~ ZHPDiag v2021.10.27.335 Par Nicolas Coolman (2021/10/27) ~ Démarré par Frances (Administrator) (2021/10/31 17:43:43) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: ~ Mode: Scanner ~ Rapport: C:\Users\Frances\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Frances\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 8.1, 64-bit (Build 9600) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (1) - 0s ~ MSIE: Internet Explorer v11.0.9600.17905 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, OEM_DM channel Windows ID Activation : OK ~ Windows Partial Key : 3RQ2D Windows License : OK ~ Windows Remaining Initializations Number : 999 Windows Automatic Updates : KO ---\\ LOGICIELS DE PROTECTION (1) - 0s Malwarebytes version 4.4.9.142 v4.4.9.142 (Protection) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: AMD64 Family 22 Model 48 Stepping 1, AuthenticAMD ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 7299.34 MB (81% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 797 GB (87%) free of 911 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: ELODIE ~ User Name: Frances ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (3) - 0s ~ Drive C: has 797 GB free of 911 GB (System) ~ Drive D: has 23 GB free of 25 GB ~ Drive E: has GB free of 0 GB ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (11) - 0s [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiSpywareOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] AntiVirusOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Security Center\Svc] FirewallOverride: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install] LastSuccessTime : OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 1s [MD5.ED6B4C95E2A6D67480B9DBB8A8E7D9B4] - 27/08/2016 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [2755504] =>.Microsoft® [MD5.6C308D32AFA41D26CE2A0EA8F7B79565] - 29/10/2014 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [54784] [Unsigned] =>.Microsoft Corporation [MD5.A570A64292214C43E0BA50E6A72A6380] - 29/10/2014 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [145920] [Unsigned] =>.Microsoft Corporation [MD5.98C6A46E9E2822BF83196C2EAE43DBD4] - 15/06/2015 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [2427392] [Unsigned] =>.Microsoft Corporation [MD5.EC498BAE1F0D3E0E401C963F8D76C437] - 29/10/2014 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [572416] [Unsigned] =>.Microsoft Corporation [MD5.AFCAB4DC692CCE37E283B00E2D7B438F] - 18/03/2014 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [447488] [Unsigned] =>.Microsoft Corporation [MD5.0B082D6D7A53D91678E7409DD145E89C] - 05/11/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [657920] [Unsigned] =>.Microsoft Corporation [MD5.205BDB00F4C032AF45A6BFD18EA7886C] - 05/11/2014 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [498688] [Unsigned] =>.Microsoft Corporation [MD5.F3F60C88A6BBC8D0C68FE5B1C91181AF] - 13/05/2016 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3667968] [Unsigned] =>.Microsoft Corporation [MD5.E37F897ED7B5AFF79B1398258DB96BD9] - 26/08/2014 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19456] [Unsigned] =>.Microsoft Corporation [MD5.374E27295F0A9DCAA8FC96370F9BEEA5] - 30/05/2014 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [563200] [Unsigned] =>.Microsoft Corporation [MD5.74B14192CF79A72F7536B27CB8814FBD] - 22/08/2013 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [26464] [Unsigned] =>.Microsoft Corporation [MD5.2FA6510E33F7DEFEC03658B74101A9B9] - 22/08/2013 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [88576] [Unsigned] =>.Microsoft Corporation [MD5.C6796EA22B513E3457514D92DCDB1A3D] - 22/08/2013 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [164352] [Unsigned] =>.Microsoft Corporation [MD5.5408A71E47FF21E357192FD4126B3002] - 06/05/2016 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [138240] [Unsigned] =>.Microsoft Corporation [MD5.D4B7ED39C7900384D9E5C1283F1E7926] - 24/07/2014 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [76800] [Unsigned] =>.Microsoft Corporation [MD5.49EE0AE9E5B64FFBBD06D55C4984B598] - 04/11/2014 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] [Unsigned] =>.Microsoft Corporation [MD5.B7342B3C58E91107F6E946A93D9D4EFD] - 18/03/2014 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [142848] [Unsigned] =>.Microsoft Corporation [MD5.5DCD41F62F71519D2A46D41F60C69B0C] - 06/04/2016 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [401920] [Unsigned] =>.Microsoft Corporation [MD5.9DC17B7D9D84C37C102D379FCC7D4942] - 14/05/2016 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [281088] [Unsigned] =>.Microsoft Corporation [MD5.7F68063A5A0461E02BC860CE0E6BFDDC] - 15/10/2014 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792] [Unsigned] =>.Microsoft Corporation [MD5.764B1121867B2D9B31C491668AC72B2B] - 22/08/2013 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [94208] [Unsigned] =>.Microsoft Corporation [MD5.1BD3022FD6E450B00DE560265638FD2A] - 08/11/2014 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112640] [Unsigned] =>.Microsoft Corporation [MD5.680C1DAE268B6FB67FA21B389A8B79EF] - 18/03/2014 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] [Unsigned] =>.Microsoft Corporation [MD5.FFF28F9F6823EB1756C60F1649560BBF] - 22/08/2013 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [107520] [Unsigned] =>.Microsoft Corporation [MD5.64CA2B4A49A8EAF495E435623ECCE7DB] - 19/06/2014 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [310080] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (61) - 2s O23 - Service: (AMD External Events Utility) . (.AMD - AMD External Events Service Module.) - C:\WINDOWS\System32\atiesrxx.exe [Unsigned] =>.AMD O23 - Service: AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc. - Service Fusion Utility.) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [Unsigned] =>.Advanced Micro Devices, Inc. O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Service d’infrastructure des tâches en arri.) - C:\WINDOWS\System32\bisrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: BTDevManager (BTDevManager) . (.Realtek All Rights Reserved - Realtek Bluetooth BTDevManager Service Appl.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe [Unsigned] =>.Realtek All Rights Reserved O23 - Service: Service Démarrer en clic Microsoft Office (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run.) - C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc. - Conexant Audio Message Service.) - C:\WINDOWS\system32\CxAudMsg64.exe [Unsigned] =>.Conexant Systems Inc. O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\UtcResources.dll (DiagTrack) . (.Microsoft Corporation - Microsoft Windows Diagnostics Tracking.) - C:\WINDOWS\System32\diagtrack.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\efssvc.dll (EFS) . (.Microsoft Corporation - Local Security Authority Process.) - C:\WINDOWS\System32\lsass.exe [Unsigned] =>.Microsoft Corporation O23 - Service: Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation - Epson Scanner Service (64bit).) - C:\WINDOWS\system32\EscSvc64.exe [Unsigned] =>.Seiko Epson Corporation O23 - Service: Elan Service (ETDService) . (.ELAN Microelectronics Corp. - Elan Service.) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation® O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\WINDOWS\System32\ikeext.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Lenovo System Agent Service (Lenovo System Agent Service) . (.LENOVO INCORPORATED. - Lenovo System Agent Service.) - C:\Program Files\Lenovo\iMController\SystemAgentService.exe =>.LENOVO® O23 - Service: Lenovo WiFiHotspot Service (LenovoWiFiHotspotSvr) . (.Lenovo(beijing) Limited - Lenovo WiFiHotspot.) - C:\Windows\System32\LenovoWiFiHotspotSvr.exe [Unsigned] =>.Lenovo(beijing) Limited O23 - Service: C:\WINDOWS\System32\lmhsvc.dll (lmhosts) . (.Microsoft Corporation - DLL des services de transport NetBIOS sur T.) - C:\WINDOWS\System32\lmhsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: LUService (LUService) . (.Lenovo(beijing) Limited - Lenovo Updates Service.) - C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe =>.Lenovo® O23 - Service: C:\WINDOWS\System32\mmcss.dll (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) - C:\WINDOWS\System32\mmcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\FirewallAPI.dll (MpsSvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: NitroPDFDriverCreatorReadSpool9 (NitroDriverReadSpool9) . (.Nitro PDF Software - Nitro PDF Spool Service.) - C:\Program Files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe =>.Nitro PDF Software® O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd. - This service enables products that use the.) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro PDF Software® O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\pcasvc.dll (PcaSvc) . (.Microsoft Corporation - Service de l’Assistant Compatibilité des pr.) - C:\WINDOWS\System32\pcasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Lenovo PhoneCompanionPusher Service (PhoneCompanionPusher) . (.Lenovo - PhoneCompanionPusher.) - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe =>.Lenovo (Beijing) Limited® O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.CyberLink - RichVideo Module.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink® O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Conexant SmartAudio service (SAService) . (...) - C:\Windows\System32\SASrv.exe (.not file.) =>.Conexant Systems, Inc. O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de service Superfetch.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: (tbaseprovisioning) . (.Advanced Micro Devices, Inc. - tbaseprovisioning.) - C:\Windows\SysWOW64\tbaseprovisioning.exe [Unsigned] =>.Advanced Micro Devices, Inc. O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: VeriFaceSrv (VeriFaceSrv) . (.Lenovo (Beijing) Limited - .) - C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe =>.Lenovo (Beijing) Limited® O23 - Service: vgSHDaF (vgSHDaF) . (...) - C:\ProgramData\tMwuRY\vgSHDaF.exe (.not file.) O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wlansvc.dll (WlanSvc) . (.Microsoft Corporation - DLL du service de configuration automatique.) - C:\WINDOWS\System32\wlansvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (80) - 7s SR - Boot [22/08/2013] [ 108896] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Demand [26/08/2014] [ 35576] Lenovo Virtual Power Controlle (ACPIVPC) . (.Lenovo Corporation.) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.Lenovo (Beijing) Limited® SR - Boot [22/08/2013] [ 782176] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Auto [19/04/2014] [ 239616] (AMD External Events Utility) . (.AMD.) - C:\WINDOWS\System32\atiesrxx.exe [Unsigned] =>.AMD SR - Auto [18/04/2014] [ 344064] AMD FUEL Service (AMD FUEL Service) . (.Advanced Micro Devices, Inc..) - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [Unsigned] =>.Advanced Micro Devices, Inc. SR - Demand [24/02/2014] [ 85704] AMD Kernel Mode CSP Service (amdkmcsp) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\DRIVERS\amdkmcsp.sys =>.Advanced Micro Devices, Inc.® SR - Demand [19/04/2014] [13269504] (amdkmdag) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\DRIVERS\atikmdag.sys [Unsigned] =>.Advanced Micro Devices, Inc. SR - Demand [19/04/2014] [ 625152] (amdkmdap) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\DRIVERS\atikmpag.sys [Unsigned] =>.Advanced Micro Devices, Inc. SR - Boot [12/12/2013] [ 36608] AMD PCI Root Bus Lower Filter (amdkmpfd) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc.® SR - Boot [22/08/2013] [ 79200] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [22/08/2013] [ 259424] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [22/08/2013] [ 25952] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Boot [21/03/2014] [ 81608] (amd_sata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amd_sata.sys =>.Advanced Micro Devices, Inc.® SR - Boot [21/03/2014] [ 23752] (amd_xata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amd_xata.sys =>.Advanced Micro Devices, Inc.® SR - Demand [06/09/2011] [ 31744] ADB Interface DriverNet (andnetadb) . (.Google Inc.) - C:\WINDOWS\System32\Drivers\lgandnetadb.sys [Unsigned] =>.Google Inc SR - Demand [06/09/2011] [ 29184] LGE AndroidNet USB Serial Po (AndNetDiag) . (.LG Electronics Inc..) - C:\WINDOWS\System32\DRIVERS\lgandnetdiag64.sys [Unsigned] =>.LG Electronics Inc. SR - Demand [06/09/2011] [ 35840] LGE AndroidNet USB Modem (ANDNetModem) . (.LG Electronics Inc..) - C:\WINDOWS\System32\DRIVERS\lgandnetmodem64.sys [Unsigned] =>.LG Electronics Inc. SR - Demand [16/09/2011] [ 93184] LGE AndroidNet NDIS Et (andnetndis) . (.LG Electronics Inc..) - C:\WINDOWS\System32\DRIVERS\lgandnetndis64.sys [Unsigned] =>.LG Electronics Inc. SR - Auto [01/11/2013] [ 224992] AppEx Networks Accelerat (APXACC) . (.AppEx Networks Corporation.) - C:\WINDOWS\System32\DRIVERS\appexDrv.sys =>.AppEx Networks Corporation® SR - Boot [22/08/2013] [ 114016] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Demand [11/03/2014] [ 222720] AMD Function Driver fo (AtiHDAudioService) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\AtihdWB6.sys [Unsigned] =>.Advanced Micro Devices SR - Boot [22/08/2013] [ 531296] Broadcom NetXtreme II VBD (b06bdrv) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [13/08/2013] [ 17624] bcmfn2 Service (bcmfn2) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bcmfn2.sys =>.Broadcom Corporation® SR - Auto [22/01/2014] [ 84992] BTDevManager (BTDevManager) . (.Realtek All Rights Reserved.) - C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe [Unsigned] =>.Realtek All Rights Reserved SR - Demand [27/01/2014] [ 1474240] Conexant UA (CnxtHdAudService) . (.Conexant Systems Inc..) - C:\WINDOWS\System32\drivers\CHDRT64.sys =>.Conexant Systems, Inc.® SR - Auto [25/07/2013] [ 206552] @C:\WINDOWS\system32\CxAudMsg64.exe,-100 (CxAudMsg) . (.Conexant Systems Inc..) - C:\WINDOWS\system32\CxAudMsg64.exe =>.Conexant Systems, Inc.® SR - Demand [22/01/2014] [ 108800] SAMSUNG Mobile USB Com (dg_ssudbus) . (.DEVGURU Co., LTD.(www.devguru.co.kr).) - C:\WINDOWS\System32\DRIVERS\ssudbus.sys =>.DEVGURU CO LTD® SR - Demand [18/06/2013] [ 460288] Intel(R) PRO/10 (e1iexpress) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\e1i63x64.sys [Unsigned] =>.Intel Corporation SR - Boot [22/08/2013] [ 3357024] Broadcom NetXtreme II 10 GigE (ebdrv) . (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Auto [13/01/2016] [ 145224] Epson Scanner Service (EpsonScanSvc) . (.Seiko Epson Corporation.) - C:\WINDOWS\system32\EscSvc64.exe =>.SEIKO EPSON CORPORATION® SR - Demand [11/02/2014] [ 377608] ELAN PS/2 Port Input Device (ETD) . (.ELAN Microelectronics Corp..) - C:\WINDOWS\System32\DRIVERS\ETD.sys =>.ELAN Microelectronics Corporation® SR - Auto [09/10/2013] [ 99632] Elan Service (ETDService) . (.ELAN Microelectronics Corp..) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation® SR - Boot [22/08/2013] [ 64352] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [30/07/2013] [ 24568] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Software and Firmware Products® SR - Demand [25/07/2013] [ 99320] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys =>.Intel Corporation - Software and Firmware Products® SR - Boot [10/08/2013] [ 651248] Intel(R) SATA RAID Cont (iaStorAV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAV.sys =>.Intel Corporation - Intel® Rapid Storage Technology® SR - Boot [22/08/2013] [ 412000] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SS - Demand [22/10/2004] [ 73728] InstallDriver Table Manager (IDriverT) . (.Macrovision Corporation.) - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [Unsigned] =>.Macrovision Corporation SS - Demand [03/06/2014] [ 533760] Lenovo EasyPlus Hotspot (Lenovo EasyPlus Hotspot) . (.Lenovo.) - C:\Program Files (x86)\Common Files\LENOVO\easyplussdk\bin\EPHotspot64.exe =>.LENOVO® SR - Auto [21/05/2014] [ 584960] Lenovo System Agent Service (Lenovo System Agent Service) . (.LENOVO INCORPORATED..) - C:\Program Files\Lenovo\iMController\SystemAgentService.exe =>.LENOVO® SR - Auto [26/08/2014] [ 198192] Lenovo WiFiHotspot Service (LenovoWiFiHotspotSvr) . (.Lenovo(beijing) Limited.) - C:\Windows\System32\LenovoWiFiHotspotSvr.exe =>.Lenovo (Beijing) Limited® SS - Demand [16/10/2014] [ 272776] LSCWinService (LSCWinService) . (.LENOVO.) - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe =>.LENOVO® SR - Boot [22/08/2013] [ 109408] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [22/08/2013] [ 93536] (LSI_SAS2) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2.sys =>.Microsoft® SR - Boot [22/08/2013] [ 81760] (LSI_SAS3) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas3.sys =>.Microsoft® SR - Boot [22/08/2013] [ 82784] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Auto [21/04/2014] [ 37624] LUService (LUService) . (.Lenovo(beijing) Limited.) - C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe =>.Lenovo® SR - Auto [31/10/2021] [ 210352] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Microsoft® SS - Demand [30/10/2021] [ 7826104] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc® SR - Demand [30/10/2021] [ 248992] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc® SR - Boot [22/08/2013] [ 56672] (megasas) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [22/08/2013] [ 575840] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [12/05/2012] [ 121416] MotioninJoy Vir (MotioninJoyXFilter) . (.MotioninJoy.) - C:\WINDOWS\System32\drivers\MijXfilt.sys [Unsigned] =>.MotionInJoy SR - Demand [00/00/0000] [ 0] (MpKsl0b45f0cc) . (...) - C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{052C62C7-08A1-4019-B790-49AC8790BF10}\MpKslDrv.sys (.not file.) [Unsigned] SR - Boot [22/08/2013] [ 63840] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [18/06/2013] [ 4649440] ___ Intel( (NETwNe64) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\NETwew02.sys =>.Intel Corporation-Mobile Wireless Group® SR - Auto [12/12/2013] [ 230920] NitroPDFDriverCreatorReadSpool9 (NitroDriverReadSpool9) . (.Nitro PDF Software.) - C:\Program Files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe =>.Nitro PDF Software® SR - Auto [12/12/2013] [ 69640] Nalpeiron Licensing Service (nlsX86cc) . (.Nalpeiron Ltd..) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro PDF Software® SR - Boot [22/08/2013] [ 150368] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [22/08/2013] [ 168288] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Auto [26/08/2014] [ 288240] Lenovo PhoneCompanionPusher Service (PhoneCompanionPusher) . (.Lenovo.) - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe =>.Lenovo (Beijing) Limited® SS - Demand [26/08/2014] [ 308720] Lenovo PhoneCompanionVap Service (PhoneCompanionVap) . (.Lenovo.) - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe =>.Lenovo (Beijing) Limited® SR - Auto [24/04/2012] [ 390632] Cyberlink RichVideo64 Service(CRVS) (RichVideo64) . (.CyberLink.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink® SR - Demand [27/02/2014] [ 331992] RtsUVStor.Sys Realtek USB C (RSUSBVSTOR) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\Drivers\RtsUVStor.sys =>.Realtek Semiconductor Corp® SR - Demand [15/04/2014] [ 558296] Realtek Bluetooth Filter Driver (RtkBtFilter) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\DRIVERS\RtkBtfilter.sys =>.Realtek Semiconductor Corp® SR - Demand [18/12/2013] [ 839896] Realtek 8168 NT Driver (RTL8168) . (.Realtek.) - C:\WINDOWS\System32\DRIVERS\Rt630x64.sys =>.Realtek Semiconductor Corp® SR - Demand [07/10/2014] [ 3593432] Realtek Wireless L (RTWlanE) . (.Realtek Semiconductor Corporation.) - C:\WINDOWS\System32\DRIVERS\rtwlane.sys =>.Realtek Semiconductor Corp® SR - Auto [00/00/0000] [ 0] Conexant SmartAudio service (SAService) . (...) - C:\Windows\System32\SASrv.exe (.not file.) [Unsigned] =>.Conexant Systems, Inc. SR - Boot [22/08/2013] [ 44896] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [22/08/2013] [ 81760] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Demand [23/01/2014] [ 2853400] USB2.0 PC Camera (SNP2UVC) (SNP2UVC) . (.Sonix Co. Ltd..) - C:\WINDOWS\System32\DRIVERS\snp2uvc.sys =>.Sonix Technology CO., LTD® SR - Demand [22/01/2014] [ 206080] SAMSUNG Mobile USB Modem Dr (ssudmdm) . (.DEVGURU Co., LTD.(www.devguru.co.kr).) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.DEVGURU CO LTD® SR - Boot [22/08/2013] [ 31072] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Auto [24/02/2014] [ 51712] (tbaseprovisioning) . (.Advanced Micro Devices, Inc..) - C:\Windows\SysWOW64\tbaseprovisioning.exe [Unsigned] =>.Advanced Micro Devices, Inc. SR - Auto [26/08/2014] [ 67856] VeriFaceSrv (VeriFaceSrv) . (.Lenovo (Beijing) Limited.) - C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe =>.Lenovo (Beijing) Limited® SR - Auto [00/00/0000] [ 0] vgSHDaF (vgSHDaF) . (...) - C:\ProgramData\tMwuRY\vgSHDaF.exe (.not file.) [Unsigned] SR - Boot [22/08/2013] [ 19808] (viaide) . (.VIA Technologies, Inc..) - C:\WINDOWS\System32\drivers\viaide.sys =>.Microsoft® SR - Boot [22/08/2013] [ 168800] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [22/08/2013] [ 305504] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [13/06/2012] [ 102376] wsvd (wsvd) . (."CyberLink.) - C:\WINDOWS\System32\DRIVERS\wsvd.sys =>.CyberLink® ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (8) - 5s O38 - TASK: {1D68F133-C697-41A7-A9AE-43E5614D2EF1} [64Bits][\Lenovo\LSC\LSCHardwareScanPostpone] - (.LenovoSolutionCenter - LSCHardwareScanPostpone.) -- C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [148768] =>.LenovoSolutionCenter O38 - TASK: {5F6592C5-A08E-470F-BE32-449C429B35BD} [64Bits][\PDVDServ Task] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE [95192] =>.CyberLink Corp. O38 - TASK: {8C9F112E-C0EB-46BD-A3F5-06B0A85D9BDA} [64Bits][\Lenovo\LSC\LSCHardwareScan] - (.LenovoSolutionCenter - LSCHardwareScan.) -- C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [148768] =>.LenovoSolutionCenter O38 - TASK: {DB5A9B1E-82BA-4A31-B7FA-0EBCAE4D5A6C} [64Bits][\Lenovo\Dependency Package Auto Update] - (.Lenovo - AutoUpdate.) -- C:\Program Files\Lenovo\iMController\AutoUpdate.exe [33536] =>.Lenovo C:\WINDOWS\System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone - (.LenovoSolutionCenter.) -- C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [-diag HWScan.