~ ZHPDiag v2023.9.26.45 Par Nicolas Coolman (2023/09/26) ~ Démarre par User (Administrator) (2023/09/28 11:07:14) ~ Assistance: https://forum.nicolascoolman.eu/ ~ Blog: https://nicolascoolman.eu/ ~ Facebook: https://www.facebook.com/nicolascoolman1 ~ Etat de la version: Version KO ~ Mode: Scanner ~ Rapport: C:\Users\User\Desktop\ZHPDiag.txt ~ Rapport: C:\Users\User\AppData\Roaming\ZHP\ZHPDiag.txt ~ UAC: Activate ~ Demarrage du système: Normal (Normal boot) Windows 10 Home, 64-bit (Build 19045) =>.Microsoft Corporation ---\\ NAVIGATEURS INTERNET (3) - 1s ~ MFIE: Mozilla Firefox 118.0 (x64 fr) ~ MSIE: Internet Explorer v11.789.19041.0 ~ OBIE: Microsoft Edge v117.0.2045.43 ---\\ INFORMATIONS SUR LES PRODUITS WINDOWS (8) - 0s ~ Windows Server License Manager Script : OK ~ Licence Script File Génération : OK ~ Windows(R) Operating System, RETAIL channel Windows ID Activation : OK ~ Windows Partial Key : 8HVX7 Windows License : OK ~ Windows Remaining Initializations Number : 1001 Windows Automatic Updates : OK ---\\ LOGICIELS DE PROTECTION (2) - 8s Windows Defender W10 (Activate) (Protection) Malwarebytes version 4.6.2.281 v4.6.2.281 (Protection) ---\\ INFORMATIONS SUR LE SYSTEME (18) - 4s ~ Operating System: Intel64 Family 6 Model 42 Stepping 7, GenuineIntel ~ Operating System: 64-bit ~ Boot mode: Normal (Normal boot) System Restore: Activé (Enable) System drive C: has 759 GB (83%) free of 904 GB : OK =>.Disk Space ---\\ INFORMATIONS MÉMOIRE (MEMORY INFORMATIONS) ~ Slots Total (Total Slots) : 4 ~ Slots Utilisés (Used Slots) : 3 ~ Slots Disponibles (Free Slots) : 1 ~ Type de barrette (FormFactor): SO-DIMM ~ Taille (Size) : 2 Go ~ Vitesse (Speed) : 1333 ~ Charge mémoire (Memory Usage) : 67% ~ RAM physique Total (Total Physical) : 6 Go : OK ~ RAM physique Disponible (Available Physical) : 2 Go ~ Total virtuelle (Total Virtual) : 7.41 Go ~ Disponible virtuelle (Available Virtual): 2.33 Go ---\\ MODE DE CONNEXION AU SYSTEME (3) - 0s ~ Computer Name: PC-LENOVO-STÉPH ~ User Name: User ~ Logged in as Administrator ---\\ ENUMERATION DES UNITES DE STOCKAGE (6) - 0s ~ Drive C: has 759 GB free of 904 GB (System) ~ Drive D: has 22 GB free of 25 GB ---\\ ETAT DE LA COMMANDE TRIM ~ La commande TRIM est active (NTFS) ~ La commande TRIM est active (ReFS) ---\\ CARACTÉRISTIQUES PRINCIPALES DU DISQUE SYSTEME (28) - 45s ~ Model: WDC WD10JPVT-24A1YT0 v01.01A01 (904 Gb ) ~ Media Type: HDD Disque Fixe ( Bus: SATA) ---\\ ATTRIBUTS GÉNÉRAUX DU DISQUE SYSTÈME OK - N0 - Indicateur d'usure du périphérique de stockage (Storage Device Wear Indicator) (%): 0 OK - N1 - Temps de latence maximal de vidage (Maximum Flash latency) (ms): 5.886 OK - N2 - Temps de latence maximal d'écriture (Maximum write latency) (ms): 11.265 OK - N3 - Temps de latence maximal de lecture (Maximum read latency) (ms): 9.468 OK - N4 - Vitesse de rotation (Spindle Speed) (RPM): Unknown ---\\ PARAMÈTRES S.M.A.R.T. DU DISQUE SYSTÈME (Flag/Actuel/Maxi) [Seuil] [Valeur brute] OK - 01 - Taux d'erreur de lecture (Raw Read Error Rate) - [47][200][200] [51][0] OK - 03 - Temps moyen de mise en rotation (ms) (Spin-Up Time) - [39][179][175] [21][2033] OK - 04 - Nombre de démarrages/arrêts (Start/Stop Count) - [50][92][92] [0][8540] OK - 05 - Nombre de secteurs réalloués (Reallocated Sector Count) - [51][200][200] [140][0] OK - 07 - Taux d’erreurs de recherche (Seek Error Rate) - [46][200][200] [0][0] OK - 09 - Heures de fonctionnement (Power-On Hours Count (POH) - [50][44][44] [0][41203] OK - 0A - Nombre d'essai de relance de rotation (Spin Retry Count) - [50][100][100] [0][0] OK - 0B - Nombre de recalibration (Calibration Retry Count) - [50][100][100] [0][0] OK - 0C - Nombre total de cycles d’alimentation (Power Cycle Count) - [50][92][92] [0][8536] OK - C0 - Nombre de Rétractation d'armature magnétique (Power-off Retract Count) - [50][200][200] [0][0] OK - C1 - Cycles de charge/décharge (Load/Unload Cycle Count) - [50][1][1] [0][47904] OK - C2 - Température interne actuelle (Enclosure Temperature) - [34][95][83] [0][52] OK - C4 - Nombre d'opérations de réallocations (remap) (Reallocation Event Count) - [50][200][200] [0][0] OK - C5 - Nombre de secteurs instables (Current Pending Sector Count) - [50][200][200] [0][0] OK - C6 - Total d'erreurs incorrigibles d'un secteur (Off-Line Uncorrectable Sector Count) - [48][100][253] [0][0] OK - C7 - Nombre d'erreurs dans le transfert de données (Ultra ATA CRC Error Rate) - [50][200][200] [0][0] OK - C8 - Nombre Total d'erreurs d'écriture d'un secteur (Uncorrectable Sector Count) - [8][200][200] [0][0] ---\\ ETAT DU CENTRE DE SECURITE WINDOWS (7) - 0s [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Policies\Explorer] NoActiveDesktopChanges: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\policies\system] EnableLUA: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\NOHIDDEN] CheckedValue: Modified [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL] CheckedValue: OK [HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Explorer\Associations] Application: OK [HKLM\Software\WOW6432Node\Microsoft\Windows NT\CurrentVersion\Winlogon] Shell: OK [HKLM64\SYSTEM\CurrentControlSet\Services\COMSysApp] Type: OK ---\\ RECHERCHE PARTICULIERE DE FICHIERS GENERIQUES (26) - 6s [MD5.574AF6D80FE7CC6422A8592DE7A39F78] - 13/09/2023 - (.Microsoft Corporation - Explorateur Windows.) -- C:\WINDOWS\Explorer.exe [5311304] =>.Microsoft® [MD5.EF3179D498793BF4234F708D3BE28633] - 15/01/2021 - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) -- C:\WINDOWS\System32\rundll32.exe [71680] [Unsigned] =>.Microsoft Corporation [MD5.D6E3B995E46D08046875E60ECCFF109B] - 14/12/2022 - (.Microsoft Corporation - Application de démarrage de Windows.) -- C:\WINDOWS\System32\Wininit.exe [420456] [Unsigned] =>.Microsoft Corporation [MD5.7BE0A4024A6095690D5AA819708F9989] - 13/09/2023 - (.Microsoft Corporation - Extensions Internet pour Win32.) -- C:\WINDOWS\System32\wininet.dll [5039616] [Unsigned] =>.Microsoft Corporation [MD5.B2AD768FF9A9DE3D886825A59DEF307A] - 13/09/2023 - (.Microsoft Corporation - Application d’ouverture de session Windows.) -- C:\WINDOWS\System32\Winlogon.exe [905216] [Unsigned] =>.Microsoft Corporation [MD5.E6C31BCDFB65E2DB98AD082E5DABD164] - 10/08/2022 - (.Microsoft Corporation - Bibliothèque de licences.) -- C:\WINDOWS\System32\sppcomapi.dll [316416] [Unsigned] =>.Microsoft Corporation [MD5.3BFBF674CF23E6F1501AC8599BCAF610] - 14/06/2023 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\System32\dnsapi.dll [821224] =>.Microsoft® [MD5.F1AC5FCDF2A974E81EDF0B14A9F648AC] - 14/06/2023 - (.Microsoft Corporation - DNS DLL de l’API Client.) -- C:\WINDOWS\Syswow64\dnsapi.dll [583104] =>.Microsoft® [MD5.D9D1E573B40DFC4A85CB5A7CE420BE15] - 14/06/2023 - (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\WINDOWS\System32\wuaueng.dll [3447296] [Unsigned] =>.Microsoft Corporation [MD5.3996E9A5F0CC85E93AA7ADE49A892C5E] - 07/12/2019 - (.Microsoft Corporation - DLL client de l’API uilisateur de Windows m.) -- C:\WINDOWS\System32\fr-FR\user32.dll.mui [19968] [Unsigned] =>.Microsoft Corporation [MD5.741A4DAC54E1E9D6E52EF1C57BCB7695] - 12/07/2023 - (.Microsoft Corporation - Pilote de fonction connexe pour WinSock.) -- C:\WINDOWS\System32\drivers\AFD.sys [651648] [Unsigned] =>.Microsoft Corporation [MD5.B2C716CEBC11930E3C1E38C3B6B9DDED] - 10/08/2022 - (.Microsoft Corporation - ATAPI IDE Miniport Driver.) -- C:\WINDOWS\System32\drivers\atapi.sys [31064] [Unsigned] =>.Microsoft Corporation [MD5.BD8897A464332FA5802486DC64248E03] - 12/10/2022 - (.Microsoft Corporation - CD-ROM File System Driver.) -- C:\WINDOWS\System32\drivers\Cdfs.sys [100864] [Unsigned] =>.Microsoft Corporation [MD5.054ABC6C64AE969D033B7876C04D52B4] - 14/10/2021 - (.Microsoft Corporation - SCSI CD-ROM Driver.) -- C:\WINDOWS\System32\drivers\Cdrom.sys [175616] [Unsigned] =>.Microsoft Corporation [MD5.AC8F072A3B69339079A65D5F5FC56459] - 16/02/2023 - (.Microsoft Corporation - DFS Namespace Client Driver.) -- C:\WINDOWS\System32\drivers\DfsC.sys [152064] [Unsigned] =>.Microsoft Corporation [MD5.0823AE866BF27AB24F2033DAD69691FA] - 09/08/2023 - (.Microsoft Corporation - High Definition Audio Bus Driver.) -- C:\WINDOWS\System32\drivers\HDAudBus.sys [138240] [Unsigned] =>.Microsoft Corporation [MD5.E4B36C6EAAAB703CBFECB92EE590FB31] - 07/12/2019 - (.Microsoft Corporation - Pilote de port i8042.) -- C:\WINDOWS\System32\drivers\i8042prt.sys [118272] [Unsigned] =>.Microsoft Corporation [MD5.E143A8B531B719C681A5FE27DAD7CFB3] - 09/08/2023 - (.Microsoft Corporation - IP Network Address Translator.) -- C:\WINDOWS\System32\drivers\IpNat.sys [227840] [Unsigned] =>.Microsoft Corporation [MD5.FE59E44FA3566A541EEBEBB0F217A3F0] - 09/08/2023 - (.Microsoft Corporation - Minirdr SMB Windows NT.) -- C:\WINDOWS\System32\drivers\MRxSmb.sys [584064] [Unsigned] =>.Microsoft Corporation [MD5.49F7DE6F689C47B64A2C2D46CD98E327] - 14/10/2020 - (.Microsoft Corporation - MBT Transport driver.) -- C:\WINDOWS\System32\drivers\netBT.sys [341504] [Unsigned] =>.Microsoft Corporation [MD5.C106D5315746C3EBF3A5AC2F405216F2] - 13/09/2023 - (.Microsoft Corporation - Pilote du système de fichiers NT.) -- C:\WINDOWS\System32\drivers\ntfs.sys [2844528] [Unsigned] =>.Microsoft Corporation [MD5.138FDB1EBCB61287A645BD3B06DBED5E] - 07/12/2019 - (.Microsoft Corporation - Pilote de port parallèle.) -- C:\WINDOWS\System32\drivers\Parport.sys [109056] [Unsigned] =>.Microsoft Corporation [MD5.561A30F3087256E9D02B99B3630D1016] - 13/09/2023 - (.Microsoft Corporation - RAS L2TP mini-port/call-manager driver.) -- C:\WINDOWS\System32\drivers\Rasl2tp.sys [112128] [Unsigned] =>.Microsoft Corporation [MD5.64991B36F0BD38026F7589572C98E3D6] - 13/04/2021 - (.Microsoft Corporation - Redirecteur de périphérique de Microsoft RD.) -- C:\WINDOWS\System32\drivers\rdpdr.sys [169984] [Unsigned] =>.Microsoft Corporation [MD5.2A8B28579A4964AA7EA8CEB1AC121243] - 15/09/2021 - (.Microsoft Corporation - TDI Translation Driver.) -- C:\WINDOWS\System32\drivers\tdx.sys [117584] [Unsigned] =>.Microsoft Corporation [MD5.37988A4065ACBC7A6A7E03E25AFFAE4A] - 12/07/2023 - (.Microsoft Corporation - Pilote de cliché instantané du volume.) -- C:\WINDOWS\System32\drivers\volsnap.sys [430928] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES SERVICES (Non désactivés) (10) - 6s O23 - Service: Bluetooth Driver Management Service (BcmBtRSupport) . (.Broadcom Corporation. - Bluetooth Radio Management Support.) - C:\WINDOWS\System32\BtwRSupportService.exe [Unsigned] =>.Broadcom Corporation. O23 - Service: Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® O23 - Service: Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation - Intel(R) ME Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation® O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® O23 - Service: Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation - Local Manageability Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® O23 - Service: Malwarebytes Service (MBAMService) . (.Malwarebytes - Malwarebytes Service.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.® O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.® O23 - Service: SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® O23 - Service: TomTomHOMEService (TomTomHOMEService) . (.TomTom - Windows Service for TomTom HOME.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV® O23 - Service: Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation - User Notification Service.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® ---\\ SERVICES NON MICROSOFT (SR=Démarré,SS=Stoppé) (97) - 38s SR - Boot [07/12/2019] [ 107320] (3ware) . (.LSI.) - C:\WINDOWS\System32\drivers\3ware.sys =>.Microsoft® SR - Demand [18/10/2016] [ 45048] Lenovo Virtual Power Controlle (ACPIVPC) . (.Lenovo Corporation.) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.Lenovo (Beijing) Co., Ltd.® SR - Boot [07/12/2019] [ 1135416] (ADP80XX) . (.PMC-Sierra.) - C:\WINDOWS\System32\drivers\ADP80XX.SYS =>.Microsoft® SR - Demand [07/12/2019] [ 18432] AMD GPIO Client Driver (amdgpio2) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdgpio2.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Demand [07/12/2019] [ 45568] AMD I2C Controller Service (amdi2c) . (.Advanced Micro Devices, Inc.) - C:\WINDOWS\System32\drivers\amdi2c.sys [Unsigned] =>.Advanced Micro Devices, Inc SR - Boot [04/06/2015] [ 73976] AMD PCI Root Bus Lower Filter (amdkmpfd) . (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc.® SR - Boot [07/12/2019] [ 83256] (amdsata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdsata.sys =>.Microsoft® SR - Boot [07/12/2019] [ 259384] (amdsbs) . (.AMD Technologies Inc..) - C:\WINDOWS\System32\drivers\amdsbs.sys =>.Microsoft® SR - Boot [07/12/2019] [ 26936] (amdxata) . (.Advanced Micro Devices.) - C:\WINDOWS\System32\drivers\amdxata.sys =>.Microsoft® SR - Demand [07/05/2019] [ 136760] AM USB Stroage Driver (AmUStor) . (.Copyright(C) 2017.) - C:\WINDOWS\System32\drivers\AmUStorU.sys =>.Alcorlink Corp.® SR - Demand [09/10/2020] [ 35976] Apple Lower Filter (AppleLowerFilter) . (.Apple Inc..) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,132303256403278908® SR - Boot [07/12/2019] [ 131896] Adaptec SAS/SATA-II RAID S (arcsas) . (.PMC-Sierra, Inc..) - C:\WINDOWS\System32\drivers\arcsas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 533816] QLogic Network Adapter VBD (b06bdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\bxvbda.sys =>.Microsoft® SR - Demand [27/03/2015] [ 173312] Bluetooth RAM Firmware Downloa (bcbtums) . (.Broadcom Corporation..) - C:\WINDOWS\System32\drivers\bcbtums.sys =>.Broadcom Corporation® SR - Demand [07/12/2019] [ 7585280] Pilote de la carte (BCM43XX) . (.Broadcom Corporation.) - C:\WINDOWS\System32\DRIVERS\bcmwl63a.sys [Unsigned] =>.Broadcom Corporation SR - Auto [27/03/2015] [ 2251992] Bluetooth Driver Man (BcmBtRSupport) . (.Broadcom Corporation..) - C:\WINDOWS\System32\BtwRSupportService.exe =>.Broadcom Corporation® SR - Demand [07/12/2019] [ 9728] bcmfn2 Service (bcmfn2) . (...) - C:\WINDOWS\System32\drivers\bcmfn2.sys [Unsigned] =>.Broadcom Corporation SR - Demand [27/03/2015] [ 188160] btwampfl (btwampfl) . (.Broadcom Corporation..) - C:\WINDOWS\System32\DRIVERS\btwampfl.sys =>.Broadcom Corporation® SR - Boot [07/12/2019] [ 319800] (cht4iscsi) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4sx64.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1853752] Chelsio Virtual Bus Driver (cht4vbd) . (.Chelsio Communications.) - C:\WINDOWS\System32\drivers\cht4vx64.sys =>.Microsoft® SS - Demand [09/03/2017] [ 300128] Intel(R) Content Protection HECI Service (cphs) . (.Intel Corporation.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX® SR - Boot [07/12/2019] [ 3418936] QLogic 10 Gigabit Ethernet Ada (ebdrv) . (.QLogic Corporation.) - C:\WINDOWS\System32\drivers\evbda.sys =>.Microsoft® SR - Boot [07/12/2019] [ 64312] (HpSAMD) . (.Hewlett-Packard Company.) - C:\WINDOWS\System32\drivers\HpSAMD.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36352] Intel Serial IO GPIO Controlle (iagpio) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iagpio.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 91136] Intel(R) Serial IO I2C Host Cont (iai2c) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\drivers\iai2c.sys [Unsigned] =>.Intel(R) Corporation SR - Demand [07/12/2019] [ 79360] Intel(R) S (iaLPSS2i_GPIO2) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 93184] In (iaLPSS2i_GPIO2_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 112128] Intel( (iaLPSS2i_GPIO2_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 96256] Intel( (iaLPSS2i_GPIO2_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 171520] Intel(R) Seria (iaLPSS2i_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 175104] Intel( (iaLPSS2i_I2C_BXT_P) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177152] Intel(R) S (iaLPSS2i_I2C_CNL) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 177664] Intel(R) S (iaLPSS2i_I2C_GLK) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [Unsigned] =>.Intel Corporation SR - Demand [07/12/2019] [ 38128] Intel(R) Serial IO (iaLPSSi_GPIO) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys =>.Intel Corporation - Client Components Group® SR - Demand [07/12/2019] [ 113152] Intel(R) Serial IO I (iaLPSSi_I2C) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [Unsigned] =>.Intel Corporation SR - Boot [09/07/2012] [ 645952] (iaStorA) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorA.sys =>.Intel Corporation® SR - Boot [07/12/2019] [ 884752] Intel Chipset SATA RAI (iaStorAVC) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorAVC.sys =>.Microsoft® SR - Boot [07/12/2019] [ 412176] Intel RAID Controller Wi (iaStorV) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\iaStorV.sys =>.Microsoft® SR - Demand [07/12/2019] [ 558904] Mellanox InfiniBand Bus/A (ibbus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ibbus.sys =>.Microsoft® SR - Demand [17/10/2017] [ 39504] Intel(R) Watchdog Timer Driver ( (ICCWDT) . (.Intel Corporation.) - C:\WINDOWS\System32\drivers\ICCWDT.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group® SR - Demand [09/03/2017] [ 5382856] (igfx) . (.Intel Corporation.) - C:\WINDOWS\System32\DRIVERS\igdkmd64.sys =>.Microsoft® SR - Demand [03/07/2012] [ 4074256] Service for Realtek HD Audio (WDM) (IntcAzAudAddService) . (.Realtek Semiconductor Corp..) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp® SR - Demand [19/06/2012] [ 342528] Son Intel(R) pour écrans (IntcDAud) . (.Intel(R) Corporation.) - C:\WINDOWS\System32\DRIVERS\IntcDAud.sys [Unsigned] =>.Intel(R) Corporation SR - Auto [20/04/2012] [ 635104] Intel(R) Capability Licensing Service Interface (Intel(R) Capability Licensing Service Interface) . (.Intel(R) Corporation.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service® SR - Auto [17/07/2012] [ 128896] Intel(R) ME Service (Intel(R) ME Service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe =>.Intel Corporation® SR - Boot [07/12/2019] [ 172344] (ItSas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\ItSas35i.sys =>.Microsoft® SR - Auto [17/07/2012] [ 165760] Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe =>.Intel Corporation® SR - Demand [07/12/2019] [ 121344] NDIS Miniport Drive (L1C) . (.Qualcomm Atheros Co., Ltd..) - C:\WINDOWS\System32\drivers\L1C63x64.sys [Unsigned] =>.Qualcomm Atheros Co., Ltd. SR - Boot [19/10/2015] [ 39008] LHDmgr (LHDmgr) . (.Lenovo..) - C:\WINDOWS\System32\DRIVERS\LhdX64.sys =>.Lenovo (Beijing) Limited® SR - Auto [17/07/2012] [ 276864] Intel(R) Management and Security Application Local Manageme (LMS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe =>.Intel Corporation® SR - Boot [07/12/2019] [ 108856] (LSI_SAS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 124216] (LSI_SAS2i) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 135992] (LSI_SAS3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\lsi_sas3i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 82744] (LSI_SSS) . (.LSI Corporation.) - C:\WINDOWS\System32\drivers\lsi_sss.sys =>.Microsoft® SR - Auto [28/09/2023] [ 222272] MBAMChameleon (MBAMChameleon) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\MbamChameleon.sys =>.Microsoft® SR - Boot [05/02/2023] [ 21480] MbamElam (MbamElam) . (.Malwarebytes.) - C:\WINDOWS\System32\DRIVERS\MbamElam.sys =>.Microsoft® SR - Auto [20/09/2023] [ 9287960] Malwarebytes Service (MBAMService) . (.Malwarebytes.) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc.® SR - Demand [05/02/2023] [ 239544] MBAMSwissArmy (MBAMSwissArmy) . (.Malwarebytes.) - C:\WINDOWS\System32\Drivers\mbamswissarmy.sys =>.Microsoft® SR - Boot [07/12/2019] [ 59704] (megasas) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (megasas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\MegaSas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 105480] (megasas35i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\megasas35i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 575800] (megasr) . (.LSI Corporation, Inc..) - C:\WINDOWS\System32\drivers\megasr.sys =>.Microsoft® SR - Demand [07/12/2019] [ 1131320] Mellanox ConnectX Bus E (mlx4_bus) . (.Mellanox.) - C:\WINDOWS\System32\drivers\mlx4_bus.sys =>.Microsoft® SS - Demand [27/09/2023] [ 239008] Mozilla Maintenance Service (MozillaMaintenance) . (.Mozilla Foundation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation® SR - Demand [00/00/0000] [ 0] (MpKsl3943253f) . (...) - C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C125F726-A368-4E97-A697-DCC5C6CC2CDE}\MpKslDrv.sys (.not file.) [Unsigned] SR - Boot [07/12/2019] [ 63800] (mvumis) . (.Marvell Semiconductor, Inc..) - C:\WINDOWS\System32\drivers\mvumis.sys =>.Microsoft® SR - Demand [07/12/2019] [ 146232] NetworkDirect Service (ndfltr) . (.Mellanox.) - C:\WINDOWS\System32\drivers\ndfltr.sys =>.Microsoft® SR - Auto [27/01/2010] [ 47632] NetGroup Packet Filter Driver (npf) . (.CACE Technologies, Inc..) - C:\WINDOWS\System32\drivers\npf.sys =>.CACE Technologies, Inc.® SR - Boot [07/12/2019] [ 150328] (nvraid) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 166200] (nvstor) . (.NVIDIA Corporation.) - C:\WINDOWS\System32\drivers\nvstor.sys =>.Microsoft® SR - Boot [07/12/2019] [ 58680] (percsas2i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas2i.sys =>.Microsoft® SR - Boot [07/12/2019] [ 68408] (percsas3i) . (.Avago Technologies.) - C:\WINDOWS\System32\drivers\percsas3i.sys =>.Microsoft® SS - Demand [23/08/2023] [ 472168] ProtonVPN Service (ProtonVPN Service) . (.ProtonVPN.) - C:\Program Files\Proton\VPN\v3.1.1\ProtonVPNService.exe =>.Proton Technologies AG® SS - Demand [23/08/2023] [ 471656] ProtonVPN WireGuard (ProtonVPN WireGuard) . (.ProtonVPN.) - C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.WireGuardService.exe =>.Proton Technologies AG® SR - Demand [02/08/2023] [ 34176] ProtonVPNCallout (ProtonVPNCallout) . (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\v3.1.1\Resources\ProtonVPN.CalloutDriver.sys =>.Microsoft® SR - Boot [07/12/2019] [ 44856] (SiSRaid2) . (.Silicon Integrated Systems Corp..) - C:\WINDOWS\System32\drivers\SiSRaid2.sys =>.Microsoft® SR - Boot [07/12/2019] [ 81720] (SiSRaid4) . (.Silicon Integrated Systems.) - C:\WINDOWS\System32\drivers\sisraid4.sys =>.Microsoft® SR - Boot [07/12/2019] [ 209720] (SmartSAMD) . (.Microsemi Corportation.) - C:\WINDOWS\System32\drivers\SmartSAMD.sys =>.Microsoft® SR - Demand [03/06/2015] [ 42696] (SmbDrvI) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated® SR - Demand [11/11/2020] [ 167280] SAMSUNG Mobile USB Modem Dri (ssudmdm) . (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd.® SR - Auto [22/07/2016] [ 754784] SAMSUNG Mobile Connectivity Service (ss_conn_service) . (.DEVGURU Co., LTD..) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD.® SR - Boot [07/12/2019] [ 31032] (stexstor) . (.Promise Technology, Inc..) - C:\WINDOWS\System32\drivers\stexstor.sys =>.Microsoft® SR - Demand [03/06/2015] [ 613576] Synaptics TouchPad Driver (SynTP) . (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated® SR - Auto [03/06/2015] [ 249032] SynTPEnh Caller Service (SynTPEnhService) . (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated® SR - Demand [21/04/2016] [ 27136] TAP-Windows Adapter V9 (tap0901) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tap0901.sys [Unsigned] =>.The OpenVPN Project SR - Demand [06/12/2016] [ 42064] Anchorfree HSS VPN Adapter (taphss6) . (.Anchorfree Inc..) - C:\WINDOWS\System32\drivers\taphss6.sys =>.AnchorFree Inc® SR - Demand [30/12/2020] [ 49024] TAP-ProtonVPN Windows Adapter (tapprotonvpn) . (.The OpenVPN Project.) - C:\WINDOWS\System32\drivers\tapprotonvpn.sys =>.Microsoft® SR - Auto [13/11/2009] [ 92008] TomTomHOMEService (TomTomHOMEService) . (.TomTom.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV® SR - Auto [17/07/2012] [ 364416] Intel(R) Management and Security Application User Notificat (UNS) . (.Intel Corporation.) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe =>.Intel Corporation® SR - Demand [03/09/2015] [ 648872] Digital Camera 1 (vm331avs) . (.Vimicro Corporation.) - C:\WINDOWS\System32\Drivers\vm331avs.sys =>.Microsoft Windows Hardware Compatibility Publisher® SR - Boot [07/12/2019] [ 166712] (vsmraid) . (.VIA Technologies Inc.,Ltd.) - C:\WINDOWS\System32\drivers\vsmraid.sys =>.Microsoft® SR - Boot [07/12/2019] [ 305464] VIA StorX Storage RAID Co (VSTXRAID) . (.VIA Corporation.) - C:\WINDOWS\System32\drivers\vstxraid.sys =>.Microsoft® SR - Demand [07/12/2019] [ 36152] WinMad Service (WinMad) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winmad.sys =>.Microsoft® SR - Demand [15/07/2023] [ 29592] Wintun (wintun) . (.WireGuard LLC.) - C:\WINDOWS\System32\drivers\wintun.sys =>.Microsoft® SR - Demand [07/12/2019] [ 73016] WinVerbs Service (WinVerbs) . (.Mellanox.) - C:\WINDOWS\System32\drivers\winverbs.sys =>.Microsoft® SR - Demand [02/04/2022] [ 489368] WireGuard (WireGuard) . (.WireGuard LLC.) - C:\WINDOWS\System32\drivers\wireguard.sys =>.Microsoft® SR - Demand [13/06/2012] [ 102376] wsvd (wsvd) . (."CyberLink.) - C:\WINDOWS\System32\DRIVERS\wsvd.sys =>.CyberLink® ---\\ TACHES PLANIFIEES EN AUTOMATIQUE (Registre) (10) - 28s O38 - TASK: {76DA94C1-978B-4A68-9AAF-79C949324411} [64Bits][\Mozilla\Firefox Background Update E7CF176E110C211B] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] =>.Mozilla Corporation O38 - TASK: {B520E0C3-2FF7-4888-AA5B-1A636470C2D6} [64Bits][\G2MUploadTask-S-1-5-21-2571112955-4239876419-1220594018-1001] - (.LogMeIn, Inc. - GoToMeeting.) -- C:\Users\User\AppData\Local\GoToMeeting\19950\g2mupload.exe [33456] =>.LogMeIn, Inc. O38 - TASK: {C47B3952-D67F-4038-86B2-DA7C38A8834C} [64Bits][\G2MUpdateTask-S-1-5-21-2571112955-4239876419-1220594018-1001] - (.LogMeIn, Inc. - GoToMeeting.) -- C:\Users\User\AppData\Local\GoToMeeting\19950\g2mupdate.exe [33456] =>.LogMeIn, Inc. O38 - TASK: {DD1707CC-F96D-4236-A9AA-64FEC836A862} [64Bits][\Mozilla\Firefox Default Browser Agent E7CF176E110C211B] - (.Mozilla Foundation - Firefox Default Browser Agent.) -- C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [717728] =>.Mozilla Foundation O38 - TASK: {FB1460CC-8BF0-4947-977C-EE4C001D0B76} [64Bits][\Synaptics TouchPad Enhancements] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- \Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136] =>.Synaptics Incorporated C:\WINDOWS\System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B - (.Mozilla Corporation.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla] =>.Mozilla Corporation C:\WINDOWS\System32\Tasks\G2MUploadTask-S-1-5-21-2571112955-4239876419-1220594018-1001 - (.LogMeIn, Inc..) -- C:\Users\User\AppData\Local\GoToMeeting\19950\g2mupload.exe [] =>.LogMeIn, Inc. C:\WINDOWS\System32\Tasks\G2MUpdateTask-S-1-5-21-2571112955-4239876419-1220594018-1001 - (.LogMeIn, Inc..) -- C:\Users\User\AppData\Local\GoToMeeting\19950\g2mupdate.exe [] =>.LogMeIn, Inc. C:\WINDOWS\System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B - (.Mozilla Foundation.) -- C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [do-task "E7CF176E110C211B.do-task] =>.Mozilla Foundation C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements - (.Synaptics Incorporated.) -- \Program Files\Synaptics\SynTP\SynTPEnh.exe [] =>.Synaptics Incorporated ---\\ APPLICATIONS LANCEES AU DÉMARRAGE DU SYSTÈME (12) - 3s O4 - HKLM\..\Run: [SecurityHealth] . (.Microsoft Corporation - Windows Security notification icon.) -- C:\WINDOWS\system32\SecurityHealthSystray.exe [Unsigned] =>.Microsoft Corporation O4 - HKLM\..\Run: [AmIcoSinglun64] . (.Alcor Micro Corp. - Single LUN Icon Utility for VID 058F PID 63.) -- C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe =>.AlcorMicro, Corp.® O4 - HKLM\..\Run: [HotKeysCmds] . (.Intel Corporation - hkcmd Module.) -- C:\WINDOWS\system32\hkcmd.exe [Unsigned] =>.Intel Corporation O4 - HKLM\..\Run: [Persistence] . (.Intel Corporation - persistence Module.) -- C:\WINDOWS\system32\igfxpers.exe [Unsigned] =>.Intel Corporation O4 - HKLM\..\Run: [Open-Shell Start Menu] . (.Open-Shell - Open-Shell Menu.) -- C:\Program Files\Open-Shell\StartMenu.exe [Unsigned] =>.Open-Shell O4 - HKLM\..\RunOnce: [msedge_cleanup_{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}] . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\EdgeWebView\Application\117.0.2045.43\Installer\setup.exe =>.Microsoft® O4 - HKCU\..\Run: [MicrosoftEdgeAutoLaunch_C46CFC0629905CC775E70B50EA8A519C] . (...) -- . [Unsigned] O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] . (.Microsoft Corporation - Microsoft OneDrive (32 bit) Setup.) -- C:\Windows\SysWOW64\OneDriveSetup.exe =>.Microsoft Corporation® O4 - HKLM\..\Wow6432Node\Run: [Dolby Advanced Audio v2] . (.Dolby Laboratories Inc. - Dolby Profile Selector.) -- C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe =>.Dolby Laboratories, Inc.® O4 - HKLM\..\Wow6432Node\Run: [Intel AppUp(SM) center] . (.Intel Corporation - Intel Services Manager.) -- C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe =>.Intel® Services Manager® O4 - HKUS\S-1-5-21-2571112955-4239876419-1220594018-1001\..\Run: [MicrosoftEdgeAutoLaunch_C46CFC0629905CC775E70B50EA8A519C] . (...) -- . [Unsigned] ---\\ PROCESSUS LANCES (42) - 17s [MD5.43907773F7563AF4DF0999D47522E802] - (.Broadcom Corporation. - Bluetooth Radio Management Support.) -- C:\Windows\System32\BtwRSupportService.exe [2251992] [PID.3484] [Unsigned] =>.Broadcom Corporation. [MD5.C99F8E90DE4B8F0C7FE15BB1CBCD29DC] - (.Intel(R) Corporation - Intel(R) Capability Licensing Service Inter.) -- C:\Program Files\Intel\iCLS Client\HeciServer.exe [635104] [PID.3524] =>.Intel® Upgrade Service® [MD5.3C4002D339491AF73D663FFC7F6E5ECB] - (.Intel Corporation - Intel(R) Dynamic Application Loader Host In.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760] [PID.3592] =>.Intel Corporation® [MD5.7DB9E612A2742ACEAB080B882E83141C] - (.DEVGURU Co., LTD. - MSS CS Connectivity Service.) -- C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784] [PID.3680] =>.Samsung Electronics CO., LTD.® [MD5.6FBDBC24B1642868E041463795CBFA44] - (.Synaptics Incorporated - 64-bit Synaptics Pointing Enhance Service.) -- C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [249032] [PID.3688] =>.Synaptics Incorporated® [MD5.FBD16717FD68B206C4CE3BB3C9EE5CB3] - (.TomTom - Windows Service for TomTom HOME.) -- C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [92008] [PID.3708] =>.TomTom International BV® [MD5.B0D7CD705519C43B4A14A29C627EC0B2] - (.Synaptics Incorporated - Synaptics TouchPad 64-bit Enhancements.) -- C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136] [PID.5292] =>.Synaptics Incorporated® [MD5.D08862FCD46DB3B7712FCCEC479B4F86] - (.Synaptics Incorporated - Synaptics Pointing Device Helper.) -- C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE [210120] [PID.4928] =>.Synaptics Incorporated® [MD5.1C29E604C2A4BF51E5425CA21DBB822B] - (.Open-Shell - Open-Shell Menu.) -- C:\Program Files\Open-Shell\StartMenu.exe [226816] [PID.6744] [Unsigned] =>.Open-Shell [MD5.8D91A2D44FD359B6F9109C9191A4A818] - (.Malwarebytes - Malwarebytes Tray Application.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe [9151456] [PID.7124] =>.Malwarebytes Inc.® [MD5.5CDDF06A40E89358807A2B9506F064D9] - (...) -- C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe [793416] [PID.3616] =>.Microsoft® [MD5.30E9FAC23E2537D82F2836CB81AEE186] - (.Intel Corporation - Intel(R) ME Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896] [PID.7700] =>.Intel Corporation® [MD5.4269D44BB47A6DA5D80B11F4C8536458] - (.Intel Corporation - Local Manageability Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [276864] [PID.7900] =>.Intel Corporation® [MD5.3402BBBC16E909985C4F184EB247E9BD] - (.Intel Corporation - igfxTray Module.) -- C:\Windows\System32\igfxtray.exe [193112] [PID.8108] [Unsigned] =>.Intel Corporation [MD5.22BF0CCB64AAE89004355E924E0AD463] - (.Intel Corporation - hkcmd Module.) -- C:\Windows\System32\hkcmd.exe [420960] [PID.8152] [Unsigned] =>.Intel Corporation [MD5.FDA7C3D4227097EC5B45BF9E769B5427] - (.Intel Corporation - persistence Module.) -- C:\Windows\System32\igfxpers.exe [463960] [PID.4144] [Unsigned] =>.Intel Corporation [MD5.0C061FE0FAA9F77001E0CF8BB070EB3B] - (...) -- C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.exe [460904] [PID.1028] =>.Proton Technologies AG® [MD5.8568DFCF984073038916F46ABE6BEA5C] - (.ProtonVPN - Proton VPN.) -- C:\Program Files\Proton\VPN\v3.1.1\ProtonVPNService.exe [472168] [PID.7056] =>.Proton Technologies AG® [MD5.DBE2E6388379D5CC78099650541E9566] - (.Intel Corporation - User Notification Service.) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [364416] [PID.8744] =>.Intel Corporation® [MD5.69BB8D323CAB088C8785CADFA4EAED18] - (.ProtonVPN - Proton VPN.) -- C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.WireGuardService.exe [471656] [PID.9384] =>.Proton Technologies AG® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.10924] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.7360] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.8300] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.10620] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.9544] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.9784] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.1228] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.3220] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.8196] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.3000] =>.Mozilla Corporation® [MD5.34FC8948902B5D8BF61D1ACB7D6AFF82] - (.Malwarebytes - Malwarebytes Native Message Service.) -- C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe [3539616] [PID.9736] =>.Malwarebytes Inc.® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.4512] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.8408] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.9532] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.10652] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.10308] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.4624] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.7460] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.8704] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.8548] =>.Mozilla Corporation® [MD5.9F53644B164163E28C108F361C6EA296] - (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe [676768] [PID.11208] =>.Mozilla Corporation® [MD5.7F19E6B460767398530A1AB5F75E0E3A] - (.Nicolas Coolman - ZHPSuite.) -- C:\Users\User\Desktop\ZHPSuite.exe [3511456] [PID.7780] [Unsigned] =>.Nicolas Coolman ---\\ CHROME, Démarrage, Recherche, Extensions (12) - 1s G2 - GCE: Preference [User][User Data\Default\Extensions] [aapocclcgogkmnckokdopfmhonfmgoek] =>.Google Inc. {Slides} G2 - GCE: Preference [User][User Data\Default\Extensions] [aohghmighlieiainnegkcijnfilokake] =>.Google Inc. {Docs} G2 - GCE: Preference [User][User Data\Default\Extensions] [apdfllckaahabafndbhieahigkjlhalf] http://drive.google.com/ =>.Google Inc. {Drive} G2 - GCE: Preference [User][User Data\Default\Extensions] [blpcfgokakmgnkcojhhkbfbldkacnbeo] http://www.youtube.com =>.Youtube {Youtube} G2 - GCE: Preference [User][User Data\Default\Extensions] [felcaaldnbdncclmgdcncolpebgiejap] =>.Google Inc. {Sheets} G2 - GCE: Preference [User][User Data\Default\Extensions] [flliilndjeohchalpbbcdekjklbdgfkk] Avira Browser Safety =>.Avira Software G2 - GCE: Preference [User][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [User][User Data\Default\Extensions] [nmmhkkegccagdldgiimedpiccmgmieda] =>.Google Inc. {Wallet} G2 - GCE: Preference [User][User Data\Default\Extensions] [pjkljhegncpnkpknbcohdijeoejaedia] http://mail.google.com/ =>.Google Inc. {Gmail} G2 - GCE: Preference [User][User Data\Default\Extensions] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] Chrome Media Router =>.Google Inc. G2 - GCE: Preference [User][User Data\Default\Local Extension Settings] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} G2 - GCE: Preference [User][User Data\Default\Sync Extension Settings] [pkedcjkdefgpdelpbcmbmeomcjbeemfm] =>.Google Inc. {Chrome Media Router} ---\\ FIREFOX, Plugins,Démarrage,Recherche,Extensions (34) - 12s M0 - MFSP: prefs.js [User - sdcf5m94.default-1449679278495-1622248414203] http://www.google.fr/ =>.Google Inc. P2 - EXT FILE: (.BSP2 - Displays and filters bookmarks on sear.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\bookmarksearchplus2@aafn.org.xpi [Unsigned] =>.BSP2 P2 - EXT FILE: (.Converter.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\firefox@online-convert.com.xpi [Unsigned] P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\jid1-KKzOGWgsW3Ao4Q@jetpack.xpi [Unsigned] =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [Unsigned] =>.Mozilla Corporation P2 - EXT FILE: (.Mozilla Corporation - Toggle Pause/Resume on all sites.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [Unsigned] =>.Mozilla Corporation P2 - EXT FILE: (.uBlock Origin.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\uBlock0@raymondhill.net.xpi [Unsigned] =>.uBlock Origin P2 - EXT FILE: (.Legitimate.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{0da2e603-21ba-4422-8049-b6d9e013ed84}.xpi [Unsigned] P2 - EXT FILE: (.Tab Suspender - Manually discard all open tabs except .) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{29780561-0607-49f3-aba9-fb8806d2f22d}.xpi [Unsigned] =>.Tab Suspender P2 - EXT FILE: (.Privacy Pass - Client support for Privacy Pass anonym.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{48748554-4c01-49e8-94af-79662bf34d50}.xpi [Unsigned] =>.Privacy Pass P2 - EXT FILE: (.New Tab Homepage - Loads your homepage when you open a ne.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{66E978CD-981F-47DF-AC42-E3CF417C1467}.xpi [Unsigned] =>.New Tab Homepage P2 - EXT FILE: (.Download Video.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{adeadebb-fedc-4180-a7f4-cfdd87496551}.xpi [Unsigned] =>.Download Video P2 - EXT FILE: (.Michel Gutierrez.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [Unsigned] =>.Michel Gutierrez P2 - EXT FILE: (.Auto Tab Discard.) