~ ZHPDiag v2021.11.2.336 Par Nicolas Coolman (2021/11/02) ~ Démarré par Admin (Administrator) (2021/11/04 19:43:54) ~ Web: https://www.nicolascoolman.com ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Certificate ZHPDiag: Legal ~ Etat de la version: Version OK ~ Mode: Scanner ~ Rapport: C:\Users\Admin\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\Admin\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Démarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 19042) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (4) - 0s ~ GCIE: Google Chrome v95.0.4638.69 ~ MFIE: Mozilla Firefox 94.0 (x64 fr) ~ MSIE: Internet Explorer v11.789.19041.0 ~ OBIE: Microsoft Edge v95.0.1020.40 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 3s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 8HVX7 Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (3) - 2s Windows Defender W10 (Deactivate) (Protection) Malwarebytes version 4.4.9.142 v4.4.9.142 (Protection) BDAntiRansomware v1.0.12.151 (Protection) ---\\ SURVEILLANCE LOGICIEL (1) - 2s ~ Adobe Acrobat Reader DC - Français (Surveillance) ---\\ LOGICIELS D'OPTIMISATION (1) - 2s ~ CCleaner v5.86 (Optimisation) ---\\ INFORMATIONS SUR LE SYSTÈME (6) - 0s ~ Operating System: Intel64 Family 6 Model 60 Stepping 3, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) Total RAM: 8261.728 MB (49% free) : OK =>.RAM Value System Restore: Activé (Enable) System drive C: has 47 GB (41%) free of 113 GB : OK =>.Disk Space ---\\ MODE DE CONNEXION AU SYSTÈME (3) - 0s ~ Computer Name: DESKTOP-MGHF6B7 ~ User Name: Admin ~ Logged in as Administrator ---\\ ÉNUMÉRATION DES UNITÉS DE STOCKAGE (2) - 0s ~ Drive C: has 47 GB free of 113 GB (System) ~ Drive D: has 697 GB free of 953 GB ---\\ ÉTAT DU CENTRE DE SÉCURITÉ WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIÈRE DE FICHIERS GÉNÉRIQUES (26) - 1s [MD5.30DECEE483A8196B30643EC6A453A7DE] - 15/10/2021 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [4853512] =>.Microsoft® [MD5.EF3179D498793BF4234F708D3BE28633] - 15/01/2021 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation [MD5.F3828D75795D5AE4B2D8B828026A4EAA] - 17/09/2021 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [432856] [Unsigned] =>.Microsoft Corporation [MD5.77D6C08C6448071B47F02B41FA18ED37] - 17/09/2021 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5016064] [Unsigned] =>.Microsoft Corporation [MD5.DA73454469C92DD85778A2737CC09510] - 15/10/2021 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [944640] [Unsigned] =>.Microsoft Corporation [MD5.3F910E7BB716BCD9B4C06EE6CF20304A] - 11/09/2020 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation [MD5.74D1435D58E09FC9164A4338D5C40E97] - 15/10/2021 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [827432] =>.Microsoft® [MD5.805E28764CA53118327A4869DBDE7093] - 15/10/2021 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [587744] =>.Microsoft® [MD5.A082710332CD5098AD027C28AEAF5DB0] - 15/10/2021 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3406848] [Unsigned] =>.Microsoft Corporation [MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.3980FAA93681004985FE46C406778579] - 15/10/2021 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [654648] [Unsigned] =>.Microsoft Corporation [MD5.AF0AA60DD36E4FA227F3C441B008336E] - 15/10/2021 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30032] [Unsigned] =>.Microsoft Corporation [MD5.764FE2149251A246F6B047A0F09F5F0B] - 07/12/2019 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation [MD5.054ABC6C64AE969D033B7876C04D52B4] - 15/10/2021 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation [MD5.3D3CCAFC76E02403E2963A2CB45D61F7] - 13/03/2021 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation [MD5.DE91793D8101F7D3B93D461EA1B56FC5] - 09/07/2021 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [139776] [Unsigned] =>.Microsoft Corporation [MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.F63572DF4295C78B3F7036AEDA878176] - 07/12/2019 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [225280] [Unsigned] =>.Microsoft Corporation [MD5.C82F6B54C60A02D861E584EF38B48D1D] - 17/09/2021 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [577872] [Unsigned] =>.Microsoft Corporation [MD5.49F7DE6F689C47B64A2C2D46CD98E327] - 17/10/2020 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation [MD5.1DBE08030BB75A481D9F2F95CED9DA16] - 15/10/2021 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2850616] [Unsigned] =>.Microsoft Corporation [MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation [MD5.40CBDB4B80284451536C8CA49561E5CD] - 11/09/2020 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation [MD5.64991B36F0BD38026F7589572C98E3D6] - 15/04/2021 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation [MD5.2A8B28579A4964AA7EA8CEB1AC121243] - 17/09/2021 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117584] [Unsigned] =>.Microsoft Corporation [MD5.988A7A685BB51BAC62F4E176BE5432AC] - 11/09/2020 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (72) - 2s O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc. - Adobe Acrobat Update Service.) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® O23 - Service: ASUS Com Service (asComSvc) . (.Microsoft Windows Hardware Compatibility Publisher - .) - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe =>.Microsoft Windows Hardware Compatibility Publisher® O23 - Service: C:\WINDOWS\System32\AudioEndpointBuilder.dll (AudioEndpointBuilder) . (.Microsoft Corporation - Générateur de points de terminaison du serv.) - C:\WINDOWS\System32\AudioEndpointBuilder.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\audiosrv.dll (Audiosrv) . (.Microsoft Corporation - Service Audio Windows.) - C:\WINDOWS\System32\Audiosrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Avira Updater Service (AviraUpdaterService) . (...) - C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe (.not file.) O23 - Service: Kaspersky Anti-Virus Service 21.3 (AVP21.3) . (.AO Kaspersky Lab - Kaspersky Lab launcher.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\avp.exe =>.Kaspersky Lab JSC® O23 - Service: C:\WINDOWS\System32\bfe.dll (BFE) . (.Microsoft Corporation - Moteur de filtrage de base.) - C:\WINDOWS\System32\bfe.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\bisrv.dll (BrokerInfrastructure) . (.Microsoft Corporation - Process State Manager (PSM) Service.) - C:\WINDOWS\System32\psmsrv.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\cdpusersvc.dll (CDPUserSvc) . (.Microsoft Corporation - Composants utilisateur Microsoft (R) CDP.) - C:\WINDOWS\System32\CDPUserSvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: CDPUserSvc_3795b (CDPUserSvc_3795b) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: Service Démarrer en clic Microsoft Office (ClickToRunSvc) . (.Microsoft Corporation - Microsoft Office Click-to-Run.) - C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe =>.Microsoft® O23 - Service: C:\Windows\System32\coremessaging.dll (CoreMessagingRegistrar) . (.Microsoft Corporation - Microsoft CoreMessaging Dll.) - C:\Windows\System32\coremessaging.dll =>.Microsoft® O23 - Service: C:\WINDOWS\System32\cryptsvc.dll (CryptSvc) . (.Microsoft Corporation - Services de chiffrement.) - C:\WINDOWS\System32\cryptsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\das.dll (DeviceAssociationService) . (.Microsoft Corporation - Service d’association de périphérique.) - C:\WINDOWS\System32\das.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dhcpcore.dll (Dhcp) . (.Microsoft Corporation - Service client DHCP.) - C:\Windows\System32\dhcpcore.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dispbroker.desktop.dll (DispBrokerDesktopSvc) . (.Microsoft Corporation - Courtier d'affichage du bureau.) - C:\WINDOWS\System32\DispBroker.Desktop.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\dnsapi.dll (Dnscache) . (.Microsoft Corporation - Service de résolution du cache DNS.) - C:\WINDOWS\System32\dnsrslvr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\dosvc.dll (DoSvc) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\dusmsvc.dll (DusmSvc) . (.Microsoft Corporation - Service Consommation des données.) - C:\WINDOWS\System32\dusmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Mise à jour de Microsoft Edge (edgeupdate) (edgeupdate) . (.Microsoft Corporation - Microsoft Edge Update.) - C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wevtsvc.dll (EventLog) . (.Microsoft Corporation - Service journal des événements.) - C:\WINDOWS\System32\wevtsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @comres.dll,-2450 (EventSystem) . (.Microsoft Corporation - COM+.) - C:\Windows\System32\es.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\FntCache.dll (FontCache) . (.Microsoft Corporation - Service de cache de police Windows.) - C:\WINDOWS\System32\FntCache.dll [Unsigned] =>.Microsoft Corporation O23 - Service: GlassWire Control Service (GlassWire) . (.SecureMix LLC - GlassWire Control Service.) - C:\Program Files (x86)\GlassWire\GWCtlSrv.exe {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC O23 - Service: @gpapi.dll,-112 (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) - C:\WINDOWS\System32\gpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Service Google Update (gupdate) (gupdate) . (.Google LLC - Programme d'installation de Google.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® O23 - Service: clover_service (HCloverService) . (...) - C:\Program Files (x86)\Clover\CloverSvc.dll (.not file.) O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation - IAStorDataSvc.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology® O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation - igfxCUIService Module.) - C:\WINDOWS\System32\igfxCUIService.exe [Unsigned] =>.Intel Corporation O23 - Service: C:\WINDOWS\System32\ikeext.dll (IKEEXT) . (.Microsoft Corporation - Extension IKE.) - C:\WINDOWS\System32\ikeext.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation - Intel® PROSet Monitoring Service.) - C:\Windows\system32\IProsetMonitor.exe [Unsigned] =>.Intel Corporation O23 - Service: C:\WINDOWS\System32\iphlpsvc.dll (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) - C:\WINDOWS\System32\iphlpsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Kaspersky VPN Secure Connection Service 5.3 (KSDE5.3) . (.AO Kaspersky Lab - Kaspersky Lab launcher.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe =>.Kaspersky Lab JSC® O23 - Service: C:\WINDOWS\System32\srvsvc.dll (LanmanServer) . (.Microsoft Corporation - DLL du service Serveur.) - C:\WINDOWS\System32\srvsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wkssvc.dll (LanmanWorkstation) . (.Microsoft Corporation - DLL du service Station de travail.) - C:\WINDOWS\System32\wkssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\lsm.dll (LSM) . (.Microsoft Corporation - Service du gestionnaire de session locale.) - C:\WINDOWS\System32\lsm.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\moshost.dll (MapsBroker) . (.Microsoft Corporation - Gestionnaire des cartes téléchargées.) - C:\WINDOWS\System32\moshost.dll [Unsigned] =>.Microsoft Corporation O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc® O23 - Service: C:\Windows\System32\FirewallAPI.dll (mpssvc) . (.Microsoft Corporation - Service de protection Microsoft.) - C:\WINDOWS\System32\mpssvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nlasvc.dll (NlaSvc) . (.Microsoft Corporation - Connaissance des emplacements réseau 2.) - C:\WINDOWS\System32\nlasvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\nsisvc.dll (nsi) . (.Microsoft Corporation - Serveur RPC de l’interface du magasin résea.) - C:\WINDOWS\System32\nsisvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\APHostRes.dll (OneSyncSvc) . (.Microsoft Corporation - Accounts Host Service.) - C:\WINDOWS\System32\APHostService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: OneSyncSvc_3795b (OneSyncSvc_3795b) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: PDFProFiltSrv (PDFProFiltSrv) . (.Nuance Communications, Inc. - PDFPROFILTSRV.EXE.) - C:\Program Files (x86)\Nuance\PDF Professional 7\PDFProFiltSrv.exe =>.Nuance Communications, Inc.® O23 - Service: C:\WINDOWS\System32\umpo.dll (Power) . (.Microsoft Corporation - Service d’alimentation en mode utilisateur.) - C:\WINDOWS\System32\umpo.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\profsvc.dll (ProfSvc) . (.Microsoft Corporation - ProfSvc.) - C:\WINDOWS\System32\profsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\rasmans.dll (RasMan) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) - C:\WINDOWS\System32\rasmans.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\RpcEpMap.dll (RpcEptMapper) . (.Microsoft Corporation - Mappeur de point de terminaison RPC.) - C:\WINDOWS\System32\RpcEpMap.dll [Unsigned] =>.Microsoft Corporation O23 - Service: @combase.dll,-5010 (RpcSs) . (.Microsoft Corporation - Distributed COM Services.) - C:\WINDOWS\System32\rpcss.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\schedsvc.dll (Schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) - C:\WINDOWS\System32\schedsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\Sens.dll (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) - C:\WINDOWS\System32\sens.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SgrmBroker.exe,-100 (SgrmBroker) . (.Microsoft Corporation - Service Broker du moniteur d'exécution Syst.) - C:\WINDOWS\System32\SgrmBroker.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\Windows\System32\shsvcs.dll (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) - C:\Windows\System32\shsvcs.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\spoolsv.exe,-1 (Spooler) . (.Microsoft Corporation - Application sous-système spouleur.) - C:\WINDOWS\System32\spoolsv.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sppsvc.exe,-101 (sppsvc) . (.Microsoft Corporation - Service de la plateforme de protection logi.) - C:\WINDOWS\System32\sppsvc.exe [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wiaservc.dll (stisvc) . (.Microsoft Corporation - Service de périphériques d’images fixes.) - C:\WINDOWS\System32\wiaservc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\StorSvc.dll (StorSvc) . (.Microsoft Corporation - Services de stockage.) - C:\WINDOWS\System32\storsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\sysmain.dll (SysMain) . (.Microsoft Corporation - Hôte de Service SysMain.) - C:\WINDOWS\System32\sysmain.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\system32\SystemEventsBrokerServer.dll (SystemEventsBroker) . (.Microsoft Corporation - Service Broker pour les événements système.) - C:\WINDOWS\System32\SystemEventsBrokerServer.dll [Unsigned] =>.Microsoft Corporation O23 - Service: TeraCopy Service (TeraCopyService) . (. {60D8E4C1C16589BC9C5BB9B543A1D659}. - TeraCopy.) - C:\Program Files\TeraCopy\TeraCopyService.exe {60D8E4C1C16589BC9C5BB9B543A1D659}. O23 - Service: TeraCopy Service (TeraCopyService.exe) . (. {60D8E4C1C16589BC9C5BB9B543A1D659}. - TeraCopy.) - C:\Program Files\TeraCopy\TeraCopyService.exe {60D8E4C1C16589BC9C5BB9B543A1D659}. O23 - Service: C:\WINDOWS\System32\themeservice.dll (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) - C:\WINDOWS\System32\themeservice.dll [Unsigned] =>.Microsoft Corporation O23 - Service: (TTHOMEService) . (.TomTom - Windows Service for TTHOME.) - C:\Program Files\TomTom HOME\TTHOMEService.exe [Unsigned] =>.TomTom O23 - Service: C:\WINDOWS\System32\usermgr.dll (UserManager) . (.Microsoft Corporation - UserMgr.) - C:\WINDOWS\System32\usermgr.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\usosvc.dll (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) - C:\WINDOWS\System32\usosvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wcmsvc.dll (Wcmsvc) . (.Microsoft Corporation - DLL du service de gestion des connexions Wi.) - C:\WINDOWS\System32\wcmsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wbem\wmisvc.dll (Winmgmt) . (.Microsoft Corporation - WMI.) - C:\WINDOWS\System32\wbem\WMIsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\wpnservice.dll (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) - C:\WINDOWS\System32\WpnService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\WpnUserService.dll (WpnUserService) . (.Microsoft Corporation - Service utilisateur de notifications Push W.) - C:\WINDOWS\System32\WpnUserService.dll [Unsigned] =>.Microsoft Corporation O23 - Service: WpnUserService_3795b (WpnUserService_3795b) . (.Microsoft Corporation - Processus hôte pour les services Windows.) - C:\Windows\System32\svchost.exe =>.Microsoft® O23 - Service: C:\WINDOWS\System32\wscsvc.dll (wscsvc) . (.Microsoft Corporation - Service Centre de sécurité de Windows.) - C:\WINDOWS\System32\wscsvc.dll [Unsigned] =>.Microsoft Corporation O23 - Service: C:\WINDOWS\System32\SearchIndexer.exe,-103 (WSearch) . (.Microsoft Corporation - Indexeur Microsoft Windows Search.) - C:\Windows\System32\SearchIndexer.exe [Unsigned] =>.Microsoft Corporation ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (123) - 7s SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Auto [16/08/2021] [ 169728] Adobe Acrobat Update Service (AdobeARMservice) . (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc.® SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Auto [13/05/2015] [ 936456] ASUS Com Service (asComSvc) . (.Microsoft Windows Hardware Compatibility Publisher.) - C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe =>.Microsoft Windows Hardware Compatibility Publisher® SR - System [13/05/2015] [ 15368] AsIO (AsIO) . (.Microsoft Windows Hardware Compatibility Publisher.) - C:\Windows\SysWOW64\drivers\AsIO.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Auto [00/00/0000] [ 0] Avira Updater Service (AviraUpdaterService) . (...) - C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe (.not file.) [Unsigned] SR - Auto [15/06/2021] [ 184768] Kaspersky Anti-Virus Service 21.3 (AVP21.3) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\avp.exe =>.Kaspersky Lab JSC® SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SR - Boot [19/02/2021] [ 250032] AO Kaspersky Lab Cryptographic Module x64 (56 bit) (cm_km) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\cm_km.sys =>.Kaspersky Lab JSC® SS - Demand [01/11/2016] [ 301552] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX® SR - Demand [11/05/2021] [ 46384] %CSRBC.SvcDesc% (CSRBC) . (.CSR plc..) - C:\WINDOWS\System32\Drivers\csrbc.sys =>.Sena Technologies, Inc.® SR - Demand [29/06/2021] [ 159864] SAMSUNG Mobile USB Com (dg_ssudbus) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics Co., Ltd.® SS - Demand [00/00/0000] [ 0] DisplayFusionService (DisplayFusionService) . (...) - F:\displayFusion\DisplayFusion\DisplayFusionService.exe (.not file.) [Unsigned] SR - Demand [01/10/2020] [ 600936] Intel(R) PRO/1000 P (e1dexpress) . (.Intel Corporation.) - C:\Windows\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_26255692c8b1c6b6\e1d68x64.sys =>.INTELEPGSW2022® SR - Demand [07/12/2019] [ 553984] Intel(R) PRO/10 (e1i65x64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\e1i65x64.sys [Unsigned] =>.Intel Corporation SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - System [12/02/2009] [ 26024] ElRawDisk (ElRawDisk) . (.EldoS Corporation.) - C:\WINDOWS\system32\drivers\rsdrvx64.sys =>.EldoS Corporation® SR - Auto [22/10/2021] [ 7055304] GlassWire Control Service (GlassWire) . (.SecureMix LLC.) - C:\Program Files (x86)\GlassWire\GWCtlSrv.exe {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC SS - Demand [28/10/2021] [ 1384280] Google Chrome Elevation Service (GoogleChromeElevationServi (GoogleChromeElevationService) . (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.69\elevation_service.exe =>.Google LLC® SR - Auto [14/12/2019] [ 155432] Service Google Update (gupdate) (gupdate) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SS - Demand [14/12/2019] [ 155432] Service Google Update (gupdatem) (gupdatem) . (.Google LLC.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc® SR - System [29/05/2015] [ 33152] GlassWire Driver (gwdrv) . (.SecureMix LLC.) - C:\WINDOWS\System32\DRIVERS\gwdrv.sys =>.GlassWire® SR - Auto [00/00/0000] [ 0] clover_service (HCloverService) . (...) - C:\Program Files (x86)\Clover\CloverSvc.dll (.not file.) [Unsigned] SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [11/04/2014] [ 645480] (iaStorA) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorA.sys =>.Intel Corporation - Intel® Rapid Storage Technology® SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Auto [11/04/2014] [ 16232] Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) . (.Intel Corporation.) - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe =>.Intel Corporation - Intel® Rapid Storage Technology® SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [01/11/2016] [ 7966192] (igfx) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\igdkmd64.sys =>.Intel(R) pGFX® SR - Auto [01/11/2016] [ 373744] Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) . (.Intel Corporation.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel(R) pGFX® SR - Demand [19/06/2010] [ 17920] Siliten HID Devices(FlexDef2 (InputFilter_Hid_FlexDef2b) . (.Siliten.) - C:\WINDOWS\System32\drivers\InputFilter_FlexDef2b.sys [Unsigned] =>.Siliten SR - Demand [30/05/2018] [ 6248896] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp.® SR - Demand [12/05/2016] [ 481768] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\IntcDAud.sys =>.Intel(R) OWR® SR - Auto [05/02/2014] [ 259848] Intel(R) PROSet Monitoring Service (Intel(R) PROSet Monitoring Service) . (.Intel Corporation.) - C:\Windows\system32\IProsetMonitor.exe =>.Intel Corporation® SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Demand [08/09/2018] [ 243800] (KeyScrambler) . (.QFX Software Corporation.) - C:\WINDOWS\System32\drivers\keyscrambler.sys =>.QFX Software Corporation® SR - System [19/02/2021] [ 110336] Kaspersky Lab klbackupdisk (klbackupdisk) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klbackupdisk.sys =>.Kaspersky Lab JSC® SR - System [19/02/2021] [ 211704] Kaspersky Lab klbackupflt (klbackupflt) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klbackupflt.sys =>.Kaspersky Lab JSC® SR - System [19/02/2021] [ 126216] kldisk (kldisk) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\kldisk.sys =>.Kaspersky Lab JSC® SR - Boot [19/02/2021] [ 41656] klelam (klelam) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klelam.sys =>.Microsoft® SR - System [19/02/2021] [ 514840] Kaspersky Lab Kernel DLL (klflt) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klflt.sys =>.Kaspersky Lab JSC® SR - System [09/09/2021] [ 674104] Kaspersky Lab Security Extender Driver (klgse) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klgse.sys =>.Microsoft® SR - System [09/09/2021] [ 1469240] Kaspersky Lab service driver (klhk) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klhk.sys =>.Microsoft® SR - Demand [15/08/2021] [ 273176] klids (klids) . (.AO Kaspersky Lab.) - C:\ProgramData\Kaspersky Lab\AVP21.3\Bases\klids.sys =>.Microsoft® SR - System [19/02/2021] [ 1042712] Kaspersky Lab Driver (KLIF) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klif.sys =>.Kaspersky Lab JSC® SR - System [19/02/2021] [ 98040] Kaspersky Anti-Virus NDIS 6 Filter (klim6) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klim6.sys =>.Kaspersky Lab JSC® SR - Demand [19/02/2021] [ 112392] Kaspersky Lab KLKBDFLT (klkbdflt) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klkbdflt.sys =>.Kaspersky Lab JSC® SR - Demand [19/02/2021] [ 112904] Kaspersky Lab KLMOUFLT (klmouflt) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klmouflt.sys =>.Kaspersky Lab JSC® SR - System [19/02/2021] [ 85256] Kaspersky Lab format recognizer driver (klpd) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klpd.sys =>.Kaspersky Lab JSC® SR - System [15/06/2021] [ 96008] Kaspersky Lab klpnpflt (klpnpflt) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klpnpflt.sys =>.Kaspersky Lab JSC® SR - Demand [19/02/2021] [ 55592] Kaspersky Security Data Esco (kltap) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\kltap.sys =>.AnchorFree Inc® SR - Boot [23/09/2021] [ 265176] (klupd_klif_arkmon) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys =>.Microsoft® SR - Demand [23/09/2021] [ 315032] (klupd_klif_klark) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys =>.Microsoft® SR - Boot [23/09/2021] [ 113952] (klupd_klif_klbg) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys =>.Microsoft® SR - Demand [23/09/2021] [ 225648] (klupd_klif_mark) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys =>.Microsoft® SS - Demand [19/02/2021] [ 479280] Kaspersky Volume Shadow Copy Service Bridge 21.3 (klvssbridge64_21.3) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\x64\vssbridge64.exe =>.Kaspersky Lab JSC® SR - System [19/02/2021] [ 155912] klwfp (klwfp) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klwfp.sys =>.Kaspersky Lab JSC® SR - System [19/02/2021] [ 327936] KLwtp - WFP callout traffic inspector (klwtp) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\klwtp.sys =>.Kaspersky Lab JSC® SR - System [19/02/2021] [ 300808] kneps (kneps) . (.AO Kaspersky Lab.) - C:\WINDOWS\System32\DRIVERS\kneps.sys =>.Kaspersky Lab JSC® SR - Auto [15/06/2021] [ 447104] Kaspersky VPN Secure Connection Service 5.3 (KSDE5.3) . (.AO Kaspersky Lab.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe =>.Kaspersky Lab JSC® SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Auto [20/09/2021] [ 210344] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Microsoft® SR - Boot [13/12/2020] [ 19912] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft® SR - Auto [03/11/2021] [ 7826104] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc® SR - Demand [03/11/2021] [ 248992] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc® SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [17/10/2017] [ 206496] Intel(R) Management Engine Interfa (MEIx64) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SR - Demand [20/10/2010] [ 15360] HID Mouse(FlexDef4) Driver S (MouFilter_Mou_FlexDef4) . (.Siliten.) - C:\WINDOWS\System32\drivers\MouFilter_FlexDef4.sys [Unsigned] =>.Siliten SS - Demand [02/11/2021] [ 243128] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Auto [17/02/2012] [ 135016] PDFProFiltSrv (PDFProFiltSrv) . (.Nuance Communications, Inc..) - C:\Program Files (x86)\Nuance\PDF Professional 7\PDFProFiltSrv.exe =>.Nuance Communications, Inc.® SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SR - Boot [08/11/2019] [ 19152] pwdrvio (pwdrvio) . (.MiniTool Solution Ltd.) - C:\WINDOWS\System32\pwdrvio.sys =>.MiniTool Solution Ltd® SR - Demand [08/11/2019] [ 12504] pwdspio (pwdspio) . (.MiniTool Solution Ltd.) - C:\WINDOWS\system32\pwdspio.sys =>.MiniTool Solution Ltd® SS - Demand [28/09/2021] [ 83480] QFX Software Update Service (QFXUpdateService) . (. {7AF1E5B8826150A78A17269C}..) - C:\Program Files (x86)\KeyScrambler\x64\QFXUpdateService.exe {7AF1E5B8826150A78A17269C}. SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Demand [11/11/2020] [ 167280] SAMSUNG Mobile USB Modem Dr (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd.® SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Auto [21/04/2021] [ 114384] TeraCopy Service (TeraCopyService) . (. {60D8E4C1C16589BC9C5BB9B543A1D659}..) - C:\Program Files\TeraCopy\TeraCopyService.exe {60D8E4C1C16589BC9C5BB9B543A1D659}. SR - Auto [21/04/2021] [ 114384] TeraCopy Service (TeraCopyService.exe) . (. {60D8E4C1C16589BC9C5BB9B543A1D659}..) - C:\Program Files\TeraCopy\TeraCopyService.exe {60D8E4C1C16589BC9C5BB9B543A1D659}. SR - Auto [17/04/2019] [ 97792] (TTHOMEService) . (.TomTom.) - C:\Program Files\TomTom HOME\TTHOMEService.exe [Unsigned] =>.TomTom SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® SR - Demand [11/03/2020] [ 33864] WiseUnlock (WiseUnlock) . (.WiseCleaner.com.) - C:\Windows\WiseUnlock64.sys =>.Beijing Lang Xingda Network Technology Co., Ltd® SR - Disabl [20/03/2017] [ 473312] Wondershare Application Framework Service (WsAppService) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\WAF\2.4.2.223\WsAppService.exe =>.Wondershare Technology Co.,Ltd® SR - Disabl [01/06/2017] [ 101152] Wondershare Driver Install Service (WsDrvInst) . (.Wondershare.) - C:\Program Files (x86)\Wondershare\MobileGo\DriverInstall.exe =>.Wondershare Technology Co.,Ltd® ---\\ TÂCHES PLANIFIÉES EN AUTOMATIQUE (Registre) (36) - 9s O38 - TASK: {003BC3A3-5050-474B-B468-AE7EA86D7174} [64Bits][\BDAntiCryptoWallTask] - (.Bitdefender LLC - Bitdefender Anti Ransomware.) -- C:\Program Files\Bitdefender\Tools\BDAntiRansomware\BDAntiRansomware.exe [1586688] =>.BitDefender LLC O38 - TASK: {07829167-7713-46FB-93C7-F8074927A395} [64Bits][\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB] - (.Mozilla Foundation - Firefox Default Browser Agent.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [682936] =>.Mozilla Foundation O38 - TASK: {08CA2421-DFF8-4A8A-A67B-5B8355290389} [64Bits][\taches CB\Chat_bouffe] - (.DESKTOP-MGHF6B7\Admin - Remplir la gamelle des chats pour la nuit..) -- powershell [0] O38 - TASK: {0A198E85-EBC9-4DB6-B363-8F4B63476535} [64Bits][\GoogleUpdateTaskMachineCore] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432] =>.Google LLC O38 - TASK: {0DAE1B02-DF91-49E4-924C-050D67497676} [64Bits][\CCleanerSkipUAC - Admin] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [29200512] =>.Piriform Software Ltd O38 - TASK: {1745A578-8BE4-4EF3-A183-3263786D05FF} [64Bits][\CCleaner Update] - (.Piriform - Piriform CCleaner emergency updater.) -- C:\Program Files\CCleaner\CCUpdate.exe [684976] =>.Piriform O38 - TASK: {25E83E7C-D1F7-4FF2-AAE1-8C69D2A2C8FF} [64Bits][\Adobe Acrobat Update Task] - (.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376] =>.Adobe Inc. O38 - TASK: {29FAA161-5C64-4266-BC1B-CA6F09AD8682} [64Bits][\Mozilla\Firefox Background Update 308046B0AF4A39CB] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] =>.Mozilla Corporation O38 - TASK: {4276420C-347F-4705-8F31-0AD12D385AF2} [64Bits][\taches CB\O2pulsat] - (.DESKTOP-MGHF6B7\Admin - Mesure de l'O² et de la pulsation puis note.) -- powershell [0] O38 - TASK: {4282594F-ACD4-4D1A-BA4B-6E723F4F3681} [64Bits][\NCH Software\VideoPadCacheDeleteAll] - (.NCH Software - VideoPad - Logiciel de montage vidéo.) -- C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe [11085352] =>.NCH Software O38 - TASK: {781BB2FF-69F9-48AC-BFA2-B83C1C8B6B0A} [64Bits][\NCH Software\VideoPadSevenDays] - (.NCH Software - VideoPad - Logiciel de montage vidéo.) -- C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe [11085352] =>.NCH Software O38 - TASK: {9B0AA682-51ED-4451-BAA1-EBDA8F4AD13A} [64Bits][\taches CB\Aspi-filtre-mousse] - (.DESKTOP-MGHF6B7\Admin - Nettoyage mensuel du filtre en mousse de l'.) -- powershell [0] O38 - TASK: {9C310E71-44C1-48D9-904C-28B3C64739D5} [64Bits][\CCleanerSkipUAC] - (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner.exe [29200512] =>.Piriform Software Ltd O38 - TASK: {A0794FDF-35F1-4E88-8C9C-7145B10311F4} [64Bits][\taches CB\Aspi-filtre-papier] - (.DESKTOP-MGHF6B7\Admin - Néttoyage et soufflage du filtre papier de .) -- powershell [0] O38 - TASK: {CBA582AB-1003-466A-8D6B-96BB50D81F38} [64Bits][\GoogleUpdateTaskMachineUA] - (.Google LLC - Programme d'installation de Google.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432] =>.Google LLC O38 - TASK: {CF6A84FB-CBF0-44AB-9CAD-6B7359477B96} [64Bits][\taches CB\Sauve clé usb] - (.DESKTOP-MGHF6B7\Admin - Sauvegarde hebdo de la clé USB Christian..) -- powershell [0] O38 - TASK: {E3EDB0FE-9040-426E-BCE3-D664AFCBAC80} [64Bits][\klcp_update] - (.KLite Inc - Setup/Uninstall.) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1907712] =>.KLite Inc O38 - TASK: {E99871BF-C585-4C40-BB0E-E7EE9DC5E6CC} [64Bits][\taches CB\restosys] - (.DESKTOP-MGHF6B7\Admin - Création d'un point de restauration système.) -- cscript [0] C:\WINDOWS\System32\Tasks\BDAntiCryptoWallTask - (.Bitdefender LLC.) -- C:\Program Files\Bitdefender\Tools\BDAntiRansomware\BDAntiRansomware.exe [] =>.BitDefender LLC C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB - (.Mozilla Foundation.) -- C:\Program Files\Mozilla Firefox\default-browser-agent.exe [do-task "308046B0AF4A39CB.do-task] =>.Mozilla Foundation C:\WINDOWS\System32\Tasks\taches CB\Chat_bouffe - (.DESKTOP-MGHF6B7\Admin.) -- powershell [-WindowStyle hidden -Command "& {[System.Refle] C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/c] =>.Google LLC C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - Admin - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd C:\WINDOWS\System32\Tasks\CCleaner Update - (.Piriform.) -- C:\Program Files\CCleaner\CCUpdate.exe [] =>.Piriform C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task - (.Adobe Inc..) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [] =>.Adobe Inc. C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB - (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\WINDOWS\System32\Tasks\taches CB\O2pulsat - (.DESKTOP-MGHF6B7\Admin.) -- powershell [-WindowStyle hidden -Command "& {[System.Refle] C:\WINDOWS\System32\Tasks\NCH Software\VideoPadCacheDeleteAll - (.NCH Software.) -- C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe [-bgtask delcache.-bgtask] =>.NCH Software C:\WINDOWS\System32\Tasks\NCH Software\VideoPadSevenDays - (.NCH Software.) -- C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe [-sevendays] =>.NCH Software C:\WINDOWS\System32\Tasks\taches CB\Aspi-filtre-mousse - (.DESKTOP-MGHF6B7\Admin.) -- powershell [-WindowStyle hidden -Command "& {[System.Refle] C:\WINDOWS\System32\Tasks\CCleanerSkipUAC - (.Piriform Software Ltd.) -- C:\Program Files\CCleaner\CCleaner.exe [$(Arg0)] =>.Piriform Software Ltd C:\WINDOWS\System32\Tasks\taches CB\Aspi-filtre-papier - (.DESKTOP-MGHF6B7\Admin.) -- powershell [-WindowStyle hidden -Command "& {[System.Refle] C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA - (.Google LLC.) -- C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [/ua ./ua] =>.Google LLC C:\WINDOWS\System32\Tasks\taches CB\Sauve clé usb - (.DESKTOP-MGHF6B7\Admin.) -- powershell [-WindowStyle hidden -Command "& {[System.Refle] C:\WINDOWS\System32\Tasks\klcp_update - (.KLite Inc.) -- C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [/verysilent ./verysilent] =>.KLite Inc C:\WINDOWS\System32\Tasks\taches CB\restosys - (.DESKTOP-MGHF6B7\Admin.) -- cscript [C:\retauration\create_restore_point.vbs] ---\\ APPLICATIONS LANCÉES AU DÉMARRAGE DU SYSTÈME (19) - 2s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKCU\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd® O4 - HKCU\..\Run: [TomTomHOME.exe] . (.TomTom - System Tray application for TomTom HOME2.) -- C:\Program Files\TomTom HOME\TTHOMERunner.exe [Unsigned] =>.TomTom O4 - HKUS\.DEFAULT\..\Run: [GoogleDriveFS] . (. - .) -- C:\Program Files\Google\Drive File Stream\49.0.9.0\GoogleDriveFS.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\.DEFAULT\..\Run: [GlassWire] . (.SecureMix LLC - GlassWire.) -- C:\Program Files (x86)\GlassWire\glasswire.exe {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC O4 - HKUS\S-1-5-18\..\Run: [GoogleDriveFS] . (. - .) -- C:\Program Files\Google\Drive File Stream\49.0.9.0\GoogleDriveFS.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-18\..\Run: [GlassWire] . (.SecureMix LLC - GlassWire.) -- C:\Program Files (x86)\GlassWire\glasswire.exe {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-19\..\Run: [GoogleDriveFS] . (. - .) -- C:\Program Files\Google\Drive File Stream\49.0.9.0\GoogleDriveFS.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [GoogleDriveFS] . (. - .) -- C:\Program Files\Google\Drive File Stream\49.0.9.0\GoogleDriveFS.exe (.Not File.) =>.SUP.Orphan O4 - HKUS\S-1-5-19\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation O4 - HKUS\S-1-5-20\..\RunOnce: [WAB Migrate] . (.Microsoft Corporation - Windows Contacts.) -- C:\Program Files\Windows Mail\wab.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Wow6432Node\Run: [InboxMonitor] . (...) -- C:\Program Files (x86)\Nuance\PDF Professional 7\InboxMonitor.exe [Unsigned] O4 - HKLM\..\Wow6432Node\Run: [PDF7 Registry Controller] . (.Nuance Communications, Inc. - REGISTRYCONTROLLER.EXE.) -- C:\Program Files (x86)\Nuance\PDF Professional 7\RegistryController.exe =>.Nuance Communications, Inc.® O4 - HKLM\..\Wow6432Node\Run: [PDFProHook] . (.Nuance Communications, Inc. - PdfPro7Hook.exe.) -- C:\Program Files (x86)\Nuance\PDF Professional 7\pdfpro7hook.exe =>.Nuance Communications, Inc.® O4 - HKLM\..\Wow6432Node\Run: [PdfProInboxMonitor] . (...) -- C:\Program Files (x86)\Nuance\PDF Professional 7\InboxMonitor.exe [Unsigned] O4 - HKUS\S-1-5-21-188433853-1034861487-459835961-1001\..\Run: [CCleaner Smart Cleaning] . (.Piriform Software Ltd - CCleaner.) -- C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd® O4 - HKUS\S-1-5-21-188433853-1034861487-459835961-1001\..\Run: [TomTomHOME.exe] . (.TomTom - System Tray application for TomTom HOME2.) -- C:\Program Files\TomTom HOME\TTHOMERunner.exe [Unsigned] =>.TomTom ---\\ PROCESSUS LANCÉS (42) - 4s [MD5.5E346326A03E4BF52E746D659F431ED9] - (. - TeraCopy.) -- C:\Program Files\TeraCopy\TeraCopyService.exe [114384] [PID.1528] {60D8E4C1C16589BC9C5BB9B543A1D659}. [MD5.A105AD05696D55E6E4F078ED850F6305] - (.Intel Corporation - igfxCUIService Module.) -- C:\Windows\System32\igfxCUIService.exe [373744] [PID.1824] [Unsigned] =>.Intel Corporation [MD5.1A4F85DEAFF33D16230A686A2824A5D8] - (...) -- C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936456] [PID.3108] =>.Microsoft Windows Hardware Compatibility Publisher® [MD5.AD1F754E82CEDCC88FFD491571DEB6E6] - (.Adobe Inc. - Adobe Acrobat Update Service.) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728] [PID.3116] =>.Adobe Inc.® [MD5.157BB2AED7EAAA0C787B1611167AF30B] - (.SecureMix LLC - GlassWire Control Service.) -- C:\Program Files (x86)\GlassWire\GWCtlSrv.exe [7055304] [PID.3140] {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC [MD5.DD73746062EAF2767EC84D995B50C977] - (.Intel Corporation - Intel® PROSet Monitoring Service.) -- C:\Windows\System32\IProsetMonitor.exe [259848] [PID.3176] [Unsigned] =>.Intel Corporation [MD5.5E346326A03E4BF52E746D659F431ED9] - (. - TeraCopy.) -- C:\Program Files\TeraCopy\TeraCopyService.exe [114384] [PID.3308] {60D8E4C1C16589BC9C5BB9B543A1D659}. [MD5.D95602C43F2E13C052F431934EAB886E] - (.Nuance Communications, Inc. - PDFPROFILTSRV.EXE.) -- C:\Program Files (x86)\Nuance\PDF Professional 7\PDFProFiltSrv.exe [135016] [PID.3352] =>.Nuance Communications, Inc.® [MD5.C30D51C07F75DC853F1D788AF57C1FB1] - (.Bitdefender LLC - Bitdefender Anti Ransomware.) -- C:\Program Files\Bitdefender\Tools\BDAntiRansomware\BDAntiRansomware.exe [1586688] [PID.4704] [Unsigned] =>.BitDefender LLC [MD5.4677B36567AC7B8D1DC659E37225167D] - (.Intel Corporation - igfxEM Module.) -- C:\Windows\System32\igfxEM.exe [354800] [PID.5636] [Unsigned] =>.Intel Corporation [MD5.ADE04BC33BF8C598170508354B8C6C9D] - (.Intel Corporation - igfxHK Module.) -- C:\Windows\System32\igfxHK.exe [268784] [PID.5704] [Unsigned] =>.Intel Corporation [MD5.F3E1B4D249B9E2E820870A3C1ED82AC8] - (...) -- C:\WINDOWS\system32\igfxTray.exe [401896] [PID.5800] [Unsigned] =>.Intel Corporation [MD5.C6D931376DDF24DC2F994E95B1417AA5] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [6770360] [PID.7176] =>.Malwarebytes Inc® [MD5.6AECA53F405206CAD08032B2FE2423D7] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [793416] [PID.7768] =>.Microsoft® [MD5.02DF1E835008CEB9AE725661C10CE5B0] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe [299592] [PID.8920] =>.Google LLC® [MD5.927575E60A8C1864B0276A8B5473028A] - (.Google LLC - Google Crash Handler.) -- C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe [381512] [PID.8936] =>.Google LLC® [MD5.5BA026F699E57947E8DE859242511D07] - (.Realtek Semiconductor - Gestionnaire audio HD Realtek.) -- C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9274304] [PID.9028] =>.Realtek Semiconductor Corp.® [MD5.EE74CEE8ADD7E5E56DFD1066BE211192] - (.Dominik Reichl - KeePass.) -- C:\Program Files\KeePass Password Safe 2\KeePass.exe [3190384] [PID.9268] {5042C501F1F0BA29E38E1F71621966C9}. =>.Dominik Reichl [MD5.7CF9319F0CEB0479A953C1505F9E0118] - (.FSL - FreeSoftLand - FLS Launcher.) -- C:\Program Files (x86)\FSL\FSL_Launcher\FSL_Launcher.exe [1287168] [PID.9444] [Unsigned] =>.FSL - FreeSoftLand [MD5.4B57FC6D4036432EAF73183B5EA7DDF4] - (.QFX Software Corporation - KeyScrambler.) -- C:\Program Files (x86)\KeyScrambler\KeyScrambler.exe [512536] [PID.9664] {7AF1E5B8826150A78A17269C}. =>.QFX Software Corporation [MD5.7C67BADD90C89F4578871879E54B6834] - (.QFX Software Corporation - KeyScrambler.) -- C:\Program Files (x86)\KeyScrambler\x64\KeyScrambler.exe [566296] [PID.9784] {7AF1E5B8826150A78A17269C}. =>.QFX Software Corporation [MD5.53746BA4EADC351AB343E845761F5B27] - (.Siliten - MouClient_FD2.) -- C:\Program Files (x86)\SilverCrest SMLM 807 A1 Driver\MouClient_FD2_9063RL.exe [867328] [PID.9812] [Unsigned] =>.Siliten [MD5.0D41E1C1B7EBFB5218985429E1D0BF19] - (.SecureMix LLC - GlassWire Computer Idle Monitor.) -- C:\Program Files (x86)\GlassWire\GWIdlMon.exe [4523976] [PID.7260] {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC [MD5.F35FBCEB1B71BC20BBAFA526E203D6A1] - (.Intel Corporation - IAStorDataSvc.) -- C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232] [PID.9428] =>.Intel Corporation - Intel® Rapid Storage Technology® [MD5.4012FBB32B92305ABB294E5F9EE0E7FE] - (.AO Kaspersky Lab - Kaspersky Lab launcher.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe [447104] [PID.7836] =>.Kaspersky Lab JSC® [MD5.93A9833953C127E0F71A739F21BC7379] - (.TomTom - Windows Service for TTHOME.) -- C:\Program Files\TomTom HOME\TTHOMEService.exe [97792] [PID.10896] [Unsigned] =>.TomTom [MD5.6F90E0CC00FA70585F5C5F85B13C128A] - (.AO Kaspersky Lab - Kaspersky Secure Connection.