~ ZHPDiag v2021.7.15.311 Par Nicolas Coolman (2021/07/15) ~ Démarré par HASNA EL (Administrator) (2021/07/15 09:15:20) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\zikas\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\zikas\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Pro, 64-bit (Build 19042) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (3) - 0s ~ GCIE: Google Chrome v91.0.4472.124 ~ MSIE: Internet Explorer v11.789.19041.0 ~ OBIE: Microsoft Edge v91.0.864.67 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : TMT6P Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (2) - 3s AVG AntiVirus Gratuit v21.5.3185 (Protection) Windows Defender W10 (Deactivate) (Protection) ---\\ SURVEILLANCE LOGICIEL (1) - 3s ~ Adobe Acrobat Reader DC - Français (Surveillance) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: Intel64 Family 6 Model 142 Stepping 9, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8255.64 MB (55% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 91 GB (51%) free of 178 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: DESKTOP-UAR7EF0 ~ User Name: HASNA EL ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (2) - 0s ~ Drive C: has 91 GB free of 178 GB (System) ~ Drive D: has 54 GB free of 63 GB ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 1s [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 13/07/2021 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4894336] =>.Microsoft® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 01/07/2021 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 01/07/2021 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [419432] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 01/07/2021 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5069824] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 01/07/2021 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [907776] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 06/11/2020 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 01/07/2021 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [829504] =>.Microsoft® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 01/07/2021 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [588288] =>.Microsoft® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 01/07/2021 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3394048] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 13/07/2021 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [655688] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 13/07/2021 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30024] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 07/12/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 01/07/2021 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [181248] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 01/07/2021 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 13/07/2021 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [139776] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 07/12/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [225280] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 13/07/2021 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [577864] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 06/11/2020 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 13/07/2021 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2851656] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 06/11/2020 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 01/07/2021 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 07/12/2019 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117560] [Unsigned] =>.Microsoft Corporation [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - 06/11/2020 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (80) - 3s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: AVG Antivirus (AVG Antivirus) . (.AVG Technologies CZ, s.r.o. - AVG Service.) - C:\Program Files\AVG\Antivirus\AVGSvc.exe =>.AVG Technologies USA, LLC® O23 - Service: AVG Tools (AVG Tools) . (.AVG Technologies CZ, s.r.o. - AVG Antivirus.) - C:\Program Files\AVG\Antivirus\avgToolsSvc.exe =>.AVG Technologies USA, LLC® O23 - Service: AvgWscReporter (AvgWscReporter) . (.AVG Technologies CZ, s.r.o. - AVG remediation exe.) - C:\Program Files\AVG\Antivirus\wsc_proxy.exe =>.AVG Technologies USA, LLC® O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\qmgr.dll (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) - C:\WINDOWS\System32\qmgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Bonjour (Bonjour Service) . (.Apple Inc. - Bonjour Service.) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service pour utilisateur de plateforme d’appareils connecté (CDPUserSvc_1044f4e) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft® O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\IntelCpHDCPSvc.exe =>.Intel(R) pGFX 2020® O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\diagtrack.dll (DiagTrack) . (.Microsoft Corporation - Suivi des diagnostics Microsoft Windows.) - C:\WINDOWS\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Dolby DAX2 API Service (Dolby DAX2 API Service) . (.Dolby Laboratories, Inc. - DolbyDAX2API.) - C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe =>.Dolby Laboratories, Inc.® O23 - Service: C:\WINDOWS\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Mise à jour de Microsoft Edge (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: FoxitPhantomService (FoxitPhantomService) . (.Foxit Software Inc. - Foxit PhantomPDF ConnectedPDF Windows Servi.) - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\FoxitConnectedPDFService.exe =>.Foxit Software Incorporated® O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google LLC - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: Lenovo PM Service (IBMPMSVC) . (.Lenovo. - Lenovo Power Management Service.) - C:\WINDOWS\System32\ibmpmsvc.exe [Unsigned] =>.Lenovo. O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\igfxCUIService.exe =>.Intel(R) pGFX 2020® O23 - Service: Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation - Intel(R) TPM Provisioning Service.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\TPMProvisioningService.exe =>.Intel(R) Trust Services® O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group® O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Lenovo EasyResume Service (Lenovo Instant On) . (.Lenovo Group Limited - Lenovo EasyResume Program.) - C:\Windows\SysWOW64\EasyResume.exe =>.Lenovo® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Intel(R) Local Management Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group® O23 - Service: Lenovo Platform Service (LPlatSvc) . (.Lenovo. - Lenovo Platform Service.) - C:\WINDOWS\System32\LPlatSvc.exe [Unsigned] =>.Lenovo. O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc® O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Hôte de synchronisation_1044f4e (OneSyncSvc_1044f4e) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor - Realtek Audio Service.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp.® O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\WINDOWS\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Lenovo Hotkey Client Loader (TPHKLOAD) . (.Lenovo Group Limited - ThinkPad Message Client Loader.) - C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\tphkload.exe =>.Lenovo® O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\WINDOWS\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Synaptics FP WBF Policy Service (valWBFPolicyService) . (.Synaptics Incorporated - Synaptics WBF Policy Service (CMN).) - C:\WINDOWS\System32\valWBFPolicyService.exe [Unsigned] =>.Synaptics Incorporated O23 - Service: BiometricSensorDataSynchronization (valWbioSyncSvc) . (.Synaptics Incorporated - SynapticsWinbio Synchronization Service (CM.) - C:\WINDOWS\System32\valWbioSyncSvc.exe [Unsigned] =>.Synaptics Incorporated O23 - Service: C:\WINDOWS\System32\wbiosrvc.dll (WbioSrvc) . (.Microsoft Corporation - Service de biométrie Windows.) - C:\WINDOWS\System32\wbiosrvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service utilisateur de notifications Push Windows_1044f4e (WpnUserService_1044f4e) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (123) - 18s SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Auto [25/01/2021] [ 169672] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Auto [26/06/2021] [ 625976] AVG Antivirus (AVG Antivirus) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files\AVG\Antivirus\AVGSvc.exe =>.AVG Technologies USA, LLC® SR - Auto [26/06/2021] [ 374072] AVG Tools (AVG Tools) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files\AVG\Antivirus\avgToolsSvc.exe =>.AVG Technologies USA, LLC® SR - Boot [26/06/2021] [ 35872] avgArDisk (avgArDisk) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgArDisk.sys =>.AVG Technologies USA, LLC® SR - System [26/06/2021] [ 217056] avgArPot (avgArPot) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgArPot.sys =>.AVG Technologies USA, LLC® SS - Demand [26/06/2021] [ 8297584] avgbIDSAgent (avgbIDSAgent) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files\AVG\Antivirus\aswidsagent.exe =>.AVG Technologies USA, LLC® SR - System [26/06/2021] [ 366704] avgbidsdriver (avgbidsdriver) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgbidsdriver.sys =>.AVG Technologies USA, LLC® SR - Boot [26/06/2021] [ 250464] avgbidsh (avgbidsh) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgbidsh.sys =>.AVG Technologies USA, LLC® SR - Boot [26/06/2021] [ 99440] avgbuniv (avgbuniv) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgbuniv.sys =>.AVG Technologies USA, LLC® SR - Boot [23/05/2021] [ 17344] avgElam (avgElam) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgElam.sys =>.Microsoft® SR - System [26/06/2021] [ 41488] avgKbd (avgKbd) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgKbd.sys =>.AVG Technologies USA, LLC® SR - System [26/06/2021] [ 182736] avgMonFlt (avgMonFlt) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgMonFlt.sys =>.AVG Technologies USA, LLC® SR - System [26/06/2021] [ 524568] avgNetHub (avgNetHub) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgNetHub.sys =>.AVG Technologies USA, LLC® SR - System [26/06/2021] [ 108000] avgRdr (avgRdr) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgRdr2.sys =>.AVG Technologies USA, LLC® SR - Boot [26/06/2021] [ 83056] avgRvrt (avgRvrt) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgRvrt.sys =>.AVG Technologies USA, LLC® SR - System [26/06/2021] [ 851344] avgSnx (avgSnx) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgSnx.sys =>.AVG Technologies USA, LLC® SR - System [26/06/2021] [ 472064] avgSP (avgSP) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgSP.sys =>.AVG Technologies USA, LLC® SR - Auto [26/06/2021] [ 215536] avgStm (avgStm) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgStm.sys =>.AVG Technologies USA, LLC® SR - Boot [26/06/2021] [ 327696] avgVmm (avgVmm) . (.AVG Technologies CZ, s.r.o..) - C:\WINDOWS\System32\drivers\avgVmm.sys =>.AVG Technologies USA, LLC® SR - Auto [02/06/2021] [ 109480] AvgWscReporter (AvgWscReporter) . (.AVG Technologies CZ, s.r.o..) - C:\Program Files\AVG\Antivirus\wsc_proxy.exe =>.AVG Technologies USA, LLC® SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Auto [30/08/2011] [ 462184] Service Bonjour (Bonjour Service) . (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® SS - Demand [15/10/2019] [ 847886] BRLAPI (brlapi) . (...) - C:\Windows\brltty\bin\brltty.exe [Unsigned] SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SS - Demand [11/12/2020] [ 513288] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\IntelCpHeciSvc.exe =>.Intel(R) pGFX 2020® SR - Auto [11/12/2020] [ 529672] Intel(R) Content Protection HDCP Service (cplspcon) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\IntelCpHDCPSvc.exe =>.Intel(R) pGFX 2020® SR - Auto [02/06/2020] [ 189464] Dolby DAX2 API Service (Dolby DAX2 API Service) . (.Dolby Laboratories, Inc..) - C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe =>.Dolby Laboratories, Inc.® SR - Demand [07/12/2019] [ 553984] Intel(R) PRO/10 (e1i65x64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\e1i65x64.sys [Unsigned] =>.Intel Corporation SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Demand [18/06/2018] [ 40376] FlashUSB (FlashUSB) . (.Intel Mobile Communications.) - C:\WINDOWS\System32\drivers\FlashUSB.sys {15FD12F3570F88CD1524BE078088F38D}. =>.Intel Mobile Communications SR - Auto [29/10/2017] [ 1658944] FoxitPhantomService (FoxitPhantomService) . (.Foxit Software Inc..) - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\FoxitConnectedPDFService.exe =>.Foxit Software Incorporated® SS - Demand [23/06/2021] [ 1456808] Google Chrome Elevation Service (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.124\elevation_service.exe =>.Google LLC® SR - Auto [07/08/2019] [ 154920] Service Google Update (gupdate) (gupdate) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [07/08/2019] [ 154920] Service Google Update (gupdatem) (gupdatem) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [19/12/2018] [ 1094600] Intel(R) Chipset SATA/PCIe (iaStorAC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAC.sys =>.Intel(R) Rapid Storage Technology® SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [01/03/2021] [ 80464] (IBMPMDRV) . (.Lenovo..) - C:\WINDOWS\System32\drivers\ibmpmdrv.sys {4BEAF82E370174DB5D5A9EB61F76860E}. =>.Lenovo. SR - Auto [01/03/2021] [ 912592] Lenovo PM Service (IBMPMSVC) . (.Lenovo..) - C:\WINDOWS\System32\ibmpmsvc.exe {4BEAF82E370174DB5D5A9EB61F76860E}. =>.Lenovo. SR - Demand [13/07/2020] [ 914720] Intel(R) Wireless Bluetooth (ibtusb) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\ibtusb.inf_amd64_8a82f0a43b25313f\ibtusb.sys =>.Intel(R) Wireless Connectivity Solutions® SR - Auto [20/12/2018] [ 229296] IDMWFP (IDMWFP) . (.Tonec Inc..) - C:\WINDOWS\System32\DRIVERS\idmwfp.sys =>.Tonec Inc.® SR - Demand [11/12/2020] [27580664] (igfx) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\igdkmd64.sys =>.Intel(R) pGFX 2020® SR - Auto [11/12/2020] [ 407816] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\igfxCUIService.exe =>.Intel(R) pGFX 2020® SR - Demand [21/07/2020] [ 6082136] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.® SR - Demand [11/12/2020] [ 349960] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\intcdaud.inf_amd64_1b570d7b9a790b1a\IntcDAud.sys =>.Intel(R) pGFX 2020® SS - Demand [22/04/2020] [ 856848] Intel(R) Capability Lice (Intel(R) Capability Licensing Service TCP IP Interface) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\SocketHeciServer.exe =>.Intel(R) Trust Services® SR - Auto [22/04/2020] [ 783112] Intel(R) TPM Provis (Intel(R) TPM Provisioning Service) . (.Intel(R) Corporation.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\TPMProvisioningService.exe =>.Intel(R) Trust Services® SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Auto [16/08/2020] [ 629752] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Auto [20/04/2021] [ 2351296] Lenovo EasyResume Service (Lenovo Instant On) . (.Lenovo Group Limited.) - C:\Windows\SysWOW64\EasyResume.exe =>.Lenovo® SR - Auto [05/08/2019] [ 541672] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Auto [01/03/2021] [ 898776] Lenovo Platform Service (LPlatSvc) . (.Lenovo..) - C:\WINDOWS\System32\LPlatSvc.exe {4BEAF82E370174DB5D5A9EB61F76860E}. =>.Lenovo. SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Boot [14/07/2021] [ 19912] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft® SR - Auto [14/07/2021] [ 7462200] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc® SR - Demand [14/07/2021] [ 248992] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc® SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [25/02/2021] [ 308072] Intel(R) Management Engine Interfa (MEIx64) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_605dda426937489f\x64\TeeDriverW10x64.sys =>.Intel® SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SS - Demand [06/01/2021] [ 147624] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Demand [24/01/2021] [ 8809320] ___ Pilote de carte Intel(R) Wireless pour Windows 10 64 bi (Netwtw06) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\Netwtw06.sys =>.Intel® SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SR - System [01/03/2021] [ 37984] (PMDRVS) . (.Lenovo..) - C:\WINDOWS\System32\drivers\pmdrvs.sys {4BEAF82E370174DB5D5A9EB61F76860E}. =>.Lenovo. SR - Demand [16/12/2020] [ 43632] pmxdrv (pmxdrv) . (.Intel Corporation.) - C:\WINDOWS\system32\drivers\pmxdrv.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Auto [21/07/2020] [ 269608] Realtek Audio Service (RtkAudioService) . (.Realtek Semiconductor.) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp.® SS - Demand [00/00/0000] [ 0] ByteFence Real-time Protection (rtop) . (...) - c:\program files\bytefence\rtop\bin\rtop_svc.exe (.not file.) [Unsigned] SR - Demand [11/10/2018] [ 896016] Realtek PCIE Card Reader - PER (RTSPER) . (.Realsil Semiconductor Corporation.) - C:\WINDOWS\System32\drivers\RtsPer.sys =>.Realtek Semiconductor Corp.® SR - Boot [20/03/2017] [ 173024] Shockprf (Shockprf) . (.Lenovo..) - C:\WINDOWS\System32\DRIVERS\Apsx64.sys =>.Lenovo® SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Demand [13/07/2018] [ 53768] SmbDrv (SmbDrv) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys =>.Synaptics Incorporated® SR - Demand [07/05/2021] [ 38352] (SmbDrvI) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\Smb_driver_Intel.sys {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated SR - System [25/04/2018] [ 31440] Synaptics SMI Driver (SMIDriverGen) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\smi.sys {537D312C9B726AD4B1055483B4D1AED4}. =>.Synaptics Incorporated SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SS - Demand [00/00/0000] [ 0] System Update (SUService) . (...) - C:\Program Files (x86)\Lenovo\System Update\SUService.exe (.not file.) [Unsigned] SR - Demand [07/05/2021] [ 705488] Synaptics TouchPad HID Mini Driver (SynTP) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated SR - Auto [07/05/2021] [ 253904] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated SR - Boot [20/03/2017] [ 46040] TPDIGIMN (TPDIGIMN) . (.Lenovo..) - C:\WINDOWS\System32\DRIVERS\ApsHM64.sys =>.Lenovo® SR - Auto [28/12/2020] [ 465200] Lenovo Hotkey Client Loader (TPHKLOAD) . (.Lenovo Group Limited.) - C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\tphkload.exe =>.Lenovo® SR - System [20/04/2021] [ 47840] (TPPWRIF) . (.Lenovo Group Limited.) - C:\WINDOWS\System32\drivers\Tppwr64v.sys =>.Lenovo® SR - Auto [25/04/2018] [ 77792] Synaptics FP WBF Policy Ser (valWBFPolicyService) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\valWBFPolicyService.exe =>.Microsoft Windows Hardware Compatibility Publisher® SR - Auto [25/04/2018] [ 48608] BiometricSensorDataSync (valWbioSyncSvc) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\valWbioSyncSvc.exe =>.Microsoft Windows Hardware Compatibility Publisher® SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [00/00/0000] [ 0] WinDivert1.1 (WinDivert1.1) . (...) - C:\Program Files\KMSpico\WinDivert.sys (.not file.) [Unsigned] =>HackTool.KMSpico SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (22) - 10s O38 - TASK: {0241647D-7C6B-42E2-8FCC-1E341A94BDC3} [64Bits][\Antivirus Emergency Update] - (.AVG Technologies CZ, s.r.o. - AVG Emergency Update.) -- C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [4950840] =>.AVG Technologies CZ, s.r.o. O38 - TASK: {13F80C58-D1D1-4BB9-AC60-71B26C914DE3} [64Bits][\Lenovo\Power Manager\Uninstall task] - (.Copyright (C) Lenovo - Power Manager Install Helper.) -- C:\Windows\SysWOW64\PowerMgrInst.exe [62136] O38 - TASK: {3EB9779C-756D-4DA9-84D3-9BDD9DCDA47B} [64Bits][\RTKCPL] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618088] =>.Realtek Semiconductor O38 - TASK: {56BA1076-1EF7-4F8E-A437-9B94094B3FE9} [64Bits][\Lenovo\Lenovo Service Bridge\S-1-5-21-403087437-555432991-4230667982-1001] - (.Lenovo Group Limited - LSBUpdater.) -- C:\Users\zikas\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [87896] =>.Lenovo Group Limited O38 - TASK: {5D20C02C-3618-48AD-996A-4A0AE68DC6A5} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200] =>.Adobe Inc. O38 - TASK: {6A7B5712-7082-4A49-AE24-DD12FBBC5229} [64Bits][\Intel\Intel® Management and Security Status] - (.Intel Corporation - PIcon startup utility.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [231400] =>.Intel Corporation O38 - TASK: {832CC192-B6CE-44BA-A525-0B2D114D0EEF} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920] =>.Google LLC O38 - TASK: {A6E307F0-E19E-496B-A4EB-17E808D16CBA} [64Bits][\Lenovo Power Management Driver PnP Task] - (.Lenovo. - Lenovo Power Management Service.) -- C:\WINDOWS\System32\ibmpmsvc.exe [912592] =>.Lenovo. O38 - TASK: {B90B6DB5-5F21-49BF-83FE-E5FD569E48BA} [64Bits][\AVG\Overseer] - (.AVG Technologies - AVG Overseer.) -- C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1821968] =>.AVG Technologies O38 - TASK: {CE7AD24A-C4B8-407A-8D3C-302CC8F68E0B} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920] =>.Google LLC O38 - TASK: {FD716AA2-E073-44F7-BAED-AD7B76B2491A} [64Bits][\RtHDVBg_Dolby] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618088] =>.Realtek Semiconductor C:\WINDOWS\System32\Tasks\Antivirus Emergency Update - (.AVG Technologies CZ, s.r.o..) -- C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [] =>.AVG Technologies CZ, s.r.o. C:\WINDOWS\System32\Tasks\Lenovo\Power Manager\Uninstall task - (.Copyright (C) Lenovo.) -- C:\Windows\SysWOW64\PowerMgrInst.exe [-checkremoval] C:\WINDOWS\System32\Tasks\RTKCPL - (.Realtek Semiconductor.