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{c2c003ee-bd69-42a2-b0e9-6f34222cb046}.xpi [Unsigned] =>.Auto Tab Discard P2 - EXT FILE: (.Google Inc..) -- C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [Unsigned] =>.Google Inc. C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\bookmarkbackups =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\browser-extension-data =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\crashes =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\datareporting =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\extensions =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\features =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\gmp =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\gmp-gmpopenh264 =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\gmp-widevinecdm =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\minidumps =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\personality-provider =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\saved-telemetry-pings =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\security_state =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\sessionstore-backups =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\settings =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\shader-cache =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\storage =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\weave =>Mozilla Corporation C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\sdcf5m94.default-1449679278495-1622248414203\browser-extension-data\reset-search-defaults@mozilla.com =>Mozilla Corporation ---\\ INTERNET EXPLORER,Démarrage,Recherche,URLSearchHook (16) - 0s R0 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.fr =>.Google Inc. R0 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R0 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://google.fr =>.Google Inc. R1 - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/ =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Extensions Off Page = about:noadd-ons =>.Microsoft Corporation R1 - HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main,Security Risk Page = about:securityrisk =>.Microsoft Corporation R3 - URLSearchHook: (no name)[HKCU] - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} . (.Microsoft Corporation - Navigateur Internet.) (11.00.19041.3324 (WinBuild.160101.0800)) -- C:\Windows\System32\ieframe.dll =>.Microsoft Corporation ---\\ INTERNET EXPLORER, Site de confiance et site sensible (2) - 0s ~ Microsoft Internet Explorer Restricted Site(s) Domains: 0(Good) / 0(Bad) ~ Microsoft Internet Explorer Restricted Site(s) EscDomains: 0(Good) / 0(Bad) ---\\ MICROSOFT EDGE, Plugin,Favoris,Démarrage,Recherche,Extension (6) - 1s E2 - GCE: Preference [User][User Data\Default\Extensions] [ghbmnnjooekpmoecnnnilnnbdlolhkhi] =>.Google Inc. {Docs hors connexion} E2 - GCE: Preference [User][User Data\Default\Extensions] [ihcjicgdanjaechkgeegckofjjedodee] Malwarebytes =>.Malwarebytes E2 - GCE: Preference [User][User Data\Default\Extensions] [jmjflgjpcpepeafmmgdpfkogkghcpiha] Edge relevant text changes =>.Legitimate E2 - GCE: Preference [User][User Data\Default\Local Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes E2 - GCE: Preference [User][User Data\Default\Local Extension Settings] [jdiccldimpdaibmpdkjnbmckianbfold] =>.Microsoft Corporation E2 - GCE: Preference [User][User Data\Default\Sync Extension Settings] [ihcjicgdanjaechkgeegckofjjedodee] =>.Malwarebytes ---\\ INTERNET EXPLORER,Proxy Management (8) - 0s R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,MigrateProxy = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,EnableHttp1_1 = 1 =>.Default.Value R5 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,AutoConfigProxy = wininet.dll R5 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value R5 - HKLM\SYSTEM\CurrentControlSet\services\NlaSvc\Parameters\Internet\ManualProxies [] =>.Microsoft R5 - HKLM\SOFTWARE\WOW6432Node\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyEnable = 0 =>.Default.Value ---\\ INTERNET EXPLORER,IniFiles, Autoloading Programs (3) - 0s F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: Shell=C:\WINDOWS\explorer.exe (.Microsoft Corporation.) =>.Microsoft Corporation F2 - REG:system.ini: VMApplet= ---\\ ETUDE DU FICHIER HOSTS (1) - 0s ~ Le fichier hôte est sain (The hosts file is clean) (1) ---\\ BROWSER HELPER OBJECT DE NAVIGATEUR (BHO) (4) - 0s O2 - BHO: IEToEdge BHO [64Bits] - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} . (.Microsoft Corporation - IEToEdge BHO.) -- C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.43\BHO\ie_to_edge_bho_64.dll =>.Microsoft® O2 - BHO: Lync Click to Call BHO [64Bits] - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} . (.Microsoft Corporation - Skype for Business.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll =>.Microsoft® O2 - BHO: ExplorerBHO Class [64Bits] - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} . (.Open-Shell - Adds classic Windows Explorer features.) -- C:\Program Files\Open-Shell\ClassicExplorer64.dll [Unsigned] =>.Open-Shell O2 - BHO: ClassicIEBHO Class [64Bits] - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} . (.Open-Shell - Customizations for the title bar and status.) -- C:\Program Files\Open-Shell\ClassicIEDLL_64.dll [Unsigned] =>.Open-Shell ---\\ RACCOURCIS GLOBAL STARTUP (77) - 31s O4 - GS\Desktop [User]: AVI Player.lnk . (.spgsoft.com - .) C:\Program Files (x86)\AVI Player\AVI Player.exe [Unsigned] =>.spgsoft.com O4 - GS\Desktop [User]: Bel Atout.lnk . (...) C:\Program Files (x86)\Jeux de cartes\Bel Atout\belatout.exe [Unsigned] O4 - GS\Desktop [User]: Documents - Raccourci.lnk . (...) C:\Users\User\Documents [Unsigned] O4 - GS\Desktop [User]: Lettre-PERSO-SC-avec-signature lecture seule) - Raccourci (2).lnk . (...) C:\Users\User\Documents\H\Modèles de lettre\Lettre-PERSO-SC-avec-signature lecture seule).doc [Unsigned] O4 - GS\Desktop [User]: Lettre-PERSO-SC-avec-signature lecture seule) - Raccourci.lnk . (...) C:\Users\User\Documents\H\Modèles de lettre\Lettre-PERSO-SC-avec-signature lecture seule).doc [Unsigned] O4 - GS\Desktop [User]: Microsoft Teams.lnk . (.Microsoft Corporation - Microsoft Teams.) C:\Users\User\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" =>.Microsoft® O4 - GS\Desktop [User]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Desktop [User]: PhotoFiltre 7.lnk . (.PhotoFiltre - PhotoFiltre 7.) C:\Program Files (x86)\PhotoFiltre 7 (=photoshop)\PhotoFiltre7.exe [Unsigned] =>.PhotoFiltre O4 - GS\Desktop [User]: Photos Pierrick - Raccourci.lnk . (...) C:\Users\User\Pictures\Photos Pierrick [Unsigned] =>.Microsoft Corporation O4 - GS\Desktop [User]: Telegram.lnk . (.Telegram FZ-LLC - Telegram Desktop.) C:\Users\User\Desktop\Telegram Desktop\Telegram.exe {7AE2B5021371F092A904B6FA}. =>.Telegram FZ-LLC O4 - GS\Desktop [User]: Word 2016.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft® O4 - GS\Desktop [User]: ZHPCleaner.lnk . (.Nicolas Coolman - ZHPCleaner.) C:\Users\User\AppData\Roaming\ZHP\ZHPCleaner.exe =>.Nicolas Coolman O4 - GS\Quicklaunch [User]: AirDroid.lnk . (.Sand Studio - AirDroid 3 Launcher.) C:\Users\User\Documents\Airdroid\Launcher.exe =>.SAND STUDIO LIMITED® O4 - GS\Quicklaunch [User]: Launch Internet Explorer Browser.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Quicklaunch [User]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\sendTo [User]: Destinataire de télécopie.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\Windows\System32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [User]: Fax Recipient.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe /SendTo =>.Microsoft Corporation O4 - GS\sendTo [User]: Transfert de fichiers Bluetooth.LNK . (.Microsoft Corporation - Transfère les fichiers entre l.) C:\Windows\System32\fsquirt.exe =>.Microsoft Corporation O4 - GS\TaskBar [User]: Bel Atout.lnk . (...) C:\Program Files (x86)\Jeux de cartes\Bel Atout\belatout.exe [Unsigned] O4 - GS\TaskBar [User]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\TaskBar [User]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --profile-directory=Default =>.Microsoft® O4 - GS\TaskBar [User]: Mozilla Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\TaskBar [User]: Pale Moon.lnk . (.Moonchild Productions - Pale Moon web browser.) C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver® O4 - GS\Programs [User]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe [Unsigned] =>.Open Media LLC O4 - GS\Programs [User]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation® O4 - GS\Programs [User]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\User\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\CommonDesktop [Public]: Adobe Download Assistant.lnk . (...) C:\Program Files (x86)\Adobe Download Assistant\Adobe Download Assistant.exe [Unsigned] =>.Adobe Inc. O4 - GS\CommonDesktop [Public]: AirDroid.lnk . (.Sand Studio - AirDroid 3.) C:\Users\User\Documents\Airdroid\AirDroid.exe =>.SAND STUDIO LIMITED® O4 - GS\CommonDesktop [Public]: Avidemux 2.6 - 32 bits (32-bit).lnk . (.Free Software Foundation - Avidemux 2.6.14.) C:\Program Files (x86)\Avidemux 2.6 - 32 bits\avidemux.exe [Unsigned] =>.Free Software Foundation O4 - GS\CommonDesktop [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\CommonDesktop [Public]: Guide de l’utilisateur.lnk . (.Lenovo - UserGuide.) C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe [Unsigned] =>.Lenovo O4 - GS\CommonDesktop [Public]: Intel AppUp(SM) center.lnk . (.Intel Corporation - Intel AppUp(SM).) C:\Program Files (x86)\Intel\IntelAppStore\bin\AppUp.exe --domain F0399437-FD0C-4A48-B101-F0314A6172E4 =>.Intel AppUp(SM) center® O4 - GS\CommonDesktop [Public]: Labography.lnk . (.axpha - .) C:\Program Files (x86)\Labography\Labography.exe [Unsigned] =>.Axpha O4 - GS\CommonDesktop [Public]: Lenovo Solution Center.lnk . (...) C:\Program Files (x86)\Lenovo\Lenovo Solution Center\LSC.exe [Unsigned] =>.Lenovo Group Limited O4 - GS\CommonDesktop [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\CommonDesktop [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\CommonDesktop [Public]: OneKey Recovery.lnk . (.CyberLink - OneKey Recovery.) C:\Program Files\Lenovo\OneKey App\OneKey Recovery\OneKey Recovery.exe =>.CyberLink® O4 - GS\CommonDesktop [Public]: OpenOffice 4.1.13.lnk . (.Apache Software Foundation - OpenOffice 4.1.13.) C:\Program Files (x86)\OpenOffice 4\program\soffice.exe [Unsigned] =>.Apache Software Foundation O4 - GS\CommonDesktop [Public]: Pale Moon.lnk . (.Moonchild Productions - Pale Moon web browser.) C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver® O4 - GS\CommonDesktop [Public]: Proton VPN.lnk . (.ProtonVPN - Proton VPN.) C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe =>.Proton Technologies AG® O4 - GS\CommonDesktop [Public]: Revo Uninstaller (Outil de désinstallation).lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group Ltd.® O4 - GS\CommonDesktop [Public]: Revo Uninstaller.lnk . (.VS Revo Group - Revo Uninstaller.) C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group Ltd.® O4 - GS\CommonDesktop [Public]: UCheck.lnk . (...) C:\Program Files\UCheck\UCheck64.exe =>.ADLICE® O4 - GS\CommonDesktop [Public]: VLC media player.lnk . (.VideoLAN - VLC media player.) C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN® O4 - GS\Programs [Public]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe [Unsigned] =>.Open Media LLC O4 - GS\Programs [Public]: Navigation privée de Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation® O4 - GS\Programs [Public]: OneDrive.lnk . (.Microsoft Corporation - Microsoft OneDrive.) C:\Users\User\AppData\Local\Microsoft\OneDrive\OneDrive.exe =>.Microsoft® O4 - GS\Accessories [Public]: Internet Explorer.lnk . (.Microsoft Corporation - Internet Explorer.) C:\Program Files (x86)\Internet Explorer\iexplore.exe =>.Microsoft® O4 - GS\Accessories [Public]: Math Input Panel.lnk . (.Microsoft Corporation - .) C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\mip.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Notepad.lnk . (.Microsoft Corporation - Bloc-notes.) C:\WINDOWS\system32\notepad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Paint.lnk . (.Microsoft Corporation - Paint.) C:\WINDOWS\system32\mspaint.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Quick Assist.lnk . (.Microsoft Corporation - Quick Assist.) C:\WINDOWS\system32\quickassist.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Remote Desktop Connection.lnk . (.Microsoft Corporation - Connexion Bureau à distance.) C:\WINDOWS\system32\mstsc.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Snipping Tool.lnk . (.Microsoft Corporation - Outil Capture d’écran.) C:\WINDOWS\system32\SnippingTool.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Steps Recorder.lnk . (.Microsoft Corporation - Enregistreur d’actions.) C:\WINDOWS\system32\psr.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Fax and Scan.lnk . (.Microsoft Corporation - Microsoft Windows Fax and Scan.) C:\WINDOWS\system32\WFS.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: Windows Media Player.lnk . (.Microsoft Corporation - Lecteur multimédia Windows.) C:\Program Files (x86)\Windows Media Player\wmplayer.exe /prefetch:1 =>.Microsoft Corporation O4 - GS\Accessories [Public]: Wordpad.lnk . (.Microsoft Corporation - Application Windows Wordpad.) C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe =>.Microsoft Corporation O4 - GS\Accessories [Public]: XPS Viewer.lnk . (.Microsoft Corporation - Visionneuse XPS.) C:\WINDOWS\system32\xpsrchvw.exe =>.Microsoft Corporation O4 - GS\SystemTools [Public]: Character Map.lnk . (.Microsoft Corporation - Table des caractères.) C:\WINDOWS\system32\charmap.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: 4K Video Downloader.lnk . (.Open Media LLC - .) C:\Program Files (x86)\4KDownload\4kvideodownloader\4kvideodownloader.exe [Unsigned] =>.Open Media LLC O4 - GS\ProgramsCommon [Public]: Access.lnk . (.Microsoft Corporation - Microsoft Access.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSACCESS.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Adobe Download Assistant.lnk . (...) C:\Program Files (x86)\Adobe Download Assistant\Adobe Download Assistant.exe [Unsigned] =>.Adobe Inc. O4 - GS\ProgramsCommon [Public]: Excel.lnk . (.Microsoft Corporation - Microsoft Excel.) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Firefox.lnk . (.Mozilla Corporation - Firefox.) C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O4 - GS\ProgramsCommon [Public]: Immersive Control Panel.lnk . (.Microsoft Corporation - Windows Control Panel.) C:\WINDOWS\System32\Control.exe =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: Lenovo Cloud Storage by SugarSync.lnk . (.SugarSync, Inc. - SugarSync Manager.) C:\Program Files (x86)\SugarSync\SugarSyncManager.exe =>.SugarSync, Inc.® O4 - GS\ProgramsCommon [Public]: Malwarebytes.lnk . (.Malwarebytes - .) C:\Program Files (x86)\Malwarebytes\Anti-Malware\mbam.exe [Unsigned] =>.Malwarebytes O4 - GS\ProgramsCommon [Public]: Microsoft Edge.lnk . (.Microsoft Corporation - Microsoft Edge.) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: OneNote.lnk . (.Microsoft Corporation - Microsoft OneNote.) C:\Program Files (x86)\Microsoft Office\root\Office16\ONENOTE.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Outlook.lnk . (.Microsoft Corporation - Microsoft Outlook.) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Pale Moon.lnk . (.Moonchild Productions - Pale Moon web browser.) C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver® O4 - GS\ProgramsCommon [Public]: PC Health Check.lnk . (...) C:\Program Files (x86)\PCHealthCheck\PCHealthCheck.exe [Unsigned] =>.Microsoft Corporation O4 - GS\ProgramsCommon [Public]: PowerPoint.lnk . (.Microsoft Corporation - Microsoft PowerPoint.) C:\Program Files (x86)\Microsoft Office\root\Office16\POWERPNT.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Publisher.lnk . (.Microsoft Corporation - Microsoft Publisher.) C:\Program Files (x86)\Microsoft Office\root\Office16\MSPUB.EXE =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Skype Entreprise.lnk . (.Microsoft Corporation - Skype for Business.) C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe =>.Microsoft® O4 - GS\ProgramsCommon [Public]: Word.lnk . (.Microsoft Corporation - Microsoft Word.) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE =>.Microsoft® ---\\ MODIFICATION DOMAINE/ADRESSES (DNS) (4) - 0s O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{eab2262d-9ab1-5975-7d92-334d06f4972b}: NameServer = 10.2.0.1 =>.Private IP O17 - HKLM\System\CCS\Services\Tcpip\..\{07e5b248-3456-42d9-b3f1-1681055429eb}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress O17 - HKLM\System\CCS\Services\Tcpip\..\{cdd9aa6a-c17f-4a9e-b56f-63ed7ea59cec}: DhcpNameServer = 192.168.0.254 =>.Local IP Adress ---\\ PROTOCOLE ADDITIONNEL (23) - 2s O18 - Handler: about [64Bits] - {3050F406-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: cdl [64Bits] - {3dd53d40-7b8b-11D0-b013-00aa0059ce02} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: dvd [64Bits] - {12D51199-0DB5-46FE-A120-47A3D7D937CC} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: file [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ftp [64Bits] - {79eac9e3-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: http [64Bits] - {79eac9e2-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: https [64Bits] - {79eac9e5-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: javascript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: local [64Bits] - {79eac9e7-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mailto [64Bits] - {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mhtml [64Bits] - {05300401-BCBC-11d0-85E3-00C04FD85AB4} . (.Microsoft Corporation - Microsoft Internet Messaging API Resources.) -- C:\Windows\System32\inetcomm.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: mk [64Bits] - {79eac9e6-baf9-11ce-8c82-00aa004ba90b} . (.Microsoft Corporation - Extensions OLE32 pour Win32.) -- C:\Windows\System32\urlmon.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: ms-its [64Bits] - {9D148291-B9C8-11D0-A4CC-0000F80149F6} . (.Microsoft Corporation - Microsoft® InfoTech Storage System Library.) -- C:\Windows\System32\itss.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: res [64Bits] - {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: tv [64Bits] - {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} . (.Microsoft Corporation - Contrôle ActiveX pour le flux vidéo.) -- C:\Windows\System32\MSVidCtl.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: vbscript [64Bits] - {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} . (.Microsoft Corporation - Visionneuse HTML Microsoft (R).) -- C:\Windows\System32\mshtml.dll [Unsigned] =>.Microsoft Corporation O18 - Handler: windows.tbauth [64Bits] - {14654CA6-5711-491D-B89A-58E571679951} . (.Microsoft Corporation - TBAuth protocol handler.) -- C:\Windows\System32\tbauth.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/octet-stream [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-complus [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: application/x-msdownload [64Bits] - {1E66F26B-79EE-11D2-8710-00C04F79ED0D} . (.Microsoft Corporation - Microsoft .NET Runtime Execution Engine.) -- C:\Windows\System32\mscoree.dll [Unsigned] =>.Microsoft Corporation O18 - Filter: text/xml [64Bits] - {807583E5-5146-11D5-A672-00B0D022E945} . (.Microsoft Corporation - Microsoft Office XML MIME Filter.) -- C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL =>.Microsoft® ---\\ REGISTRE AppInit_DLLs et Winlogon Notify (1) - 1s O20 - Winlogon : UserInit . (.Microsoft Corporation - Application d’ouverture de session Userinit.) - C:\WINDOWS\System32\Userinit.exe =>.Microsoft Corporation ---\\ CLE DE REGISTRE EXPLORER StartupApproved (21) - 1s [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Flvto Youtube Downloader =>.Legitimate [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:UCheck [HKEY_USERS\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:CCleaner Monitoring =>.Piriform Ltd [HKEY_USERS\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Flvto Youtube Downloader =>.Legitimate [HKEY_USERS\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:UCheck [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SecurityHealth =>.Microsoft Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RtHDVCpl =>.Realtek Semiconductor Corp. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:RtHDVBg_Dolby =>.Realtek Semiconductor Corp. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:IgfxTray =>.Intel Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:HotKeysCmds =>.Intel Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Persistence =>.Intel Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:SynTPEnh =>.Synaptics [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Classic Start Menu =>.IvoSoft [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:AmIcoSinglun64 =>.Alcor Micro Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run]:Open-Shell Start Menu [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:avgnt =>.Avira Software [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Dolby Advanced Audio v2 [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Intel AppUp(SM) center [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:KiesTrayAgent =>.Sony Corporation [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32]:Avira SystrayStartTrigger =>.Avira Software ---\\ COMPOSANTS ACTIVESETUP INSTALLES (ASIC) (6) - 1s O40 - ASIC: Microsoft Windows Media Player [64Bits] - >{22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player 12.0 [64Bits] - {22d6f312-b0f6-11d0-94ab-0080c74c7e95} . (.Microsoft Corporation - Windows Media Player Extension.) -- C:\Windows\System32\wmpdxm.dll [Unsigned] =>.Microsoft Corporation O40 - ASIC: Microsoft Windows Media Player [64Bits] - {6BF52A52-394A-11d3-B153-00C04F79FAA6} . (.Microsoft Corporation - Utilitaire d’installation du Lecteur Window.) -- C:\Windows\System32\unregmp2.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: Web Platform Customizations [64Bits] - {89820200-ECBD-11cf-8B85-00AA005B4383} . (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe [Unsigned] =>.Microsoft Corporation O40 - ASIC: (no name) [64Bits] - {89B4C1CD-B018-4511-B0A1-5476DBF70820} . (.Microsoft Corporation - Microsoft .NET IE SECURITY REGISTRATION.) -- C:\Windows\System32\mscories.dll =>.Microsoft® O40 - ASIC: Microsoft Edge [64Bits] - {9459C573-B17A-45AE-9F64-1857B5D58CEE} . (.Microsoft Corporation - Microsoft Edge Installer.) -- C:\Program Files (x86)\Microsoft\Edge\Application\117.0.2045.43\Installer\setup.exe =>.Microsoft® ---\\ LOGICIELS INSTALLES (52) - 52s O42 - Logiciel: 4K Video Downloader - (.Open Media LLC.) [HKLM][64Bits] -- {818C221F-DE01-4CBD-89A2-FF30E9CF6FB7} [Unsigned] =>.Open Media LLC (Hidden) O42 - Logiciel: 4K Video Downloader - (.Open Media LLC.) [HKLM][64Bits] -- {a8f0b9d0-de9b-45b4-9783-f1f4f5491a7b} {06E26320848D2C32D8CCAFF3A6C1F2D9}. =>.Open Media LLC O42 - Logiciel: 7-Zip 22.01 - (.Igor Pavlov.) [HKLM][64Bits] -- 7-Zip [Unsigned] =>.Igor Pavlov O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {63B5DA5A-477B-438D-A6A0-118787A4C71B} [Unsigned] =>.Adobe Systems Incorporated (Hidden) O42 - Logiciel: Adobe AIR - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- Adobe AIR =>.Adobe Systems Incorporated® O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- {B8B7838E-449E-B187-57E1-1AA686F225DC} [Unsigned] =>.Adobe Systems Incorporated (Hidden) O42 - Logiciel: Adobe Download Assistant - (.Adobe Systems Incorporated.) [HKLM][64Bits] -- com.adobe.downloadassistant.AdobeDownloadAssistant [Unsigned] =>.Adobe Systems Incorporated O42 - Logiciel: AirDroid 3.6.4.0 - (.Sand Studio.) [HKLM][64Bits] -- AirDroid [Unsigned] =>.Sand Studio O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- {3FD6908E-004E-4E1A-8E17-CFECB8FD0078} [Unsigned] =>.Alcor Micro Corp. (Hidden) O42 - Logiciel: Alcor Micro USB Card Reader - (.Alcor Micro Corp..) [HKLM][64Bits] -- AmUStor [Unsigned] =>.Alcor Micro Corp. O42 - Logiciel: Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver - (.Atheros Communications Inc..) [HKLM][64Bits] -- {3108C217-BE83-42E4-AE9E-A56A2A92E549} [Unsigned] =>.Atheros Communications Inc. O42 - Logiciel: Audacity 3.1.3 (64-bit) - (.Audacity Team.) [HKLM][64Bits] -- Audacity_is1 [Unsigned] =>.Audacity Team O42 - Logiciel: Avidemux 2.6 - 32 bits (32-bit) - (.Mean.) [HKLM][64Bits] -- Avidemux 2.6 - 32 bits [Unsigned] =>.Mean O42 - Logiciel: Broadcom 802.11 Network Adapter - (.Broadcom Corporation.) [HKLM][64Bits] -- Broadcom 802.11 Network Adapter [Unsigned] =>.Broadcom Corporation O42 - Logiciel: Canon MP250 series MP Drivers - (.Canon Inc..) [HKLM][64Bits] -- {1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series [Unsigned] =>.Canon Inc. O42 - Logiciel: Dolby Advanced Audio v2 - (.Dolby Laboratories Inc.) [HKLM][64Bits] -- {B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613} [Unsigned] =>.Dolby Laboratories Inc O42 - Logiciel: GoTo Opener - (.LogMeIn, Inc..) [HKLM][64Bits] -- {2C183CF0-3077-43D0-B001-F93AC5E68942} [Unsigned] =>.LogMeIn, Inc. O42 - Logiciel: GoToMeeting 10.19.0.19950 - (.LogMeIn, Inc..) [HKCU][64Bits] -- GoToMeeting {08DE824276EE62DA1813FBDBF128A8FB}. =>.LogMeIn, Inc. O42 - Logiciel: Guide de l’utilisateur - (.Lenovo.) [HKLM][64Bits] -- {F07C2CF8-4C53-4EC3-8162-A6221E36EB88} [Unsigned] =>.Lenovo (Hidden) O42 - Logiciel: Intel AppUp(SM) center - (.Intel.) [HKLM][64Bits] -- Intel AppUp(SM) center 33057 =>.Intel AppUp(SM) center® O42 - Logiciel: Intel(R) Management Engine Components - (.Intel Corporation.) [HKLM][64Bits] -- {65153EA5-8B6E-43B6-857B-C6E4FC25798A} =>.Intel Corporation® O42 - Logiciel: Intel(R) Processor Graphics - (.Intel Corporation.) [HKLM][64Bits] -- {F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA} =>.Intel(R) pGFX® O42 - Logiciel: Intel(R) Rapid Storage Technology - (.Intel Corporation.) [HKLM][64Bits] -- {3E29EE6C-963A-4aae-86C1-DC237C4A49FC} =>.Intel Corporation® O42 - Logiciel: Intel(R) SDK for OpenCL - CPU Only Runtime Package - (.Intel Corporation.) [HKLM][64Bits] -- {FCB3772C-B7D0-4933-B1A9-3707EBACC573} [Unsigned] =>.Intel Corporation O42 - Logiciel: Intel® Trusted Connect Service Client - (.Intel Corporation.) [HKLM][64Bits] -- {F4404AFD-2EF3-40C1-8C09-29E5F3B6972B} [Unsigned] =>.Intel Corporation (Hidden) O42 - Logiciel: Labography - (.Axpha.) [HKLM][64Bits] -- Labography_is1 [Unsigned] =>.Axpha O42 - Logiciel: Lenovo Bluetooth with Enhanced Data Rate Software - (.Broadcom Corporation.) [HKLM][64Bits] -- {C6D9ED03-6FCF-4410-9CB7-45CA285F9E11} [Unsigned] =>.Broadcom Corporation O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- {46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink® (Hidden) O42 - Logiciel: Lenovo OneKey Recovery - (.CyberLink Corp..) [HKLM][64Bits] -- InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42} =>.CyberLink® O42 - Logiciel: Malwarebytes version 4.6.2.281 - (.Malwarebytes.) [HKLM][64Bits] -- {35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1 =>.Malwarebytes Inc.® O42 - Logiciel: Mozilla Firefox (x64 fr) - (.Mozilla.) [HKLM][64Bits] -- Mozilla Firefox 118.0 (x64 fr) =>.Mozilla Corporation® O42 - Logiciel: Mozilla Maintenance Service - (.Mozilla.) [HKLM][64Bits] -- MozillaMaintenanceService [Unsigned] =>.Mozilla O42 - Logiciel: OpenOffice 4.1.13 - (.Apache Software Foundation.) [HKLM][64Bits] -- {F9635033-0DD8-4736-A9E2-3D030A6C882B} [Unsigned] =>.Apache Software Foundation O42 - Logiciel: Open-Shell - (.The Open-Shell Team.) [HKLM][64Bits] -- {F07C0CF2-6021-403A-99CA-1164340B09FB} [Unsigned] =>.The Open-Shell Team O42 - Logiciel: Package de pilotes Windows - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) - (.Lenovo.) [HKLM][64Bits] -- 71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42 =>.Lenovo (Beijing) Limited® O42 - Logiciel: Package de pilotes Windows - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13. - (.Lenovo.) [HKLM][64Bits] -- 8A223E56FB1ED4F697B54E5BF96F1EB63B512684 =>.Lenovo (Beijing) Limited® O42 - Logiciel: Pale Moon 31.3.0.1 (x64 en-US) - (.Moonchild Productions.) [HKLM][64Bits] -- Pale Moon 31.3.0.1 (x64 en-US) =>.Mark Straver® O42 - Logiciel: Proton VPN - (.Proton AG.) [HKLM][64Bits] -- Proton VPN_is1 =>.Proton Technologies AG® O42 - Logiciel: Realtek High Definition Audio Driver - (.Realtek Semiconductor Corp..) [HKLM][64Bits] -- {F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC} =>.Realtek Semiconductor Corp® O42 - Logiciel: Revo Uninstaller 2.4.2 - (.VS Revo Group, Ltd..) [HKLM][64Bits] -- {A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1 =>.VS Revo Group Ltd.® O42 - Logiciel: Shared C Run-time for x64 - (.McAfee.) [HKLM][64Bits] -- {EF79C448-6946-4D71-8134-03407888C054} [Unsigned] =>.McAfee O42 - Logiciel: SugarSync Manager - (.SugarSync, Inc..) [HKLM][64Bits] -- SugarSync [Unsigned] =>.SugarSync, Inc. O42 - Logiciel: Synaptics Pointing Device Driver - (.Synaptics Incorporated.) [HKLM][64Bits] -- SynTPDeinstKey [Unsigned] =>.Synaptics Incorporated O42 - Logiciel: TAP-Windows 9.21.2 - (.OpenVPN Technologie.) [HKLM][64Bits] -- TAP-Windows [Unsigned] =>.OpenVPN Technologie O42 - Logiciel: Telegram Desktop - (.Telegram FZ-LLC.) [HKCU][64Bits] -- {53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1 [Unsigned] =>.Telegram FZ-LLC O42 - Logiciel: TomTom HOME 2.7.3.1894 - (.TomTom.) [HKLM][64Bits] -- TomTom HOME [Unsigned] =>.TomTom O42 - Logiciel: TomTom HOME Visual Studio Merge Modules - (.TomTom International B.V..) [HKLM][64Bits] -- {8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533} [Unsigned] =>.TomTom International B.V. O42 - Logiciel: UCheck version 4.5.2.0 - (.Adlice Software.) [HKLM][64Bits] -- C4E7EE54-826F-41C4-BE3C-375CC70DC1D8_is1 =>.ADLICE® O42 - Logiciel: UserGuide - (.Lenovo.) [HKLM][64Bits] -- InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88} [Unsigned] =>.Lenovo O42 - Logiciel: VdhCoApp 1.5.0 - (.DownloadHelper.) [HKLM][64Bits] -- weh-iss-net.downloadhelper.coapp_is1 [Unsigned] =>.DownloadHelper O42 - Logiciel: VLC media player - (.VideoLAN.) [HKLM][64Bits] -- VLC media player [Unsigned] =>.VideoLAN O42 - Logiciel: WinPcap 4.1.1 - (.CACE Technologies.) [HKLM][64Bits] -- WinPcapInst [Unsigned] =>.CACE Technologies ---\\ CLE DE REGISTRE SOFTWARE HKCU & HKLM (212) - 52s HKLM\SOFTWARE\ATI Technologies =>.ATI Technologies HKLM\SOFTWARE\AVS4YOU =>.AVS4YOU HKLM\SOFTWARE\Bitdefender =>.Bitdefender HKLM\SOFTWARE\Broadcom =>.Broadcom HKLM\SOFTWARE\Canon =>.Canon HKLM\SOFTWARE\Chromium =>.Chromium HKLM\SOFTWARE\CVSM =>.Legitimate HKLM\SOFTWARE\CyberGhost =>.CyberGhost S.R.L HKLM\SOFTWARE\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\DefaultUserEnvironment =>.Microsoft Corporation HKLM\SOFTWARE\Dell =>.Dell HKLM\SOFTWARE\DellShared =>.Dell Inc. HKLM\SOFTWARE\Dolby =>.Dolby HKLM\SOFTWARE\DownloadHelper =>.DownloadHelper HKLM\SOFTWARE\Emsisoft =>.Emsisoft HKLM\SOFTWARE\Google =>.Google HKLM\SOFTWARE\InstalledOptions =>.Installed Options HKLM\SOFTWARE\Intel =>.Intel HKLM\SOFTWARE\IvoSoft =>.IvoSoft HKLM\SOFTWARE\Khronos =>.Khronos HKLM\SOFTWARE\Lenovo =>.Lenovo HKLM\SOFTWARE\Locktime Software =>.Locktime Software HKLM\SOFTWARE\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\Mozilla =>.Mozilla HKLM\SOFTWARE\mozilla.org =>.mozilla.org HKLM\SOFTWARE\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\Network Associates =>.Network Associates HKLM\SOFTWARE\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\OEM =>.OEM HKLM\SOFTWARE\Open Media LLC =>.Open Media LLC HKLM\SOFTWARE\OpenShell =>.Legitimate HKLM\SOFTWARE\OpenSSH =>.OpenBSD HKLM\SOFTWARE\Partner =>.Google Inc. HKLM\SOFTWARE\Proton AG =>.Legitimate HKLM\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKLM\SOFTWARE\SAMSUNG =>.Samsung Electronics HKLM\SOFTWARE\SRS Labs =>.SRS Labs HKLM\SOFTWARE\Synaptics =>.Synaptics HKLM\SOFTWARE\TAP-Windows =>.OpenVPN Technologie HKLM\SOFTWARE\VDownloader =>.Vitzo Limited HKLM\SOFTWARE\VideoLAN =>.VideoLan Team HKLM\SOFTWARE\Waves Audio =>.Waves Audio HKLM\SOFTWARE\WebSupergoo HKLM\SOFTWARE\Windows =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\ZmnGlobalSDK =>.Zemana Ltd HKLM\SOFTWARE\WOW6432Node\7-Zip =>.Igor Pavlov HKLM\SOFTWARE\WOW6432Node\Adobe =>.Adobe HKLM\SOFTWARE\WOW6432Node\Amazon =>.Amazon HKLM\SOFTWARE\WOW6432Node\Atheros Communications Inc. =>.Qualcomm Atheros HKLM\SOFTWARE\WOW6432Node\Avidemux 2.6 - 32 bits =>.Mean HKLM\SOFTWARE\WOW6432Node\Avira =>.Avira HKLM\SOFTWARE\WOW6432Node\AVS4YOU =>.AVS4YOU HKLM\SOFTWARE\WOW6432Node\Canon =>.Canon HKLM\SOFTWARE\WOW6432Node\Caphyon =>.Caphyon HKLM\SOFTWARE\WOW6432Node\CyberLink =>.CyberLink Corporation HKLM\SOFTWARE\WOW6432Node\DellShared =>.Dell Inc. HKLM\SOFTWARE\WOW6432Node\Elcom =>.Elcom HKLM\SOFTWARE\WOW6432Node\Freemake =>.Freemake HKLM\SOFTWARE\WOW6432Node\Gabest =>.Gabest HKLM\SOFTWARE\WOW6432Node\Google =>.Google HKLM\SOFTWARE\WOW6432Node\IM Providers =>.IM Providers HKLM\SOFTWARE\WOW6432Node\Intel =>.Intel HKLM\SOFTWARE\WOW6432Node\InterVideo =>.InterVideo HKLM\SOFTWARE\WOW6432Node\JreMetrics =>.JreMetrics HKLM\SOFTWARE\WOW6432Node\Khronos =>.Khronos HKLM\SOFTWARE\WOW6432Node\Lake =>.Lake Sofware HKLM\SOFTWARE\WOW6432Node\Lenovo =>.Lenovo HKLM\SOFTWARE\WOW6432Node\Locktime Software =>.Locktime Software HKLM\SOFTWARE\WOW6432Node\Malwarebytes =>.Malwarebytes HKLM\SOFTWARE\WOW6432Node\Malwarebytes Anti-Rootkit =>.Malwarebytes HKLM\SOFTWARE\WOW6432Node\Malwarebytes' Anti-Malware =>.Malwarebytes' Anti-Malware HKLM\SOFTWARE\WOW6432Node\Mozilla =>.Mozilla HKLM\SOFTWARE\WOW6432Node\mozilla.org =>.mozilla.org HKLM\SOFTWARE\WOW6432Node\MozillaPlugins =>.MozillaPlugins HKLM\SOFTWARE\WOW6432Node\Network Associates =>.Network Associates HKLM\SOFTWARE\WOW6432Node\ODBC =>.DB Connectivity Solutions HKLM\SOFTWARE\WOW6432Node\OpenOffice =>.SourceForge HKLM\SOFTWARE\WOW6432Node\Oracle =>.Oracle HKLM\SOFTWARE\WOW6432Node\Proton Technologies AG =>.Proton Technologies AG HKLM\SOFTWARE\WOW6432Node\Realtek =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Realtek Semiconductor Corp. =>.Realtek Semiconductor Corp. HKLM\SOFTWARE\WOW6432Node\Sharpcast HKLM\SOFTWARE\WOW6432Node\SOSVirus =>.SosVirus HKLM\SOFTWARE\WOW6432Node\TomTom =>.TomTom HKLM\SOFTWARE\WOW6432Node\Vimicro =>.Vimicro HKLM\SOFTWARE\WOW6432Node\Volatile =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\WebSupergoo HKLM\SOFTWARE\WOW6432Node\WinPcap =>.Riverbed Technology HKLM\SOFTWARE\WOW6432Node\WOW6432Node =>.Microsoft Corporation HKLM\SOFTWARE\WOW6432Node\ZSMC =>.ZSMC Corporation HKLM\SOFTWARE\WOW6432Node\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\4kdownload.com =>.4kdownload.com HKCU\SOFTWARE\7-Zip =>.Igor Pavlov HKCU\SOFTWARE\Adlice Software =>.Adlice Software HKCU\SOFTWARE\AppDataLow =>.Microsoft Corporation HKCU\SOFTWARE\Avira =>.Avira HKCU\SOFTWARE\AVS4YOU =>.AVS4YOU HKCU\SOFTWARE\Bitdefender =>.Bitdefender HKCU\SOFTWARE\cks =>.Legitimate HKCU\SOFTWARE\CyberLink =>.CyberLink Corporation HKCU\SOFTWARE\Dashlane_profiles =>.Dashlane, Inc HKCU\SOFTWARE\Elcom =>.Elcom HKCU\SOFTWARE\FlvtoConverter HKCU\SOFTWARE\Freemake =>.Freemake HKCU\SOFTWARE\Gabest =>.Gabest HKCU\SOFTWARE\Google =>.Google HKCU\SOFTWARE\hotger =>.Hotger HKCU\SOFTWARE\HWiNFO64 HKCU\SOFTWARE\IM Providers =>.IM Providers HKCU\SOFTWARE\Intel =>.Intel HKCU\SOFTWARE\IvoSoft =>.IvoSoft HKCU\SOFTWARE\Lake =>.Lake Sofware HKCU\SOFTWARE\Lenovo =>.Lenovo HKCU\SOFTWARE\LogMeInInc =>.LogMeIn Entreprise HKCU\SOFTWARE\Macromedia =>.Macromedia HKCU\SOFTWARE\Malwarebytes =>.Malwarebytes HKCU\SOFTWARE\Mozilla =>.Mozilla HKCU\SOFTWARE\MP3Studio YouTube Downloader =>.Pinnacle Systems, Inc. HKCU\SOFTWARE\Netscape =>.Netscape HKCU\SOFTWARE\ODBC =>.DB Connectivity Solutions HKCU\SOFTWARE\OpenOffice =>.SourceForge HKCU\SOFTWARE\OpenShell =>.Legitimate HKCU\SOFTWARE\Opera Software =>.Opera Software HKCU\SOFTWARE\OperaRejectTime HKCU\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz HKCU\SOFTWARE\QtProject =>.QtProject HKCU\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKCU\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKCU\SOFTWARE\Reverso =>.Reverso HKCU\SOFTWARE\Reverso Inc. HKCU\SOFTWARE\Samsung =>.Samsung Electronics HKCU\SOFTWARE\Synaptics =>.Synaptics HKCU\SOFTWARE\SysInternals =>.Sysinternals HKCU\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKCU\SOFTWARE\TomTom =>.TomTom HKCU\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKCU\SOFTWARE\VS Revo Group =>.VS Revo Group HKCU\SOFTWARE\WahOO =>.Siber Systems Inc. HKCU\SOFTWARE\Widcomm =>.Widcomm HKCU\SOFTWARE\WinRAR =>.WinRAR HKCU\SOFTWARE\WinRAR SFX =>.RarLab HKCU\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKCU\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman HKCU\SOFTWARE\ZHP =>.Nicolas Coolman HKCU\SOFTWARE\Ó¦ÓĂłĚĐňĎňµĽÉúłÉµÄ±ľµŘÓ¦ÓĂłĚĐň HKCU\SOFTWARE\AppDataLow\Software =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\Adlice Software =>.Adlice Software HKU\.DEFAULT\SOFTWARE\Avira =>.Avira HKU\.DEFAULT\SOFTWARE\CyberGhost =>.CyberGhost S.R.L HKU\.DEFAULT\SOFTWARE\Lenovo =>.Lenovo HKU\.DEFAULT\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\.DEFAULT\SOFTWARE\McAfee =>.McAfee Inc. HKU\.DEFAULT\SOFTWARE\Mozilla =>.Mozilla HKU\.DEFAULT\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\.DEFAULT\SOFTWARE\SetID =>.Bitdefender HKU\.DEFAULT\SOFTWARE\Zemana =>.Zemana HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\4kdownload.com =>.4kdownload.com HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\7-Zip =>.Igor Pavlov HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Adlice Software =>.Adlice Software HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\AppDataLow =>.Microsoft Corporation HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Avira =>.Avira HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\AVS4YOU =>.AVS4YOU HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Bitdefender =>.Bitdefender HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\cks =>.Legitimate HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\CyberLink =>.CyberLink Corporation HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Dashlane_profiles =>.Dashlane, Inc HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Elcom =>.Elcom HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\FlvtoConverter HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Freemake =>.Freemake HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Gabest =>.Gabest HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Google =>.Google HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\hotger =>.Hotger HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\HWiNFO64 HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\IM Providers =>.IM Providers HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Intel =>.Intel HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\IvoSoft =>.IvoSoft HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Lake =>.Lake Sofware HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Lenovo =>.Lenovo HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\LogMeInInc =>.LogMeIn Entreprise HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Macromedia =>.Macromedia HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Malwarebytes =>.Malwarebytes HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Mozilla =>.Mozilla HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\MP3Studio YouTube Downloader =>.Pinnacle Systems, Inc. HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Netscape =>.Netscape HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\ODBC =>.DB Connectivity Solutions HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\OpenOffice =>.SourceForge HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\OpenShell =>.Legitimate HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Opera Software =>.Opera Software HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\OperaRejectTime HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\PhotoFiltre 7 =>.Antonio Da Cruz HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\QtProject =>.QtProject HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Realtek =>.Realtek Semiconductor Corp. HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\RegisteredApplications =>.Microsoft Corporation HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Reverso =>.Reverso HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Reverso Inc. HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Samsung =>.Samsung Electronics HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Synaptics =>.Synaptics HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\SysInternals =>.Sysinternals HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\TelegramDesktop =>.TelegramDesktop HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\TomTom =>.TomTom HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\VB and VBA Program Settings =>.Microsoft Corporation HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\VS Revo Group =>.VS Revo Group HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\WahOO =>.Siber Systems Inc. HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Widcomm =>.Widcomm HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\WinRAR =>.WinRAR HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\WinRAR SFX =>.RarLab HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Wow6432Node =>.Microsoft Corporation HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\ZebHelpProcess Helper =>.Nicolas Coolman HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\ZHP =>.Nicolas Coolman HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\SOFTWARE\Ó¦ÓĂłĚĐňĎňµĽÉúłÉµÄ±ľµŘÓ¦ÓĂłĚĐň ---\\ PACKAGES (16) - 1s C:\Program Files (x86)\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w - (.Autodesk Inc..) [][Autodesk SketchBook] =>Autodesk Inc. C:\Program Files (x86)\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm - (.Twitter Inc..) [][Twitter] =>Twitter Inc. C:\Program Files (x86)\WindowsApps\AccuWeather.AccuWeatherforWindows8_10.0.348.1000_x64__8zz2pj9h1h1d8 - (.AccuWeather.) [][AccuWeather - Weather for Life] =>AccuWeather C:\Program Files (x86)\WindowsApps\AFF540DC.HexEditorPro_1.0.7.16_neutral__v7353qx4kg3sa - (.Jujuba Software.) [][Hex Editor Pro] C:\Program Files (x86)\WindowsApps\AMZNMobileLLC.KindleforWindows8_2.1.0.2_neutral__stfe6vwa9jnbp - (..) [][Kindle] C:\Program Files (x86)\WindowsApps\CyberLinkCorp.id.PowerDVDforLenovoIdea_1.1.2618.24808_x86__hgg5mn3xps74a - (.CyberLink Corporation.) [][PowerDVD for Lenovo Idea] =>CyberLink Corporation C:\Program Files (x86)\WindowsApps\DolbyLaboratories.DolbyAccess_3.18.872.0_x64__rz1tebttyb220 - (.Dolby Laboratories.) [][Dolby Access] =>Dolby Laboratories C:\Program Files (x86)\WindowsApps\E046963F.LenovoCompanion_10.2308.29.0_x64__k1h2ywk1493x8 - (.Lenovo Group Limited.) [][Lenovo Companion] =>Lenovo Group Limited C:\Program Files (x86)\WindowsApps\E046963F.LenovoSupport_2.0.5.0_x86__k1h2ywk1493x8 - (.Lenovo, INC..) [][Lenovo Support] =>Lenovo, INC. C:\Program Files (x86)\WindowsApps\eBayInc.eBay_1.6.0.34_neutral__1618n3s9xq8tw - (.eBay, Inc.) [][eBay] =>eBay, Inc C:\Program Files (x86)\WindowsApps\Evernote.Evernote_10.62.3.0_x64__q4d96b2w5wcc2 - (.EverNote Corporation.) [][Evernote] =>EverNote Corporation C:\Program Files (x86)\WindowsApps\king.com.CandyCrushSaga_1.2621.1.0_x64__kgqvnymyfvs32 - (.king.com.) [][Candy Crush Saga] =>king.com C:\Program Files (x86)\WindowsApps\McAfeeInc.06.McAfeeSecurityAdvisorforLenovo_5.0.173.1_x64__bq6yxensn79aw - (.McAfee Inc..) [][McAfee® Central for Lenovo] =>McAfee Inc. C:\Program Files (x86)\WindowsApps\MicrosoftWindows.UndockedDevKit_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy - (.Microsoft Corporation.) [][UDK Package] =>Microsoft Corporation C:\Program Files (x86)\WindowsApps\NcsiUwpApp_1000.19041.1023.0_neutral_neutral_8wekyb3d8bbwe - (.Microsoft.) [][NcsiUwpApp] =>Microsoft C:\Program Files (x86)\WindowsApps\rara.com.rara.com_1.0.25.23_neutral__2tghmx54nqzjm - (.RARA MEDIA GROUP LIMITED.) [][rara music] ---\\ CONTENU DES DOSSIERS PROGRAMMES (192) - 26s O43 - CFD: 18/10/2022 - [] D -- C:\Program Files\4KDownload {06E26320848D2C32D8CCAFF3A6C1F2D9}. O43 - CFD: 19/10/2015 - [] D -- C:\Program Files\Broadcom =>.Broadcom Corporation® O43 - CFD: 20/09/2022 - [] HD -- C:\Program Files\CanonBJ =>.Canon Inc. O43 - CFD: 12/02/2017 - [] AD -- C:\Program Files\CyberGhost 6 =>.CyberGhost S.R.L O43 - CFD: 13/08/2020 - [] D -- C:\Program Files\Intel =>.Intel Corporation O43 - CFD: 07/03/2022 - [] D -- C:\Program Files\Lenovo =>.Lenovo O43 - CFD: 29/08/2023 - [] D -- C:\Program Files\Malwarebytes =>.Malwarebytes O43 - CFD: 10/08/2020 - [] D -- C:\Program Files\net.downloadhelper.coapp [Unsigned] O43 - CFD: 15/06/2022 - [] D -- C:\Program Files\Open-Shell [Unsigned] =>.Open-Shell O43 - CFD: 15/10/2022 - [] AD -- C:\Program Files\Pale Moon =>.Mark Straver® O43 - CFD: 08/07/2023 - [] D -- C:\Program Files\Proton =>.Proton Technologies AG® O43 - CFD: 12/08/2020 - [] D -- C:\Program Files\Realtek =>.Realtek O43 - CFD: 12/08/2020 - [] D -- C:\Program Files\Synaptics =>.Synaptics Incorporated® O43 - CFD: 02/02/2017 - [] D -- C:\Program Files\TAP-Windows =>.OpenVPN Technologie O43 - CFD: 15/10/2022 - [] D -- C:\Program Files\UCheck =>.Adlice Software O43 - CFD: 17/03/2019 - [] D -- C:\Program Files\VDownloader =>.Vitzo O43 - CFD: 18/03/2022 - [] D -- C:\Program Files\VideoLAN =>.VideoLan Team O43 - CFD: 13/03/2017 - [] D -- C:\Program Files\VS Revo Group =>.VS Revo Group O43 - CFD: 15/03/2019 - [] D -- C:\Program Files\WinPcap =>.Riverbed Technology O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Adobe =>.Adobe Systems Incorporated® O43 - CFD: 27/12/2016 - [] AD -- C:\Program Files (x86)\Adobe Download Assistant =>.Adobe Inc. O43 - CFD: 26/12/2015 - [] D -- C:\Program Files (x86)\Amazon =>.Amazon Services LLC® O43 - CFD: 19/10/2015 - [] AD -- C:\Program Files (x86)\AmIcoSingLun =>.Alcor Micro Corporation O43 - CFD: 03/11/2015 - [] AD -- C:\Program Files (x86)\AVI Player [Unsigned] O43 - CFD: 29/03/2017 - [] D -- C:\Program Files (x86)\Avidemux 2.6 - 32 bits =>.Mean O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Cyberlink =>.CyberLink Corporation O43 - CFD: 19/10/2015 - [] AD -- C:\Program Files (x86)\Dolby Advanced Audio v2 =>.Dolby Laboratories, Inc.® O43 - CFD: 12/12/2016 - [] D -- C:\Program Files (x86)\ElcomSoft =>.Elcomsoft O43 - CFD: 29/12/2020 - [] D -- C:\Program Files (x86)\INFORAD =>.Inforad Ltd O43 - CFD: 06/06/2021 - [] HD -- C:\Program Files (x86)\InstallShield Installation Information =>.InstallShield O43 - CFD: 26/10/2015 - [] D -- C:\Program Files (x86)\Intel =>.Intel Corporation O43 - CFD: 23/10/2015 - [] D -- C:\Program Files (x86)\Jeux de cartes =>.Games Software O43 - CFD: 08/11/2017 - [] AD -- C:\Program Files (x86)\Labography [Unsigned] O43 - CFD: 07/03/2022 - [] D -- C:\Program Files (x86)\Lenovo =>.Lenovo O43 - CFD: 28/09/2023 - [] D -- C:\Program Files (x86)\Mozilla Firefox =>.Mozilla O43 - CFD: 28/09/2023 - [] D -- C:\Program Files (x86)\Mozilla Maintenance Service =>.Mozilla O43 - CFD: 29/09/2022 - [] AD -- C:\Program Files (x86)\OpenOffice 4 =>.OpenOffice.org O43 - CFD: 08/11/2017 - [] D -- C:\Program Files (x86)\PhotoFiltre 7 (=photoshop) =>.Antonio Da Cruz O43 - CFD: 08/07/2023 - [] D -- C:\Program Files (x86)\Proton Technologies O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Realtek =>.Realtek O43 - CFD: 13/06/2021 - [] D -- C:\Program Files (x86)\Samsung =>.Samsung Electronics O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\SugarSync =>.SugarSync, Inc.® O43 - CFD: 17/08/2019 - [] D -- C:\Program Files (x86)\Teams Installer =>.Microsoft® O43 - CFD: 16/07/2019 - [] D -- C:\Program Files (x86)\TomTom HOME 2 =>.TomTom O43 - CFD: 16/07/2019 - [] D -- C:\Program Files (x86)\TomTom International B.V =>.TomTom O43 - CFD: 19/03/2022 - [0] D -- C:\Program Files (x86)\VideoLAN =>.VideoLan Team O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip =>.Igor Pavlov O43 - CFD: 14/09/2023 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirDroid =>.AirDroid O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVI Player O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avidemux (32 bits) =>.Mean O43 - CFD: 20/09/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MP250 series =>.Canon Inc. O43 - CFD: 12/08/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel =>.Intel Corporation O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center =>.Intel Corporation O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jeux de cartes =>.Games Software O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Labography O43 - CFD: 17/10/2021 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo O43 - CFD: 13/08/2020 - [] RD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneKey Recovery =>.Lenovo Group Limited O43 - CFD: 15/06/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Open-Shell =>.Open-Shell O43 - CFD: 29/09/2022 - [] SD -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.13 =>.SourceForge O43 - CFD: 04/09/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Proton O43 - CFD: 17/02/2023 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller =>.VS Revo Group O43 - CFD: 13/06/2021 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung =>.Samsung Electronics O43 - CFD: 13/08/2020 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom =>.TomTom O43 - CFD: 15/10/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UCheck =>.Adlice Software O43 - CFD: 20/03/2022 - [] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN =>.VideoLan Team O43 - CFD: 13/03/2017 - [0] D -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WahOO =>.Siber Systems Inc. O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Adobe =>.Adobe O43 - CFD: 31/05/2019 - [] D -- C:\ProgramData\AirDroid =>.AirDroid O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\AmUStor =>.Alocr Micro O43 - CFD: 21/08/2020 - [] D -- C:\ProgramData\AutoUpdate O43 - CFD: 21/03/2017 - [] D -- C:\ProgramData\AVS4YOU =>.AVS4YOU O43 - CFD: 20/09/2022 - [] HD -- C:\ProgramData\CanonBJ =>.Canon Inc. O43 - CFD: 27/05/2016 - [] D -- C:\ProgramData\ClassicShell =>.SourceForge O43 - CFD: 15/11/2016 - [0] D -- C:\ProgramData\dbg =>.DBG O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\eBay =>.eBay O43 - CFD: 19/11/2016 - [] D -- C:\ProgramData\Energy Management O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\Intel =>.Intel Corporation O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\Labography O43 - CFD: 20/10/2021 - [] D -- C:\ProgramData\Lenovo =>.Lenovo O43 - CFD: 12/02/2020 - [] D -- C:\ProgramData\Locktime =>.Locktime Software O43 - CFD: 05/02/2023 - [] D -- C:\ProgramData\Malwarebytes =>.Malwarebytes O43 - CFD: 09/01/2018 - [] D -- C:\ProgramData\Malwarebytes' Anti-Malware (portable) =>.Malwarebytes O43 - CFD: 08/02/2022 - [] D -- C:\ProgramData\Mozilla =>.Mozilla Corporation O43 - CFD: 28/09/2023 - [] D -- C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 =>.Mozilla Corporation O43 - CFD: 19/10/2015 - [] D -- C:\ProgramData\OneKey Recovery =>.Lenovo Group Limited O43 - CFD: 08/11/2017 - [] D -- C:\ProgramData\OpenPdf O43 - CFD: 08/07/2023 - [] D -- C:\ProgramData\ProtonVPN =>.Legitimate O43 - CFD: 07/02/2023 - [] D -- C:\ProgramData\RogueKiller =>.Adlice Software O43 - CFD: 05/06/2021 - [] D -- C:\ProgramData\Samsung =>.Samsung Electronics O43 - CFD: 12/02/2016 - [] D -- C:\ProgramData\TomTom =>.TomTom O43 - CFD: 22/03/2022 - [] D -- C:\ProgramData\UCheck =>.Adlice Software O43 - CFD: 26/12/2016 - [] AD -- C:\Program Files (x86)\Common Files\Adobe AIR =>.Adobe Inc. O43 - CFD: 21/03/2017 - [] D -- C:\Program Files (x86)\Common Files\AVSMedia =>.AVSMedia O43 - CFD: 20/10/2018 - [] D -- C:\Program Files (x86)\Common Files\DESIGNER =>.Designer O43 - CFD: 19/10/2015 - [] D -- C:\Program Files (x86)\Common Files\InstallShield =>.InstallShield O43 - CFD: 19/10/2015 - [] D -- C:\Users\User\AppData\Roaming\Adobe =>.Adobe O43 - CFD: 28/07/2019 - [] D -- C:\Users\User\AppData\Roaming\AirDroid =>.AirDroid O43 - CFD: 30/03/2017 - [] D -- C:\Users\User\AppData\Roaming\avidemux =>.Mean O43 - CFD: 21/03/2017 - [] D -- C:\Users\User\AppData\Roaming\AVS4YOU =>.AVS4YOU O43 - CFD: 23/10/2015 - [] D -- C:\Users\User\AppData\Roaming\ClassicShell =>.SourceForge O43 - CFD: 27/12/2016 - [] D -- C:\Users\User\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant =>.Adobe Inc. O43 - CFD: 21/03/2022 - [0] D -- C:\Users\User\AppData\Roaming\CrystalIdea Software =>.CrystalIdea Software O43 - CFD: 25/06/2016 - [] D -- C:\Users\User\AppData\Roaming\FireShot O43 - CFD: 19/03/2022 - [] D -- C:\Users\User\AppData\Roaming\FlvtoConverter =>.Hotger O43 - CFD: 08/11/2017 - [] D -- C:\Users\User\AppData\Roaming\Labography O43 - CFD: 26/02/2017 - [] D -- C:\Users\User\AppData\Roaming\Lenovo =>.Lenovo O43 - CFD: 12/02/2020 - [] D -- C:\Users\User\AppData\Roaming\Locktime =>.Locktime Software O43 - CFD: 12/02/2020 - [] D -- C:\Users\User\AppData\Roaming\Locktime Software =>.Locktime Software O43 - CFD: 26/10/2015 - [] D -- C:\Users\User\AppData\Roaming\LSC =>.LSC O43 - CFD: 31/10/2016 - [] D -- C:\Users\User\AppData\Roaming\Macromedia =>.Macromedia O43 - CFD: 22/11/2016 - [] D -- C:\Users\User\AppData\Roaming\Moonchild Productions =>.Moonchild Productions O43 - CFD: 17/11/2017 - [] D -- C:\Users\User\AppData\Roaming\Mozilla =>.Mozilla Corporation O43 - CFD: 18/10/2022 - [] D -- C:\Users\User\AppData\Roaming\MP3Studio O43 - CFD: 31/10/2015 - [] D -- C:\Users\User\AppData\Roaming\OpenOffice =>.SourceForge O43 - CFD: 05/06/2021 - [] D -- C:\Users\User\AppData\Roaming\OpenShell O43 - CFD: 08/11/2017 - [] D -- C:\Users\User\AppData\Roaming\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 13/06/2021 - [] D -- C:\Users\User\AppData\Roaming\Samsung =>.Samsung Electronics O43 - CFD: 18/08/2016 - [] D -- C:\Users\User\AppData\Roaming\Skype =>.Skype O43 - CFD: 07/10/2022 - [] D -- C:\Users\User\AppData\Roaming\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 24/10/2015 - [] D -- C:\Users\User\AppData\Roaming\Thunderbird =>.Thunderbird O43 - CFD: 12/02/2016 - [] D -- C:\Users\User\AppData\Roaming\TomTom =>.TomTom O43 - CFD: 20/03/2023 - [] D -- C:\Users\User\AppData\Roaming\vlc =>.VideoLan Team O43 - CFD: 05/11/2016 - [] D -- C:\Users\User\AppData\Roaming\WinRAR =>.WinRAR O43 - CFD: 28/09/2023 - [] D -- C:\Users\User\AppData\Roaming\ZHP =>.Nicolas Coolman O43 - CFD: 11/09/2020 - [] D -- C:\Users\User\AppData\Local\4kdownload.com =>.4kdownload.com O43 - CFD: 12/11/2016 - [] D -- C:\Users\User\AppData\Local\Adobe =>.Adobe O43 - CFD: 19/10/2015 - [] D -- C:\Users\User\AppData\Local\Broadcom =>.Broadcom O43 - CFD: 03/06/2019 - [] D -- C:\Users\User\AppData\Local\CEF =>.CEF O43 - CFD: 05/06/2021 - [] D -- C:\Users\User\AppData\Local\ClassicShell =>.SourceForge O43 - CFD: 02/02/2017 - [] D -- C:\Users\User\AppData\Local\CyberGhost =>.CyberGhost S.R.L O43 - CFD: 03/04/2023 - [] D -- C:\Users\User\AppData\Local\D3DSCache =>.Legitimate O43 - CFD: 23/09/2017 - [0] D -- C:\Users\User\AppData\Local\DBG =>.DBG O43 - CFD: 06/11/2019 - [] D -- C:\Users\User\AppData\Local\Flvto.biz O43 - CFD: 02/10/2019 - [] D -- C:\Users\User\AppData\Local\FlvtoYoutubeDownloader O43 - CFD: 21/08/2020 - [] D -- C:\Users\User\AppData\Local\FreemakeVideoConverter =>.Freemake O43 - CFD: 22/11/2016 - [] D -- C:\Users\User\AppData\Local\Google =>.Google O43 - CFD: 17/10/2018 - [] D -- C:\Users\User\AppData\Local\GoTo Opener O43 - CFD: 15/03/2023 - [] D -- C:\Users\User\AppData\Local\GoToMeeting O43 - CFD: 31/10/2015 - [] D -- C:\Users\User\AppData\Local\GWX =>.GWX O43 - CFD: 29/12/2020 - [] D -- C:\Users\User\AppData\Local\IFM39 O43 - CFD: 03/03/2017 - [] D -- C:\Users\User\AppData\Local\KowMedia =>.Kow Media O43 - CFD: 26/02/2017 - [] D -- C:\Users\User\AppData\Local\Lenovo =>.Lenovo O43 - CFD: 30/06/2020 - [] D -- C:\Users\User\AppData\Local\LenovoServiceBridge O43 - CFD: 26/10/2015 - [0] D -- C:\Users\User\AppData\Local\LSC =>.LSC O43 - CFD: 26/10/2015 - [] D -- C:\Users\User\AppData\Local\Macromedia =>.Macromedia O43 - CFD: 28/09/2023 - [] D -- C:\Users\User\AppData\Local\Malwarebytes =>.Malwarebytes O43 - CFD: 10/09/2018 - [] D -- C:\Users\User\AppData\Local\mbam =>.Malwarebytes O43 - CFD: 22/11/2016 - [] D -- C:\Users\User\AppData\Local\Moonchild Productions =>.Moonchild Productions O43 - CFD: 23/10/2015 - [] D -- C:\Users\User\AppData\Local\Mozilla =>.Mozilla Corporation O43 - CFD: 02/11/2015 - [0] D -- C:\Users\User\AppData\Local\NetworkTiles =>.NetworkTiles O43 - CFD: 28/09/2023 - [] D -- C:\Users\User\AppData\Local\OpenShell O43 - CFD: 05/09/2023 - [] D -- C:\Users\User\AppData\Local\ProtonVPN =>.Legitimate O43 - CFD: 22/09/2022 - [] D -- C:\Users\User\AppData\Local\Reverso =>.Reverso O43 - CFD: 10/05/2017 - [] D -- C:\Users\User\AppData\Local\Samsung =>.Samsung Electronics O43 - CFD: 19/08/2019 - [] D -- C:\Users\User\AppData\Local\SquirrelTemp =>.Squirrels O43 - CFD: 24/10/2015 - [] D -- C:\Users\User\AppData\Local\Thunderbird =>.Thunderbird O43 - CFD: 02/04/2022 - [] D -- C:\Users\User\AppData\Local\ToastNotificationManagerCompat O43 - CFD: 12/02/2016 - [] D -- C:\Users\User\AppData\Local\TomTom =>.TomTom O43 - CFD: 28/09/2023 - [] D -- C:\Users\User\AppData\Local\ZHP =>.Nicolas Coolman O43 - CFD: 21/03/2019 - [] D -- C:\Users\User\AppData\Local\__SHARED O43 - CFD: 07/03/2022 - [0] D -- C:\Users\User\AppData\Local\Programs\Lenovo =>.Lenovo O43 - CFD: 17/04/2023 - [] D -- C:\Users\User\AppData\LocalLow\Mozilla =>.Mozilla Corporation O43 - CFD: 07/05/2022 - [] D -- C:\Users\User\AppData\LocalLow\Oracle =>.Oracle O43 - CFD: 06/03/2022 - [] D -- C:\Users\User\AppData\LocalLow\Sun =>.Oracle O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\3 ans France Coquenlorge juin 1990 O43 - CFD: 19/03/2022 - [] D -- C:\Users\User\Desktop\7-Zip =>.Igor Pavlov O43 - CFD: 12/12/2016 - [] D -- C:\Users\User\Desktop\Advanced Archive Password Recovery Professional 4.54.48 et clé O43 - CFD: 29/05/2021 - [] D -- C:\Users\User\Desktop\Anciennes données de Firefox O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\années au Maroc O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\archives voyages O43 - CFD: 10/01/2018 - [] D -- C:\Users\User\Desktop\ccsetup538 O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\famille en groupe O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\odette O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\oncles tantes cousins cousines O43 - CFD: 19/03/2022 - [] D -- C:\Users\User\Desktop\OpenOffice 4.1.1 (fr) Installation Files =>.SourceForge O43 - CFD: 15/06/2022 - [] D -- C:\Users\User\Desktop\OpenOffice 4.1.12 (fr) Installation Files =>.SourceForge O43 - CFD: 28/09/2022 - [] D -- C:\Users\User\Desktop\OpenOffice 4.1.13 (fr) Installation Files =>.SourceForge O43 - CFD: 19/03/2022 - [] D -- C:\Users\User\Desktop\OpenOffice 4.1.8 (fr) Installation Files =>.SourceForge O43 - CFD: 19/03/2022 - [] D -- C:\Users\User\Desktop\PAPA 1 (H) SCANDISK contenu O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\pierre O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\pierre et odette O43 - CFD: 08/10/2018 - [] D -- C:\Users\User\Desktop\pierrick O43 - CFD: 06/09/2022 - [] D -- C:\Users\User\Desktop\Sécurité O43 - CFD: 30/10/2022 - [] D -- C:\Users\User\Desktop\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 22/03/2019 - [] D -- C:\Users\User\Desktop\VAVOO =>.VAVOO O43 - CFD: 12/08/2020 - [] RD -- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools =>.Administrative Tools O43 - CFD: 13/06/2021 - [] D -- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo =>.Lenovo O43 - CFD: 29/05/2018 - [0] D -- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PhotoFiltre 7 =>.Antonio Da Cruz O43 - CFD: 15/10/2022 - [] D -- C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop =>.Telegram Messenger LLP O43 - CFD: 19/09/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Local\Avira =>.Avira Software O43 - CFD: 08/09/2020 - [] -- C:\WINDOWS\System32\Config\systemprofile\AppData\Roaming\Macromedia =>.Macromedia ---\\ ShellIconOverlayIdentifiers (SIOI) (6) - 0s O106 - SIOI: [EnhancedStorageShell] - {D9144DCD-E998-4ECA-AB6A-DCD83CCBA16D}. (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O106 - SIOI: ShareOverlay Class [ShareOverlay] - {594D4122-1F87-41E2-96C7-825FB4796516}. (.Open-Shell - Adds classic Windows Explorer features.) -- C:\Program Files\Open-Shell\ClassicExplorer64.dll [Unsigned] =>.Open-Shell O106 - SIOI: [SugarSyncBackedUp] - {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472}. (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.