-diag] =>.LenovoSolutionCenter C:\WINDOWS\System32\Tasks\PDVDServ Task - (.CyberLink Corp..) -- C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE [] =>.CyberLink Corp. C:\WINDOWS\System32\Tasks\Lenovo\LSC\LSCHardwareScan - (.LenovoSolutionCenter.) -- C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [-diag HWScan.-diag] =>.LenovoSolutionCenter C:\WINDOWS\System32\Tasks\Lenovo\Dependency Package Auto Update - (.Lenovo.) -- C:\Program Files\Lenovo\iMController\AutoUpdate.exe [] =>.Lenovo ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (10) - 0s O4 - HKLM\..\Run: [ForteConfig] . (. - FMAPP Application.) -- C:\Program Files\CONEXANT\ForteConfig\fmapp.exe =>.Fortemedia Inc® O4 - HKLM\..\Run: [SmartAudio] . (.Conexant Systems, Inc. - SmartAudio CPL (32bit).) -- C:\Program Files\CONEXANT\SAII\SACpl.exe [Unsigned] =>.Conexant Systems, Inc. O4 - HKLM\..\Run: [cAudioFilterAgent] . (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe =>.Conexant Systems, Inc.® O4 - HKLM\..\Run: [ETDCtrl] . (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation® O4 - HKLM\..\Run: [BtServer] . (.Realtek Semiconductor Corporation - Realtek Bluetooth BTServer Application.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe [Unsigned] =>.Realtek Semiconductor Corporation O4 - HKLM\..\Run: [PhoneCompanion] . (.Lenovo - Lenovo Phone Companion.) -- C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe =>.Lenovo (Beijing) Limited® O4 - HKLM\..\Run: [Energy Manager] . (.Lenovo(beijing) Limited - Lenovo Energy Manager.) -- C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe =>.Lenovo (Beijing) Limited® O4 - HKLM\..\Run: [Lenovo Utility] . (.Lenovo(beijing) Limited - Lenovo Utility.) -- C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe =>.Lenovo (Beijing) Limited® O4 - HKLM\..\Wow6432Node\Run: [snp2uvc] . (. - .) -- C:\WINDOWS\vsnp2uvc.exe (.Not File.) =>.SUP.Orphan O4 - HKLM\..\Wow6432Node\Run: [UpdateP2GShortCut] . (.CyberLink Corp. - MUI StartMenu Application.) -- C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe =>.CyberLink® ---\\ PROCESSUS LANCÉS (33) - 3s [MD5.135311DB17A7AA62DE1FC1737F934264] - (.AMD - AMD External Events Service Module.) -- C:\Windows\System32\atiesrxx.exe [239616] [PID.916] [Unsigned] =>.AMD [MD5.45ED5F298D63C466A1FB9C88ADD93C35] - (.Advanced Micro Devices, Inc. - tbaseprovisioning.) -- C:\Windows\SysWOW64\tbaseprovisioning.exe [51712] [PID.984] [Unsigned] =>.Advanced Micro Devices, Inc. [MD5.1DA85F352C6FEA57AF860EB87ADF550B] - (.Advanced Micro Devices, Inc. - Service Fusion Utility.) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064] [PID.1524] [Unsigned] =>.Advanced Micro Devices, Inc. [MD5.2A3FE426DBC136A22D69CD69A8C57896] - (.Realtek All Rights Reserved - Realtek Bluetooth BTDevManager Service Appl.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe [84992] [PID.1620] [Unsigned] =>.Realtek All Rights Reserved [MD5.4E6337DE03F36BCE168110E6B59F6A5B] - (.Conexant Systems Inc. - Conexant Audio Message Service.) -- C:\Windows\System32\CxAudMsg64.exe [206552] [PID.1900] [Unsigned] =>.Conexant Systems Inc. [MD5.859DF918E0B44E764D394E940C4717AD] - (.Seiko Epson Corporation - Epson Scanner Service (64bit).) -- C:\Windows\System32\escsvc64.exe [145224] [PID.1960] [Unsigned] =>.Seiko Epson Corporation [MD5.BFFD4F272773F73F9A17A54469EF1B40] - (.ELAN Microelectronics Corp. - Elan Service.) -- C:\Program Files\Elantech\ETDService.exe [99632] [PID.1996] =>.ELAN Microelectronics Corporation® [MD5.8CD7568B0F809731D931144DE376FD16] - (.LENOVO INCORPORATED. - Lenovo System Agent Service.) -- C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584960] [PID.2136] =>.LENOVO® [MD5.031199B929009F268A478F0283E1CE32] - (.Lenovo(beijing) Limited - Lenovo WiFiHotspot.) -- C:\Windows\System32\LenovoWiFiHotspotSvr.exe [198192] [PID.2256] [Unsigned] =>.Lenovo(beijing) Limited [MD5.02E736F9861F1A6134736CF7473C513F] - (.Nitro PDF Software - Nitro PDF Spool Service.) -- C:\Program Files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe [230920] [PID.2380] =>.Nitro PDF Software® [MD5.CD2C0C25ECFCF816306126D3C208614B] - (.Nalpeiron Ltd. - This service enables products that use the.) -- C:\Windows\SysWOW64\NLSSRV32.EXE [69640] [PID.2448] =>.Nitro PDF Software® [MD5.97DB32ACBE84B955C89C2DF41B549DFC] - (.Lenovo - PhoneCompanionPusher.) -- C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [288240] [PID.2492] =>.Lenovo (Beijing) Limited® [MD5.FBA61BB4C484A01A655AFB18FF86C417] - (. - RichVideo Module.) -- C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632] [PID.2532] =>.CyberLink® [MD5.07D58D5F7839ABA76118BC037C2C63BD] - (.Conexant Systems, Inc. - SmartAudio Service Application.) -- C:\Windows\SysWOW64\SASrv.exe [447104] [PID.2556] =>.Conexant Systems, Inc.® [MD5.671F8E8A20173FC72989B4B205979C8B] - (...) -- C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [67856] [PID.2604] =>.Lenovo (Beijing) Limited® [MD5.6A3C0EA24B2FEE6F4D7C1A59B2D9417C] - (.AMD - AMD External Events Client Module.) -- C:\Windows\System32\atieclxx.exe [587776] [PID.4856] [Unsigned] =>.AMD [MD5.64D859D0F50521473F6A55D46279A788] - (.ELAN Microelectronics Corp. - ETD Control Center.) -- C:\Program Files\Elantech\ETDCtrl.exe [2891592] [PID.2768] =>.ELAN Microelectronics Corporation® [MD5.7965CE2DE93CB1CD1A01046983FF6C73] - (.ELAN Microelectronics Corp. - ETD Control Center Helper.) -- C:\Program Files\Elantech\ETDCtrlHelper.exe [2249032] [PID.3444] =>.ELAN Microelectronics Corporation® [MD5.D537B038FE3B9DFA486682F2A828AD54] - (.ELAN Microelectronics Corp. - ETDIntelligent.) -- C:\Program Files\Elantech\ETDIntelligent.exe [2259784] [PID.824] =>.ELAN Microelectronics Corporation® [MD5.DC57AC8A3FCFD13669D027EE56AEBCC0] - (.Realtek Semiconductor Corporation - Realtek Bluetooth BTServer Application.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe [216064] [PID.2964] [Unsigned] =>.Realtek Semiconductor Corporation [MD5.42361B4BD80768E82B80285851037665] - (. - FMAPP Application.) -- C:\Program Files\CONEXANT\ForteConfig\fmapp.exe [49056] [PID.2132] =>.Fortemedia Inc® [MD5.7C3CD9D9B2C1336D5FEABD6EC06316F5] - (.Conexant Systems, Inc. - Conexant High Definition Audio Filter Agent.) -- C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe [907480] [PID.2720] =>.Conexant Systems, Inc.® [MD5.E82868EAA58A9281964B891F5FA82576] - (.Lenovo - Lenovo Phone Companion.) -- C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [836592] [PID.2352] =>.Lenovo (Beijing) Limited® [MD5.87627090DE5BB0ED8D0175F3B8AA1FEA] - (.Lenovo(beijing) Limited - Lenovo Energy Manager.) -- C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [16094704] [PID.140] =>.Lenovo (Beijing) Limited® [MD5.67F44DA1CF7EA0EA1CA51D2AEE07CB3A] - (.Lenovo(beijing) Limited - Lenovo Utility.) -- C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe [10842096] [PID.3276] =>.Lenovo (Beijing) Limited® [MD5.BADF6C22FBAA3ED3E2413A60411425AC] - (.Advanced Micro Devices Inc. - Catalyst Control Center: Monitoring program.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe [299520] [PID.1788] [Unsigned] =>.Advanced Micro Devices Inc. [MD5.F17FFAF69E1AF3D0A010FD4749148981] - (.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe [1087184] [PID.4888] =>.SEIKO EPSON CORPORATION® [MD5.25DA3B804C41633C0AE28F514F097692] - (.ATI Technologies Inc. - Catalyst Control Center: Host application.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe [299520] [PID.4620] [Unsigned] =>.ATI Technologies Inc. [MD5.C049C40CAEE8900130BD5F80B594CC7B] - (.CyberLink Corp. - PowerDVD RC Service.) -- C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE [95192] [PID.596] =>.CyberLink Corp.® [MD5.5787E5DF1A68E7AFEA82D58E5F0D6549] - (...) -- C:\Program Files\Lenovo PhoneCompanion\adb.exe [815104] [PID.3760] [Unsigned] [MD5.E1EAA6D07F53BC7EBE4E43F8288FA34C] - (.Lenovo - Lenovo Solution Center Notifications.) -- C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [1360672] [PID.376] =>.LENOVO® [MD5.0F6730A4B5D4D97DF89C40321D31B204] - (. - AutoUpdate.) -- C:\Program Files\Lenovo\iMController\AutoUpdate.exe [33536] [PID.4936] =>.LENOVO® [MD5.5FDC28341D14BE15A7EC49BA7F221C14] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\Frances\AppData\Roaming\ZHP\ZHPSuite.exe [3476632] [PID.1644] [Unsigned] =>.Nicolas Coolman ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (15) - 1s M0 - MFSP: prefs.js [Frances - y7rj5iej.default] http://www.google.com =>.Google Inc. P2 - EXT FILE: (.Adblock Plus - Ads were yesterday!.) -- C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [Unsigned] =>.Adblock Plus C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\bookmarkbackups =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\crashes =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\datareporting =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\extensions =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\gmp =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\gmp-eme-adobe =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\healthreport =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\minidumps =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\searchplugins =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\sessionstore-backups =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\storage =>Mozilla Corporation C:\Users\Frances\AppData\Roaming\Mozilla\Firefox\Profiles\y7rj5iej.default\webapps =>Mozilla Corporation ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (18) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = http://www.lenovo.com =>.Lenovo Group Limited R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://google.com =>.Google Inc. R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.9600.17840 (winblue_r11.150522-0826)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation R4 - HKLM\Software\WOW6432Node\Wow6432Node\Microsoft\Internet Explorer\PhishingFilter,EnabledV9 = 1 =>Default.Value ---\\ INTERNET EXPLORER, Site de confiance et site sensible (3) - 0s ~ IE Restricted Site Good: aeriagames.com ~ Microsoft Internet Explorer Restricted Site(s) Domains: 1(Good) / 0(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad) ---\\ INTERNET EXPLORER,Proxy Management (8) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet=C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe (.Microsoft Corporation.) =>.Microsoft Corporation ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (24) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (3) - 0s O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll =>.Microsoft® O2 - BHO: Easy Photo Print [64Bits] - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} . (.Seiko Epson Corporation - Epson Easy Photo Print (TBL x64).) -- C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll =>.SEIKO EPSON CORPORATION® O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll =>.Microsoft® ---\\ RACCOURCIS GLOBAL STARTUP (51) - 4s O4 - GS\Desktop [Frances]: Project64 - Raccourci.lnk . (...) C:\Users\Frances\Downloads\EMU_Project64_2.2\Project64 2.2\Project64.exe [Unsigned] O4 - GS\Desktop [Frances]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\Frances\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Desktop [Frances]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\Frances\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Frances]: DS3 Tool.lnk . (.www.motioninjoy.com - DS3_Tool.) C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe [Unsigned] =>.www.motioninjoy.com O4 - GS\Quicklaunch [Frances]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\sendTo [Frances]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\TaskBar [Frances]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\TaskBar [Frances]: Mozilla Firefox (2).lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Frances]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Frances]: UserGuide.lnk . (.Lenovo - UserGuide.) C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe =>.Lenovo (Beijing) Limited® O4 - GS\Programs [Frances]: BTServer Toasts App.lnk . (.Realtek Semiconductor Corporation - Realtek Bluetooth BTServer Application.) C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe [Unsigned] =>.Realtek Semiconductor Corporation O4 - GS\Programs [Frances]: Documents.lnk . (...) C:\Users\Frances\Documents [Unsigned] O4 - GS\Programs [Frances]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Programs [Frances]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Frances\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Programs [Frances]: Pictures.lnk . (...) C:\Users\Frances\Pictures [Unsigned] =>.Microsoft Corporation O4 - GS\Programs [Frances]: Wi-FiHotspotChgToast.lnk . (.Lenovo(beijing) Limited - Lenovo Updates Toast.) C:\Program Files (x86)\Lenovo\Lenovo Updates\PopToastProcess.exe =>.Lenovo (Beijing) Limited® O4 - GS\CommonDesktop [Public]: DS3 Tool.lnk . (.www.motioninjoy.com - DS3_Tool.) C:\Program Files\MotioninJoy\ds3\DS3_Tool.exe [Unsigned] =>.www.motioninjoy.com O4 - GS\CommonDesktop [Public]: Lenovo VeriFace Pro.lnk . (.Lenovo - Lenovo VeriFace Pro.) C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConfig.exe =>.Lenovo (Beijing) Limited® O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\CommonDesktop [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: OpenOffice 4.1.1.lnk . (.Apache Software Foundation - OpenOffice 4.1.1.) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe [Unsigned] =>.Apache Software Foundation O4 - GS\Programs [Public]: BTServer Toasts App.lnk . (.Realtek Semiconductor Corporation - Realtek Bluetooth BTServer Application.) C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe [Unsigned] =>.Realtek Semiconductor Corporation O4 - GS\Programs [Public]: Documents.lnk . (...) C:\Users\Frances\Documents [Unsigned] O4 - GS\Programs [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Programs [Public]: OneDrive Entreprise.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Frances\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Programs [Public]: Pictures.lnk . (...) C:\Users\Frances\Pictures [Unsigned] =>.Microsoft Corporation O4 - GS\Programs [Public]: Wi-FiHotspotChgToast.lnk . (.Lenovo(beijing) Limited - Lenovo Updates Toast.) C:\Program Files (x86)\Lenovo\Lenovo Updates\PopToastProcess.exe =>.Lenovo (Beijing) Limited® O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Calculator.lnk . (.Microsoft Corporation - Calculatrice de Windows.) C:\WINDOWS\system32\calc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sound Recorder.lnk . (.Microsoft Corporation - Magnétophone Windows.) C:\WINDOWS\system32\SoundRecorder.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Sticky Notes.lnk . (.Microsoft Corporation - Pense-bête.) C:\WINDOWS\system32\StikyNot.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Camera.lnk . (.Microsoft Corporation - Camera.) C:\WINDOWS\Camera\Camera.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: FileManager.lnk . (.Microsoft Corporation - OneDrive.) C:\WINDOWS\FileManager\FileManager.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: GIMP 2.lnk . (.Spencer Kimball, Peter Mattis and the GIMP Developmen - GNU Image Manipulation Program.) C:\Program Files\GIMP 2\bin\gimp-2.8.exe =>.Jernej Simoncic® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Nitro Pro 9.lnk . (...) C:\WINDOWS\Installer\{7D914F94-B2BC-44EA-9260-D7EE9F20C0A8}\Professional.ico [Unsigned] O4 - GS\ProgramsCommon [Public]: PhotosApp.lnk . (.Microsoft Corporation - Photos.) C:\WINDOWS\FileManager\PhotosApp.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Search.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\WINDOWS\system32\rundll32.exe -sta {C90FB8CA-3295-4462-A721-2935E83694BA} =>..Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Windows Store.lnk . (...) C:\WINDOWS\WinStore\WinStore.htm [Unsigned] =>.Microsoft Corporation ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 109.0.66.20 109.0.66.10 =>.France 9 Telecom, Free O17 - HKLM\System\CCS\Services\Tcpip\..\{44772E1F-9E62-4C8B-BF0A-295F966FB8F8}: DhcpNameServer = 109.0.66.20 109.0.66.10 =>.France 9 Telecom, Free O17 - HKLM\System\CCS\Services\Tcpip\..\{4A192E8A-298D-4175-9D29-8B3EFE8BB7E2}: DhcpNameServer = 150.212.1.2 =>.USA Gastonville University Of Pittsburgh O17 - HKLM\System\CCS\Services\Tcpip\..\{4A192E8A-298D-4175-9D29-8B3EFE8BB7E2}: DhcpDomain = 150.212.1.2 =>.USA Gastonville University Of Pittsburgh ---\\ PROTOCOLE ADDITIONNEL (20) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\Windows\system32\userinit.exe =>.Microsoft Corporation ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (6) - 1s O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows [64Bits] - {44BBA840-CC51-11CF-AAFA-00AA00B6015C} . (.Microsoft Corporation - Windows Mail.) -- C:\Program Files\Windows Mail\WinMail.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Disable SSL3 [64Bits] - {7D715857-A67C-4C2F-A929-038448584D63} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\WINDOWS\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® ---\\ LOGICIELS INSTALLÉS (108) - 20s O42 - Logiciel: AMD Accelerated Video Transcoding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {EB1E97FF-6F5D-7AA8-2AC7-B7530A76A6FC} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: AMD Catalyst Control Center - (.ATI Technologies.) [HKLM][64Bits] -- {E93DFAD7-9008-E7A5-5BEA-98FD023C4C9D} [Unsigned] =>.ATI Technologies (Hidden) O42 - Logiciel: AMD Catalyst Install Manager - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {665D4B18-EA91-BE16-3212-218C63F5DC4E} [Unsigned] =>.Advanced Micro Devices, Inc. O42 - Logiciel: AMD Fuel - (.Advanced Micro Devices Inc.) [HKLM][64Bits] -- {75830CC1-BCF3-FB9B-D86A-3A132CB3398E} [Unsigned] =>.Advanced Micro Devices Inc (Hidden) O42 - Logiciel: AMD Quick Stream - (.AppEx Networks.) [HKLM][64Bits] -- {E9EED4AE-682B-4501-9574-D09A21717599}_is1 [Unsigned] =>.AppEx Networks O42 - Logiciel: Catalyst Control Center - Branding - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {E6614A2D-1087-B322-3052-1F5C7C8A396B} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center InstallProxy - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {415C6469-2082-7687-D90F-658E3FBA7749} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Catalyst Control Center Localization All - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {103513EA-BA35-DF66-D440-D9EEEDA834B1} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Chinese Standard - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {18A25DCD-DCF5-3714-2D29-7FBC24896EC9} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Chinese Traditional - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F3B251D0-346A-BE35-8A96-7471AB9391A3} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Czech - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {6AEE4F0B-0851-1EFF-CF48-40F1BC02128C} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Danish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {3A2D9157-E926-72CA-B510-CAF06B67E615} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Dutch - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {78D50FCB-F6C3-CC7F-08D4-0A75F9917A94} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help English - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {B3631A9D-1462-D4F3-EE15-FCB3B2DBB841} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Finnish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {B2C9778C-552E-1D2C-0131-F3095B94E0CF} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help French - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {4ED9FCA5-EDD6-2103-E581-FC3A626E9BA7} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help German - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {FF6B5A9A-235F-849D-FC06-02AB26FFFF1A} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Greek - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F0BF6433-7C0B-2C34-190B-EC41BD9CCEAE} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Hungarian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {4B2D3EEE-4D7C-4432-F85A-0C2D96F75A08} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Italian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {988A2F65-EA57-A87A-3A34-C5E1AD009C34} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Japanese - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {93855E51-4EE3-642A-E40E-0E06D0078091} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Korean - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {602AE986-EEC8-552E-5A59-012EF4BA04DE} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Norwegian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {803F1DD9-378C-E532-765E-535B2A76C3FC} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Polish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {EA2AE6B7-99EB-A4EC-6EEC-C9516C168DAB} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Portuguese - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {B9DCDF86-CF6F-D9C2-0BE8-20C5050CB09A} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Russian - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {B9D7FDC1-01EA-96BE-7AA2-68E82D97E042} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Spanish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {D7C9E136-4F0F-C67B-8C91-D36129BFE00E} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Swedish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {0CFE6E9B-3815-9C70-968A-EF70137DDE3B} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Thai - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {8F6699B7-6530-ED2E-969C-7EC8A610D1C7} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: CCC Help Turkish - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {F48B1DAF-A98B-496D-FBD4-3BF2B2CA26A3} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: ccc-utility64 - (.Advanced Micro Devices, Inc..) [HKLM][64Bits] -- {33D7F093-12A4-7415-2207-448A2389690A} [Unsigned] =>.Advanced Micro Devices, Inc. (Hidden) O42 - Logiciel: Cisco EAP-FAST Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {64BF0187-F3D2-498B-99EA-163AF9AE6EC9} [Unsigned] =>.Cisco Systems, Inc. O42 - Logiciel: Cisco LEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {AF312B06-5C5C-468E-89B3-BE6DE2645722} [Unsigned] =>.Cisco Systems, Inc. O42 - Logiciel: Cisco PEAP Module - (.Cisco Systems, Inc..) [HKLM][64Bits] -- {0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F} [Unsigned] =>.Cisco Systems, Inc. O42 - Logiciel: Conexant HD Audio - (.Conexant.) [HKLM][64Bits] -- CNXT_AUDIO_HDA =>.Conexant Systems, Inc.