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [/runcplsilence] =>.Realtek Semiconductor C:\WINDOWS\System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-403087437-555432991-4230667982-1001 - (.Lenovo Group Limited.) -- C:\Users\zikas\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [] =>.Lenovo Group Limited C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc. C:\WINDOWS\System32\Tasks\Intel\Intel® Management and Security Status - (.Intel Corporation.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe] =>.Intel Corporation C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google LLC C:\WINDOWS\System32\Tasks\Lenovo Power Management Driver PnP Task - (.Lenovo..) -- C:\WINDOWS\System32\ibmpmsvc.exe [-PnPTask] =>.Lenovo. C:\WINDOWS\System32\Tasks\AVG\Overseer - (.AVG Technologies.) -- C:\Program Files\Common Files\AVG\Overseer\overseer.exe [/from_scheduler:1] =>.AVG Technologies C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google LLC C:\WINDOWS\System32\Tasks\RtHDVBg_Dolby - (.Realtek Semiconductor.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [/FORPCEE4] =>.Realtek Semiconductor ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (11) - 1s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [AVGUI.exe] . (.AVG Technologies CZ, s.r.o. - AVG AvLaunch component.) -- C:\Program Files\AVG\Antivirus\AvLaunch.exe =>.AVG Technologies USA, LLC® O4 - HKCU\..\Run: [HP DeskJet 4530 series (NET)] . (. - .) -- 1. O4 - HKCU\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [Unsigned] =>.Tonec Inc. O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKLM\..\Wow6432Node\Run: [Wondershare Helper Compact.exe] . (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe =>.Wondershare Technology Co.,Ltd® O4 - HKUS\S-1-5-19\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-20\..\StartupApproved\Run: [OneDriveSetup] . (. - .) -- 0x020000000000000000000000 O4 - HKUS\S-1-5-21-403087437-555432991-4230667982-1001\..\Run: [HP DeskJet 4530 series (NET)] . (. - .) -- 1. O4 - HKUS\S-1-5-21-403087437-555432991-4230667982-1001\..\Run: [IDMan] . (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [Unsigned] =>.Tonec Inc. ---\\ PROCESSUS LANCÉS (57) - 5s [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Intel Corporation - Intel HD Graphics Drivers for Windows(R).) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\IntelCpHDCPSvc.exe [529672] [PID.1572] =>.Intel(R) pGFX 2020® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Intel Corporation - IntelCpHeciSvc Executable.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\IntelCpHeciSvc.exe [513288] [PID.1832] =>.Intel(R) pGFX 2020® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Lenovo. - Lenovo Power Management Service.) -- C:\Windows\System32\ibmpmsvc.exe [912592] [PID.2204] [Unsigned] =>.Lenovo. [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\igfxCUIService.exe [407816] [PID.2664] =>.Intel(R) pGFX 2020® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Realtek Semiconductor - Realtek Audio Service.) -- C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [269608] [PID.3024] =>.Realtek Semiconductor Corp.® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.AVG Technologies CZ, s.r.o. - AVG Antivirus.) -- C:\Program Files\AVG\Antivirus\avgToolsSvc.exe [374072] [PID.3700] =>.AVG Technologies USA, LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Adobe Inc. - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672] [PID.4488] =>.Adobe Inc.® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe [462184] [PID.4496] =>.Apple Inc.® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Foxit Software Inc. - Foxit PhantomPDF ConnectedPDF Windows Servi.) -- C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\FoxitConnectedPDFService.exe [1658944] [PID.4676] =>.Foxit Software Incorporated® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Lenovo Group Limited - Lenovo EasyResume Program.) -- C:\Windows\SysWOW64\EasyResume.exe [2351296] [PID.4712] =>.Lenovo® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe [629752] [PID.4720] =>.Intel(R) Embedded Subsystems and IP Blocks Group® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [253904] [PID.4800] {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Lenovo Group Limited - ThinkPad Message Client Loader.) -- C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\tphkload.exe [465200] [PID.4860] =>.Lenovo® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Synaptics Incorporated - Synaptics WBF Policy Service (CMN).) -- C:\Windows\System32\valWBFPolicyService.exe [77792] [PID.4876] [Unsigned] =>.Synaptics Incorporated [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Synaptics Incorporated - SynapticsWinbio Synchronization Service (CM.) -- C:\Windows\System32\valWbioSyncSvc.exe [48608] [PID.4928] [Unsigned] =>.Synaptics Incorporated [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.AVG Technologies CZ, s.r.o. - AVG Antivirus engine server.) -- C:\Program Files\AVG\Antivirus\aswEngSrv.exe [635192] [PID.5432] =>.AVG Technologies USA, LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler.exe [293720] [PID.10600] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler64.exe [374616] [PID.10608] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Dolby Laboratories, Inc. - DolbyDAX2API.) -- C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [189464] [PID.12080] =>.Dolby Laboratories, Inc.® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Intel Corporation - Intel(R) Local Management Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [541672] [PID.9084] =>.Intel(R) Embedded Subsystems and IP Blocks Group® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Lenovo Group Limited - On screen display drawer for NumLock.) -- C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\tpnumlkd.exe [494384] [PID.7180] =>.Lenovo® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618088] [PID.3564] =>.Realtek Semiconductor Corp.® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Lenovo Group Limited - On screen display drawer.) -- C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\tposd.exe [1406256] [PID.4068] =>.Lenovo® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Lenovo Group Limited - ThinkPad Message Receiver for Shortcut Hot.) -- C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\shtctky.exe [265008] [PID.2496] =>.Lenovo® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Synaptics Incorporated - SynapticsFingerprint Sensor Synchronization.) -- C:\Program Files\Synaptics\SynFP\Shared\SensorDBSynch.exe [58848] [PID.6608] =>.Microsoft Windows Hardware Compatibility Publisher® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4196824] [PID.7956] {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\igfxEM.exe [896248] [PID.6760] =>.Intel(R) pGFX 2020® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920] [PID.10380] =>.Google Inc® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\Program Files\Synaptics\SynTP\SynTPHelper.exe [205272] [PID.7380] {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [793416] [PID.1664] =>.Microsoft® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.AVG Technologies CZ, s.r.o. - AVG Antivirus.) -- C:\Program Files\AVG\Antivirus\AVGUI.exe [10957112] [PID.2388] =>.AVG Technologies USA, LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.HP Inc. - ScanToPCActivationApp.) -- C:\Program Files\HP\HP DeskJet 4530 series\Bin\ScanToPCActivationApp.exe [3770504] [PID.9880] =>.Hewlett Packard® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Tonec Inc. - Internet Download Manager (IDM).) -- C:\Program Files (x86)\Internet Download Manager\IDMan.exe [4143984] [PID.10328] [Unsigned] =>.Tonec Inc. [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Tonec Inc. - Internet Download Manager agent for click m.) -- C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe [275512] [PID.4612] =>.Tonec Inc.® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Wondershare - Wondershare Studio.) -- C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728] [PID.10744] =>.Wondershare Technology Co.,Ltd® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.8500] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.9760] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.9864] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.7232] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.9800] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.5348] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.3304] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.8304] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.8840] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.10828] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.11516] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.12540] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Realtek Semiconductor - HD Audio Background Process.) -- C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618088] [PID.12644] =>.Realtek Semiconductor Corp.® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19677480] [PID.12776] =>.Realtek Semiconductor Corp.® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.12856] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.2632] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.AVG Technologies CZ, s.r.o. - AVG Antivirus.) -- C:\Program Files\AVG\Antivirus\AVGUI.exe [10957112] [PID.6444] =>.AVG Technologies USA, LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.AVG Technologies CZ, s.r.o. - AVG Antivirus.) -- C:\Program Files\AVG\Antivirus\AVGUI.exe [10957112] [PID.11980] =>.AVG Technologies USA, LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.AVG Technologies CZ, s.r.o. - AVG Antivirus.) -- C:\Program Files\AVG\Antivirus\AVGUI.exe [10957112] [PID.5036] =>.AVG Technologies USA, LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.13248] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [2438312] [PID.11084] =>.Google LLC® [MD5.6EC3A38B4E613A4AEE4E430FB9C42B48] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\zikas\Downloads\Programs\ZHPSuite.exe [3473048] [PID.11652] [Unsigned] =>.Nicolas Coolman ---\\ CHROME, Démarrage, Recherche, Extensions (19) - 1s G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [cifnddnffldieaamihfkhkdgnbhfmaci] =>.Foxit Corporation {PDF Creator} G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [efaidnbmnnnibpcajpcglclefindmkaj] =>.Adobe Inc. {Acrobat} G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [gighmmpiobklfepjocnamgkkbiglidom] Toggle Pause/Resume on all sites =>.Legitimate G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc. G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. G2 - GCE: Preference [HASNA EL][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [HASNA EL][User Data\Default\Local Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock} G2 - GCE: Preference [HASNA EL][User Data\Default\Local Extension Settings] [ngpampappnmepgilojfohadhhmbhlaek] =>.Legitimate G2 - GCE: Preference [HASNA EL][User Data\Default\Managed Extension Settings] [gighmmpiobklfepjocnamgkkbiglidom] =>.Wladimir Palant {AdBlock} G2 - GCE: Preference [HASNA EL][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router} ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (23) - 1s P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp] - (...) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll =>.Foxit Corporation P2 - FPN: [HKLM] [@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf] - (...) -- C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll =>.Foxit Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\bookmarkbackups =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\crashes =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\datareporting =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\gmp =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\gmp-eme-adobe =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\healthreport =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\minidumps =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\saved-telemetry-pings =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\sessionstore-backups =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\storage =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\0yrx4dnj.default\webapps =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\bngsesjw.default-release\bookmarkbackups =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\bngsesjw.default-release\crashes =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\bngsesjw.default-release\datareporting =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\bngsesjw.default-release\extensions =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\bngsesjw.default-release\minidumps =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\bngsesjw.default-release\saved-telemetry-pings =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\bngsesjw.default-release\sessionstore-backups =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\bngsesjw.default-release\storage =>Mozilla Corporation C:\Users\zikas\AppData\Roaming\Mozilla\Firefox\Profiles\bngsesjw.default-release\weave =>Mozilla Corporation ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.recherche-qle.com R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.1100 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (2) - 0s E2 - GCE: Preference [HASNA EL][User Data\Default\Extensions] [ngpampappnmepgilojfohadhhmbhlaek] IDM Integration Module =>.IDM Computer Solutions, Inc. E2 - GCE: Preference [HASNA EL][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation ---\\ INTERNET EXPLORER,Proxy Management (3) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (4) - 0s O2 - BHO: IDM Helper [64Bits] - {0055C089-8582-441B-A0BF-17B458C2A3A8} . (.Internet Download Manager, Tonec Inc. - IDM Browser Helper Object.) -- C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc.® O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.67\BHO\ie_to_edge_bho_64.dll =>.Microsoft® O2 - BHO: (no name) [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} (.Orphan.) [Unsigned] O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft® ---\\ INTERNET EXPLORER, Barre d'outil (Toolbar) (1) - 1s O3 - Toolbar: 0x00 - [HKLM]{BFD9D8A8-57FF-488A-B919-065EC77CF82F} . (...) -- C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll =>.Foxit Software Incorporated® ---\\ RACCOURCIS GLOBAL STARTUP (40) - 3s O4 - GS\Desktop [HASNA EL]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\zikas\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft® O4 - GS\Desktop [HASNA EL]: Telegram.lnk . (.Telegram FZ-LLC - Telegram Desktop.) C:\Users\zikas\AppData\Roaming\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC® O4 - GS\Quicklaunch [HASNA EL]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\Quicklaunch [HASNA EL]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\sendTo [HASNA EL]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [HASNA EL]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [HASNA EL]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [HASNA EL]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft® O4 - GS\TaskBar [HASNA EL]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Programs [HASNA EL]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\zikas\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft® O4 - GS\Programs [HASNA EL]: Nouveau dossier.lnk . (...) C:\Users\zikas\Desktop\Nouveau dossier [Unsigned] O4 - GS\Programs [HASNA EL]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\zikas\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\CommonDesktop [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.® O4 - GS\CommonDesktop [Public]: AVG AntiVirus Gratuit.lnk . (.AVG Technologies CZ, s.r.o. - .) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe [Unsigned] =>.AVG Technologies CZ, s.r.o. O4 - GS\CommonDesktop [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\CommonDesktop [Public]: HP DeskJet 4530 series.lnk . (.HP Inc. - .) C:\Program Files (x86)\HP\HP DeskJet 4530 series\Bin\HP DeskJet 4530 series.exe -Start UDCDevicePage [Unsigned] =>.HP Inc. O4 - GS\CommonDesktop [Public]: HP Print and Scan Doctor.lnk . (.HP Development Company, L.P. - HP Print and Scan Doctor 5.5.2.) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe =>.HP Inc.® O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Wondershare Filmora9.lnk . (.Wondershare - Wondershare Filmora9.) C:\Program Files (x86)\Wondershare\Wondershare Filmora (CPC)\Wondershare Filmora9.exe =>.Wondershare Technology Co.,Ltd® O4 - GS\Programs [Public]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\zikas\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft® O4 - GS\Programs [Public]: Nouveau dossier.lnk . (...) C:\Users\zikas\Desktop\Nouveau dossier [Unsigned] O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\zikas\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.® O4 - GS\ProgramsCommon [Public]: AVG AntiVirus Gratuit.lnk . (.AVG Technologies CZ, s.r.o. - .) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe [Unsigned] =>.AVG Technologies CZ, s.r.o. O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (1) - 1s O17 - HKLM\System\CCS\Services\Tcpip\..\{fbe18ec7-1532-4d11-b647-f9b84cc2f5d1}: DhcpNameServer = 192.168.1.1 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (24) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-help [64Bits] - {314111c7-a502-11d2-bbca-00c04f8ec294} . (.Microsoft Corporation - Microsoft® Help Data Services Module.) -- C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll =>.Microsoft® O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: osf [64Bits] - {D924BDC6-C83A-4BD5-90D0-095128A113D1} . (.Microsoft Corporation - Microsoft Office 2013 component.) -- C:\Program Files\Microsoft Office\Office15\MSOSB.DLL =>.Microsoft® O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\WINDOWS\system32\userinit.exe =>.Microsoft Corporation ---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (18) - 1s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDriveSetup =>.Microsoft Corporation [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HP DeskJet 4530 series (NET) [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:IDMan =>.Tonec Inc [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WallpaperHd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CapsLock Indicator [HKEY_USERS\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:OneDriveSetup =>.Microsoft Corporation [HKEY_USERS\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HP DeskJet 4530 series (NET) [HKEY_USERS\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:IDMan =>.Tonec Inc [HKEY_USERS\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WallpaperHd [HKEY_USERS\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CapsLock Indicator [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AVGUI.exe =>.AVG Software [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SynTPEnh =>.Synaptics [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Wondershare Helper Compact.exe =>.Wondershare [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Wondershare Helper Compact.exe =>.Wondershare [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:TeamsMachineInstaller [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:TeamsMachineUninstallerLocalAppData [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:TeamsMachineUninstallerProgramData ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (7) - 1s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.124\Installer\chrmstp.exe =>.Google LLC® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\91.0.864.67\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLÉS (70) - 19s O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} [Unsigned] =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-000182442176} [Unsigned] =>.Adobe Systems Incorporated (Hidden) O42 - Logiciel: AVG AntiVirus Gratuit - (.AVG Technologies.) [HKLM][64Bits] -- AVG Antivirus =>.AVG Technologies USA, LLC® O42 - Logiciel: Bonjour - (.Apple Inc..) [HKLM][64Bits] -- {6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D} [Unsigned] =>.Apple Inc. O42 - Logiciel: Dolby Audio X2 Windows API SDK - (.Dolby Laboratories, Inc..) [HKLM][64Bits] -- {FA0735B6-9E18-437A-A1CD-9152650FC52B} [Unsigned] =>.Dolby Laboratories, Inc. (Hidden) O42 - Logiciel: Dolby Audio X2 Windows APP - (.Dolby Laboratories, Inc..) [HKLM][64Bits] -- {D0D32569-4680-490A-905C-5117CEAAB3EF} [Unsigned] =>.Dolby Laboratories, Inc. (Hidden) O42 - Logiciel: Étude pour l'amélioration du produit HP DeskJet 4530 series - (.HP Inc..) [HKLM][64Bits] -- {774AAEE9-7980-4D82-908E-4489BB44CAE6} [Unsigned] =>.HP Inc. O42 - Logiciel: Foxit PhantomPDF - (.Foxit Software Inc..) [HKLM][64Bits] -- {1668067E-BD47-11E7-B267-000C296BF29B} [Unsigned] =>.Foxit Software Inc. O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC® O42 - Logiciel: HP DeskJet 4530 series Aide - (.Hewlett Packard.) [HKLM][64Bits] -- {E009DD8A-55BD-4B5D-9C74-4F80173F9868} [Unsigned] =>.Hewlett Packard O42 - Logiciel: HP Dropbox Plugin - (.HP.) [HKLM][64Bits] -- {6401399A-F5DA-4C04-87AA-E8107DF00751} [Unsigned] =>.HP O42 - Logiciel: HP Google Drive Plugin - (.HP.) [HKLM][64Bits] -- {63BCC696-0FB4-4E9C-8144-2DA4F248FC17} [Unsigned] =>.HP O42 - Logiciel: Intel(R) Chipset Device Software - (.Intel Corporation.) [HKLM][64Bits] -- {631C57C3-B765-4327-822A-057C34D691CC} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {1CEAC85D-2590-4760-800F-8DE5E91F3700} =>.Intel(R) Embedded Subsystems and IP Blocks Group® O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {6391CCBD-216F-4CE3-A1AE-565D5CB07ED4} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {6B8DC0A8-F031-42A5-8EF5-55FFFF810715} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {7F6B8D19-4752-4514-8D26-558549CB866E} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Management Engine Driver - (.Intel Corporation.) [HKLM][64Bits] -- {5738E185-891E-4C99-80CE-27D835DA38AB} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Trusted Connect Service Client x64 - (.Intel Corporation.) [HKLM][64Bits] -- {C9552825-7BF2-4344-BA91-D3CD46F4C442} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Trusted Connect Service Client x86 - (.Intel Corporation.) [HKLM][64Bits] -- {C9552825-7BF2-4344-BA91-D3CD46F4C441} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Intel(R) Trusted Connect Services Client - (.Intel Corporation.) [HKLM][64Bits] -- {05817e4d-5f15-49b4-afec-7edb31fc7dd6} =>.Intel(R) Trust Services® (Hidden) O42 - Logiciel: Internet Download Manager - (.Tonec Inc..) [HKLM][64Bits] -- Internet Download Manager =>.Tonec Inc.