~ ZHPDiag v2021.7.1.307 Par Nicolas Coolman (2021/07/01) ~ Démarré par claud_000 (Administrator) (2021/07/04 18:19:47) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\claud_000\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\claud_000\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (2) - 0s ~ MFIE: Mozilla Firefox 89.0.2 (x64 fr) ~ MSIE: Internet Explorer v11.0.9600.17416 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : PPKVT Windows License : OK ~ Windows Remaining Initializations Number : 1000 Windows Automatic Updates : OK ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: Intel64 Family 6 Model 58 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 4144.356 MB (79% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 448 GB (94%) free of 476 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: JEAN-CLAUDE ~ User Name: claud_000 ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (2) - 0s ~ Drive C: has 448 GB free of 476 GB (System) ~ Drive F: has 7 GB free of 7 GB ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (10) - 0s [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 2s [MD5.85D47EB257B06094F052E0C8AEFA3BEE] - 21/11/2014 - (.Microsoft Corporation - Explorateur Windows.) -- C:\Windows\Explorer.exe [2501368] =>.Microsoft® [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 21/11/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\Windows\System32\rundll32.exe [54784] [Unsigned] =>.Microsoft Corporation [MD5.A570A64292214C43E0BA50E6A72A6380] - 21/11/2014 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\Windows\System32\Wininit.exe [145920] [Unsigned] =>.Microsoft Corporation [MD5.BF1FC65A307B31939ADF7F976FDE033C] - 21/11/2014 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\Windows\System32\wininet.dll [2365440] [Unsigned] =>.Microsoft Corporation [MD5.EC498BAE1F0D3E0E401C963F8D76C437] - 21/11/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\Windows\System32\Winlogon.exe [572416] [Unsigned] =>.Microsoft Corporation [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 21/11/2014 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\Windows\System32\sppcomapi.dll [447488] [Unsigned] =>.Microsoft Corporation [MD5.A5675939CF0F99B20B5A3CFCC3C1B46A] - 21/11/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\System32\dnsapi.dll [657920] [Unsigned] =>.Microsoft Corporation [MD5.BD9C7A068C46053F8747CEA73B5930AB] - 21/11/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\Windows\Syswow64\dnsapi.dll [498688] [Unsigned] =>.Microsoft Corporation [MD5.1B24547C96E1C656ED9A8E6B6F6FA03B] - 21/11/2014 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3557376] [Unsigned] =>.Microsoft Corporation [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 21/11/2014 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\Windows\System32\fr-FR\user32.dll.mui [19456] [Unsigned] =>.Microsoft Corporation [MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - 21/11/2014 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\AFD.sys [563200] [Unsigned] =>.Microsoft Corporation [MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [26464] [Unsigned] =>.Microsoft Corporation [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\Cdfs.sys [88576] [Unsigned] =>.Microsoft Corporation [MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\Cdrom.sys [164352] [Unsigned] =>.Microsoft Corporation [MD5.A03F362C5557E238CBFA914689C77248] - 21/11/2014 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\DfsC.sys [134144] [Unsigned] =>.Microsoft Corporation [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 21/11/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\HDAudBus.sys [76800] [Unsigned] =>.Microsoft Corporation [MD5.D887446F3F6051C60C26F4FD1FC8D43F] - 21/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [107520] [Unsigned] =>.Microsoft Corporation [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 21/11/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\IpNat.sys [142848] [Unsigned] =>.Microsoft Corporation [MD5.31233271EDE50D1BBB220F78AFA60486] - 21/11/2014 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\MRxSmb.sys [405504] [Unsigned] =>.Microsoft Corporation [MD5.0217532E19A748F0E5D569307363D5FD] - 22/08/2013 - (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netBT.sys [282624] [Unsigned] =>.Microsoft Corporation [MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - 21/11/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2025792] [Unsigned] =>.Microsoft Corporation [MD5.764B1121867B2D9B31C491668AC72B2B] - 22/08/2013 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\Parport.sys [94208] [Unsigned] =>.Microsoft Corporation [MD5.BBB6272B7F46C4640A8CDB8A70C3450F] - 22/08/2013 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\Rasl2tp.sys [120832] [Unsigned] =>.Microsoft Corporation [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 21/11/2014 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [195584] [Unsigned] =>.Microsoft Corporation [MD5.FFF28F9F6823EB1756C60F1649560BBF] - 22/08/2013 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [107520] [Unsigned] =>.Microsoft Corporation [MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - 21/11/2014 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [310080] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (41) - 1s O23 - Service: C:\Windows\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\Windows\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\Windows\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\Windows\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Service d’infrastructure des tâches en arri.) - C:\Windows\System32\bisrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\Windows\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\Windows\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\Windows\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\Windows\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2012 All Rights Reserved - Inkjet Printer/Scanner/Fax Extended Survey.) - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® O23 - Service: C:\Windows\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\Windows\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\Windows\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\Windows\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - DLL des services de transport NetBIOS sur T.) - C:\Windows\System32\lmhsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\Windows\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) - C:\Windows\System32\mmcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\Windows\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\Windows\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\Windows\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\Windows\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\Windows\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\Windows\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\Windows\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\Windows\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\Windows\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\Windows\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\Windows\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\Windows\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\Windows\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\Windows\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\Windows\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\Windows\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\Windows\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) . (.Microsoft Corporation - Antimalware Service Executable.) - C:\Program Files\Windows Defender\MsMpEng.exe =>.Microsoft® O23 - Service: C:\Windows\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\Windows\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\Windows\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\Windows\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (33) - 8s SR - Boot [22/08/2013] [ 108896] (3ware) . (.LSI.) - C:\Windows\System32\drivers\3ware.sys =>.Microsoft® SR - Boot [22/08/2013] [ 782176] (ADP80XX) . (.PMC-Sierra.) - C:\Windows\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Boot [22/08/2013] [ 79200] (amdsata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [22/08/2013] [ 259424] (amdsbs) . (.AMD Technologies Inc..) - C:\Windows\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [22/08/2013] [ 25952] (amdxata) . (.Advanced Micro Devices.) - C:\Windows\System32\drivers\amdxata.sys =>.Microsoft® SR - Boot [22/08/2013] [ 114016] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\Windows\System32\drivers\arcsas.sys =>.Microsoft® SR - Boot [22/08/2013] [ 531296] Broadcom NetXtreme II VBD (b06bdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [13/08/2013] [ 17624] bcmfn2 Service (bcmfn2) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\bcmfn2.sys =>.Broadcom Corporation® SR - Boot [22/08/2013] [ 3357024] Broadcom NetXtreme II 10 GigE (ebdrv) . (.Broadcom Corporation.) - C:\Windows\System32\drivers\evbda.sys =>.Microsoft® SR - Boot [22/08/2013] [ 64352] (HpSAMD) . (.Hewlett-Packard Company.) - C:\Windows\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [30/07/2013] [ 24568] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Software and Firmware Products® SR - Demand [25/07/2013] [ 99320] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaLPSSi_I2C.sys =>.Intel Corporation - Software and Firmware Products® SR - Boot [10/08/2013] [ 651248] Intel(R) SATA RAID Cont (iaStorAV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorAV.sys =>.Intel Corporation - Intel® Rapid Storage Technology® SR - Boot [22/08/2013] [ 412000] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\Windows\System32\drivers\iaStorV.sys =>.Microsoft® SR - Auto [28/03/2012] [ 140456] Canon Inkjet Printer/Scanner/Fax Extended Survey Program (IJPLMSVC) . (.Copyright CANON INC. 2006-2012 All Rights Reserved.) - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc.® SR - Boot [22/08/2013] [ 109408] (LSI_SAS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [22/08/2013] [ 93536] (LSI_SAS2) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas2.sys =>.Microsoft® SR - Boot [22/08/2013] [ 81760] (LSI_SAS3) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sas3.sys =>.Microsoft® SR - Boot [22/08/2013] [ 82784] (LSI_SSS) . (.LSI Corporation.) - C:\Windows\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Boot [22/08/2013] [ 56672] (megasas) . (.LSI Corporation.) - C:\Windows\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [22/08/2013] [ 575840] (megasr) . (.LSI Corporation, Inc..) - C:\Windows\System32\drivers\megasr.sys =>.Microsoft® SS - Demand [24/06/2021] [ 242616] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Boot [22/08/2013] [ 63840] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\Windows\System32\drivers\mvumis.sys =>.Microsoft® SR - Boot [22/08/2013] [ 150368] (nvraid) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [22/08/2013] [ 168288] (nvstor) . (.NVIDIA Corporation.) - C:\Windows\System32\drivers\nvstor.sys =>.Microsoft® SR - Demand [18/06/2013] [ 591360] Pilote Realtek (RTL8168) . (.Realtek.) - C:\Windows\System32\DRIVERS\Rt630x64.sys [Unsigned] =>.Realtek SR - Demand [31/07/2013] [ 1936088] Carte d’inter (RTWlanE) . (.Realtek Semiconductor Corporation.) - C:\Windows\System32\DRIVERS\rtwlane.sys =>.Realtek Semiconductor Corp® SR - Boot [22/08/2013] [ 44896] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\Windows\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [22/08/2013] [ 81760] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\Windows\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [22/08/2013] [ 31072] (stexstor) . (.Promise Technology, Inc..) - C:\Windows\System32\drivers\stexstor.sys =>.Microsoft® SR - Boot [22/08/2013] [ 19808] (viaide) . (.VIA Technologies, Inc..) - C:\Windows\System32\drivers\viaide.sys =>.Microsoft® SR - Boot [22/08/2013] [ 168800] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\Windows\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [22/08/2013] [ 305504] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\Windows\System32\drivers\vstxraid.sys =>.Microsoft® ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (1) - 0s O4 - HKLM\..\Wow6432Node\Run: [CanonQuickMenu] . (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE =>.Canon Inc.® ---\\ PROCESSUS LANCÉS (4) - 0s [MD5.EDCCC8C13B1EB882F77BA0ABB84566E7] - (.Copyright CANON INC. 2006-2012 All Rights Reserved - Inkjet Printer/Scanner/Fax Extended Survey.) -- C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe [140456] [PID.1296] =>.Canon Inc.® [MD5.CDFFB0058BA113ED8C6099DE11FAAD49] - (.CANON INC. - Canon Quick Menu.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1273448] [PID.2688] =>.Canon Inc.® [MD5.BE4F25620D39E7FA1A9CB715E2F60E96] - (.CANON INC. - Canon Quick Menu Updater.) -- C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE [1087608] [PID.2840] =>.Canon Inc.® [MD5.672433BD6B4B1AD0B2817B090256E959] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\claud_000\AppData\Roaming\ZHP\ZHPSuite.exe [3473048] [PID.2352] [Unsigned] =>.Nicolas Coolman ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (20) - 1s M0 - MFSP: prefs.js [claud_000 - 0y2b3hro.default-release] http://www.google.fr/ =>.Google Inc. P2 - EXT FILE: (.Avira Software.) -- C:\Program Files\Mozilla Firefox\browser\features\doh-rollout@mozilla.org.xpi [Unsigned] =>.Avira Software P2 - EXT FILE: (.Avira Software.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi [Unsigned] =>.Avira Software P2 - EXT FILE: (.Avira Software.) -- C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi [Unsigned] =>.Avira Software P2 - EXT FILE: (.Avira Software.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi [Unsigned] =>.Avira Software P2 - EXT FILE: (.Avira Software.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi [Unsigned] =>.Avira Software P2 - EXT FILE: (.Avira Software.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi [Unsigned] =>.Avira Software C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\bookmarkbackups =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\crashes =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\datareporting =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\extensions =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\features =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\gmp-widevinecdm =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\minidumps =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\saved-telemetry-pings =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\security_state =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\sessionstore-backups =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\storage =>Mozilla Corporation C:\Users\claud_000\AppData\Roaming\Mozilla\Firefox\Profiles\0y2b3hro.default-release\weave =>Mozilla Corporation ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.17351 (winblue_r3.140925-1500)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation R4 - HKLM\Software\WOW6432Node\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 0 ---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad) ---\\ INTERNET EXPLORER,Proxy Management (5) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\Windows\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\Windows\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (1) ---\\ RACCOURCIS GLOBAL STARTUP (32) - 3s O4 - GS\Desktop [claud_000]: Google.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\Desktop [claud_000]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\claud_000\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [claud_000]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\claud_000\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [claud_000]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\sendTo [claud_000]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\Programs [claud_000]: Documents.lnk . (...) C:\Users\claud_000\Documents [Unsigned] O4 - GS\Programs [claud_000]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Programs [claud_000]: Pictures.lnk . (...) C:\Users\claud_000\Pictures [Unsigned] =>.Microsoft Corporation O4 - GS\Programs [Public]: Documents.lnk . (...) C:\Users\claud_000\Documents [Unsigned] O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Programs [Public]: Pictures.lnk . (...) C:\Users\claud_000\Pictures [Unsigned] =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\Windows\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\Windows\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - Panneau de saisie mathématique.) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\Windows\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\Windows\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\Windows\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\Windows\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\Windows\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\Windows\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\Windows\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\Windows\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\Windows\Camera\Camera.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\Windows\FileManager\FileManager.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\Windows\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\Windows\FileManager\PhotosApp.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>..Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\Windows\WinStore\WinStore.htm [Unsigned] =>.Microsoft Corporation ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{C1555153-5D7F-48B4-BE2C-B887F89EDBAB}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{DFB69DA5-427A-4061-B1DA-EDAF2D8344F9}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (18) - 276s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807563E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL =>.Microsoft Corporation® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (5) - 1s O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® ---\\ LOGICIELS INSTALLÉS (26) - 2s O42 - Logiciel: Canon IJ Scan Utility - (.‪Canon Inc.‬.) [HKLM][64Bits] -- Canon_IJ_Scan_Utility =>.Canon Inc.® O42 - Logiciel: Canon Inkjet Printer/Scanner/Fax Extended Survey Program - (.Canon Inc..) [HKLM][64Bits] -- CANONIJPLM100 =>.Canon Inc.® O42 - Logiciel: Canon MP230 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP230_series [Unsigned] =>.Canon Inc. O42 - Logiciel: Canon Quick Menu - (.Canon Inc..) [HKLM][64Bits] -- CanonQuickMenu =>.Canon Inc.