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksdeui.exe [404144] [PID.10440] =>.Kaspersky Lab JSC® [MD5.68986218D96D737E32B361240A3E7CE4] - (.The Eraser Project - Eraser.) -- C:\Program Files\Eraser\Eraser.exe [1068624] [PID.5796] =>.Heidi Computers Ltd® [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.7368] =>.Mozilla Corporation® [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.9332] =>.Mozilla Corporation® [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.7600] =>.Mozilla Corporation® [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.1356] =>.Mozilla Corporation® [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.11244] =>.Mozilla Corporation® [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.10104] =>.Mozilla Corporation® [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.7920] =>.Mozilla Corporation® [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.5540] =>.Mozilla Corporation® [MD5.1A945C5EEB1CEDA35333A11A72CBD2F3] - (.SecureMix LLC - GlassWire.) -- C:\Program Files (x86)\GlassWire\GlassWire.exe [9803720] [PID.7588] {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC [MD5.0426A299DCD9107E435299BFA1F53A58] - (...) -- C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe [5013504] [PID.7640] [Unsigned] =>.Microsoft Corporation [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.10776] =>.Mozilla Corporation® [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.6016] =>.Mozilla Corporation® [MD5.A4C63220F5D407C495565E9774202AE4] - (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe [598456] [PID.5628] =>.Mozilla Corporation® [MD5.9E3AC76D4A0E86213684C17A3958D843] - (.Nicolas Coolman - ZHPSuite.) -- D:\TEMP\ZHPSuite.exe [3477144] [PID.10880] [Unsigned] =>.Nicolas Coolman ---\\ CHROME, Démarrage, Recherche, Extensions (24) - 1s G2 - GCE: Preference [Admin][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [Admin][User Data\Default\Extensions] [ahkjpbeeocnddjkakilopmfdlnjdpcdm] =>.Kaspersky Labs G2 - GCE: Preference [Admin][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [Admin][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [Admin][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [Admin][User Data\Default\Extensions] [caljgklbbfbcjjanaijlacgncafpegll] Avira Password Manager =>.Avira Software G2 - GCE: Preference [Admin][User Data\Default\Extensions] [cnojnbdhbhnkbcieeekonklommdnndci] Armin Sebastian G2 - GCE: Preference [Admin][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [Admin][User Data\Default\Extensions] [gginmiamniniinhbipmknjiefidjlnob] Easy AdBlocker =>.Legitimate G2 - GCE: Preference [Admin][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [Admin][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes G2 - GCE: Preference [Admin][User Data\Default\Extensions] [lmjegmlicamnimmfhcmpkclmigmmcbeh] =>.Google Inc. G2 - GCE: Preference [Admin][User Data\Default\Extensions] [nlbjncdgjeocebhnmkbbbdekmmmcbfjd] =>.Google Inc. {Extension Abonnement RSS} G2 - GCE: Preference [Admin][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [Admin][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [Admin][User Data\Default\Local Extension Settings] [caljgklbbfbcjjanaijlacgncafpegll] =>.Avira Software G2 - GCE: Preference [Admin][User Data\Default\Local Extension Settings] [cnojnbdhbhnkbcieeekonklommdnndci] G2 - GCE: Preference [Admin][User Data\Default\Local Extension Settings] [gginmiamniniinhbipmknjiefidjlnob] G2 - GCE: Preference [Admin][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [Admin][User Data\Default\Local Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes G2 - GCE: Preference [Admin][User Data\Default\Local Extension Settings] [nlbjncdgjeocebhnmkbbbdekmmmcbfjd] =>.Google Inc. {Extension Abonnement RSS} G2 - GCE: Preference [Admin][User Data\Default\Managed Extension Settings] [gginmiamniniinhbipmknjiefidjlnob] G2 - GCE: Preference [Admin][User Data\Default\Sync Extension Settings] [cnojnbdhbhnkbcieeekonklommdnndci] G2 - GCE: Preference [Admin][User Data\Default\Sync Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (42) - 4s M0 - MFSP: prefs.js [Admin - 5oslngci.default-release-1626622396299] 1 P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\98a81af4-fb95-4bd5-addd-72e6d3957dde@webtranslate.fr.xpi [Unsigned] P2 - EXT FILE: (.Facebook Container.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\@contain-facebook.xpi [Unsigned] =>.Facebook Container P2 - EXT FILE: (.AdblockUltimate.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\adblockultimate@adblockultimate.net.xpi [Unsigned] =>.AdblockUltimate P2 - EXT FILE: (.Google images view image button - Adds the view image button back to goo.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\google_images_view_image_button@mail.com.xpi [Unsigned] P2 - EXT FILE: (.DuckDuckGo Privacy Essentials - Privacy, simplified. Protect your data.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [Unsigned] =>.DuckDuckGo Privacy Essentials P2 - EXT FILE: (.Kaspersky Labs.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com.xpi [Unsigned] =>.Kaspersky Labs P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\{287dcf75-bec6-4eec-b4f6-71948a2eea29}.xpi [Unsigned] P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\{2e5ff8c8-32fe-46d0-9fc8-6b8986621f3c}.xpi [Unsigned] P2 - EXT FILE: (.Nightly and Aurora - Aurora had but newly chased the night,.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\{596ea437-a17b-4b82-a56c-23a33177512e}.xpi [Unsigned] P2 - EXT FILE: (.Aurora Borealis.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\{66890fd9-47b8-4c1f-a749-ed27a1f88834}.xpi [Unsigned] P2 - EXT FILE: (.Livemarks.) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\{c5867acc-54c9-4074-9574-04d8818d53e8}.xpi [Unsigned] P2 - EXT FILE: (.Google Inc..) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [Unsigned] =>.Google Inc. P2 - EXT FILE: (...) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\LyN92pbQ.default\extensions\nuance@pdf7 [Unsigned] P2 - EXT FILE: (.Yahoo! - AdTrustMedia Search Engine Management .) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\LyN92pbQ.default\searchplugins\AdTrustMediaComodo Dragon.xml [Unsigned] =>.Yahoo! P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\doh-rollout@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\formautofill@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\pictureinpicture@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Program Files\Mozilla Firefox\browser\features\proxy-failover@mozilla.com.xpi [Unsigned] =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\screenshots@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat-reporter@mozilla.org.xpi =>.Mozilla P2 - EXT FILE: (.Mozilla - Firefox.) -- C:\Program Files\Mozilla Firefox\browser\features\webcompat@mozilla.org.xpi =>.Mozilla P2 - EXT: (.Avira Password Manager - .) -- C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\LyN92pbQ.default\extensions\passwordmanager@avira.com C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\bookmarkbackups =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\crashes =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\datareporting =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\extensions =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\features =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\gmp =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\gmp-widevinecdm =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\minidumps =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\saved-telemetry-pings =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\security_state =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\sessionstore-backups =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\shader-cache =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\storage =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\5oslngci.default-release-1626622396299\weave =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\LyN92pbQ.default\extensions =>Mozilla Corporation C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\LyN92pbQ.default\searchplugins =>Mozilla Corporation C:\Program Files\Mozilla Firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js =>Kaspersky Labs [LockPref:kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg] C:\Program Files\Mozilla Firefox\defaults\pref\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg =>Kaspersky Labs ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (15) - 2s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:NewsFeed =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.1288 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (94) - 1s ~ IE Restricted Site Potentially Unwanted: 007guard.com ~ IE Restricted Site Potentially Unwanted: 008i.com ~ IE Restricted Site Potentially Unwanted: 008k.com ~ IE Restricted Site Potentially Unwanted: 00hq.com ~ IE Restricted Site Potentially Unwanted: 010402.com ~ IE Restricted Site Potentially Unwanted: 032439.com ~ IE Restricted Site Potentially Unwanted: 0scan.com ~ IE Restricted Site Potentially Unwanted: 1-2005-search.com ~ IE Restricted Site Potentially Unwanted: 1-domains-registrations.com ~ IE Restricted Site Potentially Unwanted: 1000gratisproben.com ~ IE Restricted Site Potentially Unwanted: 1001namen.com ~ IE Restricted Site Potentially Unwanted: 100888290cs.com ~ IE Restricted Site Potentially Unwanted: 100sexlinks.com ~ IE Restricted Site Potentially Unwanted: 10sek.com ~ IE Restricted Site Potentially Unwanted: 123fporn.info ~ IE Restricted Site Potentially Unwanted: 123haustiereundmehr.com ~ IE Restricted Site Potentially Unwanted: 123moviedownload.com ~ IE Restricted Site Potentially Unwanted: 123simsen.com ~ IE Restricted Site Potentially Unwanted: 123topsearch.com ~ IE Restricted Site Potentially Unwanted: 125sms.co.uk ~ IE Restricted Site Potentially Unwanted: 125sms.com ~ IE Restricted Site Potentially Unwanted: 132.com ~ IE Restricted Site Potentially Unwanted: 1337-crew.to ~ IE Restricted Site Potentially Unwanted: 1337crew.info ~ IE Restricted Site Potentially Unwanted: 136136.net ~ IE Restricted Site Potentially Unwanted: 150freesms.de ~ IE Restricted Site Potentially Unwanted: 163ns.com ~ IE Restricted Site Potentially Unwanted: 17-plus.com ~ IE Restricted Site Potentially Unwanted: 171203.com ~ IE Restricted Site Potentially Unwanted: 17concepts.info ~ IE Restricted Site Potentially Unwanted: 1800searchonline.com ~ IE Restricted Site Potentially Unwanted: 180searchassistant.com ~ IE Restricted Site Potentially Unwanted: 180solutions.com ~ IE Restricted Site Potentially Unwanted: 1987324.com ~ IE Restricted Site Potentially Unwanted: 1ghporn.info ~ IE Restricted Site Potentially Unwanted: 1importantiamreal.com ~ IE Restricted Site Potentially Unwanted: 1mybigdreamnowreal.com ~ IE Restricted Site Potentially Unwanted: 1sexparty.com ~ IE Restricted Site Potentially Unwanted: 1sms.de ~ IE Restricted Site Potentially Unwanted: 1spybot.com ~ IE Restricted Site Potentially Unwanted: 1stantivirus.com ~ IE Restricted Site Potentially Unwanted: 1stpagehere.com ~ IE Restricted Site Potentially Unwanted: 1stsearchportal.com ~ IE Restricted Site Potentially Unwanted: 2-2005-search.com ~ IE Restricted Site Potentially Unwanted: 2006ooo.com ~ IE Restricted Site Potentially Unwanted: 2007-download.com ~ IE Restricted Site Potentially Unwanted: 2008-search-destroy.com ~ IE Restricted Site Potentially Unwanted: 2008-viewer.com ~ IE Restricted Site Potentially Unwanted: 2008firefox.com ~ IE Restricted Site Potentially Unwanted: 2008search-destroy.com ~ IE Restricted Site Potentially Unwanted: 2009--access.com ~ IE Restricted Site Potentially Unwanted: 2009-edition.com ~ IE Restricted Site Potentially Unwanted: 2009-phone.com ~ IE Restricted Site Potentially Unwanted: 2009-version.info ~ IE Restricted Site Potentially Unwanted: 2009antivirpro.com ~ IE Restricted Site Potentially Unwanted: 2009search-destroy.com ~ IE Restricted Site Potentially Unwanted: 2011-kilos-verlieren.eu ~ IE Restricted Site Potentially Unwanted: 2020search.com ~ IE Restricted Site Potentially Unwanted: 20x2p.com ~ IE Restricted Site Potentially Unwanted: 21dice.net ~ IE Restricted Site Potentially Unwanted: 24-7pharmacy.info ~ IE Restricted Site Potentially Unwanted: 24-7searching-and-more.com ~ IE Restricted Site Potentially Unwanted: 247fxxx.info ~ IE Restricted Site Potentially Unwanted: 24teen.com ~ IE Restricted Site Potentially Unwanted: 2ndpower.com ~ IE Restricted Site Potentially Unwanted: 2rfsex.info ~ IE Restricted Site Potentially Unwanted: 2search.com ~ IE Restricted Site Potentially Unwanted: 2search.org ~ IE Restricted Site Potentially Unwanted: 2squared.com ~ IE Restricted Site Potentially Unwanted: 2vgporn.info ~ IE Restricted Site Potentially Unwanted: 3-2005-search.com ~ IE Restricted Site Potentially Unwanted: 30horasdesexoonline.com ~ IE Restricted Site Potentially Unwanted: 31columns.com ~ IE Restricted Site Potentially Unwanted: 321-gratis-sms.com ~ IE Restricted Site Potentially Unwanted: 3322.org ~ IE Restricted Site Potentially Unwanted: 365fporn.info ~ IE Restricted Site Potentially Unwanted: 365sites.info ~ IE Restricted Site Potentially Unwanted: 365soft.info ~ IE Restricted Site Potentially Unwanted: 36site.com ~ IE Restricted Site Potentially Unwanted: 3721.com ~ IE Restricted Site Potentially Unwanted: 39-93.com ~ IE Restricted Site Potentially Unwanted: 3bay.it ~ IE Restricted Site Potentially Unwanted: 3dgsex.info ~ IE Restricted Site Potentially Unwanted: 3mates.com ~ IE Restricted Site Potentially Unwanted: 3wgporn.info ~ IE Restricted Site Potentially Unwanted: 3x-festival.com ~ IE Restricted Site Potentially Unwanted: 3x-galls.com ~ IE Restricted Site Potentially Unwanted: 3xclipsonline.com ~ IE Restricted Site Potentially Unwanted: 3xcurves.com ~ IE Restricted Site Potentially Unwanted: 3xfestival.com ~ IE Restricted Site Potentially Unwanted: 3xmiracle.com ~ IE Restricted Site Potentially Unwanted: 3xmoviesblog.com ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 7878(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 7878(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (9) - 0s E2 - GCE: Preference [Admin][User Data\Default\Extensions] [bbjofpiipnjjiedmddjdbhbfpbafbakk] E2 - GCE: Preference [Admin][User Data\Default\Extensions] [cgilogkdbbgmgabhfoaaaedodhelhndn] E2 - GCE: Preference [Admin][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes E2 - GCE: Preference [Admin][User Data\Default\Extensions] [lbjfhdjlblncekgomhadnnpampcahhal] RSS Reader Extension (by Inoreader) E2 - GCE: Preference [Admin][User Data\Default\Local Extension Settings] [bbjofpiipnjjiedmddjdbhbfpbafbakk] E2 - GCE: Preference [Admin][User Data\Default\Local Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes E2 - GCE: Preference [Admin][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation E2 - GCE: Preference [Admin][User Data\Default\Local Extension Settings] [lbjfhdjlblncekgomhadnnpampcahhal] E2 - GCE: Preference [Admin][User Data\Default\Sync Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes ---\\ INTERNET EXPLORER,Proxy Management (6) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ÉTUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (21) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (4) - 0s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.40\BHO\ie_to_edge_bho_64.dll =>.Microsoft® O2 - BHO: Skype for Business Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll =>.Microsoft® O2 - BHO: Microsoft SkyDrive Pro Browser Helper [64Bits] - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} . (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll =>.Microsoft® O2 - BHO: TabExplorerHelper [64Bits] - {F8A6CAA2-533D-4AED-9E05-8EB19A4021AB} . (.EJIE Technology - Clover Tab Explorer Helper.) -- C:\Program Files (x86)\Clover\TabHelper64.dll [Unsigned] =>.EJIE Technology ---\\ RACCOURCIS GLOBAL STARTUP (65) - 4s O4 - GS\Desktop [Admin]: 1-podcast - Raccourci.lnk . (...) D:\Bureau-bis\1-podcast [Unsigned] O4 - GS\Desktop [Admin]: Barre des tâches bloquée.lnk . (...) D:\Divers Vidéos musiques téléphone et autres\Ordi\Barre des tâches bloquée.txt [Unsigned] O4 - GS\Desktop [Admin]: Calendrier PPT.lnk . (...) D:\Mes documents\Excel\Calendrier PPT.xltx [Unsigned] O4 - GS\Desktop [Admin]: cv Lo et aqcf.lnk . (...) D:\Divers Vidéos musiques téléphone et autres\Loriane\cv Lo [Unsigned] O4 - GS\Desktop [Admin]: Eteindre le PC.lnk . (.Microsoft Corporation - Outil d’arrêt et d’annotation Windows.) C:\Windows\System32\shutdown.exe /s /t 0 =>.Microsoft Corporation O4 - GS\Desktop [Admin]: Mise en veille prolongée.lnk . (.Microsoft Corporation - Processus hôte Windows (Rundll32).) C:\Windows\System32\rundll32.exe powrprof.dll,SetSuspendState 0,1,0 =>..Microsoft Corporation O4 - GS\Desktop [Admin]: Point de restauration manuel.lnk . (...) C:\retauration\create_restore_point.vbs [Unsigned] O4 - GS\Desktop [Admin]: Séries vues.lnk . (...) D:\Mes documents\Excel\Séries vues.xlsx [Unsigned] O4 - GS\Desktop [Admin]: ZHPSuite.lnk . (.Nicolas Coolman - ZHPSuite.) C:\Users\Admin\AppData\Roaming\ZHP\ZHPSuite.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [Admin]: GlassWire 2.3.lnk . (.SecureMix LLC - GlassWire.) C:\Program Files (x86)\GlassWire\GlassWire.exe {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC O4 - GS\Quicklaunch [Admin]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\Quicklaunch [Admin]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\Quicklaunch [Admin]: XnViewMP.lnk . (.XnView, http://www.xnview.com - XnView MP.) C:\Program Files\XnViewMP\xnviewmp.exe =>.Pierre GOUGELET® O4 - GS\sendTo [Admin]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Admin]: Eraser.exe - Raccourci.lnk . (.The Eraser Project - .) C:\Program Files (x86)\Eraser\Eraser.exe [Unsigned] =>.The Eraser Project O4 - GS\sendTo [Admin]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [Admin]: Media Player Classic.lnk . (.MPC-HC Team - MPC-HC (x64).) C:\Program Files (x86)\K-Lite Codec Pack\MPC-HC64\mpc-hc64.exe [Unsigned] =>.MPC-HC Team O4 - GS\sendTo [Admin]: MediaInfo.lnk . (...) C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe [Unsigned] O4 - GS\sendTo [Admin]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\sendTo [Admin]: VirusTotal.lnk . (...) C:\Program Files (x86)\VirusTotalUploader2\VirusTotalUploader2.2.exe [Unsigned] O4 - GS\sendTo [Admin]: Wondershare MobileGo.lnk . (.Wondershare - Wondershare MobileGo.) C:\Program Files (x86)\Wondershare\MobileGo\MobileGo.exe =>.Wondershare Technology Co.,Ltd® O4 - GS\TaskBar [Admin]: Afficher bureau.lnk . (.Microsoft Corporation - Explorateur Windows.) C:\Windows\explorer.exe shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257} =>.Microsoft® O4 - GS\TaskBar [Admin]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [Admin]: FSL Launcher.lnk . (.FSL - FreeSoftLand - FLS Launcher.) C:\Program Files (x86)\FSL\FSL_Launcher\FSL_Launcher.exe [Unsigned] =>.FSL - FreeSoftLand O4 - GS\TaskBar [Admin]: KeePass 2.lnk . (.Dominik Reichl - KeePass.) C:\Program Files\KeePass Password Safe 2\KeePass.exe {5042C501F1F0BA29E38E1F71621966C9}. =>.Dominik Reichl O4 - GS\Startup [Admin]: FSL Launcher.lnk . (.FSL - FreeSoftLand - FLS Launcher.) C:\Program Files (x86)\FSL\FSL_Launcher\FSL_Launcher.exe auto [Unsigned] =>.FSL - FreeSoftLand O4 - GS\Startup [Admin]: MouClient.lnk . (.Siliten - MouClient_FD2.) C:\Program Files (x86)\SilverCrest SMLM 807 A1 Driver\MouClient_FD2_9063RL.exe [Unsigned] =>.Siliten O4 - GS\Programs [Admin]: Documents récents.lnk . (...) C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Recent [Unsigned] O4 - GS\Programs [Admin]: Démarrage.lnk . (...) C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [Unsigned] O4 - GS\Programs [Admin]: firefox.lnk . (.Mozilla Corporation - Tor Browser.) D:\Divers Vidéos musiques téléphone et autres\Ordi\Logiciels\Tor Browser\Browser\firefox.exe [Unsigned] =>.Mozilla Corporation O4 - GS\Programs [Admin]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Admin\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Programs [Public]: Documents récents.lnk . (...) C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Recent [Unsigned] O4 - GS\Programs [Public]: Démarrage.lnk . (...) C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [Unsigned] O4 - GS\Programs [Public]: firefox.lnk . (.Mozilla Corporation - Tor Browser.) D:\Divers Vidéos musiques téléphone et autres\Ordi\Logiciels\Tor Browser\Browser\firefox.exe [Unsigned] =>.Mozilla Corporation O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\Admin\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Startup [Public]: MobileGo Service.lnk . (.Wondershare - MobileGoService.) C:\Program Files (x86)\Wondershare\MobileGo\MobileGoService.exe =>.Wondershare Technology Co.,Ltd® O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur Windows Media.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Acrobat Reader DC.lnk . (.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc.® O4 - GS\ProgramsCommon [Public]: Assistant Mise à jour de Windows 10.lnk . (.Microsoft Corporation - Assistant Mise à jour de Windows 10.) C:\Windows10Upgrade\Windows10UpgraderApp.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Audacity.lnk . (.Audacity Team - Audacity® Cross-Platform Sound Editor.) C:\Program Files (x86)\Audacity\Audacity.exe =>.Musecy SM LTD® O4 - GS\ProgramsCommon [Public]: Eraser.lnk . (.The Eraser Project - .) C:\Program Files (x86)\Eraser\Eraser.exe [Unsigned] =>.The Eraser Project O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Google Chrome.lnk . (.Google LLC - Google Chrome.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: KeePass 2.lnk . (.Dominik Reichl - KeePass.) C:\Program Files\KeePass Password Safe 2\KeePass.exe {5042C501F1F0BA29E38E1F71621966C9}. =>.Dominik Reichl O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Microsoft Money.lnk . (.Microsoft(R) Corporation - Microsoft Money.) C:\Program Files (x86)\Microsoft Money 2005\MNYCoreFiles\msmoney.exe =>.Microsoft Corporation® O4 - GS\ProgramsCommon [Public]: Notepad++.lnk . (.Don HO don.h@free.fr - Notepad++ : a free (GPL) source code editor.) C:\Program Files\Notepad++\notepad++.exe =>.Notepad++® O4 - GS\ProgramsCommon [Public]: PC Health Check.lnk . (...) C:\Program Files (x86)\PCHealthCheck\PCHealthCheck.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Shotcut.lnk . (...) C:\Program Files (x86)\Shotcut\shotcut.exe [Unsigned] O4 - GS\ProgramsCommon [Public]: Suite NCH.lnk . (.NCH Software - VideoPad - Logiciel de montage vidéo.) C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe -extsuite =>.NCH Software, Inc.® O4 - GS\ProgramsCommon [Public]: TeraCopy.lnk . (.Code Sector - .) C:\Program Files (x86)\TeraCopy\TeraCopy.exe [Unsigned] =>.Code Sector O4 - GS\ProgramsCommon [Public]: VideoPad - Logiciel de montage vidéo.lnk . (.NCH Software - VideoPad - Logiciel de montage vidéo.) C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe =>.NCH Software, Inc.® O4 - GS\ProgramsCommon [Public]: WavePad - Éditeur audio.lnk . (.NCH Software - WavePad - Éditeur audio.) C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe =>.NCH Software, Inc.® ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (3) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{7872780d-a5cb-4fc8-841e-18e2d70efa7d}: NameServer = 8.8.8.8,8.8.4.4 =>.France Google Cloud O17 - HKLM\System\CCS\Services\Tcpip\..\{44466e0e-f511-4a62-a56e-5c9d79bc8c39}: DhcpNameServer = 192.168.1.254 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (22) - 1s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 0s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\WINDOWS\System32\Userinit.exe =>.Microsoft Corporation ---\\ CLÉ DE REGISTRE EXPLORER StartupApproved (34) - 2s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Sensiva [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:TomTomHOME.exe =>.TomTom [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastBrowserAutoLaunch_1088872FC4C2207C6D62AF0E8871CAAC =>PUP.Optional.MyBrowser [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GlassWire =>.Legitimate [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:KeePass Password Safe 2 [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WinLaunch [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:FSL Launcher.lnk [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:MouClient.lnk [HKEY_USERS\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Smart Cleaning =>.Piriform Ltd [HKEY_USERS\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Sensiva [HKEY_USERS\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:TomTomHOME.exe =>.TomTom [HKEY_USERS\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastBrowserAutoLaunch_1088872FC4C2207C6D62AF0E8871CAAC =>PUP.Optional.MyBrowser [HKEY_USERS\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:GlassWire =>.Legitimate [HKEY_USERS\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:KeePass Password Safe 2 [HKEY_USERS\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:WinLaunch [HKEY_USERS\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:FSL Launcher.lnk [HKEY_USERS\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:MouClient.lnk [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:IAStorIcon =>.Intel Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RTHDVCPL =>.Realtek Semiconductor Corp. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AvastUI.exe =>.Avast Software s.r.o [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Eraser [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:KeePass 2 PreLoad [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Avira SystrayStartTrigger =>.Avira Software [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Avira System Speedup User Starter =>.Avira Software [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:KeyScrambler =>.QFX [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Launch SilverCrest SMLM 807 A1 [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:InboxMonitor [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:PdfProInboxMonitor [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:PDFProHook [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:PDF7 Registry Controller [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\StartupFolder]:MobileGo Service.lnk ---\\ COMPOSANTS ACTIVESETUP INSTALLÉS (ASIC) (7) - 0s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Google Chrome [64Bits] - {8A69D345-D564-463c-AFF1-A69D9E530F96} . (.Google LLC - Google Chrome Installer.) -- C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.69\Installer\chrmstp.exe =>.Google LLC® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\95.0.1020.40\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLÉS (99) - 30s O42 - Logiciel: 7-Zip 19.00 (x64) - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip [Unsigned] =>.Igor Pavlov O42 - Logiciel: Adobe Acrobat Reader DC - Français - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-7AD7-1036-7B44-AC0F074E4100} [Unsigned] =>.Adobe Systems Incorporated O42 - Logiciel: Adobe Refresh Manager - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {AC76BA86-0804-1033-1959-001824448449} [Unsigned] =>.Adobe Systems Incorporated (Hidden) O42 - Logiciel: adsl TV - (.adsl TV / FM.) [HKLM][64Bits] -- {3AFDD2C6-8663-46B5-B195-6CEB00D44768} [Unsigned] =>.adsl TV / FM O42 - Logiciel: Assistant Mise à jour de Windows 10 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D5C69738-B486-402E-85AC-2456D98A64E4} =>.Microsoft® O42 - Logiciel: Attribute Changer 10.10 - (.Romain Petges.) [HKLM][64Bits] -- {27263813-8BDE-4CD2-84D3-02536743428A}_is1 [Unsigned] =>.Romain Petges O42 - Logiciel: Audacity 3.0.2 - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 =>.Musecy SM LTD® O42 - Logiciel: Audacity 3.1.0 (64-bit) - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 =>.Musecy SM LTD® O42 - Logiciel: Avira Security v - (.Avira Operations GmbH & Co. KG;.) [HKLM][64Bits] -- AviraSecurityUninstaller [Unsigned] O42 - Logiciel: Avira Software Updater v2.0.6.48309 - (.Avira Operations GmbH & Co. KG.) [HKLM][64Bits] -- {5FFF909D-D88F-42B9-9A85-328A1290611C} [Unsigned] =>.Avira Operations GmbH & Co. KG (Hidden) O42 - Logiciel: Awesome Duplicate Photo Finder v. 1.2 - (.Duplicate-Finder.com.) [HKLM][64Bits] -- Awesome Duplicate Photo Finder_is1 [Unsigned] =>.Duplicate-Finder.com O42 - Logiciel: BDAntiRansomware - (.Bitdefender.) [HKLM][64Bits] -- {BE40AB1F-558F-4434-B72F-461EF97E7796}_is1 [Unsigned] =>.BitDefender O42 - Logiciel: Bitnami WordPress Module - (.Bitnami.) [HKLM][64Bits] -- Bitnami WordPress Module 5.4-0 [Unsigned] =>.BitNami O42 - Logiciel: CCleaner - (.Piriform.) [HKLM][64Bits] -- CCleaner =>.Piriform Software Ltd® O42 - Logiciel: Clover 3.0 - (.EJIE Technology.) [HKLM][64Bits] -- Clover [Unsigned] =>.EJIE Technology O42 - Logiciel: Contrôle d’intégrité du PC Windows - (.Microsoft Corporation.) [HKLM][64Bits] -- {0150BDB3-AFFD-47A1-ADB8-DE06658EB3B2} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Easy Drive Data Recovery - (.MunSoft.) [HKLM][64Bits] -- Easy Drive Data Recovery [Unsigned] =>.MunSoft O42 - Logiciel: EPSON Logiciel imprimante - (.SEIKO EPSON Corporation.) [HKLM][64Bits] -- EPSON Printer and Utilities =>.SEIKO EPSON Corporation® O42 - Logiciel: EPSON Scan - (.Epson/Seico.) [HKLM][64Bits] -- EPSON Scanner =>.SEIKO EPSON Corporation® O42 - Logiciel: Eraser 6.2.0.2991 - (.The Eraser Project.) [HKLM][64Bits] -- {D13C63B1-1968-466D-A3C4-AE78BDDF35D2} [Unsigned] =>.The Eraser Project O42 - Logiciel: EXIF Date Changer v3.9.3 - (.Rellik Software.) [HKLM][64Bits] -- {26CA1B07-BC53-4196-B9C2-A11C6F6F3E08}_is1 {2C5D44BD711C65FE730CB0F75AF44587}. =>.Rellik Software O42 - Logiciel: FastStone Capture 9.4 - (.FastStone Soft.) [HKLM][64Bits] -- FastStone Capture [Unsigned] =>.FastStone Soft O42 - Logiciel: FileZilla Client 3.56.2 - (.Tim Kosse.) [HKCU][64Bits] -- FileZilla Client [Unsigned] =>.Tim Kosse O42 - Logiciel: FreeCommander XE - (.Marek Jasinski.) [HKLM][64Bits] -- FreeCommander XE_is1 [Unsigned] =>.Marek Jasinski O42 - Logiciel: FSL Launcher 1.1.4.4 SR1 - (.FSL - FreeSoftLand.) [HKLM][64Bits] -- FSL Launcher_is1 [Unsigned] =>.FSL - FreeSoftLand O42 - Logiciel: GlassWire 2.3 (remove only) - (.SecureMix LLC.) [HKLM][64Bits] -- GlassWire 2.3 {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC O42 - Logiciel: Google Chrome - (.Google LLC.) [HKLM][64Bits] -- Google Chrome =>.Google LLC® O42 - Logiciel: Inkscape - (.Inkscape.) [HKLM][64Bits] -- {8E094247-4FB9-47F4-AF01-BF66AD9781C8} [Unsigned] =>.InkScape O42 - Logiciel: Inkscape - (.Inkscape.) [HKLM][64Bits] -- Inkscape [Unsigned] =>.InkScape O42 - Logiciel: Intel(R) Network Connections 19.0.27.0 - (.Intel.) [HKLM][64Bits] -- {72ADDE97-1718-4A4B-954B-3AEA286BF58A} [Unsigned] =>.Intel (Hidden) O42 - Logiciel: Intel(R) Network Connections 19.0.27.0 - (.Intel.) [HKLM][64Bits] -- PROSetDX [Unsigned] =>.Intel O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel(R) pGFX® O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {409CB30E-E457-4008-9B1A-ED1B9EA21140} [Unsigned] =>.Intel Corporation O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {B9C27F57-AB84-425F-9D00-E18C5D65C18D} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: IrfanView 4.58 (64-bit) - (.Irfan Skiljan.) [HKLM][64Bits] -- IrfanView64 {71AB43B1129754EA5809102A59EC8950}. =>.Irfan Skiljan O42 - Logiciel: Kaspersky Security Cloud - (.Kaspersky.) [HKLM][64Bits] -- {4FC79BE9-AD63-46C0-9626-E4F6BCE6A976} [Unsigned] =>.Kaspersky (Hidden) O42 - Logiciel: Kaspersky Security Cloud - (.Kaspersky.) [HKLM][64Bits] -- InstallWIX_{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976} [Unsigned] =>.Kaspersky O42 - Logiciel: Kaspersky VPN - (.Kaspersky.) [HKLM][64Bits] -- {FF2A12B8-AEB7-48C0-95C8-E2E3D67DFCB2} [Unsigned] =>.Kaspersky (Hidden) O42 - Logiciel: Kaspersky VPN - (.Kaspersky.) [HKLM][64Bits] -- InstallWIX_{FF2A12B8-AEB7-48C0-95C8-E2E3D67DFCB2} [Unsigned] =>.Kaspersky O42 - Logiciel: KC Softwares SUMo - (.KC Softwares.) [HKLM][64Bits] -- KC Softwares SUMo_is1 =>.KC SOFTWARES SASU® O42 - Logiciel: KeePass Password Safe 2.49 - (.Dominik Reichl.) [HKLM][64Bits] -- KeePassPasswordSafe2_is1 [Unsigned] =>.Dominik Reichl O42 - Logiciel: KeyScrambler - (.QFX Software Corporation.) [HKLM][64Bits] -- KeyScrambler [Unsigned] =>.QFX Software Corporation O42 - Logiciel: K-Lite Codec Pack 16.5.0 Full - (.KLCP.) [HKLM][64Bits] -- KLiteCodecPack_is1 [Unsigned] =>.KLCP O42 - Logiciel: KompoZer 0.8b2 - (.KompoZer.) [HKLM][64Bits] -- {80A41D30-DF62-4A64-AA49-DBF7ACDCFEB4}_is1 [Unsigned] =>.KompoZer O42 - Logiciel: LibreOffice 6.4.4.2 - (.The Document Foundation.) [HKLM][64Bits] -- {F00C391B-6092-40E7-9ECD-144933865571} [Unsigned] =>.The Document Foundation O42 - Logiciel: Malwarebytes version 4.4.9.142 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc® O42 - Logiciel: Microsoft Edge - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge =>.Microsoft® O42 - Logiciel: Microsoft Edge Update - (.Microsoft Corporation.) [HKLM][64Bits] -- Microsoft Edge Update [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Money - (.Microsoft.) [HKLM][64Bits] -- Money2005b =>.Microsoft Corporation® O42 - Logiciel: Microsoft Office Professionnel Plus 2013 - fr-fr - (.Microsoft Corporation.) [HKLM][64Bits] -- ProPlusRetail - fr-fr =>.Microsoft® O42 - Logiciel: Microsoft OneDrive - (.Microsoft Corporation.) [HKCU][64Bits] -- OneDriveSetup.exe =>.Microsoft® O42 - Logiciel: Microsoft Update Health Tools - (.Microsoft Corporation.) [HKLM][64Bits] -- {29B15818-E79F-4AB0-8938-9410C807AD76} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visio Viewer 2013 - (.Microsoft Corporation.) [HKLM][64Bits] -- {95150000-0052-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visio Viewer 2016 - (.Microsoft Corporation.) [HKLM][64Bits] -- {95160000-0052-040C-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2005 Redistributable - (.Microsoft Corporation.) [HKLM][64Bits] -- {7299052b-02a4-4627-81f2-1818da5d550d} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9EDBA064-0381-3D1F-9096-CD1710366647} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {8220EEFE-38CD-377E-8595-13398D740ACE} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9A25302D-30C0-39D9-BD6F-21E6EC160475} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 - (.Microsoft Corporation.) [HKLM][64Bits] -- {9BE518E6-ECC6-35A9-88E4-87755C07200F} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {1D8E6291-B0D5-35EC-8441-6616F567A0F7} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 - (.Microsoft Corporation.) [HKLM][64Bits] -- {F0C3E5D1-1ADE-321E-8167-68EF0DE699A5} [Unsigned] =>.Microsoft Corporation O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {6c6356fe-cbfa-4944-9bed-a9e99f45cb7a} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27033 - (.Microsoft Corporation.) [HKLM][64Bits] -- {624ba875-fdfc-4efa-9c66-b170dfebc3ec} =>.Microsoft® O42 - Logiciel: Microsoft Visual C++ 2017 x64 Additional Runtime - 14.11.25325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B13B3E11-1555-353F-A63A-8933EE104FBD} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.11.25325 - (.Microsoft Corporation.) [HKLM][64Bits] -- {B0037450-526D-3448-A370-CACBD87769A0} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2017 X86 Additional Runtime - 14.16.27033 - (.Microsoft Corporation.) [HKLM][64Bits] -- {88D1025F-45D0-45C6-9EDB-379C2EE07AD7} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Microsoft Visual C++ 2017 X86 Minimum Runtime - 14.16.27033 - (.Microsoft Corporation.) [HKLM][64Bits] -- {D5AEE36E-4771-4F65-BDB6-8C59077BFBE4} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Mozilla Firefox (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 94.0 (x64 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla O42 - Logiciel: Mp3tag v3.11 - (.Florian Heidenreich.) [HKLM][64Bits] -- Mp3tag [Unsigned] =>.Florian Heidenreich O42 - Logiciel: MyPhoneExplorer - (.F.J. Wechselberger.) [HKLM][64Bits] -- MPE [Unsigned] =>.F.J. Wechselberger O42 - Logiciel: Notepad++ (64-bit x64) - (.Notepad++ Team.) [HKLM][64Bits] -- Notepad++ [Unsigned] =>.Notepad++ Team O42 - Logiciel: Nuance PDF Converter Enterprise 7 - (.Nuance Communications, Inc..) [HKLM][64Bits] -- {B79DA7A6-18A4-4147-9B49-A1AD9CB613FA} [Unsigned] =>.Nuance Communications, Inc. O42 - Logiciel: Office 15 Click-to-Run Extensibility Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-0000-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 15 Click-to-Run Licensing Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008F-0000-1000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: Office 15 Click-to-Run Localization Component - (.Microsoft Corporation.) [HKLM][64Bits] -- {90150000-008C-040C-0000-0000000FF1CE} [Unsigned] =>.Microsoft Corporation (Hidden) O42 - Logiciel: OpenOffice 4.1.11 - (.Apache Software Foundation.) [HKLM][64Bits] -- {89DCB28E-BB7B-41AA-8E58-F710C6C4F234} [Unsigned] =>.Apache Software Foundation O42 - Logiciel: OpenSCAD (remove only) - (.The OpenSCAD Developers.) [HKLM][64Bits] -- OpenSCAD [Unsigned] =>.The OpenSCAD Developers O42 - Logiciel: Package de pilotes Windows - Cambridge Silicon Radio Ltd. (CSRBC) USB (11/ - (.Cambridge Silicon Radio Ltd..) [HKLM][64Bits] -- 6A50C99E75CE49370D2FB6BD3959E25A02A0751A =>.Microsoft Windows® O42 - Logiciel: Panaustik - (.Panaustik.) [HKLM][64Bits] -- {B46CBC00-3B1C-47C5-B47C-F1830502D5A6}_is1 [Unsigned] =>.Panaustik O42 - Logiciel: PingID - (.Ping Identity.) [HKLM][64Bits] -- {com.pingidentity.pingid.pcclient}}_is1 [Unsigned] O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp.® O42 - Logiciel: Recuva - (.Piriform.) [HKLM][64Bits] -- Recuva =>.Piriform Software Ltd® O42 - Logiciel: Revo Uninstaller 2.3.5 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1 [Unsigned] =>.VS Revo Group, Ltd. O42 - Logiciel: Scansoft PDF Professional - (.Scansoft.) [HKLM][64Bits] -- {068724F8-D8BE-4B43-8DDD-B9FE9E49FD76} [Unsigned] =>.ScanSoft (Hidden) O42 - Logiciel: Sena Bluetooth Device Manager 4.2 - (.Copyright (C) 2012 ~ 2021 Sena Technologies Inc..) [HKLM][64Bits] -- Sena Bluetooth Device Manager [Unsigned] O42 - Logiciel: Shotcut - (.Meltytech, LLC.) [HKLM][64Bits] -- Shotcut [Unsigned] =>.Meltytech, LLC O42 - Logiciel: SilverCrest SMLM 807 A1 Driver - (.SilverCrest.) [HKLM][64Bits] -- {C786FE11-22AF-4B6C-B122-9C4A6D012E67} [Unsigned] =>.SilverCrest O42 - Logiciel: TeraCopy - (.Code Sector.) [HKLM][64Bits] -- {952ED35A-74C3-4204-8F01-986D8711B41D} [Unsigned] =>.Code Sector O42 - Logiciel: TeraCopy version 3.8.2 - (.Code Sector.) [HKLM][64Bits] -- TeraCopy_is1 {60D8E4C1C16589BC9C5BB9B543A1D659}. =>.Code Sector O42 - Logiciel: TomTom HOME 2.21.17.420385 - (.TomTom.) [HKLM][64Bits] -- TomTom HOME =>.TomTom International B.V.® O42 - Logiciel: Trombinoscope 1.3 - (..) [HKLM][64Bits] -- Trombinoscope [Unsigned] O42 - Logiciel: VideoPad - Logiciel de montage vidéo - (.NCH Software.) [HKLM][64Bits] -- VideoPad =>.NCH Software, Inc.® O42 - Logiciel: VirusTotal Uploader 2.2 - (.VirusTotal.) [HKLM][64Bits] -- VTUploader [Unsigned] =>.VirusTotal O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: WavePad - Éditeur audio - (.NCH Software.) [HKLM][64Bits] -- WavePad =>.NCH Software, Inc.