® O42 - Logiciel: Lenovo Active Protection System - (.Lenovo.) [HKLM][64Bits] -- {46A84694-59EC-48F0-964C-7E76E9F8A2ED} [Unsigned] =>.Lenovo O42 - Logiciel: Logiciel de base du périphérique HP DeskJet 4530 series - (.HP Inc..) [HKLM][64Bits] -- {F8508E91-49C3-40F4-8A82-AF5C8819047B} [Unsigned] =>.HP Inc. O42 - Logiciel: Logiciel pour périphérique à chipset Intel® - (.Intel(R) Corporation.) [HKLM][64Bits] -- {eb0d4a41-3065-42b0-a868-c60d42d3ea98} =>.Intel(R) Software and Firmware Products® (Hidden) O42 - Logiciel: Microsoft Access MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0015-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft DCF MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0090-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge =>.Microsoft® O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Excel MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0016-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Groove MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00BA-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft InfoPath MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0044-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Lync MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-012B-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office 32-bit Components 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00C1-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Korrekturhilfen 2013 - Deutsch - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0407-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office OSM MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00E1-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office OSM UX MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00E2-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Professional Plus 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0011-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Professionnel Plus 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- Office15.PROPLUS =>.Microsoft® O42 - Logiciel: Microsoft Office Proofing (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-002C-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proofing Tools 2013 - English - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0409-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Español - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0C0A-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proofing Tools 2013 - Nederlands - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0413-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Proofing Tools 2013 - اللغة العربية - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-0401-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Shared 32-bit MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00C1-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Office Shared MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-006E-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft® O42 - Logiciel: Microsoft OneNote MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-00A1-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Outlook MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001A-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft PowerPoint MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0018-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Publisher MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-0019-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Teams - (.Microsoft Corporation.) [HKCU][64Bits] -- Teams =>.Microsoft® O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {E5A95BC5-81DF-4F0C-B910-B59DD012F037} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft VC++ redistributables repacked. - (.Intel Corporation.) [HKLM][64Bits] -- {2F76B349-BFDF-4D4C-A891-D7AFE57BFA02} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Microsoft VC++ redistributables repacked. - (.Intel Corporation.) [HKLM][64Bits] -- {431A9859-6B29-4F31-840E-B511CA32459B} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 - (.Microsoft Corporation.) [HKLM][64Bits] -- {050d4fc8-5d48-4b8f-8972-47c82c46020f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {929FBD26-9020-399B-9A7A-751D61F0B942} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 - (.Microsoft Corporation.) [HKLM][64Bits] -- {A749D8E6-B613-3BE3-8F5F-045C84EBA29B} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Word MUI (French) 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001B-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Mozilla Firefox 43.0.1 (x86 en-US) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 43.0.1 (x86 en-US) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla O42 - Logiciel: OPPO USB Drivers 2.2.6.0 - (.OPPO mobile telecommunications Corp., LTD.) [HKLM][64Bits] -- {60092746-6A0F-46A9-B9F1-53B62EC0E0A4}_is1 [Unsigned] =>.OPPO mobile telecommunications Corp., LTD O42 - Logiciel: Outils de vérification linguistique 2013 de Microsoft Office - Français - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-001F-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Package de pilotes Windows - Lenovo Monitor (08/16/2018 6.09.01.0) - (.Lenovo.) [HKLM][64Bits] -- CBF98465C67FD0C668583E01A25222D7D02440D9 =>.LENOVO® O42 - Logiciel: Telegram Desktop version 2.4.7 - (.Telegram FZ-LLC.) [HKCU][64Bits] -- {53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1 [Unsigned] =>.Telegram FZ-LLC O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: WinRAR 5.71 (64-bit) - (.win.rar GmbH.) [HKLM][64Bits] -- WinRAR archiver =>.win.rar GmbH® O42 - Logiciel: Wondershare Filmora9(Build 9.5.2) - (.Wondershare Software.) [HKLM][64Bits] -- Wondershare Filmora9_is1 [Unsigned] =>.Wondershare Software O42 - Logiciel: Wondershare Helper Compact 2.6.0 - (.Wondershare.) [HKLM][64Bits] -- {5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1 [Unsigned] =>.Wondershare ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (157) - 19s HKLM\SOFTWARE\POLICIES\Mozilla\Firefox =>.SUP.FirefoxRestriction HKLM\SOFTWARE\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\AVG =>.AVG Software HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Dell =>.Dell HKLM\SOFTWARE\Dolby =>.Dolby HKLM\SOFTWARE\Fortemedia =>.Lugert Europe HKLM\SOFTWARE\Foxit Software =>.Foxit Software HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\HP =>.HP HKLM\SOFTWARE\IBM =>.IBM HKLM\SOFTWARE\IM Providers =>.IM Providers HKLM\SOFTWARE\InstalledOptions =>.Installed Options HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Lenovo =>.Lenovo HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\ManageableUpdatePackage =>.Dell Inc. HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Nuance =>.Nuance HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\PDF Tools AG =>.PDF Tools AG HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\Soda PDF Desktop 11 =>.Lulu Software HKLM\SOFTWARE\SRS Labs =>.SRS Labs HKLM\SOFTWARE\Synaptics =>.Synaptics HKLM\SOFTWARE\Validity =>.Validity Sensors, Inc. HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WinRAR =>.WinRAR HKLM\SOFTWARE\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\Apple Inc. =>.Apple Inc. HKLM\SOFTWARE\WOW6432Node\AVG =>.AVG Software HKLM\SOFTWARE\WOW6432Node\Foxit Software =>.Foxit Software HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Hewlett-Packard =>.Hewlett-Packard HKLM\SOFTWARE\WOW6432Node\HP =>.HP HKLM\SOFTWARE\WOW6432Node\Hummingbird =>.Hummingbird HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Internet Download Manager =>.Tonec Inc HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Lenovo =>.Lenovo HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\PowerPivot =>.PowerPivot HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Soda PDF Desktop 11 =>.Lulu Software HKLM\SOFTWARE\WOW6432Node\SOSVirus =>.SosVirus HKLM\SOFTWARE\WOW6432Node\TdkTool HKLM\SOFTWARE\WOW6432Node\TeamViewer =>.TeamViewer GmbH HKLM\SOFTWARE\WOW6432Node\Visan =>.Visan Software HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\Akeo Consulting =>.Akeo Consulting HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\AVG =>.AVG Software HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CocCoc HKCU\SOFTWARE\DownloadManager =>.DownloadManager HKCU\SOFTWARE\Foxit Corporation =>.Foxit Corporation HKCU\SOFTWARE\Foxit Software =>.Foxit Software HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKCU\SOFTWARE\HP =>.HP HKCU\SOFTWARE\IBM =>.IBM HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\Lenovo =>.Lenovo HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\NetVoyage HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OPPO HKCU\SOFTWARE\PCurVersion =>.Unknown HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Soda PDF Desktop 11 =>.Lulu Software HKCU\SOFTWARE\Synaptics =>.Synaptics HKCU\SOFTWARE\SyncEngines =>.Microsoft Corporation HKCU\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKCU\SOFTWARE\Visan =>.Visan Software HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wintertree =>.Wintertree Software HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\Doctor Web =>.Doctor Web Ltd HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\AVG =>.AVG Software HKU\.DEFAULT\SOFTWARE\Dolby =>.Dolby HKU\.DEFAULT\SOFTWARE\Foxit Software =>.Foxit Software HKU\.DEFAULT\SOFTWARE\Google =>.Google HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape HKU\.DEFAULT\SOFTWARE\PDF Tools AG =>.PDF Tools AG HKU\.DEFAULT\SOFTWARE\Soda PDF Desktop 11 =>.Lulu Software HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Akeo Consulting =>.Akeo Consulting HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\AVG =>.AVG Software HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\BugSplat =>.Bugsplat Game HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\CocCoc HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\DownloadManager =>.DownloadManager HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Foxit Corporation =>.Foxit Corporation HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Foxit Software =>.Foxit Software HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Hewlett-Packard =>.Hewlett-Packard HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\HP =>.HP HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\IBM =>.IBM HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\IM Providers =>.IM Providers HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Intel =>.Intel HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Lenovo =>.Lenovo HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\NetVoyage HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\OPPO HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\PCurVersion =>.Unknown HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Soda PDF Desktop 11 =>.Lulu Software HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Synaptics =>.Synaptics HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\SyncEngines =>.Microsoft Corporation HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Visan =>.Visan Software HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Wintertree =>.Wintertree Software HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Wondershare =>.Wondershare HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\ZHP =>.Nicolas Coolman HKU\S-1-5-21-403087437-555432991-4230667982-1001\SOFTWARE\Doctor Web =>.Doctor Web Ltd ---\\ PACKAGES (4) - 0s C:\Program Files (x86)\WindowsApps\AD2F1837.HPPrinterControl_128.1.219.0_x64__v10z8vjag6ke6 - (.Hewlett-Packard.) [][HP Smart] =>Hewlett-Packard C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.CBS_120.2212.3530.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Feature Experience Pack] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.1023.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft ---\\ CONTENU DES DOSSIERS PROGRAMMES (246) - 10s O43 - CFD: 09/08/2019 - [] D -- C:\Program Files\AVG =>.AVG Software O43 - CFD: 25/09/2019 - [] D -- C:\Program Files\Bonjour =>.Apple Inc. O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 07/08/2019 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Dolby =>.Dolby Laboratories, Inc.® O43 - CFD: 07/08/2019 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 25/09/2019 - [] D -- C:\Program Files\HP =>.Hewlett-Packard O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [0] D -- C:\Program Files\Lenovo =>.Lenovo O43 - CFD: 14/07/2021 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 10/08/2019 - [] D -- C:\Program Files\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 04/06/2020 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 10/08/2019 - [] D -- C:\Program Files\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 11/07/2021 - [] D -- C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 05/10/2019 - [] D -- C:\Program Files\OPPO [Unsigned] O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Synaptics {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics O43 - CFD: 07/08/2019 - [] D -- C:\Program Files\ThinkPad =>.Lenovo® O43 - CFD: 27/09/2020 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\UNP =>.Microsoft Corporation O43 - CFD: 24/03/2020 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [] D -- C:\Program Files\Windows Defender Advanced Threat Protection =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 09/08/2019 - [] D -- C:\Program Files\WinRAR =>.win.rar GmbH® O43 - CFD: 09/08/2019 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Inc.® O43 - CFD: 09/08/2019 - [0] D -- C:\Program Files (x86)\AVG =>.AVG Software O43 - CFD: 25/09/2019 - [] D -- C:\Program Files (x86)\Bonjour =>.Apple Inc. O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 16/08/2019 - [] D -- C:\Program Files (x86)\Foxit Software =>.Foxit Software O43 - CFD: 05/11/2019 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 25/09/2019 - [] D -- C:\Program Files (x86)\HP =>.Hewlett-Packard O43 - CFD: 01/05/2020 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 02/10/2019 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 15/12/2019 - [] D -- C:\Program Files (x86)\Internet Download Manager =>.Tonec Inc O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [0] D -- C:\Program Files (x86)\Lenovo =>.Lenovo O43 - CFD: 23/04/2020 - [0] D -- C:\Program Files (x86)\Micro Application =>.Micro Application O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation O43 - CFD: 10/08/2019 - [] D -- C:\Program Files (x86)\Microsoft Analysis Services =>.Microsoft Corporation O43 - CFD: 09/08/2019 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 10/08/2019 - [] D -- C:\Program Files (x86)\Microsoft SQL Server =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 16/08/2019 - [] D -- C:\Program Files (x86)\ModifierPDF =>.Modifier PDF O43 - CFD: 14/01/2021 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 14/01/2021 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 01/05/2020 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 22/09/2019 - [] D -- C:\Program Files (x86)\TeamViewer =>.TeamViewer GmbH O43 - CFD: 23/09/2020 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 07/08/2019 - [] D -- C:\Program Files (x86)\VulkanRT =>.LunarG, Inc O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 19/10/2020 - [] D -- C:\Program Files (x86)\Wondershare =>.Wondershare O43 - CFD: 01/07/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby =>.Dolby O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PhantomPDF =>.Foxit Corporation O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP =>.Hewlett-Packard O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\lenovo =>.Lenovo O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare =>.Wondershare O43 - CFD: 16/08/2019 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 25/09/2019 - [] D -- C:\ProgramData\Apple =>.Apple Inc. O43 - CFD: 01/07/2021 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [] D -- C:\ProgramData\AVG =>.AVG Software O43 - CFD: 07/08/2019 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Dolby =>.Dolby O43 - CFD: 16/08/2019 - [] D -- C:\ProgramData\Foxit ContentPlatform =>.Foxit Corporation O43 - CFD: 17/08/2019 - [] D -- C:\ProgramData\Foxit Software =>.Foxit Software O43 - CFD: 01/01/2021 - [] D -- C:\ProgramData\HP =>.Hewlett-Packard O43 - CFD: 15/12/2019 - [0] D -- C:\ProgramData\IDM =>.IDM O43 - CFD: 17/08/2019 - [] D -- C:\ProgramData\imsi =>.IMSI O43 - CFD: 03/12/2019 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 03/06/2021 - [] D -- C:\ProgramData\Lenovo =>.Lenovo O43 - CFD: 14/07/2021 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 07/08/2019 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 23/04/2020 - [] D -- C:\ProgramData\Micro Application =>.Micro Application O43 - CFD: 01/07/2021 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 24/05/2021 - [] D -- C:\ProgramData\Microsoft Help =>.Microsoft Corporation O43 - CFD: 27/09/2020 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 07/08/2019 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 21/02/2020 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 02/10/2019 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 17/08/2019 - [0] D -- C:\ProgramData\SolidDocuments =>.SolidDocuments O43 - CFD: 06/11/2020 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [] D -- C:\ProgramData\Synaptics =>.Synaptics O43 - CFD: 01/07/2021 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 10/08/2019 - [] D -- C:\ProgramData\Visan =>.Visan Industries O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 19/10/2020 - [] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 08/11/2020 - [] D -- C:\ProgramData\Wondershare Filmora =>.Wondershare O43 - CFD: 17/03/2020 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 07/08/2019 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 19/10/2020 - [] D -- C:\Program Files (x86)\Common Files\Wondershare =>.Wondershare O43 - CFD: 09/08/2019 - [] D -- C:\Users\zikas\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 09/08/2019 - [] D -- C:\Users\zikas\AppData\Roaming\AVG =>.AVG Software O43 - CFD: 16/08/2019 - [] D -- C:\Users\zikas\AppData\Roaming\callas software O43 - CFD: 14/07/2021 - [] D -- C:\Users\zikas\AppData\Roaming\DMCache =>.DMCache O43 - CFD: 17/08/2019 - [] D -- C:\Users\zikas\AppData\Roaming\Foxit Software =>.Foxit Software O43 - CFD: 18/09/2019 - [] D -- C:\Users\zikas\AppData\Roaming\HPPSDr O43 - CFD: 13/09/2019 - [] D -- C:\Users\zikas\AppData\Roaming\HP_Easy_Start =>.Hewlett-Packard O43 - CFD: 18/06/2020 - [] D -- C:\Users\zikas\AppData\Roaming\IDM =>.IDM O43 - CFD: 16/08/2019 - [] D -- C:\Users\zikas\AppData\Roaming\inkscape =>.inkscape.org O43 - CFD: 08/04/2020 - [] D -- C:\Users\zikas\AppData\Roaming\Jonas_Kohl O43 - CFD: 23/03/2020 - [] D -- C:\Users\zikas\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 01/07/2021 - [] SD -- C:\Users\zikas\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 25/03/2020 - [] D -- C:\Users\zikas\AppData\Roaming\Microsoft Teams =>.Microsoft Corporation O43 - CFD: 21/02/2020 - [] D -- C:\Users\zikas\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 26/07/2020 - [] D -- C:\Users\zikas\AppData\Roaming\Skype =>.Skype O43 - CFD: 16/08/2019 - [] D -- C:\Users\zikas\AppData\Roaming\Soda PDF Desktop 11 =>.Lulu Software O43 - CFD: 17/08/2019 - [] D -- C:\Users\zikas\AppData\Roaming\SolidDocuments =>.SolidDocuments O43 - CFD: 21/09/2019 - [] D -- C:\Users\zikas\AppData\Roaming\TeamViewer =>.TeamViewer GmbH O43 - CFD: 13/07/2021 - [] D -- C:\Users\zikas\AppData\Roaming\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 07/02/2021 - [] D -- C:\Users\zikas\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 09/08/2019 - [] D -- C:\Users\zikas\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 16/08/2019 - [] D -- C:\Users\zikas\AppData\Roaming\YCanPDF =>.YCanPDF O43 - CFD: 15/07/2021 - [] D -- C:\Users\zikas\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 16/10/2019 - [] D -- C:\Users\zikas\AppData\Local\Adobe =>.Adobe O43 - CFD: 01/07/2021 - [0] SHD -- C:\Users\zikas\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 09/08/2019 - [] D -- C:\Users\zikas\AppData\Local\Avg =>.AVG Software O43 - CFD: 09/08/2019 - [] D -- C:\Users\zikas\AppData\Local\CEF =>.CEF O43 - CFD: 04/04/2020 - [] D -- C:\Users\zikas\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 30/09/2020 - [] D -- C:\Users\zikas\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 23/05/2021 - [] D -- C:\Users\zikas\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 08/04/2020 - [] D -- C:\Users\zikas\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 23/05/2021 - [0] D -- C:\Users\zikas\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 03/06/2020 - [0] D -- C:\Users\zikas\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 16/08/2019 - [] D -- C:\Users\zikas\AppData\Local\fontconfig =>.Portable Apps O43 - CFD: 14/03/2020 - [] D -- C:\Users\zikas\AppData\Local\Foxit PhantomPDF =>.Foxit Corporation O43 - CFD: 07/08/2019 - [] D -- C:\Users\zikas\AppData\Local\Google =>.Google O43 - CFD: 01/07/2021 - [0] SHD -- C:\Users\zikas\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 25/09/2019 - [] D -- C:\Users\zikas\AppData\Local\HP =>.Hewlett-Packard O43 - CFD: 07/08/2019 - [] D -- C:\Users\zikas\AppData\Local\Intel =>.Intel Corporation O43 - CFD: 08/04/2020 - [] D -- C:\Users\zikas\AppData\Local\Jonas_Kohl O43 - CFD: 14/07/2021 - [] D -- C:\Users\zikas\AppData\Local\Lenovo =>.Lenovo O43 - CFD: 20/06/2021 - [] D -- C:\Users\zikas\AppData\Local\LenovoServiceBridge O43 - CFD: 14/07/2021 - [] D -- C:\Users\zikas\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 01/07/2021 - [] D -- C:\Users\zikas\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 29/04/2020 - [] D -- C:\Users\zikas\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 07/08/2019 - [] D -- C:\Users\zikas\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 21/02/2020 - [] D -- C:\Users\zikas\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 07/08/2019 - [] D -- C:\Users\zikas\AppData\Local\OneDrive =>.Microsoft Corporation O43 - CFD: 13/07/2021 - [] D -- C:\Users\zikas\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 18/08/2019 - [0] D -- C:\Users\zikas\AppData\Local\PeerDistRepub =>.Microsoft Corporation O43 - CFD: 16/01/2021 - [] D -- C:\Users\zikas\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 01/05/2020 - [] D -- C:\Users\zikas\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 07/08/2019 - [] D -- C:\Users\zikas\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 08/04/2020 - [] D -- C:\Users\zikas\AppData\Local\speech =>.Microsoft Corporation O43 - CFD: 17/09/2020 - [] D -- C:\Users\zikas\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 20/09/2019 - [] D -- C:\Users\zikas\AppData\Local\TeamViewer =>.TeamViewer GmbH O43 - CFD: 15/07/2021 - [] D -- C:\Users\zikas\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [0] SHD -- C:\Users\zikas\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 16/08/2019 - [] D -- C:\Users\zikas\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 19/10/2020 - [] D -- C:\Users\zikas\AppData\Local\Wondershare =>.Wondershare O43 - CFD: 14/07/2021 - [] D -- C:\Users\zikas\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 07/08/2019 - [0] D -- C:\Users\zikas\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 01/05/2020 - [] D -- C:\Users\zikas\AppData\Local\Programs\Lenovo =>.Lenovo O43 - CFD: 09/08/2019 - [] D -- C:\Users\zikas\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 14/04/2020 - [] D -- C:\Users\zikas\AppData\LocalLow\Intel =>.Intel Corporation O43 - CFD: 21/04/2021 - [] SD -- C:\Users\zikas\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 21/02/2020 - [0] D -- C:\Users\zikas\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 05/10/2019 - [] D -- C:\Users\zikas\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 05/02/2020 - [] D -- C:\Users\zikas\Desktop\capture d'ecran O43 - CFD: 27/06/2021 - [] D -- C:\Users\zikas\Desktop\CONCOURS imtihan mihani O43 - CFD: 24/08/2019 - [] D -- C:\Users\zikas\Desktop\Coran karim O43 - CFD: 31/03/2021 - [] D -- C:\Users\zikas\Desktop\emploi 1aep année 2021 O43 - CFD: 23/05/2021 - [] D -- C:\Users\zikas\Desktop\fonction observation O43 - CFD: 11/10/2020 - [] D -- C:\Users\zikas\Desktop\français CENTRE O43 - CFD: 14/07/2021 - [] D -- C:\Users\zikas\Desktop\idm+ طريقة تعبئة مطبوع الحركة O43 - CFD: 14/07/2021 - [] D -- C:\Users\zikas\Desktop\MES CRACK O43 - CFD: 28/04/2015 - [] D -- C:\Users\zikas\Desktop\Microsoft Office Professional Plus 2013 VL Edition x86 x64 FR =>.Microsoft Corporation O43 - CFD: 05/05/2021 - [] D -- C:\Users\zikas\Desktop\Nouveau dossier O43 - CFD: 11/06/2021 - [] D -- C:\Users\zikas\Desktop\Nouveau dossier (2) O43 - CFD: 12/07/2021 - [] D -- C:\Users\zikas\Desktop\PREPARATION O43 - CFD: 29/11/2020 - [] D -- C:\Users\zikas\Desktop\scan O43 - CFD: 09/04/2021 - [] RASHD -- C:\Users\zikas\Desktop\Tools O43 - CFD: 09/04/2021 - [0] RASHD -- C:\Users\zikas\Desktop\Upload O43 - CFD: 14/07/2021 - [] D -- C:\Users\zikas\Desktop\جدادات المستوى التاني O43 - CFD: 26/06/2021 - [] D -- C:\Users\zikas\Desktop\كتب حول علوم التربية و نظريات التعلم O43 - CFD: 10/08/2019 - [] D -- C:\Users\zikas\Desktop\كتب وعروض O43 - CFD: 31/03/2021 - [] D -- C:\Users\zikas\Desktop\وثائق مختلفة O43 - CFD: 01/07/2021 - [] RD -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] RD -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] RD -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 23/04/2020 - [0] D -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Elips Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Download Manager =>.Tonec Inc O43 - CFD: 01/07/2021 - [] D -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo O43 - CFD: 07/12/2019 - [] D -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] RD -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] RD -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 01/07/2021 - [] D -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] D -- C:\Users\zikas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR =>.WinRAR O43 - CFD: 01/07/2021 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 07/08/2019 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 07/08/2019 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Lenovo =>.Lenovo O43 - CFD: 01/07/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 01/07/2021 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Foxit Software =>.Foxit Software ---\\ ShellIconOverlayIdentifiers (SIOI) (7) - 0s O106 - SIOI: [ IDM Shell Extension] - {CDC95B92-E27C-4745-A8C5-64A52A78855D}. (.Tonec Inc. - Internet Download Manager module.) -- C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc.® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft SkyDrive Pro Extensions.) -- C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL =>.Microsoft® O106 - SIOI: AVG [00avg] - {472083B1-C522-11CF-8763-00608CC02F24}. (.AVG Technologies CZ, s.r.o. - AVG Shell Extension.) -- C:\Program Files\AVG\Antivirus\ashShell.dll =>.AVG Technologies USA, LLC® O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: [Offline Files] - {4E77131D-3629-431c-9818-C5679DC83E81}. (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (36) - 2s O108 - CMH1: AVG [64Bits] - {472083B1-C522-11CF-8763-00608CC02F24} . (.AVG Technologies CZ, s.r.o. - AVG Shell Extension.) -- C:\Program Files\AVG\Antivirus\ashShell.dll =>.AVG Technologies USA, LLC® O108 - CMH1: Foxit_ConvertToPDF [64Bits] - {C5269811-4A29-4818-A4BB-111F9FC63A5F} . (.Foxit Software Inc. - ConvertToPDFShellExtension.) -- C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll =>.Foxit Software Incorporated® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH1: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH2: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH3: 00avg [64Bits] - {472083B1-C522-11CF-8763-00608CC02F24} . (.AVG Technologies CZ, s.r.o. - AVG Shell Extension.) -- C:\Program Files\AVG\Antivirus\ashShell.dll =>.AVG Technologies USA, LLC® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Orphan.) [Unsigned] O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\igfxDTCM.dll =>.Microsoft® O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: AVG [64Bits] - {472083B1-C522-11CF-8763-00608CC02F24} . (.AVG Technologies CZ, s.r.o. - AVG Shell Extension.) -- C:\Program Files\AVG\Antivirus\ashShell.dll =>.AVG Technologies USA, LLC® O108 - CMH6: Foxit_ConvertToPDF [64Bits] - {C5269811-4A29-4818-A4BB-111F9FC63A5F} . (.Foxit Software Inc. - ConvertToPDFShellExtension.) -- C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll =>.Foxit Software Incorporated® O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH6: Offline Files [64Bits] - {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} . (.Microsoft Corporation - IU de cache côté client.) -- C:\WINDOWS\System32\cscui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH6: PowerISO [64Bits] - {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} . (.Orphan.) [Unsigned] O108 - CMH6: WinRAR [64Bits] - {B41DB860-64E4-11D2-9906-E49FADC173CA} . (.Alexander Roshal - WinRAR shell extension.) -- C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH® O108 - CMH6: WinRAR32 [64Bits] - {B41DB860-8EE4-11D2-9906-E49FADC173CA} . (.Orphan.) [Unsigned] O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (10) - 1s O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® ---\\ LISTE DES PILOTES DU SYSTÈME (459) - 24s O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [266240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft® O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [809288] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [139792] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [415232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft® O58 - SDL:2021/07/13 19:14:41 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [655688] =>.Microsoft® O58 - SDL:2020/11/06 18:37:43 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [41984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:45 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:39 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [292352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [207160] =>.Microsoft® O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [211256] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft® O58 - SDL:2021/07/13 19:14:38 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [208712] =>.Microsoft® O58 - SDL:2021/07/13 19:14:38 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:15:06 A . (.Microsoft Corporation - Microsoft Application Virtualization Stream.) -- C:\WINDOWS\System32\drivers\AppVStrm.sys [138040] =>.Microsoft® O58 - SDL:2021/07/13 19:15:06 A . (.Microsoft Corporation - Microsoft Application Virtualization VE Man.) -- C:\WINDOWS\System32\drivers\AppvVemgr.sys [174392] =>.Microsoft® O58 - SDL:2021/07/13 19:15:06 A . (.Microsoft Corporation - Microsoft Application Virtualization VFS Fi.) -- C:\WINDOWS\System32\drivers\AppvVfs.sys [154936] =>.Microsoft® O58 - SDL:2017/03/20 20:31:12 A . (.Lenovo. - ThinkVantage Active Protection System HID D.) -- C:\WINDOWS\System32\drivers\ApsHM64.sys [46040] =>.Lenovo® O58 - SDL:2017/03/20 20:31:12 A . (.Lenovo. - Shockproof Disk Driver.) -- C:\WINDOWS\System32\drivers\ApsX64.sys [173024] =>.Lenovo® O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft® O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30024] =>.Microsoft® O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [224080] =>.Microsoft® O58 - SDL:2021/06/26 13:42:09 A . (.AVG Technologies CZ, s.r.o. - AVG Anti Rootkit Disk Filter.) -- C:\WINDOWS\System32\drivers\avgArDisk.sys [35872] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:09 A . (.AVG Technologies CZ, s.r.o. - AVG Anti Rootkit.) -- C:\WINDOWS\System32\drivers\avgArPot.sys [217056] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:09 A . (.AVG Technologies CZ, s.r.o. - AVG IDS Application Activity Monitor Driver.) -- C:\WINDOWS\System32\drivers\avgbidsdriver.sys [366704] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:12 A . (.AVG Technologies CZ, s.r.o. - AVG Application Activity Monitor Helper Dri.) -- C:\WINDOWS\System32\drivers\avgbidsh.sys [250464] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:12 A . (.AVG Technologies CZ, s.r.o. - AVG Universal Driver.) -- C:\WINDOWS\System32\drivers\avgbuniv.sys [99440] =>.AVG Technologies USA, LLC® O58 - SDL:2021/05/23 15:29:16 A . (.AVG Technologies CZ, s.r.o. - AVG ELAM Driver.) -- C:\WINDOWS\System32\drivers\avgElam.sys [17344] =>.Microsoft® O58 - SDL:2021/06/26 13:42:12 A . (.AVG Technologies CZ, s.r.o. - AVG Keyboard Filter Driver.) -- C:\WINDOWS\System32\drivers\avgKbd.sys [41488] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:12 A . (.AVG Technologies CZ, s.r.o. - AVG File System Filter.) -- C:\WINDOWS\System32\drivers\avgMonFlt.sys [182736] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:12 A . (.AVG Technologies CZ, s.r.o. - AVG Network Security Driver.) -- C:\WINDOWS\System32\drivers\avgNetHub.sys [524568] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:12 A . (.AVG Technologies CZ, s.r.o. - AVG Antivirus.) -- C:\WINDOWS\System32\drivers\avgRdr2.sys [108000] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:12 A . (.AVG Technologies CZ, s.r.o. - AVG Revert.) -- C:\WINDOWS\System32\drivers\avgRvrt.sys [83056] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:09 A . (.AVG Technologies CZ, s.r.o. - AVG Antivirus.) -- C:\WINDOWS\System32\drivers\avgSnx.sys [851344] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:12 A . (.AVG Technologies CZ, s.r.o. - AVG Self Protection.) -- C:\WINDOWS\System32\drivers\avgSP.sys [472064] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:12 A . (.AVG Technologies CZ, s.r.o. - AVG Stream Filter.) -- C:\WINDOWS\System32\drivers\avgStm.sys [215536] =>.AVG Technologies USA, LLC® O58 - SDL:2021/06/26 13:42:13 A . (.AVG Technologies CZ, s.r.o. - AVG VM Monitor.) -- C:\WINDOWS\System32\drivers\avgVmm.sys [327696] =>.AVG Technologies USA, LLC® O58 - SDL:2019/12/07 10:08:41 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [78136] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [41272] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:32 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [148816] =>.Microsoft® O58 - SDL:2021/07/01 16:11:04 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [117760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:39 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [127488] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [36352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [279040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [113664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [144896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:14 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1563136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:14 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [66576] =>.Microsoft® O58 - SDL:2019/12/07 10:09:37 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [181248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:21 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [79688] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft® O58 - SDL:2021/07/13 19:14:32 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [97792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [52224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:35 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [417088] =>.Microsoft® O58 - SDL:2021/07/01 16:11:31 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [496128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:36 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [411464] =>.Microsoft® O58 - SDL:2021/07/13 19:14:19 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1091384] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:03 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [29000] =>.Microsoft® O58 - SDL:2021/07/01 16:11:34 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [746400] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [40968] =>.Microsoft® O58 - SDL:2021/07/01 16:11:23 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [57160] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [99368] =>.Microsoft® O58 - SDL:2020/11/06 18:38:26 A . (.Microsoft Corporation - Windows Client Side Caching Driver.) -- C:\WINDOWS\System32\drivers\csc.sys [580608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:27 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [97096] =>.Microsoft® O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:36 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [152064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [98624] =>.Microsoft® O58 - SDL:2019/12/07 10:08:52 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 10:08:52 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [59192] =>.Microsoft® O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [97792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16128] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [37392] =>.Microsoft® O58 - SDL:2021/07/01 16:12:55 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [93128] =>.Microsoft® O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [195408] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:52 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [35128] =>.Microsoft® O58 - SDL:2021/07/13 19:14:19 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [3784504] =>.Microsoft® O58 - SDL:2021/07/13 19:14:19 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [454984] =>.Microsoft® O58 - SDL:2021/07/13 19:14:19 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [904504] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1i65x64.sys [553984] [Unsigned] =>.Intel Corporation O58 - SDL:2021/07/01 16:12:12 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [95032] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [124728] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [15872] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft® O58 - SDL:2021/07/01 16:11:01 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [421696] =>.Microsoft® O58 - SDL:2020/11/06 18:36:56 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [425272] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [59392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [94736] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/06/18 21:36:42 A . (.Intel Mobile Communications - USB driver for Flash Loader Utility.) -- C:\WINDOWS\System32\drivers\FlashUSB.sys [40376] {15FD12F3570F88CD1524BE078088F38D}. =>.Intel Mobile Communications O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:35 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [430392] =>.Microsoft® O58 - SDL:2021/07/01 16:11:03 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [69968] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [33592] =>.Microsoft® O58 - SDL:2021/07/01 16:12:55 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [800056] =>.Microsoft® O58 - SDL:2021/07/13 19:14:41 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [502584] =>.Microsoft® O58 - SDL:2019/12/07 10:08:05 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [139776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [430080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [39440] =>.Microsoft® O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [120320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [225792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [55824] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft® O58 - SDL:2021/07/01 16:11:34 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1564984] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [35128] =>.Microsoft® O58 - SDL:2021/07/13 19:14:54 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [95056] =>.Microsoft® O58 - SDL:2021/07/01 16:12:24 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [148280] =>.Microsoft® O58 - SDL:2020/11/06 18:37:35 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [33096] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [27448] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [41784] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2018/12/19 05:19:14 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorAC.sys [1094600] =>.Intel(R) Rapid Storage Technology® O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft® O58 - SDL:2021/03/01 21:41:08 A . (.Lenovo. - Lenovo Power Management Driver.) -- C:\WINDOWS\System32\drivers\ibmpmdrv.sys [80464] {4BEAF82E370174DB5D5A9EB61F76860E}. =>.Lenovo. O58 - SDL:2018/12/20 09:05:20 A . (.Tonec Inc. - Internet Download Manager WFP Driver.) -- C:\WINDOWS\System32\drivers\idmwfp.sys [229296] =>.Tonec Inc.