.Not verified [5716180DB7D4989DC4A17083DCFA7567] [15/06/2015] (.LENOVO.) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.LENOVO [5716180DB7D4989DC4A17083DCFA7567] [25/06/2015] (.LENOVO.) - C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe =>.LENOVO [5716180DB7D4989DC4A17083DCFA7567] [29/07/2015] (.LENOVO.) - C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe =>.LENOVO [5CA430E4777412A8230BF839F782D4F7] [16/06/2017] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\DRIVERS\amdkmcsp.sys =>.Advanced Micro Devices Inc. [5CA430E4777412A8230BF839F782D4F7] [16/06/2017] (.Advanced Micro Devices Inc..) - C:\WINDOWS\System32\drivers\amdpsp.sys =>.Advanced Micro Devices Inc. [63E1989CF4AE5350298FA168D0921309] [02/09/2016] (.DEVGURU CO LTD.) - C:\Windows\dglvrsvc.exe =>.DEVGURU CO LTD [63E1989CF4AE5350298FA168D0921309] [02/09/2016] (.DEVGURU CO LTD.) - C:\WINDOWS\System32\drivers\dglvrbus.sys =>.DEVGURU CO LTD [63E1989CF4AE5350298FA168D0921309] [02/09/2016] (.DEVGURU CO LTD.) - C:\WINDOWS\System32\DRIVERS\dglvrkdod.sys =>.DEVGURU CO LTD [63E1989CF4AE5350298FA168D0921309] [02/09/2016] (.DEVGURU CO LTD.) - C:\WINDOWS\System32\drivers\dglvrmflt.sys =>.DEVGURU CO LTD [72DCD35B1DBBF28F0F9848EC766A1BDF] [14/12/2016] (.Advanced Micro Devices, Inc..) - C:\AMD\WU-CCC2\ccc2_install\WULaunchApp.exe =>.Advanced Micro Devices, Inc. [72DCD35B1DBBF28F0F9848EC766A1BDF] [16/12/2016] (.Advanced Micro Devices, Inc..) - C:\Program Files (x86)\AMD\CNext\CCCSlim\CCC.exe =>.Advanced Micro Devices, Inc. [72DCD35B1DBBF28F0F9848EC766A1BDF] [16/12/2016] (.Advanced Micro Devices, Inc..) - C:\Program Files\AMD\CNext\CNext\cncmd.exe =>.Advanced Micro Devices, Inc. [72DCD35B1DBBF28F0F9848EC766A1BDF] [16/12/2016] (.Advanced Micro Devices, Inc..) - C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe =>.Advanced Micro Devices, Inc. [72DCD35B1DBBF28F0F9848EC766A1BDF] [23/12/2016] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\atiesrxx.exe =>.Advanced Micro Devices, Inc. [72DCD35B1DBBF28F0F9848EC766A1BDF] [23/12/2016] (.Advanced Micro Devices, Inc..) - C:\Windows\System32\DriverStore\FileRepository\c0309839.inf_amd64_168acb088d48fafb\atikmpag.sys =>.Advanced Micro Devices, Inc. [731D40AE3F3A1FB2BC3D8395] [07/04/2021] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH [731D40AE3F3A1FB2BC3D8395] [07/04/2021] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH [731D40AE3F3A1FB2BC3D8395] [07/04/2021] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH [75B5499C96D676A5FAE2656B351E1FD6] [24/04/2020] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus.sys =>.Samsung Electronics Co., Ltd. [75B5499C96D676A5FAE2656B351E1FD6] [26/09/2019] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd. [766967A63C2A1E57862A2B5A63CBFE19] [05/06/2020] (.Icecream Apps Ltd.) - C:\Program Files (x86)\Icecream Video Editor\icevideoeditor.exe =>.Icecream Apps Ltd [766967A63C2A1E57862A2B5A63CBFE19] [14/06/2020] (.Icecream Apps Ltd.) - C:\Program Files (x86)\Icecream Video Editor\unins000.exe =>.Icecream Apps Ltd [799AC3976095546D05DE5395166BFF83] [12/11/2013] (.CyberLink Corp..) - C:\WINDOWS\System32\DRIVERS\CLVirtualDrive.sys =>.CyberLink Corp. [7A03573C69F4C7CABDC810C3504DFFE6] [03/06/2021] (.SHELBLOCK.) - C:\Program Files\Shelblock\shelblock.exe =>.Not verified [7A03573C69F4C7CABDC810C3504DFFE6] [03/06/2021] (.SHELBLOCK.) - C:\Program Files\Shelblock\ShelblockSvc.exe =>.Not verified ~ Unselected Options: ~ End of the scan, 9292 items in 10mn54s (2070)(0)