® O42 - Logiciel: Wondershare MobileGo(Version 8.5.0) - (.Wondershare.) [HKLM][64Bits] -- {1E04C795-7359-4E05-8A0E-5644F777AA09}_is1 [Unsigned] =>.Wondershare O42 - Logiciel: XnViewMP 0.99.1 - (.Gougelet Pierre-e.) [HKLM][64Bits] -- XnViewMP_is1 =>.Pierre GOUGELET® ---\\ CLÉ DE REGISTRE SOFTWARE HKCU & HKLM (321) - 30s HKCU\Software\SSProtect =>.SUP.PCProtect HKLM\SOFTWARE\POLICIES\Mozilla\Firefox =>.SUP.FirefoxRestriction HKLM\SOFTWARE\7-Zip =>.Igor Pavlov HKLM\SOFTWARE\AE Protection =>.Legitimate HKLM\SOFTWARE\Avast Software =>.AVAST Software HKLM\SOFTWARE\Bitnami =>.BitNami HKLM\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited HKLM\SOFTWARE\Caphyon =>.Caphyon HKLM\SOFTWARE\Clover =>.Ejie HKLM\SOFTWARE\Code Sector =>.Code Sector HKLM\SOFTWARE\COMODO =>.Comodo HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\Cygwin =>.Cygwin HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Dolby =>.Dolby HKLM\SOFTWARE\DTS =>.Creative Technology HKLM\SOFTWARE\EPSON =>.EPSON HKLM\SOFTWARE\FileZilla 3 =>.FileZilla HKLM\SOFTWARE\Fortemedia =>.Lugert Europe HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\Icaros =>.Icaros HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\IrfanView =>.Irfan Skiljan HKLM\SOFTWARE\JavaSoft =>.JavaSoft HKLM\SOFTWARE\KasperskyLab =>.Kaspersky Labs HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Knowles =>.Knowles Electronics HKLM\SOFTWARE\LibreOffice =>.LibreOffice HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\MiniTool Software Limited =>.MiniTool Software Limited HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Nahimic =>.Nahimic HKLM\SOFTWARE\Notepad++ =>.Don Ho HKLM\SOFTWARE\Nuance =>.Nuance HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\Piriform =>.Piriform HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\ScanSoft =>.Scansoft HKLM\SOFTWARE\Shotcut HKLM\SOFTWARE\SonicFocus =>.Sonic Focus HKLM\SOFTWARE\SoundResearch =>.Sound Research HKLM\SOFTWARE\SRS Labs =>.SRS Labs HKLM\SOFTWARE\The Document Foundation =>.The Document Foundation HKLM\SOFTWARE\Thunderbird =>.Thunderbird HKLM\SOFTWARE\TomTom =>.TomTom HKLM\SOFTWARE\TXlTb2Z0 HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\XnViewMP =>.Pierre Gougelet HKLM\SOFTWARE\Yamaha APO =>.Yamaha Corp. HKLM\SOFTWARE\ZEON =>.Zeon HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\Applogon =>.Unknown HKLM\SOFTWARE\WOW6432Node\ASUS =>.ASUS HKLM\SOFTWARE\WOW6432Node\Avira =>.Avira HKLM\SOFTWARE\WOW6432Node\Citrix =>.Citrix HKLM\SOFTWARE\WOW6432Node\CleverFiles =>.CleverFiles HKLM\SOFTWARE\WOW6432Node\Clovermgr HKLM\SOFTWARE\WOW6432Node\COMODO =>.Comodo HKLM\SOFTWARE\WOW6432Node\EaseUS Todo Backup =>.EaseUS Software HKLM\SOFTWARE\WOW6432Node\EPSON =>.EPSON HKLM\SOFTWARE\WOW6432Node\Florian Heidenreich =>.Florian Heidenreich HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\GuidGuid13 HKLM\SOFTWARE\WOW6432Node\Icaros =>.Icaros HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\WOW6432Node\Inkscape =>.InkScape HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\KasperskyLab =>.Kaspersky Labs HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\KLCodecPack =>.KLite Inc HKLM\SOFTWARE\WOW6432Node\LAV =>.LAV Inc HKLM\SOFTWARE\WOW6432Node\Licenses =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\MunSoft =>.MunSoft HKLM\SOFTWARE\WOW6432Node\MyPhoneExplorer =>.Hewlett-Packard HKLM\SOFTWARE\WOW6432Node\NCH Software =>.NCH Software HKLM\SOFTWARE\WOW6432Node\NCH Swift Sound =>.NCH Swift Sound HKLM\SOFTWARE\WOW6432Node\Nuance =>.Nuance HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge HKLM\SOFTWARE\WOW6432Node\Piriform =>.Piriform HKLM\SOFTWARE\WOW6432Node\QFX Software =>.QFX Software HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\recoverit =>.Wondershare HKLM\SOFTWARE\WOW6432Node\Rene.E Laboratory =>.Rene.E Laboratory HKLM\SOFTWARE\WOW6432Node\Safer Networking Limited =>.Safer Networking Limited HKLM\SOFTWARE\WOW6432Node\ScanSoft =>.Scansoft HKLM\SOFTWARE\WOW6432Node\SRS Labs =>.SRS Labs HKLM\SOFTWARE\WOW6432Node\Stellar Data Recovery =>.Stellar Systems HKLM\SOFTWARE\WOW6432Node\Thinking Man Software =>.Thinking Man Software HKLM\SOFTWARE\WOW6432Node\Trombinoscope HKLM\SOFTWARE\WOW6432Node\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\WOW6432Node\Virustotal =>.VirusTotal HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\WafCX =>.WafCX HKLM\SOFTWARE\WOW6432Node\Wondershare =>.Wondershare HKLM\SOFTWARE\WOW6432Node\Wow6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\ZEON =>.Zeon HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\8322898 =>.FastStone Soft HKCU\SOFTWARE\Adobe =>.Adobe HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\ASUS =>.ASUS HKCU\SOFTWARE\Attribute Changer HKCU\SOFTWARE\AVAST Software =>.AVAST Software HKCU\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKCU\SOFTWARE\Avira =>.Avira HKCU\SOFTWARE\Binary Fortress Software =>.Binary Fortress Software HKCU\SOFTWARE\Bitdefender =>.Bitdefender HKCU\SOFTWARE\BugSplat =>.Bugsplat Game HKCU\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited HKCU\SOFTWARE\Caphyon =>.Caphyon HKCU\SOFTWARE\Chromium =>.Chromium HKCU\SOFTWARE\CleverFiles =>.CleverFiles HKCU\SOFTWARE\Clover =>.Ejie HKCU\SOFTWARE\Code Sector =>.Code Sector HKCU\SOFTWARE\Common =>.Corel Corporation HKCU\SOFTWARE\Comodo =>.Comodo HKCU\SOFTWARE\Convar =>.Legitimate HKCU\SOFTWARE\Dragon =>.Comodo Group. HKCU\SOFTWARE\EPSON =>.EPSON HKCU\SOFTWARE\Eraser =>.Sami Tolvanen HKCU\SOFTWARE\FastStone HKCU\SOFTWARE\FileZilla Client =>.Tim Kosse HKCU\SOFTWARE\Finalhit HKCU\SOFTWARE\FlexDef2b_DM9101RL_2 HKCU\SOFTWARE\FreeSoftLand HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\GlassWire =>.SecureMix HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\GPL Ghostscript =>.GPL Ghostscript HKCU\SOFTWARE\Icaros =>.Icaros HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Inkscape =>.InkScape HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\Jasc =>.Jasc HKCU\SOFTWARE\JavaSoft =>.JavaSoft HKCU\SOFTWARE\JP HKCU\SOFTWARE\KasperskyLab =>.Kaspersky Labs HKCU\SOFTWARE\KC Softwares =>.KC Softwares HKCU\SOFTWARE\LANGAGENT =>.LangAgent HKCU\SOFTWARE\Licenses =>.Microsoft Corporation HKCU\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD HKCU\SOFTWARE\Locky =>.Legitimate HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\madshi =>.madshi.net HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\MediaInfo =>.Jérôme Martinez HKCU\SOFTWARE\Meltytech =>.Meltytech LLC HKCU\SOFTWARE\MiniTool Software Limited =>.MiniTool Software Limited HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MPC-HC =>.MPC-HC Team HKCU\SOFTWARE\MunSoft =>.MunSoft HKCU\SOFTWARE\MyPhoneExplorer =>.Hewlett-Packard HKCU\SOFTWARE\NCH Software =>.NCH Software HKCU\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\Obsidium HKCU\SOFTWARE\Obsidium x64 HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OpenOffice =>.SourceForge HKCU\SOFTWARE\OpenSCAD HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\Piriform =>.Piriform HKCU\SOFTWARE\QFX Software =>.QFX Software HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Quizo =>.Quizo HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKCU\SOFTWARE\ScanSoft =>.Scansoft HKCU\SOFTWARE\Sensiva HKCU\SOFTWARE\Shchuka's Place HKCU\SOFTWARE\SimonTatham =>.Simon Tatham HKCU\SOFTWARE\SSProtect =>.SSProtect Ltd HKCU\SOFTWARE\Stellar =>.Stellar Systems HKCU\SOFTWARE\Sunisoft =>.Sunisoft HKCU\SOFTWARE\Sysinternals =>.Sysinternals HKCU\SOFTWARE\TD424EjjfH5 HKCU\SOFTWARE\The Document Foundation =>.The Document Foundation HKCU\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks HKCU\SOFTWARE\Thunderbird =>.Thunderbird HKCU\SOFTWARE\TomTom =>.TomTom HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group HKCU\SOFTWARE\WindowPop HKCU\SOFTWARE\WinLaunch HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wondershare =>.Wondershare HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\XnView =>.Pierre-Emmanuel Gougelet HKCU\SOFTWARE\Zeon =>.Zeon HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\AVAST Software =>.AVAST Software HKU\.DEFAULT\SOFTWARE\Avira =>.Avira HKU\.DEFAULT\SOFTWARE\CleverFiles =>.CleverFiles HKU\.DEFAULT\SOFTWARE\Comodo =>.Comodo HKU\.DEFAULT\SOFTWARE\Dragon =>.Comodo Group. HKU\.DEFAULT\SOFTWARE\EPSON =>.EPSON HKU\.DEFAULT\SOFTWARE\GlassWire =>.SecureMix HKU\.DEFAULT\SOFTWARE\Icaros =>.Icaros HKU\.DEFAULT\SOFTWARE\KasperskyLab =>.Kaspersky Labs HKU\.DEFAULT\SOFTWARE\Locky =>.Legitimate HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\MiNi HKU\.DEFAULT\SOFTWARE\MPC-HC =>.MPC-HC Team HKU\.DEFAULT\SOFTWARE\Nahimic =>.Nahimic HKU\.DEFAULT\SOFTWARE\Netscape =>.Netscape HKU\.DEFAULT\SOFTWARE\Piriform =>.Piriform HKU\.DEFAULT\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKU\.DEFAULT\SOFTWARE\SetID =>.Bitdefender HKU\.DEFAULT\SOFTWARE\TD424EjjfH5 HKU\.DEFAULT\SOFTWARE\WinRAR =>.WinRAR HKU\.DEFAULT\SOFTWARE\ZEON =>.Zeon HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\7-Zip =>.Igor Pavlov HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\8322898 =>.FastStone Soft HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Adobe =>.Adobe HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\ASUS =>.ASUS HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Attribute Changer HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\AVAST Software =>.AVAST Software HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\AvastAdSDK =>.Avast Software s.r.o HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Avira =>.Avira HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Binary Fortress Software =>.Binary Fortress Software HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Bitdefender =>.Bitdefender HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\BugSplat =>.Bugsplat Game HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Canneverbe Limited =>.Canneverbe Limited HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Caphyon =>.Caphyon HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Chromium =>.Chromium HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\CleverFiles =>.CleverFiles HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Clover =>.Ejie HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Code Sector =>.Code Sector HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Common =>.Corel Corporation HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Comodo =>.Comodo HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Convar =>.Legitimate HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Dragon =>.Comodo Group. HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\EPSON =>.EPSON HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Eraser =>.Sami Tolvanen HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\FastStone HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\FileZilla Client =>.Tim Kosse HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Finalhit HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\FlexDef2b_DM9101RL_2 HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\FreeSoftLand HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Gabest =>.Gabest HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\GlassWire =>.SecureMix HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\GPL Ghostscript =>.GPL Ghostscript HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Icaros =>.Icaros HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\IM Providers =>.IM Providers HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Inkscape =>.InkScape HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Intel =>.Intel HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Jasc =>.Jasc HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\JavaSoft =>.JavaSoft HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\JP HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\KasperskyLab =>.Kaspersky Labs HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\KC Softwares =>.KC Softwares HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\LANGAGENT =>.LangAgent HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Licenses =>.Microsoft Corporation HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Local AppWizard-Generated Applications =>.ZWCAD HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Locky =>.Legitimate HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Macromedia =>.Macromedia HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\madshi =>.madshi.net HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\MediaInfo =>.Jérôme Martinez HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Meltytech =>.Meltytech LLC HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\MiniTool Software Limited =>.MiniTool Software Limited HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\MPC-HC =>.MPC-HC Team HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\MunSoft =>.MunSoft HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\MyPhoneExplorer =>.Hewlett-Packard HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\NCH Software =>.NCH Software HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\NCH Swift Sound =>.NCH Swift Sound HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Obsidium HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Obsidium x64 HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\OpenOffice =>.SourceForge HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\OpenSCAD HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Opera Software =>.Opera Software HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Piriform =>.Piriform HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\QFX Software =>.QFX Software HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Quizo =>.Quizo HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Safer Networking Limited =>.Safer Networking Limited HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\ScanSoft =>.Scansoft HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Sensiva HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Shchuka's Place HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\SimonTatham =>.Simon Tatham HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\SSProtect =>.SSProtect Ltd HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Stellar =>.Stellar Systems HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Sunisoft =>.Sunisoft HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Sysinternals =>.Sysinternals HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\TD424EjjfH5 HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\The Document Foundation =>.The Document Foundation HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\The Silicon Realms Toolworks =>.The Silicon Realms Toolworks HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Thunderbird =>.Thunderbird HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\TomTom =>.TomTom HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\VS Revo Group =>.VS Revo Group HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\WindowPop HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\WinLaunch HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Wondershare =>.Wondershare HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\XnView =>.Pierre-Emmanuel Gougelet HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\Zeon =>.Zeon HKU\S-1-5-21-188433853-1034861487-459835961-1001\SOFTWARE\ZHP =>.Nicolas Coolman ---\\ PACKAGES (4) - 1s C:\Program Files (x86)\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 - (.Netflix.) [][Netflix] =>Netflix C:\Program Files (x86)\WindowsApps\MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy - (.Microsoft Corporation.) [][Windows Feature Experience Pack] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.1023.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft ---\\ CONTENU DES DOSSIERS PROGRAMMES (404) - 13s O43 - CFD: 11/01/2021 - [] D -- C:\Program Files\7-Zip =>.Igor Pavlov O43 - CFD: 23/06/2020 - [] D -- C:\Program Files\ASUS =>.Microsoft Windows Hardware Compatibility Publisher® O43 - CFD: 13/05/2021 - [] D -- C:\Program Files\Attribute Changer [Unsigned] O43 - CFD: 04/06/2020 - [] D -- C:\Program Files\Bitdefender =>.Bitdefender O43 - CFD: 04/11/2021 - [] D -- C:\Program Files\CCleaner =>.Piriform Ltd O43 - CFD: 16/03/2020 - [] D -- C:\Program Files\CDBurnerXP =>.Stefan Haglund O43 - CFD: 10/05/2021 - [] D -- C:\Program Files\Common Files =>.Microsoft Corporation O43 - CFD: 21/09/2021 - [] D -- C:\Program Files\DIFX =>.Microsoft Corporation O43 - CFD: 14/12/2019 - [] D -- C:\Program Files\EPSON =>.SEIKO EPSON Corporation® O43 - CFD: 21/10/2021 - [] D -- C:\Program Files\Eraser =>.Heidi Computers Ltd® O43 - CFD: 14/12/2019 - [0] SHD -- C:\Program Files\Fichiers communs =>.Microsoft Corporation O43 - CFD: 01/11/2021 - [] D -- C:\Program Files\FileZilla FTP Client =>.Tim Kosse O43 - CFD: 15/07/2021 - [] D -- C:\Program Files\Firewall App Blocker [Unsigned] O43 - CFD: 21/07/2021 - [] D -- C:\Program Files\Google =>.Google O43 - CFD: 04/10/2021 - [] D -- C:\Program Files\Inkscape =>.inkscape.org O43 - CFD: 23/06/2020 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 18/09/2021 - [] D -- C:\Program Files\Internet Explorer =>.Microsoft Corporation O43 - CFD: 14/12/2019 - [] D -- C:\Program Files\IrfanView =>.Irfan skiljan O43 - CFD: 13/09/2021 - [] D -- C:\Program Files\KeePass Password Safe 2 =>.Dominik Reichl O43 - CFD: 20/12/2019 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 21/02/2021 - [] D -- C:\Program Files\Microsoft Office =>.Microsoft Corporation O43 - CFD: 19/10/2021 - [] D -- C:\Program Files\Microsoft Office 15 =>.Microsoft Corporation O43 - CFD: 10/10/2021 - [] D -- C:\Program Files\Microsoft Update Health Tools =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Program Files\ModifiableWindowsApps =>.Microsoft Corporation O43 - CFD: 04/11/2021 - [] D -- C:\Program Files\Mozilla Firefox =>.Mozilla O43 - CFD: 23/06/2020 - [] D -- C:\Program Files\MSBuild =>.Microsoft Corporation O43 - CFD: 04/10/2021 - [] D -- C:\Program Files\Notepad++ =>.Don Ho O43 - CFD: 26/10/2020 - [0] D -- C:\Program Files\paint.net =>.Rick Brewster O43 - CFD: 03/11/2021 - [] D -- C:\Program Files\PCHealthCheck =>.Microsoft® O43 - CFD: 23/06/2020 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 02/11/2021 - [] D -- C:\Program Files\Recuva =>.Piriform O43 - CFD: 23/06/2020 - [] D -- C:\Program Files\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 02/01/2020 - [] D -- C:\Program Files\Sensiva [Unsigned] O43 - CFD: 22/08/2021 - [] D -- C:\Program Files\Shotcut [Unsigned] O43 - CFD: 09/05/2021 - [] D -- C:\Program Files\TeraCopy =>.Code Sector Inc. O43 - CFD: 11/03/2020 - [] D -- C:\Program Files\TomTom HOME =>.TomTom O43 - CFD: 14/12/2019 - [0] HD -- C:\Program Files\Uninstall Information =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\Program Files\UNP =>.Microsoft Corporation O43 - CFD: 13/05/2021 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 24/03/2021 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group O43 - CFD: 15/01/2021 - [] D -- C:\Program Files\Windows Defender =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [] D -- C:\Program Files\Windows Mail =>.Microsoft Corporation O43 - CFD: 15/10/2021 - [] D -- C:\Program Files\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows NT =>.Microsoft Corporation O43 - CFD: 15/01/2021 - [] D -- C:\Program Files\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\Windows Security =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 04/11/2021 - [] HD -- C:\Program Files\WindowsApps =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 03/03/2020 - [0] D -- C:\Program Files\Wondershare =>.Wondershare O43 - CFD: 04/10/2021 - [] D -- C:\Program Files\XnViewMP =>.Pierre Gougelet O43 - CFD: 14/12/2019 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Inc.® O43 - CFD: 13/05/2021 - [] D -- C:\Program Files (x86)\adslTV =>.adslTV O43 - CFD: 14/12/2019 - [] D -- C:\Program Files (x86)\ASUS =>.Microsoft Windows Hardware Compatibility Publisher® O43 - CFD: 01/11/2021 - [] D -- C:\Program Files (x86)\Audacity =>.Audacity O43 - CFD: 23/04/2021 - [] D -- C:\Program Files (x86)\Awesome Duplicate Photo Finder =>.Awesome O43 - CFD: 14/03/2021 - [] D -- C:\Program Files (x86)\Clover =>.Ejie O43 - CFD: 10/05/2021 - [] D -- C:\Program Files (x86)\Common Files =>.Microsoft Corporation O43 - CFD: 06/10/2020 - [] D -- C:\Program Files (x86)\D4 O43 - CFD: 19/03/2020 - [] D -- C:\Program Files (x86)\EaseUS =>.EaseUS Software O43 - CFD: 18/04/2020 - [] D -- C:\Program Files (x86)\Elcomsoft Password Recovery =>.Elcomsoft Co. Ltd. O43 - CFD: 14/12/2019 - [] D -- C:\Program Files (x86)\epson [Unsigned] =>.EPSON O43 - CFD: 16/03/2021 - [] D -- C:\Program Files (x86)\EXIF Date Changer =>.Greg Driver O43 - CFD: 17/12/2019 - [] D -- C:\Program Files (x86)\FastStone Capture =>.FastStone Soft O43 - CFD: 21/03/2021 - [] D -- C:\Program Files (x86)\FreeCommander XE =>.Marek Jasinski® O43 - CFD: 17/12/2019 - [] D -- C:\Program Files (x86)\FS Capture O43 - CFD: 14/12/2019 - [] D -- C:\Program Files (x86)\FSL =>.FSL O43 - CFD: 01/11/2021 - [] D -- C:\Program Files (x86)\GlassWire =>.SecureMix O43 - CFD: 04/11/2021 - [] D -- C:\Program Files (x86)\Google =>.Google Inc® O43 - CFD: 05/02/2020 - [] D -- C:\Program Files (x86)\gs =>.GS O43 - CFD: 05/06/2021 - [0] D -- C:\Program Files (x86)\HomeDev =>.HomeDev O43 - CFD: 05/01/2021 - [] D -- C:\Program Files (x86)\Inkscape =>.inkscape.org O43 - CFD: 16/12/2019 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 14/12/2019 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 18/09/2021 - [] D -- C:\Program Files (x86)\Internet Explorer =>.Microsoft Corporation O43 - CFD: 15/03/2021 - [] D -- C:\Program Files (x86)\ITNConverter [Unsigned] O43 - CFD: 22/01/2020 - [] D -- C:\Program Files (x86)\Jasc Software Inc [Unsigned] =>.Jasc Software Inc O43 - CFD: 21/10/2021 - [] D -- C:\Program Files (x86)\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 23/08/2021 - [] D -- C:\Program Files (x86)\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 05/01/2021 - [] D -- C:\Program Files (x86)\KC Softwares =>.KC SOFTWARES SASU® O43 - CFD: 18/10/2021 - [] D -- C:\Program Files (x86)\KeyScrambler =>.QFX Software O43 - CFD: 18/03/2020 - [] D -- C:\Program Files (x86)\KompoZer [Unsigned] =>.KompoZer O43 - CFD: 28/05/2021 - [] D -- C:\Program Files (x86)\Microsoft =>.Microsoft Corporation O43 - CFD: 14/12/2019 - [] D -- C:\Program Files (x86)\Microsoft Money 2005 =>.Microsoft Corporation O43 - CFD: 20/02/2021 - [] D -- C:\Program Files (x86)\Microsoft Office =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\Program Files (x86)\Microsoft.NET =>.Microsoft Corporation O43 - CFD: 03/11/2021 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 02/11/2021 - [] D -- C:\Program Files (x86)\Mp3tag =>.Florian Heidenreich O43 - CFD: 23/06/2020 - [] D -- C:\Program Files (x86)\MSBuild =>.Microsoft Corporation O43 - CFD: 20/02/2021 - [] D -- C:\Program Files (x86)\MSECache =>.Microsoft Corporation O43 - CFD: 08/02/2020 - [] D -- C:\Program Files (x86)\MunSoft =>.MunSoft® O43 - CFD: 05/10/2021 - [] D -- C:\Program Files (x86)\MyPhoneExplorer =>.Hewlett-Packard O43 - CFD: 15/05/2021 - [] D -- C:\Program Files (x86)\NCH Software =>.NCH Software O43 - CFD: 15/12/2019 - [] D -- C:\Program Files (x86)\Norton Internet Security =>.Symantec O43 - CFD: 15/12/2019 - [] D -- C:\Program Files (x86)\NortonInstaller =>.Symantec O43 - CFD: 23/06/2020 - [] D -- C:\Program Files (x86)\Nuance =>.Nuance O43 - CFD: 27/12/2019 - [] D -- C:\Program Files (x86)\Nuance.PDF.Converter.Enterprise.7.v16.0.0.400.MULTI.PC =>.Nuance Communications, Inc.® O43 - CFD: 07/10/2021 - [] D -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org O43 - CFD: 29/12/2019 - [] D -- C:\Program Files (x86)\Paint Shop Pro 7 fr {646BCFC60FA9758C9209A3F255A3D879}. O43 - CFD: 09/09/2020 - [] D -- C:\Program Files (x86)\Panaustik =>.Panaustik O43 - CFD: 07/09/2020 - [] D -- C:\Program Files (x86)\PassFab for RAR O43 - CFD: 17/03/2021 - [] D -- C:\Program Files (x86)\Ping Identity {08003F32D18BC8A127E2C6EEE8091217}. O43 - CFD: 04/11/2020 - [] D -- C:\Program Files (x86)\QTTabBar =>.Quizo O43 - CFD: 15/12/2019 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 23/06/2020 - [] D -- C:\Program Files (x86)\Reference Assemblies =>.Microsoft Corporation O43 - CFD: 13/05/2018 - [] D -- C:\Program Files (x86)\RegSeeker =>.Thibaud Djian O43 - CFD: 27/09/2021 - [] D -- C:\Program Files (x86)\Sena Technologies =>.Microsoft Windows® O43 - CFD: 14/12/2019 - [] D -- C:\Program Files (x86)\SilverCrest SMLM 807 A1 Driver =>.SHENZHEN LIAN HE AN XIN SOFTWARE DEVELOPMENT CO,LTD® O43 - CFD: 14/02/2020 - [0] D -- C:\Program Files (x86)\Simple MP3 Tag Editor O43 - CFD: 12/06/2020 - [] D -- C:\Program Files (x86)\Stellar Phoenix Word Repair =>.Stellar Systems O43 - CFD: 16/12/2019 - [0] HD -- C:\Program Files (x86)\Temp =>.Microsoft Corporation O43 - CFD: 11/01/2020 - [] D -- C:\Program Files (x86)\Trombinoscope [Unsigned] O43 - CFD: 23/06/2020 - [0] HD -- C:\Program Files (x86)\Uninstall Information =>.Microsoft Corporation O43 - CFD: 26/06/2021 - [] D -- C:\Program Files (x86)\VirusTotalUploader2 =>.VirusTotal O43 - CFD: 11/12/2020 - [] D -- C:\Program Files (x86)\Windows Defender =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [] D -- C:\Program Files (x86)\Windows Mail =>.Microsoft Corporation O43 - CFD: 15/10/2021 - [] D -- C:\Program Files (x86)\Windows Media Player =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Multimedia Platform =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows NT =>.Microsoft Corporation O43 - CFD: 15/01/2021 - [] D -- C:\Program Files (x86)\Windows Photo Viewer =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Windows Portable Devices =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] SHD -- C:\Program Files (x86)\Windows Sidebar =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\WindowsPowerShell =>.Microsoft Corporation O43 - CFD: 28/02/2021 - [] D -- C:\Program Files (x86)\Wondershare =>.Wondershare O43 - CFD: 11/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov O43 - CFD: 15/01/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 15/10/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 15/10/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 13/05/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Attribute Changer O43 - CFD: 23/04/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Awesome Duplicate Photo Finder =>.Awesome O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BDAntiRansomware =>.BDAntiRansomware O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitnami =>.BitNami O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner =>.Piriform Ltd O43 - CFD: 14/03/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Clover =>.Ejie O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON =>.EPSON O43 - CFD: 14/12/2019 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Scan =>.Epson/Seico O43 - CFD: 16/03/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EXIF Date Changer =>.Greg Driver O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Capture =>.FastStone Soft O43 - CFD: 21/03/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeCommander XE O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FSL =>.FSL O43 - CFD: 01/11/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GlassWire =>.SecureMix O43 - CFD: 04/10/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Inkscape =>.inkscape.org O43 - CFD: 23/06/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation O43 - CFD: 21/10/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack =>.KLite Inc O43 - CFD: 10/05/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Security Cloud =>.Kaspersky Labs O43 - CFD: 10/05/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky VPN =>.Kaspersky Labs O43 - CFD: 18/10/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeyScrambler =>.QFX Software O43 - CFD: 12/12/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KompoZer =>.KompoZer O43 - CFD: 27/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 6.4 =>.LibreOffice O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 =>.Microsoft Corporation O43 - CFD: 05/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mp3tag =>.Florian Heidenreich O43 - CFD: 05/10/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer =>.Hewlett-Packard O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PDF Converter Enterprise 7 O43 - CFD: 07/10/2021 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.11 =>.SourceForge O43 - CFD: 09/09/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panaustik =>.Panaustik O43 - CFD: 18/06/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ping Identity O43 - CFD: 23/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva =>.Piriform O43 - CFD: 18/01/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rene.E Laboratory =>.Rene.E Laboratory O43 - CFD: 01/11/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SilverCrest SMLM 807 A1 O43 - CFD: 23/06/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stellar Phoenix Word Repair =>.Stellar Systems O43 - CFD: 18/09/2021 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 13/05/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 07/12/2019 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 01/06/2020 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Disk Cleaner =>.WiseCleaner.com, Inc O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare =>.Wondershare O43 - CFD: 04/10/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnViewMP =>.Pierre Gougelet O43 - CFD: 14/12/2019 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 19/03/2020 - [] D -- C:\ProgramData\Aomei =>.AOMEI Tech Co O43 - CFD: 19/03/2020 - [] D -- C:\ProgramData\AomeiBR =>.AOMEI Technology O43 - CFD: 23/06/2020 - [0] SHD -- C:\ProgramData\Application Data =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Audyssey Labs =>.Audyssey Labs O43 - CFD: 25/05/2020 - [] D -- C:\ProgramData\Avast Software =>.AVAST Software O43 - CFD: 15/07/2021 - [] D -- C:\ProgramData\Avira =>.Avira Software O43 - CFD: 20/01/2021 - [] D -- C:\ProgramData\Binary Fortress Software =>.Binary Fortress Software O43 - CFD: 14/12/2019 - [0] SHD -- C:\ProgramData\Bureau =>.Microsoft Corporation O43 - CFD: 16/03/2020 - [] D -- C:\ProgramData\Canneverbe Limited =>.Canneverbe Limited O43 - CFD: 23/04/2021 - [] D -- C:\ProgramData\Caphyon =>.Caphyon O43 - CFD: 23/04/2021 - [] D -- C:\ProgramData\Code Sector =>.Code Sector O43 - CFD: 23/06/2020 - [0] SHD -- C:\ProgramData\Desktop =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [0] SHD -- C:\ProgramData\Documents =>.Microsoft Corporation O43 - CFD: 18/04/2020 - [] D -- C:\ProgramData\Elcomsoft Password Recovery =>.Elcomsoft Co. Ltd. O43 - CFD: 14/12/2019 - [] D -- C:\ProgramData\EPSON =>.EPSON O43 - CFD: 17/12/2019 - [] D -- C:\ProgramData\FastStone =>.FastStone Soft O43 - CFD: 04/10/2021 - [] D -- C:\ProgramData\GlassWire =>.SecureMix O43 - CFD: 15/12/2019 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 14/03/2020 - [] D -- C:\ProgramData\IsolatedStorage =>.id Software O43 - CFD: 23/08/2021 - [] D -- C:\ProgramData\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 27/03/2020 - [] RASHD -- C:\ProgramData\Key-Base =>.Unknown O43 - CFD: 13/11/2020 - [] D -- C:\ProgramData\Licenses =>.Microsoft Corporation O43 - CFD: 29/02/2020 - [] D -- C:\ProgramData\Logs =>.ABBYY Software O43 - CFD: 30/05/2020 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 14/12/2019 - [0] SHD -- C:\ProgramData\Menu Démarrer =>.Microsoft Corporation O43 - CFD: 06/07/2020 - [] SD -- C:\ProgramData\Microsoft =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Microsoft OneDrive =>.Microsoft Corporation O43 - CFD: 14/12/2019 - [0] SHD -- C:\ProgramData\Modèles =>.Microsoft Corporation O43 - CFD: 04/11/2021 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 12/05/2021 - [] D -- C:\ProgramData\NCH Software =>.NCH Software O43 - CFD: 15/12/2019 - [] D -- C:\ProgramData\Norton =>.Symantec Corporation O43 - CFD: 15/12/2019 - [] D -- C:\ProgramData\NortonInstaller =>.Symantec O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Nuance =>.Nuance O43 - CFD: 11/03/2020 - [] D -- C:\ProgramData\Oracle =>.Oracle O43 - CFD: 10/05/2021 - [] D -- C:\ProgramData\Package Cache =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\Packages =>.Microsoft Corporation O43 - CFD: 20/03/2021 - [] D -- C:\ProgramData\QFX Software =>.QFX Software O43 - CFD: 04/11/2021 - [] D -- C:\ProgramData\regid.1991-06.com.microsoft =>.Microsoft Corporation O43 - CFD: 28/12/2019 - [] D -- C:\ProgramData\ScanSoft =>.Scansoft O43 - CFD: 18/05/2020 - [] D -- C:\ProgramData\SecTaskMan O43 - CFD: 18/05/2020 - [] D -- C:\ProgramData\SecuritySuite =>SUP.Optional.ScanGuard O43 - CFD: 07/12/2019 - [0] D -- C:\ProgramData\SoftwareDistribution =>.Microsoft Corporation O43 - CFD: 11/05/2020 - [0] D -- C:\ProgramData\ssh =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [0] SHD -- C:\ProgramData\Start Menu =>.Microsoft Corporation O43 - CFD: 19/03/2020 - [] D -- C:\ProgramData\SystemAcCrux O43 - CFD: 23/10/2021 - [0] AD -- C:\ProgramData\TEMP =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [0] SHD -- C:\ProgramData\Templates =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\ProgramData\USOPrivate =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\USOShared =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] D -- C:\ProgramData\WindowsHolographicDevices =>.Microsoft Corporation O43 - CFD: 03/03/2020 - [] D -- C:\ProgramData\Wondershare =>.Wondershare O43 - CFD: 15/05/2020 - [] D -- C:\ProgramData\Zeon =>.Zeon Corp O43 - CFD: 03/03/2020 - [0] D -- C:\ProgramData\{F4B71310-812F-173C-62C2-997B5A1F4AF0} O43 - CFD: 18/03/2020 - [] D -- C:\Program Files (x86)\Common Files\Adobe =>.Adobe O43 - CFD: 04/11/2020 - [] D -- C:\Program Files (x86)\Common Files\Clover =>.Ejie O43 - CFD: 19/12/2019 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 15/12/2019 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 23/06/2020 - [] D -- C:\Program Files (x86)\Common Files\Intel =>.Intel Corporation O43 - CFD: 15/12/2019 - [] D -- C:\Program Files (x86)\Common Files\Intel Corporation =>.Intel Corporation O43 - CFD: 04/11/2021 - [] D -- C:\Program Files (x86)\Common Files\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 20/02/2021 - [] D -- C:\Program Files (x86)\Common Files\Microsoft Shared =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\Program Files (x86)\Common Files\ScanSoft Shared =>.Nuance Communications O43 - CFD: 07/12/2019 - [] D -- C:\Program Files (x86)\Common Files\Services =>.Microsoft Corporation O43 - CFD: 14/07/2021 - [] D -- C:\Program Files (x86)\Common Files\System =>.Microsoft Corporation O43 - CFD: 14/12/2019 - [] D -- C:\Users\Admin\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 01/11/2021 - [] D -- C:\Users\Admin\AppData\Roaming\audacity =>.Audacity O43 - CFD: 12/12/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Awesome Duplicate Photo Finder =>.Awesome O43 - CFD: 16/04/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Big Angry Dog =>.Big Angry Dog O43 - CFD: 08/01/2021 - [] D -- C:\Users\Admin\AppData\Roaming\BlankAndSecure O43 - CFD: 16/03/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Canneverbe Limited =>.Canneverbe Limited O43 - CFD: 15/06/2021 - [] D -- C:\Users\Admin\AppData\Roaming\com.pingidentity.pingid.pctoken.MainApp O43 - CFD: 20/01/2021 - [] SHD -- C:\Users\Admin\AppData\Roaming\Common =>.Microsoft Corporation O43 - CFD: 12/04/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Disruptive Innovations SARL =>.Disruptive Innovations SARL O43 - CFD: 01/08/2021 - [] D -- C:\Users\Admin\AppData\Roaming\dvdcss =>.VideoLan Team O43 - CFD: 18/04/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Elcomsoft =>.Elcomsoft O43 - CFD: 16/12/2019 - [] D -- C:\Users\Admin\AppData\Roaming\EPSON =>.EPSON O43 - CFD: 20/12/2019 - [0] D -- C:\Users\Admin\AppData\Roaming\EXIF Date Changer =>.Greg Driver O43 - CFD: 11/10/2020 - [0] D -- C:\Users\Admin\AppData\Roaming\FastCopy O43 - CFD: 17/12/2019 - [] D -- C:\Users\Admin\AppData\Roaming\FastStone =>.FastStone Soft O43 - CFD: 01/11/2021 - [] D -- C:\Users\Admin\AppData\Roaming\FileZilla =>.FileZilla O43 - CFD: 17/02/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Gmail Notifier Plus O43 - CFD: 15/03/2021 - [] D -- C:\Users\Admin\AppData\Roaming\H2CBundle O43 - CFD: 22/07/2021 - [] D -- C:\Users\Admin\AppData\Roaming\H2CU_VCR O43 - CFD: 06/01/2020 - [] D -- C:\Users\Admin\AppData\Roaming\HMYGSetting =>Adware.Suspect O43 - CFD: 25/05/2021 - [] D -- C:\Users\Admin\AppData\Roaming\inkscape =>.inkscape.org O43 - CFD: 15/12/2019 - [] D -- C:\Users\Admin\AppData\Roaming\Intel Corporation =>.Intel Corporation O43 - CFD: 30/04/2021 - [] D -- C:\Users\Admin\AppData\Roaming\IrfanView =>.Irfan skiljan O43 - CFD: 14/03/2020 - [] D -- C:\Users\Admin\AppData\Roaming\IsolatedStorage =>.id Software O43 - CFD: 10/03/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Jasc =>.Jasc O43 - CFD: 20/05/2021 - [] D -- C:\Users\Admin\AppData\Roaming\KC Softwares =>.KC Softwares O43 - CFD: 04/11/2021 - [] D -- C:\Users\Admin\AppData\Roaming\KeePass =>.Dominik Reichl O43 - CFD: 20/12/2019 - [] D -- C:\Users\Admin\AppData\Roaming\kompozer.net O43 - CFD: 18/01/2021 - [] SD -- C:\Users\Admin\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 14/12/2019 - [] D -- C:\Users\Admin\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 01/11/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Mp3tag =>.Florian Heidenreich O43 - CFD: 04/11/2021 - [] D -- C:\Users\Admin\AppData\Roaming\MPC-HC =>.MPC-HC Team O43 - CFD: 29/10/2021 - [] D -- C:\Users\Admin\AppData\Roaming\MyPhoneExplorer =>.Hewlett-Packard O43 - CFD: 12/05/2021 - [] D -- C:\Users\Admin\AppData\Roaming\NCH Software =>.NCH Software O43 - CFD: 01/11/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Notepad++ =>.Don Ho O43 - CFD: 23/06/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Nuance =>.Nuance O43 - CFD: 11/10/2020 - [] HD -- C:\Users\Admin\AppData\Roaming\Obsidium =>.Game O43 - CFD: 06/02/2021 - [] HD -- C:\Users\Admin\AppData\Roaming\Obsidium x64 O43 - CFD: 14/12/2019 - [] D -- C:\Users\Admin\AppData\Roaming\OpenOffice =>.SourceForge O43 - CFD: 25/05/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Opera Software =>.Opera Software O43 - CFD: 20/03/2021 - [] D -- C:\Users\Admin\AppData\Roaming\QFX Software =>.QFX Software O43 - CFD: 06/11/2020 - [] D -- C:\Users\Admin\AppData\Roaming\QtProject =>.QtProject O43 - CFD: 17/04/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Remo =>.Remo Inc O43 - CFD: 18/07/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Skype =>.Skype O43 - CFD: 04/11/2021 - [] D -- C:\Users\Admin\AppData\Roaming\TeraCopy =>.Code Sector Inc. O43 - CFD: 19/12/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Thunderbird =>.Thunderbird O43 - CFD: 11/03/2020 - [] D -- C:\Users\Admin\AppData\Roaming\TomTomUpgrade O43 - CFD: 21/10/2021 - [] D -- C:\Users\Admin\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 08/06/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Wise Disk Cleaner =>.WiseCleaner.com, Inc O43 - CFD: 11/03/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Wise Force Deleter O43 - CFD: 16/05/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Wise Registry Cleaner =>.WiseCleaner Inc. O43 - CFD: 16/05/2020 - [0] D -- C:\Users\Admin\AppData\Roaming\WiseUpdate =>.WiseCleaner.com, Inc O43 - CFD: 06/01/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Wondershare =>.Wondershare O43 - CFD: 18/01/2021 - [] D -- C:\Users\Admin\AppData\Roaming\XnView =>.Pierre-Emmanuel Gougelet O43 - CFD: 16/10/2021 - [] D -- C:\Users\Admin\AppData\Roaming\XnViewMP =>.Pierre Gougelet O43 - CFD: 23/06/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Zeon =>.Zeon Corp O43 - CFD: 04/11/2021 - [] D -- C:\Users\Admin\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 14/12/2019 - [] D -- C:\Users\Admin\AppData\Local\Adobe =>.Adobe O43 - CFD: 31/10/2021 - [] D -- C:\Users\Admin\AppData\Local\adslTV =>.adslTV O43 - CFD: 19/03/2020 - [] D -- C:\Users\Admin\AppData\Local\AdvertisingPopup O43 - CFD: 23/06/2020 - [0] SHD -- C:\Users\Admin\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 31/07/2021 - [] D -- C:\Users\Admin\AppData\Local\Audacity =>.Audacity O43 - CFD: 22/05/2020 - [] D -- C:\Users\Admin\AppData\Local\AVAST Software =>.AVAST Software O43 - CFD: 25/05/2020 - [] D -- C:\Users\Admin\AppData\Local\Avira =>.Avira Software O43 - CFD: 24/01/2020 - [0] D -- C:\Users\Admin\AppData\Local\AviraSpeedup =>.Avira Software O43 - CFD: 23/01/2020 - [] D -- C:\Users\Admin\AppData\Local\cache =>.Legitimate O43 - CFD: 17/01/2020 - [] D -- C:\Users\Admin\AppData\Local\CEF =>.CEF O43 - CFD: 12/03/2021 - [] D -- C:\Users\Admin\AppData\Local\Clover =>.Ejie O43 - CFD: 14/12/2019 - [] D -- C:\Users\Admin\AppData\Local\Comms =>.Microsoft Corporation O43 - CFD: 25/05/2020 - [] D -- C:\Users\Admin\AppData\Local\Comodo =>.Comodo Group. O43 - CFD: 14/12/2019 - [] D -- C:\Users\Admin\AppData\Local\ConnectedDevicesPlatform =>.Microsoft Corporation O43 - CFD: 10/10/2021 - [0] D -- C:\Users\Admin\AppData\Local\CrashDumps =>.Microsoft Corporation O43 - CFD: 18/01/2021 - [] D -- C:\Users\Admin\AppData\Local\CrashRpt O43 - CFD: 27/10/2021 - [0] D -- C:\Users\Admin\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 10/05/2020 - [0] D -- C:\Users\Admin\AppData\Local\Diagnostics =>.Microsoft Corporation O43 - CFD: 21/01/2021 - [] D -- C:\Users\Admin\AppData\Local\DiskDrill =>.Clever Software O43 - CFD: 20/01/2021 - [] D -- C:\Users\Admin\AppData\Local\DisplayFusion =>.DisplayFusion O43 - CFD: 12/04/2020 - [] D -- C:\Users\Admin\AppData\Local\Disruptive Innovations SARL =>.Disruptive Innovations SARL O43 - CFD: 24/01/2020 - [0] D -- C:\Users\Admin\AppData\Local\ElevatedDiagnostics =>.Microsoft Corporation O43 - CFD: 10/03/2021 - [] D -- C:\Users\Admin\AppData\Local\Eraser 6 =>.Sami Tolvanen O43 - CFD: 17/12/2019 - [] D -- C:\Users\Admin\AppData\Local\FastStone =>.FastStone Soft O43 - CFD: 05/06/2021 - [] D -- C:\Users\Admin\AppData\Local\FileZilla =>.FileZilla O43 - CFD: 10/11/2020 - [] D -- C:\Users\Admin\AppData\Local\fontconfig =>.Portable Apps O43 - CFD: 21/03/2021 - [] D -- C:\Users\Admin\AppData\Local\FreeCommanderXE O43 - CFD: 04/11/2021 - [] D -- C:\Users\Admin\AppData\Local\glasswire =>.SecureMix O43 - CFD: 21/07/2021 - [] D -- C:\Users\Admin\AppData\Local\Google =>.Google O43 - CFD: 23/06/2020 - [0] SHD -- C:\Users\Admin\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 05/06/2021 - [] D -- C:\Users\Admin\AppData\Local\HomeDev =>.HomeDev O43 - CFD: 19/05/2021 - [] D -- C:\Users\Admin\AppData\Local\IsolatedStorage =>.id Software O43 - CFD: 20/12/2019 - [] D -- C:\Users\Admin\AppData\Local\kompozer.net O43 - CFD: 20/12/2019 - [] D -- C:\Users\Admin\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 20/12/2019 - [] D -- C:\Users\Admin\AppData\Local\mbamtray =>.Malwarebytes O43 - CFD: 22/08/2021 - [] D -- C:\Users\Admin\AppData\Local\Meltytech O43 - CFD: 23/04/2021 - [] D -- C:\Users\Admin\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 05/12/2020 - [] D -- C:\Users\Admin\AppData\Local\Microsoft Help =>.Microsoft Corporation O43 - CFD: 09/01/2020 - [] D -- C:\Users\Admin\AppData\Local\MicrosoftEdge =>.Microsoft Corporation O43 - CFD: 14/12/2019 - [] D -- C:\Users\Admin\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 24/06/2020 - [] D -- C:\Users\Admin\AppData\Local\OneDrive =>.Microsoft Corporation O43 - CFD: 21/09/2020 - [0] D -- C:\Users\Admin\AppData\Local\Opera Software =>.Opera Software O43 - CFD: 04/11/2021 - [] D -- C:\Users\Admin\AppData\Local\Packages =>.Microsoft Corporation O43 - CFD: 05/01/2020 - [] D -- C:\Users\Admin\AppData\Local\PlaceholderTileLogoFolder =>.Microsoft Corporation O43 - CFD: 21/09/2020 - [] D -- C:\Users\Admin\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 14/12/2019 - [] D -- C:\Users\Admin\AppData\Local\Publishers =>.Microsoft Corporation O43 - CFD: 20/12/2019 - [] D -- C:\Users\Admin\AppData\Local\Rellik_Software =>.Rellik Software O43 - CFD: 11/06/2021 - [] D -- C:\Users\Admin\AppData\Local\Smart_Disk_Checker O43 - CFD: 09/11/2020 - [] D -- C:\Users\Admin\AppData\Local\Solvusoft_Corporation =>SUP.Optional.Solvusoft O43 - CFD: 20/12/2019 - [] D -- C:\Users\Admin\AppData\Local\speech =>.Microsoft Corporation O43 - CFD: 23/08/2021 - [] D -- C:\Users\Admin\AppData\Local\Sysinternals =>.Sysinternals O43 - CFD: 04/11/2021 - [] D -- C:\Users\Admin\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [0] SHD -- C:\Users\Admin\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 19/12/2020 - [] D -- C:\Users\Admin\AppData\Local\Thunderbird =>.Thunderbird O43 - CFD: 13/04/2020 - [] D -- C:\Users\Admin\AppData\Local\TomTomUpgrade O43 - CFD: 05/02/2020 - [] D -- C:\Users\Admin\AppData\Local\VirtualStore =>.Microsoft Corporation O43 - CFD: 04/04/2020 - [] D -- C:\Users\Admin\AppData\Local\WinTools.Info =>.WinTools.Info O43 - CFD: 06/02/2020 - [] D -- C:\Users\Admin\AppData\Local\Zeon =>.Zeon Corp O43 - CFD: 04/11/2021 - [] D -- C:\Users\Admin\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 29/07/2021 - [] D -- C:\Users\Admin\AppData\Local\— O43 - CFD: 14/12/2019 - [0] D -- C:\Users\Admin\AppData\Local\Programs\Common =>.Microsoft Corporation O43 - CFD: 21/09/2020 - [] D -- C:\Users\Admin\AppData\Local\Programs\Opera =>.Opera Software O43 - CFD: 14/12/2019 - [] D -- C:\Users\Admin\AppData\LocalLow\Adobe =>.Adobe O43 - CFD: 04/11/2020 - [] D -- C:\Users\Admin\AppData\LocalLow\BubblesPop O43 - CFD: 04/11/2020 - [0] D -- C:\Users\Admin\AppData\LocalLow\Clover.users O43 - CFD: 03/11/2021 - [] D -- C:\Users\Admin\AppData\LocalLow\IGDump O43 - CFD: 04/11/2020 - [] D -- C:\Users\Admin\AppData\LocalLow\JP O43 - CFD: 10/11/2020 - [] SD -- C:\Users\Admin\AppData\LocalLow\Microsoft =>.Microsoft Corporation O43 - CFD: 04/11/2021 - [] D -- C:\Users\Admin\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 21/05/2020 - [] D -- C:\Users\Admin\AppData\LocalLow\Temp =>.Microsoft Corporation O43 - CFD: 04/11/2020 - [] D -- C:\Users\Admin\AppData\LocalLow\WindowPop O43 - CFD: 28/01/2020 - [] D -- C:\Users\Admin\Desktop\planning FF O43 - CFD: 04/07/2021 - [] D -- C:\Users\Admin\Desktop\Trucs à Nanou O43 - CFD: 11/05/2020 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 23/01/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\adsl TV =>.adslTV O43 - CFD: 23/06/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Audiograbber =>.Audiograbber O43 - CFD: 13/01/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Convar =>.Convar Deutschland GmbH O43 - CFD: 01/11/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client =>.Tim Kosse O43 - CFD: 19/01/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Inkscape =>.inkscape.org O43 - CFD: 27/05/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView =>.Irfan skiljan O43 - CFD: 07/12/2019 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RegSeeker =>.Thibaud Djian O43 - CFD: 27/09/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sena Technologies O43 - CFD: 15/07/2021 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [] RD -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TomTom Intl O43 - CFD: 23/06/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trombinoscope O43 - CFD: 26/06/2021 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirusTotal Uploader 2.2 =>.VirusTotal O43 - CFD: 23/06/2020 - [] D -- C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 14/12/2019 - [0] SHD -- C:\Users\Default\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [0] SHD -- C:\Users\Default\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 10/05/2021 - [] D -- C:\Users\Default\AppData\Local\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 03/11/2021 - [] D -- C:\Users\Default\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [0] SHD -- C:\Users\Default\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Application Data =>.Microsoft Corporation O43 - CFD: 14/12/2019 - [0] SHD -- C:\Users\Default User\AppData\Local\Historique =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\History =>.Microsoft Corporation O43 - CFD: 10/05/2021 - [] D -- C:\Users\Default User\AppData\Local\Kaspersky Lab =>.Kaspersky Lab O43 - CFD: 03/11/2021 - [] D -- C:\Users\Default User\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/12/2019 - [0] D -- C:\Users\Default User\AppData\Local\Temp =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [0] SHD -- C:\Users\Default User\AppData\Local\Temporary Internet Files =>.Microsoft Corporation O43 - CFD: 06/07/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Adobe =>.Adobe O43 - CFD: 04/11/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Clover =>.Ejie O43 - CFD: 02/07/2020 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Microsoft =>.Microsoft Corporation O43 - CFD: 07/07/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Programs =>.Microsoft Corporation O43 - CFD: 20/05/2021 - [] D -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Microsoft =>.Microsoft Corporation O43 - CFD: 23/06/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Nuance =>.Nuance ---\\ ShellIconOverlayIdentifiers (SIOI) (4) - 0s O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 1 (ErrorConflict) [ SkyDrivePro1 (ErrorConflict)] - {8BA85C75-763B-4103-94EB-9470F12FE0F7}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll =>.Microsoft® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 2 (SyncInProgress) [ SkyDrivePro2 (SyncInProgress)] - {CD55129A-B1A1-438E-A425-CEBC7DC684EE}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll =>.Microsoft® O106 - SIOI: Microsoft SkyDrive Pro Icon Overlay 3 (InSync) [ SkyDrivePro3 (InSync)] - {E768CD3B-BDDC-436D-9C13-E1B39CA257B1}. (.Microsoft Corporation - Microsoft OneDrive for Business Extensions.) -- C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll =>.Microsoft® O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (53) - 2s O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov O108 - CMH1: ANotepad++64 [64Bits] - {B298D29A-A6ED-11DE-BA8C-A68E55D89593} . (. - ShellHandler for Notepad++ (64 bit).) -- C:\Program Files\Notepad++\NppShell_06.dll =>.Notepad++® O108 - CMH1: DriveFS 28 or later [64Bits] - {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} . (.Orphan.) [Unsigned] O108 - CMH1: Eraser [64Bits] - {BC9B776A-90D7-4476-A791-79D835F30650} . (.The Eraser Project - Eraser Shell Extension.) -- C:\Program Files\Eraser\Eraser.Shell.dll =>.Heidi Computers Ltd® O108 - CMH1: Kaspersky Anti-Virus 21.3 [64Bits] - {37303E08-14C9-4FC3-B1D9-7993682A4691} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\x64\shellex.dll =>.Kaspersky Lab JSC® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Mp3tagShell [64Bits] - {6351E20C-35FA-4BE3-98FB-4CABF1363E12} . (.Florian Heidenreich - Shell Extension Mp3tag - the universal Tag.) -- C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [Unsigned] =>.Florian Heidenreich O108 - CMH1: MyPhoneExplorer [64Bits] - {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} . (.Orphan.) [Unsigned] O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: PDFC7.ShellExtension [64Bits] - {877327F4-8A93-4320-932C-338069C27BEA} . (.Nuance Communications, Inc. - SHELLEXT70.DLL.) -- C:\Program Files (x86)\Nuance\PDF Professional 7\ShellExt70.dll =>.Nuance Communications, Inc.® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: TeraCopy [64Bits] - {2386CB87-96FF-473D-A009-957E3BFE6F88} . (.Code Sector - TeraCopy Shell Extension.) -- C:\Program Files\TeraCopy\Context.dll {60D8E4C1C16589BC9C5BB9B543A1D659}. =>.Code Sector O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Zeon.MFCDirectShellExt [64Bits] - {353C642C-F13D-4699-9FF2-EFAF490B6C69} . (.Zeon International Investment Corp. - DirectShellExt Module.) -- C:\Program Files (x86)\Nuance\PDF Professional 7\bin\DirectShellExt.dll =>.Zeon Corporation® O108 - CMH2: Eraser [64Bits] - {BC9B776A-90D7-4476-A791-79D835F30650} . (.The Eraser Project - Eraser Shell Extension.) -- C:\Program Files\Eraser\Eraser.Shell.dll =>.Heidi Computers Ltd® O108 - CMH2: Kaspersky Anti-Virus 21.3 [64Bits] - {37303E08-14C9-4FC3-B1D9-7993682A4691} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\x64\shellex.dll =>.Kaspersky Lab JSC® O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: TeraCopy [64Bits] - {2386CB87-96FF-473D-A009-957E3BFE6F88} . (.Code Sector - TeraCopy Shell Extension.) -- C:\Program Files\TeraCopy\Context.dll {60D8E4C1C16589BC9C5BB9B543A1D659}. =>.Code Sector O108 - CMH3: ACShell [64Bits] - {D3F9A525-8824-497A-BE36-B23E22F141FC} . (.Romain Petges - Attribute Changer Shell Extension.) -- C:\Program Files\Attribute Changer\acshell.dll [Unsigned] =>.Romain Petges O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov O108 - CMH4: DriveFS 28 or later [64Bits] - {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} . (.Orphan.) [Unsigned] O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: Eraser [64Bits] - {BC9B776A-90D7-4476-A791-79D835F30650} . (.The Eraser Project - Eraser Shell Extension.) -- C:\Program Files\Eraser\Eraser.Shell.dll =>.Heidi Computers Ltd® O108 - CMH4: Kaspersky Anti-Virus 21.3 [64Bits] - {37303E08-14C9-4FC3-B1D9-7993682A4691} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\x64\shellex.dll =>.Kaspersky Lab JSC® O108 - CMH4: Mp3tagShell [64Bits] - {6351E20C-35FA-4BE3-98FB-4CABF1363E12} . (.Florian Heidenreich - Shell Extension Mp3tag - the universal Tag.) -- C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [Unsigned] =>.Florian Heidenreich O108 - CMH4: RecuvaShellExt [64Bits] - {435E5DF5-2510-463C-B223-BDA47006D002} . (.Piriform Software Ltd - Recuva shell extensions.) -- C:\Program Files\Recuva\RecuvaShell64.dll =>.Piriform Software Ltd® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: TeraCopy [64Bits] - {2386CB87-96FF-473D-A009-957E3BFE6F88} . (.Code Sector - TeraCopy Shell Extension.) -- C:\Program Files\TeraCopy\Context.dll {60D8E4C1C16589BC9C5BB9B543A1D659}. =>.Code Sector O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: DriveFS 28 or later [64Bits] - {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} . (.Orphan.) [Unsigned] O108 - CMH5: Eraser [64Bits] - {BC9B776A-90D7-4476-A791-79D835F30650} . (.The Eraser Project - Eraser Shell Extension.) -- C:\Program Files\Eraser\Eraser.Shell.dll =>.Heidi Computers Ltd® O108 - CMH5: igfxDTCM [64Bits] - {9B5F5829-A529-4B12-814A-E81BCB8D93FC} . (.Intel Corporation - igfxDTCM Module.) -- C:\WINDOWS\system32\igfxDTCM.dll [Unsigned] =>.Intel Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Igor Pavlov - 7-Zip Shell Extension.) -- C:\Program Files\7-Zip\7-zip.dll [Unsigned] =>.Igor Pavlov O108 - CMH6: Eraser [64Bits] - {BC9B776A-90D7-4476-A791-79D835F30650} . (.The Eraser Project - Eraser Shell Extension.) -- C:\Program Files\Eraser\Eraser.Shell.dll =>.Heidi Computers Ltd® O108 - CMH6: Kaspersky Anti-Virus 21.3 [64Bits] - {37303E08-14C9-4FC3-B1D9-7993682A4691} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\x64\shellex.dll =>.Kaspersky Lab JSC® O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH6: RecuvaShellExt [64Bits] - {435E5DF5-2510-463C-B223-BDA47006D002} . (.Piriform Software Ltd - Recuva shell extensions.) -- C:\Program Files\Recuva\RecuvaShell64.dll =>.Piriform Software Ltd® O108 - CMH6: TeraCopy [64Bits] - {2386CB87-96FF-473D-A009-957E3BFE6F88} . (.Code Sector - TeraCopy Shell Extension.) -- C:\Program Files\TeraCopy\Context.dll {60D8E4C1C16589BC9C5BB9B543A1D659}. =>.Code Sector O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: Eraser [64Bits] - {BC9B776A-90D7-4476-A791-79D835F30650} . (.The Eraser Project - Eraser Shell Extension.) -- C:\Program Files\Eraser\Eraser.Shell.dll =>.Heidi Computers Ltd® O108 - CMH7: Kaspersky Anti-Virus 21.3 [64Bits] - {37303E08-14C9-4FC3-B1D9-7993682A4691} . (.AO Kaspersky Lab - Shell Extension.) -- C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\x64\shellex.dll =>.Kaspersky Lab JSC® O108 - CMH7: Mp3tagShell [64Bits] - {6351E20C-35FA-4BE3-98FB-4CABF1363E12} . (.Florian Heidenreich - Shell Extension Mp3tag - the universal Tag.) -- C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [Unsigned] =>.Florian Heidenreich O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: TeraCopy [64Bits] - {2386CB87-96FF-473D-A009-957E3BFE6F88} . (.Code Sector - TeraCopy Shell Extension.) -- C:\Program Files\TeraCopy\Context.dll {60D8E4C1C16589BC9C5BB9B543A1D659}. =>.Code Sector ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (11) - 1s O50 - IFEO:C:\WINDOWS\System32\CompatTelRunner.exe - (.Microsoft Corporation - Microsoft Compatibility Telemetry.) [Debugger\\%windir%\System32\taskkill.exe] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® ---\\ LISTE DES PILOTES DU SYSTÈME (461) - 16s O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - 1394 OpenHCI Driver.) -- C:\WINDOWS\System32\drivers\1394ohci.sys [266240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft® O58 - SDL:2021/05/14 07:05:59 A . (.Microsoft Corporation - Pilote ACPI pour NT.) -- C:\WINDOWS\System32\drivers\acpi.sys [809288] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - ACPI Devices Driver.) -- C:\WINDOWS\System32\drivers\AcpiDev.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - ACPIEx Driver.) -- C:\WINDOWS\System32\drivers\acpiex.sys [139792] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - ACPI Processor Aggregator Device Driver.) -- C:\WINDOWS\System32\drivers\acpipagr.sys [14336] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - ACPI Power Metering Driver.) -- C:\WINDOWS\System32\drivers\acpipmi.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - ACPI Wake Alarm.) -- C:\WINDOWS\System32\drivers\acpitime.sys [16384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - Audio KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\Acx01000.sys [415232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft® O58 - SDL:2021/10/15 09:21:40 A . (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\afd.sys [654648] =>.Microsoft® O58 - SDL:2021/07/14 20:30:01 A . (.Microsoft Corporation - AF_UNIX socket provider.) -- C:\WINDOWS\System32\drivers\afunix.sys [41984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/05/14 07:06:28 A . (.Microsoft Corporation - Gestionnaire d'appels RAS Agile Vpn Minipor.) -- C:\WINDOWS\System32\drivers\agilevpn.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:05:55 A . (.Microsoft Corporation - Application Compatibility Cache.) -- C:\WINDOWS\System32\drivers\ahcache.sys [292352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 10:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2020/10/17 15:31:50 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdk8.sys [207160] =>.Microsoft® O58 - SDL:2020/10/17 15:31:50 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\amdppm.sys [211256] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft® O58 - SDL:2021/09/17 19:14:18 A . (.Microsoft Corporation - AppID Driver.) -- C:\WINDOWS\System32\drivers\appid.sys [214840] =>.Microsoft® O58 - SDL:2021/09/17 19:14:18 A . (.Microsoft Corporation - Applocker Filter.) -- C:\WINDOWS\System32\drivers\applockerfltr.sys [18432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft® O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - MS Remote Access serial network driver.) -- C:\WINDOWS\System32\drivers\asyncmac.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [30032] =>.Microsoft® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - ATAPI Driver Extension.) -- C:\WINDOWS\System32\drivers\ataport.sys [224080] =>.Microsoft® O58 - SDL:2019/12/07 10:08:41 A . (.Microsoft Corporation - BAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\bam.sys [78136] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Battery Class Driver.) -- C:\WINDOWS\System32\drivers\battc.sys [41272] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - BEEP Driver.) -- C:\WINDOWS\System32\drivers\beep.sys [10240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:31 A . (.Microsoft Corporation - Windows Bind Filter Driver.) -- C:\WINDOWS\System32\drivers\bindflt.sys [148816] =>.Microsoft® O58 - SDL:2021/07/14 20:29:55 A . (.Microsoft Corporation - NT Lan Manager Datagram Receiver Driver.) -- C:\WINDOWS\System32\drivers\bowser.sys [117760] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:39 A . (.Microsoft Corporation - MAC Bridge Driver.) -- C:\WINDOWS\System32\drivers\bridge.sys [127488] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Microsoft Bluetooth Audio Multiprofile Mana.) -- C:\WINDOWS\System32\drivers\BtaMPM.sys [36352] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - Bluetooth A2DP Driver.) -- C:\WINDOWS\System32\drivers\BthA2dp.sys [279040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - Extension de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthenum.sys [113664] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Bluetooth Hands-Free Audio and Call Control.) -- C:\WINDOWS\System32\drivers\BthHfEnum.sys [154112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - Bluetooth Transport Extensibility Miniport.) -- C:\WINDOWS\System32\drivers\BthMini.SYS [45568] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Bluetooth Communications Driver.) -- C:\WINDOWS\System32\drivers\bthmodem.sys [76800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - Pilote de bus Bluetooth.) -- C:\WINDOWS\System32\drivers\bthport.sys [1563136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - Pilote de Miniport Bluetooth.) -- C:\WINDOWS\System32\drivers\BTHUSB.SYS [110592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - VHD BTT Filter Driver.) -- C:\WINDOWS\System32\drivers\bttflt.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Button Converter Driver.) -- C:\WINDOWS\System32\drivers\buttonconverter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Charge Arbiration Driver.) -- C:\WINDOWS\System32\drivers\CAD.sys [66576] =>.Microsoft® O58 - SDL:2019/12/07 10:09:37 A . (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/08/17 18:53:23 A . (.Microsoft Corporation - Event Aggregation Kernel Mode Library.) -- C:\WINDOWS\System32\drivers\CEA.sys [86320] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/12/07 10:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft® O58 - SDL:2021/10/15 09:21:31 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [98304] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Consumer IR Class Driver for eHome.) -- C:\WINDOWS\System32\drivers\circlass.sys [52224] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:14:21 A . (.Microsoft Corporation - SCSI Class System Dll.) -- C:\WINDOWS\System32\drivers\Classpnp.sys [423760] =>.Microsoft® O58 - SDL:2021/10/15 09:21:36 A . (.Microsoft Corporation - Cloud Files Mini Filter Driver.) -- C:\WINDOWS\System32\drivers\cldflt.sys [491008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:40 A . (.Microsoft Corporation - Common Log File System Driver.) -- C:\WINDOWS\System32\drivers\clfs.sys [407864] =>.Microsoft® O58 - SDL:2021/10/15 09:21:21 A . (.Microsoft Corporation - CLIP Service.) -- C:\WINDOWS\System32\drivers\ClipSp.sys [1092944] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Control Method Battery Driver.) -- C:\WINDOWS\System32\drivers\CmBatt.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:05:25 A . (.Microsoft Corporation - Noyau Gestionnaire de configuration Configu.) -- C:\WINDOWS\System32\drivers\cmimcext.sys [29000] =>.Microsoft® O58 - SDL:2021/02/19 20:08:52 A . (.AO Kaspersky Lab - Cryptographic Module Driver x86 (56 bit).) -- C:\WINDOWS\System32\drivers\cm_km.sys [250032] =>.Kaspersky Lab JSC® O58 - SDL:2021/09/17 19:14:20 A . (.Microsoft Corporation - Kernel Cryptography, Next Generation.) -- C:\WINDOWS\System32\drivers\cng.sys [746912] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - CNG Hardware Assist algorithm provider.) -- C:\WINDOWS\System32\drivers\cnghwassist.sys [40968] =>.Microsoft® O58 - SDL:2021/07/14 20:29:57 A . (.Microsoft Corporation - Console Driver.) -- C:\WINDOWS\System32\drivers\condrv.sys [57144] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\crashdmp.sys [99368] =>.Microsoft® O58 - SDL:2021/05/11 01:35:54 A . (.CSR plc. - Bluetooth USB Dongle Device Driver.) -- C:\WINDOWS\System32\drivers\csrbc.sys [46384] =>.Sena Technologies, Inc.® O58 - SDL:2021/06/10 17:53:23 A . (.Microsoft Corporation - DAM Kernel Driver.) -- C:\WINDOWS\System32\drivers\dam.sys [97096] =>.Microsoft® O58 - SDL:2021/03/13 18:37:53 A . (.Microsoft Corporation - Xbox Device Authentication Driver.) -- C:\WINDOWS\System32\drivers\devauthe.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/13 18:38:18 A . (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\dfsc.sys [152064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/02/12 14:05:41 A . (.Microsoft Corporation - PnP Disk Driver.) -- C:\WINDOWS\System32\drivers\disk.sys [98624] =>.Microsoft® O58 - SDL:2019/12/07 10:08:52 A . (.Microsoft Corporation - Crash Dump Disk Driver.) -- C:\WINDOWS\System32\drivers\Diskdump.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 10:08:52 A . (.Microsoft Corporation - Boot Over USB Dump Driver.) -- C:\WINDOWS\System32\drivers\Dmpusbstor.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Mémoire dynamique.) -- C:\WINDOWS\System32\drivers\dmvsc.sys [59192] =>.Microsoft® O58 - SDL:2021/01/15 10:29:00 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmk.sys [97792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/15 10:29:00 A . (.Microsoft Corporation - Microsoft Trusted Audio Drivers.) -- C:\WINDOWS\System32\drivers\drmkaud.sys [16128] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - ATAPI Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpata.sys [37392] =>.Microsoft® O58 - SDL:2021/09/17 19:15:35 A . (.Microsoft Corporation - Bitlocker Drive Encryption Crashdump Filter.) -- C:\WINDOWS\System32\drivers\dumpfve.sys [93128] =>.Microsoft® O58 - SDL:2021/04/15 21:05:23 A . (.Microsoft Corporation - SD Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsd.sys [195408] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - SD Host Controller Crashdump Port Driver.) -- C:\WINDOWS\System32\drivers\dumpsdport.sys [32768] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:52 A . (.Microsoft Corporation - Storport Dump Driver.) -- C:\WINDOWS\System32\drivers\Dumpstorport.sys [35128] =>.Microsoft® O58 - SDL:2021/10/15 09:21:21 A . (.Microsoft Corporation - DirectX Graphics Kernel.) -- C:\WINDOWS\System32\drivers\dxgkrnl.sys [3814216] =>.Microsoft® O58 - SDL:2021/10/15 09:21:21 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms1.sys [454992] =>.Microsoft® O58 - SDL:2021/10/15 09:21:21 A . (.Microsoft Corporation - DirectX Graphics MMS.) -- C:\WINDOWS\System32\drivers\dxgmms2.sys [902992] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Gigabit Adapter NDIS 6.x driver.) -- C:\WINDOWS\System32\drivers\e1i65x64.sys [553984] [Unsigned] =>.Intel Corporation O58 - SDL:2021/05/14 07:06:42 A . (.Microsoft Corporation - Enhanced Storage Class driver for IEEE 1667.) -- C:\WINDOWS\System32\drivers\EhStorClass.sys [95032] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Microsoft driver for storage devices suppor.) -- C:\WINDOWS\System32\drivers\EhStorTcgDrv.sys [124728] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Error Device Driver.) -- C:\WINDOWS\System32\drivers\errdev.sys [15872] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/06/28 11:09:18 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Driver.) -- C:\WINDOWS\System32\drivers\eubakup.sys [73448] =>.Microsoft® O58 - SDL:2019/06/28 11:09:18 A . (...) -- C:\WINDOWS\System32\drivers\EUBKMON.sys [53504] =>.Microsoft® O58 - SDL:2019/06/28 11:09:18 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Access Driver.) -- C:\WINDOWS\System32\drivers\eudskacs.sys [22784] =>.Microsoft® O58 - SDL:2019/06/28 11:09:18 A . (.CHENGDU YIWO Tech Development Co., Ltd - Disk Backup Image Preview Driver.) -- C:\WINDOWS\System32\drivers\EuFdDisk.sys [341760] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Microsoft Extended FAT File System.) -- C:\WINDOWS\System32\drivers\exfat.sys [417616] =>.Microsoft® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Fast FAT File System Driver.) -- C:\WINDOWS\System32\drivers\fastfat.sys [425288] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Floppy Disk Controller Driver.) -- C:\WINDOWS\System32\drivers\fdc.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - Windows sandboxing and encryption filter.) -- C:\WINDOWS\System32\drivers\filecrypt.sys [59392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - FileInfo Filter Driver.) -- C:\WINDOWS\System32\drivers\fileinfo.sys [94736] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - File Trace Filter Driver.) -- C:\WINDOWS\System32\drivers\filetrace.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Floppy Driver.) -- C:\WINDOWS\System32\drivers\flpydisk.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/08/17 18:53:30 A . (.Microsoft Corporation - Gestionnaire de filtres de système de fichi.) -- C:\WINDOWS\System32\drivers\fltMgr.sys [435000] =>.Microsoft® O58 - SDL:2021/04/15 21:05:25 A . (.Microsoft Corporation - File System Dependency Manager Mini Filter.) -- C:\WINDOWS\System32\drivers\fsdepends.sys [69968] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - File System Recognizer Driver.) -- C:\WINDOWS\System32\drivers\fs_rec.sys [33592] =>.Microsoft® O58 - SDL:2021/06/10 17:54:25 A . (.Microsoft Corporation - BitLocker Drive Encryption Driver.) -- C:\WINDOWS\System32\drivers\fvevol.sys [800056] =>.Microsoft® O58 - SDL:2021/10/15 09:21:40 A . (.Microsoft Corporation - FWP/IPsec Kernel-Mode API.) -- C:\WINDOWS\System32\drivers\FWPKCLNT.SYS [502600] =>.Microsoft® O58 - SDL:2019/12/07 10:08:05 A . (.Microsoft Corporation - GPU Energy Kernel Driver.) -- C:\WINDOWS\System32\drivers\gpuenergydrv.sys [8704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/05/29 08:15:44 A . (.SecureMix LLC - GlassWire Driver.) -- C:\WINDOWS\System32\drivers\gwdrv.sys [33152] =>.GlassWire® O58 - SDL:2021/07/09 08:13:50 A . (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\hdaudbus.sys [139776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/05/11 06:40:14 A . (.Microsoft Corporation - High Definition Audio Function Driver.) -- C:\WINDOWS\System32\drivers\HdAudio.sys [430080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Hid Battery Driver.) -- C:\WINDOWS\System32\drivers\hidbatt.sys [39440] =>.Microsoft® O58 - SDL:2020/08/17 08:39:04 A . (.Microsoft Corporation - Pilote de miniport Bluetooth pour les périp.) -- C:\WINDOWS\System32\drivers\hidbth.sys [120320] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:05:23 A . (.Microsoft Corporation - Bibliothèque Hid Class.) -- C:\WINDOWS\System32\drivers\hidclass.sys [225792] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - I2C HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidi2c.sys [57344] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - HID Button over Interrupt Driver.) -- C:\WINDOWS\System32\drivers\hidinterrupt.sys [55824] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Infrared Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidir.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:05:23 A . (.Microsoft Corporation - Hid Parsing Library.) -- C:\WINDOWS\System32\drivers\hidparse.sys [46080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - SPI HID Miniport Driver.) -- C:\WINDOWS\System32\drivers\hidspi.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:05:23 A . (.Microsoft Corporation - USB Miniport Driver for Input Devices.) -- C:\WINDOWS\System32\drivers\hidusb.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft® O58 - SDL:2021/10/15 09:21:38 A . (.Microsoft Corporation - HTTP Pile du protocole.) -- C:\WINDOWS\System32\drivers\http.sys [1576264] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Hyper-V Crashdump.) -- C:\WINDOWS\System32\drivers\hvcrash.sys [35128] =>.Microsoft® O58 - SDL:2021/09/17 19:14:55 A . (.Microsoft Corporation - Hypervisor Boot Driver.) -- C:\WINDOWS\System32\drivers\hvservice.sys [95056] =>.Microsoft® O58 - SDL:2021/04/15 21:06:18 A . (.Microsoft Corporation - Microsoft Hyper-V Socket Provider.) -- C:\WINDOWS\System32\drivers\hvsocket.sys [148280] =>.Microsoft® O58 - SDL:2020/08/17 08:40:15 A . (.Microsoft Corporation - Hardware Policy Driver.) -- C:\WINDOWS\System32\drivers\hwpolicy.sys [33096] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft VMBus Synthetic Keyboard Driver.) -- C:\WINDOWS\System32\drivers\hyperkbd.sys [27448] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft VMBus Video Device Miniport Drive.) -- C:\WINDOWS\System32\drivers\HyperVideo.sys [41784] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2019/12/07 10:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2013/07/18 21:55:54 A . (.Intel Corporation - NDIS 6.30 Advanced Networking Services..) -- C:\WINDOWS\System32\drivers\iANSW60e.sys [153400] =>.Intel Corporation® O58 - SDL:2014/04/11 09:30:44 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver -.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [645480] =>.Intel Corporation - Intel® Rapid Storage Technology® O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft® O58 - SDL:2016/11/01 23:05:26 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [7966192] =>.Intel(R) pGFX® O58 - SDL:2020/10/17 15:32:19 A . (.Microsoft Corporation - Indirect displays kernel-mode filter driver.) -- C:\WINDOWS\System32\drivers\IndirectKmd.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2010/06/19 08:36:04 A . (.Siliten - Flex Define Keyboard Driver.) -- C:\WINDOWS\System32\drivers\InputFilter_FlexDef2b.sys [17920] [Unsigned] =>.Siliten O58 - SDL:2016/05/12 05:32:26 A . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [481768] =>.Intel(R) OWR® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Intel PCI IDE Driver.) -- C:\WINDOWS\System32\drivers\intelide.sys [19792] =>.Microsoft® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Intel Power Engine Plugin.) -- C:\WINDOWS\System32\drivers\intelpep.sys [418800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Intel Power Limit Driver.) -- C:\WINDOWS\System32\drivers\intelpmax.sys [30720] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/17 15:31:50 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\intelppm.sys [230728] =>.Microsoft® O58 - SDL:2020/10/17 15:31:50 A . (.Microsoft Corporation - Intel Telemetry Driver.) -- C:\WINDOWS\System32\drivers\IntelTA.sys [26608] =>.Microsoft® O58 - SDL:2021/06/10 17:53:04 A . (.Microsoft Corporation - Filtre de contrôle de taux d’E/S.) -- C:\WINDOWS\System32\drivers\iorate.sys [57168] =>.Microsoft® O58 - SDL:2021/05/14 07:06:27 A . (.Microsoft Corporation - IP FILTER DRIVER.) -- C:\WINDOWS\System32\drivers\ipfltdrv.sys [90112] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/10 17:53:03 A . (.Microsoft Corporation - PILOT IPMI WMI.) -- C:\WINDOWS\System32\drivers\IPMIDrv.sys [117584] =>.Microsoft® O58 - SDL:2019/12/07 10:08:34 A . (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\ipnat.sys [225280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - IPT Driver.) -- C:\WINDOWS\System32\drivers\ipt.sys [59704] =>.Microsoft® O58 - SDL:2014/01/08 06:20:28 A . (.Intel Corporation - Intel(R) Network Adapter Diagnostic Driver.) -- C:\WINDOWS\System32\drivers\iqvw64e.sys [34568] =>.Intel Corporation® O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - Pilote de bus PNP ISA.) -- C:\WINDOWS\System32\drivers\isapnp.sys [22864] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de la classe Clavier.) -- C:\WINDOWS\System32\drivers\kbdclass.sys [71480] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de filtre clavier HID.) -- C:\WINDOWS\System32\drivers\kbdhid.sys [46592] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Microsoft Kernel Debugger Network Miniport.) -- C:\WINDOWS\System32\drivers\kdnic.sys [33296] =>.Microsoft® O58 - SDL:2018/09/08 07:15:56 A . (.QFX Software Corporation - KeyScrambler Keyboard Encryption Driver.) -- C:\WINDOWS\System32\drivers\keyscrambler.sys [243800] =>.QFX Software Corporation® O58 - SDL:2021/02/19 20:08:52 A . (.AO Kaspersky Lab - Backup Disk Filter [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klbackupdisk.sys [110336] =>.Kaspersky Lab JSC® O58 - SDL:2021/02/19 20:08:54 A . (.AO Kaspersky Lab - Backup File Filter [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klbackupflt.sys [211704] =>.Kaspersky Lab JSC® O58 - SDL:2021/02/19 20:08:54 A . (.AO Kaspersky Lab - Virtual Disk [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\kldisk.sys [126216] =>.Kaspersky Lab JSC® O58 - SDL:2021/02/19 20:08:56 A . (.AO Kaspersky Lab - Early Launch Anti-Malware Filter [fre_win8_.) -- C:\WINDOWS\System32\drivers\klelam.sys [41656] =>.Microsoft® O58 - SDL:2021/02/19 20:08:56 A . (.AO Kaspersky Lab - Filter Core [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klflt.sys [514840] =>.Kaspersky Lab JSC® O58 - SDL:2021/09/09 10:22:14 A . (.AO Kaspersky Lab - Security Extender [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klgse.sys [674104] =>.Microsoft® O58 - SDL:2021/09/09 10:22:12 A . (.AO Kaspersky Lab - klhk [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klhk.sys [1469240] =>.Microsoft® O58 - SDL:2021/02/19 20:08:56 A . (.AO Kaspersky Lab - Core System Interceptors [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klif.sys [1042712] =>.Kaspersky Lab JSC® O58 - SDL:2021/02/19 20:08:56 A . (.AO Kaspersky Lab - Packet Network Filter [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klim6.sys [98040] =>.Kaspersky Lab JSC® O58 - SDL:2021/02/19 20:08:58 A . (.AO Kaspersky Lab - Keyboard Device Filter [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klkbdflt.sys [112392] =>.Kaspersky Lab JSC® O58 - SDL:2021/02/19 20:08:58 A . (.AO Kaspersky Lab - Mouse Device Filter [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klmouflt.sys [112904] =>.Kaspersky Lab JSC® O58 - SDL:2021/02/19 20:08:58 A . (.AO Kaspersky Lab - Format Recognizer [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klpd.sys [85256] =>.Kaspersky Lab JSC® O58 - SDL:2021/06/15 12:57:40 A . (.AO Kaspersky Lab - Generic PnP filter [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klpnpflt.sys [96008] =>.Kaspersky Lab JSC® O58 - SDL:2021/02/19 20:09:00 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\kltap.sys [55592] =>.AnchorFree Inc® O58 - SDL:2021/09/23 18:51:48 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit Monitor Driver.) -- C:\WINDOWS\System32\drivers\klupd_klif_arkmon.sys [265176] =>.Microsoft® O58 - SDL:2021/09/23 18:52:48 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit.) -- C:\WINDOWS\System32\drivers\klupd_klif_klark.sys [315032] =>.Microsoft® O58 - SDL:2021/09/23 18:51:48 A . (.AO Kaspersky Lab - Kaspersky Lab Boot Guard Driver.) -- C:\WINDOWS\System32\drivers\klupd_klif_klbg.sys [113952] =>.Microsoft® O58 - SDL:2021/09/23 18:51:48 A . (.AO Kaspersky Lab - Kaspersky Lab Anti-Rootkit Memory Driver.) -- C:\WINDOWS\System32\drivers\klupd_klif_mark.sys [225648] =>.Microsoft® O58 - SDL:2021/02/19 20:09:00 A . (.AO Kaspersky Lab - WFP Network Filter [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\klwfp.sys [155912] =>.Kaspersky Lab JSC® O58 - SDL:2021/02/19 20:09:00 A . (.AO Kaspersky Lab - WFP Network Connection Filter Driver [fre_w.) -- C:\WINDOWS\System32\drivers\klwtp.sys [327936] =>.Kaspersky Lab JSC® O58 - SDL:2021/02/19 20:09:02 A . (.AO Kaspersky Lab - Network Processor [fre_win7_x64].) -- C:\WINDOWS\System32\drivers\kneps.sys [300808] =>.Kaspersky Lab JSC® O58 - SDL:2021/07/09 08:13:51 A . (.Microsoft Corporation - Network Power Dependency Broker.) -- C:\WINDOWS\System32\drivers\KNetPwrDepBroker.sys [32256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/11/21 17:30:13 A . (.Microsoft Corporation - Kernel CSA Library.) -- C:\WINDOWS\System32\drivers\ks.sys [449024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:40 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecdd.sys [147256] =>.Microsoft® O58 - SDL:2021/10/15 09:21:38 A . (.Microsoft Corporation - Kernel Security Support Provider Interface.) -- C:\WINDOWS\System32\drivers\ksecpkg.sys [180048] =>.Microsoft® O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Kernel Streaming WOW Thunk Service.) -- C:\WINDOWS\System32\drivers\ksthunk.sys [29696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:55 A . (.Microsoft Corporation - Link-Layer Topology Mapper I/O Driver.) -- C:\WINDOWS\System32\drivers\lltdio.sys [72704] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft® O58 - SDL:2021/03/13 18:38:20 A . (.Microsoft Corporation - Pilote de filtre de virtualisation de fichi.) -- C:\WINDOWS\System32\drivers\luafv.sys [140800] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - MA-USB Host Controller Driver.) -- C:\WINDOWS\System32\drivers\mausbhost.sys [537608] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - MA-USB IP Driver.) -- C:\WINDOWS\System32\drivers\mausbip.sys [64016] =>.Microsoft® O58 - SDL:2021/08/21 17:38:39 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [160176] =>.Microsoft® O58 - SDL:2021/09/20 16:15:40 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [210344] =>.Microsoft® O58 - SDL:2020/12/13 17:10:58 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [19912] =>.Microsoft® O58 - SDL:2021/11/03 21:05:29 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [248992] =>.Malwarebytes Inc® O58 - SDL:2021/07/09 08:13:51 A . (.Microsoft Corporation - Windows Mobile Broadband Class Extension.) -- C:\WINDOWS\System32\drivers\MbbCx.sys [391168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - Medium changer class driver.) -- C:\WINDOWS\System32\drivers\mcd.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:47 A . (.Microsoft Corporation - Pilote de transport Microsoft Bluetooth Avr.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [65024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/11 17:26:05 A . (.Microsoft Corporation - Legacy Bluetooth LE Bus Enumerator.) -- C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [106496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft® O58 - SDL:2020/10/17 15:31:51 A . (.Microsoft Corporation - MMCSS Driver.) -- C:\WINDOWS\System32\drivers\mmcss.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/15 10:31:15 A . (.Microsoft Corporation - Pilote de périphérique modem.) -- C:\WINDOWS\System32\drivers\modem.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/08/17 18:53:08 A . (.Microsoft Corporation - Monitor Driver.) -- C:\WINDOWS\System32\drivers\monitor.sys [83968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de la classe Souris.) -- C:\WINDOWS\System32\drivers\mouclass.sys [67600] =>.Microsoft® O58 - SDL:2010/10/20 10:58:44 A . (.Siliten - Flex Define Mouse Driver.) -- C:\WINDOWS\System32\drivers\MouFilter_FlexDef4.sys [15360] [Unsigned] =>.Siliten O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de filtre souris HID.) -- C:\WINDOWS\System32\drivers\mouhid.sys [35328] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Gestionnaire des points de montage.) -- C:\WINDOWS\System32\drivers\mountmgr.sys [110392] =>.Microsoft® O58 - SDL:2019/12/07 10:08:33 A . (.Microsoft Corporation - Microsoft Protection Service Driver.) -- C:\WINDOWS\System32\drivers\mpsdrv.sys [80896] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:58 A . (.Microsoft Corporation - Windows NT WebDav Minirdr.) -- C:\WINDOWS\System32\drivers\mrxdav.sys [157696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:14:22 A . (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\mrxsmb.sys [577872] =>.Microsoft® O58 - SDL:2021/09/17 19:14:22 A . (.Microsoft Corporation - Longhorn SMB 2.0 Redirector.) -- C:\WINDOWS\System32\drivers\mrxsmb20.sys [265016] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Mailslot driver.) -- C:\WINDOWS\System32\drivers\msfs.sys [44048] =>.Microsoft® O58 - SDL:2020/09/11 17:26:17 A . (.Microsoft Corporation - GPIO Class Extension Driver.) -- C:\WINDOWS\System32\drivers\msgpioclx.sys [183112] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - GPIO Button Driver.) -- C:\WINDOWS\System32\drivers\msgpiowin32.sys [56120] =>.Microsoft® O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Pass-through HID to KMDF Filter Driver.) -- C:\WINDOWS\System32\drivers\mshidkmdf.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:16 A . (.Microsoft Corporation - Pilote direct pour interface HID-UMDF.) -- C:\WINDOWS\System32\drivers\mshidumdf.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Hardware Notification Class Extension Drive.) -- C:\WINDOWS\System32\drivers\mshwnclx.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - ISA Driver.) -- C:\WINDOWS\System32\drivers\msisadrv.sys [20280] =>.Microsoft® O58 - SDL:2021/08/17 18:53:09 A . (.Microsoft Corporation - Microsoft iSCSI Initiator Driver.) -- C:\WINDOWS\System32\drivers\msiscsi.sys [293176] =>.Microsoft® O58 - SDL:2020/11/21 17:30:13 A . (.Microsoft Corporation - MS KS Server.) -- C:\WINDOWS\System32\drivers\mskssrv.sys [34816] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:05 A . (.Microsoft Corporation - Pilote de protocole LLDP (Link Layer Discov.) -- C:\WINDOWS\System32\drivers\mslldp.sys [78848] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - MS Proxy Clock.) -- C:\WINDOWS\System32\drivers\mspclock.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - MS Proxy Quality Manager.) -- C:\WINDOWS\System32\drivers\mspqm.sys [11264] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/11 17:26:44 A . (.Microsoft Corporation - Windows QUIC Driver.) -- C:\WINDOWS\System32\drivers\msquic.sys [322376] =>.Microsoft® O58 - SDL:2021/10/15 09:21:40 A . (.Microsoft Corporation - Kernel Remote Procedure Call Provider.) -- C:\WINDOWS\System32\drivers\msrpc.sys [382800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - System Management BIOS Driver.) -- C:\WINDOWS\System32\drivers\mssmbios.sys [47928] =>.Microsoft® O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - WDM Tee/Communication Transform Filter.) -- C:\WINDOWS\System32\drivers\mstee.sys [12288] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Pilote HID multipoint Microsoft.) -- C:\WINDOWS\System32\drivers\MTConfig.sys [17920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/13 18:38:18 A . (.Microsoft Corporation - Pilote de fournisseur UNC multiples.) -- C:\WINDOWS\System32\drivers\mup.sys [132920] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft® O58 - SDL:2021/08/17 18:53:31 A . (.Microsoft Corporation - NDIS (Network Driver Interface Specificatio.) -- C:\WINDOWS\System32\drivers\ndis.sys [1478960] =>.Microsoft® O58 - SDL:2019/12/07 10:09:48 A . (.Microsoft Corporation - Microsoft NDIS Packet Capture Filter Driver.) -- C:\WINDOWS\System32\drivers\ndiscap.sys [54272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/17 15:32:39 A . (.Microsoft Corporation - Microsoft Network Adapter Multiplexor.) -- C:\WINDOWS\System32\drivers\NdisImPlatform.sys [135168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/17 15:32:40 A . (.Microsoft Corporation - NDIS 3.0 connection wrapper driver.) -- C:\WINDOWS\System32\drivers\ndistapi.