® O58 - SDL:2020/11/06 18:37:25 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19784] =>.Microsoft® O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [418800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [230728] =>.Microsoft® O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - Intel Telemetry Driver.) -- C:\WINDOWS\System32\drivers\IntelTA.sys [26608] =>.Microsoft® O58 - SDL:2021/07/01 16:11:00 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [57168] =>.Microsoft® O58 - SDL:2021/07/01 16:11:45 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [117584] =>.Microsoft® O58 - SDL:2019/12/07 10:08:34 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [225280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [59704] =>.Microsoft® O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [71480] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:12:37 A . (.Microsoft Corporation - Keyboard Lockdown Subsystem.) -- C:\WINDOWS\System32\drivers\kbldfltr.sys [29000] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [33296] =>.Microsoft® O58 - SDL:2021/07/13 19:14:15 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:40 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [449024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:35 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [147280] =>.Microsoft® O58 - SDL:2021/07/01 16:11:34 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [180048] =>.Microsoft® O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:55 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [72704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft® O58 - SDL:2021/07/01 16:11:39 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [140800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [537608] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [64016] =>.Microsoft® O58 - SDL:2021/07/14 21:02:58 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [199128] =>.Malwarebytes Inc® O58 - SDL:2021/07/14 21:02:56 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [19912] =>.Microsoft® O58 - SDL:2021/07/14 21:03:19 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [248992] =>.Malwarebytes Inc® O58 - SDL:2021/07/13 19:14:15 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [391168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [65024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [106496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft® O58 - SDL:2020/11/06 18:36:58 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:12:22 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [67600] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [110392] =>.Microsoft® O58 - SDL:2019/12/07 10:08:33 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:54 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [157696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:42 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [577864] =>.Microsoft® O58 - SDL:2021/07/01 16:11:36 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [264008] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [44048] =>.Microsoft® O58 - SDL:2020/11/06 18:37:08 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [183112] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [56120] =>.Microsoft® O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:16 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [20296] =>.Microsoft® O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [292672] =>.Microsoft® O58 - SDL:2020/11/06 18:37:40 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:05 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:33 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\msquic.sys [322376] =>.Microsoft® O58 - SDL:2021/07/13 19:14:41 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [382792] =>.Microsoft® O58 - SDL:2021/07/01 16:10:59 A . (.Microsoft Corporation - Pilote du filtre de système de fichiers du.) -- C:\WINDOWS\System32\drivers\mssecflt.sys [296264] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [47928] =>.Microsoft® O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:36 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [132920] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft® O58 - SDL:2021/07/13 19:14:41 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1478984] =>.Microsoft® O58 - SDL:2019/12/07 10:09:48 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [54272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:43 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [135168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:44 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [70656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:05 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:44 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [206848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:48 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [72720] =>.Microsoft® O58 - SDL:2020/11/06 18:37:44 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [93696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [131584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:36 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [207360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:04 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [64312] =>.Microsoft® O58 - SDL:2020/11/06 18:37:43 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [341504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:41 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [603464] =>.Microsoft® O58 - SDL:2021/07/01 16:10:58 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [250192] =>.Microsoft® O58 - SDL:2021/01/24 05:57:12 N . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\Netwtw06.sys [8809320] =>.Intel® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [87568] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:36 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:40 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2851656] =>.Microsoft® O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [20792] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [168464] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft® O58 - SDL:2021/07/13 19:14:16 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [742400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:23 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [161608] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [109056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:35 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [182592] =>.Microsoft® O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [469304] =>.Microsoft® O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16696] =>.Microsoft® O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [56632] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [127800] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [57656] =>.Microsoft® O58 - SDL:2021/07/01 16:11:03 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [159056] =>.Microsoft® O58 - SDL:2021/07/01 16:11:04 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [823296] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft® O58 - SDL:2021/07/01 16:12:21 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [129872] =>.Microsoft® O58 - SDL:2021/03/01 21:41:12 A . (.Lenovo. - Lenovo Power Management Driver.) -- C:\WINDOWS\System32\drivers\pmdrvs.sys [37984] {4BEAF82E370174DB5D5A9EB61F76860E}. =>.Lenovo. O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [138040] =>.Microsoft® O58 - SDL:2020/12/16 20:25:45 A . (.Intel Corporation - Intel(R) Management Engine Tools Driver.) -- C:\WINDOWS\System32\drivers\pmxdrv.sys [43632] =>.Intel(R) Embedded Subsystems and IP Blocks Group® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [27136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [388608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [216376] =>.Microsoft® O58 - SDL:2019/12/07 10:08:33 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [43448] =>.Microsoft® O58 - SDL:2019/12/07 10:09:05 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [42296] =>.Microsoft® O58 - SDL:2020/11/06 18:37:43 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [20480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:44 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [87552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:44 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [101888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:44 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:36 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [455480] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:12:21 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:12:20 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [31544] =>.Microsoft® O58 - SDL:2019/12/07 10:09:54 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [297784] =>.Microsoft® O58 - SDL:2021/07/13 19:14:38 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [2003792] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [990008] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [213504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:58 A . (.Microsoft Corporation - Microsoft RemoteFX VM Transport.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [115712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:41 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [158208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:55 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [89088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek O58 - SDL:2020/07/21 02:01:24 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [6082136] =>.Realtek Semiconductor Corp.® O58 - SDL:2018/10/11 20:43:34 A . (.Realsil Semiconductor Corporation - RTS PCIE READER Driver.) -- C:\WINDOWS\System32\drivers\RtsPer.sys [896016] =>.Realtek Semiconductor Corp.® O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [118096] =>.Microsoft® O58 - SDL:2021/07/01 16:11:46 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [158736] =>.Microsoft® O58 - SDL:2021/07/13 19:14:42 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [188240] =>.Microsoft® O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [305472] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [35128] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [105488] =>.Microsoft® O58 - SDL:2021/07/13 19:14:14 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [104248] =>.Microsoft® O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [86328] =>.Microsoft® O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [173072] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [90624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - Serial Imaging Device Driver.) -- C:\WINDOWS\System32\drivers\serscan.sys [13312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [88080] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft® O58 - SDL:2019/12/07 15:53:43 A . (.Microsoft Corporation - Pilote réseau SMB Direct.) -- C:\WINDOWS\System32\drivers\smbdirect.sys [172544] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/07/13 02:42:48 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [53768] =>.Synaptics Incorporated® O58 - SDL:2021/05/07 00:33:02 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [37328] {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated O58 - SDL:2021/05/07 00:33:10 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [38352] {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated O58 - SDL:2021/05/07 00:33:10 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [38352] {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated O58 - SDL:2019/12/07 10:09:09 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2018/04/25 02:48:22 A . (.Synaptics Incorporated - SSO SMI Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\smi.sys [31440] {537D312C9B726AD4B1055483B4D1AED4}. =>.Synaptics Incorporated O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [215888] =>.Microsoft® O58 - SDL:2019/12/07 10:09:34 A . (.Microsoft Corporation - Storage Spaces Parser.) -- C:\WINDOWS\System32\drivers\spaceparser.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [678728] =>.Microsoft® O58 - SDL:2019/12/07 15:53:40 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [90936] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [87352] =>.Microsoft® O58 - SDL:2021/07/01 16:11:36 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [787968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:36 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft® O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [186184] =>.Microsoft® O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [155960] =>.Microsoft® O58 - SDL:2021/07/13 19:14:15 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [714040] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [92984] =>.Microsoft® O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [61256] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [44048] =>.Microsoft® O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [82432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/07 00:32:46 A . (.Synaptics Incorporated - Synaptics I2C Driver.) -- C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys [49624] {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated O58 - SDL:2021/07/01 16:10:58 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSC.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [6656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/07 00:32:54 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [705488] {08059B3E593E584D45F048DD80D7EF83}. =>.Synaptics Incorporated O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:05 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [31568] =>.Microsoft® O58 - SDL:2021/07/13 19:14:41 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2992968] =>.Microsoft® O58 - SDL:2019/12/07 10:09:04 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [54784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [39736] =>.Microsoft® O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117560] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [41272] =>.Microsoft® O58 - SDL:2021/07/01 16:11:36 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [141128] =>.Microsoft® O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [255288] =>.Microsoft® O58 - SDL:2021/04/20 02:20:46 A . (.Lenovo Group Limited - Power Manager.) -- C:\WINDOWS\System32\drivers\TPPWR64V.SYS [47840] =>.Lenovo® O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [37888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:58 A . (.Microsoft Corporation - Concentrateur USB du Bureau à distance.) -- C:\WINDOWS\System32\drivers\tsusbhub.sys [141824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:04 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [129024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79160] =>.Microsoft® O58 - SDL:2021/07/01 16:11:23 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [166400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [188416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:25 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [259896] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [52736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [344064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:15:07 A . (.Microsoft Corporation - Microsoft User Experience Virtualization Ag.) -- C:\WINDOWS\System32\drivers\UevAgentDriver.sys [41272] =>.Microsoft® O58 - SDL:2021/07/13 19:14:33 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [330056] =>.Microsoft® O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [168264] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [76304] =>.Microsoft® O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [201728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [260608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:41 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [185664] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [33080] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [86544] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [528184] =>.Microsoft® O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [653136] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [473400] =>.Microsoft® O58 - SDL:2021/07/13 19:14:13 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [88064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:14 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [136504] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [39424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [329040] =>.Microsoft® O58 - SDL:2021/07/13 19:14:14 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [608568] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [67384] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [347448] =>.Microsoft® O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [820560] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [47616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:57 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [644424] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [114488] =>.Microsoft® O58 - SDL:2021/07/01 16:10:58 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [160072] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [36664] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [23864] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [19768] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [18960] =>.Microsoft® O58 - SDL:2021/07/01 16:10:58 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [54080] =>.Microsoft® O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [90960] =>.Microsoft® O58 - SDL:2019/12/07 10:09:37 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [389432] =>.Microsoft® O58 - SDL:2020/11/06 18:37:03 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16696] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [89400] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft® O58 - SDL:2019/12/07 10:08:13 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:13 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:13 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [50688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:37:44 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:14 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [74752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:11:23 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [202544] =>.Microsoft® O58 - SDL:2021/07/01 16:11:23 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:15 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46688] =>.Microsoft® O58 - SDL:2021/07/01 16:11:35 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [832832] =>.Microsoft® O58 - SDL:2019/12/07 10:08:15 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [350136] =>.Microsoft® O58 - SDL:2021/07/01 16:11:35 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [59192] =>.Microsoft® O58 - SDL:2021/07/13 19:14:16 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [958976] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:39 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [23560] =>.Microsoft® O58 - SDL:2019/12/07 10:08:16 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [54200] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [52024] =>.Microsoft® O58 - SDL:2021/07/13 19:14:32 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [180024] =>.Microsoft® O58 - SDL:2021/07/01 16:11:31 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [39736] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [76984] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18920] =>.Microsoft® O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [32784] =>.Microsoft® O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [96056] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft® O58 - SDL:2021/07/01 16:11:01 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [259584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [107008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [19472] =>.Microsoft® O58 - SDL:2021/07/01 16:11:31 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [234296] =>.Microsoft® O58 - SDL:2019/12/07 15:53:42 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [32568] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 10:08:41 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Web Services Print Device Driver.) -- C:\WINDOWS\System32\drivers\WSDPrint.sys [23552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/06 18:36:47 A . (.Microsoft Corporation - Web Service Based Scan Device Driver.) -- C:\WINDOWS\System32\drivers\WSDScan.