® O42 - Logiciel: ControlMK 0.232 - (.Redcl0ud.) [HKLM][64Bits] -- ControlMK [Unsigned] =>.Redcl0ud O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- {B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} =>.CyberLink Corp.® (Hidden) O42 - Logiciel: CyberLink PowerDirector 10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32} =>.CyberLink Corp.® O42 - Logiciel: Dependency Package Update - (.Lenovo Inc..) [HKLM][64Bits] -- {0788641D-D31A-478D-BB34-C41564AE9F93} [Unsigned] =>.Lenovo Inc. (Hidden) O42 - Logiciel: Dependency Package Update - (.Lenovo Inc..) [HKLM][64Bits] -- {5252431C-288E-409D-ADCF-24407E0E6F70} [Unsigned] =>.Lenovo Inc. (Hidden) O42 - Logiciel: Dependency Package Update - (.Lenovo Inc..) [HKLM][64Bits] -- {FFED38DF-94DC-4FF9-96C1-A6990EDA6B03} [Unsigned] =>.Lenovo Inc. (Hidden) O42 - Logiciel: Dolby Digital Plus Advanced Audio - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2} [Unsigned] =>.Dolby Laboratories Inc O42 - Logiciel: Energy Manager - (.Lenovo.) [HKLM][64Bits] -- {AC768037-7079-4658-AC24-2897650E0ABE} [Unsigned] =>.Lenovo (Hidden) O42 - Logiciel: Energy Manager - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{AC768037-7079-4658-AC24-2897650E0ABE} [Unsigned] =>.Lenovo O42 - Logiciel: Epson Easy Photo Print 2 - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {07AA1C7F-E8CA-4FDC-B975-BC9EBC22B6DE} =>.SEIKO EPSON CORPORATION® O42 - Logiciel: Epson Event Manager - (.Seiko Epson Corporation.) [HKLM][64Bits] -- {9F205E94-9E42-4486-A92A-DF3F6CB85444} [Unsigned] =>.Seiko Epson Corporation O42 - Logiciel: Epson Scan 2 - (.Seiko Epson Corporation.) [HKLM][64Bits] -- Epson Scan 2 =>.SEIKO EPSON CORPORATION® O42 - Logiciel: EPSON Scan OCR Component - (.SEIKO EPSON Corp..) [HKLM][64Bits] -- {563B99D8-8895-4E3E-AE8D-15BE8C05F1C1} =>.Macrovision Corporation® O42 - Logiciel: Epson Software Updater - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {82B94253-3FBC-4779-B3BF-C690AD54AFDB} [Unsigned] =>.Seiko Epson Corporation O42 - Logiciel: EPSON XP-243 245 247 Series Printer Uninstall - (.Seiko Epson Corporation.) [HKLM][64Bits] -- EPSON XP-243 245 247 Series =>.SEIKO EPSON CORPORATION® O42 - Logiciel: EpsonNet Print - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- {0CB4EF8E-EE5B-49F6-8376-A702C222D6DA} [Unsigned] =>.Seiko Epson Corporation O42 - Logiciel: GIMP 2.8.14 - (.The GIMP Team.) [HKLM][64Bits] -- GIMP-2_is1 =>.Jernej Simoncic® O42 - Logiciel: Hightail for Lenovo - (.Hightail, Inc..) [HKLM][64Bits] -- {2F10E937-F6D7-4174-8AB9-B299E8FC5CEC} [Unsigned] =>.Hightail, Inc. O42 - Logiciel: Lenovo Dependency Package - (.Lenovo Group Limited.) [HKLM][64Bits] -- Lenovo Dependency Package_is1 [Unsigned] =>.Lenovo Group Limited O42 - Logiciel: Lenovo EasyCamera - (.Sonix.) [HKLM][64Bits] -- {399C37FB-08AF-493B-BFED-20FBD85EDF7F} [Unsigned] =>.Sonix O42 - Logiciel: Lenovo FusionEngine - (.Lenovo, Inc..) [HKLM][64Bits] -- Lenovo FusionEngine [Unsigned] =>.Lenovo, Inc. O42 - Logiciel: Lenovo Mobile Phone Wireless Import - (.Lenovo.) [HKLM][64Bits] -- {DFB2E0D6-8DDE-49A4-B8F7-03C14DACCBA6} [Unsigned] =>.Lenovo (Hidden) O42 - Logiciel: Lenovo Mobile Phone Wireless Import - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{DFB2E0D6-8DDE-49A4-B8F7-03C14DACCBA6} [Unsigned] =>.Lenovo O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- {46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink Corp.® (Hidden) O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink Corp.® O42 - Logiciel: Lenovo PhoneCompanion - (.Lenovo.) [HKLM][64Bits] -- {0F82EA83-B0C5-4AB9-9695-DFE92C5FD57B} [Unsigned] =>.Lenovo (Hidden) O42 - Logiciel: Lenovo PhoneCompanion - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{0F82EA83-B0C5-4AB9-9695-DFE92C5FD57B} [Unsigned] =>.Lenovo O42 - Logiciel: Lenovo Photo Master - (.CyberLink Corp..) [HKLM][64Bits] -- {BC94C56A-3649-420C-8756-2ADEBE399D33} =>.CyberLink Corp.® (Hidden) O42 - Logiciel: Lenovo Photo Master - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{BC94C56A-3649-420C-8756-2ADEBE399D33} =>.CyberLink Corp.® O42 - Logiciel: Lenovo pointing device - (.ELAN Microelectronic Corp..) [HKLM][64Bits] -- Elantech =>.ELAN Microelectronics Corporation® O42 - Logiciel: Lenovo PowerDVD10 - (.CyberLink Corp..) [HKLM][64Bits] -- {DEC235ED-58A4-4517-A278-C41E8DAEAB3B} =>.CyberLink Corp.® (Hidden) O42 - Logiciel: Lenovo PowerDVD10 - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B} =>.CyberLink Corp.® O42 - Logiciel: Lenovo SHAREit - (.Lenovo Group Limited.) [HKLM][64Bits] -- Lenovo SHAREit_is1 [Unsigned] =>.Lenovo Group Limited O42 - Logiciel: Lenovo Solution Center - (.Lenovo Group Limited.) [HKLM][64Bits] -- {4C2B6F96-3AED-4E3F-8DCE-917863D1E6B1} [Unsigned] =>.Lenovo Group Limited O42 - Logiciel: Lenovo Updates - (.Lenovo.) [HKLM][64Bits] -- {A2E1E9F0-0B68-4166-8C7F-85B563B84DF4} [Unsigned] =>.Lenovo (Hidden) O42 - Logiciel: Lenovo Updates - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{A2E1E9F0-0B68-4166-8C7F-85B563B84DF4} [Unsigned] =>.Lenovo O42 - Logiciel: Lenovo VeriFace Pro - (.Lenovo.) [HKLM][64Bits] -- Lenovo VeriFace =>.Lenovo (Beijing) Limited® O42 - Logiciel: LG United Mobile Drivers - (.LG Electronics.) [HKLM][64Bits] -- {C2944BE7-9BFF-4EF0-A362-CB3281B7C50D} [Unsigned] =>.LG Electronics O42 - Logiciel: Malwarebytes version 4.4.9.142 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc® O42 - Logiciel: Manuels d'utilisateur - (.Lenovo.) [HKLM][64Bits] -- {F07C2CF8-4C53-4EC3-8162-A6221E36EB88} [Unsigned] =>.Lenovo (Hidden) O42 - Logiciel: Manuels EPSON - (.SEIKO EPSON CORPORATION.) [HKLM][64Bits] -- {84CECC1B-21EF-41B1-9A91-3E724E5D99D3} [Unsigned] =>.Seiko Epson Corporation O42 - Logiciel: Metric Collection SDK 35 - (.Lenovo Group Limited.) [HKLM][64Bits] -- {C2B5B5B0-2545-4E94-B4BA-548D4BF0B196} [Unsigned] =>.Lenovo Group Limited (Hidden) O42 - Logiciel: Microsoft Office 365 - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- O365HomePremRetail - fr-fr =>.Microsoft® O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {4B6C7001-C7D6-3710-913E-5BC23FCE91E6} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1F1C2DFC-2D24-3E06-BCB8-725134ADF989} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 - (.Microsoft Corporation.) [HKLM][64Bits] -- {DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6e8f74e0-43bd-4dce-8477-6ff6828acc07} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {33d1fd90-4274-48a1-9bc1-97e33d9c2d6f} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 - (.Microsoft Corporation.) [HKLM][64Bits] -- {3C28BFD4-90C7-3138-87EF-418DC16E9598} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5AF4E09F-5C9B-3AAF-B731-544D3DC821DD} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B175520C-86A2-35A7-8619-86DC379688B9} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 - (.Microsoft Corporation.) [HKLM][64Bits] -- {BD95A8CD-1D9F-35AD-981A-3E7925026EBB} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: MotioninJoy Gamepad tool 0.7.1001 - (.www.motioninjoy.com.) [HKLM][64Bits] -- {330DAC67-5B62-452A-A0E4-6B4A5923940F}_is1 [Unsigned] =>.www.motioninjoy.com O42 - Logiciel: Mozilla Firefox 39.0.3 (x86 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 39.0.3 (x86 fr) =>.Mozilla Corporation® O42 - Logiciel: Nitro Pro 9 - (.Nitro.) [HKLM][64Bits] -- {7D914F94-B2BC-44EA-9260-D7EE9F20C0A8} [Unsigned] =>.Nitro O42 - Logiciel: OEM Application Profile - (.Advanced Micro Devices Inc.) [HKLM][64Bits] -- {8F92E0CF-620B-5C20-F292-59C93567B06D} [Unsigned] =>.Advanced Micro Devices Inc O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: OpenOffice 4.1.1 - (.Apache Software Foundation.) [HKLM][64Bits] -- {121727D5-FDF3-4723-BA57-EB383440ED72} [Unsigned] =>.Apache Software Foundation O42 - Logiciel: Package de pilotes Windows - Lenovo (ACPIVPC) System (09/24/2013 19.29.2.3 - (.Lenovo.) [HKLM][64Bits] -- EE9B1F2037C580F36D92FA431CC02BFF04C31F15 =>.Lenovo (Beijing) Limited® O42 - Logiciel: Package de pilotes Windows - Lenovo (WUDFRd) LenovoVhid (07/25/2013 10.30. - (.Lenovo.) [HKLM][64Bits] -- 6BCA401E9CBEED970D75F55FA5320F60D11984E9 =>.Lenovo (Beijing) Limited® O42 - Logiciel: Power2Go - (.CyberLink Corp..) [HKLM][64Bits] -- {40BF1E83-20EB-11D8-97C5-0009C5020658} =>.CyberLink Corp.® O42 - Logiciel: REALTEK Bluetooth Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9D3D8C60-A5EF-4123-B2B9-172095903AB} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek Card Reader - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {5BC2B5AB-80DE-4E83-B8CF-426902051D0A} =>.Realtek Semiconductor Corp® O42 - Logiciel: Realtek Ethernet Controller Driver - (.Realtek.) [HKLM][64Bits] -- {8833FFB6-5B0C-4764-81AA-06DFEED9A476} =>.Realtek Semiconductor Corp® O42 - Logiciel: REALTEK Wireless LAN Driver - (.REALTEK Semiconductor Corp..) [HKLM][64Bits] -- {9DAABC60-A5EF-41FF-B2B9-17329590CD5} =>.Realtek Semiconductor Corp® O42 - Logiciel: User Manuals - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88} [Unsigned] =>.Lenovo ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (146) - 20s HKLM\SOFTWARE\AE Protection =>.Legitimate HKLM\SOFTWARE\AMD =>.AMD HKLM\SOFTWARE\AppEx Accelerator =>.Advanced Micro Devices Inc HKLM\SOFTWARE\AppEx Networks =>.AppEx Networks HKLM\SOFTWARE\ATI =>.ATI HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\CNXT_UIU_MUTEX HKLM\SOFTWARE\Cnxt_Uiu_Parms =>.Conexant Systems, Inc. HKLM\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\Dolby =>.Dolby HKLM\SOFTWARE\EPSON =>.EPSON HKLM\SOFTWARE\EpsonNet =>.Epson/Seico HKLM\SOFTWARE\Hightail for Lenovo =>.Lenovo Group Limited HKLM\SOFTWARE\InstalledOptions =>.Installed Options HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Lenovo =>.Lenovo HKLM\SOFTWARE\Macromedia =>.Macromedia HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\McAfee.com =>.McAfee Inc. HKLM\SOFTWARE\mcafeeupdater =>.McAfee Inc. HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Nitro =>.Nitro HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\PDR_Upgrade =>.Toshiba Corporation HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\RTLSetup =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\SONIX =>.Sonix HKLM\SOFTWARE\UIU =>.Legitimate HKLM\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\ATI =>.ATI HKLM\SOFTWARE\WOW6432Node\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\WOW6432Node\Conexant =>.Conexant Systems, Inc. HKLM\SOFTWARE\WOW6432Node\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\WOW6432Node\EPSON =>.EPSON HKLM\SOFTWARE\WOW6432Node\EpsonNet =>.Epson/Seico HKLM\SOFTWARE\WOW6432Node\FusionEngine =>.FusionEngine HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\Hightail for Lenovo =>.Lenovo Group Limited HKLM\SOFTWARE\WOW6432Node\Hydrup HKLM\SOFTWARE\WOW6432Node\InstallShield =>.InstallShield HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Lake =>.Lake Sofware HKLM\SOFTWARE\WOW6432Node\Lenovo =>.Lenovo HKLM\SOFTWARE\WOW6432Node\LG Electronics =>.LG Electronics HKLM\SOFTWARE\WOW6432Node\Macromedia =>.Macromedia HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\WOW6432Node\mcafeeupdater =>.McAfee Inc. HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Nalpeiron =>.Nalpeiron HKLM\SOFTWARE\WOW6432Node\Nitro =>.Nitro HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\REALTEK Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\RtWLan =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\SEIKO EPSON Corp. =>.Epson/Seico HKLM\SOFTWARE\WOW6432Node\Sonix =>.Sonix HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Aeria Games =>.Aeria Games HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\ATI =>.ATI HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\Clubic =>.Clubic HKCU\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKCU\SOFTWARE\CoreJpeg =>.Corel Corporation HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\EasyPlus =>.Lenovo Group Limited HKCU\SOFTWARE\Elantech =>.Elantech Inc. HKCU\SOFTWARE\EPSON =>.EPSON HKCU\SOFTWARE\EPSON Software Updater =>.Epson/Seico HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\Hightail for Lenovo =>.Lenovo Group Limited HKCU\SOFTWARE\Lenovo =>.Lenovo HKCU\SOFTWARE\LowRegistry =>.LG Electronics Inc HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\MCAFEE =>.McAfee Inc. HKCU\SOFTWARE\Mine =>.Microsoft Corporation HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\NITRO =>.Nitro HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OpenOffice =>.SourceForge HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\SEIKO EPSON CORPORATION =>.Epson/Seico HKCU\SOFTWARE\SYNCJM =>.SYNCJM HKCU\SOFTWARE\teras games =>.Teras Games HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\ATI =>.ATI HKU\.DEFAULT\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKU\.DEFAULT\SOFTWARE\Google =>.Google HKU\.DEFAULT\SOFTWARE\Hightail for Lenovo =>.Lenovo Group Limited HKU\.DEFAULT\SOFTWARE\Lenovo =>.Lenovo HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc. HKU\.DEFAULT\SOFTWARE\NITRO =>.Nitro HKU\.DEFAULT\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Aeria Games =>.Aeria Games HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\ATI =>.ATI HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\BugSplat =>.Bugsplat Game HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Clubic =>.Clubic HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Conexant =>.Conexant Systems, Inc. HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\CoreJpeg =>.Corel Corporation HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\CyberLink =>.CyberLink Corporation HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\EasyPlus =>.Lenovo Group Limited HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Elantech =>.Elantech Inc. HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\EPSON =>.EPSON HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\EPSON Software Updater =>.Epson/Seico HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Google =>.Google HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Hightail for Lenovo =>.Lenovo Group Limited HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Lenovo =>.Lenovo HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\LowRegistry =>.LG Electronics Inc HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Macromedia =>.Macromedia HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\MCAFEE =>.McAfee Inc. HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Mine =>.Microsoft Corporation HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\NITRO =>.Nitro HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\OpenOffice =>.SourceForge HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\SEIKO EPSON CORPORATION =>.Epson/Seico HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\SYNCJM =>.SYNCJM HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\teras games =>.Teras Games HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-504155008-3405910705-3580942356-1002\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (20) - 0s C:\Program Files (x86)\WindowsApps\CheckPoint.VPN_1.0.0.1_neutral_neutral_cw5n1h2txyewy - (.CheckPoint.) [][Check Point Vpn] =>CheckPoint C:\Program Files (x86)\WindowsApps\CyberLinkCorp.id.PowerDVDforLenovoIdea_1.1.2618.24808_x86__hgg5mn3xps74a - (.CyberLink Corporation.) [][PowerDVD for Lenovo Idea] =>CyberLink Corporation C:\Program Files (x86)\WindowsApps\DailymotionSA.Dailymotion_2.0.1.63_x64__6dqnvyezrysvy - (.Dailymotion SA.) [][Dailymotion] C:\Program Files (x86)\WindowsApps\E046963F.LenovoCompanion_2.2.26.0_x86__k1h2ywk1493x8 - (.LENOVO INC..) [][Companion] =>LENOVO INC. C:\Program Files (x86)\WindowsApps\E046963F.LenovoSupport_2.0.5.0_x86__k1h2ywk1493x8 - (.Lenovo, INC..) [][Lenovo Support] =>Lenovo, INC. C:\Program Files (x86)\WindowsApps\E0469640.CameraMan_1.0.1929.30229_x86__5grkq8ppsgwt4 - (..) [][Camera Man] C:\Program Files (x86)\WindowsApps\E0469640.DeviceCollaboration_2.0.0.9_x64__5grkq8ppsgwt4 - (.LENOVO INC.) [][Phone Companion] =>LENOVO INC C:\Program Files (x86)\WindowsApps\eBayInc.eBay_1.6.0.34_neutral__1618n3s9xq8tw - (.eBay, Inc.) [][eBay] =>eBay, Inc C:\Program Files (x86)\WindowsApps\Evernote.Evernote_3.3.0.102_x86__q4d96b2w5wcc2 - (.Evernote.) [][Evernote Touch] =>Evernote C:\Program Files (x86)\WindowsApps\f5.vpn.client_1.0.0.11_neutral_neutral_cw5n1h2txyewy - (.Legitimate.) [][F5 Networks] C:\Program Files (x86)\WindowsApps\GameGeneticsApps.FreeOnlineGamesforLenovo_2.1.1.49_x64__skk33pyzdtxfa - (.Lenovo Group Limited.) [][Free Online Games for Lenovo] =>Lenovo Group Limited C:\Program Files (x86)\WindowsApps\JuniperNetworks.JunosPulseVpn_1.0.0.206_neutral_neutral_cw5n1h2txyewy - (.Juniper Networks.) [][Juniper Networks Junos Pulse] =>Juniper Networks C:\Program Files (x86)\WindowsApps\McAfeeInc.06.McAfeeSecurityAdvisorforLenovo_5.0.173.1_x64__bq6yxensn79aw - (.McAfee Inc..) [][McAfee® Central for Lenovo] =>McAfee Inc. C:\Program Files (x86)\WindowsApps\RockstarGames.GrandTheftAutoiFruit_1.10.21.4_x86__3t068xe29zjvp - (.Rockstar Games.) [][Grand Theft Auto: iFruit] =>Rockstar Games C:\Program Files (x86)\WindowsApps\SonicWALL.MobileConnect_1.0.0.8_neutral_neutral_cw5n1h2txyewy - (.Sonic Solutions.) [][SonicWALL Mobile Connect] =>Sonic Solutions C:\Program Files (x86)\WindowsApps\TripAdvisorLLC.TripAdvisorHotelsFlightsRestaurants_1.2.0.24_neutral__qj0v5chwq8f2g - (.TripAdvisor LLC.) [][TripAdvisor Hotels Flights Restaurants] =>TripAdvisor LLC C:\Program Files (x86)\WindowsApps\txtr.txtrReaderLenovoEdition_1.1.13.12_x86__g057jjhb9dtk6 - (.txtr.) [][txtr ebooks Lenovo Edition] C:\Program Files (x86)\WindowsApps\Weather.TheWeatherChannelforLenovo_2.1.20.1_x64__t3yemqpq4kp7p - (.The Weather Channel..) [][The Weather Channel for Lenovo] =>The Weather Channel. C:\Program Files (x86)\WindowsApps\YouSendIt.HighTailForLenovo_1.3.0.1278_neutral__069rkrpjefrbc - (.Hightail.) [][Hightail for Lenovo] =>Hightail C:\Program Files (x86)\WindowsApps\ZinioLLC.Zinio_2.1.0.317_x64__0q6dqzpp40p2e - (.Zinio LLC.) [][Zinio] =>Zinio LLC ---\\ CONTENU DES DOSSIERS PROGRAMMES (220) - 8s O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\AMD =>.AMD O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\AMD Quick Stream =>.Advanced Micro Devices Inc O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\ATI =>.Advanced Micro Devices, Inc.