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Pilote d’E/S du mode utilisateur NDIS.) -- C:\WINDOWS\System32\drivers\ndisuio.sys [70656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:05 A . (.Microsoft Corporation - Énumérateur de cartes réseau virtuelles Mic.) -- C:\WINDOWS\System32\drivers\NdisVirtualBus.sys [23040] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/08/17 18:53:34 A . (.Microsoft Corporation - MS PPP Framing Driver (Strong Encryption).) -- C:\WINDOWS\System32\drivers\ndiswan.sys [212992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:48 A . (.Microsoft Corporation - RDMA Sample Driver.) -- C:\WINDOWS\System32\drivers\NDKPing.sys [72720] =>.Microsoft® O58 - SDL:2020/10/17 15:32:40 A . (.Microsoft Corporation - NDIS Proxy.) -- C:\WINDOWS\System32\drivers\ndproxy.sys [93696] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - Windows Network Data Usage Monitoring Drive.) -- C:\WINDOWS\System32\drivers\Ndu.sys [131584] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:14:22 A . (.Microsoft Corporation - Network Adapter Class Extension for WDF.) -- C:\WINDOWS\System32\drivers\NetAdapterCx.sys [208384] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:04 A . (.Microsoft Corporation - NetBIOS interface driver.) -- C:\WINDOWS\System32\drivers\netbios.sys [64312] =>.Microsoft® O58 - SDL:2020/10/17 15:32:39 A . (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netbt.sys [341504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/14 20:30:00 A . (.Microsoft Corporation - Network I/O Subsystem.) -- C:\WINDOWS\System32\drivers\netio.sys [603448] =>.Microsoft® O58 - SDL:2021/04/15 21:05:24 A . (.Microsoft Corporation - Miniport NDIS virtuel.) -- C:\WINDOWS\System32\drivers\netvsc.sys [250192] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - NPFS Driver.) -- C:\WINDOWS\System32\drivers\npfs.sys [87568] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Named pipe service triggers.) -- C:\WINDOWS\System32\drivers\npsvctrig.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/17 15:32:33 A . (.Microsoft Corporation - NSI Proxy.) -- C:\WINDOWS\System32\drivers\nsiproxy.sys [48640] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:39 A . (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2850616] =>.Microsoft® O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - NTOS extension host driver.) -- C:\WINDOWS\System32\drivers\ntosext.sys [20792] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - NULL Driver.) -- C:\WINDOWS\System32\drivers\null.sys [7680] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de périphérique NVDIMM.) -- C:\WINDOWS\System32\drivers\nvdimm.sys [168464] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft® O58 - SDL:2021/09/17 19:13:46 A . (.Microsoft Corporation - Pilote de miniport WiFi natif.) -- C:\WINDOWS\System32\drivers\nwifi.sys [758272] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/17 15:32:18 A . (.Microsoft Corporation - Planificateur de paquets QoS.) -- C:\WINDOWS\System32\drivers\pacer.sys [161608] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\parport.sys [109056] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/14 20:30:00 A . (.Microsoft Corporation - Partition driver.) -- C:\WINDOWS\System32\drivers\partmgr.sys [182584] =>.Microsoft® O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - Énumérateur Plug-and-Play PCI pour NT.) -- C:\WINDOWS\System32\drivers\pci.sys [475976] =>.Microsoft® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Generic PCI IDE Bus Driver.) -- C:\WINDOWS\System32\drivers\pciide.sys [16712] =>.Microsoft® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - PCI IDE Bus Driver Extension.) -- C:\WINDOWS\System32\drivers\pciidex.sys [56656] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Pilote de bus PCMCIA.) -- C:\WINDOWS\System32\drivers\pcmcia.sys [127800] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - Performance Counters for Windows Driver.) -- C:\WINDOWS\System32\drivers\pcw.sys [57656] =>.Microsoft® O58 - SDL:2021/06/10 17:53:05 A . (.Microsoft Corporation - Power Dependency Coordinator Driver.) -- C:\WINDOWS\System32\drivers\pdc.sys [159056] =>.Microsoft® O58 - SDL:2021/10/15 09:21:17 A . (.Microsoft Corporation - Protected Environment Authentication and Au.) -- C:\WINDOWS\System32\drivers\PEAuth.sys [823808] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft® O58 - SDL:2021/04/15 21:06:16 A . (.Microsoft Corporation - Pilote du moniteur de paquets.) -- C:\WINDOWS\System32\drivers\PktMon.sys [129872] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de mémoire persistante.) -- C:\WINDOWS\System32\drivers\pmem.sys [138040] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Pilote mémoire Plug and Play.) -- C:\WINDOWS\System32\drivers\pnpmem.sys [17408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Port Device Class Configuration Filter Driv.) -- C:\WINDOWS\System32\drivers\portcfg.sys [27136] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/01/15 10:29:01 A . (.Microsoft Corporation - Port Class (Class Driver for Port/Miniport.) -- C:\WINDOWS\System32\drivers\portcls.sys [388608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/17 15:31:50 A . (.Microsoft Corporation - Processor Device Driver.) -- C:\WINDOWS\System32\drivers\processr.sys [216376] =>.Microsoft® O58 - SDL:2019/12/07 10:08:33 A . (.Microsoft Corporation - Time Travel Debugging Process Launch Monito.) -- C:\WINDOWS\System32\drivers\ProcLaunchMon.sys [43448] =>.Microsoft® O58 - SDL:2019/12/07 10:09:05 A . (.Microsoft Corporation - Pilote du support de Microsoft Quality Wind.) -- C:\WINDOWS\System32\drivers\qwavedrv.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - RAM Disk Driver.) -- C:\WINDOWS\System32\drivers\ramdisk.sys [42296] =>.Microsoft® O58 - SDL:2020/10/17 15:32:40 A . (.Microsoft Corporation - RAS Automatic Connection Driver.) -- C:\WINDOWS\System32\drivers\rasacd.sys [20480] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/11 17:26:54 A . (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\rasl2tp.sys [110080] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - RAS PPPoE mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\raspppoe.sys [87552] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/11 17:26:54 A . (.Microsoft Corporation - Peer-to-Peer Tunneling Protocol.) -- C:\WINDOWS\System32\drivers\raspptp.sys [101888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/11 17:26:54 A . (.Microsoft Corporation - RAS SSTP Miniport Call Manager.) -- C:\WINDOWS\System32\drivers\rassstp.sys [86016] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:14:22 A . (.Microsoft Corporation - Pilote du sous-système de mise en mémoire t.) -- C:\WINDOWS\System32\drivers\rdbss.sys [456008] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Microsoft RDP Bus Device driver.) -- C:\WINDOWS\System32\drivers\rdpbus.sys [28672] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:06:16 A . (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:06:16 A . (.Microsoft Corporation - Microsoft RDP Video Miniport driver.) -- C:\WINDOWS\System32\drivers\rdpvideominiport.sys [31544] =>.Microsoft® O58 - SDL:2019/12/07 10:09:54 A . (.Microsoft Corporation - ReadyBoost Driver.) -- C:\WINDOWS\System32\drivers\rdyboost.sys [297784] =>.Microsoft® O58 - SDL:2021/10/15 09:21:36 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refs.sys [2004816] =>.Microsoft® O58 - SDL:2019/12/07 10:08:46 A . (.Microsoft Corporation - Pilote du système de fichiers ReFS NT.) -- C:\WINDOWS\System32\drivers\refsv1.sys [990008] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Bluetooth RFCOMM Driver.) -- C:\WINDOWS\System32\drivers\rfcomm.sys [213504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:05:24 A . (.Microsoft Corporation - Microsoft RemoteFX VM Transport.) -- C:\WINDOWS\System32\drivers\RfxVmt.sys [8192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - ResourceHub Proxy Driver.) -- C:\WINDOWS\System32\drivers\rhproxy.sys [115712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:41 A . (.Microsoft Corporation - Reliable Multicast Transport.) -- C:\WINDOWS\System32\drivers\rmcast.sys [158208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - Remote NDIS Miniport.) -- C:\WINDOWS\System32\drivers\RNDISMP.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - Legacy Non-Pnp Modem Device Driver.) -- C:\WINDOWS\System32\drivers\rootmdm.sys [13824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2009/02/12 14:11:26 A . (.EldoS Corporation - RawDisk Driver. Allows write access to file.) -- C:\WINDOWS\System32\drivers\rsdrvx64.sys [26024] =>.EldoS Corporation® O58 - SDL:2019/12/07 10:08:55 A . (.Microsoft Corporation - Link-Layer Topology Responder Driver for ND.) -- C:\WINDOWS\System32\drivers\rspndr.sys [89088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek O58 - SDL:2018/05/30 21:06:38 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [6248896] =>.Realtek Semiconductor Corp.® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - SBP-2 Protocol Driver.) -- C:\WINDOWS\System32\drivers\sbp2port.sys [118088] =>.Microsoft® O58 - SDL:2021/03/13 18:38:25 A . (.Microsoft Corporation - Pilote de filtre de lecteur de carte à puce.) -- C:\WINDOWS\System32\drivers\scfilter.sys [44032] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de bus de mémoire de classe stockage.) -- C:\WINDOWS\System32\drivers\scmbus.sys [158736] =>.Microsoft® O58 - SDL:2021/10/15 09:21:41 A . (.Microsoft Corporation - SCSI Port Driver.) -- C:\WINDOWS\System32\drivers\scsiport.sys [188232] =>.Microsoft® O58 - SDL:2021/04/15 21:05:23 A . (.Microsoft Corporation - Pilote du bus numérique sécurisé (SD).) -- C:\WINDOWS\System32\drivers\sdbus.sys [305472] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - SDF Reflector.) -- C:\WINDOWS\System32\drivers\SDFRd.sys [35128] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - SD Host Controller Port Driver.) -- C:\WINDOWS\System32\drivers\sdport.sys [105488] =>.Microsoft® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Pilote de classe de stockage SD.) -- C:\WINDOWS\System32\drivers\sdstor.sys [104264] =>.Microsoft® O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Serial Class Extension.) -- C:\WINDOWS\System32\drivers\SerCx.sys [86328] =>.Microsoft® O58 - SDL:2019/12/07 10:08:36 A . (.Microsoft Corporation - Serial Class Extension V2.) -- C:\WINDOWS\System32\drivers\SerCx2.sys [173072] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Serial Port Enumerator.) -- C:\WINDOWS\System32\drivers\serenum.sys [27648] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Pilote de périphérique série.) -- C:\WINDOWS\System32\drivers\serial.sys [90624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de filtre souris série.) -- C:\WINDOWS\System32\drivers\sermouse.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - SCSI Floppy Driver.) -- C:\WINDOWS\System32\drivers\sfloppy.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - System Guard Runtime Monitor Agent Driver.) -- C:\WINDOWS\System32\drivers\SgrmAgent.sys [88080] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Sleep Study Helper.) -- C:\WINDOWS\System32\drivers\SleepStudyHelper.sys [38200] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft® O58 - SDL:2019/12/07 10:09:09 A . (.Microsoft Corporation - Smart Card Driver Library.) -- C:\WINDOWS\System32\drivers\smclib.sys [21504] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Storage Spaces Dump Driver.) -- C:\WINDOWS\System32\drivers\spacedump.sys [215880] =>.Microsoft® O58 - SDL:2019/12/07 10:09:34 A . (.Microsoft Corporation - Storage Spaces Parser.) -- C:\WINDOWS\System32\drivers\spaceparser.sys [26624] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Storage Spaces Driver.) -- C:\WINDOWS\System32\drivers\spaceport.sys [679240] =>.Microsoft® O58 - SDL:2019/12/07 15:52:56 A . (.Microsoft Corporation - Holographic Spatial Graph Filter.) -- C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [90936] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - SPB Class Extension.) -- C:\WINDOWS\System32\drivers\SpbCx.sys [87352] =>.Microsoft® O58 - SDL:2021/09/17 19:14:22 A . (.Microsoft Corporation - Pilote de serveur SMB 2.0.) -- C:\WINDOWS\System32\drivers\srv2.sys [787968] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/10 17:53:32 A . (.Microsoft Corporation - Server Network driver.) -- C:\WINDOWS\System32\drivers\srvnet.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/29 04:43:52 A . (.Samsung Electronics Co., Ltd. - SAMSUNG USB Composite Device Driver.) -- C:\WINDOWS\System32\drivers\ssudbus2.sys [159864] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2020/11/11 03:54:38 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [167280] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2019/12/07 10:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - MS AHCI Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storahci.sys [186168] =>.Microsoft® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Microsoft NVM Express Storport Miniport Dri.) -- C:\WINDOWS\System32\drivers\stornvme.sys [158008] =>.Microsoft® O58 - SDL:2021/10/15 09:21:17 A . (.Microsoft Corporation - Microsoft Storage Port Driver.) -- C:\WINDOWS\System32\drivers\storport.sys [715088] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - Filtre de qualité de service de stockage.) -- C:\WINDOWS\System32\drivers\storqosflt.sys [92984] =>.Microsoft® O58 - SDL:2021/07/09 08:13:50 A . (.Microsoft Corporation - MS UFS Storport Miniport Driver.) -- C:\WINDOWS\System32\drivers\storufs.sys [61256] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Storage VSC Driver.) -- C:\WINDOWS\System32\drivers\storvsc.sys [44048] =>.Microsoft® O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - WDM CODEC Class Device Driver 2.0.) -- C:\WINDOWS\System32\drivers\stream.sys [82432] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:05:24 A . (.Microsoft Corporation - Microsoft RemoteFX Synth3D Video VSC.) -- C:\WINDOWS\System32\drivers\Synth3dVsc.sys [6656] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:00 A . (.Microsoft Corporation - SCSI Tape Class Driver.) -- C:\WINDOWS\System32\drivers\tape.sys [33280] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:05:26 A . (.Microsoft Corporation - Export driver for kernel mode TPM API.) -- C:\WINDOWS\System32\drivers\tbs.sys [31568] =>.Microsoft® O58 - SDL:2021/10/15 09:21:40 A . (.Microsoft Corporation - Pilote TCP/IP.) -- C:\WINDOWS\System32\drivers\tcpip.sys [2989384] =>.Microsoft® O58 - SDL:2019/12/07 10:09:04 A . (.Microsoft Corporation - TCP/IP Registry Compatibility Driver.) -- C:\WINDOWS\System32\drivers\tcpipreg.sys [54784] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - TDI Wrapper.) -- C:\WINDOWS\System32\drivers\tdi.sys [39736] =>.Microsoft® O58 - SDL:2021/09/17 19:14:55 A . (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117584] =>.Microsoft® O58 - SDL:2017/10/17 08:11:44 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [206496] =>.Intel(R) Embedded Subsystems and IP Blocks Group® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Terminal Server Input Driver.) -- C:\WINDOWS\System32\drivers\terminpt.sys [41272] =>.Microsoft® O58 - SDL:2021/09/17 19:14:22 A . (.Microsoft Corporation - Kernel Transaction Manager Driver.) -- C:\WINDOWS\System32\drivers\tm.sys [142136] =>.Microsoft® O58 - SDL:2021/01/15 10:29:01 A . (.Microsoft Corporation - Pilote de périphérique TPM.) -- C:\WINDOWS\System32\drivers\tpm.sys [255288] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - Pilote de filtre pour concentrateur USB du.) -- C:\WINDOWS\System32\drivers\TsUsbFlt.sys [66560] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/08/17 18:53:09 A . (.Microsoft Corporation - Remote Desktop Generic USB Driver.) -- C:\WINDOWS\System32\drivers\TsUsbGD.sys [37888] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:04 A . (.Microsoft Corporation - Pilote d’interface de tunnel Microsoft.) -- C:\WINDOWS\System32\drivers\tunnel.sys [129024] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/06/10 17:53:03 A . (.Microsoft Corporation - Microsoft Uasp Driver.) -- C:\WINDOWS\System32\drivers\uaspstor.sys [79160] =>.Microsoft® O58 - SDL:2021/10/15 09:21:31 A . (.Microsoft Corporation - USB Connector Manager KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmCx.sys [160256] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - UCM-TCPCI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmTcpciCx.sys [188416] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - UCM-UCSI ACPI Client Driver.) -- C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [36864] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/11 17:26:36 A . (.Microsoft Corporation - UCM-UCSI KMDF Class Extension.) -- C:\WINDOWS\System32\drivers\UcmUcsiCx.sys [113152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - USB Controller Extension.) -- C:\WINDOWS\System32\drivers\Ucx01000.sys [259896] =>.Microsoft® O58 - SDL:2019/12/07 10:08:09 A . (.Microsoft Corporation - "udecx.DRIVER".) -- C:\WINDOWS\System32\drivers\Udecx.sys [52736] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - UDF File System Driver.) -- C:\WINDOWS\System32\drivers\udfs.sys [344064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/09 08:14:04 A . (.Microsoft Corporation - USB Function Driver Class Extension.) -- C:\WINDOWS\System32\drivers\ufx01000.sys [330056] =>.Microsoft® O58 - SDL:2020/12/11 09:16:03 A . (.Microsoft Corporation - UFX Synopsys Client Driver.) -- C:\WINDOWS\System32\drivers\ufxsynopsys.sys [168264] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Generic pass-through driver.) -- C:\WINDOWS\System32\drivers\umpass.sys [15360] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - USB Role-Switch Class Extension.) -- C:\WINDOWS\System32\drivers\urscx01000.sys [76304] =>.Microsoft® O58 - SDL:2019/12/07 10:09:07 A . (.Microsoft Corporation - Remote NDIS USB Driver.) -- C:\WINDOWS\System32\drivers\usb8023.sys [24064] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - USB Audio Class Driver.) -- C:\WINDOWS\System32\drivers\USBAUDIO.sys [209920] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - Microsoft USB Audio Class 2.0 Driver.) -- C:\WINDOWS\System32\drivers\usbaudio2.sys [260608] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:41 A . (.Microsoft Corporation - Universal Serial Bus Camera Driver.) -- C:\WINDOWS\System32\drivers\USBCAMD2.sys [40448] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/09/11 17:26:05 A . (.Microsoft Corporation - USB Common Class Generic Parent Driver.) -- C:\WINDOWS\System32\drivers\usbccgp.sys [185664] =>.Microsoft® O58 - SDL:2019/12/07 10:07:50 A . (.Microsoft Corporation - USB Consumer IR Driver for eHome.) -- C:\WINDOWS\System32\drivers\usbcir.sys [107520] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Universal Serial Bus Driver.) -- C:\WINDOWS\System32\drivers\usbd.sys [33080] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - EHCI eUSB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbehci.sys [86544] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de concentrateur USB par défaut.) -- C:\WINDOWS\System32\drivers\usbhub.sys [528184] =>.Microsoft® O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - Pilote de concentrateur USB3.) -- C:\WINDOWS\System32\drivers\USBHUB3.SYS [648016] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - OHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbohci.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Pilote de port USB 1.1 & 2.0.) -- C:\WINDOWS\System32\drivers\usbport.sys [473400] =>.Microsoft® O58 - SDL:2021/08/17 18:53:09 A . (.Microsoft Corporation - USB Printer driver.) -- C:\WINDOWS\System32\drivers\usbprint.sys [37376] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/05/11 06:40:14 A . (.Microsoft Corporation - USB Scanner Driver.) -- C:\WINDOWS\System32\drivers\usbscan.sys [49152] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:13:44 A . (.Microsoft Corporation - USB Serial Driver.) -- C:\WINDOWS\System32\drivers\usbser.sys [81408] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Pilote de classe de stockage de masse USB.) -- C:\WINDOWS\System32\drivers\USBSTOR.SYS [136528] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - UHCI USB Miniport Driver.) -- C:\WINDOWS\System32\drivers\usbuhci.sys [39424] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Pilote XHCI USB.) -- C:\WINDOWS\System32\drivers\USBXHCI.SYS [629560] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Virtual Drive Root Enumerator.) -- C:\WINDOWS\System32\drivers\vdrvroot.sys [67384] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Extension du vérificateur de pilotes.) -- C:\WINDOWS\System32\drivers\VerifierExt.sys [347448] =>.Microsoft® O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - VHD Miniport Driver.) -- C:\WINDOWS\System32\drivers\vhdmp.sys [820536] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Virtual HID Framework (VHF) Driver.) -- C:\WINDOWS\System32\drivers\vhf.sys [47616] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:15 A . (.Microsoft Corporation - Microsoft Hyper-V Virtualization Infrastruc.) -- C:\WINDOWS\System32\drivers\Vid.sys [641336] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Video Port Driver.) -- C:\WINDOWS\System32\drivers\videoprt.sys [47104] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - Hyper-V VMBus KMCL.) -- C:\WINDOWS\System32\drivers\vmbkmcl.sys [114488] =>.Microsoft® O58 - SDL:2021/07/14 20:29:55 A . (.Microsoft Corporation - Pilote enfant de bus VMBus sous Microsoft H.) -- C:\WINDOWS\System32\drivers\vmbus.sys [160080] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft VMBus HID Miniport.) -- C:\WINDOWS\System32\drivers\VMBusHID.sys [36664] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Virtual Machine Generation Counter.) -- C:\WINDOWS\System32\drivers\vmgencounter.sys [23864] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Virtual Machine Guest Infrastructure Driver.) -- C:\WINDOWS\System32\drivers\vmgid.sys [19768] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Microsoft S3 Emulated Device Cap Driver.) -- C:\WINDOWS\System32\drivers\vms3cap.sys [18960] =>.Microsoft® O58 - SDL:2021/05/14 07:06:00 A . (.Microsoft Corporation - Pilote de filtre de stockage virtuel.) -- C:\WINDOWS\System32\drivers\vmstorfl.sys [54080] =>.Microsoft® O58 - SDL:2021/04/15 21:05:22 A . (.Microsoft Corporation - Pilote du gestionnaire de volumes.) -- C:\WINDOWS\System32\drivers\volmgr.sys [90960] =>.Microsoft® O58 - SDL:2019/12/07 10:09:37 A . (.Microsoft Corporation - Pilote d’extension du gestionnaire de volum.) -- C:\WINDOWS\System32\drivers\volmgrx.sys [389432] =>.Microsoft® O58 - SDL:2020/09/11 17:26:13 A . (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [429880] =>.Microsoft® O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Volume driver.) -- C:\WINDOWS\System32\drivers\volume.sys [16696] =>.Microsoft® O58 - SDL:2019/12/07 10:07:57 A . (.Microsoft Corporation - Virtual PCI Bus.) -- C:\WINDOWS\System32\drivers\vpci.sys [89400] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft® O58 - SDL:2019/12/07 10:08:13 A . (.Microsoft Corporation - Virtual Wireless Bus Driver.) -- C:\WINDOWS\System32\drivers\vwifibus.sys [29184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/09/17 19:13:46 A . (.Microsoft Corporation - Virtual WiFi Filter Driver.) -- C:\WINDOWS\System32\drivers\vwififlt.sys [77824] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:13 A . (.Microsoft Corporation - Virtual WiFi Miniport Driver.) -- C:\WINDOWS\System32\drivers\vwifimp.sys [50688] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:53 A . (.Microsoft Corporation - Pilote de tablette Wacom à stylet série.) -- C:\WINDOWS\System32\drivers\wacompen.sys [31232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/10/17 15:32:40 A . (.Microsoft Corporation - MS Remote Access and Routing ARP Driver.) -- C:\WINDOWS\System32\drivers\wanarp.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/04/15 21:05:33 A . (.Microsoft Corporation - Watchdog Driver.) -- C:\WINDOWS\System32\drivers\watchdog.sys [74752] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/07/14 20:29:57 A . (.Microsoft Corporation - Windows Container Isolation FS Filter Drive.) -- C:\WINDOWS\System32\drivers\wcifs.sys [202568] =>.Microsoft® O58 - SDL:2021/03/13 18:38:06 A . (.Microsoft Corporation - Windows Container Name Virtualization FS Fi.) -- C:\WINDOWS\System32\drivers\wcnfs.sys [93184] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:15 A . (.Microsoft Corporation - Microsoft antimalware boot driver.) -- C:\WINDOWS\System32\drivers\WdBoot.sys [46688] =>.Microsoft® O58 - SDL:2021/08/17 18:53:31 A . (.Microsoft Corporation - Runtime de l’infrastructure de pilotes en m.) -- C:\WINDOWS\System32\drivers\Wdf01000.sys [827696] =>.Microsoft® O58 - SDL:2019/12/07 10:08:15 A . (.Microsoft Corporation - Microsoft antimalware file system filter dr.) -- C:\WINDOWS\System32\drivers\WdFilter.sys [350136] =>.Microsoft® O58 - SDL:2021/08/17 18:53:31 A . (.Microsoft Corporation - Kernel Mode Driver Framework Loader.) -- C:\WINDOWS\System32\drivers\WdfLdr.sys [59192] =>.Microsoft® O58 - SDL:2021/09/17 19:13:46 A . (.Microsoft Corporation - WDI Driver Framework Driver.) -- C:\WINDOWS\System32\drivers\WdiWiFi.sys [967168] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:39 A . (.Microsoft Corporation - WDM Companion Filter.) -- C:\WINDOWS\System32\drivers\WdmCompanionFilter.sys [23560] =>.Microsoft® O58 - SDL:2019/12/07 10:08:16 A . (.Microsoft Corporation - Windows Defender Network Stream Filter.) -- C:\WINDOWS\System32\drivers\WdNisDrv.sys [54200] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - Windows Error Reporting Kernel Driver.) -- C:\WINDOWS\System32\drivers\werkernel.sys [52024] =>.Microsoft® O58 - SDL:2021/10/15 09:21:31 A . (.Microsoft Corporation - WFP NDIS 6.30 Lightweight Filter Driver.) -- C:\WINDOWS\System32\drivers\wfplwfs.sys [180048] =>.Microsoft® O58 - SDL:2021/09/17 19:14:19 A . (.Microsoft Corporation - Wim file system Driver.) -- C:\WINDOWS\System32\drivers\wimmount.sys [39760] =>.Microsoft® O58 - SDL:2019/12/07 10:08:37 A . (.Microsoft Corporation - Windows Trusted Runtime Interface Driver.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [76984] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Windows Trusted Runtime Service Proxy Drive.) -- C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [18920] =>.Microsoft® O58 - SDL:2019/12/07 10:09:51 A . (.Microsoft Corporation - Windows Hypervisor Interface Driver.) -- C:\WINDOWS\System32\drivers\winhv.sys [32784] =>.Microsoft® O58 - SDL:2019/12/07 10:09:33 A . (.Microsoft Corporation - Windows Hypervisor Root Interface Driver.) -- C:\WINDOWS\System32\drivers\winhvr.sys [96056] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft® O58 - SDL:2021/10/15 09:21:16 A . (.Microsoft Corporation - Pilote NAT Windows.) -- C:\WINDOWS\System32\drivers\winnat.sys [266240] [Unsigned] =>.Microsoft Corporation O58 - SDL:2020/06/23 09:10:52 A . (.Microsoft Corporation - SetupPlatform NEO Mini-Filter.) -- C:\WINDOWS\System32\drivers\WinSetupBoot.sys [73016] =>.Microsoft® O58 - SDL:2019/12/07 10:07:56 A . (.Microsoft Corporation - Windows WinUSB Class Driver.) -- C:\WINDOWS\System32\drivers\winusb.sys [107008] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft® O58 - SDL:2019/12/07 10:07:54 A . (.Microsoft Corporation - Windows Management Interface for ACPI.) -- C:\WINDOWS\System32\drivers\wmiacpi.sys [19456] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - WMILIB WMI support library Dll.) -- C:\WINDOWS\System32\drivers\wmilib.sys [19472] =>.Microsoft® O58 - SDL:2021/04/15 21:05:45 A . (.Microsoft Corporation - Filtre de superposition Windows.) -- C:\WINDOWS\System32\drivers\wof.sys [234296] =>.Microsoft® O58 - SDL:2019/12/07 15:52:58 A . (.Microsoft Corporation - Windows Portable Device Upper Class Filter.) -- C:\WINDOWS\System32\drivers\WpdUpFltr.sys [32568] =>.Microsoft® O58 - SDL:2019/12/07 10:08:49 A . (.Microsoft Corporation - WPP Trace Recorder.) -- C:\WINDOWS\System32\drivers\WppRecorder.sys [43832] =>.Microsoft® O58 - SDL:2019/12/07 10:08:41 A . (.Microsoft Corporation - Couche IFS Winsock2.) -- C:\WINDOWS\System32\drivers\ws2ifsl.sys [25088] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFPf.sys [136192] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:58 A . (.Microsoft Corporation - Windows Driver Foundation - User-mode Drive.) -- C:\WINDOWS\System32\drivers\WUDFRd.sys [315392] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/13 18:37:53 A . (.Microsoft Corporation - Game Input Protocol Driver.) -- C:\WINDOWS\System32\drivers\xboxgip.sys [329216] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/03/13 18:37:53 A . (.Microsoft Corporation - XINPUT filter driver for HID.) -- C:\WINDOWS\System32\drivers\xinputhid.sys [51712] [Unsigned] =>.Microsoft Corporation O58 - SDL:2016/12/21 22:54:56 A . (...) -- C:\WINDOWS\System32\ambakdrv.sys [51120] =>.CHENGDU AOMEI Tech Co., Ltd.® O58 - SDL:2016/12/21 22:52:42 A . (...) -- C:\WINDOWS\System32\ammntdrv.sys [171952] =>.CHENGDU AOMEI Tech Co., Ltd.® O58 - SDL:2017/09/01 18:12:38 A . (...) -- C:\WINDOWS\System32\amwrtdrv.sys [38320] =>.CHENGDU AOMEI Tech Co., Ltd.® O58 - SDL:2019/11/08 09:15:04 A . (...) -- C:\WINDOWS\System32\pwdrvio.sys [19152] =>.MiniTool Solution Ltd® O58 - SDL:2019/11/08 09:15:04 A . (...) -- C:\WINDOWS\System32\pwdspio.sys [12504] =>.MiniTool Solution Ltd® O58 - SDL:2021/10/15 09:21:31 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\System32\win32k.sys [596992] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:28 A . (.Microsoft Corporation - Pilote du noyau Base Win32k.) -- C:\WINDOWS\System32\win32kbase.sys [2891776] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:31 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\System32\win32kfull.sys [3818496] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 10:08:34 A . (.Microsoft Corporation - Win32k non session driver.) -- C:\WINDOWS\System32\win32kns.sys [30208] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:48 A . (.Microsoft Corporation - Multi-User Win32 Driver.) -- C:\WINDOWS\SysWOW64\win32k.sys [329728] [Unsigned] =>.Microsoft Corporation O58 - SDL:2021/10/15 09:21:48 A . (.Microsoft Corporation - Full/Desktop Win32k Kernel Driver.) -- C:\WINDOWS\SysWOW64\win32kfull.sys [2756096] [Unsigned] =>.Microsoft Corporation ---\\ ASSOCIATION Shell Spawning (10) - 0s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value ---\\ MENU DE DÉMARRAGE INTERNET (16) - 1s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (3) - 6s O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKCU] [64Bits]{0AA24E16-07B3-4694-8357-3C21ACC5F516} - (Yahoo!) - http://fr.search.yahoo.com/ =>.Yahoo! Inc. O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} [DefaultScope] - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com ---\\ ÉNUMÈRE LES SERVICES DÉMARRÉS PAR Svchost (49) - 2s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [196608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [304640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1343488] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1051136] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836096] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [160256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [814592] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [487936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [515072] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [127488] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2438144] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [281088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [487936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [302080] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1270272] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1019904] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [815104] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1485312] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [309760] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2242048] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1526784] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [971776] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [565248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [619008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3406848] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [259584] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [939984] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [220160] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [569856] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049088] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [288256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [555008] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES EXCEPTIONS PAREFEU WINDOWS (447) - 24s O87 - FAEL: "UDP Query User{08F8584A-9BE8-4838-874D-103FB5AF85F7}C:\xampp\mysql\bin\mysqld.exe" [In-None-P17-TRUE] .(...) -- C:\xampp\mysql\bin\mysqld.exe [Unsigned] (.not file.) =>.Legitimate O87 - FAEL: "TCP Query User{C9AFE3F8-FC65-4F0A-B3DB-BFF4FA31EA5E}C:\xampp\mysql\bin\mysqld.exe" [In-None-P6-TRUE] .(...) -- C:\xampp\mysql\bin\mysqld.exe [Unsigned] (.not file.) =>.Legitimate O87 - FAEL: "UDP Query User{CD6868B9-4975-4827-AADF-5BD6DA53835C}C:\xampp\apache\bin\httpd.exe" [In-None-P17-TRUE] .(...) -- C:\xampp\apache\bin\httpd.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "TCP Query User{DE64A100-AF8A-46EF-8774-13926787BA7A}C:\xampp\apache\bin\httpd.exe" [In-None-P6-TRUE] .(...) -- C:\xampp\apache\bin\httpd.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "UDP Query User{5308791F-BD6B-49C6-B175-5AE7771CEAF6}C:\program files (x86)\wondershare\mobilego\mobilego.exe" [In-None-P17-TRUE] .(.Wondershare - Wondershare MobileGo.) -- C:\program files (x86)\wondershare\mobilego\mobilego.exe =>.Wondershare Technology Co.,Ltd® O87 - FAEL: "TCP Query User{2B538E7C-C701-40E9-8D63-5A6B6B1E90CD}C:\program files (x86)\wondershare\mobilego\mobilego.exe" [In-None-P6-TRUE] .(.Wondershare - Wondershare MobileGo.) -- C:\program files (x86)\wondershare\mobilego\mobilego.exe =>.Wondershare Technology Co.,Ltd® O87 - FAEL: "{F86BE61A-DE78-4B8F-9E3D-A12B7E4A5A23}" [In-None-P6-TRUE] .(.SecureMix LLC - GlassWire Control Service.) -- C:\Program Files (x86)\GlassWire\GWCtlSrv.exe {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC O87 - FAEL: "{871DEBDD-C9AE-43F6-B3C7-34C8BAAF838A}" [Out-None-P6-TRUE] .(.SecureMix LLC - GlassWire Control Service.) -- C:\Program Files (x86)\GlassWire\GWCtlSrv.exe {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC O87 - FAEL: "TCP Query User{3D725AFD-C4F7-46F8-8448-772B11C811D2}C:\program files (x86)\adsltv\adsltv.exe" [In-None-P6-TRUE] .(.adsl TV / FM - adsl TV.) -- C:\program files (x86)\adsltv\adsltv.exe [Unsigned] =>.adsl TV / FM O87 - FAEL: "UDP Query User{A95AFED0-3298-4382-B455-361DBA0F25E6}C:\program files (x86)\adsltv\adsltv.exe" [In-None-P17-TRUE] .(.adsl TV / FM - adsl TV.) -- C:\program files (x86)\adsltv\adsltv.exe [Unsigned] =>.adsl TV / FM O87 - FAEL: "TCP Query User{EE203B7D-315E-40BB-98B3-5C04FDAC060B}C:\program files (x86)\wondershare\mobilego\mobilegoservice.exe" [In-None-P6-TRUE] .(.Wondershare - MobileGoService.) -- C:\program files (x86)\wondershare\mobilego\mobilegoservice.exe =>.Wondershare Technology Co.,Ltd® O87 - FAEL: "UDP Query User{E59428A2-019B-4A5B-ADBC-36143BBDB28D}C:\program files (x86)\wondershare\mobilego\mobilegoservice.exe" [In-None-P17-TRUE] .(.Wondershare - MobileGoService.) -- C:\program files (x86)\wondershare\mobilego\mobilegoservice.exe =>.Wondershare Technology Co.,Ltd® O87 - FAEL: "{6334DCAC-8A6E-4D0B-A721-4A81601C8671}" [Out-None-P17-TRUE] .(.NCH Software - VideoPad - Logiciel de montage vidéo.) -- C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe =>.NCH Software, Inc.® O87 - FAEL: "{E33BFC79-590C-4CB6-B0CA-FC429318DC93}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-mmcq1.tmp\shotcut-win64-200412_nhjco-1.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{677C1EE2-6848-4452-8503-029AAAB3A126}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\softwareupdater\avira.softwareupdater.servicehost.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{53FBC554-7162-4B3F-A004-31B846DE3BCD}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\panaustik\panaustik.exe [Unsigned] O87 - FAEL: "{439F9AC9-28BF-41A7-A757-B698C20557A1}" [In-None-P17-TRUE] .(.Rellik Software - EXIF Date Changer.) -- c:\program files (x86)\exif date changer\exifdatechanger.exe [Unsigned] =>.Rellik Software O87 - FAEL: "{246CA76C-D5D1-4049-8539-0B103AE5EB36}" [In-None-P17-TRUE] .(...) -- d:\temp\keyscrambler_setup.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{69583815-97F7-41C7-B252-2109775196A3}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{af5aa672-c365-49ad-ba94-3ada280d29f2}\.cr\avira_fr_vpnb0_37ed2507ffc53f3d__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{B550B1BC-6476-4ECB-9F42-990274A3D349}" [In-None-P17-TRUE] .(.SecureMix LLC - GlassWire Control Service.) -- c:\program files (x86)\glasswire\gwctlsrv.exe {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC O87 - FAEL: "{4CF90D9A-EC2E-437D-917A-AC0451CF721F}" [In-None-P17-TRUE] .(...) -- c:\programmes-bis\revouninstaller_portable\x86\revoun.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{45F49F2F-81F6-4E88-8FE8-ACE79AD0762D}" [In-None-P17-TRUE] .(.Malwarebytes - Malwarebytes Tray Application.) -- c:\program files\malwarebytes\anti-malware\mbamtray.exe =>.Malwarebytes Inc® O87 - FAEL: "{EA6BF152-1D08-4EE0-8A99-253092161559}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.xboxgamingoverlay_5.320.6242.0_x64__8wekyb3d8bbwe\gamebar.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{99A59A8D-D395-4C08-8D07-43D5ECA65456}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{13e1fc29-0440-450a-91ae-0342804348a3}\.cr\avira_fr_asu80_8a924723a971cc07__psspdwws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{34EC9BDB-2753-4851-A865-3F0E6BE114C8}" [In-None-P17-TRUE] .(.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 21.7.) -- c:\program files (x86)\adobe\acrobat reader dc\reader\adobecollabsync.exe =>.Adobe Inc.® O87 - FAEL: "{1A5E232A-A5A6-4ECF-A4AA-277A326C282C}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-hp9tc.tmp\klcp_update_1624_20210605.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{5F3967F9-353F-48F7-AC36-B7CCE7681495}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.zunevideo_10.21021.10311.0_x64__8wekyb3d8bbwe\video.ui.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{7F993EAF-4DE5-40F9-922C-6DDFE0381785}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\openelement\openelement 1.57 r9\openelement.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B4846E28-4A56-4512-9FC7-26AA321EDC40}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-kqla5.tmp\klcp_update_1608_20210313.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{CCC7879F-8E0B-4E31-A38F-1D93B53EE665}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-sgi0h.tmp\k-lite_codec_pack_1615_full.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{606DAF69-98B9-4E59-9462-EF16EDB494DA}" [In-None-P17-TRUE] .(...) -- d:\temp\tera-copy3.8.4.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{1DE5CD39-FAC6-4965-8150-A8561626B7E4}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\launcher\avira.systray.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{9BE2983D-11CD-4E42-AA1A-72C3F7F48491}" [In-None-P17-TRUE] .(.Piriform - Piriform CCleaner emergency updater.) -- c:\program files\ccleaner\ccupdate.exe =>.Piriform Software Ltd® O87 - FAEL: "{91908ADF-55C3-47C2-BAE8-710DB620EBAE}" [In-None-P17-TRUE] .(...) -- d:\temp\itnconv.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{75E3B331-15EA-442B-A44F-8EA93E022660}" [In-None-P17-TRUE] .(.Google LLC - Programme d'installation de Google.) -- c:\program files (x86)\google\update\googleupdate.exe =>.Google Inc® O87 - FAEL: "{736E68C2-EE0B-4434-9200-4025AED775CC}" [In-None-P17-TRUE] .(.KC Softwares - SUMo.) -- c:\program files (x86)\kc softwares\sumo\sumo.exe =>.KC SOFTWARES SASU® O87 - FAEL: "{FE59FE5F-4289-4D1E-A483-3B9A0B049926}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-auu2c.tmp\k-lite_codec_pack_1595_full.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{2903CDE0-9316-4DE5-9AE7-F6E0DBB52791}" [In-None-P17-TRUE] .(.NCH Software - WavePad - Éditeur audio.) -- c:\program files (x86)\nch software\wavepad\wavepad.exe =>.NCH Software, Inc.® O87 - FAEL: "{B4822A82-B82B-4AF0-8716-86A55DE72BE2}" [In-None-P17-TRUE] .(...) -- d:\temp\sus\sus.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{9F29D589-7DBE-48B8-B3A8-8952403CE8A5}" [In-None-P17-TRUE] .(.Code Sector - updater 3.8.5.) -- c:\program files\teracopy\updater.exe {60D8E4C1C16589BC9C5BB9B543A1D659}. =>.Code Sector O87 - FAEL: "{B6996289-AE55-4F7C-9923-F0EF9182E99C}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\security\avira.spotlight.ui.application.messaging.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{4BF3234B-32A9-4E45-8E81-514ABCD28F81}" [In-None-P17-TRUE] .(...) -- f:\disk drill\dd.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{A621963E-33F1-4B43-A5B1-5FB1B52F3106}" [In-None-P17-TRUE] .(.Piriform Software Ltd - Recuva.) -- c:\program files\recuva\recuva64.exe =>.Piriform Software Ltd® O87 - FAEL: "{FE51766F-E8A0-4DDA-8577-0457E6F33C4C}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\system speedup\avira.optimizer.common.updater.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{E3E19502-C4EC-4121-8403-E94FF613287A}" [In-None-P17-TRUE] .(.Microsoft(R) Corporation - Microsoft Money.) -- c:\program files (x86)\microsoft money 2005\mnycorefiles\msmoney.exe =>.Microsoft Corporation® O87 - FAEL: "{8BBCBFAC-ACA8-441F-BD26-3BFAB8EAC0B8}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-rgesu.tmp\klcp_update_1607_20210306.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{0058A27A-0923-46FC-B4EC-8F025BAD19A1}" [In-None-P17-TRUE] .(...) -- d:\temp\filezilla_3.52.0.3_win64_sponsored-setup.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D1D640A3-5EFE-483C-BE32-1DE01ED8B10D}" [In-None-P17-TRUE] .(...) -- d:\bureau-bis\1-podcast\napoléon\kaspersky security cloud free 4.021.3.10.391fr_24936.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{058A13F2-5305-48F1-9185-D77A16F3CF7A}" [In-None-P17-TRUE] .(...) -- d:\sauvegardes\keepassxc portable pour màj pc linux\keepassxc-2.6.4-win64\keepassxc.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F7928FE5-73D6-4C46-AAF2-F53B5D998317}" [In-None-P17-TRUE] .(.NCH Software - VideoPad - Logiciel de montage vidéo.) -- c:\program files (x86)\nch software\videopad\videopad.exe =>.NCH Software, Inc.