® O42 - Logiciel: Microsoft Office Access MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0015-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Excel MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0016-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office InfoPath MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0044-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Office 64-bit Components 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002A-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Outlook MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001A-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office PowerPoint MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0018-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0011-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Professional Plus 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- PROPLUS =>.Microsoft Corporation® O42 - Logiciel: Microsoft Office Proof (Arabic) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0401-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proof (Dutch) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0413-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proof (English) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0409-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proof (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proof (German) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0407-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proof (Spanish) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001F-0C0A-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proofing (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002C-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Publisher MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-0019-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Shared 64-bit MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-002A-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Shared MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-006E-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Word MUI (French) 2007 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90120000-001B-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Mozilla Firefox 89.0.2 (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 89.0.2 (x64 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (35) - 2s HKLM\SOFTWARE\Canon =>.Canon HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Canon =>.Canon HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Canon =>.Canon HKCU\SOFTWARE\Mine =>.Microsoft Corporation HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Canon =>.Canon HKU\S-1-5-21-2627893066-313205460-3732882948-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-2627893066-313205460-3732882948-1001\SOFTWARE\Canon =>.Canon HKU\S-1-5-21-2627893066-313205460-3732882948-1001\SOFTWARE\Mine =>.Microsoft Corporation HKU\S-1-5-21-2627893066-313205460-3732882948-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-2627893066-313205460-3732882948-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-2627893066-313205460-3732882948-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-2627893066-313205460-3732882948-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-2627893066-313205460-3732882948-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-2627893066-313205460-3732882948-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (4) - 1s C:\Program Files (x86)\WindowsApps\CheckPoint.VPN_1.0.0.1_neutral_neutral_cw5n1h2txyewy - (.CheckPoint.) [][Check Point Vpn] =>CheckPoint C:\Program Files (x86)\WindowsApps\f5.vpn.client_1.0.0.11_neutral_neutral_cw5n1h2txyewy - (.Legitimate.) [][F5 Networks] C:\Program Files (x86)\WindowsApps\JuniperNetworks.JunosPulseVpn_1.0.0.206_neutral_neutral_cw5n1h2txyewy - (.Juniper Networks.) [][Juniper Networks Junos Pulse] =>Juniper Networks C:\Program Files (x86)\WindowsApps\SonicWALL.MobileConnect_1.0.0.8_neutral_neutral_cw5n1h2txyewy - (.Sonic Solutions.) [][SonicWALL Mobile Connect] =>Sonic Solutions ---\\ CONTENU DES DOSSIERS PROGRAMMES (115) - 0s O43 - CFD: 04/11/2020 - [] HD -- C:\Program Files\CanonBJ =>.Canon Inc. O43 - CFD: 04/11/2020 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Embedded Lockdown Manager =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 28/06/2021 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 22/08/2013 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 17/11/2020 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 25/06/2021 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 04/07/2021 - [] D -- C:\Program Files (x86)\Canon =>.Canon Inc.® O43 - CFD: 04/11/2020 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Program Files (x86)\Microsoft Visual Studio =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Program Files (x86)\Microsoft Works =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 28/06/2021 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 04/11/2020 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 04/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP230 series =>.Canon Inc. O43 - CFD: 04/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities =>.Canon Inc. O43 - CFD: 21/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Embedded Lockdown Manager =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] HD -- C:\ProgramData\CanonBJ =>.Canon Inc. O43 - CFD: 07/06/2021 - [] D -- C:\ProgramData\CanonIJPLM =>.Canon Inc. O43 - CFD: 04/11/2020 - [] HD -- C:\ProgramData\CanonIJQuickMenu =>.Canon Inc. O43 - CFD: 22/05/2021 - [] HD -- C:\ProgramData\CanonIJScan =>.Canon Inc. O43 - CFD: 04/11/2020 - [] D -- C:\ProgramData\CanonIJWSpt =>.Canon Inc. O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 10/05/2021 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 04/07/2021 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 21/11/2014 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 04/11/2020 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Users\claud_000\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 22/05/2021 - [] D -- C:\Users\claud_000\AppData\Roaming\Canon =>.Canon O43 - CFD: 11/01/2021 - [] D -- C:\Users\claud_000\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 28/11/2020 - [] SD -- C:\Users\claud_000\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Users\claud_000\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 17/06/2021 - [] D -- C:\Users\claud_000\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 04/07/2021 - [] D -- C:\Users\claud_000\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 04/11/2020 - [0] SHD -- C:\Users\claud_000\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] SHD -- C:\Users\claud_000\AppData\Local\EmieBrowserModeList =>.ATTENTION O43 - CFD: 04/11/2020 - [] SHD -- C:\Users\claud_000\AppData\Local\EmieSiteList =>.ATTENTION O43 - CFD: 04/11/2020 - [] SHD -- C:\Users\claud_000\AppData\Local\EmieUserList =>.ATTENTION O43 - CFD: 04/11/2020 - [0] SHD -- C:\Users\claud_000\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/06/2021 - [] D -- C:\Users\claud_000\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [0] D -- C:\Users\claud_000\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Users\claud_000\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 05/11/2020 - [] D -- C:\Users\claud_000\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 04/07/2021 - [] D -- C:\Users\claud_000\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [0] SHD -- C:\Users\claud_000\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [0] D -- C:\Users\claud_000\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 04/07/2021 - [] D -- C:\Users\claud_000\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 04/11/2020 - [] SHD -- C:\Users\claud_000\AppData\LocalLow\EmieBrowserModeList =>.ATTENTION O43 - CFD: 04/11/2020 - [] SHD -- C:\Users\claud_000\AppData\LocalLow\EmieSiteList =>.ATTENTION O43 - CFD: 04/11/2020 - [] SHD -- C:\Users\claud_000\AppData\LocalLow\EmieUserList =>.ATTENTION O43 - CFD: 04/11/2020 - [] SD -- C:\Users\claud_000\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 04/07/2021 - [] D -- C:\Users\claud_000\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\Users\claud_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\Users\claud_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] RD -- C:\Users\claud_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 22/08/2013 - [] D -- C:\Users\claud_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] RD -- C:\Users\claud_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] RD -- C:\Users\claud_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 21/11/2014 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 13/11/2020 - [] D -- C:\Windows\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 13/11/2020 - [] SD -- C:\Windows\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (1) - 0s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (19) - 3s O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (16) - 0s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft® O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTÈME (305) - 11s O58 - SDL:2013/08/22 13:38:15 AC . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\Windows\System32\drivers\1394ohci.sys [231424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\Windows\System32\drivers\3ware.sys [108896] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\Windows\System32\drivers\acpi.sys [533824] =>.Microsoft® O58 - SDL:2013/08/22 14:49:54 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\Windows\System32\drivers\acpiex.sys [79712] =>.Microsoft® O58 - SDL:2013/08/22 13:38:48 AC . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\Windows\System32\drivers\acpipagr.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:53 AC . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\Windows\System32\drivers\acpipmi.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:58 AC . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\Windows\System32\drivers\acpitime.sys [10752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\Windows\System32\drivers\adp80xx.sys [782176] =>.Microsoft® O58 - SDL:2014/11/21 01:17:59 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\Windows\System32\drivers\afd.sys [563200] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:51 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\Windows\System32\drivers\agilevpn.sys [96768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:40 AC . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\Windows\System32\drivers\AGP440.sys [62304] =>.Microsoft® O58 - SDL:2013/08/22 13:39:54 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\Windows\System32\drivers\ahcache.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 10:46:34 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdk8.sys [95744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 10:46:35 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\amdppm.sys [98816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\Windows\System32\drivers\amdsata.sys [79200] =>.Microsoft® O58 - SDL:2013/08/22 14:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\Windows\System32\drivers\amdsbs.sys [259424] =>.Microsoft® O58 - SDL:2013/08/22 14:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\Windows\System32\drivers\amdxata.sys [25952] =>.Microsoft® O58 - SDL:2014/11/21 01:18:41 A . (.Microsoft Corporation - AppID Driver.) -- C:\Windows\System32\drivers\appid.sys [82944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\Windows\System32\drivers\arcsas.sys [114016] =>.Microsoft® O58 - SDL:2013/08/22 13:38:53 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\Windows\System32\drivers\asyncmac.