® O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\ATI Technologies =>.ATI Technologies O43 - CFD: 29/07/2015 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 06/03/2017 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\CONEXANT =>.Conexant Systems, Inc. O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\CyberLink =>.CyberLink Corporation O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\Dolby Digital Plus =>.Dolby Laboratories Inc O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\Elantech =>.ELAN Microelectronics Corporation® O43 - CFD: 04/03/2017 - [] D -- C:\Program Files\EpsonNet =>.Epson/Seico O43 - CFD: 25/12/2014 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 29/06/2015 - [] D -- C:\Program Files\GIMP 2 =>.Jernej Simoncic® O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\Google Play Music =>.Google Inc. O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\Hightail =>.Hightail O43 - CFD: 20/07/2015 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 26/03/2015 - [] D -- C:\Program Files\Lenovo =>.Lenovo O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\Lenovo PhoneCompanion =>.Lenovo O43 - CFD: 26/08/2014 - [] D -- C:\Program Files\Lenovo PhotoMasterImport =>.Lenovo (Beijing) Limited® O43 - CFD: 30/10/2021 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 24/07/2015 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation O43 - CFD: 16/07/2015 - [] D -- C:\Program Files\MotioninJoy [Unsigned] =>.MotionInJoy O43 - CFD: 03/04/2014 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 03/04/2014 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 11/04/2015 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 16/06/2015 - [] D -- C:\Program Files\Windows Journal =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 25/12/2014 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 30/10/2021 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\AMD AVT =>.Advanced Micro Devices Inc O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\ATI Technologies =>.ATI Technologies O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Cisco =>.Cisco Systems, Inc. O43 - CFD: 30/10/2021 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 16/07/2015 - [] D -- C:\Program Files (x86)\ControlMK [Unsigned] O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Cyberlink =>.CyberLink Corporation O43 - CFD: 06/03/2017 - [] D -- C:\Program Files (x86)\epson =>.SEIKO EPSON CORPORATION® O43 - CFD: 06/03/2017 - [] D -- C:\Program Files (x86)\EPSON Software =>.Epson/Seico O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Hightail =>.Hightail O43 - CFD: 24/01/2020 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 20/07/2015 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 27/02/2015 - [] D -- C:\Program Files (x86)\Lenovo =>.Lenovo O43 - CFD: 11/01/2015 - [] D -- C:\Program Files (x86)\LG Electronics [Unsigned] =>.LG Electronics O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 26/12/2014 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 31/10/2021 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 03/04/2014 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [0] D -- C:\Program Files (x86)\New Folder O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Nitro =>.Nitro O43 - CFD: 27/02/2015 - [] D -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org O43 - CFD: 06/07/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\REALTEK PCIE Wireless LAN Driver =>.Realtek Semiconductor Corp. O43 - CFD: 03/04/2014 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 13/03/2015 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 15/03/2015 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 11/04/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 11/04/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 11/04/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 11/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center =>.Advanced Micro Devices Inc O43 - CFD: 11/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Quick Stream =>.Advanced Micro Devices Inc O43 - CFD: 16/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ControlMK O43 - CFD: 11/04/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDirector 10 =>.CyberLink Corporation O43 - CFD: 11/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby =>.Dolby O43 - CFD: 04/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON =>.EPSON O43 - CFD: 06/03/2017 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software =>.Epson/Seico O43 - CFD: 11/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hightail =>.Hightail O43 - CFD: 11/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo O43 - CFD: 11/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Photo Master =>.Lenovo O43 - CFD: 11/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 11/04/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 =>.Microsoft Corporation O43 - CFD: 16/07/2015 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MotioninJoy =>.MotionInJoy O43 - CFD: 11/04/2015 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.1 =>.SourceForge O43 - CFD: 30/10/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 11/04/2015 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 18/03/2014 - [0] RHD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tablet PC =>.Wacom Technology O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 15/03/2015 - [] D -- C:\ProgramData\Aeria Games =>.Aeria Games O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\AMD =>.AMD O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 26/12/2014 - [] D -- C:\ProgramData\ATI =>.ATI O43 - CFD: 25/12/2014 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\Conexant =>.Conexant Systems, Inc. O43 - CFD: 11/03/2015 - [] D -- C:\ProgramData\CyberLink =>.CyberLink Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\Downloaded Installations =>.Microsoft Corporation O43 - CFD: 26/12/2014 - [] D -- C:\ProgramData\eBay =>.eBay O43 - CFD: 24/01/2020 - [] D -- C:\ProgramData\Energy Manager =>.Lenovo O43 - CFD: 06/03/2017 - [] D -- C:\ProgramData\Epson =>.EPSON O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\install_clap =>.Microsoft Corporation O43 - CFD: 12/02/2016 - [] D -- C:\ProgramData\Lenovo =>.Lenovo O43 - CFD: 31/10/2021 - [] D -- C:\ProgramData\LU =>.Unknown O43 - CFD: 30/10/2021 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 23/04/2015 - [] D -- C:\ProgramData\McAfee =>.McAfee O43 - CFD: 25/12/2014 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 10/01/2015 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 26/12/2014 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 25/12/2014 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 18/01/2015 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\Nitro =>.Nitro O43 - CFD: 26/12/2014 - [0] D -- C:\ProgramData\Office2013 =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\OneKey Recovery =>.Lenovo Group Limited O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 11/03/2015 - [] D -- C:\ProgramData\PhotoMaster O43 - CFD: 30/10/2021 - [] D -- C:\ProgramData\Radio O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\Realtek =>.Realtek O43 - CFD: 24/07/2015 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 06/03/2017 - [] D -- C:\ProgramData\Sony Corporation =>.Sony Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 07/04/2015 - [0] D -- C:\ProgramData\T122078ED O43 - CFD: 26/08/2014 - [] D -- C:\ProgramData\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 06/03/2017 - [] D -- C:\ProgramData\UDL =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Common Files\ATI Technologies =>.ATI Technologies O43 - CFD: 24/07/2015 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 22/02/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Common Files\LENOVO =>.Lenovo O43 - CFD: 10/01/2015 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Nikon =>.Nikon O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Common Files\Nitro =>.Nitro O43 - CFD: 22/08/2013 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [] D -- C:\Program Files (x86)\Common Files\SNP2UVC =>.Sonix O43 - CFD: 15/03/2015 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 26/12/2014 - [] D -- C:\Users\Frances\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 15/03/2015 - [] D -- C:\Users\Frances\AppData\Roaming\Aeria Games & Entertainment =>.Aeria Games & Entertainment O43 - CFD: 26/12/2014 - [] D -- C:\Users\Frances\AppData\Roaming\ATI =>.ATI O43 - CFD: 06/03/2017 - [] D -- C:\Users\Frances\AppData\Roaming\EPSON =>.EPSON O43 - CFD: 26/12/2014 - [] D -- C:\Users\Frances\AppData\Roaming\Hightail for Lenovo =>.Hightail O43 - CFD: 15/03/2015 - [] D -- C:\Users\Frances\AppData\Roaming\Identities =>.Microsoft Corporation O43 - CFD: 04/03/2017 - [] D -- C:\Users\Frances\AppData\Roaming\InstallShield =>.InstallShield O43 - CFD: 26/12/2014 - [] D -- C:\Users\Frances\AppData\Roaming\LSC =>.LSC O43 - CFD: 26/08/2014 - [] D -- C:\Users\Frances\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 04/03/2017 - [] SD -- C:\Users\Frances\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 16/07/2015 - [] D -- C:\Users\Frances\AppData\Roaming\MotioninJoy =>.MotionInJoy O43 - CFD: 18/01/2015 - [] D -- C:\Users\Frances\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 08/01/2015 - [] D -- C:\Users\Frances\AppData\Roaming\My Bluetooth =>.Legitimate O43 - CFD: 16/07/2015 - [] D -- C:\Users\Frances\AppData\Roaming\Nitro =>.Nitro O43 - CFD: 27/02/2015 - [] D -- C:\Users\Frances\AppData\Roaming\OpenOffice =>.SourceForge O43 - CFD: 31/10/2021 - [] D -- C:\Users\Frances\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 16/06/2015 - [] D -- C:\Users\Frances\AppData\Local\Adobe =>.Adobe O43 - CFD: 15/03/2015 - [] D -- C:\Users\Frances\AppData\Local\Aeria Games =>.Aeria Games O43 - CFD: 26/12/2014 - [] D -- C:\Users\Frances\AppData\Local\AMD =>.AMD O43 - CFD: 26/12/2014 - [0] SHD -- C:\Users\Frances\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 26/12/2014 - [] D -- C:\Users\Frances\AppData\Local\ATI =>.ATI O43 - CFD: 26/12/2014 - [] D -- C:\Users\Frances\AppData\Local\CyberLink =>.CyberLink Corporation O43 - CFD: 30/10/2021 - [] D -- C:\Users\Frances\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 16/06/2015 - [0] SHD -- C:\Users\Frances\AppData\Local\EmieBrowserModeList =>.ATTENTION O43 - CFD: 16/06/2015 - [0] SHD -- C:\Users\Frances\AppData\Local\EmieSiteList =>.ATTENTION O43 - CFD: 16/06/2015 - [0] SHD -- C:\Users\Frances\AppData\Local\EmieUserList =>.ATTENTION O43 - CFD: 07/04/2017 - [] D -- C:\Users\Frances\AppData\Local\fontconfig =>.Portable Apps O43 - CFD: 07/04/2017 - [] D -- C:\Users\Frances\AppData\Local\gegl-0.2 =>.Portable Apps O43 - CFD: 27/06/2015 - [] D -- C:\Users\Frances\AppData\Local\GWX =>.GWX O43 - CFD: 26/12/2014 - [0] SHD -- C:\Users\Frances\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 05/01/2015 - [] D -- C:\Users\Frances\AppData\Local\Lenovo =>.Lenovo O43 - CFD: 23/04/2015 - [] D -- C:\Users\Frances\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 30/10/2021 - [] D -- C:\Users\Frances\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 07/04/2017 - [] D -- C:\Users\Frances\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 01/03/2015 - [] DC -- C:\Users\Frances\AppData\Local\MigWiz =>.MigWiz O43 - CFD: 18/01/2015 - [] D -- C:\Users\Frances\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 30/10/2021 - [] D -- C:\Users\Frances\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 26/01/2015 - [] D -- C:\Users\Frances\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 11/04/2015 - [] D -- C:\Users\Frances\AppData\Local\soso O43 - CFD: 31/10/2021 - [] D -- C:\Users\Frances\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 26/12/2014 - [0] SHD -- C:\Users\Frances\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 21/09/2015 - [0] D -- C:\Users\Frances\AppData\Local\TempTaskUpdateDetection5D4A1622-1FD8-491C-A80E-4177FCFF1D6E O43 - CFD: 01/03/2017 - [0] D -- C:\Users\Frances\AppData\Local\TempTaskUpdateDetection6196966A-2973-4443-8F87-405850844649 O43 - CFD: 11/03/2017 - [0] D -- C:\Users\Frances\AppData\Local\TempTaskUpdateDetection69FF165F-5BF0-4BB7-9DB0-C0EA373EF9A0 O43 - CFD: 20/08/2015 - [0] D -- C:\Users\Frances\AppData\Local\TempTaskUpdateDetection954344DE-C8E5-4894-AC90-18FFD512C5A6 O43 - CFD: 03/07/2017 - [0] D -- C:\Users\Frances\AppData\Local\TempTaskUpdateDetectionA4055219-DEDB-4C95-8376-A51DA06DBBBC O43 - CFD: 07/09/2015 - [0] D -- C:\Users\Frances\AppData\Local\TempTaskUpdateDetectionC993A7F7-D5CE-4E70-B39B-E5B8C4AE7D5E O43 - CFD: 15/09/2015 - [0] D -- C:\Users\Frances\AppData\Local\TempTaskUpdateDetectionDA166B9E-EB46-4C57-9B73-E1891A320DCF O43 - CFD: 01/07/2016 - [0] D -- C:\Users\Frances\AppData\Local\TempTaskUpdateDetectionF131CAC8-7E25-4F93-82BD-2BC2BC80D9AB O43 - CFD: 26/12/2014 - [] D -- C:\Users\Frances\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 30/10/2021 - [] D -- C:\Users\Frances\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 26/01/2015 - [0] D -- C:\Users\Frances\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 24/01/2020 - [] D -- C:\Users\Frances\AppData\LocalLow\Adblock Plus for IE =>.Adblock O43 - CFD: 31/10/2021 - [] D -- C:\Users\Frances\AppData\LocalLow\IGDump O43 - CFD: 23/04/2015 - [] SD -- C:\Users\Frances\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 29/07/2015 - [] D -- C:\Users\Frances\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 25/01/2020 - [] RD -- C:\Users\Frances\Desktop\Nouveau dossier O43 - CFD: 30/10/2021 - [] D -- C:\Users\Frances\Desktop\Wub O43 - CFD: 18/03/2014 - [] RD -- C:\Users\Frances\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [] RD -- C:\Users\Frances\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 30/10/2021 - [] RD -- C:\Users\Frances\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 24/01/2020 - [0] D -- C:\Users\Frances\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AeriaGames =>.AeriaGames O43 - CFD: 16/07/2015 - [0] D -- C:\Users\Frances\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ControlMK O43 - CFD: 11/04/2015 - [] D -- C:\Users\Frances\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo O43 - CFD: 22/08/2013 - [] D -- C:\Users\Frances\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 30/10/2021 - [] RD -- C:\Users\Frances\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 26/08/2014 - [] RD -- C:\Users\Frances\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 25/12/2014 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 18/03/2014 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 25/12/2014 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 18/03/2014 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 22/08/2013 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 11/01/2015 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 02/03/2015 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Hightail for Lenovo =>.Hightail O43 - CFD: 16/03/2018 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 02/03/2015 - [] SD -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation ---\\ ShellIconOverlayIdentifiers (SIOI) (8) - 1s O106 - SIOI: [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll =>.Microsoft® O106 - SIOI: [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll =>.Microsoft® O106 - SIOI: [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll =>.Microsoft® O106 - SIOI: YSISyncIconOverlayHandler Class [00001LenovoSyncComplete] - {1E9CED2C-E7B4-4C47-B07A-25416393B67B}. (.Hightail Inc. - Hightail Explorer Extension.) -- C:\Program Files\Hightail\Hightail for Lenovo\YSINSE64.dll =>.Hightail Inc. (YouSendIt Inc.)® O106 - SIOI: YSISyncActiveIconOverlayHandler Class [00002LenovoSyncActive] - {C1285F4D-918F-4EF2-BC94-CAD5B118C835}. (.Hightail Inc. - Hightail Explorer Extension.) -- C:\Program Files\Hightail\Hightail for Lenovo\YSINSE64.dll =>.Hightail Inc. (YouSendIt Inc.)® O106 - SIOI: YSISyncErrorIconOverlayHandler Class [00003LenovoSyncError] - {CE5633DA-1488-4D1D-9A9B-B500297D4A8C}. (.Hightail Inc. - Hightail Explorer Extension.) -- C:\Program Files\Hightail\Hightail for Lenovo\YSINSE64.dll =>.Hightail Inc. (YouSendIt Inc.)® O106 - SIOI: YSISyncLocalOnlyIconOverlayHandler Class [00004LenovoLocalOnly] - {C7362DA9-D3AC-4C17-B2F5-2F1823FA04C3}. (.Hightail Inc. - Hightail Explorer Extension.) -- C:\Program Files\Hightail\Hightail for Lenovo\YSINSE64.dll =>.Hightail Inc. (YouSendIt Inc.)® O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (28) - 4s O108 - CMH1: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: BtSendToMenuEx [64Bits] - {CF24E6B8-F148-4BCB-9108-ADF313966E80} . (.Realtek Semiconductor Corporation - Realtek Bluetooth Device Menu DLL.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\DevMenuExt.dll [Unsigned] =>.Realtek Semiconductor Corporation O108 - CMH1: NP8ShellExtension [64Bits] - {9C4B85B8-956C-49BF-9BA5-101384E562B2} . (.Nitro PDF - Nitro Pro ShellExtension.) -- C:\Program Files\Common Files\Nitro\Pro\9.0\NPShellExtension64.dll =>.Nitro PDF Software® O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: SHAREit.FileContextMenuExt [64Bits] - {430BD134-576D-4E75-87CD-0F5C6221A82B} . (.Lenovo - Shell Extension.) -- C:\Program Files (x86)\Lenovo\SHAREit\ShellEx\ShellExt64.dll [Unsigned] =>.Lenovo O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: BtSendToMenuEx [64Bits] - {CF24E6B8-F148-4BCB-9108-ADF313966E80} . (.Realtek Semiconductor Corporation - Realtek Bluetooth Device Menu DLL.) -- C:\Program Files (x86)\Realtek\Realtek Bluetooth\DevMenuExt.dll [Unsigned] =>.Realtek Semiconductor Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: 000LenovoFoldersContextMenu [64Bits] - {D2DB7BAA-9E12-4640-825C-B1EB36A3809A} . (.Hightail Inc. - Hightail Explorer Extension.) -- C:\Program Files\Hightail\Hightail for Lenovo\YSINSE64.dll =>.Hightail Inc. (YouSendIt Inc.)® O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: SHAREit.FileContextMenuExt [64Bits] - {430BD134-576D-4E75-87CD-0F5C6221A82B} . (.Lenovo - Shell Extension.) -- C:\Program Files (x86)\Lenovo\SHAREit\ShellEx\ShellExt64.dll [Unsigned] =>.Lenovo O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: ACE [64Bits] - {5E2121EE-0300-11D4-8D3B-444553540000} . (.Advanced Micro Devices, Inc. - AMD Desktop Control Panel.) -- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [Unsigned] =>.Advanced Micro Devices, Inc. O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: BriefcaseMenu [64Bits] - {85BBD920-42A0-1069-A2E4-08002B30309D} . (.Microsoft Corporation - Porte-documents Windows.) -- C:\Windows\System32\syncui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (16) - 1s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft® O50 - IFEO:C:\Windows\System32\drvinst.exe - (.Microsoft Corporation - Module d’installation de pilotes.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTÈME (346) - 19s O58 - SDL:2013/08/22 12:38:15 AC . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [231424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:41 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [108896] =>.Microsoft® O58 - SDL:2014/10/07 07:44:53 AC . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [533824] =>.Microsoft® O58 - SDL:2013/08/22 13:49:54 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [79712] =>.Microsoft® O58 - SDL:2013/08/22 12:38:48 AC . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:53 AC . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:58 AC . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [10752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/08/26 12:32:13 A . (.Lenovo Corporation - ACPI Virtual Power Controller Driver.) -- C:\WINDOWS\System32\drivers\AcpiVpc.sys [35576] =>.Lenovo (Beijing) Limited® O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [782176] =>.Microsoft® O58 - SDL:2014/05/30 04:03:03 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [563200] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/10 03:57:03 A . (.Microsoft Corporation - RAS Agile Vpn Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [96768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:40 AC . (.Microsoft Corporation - Filtre AGP 440 NT.) -- C:\WINDOWS\System32\drivers\AGP440.sys [62304] =>.Microsoft® O58 - SDL:2015/03/20 02:56:10 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [80384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/03/11 15:19:46 A . (. - KSL Kernel-Mode Dll.) -- C:\WINDOWS\System32\drivers\amdacpksl.sys [142848] [Unsigned] O58 - SDL:2013/08/22 09:46:34 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [95744] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/02/24 09:45:34 A . (.Advanced Micro Devices, Inc. - amdkmcsp sys.) -- C:\WINDOWS\System32\drivers\amdkmcsp.sys [85704] =>.Advanced Micro Devices, Inc.® O58 - SDL:2013/12/12 00:32:24 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [36608] =>.Advanced Micro Devices, Inc.® O58 - SDL:2013/08/22 09:46:35 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [98816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/02/24 09:45:56 A . (.Advanced Micro Devices, Inc. - amdpsp sys.) -- C:\WINDOWS\System32\drivers\amdpsp.sys [230088] =>.Advanced Micro Devices, Inc.® O58 - SDL:2013/08/22 13:43:41 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [79200] =>.Microsoft® O58 - SDL:2013/08/22 13:43:41 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259424] =>.Microsoft® O58 - SDL:2013/08/22 13:43:40 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [25952] =>.Microsoft® O58 - SDL:2014/03/21 03:02:16 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amd_sata.sys [81608] =>.Advanced Micro Devices, Inc.® O58 - SDL:2014/03/21 03:02:16 A . (.Advanced Micro Devices - Stor Filter Driver.) -- C:\WINDOWS\System32\drivers\amd_xata.sys [23752] =>.Advanced Micro Devices, Inc.® O58 - SDL:2013/11/01 04:32:14 A . (.AppEx Networks Corporation - AppEx Accelerator LWF/WFP Driver L.E..) -- C:\WINDOWS\System32\drivers\appexDrv.sys [224992] =>.AppEx Networks Corporation® O58 - SDL:2014/10/29 03:46:07 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [82944] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:41 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [114016] =>.Microsoft® O58 - SDL:2013/08/22 12:38:53 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:41 AC . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [26464] =>.Microsoft® O58 - SDL:2013/08/22 13:43:41 AC . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [199520] =>.Microsoft® O58 - SDL:2014/03/11 15:20:04 A . (.Advanced Micro Devices - AMD High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\AtihdWB6.sys [222720] [Unsigned] =>.Advanced Micro Devices O58 - SDL:2014/04/19 05:46:44 A . (.Advanced Micro Devices, Inc. - ATI Radeon Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\atikmdag.sys [13269504] [Unsigned] =>.Advanced Micro Devices, Inc. O58 - SDL:2014/04/19 02:26:54 A . (.Advanced Micro Devices, Inc. - AMD multi-vendor Miniport Driver.) -- C:\WINDOWS\System32\drivers\atikmpag.sys [625152] [Unsigned] =>.Advanced Micro Devices, Inc. O58 - SDL:2013/08/22 12:39:31 AC . (.Microsoft Corporation - Microsoft Basic Display Driver.) -- C:\WINDOWS\System32\drivers\BasicDisplay.sys [50688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/03/18 10:54:42 AC . (.Microsoft Corporation - Microsoft Basic Render Driver.) -- C:\WINDOWS\System32\drivers\BasicRender.