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [136192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [329216] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/01 16:10:56 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [51712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:32 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [596992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:31 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2917888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:32 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3817984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:34 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:49 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\SysWOW64\win32k.sys [329728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/13 19:14:49 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\SysWOW64\win32kfull.sys [2754048] [Unsigned] =>.Microsoft Corporation ---\\ DERNIERS FICHIERS MODIFIÉS OU CRÉÉS (Utilisateur) (1) - 17s O61 - LFC: 2021/07/11 16:53:43 A . (..) -- C:\ProgramData\Lenovo\SystemUpdate\sessionSE\Repository\fhybd22\fhybd22_version.exe [8763432] {5CEDE7AC650B17BD4C84DD1A5835338A}. ---\\ ASSOCIATION Shell Spawning (10) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (16) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (3) - 8s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] [64Bits]{7221ABD3-0D19-4D12-92C5-14BEFECC49CC} [DefaultScope] - (Recherche) - http://www.recherche-qle.com/ O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (51) - 3s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [301568] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1334784] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1051136] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836096] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [160256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [861696] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [487936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [515072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [127488] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2434560] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [281088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [487936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [302080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1270272] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1020416] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [941568] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1485312] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [309760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2242048] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1522688] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [971776] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [565248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [619008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3394048] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [259584] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [939472] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [221184] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [569856] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [288256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppMgmt (AppMgmt) . (.Microsoft Corporation - Service Installation de logiciels.) -- C:\Windows\System32\appmgmts.dll [207360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [555008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: MsKeyboardFilter (MsKeyboardFilter) . (.Microsoft Corporation - Service SvcHost pour le filtre clavier Micr.) -- C:\Windows\System32\KeyboardFilterSvc.dll [161096] =>.Microsoft® ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (73) - 7s O87 - FAEL: "{A8334371-7ACC-40AC-8462-29222F366FB6}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O87 - FAEL: "{17838AA4-2705-44A0-8097-AB598427F189}" [Out-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Lenovo\System Update\uncserver.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{1E955321-6DFB-4750-AC3C-059757A1AA4A}" [Out-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Lenovo\System Update\uncserver.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F05BA1ED-D7C7-4B08-B606-7789913617CA}" [In-None-P17-TRUE] .(.HP Development Company, L.P. - HP Print and Scan Doctor 5.5.2.) -- C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe =>.HP Inc.® O87 - FAEL: "{250440CE-EC97-4CE5-B4EC-CF72DC6C72CD}" [In-None-P6-TRUE] .(.HP Development Company, L.P. - HP Print and Scan Doctor 5.5.2.) -- C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe =>.HP Inc.® O87 - FAEL: "{010B16CF-0437-450A-B865-B7FBCBC25A6E}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS5E56\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{A52CA0B2-2F51-464A-B3D8-0EF93F49625D}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS5E56\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{236CEB3A-055E-40DF-AB1C-738B5A036828}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS7A3A\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{B192B428-784B-4FFE-838D-02B150951BDE}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS7A3A\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{FE8DB6B3-A2B7-4DC3-8713-B5CE9047BBB7}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS65A6\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{FABDE0EA-AC91-443D-AC81-9D6349F9AE61}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS65A6\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{EF86080A-6C77-4153-87EA-04B32AFC3A74}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS73AB\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{2D1C84C1-0998-4FD3-8BAF-EF5AC7BDA3B1}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS73AB\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{6ACB683D-6238-4482-9E32-0A5233EACCF1}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS68DD\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{1B2539E1-2F3C-4713-A505-11D091A19076}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS68DD\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{069838CE-F676-48C0-BF27-DFF64AAABD3F}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS38F7\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{6019403F-BEE6-459E-AF44-CF145E98EEF8}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS38F7\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{9D14AEA0-982C-4099-AFCE-7A2E2C74E25D}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS3796\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{8AC320E4-784E-4CF5-BFCC-7B19AD2721B5}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS3796\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{14266D07-53BE-48CB-8543-C65EE06AB859}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{C45CDE00-8158-4275-91D8-3DE5854FFC33}" [In-None-P17-TRUE] .(...) -- C:\Program Files\Microsoft Office\root\Office16\Lync.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{7D47DB64-3CA7-4A97-AB16-BEC7D4133C9F}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS4CF7\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{953118CD-14F5-4533-821A-31EB0E0CA28E}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS4CF7\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{D032240D-0A40-4145-8D5C-D9137F766A7D}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{8C16F300-1C13-453E-9E1F-2DF51A5CF96D}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{8C46A4A6-D866-4B27-86BA-A839B1502684}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS736E\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{B63DCB92-CA23-4295-8E93-87D14CC73505}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS736E\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{6021DA23-E5BC-4616-A97F-4491C61524F3}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS46D8\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{DE827412-35B1-4986-84FF-4254CE71C696}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS46D8\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{1E1154F7-16A0-4C71-AD99-372EE378E62A}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS001D\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{AD68716E-7339-40FE-A37A-FD33D65F890E}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS001D\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{A5115387-5FDD-408F-B9C2-B9E94023D611}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS5351\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{BECC9FED-8C56-4126-9C97-A074FE798088}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS5351\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{407D80AA-31B7-4DDD-B667-CD65D22FE1BE}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS2750\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{46E6E123-E03C-4AF3-99B8-80D3E1D340DF}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS2750\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{47DAF6EA-12DA-4829-BF5D-A6D5DB6F182C}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS2477\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{6B2142E6-A3AD-4D9A-B31C-5B51174D41A2}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS2477\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{650A6170-43A8-48B5-801C-E3BB4B6A3E3B}" [In-None-P6-TRUE] .(.HP Inc. - HPNetworkCommunicatorCom.) -- C:\Program Files\HP\HP DeskJet 4530 series\Bin\HPNetworkCommunicatorCom.exe =>.Hewlett Packard® O87 - FAEL: "{E796B0D9-A191-4298-B0DD-AE77B87B9829}" [In-None-P6-TRUE] .(.HP Inc. - DeviceSetup.exe.) -- C:\Program Files\HP\HP DeskJet 4530 series\Bin\DeviceSetup.exe =>.Hewlett Packard® O87 - FAEL: "{A9276528-2ACA-43B1-BF2E-2D944C330467}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS2079\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{3B64CBEA-278B-413D-88DC-A0AAD0CF6F59}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS2079\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{DF121A83-FD69-4F3F-9A11-C5943BB12F13}" [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.® O87 - FAEL: "{6658657C-2053-49D2-AF58-A79DCE9B5B59}" [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc.® O87 - FAEL: "{524E14B9-98DE-432F-AABF-94007AE68E02}" [In-None-P17-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O87 - FAEL: "{A0DAB0CF-838D-4DA4-A2C8-F7BF7A1549F3}" [In-None-P6-TRUE] .(.Apple Inc. - Bonjour Service.) -- C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc.® O87 - FAEL: "{F62DAE12-415B-44DF-9E1D-B1B5CFBBE276}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS116F\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{CE7F911B-F76C-4DF8-A98A-95BB174016FE}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS116F\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{3B9A4EC8-5A40-40FB-BD34-13FD19B8BA3A}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS0CA6\HP.EasyStart.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{537DC789-9927-45D1-8176-B0BC73D3F63E}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS44D5\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{C072C034-E415-4947-9279-4FD1C0E67997}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS44D5\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{6CC55D45-9DED-4DDB-834B-DDC1AC378E89}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS3010\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{2051903D-DEE2-467F-9798-DA4EFE775B28}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS3010\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{CF055ACA-8E4A-4BF9-AE27-EE1EB5107ADB}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS45CC\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{4418CECA-3466-4279-A5E8-9F3AE918394D}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS45CC\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{7721AD54-2869-42A7-8C46-1CD6D23061F7}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS2B3D\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{1536B271-86EF-4699-80BE-82CECAE71D7F}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS2B3D\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{714F0F0E-E1F3-4228-94C5-35E3B83FE05E}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{DF9BCC51-9B88-4DBD-AD9A-7F148E700FA8}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{06EFB610-8F51-483B-86BF-861FA37D1B63}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{3808374F-779D-43A4-B99C-23B1E58F0B87}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\TeamViewer\TeamViewer.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{6EBDDA13-6DD1-4679-8CD5-CC8BBF32BD69}" [In-None-P17-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS5C49\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{9FFD9F36-3268-4D56-91AC-9B7986E3E61A}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS5C49\HPDiagnosticCoreUI.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{317C67DA-9ABC-4EBE-8C5B-4753F1FE69D4}" [In-None-P6-TRUE] .(...) -- C:\Users\zikas\AppData\Local\Temp\7zS728C\HP.EasyStart.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{2D1B2E1F-BA6B-4B95-A835-2B501D95079A}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe [Unsigned] (.not file.) =>HackTool.KMSpico O87 - FAEL: "{CDF2D280-4B06-4E7E-82A3-512F8B086591}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe [Unsigned] (.not file.) =>HackTool.KMSpico O87 - FAEL: "{437B56D9-069D-43E1-A699-247795520612}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe [Unsigned] (.not file.) =>HackTool.KMSpico O87 - FAEL: "{A22C6785-36A1-4E75-B636-622F7645EFF1}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\AutoPico.exe [Unsigned] (.not file.) =>HackTool.KMSpico O87 - FAEL: "{17548DF0-A762-4EB4-A7D2-BF8F89642615}" [In-None-P17-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe [Unsigned] (.not file.) =>HackTool.KMSpico O87 - FAEL: "{82583F46-79AB-4AA6-847F-AF8810ABFA5A}" [In-None-P6-TRUE] .(...) -- C:\Program Files\KMSpico\KMSELDI.exe [Unsigned] (.not file.) =>HackTool.KMSpico O87 - FAEL: "{2722030D-BE5D-47F9-A403-8105F0C57493}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft® O87 - FAEL: "{36DA1F42-29BA-40FB-A76E-BA0825C1B1D4}" [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft® O87 - FAEL: "{A12157FE-305B-427B-ABDF-706B928A4447}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft® O87 - FAEL: "{AFD08B16-80D7-4F36-8590-C43F55A311DC}" [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Microsoft® ---\\ CODES PRODUITS LOGICIELS (61) - 2s O90 - PUC: "000051090900C0400100000000F01FEC" [HKLM] . (.Microsoft DCF MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "00005109110000000100000000F01FEC" [HKLM] . (.Microsoft Office Professional Plus 2013.) =>.Microsoft Corporation O90 - PUC: "000051091A00C0400100000000F01FEC" [HKLM] . (.Microsoft OneNote MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "000051091C0000000100000000F01FEC" [HKLM] . (.Microsoft Office 32-bit Components 2013.) =>.Microsoft Corporation O90 - PUC: "000051091C00C0400100000000F01FEC" [HKLM] . (.Microsoft Office Shared 32-bit MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "000051091E00C0400100000000F01FEC" [HKLM] . (.Microsoft Office OSM MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "000051092E00C0400100000000F01FEC" [HKLM] . (.Microsoft Office OSM UX MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "000051094400C0400100000000F01FEC" [HKLM] . (.Microsoft InfoPath MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "000051095100C0400100000000F01FEC" [HKLM] . (.Microsoft Access MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "000051096100C0400100000000F01FEC" [HKLM] . (.Microsoft Excel MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "000051098100C0400100000000F01FEC" [HKLM] . (.Microsoft PowerPoint MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "000051099100C0400100000000F01FEC" [HKLM] . (.Microsoft Publisher MUI (French) 2013.) =>.bl.org O90 - PUC: "00005109A100C0400100000000F01FEC" [HKLM] . (.Microsoft Outlook MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "00005109AB00C0400100000000F01FEC" [HKLM] . (.Microsoft Groove MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "00005109B100C0400100000000F01FEC" [HKLM] . (.Microsoft Word MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "00005109B210C0400100000000F01FEC" [HKLM] . (.Microsoft Lync MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "00005109C200C0400100000000F01FEC" [HKLM] . (.Microsoft Office Proofing (French) 2013.) =>.Microsoft Corporation O90 - PUC: "00005109E600C0400100000000F01FEC" [HKLM] . (.Microsoft Office Shared MUI (French) 2013.) =>.Microsoft Corporation O90 - PUC: "00005109F10010400100000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - اللغة العربية.) -- C:\WINDOWS\Installer\{90150000-001F-0401-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "00005109F10031400100000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - Nederlands.) -- C:\WINDOWS\Installer\{90150000-001F-0413-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "00005109F10070400100000000F01FEC" [HKLM] . (.Microsoft Office Korrekturhilfen 2013 - Deutsch.) -- C:\WINDOWS\Installer\{90150000-001F-0407-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "00005109F10090400100000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - English.) -- C:\WINDOWS\Installer\{90150000-001F-0409-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "00005109F100A0C00100000000F01FEC" [HKLM] . (.Microsoft Office Proofing Tools 2013 - Español.) -- C:\WINDOWS\Installer\{90150000-001F-0C0A-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "00005109F100C0400100000000F01FEC" [HKLM] . (.Outils de vérification linguistique 2013 de Microsoft Office - Français.) -- C:\WINDOWS\Installer\{90150000-001F-040C-1000-0000000FF1CE}\misc.exe,6 =>.Microsoft Corporation O90 - PUC: "1007C6B46D7C017319E3B52CF3EC196E" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148.) =>.bl.org O90 - PUC: "19E8058F3C944F04A828FAC5889140B7" [HKLM] . (.Logiciel de base du périphérique HP DeskJet 4530 series.) -- C:\WINDOWS\Installer\{F8508E91-49C3-40F4-8A82-AF5C8819047B}\ARP_Icon =>.Hewlett-Packard O90 - PUC: "2B0163E6D0340BE4183EB2758E9BEDD8" [HKLM] . (.Bonjour.) -- C:\WINDOWS\Installer\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}\Bonjour.ico =>.Microsoft Corporation O90 - PUC: "3C75C136567B723428A250C7436D19CC" [HKLM] . (.Intel(R) Chipset Device Software.) =>.Intel Corporation O90 - PUC: "49648A64CE950F8469C4E7679E8F2ADE" [HKLM] . (.Lenovo Active Protection System.) O90 - PUC: "5282559C2FB74434AB193DDC644F4C14" [HKLM] . (.Intel(R) Trusted Connect Service Client x86.) =>.Intel Corporation O90 - PUC: "5282559C2FB74434AB193DDC644F4C24" [HKLM] . (.Intel(R) Trusted Connect Service Client x64.) =>.Intel Corporation O90 - PUC: "581E8375E19899C408EC728D53AD83BA" [HKLM] . (.Intel(R) Management Engine Driver.) =>.Intel Corporation O90 - PUC: "5CB59A5EFD18C0F49B015BD90D210F73" [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation O90 - PUC: "62DBF9290209B993A9A757D1160F9B24" [HKLM] . (.Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "68AB67CA408033019195001028441267" [HKLM] . (.Adobe Refresh Manager.) -- C:\WINDOWS\Installer\{AC76BA86-0804-1033-1959-000182442176}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "68AB67CA7DA76301B744CAF070E41400" [HKLM] . (.Adobe Acrobat Reader DC - Français.) -- C:\WINDOWS\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Adobe Inc. O90 - PUC: "696CCB364BF0C9E41844D24A2F84CF71" [HKLM] . (.HP Google Drive Plugin.) -- C:\WINDOWS\Installer\{63BCC696-0FB4-4E9C-8144-2DA4F248FC17}\HPScan.ico =>.Google Inc. O90 - PUC: "6B5370AF81E9A7341ADC192556F05CB2" [HKLM] . (.Dolby Audio X2 Windows API SDK.) -- C:\WINDOWS\Installer\{FA0735B6-9E18-437A-A1CD-9152650FC52B}\DolbyBlue.exe =>.Legitimate O90 - PUC: "6E8D947A316B3EB3F8F540C548BE2AB9" [HKLM] . (.Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005.) =>.Microsoft Corporation O90 - PUC: "8A0CD8B6130F5A24E85F55FFFF187051" [HKLM] . (.Intel(R) Management Engine Components.) =>.Intel Corporation O90 - PUC: "91D8B6F725744154D862555894BC68E6" [HKLM] . (.Intel(R) Management Engine Components.) =>.Intel Corporation O90 - PUC: "943B67F2FDFBC4D48A197DFA5EB7AF20" [HKLM] . (.Microsoft VC++ redistributables repacked..) =>.bl.org O90 - PUC: "9589A13492B613F448E05B11AC2354B9" [HKLM] . (.Microsoft VC++ redistributables repacked..) =>.bl.org O90 - PUC: "96523D0D0864A09409C51571ECAA3BFE" [HKLM] . (.Dolby Audio X2 Windows APP.) -- C:\WINDOWS\Installer\{D0D32569-4680-490A-905C-5117CEAAB3EF}\DolbyBlue.exe =>.Legitimate O90 - PUC: "9EEAA477089728D409E84498BB44AC6E" [HKLM] . (.