® O106 - SIOI: [SugarSyncPending] - {62CCD8E3-9C21-41E1-B55E-1E26DFC68511}. (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.® O106 - SIOI: [SugarSyncRoot] - {A759AFF6-5851-457D-A540-F4ECED148351}. (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.® O106 - SIOI: [SugarSyncShared] - {1574C9EF-7D58-488F-B358-8B78C1538F51}. (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.® ---\\ RACCOURCIS DES MENUS CONTEXTUELS (SCMH) (30) - 4s O108 - CMH1: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.) [Unsigned] O108 - CMH1: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH1: ModernSharing [64Bits] - {e2bf9676-5f8f-435c-97eb-11607a5bedf7} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: Open With [64Bits] - {09799AFB-AD67-11d1-ABCD-00C04FC30936} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Open With EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH1: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH1: SugarSync [64Bits] - {305BC11B-5175-492B-B569-866547FCDA40} . (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.® O108 - CMH1: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH2: OpenContainingFolderMenu [64Bits] - {37ea3a21-7493-4208-a011-7f9ea79ce9f5} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH2: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.Open-Shell - Start Menu Helper Extension.) -- C:\WINDOWS\system32\StartMenuHelper64.dll [Unsigned] =>.Open-Shell O108 - CMH3: CopyAsPathMenu [64Bits] - {f3d06e7c-1e45-4a26-847e-f9fcdee59be0} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH3: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH3: SendTo [64Bits] - {7BA4C740-9E81-11CF-99D3-00AA004AE837} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.) [Unsigned] O108 - CMH4: EncryptionMenu [64Bits] - {A470F8CF-A1E8-4f65-8335-227475AA5C46} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH4: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH4: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH4: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: New [64Bits] - {D969A300-E7FF-11d0-A93B-00A0C90F2719} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH5: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation O108 - CMH5: WorkFolders [64Bits] - {E61BF828-5E63-4287-BEF1-60B1A4FDE0E3} . (.Microsoft Corporation - Extension d’environnement de Dossiers de tr.) -- C:\Windows\System32\WorkfoldersShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH6: 7-Zip [64Bits] - {23170F69-40C1-278A-1000-000100020000} . (.Orphan.) [Unsigned] O108 - CMH6: Library Location [64Bits] - {3dad6c5d-2167-4cae-9914-f99e41c12cfa} . (.Microsoft Corporation - DLL commune du shell Windows.) -- C:\Windows\System32\shell32.dll =>.Microsoft® O108 - CMH6: MBAMShlExt [64Bits] - {57CE581A-0CB6-4266-9CA0-19364C90A0B3} . (.Malwarebytes - Malwarebytes.) -- C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc.® O108 - CMH6: PintoStartScreen [64Bits] - {470C0EBD-5D73-4d58-9CED-E91E22E23282} . (.Microsoft Corporation - Programme de résolution d’applications.) -- C:\Windows\System32\appresolver.dll =>.Microsoft® O108 - CMH6: StartMenuExt [64Bits] - {E595F05F-903F-4318-8B0A-7F633B520D2B} . (.Open-Shell - Start Menu Helper Extension.) -- C:\WINDOWS\system32\StartMenuHelper64.dll [Unsigned] =>.Open-Shell O108 - CMH6: SugarSync [64Bits] - {305BC11B-5175-492B-B569-866547FCDA40} . (.SugarSync, Inc. - SugarSync Explorer Shell Extensions.) -- C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc.® O108 - CMH7: EnhancedStorageShell [64Bits] - {2854F705-3548-414C-A113-93E27C808C85} . (.Microsoft Corporation - DLL d’extension d’environnement de stockage.) -- C:\Windows\System32\EhStorShell.dll [Unsigned] =>.Microsoft Corporation O108 - CMH7: EPP [64Bits] - {09A47860-11B0-4DA5-AFA5-26D86198A780} . (.Microsoft Corporation - Extension Microsoft Security Client Shell.) -- C:\Program Files\Windows Defender\shellext.dll =>.Microsoft® O108 - CMH7: Sharing [64Bits] - {f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} . (.Microsoft Corporation - Extensions de l’interpréteur de commandes p.) -- C:\Windows\System32\ntshrui.dll [Unsigned] =>.Microsoft Corporation ---\\ IMAGE FILE EXECUTION OPTIONS (IFEO) (17) - 3s O50 - IFEO:C:\Windows\System32\cscript.exe - (.Microsoft Corporation - Microsoft ® Console Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\dllhost.exe - (.Microsoft Corporation - COM Surrogate.) [DisableExceptionChainValidation\\3] =>.Microsoft® O50 - IFEO:C:\WINDOWS\System32\drvinst.exe - (.Microsoft Corporation - Driver Installation Module.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\ie4uinit.exe - (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\ieUnatt.exe - (.Microsoft Corporation - Outil d’installation sans assistance d’IE 7.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mmc.exe - (.Microsoft Corporation - Microsoft Management Console.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\MRT.exe - (.Microsoft Corporation - Outil de suppression de logiciels malveilla.) [CFGOptions\\1] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\msfeedssync.exe - (.Microsoft Corporation - Microsoft Feeds Synchronization.) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\mshta.exe - (.Microsoft Corporation - Hôte des applications HTML de Microsoft(R).) [MitigationOptions\\256] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\PresentationHost.exe - (.Microsoft Corporation - Windows Presentation Foundation Host.) [MitigationOptions\\1118481] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\PrintIsolationHost.exe - (.Microsoft Corporation - PrintIsolationHost.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\rundll32.exe - (.Microsoft Corporation - Processus hôte Windows (Rundll32).) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\runtimebroker.exe - (.Microsoft Corporation - Runtime Broker.) [MitigationOptions\\4294967296] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\searchprotocolhost.exe - (.Microsoft Corporation - Microsoft Windows Search Protocol Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\WINDOWS\System32\spoolsv.exe - (.Microsoft Corporation - Application sous-système spouleur.) [MitigationOptions\\2097152] [Unsigned] =>.Microsoft Corporation O50 - IFEO:C:\Windows\System32\svchost.exe - (.Microsoft Corporation - Processus hôte pour les services Windows.) [MinimumStackCommitInBytes\\32768] =>.Microsoft® O50 - IFEO:C:\Windows\System32\wscript.exe - (.Microsoft Corporation - Microsoft ® Windows Based Script Host.) [DisableExceptionChainValidation\\3] [Unsigned] =>.Microsoft Corporation ---\\ LISTE DES PILOTES DU SYSTEME (94) - 50s O58 - SDL:2018/01/09 15:02:57 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\1162C1FD.sys [255928] =>.Malwarebytes Corporation® O58 - SDL:2018/01/09 16:15:30 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\2357B5BA.sys [255928] =>.Malwarebytes Corporation® O58 - SDL:2019/12/07 11:07:53 A . (.LSI - LSI 3ware SCSI Storport Driver.) -- C:\WINDOWS\System32\drivers\3ware.sys [107320] =>.Microsoft® O58 - SDL:2020/11/15 17:26:38 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\6A31526A.sys [253888] =>.Malwarebytes Corporation® O58 - SDL:2016/10/18 00:27:36 A . (.Lenovo Corporation - ACPI Virtual Power Controller Driver.) -- C:\WINDOWS\System32\drivers\AcpiVpc.sys [45048] =>.Lenovo (Beijing) Co., Ltd.® O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra - PMC-Sierra Storport Driver For SPC8x6G SAS.) -- C:\WINDOWS\System32\drivers\adp80xx.sys [1135416] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\amdgpio2.sys [18432] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2019/12/07 11:07:47 A . (.Advanced Micro Devices, Inc - AMD I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\amdi2c.sys [45568] [Unsigned] =>.Advanced Micro Devices, Inc O58 - SDL:2015/06/04 02:07:48 A . (.Advanced Micro Devices, Inc. - AMD PCI Root Bus Lower Filter.) -- C:\WINDOWS\System32\drivers\amdkmpfd.sys [73976] =>.Advanced Micro Devices, Inc.® O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - AHCI 1.3 Device Driver.) -- C:\WINDOWS\System32\drivers\amdsata.sys [83256] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.AMD Technologies Inc. - AMD Technology AHCI Compatible Controller D.) -- C:\WINDOWS\System32\drivers\amdsbs.sys [259384] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Advanced Micro Devices - Storage Filter Driver.) -- C:\WINDOWS\System32\drivers\amdxata.sys [26936] =>.Microsoft® O58 - SDL:2012/06/13 12:06:50 A . (.Alcor Micro, Corp. - Alocr Micro USB Mass Storage Driver.) -- C:\WINDOWS\System32\drivers\AmUStor.sys [100992] =>.AlcorMicro, Corp.® O58 - SDL:2019/05/07 01:47:20 A . (.Copyright(C) 2017 - USB Mass Storage Universal Driver.) -- C:\WINDOWS\System32\drivers\AmUStorU.sys [136760] =>.Alcorlink Corp.® O58 - SDL:2020/10/09 14:53:32 A . (.Apple Inc. - Apple Mobile Device USB Device.) -- C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976] =>.WDKTestCert build,132303256403278908® O58 - SDL:2019/12/07 11:07:53 A . (.PMC-Sierra, Inc. - Adaptec SAS RAID WS03 Driver.) -- C:\WINDOWS\System32\drivers\arcsas.sys [131896] =>.Microsoft® O58 - SDL:2015/03/27 11:33:14 A . (.Broadcom Corporation. - Broadcom Bluetooth Firmware Download Filter.) -- C:\WINDOWS\System32\drivers\bcbtums.sys [173312] =>.Broadcom Corporation® O58 - SDL:2019/12/07 11:07:47 A . (. - BCM Function 2 Device Driver.) -- C:\WINDOWS\System32\drivers\bcmfn2.sys [9728] [Unsigned] =>.Broadcom Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Broadcom Corporation - Broadcom 802.11 Network Adapter wireless dr.) -- C:\WINDOWS\System32\drivers\BCMWL63a.SYS [7585280] [Unsigned] =>.Broadcom Corporation O58 - SDL:2015/03/27 11:33:20 A . (.Broadcom Corporation. - Broadcom Bluetooth USB AMP Filter.) -- C:\WINDOWS\System32\drivers\btwampfl.sys [188160] =>.Broadcom Corporation® O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic Gigabit Ethernet VBD.) -- C:\WINDOWS\System32\drivers\bxvbda.sys [533816] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI Crash Dump Driver.) -- C:\WINDOWS\System32\drivers\cht4dx64.sys [144184] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Chelsio iSCSI VMiniport Driver.) -- C:\WINDOWS\System32\drivers\cht4sx64.sys [319800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - VF library for Chelsio ® T5/T6 Chipset.) -- C:\WINDOWS\System32\drivers\cht4vfx.sys [28672] [Unsigned] =>.Chelsio Communications O58 - SDL:2019/12/07 11:07:54 A . (.Chelsio Communications - Virtual Bus Driver for Chelsio ® T5/T6 Chip.) -- C:\WINDOWS\System32\drivers\cht4vx64.sys [1853752] =>.Microsoft® O58 - SDL:2023/02/16 17:15:58 A . (...) -- C:\WINDOWS\System32\drivers\cimfs.sys [95232] [Unsigned] =>.Microsoft Corporation O58 - SDL:2019/12/07 11:07:50 A . (.QLogic Corporation - QLogic 10 GigE VBD.) -- C:\WINDOWS\System32\drivers\evbda.sys [3418936] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Hewlett-Packard Company - Smart Array SAS/SATA Controller Media Drive.) -- C:\WINDOWS\System32\drivers\HpSAMD.sys [64312] =>.Microsoft® O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iagpio.sys [36352] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel(R) Corporation - Intel(R) Serial IO I2C Driver.) -- C:\WINDOWS\System32\drivers\iai2c.sys [91136] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [79360] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [93184] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO GPIO Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [171520] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [175104] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [177152] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:47 A . (.Intel Corporation - Intel(R) Serial IO I2C Driver v2.) -- C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664] [Unsigned] =>.Intel Corporation O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO GPIO Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys [38128] =>.Intel Corporation - Client Components Group® O58 - SDL:2019/12/07 11:07:50 A . (.Intel Corporation - Intel(R) Serial IO I2C Controller Driver.) -- C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys [113152] [Unsigned] =>.Intel Corporation O58 - SDL:2012/07/09 13:43:12 A . (.Intel Corporation - Intel Rapid Storage Technology driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorA.sys [645952] =>.Intel Corporation® O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel(R) Rapid Storage Technology driver (i.) -- C:\WINDOWS\System32\drivers\iaStorAVC.sys [884752] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Intel Corporation - Intel Matrix Storage Manager driver - x64.) -- C:\WINDOWS\System32\drivers\iaStorV.sys [412176] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - InfiniBand Fabric Bus Driver.) -- C:\WINDOWS\System32\drivers\ibbus.sys [558904] =>.Microsoft® O58 - SDL:2017/10/17 08:36:58 A . (.Intel Corporation - Intel(R) Watchdog Timer Driver (Intel(R) WD.) -- C:\WINDOWS\System32\drivers\ICCWDT.sys [39504] =>.Intel(R) Embedded Subsystems and IP Blocks Group® O58 - SDL:2017/03/09 02:16:06 A . (.Intel Corporation - Intel Graphics Kernel Mode Driver.) -- C:\WINDOWS\System32\drivers\igdkmd64.sys [5382856] =>.Microsoft® O58 - SDL:2012/06/19 01:40:50 N . (.Intel(R) Corporation - Intel(R) Display Audio Driver.) -- C:\WINDOWS\System32\drivers\IntcDAud.sys [342528] [Unsigned] =>.Intel(R) Corporation O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3.5 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\ItSas35i.sys [172344] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Qualcomm Atheros Co., Ltd. - Qualcomm Atheros Ar81xx series PCI-E Gigabi.) -- C:\WINDOWS\System32\drivers\L1C63x64.sys [121344] [Unsigned] =>.Qualcomm Atheros Co., Ltd. O58 - SDL:2015/10/19 09:58:05 A . (.Lenovo. - HD Disk Driver.) -- C:\WINDOWS\System32\drivers\LhdX64.sys [39008] =>.Lenovo (Beijing) Limited® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI Fusion-MPT SAS Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas.sys [108856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SAS Gen2 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas2i.sys [124216] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - Avago SAS Gen3 Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sas3i.sys [135992] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation - LSI SSS PCIe/Flash Driver (StorPort).) -- C:\WINDOWS\System32\drivers\lsi_sss.sys [82744] =>.Microsoft® O58 - SDL:2023/02/05 19:12:04 A . (.Malwarebytes - Malwarebytes Anti-Exploit.) -- C:\WINDOWS\System32\drivers\mbae64.sys [158640] =>.Microsoft® O58 - SDL:2023/09/28 02:56:15 A . (.Malwarebytes - Malwarebytes Chameleon.) -- C:\WINDOWS\System32\drivers\MbamChameleon.sys [222272] =>.Microsoft® O58 - SDL:2023/02/05 19:11:46 A . (.Malwarebytes - Malwarebytes Early Launch Anti-Malware Driv.) -- C:\WINDOWS\System32\drivers\MbamElam.sys [21480] =>.Microsoft® O58 - SDL:2023/02/05 19:13:43 A . (.Malwarebytes - Malwarebytes SwissArmy.) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys [239544] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas.sys [59704] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\MegaSas2i.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\megasas35i.sys [105480] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.LSI Corporation, Inc. - LSI MegaRAID Software RAID Driver.) -- C:\WINDOWS\System32\drivers\megasr.sys [575800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - MLX4 Bus Driver.) -- C:\WINDOWS\System32\drivers\mlx4_bus.sys [1131320] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Marvell Semiconductor, Inc. - Marvell Flash Controller Driver.) -- C:\WINDOWS\System32\drivers\mvumis.sys [63800] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - NetworkDirect Support Filter Driver.) -- C:\WINDOWS\System32\drivers\ndfltr.sys [146232] =>.Microsoft® O58 - SDL:2010/01/27 04:09:02 A . (.CACE Technologies, Inc. - npf.sys (NT5/6 AMD64) Kernel Driver.) -- C:\WINDOWS\System32\drivers\npf.sys [47632] =>.CACE Technologies, Inc.® O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) RAID Driver.) -- C:\WINDOWS\System32\drivers\nvraid.sys [150328] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.NVIDIA Corporation - NVIDIA® nForce(TM) Sata Performance Driver.) -- C:\WINDOWS\System32\drivers\nvstor.sys [166200] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas2i.sys [58680] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Avago Technologies - MEGASAS RAID Controller Driver for Windows.) -- C:\WINDOWS\System32\drivers\percsas3i.sys [68408] =>.Microsoft® O58 - SDL:2019/12/07 11:08:09 RA . (.Realtek - Realtek PCIe GBE Family Controller Flight.) -- C:\WINDOWS\System32\drivers\rteth.sys [48640] [Unsigned] =>.Realtek O58 - SDL:2012/07/03 12:55:04 A . (.Realtek Semiconductor Corp. - Realtek(r) High Definition Audio Function D.) -- C:\WINDOWS\System32\drivers\RTKVHD64.sys [4074256] =>.Realtek Semiconductor Corp® O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems Corp. - SiS RAID Stor Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid2.sys [44856] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Silicon Integrated Systems - SiS AHCI Stor-Miniport Driver.) -- C:\WINDOWS\System32\drivers\sisraid4.sys [81720] =>.Microsoft® O58 - SDL:2019/12/07 11:07:53 A . (.Microsemi Corportation - Storport Miniport Driver for SmartRAID/Smar.) -- C:\WINDOWS\System32\drivers\SmartSAMD.sys [209720] =>.Microsoft® O58 - SDL:2015/06/03 04:16:44 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys [42184] =>.Synaptics Incorporated® O58 - SDL:2015/06/03 04:16:44 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [42696] =>.Synaptics Incorporated® O58 - SDL:2015/06/03 04:16:44 A . (.Synaptics Incorporated - Synaptics SMBus Driver.) -- C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys [42696] =>.Synaptics Incorporated® O58 - SDL:2020/11/11 04:54:38 A . (.Samsung Electronics Co., Ltd. - SAMSUNG Android Modem Device Driver.) -- C:\WINDOWS\System32\drivers\ssudmdm.sys [167280] =>.Samsung Electronics Co., Ltd.