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:49:53 AC . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [35168] =>.Microsoft® O58 - SDL:2013/08/13 00:25:46 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [17624] =>.Broadcom Corporation® O58 - SDL:2013/08/22 12:40:24 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:38 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [102912] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:45:24 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [115712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/03/18 10:54:42 AC . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/01/30 04:01:46 AC . (.Microsoft Corporation - Pilote A2DP Bluetooth.) -- C:\WINDOWS\System32\drivers\BthA2DP.sys [132608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:39 AC . (.Microsoft Corporation - HID de contrôle à distance audio/vidéo Blue.) -- C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [36992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/06/09 23:39:00 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/08 08:33:31 AC . (.Microsoft Corporation - Bluetooth Hands-free Audio Device Driver.) -- C:\WINDOWS\System32\drivers\BthHfAud.sys [32768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/03/09 03:02:51 AC . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\bthhfenum.sys [57856] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:16 AC . (.Microsoft Corporation - Minipilote HID mains libres Bluetooth.) -- C:\WINDOWS\System32\drivers\BthhfHid.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/03/18 10:54:42 AC . (.Microsoft Corporation - Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\BthLEEnum.sys [226304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/07/24 12:43:06 AC . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [64000] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/07/24 12:41:43 AC . (.Microsoft Corporation - Bluetooth Personal Area Networking.) -- C:\WINDOWS\System32\drivers\bthpan.sys [118272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/06/09 23:38:27 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1201664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/06/09 23:39:03 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [81920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:41 A . (.Broadcom Corporation - Broadcom NetXtreme II GigE VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [531296] =>.Microsoft® O58 - SDL:2013/08/22 12:40:15 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [88576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 09:46:35 AC . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [164352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/01/27 09:23:56 A . (.Conexant Systems Inc. - 64-bit High Definition Audio Function Drive.) -- C:\WINDOWS\System32\drivers\CHDRT64.sys [1474240] =>.Conexant Systems, Inc.® O58 - SDL:2013/08/22 12:38:25 AC . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/05/06 22:59:29 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [331608] =>.Microsoft® O58 - SDL:2015/03/04 11:25:11 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [377152] =>.Microsoft® O58 - SDL:2013/08/22 12:39:43 AC . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [25472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/06/11 20:51:37 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [563024] =>.Microsoft® O58 - SDL:2013/08/22 12:38:48 AC . (.Microsoft Corporation - Multi-Transport Composite Bus Enumerator.) -- C:\WINDOWS\System32\drivers\CompositeBus.sys [36352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:25:40 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [43008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:41 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [68960] =>.Microsoft® O58 - SDL:2014/11/04 20:33:40 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [58176] =>.Microsoft® O58 - SDL:2016/05/06 18:13:28 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [138240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:44 AC . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [100192] =>.Microsoft® O58 - SDL:2013/08/22 13:43:40 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [36192] =>.Microsoft® O58 - SDL:2013/08/22 12:40:38 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [13312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:37:14 A . (.Microsoft Corporation - Dynamic Memory.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:47:38 AC . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [89088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 04:58:59 AC . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [14528] =>.Microsoft® O58 - SDL:2013/08/22 13:39:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [33632] =>.Microsoft® O58 - SDL:2016/06/18 21:06:24 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [72408] =>.Microsoft® O58 - SDL:2015/03/13 05:03:30 AC . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [154432] =>.Microsoft® O58 - SDL:2014/10/29 04:57:39 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [1552704] =>.Microsoft® O58 - SDL:2014/10/29 04:57:39 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [389952] =>.Microsoft® O58 - SDL:2013/06/18 15:45:26 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1i63x64.sys [460288] [Unsigned] =>.Intel Corporation O58 - SDL:2013/08/22 13:43:40 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [82784] =>.Microsoft® O58 - SDL:2013/08/22 13:43:40 AC . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [114016] =>.Microsoft® O58 - SDL:2013/08/22 12:38:45 AC . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/02/11 03:48:22 A . (.ELAN Microelectronics Corp. - ETD Kernel Center.) -- C:\WINDOWS\System32\drivers\ETD.sys [377608] =>.ELAN Microelectronics Corporation® O58 - SDL:2013/08/22 13:43:45 A . (.Broadcom Corporation - Broadcom NetXtreme II 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3357024] =>.Microsoft® O58 - SDL:2013/08/22 12:40:18 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [200704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:49:30 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [217952] =>.Microsoft® O58 - SDL:2013/08/22 12:40:18 AC . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/03/18 10:54:52 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [79192] =>.Microsoft® O58 - SDL:2013/08/22 12:39:41 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:40:18 AC . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/08/26 04:30:21 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [354112] =>.Microsoft® O58 - SDL:2014/10/15 09:32:36 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [61248] =>.Microsoft® O58 - SDL:2013/08/22 14:25:40 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [30048] =>.Microsoft® O58 - SDL:2016/06/18 21:06:02 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [590688] =>.Microsoft® O58 - SDL:2014/11/10 19:06:59 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [428864] =>.Microsoft® O58 - SDL:2013/08/22 09:46:33 AC . (.Microsoft Corporation - Processor Driver.) -- C:\WINDOWS\System32\drivers\fxppm.sys [27136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:45 A . (.Microsoft Corporation - Filtre AGPv3.0 générique Microsoft pour pla.) -- C:\WINDOWS\System32\drivers\GAGP30KX.SYS [65888] =>.Microsoft® O58 - SDL:2014/07/24 12:45:39 AC . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:21 AC . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [395776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:39:01 AC . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/01/30 04:01:51 AC . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [97792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/05/14 00:08:24 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [111616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:37:28 AC . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [41472] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:39:16 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/05/14 00:08:58 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [32512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/05/14 00:08:13 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [32768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:45 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64352] =>.Microsoft® O58 - SDL:2015/02/24 09:32:52 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [991552] =>.Microsoft® O58 - SDL:2013/08/22 13:39:47 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [24416] =>.Microsoft® O58 - SDL:2013/08/22 12:37:49 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:39:20 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [22016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/04 07:54:54 AC . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [108544] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/07/30 19:47:35 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [24568] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/07/25 20:05:39 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [99320] =>.Intel Corporation - Software and Firmware Products® O58 - SDL:2013/08/10 01:39:30 A . (.Intel Corporation - Intel Rapid Storage Technology driver (inbo.) -- C:\WINDOWS\System32\drivers\iaStorAV.sys [651248] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2013/08/22 13:43:45 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412000] =>.Microsoft® O58 - SDL:2013/08/22 13:43:44 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [18272] =>.Microsoft® O58 - SDL:2014/10/17 05:56:23 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [39744] =>.Microsoft® O58 - SDL:2013/08/22 09:46:35 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [98816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:35:51 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [84992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/07/24 12:46:02 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [79872] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/03/18 10:54:57 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [142848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:37:35 A . (.Microsoft Corporation - IRDA Protocol Driver.) -- C:\WINDOWS\System32\drivers\irda.sys [118784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:30 A . (.Microsoft Corporation - Infra-Red Bus Enumerator.) -- C:\WINDOWS\System32\drivers\irenum.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:45 AC . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [21856] =>.Microsoft® O58 - SDL:2014/11/04 20:25:09 AC . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [59712] =>.Microsoft® O58 - SDL:2014/11/04 07:54:47 AC . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:26 AC . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/07/04 13:59:02 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [295424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 04:52:15 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [100672] =>.Microsoft® O58 - SDL:2016/06/11 20:50:46 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [178016] =>.Microsoft® O58 - SDL:2013/08/22 12:39:31 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [21248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2011/09/06 01:19:54 A . (.Google Inc - ADB Interface.) -- C:\WINDOWS\System32\drivers\lgandnetadb.sys [31744] [Unsigned] =>.Google Inc O58 - SDL:2011/09/06 01:00:04 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\WINDOWS\System32\drivers\lgandnetdiag64.sys [29184] [Unsigned] =>.LG Electronics Inc. O58 - SDL:2011/09/06 01:00:02 A . (.LG Electronics Inc. - LGE AndroidNet Driver.) -- C:\WINDOWS\System32\drivers\lgandnetmodem64.sys [35840] [Unsigned] =>.LG Electronics Inc. O58 - SDL:2011/09/16 07:26:48 A . (.LG Electronics Inc. - LGE AndroidNet USB NDIS Miniport Driver.) -- C:\WINDOWS\System32\drivers\lgandnetndis64.sys [93184] [Unsigned] =>.LG Electronics Inc. O58 - SDL:2013/08/22 12:36:18 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [59392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [109408] =>.Microsoft® O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2.sys [93536] =>.Microsoft® O58 - SDL:2013/08/22 13:43:44 A . (.LSI Corporation - LSI SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3.sys [81760] =>.Microsoft® O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82784] =>.Microsoft® O58 - SDL:2014/03/18 10:54:53 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [124416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/30 17:53:17 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [160176] =>.Microsoft® O58 - SDL:2021/10/31 14:13:17 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [210352] =>.Microsoft® O58 - SDL:2021/10/30 17:54:19 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [248992] =>.Malwarebytes Inc® O58 - SDL:2013/08/22 12:39:38 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [22016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [56672] =>.Microsoft® O58 - SDL:2013/08/22 13:43:45 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575840] =>.Microsoft® O58 - SDL:2012/05/12 11:31:00 A . (.MotioninJoy - MotioninJoy DS3 driver.) -- C:\WINDOWS\System32\drivers\MijXfilt.sys [121416] [Unsigned] =>.MotionInJoy O58 - SDL:2013/08/22 12:40:15 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:36:37 AC . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/04 20:25:09 AC . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [51008] =>.Microsoft® O58 - SDL:2014/11/04 07:54:47 AC . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/07 07:44:55 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [102208] =>.Microsoft® O58 - SDL:2014/10/29 03:45:31 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [74240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/12/19 07:26:49 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [140800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/04/06 19:19:38 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [401920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/04/06 19:19:05 A . (.Microsoft Corporation - Longhorn SMB Downlevel SubRdr.) -- C:\WINDOWS\System32\drivers\mrxsmb10.sys [284672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/04/06 19:20:32 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [201728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/08/15 01:36:55 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [146752] =>.Microsoft® O58 - SDL:2013/08/22 13:43:48 AC . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [41824] =>.Microsoft® O58 - SDL:2013/08/22 12:39:06 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:39:06 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [9728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:49 AC . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [17248] =>.Microsoft® O58 - SDL:2014/04/06 17:34:08 AC . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [275800] =>.Microsoft® O58 - SDL:2013/08/22 12:39:31 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [10624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:45:39 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:39:30 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [7040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:39:31 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [6784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:25:35 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [366432] =>.Microsoft® O58 - SDL:2013/08/22 13:49:29 AC . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [37728] =>.Microsoft® O58 - SDL:2013/08/22 12:38:38 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [7936] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:37:36 AC . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [13312] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/04/06 22:21:14 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiple.) -- C:\WINDOWS\System32\drivers\mup.sys [114528] =>.Microsoft® O58 - SDL:2013/08/22 13:43:49 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63840] =>.Microsoft® O58 - SDL:2015/02/05 21:24:44 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1113920] =>.Microsoft® O58 - SDL:2014/10/29 03:46:52 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [43008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:45:54 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [126464] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/08 05:00:41 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:37:34 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [60416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:36:25 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/04/05 23:37:24 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [205824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/01/06 04:01:00 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [72192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:45:16 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [103424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:47:23 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [48128] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/05/14 00:07:20 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [281088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/10 19:06:59 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [473408] =>.Microsoft® O58 - SDL:2014/10/29 03:46:09 A . (.Microsoft Corporation - Virtual NDIS6.3 Miniport.) -- C:\WINDOWS\System32\drivers\netvsc63.sys [87040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/06/18 15:45:43 A . (.Intel Corporation - Intel® Wireless WiFi Link Driver.) -- C:\WINDOWS\System32\drivers\NETwew02.sys [4649440] =>.Intel Corporation-Mobile Wireless Group® O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [58880] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:22 AC . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:46:03 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [39424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/15 09:32:37 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2025792] =>.Microsoft® O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [5632] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:31 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150368] =>.Microsoft® O58 - SDL:2013/08/22 13:43:32 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [168288] =>.Microsoft® O58 - SDL:2013/08/22 13:43:32 A . (.Microsoft Corporation - Filtre AGP NForce NT.) -- C:\WINDOWS\System32\drivers\NV_AGP.SYS [124768] =>.Microsoft® O58 - SDL:2014/10/29 03:45:41 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [445440] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:45:31 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [151040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:40:02 AC . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [94208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/15 09:32:36 A . (.Microsoft Corporation - Partition Management Driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [88896] =>.Microsoft® O58 - SDL:2014/07/24 16:28:35 AC . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [280384] =>.Microsoft® O58 - SDL:2013/08/22 13:43:31 AC . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [14688] =>.Microsoft® O58 - SDL:2013/08/22 13:43:32 AC . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [48992] =>.Microsoft® O58 - SDL:2013/08/22 13:49:30 AC . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [114528] =>.Microsoft® O58 - SDL:2013/08/22 13:39:15 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [50016] =>.Microsoft® O58 - SDL:2014/10/17 04:35:04 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [86336] =>.Microsoft® O58 - SDL:2014/03/18 10:54:56 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [663040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:46:37 AC . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [272384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 09:46:34 AC . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [92160] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:47:40 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:48:01 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/08 04:58:31 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [112640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:36:37 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [84992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:35:51 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:45:50 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [93696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/04/06 19:20:42 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [402432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:52 AC . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [22528] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/03/18 10:38:05 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [195584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 04:56:04 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [27456] =>.Microsoft® O58 - SDL:2014/03/18 10:54:51 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [249688] =>.Microsoft® O58 - SDL:2014/10/15 09:32:36 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [921920] =>.Microsoft® O58 - SDL:2015/01/30 04:00:56 AC . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [167424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:45:58 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [144384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:44 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:48:13 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [11776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:36:34 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [80384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/12/18 04:35:22 A . (.Realtek - Realtek 8101E/8168/8169 NDIS 6.30 64-bit Dr.) -- C:\WINDOWS\System32\drivers\Rt630x64.sys [839896] =>.Realtek Semiconductor Corp® O58 - SDL:2014/04/15 02:47:58 A . (.Realtek Semiconductor Corporation - Realtek Bluetooth Filter Driver.) -- C:\WINDOWS\System32\drivers\RtkBtfilter.sys [558296] =>.Realtek Semiconductor Corp® O58 - SDL:2014/02/27 02:53:38 A . (.Realtek Semiconductor Corp. - Realtek USB Mass Storage Driver for 2K/XP/V.) -- C:\WINDOWS\System32\drivers\RtsUVStor.sys [331992] =>.Realtek Semiconductor Corp® O58 - SDL:2014/10/07 20:10:50 A . (.Realtek Semiconductor Corporation - Realtek PCIE NDIS Driver 31629.) -- C:\WINDOWS\System32\drivers\rtwlane.sys [3593432] =>.Realtek Semiconductor Corp® O58 - SDL:2013/08/22 13:39:15 AC . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [107872] =>.Microsoft® O58 - SDL:2014/10/29 03:46:57 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [40960] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:32 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [170848] =>.Microsoft® O58 - SDL:2015/03/13 05:03:31 AC . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [239424] =>.Microsoft® O58 - SDL:2014/03/18 10:54:42 AC . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [79192] =>.Microsoft® O58 - SDL:2013/08/22 16:35:09 A . (.Macrovision Corporation, Macrovision Europe Limited, - Macrovision SECURITY Driver.) -- C:\WINDOWS\System32\drivers\secdrv.sys [23040] [Unsigned] =>.Rovi Corporation O58 - SDL:2013/08/22 13:43:31 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [69472] =>.Microsoft® O58 - SDL:2014/03/18 10:54:54 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [146776] =>.Microsoft® O58 - SDL:2013/08/22 12:40:17 AC . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:40:08 AC . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [83456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/11/04 07:55:15 AC . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:40:00 AC . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:31 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44896] =>.Microsoft® O58 - SDL:2013/08/22 13:43:32 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81760] =>.Microsoft® O58 - SDL:2013/08/22 12:40:16 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [19968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/01/23 16:56:32 A . (.Sonix Co. Ltd. - Sonix SN9C290 driver.) -- C:\WINDOWS\System32\drivers\snp2uvc.sys [2853400] =>.Sonix Technology CO., LTD® O58 - SDL:2014/10/29 04:59:47 AC . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [415040] =>.Microsoft® O58 - SDL:2013/08/22 13:43:31 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [72032] =>.Microsoft® O58 - SDL:2014/07/24 12:43:29 A . (.Microsoft Corporation - Server driver.) -- C:\WINDOWS\System32\drivers\srv.sys [412160] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/08 08:33:33 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [678400] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/06/27 07:22:23 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [246272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG USB Composite Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudbus.sys [108800] =>.DEVGURU CO LTD® O58 - SDL:2014/01/22 08:52:10 A . (.DEVGURU Co., LTD.(www.devguru.co.kr) - SAMSUNG Android Modem Device Driver (MSS Ve.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [206080] =>.DEVGURU CO LTD® O58 - SDL:2013/08/22 13:43:32 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31072] =>.Microsoft® O58 - SDL:2013/08/22 13:43:31 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [107872] =>.Microsoft® O58 - SDL:2016/06/11 20:52:04 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [57184] =>.Microsoft® O58 - SDL:2016/06/11 20:52:04 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [379232] =>.Microsoft® O58 - SDL:2013/08/22 13:36:48 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [45888] =>.Microsoft® O58 - SDL:2013/08/22 12:39:26 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [67584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 04:59:47 AC . (.Microsoft Corporation - Plug and Play Software Device Enumerator.) -- C:\WINDOWS\System32\drivers\swenum.sys [14144] =>.Microsoft® O58 - SDL:2013/08/22 12:39:50 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 05:13:01 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [21824] =>.Microsoft® O58 - SDL:2014/11/10 19:06:59 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2485056] =>.Microsoft® O58 - SDL:2014/03/06 10:19:59 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:25:35 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:25:35 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/03/18 10:38:02 AC . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [37216] =>.Microsoft® O58 - SDL:2013/08/22 13:39:14 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [121184] =>.Microsoft® O58 - SDL:2013/08/22 13:49:33 AC . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [159584] =>.Microsoft® O58 - SDL:2013/08/22 12:37:28 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [56320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:46:43 AC . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:35:45 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [154112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:43:33 A . (.Microsoft Corporation - Filtre MS AGPv3.5.) -- C:\WINDOWS\System32\drivers\UAGP35.SYS [64864] =>.Microsoft® O58 - SDL:2013/08/22 13:43:33 AC . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [74080] =>.Microsoft® O58 - SDL:2014/10/07 07:54:45 AC . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\UCX01000.SYS [189248] =>.Microsoft® O58 - SDL:2015/03/13 03:02:11 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [316416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 13:39:15 AC . (.Microsoft Corporation - UEFI Driver for NT.) -- C:\WINDOWS\System32\drivers\uefi.sys [26976] =>.Microsoft® O58 - SDL:2013/08/22 13:43:33 A . (.Microsoft Corporation - Filtre ULi AGPv3.0 pour plateformes à proce.) -- C:\WINDOWS\System32\drivers\ULIAGPKX.SYS [65888] =>.Microsoft® O58 - SDL:2013/08/22 12:38:59 AC . (.Microsoft Corporation - User-Mode Bus Enumerator.) -- C:\WINDOWS\System32\drivers\umbus.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:58 AC . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [11776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/04/25 03:25:32 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:39:27 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [32512] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/07/24 16:28:38 AC . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [143680] =>.Microsoft® O58 - SDL:2014/10/29 03:47:05 AC . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [98304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/05/31 11:07:07 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [27480] =>.Microsoft® O58 - SDL:2014/05/31 11:07:08 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [89944] =>.Microsoft® O58 - SDL:2014/07/24 16:28:38 AC . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [419648] =>.Microsoft® O58 - SDL:2015/03/17 18:26:06 AC . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [467776] =>.Microsoft® O58 - SDL:2013/08/22 12:39:27 AC . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/05/31 11:07:07 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [440664] =>.Microsoft® O58 - SDL:2013/08/22 12:36:33 AC . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [26112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:39:39 A . (.Microsoft Corporation - Gestionnaire de stratégie de redirection US.) -- C:\WINDOWS\System32\drivers\usbrpm.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:47:58 A . (.Microsoft Corporation - USB Scanner Driver.) -- C:\WINDOWS\System32\drivers\usbscan.sys [44544] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/08/31 01:17:06 AC . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [148800] =>.Microsoft® O58 - SDL:2014/05/31 07:30:09 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/06/21 08:33:40 AC . (.Microsoft Corporation - USB Video Class Driver.) -- C:\WINDOWS\System32\drivers\usbvideo.sys [212736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/04/16 07:17:07 AC . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [325464] =>.Microsoft® O58 - SDL:2013/08/22 13:37:27 AC . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [37728] =>.Microsoft® O58 - SDL:2014/03/18 10:54:43 A . (.Microsoft Corporation - Driver Verifier Extension.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [175960] =>.Microsoft® O58 - SDL:2016/04/10 06:35:25 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [551256] =>.Microsoft® O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies, Inc. - VIA Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\viaide.sys [19808] =>.Microsoft® O58 - SDL:2013/08/22 12:39:31 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 04:56:50 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [89368] =>.Microsoft® O58 - SDL:2014/10/29 04:56:50 A . (.Microsoft Corporation - Microsoft Hyper-V Virtual Machine Bus Child.) -- C:\WINDOWS\System32\drivers\vmbus.sys [97048] =>.Microsoft® O58 - SDL:2013/08/22 12:37:50 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [21760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:23 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:38:37 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [7168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 04:56:50 A . (.Microsoft Corporation - Virtual Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [49944] =>.Microsoft® O58 - SDL:2013/08/22 13:39:15 AC . (.Microsoft Corporation - Volume Manager Driver.) -- C:\WINDOWS\System32\drivers\volmgr.sys [73568] =>.Microsoft® O58 - SDL:2013/08/22 13:39:15 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [377696] =>.Microsoft® O58 - SDL:2014/06/19 03:13:36 AC . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [310080] =>.Microsoft® O58 - SDL:2014/10/07 07:44:39 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [69952] =>.Microsoft® O58 - SDL:2013/08/22 13:43:34 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [168800] =>.Microsoft® O58 - SDL:2013/08/22 13:43:34 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305504] =>.Microsoft® O58 - SDL:2013/08/22 12:39:00 AC . (.Microsoft Corporation - Pilote de bus WiFi virtuel.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [24576] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/04/30 07:43:46 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [71680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/04/30 07:41:59 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [38912] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:39:15 AC . (.Microsoft Corporation - Wacom Serial Pen Tablet HID Driver.) -- C:\WINDOWS\System32\drivers\wacompen.sys [26752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/01/06 03:59:31 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/03/18 10:55:04 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [54272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/02/04 00:58:04 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [44024] =>.Microsoft® O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [839488] =>.Microsoft® O58 - SDL:2015/02/04 00:58:33 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [264000] =>.Microsoft® O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [60224] =>.Microsoft® O58 - SDL:2015/02/04 00:58:33 A . (.Microsoft Corporation - Microsoft Network Realtime Inspection Drive.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [114496] =>.Microsoft® O58 - SDL:2013/08/22 13:39:04 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [38240] =>.Microsoft® O58 - SDL:2014/11/10 19:06:59 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [136512] =>.Microsoft® O58 - SDL:2014/10/29 05:09:06 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [33600] =>.Microsoft® O58 - SDL:2014/10/29 04:56:50 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [61208] =>.Microsoft® O58 - SDL:2013/08/22 12:37:55 AC . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:40:04 AC . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [18272] =>.Microsoft® O58 - SDL:2014/03/13 13:35:24 A . (.Microsoft Corporation - Windows Overlay Filter.) -- C:\WINDOWS\System32\drivers\wof.sys [157016] =>.Microsoft® O58 - SDL:2014/10/29 04:57:42 A . (.Microsoft Corporation - Family Safety Filter Driver.) -- C:\WINDOWS\System32\drivers\wpcfltr.sys [54784] =>.Microsoft® O58 - SDL:2013/08/22 13:36:12 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [26976] =>.Microsoft® O58 - SDL:2013/08/22 14:25:41 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [23392] =>.Microsoft® O58 - SDL:2013/08/22 12:40:03 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [21504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2013/08/22 12:39:58 AC . (.Microsoft Corporation - Web Services Print Device Driver.) -- C:\WINDOWS\System32\drivers\WSDPrint.sys [20992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:47:48 A . (.Microsoft Corporation - Web Service Based Scan Device Driver.) -- C:\WINDOWS\System32\drivers\WSDScan.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2012/06/13 16:10:32 A . (."CyberLink - Cyberlink Virtual Disk Driver.) -- C:\WINDOWS\System32\drivers\wsvd.sys [102376] =>.CyberLink® O58 - SDL:2014/10/29 03:46:27 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [113664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2014/10/29 03:46:13 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [226304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2011/12/07 18:42:28 A . (.Microsoft Corporation - Windows Common Controller.) -- C:\WINDOWS\System32\drivers\xusb21.sys [74960] =>.Microsoft Corporation® O58 - SDL:2014/03/18 09:18:42 A . (.Microsoft Corporation - Xbox 360 Common Controller for Windows Driv.) -- C:\WINDOWS\System32\drivers\xusb22.sys [87040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/06/25 03:31:32 A . (.Microsoft Corporation - Pilote Win32 multi-utilisateurs.) -- C:\WINDOWS\System32\win32k.sys [4177920] [Unsigned] =>.Microsoft Corporation ---\\ ASSOCIATION Shell Spawning (11) - 1s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ MENU DE DÉMARRAGE INTERNET (8) - 0s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (6) - 8s O69 - SBI: prefs.js [Frances - y7rj5iej.default] user_pref("browser.search.defaultenginename", "SearchTheWeb"); =>PUP.Optional.IMBooster O69 - SBI: SearchScopes [HKCU] [64Bits]{460C3D19-B3D4-4964-A550-77D263B0CCCB} - () - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] [64Bits]{77B092AC-7E4B-479A-A6A0-29A99A6A6BCC} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] [64Bits]{A33DB9FD-7A8A-496E-92D3-9CFCF9D9E1C9} - () - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{33BB0A4E-99AF-4226-BDF6-49120163DE86} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{A33DB9FD-7A8A-496E-92D3-9CFCF9D9E1C9} - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (34) - 2s O83 - Search Svchost Services: AeLookupSvc (AeLookupSvc) . (.Microsoft Corporation - Service Expérience d’application.) -- C:\WINDOWS\System32\aelupsvc.dll [214528] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [156160] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [329216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1360896] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1080320] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [927744] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [31744] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [110080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [151040] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [110592] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [1265152] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [230400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: MMCSS (MMCSS) . (.Microsoft Corporation - Service Planificateur de classes multimédia.) -- C:\Windows\System32\mmcss.dll [71168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [135168] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [227328] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [339968] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports et solutions aux problèmes.) -- C:\Windows\System32\wercplsupport.dll [84992] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: hkmsvc (hkmsvc) . (.Microsoft Corporation - Service Gestion des clés.) -- C:\Windows\System32\KMSVC.DLL [101376] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [348672] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service d’infrastructure de localisation Wi.) -- C:\Windows\System32\GeofenceMonitorService.dll [522240] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [1639424] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [59392] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [206848] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [166400] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [102912] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [542208] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [226816] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [73728] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [452608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [313344] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3667968] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [933376] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [640000] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (21) - 3s O87 - FAEL: "{2DEEA001-93CB-467A-A8B8-B0437976A2DD}" [In-None-P6-TRUE] .(.Lenovo - SHAREit.) -- C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe =>.LENOVO® O87 - FAEL: "{78EC9B89-57FD-4B50-B1B6-E77F61B21345}" [In-None-P17-TRUE] .(.Lenovo - SHAREit.) -- C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe =>.LENOVO® O87 - FAEL: "{D4FCDEF3-1F6B-4A8E-A685-EF004B7F335E}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDirector 10.) -- C:\Program Files\CyberLink\PowerDirector10\PDR10.EXE =>.CyberLink Corp.® O87 - FAEL: "{8B896D97-6671-471D-9298-FA69ED2F7602}" [In-None-P17-TRUE] .(.CyberLink Corp. - CyberLink PowerDVD Cinema 10 Main Program.) -- C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe =>.CyberLink Corp.® O87 - FAEL: "{94454927-8A17-4C62-BEE6-90A794168380}" [In-None-P17-TRUE] .(.CyberLink Corp. - PowerDVD 10.0.) -- C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE =>.CyberLink Corp.® O87 - FAEL: "{00239AE4-CF3D-46A2-85AD-F81FC7F72B3A}" [In-None-P17-TRUE] .(...) -- C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoPlus.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{3421D6A1-215C-48F8-8CC4-DDF15D993E8C}" [In-None-P17-TRUE] .(.CyberLink Corp. - Lenovo AdvPhotoEditor.) -- C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\AdvPhotoEditor\PhotoDirector5.exe =>.CyberLink Corp.® O87 - FAEL: "{710D0BC2-2B94-4D31-AE9D-FEA289ACEB79}" [Out-None-P6-TRUE] .(.Lenovo - PhotoMasterImport.) -- C:\Program Files\Lenovo PhotoMasterImport\PhotoMasterImport.exe =>.Lenovo (Beijing) Limited® O87 - FAEL: "{B9EF361C-C421-4A84-8788-9BE14EF2E657}" [In-None-P17-TRUE] .(...) -- C:\Users\Frances\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{14D96530-D771-4162-B275-FD476DEC1486}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{AB252662-B124-43E2-9274-9E027108ED46}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "TCP Query User{E35B2AEA-C3FE-4B33-B6EA-2BB61E59E25E}C:\program files (x86)\mozilla firefox\firefox.exe" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\program files (x86)\mozilla firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "UDP Query User{0A2785EA-5680-49B3-B0CF-9C73EE2008E5}C:\program files (x86)\mozilla firefox\firefox.exe" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\program files (x86)\mozilla firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{2864B099-2E74-464F-A4A3-46D1A3B08429}" [In-None-P6-TRUE] .(...) -- C:\Users\coral_000\AppData\Roaming\uTorrent\uTorrent.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{184ACA16-EF57-4AB2-9D06-AB5CF028C103}" [In-None-P17-TRUE] .(...) -- C:\Users\coral_000\AppData\Roaming\uTorrent\uTorrent.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{81359B02-ABC1-4BAC-8F74-3BEE6DDF61D7}" [In-None-P6-TRUE] .(.Seiko Epson Corporation - EpsonNet Setup.) -- E:\Network\EpsonNetSetup\ENEasyApp.exe =>.SEIKO EPSON CORPORATION® O87 - FAEL: "{DDDC9591-4562-48C5-87CC-1D6176814F2E}" [In-None-P17-TRUE] .(.Seiko Epson Corporation - EpsonNet Setup.) -- E:\Network\EpsonNetSetup\ENEasyApp.exe =>.SEIKO EPSON CORPORATION® O87 - FAEL: "{0AE00210-9FE8-4A1B-8E2C-C7CBDB2B1F3F}" [In-None-P6-TRUE] .