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:41 AC . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\Windows\System32\drivers\atapi.sys [26464] =>.Microsoft® O58 - SDL:2013/08/22 14:43:41 AC . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\Windows\System32\drivers\ataport.sys [199520] =>.Microsoft® O58 - SDL:2013/08/22 13:39:31 AC . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\Windows\System32\drivers\BasicDisplay.sys [50688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 00:54:51 AC . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\Windows\System32\drivers\BasicRender.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:49:53 AC . (.Microsoft Corporation - Battery Class Driver.) -- C:\Windows\System32\drivers\battc.sys [35168] =>.Microsoft® O58 - SDL:2013/08/13 01:25:46 A . (. - BCM Function 2 Device Driver.) -- C:\Windows\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2013/08/22 13:40:24 A . (.Microsoft Corporation - BEEP Driver.) -- C:\Windows\System32\drivers\beep.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:38 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\Windows\System32\drivers\bowser.sys [102912] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:56 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\Windows\System32\drivers\bridge.sys [115712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 00:54:51 AC . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\Windows\System32\drivers\BtaMPM.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:39 AC . (.Microsoft Corporation - HID de contrôle à distance audio/vidéo Blue.) -- C:\Windows\System32\drivers\BthAvrcpTg.sys [36992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\Windows\System32\drivers\bthhfenum.sys [57856] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:16 AC . (.Microsoft Corporation - Minipilote HID mains libres Bluetooth.) -- C:\Windows\System32\drivers\BthhfHid.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\Windows\System32\drivers\bthmodem.sys [64000] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\Windows\System32\drivers\bxvbda.sys [531296] =>.Microsoft® O58 - SDL:2013/08/22 13:40:15 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\Windows\System32\drivers\cdfs.sys [88576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 10:46:35 AC . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\Windows\System32\drivers\cdrom.sys [164352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:25 AC . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\Windows\System32\drivers\circlass.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:00 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\Windows\System32\drivers\Classpnp.sys [337728] =>.Microsoft® O58 - SDL:2014/11/21 01:57:07 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\Windows\System32\drivers\clfs.sys [376152] =>.Microsoft® O58 - SDL:2013/08/22 13:39:43 AC . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\Windows\System32\drivers\CmBatt.sys [25472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:01 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\Windows\System32\drivers\cng.sys [563976] =>.Microsoft® O58 - SDL:2013/08/22 13:38:48 AC . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\Windows\System32\drivers\CompositeBus.sys [36352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 15:25:40 A . (.Microsoft Corporation - Console Driver.) -- C:\Windows\System32\drivers\condrv.sys [43008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:41 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\Windows\System32\drivers\crashdmp.sys [68960] =>.Microsoft® O58 - SDL:2013/08/22 14:50:19 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\Windows\System32\drivers\dam.sys [57696] =>.Microsoft® O58 - SDL:2014/11/21 01:57:06 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\Windows\System32\drivers\dfsc.sys [134144] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:39:44 AC . (.Microsoft Corporation - PnP Disk Driver.) -- C:\Windows\System32\drivers\disk.sys [100192] =>.Microsoft® O58 - SDL:2013/08/22 14:43:40 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\Windows\System32\drivers\Diskdump.sys [36192] =>.Microsoft® O58 - SDL:2013/08/22 13:40:38 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\Windows\System32\drivers\Dmpusbstor.sys [13312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:37:14 A . (.Microsoft Corporation - Dynamic Memory.) -- C:\Windows\System32\drivers\dmvsc.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:56 AC . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmk.sys [89088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:56 AC . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\Windows\System32\drivers\drmkaud.sys [14528] =>.Microsoft® O58 - SDL:2013/08/22 14:39:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\Windows\System32\drivers\Dumpata.sys [33632] =>.Microsoft® O58 - SDL:2014/11/21 00:55:47 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\Windows\System32\drivers\dumpfve.sys [71888] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\Windows\System32\drivers\dumpsd.sys [153920] =>.Microsoft® O58 - SDL:2014/11/21 01:19:11 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\Windows\System32\drivers\dxgkrnl.sys [1552704] =>.Microsoft® O58 - SDL:2014/11/21 01:19:11 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\Windows\System32\drivers\dxgmms1.sys [389952] =>.Microsoft® O58 - SDL:2013/08/22 14:43:40 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\Windows\System32\drivers\EhStorClass.sys [82784] =>.Microsoft® O58 - SDL:2013/08/22 14:43:40 AC . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\Windows\System32\drivers\EhStorTcgDrv.sys [114016] =>.Microsoft® O58 - SDL:2013/08/22 13:38:45 AC . (.Microsoft Corporation - Error Device Driver.) -- C:\Windows\System32\drivers\errdev.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\Windows\System32\drivers\evbda.sys [3357024] =>.Microsoft® O58 - SDL:2013/08/22 13:40:18 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\Windows\System32\drivers\exfat.sys [200704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:49:30 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\Windows\System32\drivers\fastfat.sys [217952] =>.Microsoft® O58 - SDL:2013/08/22 13:40:18 AC . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\Windows\System32\drivers\fdc.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 00:55:03 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\Windows\System32\drivers\fileinfo.sys [79192] =>.Microsoft® O58 - SDL:2013/08/22 13:39:41 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\Windows\System32\drivers\filetrace.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:40:18 AC . (.Microsoft Corporation - Floppy Driver.) -- C:\Windows\System32\drivers\flpydisk.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:00 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\Windows\System32\drivers\fltMgr.sys [354112] =>.Microsoft® O58 - SDL:2014/11/21 01:18:27 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\Windows\System32\drivers\fsdepends.sys [61248] =>.Microsoft® O58 - SDL:2013/08/22 15:25:40 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\Windows\System32\drivers\fs_rec.sys [30048] =>.Microsoft® O58 - SDL:2014/11/21 01:20:00 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\Windows\System32\drivers\fvevol.sys [589656] =>.Microsoft® O58 - SDL:2014/11/21 01:17:59 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\Windows\System32\drivers\FWPKCLNT.SYS [428864] =>.Microsoft® O58 - SDL:2013/08/22 10:46:33 AC . (.Microsoft Corporation - Processor Driver.) -- C:\Windows\System32\drivers\fxppm.sys [27136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:45 A . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour pla.) -- C:\Windows\System32\drivers\GAGP30KX.SYS [65888] =>.Microsoft® O58 - SDL:2014/11/21 01:17:56 AC . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\Windows\System32\drivers\hdaudbus.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:21 AC . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\Windows\System32\drivers\HdAudio.sys [395776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:01 AC . (.Microsoft Corporation - Hid Battery Driver.) -- C:\Windows\System32\drivers\hidbatt.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:39 AC . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\Windows\System32\drivers\hidbth.sys [96768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:57:06 AC . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\Windows\System32\drivers\hidclass.sys [111616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:37:28 AC . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\Windows\System32\drivers\hidi2c.sys [41472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:16 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidir.sys [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:40:26 AC . (.Microsoft Corporation - Hid Parsing Library.) -- C:\Windows\System32\drivers\hidparse.sys [32512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:57:06 AC . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\Windows\System32\drivers\hidusb.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\Windows\System32\drivers\HpSAMD.sys [64352] =>.Microsoft® O58 - SDL:2014/11/21 00:54:58 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\Windows\System32\drivers\http.sys [994136] =>.Microsoft® O58 - SDL:2013/08/22 14:39:47 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\Windows\System32\drivers\hwpolicy.sys [24416] =>.Microsoft® O58 - SDL:2013/08/22 13:37:49 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\Windows\System32\drivers\hyperkbd.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:20 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\Windows\System32\drivers\HyperVideo.sys [22016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de port i8042.) -- C:\Windows\System32\drivers\i8042prt.