® O87 - FAEL: "{2E60C717-C61C-4189-82E3-EF5CE8A970D7}" [In-None-P17-TRUE] .(...) -- c:\programmes-bis\winlaunch\winlaunch.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{191F05FF-78DA-43D0-BACB-2CAE04327E89}" [In-None-P17-TRUE] .(...) -- c:\programmes-bis\clover\clover.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{98A64CA9-B773-482B-8FB9-B24B3BB4A923}" [In-None-P17-TRUE] .(.Marek Jasinski - FreeCommander - freeware file manager for W.) -- c:\program files (x86)\freecommander xe\freecommander.exe =>.Marek Jasinski® O87 - FAEL: "{B0B234FE-F97A-4844-903D-F1BF5419C1DF}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-osi0j.tmp\k-lite_codec_pack_1612_full.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{8D68C644-7DCC-467E-AAEC-96EF1471BBEF}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-hc6vh.tmp\klcp_update_1603_20210215.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{89BE1794-1FB9-42C7-A2D8-13E677A94E7B}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-67qsn.tmp\klcp_update_1599_20210125.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{E343F130-2E5C-4817-827B-97C105C37E96}" [In-None-P17-TRUE] .(...) -- d:\temp\ccsetup578.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F0DF5EC5-C586-47BA-82EB-5A959C30BB65}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\mozilla maintenance service\update\updater.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D436216A-5FBC-43A4-A52C-30A1940D2D65}" [In-None-P17-TRUE] .(...) -- z:\applications\ccleaner\ccleaner64.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{EE635C97-1DE7-49B6-B24E-8C412915EE5F}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-7hrk1.tmp\klcp_update_1609_20210319.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{C3543FEC-2F59-4CE3-B666-F5CCF0FAC0A7}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.windowscommunicationsapps_16005.13110.41006.0_x64__8wekyb3d8bbwe\commsapps.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{BA560244-ABEB-42D8-8D96-8031210DE6E6}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-nli12.tmp\klcp_update_1611_20210330.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{369E8F7B-99D8-4DF6-BF64-5F56B9FB2DA5}" [In-None-P17-TRUE] .(.Mozilla Foundation - KompoZer.) -- c:\program files (x86)\kompozer\kompozer.exe [Unsigned] =>.Mozilla Foundation O87 - FAEL: "{B79948E7-DEC5-4777-B292-CDBBCE4BDD66}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.microsoftofficehub_18.2008.12711.0_x64__8wekyb3d8bbwe\localbridge.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{71BFC9FF-6A6D-486E-B135-FE69F6A9730E}" [In-None-P17-TRUE] .(.EJIE Technology - Clover.) -- c:\program files (x86)\clover\clover.exe [Unsigned] =>.EJIE Technology O87 - FAEL: "{177C3360-A6AB-4E10-9DB3-65417ECEEFC7}" [In-None-P17-TRUE] .(...) -- d:\temp\recuva64.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{3EEF554D-C07C-43F9-8473-6860EDC0C332}" [In-None-P17-TRUE] .(...) -- d:\temp\ccsetup579.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D8F9F687-8BD4-4B3F-B8B4-108E4D08DF18}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{cea8797b-61e1-4a71-8c5c-10af76cfb76c}\.cr\avira_fr_vpnb0_662665754-1611418579__pvpnwws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{AF83A18D-FA17-4E1B-B192-D0528DF0EEF7}" [In-None-P17-TRUE] .(...) -- c:\windows\temp\{10403395-ff5f-462b-9a7e-4249e2314d9c}\.cr\avira.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{1FC18B0E-7D2C-4B2D-9398-46C138E15506}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.zunevideo_10.21061.10121.0_x64__8wekyb3d8bbwe\video.ui.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{8F48D3B5-789D-4643-BCEE-25AC88692F85}" [In-None-P17-TRUE] .(...) -- f:\renemachin\undeleter\reneeupdater.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{04CFA9D8-F6B4-485C-83D1-A6196ECF9EC9}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\awesome duplicate photo finder\awesomephotofinder.exe [Unsigned] O87 - FAEL: "{73718A7C-FAA4-4500-B6C5-0F82EE6B9B77}" [In-None-P17-TRUE] .(...) -- c:\windows\temp\{582d5f00-da47-4d29-9d4d-72795e6d8fdc}\.cr\avira_fr__945312284-1609873270__adwg-spotlight-default.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{801F4640-4703-46FD-A6F3-5A8E2F914C53}" [In-None-P17-TRUE] .(...) -- d:\divers vidéos musiques téléphone et autres\ordi\logiciels\tor browser\browser\torbrowser\tor\tor.exe [Unsigned] O87 - FAEL: "{75492B99-A229-425D-8428-DABBACD0E4FB}" [In-None-P17-TRUE] .(.Wondershare - Wondershare MobileGo.) -- c:\program files (x86)\wondershare\mobilego\mobilego.exe =>.Wondershare Technology Co.,Ltd® O87 - FAEL: "{4B348DD9-E950-4798-8174-C8E9E94D7CC3}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\keepass-2\keepass.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{E4DEB10D-9C39-4B3E-9928-7846881F7DCC}" [In-None-P17-TRUE] .(...) -- z:\00-images mail af\winlaunch\winlaunch.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D619A6CD-9330-49AD-B161-03BC3F57AF9A}" [In-None-P17-TRUE] .(.Malwarebytes - Malwarebytes Installer Service.) -- c:\program files\malwarebytes\anti-malware\mbaminstallerservice.exe =>.Malwarebytes Inc® O87 - FAEL: "{E49F8AFF-007E-41F9-B162-CB07AC441134}" [In-None-P17-TRUE] .(...) -- d:\temp\windows-iso-downloader.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{57966DFB-1B0D-48F3-87C7-518F9775CB56}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{8d0b9bbe-49ae-4657-9b49-4f797117b677}\.cr\avira_en_vpnb0_581842896-1615577266__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{106B22DD-9287-4651-BDD8-1DED1179454A}" [In-None-P17-TRUE] .(...) -- c:\programmes-bis\gmail-notifier-plus-3.8\gmail notifier plus.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F314A8BC-943C-4491-A007-AEADE1953D25}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-6usne.tmp\k-lite_codec_pack_1630_basic.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{C9D18BD7-6866-4510-8F6F-9B717780578E}" [In-None-P17-TRUE] .(.FSL - FreeSoftLand - FLS Launcher.) -- c:\program files (x86)\fsl\fsl_launcher\fsl_launcher.exe [Unsigned] =>.FSL - FreeSoftLand O87 - FAEL: "{29FD9C51-BE72-47CC-9708-FA335A930967}" [In-None-P17-TRUE] .(.Apache Software Foundation - OpenOffice 4.1.11.) -- c:\program files (x86)\openoffice 4\program\soffice.bin [Unsigned] =>.Apache Software Foundation O87 - FAEL: "{C79C21C9-F09F-40C5-9DFA-7F53C2F62EA9}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.windowscommunicationsapps_16005.13110.41006.0_x64__8wekyb3d8bbwe\hxtsr.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{9571DF39-D3FE-4B27-9174-72FC51BFEB85}" [In-None-P17-TRUE] .(.Florian Heidenreich - Mp3tag - the universal Tag editor.) -- c:\program files (x86)\mp3tag\mp3tag.exe {00EC8E4DA09CB58945354F7464BC20C229}. =>.Florian Heidenreich O87 - FAEL: "{A2956553-C522-4DA5-B87C-E547D8BE4CCF}" [In-None-P17-TRUE] .(.Piriform Software Ltd - CCleaner.) -- c:\program files\ccleaner\ccleaner64.exe =>.Piriform Software Ltd® O87 - FAEL: "{982C36D9-1ED7-4463-9771-1BC40E10264D}" [In-None-P17-TRUE] .(...) -- d:\temp\rcsetup153.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{4EADF6F5-7CB9-4C95-95BE-E02C8C7FF0AE}" [In-None-P17-TRUE] .(...) -- d:\temp\keepass-2.47\keepass.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{A1A75A91-5179-4725-8176-65AD40645200}" [In-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate582_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B4415AB4-1639-413E-9340-132DEB840333}" [In-None-P17-TRUE] .(.VS Revo Group - Revo Uninstaller.) -- c:\program files\vs revo group\revo uninstaller\revounin.exe =>.VS Revo Group Ltd.® O87 - FAEL: "{528C3BCA-8D9E-4714-A673-84CA4FBA0DED}" [In-None-P17-TRUE] .(.AO Kaspersky Lab - Kaspersky Lab launcher.) -- c:\program files (x86)\kaspersky lab\kaspersky security cloud 21.3\avp.exe =>.Kaspersky Lab JSC® O87 - FAEL: "{5FAD832D-C79E-4687-BCC8-6F8F467B6F6D}" [In-None-P17-TRUE] .(.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe =>.Adobe Inc.® O87 - FAEL: "{1C75A343-9354-4BC7-9B5A-937886F2BED6}" [In-None-P17-TRUE] .(...) -- d:\temp\sdc\smart disk checker.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{2BE8B720-A31A-49C8-839E-081C06B942D2}" [In-None-P17-TRUE] .(.FileZilla Project - SFTP module for FileZilla based on PuTTY's.) -- c:\program files\filezilla ftp client\fzsftp.exe =>.Tim Kosse® O87 - FAEL: "{93C19D52-053B-4EF2-B7AC-97DA823F8E4C}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-0s0qn.tmp\klcp_update_1598_20210113.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{11B7BA1F-F6E5-4149-8251-D102961FE13D}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\security\avira.spotlight.service.worker.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{8678E50B-5CBB-4BE8-B4E8-CCCB220E18B1}" [In-None-P17-TRUE] .(...) -- c:\programdata\avira\antivirus\temp\selfupdate\update.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{1F5177D4-B922-4C4B-B6F5-0DAA51FCF7DB}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.bingnews_4.54.22741.0_x64__8wekyb3d8bbwe\microsoft.msn.news.exe [Unsigned] O87 - FAEL: "{51750A13-6729-4BEA-91B7-2A95DB3382FD}" [In-None-P17-TRUE] .(...) -- d:\temp\recuva_1.50_7549.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{AB496FCB-5368-4D33-9952-C0BC942283E3}" [In-None-P17-TRUE] .(.AO Kaspersky Lab - Kaspersky Lab launcher.) -- c:\program files (x86)\kaspersky lab\kaspersky vpn 5.3\ksde.exe =>.Kaspersky Lab JSC® O87 - FAEL: "{41771494-7E24-49AC-9538-19336AACB79A}" [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- c:\program files\videolan\vlc\vlc.exe =>.VideoLAN® O87 - FAEL: "{FE2BED98-C6E9-41A6-BCE8-EC1ADAD07EB0}" [In-None-P17-TRUE] .(.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) -- c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32.exe =>.Adobe Inc.® O87 - FAEL: "{F443BB38-B7F9-4FCB-96F6-229031EFFFD0}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-1ago4.tmp\k-lite-codec-pack-full-16-2-0.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{A8DE4538-881D-4639-AF64-BA86B151F291}" [In-None-P17-TRUE] .(...) -- d:\temp\rufus-3.14p.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D3324D1F-69A8-4C5C-B4AB-59A4C0067605}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\antivirus\avscan.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{977F777D-EDDF-47EB-83A9-4CFEDE9349B6}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{448062cf-38b6-460a-8e64-acbc8006aefb}\.cr\avira_fr_asu80_8a924723a971cc07__psspdwws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{874E649A-DDE1-42B0-B280-4C9D63F36416}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-jhjnc.tmp\k-lite_codec_pack_1605_full.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{0345FFD7-C360-4352-932E-33213E647DC9}" [In-None-P17-TRUE] .(...) -- c:\windows\temp\is-e1r22.tmp\avira_speedup_setup_update.tmp [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{4EAF98A9-01B7-47B3-878F-7AF60DBD01CC}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\security\avira.spotlight.service.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{357B277B-F1CD-49BA-A200-69D5540DBD2A}" [In-None-P17-TRUE] .(...) -- d:\temp\winlaunch.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{649C5DC3-0043-4B4A-94C9-3A730A66F8A8}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\pchealthcheck\pchealthcheck.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F263D975-F537-4939-8237-4688A846422F}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\security\avira.spotlight.ui.application.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{ECCD7275-8610-4246-BF2D-2DB97EB4DD59}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-qt2cm.tmp\klcp_update_1606_20210301.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{ED0C2A79-B510-4D38-A367-DA1771FE5018}" [In-None-P17-TRUE] .(.adsl TV / FM - adsl TV.) -- c:\program files (x86)\adsltv\adsltv.exe [Unsigned] =>.adsl TV / FM O87 - FAEL: "{5A7C6000-0043-49DA-94D3-D93572694C06}" [In-None-P17-TRUE] .(...) -- d:\temp\klitecodecpackfull_inst.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{88E5D519-FABB-41DB-8DE6-A73E65E89257}" [In-None-P17-TRUE] .(.Malwarebytes - Malwarebytes.) -- c:\program files\malwarebytes\anti-malware\mbam.exe =>.Malwarebytes Inc® O87 - FAEL: "{B3182DD9-0F32-46D7-823F-058F03F5EC21}" [In-None-P17-TRUE] .(.Code Sector - TeraCopy Installer.) -- c:\programdata\code sector\teracopy\updates\update\teracopy3.8.5.exe {60D8E4C1C16589BC9C5BB9B543A1D659}. =>.Code Sector O87 - FAEL: "{2544FEE9-83D6-4A2B-9655-879E06223E87}" [In-None-P17-TRUE] .(...) -- d:\temp\setup.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{06C0CB4E-4944-4FA0-A752-9D6C7C0D4AD3}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\optimizer host\avira.optimizerhost.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{FF464E82-DBB5-4B27-890C-4C752A69250E}" [In-None-P17-TRUE] .(...) -- f:\displayfusion\displayfusion\displayfusion.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{1196D400-33BD-42BF-9427-0060DB92B8FF}" [In-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate576_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{220A4637-B47C-444C-A402-4CCFBC3B128D}" [In-None-P17-TRUE] .(...) -- c:\programdata\package cache\{21098ed5-59e9-4203-b79e-63f3c373e022}\avira.oe.setup.bundle.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{5D9C58BD-ACC8-4CB7-8CF0-AA9E2E88CCAD}" [In-None-P17-TRUE] .(.Bitdefender LLC - Bitdefender Anti Ransomware.) -- c:\program files\bitdefender\tools\bdantiransomware\bdantiransomware.exe [Unsigned] =>.BitDefender LLC O87 - FAEL: "{9ACC6839-D6E3-4716-AA93-87178068ADD7}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\d8c927966343e5fd6d2627f7999b82c9\updater.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{0C5E5145-7B48-42FB-B00D-7CC7F44C4535}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-s8hbq.tmp\klcp_update_1614_20210422.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{BFDABF54-7BF1-4436-9752-45CAE4E1ABAF}" [In-None-P17-TRUE] .(...) -- d:\sauvegardes\keepassxc portable pour màj pc linux\keepassxc\keepassxc.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{16346B7A-3135-4E11-B3A0-60D2F25A8AED}" [In-None-P17-TRUE] .(.Malwarebytes - Malwarebytes Setup.) -- c:\programdata\malwarebytes\mbamservice\instlrupdate\mbsetup.exe =>.Malwarebytes Inc® O87 - FAEL: "{CCA0ECE6-2C2B-49A3-9EBF-AD137246CC0D}" [In-None-P17-TRUE] .(...) -- d:\temp\music collection\music collection.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{C893F747-78A4-45D4-B75A-0A9B84060420}" [In-None-P17-TRUE] .(...) -- c:\program files\winlaunch\winlaunch.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B48215C3-7663-4C65-B75A-465FF47267E6}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{4c473746-bc8b-4378-bf03-25e3d5491a5a}\.cr\avira_fr_vpnb0_701031175-1616352183__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{21599721-50F6-4175-B8FC-1EC69B0A6B8D}" [In-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- c:\program files (x86)\adsltv\vlc\vlc.exe =>.VideoLAN® O87 - FAEL: "{4E340F8B-0ECF-41AD-A7A7-7DC70091793B}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-lpk21.tmp\k-litecodecpackfull.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{4CAAABF8-E424-4674-A175-130481F362DC}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\remo drive wipe\rsupdate.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{62BA969A-D3B7-43CC-A5CA-D24571DD3C8E}" [In-None-P17-TRUE] .(.QFX Software Corporation - KeyScrambler.) -- c:\program files (x86)\keyscrambler\keyscrambler.exe {7AF1E5B8826150A78A17269C}. =>.QFX Software Corporation O87 - FAEL: "{CE67C053-78C4-4F86-9C93-5B04305AA929}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\_iu14d2n.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{C0E85FC5-AD77-42B6-BAEC-5B892AB4F1FD}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{1ae55042-3276-4577-86e7-b2507a34fbd8}\.cr\avira_en_vpnb0_581842896-1615577266__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{8C4344A0-1131-48B2-8A33-0F9F2804DFA2}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.microsoftofficehub_18.2006.1031.0_x64__8wekyb3d8bbwe\localbridge.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{7274E8A6-4417-4474-8E4F-79427566BF3A}" [In-None-P17-TRUE] .(.Don HO don.h@free.fr - WinGup for Notepad++.) -- c:\program files\notepad++\updater\gup.exe =>.Notepad++® O87 - FAEL: "{0DB5F5AD-E5E3-4AA4-A581-A8B0E7494917}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.microsoftofficehub_18.2104.12721.0_x64__8wekyb3d8bbwe\localbridge.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{3B0E879E-D063-48AA-B945-E76EDDE395DB}" [In-None-P17-TRUE] .(.XnView, http://www.xnview.com - XnView MP.) -- c:\program files\xnviewmp\xnviewmp.exe =>.Pierre GOUGELET® O87 - FAEL: "{C498A45A-03DF-4256-9C24-4F62DEB938C4}" [In-None-P17-TRUE] .(...) -- d:\temp\filezilla_3.52.0.1_win64_sponsored-setup.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{420C6AFC-11C2-47C2-A01E-298D2A5FEE3E}" [In-None-P17-TRUE] .(.Wondershare - MGNotification.) -- c:\program files (x86)\wondershare\mobilego\mgnotification.exe =>.Wondershare Technology Co.,Ltd® O87 - FAEL: "{F951BBFB-0083-42B7-A149-D0F1924C9C28}" [In-None-P17-TRUE] .(...) -- d:\temp\winlaunch\update.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B5D94ABB-B083-4425-AEDF-4EC9EB33435E}" [In-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate578_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{0EB113C0-CAEB-40C7-BA99-7C9594215111}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\antivirus\avguard.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{502AE5D3-BFD2-48E1-AF2D-CAFEA5FBF0BC}" [In-None-P17-TRUE] .(.F.J. Wechselberger - MyPhoneExplorer.) -- c:\program files (x86)\myphoneexplorer\myphoneexplorer.exe {6FF2E7A4F05C1FF61B6F5F65}. =>.F.J. Wechselberger O87 - FAEL: "{AF236AC8-979B-40E3-A4A8-C616C2FE1F2F}" [In-None-P17-TRUE] .(.Wondershare - MobileGoService.) -- c:\program files (x86)\wondershare\mobilego\mobilegoservice.exe =>.Wondershare Technology Co.,Ltd® O87 - FAEL: "{073ABD50-1849-4560-93C5-51DD3ACF2780}" [In-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate581_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D063F375-6D50-4A31-96EC-A9250F3E8C5D}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\ping identity\pingid\pingid.exe {08003F32D18BC8A127E2C6EEE8091217}. O87 - FAEL: "{D6C6C8A3-F4E0-480C-BAE1-716136CD446C}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.xboxgamingoverlay_5.621.4222.0_x64__8wekyb3d8bbwe\gamebar.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{7B0CEE96-5D5E-431E-89F8-74961EB4AD4E}" [In-None-P17-TRUE] .(.2020-2021 - Smart Disk Checker.) -- c:\programmes-bis\sdc etat hdd\smart disk checker.exe {0097BE2CDB2A3C25F5}. O87 - FAEL: "{9940A0B7-461E-47F3-9E8D-697DEBA7B779}" [In-None-P17-TRUE] .(.Benichou Software - Itinerary Converter & Planner.) -- c:\program files (x86)\itnconverter\itnconv.exe [Unsigned] =>.Benichou Software O87 - FAEL: "{8B7DFB44-1678-4D65-A96C-345E943009D1}" [In-None-P17-TRUE] .(.Malwarebytes - Malwarebytes Service.) -- c:\program files\malwarebytes\anti-malware\mbamservice.exe =>.Malwarebytes Inc® O87 - FAEL: "{D70C83EF-CDB0-4DD9-8FF9-14F0E759187D}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\cleverfiles\disk drill\dd.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{C35A949C-F4E6-4D33-832A-06FE6A61506F}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.zunevideo_10.20032.16211.0_x64__8wekyb3d8bbwe\video.ui.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{42AA6ABF-962F-4C21-A652-DFC59A9548F9}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\common files\adobe\arm\1.0\temp\241581991\adobearmhelper.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{1A27F567-5459-4FB8-9583-76B1EEB2BEAA}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\namebench.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{B5438175-4BC9-4F4A-B9AE-FA63BCA50BD5}" [In-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate577_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{48FAF7BC-A36D-4E4D-B28E-801CFDE98F48}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\vpn\avira.webapphost.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{E40D104E-ADC2-4634-A793-210E53B661B6}" [In-None-P17-TRUE] .(.Adobe Inc. - Adobe Acrobat Update Service.) -- c:\program files (x86)\common files\adobe\arm\1.0\armsvc.exe =>.Adobe Inc.® O87 - FAEL: "{FD70912B-CE1F-46AE-A166-C259A34292AE}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{39230d92-8d42-4fa2-8f9f-940099000131}\.cr\avira_fr_vpnb0_8e79bd7d26571f47__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{24D6B105-A9C5-4920-9543-9E27F72DA752}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\.cr.25641\avira.spotlight.bootstrapper.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{7E0142FA-AAAC-45D8-AA70-27E576A64817}" [In-None-P17-TRUE] .(.Dominik Reichl - KeePass.) -- c:\program files\keepass password safe 2\keepass.exe {5042C501F1F0BA29E38E1F71621966C9}. =>.Dominik Reichl O87 - FAEL: "{69522C38-CA4D-46EB-94F8-B9323B925BDA}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\xnview\xnview.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{430E9A28-77AE-419B-A3CA-1BCBEFFD526B}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\antivirus\update.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F76C9918-BB10-406F-9A3D-AC23156BC8E3}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\notepad++\updater\gup.exe [Unsigned] =>.Don HO don.h@free.fr O87 - FAEL: "{069B8AB8-BC27-4BC2-9304-92D6903123AD}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{0e221cc3-3a19-4d9e-b3bd-9cb8e3203fd6}\.cr\avira_fr_asu80_8e79bd7d26571f47__poptws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{ABFDFF93-1D64-473A-B5B9-6ADCD3D3C5FC}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.windowsmaps_10.2005.1.0_x64__8wekyb3d8bbwe\maps.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{20BB2D65-CC1A-4C26-8979-BD9784113B21}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- c:\program files (x86)\google\chrome\application\chrome.exe =>.Google LLC® O87 - FAEL: "{19637D56-A797-48B1-997B-304D1883DF4F}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\homedev\patchcleaner\patchcleaner.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{8E6821E6-17C5-426C-BA56-8D644AF741E5}" [In-None-P17-TRUE] .(...) -- d:\temp\gmail-notifier-plus-3.8\gmail notifier plus.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D161A30C-E362-4FFC-93D3-6DB4D62BFB09}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-johur.tmp\klcp_update_1616_20210511.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{CDCF4EB3-1AB6-4B94-8F85-F2ECAC3DFE9A}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-0iquv.tmp\klcp_update_1623_20210530.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{0F7F2574-ED91-4CAF-9ED5-BCE35C9099BF}" [In-None-P17-TRUE] .(.FileZilla Project - FileZilla FTP Client.) -- c:\program files\filezilla ftp client\filezilla.exe =>.Tim Kosse® O87 - FAEL: "{BAC39104-B6C1-411B-9889-0468D8DF4E7B}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\keepass password safe\keepass.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{2FE5C3C2-43FE-4D96-B320-0316123E1356}" [In-None-P17-TRUE] .(.Adobe Systems Incorporated - Adobe RdrCEF.) -- c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\rdrcef.exe =>.Adobe Inc.® O87 - FAEL: "{347A912F-1BCB-4DBB-B229-CE8CB1B4EE97}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{fd7b9526-caac-4c3d-bb65-311740fa7a06}\.cr\avira_en_vpnb0_581842896-1615577266__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{1AF36209-CDA9-4CCD-BF46-02A13D6C5B35}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\launcher\avira.servicehost.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{251035DC-6A47-44C0-BD8E-11B10EA6A9BD}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\virustotaluploader2\virustotaluploader2.2.exe [Unsigned] O87 - FAEL: "{9637249C-18FA-4584-9D47-7ED996B41069}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\security\avira.spotlight.common.updater.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{C413F2BD-E77A-4B54-BA87-29D54980EA71}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\antivirus\setup.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{85755BD0-48FD-4289-8EF7-70751E5A7561}" [In-None-P17-TRUE] .(...) -- d:\temp\winlaunch\winlaunch.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{5840FBDC-43F0-41B5-9CAC-C4E96454611A}" [In-None-P17-TRUE] .(...) -- z:\applications\keepass-2\keepass.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{A3223ABD-CECC-4015-B435-6BC165596A4F}" [In-None-P17-TRUE] .(...) -- c:\program files\tomtom home\tomtomhome.exe =>.TomTom International B.V.® O87 - FAEL: "{CD82FB7E-E1B0-439C-A89C-0C02CAFA9958}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\mozilla maintenance service\maintenanceservice.exe =>.Mozilla Corporation® O87 - FAEL: "{3F6C28A5-0014-4F6C-A60A-465BAADDB0E9}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\n1s\nchsetup.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{B6283DB8-8484-4D58-BA02-D8A68226AD6A}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\system speedup\avira.systemspeedup.service.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{5A595006-FA58-45CD-B04A-2A481E55669A}" [In-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate580_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{6E182D63-9D73-4B7D-8FEF-FB7F33026A6A}" [In-None-P17-TRUE] .(...) -- z:\applications\recuva - recup fichier fac\recuva64.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{77299992-AAC1-413C-B142-6A70F4EB4765}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.windowsstore_12007.1001.2.0_x64__8wekyb3d8bbwe\winstore.app.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{697CA5B6-DC3C-4A73-8F58-CA42892DCAA9}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\system speedup\avira.systemspeedup.maintenance.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{EFE9DF8F-2D5C-4702-AB94-8241887EB5D0}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-4qvvo.tmp\k-lite_codec_pack_1610_mega.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{DFDB2DEE-DF22-44BF-97EE-FEC527EFC4A8}" [In-None-P17-TRUE] .(...) -- c:\windows\temp\{88c8c192-67c3-4adb-8b87-9451cef7ef98}\{2e88b06d-33f3-499d-b78e-b1417bf43e70}.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{6F4A4614-6BB3-42A0-8DB5-79A124881026}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-mmcq1.tmp\shotcut-win64-200412_nhjco-1.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{42720A9B-2EFD-4ADF-9227-8438A5621AC1}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\softwareupdater\avira.softwareupdater.servicehost.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{6B5DD742-7CC1-4475-8BA3-4D7FA041653A}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\panaustik\panaustik.exe [Unsigned] O87 - FAEL: "{EAB61568-5DB1-4941-870E-723E13B994C4}" [Out-None-P17-TRUE] .(.Rellik Software - EXIF Date Changer.) -- c:\program files (x86)\exif date changer\exifdatechanger.exe [Unsigned] =>.Rellik Software O87 - FAEL: "{1350FF36-9118-432D-9BFE-6AE691B947F4}" [Out-None-P17-TRUE] .(...) -- d:\temp\keyscrambler_setup.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{BD4FF64E-CA08-40BC-B640-D44C41A5AC6B}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{af5aa672-c365-49ad-ba94-3ada280d29f2}\.cr\avira_fr_vpnb0_37ed2507ffc53f3d__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{1F49C444-B943-47DF-863E-388A66222FD2}" [Out-None-P17-TRUE] .(.SecureMix LLC - GlassWire Control Service.) -- c:\program files (x86)\glasswire\gwctlsrv.exe {037995B0E70A59F8234F55341D80B51E}. =>.SecureMix LLC O87 - FAEL: "{A02F703F-55D1-45EA-96BF-EBA4D78229AB}" [Out-None-P17-TRUE] .(...) -- c:\programmes-bis\revouninstaller_portable\x86\revoun.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{AAEB781F-99DF-4A2C-8A71-82ED1846EF23}" [Out-None-P17-TRUE] .(.Malwarebytes - Malwarebytes Tray Application.) -- c:\program files\malwarebytes\anti-malware\mbamtray.exe =>.Malwarebytes Inc® O87 - FAEL: "{4B687DC9-D71D-4827-A192-F5C69C1605B7}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.xboxgamingoverlay_5.320.6242.0_x64__8wekyb3d8bbwe\gamebar.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F72CC882-2349-43BE-A56D-BE38A81500AB}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{13e1fc29-0440-450a-91ae-0342804348a3}\.cr\avira_fr_asu80_8a924723a971cc07__psspdwws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{D437A0D0-571A-4029-98C4-AFF1F8134157}" [Out-None-P17-TRUE] .(.Adobe Systems Incorporated - Adobe Collaboration Synchronizer 21.7.) -- c:\program files (x86)\adobe\acrobat reader dc\reader\adobecollabsync.exe =>.Adobe Inc.® O87 - FAEL: "{1D809A94-D30A-4DA8-BA25-E754A45A376A}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-hp9tc.tmp\klcp_update_1624_20210605.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{6E4F93CC-CA5C-4D66-B682-3C193D756BF0}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.zunevideo_10.21021.10311.0_x64__8wekyb3d8bbwe\video.ui.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B8B706C7-018C-4307-A5C4-F9E12B97B527}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\openelement\openelement 1.57 r9\openelement.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{EAD85449-DD09-4009-8276-B94421E704FF}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-kqla5.tmp\klcp_update_1608_20210313.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{E03CAC22-DB99-441B-AEF3-8ABA72CDFA6D}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-sgi0h.tmp\k-lite_codec_pack_1615_full.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{59C7C45B-A57A-4583-8262-B39E319775A2}" [Out-None-P17-TRUE] .(...) -- d:\temp\tera-copy3.8.4.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D14CE609-3B18-4C96-BA49-69AFF3D78F11}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\launcher\avira.systray.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{0EE19EE6-2135-47AA-947F-076086026336}" [Out-None-P17-TRUE] .(.Piriform - Piriform CCleaner emergency updater.) -- c:\program files\ccleaner\ccupdate.exe =>.Piriform Software Ltd® O87 - FAEL: "{BD0D7B4E-B61E-47F9-BC0C-AB040D168C22}" [Out-None-P17-TRUE] .(...) -- d:\temp\itnconv.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D0068830-E977-4499-B0C6-D455F398CE48}" [Out-None-P17-TRUE] .(.Google LLC - Programme d'installation de Google.) -- c:\program files (x86)\google\update\googleupdate.exe =>.Google Inc® O87 - FAEL: "{CCF8878E-D5EF-4292-89BB-CCC6EDC8F2D2}" [Out-None-P17-TRUE] .(.KC Softwares - SUMo.) -- c:\program files (x86)\kc softwares\sumo\sumo.exe =>.KC SOFTWARES SASU® O87 - FAEL: "{EEA4F8CF-9D58-4174-8424-247CAA096C4B}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-auu2c.tmp\k-lite_codec_pack_1595_full.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{8BFC8C29-D135-4B9D-B19C-200279B58C1B}" [Out-None-P17-TRUE] .(.NCH Software - WavePad - Éditeur audio.) -- c:\program files (x86)\nch software\wavepad\wavepad.exe =>.NCH Software, Inc.® O87 - FAEL: "{3DD6E9EB-4B00-4B4D-9B54-E38163E46C6E}" [Out-None-P17-TRUE] .(...) -- d:\temp\sus\sus.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{A3151B83-9BBC-4043-80BC-C49362559BBD}" [Out-None-P17-TRUE] .(.Code Sector - updater 3.8.5.) -- c:\program files\teracopy\updater.exe {60D8E4C1C16589BC9C5BB9B543A1D659}. =>.Code Sector O87 - FAEL: "{0D23CE89-CA6A-4776-B675-C4426C50EE5D}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\security\avira.spotlight.ui.application.messaging.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F26031A8-1CAE-4744-9B63-0909C7EF45EA}" [Out-None-P17-TRUE] .(...) -- f:\disk drill\dd.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{31E09768-136C-421E-9902-CE63B5628235}" [Out-None-P17-TRUE] .(.Piriform Software Ltd - Recuva.) -- c:\program files\recuva\recuva64.exe =>.Piriform Software Ltd® O87 - FAEL: "{6004EDFF-7E58-49AA-AB01-243A22A4AFE2}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\system speedup\avira.optimizer.common.updater.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{DFC672A9-1223-4550-AAAD-02F788C8831F}" [Out-None-P17-TRUE] .(.Microsoft(R) Corporation - Microsoft Money.) -- c:\program files (x86)\microsoft money 2005\mnycorefiles\msmoney.exe =>.Microsoft Corporation® O87 - FAEL: "{1695A023-4D20-4872-BEC9-E7DE9251C5E2}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-rgesu.tmp\klcp_update_1607_20210306.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{F2D74419-35D5-4B86-AFC3-79AC6ED28324}" [Out-None-P17-TRUE] .(...) -- d:\temp\filezilla_3.52.0.3_win64_sponsored-setup.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{07152F35-83CB-4E4F-A7BF-C4D247F29AD2}" [Out-None-P17-TRUE] .(...) -- d:\bureau-bis\1-podcast\napoléon\kaspersky security cloud free 4.021.3.10.391fr_24936.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{86C8793A-5558-4A65-A00C-C61C8B6CC451}" [Out-None-P17-TRUE] .(...) -- d:\sauvegardes\keepassxc portable pour màj pc linux\keepassxc-2.6.4-win64\keepassxc.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{7C96A085-1B23-4425-B9A1-7F783A7878DE}" [Out-None-P17-TRUE] .(.NCH Software - VideoPad - Logiciel de montage vidéo.) -- c:\program files (x86)\nch software\videopad\videopad.exe =>.NCH Software, Inc.® O87 - FAEL: "{A0F18BDB-7B41-4F26-95BF-F643EA811B42}" [Out-None-P17-TRUE] .(...) -- c:\programmes-bis\winlaunch\winlaunch.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{3291CEDF-969F-487C-AAEB-325370FA56CC}" [Out-None-P17-TRUE] .(...) -- c:\programmes-bis\clover\clover.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{3A57C610-8D74-46B8-B740-2314C41CE45D}" [Out-None-P17-TRUE] .(.Marek Jasinski - FreeCommander - freeware file manager for W.) -- c:\program files (x86)\freecommander xe\freecommander.exe =>.Marek Jasinski® O87 - FAEL: "{2BD7D284-009D-4A81-9288-611889FD7A45}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-osi0j.tmp\k-lite_codec_pack_1612_full.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{439A3901-E283-4B60-B156-6030189509F5}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-hc6vh.tmp\klcp_update_1603_20210215.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{6645AD9C-E706-4FC2-960C-8518AA010276}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-67qsn.tmp\klcp_update_1599_20210125.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{A00A5442-64C6-4196-9323-BEF8B006071D}" [Out-None-P17-TRUE] .(...) -- d:\temp\ccsetup578.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{EF43010B-B9B9-47ED-88D2-5BD057C259B3}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\mozilla maintenance service\update\updater.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B489DD66-279C-4DD4-8F33-BE75298FA2C6}" [Out-None-P17-TRUE] .(...) -- z:\applications\ccleaner\ccleaner64.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{703F348E-3648-4D69-8C7D-94825E204AAE}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-7hrk1.tmp\klcp_update_1609_20210319.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{A83A2904-3BA0-4933-BD8C-E0C2496F67C2}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.windowscommunicationsapps_16005.13110.41006.0_x64__8wekyb3d8bbwe\commsapps.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{600B6B85-317B-4005-B1BB-9856F8F1840F}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-nli12.tmp\klcp_update_1611_20210330.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{ADD02815-EC61-4651-BC4E-0D66DF774A8A}" [Out-None-P17-TRUE] .(.Mozilla Foundation - KompoZer.) -- c:\program files (x86)\kompozer\kompozer.exe [Unsigned] =>.Mozilla Foundation O87 - FAEL: "{900F3043-6FC5-44C4-83EB-C71EF0419971}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.microsoftofficehub_18.2008.12711.0_x64__8wekyb3d8bbwe\localbridge.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{41602577-7CBA-421E-A974-EBECB08A8421}" [Out-None-P17-TRUE] .(.EJIE Technology - Clover.) -- c:\program files (x86)\clover\clover.exe [Unsigned] =>.EJIE Technology O87 - FAEL: "{8876A06C-195A-4859-9370-DE63A9B0EA5F}" [Out-None-P17-TRUE] .(...) -- d:\temp\recuva64.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B0416355-8B6C-4BDB-B54C-94F0148742FF}" [Out-None-P17-TRUE] .(...) -- d:\temp\ccsetup579.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{46B8A61F-367B-4957-B421-CB12C3FAB443}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{cea8797b-61e1-4a71-8c5c-10af76cfb76c}\.cr\avira_fr_vpnb0_662665754-1611418579__pvpnwws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{3CAD4130-DDF0-4EE4-9040-573E6D0C11AA}" [Out-None-P17-TRUE] .(...) -- c:\windows\temp\{10403395-ff5f-462b-9a7e-4249e2314d9c}\.cr\avira.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{FFC82420-D04D-43E3-8939-761D419570BE}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.zunevideo_10.21061.10121.0_x64__8wekyb3d8bbwe\video.ui.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{9177FB83-EE96-4E2D-8977-532A3AE225C8}" [Out-None-P17-TRUE] .(...) -- f:\renemachin\undeleter\reneeupdater.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{199554FF-2308-4597-907E-109E4FCAB784}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\awesome duplicate photo finder\awesomephotofinder.exe [Unsigned] O87 - FAEL: "{F6732AAA-8970-41D5-83B7-A6A9FFFE2EF3}" [Out-None-P17-TRUE] .(...) -- c:\windows\temp\{582d5f00-da47-4d29-9d4d-72795e6d8fdc}\.cr\avira_fr__945312284-1609873270__adwg-spotlight-default.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{C2DABFD4-2C6F-49D0-B977-A2E2109869B2}" [Out-None-P17-TRUE] .(...) -- d:\divers vidéos musiques téléphone et autres\ordi\logiciels\tor browser\browser\torbrowser\tor\tor.exe [Unsigned] O87 - FAEL: "{3E539684-C85C-4BB6-909C-099B870C588D}" [Out-None-P17-TRUE] .(.Wondershare - Wondershare MobileGo.) -- c:\program files (x86)\wondershare\mobilego\mobilego.exe =>.Wondershare Technology Co.,Ltd® O87 - FAEL: "{595AA7C1-F74D-4351-8DA1-D61551D06B52}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\keepass-2\keepass.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{C73DF035-00C7-435F-8D65-C428C35E3152}" [Out-None-P17-TRUE] .(...) -- z:\00-images mail af\winlaunch\winlaunch.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{7E408EEF-9AEF-4EC7-8BB6-52A880636DCB}" [Out-None-P17-TRUE] .(.Malwarebytes - Malwarebytes Installer Service.) -- c:\program files\malwarebytes\anti-malware\mbaminstallerservice.exe =>.Malwarebytes Inc® O87 - FAEL: "{8D8B5B7C-8091-4FBE-A92D-CA5016C2E9C1}" [Out-None-P17-TRUE] .(...) -- d:\temp\windows-iso-downloader.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{1AF7DD1E-F3FE-405A-97AF-A5468C92DF4E}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{8d0b9bbe-49ae-4657-9b49-4f797117b677}\.cr\avira_en_vpnb0_581842896-1615577266__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{64DA0EB5-52BF-4B4E-8CEA-CEDFA2B0DEFA}" [Out-None-P17-TRUE] .(...) -- c:\programmes-bis\gmail-notifier-plus-3.8\gmail notifier plus.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{DB020C04-7B85-4518-89F1-48F2030FEE2F}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-6usne.tmp\k-lite_codec_pack_1630_basic.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{9F6BB8E4-3F65-4A65-B548-926278F80FC3}" [Out-None-P17-TRUE] .(.FSL - FreeSoftLand - FLS Launcher.) -- c:\program files (x86)\fsl\fsl_launcher\fsl_launcher.exe [Unsigned] =>.FSL - FreeSoftLand O87 - FAEL: "{249D1B0D-7ADE-400B-9253-50E14B0E4493}" [Out-None-P17-TRUE] .(.Apache Software Foundation - OpenOffice 4.1.11.) -- c:\program files (x86)\openoffice 4\program\soffice.bin [Unsigned] =>.Apache Software Foundation O87 - FAEL: "{1BC23FAB-8777-42A8-97D3-5FF6CDFA8116}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.windowscommunicationsapps_16005.13110.41006.0_x64__8wekyb3d8bbwe\hxtsr.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{7570B1F2-C139-4B22-A145-75B014612984}" [Out-None-P17-TRUE] .(.Florian Heidenreich - Mp3tag - the universal Tag editor.) -- c:\program files (x86)\mp3tag\mp3tag.exe {00EC8E4DA09CB58945354F7464BC20C229}. =>.Florian Heidenreich O87 - FAEL: "{0D143B81-FDEC-4FEF-93C6-2E094ED98DE0}" [Out-None-P17-TRUE] .(.Piriform Software Ltd - CCleaner.) -- c:\program files\ccleaner\ccleaner64.exe =>.Piriform Software Ltd® O87 - FAEL: "{07F13643-C800-48A4-81CD-B39DBF6AFAA7}" [Out-None-P17-TRUE] .(...) -- d:\temp\rcsetup153.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{8727A476-AC38-4677-8BBA-8D961525393E}" [Out-None-P17-TRUE] .(...) -- d:\temp\keepass-2.47\keepass.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{6299C318-A19B-4DCD-B1A9-795DF757CF0C}" [Out-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate582_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D6B65DE5-E64C-4CA3-B310-EE1AC5E0C305}" [Out-None-P17-TRUE] .(.VS Revo Group - Revo Uninstaller.) -- c:\program files\vs revo group\revo uninstaller\revounin.exe =>.VS Revo Group Ltd.® O87 - FAEL: "{0F3D92C8-9138-428F-8917-F49118A2C244}" [Out-None-P17-TRUE] .(.AO Kaspersky Lab - Kaspersky Lab launcher.) -- c:\program files (x86)\kaspersky lab\kaspersky security cloud 21.3\avp.exe =>.Kaspersky Lab JSC® O87 - FAEL: "{7C29F51A-6422-41B5-ACAB-2E6CBC7AE25C}" [Out-None-P17-TRUE] .(.Adobe Inc. - Adobe Reader and Acrobat Manager.) -- c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe =>.Adobe Inc.® O87 - FAEL: "{6695D244-7D82-4ACB-A5A9-6A255BE65D98}" [Out-None-P17-TRUE] .(...) -- d:\temp\sdc\smart disk checker.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{3FDC8599-D7D8-4A9A-8526-D7EB5089DC0F}" [Out-None-P17-TRUE] .(.FileZilla Project - SFTP module for FileZilla based on PuTTY's.) -- c:\program files\filezilla ftp client\fzsftp.exe =>.Tim Kosse® O87 - FAEL: "{1616F93E-C9D2-4006-BD98-6259AA7FB008}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-0s0qn.tmp\klcp_update_1598_20210113.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{043AD543-95E9-4D93-821F-0F2D25745F19}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\security\avira.spotlight.service.worker.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{4B62DCE4-648E-49E0-9B21-7FBCC3F9B615}" [Out-None-P17-TRUE] .(...) -- c:\programdata\avira\antivirus\temp\selfupdate\update.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{41198775-4D5B-4B8F-BEF9-A18CD1D769A8}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.bingnews_4.54.22741.0_x64__8wekyb3d8bbwe\microsoft.msn.news.exe [Unsigned] O87 - FAEL: "{82F1A9A3-C778-46D3-92B5-9B8CD7276047}" [Out-None-P17-TRUE] .