(.Seiko Epson Corporation - EpsonNet Setup.) -- E:\Network\EpsonNetSetup\ENEasyApp.exe =>.SEIKO EPSON CORPORATION® O87 - FAEL: "{D1D26B43-7E26-4300-8067-BDEFCFA4BF87}" [In-None-P17-TRUE] .(.Seiko Epson Corporation - EpsonNet Setup.) -- E:\Network\EpsonNetSetup\ENEasyApp.exe =>.SEIKO EPSON CORPORATION® O87 - FAEL: "{928B7EF4-D8E1-4F4D-94E7-33B774D77EB7}" [In-None-P6-TRUE] .(.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe =>.SEIKO EPSON CORPORATION® O87 - FAEL: "{F241FB59-524A-4B76-9914-383C8422370C}" [In-None-P17-TRUE] .(.SEIKO EPSON CORPORATION - EEventManager Application.) -- C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe =>.SEIKO EPSON CORPORATION® ---\\ CODES PRODUITS LOGICIELS (70) - 2s O90 - PUC: "00005109C80000000000000000F01FEC" [HKLM] . (.Office 15 Click-to-Run Extensibility Component.) =>.Microsoft Corporation O90 - PUC: "00005109C800C0400000000000F01FEC" [HKLM] . (.Office 15 Click-to-Run Localization Component.) =>.Microsoft Corporation O90 - PUC: "00005109F80000000100000000F01FEC" [HKLM] . (.Office 15 Click-to-Run Licensing Component.) =>.Microsoft Corporation O90 - PUC: "0B5B5B2C545249E44BAB45D8B40F1B69" [HKLM] . (.Metric Collection SDK 35.) =>.Lenovo Group Limited O90 - PUC: "0D152B3FA64353EBA8694717BA39193A" [HKLM] . (.CCC Help Chinese Traditional.) -- C:\WINDOWS\Installer\{F3B251D0-346A-BE35-8A96-7471AB9391A3}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "0F9E1E2A86B06614C8F7585B368BD44F" [HKLM] . (.Lenovo Updates.) -- C:\WINDOWS\Installer\{A2E1E9F0-0B68-4166-8C7F-85B563B84DF4}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "1007C6B46D7C017319E3B52CF3EC196E" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148.) =>.bl.org O90 - PUC: "15E558393EE4A2464EE0E0600D700819" [HKLM] . (.CCC Help Japanese.) -- C:\WINDOWS\Installer\{93855E51-4EE3-642A-E40E-0E06D0078091}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "1CC038573FCBB9BF8DA6A331C23B93E8" [HKLM] . (.AMD Fuel.) -- C:\WINDOWS\Installer\{75830CC1-BCF3-FB9B-D86A-3A132CB3398E}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "1CDF7D9BAE10EB69A72A868ED2790E24" [HKLM] . (.CCC Help Russian.) -- C:\WINDOWS\Installer\{B9D7FDC1-01EA-96BE-7AA2-68E82D97E042}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "2D6F4B0BEA2FA1544969F6F2A698B723" [HKLM] . (.PowerDirector.) -- C:\WINDOWS\Installer\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\ARPPRODUCTICON.exe =>.CyberLink Corporation O90 - PUC: "3346FB0FB0C743C291B0CE14DBC9ECEA" [HKLM] . (.CCC Help Greek.) -- C:\WINDOWS\Installer\{F0BF6433-7C0B-2C34-190B-EC41BD9CCEAE}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "35249B28CBF397743BFB6C09DA45FABD" [HKLM] . (.Epson Software Updater.) -- C:\WINDOWS\Installer\{82B94253-3FBC-4779-B3BF-C690AD54AFDB}\icon.ico =>.Epson/Seico O90 - PUC: "38AE28F05C0B9BA46959FD9EC2F55DB7" [HKLM] . (.Lenovo PhoneCompanion.) -- C:\WINDOWS\Installer\{0F82EA83-B0C5-4AB9-9695-DFE92C5FD57B}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "390F7D334A215147227044A8329896A0" [HKLM] . (.ccc-utility64.) -- C:\WINDOWS\Installer\{33D7F093-12A4-7415-2207-448A2389690A}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "421D4F645E0221D4EB25CE71A7A7B424" [HKLM] . (.OneKey Recovery.) -- C:\WINDOWS\Installer\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "49E502F924E968449AA2FDF3C68B4544" [HKLM] . (.Epson Event Manager.) -- C:\WINDOWS\Installer\{9F205E94-9E42-4486-A92A-DF3F6CB85444}\icon.exe =>.Western Digital Technologies O90 - PUC: "49F419D7CB2BAE4429067DEEF9020C8A" [HKLM] . (.Nitro Pro 9.) -- C:\WINDOWS\Installer\{7D914F94-B2BC-44EA-9260-D7EE9F20C0A8}\Professional.ico =>.Nitro O90 - PUC: "4DFB82C37C09831378FE14D81CE65989" [HKLM] . (.Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106.) =>.Microsoft Corporation O90 - PUC: "56F2A88975AEA78AA3435C1EDA00C943" [HKLM] . (.CCC Help Italian.) -- C:\WINDOWS\Installer\{988A2F65-EA57-A87A-3A34-C5E1AD009C34}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "5ACF9DE46DDE30125E18CFA326E6B97A" [HKLM] . (.CCC Help French.) -- C:\WINDOWS\Installer\{4ED9FCA5-EDD6-2103-E581-FC3A626E9BA7}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "5D7271213FDF3274AB75BE834304DE27" [HKLM] . (.OpenOffice 4.1.1.) -- C:\WINDOWS\Installer\{121727D5-FDF3-4723-BA57-EB383440ED72}\soffice.ico =>.Open Source O90 - PUC: "60B213FAC5C5E864983BEBD62E467522" [HKLM] . (.Cisco LEAP Module.) =>.Cisco Systems, Inc. O90 - PUC: "631E9C7DF0F4B76CC8193D1692FB0EE0" [HKLM] . (.CCC Help Spanish.) -- C:\WINDOWS\Installer\{D7C9E136-4F0F-C67B-8C91-D36129BFE00E}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org O90 - PUC: "689EA2068CEEE255A59510E24FAB40ED" [HKLM] . (.CCC Help Korean.) -- C:\WINDOWS\Installer\{602AE986-EEC8-552E-5A59-012EF4BA04DE}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "68FDCD9BF6FC2C9DB08E025C50C00BA9" [HKLM] . (.CCC Help Portuguese.) -- C:\WINDOWS\Installer\{B9DCDF86-CF6F-D9C2-0BE8-20C5050CB09A}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "69F6B2C4DEA3F3E4D8EC1987361D6E1B" [HKLM] . (.Lenovo Solution Center.) -- C:\WINDOWS\Installer\{4C2B6F96-3AED-4E3F-8DCE-917863D1E6B1}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "6D0E2BFDEDD84A948B7F301CD4CABC6A" [HKLM] . (.Lenovo Mobile Phone Wireless Import.) -- C:\WINDOWS\Installer\{DFB2E0D6-8DDE-49A4-B8F7-03C14DACCBA6}\ARPPRODUCTICON.exe O90 - PUC: "6E0FE4A0219AEDC47A3FE6657E1CA3F2" [HKLM] . (.Cisco PEAP Module.) =>.Cisco Systems, Inc. O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org O90 - PUC: "730867CA97078564CA42827956E0A0EB" [HKLM] . (.Energy Manager.) -- C:\WINDOWS\Installer\{AC768037-7079-4658-AC24-2897650E0ABE}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "739E01F27D6F4714A89B2B998ECFC5CE" [HKLM] . (.Hightail for Lenovo.) -- C:\WINDOWS\Installer\{2F10E937-F6D7-4174-8AB9-B299E8FC5CEC}\ARPPRODUCTICON.exe O90 - PUC: "7519D2A3629EAC275B01AC0FB6766E51" [HKLM] . (.CCC Help Danish.) -- C:\WINDOWS\Installer\{3A2D9157-E926-72CA-B510-CAF06B67E615}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "7810FB462D3FB89499AE61A39FEAE69C" [HKLM] . (.Cisco EAP-FAST Module.) =>.Cisco Systems, Inc. O90 - PUC: "7B6EA2AEBE99CE4AE6CE9C15C661D8BA" [HKLM] . (.CCC Help Polish.) -- C:\WINDOWS\Installer\{EA2AE6B7-99EB-A4EC-6EEC-C9516C168DAB}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "7B9966F80356E2DE69C9E78C6A011D7C" [HKLM] . (.CCC Help Thai.) -- C:\WINDOWS\Installer\{8F6699B7-6530-ED2E-969C-7EC8A610D1C7}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "7DAFD39E80095A7EB5AE89DF20C3C4D9" [HKLM] . (.AMD Catalyst Control Center.) -- C:\WINDOWS\Installer\{E93DFAD7-9008-E7A5-5BEA-98FD023C4C9D}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "7EB4492CFFB90FE43A26BC23187B5CD0" [HKLM] . (.LG United Mobile Drivers.) -- C:\WINDOWS\Installer\{C2944BE7-9BFF-4EF0-A362-CB3281B7C50D}\ARPPRODUCTICON.exe O90 - PUC: "81B4D56619AE61EB232112C8365FCDE4" [HKLM] . (.AMD Catalyst Install Manager.) -- C:\WINDOWS\Installer\{665D4B18-EA91-BE16-3212-218C63F5DC4E}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "8FC2C70F35C43CE418266A22E163BE88" [HKLM] . (.Manuels d'utilisateur.) -- C:\WINDOWS\Installer\{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}\ARPPRODUCTICON.exe =>.Lenovo Group Limited O90 - PUC: "9646C514280278679DF056E8F3AB7794" [HKLM] . (.Catalyst Control Center InstallProxy.) -- C:\WINDOWS\Installer\{415C6469-2082-7687-D90F-658E3FBA7749}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "9DD1F308C873235E67E535B5A2673CCF" [HKLM] . (.CCC Help Norwegian.) -- C:\WINDOWS\Installer\{803F1DD9-378C-E532-765E-535B2A76C3FC}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "A65C49CB9463C0247865A2EDEB93D933" [HKLM] . (.Lenovo Photo Master.) -- C:\WINDOWS\Installer\{BC94C56A-3649-420C-8756-2ADEBE399D33}\ARPPRODUCTICON.exe O90 - PUC: "A9A5B6FFF532D948CF6020BA62FFFFA1" [HKLM] . (.CCC Help German.) -- C:\WINDOWS\Installer\{FF6B5A9A-235F-849D-FC06-02AB26FFFF1A}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "AE31530153AB66FD4D049DEEDE8A431B" [HKLM] . (.Catalyst Control Center Localization All.) -- C:\WINDOWS\Installer\{103513EA-BA35-DF66-D440-D9EEEDA834B1}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "B0F4EEA61580FFE1FC84041FCB2021C8" [HKLM] . (.CCC Help Czech.) -- C:\WINDOWS\Installer\{6AEE4F0B-0851-1EFF-CF48-40F1BC02128C}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "B1CCEC48FE121B14A919E327E4D5993D" [HKLM] . (.Manuels EPSON.) -- C:\WINDOWS\Installer\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}\EPSMICO.ICO =>.Epson/Seico O90 - PUC: "B9E6EFC0518307C969A8FE0731D7EDB3" [HKLM] . (.CCC Help Swedish.) -- C:\WINDOWS\Installer\{0CFE6E9B-3815-9C70-968A-EF70137DDE3B}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "BCF05D873C6FF7CC804DA0579F19A749" [HKLM] . (.CCC Help Dutch.) -- C:\WINDOWS\Installer\{78D50FCB-F6C3-CC7F-08D4-0A75F9917A94}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "C025571B2A687A53689168CD7369889B" [HKLM] . (.Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "C1342525E882D904DAFC4204E7E0F607" [HKLM] . (.Dependency Package Update.) -- C:\WINDOWS\Installer\{5252431C-288E-409D-ADCF-24407E0E6F70}\ARPPRODUCTICON.exe O90 - PUC: "C173E5AD3336A8D3394AF65D2BB0CCE6" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319.) =>.bl.org O90 - PUC: "C8779C2BE255C2D110133F90B5490EFC" [HKLM] . (.CCC Help Finnish.) -- C:\WINDOWS\Installer\{B2C9778C-552E-1D2C-0131-F3095B94E0CF}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "CFD2C1F142D260E3CB8B271543DA9F98" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148.) =>.bl.org O90 - PUC: "D1468870A13DD874BB434C5146EAF939" [HKLM] . (.Dependency Package Update.) -- C:\WINDOWS\Installer\{0788641D-D31A-478D-BB34-C41564AE9F93}\ARPPRODUCTICON.exe O90 - PUC: "D2A4166E7801223B0325F1C5C7A893B6" [HKLM] . (.Catalyst Control Center - Branding.) -- C:\WINDOWS\Installer\{E6614A2D-1087-B322-3052-1F5C7C8A396B}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "D9A1363B26413F4DEE51CF3B2BBD8B14" [HKLM] . (.CCC Help English.) -- C:\WINDOWS\Installer\{B3631A9D-1462-D4F3-EE15-FCB3B2DBB841}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "DC8A59DBF9D1DA5389A1E3975220E6BB" [HKLM] . (.Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030.) =>.Microsoft Corporation O90 - PUC: "DCD52A815FCD4173D292F7CB4298E69C" [HKLM] . (.CCC Help Chinese Standard.) -- C:\WINDOWS\Installer\{18A25DCD-DCF5-3714-2D29-7FBC24896EC9}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "DE532CED4A8571542A874CE1D8EABAB3" [HKLM] . (.PowerDVD.) -- C:\WINDOWS\Installer\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\ARPPRODUCTICON.exe =>.CyberLink Corporation O90 - PUC: "E8FE4BC0B5EE6F9438677A202C226DAD" [HKLM] . (.EpsonNet Print.) =>.Epson/Seico O90 - PUC: "EEE3D2B4C7D423448FA5C0D2697FA580" [HKLM] . (.CCC Help Hungarian.) -- C:\WINDOWS\Installer\{4B2D3EEE-4D7C-4432-F85A-0C2D96F75A08}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17.) =>.bl.org O90 - PUC: "F36CFB0B70AEE91469B0F32BDED50D2B" [HKLM] . (.Dolby Digital Plus Advanced Audio.) -- C:\WINDOWS\Installer\{B0BFC63F-EA07-419E-960B-3FB2ED5DD0B2}\DolbyBlue.exe =>.Legitimate O90 - PUC: "F90E4FA5B9C5FAA37B1345D4D38C12DD" [HKLM] . (.Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106.) =>.Microsoft Corporation O90 - PUC: "FAD1B84FB89AD694BF4DB32F2BAC623A" [HKLM] . (.CCC Help Turkish.) -- C:\WINDOWS\Installer\{F48B1DAF-A98B-496D-FBD4-3BF2B2CA26A3}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc O90 - PUC: "FD83DEFFCD499FF4691C6A99E0ADB630" [HKLM] . (.Dependency Package Update.) -- C:\WINDOWS\Installer\{FFED38DF-94DC-4FF9-96C1-A6990EDA6B03}\ARPPRODUCTICON.exe O90 - PUC: "FF79E1BED5F68AA7A27C7B35A0676ACF" [HKLM] . (.AMD Accelerated Video Transcoding.) -- C:\WINDOWS\Installer\{EB1E97FF-6F5D-7AA8-2AC7-B7530A76A6FC}\ARPPRODUCTICON.exe =>.Advanced Micro Devices Inc ---\\ PACKAGES WINDOWS INSTALLER (56) - 7s [MD5.8E35390FCE1CCA12A51190DEDCE98112] [WIS][2015/07/06 15:50:45] (.Lenovo - Lenovo Updates.) -- C:\WINDOWS\Installer\125a54.msi [6125568] =>.Lenovo [MD5.15251E366AE3049C4C3F2B88B456743D] [WIS][2013/12/16 03:25:32] (.Nitro - Nitro Pro 9.0.5.9.) -- C:\WINDOWS\Installer\1ab9b4.msi [124743680] =>.Nitro [MD5.E9F2A6AE074F36E62E997DC12C9F546B] [WIS][2014/06/25 03:12:30] (.Hightail, Inc. - Installer.) -- C:\WINDOWS\Installer\1ab9c4.msi [23426048] =>.Hightail, Inc. [MD5.97ED8F2B03DC6522A0AB2A5A34E4AC42] [WIS][2014/08/26 12:15:25] (.Lenovo Group Limited - Metric Collection SDK Redistributable.) -- C:\WINDOWS\Installer\1ab9cc.msi [2094592] =>.Lenovo Group Limited [MD5.26F2A269B7F4D491204116F52594C137] [WIS][2014/02/19 09:42:34] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\1ab9d0.msi [1297408] =>.CyberLink Corp. [MD5.241C71614D28BE36A6B99A4091B518D1] [WIS][2014/05/21 17:30:16] (.Lenovo Group Limited - Lenovo System Agent Plugin.) -- C:\WINDOWS\Installer\1ab9eb.msi [1154048] =>.Lenovo Group Limited [MD5.759075AC7A483522542EA960DF054FFF] [WIS][2013/04/23 09:00:48] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\1ab9f3.msi [445952] =>.CyberLink Corp. [MD5.6F0ABF6B42DBEEC21699C60565279B15] [WIS][2013/08/30 10:05:38] (.CyberLink Corp. - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\1aba1c.msi [8585728] =>.CyberLink Corp. [MD5.692E020927AFAA7D6F982977AEE069AA] [WIS][2014/08/26 12:27:08] (.Lenovo - Lenovo PhoneCompanion.) -- C:\WINDOWS\Installer\1aba20.msi [66293760] =>.Lenovo [MD5.891D4A063E9C9CA5D8C52B540ED0B7FF] [WIS][2014/02/13 07:31:20] (.Lenovo - User Manuals.) -- C:\WINDOWS\Installer\1aba24.msi [1136128] =>.Lenovo [MD5.29D8F85AC90687D0751EBA786EC89E91] [WIS][2014/06/25 03:05:52] (.Macrovision Corporation - InstallShield® 12 - Premier Edition 12.0.) -- C:\WINDOWS\Installer\1aba99.msi [489472] =>.Macrovision Corporation [MD5.5BE8E21F4DF75B22FBDD0B23E03D5EA8] [WIS][2014/08/26 12:31:24] (.Lenovo - Lenovo Mobile Phone Wireless Import.) -- C:\WINDOWS\Installer\1aba9d.msi [13431808] =>.Lenovo [MD5.0A3E2FFFD319857B758B8D7B4F4A27B3] [WIS][2014/08/26 12:32:04] (.Lenovo - InstallShield® 2009 - Premier Edition 15.) -- C:\WINDOWS\Installer\1abaa1.msi [107811840] =>.Lenovo [MD5.17988416ADCBD70AA53F8A0CDCA7C74D] [WIS][2011/11/24 09:48:49] (.LG Electronics - LG United Mobile Drivers.) -- C:\WINDOWS\Installer\1b2e1b8.msi [5015552] =>.LG Electronics [MD5.0C15746B153EDF715B83128866BC9CF5] [WIS][2016/03/24 16:00:00] (..) -- C:\WINDOWS\Installer\1c9fff7.msi [2473984] [MD5.C14FC9F00608327498188E762C1B5A6E] [WIS][2016/01/29 04:09:58] (.Seiko Epson Corporation - Epson Event Manager.) -- C:\WINDOWS\Installer\1d6355e.msi [21528576] =>.Seiko Epson Corporation [MD5.04DBBAD3030AE2B1C818915AC73D3ECD] [WIS][2014/08/13 10:16:04] (.OpenOffice - OpenOffice 4.1.1.) -- C:\WINDOWS\Installer\1d8b0c8.msi [2314240] =>.OpenOffice [MD5.F73C67300F9BEFDA54E373CA54DF9E84] [WIS][2014/04/25 15:40:22] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24f57.msi [775168] =>.Advanced Micro Devices, Inc. [MD5.B47EC3F336DA3928C3042B0FD1308C4A] [WIS][2014/04/25 15:45:22] (.Advanced Micro Devices, Inc. - AMD Catalyst Install Manager Installer (64 .) -- C:\WINDOWS\Installer\24f60.msi [8558080] =>.Advanced Micro Devices, Inc. [MD5.24B6EE0F4600635E2A90D404EF815884] [WIS][2014/04/03 12:24:46] (.Advanced Micro Devices, Inc. - Branding.) -- C:\WINDOWS\Installer\24f68.msi [449024] =>.Advanced Micro Devices, Inc. [MD5.4E5E8C898CFA4C9A7F690BD0D3EE8E53] [WIS][2014/04/25 15:41:24] (.Advanced Micro Devices, Inc. - AMD Fuel.) -- C:\WINDOWS\Installer\24f71.msi [3033600] =>.Advanced Micro Devices, Inc. [MD5.7316C7CB47D13D705D210F2F489E23C9] [WIS][2014/04/25 15:37:54] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24f79.msi [795136] =>.Advanced Micro Devices, Inc. [MD5.DB51F338620FBE3921CE79BBEB9CA2EF] [WIS][2014/04/25 15:38:00] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24f81.msi [758272] =>.Advanced Micro Devices, Inc. [MD5.EC657E3302AE215A177D7ADC447AD029] [WIS][2014/04/25 15:38:08] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24f89.msi [782336] =>.Advanced Micro Devices, Inc. [MD5.277B86DD5E8C001885A254043AD81FBF] [WIS][2014/04/25 15:38:14] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24f91.msi [900096] =>.Advanced Micro Devices, Inc. [MD5.0AAFDCAD9B78159B79EFCAB5C29E540A] [WIS][2014/04/25 15:38:20] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24f99.msi [728576] =>.Advanced Micro Devices, Inc. [MD5.36BE3FD92EA219F0F3616C6F2C57B4F3] [WIS][2014/04/25 15:38:26] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24fa1.msi [769536] =>.Advanced Micro Devices, Inc. [MD5.D599BA95B5A86EE7DA23800E8A9F1EC5] [WIS][2014/04/25 15:38:32] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24fa9.msi [763392] =>.Advanced Micro Devices, Inc. [MD5.05F1719796BBD47B8592B9C71750E5BE] [WIS][2014/04/25 15:38:40] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24fb1.msi [775168] =>.Advanced Micro Devices, Inc. [MD5.E39E9766867548F7084CDEAED85548C7] [WIS][2014/04/25 15:38:46] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24fb9.msi [793600] =>.Advanced Micro Devices, Inc. [MD5.D66E1DAB49E90E9703C578628F1B837A] [WIS][2014/04/25 15:38:52] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24fc1.msi [765952] =>.Advanced Micro Devices, Inc. [MD5.56332C2F45A72C089AE3D0EBF4DE859F] [WIS][2014/04/25 15:38:58] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24fc9.msi [816640] =>.Advanced Micro Devices, Inc. [MD5.3B26BC848E781E976C0CE249D14BBA9D] [WIS][2014/04/25 15:39:04] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24fd1.msi [796160] =>.Advanced Micro Devices, Inc. [MD5.D348A3F93A169FB1F8DC5C1BCB16EADE] [WIS][2014/04/25 15:39:10] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24fd9.msi [756224] =>.Advanced Micro Devices, Inc. [MD5.ECC838B2B75775987A7D811B88B645E9] [WIS][2014/04/25 15:39:18] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24fe1.msi [748544] =>.Advanced Micro Devices, Inc. [MD5.3648CCB26F60E90481114AB0B8ED01CB] [WIS][2014/04/25 15:39:24] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24fe9.msi [784384] =>.Advanced Micro Devices, Inc. [MD5.4A023574635E2B1DDBCDE16DAF690682] [WIS][2014/04/25 15:39:30] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24ff1.msi [766464] =>.Advanced Micro Devices, Inc. [MD5.4A8A452FC9D5763A7C726A61C17E076F] [WIS][2014/04/25 15:39:36] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\24ff9.msi [878592] =>.Advanced Micro Devices, Inc. [MD5.DBB04CABC32AFFEA1173F8F6A2C6EA00] [WIS][2014/04/25 15:39:42] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\25001.msi [755200] =>.Advanced Micro Devices, Inc. [MD5.5D0174A198BB8949C12424E25A94AB61] [WIS][2014/04/25 15:39:48] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\25009.msi [850432] =>.Advanced Micro Devices, Inc. [MD5.17F3D0CEA68743845E2ED2B647B3A901] [WIS][2014/04/25 15:39:54] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\25011.msi [773632] =>.Advanced Micro Devices, Inc. [MD5.777ADA9B3BF8471ABD0B3BA0B4AFD2C4] [WIS][2014/04/25 15:40:00] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\25019.msi [764928] =>.Advanced Micro Devices, Inc. [MD5.3904A658DB433C531EEA3641D74BA5E2] [WIS][2014/04/25 15:40:08] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\25021.msi [761344] =>.Advanced Micro Devices, Inc. [MD5.B356ACC387255F6D9AFAB1A7EE108A5A] [WIS][2014/04/25 15:40:16] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\25029.msi [898048] =>.Advanced Micro Devices, Inc. [MD5.4BFFD1E89553A9FE57DF8C0A83DF2332] [WIS][2014/04/25 15:40:34] (.Advanced Micro Devices, Inc. - Catalyst Control Center Utility 64.) -- C:\WINDOWS\Installer\25031.msi [386560] =>.Advanced Micro Devices, Inc. [MD5.738B0750654962982B56D4A5D91E4D7E] [WIS][2014/04/25 15:37:46] (.Advanced Micro Devices, Inc. - Catalyst Control Center.) -- C:\WINDOWS\Installer\2503a.msi [44066304] =>.Advanced Micro Devices, Inc. [MD5.06AF0E4C78531DF2707EEFBF455392F2] [WIS][2014/04/25 15:46:10] (.Advanced Micro Devices, Inc. - AMD Accelerated Video Transcoding INstallat.) -- C:\WINDOWS\Installer\2504b.msi [2770944] =>.Advanced Micro Devices, Inc. [MD5.FC7E709DE1FD09A98DF2263540C79585] [WIS][2015/01/05 14:36:28] (.Lenovo Group Limited - Lenovo Solution Center.) -- C:\WINDOWS\Installer\381434e7.msi [20830720] =>.Lenovo Group Limited [MD5.B6DF0DD57BD8CEEAF7EABD35FFC01DA6] [WIS][2014/01/08 06:26:08] (.Dolby Laboratories Inc - Dolby Digital Plus Advanced Audio.) -- C:\WINDOWS\Installer\43ae9.msi [33947648] =>.Dolby Laboratories Inc [MD5.F3393D3FF18B824864B806E0B86F0A67] [WIS][2012/11/08 01:30:52] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\43b47.msi [1559552] =>.Cisco Systems, Inc. [MD5.626978BF496BABC1E6F1464D697B707D] [WIS][2012/11/08 01:39:00] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\43b4f.msi [1304064] =>.Cisco Systems, Inc. [MD5.3FC36EF669376540BB082615F9ECADB2] [WIS][2012/11/08 01:37:52] (.Cisco Systems, Inc..) -- C:\WINDOWS\Installer\43b57.msi [836608] =>.Cisco Systems, Inc. [MD5.4186079D6C02931F832D1A6FD216D825] [WIS][2014/12/26 01:16:25] (.Lenovo Group Limited - Lenovo iM Controller Driver.) -- C:\WINDOWS\Installer\6a8834.msi [8338432] =>.Lenovo Group Limited [MD5.431A9CD65571ADB0D36C6F4DBFAF9EA9] [WIS][2016/03/15 20:40:00] (.SEIKO EPSON CORPORATION - Epson Software Updater.) -- C:\WINDOWS\Installer\df8bba4.msi [5967872] =>.SEIKO EPSON CORPORATION [MD5.39030B32B6E4F39AA92F9BB15A93DF17] [WIS][2015/12/24 06:24:46] (.SEIKO EPSON Corporation - EpsonNet Print.) -- C:\WINDOWS\Installer\e0184e3.msi [5713920] =>.SEIKO EPSON Corporation [MD5.95E80C08160346D8B9290F8FBC50F3B4] [WIS][2015/03/11 22:53:27] (.Lenovo Group Limited - Lenovo System Agent Service.) -- C:\WINDOWS\Installer\f9b72.msi [2849792] =>.Lenovo Group Limited ---\\ FEATURE CONTROL. (207) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:CMigrate.