® O58 - SDL:2019/12/07 11:07:53 A . (.Promise Technology, Inc. - Promise SuperTrak EX Series Driver for Wind.) -- C:\WINDOWS\System32\drivers\stexstor.sys [31032] =>.Microsoft® O58 - SDL:2015/06/03 04:16:46 A . (.Synaptics Incorporated - Synaptics Touchpad Win64 Driver.) -- C:\WINDOWS\System32\drivers\SynTP.sys [613576] =>.Synaptics Incorporated® O58 - SDL:2016/04/21 11:10:04 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tap0901.sys [27136] [Unsigned] =>.The OpenVPN Project O58 - SDL:2016/12/06 16:03:30 A . (.Anchorfree Inc. - Anchorfree HSS VPN Adapter.) -- C:\WINDOWS\System32\drivers\taphss6.sys [42064] =>.AnchorFree Inc® O58 - SDL:2020/12/30 12:27:18 A . (.The OpenVPN Project - TAP-Windows Virtual Network Driver (NDIS 6..) -- C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49024] =>.Microsoft® O58 - SDL:2015/07/10 15:35:26 A . (.Intel Corporation - Intel(R) Management Engine Interface.) -- C:\WINDOWS\System32\drivers\TeeDriverW8x64.sys [193336] =>.Intel Corporation - Embedded Subsystems and IP Blocks Group® O58 - SDL:2019/12/07 11:08:37 A . (...) -- C:\WINDOWS\System32\drivers\UsbPmApi.sys [53248] [Unsigned] =>.Microsoft Corporation O58 - SDL:2015/09/03 14:15:42 A . (.Vimicro Corporation - VM0331 Digital Camera Driver.) -- C:\WINDOWS\System32\drivers\vm331avs.sys [648872] =>.Microsoft Windows Hardware Compatibility Publisher® O58 - SDL:2019/12/07 11:07:54 A . (.VIA Technologies Inc.,Ltd - VIA RAID DRIVER FOR AMD-X86-64.) -- C:\WINDOWS\System32\drivers\vsmraid.sys [166712] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.VIA Corporation - VIA StorX RAID Controller Driver.) -- C:\WINDOWS\System32\drivers\VSTXRAID.SYS [305464] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinMad.) -- C:\WINDOWS\System32\drivers\winmad.sys [36152] =>.Microsoft® O58 - SDL:2023/07/15 15:02:35 A . (.WireGuard LLC - Wintun Driver.) -- C:\WINDOWS\System32\drivers\wintun.sys [29592] =>.Microsoft® O58 - SDL:2019/12/07 11:07:54 A . (.Mellanox - Kernel WinVerbs.) -- C:\WINDOWS\System32\drivers\winverbs.sys [73016] =>.Microsoft® O58 - SDL:2022/04/02 13:46:53 A . (.WireGuard LLC - WireGuard Driver.) -- C:\WINDOWS\System32\drivers\wireguard.sys [489368] =>.Microsoft® O58 - SDL:2012/06/13 17:10:32 A . (."CyberLink - Cyberlink Virtual Disk Driver.) -- C:\WINDOWS\System32\drivers\wsvd.sys [102376] =>.CyberLink® ---\\ ASSOCIATION Shell Spawning (11) - 2s O67 - Shell Spawning: <.bat> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.cpl> [HKLM\..\cplopen\Command] (.Microsoft Corporation - Windows Control Panel.) -- C:\Windows\System32\control.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.cmd> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.com> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.evt> [HKLM\..\open\Command] (.Microsoft Corporation - Lanceur du composant logiciel enfichable Ob.) -- C:\Windows\System32\eventvwr.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.exe> [HKLM\..\open\Command] (...) -- "%1" %* =>.Default.Value O67 - Shell Spawning: <.html> [HKLM\..\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O67 - Shell Spawning: <.js> [HKLM\..\open\Command] (...) -- C:\Windows\System32\WScript.exe "%1" %* =>.Default.Value O67 - Shell Spawning: <.reg> [HKLM\..\open\Command] (.Microsoft Corporation - Éditeur du Registre.) -- C:\Windows\regedit.exe [Unsigned] =>.Microsoft Corporation O67 - Shell Spawning: <.scr> [HKLM\..\open\Command] (...) -- "%1" /S =>.Default.Value O67 - Shell Spawning: <.html> [HKCU\..\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® ---\\ MENU DE DÉMARRAGE INTERNET (16) - 2s O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Mozilla Corporation - Firefox.) -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Internet Explorer.) -- C:\Program Files\Internet Explorer\iexplore.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft® O68 - StartMenuInternet: [64Bits][HKLM\..\Shell\open\Command] (.Moonchild Productions - Pale Moon web browser.) -- C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver® O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ShowIconsCommand] (.Moonchild Productions - Pale Moon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Utilitaire d'initialisation d'Internet Expl.) -- C:\Windows\System32\ie4uinit.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\ReinstallCommand] (.Moonchild Productions - Pale Moon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Mozilla Corporation - Firefox Helper.) -- C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - IE Per-User Show IE Icon Utility.) -- C:\WINDOWS\System32\ie4ushowIE.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Microsoft Corporation - Microsoft Edge.) -- C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe =>.Microsoft Corporation O68 - StartMenuInternet: [64Bits][HKLM\..\InstallInfo\HideIconsCommand] (.Moonchild Productions - Pale Moon Helper.) -- C:\Program Files\Pale Moon\uninstall\helper.exe =>.Moonchild Productions ---\\ RECHERCHE D'INFECTION SUR NAVIGATEURS (4) - 22s O69 - SBI: prefs.js [User - sdcf5m94.default-1449679278495-1622248414203] user_pref("browser.topsites.contile.cachedTiles", "[{\"id\":75021,\"name\":\"Booking.com\",\"url\":\"https://www.booking.com/index[...] =>PUP.Optional.Booking O69 - SBI: SearchScopes [HKCU] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (Bing) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - (@ieframe.dll,-12512) - http://www.bing.com/ =>.Bing.com O69 - SBI: SearchScopes [HKLM] [64Bits]{9EB0A4B1-3CA7-476F-9387-5A78FB389E86} [DefaultScope] - (Bing) - http://www.bing.com/ =>.Bing.com ---\\ ENUMERE LES SERVICES DÉMARRES PAR Svchost (51) - 5s O83 - Search Svchost Services: CertPropSvc (CertPropSvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\WINDOWS\System32\certprop.dll [221696] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SCPolicySvc (SCPolicySvc) . (.Microsoft Corporation - Service de propagation de certificats de ca.) -- C:\Windows\System32\certprop.dll [221696] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lanmanserver (lanmanserver) . (.Microsoft Corporation - DLL du service Serveur.) -- C:\Windows\System32\srvsvc.dll [304128] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: gpsvc (gpsvc) . (.Microsoft Corporation - Client de stratégie de groupe.) -- C:\Windows\System32\gpsvc.dll [1342464] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: IKEEXT (IKEEXT) . (.Microsoft Corporation - Extension IKE.) -- C:\Windows\System32\IKEEXT.DLL [1053696] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: iphlpsvc (iphlpsvc) . (.Microsoft Corporation - Service offrant une connectivité IPv6 sur u.) -- C:\Windows\System32\iphlpsvc.dll [836608] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: seclogon (seclogon) . (.Microsoft Corporation - DLL de service d’ouverture de session secon.) -- C:\Windows\System32\seclogon.dll [32768] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: msiscsi (msiscsi) . (.Microsoft Corporation - Service de découverte iSCSI.) -- C:\Windows\System32\iscsiexe.dll [161280] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: EapHost (EapHost) . (.Microsoft Corporation - Service EAPHost Microsoft.) -- C:\Windows\System32\eapsvc.dll [112640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: schedule (schedule) . (.Microsoft Corporation - Service du Planificateur de tâches.) -- C:\Windows\System32\schedsvc.dll [813056] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: winmgmt (winmgmt) . (.Microsoft Corporation - WMI.) -- C:\Windows\System32\wbem\WMIsvc.dll [243712] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ProfSvc (ProfSvc) . (.Microsoft Corporation - ProfSvc.) -- C:\Windows\System32\profsvc.dll [488448] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SessionEnv (SessionEnv) . (.Microsoft Corporation - Service Configuration des services Bureau à.) -- C:\Windows\System32\SessEnv.dll [542720] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wercplsupport (wercplsupport) . (.Microsoft Corporation - Rapports de problèmes.) -- C:\Windows\System32\wercplsupport.dll [134656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: InstallService (InstallService) . (.Microsoft Corporation - InstallService.) -- C:\Windows\System32\InstallService.dll [2465280] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: PushToInstall (PushToInstall) . (.Microsoft Corporation - PushToInstall.) -- C:\Windows\System32\PushToInstall.dll [333824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TroubleshootingSvc (TroubleshootingSvc) . (.Microsoft Corporation - MitigationClient.) -- C:\Windows\System32\MitigationClient.dll [495616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: LxpSvc (LxpSvc) . (.Microsoft Corporation - Fournit une prise en charge de l'infrastruc.) -- C:\Windows\System32\LanguageOverlayServer.dll [410112] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: shpamsvc (shpamsvc) . (.Microsoft Corporation - SharedPC.AccountManager.) -- C:\Windows\System32\Windows.SharedPC.AccountManager.dll [223232] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblGameSave (XblGameSave) . (.Microsoft Corporation - Xbox Live Game Save Service.) -- C:\Windows\System32\XblGameSave.dll [1291264] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DmEnrollmentSvc (DmEnrollmentSvc) . (.Microsoft Corporation - DLL Windows Management Service.) -- C:\Windows\System32\Windows.Internal.Management.dll [1131008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: WManSvc (WManSvc) . (.Microsoft Corporation - DLL du Service de gestion de Windows.) -- C:\Windows\System32\Windows.Management.Service.dll [852992] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Themes (Themes) . (.Microsoft Corporation - DLL du service des thèmes Windows Shell.) -- C:\Windows\System32\themeservice.dll [70656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UserManager (UserManager) . (.Microsoft Corporation - UserMgr.) -- C:\Windows\System32\usermgr.dll [1484288] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NetSetupSvc (NetSetupSvc) . (.Microsoft Corporation - Service Configuration du réseau.) -- C:\Windows\System32\NetSetupSvc.dll [329216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wlidsvc (wlidsvc) . (.Microsoft Corporation - Service de compte Microsoft®.) -- C:\Windows\System32\wlidsvc.dll [2247680] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: TokenBroker (TokenBroker) . (.Microsoft Corporation - Broker à jetons.) -- C:\Windows\System32\TokenBroker.dll [1522176] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: lfsvc (lfsvc) . (.Microsoft Corporation - Service de géolocalisation.) -- C:\Windows\System32\lfsvc.dll [48640] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NaturalAuthentication (NaturalAuthentication) . (.Microsoft Corporation - Service d’authentification naturelle.) -- C:\Windows\System32\NaturalAuth.dll [454656] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasauto (Rasauto) . (.Microsoft Corporation - Gestionnaire de numérotation automatique d’.) -- C:\Windows\System32\rasauto.dll [111616] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Rasman (Rasman) . (.Microsoft Corporation - Gestionnaire des connexions d’accès à dista.) -- C:\Windows\System32\rasmans.dll [1009152] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Remoteaccess (Remoteaccess) . (.Microsoft Corporation - Gestionnaire d’interface dynamique.) -- C:\Windows\System32\mprdim.dll [551936] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: SENS (SENS) . (.Microsoft Corporation - Service de notification d’événements systèm.) -- C:\Windows\System32\Sens.dll [77824] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Sharedaccess (Sharedaccess) . (.Microsoft Corporation - Composants de l’application d’assistance à.) -- C:\Windows\System32\ipnathlp.dll [619008] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: Tapisrv (Tapisrv) . (.Microsoft Corporation - Serveur de téléphonie Microsoft® Windows(TM.) -- C:\Windows\System32\tapisrv.dll [316928] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wuauserv (wuauserv) . (.Microsoft Corporation - Agent de mise à jour automatique Windows Up.) -- C:\Windows\System32\wuaueng.dll [3447296] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BITS (BITS) . (.Microsoft Corporation - Service de transfert intelligent en arrière.) -- C:\Windows\System32\qmgr.dll [1481216] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: ShellHWDetection (ShellHWDetection) . (.Microsoft Corporation - Dll des services Windows Shell.) -- C:\Windows\System32\shsvcs.dll [283136] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: dmwappushservice (dmwappushservice) . (.Microsoft Corporation - dmwappushsvc.) -- C:\Windows\System32\dmwappushsvc.dll [58880] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: wisvc (wisvc) . (.Microsoft Corporation - Paramètres de vol.) -- C:\Windows\System32\flightsettings.dll [941152] =>.Microsoft® O83 - Search Svchost Services: WpnService (WpnService) . (.Microsoft Corporation - Service du système de notifications Push Wi.) -- C:\Windows\System32\WpnService.dll [245248] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: AppInfo (AppInfo) . (.Microsoft Corporation - Service Informations d’application.) -- C:\Windows\System32\appinfo.dll [217600] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxNetApiSvc (XboxNetApiSvc) . (.Microsoft Corporation - Xbox Live Networking Service.) -- C:\Windows\System32\XboxNetApiSvc.dll [1295360] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: UsoSvc (UsoSvc) . (.Microsoft Corporation - Mettre à jour la session du service Orchest.) -- C:\Windows\System32\usosvc.dll [570368] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XboxGipSvc (XboxGipSvc) . (.Microsoft Corporation - Xbox Gip Management Service.) -- C:\Windows\System32\XboxGipSvc.dll [72704] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: NcaSvc (NcaSvc) . (.Microsoft Corporation - Service Assistant Connectivité réseau Micro.) -- C:\Windows\System32\NcaSvc.dll [171520] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: XblAuthManager (XblAuthManager) . (.Microsoft Corporation - Xbox Live Auth Manager.) -- C:\Windows\System32\XblAuthManager.dll [1049600] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DsmSvc (DsmSvc) . (.Microsoft Corporation - Gestionnaire d’installation de périphérique.) -- C:\Windows\System32\DeviceSetupManager.dll [288256] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: BDESVC (BDESVC) . (.Microsoft Corporation - Service BDE.) -- C:\Windows\System32\bdesvc.dll [556032] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: browser (browser) . (.Microsoft Corporation - DLL du service Explorateur d’ordinateurs.) -- C:\Windows\System32\browser.dll [145408] [Unsigned] =>.Microsoft Corporation O83 - Search Svchost Services: DcSvc (DcSvc) . (.Microsoft Corporation - dcsvc.) -- C:\Windows\System32\dcsvc.dll [787968] [Unsigned] =>.Microsoft Corporation ---\\ CODES PRODUITS LOGICIELS (3) - 2s O90 - PUC: "2FC0C70F1206A30499AC114643B090BF" [HKLM] . (.Open-Shell.) -- C:\WINDOWS\Installer\{F07C0CF2-6021-403A-99CA-1164340B09FB}\icon.ico O90 - PUC: "3180FA93B7AF0684DAEB399B2B419B41" [HKLM] . (.Teams Machine-Wide Installer.) O90 - PUC: "8FC2C70F35C43CE418266A22E163BE88" [HKLM] . (.Guide de l’utilisateur.) -- C:\WINDOWS\Installer\{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}\ARPPRODUCTICON.exe ---\\ PACKAGES WINDOWS INSTALLER (18) - 15s [MD5.7AA54823D63F1236CA88011F7E67A623] [WIS][2022/06/15 10:17:04] (.The Open-Shell Team - Open-Shell.) -- C:\WINDOWS\Installer\11cea7.msi [5040587] =>.The Open-Shell Team [MD5.A5576363B925A469C7A85649ED0446F6] [WIS][2009/11/13 13:09:26] (.Oliver Carr.) -- C:\WINDOWS\Installer\2006dc86.msi [1948160] =>.Oliver Carr [MD5.E89F05219F91251897191C96B9E242D0] [WIS][2018/10/17 12:55:00] (.LogMeIn, Inc. - GoTo Opener 1.0.0.487.) -- C:\WINDOWS\Installer\227db029.msi [118784] =>.LogMeIn, Inc. [MD5.8555537B48218C1991E81FDAB6532517] [WIS][2022/10/18 05:00:53] (.Open Media LLC - 4K Video Downloader 4.21 Installer.) -- C:\WINDOWS\Installer\3013f33.msi [96043008] =>.Open Media LLC [MD5.882A171C839E6768B6CE8AE52A7105CE] [WIS][2018/10/20 13:52:22] (.Samsung Electronics Co., Ltd..) -- C:\WINDOWS\Installer\322779e5.msi [38709248] =>.Samsung Electronics Co., Ltd. [MD5.30A7CA0334F88AE32E8F9B5351A8517C] [WIS][2012/05/16 10:50:08] (.Lenovo - UserGuide.) -- C:\WINDOWS\Installer\33cce.msi [852480] =>.Lenovo [MD5.9C64B0E9A375F180450149CBF73B397F] [WIS][2012/07/12 06:30:20] (.Amazon - Amazon Browser App.) -- C:\WINDOWS\Installer\33d06.msi [1122304] =>.Amazon [MD5.9125D23BD371F9B2EF3286CA515D76FA] [WIS][2012/07/10 12:37:16] (.CyberLink Corp..) -- C:\WINDOWS\Installer\33d1a.msi [1287168] =>.CyberLink Corp. [MD5.7C2488C7A174D1D7B299822BC64160D3] [WIS][2015/10/19 09:58:00] (.Lenovo.) -- C:\WINDOWS\Installer\33d1e.msi [71430144] =>.Lenovo [MD5.0AFD048EEBD81072FB513D700087A967] [WIS][2016/12/26 19:59:50] (.Adobe Systems Incorporated - Adobe AIR Installer.) -- C:\WINDOWS\Installer\34dd7970.msi [49152] =>.Adobe Systems Incorporated [MD5.8D231595E1E36BBB1193CE1FBFEEB13C] [WIS][2016/12/27 00:41:23] (.Adobe Systems Incorporated - Adobe Download Assistant.) -- C:\WINDOWS\Installer\35d80d0e.msi [22016] =>.Adobe Systems Incorporated [MD5.5C43A76F5EF9883204C044FBD1A62982] [WIS][2012/04/19 23:23:42] (.Intel Corporation - Intel(R) Trusted Connect Service Client.) -- C:\WINDOWS\Installer\3b4d1.msi [5363712] =>.Intel Corporation [MD5.B9E06BB685AE21D88F0449A6269829F3] [WIS][2012/05/17 05:29:34] (.Dolby Laboratories Inc - Dolby Advanced Audio v2.) -- C:\WINDOWS\Installer\3b4d9.msi [13357056] =>.Dolby Laboratories Inc [MD5.6BD38F64FDB6ED8FECFC1A5F5CB529B1] [WIS][2012/06/26 03:40:06] (.Alcor Micro Corp. - AmIcoSinglun.) -- C:\WINDOWS\Installer\3b4dd.msi [1532416] =>.Alcor Micro Corp. [MD5.DCCB7F12931909C8F60F990A1F315BF5] [WIS][2012/07/30 11:10:30] (.Broadcom Corp. - WIDCOMM Bluetooth Profile Pack.) -- C:\WINDOWS\Installer\3b4e6.msi [10659840] =>.Broadcom Corp. [MD5.B7F9BD11097678CCBA0B2BD627C45BE6] [WIS][2022/07/02 08:34:40] (.OpenOffice - OpenOffice 4.1.13.) -- C:\WINDOWS\Installer\465b3842.msi [2478080] =>.OpenOffice [MD5.C13C4AC12F8674D16CEE10C796B2510A] [WIS][2017/02/02 01:58:35] (.Lenovo - Lenovo Solution Center.) -- C:\WINDOWS\Installer\69d53155.msi [77956608] =>.Lenovo [MD5.13C5D58FFF38CEC2FB4C48CF72DA86D4] [WIS][2022/12/05 14:17:12] (.Proton Technologies AG - ProtonVPN.) -- C:\WINDOWS\Installer\7baa737.msi [19957760] =>.Proton Technologies AG ---\\ FEATURE CONTROL. (1) - 0s [HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Main\FeatureControl\FEATURE_BROWSER_EMULATION]:cmw_srv.exe ---\\ OBSERVATEURS des évènements (137) - 83s Application.Error: Firefox Default Browser Agent (60) ~Numéro: 133003 ~Date: 09/28/2023 10:29:53 AM ~ID: 2 ~Description: 0x80070002 in RegistryDeleteValue:320 ~Suggestion: Aucune Application.Warning: Microsoft-Windows-RestartManager (23) ~Numéro: 132986 ~Date: 09/28/2023 04:39:50 AM ~ID: 10010 ~Description: Impossible de redémarrer l’application « %3 » (pid %2) - %9. ~Suggestion: Redémarrer manuellement l'application ou le service Application.Warning: LMS (43) ~Numéro: 132944 ~Date: 09/28/2023 02:57:58 AM ~ID: 1 ~Description: LMS cannot connect to Intel(R) MEI driver Application.Warning: ESENT (12) ~Numéro: 132931 ~Date: 09/28/2023 02:56:01 AM ~ID: 472 ~Description: %1 (%2) %3Page d’en-tête de sauvegarde du fichier %4 endommagée. La page d’en-tête primaire (%5 octets) a été utilisée à la place. ~Suggestion: 1)Fermer le processus explorer.exe. 2)lancer la commande 'del/f/s/q/a C:\Users\\AppData\Local\Microsoft\Windows\WebCacheLock.dat'. 