(...) -- d:\temp\recuva_1.50_7549.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{31EB1DD3-63CC-4925-BE43-761ADFB9F5D3}" [Out-None-P17-TRUE] .(.AO Kaspersky Lab - Kaspersky Lab launcher.) -- c:\program files (x86)\kaspersky lab\kaspersky vpn 5.3\ksde.exe =>.Kaspersky Lab JSC® O87 - FAEL: "{A2C3C898-428F-413C-A9D8-2389C6EFE63A}" [Out-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- c:\program files\videolan\vlc\vlc.exe =>.VideoLAN® O87 - FAEL: "{C8F9A066-6092-4884-9A61-BEB59FB8D7AD}" [Out-None-P17-TRUE] .(.Adobe Systems Incorporated - Adobe Acrobat Reader DC.) -- c:\program files (x86)\adobe\acrobat reader dc\reader\acrord32.exe =>.Adobe Inc.® O87 - FAEL: "{29589A6F-5FF0-4E06-BA36-B2403063D25C}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-1ago4.tmp\k-lite-codec-pack-full-16-2-0.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{54AA8076-76FF-4EEA-8476-BF7C4C021FC3}" [Out-None-P17-TRUE] .(...) -- d:\temp\rufus-3.14p.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{0E3444FE-D938-4AE0-9CBF-AB9D6E6A759D}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\antivirus\avscan.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{EFD1648F-0181-4285-958F-8EB56CC5C69F}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{448062cf-38b6-460a-8e64-acbc8006aefb}\.cr\avira_fr_asu80_8a924723a971cc07__psspdwws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{AA1E8345-1EC5-44CB-9662-7F1FF44D3B55}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-jhjnc.tmp\k-lite_codec_pack_1605_full.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{4564F1CC-0728-4D29-A71B-BF42DD5954EC}" [Out-None-P17-TRUE] .(...) -- c:\windows\temp\is-e1r22.tmp\avira_speedup_setup_update.tmp [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{4C9442F3-22A2-454C-9471-68FEC5C062A3}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\security\avira.spotlight.service.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{23337C63-5303-4A13-9126-A6F87B0B98EF}" [Out-None-P17-TRUE] .(...) -- d:\temp\winlaunch.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{0765FAF5-6F6E-4A0B-9539-C4703B8A81A5}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\pchealthcheck\pchealthcheck.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{CB8A7536-D076-42F5-B871-93572FD16D9F}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\security\avira.spotlight.ui.application.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{5F8AE272-33F3-4940-84F1-667C80450A44}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-qt2cm.tmp\klcp_update_1606_20210301.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{95F55AB3-D169-4CC1-88E4-D901438BE0B5}" [Out-None-P17-TRUE] .(.adsl TV / FM - adsl TV.) -- c:\program files (x86)\adsltv\adsltv.exe [Unsigned] =>.adsl TV / FM O87 - FAEL: "{2D18B2A4-ADD7-406B-BE1F-CD4FBCBC02AB}" [Out-None-P17-TRUE] .(...) -- d:\temp\klitecodecpackfull_inst.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{CCC3E423-B822-465C-9EF7-70FFCED1F896}" [Out-None-P17-TRUE] .(.Malwarebytes - Malwarebytes.) -- c:\program files\malwarebytes\anti-malware\mbam.exe =>.Malwarebytes Inc® O87 - FAEL: "{2B2D434E-3732-49CF-9CB3-37DE9838D15E}" [Out-None-P17-TRUE] .(.Code Sector - TeraCopy Installer.) -- c:\programdata\code sector\teracopy\updates\update\teracopy3.8.5.exe {60D8E4C1C16589BC9C5BB9B543A1D659}. =>.Code Sector O87 - FAEL: "{8A756195-230E-4DDE-BAD8-FAB60BC547D3}" [Out-None-P17-TRUE] .(...) -- d:\temp\setup.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{07CF17EA-9993-40CF-B468-14B97DEC7013}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\optimizer host\avira.optimizerhost.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F78D7F65-98E8-436C-96A2-110DE4B8C353}" [Out-None-P17-TRUE] .(...) -- f:\displayfusion\displayfusion\displayfusion.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{CDEE12E1-1276-4782-BA80-F346502A452D}" [Out-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate576_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{CB8D05CB-39D0-4DD1-983D-4D18A764B5EA}" [Out-None-P17-TRUE] .(...) -- c:\programdata\package cache\{21098ed5-59e9-4203-b79e-63f3c373e022}\avira.oe.setup.bundle.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B9293F07-D517-4B51-B62C-276D7155ACCE}" [Out-None-P17-TRUE] .(.Bitdefender LLC - Bitdefender Anti Ransomware.) -- c:\program files\bitdefender\tools\bdantiransomware\bdantiransomware.exe [Unsigned] =>.BitDefender LLC O87 - FAEL: "{2D3E6844-CF5C-4353-BE6F-3C8984297562}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\d8c927966343e5fd6d2627f7999b82c9\updater.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{7CB30EF3-CEF3-4156-9BDE-3D00938F8A1A}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-s8hbq.tmp\klcp_update_1614_20210422.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{11B9C77F-C8F9-4A32-A1A6-E78FDB734F5A}" [Out-None-P17-TRUE] .(...) -- d:\sauvegardes\keepassxc portable pour màj pc linux\keepassxc\keepassxc.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{37DFDD5E-FC41-44FE-9CCC-D36671EAA90B}" [Out-None-P17-TRUE] .(.Malwarebytes - Malwarebytes Setup.) -- c:\programdata\malwarebytes\mbamservice\instlrupdate\mbsetup.exe =>.Malwarebytes Inc® O87 - FAEL: "{37C98922-1497-454F-92CD-F405290F7451}" [Out-None-P17-TRUE] .(...) -- d:\temp\music collection\music collection.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{02307826-3FB4-4BCD-9B45-81DD349CA1EF}" [Out-None-P17-TRUE] .(...) -- c:\program files\winlaunch\winlaunch.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{FFBDAC74-B9DA-49E1-867A-B0204E1E8C29}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{4c473746-bc8b-4378-bf03-25e3d5491a5a}\.cr\avira_fr_vpnb0_701031175-1616352183__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{578DBED1-271B-422C-B13E-7D5A49C75866}" [Out-None-P17-TRUE] .(.VideoLAN - VLC media player.) -- c:\program files (x86)\adsltv\vlc\vlc.exe =>.VideoLAN® O87 - FAEL: "{C16FA56F-4CFA-4397-8E8E-B208CD2F8BD5}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-lpk21.tmp\k-litecodecpackfull.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{16E80B1D-CE7F-425D-B346-7B6BB7CE2DD1}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\remo drive wipe\rsupdate.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{84D36996-4E5E-4156-9262-AD9B73B2EDA9}" [Out-None-P17-TRUE] .(.QFX Software Corporation - KeyScrambler.) -- c:\program files (x86)\keyscrambler\keyscrambler.exe {7AF1E5B8826150A78A17269C}. =>.QFX Software Corporation O87 - FAEL: "{1F48A800-A41F-4989-9171-338E590AEAFD}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\_iu14d2n.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{5A441A0A-CE79-42EA-A97C-990F7F7ED234}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{1ae55042-3276-4577-86e7-b2507a34fbd8}\.cr\avira_en_vpnb0_581842896-1615577266__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{E7F4C3F1-FE3B-4AEA-9BE5-CC7A47E621E8}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.microsoftofficehub_18.2006.1031.0_x64__8wekyb3d8bbwe\localbridge.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{2C6B45FF-A4C6-4B50-B870-779702A4A16A}" [Out-None-P17-TRUE] .(.Don HO don.h@free.fr - WinGup for Notepad++.) -- c:\program files\notepad++\updater\gup.exe =>.Notepad++® O87 - FAEL: "{8271C960-9836-4996-A3BE-1567EFE78199}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.microsoftofficehub_18.2104.12721.0_x64__8wekyb3d8bbwe\localbridge.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{69C4CB92-A7DA-4167-BA06-B4CE4B752684}" [Out-None-P17-TRUE] .(.XnView, http://www.xnview.com - XnView MP.) -- c:\program files\xnviewmp\xnviewmp.exe =>.Pierre GOUGELET® O87 - FAEL: "{36567763-C605-4A78-A257-2CA7D1E98EB4}" [Out-None-P17-TRUE] .(...) -- d:\temp\filezilla_3.52.0.1_win64_sponsored-setup.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{DA3A9F6D-33E8-41AD-A26C-53A4C1284C45}" [Out-None-P17-TRUE] .(.Wondershare - MGNotification.) -- c:\program files (x86)\wondershare\mobilego\mgnotification.exe =>.Wondershare Technology Co.,Ltd® O87 - FAEL: "{2EFEE4F9-91D3-49FC-ADB1-14D05A6AA136}" [Out-None-P17-TRUE] .(...) -- d:\temp\winlaunch\update.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{4C7BD4B2-64F1-484E-8816-72B4E3237C87}" [Out-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate578_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{BC101FA0-1801-40E5-B471-738E1677779F}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\antivirus\avguard.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{933E41CB-96A9-4343-9CA1-F9722819D3C1}" [Out-None-P17-TRUE] .(.F.J. Wechselberger - MyPhoneExplorer.) -- c:\program files (x86)\myphoneexplorer\myphoneexplorer.exe {6FF2E7A4F05C1FF61B6F5F65}. =>.F.J. Wechselberger O87 - FAEL: "{CB50D5E4-190B-4218-A112-BEFDB3EAFCE4}" [Out-None-P17-TRUE] .(.Wondershare - MobileGoService.) -- c:\program files (x86)\wondershare\mobilego\mobilegoservice.exe =>.Wondershare Technology Co.,Ltd® O87 - FAEL: "{8449B0A5-6CE1-4121-90BE-5A7AA8229B40}" [Out-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate581_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{C5616763-BEDD-4A43-B06E-7737D75CF4C6}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\ping identity\pingid\pingid.exe {08003F32D18BC8A127E2C6EEE8091217}. O87 - FAEL: "{2540CE6F-E589-4463-AD9B-A8210FB75452}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.xboxgamingoverlay_5.621.4222.0_x64__8wekyb3d8bbwe\gamebar.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{43E3AD0D-671F-4E31-A5BE-10459765F168}" [Out-None-P17-TRUE] .(.2020-2021 - Smart Disk Checker.) -- c:\programmes-bis\sdc etat hdd\smart disk checker.exe {0097BE2CDB2A3C25F5}. O87 - FAEL: "{5DC54DEC-78BA-4EF1-9447-C4D2ED600B98}" [Out-None-P17-TRUE] .(.Benichou Software - Itinerary Converter & Planner.) -- c:\program files (x86)\itnconverter\itnconv.exe [Unsigned] =>.Benichou Software O87 - FAEL: "{14F83134-24A3-42D9-8022-A3CDF6BE61DF}" [Out-None-P17-TRUE] .(.Malwarebytes - Malwarebytes Service.) -- c:\program files\malwarebytes\anti-malware\mbamservice.exe =>.Malwarebytes Inc® O87 - FAEL: "{944418CB-B93E-43B4-952A-11581445D321}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\cleverfiles\disk drill\dd.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{123C9F29-B498-4CA8-AFBD-8331C36CB3E5}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.zunevideo_10.20032.16211.0_x64__8wekyb3d8bbwe\video.ui.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{38846DF9-FE04-4EB7-8F32-765239F7CF63}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\common files\adobe\arm\1.0\temp\241581991\adobearmhelper.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{104E925E-85C5-42C0-AF91-8E48966DBE92}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\namebench.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{05893076-5CFF-4B1A-9209-07F897D91C58}" [Out-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate577_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{C0BB2F15-6D56-4AD9-8B18-D9C742AF410E}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\vpn\avira.webapphost.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{0F4F8DB4-A7C4-4752-8FA4-A2285344CCCE}" [Out-None-P17-TRUE] .(.Adobe Inc. - Adobe Acrobat Update Service.) -- c:\program files (x86)\common files\adobe\arm\1.0\armsvc.exe =>.Adobe Inc.® O87 - FAEL: "{5D607869-94E7-435A-8F53-DB75A66599F9}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{39230d92-8d42-4fa2-8f9f-940099000131}\.cr\avira_fr_vpnb0_8e79bd7d26571f47__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{9978B780-8A31-4260-894D-DF8C2463F4C9}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\.cr.25641\avira.spotlight.bootstrapper.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{A55DA1F9-B372-4BDF-BADC-0060760B9CE9}" [Out-None-P17-TRUE] .(.Dominik Reichl - KeePass.) -- c:\program files\keepass password safe 2\keepass.exe {5042C501F1F0BA29E38E1F71621966C9}. =>.Dominik Reichl O87 - FAEL: "{E0DF8929-3064-45BD-8316-E362699D3C41}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\xnview\xnview.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{ED844FD0-ECD1-4E1D-9008-C445E38C872C}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\antivirus\update.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{60FCE81E-2C6F-4EDF-8DD6-897673CADA89}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\notepad++\updater\gup.exe [Unsigned] =>.Don HO don.h@free.fr O87 - FAEL: "{F83A3396-8103-4A8C-AD77-725E2A784026}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{0e221cc3-3a19-4d9e-b3bd-9cb8e3203fd6}\.cr\avira_fr_asu80_8e79bd7d26571f47__poptws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{4E7FB88C-83E6-47C6-8E50-F179E4F8369E}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.windowsmaps_10.2005.1.0_x64__8wekyb3d8bbwe\maps.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{5A995A2B-30C5-4BA7-B811-9798C74BF4F9}" [Out-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- c:\program files (x86)\google\chrome\application\chrome.exe =>.Google LLC® O87 - FAEL: "{6A02E2C7-1971-453B-942A-9FEE320CD6A1}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\homedev\patchcleaner\patchcleaner.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{0A344844-8047-4902-B688-D71965FBB9FF}" [Out-None-P17-TRUE] .(...) -- d:\temp\gmail-notifier-plus-3.8\gmail notifier plus.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F225AB47-16A9-4782-B191-151E0D863290}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-johur.tmp\klcp_update_1616_20210511.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{FFF7E089-329B-46BF-9C54-162F3BD04EC4}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-0iquv.tmp\klcp_update_1623_20210530.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{F7F399A4-8255-4CAF-BF42-F4BEEB77BB36}" [Out-None-P17-TRUE] .(.FileZilla Project - FileZilla FTP Client.) -- c:\program files\filezilla ftp client\filezilla.exe =>.Tim Kosse® O87 - FAEL: "{F60A0280-FCFB-4C44-A1C2-13D9C2760218}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\keepass password safe\keepass.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{79156C5C-BEFF-47EA-AA0F-2D3D80F9CECD}" [Out-None-P17-TRUE] .(.Adobe Systems Incorporated - Adobe RdrCEF.) -- c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\rdrcef.exe =>.Adobe Inc.® O87 - FAEL: "{721B0E35-104B-4D09-9D45-6975FAB3B852}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\{fd7b9526-caac-4c3d-bb65-311740fa7a06}\.cr\avira_en_vpnb0_581842896-1615577266__pvpnws.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{50EE2F22-7DE3-409A-86A8-D090A359C19A}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\launcher\avira.servicehost.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{06E16B72-D118-4AF8-B7B2-B11A0F59435F}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\virustotaluploader2\virustotaluploader2.2.exe [Unsigned] O87 - FAEL: "{1742E2E1-54C8-4BE0-AF94-EBAFFA89A1D6}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\security\avira.spotlight.common.updater.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{C6E474E0-88C6-4EE2-96E3-E0B677D02D1A}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\antivirus\setup.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{7671450C-6A11-4D82-962B-E0CD98C1D24E}" [Out-None-P17-TRUE] .(...) -- d:\temp\winlaunch\winlaunch.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{A6811E41-02DB-4A99-810F-F92C5E32888F}" [Out-None-P17-TRUE] .(...) -- z:\applications\keepass-2\keepass.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{81320EC9-ED33-4846-95C3-7F3FC9F2A9EC}" [Out-None-P17-TRUE] .(...) -- c:\program files\tomtom home\tomtomhome.exe =>.TomTom International B.V.® O87 - FAEL: "{F87BFCE0-38CB-4E98-9146-39C658C457C8}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\mozilla maintenance service\maintenanceservice.exe =>.Mozilla Corporation® O87 - FAEL: "{ADADDC11-826B-4689-9FF1-CC5B0BBFD3FE}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\n1s\nchsetup.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{62C3EB29-8BA6-4B6B-BE96-320B1F28DC8C}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\system speedup\avira.systemspeedup.service.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{5ECAB0D9-8BB0-48BD-8E52-002DBC070C3C}" [Out-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate580_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{A72759C5-5700-4C94-9514-1CEB80E7E8CE}" [Out-None-P17-TRUE] .(...) -- z:\applications\recuva - recup fichier fac\recuva64.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{BC606A31-76DB-49A4-B10D-91589DC2D5C1}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.windowsstore_12007.1001.2.0_x64__8wekyb3d8bbwe\winstore.app.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{A88B924C-F4E8-448F-A91D-BA04C56EC2C4}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\avira\system speedup\avira.systemspeedup.maintenance.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B098A6E8-AD69-466D-8B92-63E1CACF486E}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-4qvvo.tmp\k-lite_codec_pack_1610_mega.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{E8527DB9-A6BA-4654-B896-504FD899E9A4}" [Out-None-P17-TRUE] .(...) -- c:\windows\temp\{88c8c192-67c3-4adb-8b87-9451cef7ef98}\{2e88b06d-33f3-499d-b78e-b1417bf43e70}.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F27A12DC-377E-421B-8F34-D0DE57C80F00}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{3F5C14CB-045C-4B9C-8784-964290A8FCB4}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{AA2CBD60-32D4-45DE-BAC3-5328A9A53BD6}" [In-None-P6-TRUE] .(...) -- C:\Program Files (x86)\Avira\SoftwareUpdater\avirasoftwareupdatertoastnotificationsbridge.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{DEECCE0F-23BD-47E6-AEC2-22592C614082}" [In-None-P6-TRUE] .(...) -- c:\users\admin\appdata\local\temp\7zsc2a5c373\setup-stub.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{881B932E-04FB-446C-AD5A-C019F02CE1B5}" [Out-None-P6-TRUE] .(...) -- c:\users\admin\appdata\local\temp\7zsc2a5c373\setup-stub.exe [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{508F7AE8-D628-4494-8CE8-DF5A74B79896}" [In-None-P6-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{6B9D3878-5266-48E7-B01F-5F9671AE2245}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{CA8D2942-471B-4F24-A7A4-CE2EBB84C057}" [In-None-P17-TRUE] .(.Mozilla Foundation - Firefox Software Updater.) -- c:\program files\mozilla firefox\updater.exe =>.Mozilla Corporation® O87 - FAEL: "{0ED3820F-8587-46C3-812C-3ABA38F7F9B3}" [In-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- c:\program files\mozilla firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{D5D90A8B-66E3-487C-9BC0-58CA622805CA}" [In-None-P17-TRUE] .(...) -- c:\program files\mozilla firefox\pingsender.exe =>.Mozilla Corporation® O87 - FAEL: "{E11291D9-5996-428A-A930-667BE1D5ED3D}" [In-None-P17-TRUE] .(.Mozilla Foundation - Firefox Default Browser Agent.) -- c:\program files\mozilla firefox\default-browser-agent.exe =>.Mozilla Corporation® O87 - FAEL: "{4330A71A-BD02-4385-BA7F-6D424125C161}" [Out-None-P17-TRUE] .(.Mozilla Foundation - Firefox Software Updater.) -- c:\program files\mozilla firefox\updater.exe =>.Mozilla Corporation® O87 - FAEL: "{C0C5772E-8EEE-457A-BA62-87A6F7B20A52}" [Out-None-P17-TRUE] .(.Mozilla Corporation - Firefox.) -- c:\program files\mozilla firefox\firefox.exe =>.Mozilla Corporation® O87 - FAEL: "{018E78B4-0E6C-402E-A564-E71DCD534C84}" [Out-None-P17-TRUE] .(...) -- c:\program files\mozilla firefox\pingsender.exe =>.Mozilla Corporation® O87 - FAEL: "{C5ACD282-11C9-4046-9953-AADA12CF048B}" [Out-None-P17-TRUE] .(.Mozilla Foundation - Firefox Default Browser Agent.) -- c:\program files\mozilla firefox\default-browser-agent.exe =>.Mozilla Corporation® O87 - FAEL: "{77A4BC13-5A5E-44B9-AF2C-F156B12B3E7D}" [In-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate583_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{3B2E26F5-8AC9-4C27-AEE5-66A6B51D9FFC}" [Out-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate583_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{0BBE8B6F-8273-4524-B4DC-2A32ECF8868C}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-vc7u2.tmp\k-lite_codec_pack_1635_mega.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{CA13D6FB-F09A-40E2-8A4D-B8756A84DC78}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-vc7u2.tmp\k-lite_codec_pack_1635_mega.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{3E944AA3-E5F8-4F82-82B9-116B8F42D963}" [In-None-P17-TRUE] .(...) -- c:\program files\google\drive file stream\49.0.9.0\googledrivefs.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{CED7C51D-4838-4024-8657-CC46E1778D7D}" [Out-None-P17-TRUE] .(...) -- c:\program files\google\drive file stream\49.0.9.0\googledrivefs.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{BF45DE9B-D3AD-433B-92EA-406D2161E23E}" [In-None-P17-TRUE] .(...) -- d:\bureau-bis\1-podcast\manoukian\mergemp3\mergemp3.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{44822ECB-D95D-4639-861A-59829F56CA02}" [Out-None-P17-TRUE] .(...) -- d:\bureau-bis\1-podcast\manoukian\mergemp3\mergemp3.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B3890EDF-5D1F-4BC7-8B5C-EA1A8F7B11ED}" [In-None-P17-TRUE] .(...) -- c:\program files\audacity\audacity.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F687850A-832D-4529-81CD-D1E28458BC03}" [Out-None-P17-TRUE] .(...) -- c:\program files\audacity\audacity.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{6EA97655-F635-4BBC-BA74-9D8BF24DCBCA}" [In-None-P17-TRUE] .(...) -- d:\sauvegardes\keepassxc portable pour màj pc linux\keepass-1.39\keepass.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{65037FC6-D632-4DD5-BEF6-3C8DCD4081B6}" [Out-None-P17-TRUE] .(...) -- d:\sauvegardes\keepassxc portable pour màj pc linux\keepass-1.39\keepass.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{4C90A853-7D11-4302-81F3-684C48BB4460}" [In-None-P17-TRUE] .(.The Shchuka's Place - Merge MP3 Files.) -- d:\bureau-bis\1-podcast\1-merge mp3\mergemp3.exe [Unsigned] =>.The Shchuka's Place O87 - FAEL: "{D767453C-565B-4061-90F5-75C702710EFD}" [Out-None-P17-TRUE] .(.The Shchuka's Place - Merge MP3 Files.) -- d:\bureau-bis\1-podcast\1-merge mp3\mergemp3.exe [Unsigned] =>.The Shchuka's Place O87 - FAEL: "{828F318B-842A-48F6-B041-7F6FF7D986B0}" [In-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate584_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{D972D404-E96E-46C0-9896-3FA626DF2D52}" [Out-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate584_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{54D56042-5D3C-4658-97DC-F0163DF112DE}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\kaspersky lab\kaspersky password manager 9.0.2\kpm_service.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{F566D06F-1B68-4F16-A9DC-7AF8F7ED3513}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\kaspersky lab\kaspersky password manager 9.0.2\kpm.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{013D3839-9F28-42B2-9717-C5B70923A5FA}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\kaspersky lab\kaspersky password manager 9.0.2\kpm_service.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{1A8F0825-1E94-492D-8CD0-34E26D6510F5}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\kaspersky lab\kaspersky password manager 9.0.2\kpm.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{5AAC28CD-53BA-41C4-B8CE-1AADA336B9A4}" [In-None-P17-TRUE] .(.Audacity Team - Audacity® Cross-Platform Sound Editor.) -- c:\program files (x86)\audacity\audacity.exe =>.Musecy SM LTD® O87 - FAEL: "{D7714629-7ECD-4838-B51D-9AE6AD44C553}" [Out-None-P17-TRUE] .(.Audacity Team - Audacity® Cross-Platform Sound Editor.) -- c:\program files (x86)\audacity\audacity.exe =>.Musecy SM LTD® O87 - FAEL: "{F7D81358-7AE6-4167-8A18-AF20BE961A88}" [In-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.xboxgamingoverlay_5.721.8052.0_x64__8wekyb3d8bbwe\gamebar.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{DE66CD7B-E414-4FFA-A38A-A1EAA674F96E}" [Out-None-P17-TRUE] .(...) -- c:\program files\windowsapps\microsoft.xboxgamingoverlay_5.721.8052.0_x64__8wekyb3d8bbwe\gamebar.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{E5160A70-B4B5-42C4-9B28-829590518240}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-ctjgn.tmp\klcp_update_1640_20210903.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{FEA90D5E-5622-4216-AD3D-3B93E9F28391}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-ctjgn.tmp\klcp_update_1640_20210903.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{2510DA45-A872-4C25-AB30-A0D0BFA38520}" [In-None-P17-TRUE] .(.Adobe Systems Incorporated - Adobe RdrCEF.) -- c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef_1\rdrcef.exe =>.Adobe Inc.® O87 - FAEL: "{3C588B80-FBF2-47A2-914F-717BB5CA6CEE}" [Out-None-P17-TRUE] .(.Adobe Systems Incorporated - Adobe RdrCEF.) -- c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef_1\rdrcef.exe =>.Adobe Inc.® O87 - FAEL: "{5FDC430B-E4D9-4727-ACEF-1049DAD37920}" [In-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate585_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{11595BE7-94E5-4FC1-8A42-B2FFDE19683F}" [Out-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate585_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{0B0461B3-AE42-47B7-BBFC-449D080E4970}" [In-None-P17-TRUE] .(.Sena Technologies, Inc. - SenaBluetoothDeviceManagerForWindows.) -- c:\program files (x86)\sena technologies\senabluetoothdevicemanager\senabluetoothdevicemanagerforwindows.exe =>.Sena Technologies, Inc.® O87 - FAEL: "{B9BE6676-CC6D-42D3-ADD3-E7D2C4D1D6A0}" [Out-None-P17-TRUE] .(.Sena Technologies, Inc. - SenaBluetoothDeviceManagerForWindows.) -- c:\program files (x86)\sena technologies\senabluetoothdevicemanager\senabluetoothdevicemanagerforwindows.exe =>.Sena Technologies, Inc.® O87 - FAEL: "{EC158BE6-1E03-4FF8-8304-59D73E463A53}" [In-None-P17-TRUE] .(...) -- d:\temp\myphoneexplorer_setup_1.9.0.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{4EEF6317-8190-48B4-A58A-646407603F9E}" [Out-None-P17-TRUE] .(...) -- d:\temp\myphoneexplorer_setup_1.9.0.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{5978325C-8F34-4FB2-89D4-5AC4F3FD2709}" [In-None-P17-TRUE] .(.The Eraser Project - Eraser.) -- c:\program files\eraser\eraser.exe =>.Heidi Computers Ltd® O87 - FAEL: "{75D6DF68-B398-453A-8A80-CA674668C4C4}" [Out-None-P17-TRUE] .(.The Eraser Project - Eraser.) -- c:\program files\eraser\eraser.exe =>.Heidi Computers Ltd® O87 - FAEL: "{41B00B9F-AE1D-460E-92BB-2B59522C8B78}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\k-lite codec pack\tools\codectweaktool.exe [Unsigned] O87 - FAEL: "{C70A4650-D08B-40EF-B1A3-93FA3D0C373A}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\k-lite codec pack\tools\codectweaktool.exe [Unsigned] O87 - FAEL: "{8249A937-4785-4919-A0B0-5EFF7A8D7F01}" [In-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate586_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{72EC2AF3-1DAD-4344-90F0-65EE213D2CE4}" [Out-None-P17-TRUE] .(...) -- c:\program files\ccleaner\temp_ccupdate\ccupdate586_free.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{B037EF6C-74C9-48BE-8E17-71DD63AB1217}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-ebp1v.tmp\k-lite_codec_pack_1650_full.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{61D8CA74-92EB-4BDF-A5E3-FA42F2D6E939}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\temp\is-ebp1v.tmp\k-lite_codec_pack_1650_full.tmp [Unsigned] (.not file.) =>.Temporary file not necessary O87 - FAEL: "{07D05F04-7F75-4FBD-BF7F-F89E7707A57D}" [In-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\microsoft\onedrive\21.196.0921.0007\microsoft.sharepoint.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{84B10714-827B-4320-97E4-0C41DBC0314C}" [Out-None-P17-TRUE] .(...) -- c:\users\admin\appdata\local\microsoft\onedrive\21.196.0921.0007\microsoft.sharepoint.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{BE3811DC-7C08-4923-B19B-5E3D428B57EC}" [In-None-P17-TRUE] .(...) -- d:\temp\multicommander_x64_portable_(11.4.0.2831)\multicommander.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{E5FB326A-FE38-4851-97C5-E4B1F6EF3E83}" [Out-None-P17-TRUE] .(...) -- d:\temp\multicommander_x64_portable_(11.4.0.2831)\multicommander.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{941EB0F7-C7E6-4FAC-AE5E-DF463826EA92}" [In-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{F95F29B5-4326-46BB-937C-7C68DD0E17A5}" [Out-None-P6-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{E33E2D9E-741E-44BF-B538-3D00834B3579}" [In-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{FC649FE3-F786-415C-AF88-A5F56AB22CDF}" [Out-None-P17-TRUE] .(.Skype Technologies S.A. - Skype.) -- C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl® O87 - FAEL: "{7DECD407-9685-4137-9101-60727B060EDF}" [In-None-P17-TRUE] .(.Google LLC - Google Chrome.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC® O87 - FAEL: "{54B99F5E-5750-4F93-A373-5E4061C88831}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\mozilla thunderbird\thunderbird.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{308A1465-D08A-4D54-B4ED-16AFBBE21328}" [In-None-P17-TRUE] .(...) -- c:\program files (x86)\mozilla thunderbird\updater.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{DBD8614D-C797-4AAF-874B-011FDACE9D73}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\mozilla thunderbird\thunderbird.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{2F5D9B8C-C424-4D08-94E6-E4B292F2F628}" [Out-None-P17-TRUE] .(...) -- c:\program files (x86)\mozilla thunderbird\updater.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{98D1AFB4-8EEC-47FE-BFD0-D98BC2CD3018}" [In-None-P17-TRUE] .(...) -- c:\windows\temp\nst719e.tmp\gwinstst.exe [Unsigned] (.not file.) =>.SUP.Orphan O87 - FAEL: "{58934928-5397-4246-A582-E3F42CD21017}" [Out-None-P17-TRUE] .(...) -- c:\windows\temp\nst719e.tmp\gwinstst.exe [Unsigned] (.not file.) =>.SUP.Orphan ---\\ CODES PRODUITS LOGICIELS (30) - 1s O90 - PUC: "00005109C80000000000000000F01FEC" [HKLM] . (.Office 15 Click-to-Run Extensibility Component.) =>.Microsoft Corporation O90 - PUC: "00005109C800C0400000000000F01FEC" [HKLM] . (.Office 15 Click-to-Run Localization Component.) =>.Microsoft Corporation O90 - PUC: "00005109F80000000100000000F01FEC" [HKLM] . (.Office 15 Click-to-Run Licensing Component.) =>.Microsoft Corporation O90 - PUC: "0547300BD62584433A07ACBC8D77960A" [HKLM] . (.Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.11.25325.) =>.Microsoft Corporation O90 - PUC: "11E3B31B5551F3536AA39833EE01F4DB" [HKLM] . (.Microsoft Visual C++ 2017 x64 Additional Runtime - 14.11.25325.) =>.Microsoft Corporation O90 - PUC: "1926E8D15D0BCE53481466615F760A7F" [HKLM] . (.Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "1B36C31D8691D6643A4CEA87DBFD532D" [HKLM] . (.Eraser 6.2.0.2991.) -- C:\WINDOWS\Installer\{D13C63B1-1968-466D-A3C4-AE78BDDF35D2}\Eraser.exe =>.Legitimate O90 - PUC: "1D5E3C0FEDA1E123187686FED06E995A" [HKLM] . (.Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219.) =>.bl.org O90 - PUC: "3BDB0510DFFA1A74DA8BED6056E83B2B" [HKLM] . (.Contrôle d’intégrité du PC Windows.) -- C:\WINDOWS\Installer\{0150BDB3-AFFD-47A1-ADB8-DE06658EB3B2}\ArpIcon.ico =>.Microsoft Corporation O90 - PUC: "460ABDE91830F1D30969DC7101636674" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022.) =>.bl.org O90 - PUC: "67D6ECF5CD5FBA732B8B22BAC8DE1B4D" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161.) =>.bl.org O90 - PUC: "68AB67CA408033019195008142444894" [HKLM] . (.Adobe Refresh Manager.) -- C:\WINDOWS\Installer\{AC76BA86-0804-1033-1959-001824448449}\ARPPRODUCTICON.exe =>.Western Digital Technologies O90 - PUC: "68AB67CA7DA76301B744CAF070E41400" [HKLM] . (.Adobe Acrobat Reader DC - Français.) -- C:\Windows\Installer\{AC76BA86-7AD7-1036-7B44-AC0F074E4100}\SC_Reader.ico =>.Adobe Inc. O90 - PUC: "6A7AD97B4A817414B9941ADAC96B31AF" [HKLM] . (.Nuance PDF Converter Enterprise 7.) -- C:\WINDOWS\Installer\{B79DA7A6-18A4-4147-9B49-A1AD9CB613FA}\ARPPRODUCTICON.exe =>.Nuance Communications O90 - PUC: "6E815EB96CCE9A53884E7857C57002F0" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161.) =>.bl.org O90 - PUC: "75F72C9B48BAF524D9001EC8D5561CD8" [HKLM] . (.Intel(R) Rapid Storage Technology.) =>.Intel Corporation O90 - PUC: "81851B92F97E0BA4988349018C70DA67" [HKLM] . (.Microsoft Update Health Tools.) =>.Microsoft Corporation O90 - PUC: "8B21A2FF7BEA0C84598C2E3E6DD7CF2B" [HKLM] . (.Kaspersky VPN.) -- C:\WINDOWS\Installer\{FF2A12B8-AEB7-48C0-95C8-E2E3D67DFCB2}\arp.ico =>.Kaspersky Labs O90 - PUC: "8F427860EB8D34B4D8DD9BEFE994DF67" [HKLM] . (.Scansoft PDF Professional.) =>.ScanSoft O90 - PUC: "9EB97CF436DA0C6469624E6FCB6E9A67" [HKLM] . (.Kaspersky Security Cloud.) -- C:\WINDOWS\Installer\{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976}\arp.ico =>.Kaspersky Labs O90 - PUC: "A53DE2593C474024F81089D678114BD1" [HKLM] . (.TeraCopy.) O90 - PUC: "b25099274a207264182f8181add555d0" [HKLM] . (.Microsoft Visual C++ 2005 Redistributable.) =>.bl.org O90 - PUC: "D20352A90C039D93DBF6126ECE614057" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17.) =>.bl.org O90 - PUC: "D909FFF5F88D9B24A95823A8210916C1" [HKLM] . (.Avira Software Updater.) -- C:\WINDOWS\Installer\{5FFF909D-D88F-42B9-9A85-328A1290611C}\icon.ico =>.Epson/Seico O90 - PUC: "E63EEA5D177456F4DB6BC89570B7BF4E" [HKLM] . (.Microsoft Visual C++ 2017 X86 Minimum Runtime - 14.16.27033.) =>.Microsoft Corporation O90 - PUC: "E82BCD98B7BBAA14E8857F016C4C2F43" [HKLM] . (.OpenOffice 4.1.11.) -- C:\WINDOWS\Installer\{89DCB28E-BB7B-41AA-8E58-F710C6C4F234}\soffice.ico =>.Open Source O90 - PUC: "EFEE0228DC83E77358593193D847A0EC" [HKLM] . (.Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17.) =>.bl.org O90 - PUC: "F5201D880D546C54E9BD73C9E20EA77D" [HKLM] . (.Microsoft Visual C++ 2017 X86 Additional Runtime - 14.16.27033.) =>.Microsoft Corporation O90 - PUC: "742490E89BF44F74FA10FB66DA79188C" [HKCU] . (.Inkscape.) -- %APPDATA%\Microsoft\Installer\{8E094247-4FB9-47F4-AF01-BF66AD9781C8}\ProductIcon.ico =>.Inkscape O90 - PUC: "742490E89BF44F74FA10FB66DA79188C" [HKU] . (.Inkscape.) -- %APPDATA%\Microsoft\Installer\{8E094247-4FB9-47F4-AF01-BF66AD9781C8}\ProductIcon.ico =>.Inkscape ---\\ PACKAGES WINDOWS INSTALLER (47) - 16s [MD5.1504667BA3C10D841C0B76B6412FAFB5] [WIS][2015/03/17 09:41:29] (.Adobe Systems Incorporated.) -- C:\WINDOWS\Installer\10f5e6.msi [2805760] =>.Adobe Systems Incorporated [MD5.5857F0633DAA7B74981797E8CC817F00] [WIS][2014/02/05 10:01:34] (.Intel - Intel(R) Network Connections.) -- C:\WINDOWS\Installer\1449dd3.msi [9625600] =>.Intel [MD5.07AC7563FFE4E7E6354D595A47D89E1B] [WIS][2014/04/11 09:33:00] (.Intel Corporation - Intel(R) Rapid Storage Technology.) -- C:\WINDOWS\Installer\1449dd8.msi [2805760] =>.Intel Corporation [MD5.6570973DBFFEA7BAFBEB7596ABF5BA31] [WIS][2021/01/19 20:02:51] (.Inkscape - Inkscape.) -- C:\WINDOWS\Installer\175431f.msi [122014219] =>.Inkscape [MD5.DB86891F70C1427F65F8FC1B24101642] [WIS][2021/04/28 21:14:18] (.Code Sector - TeraCopy.) -- C:\WINDOWS\Installer\180957.msi [2544128] =>.Code Sector [MD5.8E603938A49770199A2869856EE008F8] [WIS][2021/05/10 17:04:25] (.Kaspersky - Kaspersky Security Cloud.) -- C:\WINDOWS\Installer\3893a.msi [14594048] =>.Kaspersky [MD5.5C12C7B60E1322E784B596244FFF6F8D] [WIS][2021/05/10 17:06:51] (.Kaspersky - Kaspersky VPN.) -- C:\WINDOWS\Installer\38940.msi [8691712] =>.Kaspersky [MD5.374A456655C10CAE001F1D9684E10739] [WIS][2012/08/05 23:45:18] (.Nuance Communications, Inc. - Installer for Nuance PDF Professional 7.) -- C:\WINDOWS\Installer\b43bd.msi [6687232] =>.Nuance Communications, Inc. [MD5.C301B2D824D1FEE8D5174739B3AD73FA] [WIS][2021/09/10 11:11:32] (.Adobe Systems Incorporated - Adobe ARM Installer.) -- C:\WINDOWS\Installer\b59bd.msi [1060352] =>.Adobe Systems Incorporated [MD5.C4E77CE7FEAF5AD1630ECB597B1BE7F5] [WIS][2021/04/14 11:49:49] (.Avira Operations GmbH & Co. KG - Avira Software Updater.) -- C:\WINDOWS\Installer\e61faa.msi [64434176] =>.Avira Operations GmbH & Co. KG [MD5.DFE236D8AE93271E03A9CCCD1DDDC2FA] [WIS][2021/10/21 20:41:16] (.The Eraser Project - Eraser Installer.) -- C:\WINDOWS\Installer\fd36c1.msi [26603520] =>.The Eraser Project [MD5.576F6CE0D4618301A2757911C32CCF76] [WIS][2021/09/21 19:11:14] (.OpenOffice - OpenOffice 4.1.11.) -- C:\WINDOWS\Installer\ff8e8c.msi [2469888] =>.OpenOffice [MD5.2AD3AE06875E8C704DA9F109422277CF] [WIS][2020/07/06 13:20:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\10c7424.msp [5853184] =>.Adobe Inc. [MD5.63B461B17D63F25E40896EB92C900956] [WIS][2019/12/03 01:55:40] (.Adobe Inc..) -- C:\WINDOWS\Installer\10f5e7.msp [241102848] =>.Adobe Inc. [MD5.4CC38A296648BA222D1B10DD2D6F1783] [WIS][2021/02/25 14:40:17] (.Adobe Inc..) -- C:\WINDOWS\Installer\122d862.msp [3309568] =>.Adobe Inc. [MD5.F9EE3201972364B9A3B1E1AE6A783CEC] [WIS][2021/04/22 15:15:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\1244bd6.msp [23986176] =>.Adobe Inc. [MD5.BA664EAE92AA1371BA66F43C703AF5D1] [WIS][2021/04/16 15:01:55] (.Adobe Inc..) -- C:\WINDOWS\Installer\1544ac3.msp [24084480] =>.Adobe Inc. [MD5.42DBEE9FDB61E243EB3D2374E6C1B119] [WIS][2021/02/15 15:11:27] (.Adobe Inc..) -- C:\WINDOWS\Installer\18c9cde.msp [23928832] =>.Adobe Inc. [MD5.C5957AF398D19F2C1D0C630E8CFE5DD1] [WIS][2021/06/15 19:44:45] (.Kaspersky Lab JSC.) -- C:\WINDOWS\Installer\18fa135.msp [49152] =>.Kaspersky Lab JSC [MD5.7F1419CD81DEB4E238B7F0426B0782B7] [WIS][2020/05/11 07:43:48] (.Adobe Inc..) -- C:\WINDOWS\Installer\1a12085.msp [50810880] =>.Adobe Inc. [MD5.0100A634C97256301024BD8E61DFC173] [WIS][2021/06/15 12:57:37] (.Kaspersky Lab JSC.) -- C:\WINDOWS\Installer\1fa779.msp [307200] =>.Kaspersky Lab JSC [MD5.0D0746C913F88992E8CCE769C16727EC] [WIS][2021/09/30 13:40:04] (.Kaspersky Lab JSC.) -- C:\WINDOWS\Installer\2e678f.msp [614400] =>.Kaspersky Lab JSC [MD5.CE5DA8CFA0F4661F8A76A466AACCADCF] [WIS][2021/05/18 10:15:28] (.Kaspersky Lab JSC.) -- C:\WINDOWS\Installer\2ec6e5.msp [610304] =>.Kaspersky Lab JSC [MD5.BC546F5B6982C6159BF159426F96C2F1] [WIS][2021/05/10 08:24:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\35eb6.msp [3588096] =>.Adobe Inc. [MD5.0A659B6CD15ED216768C584A3F46947E] [WIS][2021/08/15 15:58:40] (.Kaspersky Lab JSC.) -- C:\WINDOWS\Installer\3c8227.msp [610304] =>.Kaspersky Lab JSC [MD5.72D73CF2AC0E8F8D176CFB7E3210BFE7] [WIS][2021/02/08 07:04:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\4e858.msp [68669440] =>.Adobe Inc. [MD5.B38B65A42CF74163084E480A68C0BDFC] [WIS][2021/09/09 08:56:02] (.Adobe Inc..) -- C:\WINDOWS\Installer\51aa5.msp [119877632] =>.Adobe Inc. [MD5.16CD2BA3438D2627805A64D0F4DC063E] [WIS][2020/08/19 12:46:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\63480.msp [2781184] =>.Adobe Inc. [MD5.2FAF8A9CEB741580051618AFE92C3258] [WIS][2021/07/05 18:42:00] (.Kaspersky Lab JSC.) -- C:\WINDOWS\Installer\8390af.msp [53248] =>.Kaspersky Lab JSC [MD5.DB596E2ADC480687F78F34B7D452D2CB] [WIS][2020/03/16 07:28:35] (.Adobe Inc..) -- C:\WINDOWS\Installer\90fdba.msp [8130560] =>.Adobe Inc. [MD5.497275FFB9E10B5A29223D2A99322F49] [WIS][2020/02/10 08:01:58] (.Adobe Inc..) -- C:\WINDOWS\Installer\9884a39.msp [25227264] =>.Adobe Inc. [MD5.A74E83195378ECE24C6AF9A16274CAD8] [WIS][2021/10/05 12:08:13] (.Adobe Inc..) -- C:\WINDOWS\Installer\baad5.msp [7356416] =>.Adobe Inc. [MD5.5705BA59CE2D386789436E2C34FC5635] [WIS][2019/12/19 09:53:18] (.Adobe Inc..) -- C:\WINDOWS\Installer\bb055.msp [1863680] =>.Adobe Inc. [MD5.E7565F34F95E68CA64D1FB70D5095291] [WIS][2021/07/28 11:44:05] (.Adobe Inc..) -- C:\WINDOWS\Installer\bfb8d.msp [3035136] =>.Adobe Inc. [MD5.11F7E4FF1AEFD307E111CA25022CD840] [WIS][2020/12/09 12:35:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\c3e6a.msp [3039232] =>.Adobe Inc. [MD5.6C872B8971E67A78A683FD192919AB70] [WIS][2020/09/23 06:58:22] (.Adobe Inc..) -- C:\WINDOWS\Installer\c5899.msp [33984512] =>.Adobe Inc. [MD5.EB046342024F6ED2530146520803942D] [WIS][2021/02/22 13:32:23] (.Adobe Inc..) -- C:\WINDOWS\Installer\ca86c1.msp [3342336] =>.Adobe Inc. [MD5.AC729EF5FD5047779136DD8670413E03] [WIS][2020/07/31 04:39:02] (.Adobe Inc..) -- C:\WINDOWS\Installer\cbc531.msp [70844416] =>.Adobe Inc. [MD5.BD4173F416AC180D7AD46CB583BAB949] [WIS][2020/05/21 17:16:51] (.Adobe Inc..) -- C:\WINDOWS\Installer\cbfbce.msp [1392640] =>.Adobe Inc. [MD5.B88274DA8D68D49732CC28A328885C98] [WIS][2020/11/23 11:11:53] (.Adobe Inc..) -- C:\WINDOWS\Installer\cc4722.msp [6557696] =>.Adobe Inc. [MD5.0134C922FC332FAF02CA6DD8AC1B1504] [WIS][2021/06/07 07:41:33] (.Adobe Inc..) -- C:\WINDOWS\Installer\cc6f6a.msp [39587840] =>.Adobe Inc. [MD5.923228256AD8BBCA145AE48027AA92BF] [WIS][2020/06/02 13:40:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\cc8956.msp [3026944] =>.Adobe Inc. [MD5.B5DB33058C86BABE5AB94975DFFF1748] [WIS][2021/07/12 08:17:08] (.Adobe Inc..) -- C:\WINDOWS\Installer\cf0cb9.msp [19656704] =>.Adobe Inc. [MD5.AC62598FB9B43FC108EB31A34CEB07AA] [WIS][2021/09/25 08:24:25] (.Adobe Inc..) -- C:\WINDOWS\Installer\d450c1.msp [27131904] =>.Adobe Inc. [MD5.8660A406E59E2FF3CF744021722921B4] [WIS][2021/03/10 14:12:35] (.Adobe Inc..) -- C:\WINDOWS\Installer\e2d09a.msp [6430720] =>.Adobe Inc. [MD5.A154141E9600EF0AA36BC45F4BF3D100] [WIS][2021/07/05 16:33:40] (.Kaspersky Lab JSC.) -- C:\WINDOWS\Installer\f16a1.msp [307200] =>.Kaspersky Lab JSC [MD5.59776CD5E3E33907213B1E8249F64A02] [WIS][2020/11/02 07:52:52] (.Adobe Inc..) -- C:\WINDOWS\Installer\f4218b.msp [20647936] =>.Adobe Inc. ---\\ FEATURE CONTROL. (214) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ACTIVEX_REPURPOSEDETECTION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ADDON_MANAGEMENT]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BEHAVIORS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_INPUT_PROMPTS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_IMG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_OBJECT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BLOCK_LMZ_SCRIPT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:WiseDiskCleaner.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:WiseDeleter.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:WiseRegCleaner.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AviraSoftwareUpdater.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:AcroRd32.