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/07/30 20:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/07/25 21:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/08/10 02:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\Windows\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2013/08/22 14:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\Windows\System32\drivers\iaStorV.sys [412000] =>.Microsoft® O58 - SDL:2013/08/22 14:43:44 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\Windows\System32\drivers\intelide.sys [18272] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\Windows\System32\drivers\intelpep.sys [39744] =>.Microsoft® O58 - SDL:2013/08/22 10:46:35 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\intelppm.sys [98816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:35:51 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\Windows\System32\drivers\ipfltdrv.sys [84992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\Windows\System32\drivers\IPMIDrv.sys [79872] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 00:55:10 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\Windows\System32\drivers\ipnat.sys [142848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:37:35 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\Windows\System32\drivers\irda.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:30 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\Windows\System32\drivers\irenum.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:45 AC . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\Windows\System32\drivers\isapnp.sys [21856] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\Windows\System32\drivers\kbdclass.sys [59712] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\Windows\System32\drivers\kbdhid.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:26 AC . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\Windows\System32\drivers\kdnic.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:36 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\Windows\System32\drivers\ks.sys [295424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:00 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecdd.sys [100672] =>.Microsoft® O58 - SDL:2014/11/21 01:18:01 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\Windows\System32\drivers\ksecpkg.sys [177472] =>.Microsoft® O58 - SDL:2013/08/22 13:39:31 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\Windows\System32\drivers\ksthunk.sys [21248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:36:18 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\Windows\System32\drivers\lltdio.sys [59392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas.sys [109408] =>.Microsoft® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft® O58 - SDL:2013/08/22 14:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\Windows\System32\drivers\lsi_sss.sys [82784] =>.Microsoft® O58 - SDL:2014/11/21 00:55:04 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\Windows\System32\drivers\luafv.sys [124416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:38 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\Windows\System32\drivers\mcd.sys [22016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\Windows\System32\drivers\megasas.sys [56672] =>.Microsoft® O58 - SDL:2013/08/22 14:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\Windows\System32\drivers\megasr.sys [575840] =>.Microsoft® O58 - SDL:2013/08/22 13:40:15 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\Windows\System32\drivers\modem.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:36:37 AC . (.Microsoft Corporation - Monitor Driver.) -- C:\Windows\System32\drivers\monitor.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\Windows\System32\drivers\mouclass.sys [51008] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\Windows\System32\drivers\mouhid.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:00 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\Windows\System32\drivers\mountmgr.sys [102208] =>.Microsoft® O58 - SDL:2014/11/21 01:18:51 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\Windows\System32\drivers\mpsdrv.sys [74240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:57:07 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\Windows\System32\drivers\mrxdav.sys [140288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:02 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\Windows\System32\drivers\mrxsmb.sys [405504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:57:06 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\Windows\System32\drivers\mrxsmb10.sys [283648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:02 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\Windows\System32\drivers\mrxsmb20.sys [202752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 15:25:41 A . (.Microsoft Corporation - Mailslot driver.) -- C:\Windows\System32\drivers\msfs.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:36 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\Windows\System32\drivers\msgpioclx.sys [146752] =>.Microsoft® O58 - SDL:2013/08/22 14:43:48 AC . (.Microsoft Corporation - GPIO Button Driver.) -- C:\Windows\System32\drivers\msgpiowin32.sys [41824] =>.Microsoft® O58 - SDL:2013/08/22 13:39:06 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\Windows\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:06 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\Windows\System32\drivers\mshidumdf.sys [9728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:49 AC . (.Microsoft Corporation - ISA Driver.) -- C:\Windows\System32\drivers\msisadrv.sys [17248] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\Windows\System32\drivers\msiscsi.sys [275800] =>.Microsoft® O58 - SDL:2013/08/22 13:39:31 A . (.Microsoft Corporation - MS KS Server.) -- C:\Windows\System32\drivers\mskssrv.sys [10624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:51 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\Windows\System32\drivers\mslldp.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:30 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\Windows\System32\drivers\mspclock.sys [7040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:31 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\Windows\System32\drivers\mspqm.sys [6784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 15:25:35 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\Windows\System32\drivers\msrpc.sys [366432] =>.Microsoft® O58 - SDL:2013/08/22 14:49:29 AC . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\Windows\System32\drivers\mssmbios.sys [37728] =>.Microsoft® O58 - SDL:2013/08/22 13:38:38 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\Windows\System32\drivers\mstee.sys [7936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:37:36 AC . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\Windows\System32\drivers\MTConfig.sys [13312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:49:29 A . (.Microsoft Corporation - Multiple UNC Provider Driver.) -- C:\Windows\System32\drivers\mup.sys [78688] =>.Microsoft® O58 - SDL:2013/08/22 14:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\Windows\System32\drivers\mvumis.sys [63840] =>.Microsoft® O58 - SDL:2014/11/21 01:18:00 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\Windows\System32\drivers\ndis.sys [1114432] =>.Microsoft® O58 - SDL:2014/11/21 01:18:55 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\Windows\System32\drivers\ndiscap.sys [43008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:54 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\Windows\System32\drivers\NdisImPlatform.sys [126464] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:51 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\Windows\System32\drivers\ndistapi.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:37:34 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\Windows\System32\drivers\ndisuio.sys [60416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:36:25 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\Windows\System32\drivers\NdisVirtualBus.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:35:56 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\Windows\System32\drivers\ndiswan.sys [220672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:51 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\Windows\System32\drivers\ndproxy.sys [72192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:51 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\Windows\System32\drivers\Ndu.sys [103424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:55 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\Windows\System32\drivers\netbios.sys [48128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:37:02 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\Windows\System32\drivers\netbt.sys [282624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:00 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\Windows\System32\drivers\netio.sys [474432] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 A . (.Microsoft Corporation - Virtual NDIS6.3 Miniport.) -- C:\Windows\System32\drivers\netvsc63.sys [87040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 15:25:41 A . (.Microsoft Corporation - NPFS Driver.) -- C:\Windows\System32\drivers\npfs.sys [58880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:22 AC . (.Microsoft Corporation - Named pipe service triggers.) -- C:\Windows\System32\drivers\npsvctrig.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:59 A . (.Microsoft Corporation - NSI Proxy.) -- C:\Windows\System32\drivers\nsiproxy.sys [39424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:00 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\Windows\System32\drivers\ntfs.sys [2025792] =>.Microsoft® O58 - SDL:2013/08/22 15:25:41 A . (.Microsoft Corporation - NULL Driver.) -- C:\Windows\System32\drivers\null.sys [5632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\Windows\System32\drivers\nvraid.sys [150368] =>.Microsoft® O58 - SDL:2013/08/22 14:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\Windows\System32\drivers\nvstor.sys [168288] =>.Microsoft® O58 - SDL:2013/08/22 14:43:32 A . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\Windows\System32\drivers\NV_AGP.SYS [124768] =>.Microsoft® O58 - SDL:2014/11/21 01:18:57 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\Windows\System32\drivers\nwifi.sys [445440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:54 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\Windows\System32\drivers\pacer.sys [151040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:40:02 AC . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\Windows\System32\drivers\parport.sys [94208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:00 A . (.Microsoft Corporation - Partition Management Driver.) -- C:\Windows\System32\drivers\partmgr.sys [88896] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\Windows\System32\drivers\pci.sys [280384] =>.Microsoft® O58 - SDL:2013/08/22 14:43:31 AC . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\pciide.sys [14688] =>.Microsoft® O58 - SDL:2013/08/22 14:43:32 AC . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\Windows\System32\drivers\pciidex.sys [48992] =>.Microsoft® O58 - SDL:2013/08/22 14:49:30 AC . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\Windows\System32\drivers\pcmcia.sys [114528] =>.Microsoft® O58 - SDL:2013/08/22 14:39:15 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\Windows\System32\drivers\pcw.sys [50016] =>.Microsoft® O58 - SDL:2014/11/21 01:17:57 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\Windows\System32\drivers\pdc.sys [86336] =>.Microsoft® O58 - SDL:2014/11/21 00:55:09 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\Windows\System32\drivers\PEAuth.sys [663040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:56 AC . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\Windows\System32\drivers\portcls.sys [272384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 10:46:34 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\Windows\System32\drivers\processr.sys [92160] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:54 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\Windows\System32\drivers\qwavedrv.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:56 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\Windows\System32\drivers\rasacd.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:35:51 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\Windows\System32\drivers\rasl2tp.sys [120832] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:36:37 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\Windows\System32\drivers\raspppoe.sys [84992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:35:51 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\Windows\System32\drivers\raspptp.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:51 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\Windows\System32\drivers\rassstp.sys [93696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 00:54:52 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\Windows\System32\drivers\rdbss.sys [408576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:52 AC . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\Windows\System32\drivers\rdpbus.sys [22528] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 00:27:21 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\Windows\System32\drivers\rdpdr.sys [195584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:19:56 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\Windows\System32\drivers\rdpvideominiport.sys [27456] =>.Microsoft® O58 - SDL:2014/11/21 00:55:00 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\Windows\System32\drivers\rdyboost.sys [249688] =>.Microsoft® O58 - SDL:2014/11/21 01:18:49 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\Windows\System32\drivers\refs.sys [921920] =>.Microsoft® O58 - SDL:2014/11/21 01:18:55 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\Windows\System32\drivers\rmcast.sys [144384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:44 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\Windows\System32\drivers\RNDISMP.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:52 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\Windows\System32\drivers\rootmdm.sys [11776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:36:34 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\Windows\System32\drivers\rspndr.sys [80384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/06/18 16:46:17 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\Windows\System32\drivers\Rt630x64.sys [591360] [Unsigned] =>.Realtek O58 - SDL:2013/07/31 20:25:43 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driverr.) -- C:\Windows\System32\drivers\rtwlane.sys [1936088] =>.Realtek Semiconductor Corp® O58 - SDL:2013/08/22 14:39:15 AC . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\Windows\System32\drivers\sbp2port.sys [107872] =>.Microsoft® O58 - SDL:2014/11/21 01:18:38 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\Windows\System32\drivers\scfilter.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:32 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\Windows\System32\drivers\scsiport.sys [170848] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\Windows\System32\drivers\sdbus.sys [238912] =>.Microsoft® O58 - SDL:2014/11/21 00:54:51 AC . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\Windows\System32\drivers\sdstor.sys [79192] =>.Microsoft® O58 - SDL:2013/08/22 17:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\Windows\System32\drivers\secdrv.sys [23040] [Unsigned] =>.Rovi Corporation O58 - SDL:2013/08/22 14:43:31 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\Windows\System32\drivers\SerCx.sys [69472] =>.Microsoft® O58 - SDL:2014/11/21 00:55:05 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\Windows\System32\drivers\SerCx2.sys [146776] =>.Microsoft® O58 - SDL:2013/08/22 13:40:17 AC . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\Windows\System32\drivers\serenum.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:40:08 AC . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\Windows\System32\drivers\serial.sys [83456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\Windows\System32\drivers\sermouse.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:40:00 AC . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\Windows\System32\drivers\sfloppy.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\Windows\System32\drivers\sisraid2.sys [44896] =>.Microsoft® O58 - SDL:2013/08/22 14:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\Windows\System32\drivers\sisraid4.sys [81760] =>.Microsoft® O58 - SDL:2013/08/22 13:40:16 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\Windows\System32\drivers\smclib.sys [19968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\Windows\System32\drivers\spaceport.sys [415040] =>.Microsoft® O58 - SDL:2013/08/22 14:43:31 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\Windows\System32\drivers\SpbCx.sys [72032] =>.Microsoft® O58 - SDL:2014/11/21 01:18:02 A . (.Microsoft Corporation - Server driver.) -- C:\Windows\System32\drivers\srv.sys [412160] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:01 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\Windows\System32\drivers\srv2.sys [678400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:01 A . (.Microsoft Corporation - Server Network driver.) -- C:\Windows\System32\drivers\srvnet.sys [246272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\Windows\System32\drivers\stexstor.sys [31072] =>.Microsoft® O58 - SDL:2013/08/22 14:43:31 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\Windows\System32\drivers\storahci.sys [107872] =>.Microsoft® O58 - SDL:2014/11/21 00:54:51 AC . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\Windows\System32\drivers\stornvme.sys [57176] =>.Microsoft® O58 - SDL:2014/11/21 01:18:36 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\Windows\System32\drivers\storport.sys [373568] =>.Microsoft® O58 - SDL:2013/08/22 14:36:48 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\Windows\System32\drivers\storvsc.sys [45888] =>.Microsoft® O58 - SDL:2013/08/22 13:39:26 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\Windows\System32\drivers\stream.sys [67584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\Windows\System32\drivers\swenum.sys [14144] =>.Microsoft® O58 - SDL:2013/08/22 13:39:50 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\Windows\System32\drivers\tape.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:28 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\Windows\System32\drivers\tbs.sys [21824] =>.Microsoft® O58 - SDL:2014/11/21 01:17:59 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\Windows\System32\drivers\tcpip.sys [2485056] =>.Microsoft® O58 - SDL:2014/11/21 01:57:08 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\Windows\System32\drivers\tcpipreg.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 15:25:35 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\Windows\System32\drivers\tdi.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 15:25:35 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\Windows\System32\drivers\tdx.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 00:27:16 AC . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\Windows\System32\drivers\terminpt.sys [37216] =>.Microsoft® O58 - SDL:2013/08/22 14:39:14 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\Windows\System32\drivers\tm.sys [121184] =>.Microsoft® O58 - SDL:2013/08/22 14:49:33 AC . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\Windows\System32\drivers\tpm.sys [159584] =>.Microsoft® O58 - SDL:2013/08/22 13:37:28 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\Windows\System32\drivers\TsUsbFlt.sys [56320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:57 AC . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\Windows\System32\drivers\TsUsbGD.