3) Redémarrer le processus explorer.exe Application.Error: VSS (19) ~Numéro: 132918 ~Date: 09/28/2023 02:54:06 AM ~ID: 8193 ~Description: Erreur du service de cliché instantané des volumes : erreur lors de l’appel de la routine %1. hr = %2. ~Suggestion: Utiliser la procédure de reconstruction du VSS Application.Warning: EventSystem (3) ~Numéro: 132683 ~Date: 09/26/2023 03:53:38 AM ~ID: 4354 ~Description: 80070005Logoff{D5978630-5B9F-11D1-8DD2-00AA004ABD5E}Explorer ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_4354_Microsoft-Windows-EventSystem_61657.asp Application.Error: Microsoft-Windows-Defrag (7) ~Numéro: 131890 ~Date: 09/18/2023 12:37:13 PM ~ID: 264 ~Description: L’optimiseur de stockage n’a pas pu terminer %1 sur %2 car : L’opération demandée n’est pas prise en charge par le matériel sous-jacent au volume. (0x8900002A) ~Suggestion: Désactivez la surveillance du disque logique dans le pack d'administration du système d'exploitation de base SCOM pour arrêter l'analyse automatique de la défragmentation. Application.Error: Application Hang (21) ~Numéro: 131500 ~Date: 09/16/2023 03:13:19 PM ~ID: 1002 ~Description: Le programme %1 version %2 a cessé d'interagir avec Windows et a été fermé. Pour voir si plus d'informations sur le problème sont disponibles, vérifiez l'historique des problèmes dans le Panneau de configuration Sécurité et maintenance. ID de proces ~Suggestion: Essayer les commandes suivantes ipconfig /release et ipconfig / renew. Application.Warning: Wlclntfy (4) ~Numéro: 131166 ~Date: 09/14/2023 05:27:14 PM ~ID: 6006 ~Description: Le traitement de l’événement de notification (%3) par l’abonné aux notifications Winlogon <%1> a duré %2 secondes. ~Suggestion: Supprimer la valeur de registre GpNetworkStartTimeoutPolicyValue de la clé HKLM\SOFTWARE\Policies\Microsoft\Windows\System Application.Warning: Microsoft-Windows-System-Restore (3) ~Numéro: 131068 ~Date: 09/13/2023 04:31:57 PM ~ID: 8303 ~Description: Scoping unsuccessful for shadowcopy %1 with error %2. ~Suggestion: Exécuter la commande chkdsk / f Application.Error: SideBySide (1) ~Numéro: 130414 ~Date: 09/07/2023 09:15:26 AM ~ID: 35 ~Description: La création du contexte d’activation a échoué pour « %11 ». Erreur dans le fichier de manifeste ou de stratégie « %12 » à la ligne %13. L’identité de composant trouvé dans le manifeste ne correspond pas à celle du composant demandé. La référence est ~Suggestion: Ces erreurs peuvent généralement être ignorées Application.Error: Application Error (15) ~Numéro: 130410 ~Date: 09/07/2023 08:41:47 AM ~ID: 1000 ~Description: Nom de l’application défaillante %1, version : %2, horodatage : 0xc3550c29 Nom du module défaillant : %4, version : %5, horodatage : 0x6967c799 Code d’exception : 0xc000027b Décalage d’erreur : 0x000000000012d9b2 ID du processus défaillant : 0x684 He ~Suggestion: Réparer ou réinstaller l'application. Application.Error: .NET Runtime (14) ~Numéro: 129433 ~Date: 08/30/2023 01:05:05 PM ~ID: 1026 ~Description: Application : FreemakeUtilsService.exeVersion du Framework : v4.0.30319Description : le processus a été arrêté en raison d'une exception non gérée.Informations sur l'exception : System.IO.FileNotFoundException à FreemakeUtilsService.Program.Main(Sy ~Suggestion: Essayer d'installer la dernière version de l'application ou du dernier correctif System.Warning: DCOM (402) ~Numéro: 77924 ~Date: 09/28/2023 11:18:30 AM ~ID: 10016 ~Description: par défaut de l’ordinateurLocalActivation{C2F03A33-21F5-47FA-B4BB-156362A2F239}{316CDED5-E4AE-4B15-9113-7055D84DCC97}PC-LENOVO-STÉPHUserS-1-5-21-2571112955-4239876419-1220594018-1001LocalHost (avec LRPC)Microsoft.Windows.ShellExperienceHost_10.0.1904 ~Suggestion: Vérifier les autorisations pour l'accès DCOM System.Warning: Microsoft-Windows-DNS-Client (22) ~Numéro: 77907 ~Date: 09/28/2023 03:01:17 AM ~ID: 1014 ~Description: La résolution du nom %1 a expiré lorsqu’aucun des serveurs DNS configurés n’a répondu. ~Suggestion: https://social.technet.microsoft.com/wiki/contents/articles/3336.event-id-1014-microsoft-windows-dns-client.aspx System.Warning: BTHUSB (45) ~Numéro: 77875 ~Date: 09/28/2023 02:54:59 AM ~ID: 34 ~Description: La carte locale ne prend pas en charge un état de contrôleur Low Energy important pour la prise en charge du mode périphérique. Le masque d’état pris en charge requis au minimum est %2, a reçu %3. La fonctionnalité du rôle périphérique Low Energy n System.Warning: Microsoft-Windows-Kernel-PnP (44) ~Numéro: 77870 ~Date: 09/28/2023 02:54:57 AM ~ID: 219 ~Description: Le chargement du pilote %5 a échoué pour le périphérique %2. ~Suggestion: Vérifier que le pilote a bien été chargé dans les informations système System.Error: Microsoft-Windows-WindowsUpdateClient (4) ~Numéro: 77804 ~Date: 09/27/2023 06:17:06 PM ~ID: 20 ~Description: Échec de l’installation : l’installation de la mise à jour suivante a échoue avec l’erreur %1 : %2. ~Suggestion: http://kb.eventtracker.com/evtpass/evtpages/EventId_20_Microsoft-Windows-WindowsUpdateClient_63351.asp System.Error: Service Control Manager (125) ~Numéro: 77788 ~Date: 09/27/2023 05:50:31 PM ~ID: 7023 ~Description: Le service %1 s’est arrêté avec l’erreur : %%1 System.Error: NetBT (10) ~Numéro: 76998 ~Date: 09/20/2023 07:28:17 PM ~ID: 4311 ~Description: L’initialisation a échoué car le pilote de périphérique n’a pas pu être créé. Utilisez la chaîne « %2 » pour identifier l’interface pour laquelle l’initialisation a échoué. Cette chaîne représente l’adresse MAC de l’interface défaillante ou l’identi System.Error: volsnap (1) ~Numéro: 76747 ~Date: 09/18/2023 12:13:28 PM ~ID: 36 ~Description: Les clichés instantanés du volume %2 ont été annulés car le stockage du cliché instantané n’a pas pu s’agrandir en raison d’une limite utilisateur. System.Error: EventLog (2) ~Numéro: 76506 ~Date: 09/16/2023 09:15:19 PM ~ID: 6008 ~Description: L’arrêt système précédant à %1 le %2 n’était pas prévu. System.Error: Microsoft-Windows-Kernel-Power (1) ~Numéro: 75098 ~Date: 09/02/2023 02:54:14 PM ~ID: 137 ~Description: 4 System.Warning: Microsoft-Windows-WLAN-AutoConfig (1) ~Numéro: 73552 ~Date: 08/21/2023 12:00:54 PM ~ID: 4003 ~Description: Le service de configuration automatique de réseau WLAN a détecté une connectivité limitée, en tentant une récupération automatique. Type de récupération : 4 Code d’erreur : 0x0 Motif de déclenchement : 5 Famille IP : 0 ~Suggestion: Vérifier les paramètres d'économie d'énergie ---\\ SCAN ADDITIONNEL (11) - 30s HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip =>.SUP.Orphan HKLM\Software\Classes\CLSID\{23170F69-40C1-278A-1000-000100020000} =>.SUP.Orphan HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip =>.SUP.Orphan HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\7-Zip =>.SUP.Orphan C:\Users\User\AppData\Local\Temp\mat-debug-10084.log =>.SUP.Temporary.Microsoft [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\avidemux_2-6-14_win32.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\vlc-3.0.16-win64.exe.FriendlyAppName =>.Unsigned [HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\pf7-setup-fr-7.2.1.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\avidemux_2-6-14_win32.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\vlc-3.0.16-win64.exe.FriendlyAppName =>.Unsigned [HKU\S-1-5-21-2571112955-4239876419-1220594018-1001\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache]:C:\Users\User\Desktop\pf7-setup-fr-7.2.1.exe.FriendlyAppName =>.Unsigned ---\\ RECAPITULATIF DES ELEMENTS TROUVES (5) - 0s https://nicolascoolman.eu/2017/09/12/origine-lignes-orphelines/ =>.SUP.Orphan https://nicolascoolman.eu/forum/Topic/booking-logiciel-potentiellement-indesirable-pup-lpi/ =>PUP.Optional.Booking https://nicolascoolman.eu/forum/Topic/warning-eventlogapp-evenement-dapplication/ =>Warning.EventLogApp https://nicolascoolman.eu/forum/Topic/warning-eventlogsys-evenement-systeme/ =>Warning.EventLogSys https://nicolascoolman.eu/forum/Topic/logiciels-potentiellement-superflus-lps/ =>.SUP.Temporary.Microsoft ---\\ NUMEROS DE SÉRIE [00A657F778B31AE523D667131718D16EB2] [08/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\IrisRePlugins\template_mbam_whats_new.2.0.17.x64.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [20/09/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [20/09/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [20/09/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [26/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\Actions.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [26/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\BrowserSDKDLL.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [26/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\ig.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [26/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\MBAMCore.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [26/09/2023] (.Malwarebytes Inc..) - C:\ProgramData\Malwarebytes\MBAMService\lkg_db\sample.dll =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [28/09/2023] (.Malwarebytes Inc..) - C:\Users\User\Desktop\adwcleaner.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [29/08/2023] (.Malwarebytes Inc..) - C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mb4uns.exe =>.Malwarebytes Inc. [00A657F778B31AE523D667131718D16EB2] [29/08/2023] (.Malwarebytes Inc..) - C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll =>.Malwarebytes Inc. [00B79355411B9B3FFCE2C559332AFA0F4C] [28/09/2022] (.Mark Straver.) - C:\Program Files\Pale Moon\palemoon.exe =>.Mark Straver [00B79355411B9B3FFCE2C559332AFA0F4C] [28/09/2022] (.Mark Straver.) - C:\Program Files\Pale Moon\uninstall\helper.exe =>.Mark Straver [00D2C6F29BA9505FFEC6197D9E02D51B54] [28/07/2019] (.SAND STUDIO LIMITED.) - C:\Users\User\Documents\Airdroid\AirDroid.exe =>.SAND STUDIO LIMITED [00D2C6F29BA9505FFEC6197D9E02D51B54] [28/07/2019] (.SAND STUDIO LIMITED.) - C:\Users\User\Documents\Airdroid\Launcher.exe =>.SAND STUDIO LIMITED [0407ABB64E9990180789EACB81F5F914] [24/03/2022] (.VideoLAN.) - C:\Program Files\VideoLAN\VLC\vlc.exe =>.VideoLAN [044E3BF58976880FFD074448A8F7A058] [09/01/2018] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\1162C1FD.sys =>.Malwarebytes Corporation [044E3BF58976880FFD074448A8F7A058] [09/01/2018] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\2357B5BA.sys =>.Malwarebytes Corporation [044E3BF58976880FFD074448A8F7A058] [15/11/2020] (.Malwarebytes Corporation.) - C:\WINDOWS\System32\drivers\6A31526A.sys =>.Malwarebytes Corporation [06E26320848D2C32D8CCAFF3A6C1F2D9] [18/10/2022] (.Open Media LLC.) - C:\ProgramData\Package Cache\{a8f0b9d0-de9b-45b4-9783-f1f4f5491a7b}\4kvideodownloader_4.21.7_x64_online.exe =>.Not verified [06E26320848D2C32D8CCAFF3A6C1F2D9] [30/09/2022] (.Open Media LLC.) - C:\Program Files\4KDownload\4kvideodownloader\4kvideodownloader.exe =>.Not verified [07D9088DD3014622FC5BA95BA2614B87] [18/10/2016] (.Lenovo (Beijing) Co., Ltd..) - C:\WINDOWS\System32\drivers\AcpiVpc.sys =>.Lenovo (Beijing) Co., Ltd. [07ED134B1ECF561A9EB5B05388BFF047] [06/12/2022] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller\RevoUnin.exe =>.VS Revo Group Ltd. [07ED134B1ECF561A9EB5B05388BFF047] [17/02/2023] (.VS Revo Group Ltd..) - C:\Program Files\VS Revo Group\Revo Uninstaller\unins000.exe =>.VS Revo Group Ltd. [08DE824276EE62DA1813FBDBF128A8FB] [25/04/2022] (.LogMeIn, Inc..) - C:\Users\User\AppData\Local\GoToMeeting\19950\G2MUninstall.exe =>.Not verified [0C1CD3EEA47EDDA7A032573B014D0AFD] [27/09/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\firefox.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [27/09/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\private_browsing.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [27/09/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Firefox\uninstall\helper.exe =>.Mozilla Corporation [0C1CD3EEA47EDDA7A032573B014D0AFD] [27/09/2023] (.Mozilla Corporation.) - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe =>.Mozilla Corporation [14AAE84D000100008365] [12/07/2012] (.Intel® Services Manager.) - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe =>.Intel® Services Manager [1839AF8574AA0E80C371D9803461DD7B] [14/10/2022] (.ADLICE.) - C:\Program Files\UCheck\UCheck64.exe =>.ADLICE [1839AF8574AA0E80C371D9803461DD7B] [15/10/2022] (.ADLICE.) - C:\Program Files\UCheck\unins000.exe =>.ADLICE [1A33646248348AD3243A79F786DB8F64] [13/06/2012] (.AlcorMicro, Corp..) - C:\WINDOWS\System32\drivers\AmUStor.sys =>.AlcorMicro, Corp. [1A33646248348AD3243A79F786DB8F64] [26/06/2012] (.AlcorMicro, Corp..) - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe =>.AlcorMicro, Corp. [1B4B29DF9A4D89F80C9618F1488983A7] [13/11/2009] (.TomTom International BV.) - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe =>.TomTom International BV [1D226108CBB0EB7B504697BDFEC66A8B] [10/07/2012] (.CyberLink.) - C:\Program Files\Lenovo\OneKey App\OneKey Recovery\OneKey Recovery.exe =>.CyberLink [1D226108CBB0EB7B504697BDFEC66A8B] [13/06/2012] (.CyberLink.) - C:\WINDOWS\System32\DRIVERS\wsvd.sys =>.CyberLink [1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\dpinst.exe =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\PROGRAM FILES\SYNAPTICS\SynTP\SYNTPHELPER.EXE =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_AMDASF_Aux.sys =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\Smb_driver_Intel.sys =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\WINDOWS\System32\drivers\Smb_driver_Intel_Aux.sys =>.Synaptics Incorporated [1D9FF0CFF14FE700963E52F6CDACF575] [03/06/2015] (.Synaptics Incorporated.) - C:\WINDOWS\System32\DRIVERS\SynTP.sys =>.Synaptics Incorporated [1DE909DE446485F9C6F4B405E24F687D] [27/03/2015] (.Broadcom Corporation.) - C:\WINDOWS\System32\BtwRSupportService.exe =>.Broadcom Corporation [217A8364000100006426] [20/04/2012] (.Intel® Upgrade Service.) - C:\Program Files\Intel\iCLS Client\HeciServer.exe =>.Intel® Upgrade Service [23F4B491123AC4CDBD68042D] [04/09/2023] (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\unins000.exe =>.Proton Technologies AG [23F4B491123AC4CDBD68042D] [04/09/2023] (.Proton Technologies AG.) - C:\ProgramData\ProtonVPN\Updates\ProtonVPN_v3.1.1.exe =>.Proton Technologies AG [23F4B491123AC4CDBD68042D] [23/08/2023] (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe =>.Proton Technologies AG [23F4B491123AC4CDBD68042D] [23/08/2023] (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.exe =>.Proton Technologies AG [23F4B491123AC4CDBD68042D] [23/08/2023] (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\v3.1.1\ProtonVPN.WireGuardService.exe =>.Proton Technologies AG [23F4B491123AC4CDBD68042D] [23/08/2023] (.Proton Technologies AG.) - C:\Program Files\Proton\VPN\v3.1.1\ProtonVPNService.exe =>.Proton Technologies AG [253AF3B3BB7099F9B7B1D628FBB605D2] [14/05/2012] (.SugarSync, Inc..) - C:\Program Files (x86)\SugarSync\SugarSyncManager.exe =>.SugarSync, Inc. [253AF3B3BB7099F9B7B1D628FBB605D2] [14/05/2012] (.SugarSync, Inc..) - C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll =>.SugarSync, Inc. [26181CEDF2C113E16AC74820DF7A38A3] [22/07/2016] (.Samsung Electronics CO., LTD..) - C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe =>.Samsung Electronics CO., LTD. [2C80892E0115B0B77AA3594B9A733953] [02/07/2012] (.Realtek Semiconductor Corp.) - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe =>.Realtek Semiconductor Corp [2C80892E0115B0B77AA3594B9A733953] [03/07/2012] (.Realtek Semiconductor Corp.) - C:\WINDOWS\System32\drivers\RTKVHD64.sys =>.Realtek Semiconductor Corp [2C80892E0115B0B77AA3594B9A733953] [04/05/2012] (.Realtek Semiconductor Corp.) - C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe =>.Realtek Semiconductor Corp [2C80892E0115B0B77AA3594B9A733953] [13/06/2012] (.Realtek Semiconductor Corp.) - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe =>.Realtek Semiconductor Corp [2EDBA85021EE00C973B5C5398B2E1155] [19/10/2015] (.Lenovo (Beijing) Limited.) - C:\WINDOWS\System32\DRIVERS\LhdX64.sys =>.Lenovo (Beijing) Limited [330000038BF0FCEC2C8F35652C00000000038B] [27/09/2023] (.Skype Software Sarl.) - C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.105.3208.0_x64__kzf8qxf38zg5c\Skype\Skype.exe =>.Not verified [330000B898AA86B5A39E5A1BBD00020000B898] [09/03/2017] (.Intel(R) pGFX.) - C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\Setup.exe =>.Intel(R) pGFX [330000B898AA86B5A39E5A1BBD00020000B898] [09/03/2017] (.Intel(R) pGFX.) - C:\Windows\SysWOW64\IntelCpHeciSvc.exe =>.Intel(R) pGFX [37D3740FB04DB7FA54DFDF358BEF6D5F] [22/05/2009] (.CyberLink.) - C:\Program Files (x86)\InstallShield Installation Information\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}\setup.exe =>.CyberLink [3DAA06F4E8BE7B2AE8FC57BA8578B7D9] [06/12/2016] (.AnchorFree Inc.) - C:\WINDOWS\System32\drivers\taphss6.sys =>.AnchorFree Inc [45CDE138920165308D5ED4955D3629E4] [12/08/2020] (.Dolby Laboratories, Inc..) - C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe =>.Dolby Laboratories, Inc. [47D10403CEBA269F5D81E04D8A679663] [19/10/2015] (.Lenovo (Beijing) Limited.) - C:\Program Files\DIFX\8C657473004ED4CD\DPInst.exe =>.Lenovo (Beijing) Limited [489613E7DD6964B152A4E8F71813E76A] [27/01/2010] (.CACE Technologies, Inc..) - C:\WINDOWS\System32\drivers\npf.sys =>.CACE Technologies, Inc. [4CD9E755850C1372B48DC182A7308BAB] [04/06/2015] (.Advanced Micro Devices, Inc..) - C:\WINDOWS\System32\drivers\amdkmpfd.sys =>.Advanced Micro Devices, Inc. [4EA1E89E15EA4FFA937984D88F545FBA] [26/12/2016] (.Adobe Systems Incorporated.) - C:\Program Files (x86)\Adobe\Flash Player\AddIns\airappinstaller\airappinstaller.exe =>.Adobe Systems Incorporated [4EA1E89E15EA4FFA937984D88F545FBA] [26/12/2016] (.Adobe Systems Incorporated.) - c:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe =>.Adobe Systems Incorporated [56000001757376CD78AD000C9A000000000175] [17/10/2017] (.Intel(R) Embedded Subsystems and IP Blocks Group.) - C:\WINDOWS\System32\drivers\ICCWDT.sys =>.Intel(R) Embedded Subsystems and IP Blocks Group [5AE2E638FDF6401611B8D5512C9AECE7] [27/03/2015] (.Broadcom Corporation.) - C:\WINDOWS\System32\drivers\bcbtums.sys =>.Broadcom Corporation [5AE2E638FDF6401611B8D5512C9AECE7] [27/03/2015] (.Broadcom Corporation.) - C:\WINDOWS\System32\DRIVERS\btwampfl.sys =>.Broadcom Corporation [5DAA3A3A20C9CD75916087FD48E68CAC] [19/10/2015] (.Broadcom Corporation.) - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\Driver\bcmwls64.exe =>.Broadcom Corporation [6ACB09679345BDB443C64D309E843BD9] [09/07/2012] (.Amazon Services LLC.) - C:\Program Files (x86)\Amazon\AmazonBrowserApp\abb-install.exe =>.Amazon Services LLC [6AD65C0C83D90F911D10DACFA210AB56] [07/05/2019] (.Alcorlink Corp..) - C:\WINDOWS\System32\drivers\AmUStorU.sys =>.Alcorlink Corp. [72F0C9305FD97A974DC024A6980E6886] [09/10/2020] (.WDKTestCert build,132303256403278908.) - C:\WINDOWS\System32\drivers\AppleLowerFilter.sys =>.WDKTestCert build,132303256403278908 [75B5499C96D676A5FAE2656B351E1FD6] [11/11/2020] (.Samsung Electronics Co., Ltd..) - C:\WINDOWS\System32\DRIVERS\ssudmdm.sys =>.Samsung Electronics Co., Ltd. [7AE2B5021371F092A904B6FA] [30/09/2022] (.Telegram FZ-LLC.) - C:\Users\User\Desktop\Telegram Desktop\Telegram.exe =>.Not verified ~ Unselected Options: NF, ~ End of the scan, 11452 items in 13mn51s (1606)(0)