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_LEGACY_COMPRESSION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPfewgsrv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGUI.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPGuiIT.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLgPad.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:SAPLOGON.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:Scale_for_R3.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_MK_PROTOCOL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:ieuser.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_SQM_UPLOAD_FOR_APP]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_TELNET_PROTOCOL]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DISABLE_UNICODE_HANDLE_CLOSING_CALLBACK]:YahooMusicEngine.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_DOCUMENT_COMPATIBLE_MODE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:devenv.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:dexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ENABLE_SCRIPT_PASTE_URLACTION_IF_PROMPT]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FEEDS]:msfeedssync.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_FORCE_ADDR_AND_STATUS]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_HTTP_USERNAME_PASSWORD_DISABLE]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IGNORE_XML_PROLOG]:msiexec.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:cs.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:waol.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_IMAGING_USE_ART]:wm.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_INTERNET_SHELL_FOLDERS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DISPPARAMS]:helppane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LEGACY_DLCONTROL_BEHAVIORS]:wlmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LMZSCRIPTFAIL_IN_INTERNET]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_LOCALMACHINE_LOCKDOWN]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPER1_0SERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MAXCONNECTIONSPERSERVER]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_HANDLING]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MIME_SNIFFING]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:mshta.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_MSHTML_AUTOLOAD_IEFRAME]:sidebar.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_OBJECT_CACHING]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_PROTOCOL_LOCKDOWN]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RELEASE_CALLBACK_ON_STOP_BINDING]:communicator.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ABOUT_PROTOCOL_IE7]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_ACTIVEXINSTALL]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_FILEDOWNLOAD]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_OBJECT_DATA_ATTRIBUTE]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_RESTRICT_RES_TO_LMZ]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SAFE_BINDTOOBJECT]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SECURITYBAND]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHIM_MSHELP_COMBINE]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SHOW_APP_PROTOCOL_WARN_DIALOG]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SSLUX]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:msimn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:outlook.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_SUBDOWNLOAD_LOCKDOWN]:winmail.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_UNC_SAVEDFILECHECK]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:infopath.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:excel.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:powerpnt.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_USE_WINDOWEDSELECTCONTROL]:winword.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VALIDATE_NAVIGATE_URL]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_VIEWLINKEDWEBOC_IS_UNSAFE]:HelpPane.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_MOVESIZECHILD]:msn.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WEBOC_POPUPMANAGEMENT]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_WINDOW_RESTRICTIONS]:VPREVIEW.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_XSSFILTER]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:explorer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:iexplore.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:PresentationHost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:prevhost.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:wmplayer.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSPPREARM.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:LICLUA.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:OSE.EXE =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VSTOInstaller.exe =>.Legitimate [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_ZONE_ELEVATION]:VPREVIEW.EXE =>.Legitimate ---\\ OBSERVATEURS des évènements (85) - 28s Application.Warning: Windows Search Service (23) ~Numéro: 125170 ~Date: 11/03/2021 10:46:09 PM ~ID: 3036 ~Description: Impossible de terminer l’analyse dans la source de contenu <%2>.Contexte : Application , Catalogue SystemIndexDétails : Une erreur interne s’est produite dans les Services HTTP Microsoft Windows (HRESULT : 0x80072ee4) (0x80072ee4) ~Suggestion: https://www.repairwin.com/fix-windows-event-3036-search-content-source-cannot-accessed-solved/ Application.Error: Microsoft-Windows-Defrag (4) ~Numéro: 125117 ~Date: 11/03/2021 07:06:22 PM ~ID: 264 ~Description: L’optimiseur de stockage n’a pas pu terminer %1 sur %2 car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A) ~Suggestion: Désactivez la surveillance du disque logique dans le pack d'administration du système d'exploitation de base SCOM pour arrêter l'analyse automatique de la défragmentation. Application.Error: SideBySide (4) ~Numéro: 125005 ~Date: 11/03/2021 10:07:26 AM ~ID: 35 ~Description: La création du contexte d’activation a échoué pour « %11 ». Erreur dans le fichier de manifeste ou de stratégie « %12 » à la ligne %13. L’identité de composant trouvé dans le manifeste ne correspond pas à celle du composant demandé. La référence est ~Suggestion: Ces erreurs peuvent généralement être ignorées Application.Error: VSS (5) ~Numéro: 124748 ~Date: 11/01/2021 10:44:49 PM ~ID: 13 ~Description: Informations du service de cliché instantané de volumes : impossible de démarrer le serveur COM de CLSID %1 et de nom %2. [%3] ~Suggestion: Aucune Application.Warning: Microsoft-Windows-RestartManager (8) ~Numéro: 122503 ~Date: 10/21/2021 08:40:54 PM ~ID: 10010 ~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9. ~Suggestion: Redémarrer manuellement l'application ou le service Application.Error: MsiInstaller (1) ~Numéro: 122496 ~Date: 10/21/2021 08:40:13 PM ~ID: 1013 ~Description: Product: Eraser 6.2.0.2991 -- A newer version of Eraser is already installed. Setup will now exit. Application.Error: Application Error (2) ~Numéro: 120360 ~Date: 10/09/2021 07:03:47 PM ~ID: 1000 ~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0xdba1e981 Nom du module défaillant : %4, version : %5, horodatage : 0x00d83fbe Code d’exception : 0xc0000005 Décalage d’erreur : 0x0000000000042d18 ID du processus défaillant : 0x1700 H ~Suggestion: Réparer ou réinstaller l'application. System.Warning: Microsoft-Windows-DNS-Client (40) ~Numéro: 128826 ~Date: 11/04/2021 07:28:44 PM ~ID: 1014 ~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: e1dexpress (27) ~Numéro: 128817 ~Date: 11/04/2021 07:28:36 PM ~ID: 27 ~Description: Intel(R) Ethernet Connection (2) I218-V Network link is disconnected. ~Suggestion: Vérifier la Connection Ethernet System.Warning: DCOM (699) ~Numéro: 128812 ~Date: 11/04/2021 06:49:35 PM ~ID: 10016 ~Description: propres à l’applicationLocalActivation{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}{15C20B67-12E7-4BB6-92BB-7AFF07997402}DESKTOP-MGHF6B7AdminS-1-5-21-188433853-1034861487-459835961-1001LocalHost (avec LRPC)Non disponibleNon disponible ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Error: Service Control Manager (57) ~Numéro: 128785 ~Date: 11/04/2021 06:08:09 PM ~ID: 7023 ~Description: Le service %1 s’est arrêté avec l’erreur : %%126 System.Warning: Microsoft-Windows-Kernel-PnP (56) ~Numéro: 128760 ~Date: 11/04/2021 06:08:03 PM ~ID: 219 ~Description: Le chargement du pilote %5 a échoué pour le périphérique %2. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: volsnap (3) ~Numéro: 128575 ~Date: 11/03/2021 09:00:14 PM ~ID: 36 ~Description: Les clichés instantanés du volume %2 ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur. System.Warning: User32 (1) ~Numéro: 127559 ~Date: 10/31/2021 07:05:06 PM ~ID: 1073 ~Description: La tentative par l’utilisateur %2 de redémarrer/arrêter l’ordinateur %1 a échoué System.Error: disk (30) ~Numéro: 127523 ~Date: 10/31/2021 11:58:07 AM ~ID: 11 ~Description: Le pilote a détecté une erreur du contrôleur sur %1. ---\\ SCAN ADDITIONNEL (122) - 14s C:\ProgramData\SecuritySuite =>SUP.Optional.ScanGuard C:\Users\Admin\AppData\Roaming\HMYGSetting =>Adware.Suspect C:\Users\Admin\AppData\Local\Solvusoft_Corporation =>SUP.Optional.Solvusoft HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\DriveFS 28 or later =>.SUP.Orphan HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MyPhoneExplorer =>.SUP.Orphan HKLM\Software\Classes\CLSID\{A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} =>.SUP.Orphan HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\DriveFS 28 or later =>.SUP.Orphan HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\DriveFS 28 or later =>.SUP.Orphan HKCU\Software\SSProtect =>.SUP.PCProtect HKLM\SOFTWARE\POLICIES\Mozilla\Firefox =>.SUP.FirefoxRestriction [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\Antivirus\licmgr.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\Antivirus\licmgr.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\system\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Panaustik\Panaustik.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\Security\Avira.Spotlight.UI.Application.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\Security\Avira.Spotlight.UI.Application.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\1-E - TSFT Maiz - AF\1-E - IM\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\Applications\KeePass\KeePass.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\Applications\KeePass\KeePass.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\system\system Maf - Copy (2).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\VPN\Avira.WebAppHost.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\VPN\Avira.WebAppHost.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\K-LiteCodecPackFull.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\K-LiteCodecPackFull.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Programmes-bis\Clover\clover.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Programmes-bis\Clover\clover.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\audacity-win-3.0.0.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\audacity-win-3.0.0.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Ping Identity\PingID\PingID.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Ping Identity\PingID\PingID.exe.ApplicationCompany =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Sauvegardes\sauvegarde clé usb\2021-03-28 Sauvegarde clé USB Ch\1-E - TSFT Maiz - AF\1-E - IM\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Divers Vidéos musiques téléphone et autres\Ordi\remo-drive-wipe.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Divers Vidéos musiques téléphone et autres\Ordi\remo-drive-wipe.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\1-E - TSFT Maiz - AF\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\1-podcast\Napoléon\kaspersky security cloud free 4.021.3.10.391fr_24936.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\1-podcast\Napoléon\kaspersky security cloud free 4.021.3.10.391fr_24936.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\ac-10_10a.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\ac-10_10a.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\00-images mail af\PingID.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\00-images mail af\PingID.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\klcp_update_1623_20210530.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\VirusTotalUploader2\VirusTotalUploader2.2.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Sauvegardes\sauvegarde clé usb\2021-06-27 Sauvegarde clé USB Ch\1-E - TSFT Maiz - AF\1-E - IM\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\FileZilla_3.53.1_win64-setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\FileZilla_3.53.1_win64-setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\shotcut-win64-200412.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\Apache_OpenOffice_4.1.7_Win_x86_install_fr.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\MalawareByteSetup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\MalawareByteSetup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\firewall GlassWireSetup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\firewall GlassWireSetup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Programmes-bis\firewallapplicationBlocker\Fab_x64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Programmes-bis\firewallapplicationBlocker\Fab_x64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Sauvegardes\sauvegarde clé usb\2021-08-01 Sauvegarde clé USB Ch\1-E - TSFT Maiz - AF\1-E - IM\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\KeyScrambler_Setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\system\system.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\1-E - TSFT Maiz - AF\1-E - IM\system.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\ReduceMemory\ReduceMemory.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\ReduceMemory\ReduceMemory.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\system.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Sauvegardes\sauvegarde clé usb\2021-08-29 Sauvegarde clé USB Ch\1-E - TSFT Maiz - AF\1-E - IM\system.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\1-podcast\ffmpeg23.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\aacenc3.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Sauvegardes\sauvegarde clé usb\2021-09-26 Sauvegarde clé USB Ch\1-E - TSFT Maiz - AF\1-E - IM\system.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:G:\1-E - TSFT Maiz - AF\1-E - IM\system.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\Antivirus\licmgr.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\Antivirus\licmgr.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\system\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Panaustik\Panaustik.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\Security\Avira.Spotlight.UI.Application.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\Security\Avira.Spotlight.UI.Application.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\1-E - TSFT Maiz - AF\1-E - IM\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\Applications\KeePass\KeePass.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\Applications\KeePass\KeePass.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\K-Lite Codec Pack\Tools\mediainfo.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\system\system Maf - Copy (2).exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\VPN\Avira.WebAppHost.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Avira\VPN\Avira.WebAppHost.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\K-LiteCodecPackFull.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\K-LiteCodecPackFull.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Programmes-bis\Clover\clover.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Programmes-bis\Clover\clover.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\audacity-win-3.0.0.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\audacity-win-3.0.0.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Ping Identity\PingID\PingID.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\Ping Identity\PingID\PingID.exe.ApplicationCompany =>.Unsigned [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Sauvegardes\sauvegarde clé usb\2021-03-28 Sauvegarde clé USB Ch\1-E - TSFT Maiz - AF\1-E - IM\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Divers Vidéos musiques téléphone et autres\Ordi\remo-drive-wipe.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Divers Vidéos musiques téléphone et autres\Ordi\remo-drive-wipe.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\1-E - TSFT Maiz - AF\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\1-podcast\Napoléon\kaspersky security cloud free 4.021.3.10.391fr_24936.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\1-podcast\Napoléon\kaspersky security cloud free 4.021.3.10.391fr_24936.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\ac-10_10a.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\ac-10_10a.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\00-images mail af\PingID.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\00-images mail af\PingID.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\klcp_update_1623_20210530.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Program Files (x86)\VirusTotalUploader2\VirusTotalUploader2.2.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Sauvegardes\sauvegarde clé usb\2021-06-27 Sauvegarde clé USB Ch\1-E - TSFT Maiz - AF\1-E - IM\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\FileZilla_3.53.1_win64-setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\FileZilla_3.53.1_win64-setup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\shotcut-win64-200412.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\Apache_OpenOffice_4.1.7_Win_x86_install_fr.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\MalawareByteSetup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\MalawareByteSetup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\firewall GlassWireSetup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\Admin\Downloads\firewall GlassWireSetup.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Programmes-bis\firewallapplicationBlocker\Fab_x64.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Programmes-bis\firewallapplicationBlocker\Fab_x64.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Sauvegardes\sauvegarde clé usb\2021-08-01 Sauvegarde clé USB Ch\1-E - TSFT Maiz - AF\1-E - IM\system Maf.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\KeyScrambler_Setup.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\system\system.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:Z:\1-E - TSFT Maiz - AF\1-E - IM\system.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\ReduceMemory\ReduceMemory.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\ReduceMemory\ReduceMemory.exe.ApplicationCompany =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\system.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Sauvegardes\sauvegarde clé usb\2021-08-29 Sauvegarde clé USB Ch\1-E - TSFT Maiz - AF\1-E - IM\system.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Bureau-bis\1-podcast\ffmpeg23.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\TEMP\aacenc3.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:D:\Sauvegardes\sauvegarde clé usb\2021-09-26 Sauvegarde clé USB Ch\1-E - TSFT Maiz - AF\1-E - IM\system.exe.FriendlyAppName =>.SUP.Orphan.MUICache [HKU\S-1-5-21-188433853-1034861487-459835961-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:G:\1-E - TSFT Maiz - AF\1-E - IM\system.exe.FriendlyAppName =>.SUP.Orphan.MUICache ---\\ RÉCAPITULATIF DES ÉLÉMENTS TROUVÉS (10) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/2017/11/01/adware-mybrowser/ =>PUP.Optional.MyBrowser https://nicolascoolman.eu/2017/12/21/sup-scanguard/ =>SUP.Optional.ScanGuard https://nicolascoolman.eu/2017/03/02/adware-suspect/ =>Adware.Suspect https://nicolascoolman.eu/forum/Topic/solvusoft-logiciel-potentiellement-superflu-lps/ =>SUP.Optional.Solvusoft https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/2017/10/30/sup-pcprotect/ =>.SUP.PCProtect https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.FirefoxRestriction https://nicolascoolman.eu/forum/Topic/orphan-muicache-logiciel-potentiellement-superflu-lps/ =>.SUP.Orphan.MUICache ---\\ NUMEROS DE SÉRIE [0097BE2CDB2A3C25F5] [22/06/2021] (.RECOVEO.) - c:\programmes-bis\sdc etat hdd\smart disk checker.exe =>.Not verified [00A6063D49BA43622875DF38B98FD3DB54] [18/12/2020] (.Marek Jasinski.) - c:\program files (x86)\freecommander xe\freecommander.exe =>.Marek Jasinski [00A6063D49BA43622875DF38B98FD3DB54] [28/06/2020] (.Marek Jasinski.) - C:\Program Files (x86)\FreeCommander XE\FcContextMenu64.exe =>.Marek Jasinski [00C7837D070B94E42331FC74C53BE7D94D] [01/11/2021] (.Musecy SM LTD.) - C:\Program Files (x86)\Audacity\unins000.exe =>.Musecy SM LTD [00C7837D070B94E42331FC74C53BE7D94D] [28/10/2021] (.Musecy SM LTD.) - C:\Program Files (x86)\Audacity\Audacity.exe =>.Musecy SM LTD [00EC8E4DA09CB58945354F7464BC20C229] [29/10/2021] (.Florian Heidenreich.) - c:\program files (x86)\mp3tag\mp3tag.exe =>.Not verified [010000000001100C983A31] [12/02/2009] (.EldoS Corporation.) - C:\WINDOWS\system32\drivers\rsdrvx64.sys =>.EldoS Corporation [011F39A2261A993DD15176DA6FE4FBEA] [05/10/2021] (.Adobe Inc..) - c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef\rdrcef.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [05/10/2021] (.Adobe Inc..) - c:\program files (x86)\adobe\acrobat reader dc\reader\acrocef_1\rdrcef.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [05/10/2021] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [05/10/2021] (.Adobe Inc..) - c:\program files (x86)\adobe\acrobat reader dc\reader\adobecollabsync.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [09/09/2021] (.Adobe Inc..) - C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroBroker.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [16/08/2021] (.Adobe Inc..) - c:\program files (x86)\common files\adobe\arm\1.0\adobearm.exe =>.Adobe Inc. [011F39A2261A993DD15176DA6FE4FBEA] [16/08/2021] (.Adobe Inc..) - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe =>.Adobe Inc. [01342592A0010CB1109C11C0519CFD24] [15/10/2021] (.Notepad++.) - C:\Program Files\Notepad++\NppShell_06.dll =>.Notepad++ [01342592A0010CB1109C11C0519CFD24] [21/10/2021] (.Notepad++.) - C:\Program Files\Notepad++\notepad++.exe =>.Notepad++ [01342592A0010CB1109C11C0519CFD24] [21/10/2021] (.Notepad++.) - c:\program files\notepad++\updater\gup.exe =>.Notepad++ [013C6684E0F39030C05FA36B42AF33CA] [03/11/2021] (.Kaspersky Lab JSC.) - C:\ProgramData\Kaspersky Lab\AVP21.3\Bases\Cache\vapm_689240940\vapmhst.exe =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [10/05/2021] (.Kaspersky Lab JSC.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\x64\shellex.dll =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [15/06/2021] (.Kaspersky Lab JSC.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\avp.exe =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [15/06/2021] (.Kaspersky Lab JSC.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [15/06/2021] (.Kaspersky Lab JSC.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksdeui.exe =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [15/06/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klpnpflt.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Security Cloud 21.3\x64\vssbridge64.exe =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\cm_km.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klbackupdisk.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klbackupflt.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\kldisk.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klflt.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klif.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klim6.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klkbdflt.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klmouflt.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klpd.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klwfp.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\klwtp.sys =>.Kaspersky Lab JSC [013C6684E0F39030C05FA36B42AF33CA] [19/02/2021] (.Kaspersky Lab JSC.) - C:\WINDOWS\System32\DRIVERS\kneps.sys =>.Kaspersky Lab JSC [02FA994D660DE659EE9037ECB437D766] [03/08/2020] (.Piriform Software Ltd.) - c:\program files\recuva\recuva64.exe =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [03/08/2020] (.Piriform Software Ltd.) - C:\Program Files\Recuva\RecuvaShell64.dll =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [03/08/2020] (.Piriform Software Ltd.) - C:\Program Files\Recuva\uninst.exe =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [19/10/2021] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\CCleaner64.exe =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [19/10/2021] (.Piriform Software Ltd.) - c:\program files\ccleaner\ccupdate.exe =>.Piriform Software Ltd [02FA994D660DE659EE9037ECB437D766] [19/10/2021] (.Piriform Software Ltd.) - C:\Program Files\CCleaner\uninst.exe =>.Piriform Software Ltd [0320BE3EB866526927F999B97B04346E] [30/05/2018] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe =>.Realtek Semiconductor Corp. [0320BE3EB866526927F999B97B04346E] [30/05/2018] (.Realtek Semiconductor Corp..) - C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe =>.Realtek Semiconductor Corp. [0320BE3EB866526927F999B97B04346E] [30/05/2018] (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp. [037995B0E70A59F8234F55341D80B51E] [03/11/2021] (.GlassWire.) - C:\Program Files (x86)\GlassWire\glasswire.exe =>.Not verified [037995B0E70A59F8234F55341D80B51E] [04/11/2021] (.GlassWire.) - C:\ProgramData\GlassWire\service-full\updates\glasswire-update-2.3.363.0.exe =>.Not verified [037995B0E70A59F8234F55341D80B51E] [22/10/2021] (.GlassWire.) - C:\Program Files (x86)\GlassWire\GWCtlSrv.exe =>.Not verified [037995B0E70A59F8234F55341D80B51E] [22/10/2021] (.GlassWire.) - C:\Program Files (x86)\GlassWire\GWIdlMon.exe =>.Not verified [037995B0E70A59F8234F55341D80B51E] [22/10/2021] (.GlassWire.) - C:\Program Files (x86)\GlassWire\uninstall.exe =>.Not verified [0407ABB64E9990180789EACB81F5F914] [04/01/2021] (.VideoLAN.) - c:\program files (x86)\adsltv\vlc\vlc.exe =>.VideoLAN [0407ABB64E9990180789EACB81F5F914] [18/06/2021] (.VideoLAN.) - c:\program files\videolan\vlc\vlc.exe =>.VideoLAN [044E3BF58976880FFD074448A8F7A058] [20/12/2019] (.Malwarebytes Corporation.) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Corporation [04D407A1DBE77BF95F777AEE] [11/10/2020] (.Heidi Computers Ltd.) - C:\Program Files\Eraser\Eraser.exe =>.Heidi Computers Ltd [04D407A1DBE77BF95F777AEE] [11/10/2020] (.Heidi Computers Ltd.) - C:\Program Files\Eraser\Eraser.Shell.dll =>.Heidi Computers Ltd [04D407A1DBE77BF95F777AEE] [21/10/2021] (.Heidi Computers Ltd.) - C:\Users\Admin\Downloads\Eraser 6.2.0.2991.exe =>.Heidi Computers Ltd [06384809953F926C77500E887D1BBEA0] [29/05/2015] (.GlassWire.) - C:\WINDOWS\System32\DRIVERS\gwdrv.sys =>.GlassWire [06AEA76BAC46A9E8CFE6D29E45AAF033] [01/10/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe =>.Google LLC [06AEA76BAC46A9E8CFE6D29E45AAF033] [01/10/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe =>.Google LLC [06FDFE1CF0EF43D40CFDB0016F42BD2A] [04/10/2021] (.Pierre GOUGELET.) - C:\Program Files\XnViewMP\unins000.exe =>.Pierre GOUGELET [06FDFE1CF0EF43D40CFDB0016F42BD2A] [23/09/2021] (.Pierre GOUGELET.) - C:\Program Files\XnViewMP\xnviewmp.exe =>.Pierre GOUGELET [07ED134B1ECF561A9EB5B05388BFF047] [26/10/2021] (.VS Revo Group Ltd..) - c:\program files\vs revo group\revo uninstaller\revounin.exe =>.VS Revo Group Ltd. [08003F32D18BC8A127E2C6EEE8091217] [18/04/2021] (.Ping Identity Corporation.) - C:\Program Files (x86)\Ping Identity\PingID\AutoUpdatesSetup.exe =>.Not verified [08003F32D18BC8A127E2C6EEE8091217] [18/04/2021] (.Ping Identity Corporation.) - c:\program files (x86)\ping identity\pingid\pingid.exe =>.Not verified [086FC72594117929497E352485386E68] [11/05/2021] (.Sena Technologies, Inc..) - C:\WINDOWS\System32\Drivers\csrbc.sys =>.Sena Technologies, Inc. [086FC72594117929497E352485386E68] [28/06/2021] (.Sena Technologies, Inc..) - c:\program files (x86)\sena technologies\senabluetoothdevicemanager\senabluetoothdevicemanagerforwindows.exe =>.Sena Technologies, Inc. [08A2EC4E78A09E174B192E5535984B59] [03/11/2021] (.Malwarebytes Inc.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Malwarebytes Inc [08A2EC4E78A09E174B192E5535984B59] [08/09/2021] (.Malwarebytes Inc.) - c:\program files\malwarebytes\anti-malware\mbaminstallerservice.exe =>.Malwarebytes Inc [0A01C3FF8855F008C8E4FA63973252E6] [15/10/2021] (.NCH Software, Inc..) - C:\Program Files (x86)\NCH Software\VideoPad\videopad.exe =>.NCH Software, Inc. [0A01C3FF8855F008C8E4FA63973252E6] [21/07/2021] (.NCH Software, Inc..) - C:\Program Files (x86)\NCH Software\WavePad\wavepad.exe =>.NCH Software, Inc. [0B847F536116FD6D5A31DBF8F6AD8AA1] [11/03/2020] (.Beijing Lang Xingda Network Technology Co., Ltd.) - C:\Windows\WiseUnlock64.sys =>.Beijing Lang Xingda Network Technology Co., Ltd [0C1CD3EEA47EDDA7A032573B014D0AFD] [02/11/2021] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [02/11/2021] (.Mozilla Corporation.) - c:\program files\mozilla firefox\default-browser-agent.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [02/11/2021] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [02/11/2021] (.Mozilla Corporation.) - c:\program files\mozilla firefox\pingsender.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [02/11/2021] (.Mozilla Corporation.) - C:\Program Files\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [02/11/2021] (.Mozilla Corporation.) - c:\program files\mozilla firefox\updater.exe =>.Mozilla Corporation [0D36AB0805BA9450220F865C58918F52] [03/11/2021] (.Malwarebytes Inc.) - c:\program files\malwarebytes\anti-malware\mbam.exe =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [03/11/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [03/11/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [08/09/2021] (.Malwarebytes Inc.) - C:\Program Files\Malwarebytes\Anti-Malware\mbuns.exe =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [08/09/2021] (.Malwarebytes Inc.) - c:\programdata\malwarebytes\mbamservice\instlrupdate\mbsetup.exe =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [13/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_dashboard_popup.2.0.6.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [14/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_dashboard_drawer.2.0.6.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [23/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_iris_282.2.0.1.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [23/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_iris_282_v2.2.0.2.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [23/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_iris_282_v3.2.0.0.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [23/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\mbam_modal_ELXR82.1.0.9.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [23/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\TrayPlugin.ELXR-79_Test.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [23/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\UIPlugin.ELXR-51_TestA.x64.dll =>.Malwarebytes Inc [0D36AB0805BA9450220F865C58918F52] [23/10/2021] (.Malwarebytes Inc.) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\UIPlugin.ELXR-51_TestB.x64.dll =>.Malwarebytes Inc [0E4418E2DEDE36DD2974C3443AFB5CE5] [01/11/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.69\Installer\chrmstp.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [01/11/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.69\Installer\setup.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [28/10/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\95.0.4638.69\elevation_service.exe =>.Google LLC [0E4418E2DEDE36DD2974C3443AFB5CE5] [28/10/2021] (.Google LLC.) - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe =>.Google LLC [1044F31AE1F93A0BB95F19AB9FAAC6BB] [31/10/2021] (.ESET, spol. s r.o..) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\SwReporter\93.269.200\em000_64.dll =>.ESET, spol. s r.o. [1044F31AE1F93A0BB95F19AB9FAAC6BB] [31/10/2021] (.ESET, spol. s r.o..) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\SwReporter\93.269.200\em001_64.dll =>.ESET, spol. s r.o. [1121CB5D7302C7544C0407CB59FFDE7FB180] [08/11/2019] (.MiniTool Solution Ltd.) - C:\WINDOWS\System32\pwdrvio.sys =>.MiniTool Solution Ltd [1121CB5D7302C7544C0407CB59FFDE7FB180] [08/11/2019] (.MiniTool Solution Ltd.) - C:\WINDOWS\system32\pwdspio.sys =>.MiniTool Solution Ltd [14F8FDD167F92402B1570B5DC495C815] [14/12/2019] (.Google Inc.) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe =>.Google Inc [197125ACD31C9C82FF88F388] [08/09/2018] (.QFX Software Corporation.) - C:\WINDOWS\System32\drivers\keyscrambler.sys =>.QFX Software Corporation [28736D0D296789512BAC66CCE86C4A00] [01/09/2017] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\System32\amwrtdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd. [28736D0D296789512BAC66CCE86C4A00] [21/12/2016] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\System32\ambakdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd. [28736D0D296789512BAC66CCE86C4A00] [21/12/2016] (.CHENGDU AOMEI Tech Co., Ltd..) - C:\WINDOWS\System32\ammntdrv.sys =>.CHENGDU AOMEI Tech Co., Ltd. [28AB01A5FE68ADF359AE7F900EA4F394] [01/11/2021] (.KC SOFTWARES SASU.) - C:\Program Files (x86)\KC Softwares\SUMo\unins000.exe =>.KC SOFTWARES SASU [28AB01A5FE68ADF359AE7F900EA4F394] [30/10/2021] (.KC SOFTWARES SASU.) - C:\Program Files (x86)\KC Softwares\SUMo\SUMo.exe =>.KC SOFTWARES SASU [2C5D44BD711C65FE730CB0F75AF44587] [16/03/2021] (.Rellik Software.) - C:\Program Files (x86)\EXIF Date Changer\unins000.exe =>.Not verified [321B7E594F7FA56E1699F8B27F129C88] [08/07/2011] (.Zeon Corporation.) - C:\Program Files (x86)\Nuance\PDF Professional 7\bin\ZeonIEFavClient.dll =>.Zeon Corporation [321B7E594F7FA56E1699F8B27F129C88] [16/07/2010] (.Zeon Corporation.) - C:\Program Files (x86)\Nuance\PDF Professional 7\bin\DirectShellExt.dll =>.Zeon Corporation [33000002198C0A9FB2162B10E6000000000219] [27/10/2021] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.77.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe =>.Skype Software Sarl [330000B85395C584DD5249B00800020000B853] [12/05/2016] (.Intel(R) OWR.) - C:\WINDOWS\System32\drivers\IntcDAud.sys =>.Intel(R) OWR [330000B898AA86B5A39E5A1BBD00020000B898] [01/11/2016] (.Intel(R) pGFX.) - C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\Setup.exe =>.Intel(R) pGFX [330000B898AA86B5A39E5A1BBD00020000B898] [01/11/2016] (.Intel(R) pGFX.) - C:\WINDOWS\System32\DRIVERS\igdkmd64.sys =>.Intel(R) pGFX [330000B898AA86B5A39E5A1BBD00020000B898] [01/11/2016] (.Intel(R) pGFX.) - C:\WINDOWS\System32\igfxCUIService.exe =>.Intel(R) pGFX [330000B898AA86B5A39E5A1BBD00020000B898] [01/11/2016] (.Intel(R) pGFX.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX [363061F76F0AFEFB11C30E55D8BE7FC0] [11/06/2017] (.MunSoft.) - C:\Program Files (x86)\MunSoft\Easy Drive Data Recovery\EasyDriveDataRecovery.exe =>.MunSoft [5042C501F1F0BA29E38E1F71621966C9] [10/09/2021] (.Open Source Developer, Dominik Reichl.) - C:\Program Files\KeePass Password Safe 2\KeePass.exe =>.Not verified [52208206776270A8DA279C88C92D0003] [04/08/2010] (.SHENZHEN LIAN HE AN XIN SOFTWARE DEVELOPMENT CO,LTD.) - C:\Program Files (x86)\SilverCrest SMLM 807 A1 Driver\DIFxCmd.exe =>.SHENZHEN LIAN HE AN XIN SOFTWARE DEVELOPMENT CO,LTD [56000001757376CD78AD000C9A000000000175] [17/10/2017] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group [5600000C7C7406EA74E3B2ABB5000000000C7C] [01/10/2020] (.INTELEPGSW2022.) - C:\Windows\System32\DriverStore\FileRepository\e1d68x64.inf_amd64_26255692c8b1c6b6\e1d68x64.sys =>.INTELEPGSW2022 [5CCAA82369A26AEE30D017616B1CEB69] [01/06/2017] (.Wondershare Technology Co.,Ltd.) - C:\Program Files (x86)\Wondershare\MobileGo\DriverInstall.exe =>.Wondershare Technology Co.,Ltd [5CCAA82369A26AEE30D017616B1CEB69] [01/06/2017] (.Wondershare Technology Co.,Ltd.) - c:\program files (x86)\wondershare\mobilego\mgnotification.exe =>.Wondershare Technology Co.,Ltd [5CCAA82369A26AEE30D017616B1CEB69] [01/06/2017] (.Wondershare Technology Co.,Ltd.) - C:\Program Files (x86)\Wondershare\MobileGo\MobileGo.exe =>.Wondershare Technology Co.,Ltd [5CCAA82369A26AEE30D017616B1CEB69] [01/06/2017] (.Wondershare Technology Co.,Ltd.) - C:\Program Files (x86)\Wondershare\MobileGo\MobileGoService.exe =>.Wondershare Technology Co.,Ltd [5CCAA82369A26AEE30D017616B1CEB69] [20/03/2017] (.Wondershare Technology Co.,Ltd.) - C:\Program Files (x86)\Wondershare\WAF\2.4.2.223\WsAppService.exe =>.Wondershare Technology Co.,Ltd [5D38D8BD64455068C2D1C74088C5E28A] [17/10/2021] (.Tim Kosse.) - C:\Users\Admin\Downloads\FileZilla_3.56.0_win64-setup.exe =>.Tim Kosse [5D38D8BD64455068C2D1C74088C5E28A] [27/10/2021] (.Tim Kosse.) - c:\program files\filezilla ftp client\filezilla.exe =>.Tim Kosse [5D38D8BD64455068C2D1C74088C5E28A] [27/10/2021] (.Tim Kosse.) - c:\program files\filezilla ftp client\fzsftp.exe =>.Tim Kosse [5D38D8BD64455068C2D1C74088C5E28A] [28/10/2021] (.Tim Kosse.) - C:\Users\Admin\Downloads\FileZilla_3.56.2_win64-setup.exe =>.Tim Kosse [60D8E4C1C16589BC9C5BB9B543A1D659] [09/05/2021] (.Code Sector.) - c:\programdata\code sector\teracopy\updates\update\teracopy3.8.5.exe =>.Not verified [60D8E4C1C16589BC9C5BB9B543A1D659] [21/04/2021] (.Code Sector.) - C:\Program Files\TeraCopy\Context.dll =>.Not verified [60D8E4C1C16589BC9C5BB9B543A1D659] [21/04/2021] (.Code Sector.) - C:\Program Files\TeraCopy\TeraCopyService.exe =>.Not verified [60D8E4C1C16589BC9C5BB9B543A1D659] [23/04/2021] (.Code Sector.) - C:\Program Files\TeraCopy\unins000.exe =>.Not verified [60D8E4C1C16589BC9C5BB9B543A1D659] [28/04/2021] (.Code Sector.) - c:\program files\teracopy\updater.exe =>.Not verified [632A7292CC35B3207DDA7B403F36EF9E] [19/02/2021] (.AnchorFree Inc.) - C:\WINDOWS\System32\drivers\kltap.sys =>.AnchorFree Inc [646BCFC60FA9758C9209A3F255A3D879] [13/10/2004] (.JASC SOFTWARE, INC..) - C:\Program Files (x86)\Paint Shop Pro 7 fr\Paint Shop Pro 7 fr\paint shop pro 704fv.exe =>.Not verified [65628C146ACE93037FC58659F14BD35F] [31/10/2021] (.ESET, spol. s r.o..) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\SwReporter\93.269.200\edls_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [31/10/2021] (.ESET, spol. s r.o..) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\SwReporter\93.269.200\em002_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [31/10/2021] (.ESET, spol. s r.o..) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\SwReporter\93.269.200\em003_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [31/10/2021] (.ESET, spol. s r.o..) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\SwReporter\93.269.200\em004_64.dll =>.ESET, spol. s r.o. [65628C146ACE93037FC58659F14BD35F] [31/10/2021] (.ESET, spol. s r.o..) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\SwReporter\93.269.200\em005_64.dll =>.ESET, spol. s r.o. [69A43EA5E38E03B6F842C589FC70D3CB] [17/02/2012] (.Nuance Communications, Inc..) - C:\Program Files (x86)\Nuance\PDF Professional 7\pdfpro7hook.exe =>.Nuance Communications, Inc. [69A43EA5E38E03B6F842C589FC70D3CB] [17/02/2012] (.Nuance Communications, Inc..) - C:\Program Files (x86)\Nuance\PDF Professional 7\PDFProFiltSrv.exe =>.Nuance Communications, Inc. [69A43EA5E38E03B6F842C589FC70D3CB] [17/02/2012] (.Nuance Communications, Inc..) - C:\Program Files (x86)\Nuance\PDF Professional 7\RegistryController.exe =>.Nuance Communications, Inc. [69A43EA5E38E03B6F842C589FC70D3CB] [17/02/2012] (.Nuance Communications, Inc..) - C:\Program Files (x86)\Nuance\PDF Professional 7\ShellExt70.dll =>.Nuance Communications, Inc. [69A43EA5E38E03B6F842C589FC70D3CB] [20/12/2014] (.Nuance Communications, Inc..) - C:\Program Files (x86)\Nuance.PDF.Converter.Enterprise.7.v16.0.0.400.MULTI.PC\Nuance.PDF.Converter.Enterprise.7.v16.0.0.400.MULTI.PC\Tools\Remover.exe =>.Nuance Communications, Inc. [6FF2E7A4F05C1FF61B6F5F65] [04/10/2021] (.Franz Josef Wechselberger.) - c:\program files (x86)\myphoneexplorer\myphoneexplorer.exe =>.Not verified [71AB43B1129754EA5809102A59EC8950] [27/05/2021] (.Irfan Skiljan.) - C:\Program Files\IrfanView\iv_uninstall.exe =>.Not verified [746A0188D4029410B5C3671049114284] [11/01/2007] (.SEIKO EPSON Corporation.) - C:\Program Files\EPSON\PrinterDriverTemp\SDX4400\COMMON\epupdate.exe =>.SEIKO EPSON Corporation [746A0188D4029410B5C3671049114284] [11/01/2007] (.SEIKO EPSON Corporation.) - C:\WINDOWS\system32\spool\DRIVERS\x64\3\EPUPDATE.EXE =>.SEIKO EPSON Corporation [746A0188D4029410B5C3671049114284] [11/09/2006] (.SEIKO EPSON Corporation.) - C:\Program Files (x86)\epson\escndv\setup\setup.exe =>.SEIKO EPSON Corporation [75B5499C96D676A5FAE2656B351E1FD6] [11/11/2020] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd. [75B5499C96D676A5FAE2656B351E1FD6] [29/06/2021] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudbus2.sys =>.Samsung Electronics Co., Ltd. [7AF1E5B8826150A78A17269C] [28/09/2021] (.QFX Software Corporation.) - C:\Program Files (x86)\KeyScrambler\KeyScrambler.exe =>.Not verified [7AF1E5B8826150A78A17269C] [28/09/2021] (.QFX Software Corporation.) - C:\Program Files (x86)\KeyScrambler\x64\KeyScrambler.exe =>.Not verified [7AF1E5B8826150A78A17269C] [28/09/2021] (.QFX Software Corporation.) - C:\Program Files (x86)\KeyScrambler\x64\QFXUpdateService.exe =>.Not verified [7C0229AEEC2C3A569592A68E28B3A9A2160737CD] [19/05/2021] (.TomTom International B.V..) - c:\program files\tomtom home\tomtomhome.exe =>.TomTom International B.V. [7C0229AEEC2C3A569592A68E28B3A9A2160737CD] [19/05/2021] (.TomTom International B.V..) - C:\Program Files\TomTom HOME\Uninstall TomTom HOME.exe =>.TomTom International B.V. ~ Unselected Options: ~ End of the scan, 14811 items in 04mn01s (3363)(0)