Étude pour l'amélioration du produit HP DeskJet 4530 series.) -- C:\WINDOWS\Installer\{774AAEE9-7980-4D82-908E-4489BB44CAE6}\ARP_Icon =>.Hewlett-Packard O90 - PUC: "A8DD900EDB55D5B4C947F40871F38986" [HKLM] . (.HP DeskJet 4530 series Aide.) -- C:\WINDOWS\Installer\{E009DD8A-55BD-4B5D-9C74-4F80173F9868}\ARP_Icon =>.Hewlett-Packard O90 - PUC: "A9931046AD5F40C478AA8E01D70F7015" [HKLM] . (.HP Dropbox Plugin.) -- C:\WINDOWS\Installer\{6401399A-F5DA-4C04-87AA-E8107DF00751}\HPScan.ico =>.WINSE O90 - PUC: "DBCC1936F6123EC41AEA65D5C50BE74D" [HKLM] . (.Intel(R) Management Engine Components.) =>.Intel Corporation O90 - PUC: "E760866174DB7E112B7600C092B62FB9" [HKLM] . (.Foxit PhantomPDF.) -- C:\WINDOWS\Installer\{1668067E-BD47-11E7-B267-000C296BF29B}\IconName.exe =>.Foxit Corporation O90 - PUC: "1FA8F4F4520F9E2448A835A7A51DDB2C" [HKCU] . (.HOTKEY.) O90 - PUC: "2B9E38A46E3DA624BA5B9E3438D05949" [HKCU] . (.HOTKEY.) O90 - PUC: "4EA6D56693471A9448E076E1886BB731" [HKCU] . (.HOTKEY.) O90 - PUC: "67AD82063C9F5034DB293F2AA7780354" [HKCU] . (.HOTKEY.) O90 - PUC: "75CBFF0135ACE1D4E99406DA48F72099" [HKCU] . (.HOTKEY.) O90 - PUC: "F45A17B86BCFE5449A52AFA9E2305B46" [HKCU] . (.HOTKEY.) O90 - PUC: "1FA8F4F4520F9E2448A835A7A51DDB2C" [HKU] . (.HOTKEY.) O90 - PUC: "2B9E38A46E3DA624BA5B9E3438D05949" [HKU] . (.HOTKEY.) O90 - PUC: "4EA6D56693471A9448E076E1886BB731" [HKU] . (.HOTKEY.) O90 - PUC: "67AD82063C9F5034DB293F2AA7780354" [HKU] . (.HOTKEY.) O90 - PUC: "75CBFF0135ACE1D4E99406DA48F72099" [HKU] . (.HOTKEY.) O90 - PUC: "F45A17B86BCFE5449A52AFA9E2305B46" [HKU] . (.HOTKEY.) ---\\ PACKAGES WINDOWS INSTALLER (58) - 30s [MD5.7949988F071A630540D1C5ED2E61523B] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\11ad6d6b.msi [1824768] =>.Lenovo [MD5.31218F5779B7D3CE5871F7CC4829506F] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\11ad6d75.msi [1977344] =>.Lenovo [MD5.5856231D7E8EEAA526653E437F94B34A] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\11ad6d7e.msi [292864] =>.Lenovo [MD5.CCC6E8EB0D6D6211A3C5192B1DF5BB39] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\11ad6d84.msi [1945088] =>.Lenovo [MD5.D29CE2AE63D4B6A36FDC92A49AE37B31] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\11ad6d8a.msi [2442240] =>.Lenovo [MD5.9B87A3976110137A0C6D6BA0F67C5656] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\11ad6d92.msi [1717248] =>.Lenovo [MD5.F42D77DB87D6C76B507F78F2940242F9] [WIS][2020/06/02 01:14:24] (.Dolby Laboratories, Inc. - Dolby Audio X2 Windows API SDK.) -- C:\WINDOWS\Installer\1318b.msi [5058560] =>.Dolby Laboratories, Inc. [MD5.9BDBB8E085D753E1379E5579323EC3B7] [WIS][2018/09/05 16:45:48] (.Dolby Laboratories, Inc. - Dolby Audio X2 Windows APP.) -- C:\WINDOWS\Installer\13191.msi [22040576] =>.Dolby Laboratories, Inc. [MD5.70B36DF84C453E36C19AF35BC610230D] [WIS][2017/04/07 10:24:03] (.HP - HP Scan Dropbox destination plugin.) -- C:\WINDOWS\Installer\17ccb.msi [155648] =>.HP [MD5.9FE544CB2E4B7F559A28B02BDBF20362] [WIS][2019/08/05 13:07:02] (.Intel Corporation - Intel(R) Management Engine Driver.) -- C:\WINDOWS\Installer\1a13f04c.msi [1499136] =>.Intel Corporation [MD5.B3AEA23F50A20DB9046FD8484EFA64CC] [WIS][2019/08/05 13:05:46] (.Intel Corporation - Intel(R) Management Engine Components.) -- C:\WINDOWS\Installer\1a13f051.msi [1011712] =>.Intel Corporation [MD5.1BB5DBAA815C14D34C2E313F993777D9] [WIS][2019/08/05 13:03:28] (.Intel Corporation - Intel(R) Management Engine Components.) -- C:\WINDOWS\Installer\1a13f056.msi [319488] =>.Intel Corporation [MD5.139F32CE11D64A908E54B0E71A9A6D07] [WIS][2019/08/05 13:03:58] (.Intel Corporation - Microsoft VC++ redistributables repacked..) -- C:\WINDOWS\Installer\1a13f05b.msi [12840960] =>.Intel Corporation [MD5.7DAA7CF86C6FD551CA00C0A6D90616C7] [WIS][2019/08/05 13:04:08] (.Intel Corporation - Microsoft VC++ redistributables repacked..) -- C:\WINDOWS\Installer\1a13f060.msi [14307328] =>.Intel Corporation [MD5.4C13E33A9B86F239CBA5E21B83A3EE34] [WIS][2019/08/05 13:06:44] (.Intel Corporation - Intel(R) Management Engine Components.) -- C:\WINDOWS\Installer\1a13f065.msi [40297370] =>.Intel Corporation [MD5.568EA52E8D3048CD01C4CC5ED5AFE82C] [WIS][2019/06/07 12:26:50] (.Intel Corporation - Intel(R) Trusted Connect Service Client x64.) -- C:\WINDOWS\Installer\1a13f06a.msi [4087808] =>.Intel Corporation [MD5.09E4075F190CF21CD4F2219C0358627C] [WIS][2019/06/07 12:07:22] (.Intel Corporation - Intel(R) Trusted Connect Service Client x86.) -- C:\WINDOWS\Installer\1a13f06f.msi [10731520] =>.Intel Corporation [MD5.F7D58F0A1685D63EA8CC02FC9E1F7EE4] [WIS][2018/06/13 08:18:06] (.Intel Corporation - Intel(R) Chipset Device Software.) -- C:\WINDOWS\Installer\3e756.msi [1814528] =>.Intel Corporation [MD5.F395E5FBC3417E9419CF622AD2E8B4BE] [WIS][2019/08/07 15:21:42] (.Lenovo - Active Protection System.) -- C:\WINDOWS\Installer\3e75c.msi [13586944] =>.Lenovo [MD5.58AE3B34AF6487AF68944E83E3D2A4C8] [WIS][2017/10/30 11:57:11] (.Foxit Software Inc. - Foxit PhantomPDF.) -- C:\WINDOWS\Installer\48f6c3c.msi [466063360] =>.Foxit Software Inc. [MD5.7949988F071A630540D1C5ED2E61523B] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\546e.msi [1824768] =>.Lenovo [MD5.31218F5779B7D3CE5871F7CC4829506F] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\5476.msi [1977344] =>.Lenovo [MD5.5856231D7E8EEAA526653E437F94B34A] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\547f.msi [292864] =>.Lenovo [MD5.CCC6E8EB0D6D6211A3C5192B1DF5BB39] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\5485.msi [1945088] =>.Lenovo [MD5.D29CE2AE63D4B6A36FDC92A49AE37B31] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\548b.msi [2442240] =>.Lenovo [MD5.9B87A3976110137A0C6D6BA0F67C5656] [WIS][2020/12/28 18:51:18] (.Lenovo.) -- C:\WINDOWS\Installer\5493.msi [1717248] =>.Lenovo [MD5.EEA67CBFC242AF7172521757388B33D2] [WIS][2021/03/31 19:35:18] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\825cd470.msi [1056768] =>.Adobe Systems Incorporated [MD5.7266259658578D1C18F16DE48ED6F58F] [WIS][2017/04/07 10:24:04] (.HP - HP Scan Google Drive destination plugin.) -- C:\WINDOWS\Installer\9c535df.msi [155648] =>.HP [MD5.CFAB1AB2145D6A3DE308F91E28A2CDE6] [WIS][2017/04/07 10:24:05] (.Hewlett Packard - HP DeskJet 4530 series Get product specific.) -- C:\WINDOWS\Installer\9c535e5.msi [159744] =>.Hewlett Packard [MD5.8DCF5C9EAACDAF4568220D103F393DEA] [WIS][2017/09/11 09:46:46] (.Apple Inc. - [ProductName] Installer.) -- C:\WINDOWS\Installer\a052111.msi [2682368] =>.Apple Inc. [MD5.20F4F6F1277C999C008A8F1FFFA03B26] [WIS][2017/04/07 10:23:57] (.HP Inc. - HP DeskJet 4530 series Basic Device Softwar.) -- C:\WINDOWS\Installer\a1bd724.msi [5242880] =>.HP Inc. [MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 09:41:29] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\bb62273.msi [2805760] =>.Adobe Systems Incorporated [MD5.6FC2B6AE922430563DF3EF23B42BB884] [WIS][2017/04/07 10:24:01] (.HP Inc. - Product Improvement Study for HP DeskJet 45.) -- C:\WINDOWS\Installer\f2f97af.msi [290816] =>.HP Inc. [MD5.DB596E2ADC480687F78F34B7D452D2CB] [WIS][2020/03/16 07:28:35] (.Adobe Inc..) -- C:\WINDOWS\Installer\10dc146f.msp [8130560] =>.Adobe Inc. [MD5.D537306701DC986AED8B60693701E29B] [WIS][2021/03/06 07:39:59] (.Adobe Inc..) -- C:\WINDOWS\Installer\11a2d14e.msp [260001792] =>.Adobe Inc. [MD5.59776CD5E3E33907213B1E8249F64A02] [WIS][2020/11/02 07:52:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\144d7e79.msp [20647936] =>.Adobe Inc. [MD5.2EA8602FA7F1CC88E5BB14CC6FCEE714] [WIS][2019/10/14 11:12:32] (.Adobe Inc..) -- C:\WINDOWS\Installer\19468bbb.msp [20799488] =>.Adobe Inc. [MD5.BD4173F416AC180D7AD46CB583BAB949] [WIS][2020/05/21 17:16:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\1f0ea0fa.msp [1392640] =>.Adobe Inc. [MD5.16CD2BA3438D2627805A64D0F4DC063E] [WIS][2020/08/19 12:46:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\1f23e7ce.msp [2781184] =>.Adobe Inc. [MD5.087328C669CBA87A5C045FBBB8C0D580] [WIS][2019/08/21 15:26:42] (.Adobe Inc..) -- C:\WINDOWS\Installer\23075e2c.msp [239988736] =>.Adobe Inc. [MD5.AC729EF5FD5047779136DD8670413E03] [WIS][2020/07/31 04:39:02] (.Adobe Inc..) -- C:\WINDOWS\Installer\243ef833.msp [70844416] =>.Adobe Inc. [MD5.BA664EAE92AA1371BA66F43C703AF5D1] [WIS][2021/04/16 15:01:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\2a31c4be.msp [24084480] =>.Adobe Inc. [MD5.5705BA59CE2D386789436E2C34FC5635] [WIS][2019/12/19 09:53:18] (.Adobe Inc..) -- C:\WINDOWS\Installer\32065c.msp [1863680] =>.Adobe Inc. [MD5.EF167BD45D286A7E38E769B6787DD73F] [WIS][2019/10/17 10:30:59] (.Adobe Inc..) -- C:\WINDOWS\Installer\33157e2a.msp [2490368] =>.Adobe Inc. [MD5.497275FFB9E10B5A29223D2A99322F49] [WIS][2020/02/10 08:01:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\339c3ffd.msp [25227264] =>.Adobe Inc. [MD5.31A1DBE1A433F065C401CD0A73642712] [WIS][2019/11/13 12:16:36] (.Adobe Inc..) -- C:\WINDOWS\Installer\35142d80.msp [1527808] =>.Adobe Inc. [MD5.B2D96888BC6646EBDEEFB59B363FD015] [WIS][2019/12/09 09:07:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\38aafa22.msp [30273536] =>.Adobe Inc. [MD5.7F1419CD81DEB4E238B7F0426B0782B7] [WIS][2020/05/11 07:43:48] (.Adobe Inc..) -- C:\WINDOWS\Installer\3bb36299.msp [50810880] =>.Adobe Inc. [MD5.2CD061E09E48D7EFD5571169C5BB1386] [WIS][2019/10/24 13:03:06] (.Adobe Inc..) -- C:\WINDOWS\Installer\429b63f8.msp [4616192] =>.Adobe Inc. [MD5.B88274DA8D68D49732CC28A328885C98] [WIS][2020/11/23 11:11:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\4b8ce518.msp [6557696] =>.Adobe Inc. [MD5.2AD3AE06875E8C704DA9F109422277CF] [WIS][2020/07/06 13:20:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\4e714250.msp [5853184] =>.Adobe Inc. [MD5.923228256AD8BBCA145AE48027AA92BF] [WIS][2020/06/02 13:40:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\5a94e743.msp [3026944] =>.Adobe Inc. [MD5.0134C922FC332FAF02CA6DD8AC1B1504] [WIS][2021/06/07 07:41:33] (.Adobe Inc..) -- C:\WINDOWS\Installer\5b07a81e.msp [39587840] =>.Adobe Inc. [MD5.6C872B8971E67A78A683FD192919AB70] [WIS][2020/09/23 06:58:22] (.Adobe Inc..) -- C:\WINDOWS\Installer\60cb850.msp [33984512] =>.Adobe Inc. [MD5.F9EE3201972364B9A3B1E1AE6A783CEC] [WIS][2021/04/22 15:15:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\6ed89.msp [23986176] =>.Adobe Inc. [MD5.BC546F5B6982C6159BF159426F96C2F1] [WIS][2021/05/10 08:24:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\74c943f0.msp [3588096] =>.Adobe Inc. [MD5.11F7E4FF1AEFD307E111CA25022CD840] [WIS][2020/12/09 12:35:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\8f63d921.msp [3039232] =>.Adobe Inc. [MD5.9A2096E45C31E139F1999DEFE81748D7] [WIS][2019/05/03 05:43:48] (.Adobe Inc..) -- C:\WINDOWS\Installer\bb62274.msp [244416512] =>.Adobe Inc. ---\\ FEATURE CONTROL. (291) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:FoxitPhantomPDF.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:Activation.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AcqWeb.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HP.EasyStart.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:AppSharingHookController.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SQLDumper.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Common.DBConnection.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:Common.DBConnection64.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:filecompare.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:SPREADSHEETCOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:DATABASECOMPARE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:MSOHTMED.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:AppSharingHookController.exe =>.Legitimate ---\\ OBSERVATEURS des évènements (109) - 20s Application.Warning: Software Protection Platform Service (132) ~Numéro: 1496 ~Date: 07/15/2021 09:11:46 AM ~ID: 8233 ~Description: Le moteur de règles a signalé l’échec d’une tentative d’activation de licences en volume. Motif :0xC004F074 IdApp = %2, IdSku = b322da9c-a2e2-4058-9e4e-f59a6970bd69 Déclencheur=NetworkAvailable ~Suggestion: Aucune Application.Error: VSS (1) ~Numéro: 1454 ~Date: 07/14/2021 10:48:03 PM ~ID: 8194 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’interrogation de l’interface IVssWriterCallback. hr = %1. Cette erreur est souvent due à des paramètres de sécurité incorrects dans le processus du rédacteur ou du demandeur. Opéra ~Suggestion: Localiser les enregistreurs VSS qui se trompent et changer le compte sous lequel ils s'exécutent du service réseau au système local. Ajuster les autorisations d'activation du service COM par défaut Application.Error: SecurityCenter (2) ~Numéro: 1298 ~Date: 07/14/2021 09:31:56 PM ~ID: 17 ~Description: Security Center n'a pas pu valider l'appelant. Erreur %1. Application.Error: Microsoft-Windows-User Profiles Service (5) ~Numéro: 1262 ~Date: 07/14/2021 09:00:20 PM ~ID: 1552 ~Description: La ruche utilisateur est chargée par un autre processus (verrouillage de Registre) Nom du processus : %1, PID : %2, PID ProfSvc : %3. ~Suggestion: Vérifier les paramètres de connexion. Application.Warning: Microsoft-Windows-System-Restore (1) ~Numéro: 867 ~Date: 07/13/2021 07:08:31 PM ~ID: 8303 ~Description: Scoping unsuccessful for shadowcopy %1 with error %2. ~Suggestion: Exécuter la commande chkdsk / f Application.Warning: ESENT (9) ~Numéro: 671 ~Date: 07/12/2021 09:25:45 AM ~ID: 643 ~Description: %1 (%2) %3 Out of date NLS sort version detected on the database '%4' for Locale '%5', index sort version: (SortId=%6, Version=%7), current sort version: (SortId=%8, Version=%9). Application.Warning: Windows Search Service (1) ~Numéro: 379 ~Date: 07/01/2021 04:30:12 PM ~ID: 1008 ~Description: Le service Windows Search démarre et tente de supprimer l’ancien index de recherche {Raison : %2}. Application.Warning: Microsoft-Windows-WMI (45) ~Numéro: 279 ~Date: 07/01/2021 04:28:08 PM ~ID: 63 ~Description: Un fournisseur, %1, a été inscrit dans l’espace de noms Windows Management Instrumentation %2, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de sécurité s’il ne représente pas ~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié. Application.Error: Microsoft-Windows-CAPI2 (1) ~Numéro: 6 ~Date: 07/01/2021 04:21:33 PM ~ID: 257 ~Description: Le service Services de chiffrement n’a pas réussi à initialiser la base de données du catalogue. L’erreur ESENT était : %1. ~Suggestion: Réparer la base de données du catalogue à l'aide d'Esentutl ou créer-en une nouvelle si elle n'est pas réparable System.Warning: DCOM (159) ~Numéro: 1523 ~Date: 07/15/2021 09:16:47 AM ~ID: 10016 ~Description: par défaut de l’ordinateurLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}DESKTOP-UAR7EF0HASNA ELS-1-5-21-403087437-555432991-4230667982-1001LocalHost (avec LRPC)Microsoft.Windows.ShellExperienceHost_10.0.19 ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Error: Microsoft-Windows-WindowsUpdateClient (2) ~Numéro: 1475 ~Date: 07/14/2021 10:08:45 PM ~ID: 20 ~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2. ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Warning: Microsoft-Windows-Kernel-Processor-Power (28) ~Numéro: 1461 ~Date: 07/14/2021 09:47:19 PM ~ID: 37 ~Description: La vitesse du processeur logique Hyper-V %2 est limitée par le microprogramme du système. Le processeur a connu cet état de performances réduites pendant %3 secondes depuis le dernier rapport. System.Warning: e1i65x64 (7) ~Numéro: 1444 ~Date: 07/14/2021 09:46:05 PM ~ID: 27 ~Description: Intel(R) Ethernet Connection (4) I219-LM Network link is disconnected. System.Warning: Microsoft-Windows-Kernel-PnP (6) ~Numéro: 1425 ~Date: 07/14/2021 09:46:01 PM ~ID: 219 ~Description: Le chargement du pilote %5 a échoué pour le périphérique %2. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: Microsoft-Windows-WLAN-AutoConfig (13) ~Numéro: 1385 ~Date: 07/14/2021 09:45:43 PM ~ID: 10003 ~Description: Le module d’extensibilité WLAN s’est arrêté de façon inattendue. Chemin d’accès du module : C:\WINDOWS\system32\IntelIHVRouter06.dll System.Error: Service Control Manager (48) ~Numéro: 1368 ~Date: 07/14/2021 09:45:10 PM ~ID: 7034 ~Description: Le service %1 s’est terminé de façon inattendue pour la %2ème fois. System.Warning: i8042prt (2) ~Numéro: 1147 ~Date: 07/14/2021 08:58:31 PM ~Description: Le périphérique a renvoyé une ou plusieurs réponses incorrectes après une réinitialisation du clavier. System.Warning: Microsoft-Windows-DNS-Client (14) ~Numéro: 998 ~Date: 07/14/2021 03:25:23 PM ~ID: 1014 ~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: Netwtw06 (9) ~Numéro: 997 ~Date: 07/14/2021 03:25:06 PM ~ID: 6000 ~Description: 6000 - BSS missed beacons. This event is info event which is used for debug purposes only. System.Error: disk (1) ~Numéro: 610 ~Date: 07/11/2021 11:08:12 PM ~ID: 11 ~Description: Le pilote a détecté une erreur du contrôleur sur %1. ---\\ SCAN ADDITIONNEL (149) - 6s HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA} =>.SUP.Orphan HKLM\Software\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA} =>.SUP.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA} =>.SUP.Orphan HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA} =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} =>.SUP.Orphan HKLM\Software\Classes\lnkfile\shellex\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PowerISO =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PowerISO =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 =>.SUP.Orphan [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{2D1B2E1F-BA6B-4B95-A835-2B501D95079A} =>HackTool.KMSpico [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{CDF2D280-4B06-4E7E-82A3-512F8B086591} =>HackTool.KMSpico [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{437B56D9-069D-43E1-A699-247795520612} =>HackTool.KMSpico [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{A22C6785-36A1-4E75-B636-622F7645EFF1} =>HackTool.KMSpico [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{17548DF0-A762-4EB4-A7D2-BF8F89642615} =>HackTool.KMSpico [HKLM\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\firewallRules]:{82583F46-79AB-4AA6-847F-AF8810ABFA5A} =>HackTool.KMSpico C:\Users\zikas\AppData\Local\Temp\mat-debug-10076.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-10164.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-10444.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-10520.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-10568.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11076.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11220.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11228.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11260.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11296.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11424.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11536.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11680.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11772.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11924.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11932.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-11988.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-12260.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-12264.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-12272.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-12356.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-12368.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-12472.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-12476.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-12536.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-12604.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-12664.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-13008.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-13036.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-13064.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-13392.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-1360.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-13600.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-13912.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-14672.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-14692.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-14816.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-14872.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-15284.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-1532.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-1704.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-1760.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-1888.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-1960.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-2028.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-2144.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-2840.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-2844.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-2952.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3036.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3080.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3232.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3252.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3400.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3404.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3412.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3416.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3568.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3724.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3784.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3840.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-396.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-3984.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-404.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-4056.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-436.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-4768.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-4864.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-4948.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-512.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-5456.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-5572.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-5792.