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate ---\\ OBSERVATEURS des évènements (177) - 62s Application.Error: SideBySide (153) ~Numéro: 25067 ~Date: 10/30/2021 06:36:09 PM ~ID: 33 ~Description: La création du contexte d’activation a échoué pour « %11 ». Assembly dépendant %1 introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. ~Suggestion: Ces erreurs peuvent généralement être ignorées Application.Warning: Microsoft-Windows-WMI (2) ~Numéro: 25040 ~Date: 10/30/2021 06:33:38 PM ~ID: 63 ~Description: Un fournisseur, %1, a été inscrit dans l’espace de noms Windows Management Instrumentation %2, afin d’utiliser le compte LocalSystem. Ce compte bénéficie de privilèges et le fournisseur peut provoquer une violation de sécurité s’il ne représente pas ~Suggestion: Généralement LocalSystem n'est pas nécessaire et le contexte de sécurité NetworkServiceHost est plus approprié. Application.Warning: Microsoft-Windows-RestartManager (6) ~Numéro: 24997 ~Date: 10/30/2021 04:52:47 PM ~ID: 10010 ~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9. ~Suggestion: Redémarrer manuellement l'application ou le service Application.Warning: Microsoft-Windows-System-Restore (2) ~Numéro: 24973 ~Date: 10/30/2021 04:32:00 PM ~ID: 8303 ~Description: Scoping unsuccessful for shadowcopy %1 with error %2. ~Suggestion: Exécuter la commande chkdsk / f Application.Error: Application Hang (27) ~Numéro: 24937 ~Date: 10/30/2021 04:07:24 PM ~ID: 1002 ~Description: Le programme %1 version %2 a cessé d’interagir avec Windows et a été fermé. Pour déterminer si des informations supplémentaires sont disponibles, consultez l’historique du problème dans le Centre de maintenance. ID de processus : 2cdc Heure de débu ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Error: Application Error (27) ~Numéro: 24846 ~Date: 10/30/2021 03:08:40 PM ~ID: 1000 ~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0x558bef5e Nom du module défaillant : %4, version : %5, horodatage : 0x54504b2e Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000c26f ID du processus défaillant : 0x7c4 Heure de d ~Suggestion: Réparer ou réinstaller l'application. Application.Error: Customer Experience Improvement Program (24) ~Numéro: 24759 ~Date: 10/30/2021 10:53:58 AM ~ID: 1008 ~Description: 80070005 ~Suggestion: Aucune Application.Error: Microsoft-Windows-User Profiles Service (1) ~Numéro: 24547 ~Date: 01/25/2020 04:45:24 PM ~ID: 1533 ~Description: Windows ne peut pas supprimer le répertoire de profils %1. Ce problème peut être causé par des fichiers situés dans ce répertoire qui sont utilisés par un autre programme. DÉTAIL - Le répertoire n’est pas vide. Application.Error: Microsoft-Windows-Immersive-Shell (2) ~Numéro: 23020 ~Date: 11/09/2017 12:33:56 PM ~ID: 5973 ~Description: Échec de l’activation de l’application %1 avec l’erreur : %2 Pour plus d’informations, voir le journal Microsoft-Windows-TWinUI/Opérationnel. ~Suggestion: https://support.microsoft.com/en-us/help/3064045/windows-store-apps-may-not-open-and-event-id-5973-is-logged-in-the-app Application.Error: Microsoft-Windows-LocationProvider (67) ~Numéro: 22690 ~Date: 08/10/2017 09:36:53 PM ~ID: 2007 ~Description: There was an error communicating to the Orion inference server System.Error: Schannel (370) ~Numéro: 19316 ~Date: 10/31/2021 05:34:17 PM ~ID: 4119 ~Description: Une alerte irrécupérable a été reçue du point de terminaison distant. Le code d’alerte irrécupérable défini par protocole de TLS est %1. System.Error: DCOM (173) ~Numéro: 19301 ~Date: 10/31/2021 02:33:34 PM ~Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} System.Error: Service Control Manager (53) ~Numéro: 19289 ~Date: 10/31/2021 02:22:16 PM ~ID: 7000 ~Description: Le service %1 n’a pas pu démarrer en raison de l’erreur : %%2 System.Warning: Microsoft-Windows-Wininit (20) ~Numéro: 19280 ~Date: 10/31/2021 02:21:42 PM ~ID: 11 ~Description: Les bibliothèques de liens dynamiques sont chargées pour chaque application. L’administrateur système doit vérifier la liste des bibliothèques pour s’assurer qu’elles sont associées à des applications approuvées. Pour plus d’informations, visitez htt System.Warning: Microsoft-Windows-Kernel-PnP (40) ~Numéro: 19274 ~Date: 10/31/2021 02:21:26 PM ~ID: 219 ~Description: Le chargement du pilote %5 a échoué pour le périphérique %2. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Warning: Microsoft-Windows-WLAN-AutoConfig (10) ~Numéro: 19254 ~Date: 10/31/2021 02:21:01 PM ~ID: 10002 ~Description: Le module d’extensibilité WLAN s’est arrêté. Chemin d’accès du module : C:\WINDOWS\system32\Rtlihvs.dll ~Suggestion: 1)Désactivez/Réactiver la connexion réseau sans fil. ou 2) Redémarrer le service WLAN AutoConfig System.Error: Microsoft-Windows-Eventlog (2) ~Numéro: 19048 ~Date: 10/30/2021 06:34:36 PM ~ID: 30 ~Description: Le service de journalisation des événements a rencontré une erreur (%1) lors de l’activation de l’éditeur %3 sur le canal %2. Cette erreur n’affecte pas le fonctionnement du canal, mais a une incidence sur la capacité de l’éditeur de déclencher des é System.Error: Microsoft-Windows-WindowsUpdateClient (30) ~Numéro: 18830 ~Date: 10/30/2021 04:20:47 PM ~ID: 20 ~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2. ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Warning: i8042prt (3) ~Numéro: 18431 ~Date: 10/30/2021 03:07:23 PM ~ID: 17 ~Description: Le périphérique a renvoyé une ou plusieurs réponses incorrectes après une réinitialisation du clavier. System.Error: BugCheck (1) ~Numéro: 18409 ~Date: 10/30/2021 03:07:45 PM ~ID: 1001 ~Description: 0x00000116 (0xffffe00184b52010, 0xfffff801a82cec08, 0xffffffffc0000001, 0x0000000000000003)C:\WINDOWS\MEMORY.DMP103021-32968-01 System.Error: EventLog (12) ~Numéro: 18405 ~Date: 10/30/2021 03:07:32 PM ~ID: 6008 ~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu. System.Warning: Microsoft-Windows-DNS-Client (108) ~Numéro: 18397 ~Date: 10/30/2021 03:04:05 PM ~ID: 1014 ~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: Microsoft-Windows-Time-Service (207) ~Numéro: 18317 ~Date: 10/30/2021 02:02:33 PM ~ID: 134 ~Description: NtpClient n'a pas pu définir d'homologue manuel utilisable comme source de temps en raison d'une erreur de résolution DNS sur "%3". NtpClient réessaiera dans %2 minutes, puis doublera l'intervalle d'attente pour les tentatives suivantes. L'erreur éta ~Suggestion: Resynchroniser le client avec l'homologue de source de temps System.Warning: amd_sata (8) ~Numéro: 17922 ~Date: 09/10/2019 12:48:37 PM ~ID: 129 ~Description: Une réinitialisation au périphérique, %1, a été émise. System.Error: BTHUSB (11) ~Numéro: 17832 ~Date: 12/21/2018 12:42:52 PM ~ID: 16 ~Description: L'authentification mutuelle entre la carte locale Bluetooth et un périphérique avec l'adresse de carte Bluetooth %2 a échoué. System.Warning: Microsoft-Windows-Kernel-Processor-Power (11) ~Numéro: 17439 ~Date: 12/11/2017 08:45:25 PM ~ID: 37 ~Description: La vitesse du processeur logique Hyper-V %2 est limitée par le microprogramme du système. Le processeur a connu cet état de performances réduites pendant %3 secondes depuis le dernier rapport. System.Error: Microsoft-Windows-BitLocker-Driver (1) ~Numéro: 17292 ~Date: 09/21/2017 10:10:14 AM ~ID: 24620 ~Description: Vérification du volume chiffré : impossible de lire les informations de volume sur %2. System.Error: WMPNetworkSvc (4) ~Numéro: 17194 ~Date: 08/05/2017 09:08:20 PM ~ID: 14365 ~Description: 0x80004004-1 System.Warning: disk (1) ~Numéro: 16789 ~Date: 05/08/2017 11:38:10 AM ~ID: 153 ~Description: L’opération d’E/S à l’adresse de bloc logique %2 pour le disque %3 (nom d’objet périphérique physique : %4) a été tentée à nouveau. System.Warning: Tcpip (4) ~Numéro: 16629 ~Date: 03/17/2017 02:32:21 PM ~ID: 4293 ~Description: Le filtre de fusion de paquets ARP de la carte réseau portant l’adresse matérielle %2 n’est pas défini car plusieurs adresses IPv4 sont actuellement attribuées à la carte. Un filtre de fusion de paquets ARP peut être défini ultérieurement lorsqu’une System.Warning: AFD (28) ~Numéro: 16423 ~Date: 03/06/2017 12:06:38 PM ~ID: 16002 ~Description: La fermeture d’un socket %2 avec numéro de port local %3 dans le processus %4 prend plus de temps que prévu. Il se peut que le numéro de port local ne soit pas disponible tant que l’opération de fermeture n’est pas terminée. Cela se produit généralem System.Error: Microsoft-Windows-Kernel-General (1) ~Numéro: 15819 ~Date: 08/23/2016 09:07:29 PM ~ID: 5 ~Description: 0x8000002a171\??\Volume{fef642e9-cd47-415c-b463-13d22c770552}\System Volume Information\SPP\SppCbsHiveStore\{cd42efe1-f6f1-427c-b004-033192c625a4}{9BBF3FF3-78D1-4852-84F3-86A6C5B76B51} System.Error: Ntfs (1) ~Numéro: 15403 ~Date: 05/17/2016 09:41:34 PM ~ID: 55 ~Description: Une défaillance a été détectée dans la structure du système de fichiers sur le volume %1. Une défaillance a été détectée dans une structure d’index de système de fichiers. Le numéro de référence du fichier est 0x10000000011fc. Le nom du fichier est ---\\ SCAN ADDITIONNEL (1) - 4s ~ Aucun élément malicieux ou superflu trouvé. ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (4) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/09/08/adware-imbooster/ =>PUP.Optional.IMBooster https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys ---\\ NUMEROS DE SÉRIE [00F1748BE12F68AB2638013D4F6C363A50] [12/12/2013] (.Nitro PDF Software.) - C:\Program Files\Common Files\Nitro\Pro\9.0\NitroPDFDriverService9x64.exe =>.Nitro PDF Software [00F1748BE12F68AB2638013D4F6C363A50] [12/12/2013] (.Nitro PDF Software.) - C:\Program Files\Common Files\Nitro\Pro\9.0\NPShellExtension64.dll =>.Nitro PDF Software [00F1748BE12F68AB2638013D4F6C363A50] [12/12/2013] (.Nitro PDF Software.) - C:\Windows\SysWOW64\NLSSRV32.EXE =>.Nitro PDF Software [036939C475D53C1D70992DB8A87EB7D3] [04/03/2017] (.Macrovision Corporation.) - C:\Program Files (x86)\InstallShield Installation Information\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}\setup.exe =>.Macrovision Corporation [044E3BF58976880FFD074448A8F7A058] [30/10/2021] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation [0511EAF8579E2662BE622DE5AE0CD408] [07/08/2015] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0511EAF8579E2662BE622DE5AE0CD408] [07/08/2015] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [08A2EC4E78A09E174B192E5535984B59] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_scanresults_expt-194a.1.0.0.x64.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [30/10/2021] (.Malwarebytes Inc.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\mbuns.exe =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_iris_282.2.0.1.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_iris_282_v2.2.0.2.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_iris_282_v3.2.0.0.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_ELXR82.1.0.9.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_dashboard_drawer.2.0.4.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_dashboard_drawer.2.0.6.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_dashboard_popup.2.0.6.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\TrayPlugin.ELXR-79_Test.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\UIPlugin.ELXR-51_TestA.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\UIPlugin.ELXR-51_TestB.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [30/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc [1121C760AE457C81A5F30C2746F18F0981E6] [26/08/2014] (.Jernej Simoncic.) - C:\Program Files\GIMP 2\bin\gimp-2.8.exe =>.Jernej Simoncic [1121C760AE457C81A5F30C2746F18F0981E6] [29/06/2015] (.Jernej Simoncic.) - C:\Program Files\GIMP 2\uninst\unins000.exe =>.Jernej Simoncic [13222A5DCCF716DF5AF9C87084412DD9] [07/10/2014] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\DRIVERS\rtwlane.sys =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [15/04/2014] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\DRIVERS\RtkBtfilter.sys =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [18/12/2013] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\DRIVERS\Rt630x64.sys =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [24/07/2013] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [27/01/2014] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\InstallShield Installation Information\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\setup.exe =>.Realtek Semiconductor Corp [13222A5DCCF716DF5AF9C87084412DD9] [27/02/2014] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\Drivers\RtsUVStor.sys =>.Realtek Semiconductor Corp [1D226108CBB0EB7B504697BDFEC66A8B] [13/06/2012] (.CyberLink.) - C:\WINDOWS\System32\DRIVERS\wsvd.sys =>.CyberLink [1D226108CBB0EB7B504697BDFEC66A8B] [24/04/2012] (.CyberLink.) - C:\Program Files\CyberLink\Shared files\RichVideo64.exe =>.CyberLink [1DE909DE446485F9C6F4B405E24F687D] [13/08/2013] (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bcmfn2.sys =>.Broadcom Corporation [26048FD2C730E8A99C1F861A48263D1F] [09/10/2013] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDService.exe =>.ELAN Microelectronics Corporation [26048FD2C730E8A99C1F861A48263D1F] [11/02/2014] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDAniConf.exe =>.ELAN Microelectronics Corporation [26048FD2C730E8A99C1F861A48263D1F] [11/02/2014] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDCtrl.exe =>.ELAN Microelectronics Corporation [26048FD2C730E8A99C1F861A48263D1F] [11/02/2014] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDCtrlHelper.exe =>.ELAN Microelectronics Corporation [26048FD2C730E8A99C1F861A48263D1F] [11/02/2014] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDIntelligent.exe =>.ELAN Microelectronics Corporation [26048FD2C730E8A99C1F861A48263D1F] [11/02/2014] (.ELAN Microelectronics Corporation.) - C:\Program Files\Elantech\ETDUn_inst.exe =>.ELAN Microelectronics Corporation [26048FD2C730E8A99C1F861A48263D1F] [11/02/2014] (.ELAN Microelectronics Corporation.) - C:\WINDOWS\System32\DRIVERS\ETD.sys =>.ELAN Microelectronics Corporation [2C80892E0115B0B77AA3594B9A733953] [10/11/2010] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\InstallShield Installation Information\{9D3D8C60-A5EF-4123-B2B9-172095903AB}\Install.exe =>.Realtek Semiconductor Corp [2C80892E0115B0B77AA3594B9A733953] [10/11/2010] (.Realtek Semiconductor Corp.) - C:\Program Files (x86)\InstallShield Installation Information\{9DAABC60-A5EF-41FF-B2B9-17329590CD5}\Install.exe =>.Realtek Semiconductor Corp [2D5239E702A5EAD6CF85DA4853BD22E9] [13/02/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\Uninstall\Uninstall.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConfig.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files\Lenovo PhotoMasterImport\Firewall.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files\Lenovo PhotoMasterImport\PhotoMasterImport.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Windows\System32\LenovoWiFiHotspotSvr.exe =>.Lenovo (Beijing) Limited [2D5239E702A5EAD6CF85DA4853BD22E9] [28/02/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files (x86)\Lenovo\Lenovo Updates\PopToastProcess.exe =>.Lenovo (Beijing) Limited [312D884C6B08CD6E07B744C2DA7A07C2] [26/10/2010] (.Fortemedia Inc.) - C:\Program Files\CONEXANT\ForteConfig\fmapp.exe =>.Fortemedia Inc [322630E6FE89ADC3AA340330B1CD5441] [23/01/2014] (.Sonix Technology CO., LTD.) - C:\WINDOWS\System32\DRIVERS\snp2uvc.sys =>.Sonix Technology CO., LTD [37D3740FB04DB7FA54DFDF358BEF6D5F] [06/12/2011] (.CyberLink.) - C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe =>.CyberLink [47D10403CEBA269F5D81E04D8A679663] [26/08/2014] (.Lenovo (Beijing) Limited.) - C:\Program Files\DIFX\8C657473004ED4CD\DPInst.exe =>.Lenovo (Beijing) Limited [4837768FDD89F0BB867E06EB1A5B062B] [08/03/2016] (.SEIKO EPSON CORPORATION.) - C:\Program Files (x86)\epson\Epson Scan 2\Setup\setup.exe =>.SEIKO EPSON CORPORATION [4837768FDD89F0BB867E06EB1A5B062B] [13/04/2016] (.SEIKO EPSON CORPORATION.) - E:\Network\EpsonNetSetup\ENEasyApp.exe =>.SEIKO EPSON CORPORATION [4837768FDD89F0BB867E06EB1A5B062B] [20/01/2016] (.SEIKO EPSON CORPORATION.) - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe =>.SEIKO EPSON CORPORATION [4CD9E755850C1372B48DC182A7308BAB] [12/12/2013] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [18/04/2014] (.Advanced Micro Devices, Inc..) - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [18/04/2014] (.Advanced Micro Devices, Inc..) - C:\Program Files\ATI\CIM\Bin64\ATISetup.exe =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [21/03/2014] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amd_sata.sys =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [21/03/2014] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amd_xata.sys =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [24/02/2014] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\DRIVERS\amdkmcsp.sys =>.Advanced Micro Devices, Inc. [4CD9E755850C1372B48DC182A7308BAB] [24/02/2014] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdpsp.sys =>.Advanced Micro Devices, Inc. [4CE26AB7B08A86A56200DE244E294BA5] [04/09/2013] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe =>.Conexant Systems, Inc. [4CE26AB7B08A86A56200DE244E294BA5] [18/03/2014] (.Conexant Systems, Inc..) - C:\Program Files\CONEXANT\CNXT_AUDIO_HDA\UIU64a.exe =>.Conexant Systems, Inc. [4CE26AB7B08A86A56200DE244E294BA5] [25/07/2013] (.Conexant Systems, Inc..) - C:\WINDOWS\system32\CxAudMsg64.exe =>.Conexant Systems, Inc. [4CE26AB7B08A86A56200DE244E294BA5] [27/01/2014] (.Conexant Systems, Inc..) - C:\WINDOWS\System32\drivers\CHDRT64.sys =>.Conexant Systems, Inc. [4D1169658D9D5F5778B18A3619C60B57] [01/09/2011] (.Conexant Systems, Inc..) - C:\Windows\SysWOW64\SASrv.exe =>.Conexant Systems, Inc. [51B8043B2DED3142A7C38F95BCD765F0] [03/06/2014] (.LENOVO.) - C:\Program Files (x86)\Common Files\LENOVO\easyplussdk\bin\EPHotspot64.exe =>.LENOVO [51B8043B2DED3142A7C38F95BCD765F0] [06/06/2014] (.LENOVO.) - C:\Program Files (x86)\Lenovo\SHAREit\SHAREit.exe =>.LENOVO [51B8043B2DED3142A7C38F95BCD765F0] [16/10/2014] (.LENOVO.) - C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe =>.LENOVO [51B8043B2DED3142A7C38F95BCD765F0] [16/10/2014] (.LENOVO.) - C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe =>.LENOVO [51B8043B2DED3142A7C38F95BCD765F0] [21/05/2014] (.LENOVO.) - C:\Program Files\Lenovo\iMController\AutoUpdate.exe =>.LENOVO [51B8043B2DED3142A7C38F95BCD765F0] [21/05/2014] (.LENOVO.) - C:\Program Files\Lenovo\iMController\SystemAgentService.exe =>.LENOVO [574E1DB50D0816C7B5A63DF8EA964B14] [01/11/2013] (.AppEx Networks Corporation.) - C:\WINDOWS\System32\DRIVERS\appexDrv.sys =>.AppEx Networks Corporation [603B1AA23759ABA13AD4C0B8256EF56E] [21/04/2014] (.Lenovo.) - C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe =>.Lenovo [63E1989CF4AE5350298FA168D0921309] [22/01/2014] (.DEVGURU CO LTD.) - C:\WINDOWS\System32\DRIVERS\ssudbus.sys =>.DEVGURU CO LTD [63E1989CF4AE5350298FA168D0921309] [22/01/2014] (.DEVGURU CO LTD.) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.DEVGURU CO LTD [77DA7C1FB07A72BDF4E7688C2ED7308A] [23/06/2014] (.Hightail Inc. (YouSendIt Inc.).) - C:\Program Files\Hightail\Hightail for Lenovo\YSINSE64.dll =>.Hightail Inc. (YouSendIt Inc.) [7849FEABCFBAC29213B3B80F32A87F64] [07/07/2015] (.SEIKO EPSON CORPORATION.) - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YINSRFE.EXE =>.SEIKO EPSON CORPORATION [7849FEABCFBAC29213B3B80F32A87F64] [31/07/2015] (.SEIKO EPSON CORPORATION.) - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll =>.SEIKO EPSON CORPORATION [7849FEABCFBAC29213B3B80F32A87F64] [31/07/2015] (.SEIKO EPSON CORPORATION.) - C:\Program Files (x86)\InstallShield Installation Information\{07AA1C7F-E8CA-4FDC-B975-BC9EBC22B6DE}\setup.exe =>.SEIKO EPSON CORPORATION [799AC3976095546D05DE5395166BFF83] [06/03/2013] (.CyberLink Corp..) - C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe =>.CyberLink Corp. [799AC3976095546D05DE5395166BFF83] [08/03/2013] (.CyberLink Corp..) - C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.EXE =>.CyberLink Corp. [799AC3976095546D05DE5395166BFF83] [19/02/2014] (.CyberLink Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}\setup.exe =>.CyberLink Corp. [799AC3976095546D05DE5395166BFF83] [23/04/2013] (.CyberLink Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\setup.exe =>.CyberLink Corp. [799AC3976095546D05DE5395166BFF83] [23/04/2013] (.CyberLink Corp..) - C:\Program Files\CyberLink\PowerDirector10\PDR10.EXE =>.CyberLink Corp. [799AC3976095546D05DE5395166BFF83] [24/06/2014] (.CyberLink Corp..) - C:\Program Files (x86)\Lenovo\Lenovo Photo Master\subsys\AdvPhotoEditor\PhotoDirector5.exe =>.CyberLink Corp. [799AC3976095546D05DE5395166BFF83] [25/06/2014] (.CyberLink Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{BC94C56A-3649-420C-8756-2ADEBE399D33}\Setup.exe =>.CyberLink Corp. [799AC3976095546D05DE5395166BFF83] [25/09/2013] (.CyberLink Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\Setup.exe =>.CyberLink Corp. [799AC3976095546D05DE5395166BFF83] [30/08/2013] (.CyberLink Corp..) - C:\Program Files (x86)\InstallShield Installation Information\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\setup.exe =>.CyberLink Corp. [799AC3976095546D05DE5395166BFF83] [30/08/2013] (.CyberLink Corp..) - C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE =>.CyberLink Corp. [7DF14DBB3F0B294012D094E3EA840697] [13/01/2016] (.SEIKO EPSON CORPORATION.) - C:\WINDOWS\system32\EscSvc64.exe =>.SEIKO EPSON CORPORATION ~ Unselected Options: Dragon, Opera, Edge, Slimjet, Vivaldi, ~ End of the scan, 9429 items in 03mn37s (2114)(0)