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:35:45 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\Windows\System32\drivers\tunnel.sys [154112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:43:33 A . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\Windows\System32\drivers\UAGP35.SYS [64864] =>.Microsoft® O58 - SDL:2013/08/22 14:43:33 AC . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\Windows\System32\drivers\uaspstor.sys [74080] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - USB Controller Extension.) -- C:\Windows\System32\drivers\UCX01000.SYS [189248] =>.Microsoft® O58 - SDL:2013/08/22 13:40:20 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\Windows\System32\drivers\udfs.sys [316928] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:39:15 AC . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\Windows\System32\drivers\uefi.sys [26976] =>.Microsoft® O58 - SDL:2013/08/22 14:43:33 A . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à proce.) -- C:\Windows\System32\drivers\ULIAGPKX.SYS [65888] =>.Microsoft® O58 - SDL:2013/08/22 13:38:59 AC . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\Windows\System32\drivers\umbus.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:58 AC . (.Microsoft Corporation - Generic pass-through driver.) -- C:\Windows\System32\drivers\umpass.sys [11776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:16 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\Windows\System32\drivers\usb8023.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:27 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\Windows\System32\drivers\USBCAMD2.sys [32512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\Windows\System32\drivers\usbccgp.sys [143680] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\Windows\System32\drivers\usbcir.sys [98304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\Windows\System32\drivers\usbd.sys [27480] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\Windows\System32\drivers\usbehci.sys [89944] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\Windows\System32\drivers\usbhub.sys [419648] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\Windows\System32\drivers\USBHUB3.SYS [467776] =>.Microsoft® O58 - SDL:2013/08/22 13:39:27 AC . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\Windows\System32\drivers\usbport.sys [440664] =>.Microsoft® O58 - SDL:2013/08/22 13:36:33 AC . (.Microsoft Corporation - USB Printer driver.) -- C:\Windows\System32\drivers\usbprint.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:39 A . (.Microsoft Corporation - Gestionnaire de stratégie de redirection US.) -- C:\Windows\System32\drivers\usbrpm.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:56 A . (.Microsoft Corporation - USB Scanner Driver.) -- C:\Windows\System32\drivers\usbscan.sys [44544] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\Windows\System32\drivers\USBSTOR.SYS [148800] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\Windows\System32\drivers\usbuhci.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:56 AC . (.Microsoft Corporation - USB Video Class Driver.) -- C:\Windows\System32\drivers\usbvideo.sys [212736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\Windows\System32\drivers\USBXHCI.SYS [324928] =>.Microsoft® O58 - SDL:2013/08/22 14:37:27 AC . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\Windows\System32\drivers\vdrvroot.sys [37728] =>.Microsoft® O58 - SDL:2014/11/21 00:54:51 A . (.Microsoft Corporation - Driver Verifier Extension.) -- C:\Windows\System32\drivers\VerifierExt.sys [175960] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\Windows\System32\drivers\vhdmp.sys [551232] =>.Microsoft® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\Windows\System32\drivers\viaide.sys [19808] =>.Microsoft® O58 - SDL:2013/08/22 13:39:31 A . (.Microsoft Corporation - Video Port Driver.) -- C:\Windows\System32\drivers\videoprt.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\Windows\System32\drivers\vmbkmcl.sys [89368] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 A . (.Microsoft Corporation - Microsoft Hyper-V Virtual Machine Bus Child.) -- C:\Windows\System32\drivers\vmbus.sys [97048] =>.Microsoft® O58 - SDL:2013/08/22 13:37:50 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\Windows\System32\drivers\VMBusHID.sys [21760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:23 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\Windows\System32\drivers\vmgencounter.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:37 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\Windows\System32\drivers\vms3cap.sys [7168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:17:55 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\Windows\System32\drivers\vmstorfl.sys [49944] =>.Microsoft® O58 - SDL:2013/08/22 14:39:15 AC . (.Microsoft Corporation - Volume Manager Driver.) -- C:\Windows\System32\drivers\volmgr.sys [73568] =>.Microsoft® O58 - SDL:2013/08/22 14:39:15 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\Windows\System32\drivers\volmgrx.sys [377696] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 AC . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\Windows\System32\drivers\volsnap.sys [310080] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\Windows\System32\drivers\vpci.sys [69952] =>.Microsoft® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\Windows\System32\drivers\vsmraid.sys [168800] =>.Microsoft® O58 - SDL:2013/08/22 14:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\Windows\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft® O58 - SDL:2013/08/22 13:39:00 AC . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\Windows\System32\drivers\vwifibus.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:38:05 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\Windows\System32\drivers\vwififlt.sys [71680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:36:15 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\Windows\System32\drivers\vwifimp.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:15 AC . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\Windows\System32\drivers\wacompen.sys [26752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:51 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\Windows\System32\drivers\wanarp.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 00:55:18 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\Windows\System32\drivers\watchdog.sys [54272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 02:23:53 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\Windows\System32\drivers\WdBoot.sys [35856] =>.Microsoft Windows Early Launch Anti-malware Publisher® O58 - SDL:2013/08/22 15:25:41 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\Windows\System32\drivers\Wdf01000.sys [839488] =>.Microsoft® O58 - SDL:2014/11/21 02:23:53 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\Windows\System32\drivers\WdFilter.sys [257880] =>.Microsoft® O58 - SDL:2013/08/22 15:25:41 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\Windows\System32\drivers\WdfLdr.sys [60224] =>.Microsoft® O58 - SDL:2014/11/21 02:23:53 A . (.Microsoft Corporation - Microsoft Network Realtime Inspection Drive.) -- C:\Windows\System32\drivers\WdNisDrv.sys [123224] =>.Microsoft® O58 - SDL:2013/08/22 14:39:04 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\Windows\System32\drivers\werkernel.sys [38240] =>.Microsoft® O58 - SDL:2014/11/21 01:18:51 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\Windows\System32\drivers\wfplwfs.sys [136512] =>.Microsoft® O58 - SDL:2014/11/21 01:18:27 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\Windows\System32\drivers\wimmount.sys [33600] =>.Microsoft® O58 - SDL:2014/11/21 01:17:55 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\Windows\System32\drivers\winhv.sys [61208] =>.Microsoft® O58 - SDL:2013/08/22 13:37:55 AC . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\Windows\System32\drivers\winusb.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:40:04 AC . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\Windows\System32\drivers\wmiacpi.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 15:25:41 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\Windows\System32\drivers\wmilib.sys [18272] =>.Microsoft® O58 - SDL:2014/11/21 01:20:09 A . (.Microsoft Corporation - Windows Overlay Filter.) -- C:\Windows\System32\drivers\wof.sys [157016] =>.Microsoft® O58 - SDL:2014/11/21 01:19:54 A . (.Microsoft Corporation - Family Safety Filter Driver.) -- C:\Windows\System32\drivers\wpcfltr.sys [54784] =>.Microsoft® O58 - SDL:2013/08/22 14:36:12 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\Windows\System32\drivers\WpdUpFltr.sys [26976] =>.Microsoft® O58 - SDL:2013/08/22 15:25:41 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\Windows\System32\drivers\WppRecorder.sys [23392] =>.Microsoft® O58 - SDL:2013/08/22 13:40:03 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\Windows\System32\drivers\ws2ifsl.sys [21504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:36 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFPf.sys [113664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:18:36 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\Windows\System32\drivers\WUDFRd.sys [226304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/21 01:19:10 A . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\Windows\System32\win32k.sys [4182016] [Unsigned] =>.Microsoft Corporation ---\\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (8) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (2) - 10s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (34) - 9s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\Windows\System32\aelupsvc.dll [214528] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [329216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1084416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [926208] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [31744] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151040] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1265152] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [230400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [71168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [226816] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [101376] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [521728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1639424] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [59392] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [166400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542208] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3557376] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (2) - 1s O87 - FAEL: "{6662FAF7-5C3D-479A-BDD2-5BDDBFFFA2F7}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{1271E132-9F06-4A7C-929A-8026FD95CE7A}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ CODES PRODUITS LOGICIELS (18) - 0s O90 - PUC: "00002109110000000000000000F01FEC" [HKLM] . (.Microsoft Office Professional Plus 2007.) =>.Microsoft Corporation O90 - PUC: "000021094400C0400000000000F01FEC" [HKLM] . (.Microsoft Office InfoPath MUI (French) 2007.) =>.Microsoft Corporation O90 - PUC: "000021095100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Access MUI (French) 2007.) =>.Microsoft Corporation O90 - PUC: "000021096100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Excel MUI (French) 2007.) =>.Microsoft Corporation O90 - PUC: "000021098100C0400000000000F01FEC" [HKLM] . (.Microsoft Office PowerPoint MUI (French) 2007.) =>.Microsoft Corporation O90 - PUC: "000021099100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Publisher MUI (French) 2007.) =>.bl.org O90 - PUC: "00002109A100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Outlook MUI (French) 2007.) =>.Microsoft Corporation O90 - PUC: "00002109A20000000100000000F01FEC" [HKLM] . (.Microsoft Office Office 64-bit Components 2007.) =>.Microsoft Corporation O90 - PUC: "00002109A200C0400100000000F01FEC" [HKLM] . (.Microsoft Office Shared 64-bit MUI (French) 2007.) =>.Microsoft Corporation O90 - PUC: "00002109B100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Word MUI (French) 2007.) =>.Microsoft Corporation O90 - PUC: "00002109C200C0400000000000F01FEC" [HKLM] . (.Microsoft Office Proofing (French) 2007.) =>.Microsoft Corporation O90 - PUC: "00002109E600C0400000000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (French) 2007.) =>.Microsoft Corporation O90 - PUC: "00002109F10010400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (Arabic) 2007.) =>.Microsoft Corporation O90 - PUC: "00002109F10031400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (Dutch) 2007.) =>.Microsoft Corporation O90 - PUC: "00002109F10070400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (German) 2007.) =>.Microsoft Corporation O90 - PUC: "00002109F10090400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (English) 2007.) =>.Microsoft Corporation O90 - PUC: "00002109F100A0C00000000000F01FEC" [HKLM] . (.Microsoft Office Proof (Spanish) 2007.) =>.Microsoft Corporation O90 - PUC: "00002109F100C0400000000000F01FEC" [HKLM] . (.Microsoft Office Proof (French) 2007.) =>.Microsoft Corporation ---\\ FEATURE CONTROL. (157) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:clview.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OUTLOOK.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:clview.exe =>.Legitimate ---\\ OBSERVATEURS des évènements (113) - 116s Application.Error: Microsoft-Windows-CAPI2 (82) ~Numéro: 8053 ~Date: 07/04/2021 01:47:07 PM ~ID: 513 ~Description: Les services de chiffrement ont échoué lors du traitement de l’appel OnIdentity() dans l’objet System Writer.%1. ~Suggestion: Aucune Application.Error: VSS (7) ~Numéro: 8050 ~Date: 07/04/2021 01:44:43 PM ~ID: 8194 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = %1. Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur. Opéra ~Suggestion: Localiser les enregistreurs VSS qui se trompent et changer le compte sous lequel ils s'exécutent du service réseau au système local. Ajuster les autorisations d'activation du service COM par défaut Application.Warning: ESENT (9) ~Numéro: 7868 ~Date: 06/26/2021 06:12:19 PM ~ID: 507 ~Description: %1 (%2) %3Une requête pour lire à partir du fichier "%4" à l'offset %5 pour %6 octets a réussi mais a pris un temps anormalement long (%7 secondes) pour être traité par le système d'exploitation. Ce problème peut être causé par du matériel défaillant Application.Warning: Microsoft-Windows-System-Restore (27) ~Numéro: 7477 ~Date: 06/17/2021 04:02:13 PM ~ID: 8303 ~Description: Scoping unsuccessful for shadowcopy %1 with error %2. ~Suggestion: Exécuter la commande chkdsk / f Application.Error: SPP (35) ~Numéro: 7467 ~Date: 06/17/2021 03:44:38 PM ~ID: 16389 ~Description: L’enregistreur %1 a rencontré une erreur récupérable lors de la création du cliché instantané. Nouvelle tentative en cours... Plus d’infos : %2. Application.Error: Microsoft-Windows-Immersive-Shell (7) ~Numéro: 7246 ~Date: 06/13/2021 01:13:20 PM ~ID: 5973 ~Description: Échec de l’activation de l’application %1 avec l’erreur : %2 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. ~Suggestion: https://support.microsoft.com/en-us/help/3064045/windows-store-apps-may-not-open-and-event-id-5973-is-logged-in-the-app Application.Error: Application Error (4) ~Numéro: 7066 ~Date: 06/07/2021 02:17:49 PM ~ID: 1000 ~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x5450541b Nom du module défaillant : %4, version : %5, horodatage : 0x545038b0 Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000091bf5 ID du processus défaillant : 0x620 He ~Suggestion: Réparer ou réinstaller l'application. Application.Error: Application Hang (6) ~Numéro: 6677 ~Date: 05/24/2021 10:04:08 PM ~ID: 1002 ~Description: Le programme %1 version %2 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : ebc Heure de début ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Error: System Restore (2) ~Numéro: 6226 ~Date: 05/05/2021 05:47:09 PM ~ID: 8211 ~Description: Impossible de créer le point de restauration planifié. Informations supplémentaires : (%1). Application.Error: Winlogon (3) ~Numéro: 6120 ~Date: 05/02/2021 10:14:50 PM ~ID: 4005 ~Description: Le processus d’ouverture de session de Windows s’est terminé de manière inattendue. Application.Error: Microsoft Office 12 (1) ~Numéro: 5496 ~Date: 04/14/2021 06:45:50 PM ~ID: 2001 ~Description: Rejected Safe Mode action : %1. System.Warning: disk (2412) ~Numéro: 97776 ~Date: 07/04/2021 06:28:34 PM ~ID: 153 ~Description: L’opération d’E/S à l’adresse de bloc logique %2 pour le disque %3 (nom d’objet périphérique physique : %4) a été tentée à nouveau. System.Error: volsnap (3) ~Numéro: 97445 ~Date: 07/04/2021 03:41:33 PM ~ID: 14 ~Description: Les clichés instantanés %2 ont été annulés à cause d’une défaillance d’E/S sur le volume %3. System.Warning: Microsoft-Windows-Kernel-PnP (2) ~Numéro: 97422 ~Date: 07/04/2021 03:25:23 PM ~ID: 219 ~Description: Le chargement du pilote %5 a échoué pour le périphérique %2. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: Service Control Manager (14) ~Numéro: 97200 ~Date: 07/04/2021 01:50:56 PM ~ID: 7032 ~Description: Le Gestionnaire de services de contrôle a essayé d’entreprendre une action corrective (%2) après la fin inattendue du service %3, mais cette action a échoué en raison de l’erreur suivante : %%1056 System.Warning: Microsoft-Windows-DNS-Client (4) ~Numéro: 97164 ~Date: 07/04/2021 12:39:35 PM ~ID: 1014 ~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Error: Microsoft-Windows-HAL (13) ~Numéro: 96989 ~Date: 07/01/2021 09:45:29 PM ~ID: 13 ~Description: Le temporisateur de surveillance du système a été déclenché. System.Error: EventLog (13) ~Numéro: 96977 ~Date: 07/01/2021 09:45:47 PM ~ID: 6008 ~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu. System.Error: DCOM (2) ~Numéro: 94443 ~Date: 06/18/2021 07:47:03 PM ~ID: 10005 ~Description: 1053defragsvcNon disponible{D20A3293-3341-4AE8-9AAF-8E397CB63C34} System.Warning: User32 (2) ~Numéro: 94252 ~Date: 06/17/2021 10:06:56 PM ~ID: 1073 ~Description: La tentative par l’utilisateur %2 de redémarrer/arrêter l’ordinateur %1 a échoué System.Error: volmgr (1) ~Numéro: 93047 ~Date: 06/16/2021 06:38:52 PM ~ID: 46 ~Description: L'initialisation du fichier de vidage sur incident a échoué. ---\\ SCAN ADDITIONNEL (1) - 13s ~ Aucun élément malicieux ou superflu trouvé. ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (2) - 0s https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys ---\\ NUMEROS DE SÉRIE [008981DDCE4837C76E0B37280542680A] [01/03/2012] (.Canon Inc..) - C:\Program Files (x86)\Canon\Quick Menu\uninst.exe =>.Canon Inc. [008981DDCE4837C76E0B37280542680A] [03/04/2012] (.Canon Inc..) - C:\Program Files (x86)\Canon\Quick Menu\CNQMACNF.EXE =>.Canon Inc. [008981DDCE4837C76E0B37280542680A] [03/04/2012] (.Canon Inc..) - C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE =>.Canon Inc. [008981DDCE4837C76E0B37280542680A] [03/04/2012] (.Canon Inc..) - C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE =>.Canon Inc. [008981DDCE4837C76E0B37280542680A] [28/03/2012] (.Canon Inc..) - C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe =>.Canon Inc. [008981DDCE4837C76E0B37280542680A] [28/03/2012] (.Canon Inc..) - C:\Program Files (x86)\Canon\IJPLM\ijplmui.exe =>.Canon Inc. [008981DDCE4837C76E0B37280542680A] [28/03/2012] (.Canon Inc..) - C:\Program Files (x86)\Canon\IJPLM\setup.exe =>.Canon Inc. [008981DDCE4837C76E0B37280542680A] [29/03/2012] (.Canon Inc..) - C:\Program Files (x86)\Canon\IJ Scan Utility\MAINT.exe =>.Canon Inc. [0C1CD3EEA47EDDA7A032573B014D0AFD] [24/06/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [24/06/2021] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [24/06/2021] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [13222A5DCCF716DF5AF9C87084412DD9] [31/07/2013] (.Realtek Semiconductor Corp.) - C:\Windows\System32\DRIVERS\rtwlane.sys =>.Realtek Semiconductor Corp [1DE909DE446485F9C6F4B405E24F687D] [13/08/2013] (.Broadcom Corporation.) - C:\Windows\System32\drivers\bcmfn2.sys =>.Broadcom Corporation ~ Unselected Options: ~ End of the scan, 4898 items in 10mn00s (1242)(0)