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-5840.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-5892.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-6096.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-6180.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-6388.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-6804.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-6872.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-6876.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-6912.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-6988.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-7284.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-7600.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-7680.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-7688.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-7772.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-8092.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-8116.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-8196.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-8232.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-8296.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-8452.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-8616.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-8752.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-8968.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-924.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-9272.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-9604.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-9608.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-9744.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Temp\mat-debug-9980.log =>.SUP.Temporary.Microsoft C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\090 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\126 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\127 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\128 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\129 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\130 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\131 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\132 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\133 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\134 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\135 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\136 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\137 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\138 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\139 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\140 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\141 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\142 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\143 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\144 =>.SUP.Temporary.Chrome C:\Users\zikas\AppData\Local\Google\Chrome\User Data\Default\File System\145 =>.SUP.Temporary.Chrome HKLM\SOFTWARE\POLICIES\Mozilla\Firefox =>.SUP.FirefoxRestriction [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\Setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\Setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\zikas\Desktop\adwcleaner_8.3.0.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\zikas\Desktop\adwcleaner_8.3.0.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-403087437-555432991-4230667982-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\Setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-403087437-555432991-4230667982-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:E:\Setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-403087437-555432991-4230667982-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\zikas\Desktop\adwcleaner_8.3.0.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-403087437-555432991-4230667982-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\zikas\Desktop\adwcleaner_8.3.0.exe.ApplicationCompany =>.SUP.Orphan.MUICache ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (8) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/02/16/hacktool-kmspico/ =>HackTool.KMSpico https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Microsoft https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Chrome https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.FirefoxRestriction https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [011F39A2261A993DD15176DA6FE4FBEA] [25/01/2021] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [28/05/2021] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroBroker.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [28/05/2021] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc. [019BB53DD06F10B3DBA82E8D3FAF6588] [02/06/2020] (.Dolby Laboratories, Inc..) - C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe =>.Dolby Laboratories, Inc. [0320BE3EB866526927F999B97B04346E] [11/10/2018] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RtsPer.sys =>.Realtek Semiconductor Corp. [03EC0C9015079FAB8A6F3FC9F839311C] [02/06/2021] (.AVG Technologies USA, LLC.) - C:\Program Files\AVG\Antivirus\wsc_proxy.exe =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgArDisk.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgArPot.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgbidsdriver.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgbidsh.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgbuniv.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgKbd.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgMonFlt.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgNetHub.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgRdr2.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgRvrt.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgSnx.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgSP.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgStm.sys =>.AVG Technologies USA, LLC [03EC0C9015079FAB8A6F3FC9F839311C] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\WINDOWS\System32\drivers\avgVmm.sys =>.AVG Technologies USA, LLC [044E3BF58976880FFD074448A8F7A058] [14/07/2021] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation [045D9B6716C516EF45A1216DFD9F3060] [21/07/2020] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe =>.Realtek Semiconductor Corp. [04DF4D56733AE38D598EA004DD2D9C51] [21/07/2020] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp. [04DF4D56733AE38D598EA004DD2D9C51] [21/07/2020] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp. [0511EAF8579E2662BE622DE5AE0CD408] [06/01/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0511EAF8579E2662BE622DE5AE0CD408] [06/01/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0511EAF8579E2662BE622DE5AE0CD408] [06/01/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation [063D0C011B143C57893FE839779AFCD0] [21/07/2020] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp. [0679EADE0961C2DA9D3AA8B7464DF8F0] [20/06/2021] (.Lenovo (Beijing) Limited.) - C:\Users\zikas\AppData\Local\LenovoServiceBridge\5.0.2.4\LSBUpdate.exe =>.Not verified [06AEA76BAC46A9E8CFE6D29E45AAF033] [21/04/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler.exe =>.Google LLC [06AEA76BAC46A9E8CFE6D29E45AAF033] [21/04/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler64.exe =>.Google LLC [06C5078AA528BBD3B8668AB10B035F94] [19/11/2019] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\Uninstall.exe =>.Tonec Inc. [06C5078AA528BBD3B8668AB10B035F94] [28/11/2019] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\IDMIECC64.dll =>.Tonec Inc. [073499E1104F5E75E721A7F15473BB1F] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\Program Files\AVG\Antivirus\ashShell.dll =>.AVG Technologies USA, LLC [073499E1104F5E75E721A7F15473BB1F] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\Program Files\AVG\Antivirus\aswEngSrv.exe =>.AVG Technologies USA, LLC [073499E1104F5E75E721A7F15473BB1F] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\Program Files\AVG\Antivirus\aswidsagent.exe =>.AVG Technologies USA, LLC [073499E1104F5E75E721A7F15473BB1F] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\Program Files\AVG\Antivirus\AVGSvc.exe =>.AVG Technologies USA, LLC [073499E1104F5E75E721A7F15473BB1F] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\Program Files\AVG\Antivirus\avgToolsSvc.exe =>.AVG Technologies USA, LLC [073499E1104F5E75E721A7F15473BB1F] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\Program Files\AVG\Antivirus\AvLaunch.exe =>.AVG Technologies USA, LLC [073499E1104F5E75E721A7F15473BB1F] [26/06/2021] (.AVG Technologies USA, LLC.) - C:\Program Files\AVG\Antivirus\setup\instup.exe =>.AVG Technologies USA, LLC [073499E1104F5E75E721A7F15473BB1F] [30/06/2021] (.AVG Technologies USA, LLC.) - C:\Program Files\AVG\Antivirus\AVGUI.exe =>.AVG Technologies USA, LLC [08059B3E593E584D45F048DD80D7EF83] [07/05/2021] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\dpinst.exe =>.Not verified [08059B3E593E584D45F048DD80D7EF83] [07/05/2021] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Not verified [08059B3E593E584D45F048DD80D7EF83] [07/05/2021] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Not verified [08059B3E593E584D45F048DD80D7EF83] [07/05/2021] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPHelper.exe =>.Not verified [08059B3E593E584D45F048DD80D7EF83] [07/05/2021] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys =>.Not verified [08059B3E593E584D45F048DD80D7EF83] [07/05/2021] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\Smb_driver_Intel.sys =>.Not verified [08059B3E593E584D45F048DD80D7EF83] [07/05/2021] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys =>.Not verified [08059B3E593E584D45F048DD80D7EF83] [07/05/2021] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\SynRMIHID_Aux.sys =>.Not verified [08059B3E593E584D45F048DD80D7EF83] [07/05/2021] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys =>.Not verified [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisPlugins\mbam_scanresults_r03_drawer.2.0.0.x64.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_scanresults_expt-194a.1.0.0.x64.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\TrayPlugin.ELXR-15-CU37.x64.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\TrayPlugin.ELXR-15-CU37-CONTROL.x64.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\UIPlugin.ELXR-22-CU37.x64.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\WINDOWS\System32\drivers\mbae64.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [14/07/2021] (.Malwarebytes Inc.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc [09597E6236AF8128F0B7BE7B37BD3363] [14/12/2020] (.HP Inc..) - C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe =>.HP Inc. [0A40E89815E6F8C9470558D093D702D4] [05/09/2018] (.Dolby Laboratories, Inc..) - C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDax2Acknowledgement.exe =>.Dolby Laboratories, Inc. [0A9F96AABFB5DAC0F29F565D33FF1AF6] [13/08/2020] (.Wondershare Technology Co.,Ltd.) - C:\Program Files (x86)\Wondershare\Wondershare Filmora (CPC)\Wondershare Filmora9.exe =>.Wondershare Technology Co.,Ltd [0C15BE4A15BB0903C901B1D6C265302F] [23/06/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.124\elevation_service.exe =>.Google LLC [0C15BE4A15BB0903C901B1D6C265302F] [23/06/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC [0C15BE4A15BB0903C901B1D6C265302F] [30/06/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.124\Installer\chrmstp.exe =>.Google LLC [0C15BE4A15BB0903C901B1D6C265302F] [30/06/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\91.0.4472.124\Installer\setup.exe =>.Google LLC [0C15BE4A15BB0903C901B1D6C265302F] [30/06/2021] (.Google LLC.) - C:\Users\zikas\AppData\Local\Google\Chrome\User Data\SwReporter\91.265.200\software_reporter_tool.exe =>.Google LLC [1044F31AE1F93A0BB95F19AB9FAAC6BB] [11/07/2021] (.ESET, spol. s r.o..) - C:\Users\zikas\AppData\Local\Google\Chrome\User Data\SwReporter\91.265.200\em000_64.dll =>.ESET, spol. s r.o. [1044F31AE1F93A0BB95F19AB9FAAC6BB] [11/07/2021] (.ESET, spol. s r.o..) - C:\Users\zikas\AppData\Local\Google\Chrome\User Data\SwReporter\91.265.200\em001_64.dll =>.ESET, spol. s r.o. [14F8FDD167F92402B1570B5DC495C815] [07/08/2019] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc [1537ED00F30815454EFABF96F7C65DC6] [11/07/2021] (.LENOVO.) - C:\ProgramData\Lenovo\SystemUpdate\sessionSE\Repository\fwnva44\fwchksd.exe =>.LENOVO [1537ED00F30815454EFABF96F7C65DC6] [26/06/2021] (.LENOVO.) - C:\ProgramData\Lenovo\SystemUpdate\sessionSE\Repository\r0gmu17w\mefwdetect.exe =>.LENOVO [15FD12F3570F88CD1524BE078088F38D] [18/06/2018] (.Fibocom Wireless Inc..) - C:\WINDOWS\System32\drivers\FlashUSB.sys =>.Not verified [19FE2B7721886C7BCAC1364C90CD7FA9] [13/07/2018] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys =>.Synaptics Incorporated [1F3216F428F850BE2C66CAA056F6D821] [09/11/2020] (.Telegram FZ-LLC.) - C:\Users\zikas\AppData\Roaming\Telegram Desktop\Telegram.exe =>.Telegram FZ-LLC [2A7539E1AA31443B3FD24C3BD9402239] [20/04/2021] (.Lenovo.) - C:\Windows\SysWOW64\EasyResume.exe =>.Lenovo [33000002198C0A9FB2162B10E6000000000219] [14/07/2021] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Not verified [33E605BDE033C95F69D21384E7BC30AD] [17/06/2016] (.LENOVO.) - C:\Program Files\DIFX\5D469965B393E0BC\dpinst.exe =>.LENOVO [36AC037AA81D63FD] [21/10/2017] (.Foxit Software Incorporated.) - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll =>.Foxit Software Incorporated [36AC037AA81D63FD] [21/10/2017] (.Foxit Software Incorporated.) - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll =>.Foxit Software Incorporated [36AC037AA81D63FD] [29/10/2017] (.Foxit Software Incorporated.) - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\FoxitConnectedPDFService.exe =>.Foxit Software Incorporated [4BEAF82E370174DB5D5A9EB61F76860E] [01/03/2021] (.Lenovo.) - C:\WINDOWS\System32\drivers\ibmpmdrv.sys =>.Not verified [4BEAF82E370174DB5D5A9EB61F76860E] [01/03/2021] (.Lenovo.) - C:\WINDOWS\System32\drivers\pmdrvs.sys =>.Not verified [4BEAF82E370174DB5D5A9EB61F76860E] [01/03/2021] (.Lenovo.) - C:\WINDOWS\System32\ibmpmsvc.exe =>.Not verified [4BEAF82E370174DB5D5A9EB61F76860E] [01/03/2021] (.Lenovo.) - C:\WINDOWS\System32\LPlatSvc.exe =>.Not verified [4D1655211A87A6AEF116FB8EB800C138] [28/12/2020] (.Lenovo.) - C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\shtctky.exe =>.Lenovo [4D1655211A87A6AEF116FB8EB800C138] [28/12/2020] (.Lenovo.) - C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\tphkload.exe =>.Lenovo [4D1655211A87A6AEF116FB8EB800C138] [28/12/2020] (.Lenovo.) - C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\tpnumlkd.exe =>.Lenovo [4D1655211A87A6AEF116FB8EB800C138] [28/12/2020] (.Lenovo.) - C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_700aca387f1cbd51\driver\tposd.exe =>.Lenovo [529E3F9FCF7D58D520D607AB74395002] [27/04/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\Rar.exe =>.win.rar GmbH [529E3F9FCF7D58D520D607AB74395002] [27/04/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\RarExt.dll =>.win.rar GmbH [529E3F9FCF7D58D520D607AB74395002] [27/04/2019] (.win.rar GmbH.) - C:\Program Files\WinRAR\uninstall.exe =>.win.rar GmbH [537D312C9B726AD4B1055483B4D1AED4] [25/04/2018] (.Synaptics Inc..) - C:\WINDOWS\System32\DRIVERS\smi.sys =>.Not verified [56000001EE3BA2C54562F3593C0000000001EE] [19/12/2018] (.Intel(R) Rapid Storage Technology.) - C:\WINDOWS\System32\drivers\iaStorAC.sys =>.Intel(R) Rapid Storage Technology [56000002143D5BA1B4E496B7C1000000000214] [07/08/2019] (.Intel(R) Software and Firmware Products.) - C:\ProgramData\Package Cache\{eb0d4a41-3065-42b0-a868-c60d42d3ea98}\SetupChipset.exe =>.Intel(R) Software and Firmware Products [560000082B1E36C56B00276A8A00000000082B] [05/08/2019] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group [560000082B1E36C56B00276A8A00000000082B] [05/08/2019] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\ProgramData\Intel\Package Cache\{1CEAC85D-2590-4760-800F-8DE5E91F3700}\Setup.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group [560000082B1E36C56B00276A8A00000000082B] [16/08/2020] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe =>.Intel(R) Embedded Subsystems and IP Blocks Group [560000082B1E36C56B00276A8A00000000082B] [16/12/2020] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\system32\drivers\pmxdrv.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group [560000088689EFB89169C165B1000000000886] [02/10/2019] (.Intel(R) Trust Services.) - C:\ProgramData\Package Cache\{05817e4d-5f15-49b4-afec-7edb31fc7dd6}\iclsClientInstaller.exe =>.Intel(R) Trust Services [560000088689EFB89169C165B1000000000886] [22/04/2020] (.Intel(R) Trust Services.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\SocketHeciServer.exe =>.Intel(R) Trust Services [560000088689EFB89169C165B1000000000886] [22/04/2020] (.Intel(R) Trust Services.) - C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\TPMProvisioningService.exe =>.Intel(R) Trust Services [5600000BF5F350B283A372355D000000000BF5] [13/07/2020] (.Intel(R) Wireless Connectivity Solutions.) - C:\Windows\System32\DriverStore\FileRepository\ibtusb.inf_amd64_8a82f0a43b25313f\ibtusb.sys =>.Intel(R) Wireless Connectivity Solutions [5600000C3BF9A3682289A06F40000000000C3B] [11/12/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\igdkmd64.sys =>.Intel(R) pGFX 2020 [5600000C3BF9A3682289A06F40000000000C3B] [11/12/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\igfxCUIService.exe =>.Intel(R) pGFX 2020 [5600000C3BF9A3682289A06F40000000000C3B] [11/12/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\igfxEM.exe =>.Intel(R) pGFX 2020 [5600000C3BF9A3682289A06F40000000000C3B] [11/12/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\IntelCpHDCPSvc.exe =>.Intel(R) pGFX 2020 [5600000C3BF9A3682289A06F40000000000C3B] [11/12/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_4a8c83f7e646bfcf\IntelCpHeciSvc.exe =>.Intel(R) pGFX 2020 [5600000C3BF9A3682289A06F40000000000C3B] [11/12/2020] (.Intel(R) pGFX 2020.) - C:\Windows\System32\DriverStore\FileRepository\intcdaud.inf_amd64_1b570d7b9a790b1a\IntcDAud.sys =>.Intel(R) pGFX 2020 [5600000C970A207F2C4F00043D000000000C97] [25/02/2021] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\Windows\System32\DriverStore\FileRepository\heci.inf_amd64_605dda426937489f\x64\TeeDriverW10x64.sys =>.Not verified [5AF2443AABE66BA82D1AC56DF4F28C0C] [05/10/2017] (.Lenovo.) - C:\Program Files\ThinkPad\TpShocks\RegSet.exe =>.Lenovo [5CCAA82369A26AEE30D017616B1CEB69] [12/09/2017] (.Wondershare Technology Co.,Ltd.) - C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe =>.Wondershare Technology Co.,Ltd [5CEDE7AC650B17BD4C84DD1A5835338A] [11/07/2021] (.Lenovo.) - C:\ProgramData\Lenovo\SystemUpdate\sessionSE\Repository\fhybd22\fhybd22_version.exe =>.Not verified [5FA2A6E514B187C52E1FEA5240CB04E9] [30/08/2011] (.Apple Inc..) - C:\Program Files (x86)\Bonjour\mDNSResponder.exe =>.Apple Inc. [5FA2A6E514B187C52E1FEA5240CB04E9] [30/08/2011] (.Apple Inc..) - C:\Program Files\Bonjour\mDNSResponder.exe =>.Apple Inc. [65628C146ACE93037FC58659F14BD35F] [11/07/2021] (.ESET, spol. s r.o..) - C:\Users\zikas\AppData\Local\Google\Chrome\User Data\SwReporter\91.265.200\edls_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [11/07/2021] (.ESET, spol. s r.o..) - C:\Users\zikas\AppData\Local\Google\Chrome\User Data\SwReporter\91.265.200\em002_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [11/07/2021] (.ESET, spol. s r.o..) - C:\Users\zikas\AppData\Local\Google\Chrome\User Data\SwReporter\91.265.200\em003_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [11/07/2021] (.ESET, spol. s r.o..) - C:\Users\zikas\AppData\Local\Google\Chrome\User Data\SwReporter\91.265.200\em004_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [11/07/2021] (.ESET, spol. s r.o..) - C:\Users\zikas\AppData\Local\Google\Chrome\User Data\SwReporter\91.265.200\em005_64.dll =>.ESET, spol. s r.o. [67CC23E6139FA8BAA7413533BD22806E] [20/03/2017] (.Lenovo.) - C:\WINDOWS\System32\DRIVERS\ApsHM64.sys =>.Lenovo [67CC23E6139FA8BAA7413533BD22806E] [20/03/2017] (.Lenovo.) - C:\WINDOWS\System32\DRIVERS\Apsx64.sys =>.Lenovo [67CC23E6139FA8BAA7413533BD22806E] [20/04/2021] (.Lenovo.) - C:\WINDOWS\System32\drivers\Tppwr64v.sys =>.Lenovo [738E0B963A4DB08231F49F664AF83E5B] [06/04/2017] (.Hewlett Packard.) - C:\Program Files\HP\HP DeskJet 4530 series\Bin\DeviceSetup.exe =>.Hewlett Packard [738E0B963A4DB08231F49F664AF83E5B] [06/04/2017] (.Hewlett Packard.) - C:\Program Files\HP\HP DeskJet 4530 series\Bin\HPNetworkCommunicatorCom.exe =>.Hewlett Packard [738E0B963A4DB08231F49F664AF83E5B] [06/04/2017] (.Hewlett Packard.) - C:\Program Files\HP\HP DeskJet 4530 series\Bin\ScanToPCActivationApp.exe =>.Hewlett Packard [7828C7315808BC8717710E13FA3C0B24] [02/05/2019] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\IDMShellExt64.dll =>.Tonec Inc. [7828C7315808BC8717710E13FA3C0B24] [20/05/2016] (.Tonec Inc..) - C:\Program Files (x86)\Internet Download Manager\IEMonitor.exe =>.Tonec Inc. [7828C7315808BC8717710E13FA3C0B24] [20/12/2018] (.Tonec Inc..) - C:\WINDOWS\System32\DRIVERS\idmwfp.sys =>.Tonec Inc. ~ Unselected Options: ~ End of the scan, 10204 items in 04mn00s (2605)(0)